ComboFix 09-01-21.04 - BigMike 2009-01-25 11:55:27.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1022.530 [GMT -9:00]
Running from: c:\documents and settings\BigMike\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\BigMike\Desktop\CFScript.txt
AV: AVG Anti-Virus Free *On-access scanning disabled* (Updated)
AV: BitDefender Antivirus *On-access scanning disabled* (Updated)
FW: BitDefender Firewall *enabled*
* Created a new restore point
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\BigMike\Application Data\uTorrent
c:\documents and settings\BigMike\Application Data\uTorrent\~Wu Tang Discography.torrent
c:\documents and settings\BigMike\Application Data\uTorrent\Akon-Freedom-2008-[NoFS].torrent
c:\documents and settings\BigMike\Application Data\uTorrent\All Time Top 1000.torrent
c:\documents and settings\BigMike\Application Data\uTorrent\BEST OF LOVE -The 100 biggest songs of the history.torrent
c:\documents and settings\BigMike\Application Data\uTorrent\Billboard Top 10 Music Videos (High Quality AVI).torrent
c:\documents and settings\BigMike\Application Data\uTorrent\Billboard Top 100 of the 1980s.torrent
c:\documents and settings\BigMike\Application Data\uTorrent\Celine Dion - My Love Ult Ess [2008][2CD+3 SkidVid_XviD+Cov].torrent
c:\documents and settings\BigMike\Application Data\uTorrent\dht.dat
c:\documents and settings\BigMike\Application Data\uTorrent\dht.dat.old
c:\documents and settings\BigMike\Application Data\uTorrent\Eminem - Crack A Bottle Feat Dr Dre & 50 Cent-MIXFIEND-2009.mp3.torrent
c:\documents and settings\BigMike\Application Data\uTorrent\FAR_CRY_2_CLONEDVD_READNFO-TorrentLeech.torrent
c:\documents and settings\BigMike\Application Data\uTorrent\Half-Life 2 The Orange Box [Krayzie-N-Bone].1.torrent
c:\documents and settings\BigMike\Application Data\uTorrent\Half-Life 2 The Orange Box [Krayzie-N-Bone].torrent
c:\documents and settings\BigMike\Application Data\uTorrent\LMFAO-Im_In_Miami_Bitch-(Promo_CDS)-2008.torrent
c:\documents and settings\BigMike\Application Data\uTorrent\resume.dat
c:\documents and settings\BigMike\Application Data\uTorrent\resume.dat.old
c:\documents and settings\BigMike\Application Data\uTorrent\rss.dat
c:\documents and settings\BigMike\Application Data\uTorrent\rss.dat.old
c:\documents and settings\BigMike\Application Data\uTorrent\Sarah McLachlan - Closer The Best Of Sarah McLachlan 2008 2CD Resource RG by TheReids.torrent
c:\documents and settings\BigMike\Application Data\uTorrent\settings.dat
c:\documents and settings\BigMike\Application Data\uTorrent\settings.dat.old
c:\documents and settings\BigMike\Application Data\uTorrent\T-Pain - Thr33 Ringz Deluxe Edition [2008] - Hip Hop.torrent
c:\documents and settings\BigMike\Application Data\uTorrent\T.I.-Paper.Trail.Retail-2008-[NoFS].torrent
c:\documents and settings\BigMike\Application Data\uTorrent\The Very Best Of MTV Unplugged Vol 1 2 3.torrent
c:\documents and settings\BigMike\Application Data\uTorrent\Top 1000 Pop Hits of the 80s (4.32gb).torrent
c:\documents and settings\BigMike\Application Data\uTorrent\Top 1898 of The Greatest Hit Singles.torrent
c:\documents and settings\BigMike\Application Data\uTorrent\Top 250 Hits of the 90s.torrent
c:\documents and settings\BigMike\Application Data\uTorrent\utorrent-help.zip
c:\documents and settings\BigMike\Application Data\uTorrent\utorrent.chm
c:\documents and settings\BigMike\Application Data\uTorrent\VA.-.Tropical.Thunder.(2008).Reggae.
