ComboFix 08-01-18.1 - Hannes & Petra 2008-01-20 13:48:18.2 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.46.1053.18.241 [GMT 1:00]
Running from: C:\Documents and Settings\Hannes & Petra\Skrivbord\ComboFix.exe
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((( Files Created from 2007-12-20 to 2008-01-20 )))))))))))))))))))))))))))))))
.
2008-01-17 22:03 . 2000-08-31 08:00 51,200 --a------ C:\WINDOWS\NirCmd.exe
2008-01-17 15:21 . 2008-01-17 15:21 <KAT> d-------- C:\Documents and Settings\Barnen\Application Data\Share-to-Web Upload Folder
2008-01-16 17:16 . 2008-01-16 17:16 <KAT> d-------- C:\Documents and Settings\Barnen\Application Data\F-Secure
2008-01-16 17:13 . 2008-01-16 17:13 <KAT> d-------- C:\Documents and Settings\Barnen\Application Data\Grisoft
2008-01-16 16:40 . 2006-12-27 19:57 <KAT> dr------- C:\Documents and Settings\Barnen\Start-meny
2008-01-16 16:40 . 2006-12-27 19:09 <KAT> d-------- C:\Documents and Settings\Barnen\Skrivbord
2008-01-16 16:40 . 2006-12-27 19:57 <KAT> d--h----- C:\Documents and Settings\Barnen\Skrivare
2008-01-16 16:40 . 2006-12-27 19:57 <KAT> d--h----- C:\Documents and Settings\Barnen\Nätverket
2008-01-16 16:40 . 2008-01-16 16:42 <KAT> dr------- C:\Documents and Settings\Barnen\Mina dokument
2008-01-16 16:40 . 2006-12-27 19:04 <KAT> d--h----- C:\Documents and Settings\Barnen\Mallar
2008-01-16 16:40 . 2008-01-18 22:15 <KAT> d--h----- C:\Documents and Settings\Barnen\Lokala inställningar
2008-01-16 16:40 . 2008-01-17 16:10 <KAT> dr------- C:\Documents and Settings\Barnen\Favoriter
2008-01-15 22:44 . 2006-12-27 19:57 <KAT> dr------- C:\Documents and Settings\Administratör\Start-meny
2008-01-15 22:44 . 2006-12-27 19:57 <KAT> dr------- C:\Documents and Settings\Administratör\Start-meny
2008-01-15 22:44 . 2006-12-27 19:09 <KAT> d-------- C:\Documents and Settings\Administratör\Skrivbord
2008-01-15 22:44 . 2006-12-27 19:09 <KAT> d-------- C:\Documents and Settings\Administratör\Skrivbord
2008-01-15 22:44 . 2006-12-27 19:57 <KAT> d--h----- C:\Documents and Settings\Administratör\Skrivare
2008-01-15 22:44 . 2006-12-27 19:57 <KAT> d--h----- C:\Documents and Settings\Administratör\Skrivare
2008-01-15 22:44 . 2006-12-27 19:57 <KAT> d--h----- C:\Documents and Settings\Administratör\Nätverket
2008-01-15 22:44 . 2006-12-27 19:57 <KAT> d--h----- C:\Documents and Settings\Administratör\Nätverket
2008-01-15 22:44 . 2006-12-27 19:57 <KAT> d-------- C:\Documents and Settings\Administratör\Mina dokument
2008-01-15 22:44 . 2006-12-27 19:57 <KAT> d-------- C:\Documents and Settings\Administratör\Mina dokument
2008-01-15 22:44 . 2006-12-27 19:04 <KAT> d--h----- C:\Documents and Settings\Administratör\Mallar
2008-01-15 22:44 . 2006-12-27 19:04 <KAT> d--h----- C:\Documents and Settings\Administratör\Mallar
2008-01-15 22:44 . 2008-01-18 22:15 <KAT> d--h----- C:\Documents and Settings\Administratör\Lokala inställningar
2008-01-15 22:44 . 2008-01-18 22:15 <KAT> d--h----- C:\Documents and Settings\Administratör\Lokala inställningar
2008-01-15 22:44 . 2006-12-27 19:57 <KAT> d-------- C:\Documents and Settings\Administratör\Favoriter
2008-01-15 22:44 . 2006-12-27 19:57 <KAT> d-------- C:\Documents and Settings\Administratör\Favoriter
2008-01-15 22:22 . 2008-01-15 22:33 6,144 --ahs---- C:\WINDOWS\system32\Thumbs.db
