"Campbell Bridge" - 07-05-01 16:21:56 Service Pack 2
ComboFix 07-04-22.6V - Running from: "C:\Documents and Settings\Campbell Bridge\Desktop\"
Command switches used :: "/wow-drv oqnhgqvw /v apwdscfn mntrycpo qchxqoad"
((((((((((((((((((((((((( Files Created from 2007-04-01 to 2007-05-01 ))))))))))))))))))))))))))))
2007-04-23 20:48 <DIR> d-------- C:\WINDOWS\SYSTEM32\LogFiles
2007-04-23 18:26 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
2007-04-23 13:55 49,152 --a------ C:\WINDOWS\nircmd.exe
2007-04-23 12:23 499,712 --a------ C:\WINDOWS\SYSTEM32\msvcp71.dll
2007-04-23 12:23 348,160 --a------ C:\WINDOWS\SYSTEM32\msvcr71.dll
2007-04-23 12:19 21,299,912 --a------ C:\Program Files\avg75free_463a1000.exe
2007-04-23 10:12 <DIR> d-------- C:\Anti-Spyware
2007-04-23 08:56 <DIR> d-------- C:\WINDOWS\SYSTEM32\ActiveScan
2007-04-22 19:19 <DIR> d-------- C:\WINDOWS\Prefetch
2007-04-22 11:51 <DIR> d-------- C:\Program Files\MSXML 4.0
2007-04-21 20:27 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
2007-04-21 15:51 <DIR> d-------- C:\Program Files\CCleaner
2007-04-21 12:44 <DIR> d-------- C:\16e7a3799cc4ff36826d19da47c626
2007-04-20 14:47 842,672 --a------ C:\Program Files\slsk156c.exe
2007-04-20 14:47 <DIR> d-------- C:\Program Files\Soulseek
2007-04-20 14:15 28,672 --------- C:\WINDOWS\SYSTEM32\verclsid.exe
2007-04-20 14:06 <DIR> d-------- C:\Program Files\iPod
2007-04-20 14:06 <DIR> d-------- C:\DOCUME~1\CAMPBE~1\APPLIC~1\Apple Computer
2007-04-20 14:05 <DIR> d-------- C:\Program Files\iTunes
2007-04-20 14:04 <DIR> d-------- C:\Program Files\QuickTime
2007-04-20 14:03 <DIR> d-------- C:\Program Files\Apple Software Update
2007-04-20 14:03 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
2007-04-20 14:01 37,860,928 --a------ C:\Program Files\iTunesSetup.exe
2007-04-20 08:23 44,032 --a------ C:\WINDOWS\SYSTEM32\apwdscfn.dll
2007-04-20 08:23 131,584 --a------ C:\WINDOWS\SYSTEM32\mntrycpo.dll
2007-04-20 08:23 100,864 --a------ C:\WINDOWS\SYSTEM32\qchxqoad.dll
2007-04-19 00:26 <DIR> d-------- C:\DOCUME~1\CAMPBE~1\APPLIC~1\AdobeAUM
2007-04-19 00:23 <DIR> d-------- C:\WINDOWS\Downloaded Installations
2007-04-19 00:10 21,822,168 --a------ C:\Program Files\AdbeRdr80_en_US.exe
2007-04-19 00:05 811,560 --a------ C:\Program Files\GoogleToolbarInstaller_ADBx_en_401019_signed.exe
2007-04-19 00:05 7,050,552 --a------ C:\Program Files\psa30se_en_us.exe
2007-04-18 23:53 <DIR> d--h----- C:\WINDOWS\$hf_mig$
2007-04-18 23:53 <DIR> d-------- C:\WINDOWS\SYSTEM32\PreInstall
2007-04-18 16:51 95,424 --------- C:\WINDOWS\SYSTEM32\DRIVERS\slnthal.sys
2007-04-18 16:51 9,216 --------- C:\WINDOWS\SYSTEM32\proxycfg.exe
2007-04-18 16:51 73,216 --------- C:\WINDOWS\SYSTEM32\DRIVERS\atintuxx.sys