WwW.Mixermusic.net.torrent
c:\documents and settings\BigMike\Application Data\uTorrent\Who's Nailin' Paylin - DVDRip - XviD - NYMPHO.torrent
c:\documents and settings\BigMike\Application Data\uTorrent\Whos.Nalin.Paylin.XXX.DVDRip.XviD-NYMPHO.torrent
c:\documents and settings\BigMike\Application Data\uTorrent\Wu-Tang Clan- Wu-Tang Clan's Greatest Hits - 320kbps mp3.rar.torrent
c:\documents and settings\BigMike\Application Data\uTorrent\Young Girls With Big Tits 4 (Ashlynn Brooke) XXX [DVDRiP][Teens-Big Boobs][
www.sexotorrent.com].torrent
c:\documents and settings\BigMike\Application Data\uTorrent\Young Jeezy Ft. Kanye West - Put On (Official Video).torrent
c:\program files\LimeWire
c:\program files\LimeWire\aopalliance.jar.tmp
c:\program files\LimeWire\clink.jar.tmp
c:\program files\LimeWire\commons-codec-1.3.jar.tmp
c:\program files\LimeWire\commons-logging.jar.tmp
c:\program files\LimeWire\commons-net.jar.tmp
c:\program files\LimeWire\daap.jar.tmp
c:\program files\LimeWire\dnsjava.jar.tmp
c:\program files\LimeWire\forms.jar.tmp
c:\program files\LimeWire\foxtrot.jar.tmp
c:\program files\LimeWire\gettext-commons.jar.tmp
c:\program files\LimeWire\guice-1.0.jar.tmp
c:\program files\LimeWire\hs_err_pid5064.log
c:\program files\LimeWire\hsqldb.jar.tmp
c:\program files\LimeWire\httpclient-4.0-alpha5-20080522.192134-5.jar.tmp
c:\program files\LimeWire\httpcore-4.0-beta2-20080510.140437-10.jar.tmp
c:\program files\LimeWire\httpcore-nio-4.0-beta2-20080510.140437-10.jar.tmp
c:\program files\LimeWire\icu4j.jar.tmp
c:\program files\LimeWire\jaudiotagger.jar.tmp
c:\program files\LimeWire\jcraft.jar.tmp
c:\program files\LimeWire\jdic.jar.tmp
c:\program files\LimeWire\jdic_stub.jar.tmp
c:\program files\LimeWire\jflac.jar.tmp
c:\program files\LimeWire\jl.jar.tmp
c:\program files\LimeWire\jmdns.jar.tmp
c:\program files\LimeWire\jogg.jar.tmp
c:\program files\LimeWire\jorbis.jar.tmp
c:\program files\LimeWire\LimeWire.jar.tmp
c:\program files\LimeWire\log4j.jar.tmp
c:\program files\LimeWire\looks.jar.tmp
c:\program files\LimeWire\messages.jar.tmp
c:\program files\LimeWire\mp3spi.jar.tmp
c:\program files\LimeWire\onion-common.jar.tmp
c:\program files\LimeWire\onion-fec.jar.tmp
c:\program files\LimeWire\ProgressTabs.jar.tmp
c:\program files\LimeWire\swt.jar.tmp
c:\program files\LimeWire\themes.jar.tmp
c:\program files\LimeWire\tritonus.jar.tmp
c:\program files\LimeWire\vorbisspi.jar.tmp
.
((((((((((((((((((((((((( Files Created from 2008-12-25 to 2009-01-25 )))))))))))))))))))))))))))))))
.
2009-01-24 20:25 . 2009-01-24 20:25 268 --ah----- C:\sqmdata03.sqm
2009-01-24 20:25 . 2009-01-24 20:25 244 --ah----- C:\sqmnoopt03.sqm
2009-01-24 19:28 . 2009-01-24 19:31 345 --a------ c:\windows\gmer.ini
2009-01-23 20:38 . 2009-01-23 23:12 <DIR> d--h----- C:\$AVG8.VAULT$
2009-01-23 20:29 . 2009-01-25 11:54 <DIR> d-------- c:\windows\system32\drivers\Avg
2009-01-23 20:29 . 2009-01-23 20:29 <DIR> d-------- c:\program files\AVG
2009-01-23 20:29 . 2009-01-23 23:26 <DIR> d-------- c:\documents and settings\BigMike\Application Data\AVGTOOLBAR
2009-01-23 20:29 . 2009-01-23 20:37 <DIR> d-------- c:\documents and settings\All Users\Application Data\avg8
2009-01-23 20:29 . 2009-01-23 20:29 97,928 --a------ c:\windows\system32\drivers\avgldx86.sys
2009-01-23 20:29 . 2009-01-23 20:29 76,040 --a------ c:\windows\system32\drivers\avgtdix.sys
2009-01-23 20:29 . 2009-01-23 20:29 10,520 --a------ c:\windows\system32\avgrsstx.dll
2009-01-21 17:36 . 2009-01-21 17:36 410,984 --a------ c:\windows\system32\deploytk.dll
2009-01-13 23:08 . 2009-01-13 23:08 <DIR> d-------- c:\program files\iTunes
2009-01-13 23:08 . 2009-01-13 23:08 <DIR> d-------- c:\program files\iPod
2009-01-13 23:08 . 2009-01-13 23:08 <DIR> d-------- c:\documents and settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2009-01-13 23:07 . 2009-01-13 23:08 <DIR> d-------- c:\program files\QuickTime
2009-01-10 22:28 . 2009-01-10 22:28 <DIR> d-------- c:\program files\Lavasoft
2009-01-10 22:28 . 2009-01-11 19:34 <DIR> d-------- c:\documents and settings\All Users\Application Data\Lavasoft
2009-01-10 00:18 . 2009-01-10 00:18 268 --ah----- C:\sqmdata02.sqm
2009-01-10 00:18 . 2009-01-10 00:18 244 --ah----- C:\sqmnoopt02.sqm
2009-01-09 23:49 . 2009-01-09 23:48 102,664 --a------ c:\windows\system32\drivers\tmcomm.sys
2009-01-09 23:48 . 2009-01-09 23:57 <DIR> d-------- c:\documents and settings\BigMike\.housecall6.6
2009-01-08 23:58 . 2009-01-08 23:59 <DIR> d-------- c:\program files\Spybot - Search & Destroy
2009-01-08 23:58 . 2009-01-09 00:03 <DIR> d-------- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2009-01-08 23:56 . 2009-01-08 23:56 <DIR> d-------- c:\program files\Trend Micro
2009-01-08 00:03 . 2009-01-08 00:03 <DIR> d-------- c:\program files\Kaspersky Lab
2009-01-07 23:50 . 2009-01-23 20:29 <DIR> d-------- c:\documents and settings\Administrator
2009-01-07 23:46 . 2009-01-07 23:46 <DIR> d-------- c:\documents and settings\All Users\Application Data\Kaspersky Lab Setup Files
2009-01-04 13:08 . 2009-01-06 22:54 <DIR> d-------- c:\documents and settings\BigMike\Application Data\Bioshock
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-01-22 02:36 --------- d-----w c:\program files\Java
2009-01-21 09:23 --------- d-----w c:\program files\Diablo II
2009-01-21 07:38 --------- d-----w c:\program files\Warcraft III
2009-01-14 08:07 --------- d-----w c:\program files\Common Files\Apple
2009-01-08 09:03 --------- d-----w c:\program files\Common Files\BitDefender
2008-12-28 06:19 --------- d-----w c:\program files\Call of Duty 4 - Modern Warfare
2008-12-28 05:25 138,464 ----a-w c:\windows\system32\drivers\PnkBstrK.sys
2008-12-28 05:25 111,928 ----a-w c:\windows\system32\PnkBstrB.exe
2008-12-20 10:03 --------- d-----w c:\documents and settings\BigMike\Application Data\dvdcss
2008-12-11 10:57 333,952 ----a-w c:\windows\system32\drivers\srv.sys
2008-12-05 04:47 --------- d-----w c:\program files\Windows Media Connect 2
2008-11-30 20:55 --------- d--h--w c:\program files\InstallShield Installation Information
2008-11-10 10:01 66,872 ----a-w c:\windows\system32\PnkBstrA.exe
2008-11-10 10:01 22,328 ----a-w c:\documents and settings\BigMike\Application Data\PnkBstrK.sys
2008-11-10 10:01 2,250,024 ----a-w c:\windows\system32\pbsvc.exe
2008-11-08 08:11 107,888 ----a-w c:\windows\system32\CmdLineExt.dll
2008-10-27 19:04 70,992 ----a-w c:\windows\system32\XAPOFX1_2.dll
2008-10-27 19:04 514,384 ----a-w c:\windows\system32\XAudio2_3.dll
2008-10-27 19:04 235,856 ----a-w c:\windows\system32\xactengine3_3.dll
2008-10-27 19:04 23,376 ----a-w c:\windows\system32\X3DAudio1_5.dll
2008-10-20 10:43 3,946,578,076 ----a-w c:\program files\fc2.nrg
2008-09-19 08:34 32,768 --sha-w c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\MSHist012008091920080920\index.dat
.
