First Log
ComboFix 07-12-02.7 - Main Office 2007-12-05 19:00:34.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.136 [GMT -5:00]
Running from: E:\ComboFix.exe
* Created a new restore point
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\All Users\Application Data.\ufazozuj.dll
C:\Documents and Settings\All Users\Start Menu\Live Safety Center.lnk
C:\Documents and Settings\All Users\Start Menu\Online Security Guide.lnk
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\autorun.exe
C:\Documents and Settings\Main Office\Application Data\ShoppingReport
C:\Documents and Settings\Main Office\Application Data\ShoppingReport\cs\Config.xml
C:\Documents and Settings\Main Office\Application Data\ShoppingReport\cs\db\Aliases.dbs
C:\Documents and Settings\Main Office\Application Data\ShoppingReport\cs\db\Sites.dbs
C:\Documents and Settings\Main Office\Application Data\ShoppingReport\cs\dwld\WhiteList.xip
C:\Documents and Settings\Main Office\Application Data\ShoppingReport\cs\report\aggr_storage.xml
C:\Documents and Settings\Main Office\Application Data\ShoppingReport\cs\report\send_storage.xml
C:\Documents and Settings\Main Office\Application Data\ShoppingReport\cs\res1\WhiteList.dbs
C:\Documents and Settings\Main Office\Desktop\Live Safety Center.lnk
C:\Documents and Settings\Main Office\Desktop\Online Security Guide.lnk
C:\Documents and Settings\Main Office\Favorites\Online Security Guide.lnk
C:\Documents and Settings\Main Office\Start Menu\Programs\Startup\findfast.exe
C:\Program Files\3269.exe
C:\Program Files\Common Files\Yazzle1162OinAdmin.exe
C:\Program Files\SecCenter
C:\Program Files\SecCenter\scprot4.exe
C:\Program Files\ShoppingReport
C:\Program Files\ShoppingReport\Bin\2.0.26\ShoppingReport.dll
C:\Program Files\ShoppingReport\Uninst.exe
C:\Program Files\ucleaner_setup.exe
C:\Program Files\Ultimate Cleaner
C:\Program Files\xloader10181.exe
C:\WINDOWS\avp.exe
C:\WINDOWS\Casino.ico
C:\WINDOWS\cookies.ini
C:\WINDOWS\Fonts\acrsecI.fon
C:\WINDOWS\Free Online Dating.ico
C:\WINDOWS\mgrs.exe
C:\WINDOWS\shell.exe
C:\WINDOWS\Spyware Remover.ico
C:\WINDOWS\system32\__c0050F62.dat
C:\WINDOWS\system32\__c007A824.dat
C:\WINDOWS\system32\~.exe
C:\WINDOWS\system32\ccoyfflg.dll
C:\WINDOWS\system32\dobe~1
C:\WINDOWS\system32\dobe~1\?dobe\
C:\WINDOWS\system32\drvzadr.dll
C:\WINDOWS\system32\ghhkj.ini
C:\WINDOWS\system32\ghhkj.ini2
C:\WINDOWS\system32\jpkhmuxy.ini
C:\WINDOWS\system32\pofgiuys.dllbox
C:\WINDOWS\system32\printer.exe
C:\WINDOWS\system32\regscan.exe
C:\WINDOWS\system32\skjlrsjp
C:\WINDOWS\system32\skjlrsjp\bg1.gif
C:\WINDOWS\system32\skjlrsjp\bgtop.gif
C:\WINDOWS\system32\skjlrsjp\bottom1.gif
C:\WINDOWS\system32\skjlrsjp\essentials.gif
C:\WINDOWS\system32\skjlrsjp\icon1.ico
C:\WINDOWS\system32\skjlrsjp\install1.gif
C:\WINDOWS\system32\skjlrsjp\left1.gif
C:\WINDOWS\system32\skjlrsjp\li.gif
C:\WINDOWS\system32\skjlrsjp\logo.gif
C:\WINDOWS\system32\skjlrsjp\main.htm
C:\WINDOWS\system32\skjlrsjp\mainframe.htm