2007-04-18 16:51 701,440 --------- C:\WINDOWS\SYSTEM32\DRIVERS\ati2mtag.sys
2007-04-18 16:51 685,056 --------- C:\WINDOWS\SYSTEM32\DRIVERS\hsfcxts2.sys
2007-04-18 16:51 67,584 --------- C:\WINDOWS\SYSTEM32\DRIVERS\sdbus.sys
2007-04-18 16:51 63,663 --------- C:\WINDOWS\SYSTEM32\DRIVERS\ati1rvxx.sys
2007-04-18 16:51 63,488 --------- C:\WINDOWS\SYSTEM32\DRIVERS\atinxsxx.sys
2007-04-18 16:51 6,016 --------- C:\WINDOWS\SYSTEM32\DRIVERS\smbali.sys
2007-04-18 16:51 59,648 --------- C:\WINDOWS\SYSTEM32\DRIVERS\rfcomm.sys
2007-04-18 16:51 59,392 --------- C:\WINDOWS\SYSTEM32\logman.exe
2007-04-18 16:51 57,856 --------- C:\WINDOWS\SYSTEM32\DRIVERS\atinbtxx.sys
2007-04-18 16:51 56,623 --------- C:\WINDOWS\SYSTEM32\DRIVERS\ati1btxx.sys
2007-04-18 16:51 52,224 --------- C:\WINDOWS\SYSTEM32\DRIVERS\atinraxx.sys
2007-04-18 16:51 46,464 --------- C:\WINDOWS\SYSTEM32\DRIVERS\gagp30kx.sys
2007-04-18 16:51 452,736 --------- C:\WINDOWS\SYSTEM32\DRIVERS\mtxparhm.sys
2007-04-18 16:51 44,672 --------- C:\WINDOWS\SYSTEM32\DRIVERS\uagp35.sys
2007-04-18 16:51 404,990 --------- C:\WINDOWS\SYSTEM32\DRIVERS\slntamr.sys
2007-04-18 16:51 4,255 --------- C:\WINDOWS\SYSTEM32\DRIVERS\adv01nt5.dll
2007-04-18 16:51 38,016 --------- C:\WINDOWS\SYSTEM32\DRIVERS\bthmodem.sys
2007-04-18 16:51 36,463 --------- C:\WINDOWS\SYSTEM32\DRIVERS\ati1tuxx.sys
2007-04-18 16:51 36,096 --------- C:\WINDOWS\SYSTEM32\DRIVERS\intelppm.sys
2007-04-18 16:51 35,456 --------- C:\WINDOWS\SYSTEM32\DRIVERS\bthprint.sys
2007-04-18 16:51 34,735 --------- C:\WINDOWS\SYSTEM32\DRIVERS\ati1xsxx.sys
2007-04-18 16:51 327,040 --------- C:\WINDOWS\SYSTEM32\DRIVERS\ati2mtaa.sys
2007-04-18 16:51 31,744 --------- C:\WINDOWS\SYSTEM32\DRIVERS\atinxbxx.sys
2007-04-18 16:51 30,671 --------- C:\WINDOWS\SYSTEM32\DRIVERS\ati1raxx.sys
2007-04-18 16:51 30,080 --------- C:\WINDOWS\SYSTEM32\DRIVERS\rndismpx.sys
2007-04-18 16:51 3,967 --------- C:\WINDOWS\SYSTEM32\DRIVERS\adv02nt5.dll
2007-04-18 16:51 3,901 --------- C:\WINDOWS\SYSTEM32\DRIVERS\siint5.dll
2007-04-18 16:51 3,775 --------- C:\WINDOWS\SYSTEM32\DRIVERS\adv11nt5.dll
2007-04-18 16:51 3,711 --------- C:\WINDOWS\SYSTEM32\DRIVERS\adv09nt5.dll
2007-04-18 16:51 3,647 --------- C:\WINDOWS\SYSTEM32\DRIVERS\adv07nt5.dll
2007-04-18 16:51 3,615 --------- C:\WINDOWS\SYSTEM32\DRIVERS\adv05nt5.dll
2007-04-18 16:51 3,135 --------- C:\WINDOWS\SYSTEM32\DRIVERS\adv08nt5.dll
2007-04-18 16:51 29,455 --------- C:\WINDOWS\SYSTEM32\DRIVERS\ati1xbxx.sys
2007-04-18 16:51 29,056 --------- C:\WINDOWS\SYSTEM32\DRIVERS\ip6fw.sys
2007-04-18 16:51 28,672 --------- C:\WINDOWS\SYSTEM32\DRIVERS\atinsnxx.sys
2007-04-18 16:51 274,304 --------- C:\WINDOWS\SYSTEM32\DRIVERS\bthport.sys