((((((((((((((((((((((((((((( snapshot@2009-01-24_ 1.23.37.92 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-01-25 04:28:00 884,736 ----a-w c:\windows\gmer.dll
+ 2008-04-18 06:13:02 811,008 ----a-w c:\windows\gmer.exe
- 2009-01-10 09:18:02 29,926 ----a-r c:\windows\Installer\{508CE775-4BA4-4748-82DF-FE28DA9F03B0}\MsblIco.Exe
+ 2009-01-25 05:24:55 29,926 ----a-r c:\windows\Installer\{508CE775-4BA4-4748-82DF-FE28DA9F03B0}\MsblIco.Exe
- 2006-10-19 04:03:58 100,864 -c--a-w c:\windows\system32\dllcache\logagent.exe
+ 2008-06-18 10:09:22 100,864 -c--a-w c:\windows\system32\dllcache\logagent.exe
- 2008-09-08 10:41:42 333,824 -c----w c:\windows\system32\dllcache\srv.sys
+ 2008-12-11 10:57:09 333,952 -c----w c:\windows\system32\dllcache\srv.sys
- 2006-10-19 05:47:20 937,984 -c--a-w c:\windows\system32\dllcache\WMNetMgr.dll
+ 2008-06-18 14:03:08 938,496 -c--a-w c:\windows\system32\dllcache\WMNetmgr.dll
- 2006-10-19 05:47:22 2,450,944 -c--a-w c:\windows\system32\dllcache\wmvcore.dll
+ 2008-06-18 14:03:14 2,458,112 -c--a-w c:\windows\system32\dllcache\WMVCore.dll
+ 2009-01-25 04:28:00 85,969 ----a-w c:\windows\system32\drivers\gmer.sys
- 2006-10-19 04:03:58 100,864 ----a-w c:\windows\system32\logagent.exe
+ 2008-06-18 10:09:22 100,864 ----a-w c:\windows\system32\logagent.exe
- 2008-12-10 00:24:38 17,593,280 ----a-w c:\windows\system32\MRT.exe
+ 2009-01-10 01:35:28 20,853,704 ----a-w c:\windows\system32\MRT.exe
- 2006-09-26 02:58:48 14,640 ------w c:\windows\system32\spmsg.dll
+ 2007-11-30 12:39:22 17,272 ------w c:\windows\system32\spmsg.dll
- 2006-10-19 05:47:20 937,984 ----a-w c:\windows\system32\wmnetmgr.dll
+ 2008-06-18 14:03:08 938,496 ----a-w c:\windows\system32\WMNetmgr.dll
- 2006-10-19 05:47:22 2,450,944 ----a-w c:\windows\system32\wmvcore.dll
+ 2008-06-18 14:03:14 2,458,112 ----a-w c:\windows\system32\WMVCore.dll
+ 2009-01-25 20:52:53 16,384 ----atw c:\windows\Temp\Perflib_Perfdata_558.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2008-04-13 1695232]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-13 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NVRaidService"="c:\windows\system32\nvraidservice.exe" [2005-01-11 84480]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-10-07 13574144]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-01-21 136600]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-10-07 86016]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2008-11-04 413696]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2008-11-20 290088]
"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-01-23 1261336]
"nwiz"="nwiz.exe" [2008-10-07 c:\windows\system32\nwiz.exe]
"Logitech Hardware Abstraction Layer"="KHALMNPR.EXE" [2008-02-29 c:\windows\KHALMNPR.Exe]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2008-04-13 c:\windows\system32\bthprops.cpl]
"Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2008-02-29 c:\windows\KHALMNPR.Exe]
c:\documents and settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-09-23 29696]
Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2008-10-23 805392]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
2008-05-02 01:42 72208 c:\program files\Common Files\Logitech\Bluetooth\LBTWLgn.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Microsoft Games\\Halo\\halo.exe"=
"c:\\Program Files\\EA GAMES\\Battlefield 2\\BF2.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\Electronic Arts\\Battlefield 2142\\BF2142.exe"=
"c:\\Program Files\\Valve\\Steam\\SteamApps\\bigmike0004\\counter-strike source\\hl2.exe"=
"c:\\Program Files\\Warcraft III\\Warcraft III.exe"=
"c:\\Program Files\\Valve\\Steam\\SteamApps\\bigmike0004\\half-life 2 deathmatch\\hl2.exe"=
"c:\\Program Files\\Diablo II\\Diablo II.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Valve\\Steam\\SteamApps\\bigmike0004\\zombie panic! source\\hl2.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgemc.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgupd.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{df8736da-5882-11dd-859f-000129d303c2}]
\Shell\AutoRun\command - g:\wd_windows_tools\WDSetup.exe
.