C:\WINDOWS\system32\skjlrsjp\reinstall1.gif
C:\WINDOWS\system32\skjlrsjp\right1.gif
C:\WINDOWS\system32\skjlrsjp\s1.htm
C:\WINDOWS\system32\skjlrsjp\s2.htm
C:\WINDOWS\system32\skjlrsjp\s3.htm
C:\WINDOWS\system32\skjlrsjp\skjlrsjp1.exe
C:\WINDOWS\system32\skjlrsjp\skjlrsjp2.exe
C:\WINDOWS\system32\skjlrsjp\skjlrsjp3.exe
C:\WINDOWS\system32\skjlrsjp\SMTop1.gif
C:\WINDOWS\system32\skjlrsjp\SMTop2.gif
C:\WINDOWS\system32\skjlrsjp\SMTop3.gif
C:\WINDOWS\system32\skjlrsjp\SMTop4.gif
C:\WINDOWS\system32\skjlrsjp\soft1_off.gif
C:\WINDOWS\system32\skjlrsjp\soft1_off_ext.gif
C:\WINDOWS\system32\skjlrsjp\soft1_on.gif
C:\WINDOWS\system32\skjlrsjp\soft1_on_ext.gif
C:\WINDOWS\system32\skjlrsjp\soft2_off.gif
C:\WINDOWS\system32\skjlrsjp\soft2_off_ext.gif
C:\WINDOWS\system32\skjlrsjp\soft2_on.gif
C:\WINDOWS\system32\skjlrsjp\soft2_on_ext.gif
C:\WINDOWS\system32\skjlrsjp\soft3_off.gif
C:\WINDOWS\system32\skjlrsjp\soft3_off_ext.gif
C:\WINDOWS\system32\skjlrsjp\soft3_on.gif
C:\WINDOWS\system32\skjlrsjp\soft3_on_ext.gif
C:\WINDOWS\system32\skjlrsjp\softbottom_off.gif
C:\WINDOWS\system32\skjlrsjp\softbottom_on.gif
C:\WINDOWS\system32\skjlrsjp\softleft_off.gif
C:\WINDOWS\system32\skjlrsjp\softleft_on.gif
C:\WINDOWS\system32\skjlrsjp\top1.gif
C:\WINDOWS\system32\skjlrsjp\top2.gif
C:\WINDOWS\system32\skjlrsjp\turnoff1.gif
C:\WINDOWS\system32\skjlrsjp\turnon1.gif
C:\WINDOWS\system32\spoolvs.exe
C:\WINDOWS\system32\winkit32.dll
C:\WINDOWS\system32\yxumhkpj.dll
C:\xcrashdump.dat
.
((((((((((((((((((((((((( Files Created from 2007-11-06 to 2007-12-06 )))))))))))))))))))))))))))))))
.
2007-12-05 19:23 . 2007-12-05 19:27 20,810 ---hs---- C:\WINDOWS\system32\pofgiuys.dllbox
2007-12-05 19:01 . 2007-12-05 19:01 <DIR> d-------- C:\Documents and Settings\Main Office\report
2007-12-04 19:24 . 2007-12-04 19:24 <DIR> d-------- C:\Documents and Settings\Main Office\Application Data\report
2007-12-04 19:22 . 2007-12-04 19:22 145,984 --a------ C:\WINDOWS\system32\pofgiuys.dll
2007-12-04 19:22 . 2007-12-04 19:22 145,984 --a------ C:\WINDOWS\system32\bybbxhkx.dll
2007-12-01 15:10 . 2007-12-01 15:10 <DIR> d-------- C:\Documents and Settings\Main Office\Application Data\Application Data
2007-12-01 15:05 . 2007-12-01 15:05 <DIR> d-------- C:\Documents and Settings\Main Office\ShoppingReport
2007-12-01 15:05 . 2007-12-01 15:05 <DIR> d-------- C:\Documents and Settings\Main Office\Documents and Settings
2007-12-01 15:05 . 2007-12-01 15:05 <DIR> d-------- C:\Documents and Settings\Main Office\cs
2007-12-01 15:05 . 2007-12-01 15:05 <DIR> d-------- C:\Documents and Settings\Main Office\Application Data\Documents and Settings
2007-12-01 15:05 . 2007-12-01 15:05 <DIR> d-------- C:\Documents and Settings\Main Office\Application Data\cs
2007-12-01 14:47 . 2007-12-01 14:47 <DIR> d-------- C:\ShoppingReport
2007-12-01 14:47 . 2007-12-01 14:47 <DIR> d-------- C:\Documents and Settings\Main Office\Main Office