2007-04-18 16:51 262,784 --------- C:\WINDOWS\SYSTEM32\DRIVERS\http.sys
2007-04-18 16:51 26,367 --------- C:\WINDOWS\SYSTEM32\DRIVERS\ati1snxx.sys
2007-04-18 16:51 25,600 --------- C:\WINDOWS\SYSTEM32\DRIVERS\hidbth.sys
2007-04-18 16:51 25,471 --------- C:\WINDOWS\SYSTEM32\DRIVERS\atv04nt5.dll
2007-04-18 16:51 220,032 --------- C:\WINDOWS\SYSTEM32\DRIVERS\hsfbs2s2.sys
2007-04-18 16:51 21,343 --------- C:\WINDOWS\SYSTEM32\DRIVERS\ati1ttxx.sys
2007-04-18 16:51 21,183 --------- C:\WINDOWS\SYSTEM32\DRIVERS\atv01nt5.dll
2007-04-18 16:51 180,360 --------- C:\WINDOWS\SYSTEM32\DRIVERS\ntmtlfax.sys
2007-04-18 16:51 18,944 --------- C:\WINDOWS\SYSTEM32\DRIVERS\bthusb.sys
2007-04-18 16:51 17,279 --------- C:\WINDOWS\SYSTEM32\DRIVERS\atv10nt5.dll
2007-04-18 16:51 17,024 --------- C:\WINDOWS\SYSTEM32\DRIVERS\bthenum.sys
2007-04-18 16:51 166,912 --------- C:\WINDOWS\SYSTEM32\DRIVERS\s3gnbm.sys
2007-04-18 16:51 15,488 --------- C:\WINDOWS\SYSTEM32\DRIVERS\mssmbios.sys
2007-04-18 16:51 15,423 --------- C:\WINDOWS\SYSTEM32\DRIVERS\ch7xxnt5.dll
2007-04-18 16:51 15,104 --------- C:\WINDOWS\SYSTEM32\DRIVERS\hidir.sys
2007-04-18 16:51 14,336 --------- C:\WINDOWS\SYSTEM32\DRIVERS\atinpdxx.sys
2007-04-18 16:51 14,143 --------- C:\WINDOWS\SYSTEM32\DRIVERS\atv06nt5.dll
2007-04-18 16:51 13,824 --------- C:\WINDOWS\SYSTEM32\DRIVERS\atinttxx.sys
2007-04-18 16:51 13,824 --------- C:\WINDOWS\SYSTEM32\DRIVERS\atinmdxx.sys
2007-04-18 16:51 13,776 --------- C:\WINDOWS\SYSTEM32\DRIVERS\recagent.sys
2007-04-18 16:51 13,240 --------- C:\WINDOWS\SYSTEM32\DRIVERS\slwdmsup.sys
2007-04-18 16:51 129,535 --------- C:\WINDOWS\SYSTEM32\DRIVERS\slnt7554.sys
2007-04-18 16:51 128,896 --------- C:\WINDOWS\SYSTEM32\DRIVERS\fltmgr.sys
2007-04-18 16:51 126,686 --------- C:\WINDOWS\SYSTEM32\DRIVERS\mtlmnt5.sys
2007-04-18 16:51 12,672 --------- C:\WINDOWS\SYSTEM32\DRIVERS\usb8023x.sys
2007-04-18 16:51 12,672 --------- C:\WINDOWS\SYSTEM32\DRIVERS\mutohpen.sys
2007-04-18 16:51 12,047 --------- C:\WINDOWS\SYSTEM32\DRIVERS\ati1pdxx.sys
2007-04-18 16:51 11,615 --------- C:\WINDOWS\SYSTEM32\DRIVERS\ati1mdxx.sys
2007-04-18 16:51 11,359 --------- C:\WINDOWS\SYSTEM32\DRIVERS\atv02nt5.dll
2007-04-18 16:51 11,136 --------- C:\WINDOWS\SYSTEM32\DRIVERS\sffdisk.sys
2007-04-18 16:51 104,960 --------- C:\WINDOWS\SYSTEM32\DRIVERS\atinrvxx.sys
2007-04-18 16:51 100,992 --------- C:\WINDOWS\SYSTEM32\DRIVERS\bthpan.sys
2007-04-18 16:51 10,240 --------- C:\WINDOWS\SYSTEM32\DRIVERS\sffp_sd.sys
2007-04-18 16:51 1,309,184 --------- C:\WINDOWS\SYSTEM32\DRIVERS\mtlstrm.sys
2007-04-18 16:51 1,041,536 --------- C:\WINDOWS\SYSTEM32\DRIVERS\hsfdpsp2.sys
2007-04-18 16:50 88,064 --------- C:\WINDOWS\SYSTEM32\p2pnetsh.dll