Contents of the 'Scheduled Tasks' folder
2009-01-21 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 11:34]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.msn.com
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}
mSearch Bar = hxxp://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*
http://www.yahoo.com/ext/search/search.html
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*
http://www.yahoo.com
IE: Send To &Bluetooth - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
FF - ProfilePath - c:\documents and settings\BigMike\Application Data\Mozilla\Firefox\Profiles\9kn52ptw.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - component: c:\program files\AVG\AVG8\Firefox\components\avgssff.dll
FF - component: c:\program files\AVG\AVG8\ToolbarFF\components\vmAVGConnector.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npbittorrent.dll
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2009-01-25 11:56:32
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
"ServiceDll"="c:\windows\system32\es.dll"
[HKEY_LOCAL_MACHINE\System\ControlSet003\Services\FAH@C:+Program Files+Ubisoft+Far Cry 2+FAH.exe]
"ImagePath"="c:\program files\Ubisoft\Far Cry 2\FAH.exe -svcstart"
[HKEY_LOCAL_MACHINE\System\ControlSet003\Services\FAH@C:+Program Files+Ubisoft+Far Cry 2+[RAZOR1911][WEB SEED] FAR CRY 2 CRACK - REAL 100% FULLY WORKING+[RAZOR1911][WEB SEED] FAR CRY 2 CRACK - REAL 100% FULLY WORKING+FAH.exe]
"ImagePath"="c:\program files\Ubisoft\Far Cry 2\
[RAZOR1911][WEB SEED] FAR CRY 2 CRACK - REAL 100% FULLY WORKING\[RAZOR1911][WEB SEED] FAR CRY 2 CRACK - REAL 100% FULLY WORKING\FAH.exe -svcstart"
[HKEY_LOCAL_MACHINE\System\ControlSet003\Services\FAH@C:+Program Files+Ubisoft+Far Cry 2+[RAZOR1911][WEB SEED] FAR CRY 2 CRACK - REAL 100% FULLY WORKING+[RAZOR1911][WEB SEED] FAR CRY 2 CRACK - REAL 100% FULLY WORKING+FAH.exe]
"ImagePath"="c:\program files\Ubisoft\Far Cry 2\
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_USERS\S-1-5-21-1275210071-823518204-682003330-1003\Software\SecuROM\License information*]
"datasecu"=hex:95,77,b4,9c,f6,c6,c0,c9,d1,e9,a7,cc,f9,f3,c6,ce,d6,f6,bb,05,6d,
29,0e,68,19,8e,39,0e,ee,d2,03,54,a2,c4,17,78,cb,79,cf,7a,61,6d,48,31,8d,9b,\
"rkeysecu"=hex:b5,33,96,88,4c,64,5d,5e,88,b4,a4,29,87,d8,17,75
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'winlogon.exe'(792)
c:\program files\common files\logitech\bluetooth\LBTWlgn.dll
c:\program files\common files\logitech\bluetooth\LBTServ.dll
.
Completion time: 2009-01-25 11:57:34
ComboFix-quarantined-files.txt 2009-01-25 20:57:24
ComboFix2.txt 2009-01-24 10:24:17
Pre-Run: 58,555,211,776 bytes free
Post-Run: 58,533,945,344 bytes free
278 --- E O F --- 2009-01-24 10:50:16