2008-01-15 19:02 . 2008-01-15 19:02 <KAT> d-------- C:\Documents and Settings\Master\Application Data\Grisoft
2008-01-14 00:00 . 2008-01-14 00:00 <KAT> d-------- C:\Documents and Settings\Hannes & Petra\Application Data\Grisoft
2008-01-14 00:00 . 2008-01-14 00:00 <KAT> d-------- C:\Documents and Settings\All Users\Application Data\Grisoft
2008-01-14 00:00 . 2007-05-30 13:10 10,872 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2008-01-11 10:32 . 2008-01-11 10:32 <KAT> d-------- C:\WINDOWS\system32\Kaspersky Lab
2008-01-11 10:32 . 2008-01-11 10:32 <KAT> d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2008-01-11 09:47 . 2008-01-11 09:47 <KAT> d-------- C:\Program\Trend Micro
2008-01-10 22:37 . 2007-05-25 14:09 58,128 --a------ C:\WINDOWS\system32\drivers\fsdfw.sys
2008-01-10 22:37 . 2007-05-25 14:09 37,008 --a------ C:\WINDOWS\system32\drivers\fsndis5.sys
2008-01-10 16:23 . 2008-01-11 10:30 367 --a------ C:\WINDOWS\wininit.ini
2008-01-10 15:43 . 2008-01-11 12:00 <KAT> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-01-10 11:51 . 2008-01-10 22:48 268 --a------ C:\WINDOWS\system32\CTSTATUS.FCS
2008-01-10 11:31 . 2008-01-15 23:06 <KAT> d-------- C:\Documents and Settings\All Users\Application Data\fssg
2008-01-10 09:37 . 2008-01-10 09:37 212,992 --a------ C:\Updater .exe
2008-01-09 21:52 . 2008-01-09 21:55 <KAT> d-------- C:\Documents and Settings\Hannes & Petra\Dolly Parton - The Very Best Of Vol.2 (2007) - Country
2008-01-06 10:54 . 2008-01-06 10:54 <KAT> d-------- C:\Documents and Settings\Master\Application Data\Teleca
2008-01-06 10:50 . 2008-01-06 10:50 <KAT> d-------- C:\Documents and Settings\Master\Application Data\Sony Ericsson
2007-12-30 14:19 . 2007-12-30 14:19 <KAT> d-------- C:\Program\Lavasoft
2007-12-24 18:47 . 2001-07-03 16:36 241,664 --a------ C:\WINDOWS\system32\DartSnmp2.dll
2007-12-24 18:47 . 2000-12-03 23:22 163,840 --a------ C:\WINDOWS\system32\DartSnmp.dll
2007-12-24 18:47 . 2000-10-03 23:54 159,744 --a------ C:\WINDOWS\system32\DartSock.dll
2007-12-24 18:47 . 2001-07-03 16:31 77,824 --a------ C:\WINDOWS\system32\DartService.dll
2007-12-24 18:47 . 2000-10-03 23:54 49,152 --a------ C:\WINDOWS\system32\DartObjects.dll
2007-12-24 18:47 . 2001-01-08 09:37 27,640 --a------ C:\WINDOWS\system32\drivers\Me102man.sys
2007-12-24 18:47 . 2002-08-02 16:32 15,360 --a------ C:\WINDOWS\system32\drivers\Me102rb.sys
2007-12-24 18:47 . 2000-11-08 21:26 39 --a------ C:\WINDOWS\SNMPmanager.ini
2007-12-24 18:27 . 2007-12-24 18:27 <KAT> d-------- C:\Program\NETGEAR
2007-12-24 18:27 . 1998-06-24 00:00 166,200 --a------ C:\WINDOWS\system32\MSMASK32.OCX
2007-12-24 18:22 . 2007-12-24 18:44 <KAT> d-------- C:\Netgear trådlöst
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-01-19 19:39 --------- d-----w C:\Program\Pettson2
2008-01-16 23:54 --------- d-----w C:\Documents and Settings\Hannes & Petra\Application Data\ZipGenius
2008-01-15 22:12 --------- d-----w C:\Program\F-Secure Internet Security
2008-01-15 20:11 --------- d-----w C:\Program\The_Pirate_Bay
2008-01-15 19:59 --------- d-----w C:\Program\GameShadow
2008-01-10 21:36 --------- d-----w C:\Documents and Settings\All Users\Application Data\F-Secure
2008-01-10 18:29 --------- d-----w C:\Program\Delade filer\Wise Installation Wizard
2008-01-10 17:24 --------- d-----w C:\Program\ZipGenius 6
2008-01-10 17:24 --------- d-----w C:\Program\XviD