2007-12-01 14:47 . 2007-12-01 14:47 <DIR> d-------- C:\cs
2007-12-01 12:21 . 2007-12-01 12:21 324,192 --a------ C:\WINDOWS\system32\jkhhg.dll
2007-12-01 12:18 . 2007-12-01 12:18 <DIR> d-------- C:\Program Files\E404 Helper
2007-12-01 12:18 . 2007-12-04 19:25 10,240 --a------ C:\Program Files\spoolsv.exe
2007-12-01 12:16 . 2007-12-01 12:16 <DIR> d-------- C:\Program Files\Ztrunktz
2007-12-01 12:16 . 2007-12-01 12:16 <DIR> d-------- C:\Program Files\MalwareAlarm
2007-12-01 12:16 . 2007-12-01 12:16 <DIR> d-------- C:\Program Files\crcfylmn
2007-12-01 12:16 . 2007-12-01 12:16 1,148,902 --a------ C:\Install
2007-12-01 12:16 . 2007-12-01 12:16 102,912 --a------ C:\WINDOWS\system32\drvzad.dll
2007-12-01 12:16 . 2007-12-01 12:16 34,304 --a------ C:\WINDOWS\system32\wvuvsts.dll
2007-12-01 11:15 . 2007-12-01 11:44 125 --a------ C:\ioSpecial.ini
2007-11-27 18:43 . 2007-11-27 18:47 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Christmasville
2007-11-27 18:41 . 2007-11-27 18:41 <DIR> d-------- C:\Documents and Settings\Main Office\Application Data\SpinTop
2007-11-25 19:23 . 2007-11-25 19:23 <DIR> d-------- C:\Program Files\Zango
2007-11-25 19:23 . 2007-11-28 16:36 <DIR> d-------- C:\Documents and Settings\Main Office\Application Data\Zango
2007-11-25 19:23 . 2007-12-05 18:51 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\ZangoSA
2007-11-25 19:23 . 2007-11-25 19:23 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\2ACA5CC3-0F83-453D-A079-1076FE1A8B65
2007-11-25 18:12 . 2007-11-25 18:12 <DIR> d-------- C:\Program Files\GameTap
2007-11-25 18:12 . 2007-11-25 18:19 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\GameTap
2007-11-25 17:18 . 2007-11-25 17:18 <DIR> d-------- C:\Documents and Settings\Main Office\Application Data\Talkback
2007-11-25 17:02 . 2007-11-25 17:02 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\NannyMania
2007-11-25 17:00 . 2007-12-01 11:43 <DIR> d-------- C:\Program Files\GameHouse
2007-11-25 17:00 . 2007-11-25 17:16 <DIR> d-------- C:\Documents and Settings\Main Office\Application Data\GameHouse
2007-11-25 17:00 . 2007-11-25 17:00 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\n7-89-o9-3r-4t-r9
2007-11-25 16:39 . 2007-11-25 16:39 4 --a------ C:\WINDOWS\sbsystem.dat
2007-11-21 14:13 . 2007-11-21 14:16 <DIR> d-------- C:\Documents and Settings\Main Office\Application Data\MagicBall3
2007-11-21 08:33 . 2007-11-21 13:51 40 --a------ C:\WINDOWS\RSoftInfo.dat
2007-11-17 15:16 . 2007-11-17 15:20 <DIR> d-------- C:\Documents and Settings\Main Office\Application Data\Super-Cow
2007-11-11 14:30 . 2007-11-11 14:30 <DIR> d-------- C:\Documents and Settings\Main Office\Application Data\FrimaStudio
2007-11-09 21:18 . 2007-11-09 21:18 <DIR> d-------- C:\Documents and Settings\Main Office\Application Data\Jane s Hotel
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-12-05 00:51 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP
2007-12-01 19:30 --------- d-----w C:\Program Files\Yahoo!