2007-04-18 16:50 870,784 --------- C:\WINDOWS\SYSTEM32\ati3d1ag.dll
2007-04-18 16:50 86,016 --------- C:\WINDOWS\SYSTEM32\p2pgasvc.dll
2007-04-18 16:50 81,920 --------- C:\WINDOWS\SYSTEM32\ieencode.dll
2007-04-18 16:50 81,408 --------- C:\WINDOWS\SYSTEM32\wscsvc.dll
2007-04-18 16:50 8,192 --------- C:\WINDOWS\SYSTEM32\smbinst.exe
2007-04-18 16:50 78,464 --------- C:\WINDOWS\SYSTEM32\DRIVERS\usbvideo.sys
2007-04-18 16:50 75,776 --------- C:\WINDOWS\SYSTEM32\strmfilt.dll
2007-04-18 16:50 73,832 --------- C:\WINDOWS\SYSTEM32\slcoinst.dll
2007-04-18 16:50 73,796 --------- C:\WINDOWS\SYSTEM32\slserv.exe
2007-04-18 16:50 71,680 --------- C:\WINDOWS\SYSTEM32\blastcln.exe
2007-04-18 16:50 7,680 --------- C:\WINDOWS\SYSTEM32\kbdsmsno.dll
2007-04-18 16:50 7,680 --------- C:\WINDOWS\SYSTEM32\kbdsmsfi.dll
2007-04-18 16:50 7,168 --------- C:\WINDOWS\SYSTEM32\kbdukx.dll
2007-04-18 16:50 7,168 --------- C:\WINDOWS\SYSTEM32\kbdno1.dll
2007-04-18 16:50 7,168 --------- C:\WINDOWS\SYSTEM32\kbdfi1.dll
2007-04-18 16:50 60,416 --------- C:\WINDOWS\SYSTEM32\fwcfg.dll
2007-04-18 16:50 6,656 --------- C:\WINDOWS\SYSTEM32\kbdinmal.dll
2007-04-18 16:50 6,656 --------- C:\WINDOWS\SYSTEM32\kbdinben.dll
2007-04-18 16:50 6,144 --------- C:\WINDOWS\SYSTEM32\kbdmlt48.dll
2007-04-18 16:50 6,144 --------- C:\WINDOWS\SYSTEM32\kbdmlt47.dll
2007-04-18 16:50 6,144 --------- C:\WINDOWS\SYSTEM32\kbdinbe1.dll
2007-04-18 16:50 526,848 --------- C:\WINDOWS\SYSTEM32\p2psvc.dll
2007-04-18 16:50 516,768 --------- C:\WINDOWS\SYSTEM32\ativvaxx.dll
2007-04-18 16:50 50,688 --------- C:\WINDOWS\SYSTEM32\btpanui.dll
2007-04-18 16:50 50,176 --------- C:\WINDOWS\SYSTEM32\xmlprovi.dll
2007-04-18 16:50 5,632 --------- C:\WINDOWS\SYSTEM32\kbdmaori.dll
2007-04-18 16:50 49,152 --------- C:\WINDOWS\SYSTEM32\powercfg.exe
2007-04-18 16:50 48,640 --------- C:\WINDOWS\SYSTEM32\pnrpnsp.dll
2007-04-18 16:50 44,032 --------- C:\WINDOWS\SYSTEM32\twext.dll
2007-04-18 16:50 397,056 --------- C:\WINDOWS\SYSTEM32\s3gnb.dll
2007-04-18 16:50 377,984 --------- C:\WINDOWS\SYSTEM32\ati2dvaa.dll
2007-04-18 16:50 32,866 --------- C:\WINDOWS\SYSTEM32\slrundll.exe
2007-04-18 16:50 32,866 --------- C:\WINDOWS\slrundll.exe
2007-04-18 16:50 32,768 --------- C:\WINDOWS\SYSTEM32\ativtmxx.dll
2007-04-18 16:50 32,285 --------- C:\WINDOWS\SYSTEM32\hsfcisp2.dll
2007-04-18 16:50 312,320 --------- C:\WINDOWS\SYSTEM32\p2pgraph.dll
2007-04-18 16:50 30,208 --------- C:\WINDOWS\SYSTEM32\bthserv.dll
2007-04-18 16:50 29,184 --------- C:\WINDOWS\SYSTEM32\sdhcinst.dll
2007-04-18 16:50 286,792 --------- C:\WINDOWS\SYSTEM32\slextspk.dll
2007-04-18 16:50 25,471 --------- C:\WINDOWS\SYSTEM32\DRIVERS\watv10nt.sys
2007-04-18 16:50 24,576 --------- C:\WINDOWS\SYSTEM32\httpapi.dll
2007-04-18 16:50 23,040 --a------ C:\WINDOWS\SYSTEM32\fltmc.exe
2007-04-18 16:50 229,376 --------- C:\WINDOWS\SYSTEM32\ati2cqag.dll
2007-04-18 16:50 22,271 --------- C:\WINDOWS\SYSTEM32\DRIVERS\watv06nt.sys
2007-04-18 16:50 201,728 --------- C:\WINDOWS\SYSTEM32\ati2dvag.dll
2007-04-18 16:50 20,992 --------- C:\WINDOWS\SYSTEM32\bthci.dll
2007-04-18 16:50 2,113,536 --------- C:\WINDOWS\SYSTEM32\dxdiagn.dll
2007-04-18 16:50 193,024 --------- C:\WINDOWS\SYSTEM32\fsquirt.exe
2007-04-18 16:50 188,508 --------- C:\WINDOWS\SYSTEM32\slgen.dll
2007-04-18 16:50 17,408 --------- C:\WINDOWS\SYSTEM32\winshfhc.dll
2007-04-18 16:50 16,896 --a------ C:\WINDOWS\SYSTEM32\fltlib.dll
2007-04-18 16:50 15,872 --------- C:\WINDOWS\SYSTEM32\w3ssl.dll
2007-04-18 16:50 14,336 --------- C:\WINDOWS\SYSTEM32\auditusr.exe
2007-04-18 16:50 13,824 --------- C:\WINDOWS\SYSTEM32\wscntfy.exe
2007-04-18 16:50 13,824 --------- C:\WINDOWS\SYSTEM32\cmsetacl.dll
2007-04-18 16:50 13,568 --------- C:\WINDOWS\SYSTEM32\DRIVERS\wacompen.sys
2007-04-18 16:50 129,536 --------- C:\WINDOWS\SYSTEM32\xmlprov.dll
2007-04-18 16:50 118,784 --------- C:\WINDOWS\SYSTEM32\msdadiag.dll
2007-04-18 16:50 116,224 --------- C:\WINDOWS\SYSTEM32\p2p.dll
2007-04-18 16:50 11,935 --------- C:\WINDOWS\SYSTEM32\DRIVERS\wadv11nt.sys
2007-04-18 16:50 11,871 --------- C:\WINDOWS\SYSTEM32\DRIVERS\wadv09nt.sys
2007-04-18 16:50 11,807 --------- C:\WINDOWS\SYSTEM32\DRIVERS\wadv07nt.sys
2007-04-18 16:50 11,325 --------- C:\WINDOWS\SYSTEM32\DRIVERS\vchnt5.dll
2007-04-18 16:50 11,295 --------- C:\WINDOWS\SYSTEM32\DRIVERS\wadv08nt.sys
2007-04-18 16:50 108,032 --------- C:\WINDOWS\SYSTEM32\wshbth.dll
2007-04-18 16:50 1,888,992 --------- C:\WINDOWS\SYSTEM32\ati3duag.dll
2007-04-18 16:50 1,737,856 --------- C:\WINDOWS\SYSTEM32\mtxparhd.dll
2007-04-18 16:50 1,689,088 --------- C:\WINDOWS\SYSTEM32\d3d9.dll
2007-04-18 16:50 <DIR> d-------- C:\WINDOWS\provisioning
2007-04-18 16:50 <DIR> d-------- C:\WINDOWS\peernet
2007-04-18 16:45 <DIR> d-------- C:\WINDOWS\ServicePackFiles
2007-04-18 16:37 22,752 --a------ C:\WINDOWS\SYSTEM32\spupdsvc.exe
2007-04-18 16:32 <DIR> d-------- C:\WINDOWS\EHome
2007-04-18 16:00 21,822,168 --a------ C:\AdbeRdr80_en_US.exe
2007-04-17 12:20 75,291 --a------ C:\WINDOWS\SYSTEM32\DRIVERS\bkpcmxp.sys
2007-04-17 12:20 73,728 --a------ C:\WINDOWS\SYSTEM32\install.dll
2007-04-17 12:20 61,440 --a------ C:\WINDOWS\SYSTEM32\w32n50.dll
2007-04-17 12:20 462,848 --a------ C:\WINDOWS\SYSTEM32\monitorbk.exe
2007-04-17 12:20 36,864 --a------ C:\WINDOWS\SYSTEM32\WRLSetup.exe
2007-04-17 12:20 16,068 --a------ C:\WINDOWS\SYSTEM32\pcandis5.sys