2008-01-10 17:24 --------- d-----w C:\Program\Windows Media Connect 2
2008-01-10 09:04 --------- d-----w C:\Program\MSN Messenger
2008-01-10 09:03 --------- d-----w C:\Program\QuickTime
2008-01-10 09:03 --------- d-----w C:\Program\iTunes
2008-01-10 08:50 --------- d-----w C:\Program\PowerISO
2008-01-10 08:34 --------- d-----w C:\Documents and Settings\Hannes & Petra\Application Data\uTorrent
2008-01-08 18:45 --------- d-----w C:\Program\Windows Live Toolbar
2008-01-08 18:45 --------- d-----w C:\Program\TPlayer
2008-01-08 18:45 --------- d-----w C:\Program\Reasonable NoClone 2007 Enterprise
2008-01-08 18:45 --------- d-----w C:\Program\Real Alternative
2008-01-08 18:45 --------- d-----w C:\Program\MagicISO
2008-01-08 18:45 --------- d-----w C:\Program\Halvan
2007-12-24 17:47 --------- d--h--w C:\Program\InstallShield Installation Information
2007-12-22 15:34 --------- d-----w C:\Program\sixteen tons entertainment
2007-12-14 22:20 --------- d-----w C:\Program\uTorrent
2007-12-14 16:12 --------- d-----w C:\Program\Azureus
2007-12-14 16:11 --------- d-----w C:\Documents and Settings\Hannes & Petra\Application Data\Azureus
2007-12-14 16:00 --------- d-----w C:\Documents and Settings\Hannes & Petra\Application Data\.BitTornado
2007-12-12 06:13 --------- d-----w C:\Program\Sony
2007-12-12 06:12 --------- d-----w C:\Program\Sony Setup
2007-12-11 21:29 --------- d-----w C:\Documents and Settings\Hannes & Petra\Application Data\Viewpoint
2007-12-11 21:29 --------- d-----w C:\Documents and Settings\All Users\Application Data\Viewpoint
2007-12-10 20:40 --------- d-----w C:\Program\Ubisoft
2007-12-10 20:35 --------- d-----w C:\Program\Winamp
2007-12-09 16:05 --------- d-----w C:\Documents and Settings\Hannes & Petra\Application Data\InstallShield
2007-12-09 10:37 --------- d-----w C:\Program\Fox
2007-12-06 20:50 --------- d-----w C:\Program\PAN Vision
2007-11-26 19:20 --------- d-----w C:\Program\MSECache
2007-11-21 22:58 --------- d-----w C:\Program\MSXML 4.0
2007-11-20 20:59 --------- d-----w C:\Documents and Settings\Hannes & Petra\Application Data\Teleca
2007-11-20 20:55 --------- d-----w C:\Program\Delade filer\Teleca Shared
2007-11-20 20:54 --------- d-----w C:\Documents and Settings\Hannes & Petra\Application Data\Sony Ericsson
2007-11-20 20:54 --------- d-----w C:\Documents and Settings\All Users\Application Data\Teleca
2007-11-20 20:54 --------- d-----w C:\Documents and Settings\All Users\Application Data\Sony Ericsson
2007-11-20 20:53 --------- d-----w C:\Program\Sony Ericsson
2007-11-20 20:53 --------- d-----w C:\Program\Delade filer\Sony Ericsson Shared
2007-11-07 09:29 722,432 ----a-w C:\WINDOWS\system32\lsasrv.dll
2007-10-29 22:45 1,289,728 ----a-w C:\WINDOWS\system32\quartz.dll
2007-10-25 08:28 222,720 ----a-w C:\WINDOWS\system32\wmasf.dll
2004-08-04 12:00 94,816 --sh--w C:\WINDOWS\twain.dll
2004-08-04 12:00 50,688 --sh--w C:\WINDOWS\twain_32.dll
2004-08-04 12:00 1,028,096 --sh--w C:\WINDOWS\system32\mfc42.dll
2004-08-04 12:00 54,784 --sh--w C:\WINDOWS\system32\msvcirt.dll
2004-08-04 12:00 413,696 --sh--w C:\WINDOWS\system32\msvcp60.dll
2004-08-04 12:00 343,040 --sh--w C:\WINDOWS\system32\msvcrt.dll
2007-05-17 11:30 549,376 --sh--w C:\WINDOWS\system32\oleaut32.dll
2004-08-04 12:00 83,456 --sh--w C:\WINDOWS\system32\olepro32.dll
2004-08-04 12:00 11,776 --sh--w C:\WINDOWS\system32\regsvr32.exe
.
Code:
<pre>
----a-w 212,992 2008-01-10 08:37:10 C:\Updater .exe
----a-w 63,712 2008-01-10 08:37:12 C:\Program\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy .exe
----a-w 39,792 2008-01-10 08:37:14 C:\Program\Adobe\Reader 8.0\Reader\Reader_sl .exe
----a-w 183,208 2008-01-10 21:41:49 C:\Program\F-Secure Internet Security\Common\FSM32 .EXE
----a-w 740,208 2008-01-10 21:41:53 C:\Program\F-Secure Internet Security\FSGUI\TNBUtil .exe
----a-w 700,416 2008-01-10 08:37:09 C:\Program\F-Secure Internet Security\TNB\TNBUtil .exe
----a-w 68,856 2008-01-10 08:37:24 C:\Program\Google\GoogleToolbarNotifier\GoogleToolbarNotifier .exe
----a-w 132,496 2008-01-10 08:37:06 C:\Program\Java\jre1.6.0_03\bin\jusched .exe
----a-w 5,674,352 2008-01-10 08:37:30 C:\Program\MSN Messenger\MsnMsgr .Exe
----a-w 528,384 2008-01-10 08:37:19 C:\Program\Sony Ericsson\Mobile2\Application Launcher\Application Launcher .exe
</pre>
((((((((((((((((((((((((((((( snapshot@2008-01-18_22.13.55,65 )))))))))))))))))))))))))))))))))))))))))
.
- 2008-01-17 21:04:31 233,472 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\
00000001\NTUSER.DAT
+ 2008-01-20 12:46:48 233,472 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\
00000001\NTUSER.DAT
- 2008-01-17 21:04:31 8,192 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\
00000002\UsrClass.dat
+ 2008-01-20 12:46:48 8,192 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\
00000002\UsrClass.dat
- 2008-01-17 21:04:31 233,472 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\
00000003\NTUSER.DAT
+ 2008-01-20 12:46:48 233,472 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\
00000003\NTUSER.DAT
- 2008-01-17 21:04:31 8,192 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\
00000004\UsrClass.dat
+ 2008-01-20 12:46:48 8,192 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\
00000004\UsrClass.dat
- 2008-01-17 21:04:32 11,120,640 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\
00000005\NTUSER.DAT
+ 2008-01-20 12:46:48 1,028,096 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\
00000005\NTUSER.DAT
- 2008-01-17 21:04:32 442,368 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\
00000006\UsrClass.dat
+ 2008-01-20 12:46:48 143,360 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\
00000006\UsrClass.dat
+ 2008-01-20 12:46:48 11,120,640 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\
00000007\NTUSER.DAT
+ 2008-01-20 12:46:48 442,368 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\
00000008\UsrClass.dat
+ 2008-01-20 08:16:21 16,384 ----atw C:\WINDOWS\Temp\Perflib_Perfdata_380.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{38CF2AB0-5342-4E53-B998-C2A502A24B53}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11D4-9B18-009027A5CD4F}
{ACECC8E8-45A5-41EC-A82A-B3363103E293}
{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0}
[HKEY_CLASSES_ROOT\clsid\{acecc8e8-45a5-41ec-a82a-b3363103e293}]
[HKEY_CLASSES_ROOT\NE.NeToolBar]
[HKEY_CLASSES_ROOT\TypeLib\{37686C62-D497-42E3-BAAB-78D89A74E151}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"="C:\Program\Spybot - Search & Destroy\TeaTimer.exe" [2007-08-31 16:46 1460560]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 13:00 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="C:\Program\Java\jre1.6.0_03\bin\jusched.exe" [ ]
"SoundMan"="SOUNDMAN.EXE" [2004-10-27 14:49 73728 C:\WINDOWS\SOUNDMAN.EXE]
"ATIPTA"="C:\ATI-CPanel\atiptaxx.exe" [ ]
"Adobe Reader Speed Launcher"="C:\Program\Adobe\Reader 8.0\Reader\Reader_sl.exe" [ ]
"QuickTime Task"="C:\Program\QuickTime\QTTask .exe" [ ]
"Sony Ericsson PC Suite"="C:\Program\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" [ ]
"F-Secure Manager"="C:\Program\F-Secure Internet Security\Common\FSM32.exe" [2007-05-25 14:12 183208]
"F-Secure TNB"="C:\Program\F-Secure Internet Security\FSGUI\TNBUtil.exe" [2007-05-25 14:11 740208]
"!AVG Anti-Spyware"="C:\Program\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 10:25 6731312]
C:\Documents and Settings\All Users\Start-meny\Program\Autostart\
Adobe Gamma Loader.lnk.disabled [2007-01-19 17:03:26]
HPAiODevice(hp psc 900 series) - 1.lnk - C:\Program\Hewlett-Packard\AiO\hp psc 900 series\Bin\hpobrt07.exe [2002-07-23 09:49:32]
Microsoft Office.lnk.disabled [2007-01-03 09:08:59]
NE s”kverktyg 2.0.lnk.disabled [2007-02-07 16:34:43]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe
"MsnMsgr"="C:\Program\MSN Messenger\MsnMsgr.Exe" /background
"swg"=C:\Program\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
"Uniblue Registry Booster2"=C:\Program\Uniblue\RegistryBooster2\RegistryBooster.exe /S
"updateMgr"=C:\Program\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"iRiver Updater"=\Updater.exe
"ISUSPM"="C:\Program\Delade filer\InstallShield\UpdateService\isuspm .exe" -scheduler
"Adobe Photo Downloader"="C:\Program\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe"
"iTunesHelper"="C:\Program\iTunes\iTunesHelper.exe"
R0 FSFW;F-Secure Firewall Driver;C:\WINDOWS\system32\drivers\fsdfw.sys [2007-05-25 14:09]
R1 F-Secure HIPS;F-Secure HIPS;C:\Program\F-Secure Internet Security\HIPS\fshs.sys [2007-05-25 14:12]
R3 F-Secure Gatekeeper;F-Secure Gatekeeper;C:\Program\F-Secure Internet Security\Anti-Virus\minifilter\fsgk.sys [2007-05-25 14:08]
S2 ME102MAN;NETGEAR ME102 Access Point;C:\WINDOWS\system32\Drivers\ME102MAN.sys [2001-01-08 09:37]
S3 s716bus;Sony Ericsson Device 716 driver (WDM);C:\WINDOWS\system32\DRIVERS\s716bus.sys [2007-04-04 12:43]
S3 s716mdfl;Sony Ericsson Device 716 USB WMC Modem Filter;C:\WINDOWS\system32\DRIVERS\s716mdfl.sys [2007-04-04 12:43]
S3 s716mdm;Sony Ericsson Device 716 USB WMC Modem Driver;C:\WINDOWS\system32\DRIVERS\s716mdm.sys [2007-04-04 12:43]
S3 s716mgmt;Sony Ericsson Device 716 USB WMC Device Management Drivers (WDM);C:\WINDOWS\system32\DRIVERS\s716mgmt.sys [2007-04-04 12:43]
S3 s716nd5;Sony Ericsson Device 716 USB Ethernet Emulation SEMC716 (NDIS);C:\WINDOWS\system32\DRIVERS\s716nd5.sys [2007-04-04 12:43]
S3 s716obex;Sony Ericsson Device 716 USB WMC OBEX Interface;C:\WINDOWS\system32\DRIVERS\s716obex.sys [2007-04-04 12:43]
S3 s716unic;Sony Ericsson Device 716 USB Ethernet Emulation SEMC716 (WDM);C:\WINDOWS\system32\DRIVERS\s716unic.sys [2007-04-04 12:43]
S3 z530bus;Sony Ericsson Z530 Driver driver (WDM);C:\WINDOWS\system32\DRIVERS\z530bus.sys [2006-02-17 20:26]
S4 F-Secure Filter;F-Secure File System Filter;C:\Program\F-Secure Internet Security\Anti-Virus\Win2K\FSfilter.sys [2007-05-25 14:09]
S4 F-Secure Recognizer;F-Secure File System Recognizer;C:\Program\F-Secure Internet Security\Anti-Virus\Win2K\FSrec.sys [2007-05-25 14:09]
.
Contents of the 'Scheduled Tasks' folder
"2008-01-11 09:58:14 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program\Apple Software Update\SoftwareUpdate.exe
"2008-01-20 12:25:00 C:\WINDOWS\Tasks\Kontrollera uppdateringar för Windows Live Toolbar.job"
- C:\Program\Windows Live Toolbar\MSNTBUP.EXE
"2008-01-20 08:18:28 C:\WINDOWS\Tasks\Scheduled scanning task.job"
- C:\Program\F-SECU~1\ANTI-V~1\fsav.exeP /HARD /POLICY /SCHED /NOBREAK /REPORT=C:\Program\F-SECU~1\ANTI-V~1\report.txt
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-01-20 13:55:56
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-01-20 13:57:21
ComboFix-quarantined-files.txt 2008-01-20 12:57:10
ComboFix2.txt 2008-01-18 21:15:16
.
2008-01-08 21:06:06 --- E O F ---