2007-12-01 16:45 --------- d-----w C:\Program Files\Cartoon Network
2007-12-01 16:45 --------- d-----w C:\Program Files\AOL Games
2007-12-01 16:40 --------- d-----w C:\Program Files\King Kong Skull Island Adventure
2007-12-01 16:39 --------- d-----w C:\Program Files\Jasc Software Inc
2007-12-01 16:32 --------- d-----w C:\Program Files\Nick Arcade
2007-12-01 16:31 --------- d-----w C:\Program Files\Games
2007-12-01 16:26 --------- d-----w C:\Program Files\Corel
2007-12-01 16:26 --------- d-----w C:\Program Files\Common Files\Corel
2007-12-01 16:26 --------- d-----w C:\Documents and Settings\Main Office\Application Data\Corel
2007-11-26 00:26 --------- d-----w C:\Documents and Settings\Main Office\Application Data\PlayFirst
2007-11-25 23:12 --------- d--h--w C:\Program Files\InstallShield Installation Information
2007-11-02 00:16 --------- d-----w C:\Program Files\Eets
2007-10-30 19:57 11,012 --sha-w C:\WINDOWS\system32\KGyGaAvL.sys
2007-10-27 16:49 --------- d-----w C:\Documents and Settings\All Users\Application Data\Sandlot Games
2007-10-27 01:08 --------- d-----w C:\Documents and Settings\Main Office\Application Data\Jasc
2007-10-27 00:31 --------- d-----w C:\Documents and Settings\Main Office\Application Data\Ulead Systems
2007-10-27 00:29 --------- d-----w C:\Program Files\Common Files\Ulead Systems
2007-10-27 00:29 --------- d-----w C:\Documents and Settings\All Users\Application Data\Ulead Systems
2007-10-27 00:28 --------- d-----w C:\Program Files\Ulead Systems
2007-10-26 03:34 8,460,288 ----a-w C:\WINDOWS\system32\dllcache\shell32.dll
2007-10-25 21:59 --------- d-----w C:\Program Files\DeliciousDeluxe2_at
2007-10-14 01:13 --------- d--h--w C:\Documents and Settings\Main Office\Application Data\Move Networks
2007-08-01 01:57 9,878 ----a-w C:\Documents and Settings\Main Office\Application Data\wklnhst.dat
2007-01-10 20:53 774,144 ----a-w C:\Program Files\RngInterstitial.dll
2007-01-06 20:08 48,483 ----a-w C:\Program Files\Tumblebugs
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{07AA283A-43D7-4CBE-A064-32A21112D94D}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{267909BB-CE6E-4250-900F-94BE63DF043A}]
2007-12-01 12:21 324192 --a------ C:\WINDOWS\system32\jkhhg.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{30BAA4DF-E0AB-4AFD-B6D8-FFAA032D0468}]
2007-12-01 12:16 34304 --a------ C:\WINDOWS\system32\wvuvsts.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{59879FA4-4790-461c-A1CC-4EC4DE4CA483}]
C:\Program Files\RXToolBar\sfcont.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{62780D18-D103-03D3-323A-01F43008B839}]
2007-12-01 12:16 98304 --a------ C:\Program Files\Ztrunktz\bbxocddh.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A95B2816-1D7E-4561-A202-68C0DE02353A}]
2007-12-04 19:22 145984 --a------ C:\WINDOWS\system32\pofgiuys.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{F10587E9-0E47-4CBE-84AE-7DD20B8684BB}]
2007-12-01 12:18 17920 --a------ C:\Program Files\E404 Helper\e404.v4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{11A69AE4-FBED-4832-A2BF-45AF82825583}"= C:\WINDOWS\system32\pofgiuys.dll [2007-12-04 19:22 145984]
[HKEY_CLASSES_ROOT\clsid\{11a69ae4-fbed-4832-a2bf-45af82825583}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 05:00]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2004-10-13 11:24]
"DellSupport"="C:\Program Files\DellSupport\DSAgnt.exe" [2007-03-15 10:09]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-07-19 20:22]
"Aim6"="" []
"Yahoo! Pager"="C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.exe" [2007-07-16 14:17]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"="C:\Program Files\Analog Devices\Core\smax4pnp.exe" [2004-10-14 19:42]
"IgfxTray"="C:\WINDOWS\system32\igfxtray.exe" [2005-04-05 19:22]
"HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe" [2005-04-05 19:19]
"Persistence"="C:\WINDOWS\system32\igfxpers.exe" []
"DMXLauncher"="C:\Program Files\Dell\Media Experience\DMXLauncher.exe" [2005-10-05 03:12]
"ISUSPM Startup"="C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" [2005-06-10 10:44]
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [2005-06-10 10:44]