2007-04-17 12:20 <DIR> d-------- C:\Program Files\Belkin
2007-04-12 16:19 <DIR> d-------- C:\Temp
2007-04-12 16:14 545,560 --a------ C:\AdbeRdr80_DLM_en_US.exe
2007-04-11 20:10 <DIR> d-------- C:\Program Files\Common Files\xing shared
2007-04-10 19:52 <DIR> d-------- C:\Program Files\Norton Security Scan
2007-04-10 17:33 <DIR> d-------- C:\DOCUME~1\CAMPBE~1\APPLIC~1\Google
2007-04-10 17:12 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
2007-04-10 16:45 <DIR> d-------- C:\Program Files\Google
2007-04-09 23:24 <DIR> d-------- C:\WINDOWS\SYSTEM32\SoftwareDistribution
2007-04-09 21:52 <DIR> d-------- C:\Program Files\Yahoo!
2007-04-09 18:18 465,368 --a------ C:\WINDOWS\SYSTEM32\wuapi.dll
2007-04-09 18:18 41,432 --a------ C:\WINDOWS\SYSTEM32\wups.dll
2007-04-09 18:18 194,520 --a------ C:\WINDOWS\SYSTEM32\wuaueng1.dll
2007-04-09 18:18 174,040 --a------ C:\WINDOWS\SYSTEM32\wuweb.dll
2007-04-09 18:18 172,504 --a------ C:\WINDOWS\SYSTEM32\wuauclt1.exe
2007-04-09 18:18 127,448 --a------ C:\WINDOWS\SYSTEM32\wucltui.dll
2007-04-09 18:18 <DIR> d-------- C:\WINDOWS\SoftwareDistribution
2007-04-03 21:43 <DIR> d-------- C:\Program Files\mIRC
2007-04-03 20:46 <DIR> d-------- C:\DOCUME~1\CAMPBE~1\Contacts
2007-04-03 20:45 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
2007-04-03 20:42 <DIR> d----c--- C:\WINDOWS\SYSTEM32\DRVSTORE
2007-04-03 20:42 <DIR> d-------- C:\Program Files\Windows Live Toolbar
2007-04-03 20:41 <DIR> d-------- C:\Program Files\MSN Messenger
2007-04-03 20:22 18,040,176 --a------ C:\Install_Messenger_nous.exe
(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-05-01 16:13 -------- d--h----- C:\Program Files\installshield installation information
2007-04-23 12:20 44288 --a------ C:\WINDOWS\SYSTEM32\DRIVERS\cdr4_xp.sys
2007-04-23 11:03 -------- d-------- C:\Program Files\messenger
2007-04-23 09:20 -------- d-------- C:\Program Files\digital line detect
2007-04-18 16:50 -------- d-------- C:\Program Files\movie maker
2007-04-18 16:45 -------- d-------- C:\Program Files\windows nt
2007-04-18 16:30 -------- d-------- C:\Program Files\dell
2007-04-17 16:27 -------- d-------- C:\Program Files\epson
2007-04-09 18:18 -------- d--h----- C:\Program Files\windowsupdate
2007-03-17 23:43 292864 --a------ C:\WINDOWS\SYSTEM32\winsrv.dll
2007-03-09 01:36 577536 --a------ C:\WINDOWS\SYSTEM32\user32.dll
2007-03-09 01:36 40960 --a------ C:\WINDOWS\SYSTEM32\mf3216.dll
2007-03-09 01:36 281600 --a------ C:\WINDOWS\SYSTEM32\gdi32.dll
2007-03-08 23:47 1843584 --a------ C:\WINDOWS\SYSTEM32\win32k.sys
2007-02-06 06:17 185344 --a------ C:\WINDOWS\SYSTEM32\upnphost.dll
(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
{53707962-6F74-2D53-2644-206D7942484F} C:\PROGRA~1\SPYBOT~1\SDHelper.dll
{9030D464-4C02-4ABF-8ECC-5164760863C6} C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"NvCplDaemon"="RUNDLL32.EXE NvQTwk,NvCplDaemon initialize"
"Apoint"="C:\\Program Files\\Apoint\\Apoint.exe"
"DVDSentry"="C:\\WINDOWS\\System32\\DSentry.exe"
"WinampAgent"="\"C:\\Program Files\\Winamp3\\winampa.exe\""
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"Logitech Utility"="Logi_MwX.Exe"
"SSBkgdUpdate"="\"C:\\Program Files\\Common Files\\Scansoft Shared\\SSBkgdUpdate\\SSBkgdupdate.exe\" -Embedding -boot"
"WorkFlowTray"="\"C:\\Program Files\\ScanSoft\\OmniPagePro14.0\\WorkFlowTray.exe\""
"Opware14"="\"C:\\Program Files\\ScanSoft\\OmniPagePro14.0\\Opware14.exe\""
"OpScheduler"="\"C:\\Program Files\\ScanSoft\\OmniPagePro14.0\\OpScheduler.exe\""
"RoxioEngineUtility"="\"C:\\Program Files\\Common Files\\Roxio Shared\\System\\EngUtil.exe\""
"RoxioDragToDisc"="\"C:\\Program Files\\Roxio\\Easy CD Creator 6\\DragToDisc\\DrgToDsc.exe\""
"RoxioAudioCentral"="\"C:\\Program Files\\Roxio\\Easy CD Creator 6\\AudioCentral\\RxMon.exe\""
"TkBellExe"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot"
"Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Album Starter Edition\\3.0\\Apps\\apdproxy.exe\""
"iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\""
"AVG7_CC"="C:\\PROGRA~1\\Grisoft\\AVG7\\avgcc.exe /STARTUP"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"
HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa
Authentication Packages REG_MULTI_SZ msv1_0\0\0
Security Packages REG_MULTI_SZ kerberos\0msv1_0\0schannel\0wdigest\0\0
Notification Packages REG_MULTI_SZ scecli\0\0
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0
NetworkService REG_MULTI_SZ DnsCache\0\0
rpcss REG_MULTI_SZ RpcSs\0\0
imgsvc REG_MULTI_SZ StiSvc\0\0
termsvcs REG_MULTI_SZ TermService\0\0
HTTPFilter REG_MULTI_SZ HTTPFilter\0\0
DcomLaunch REG_MULTI_SZ DcomLaunch\0TermService\0\0
Contents of the 'Scheduled Tasks' folder
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\Norton Security Scan.job
C:\WINDOWS\tasks\SpywareBot Scheduled Scan.job
C:\WINDOWS\tasks\Symantec NetDetect.job
********************************************************************
catchme 0.3.660 W2K/XP/Vista - userland rootkit detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-05-01 16:28:57
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden services ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
********************************************************************
Completion time: 07-05-01 16:31:20 - machine was rebooted
C:\ComboFix-quarantined-files.txt ... 07-05-01 16:31
C:\ComboFix2.txt ... 07-04-23 15:32
C:\ComboFix3.txt ... 07-04-23 13:55