ComboFix.LOG
ComboFix 07-08-25.2 - "Dave" 2007-08-26 21:46:18.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.482 [GMT -5:00]
* Created a new restore point
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\DOCUME~1\Dave\Desktop\internet explorer.lnk
((((((((((((((((((((((((( Files Created from 2007-07-27 to 2007-08-27 )))))))))))))))))))))))))))))))
2007-08-26 21:42 51,200 --a------ C:\WINDOWS\nircmd.exe
2007-08-26 20:27 <DIR> d-------- C:\WINDOWS\system32\Kaspersky Lab
2007-08-26 20:27 <DIR> d-------- C:\WINDOWS\LastGood
2007-08-26 20:27 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab
2007-08-26 19:37 <DIR> d-------- C:\Program Files\Trend Micro
2007-08-26 14:52 <DIR> d-------- C:\Program Files\Filzip
2007-08-26 14:48 <DIR> d-------- C:\Program Files\Ken Ward's Zipper
2007-08-26 12:15 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Google
2007-08-26 10:00 <DIR> d-------- C:\Program Files\STOPzilla!
2007-08-26 10:00 <DIR> d-------- C:\Program Files\Common Files\iS3
2007-08-26 10:00 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\STOPzilla!
2007-08-25 18:40 <DIR> d-------- C:\DOCUME~1\Dave\DoctorWeb
2007-08-25 15:29 118,784 --a------ C:\WINDOWS\system32\MSSTDFMT.DLL
2007-08-25 15:29 <DIR> d-------- C:\Program Files\SpywareBlaster
2007-08-25 14:22 235,008 --a------ C:\WINDOWS\UNBOC.EXE
2007-08-25 14:22 208,896 --a------ C:\WINDOWS\CMDLIC.DLL
2007-08-25 14:08 626,688 --a------ C:\WINDOWS\system32\msvcr80.dll
2007-08-25 06:10 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
2007-08-24 11:42 5 --a------ C:\WINDOWS\lnk_dados_2.dll
2007-08-24 11:42 1,151 --a------ C:\DOCUME~1\Dave\Emails.dat
2007-08-11 22:55 <DIR> d-------- C:\DOCUME~1\Dave\APPLIC~1\gemsweeperextractedgfx
2007-08-11 22:55 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\My Games
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-08-26 12:25 22584 --a------ C:\WINDOWS\system32\drivers\PnkBstrK.sys
2007-08-26 12:24 99904 --a------ C:\WINDOWS\system32\PnkBstrB.exe
2007-08-26 00:21 --------- d--h----- C:\Program Files\InstallShield Installation Information
2007-08-26 00:21 --------- d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\BVRP Software
2007-08-24 11:42 502272 --a------ C:\WINDOWS\Media\LTaskup.exe
2007-08-10 15:43 --------- d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\DVD Shrink
2007-08-06 20:03 --------- d-------- C:\Program Files\GameSpy Arcade
2007-07-31 13:18 --------- d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\ATI MMC
2007-07-30 19:19 92504 --a------ C:\WINDOWS\system32\cdm.dll
2007-07-30 19:19 549720 --a------ C:\WINDOWS\system32\wuapi.dll
2007-07-30 19:19 53080 --a------ C:\WINDOWS\system32\wuauclt.exe
2007-07-30 19:19 43352 --a------ C:\WINDOWS\system32\wups2.dll
2007-07-30 19:19 325976 --a------ C:\WINDOWS\system32\wucltui.dll
2007-07-30 19:19 203096 --a------ C:\WINDOWS\system32\wuweb.dll
2007-07-30 19:19 1712984 --a------ C:\WINDOWS\system32\wuaueng.dll
2007-07-30 19:18 33624 --a------ C:\WINDOWS\system32\wups.dll
2007-07-25 08:05 3386 --a------ C:\WINDOWS\system32\ealregsnapshot1.reg
2007-07-23 10:04 879832 --a------ C:\WINDOWS\system32\drivers\vetefile.sys
2007-07-23 10:04 108360 --a------ C:\WINDOWS\system32\drivers\veteboot.sys
2007-07-03 18:37 --------- d-------- C:\DOCUME~1\Dave\APPLIC~1\DVD Profiler
2007-07-03 18:37 --------- d-------- C:\DOCUME~1\Dave\APPLIC~1\DVD Profiler
2007-07-03 18:34 --------- d-------- C:\Program Files\DVD Profiler
2007-06-26 01:08 1104896 --a------ C:\WINDOWS\system32\msxml3.dll
2007-06-19 08:31 282112 --a------ C:\WINDOWS\system32\gdi32.dll
2007-06-13 05:23 1033216 --a------ C:\WINDOWS\explorer.exe
2007-04-09 22:57 87608 --a------ C:\DOCUME~1\Dave\APPLIC~1\ezpinst.exe
2007-04-09 22:57 47360 --a------ C:\DOCUME~1\Dave\APPLIC~1\pcouffin.sys
2007-04-07 22:39 9232 --a------ C:\DOCUME~1\Dave\mqdmmdfl.sys
2007-04-07 22:39 92064 --a------ C:\DOCUME~1\Dave\mqdmmdm.sys
2007-04-07 22:39 79328 --a------ C:\DOCUME~1\Dave\mqdmserd.sys
2007-04-07 22:39 66656 --a------ C:\DOCUME~1\Dave\mqdmbus.sys
2007-04-07 22:39 6208 --a------ C:\DOCUME~1\Dave\mqdmcmnt.sys
2007-04-07 22:39 5936 --a------ C:\DOCUME~1\Dave\mqdmwhnt.sys
2007-04-07 22:39 4048 --a------ C:\DOCUME~1\Dave\mqdmcr.sys
2007-04-07 22:39 25600 --a------ C:\DOCUME~1\Dave\usbsermptxp.sys
2007-04-07 22:39 22768 --a------ C:\DOCUME~1\Dave\usbsermpt.sys
2007-04-03 16:46 9441313 --a------ C:\DOCUME~1\Dave\Flickz_V255u1.exe
2006-10-20 13:53 774144 --a------ C:\Program Files\RngInterstitial.dll
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" [2007-07-12 04:00]
"Easy-PrintToolBox"="C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.exe" [2004-01-13 20:10]
"Adobe Photo Downloader"="C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" [2005-06-06 23:46]
"CAVRID"="C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVRID.exe" [2007-05-01 23:05]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2006-10-27 13:01]
"razer"="C:\Program Files\Razer\razerhid.exe" [2005-05-17 19:21]
"Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" []
"BearShare"="C:\Program Files\BearShare\BearShare.exe" []
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 12:50]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-02-16 11:54]
"cctray"="C:\Program Files\CA\eTrust Internet Security Suite\cctray\cctray.exe" [2007-06-13 21:29]
"wTask"="C:\WINDOWS\Media\LTaskup.exe" [2007-08-24 11:42]
"BOC-425"="C:\PROGRA~1\Comodo\CBOClean\BOC425.exe" []
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"EasyLinkAdvisor"="C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe" [2006-04-02 20:07]
"ATI Launchpad"="C:\Program Files\ATI Multimedia\main\launchpd.exe" [2005-03-18 22:49]
"ATI DeviceDetect"="C:\Program Files\ATI Multimedia\main\ATIDtct.EXE" [2005-03-18 22:45]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-06-19 01:04]
"EA Core"="C:\Program Files\Electronic Arts\EA Link\Core.exe" [2007-07-19 08:02]
"updateMgr"="C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" [2006-03-30 16:45]
"WeatherEye"="C:\Program Files\TheWeatherNetwork\WeatherEye\WeatherEye.exe" [2006-10-03 17:06]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 02:56]
[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\DOCUME~1\Dave\STARTM~1\Programs\Startup\
Palm Registration.lnk - C:\Program Files\Palm\register.exe [2006-12-17 05:19:34]
R3 ATICXCAP;ATI TV Wonder Pro A/V Capture;C:\WINDOWS\system32\drivers\aticxcap.sys
R3 ATICXTUN;ATI TV Wonder Pro Tuner (Philips 1236 MK3);C:\WINDOWS\system32\drivers\aticxtun.sys
R3 ATICXXBR;ATI TV Wonder Pro A/V Crossbar;C:\WINDOWS\system32\drivers\aticxxbr.sys
R3 Razerlow;Razerlow USB Filter Driver;C:\WINDOWS\system32\Drivers\Razerlow.sys
S0 szkg;szkg;C:\WINDOWS\system32\DRIVERS\szkg.sys
S3 BOCDRIVE;BOClean Kernel Monitor.;\??\C:\Program Files\Comodo\CBOClean\BOCDRIVE.sys
*Newly Created Service* - CATCHME
Contents of the 'Scheduled Tasks' folder
2007-08-13 15:05:03 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
2007-08-27 02:55:00 C:\WINDOWS\Tasks\User_Feed_Synchronization-{6B9F5F38-09DD-4416-BBEC-047E5326B8A5}.job - C:\WINDOWS\system32\msfeedssync.exe
**************************************************************************
catchme 0.3.1061 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-08-26 21:56:12
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
Completion time: 2007-08-26 21:58:19
C:\ComboFix-quarantined-files.txt ... 2007-08-26 21:58
--- E O F ---