"VSOCheckTask"="C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" [2005-07-08 17:18]
"OASClnt"="C:\Program Files\McAfee.com\VSO\oasclnt.exe" [2005-08-11 22:02]
"MCAgentExe"="c:\PROGRA~1\mcafee.com\agent\mcagent.exe" [2005-09-22 17:29]
"MCUpdateExe"="C:\PROGRA~1\mcafee.com\agent\McUpdate.exe" [2006-01-11 11:05]
"MSKDetectorExe"="C:\PROGRA~1\McAfee\SPAMKI~1\MSKDetct.exe" [2006-11-07 14:49]
"DLA"="C:\WINDOWS\System32\DLA\DLACTRLW.EXE" [2005-09-08 05:20]
"MSKAGENTEXE"="C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe" [2005-09-26 09:26]
"VirusScan Online"="C:\Program Files\McAfee.com\VSO\mcvsshld.exe" [2005-08-10 12:49]
"MPFExe"="C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe" [2005-11-11 16:00]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2006-09-13 11:17]
"LXBXCATS"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXBXtime.dll" [2004-11-02 10:08]
"lxbxmon.exe"="C:\Program Files\Lexmark 7100 Series\lxbxmon.exe" [2005-01-18 04:43]
"FaxCenterServer4_in_1"="C:\Program Files\Lexmark 7100 Series\fm3032.exe" [2004-12-06 11:53]
"EzPrint"="C:\Program Files\Lexmark 7100 Series\ezprint.exe" [2004-09-17 08:24]
"AOLDialer"="C:\Program Files\Common Files\AOL\ACS\AOLDial.exe" [2006-10-23 07:50]
"HostManager"="C:\Program Files\Common Files\AOL\1170457508\ee\AOLSoftware.exe" [2006-09-25 19:52]
"Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" [2007-07-31 16:25]
"RealTray"="C:\Program Files\Real\RealPlayer\RealPlay.exe" [2006-09-13 11:17]
"Ulead AutoDetector v2"="C:\Program Files\Common Files\Ulead Systems\AutoDetector\monitor.exe" [2004-08-27 18:22]
"ZangoSA"="C:\Program Files\Zango\bin\10.0.370.0\ZangoSA.exe" [2007-10-02 22:32]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-09-23 22:05:26]
Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe [2006-09-13 11:14:48]
Picture Package Menu.lnk - C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe [2007-02-23 10:00:00]
Picture Package VCD Maker.lnk - C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe [2007-02-23 09:59:50]
Quicken Scheduled Updates.lnk - C:\Program Files\Quicken\bagent.exe [2003-07-29 20:49:48]
Service Manager.lnk - C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe [2005-05-03 22:07:32]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{30BAA4DF-E0AB-4AFD-B6D8-FFAA032D0468}"= C:\WINDOWS\system32\wvuvsts.dll [2007-12-01 12:16 34304]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\pofgiuys]
pofgiuys.dll 2007-12-04 19:22 145984 C:\WINDOWS\system32\pofgiuys.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\wvuvsts]
wvuvsts.dll 2007-12-01 12:16 34304 C:\WINDOWS\system32\wvuvsts.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\__c0050F62]
C:\WINDOWS\system32\__c0050F62.dat
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Authentication Packages REG_MULTI_SZ msv1_0 C:\WINDOWS\system32\jkhhg.dll
R2 CdaD10BA;CdaD10BA;\??\C:\WINDOWS\system32\drivers\CdaD10BA.SYS
R2 X4HSX32;X4HSX32;\??\C:\Program Files\GameTap\bin\Release\X4HSX32.Sys
R3 WinDriver6;WinDriver6;C:\WINDOWS\system32\drivers\windrvr6.sys
R3 WUSB54GPV4SRV;Linksys Home Wireless-G USB Adaptor Driver;C:\WINDOWS\system32\DRIVERS\rt2500usb.sys
S3 sonypvs1;Sony Digital Imaging Video2;C:\WINDOWS\system32\DRIVERS\sonypvs1.sys
*Newly Created Service* - GTNDIS5
.
Contents of the 'Scheduled Tasks' folder
"2007-12-06 00:24:14 C:\WINDOWS\Tasks\McAfee.com Scan for Viruses - My Computer (OFFICE-Main Office).job"
- c:\program files\mcafee.com\vso\mcmnhdlr.exe
.
**************************************************************************
catchme 0.3.1318 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-12-05 19:23:38
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
C:\WINDOWS\system32\ghhkj.ini2 6495 bytes
scan completed successfully
hidden files: 1
**************************************************************************
.
Completion time: 2007-12-05 19:29:27 - machine was rebooted
.
--- E O F ---
Still trying to get the SmitfraudFix, having trouble. But, on a positive note, whatever it is that Combofix did, it's allowing me to actually reach this message board from the messed up computer, so that's a step in the right direction!!:crowned: