ComboFix Log:
ComboFix 07-06-18.2 - C:\Documents and Settings\Mike\Desktop\ComboFix.exe
"Mike" - 2007-07-02 22:48:47 - Service Pack 2 NTFS
Command switches used :: C:\Documents and Settings\Mike\Desktop\ComboFix-Do.txt
(((((((((((((((((((((((((((((((((((((((((((( V Log )))))))))))))))))))))))))))))))))))))))))))))))))))))))
C:\WINDOWS\system32\jjjlm.bak1
C:\WINDOWS\system32\jjjlm.ini
C:\WINDOWS\system32\mljjj.dll
* * * POST RUN FILES/FOLDERS * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\DOCUME~1\ALLUSE~1\APPLIC~1\dyfmvipo.exe
C:\DOCUME~1\ALLUSE~1\APPLIC~1\xiladgte.exe
C:\DOCUME~1\Mike\APPLIC~1\xxx.exe
C:\WINDOWS\system32\arpl.exe
C:\WINDOWS\system32\baeyyksx.dll
C:\WINDOWS\system32\djgdbj.dll
C:\WINDOWS\system32\gebxxwu.dll
C:\WINDOWS\system32\iiffdde.dll
C:\WINDOWS\system32\kedkbbhq.exe
C:\WINDOWS\system32\ljtgworb.exe
C:\WINDOWS\system32\mljjihi.dll
C:\WINDOWS\system32\qomkiii.dll
C:\WINDOWS\system32\skoxudrk.dll
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
——-\LEGACY_DOMAINSERVICE
——-\DomainService
((((((((((((((((((((((((( Files Created from 2007-06-03 to 2007-07-03 )))))))))))))))))))))))))))))))
2007-07-02 22:58 8,192 –a—— C:\WINDOWS\system32\arpl.exe
2007-07-02 22:31 3,968 –a—— C:\WINDOWS\system32\drivers\AvgAsCln.sys
2007-07-02 16:00 49,152 –a—— C:\WINDOWS\nircmd.exe
2007-06-29 11:12 31,254 –a—— C:\WINDOWS\system32\cbxyxyy.dll
2007-06-28 20:18 d——– C:\Program Files\ClamWin
2007-06-28 20:18 d——– C:\DOCUME~1\Mike\APPLIC~1\.clamwin
2007-06-28 20:18 d——– C:\DOCUME~1\ALLUSE~1\.clamwin
2007-06-26 05:39 14,848 –a—— C:\WINDOWS\system32\append.dll
2007-06-26 05:39 d——– C:\DOCUME~1\Mike\APPLIC~1\tiny
2007-06-21 22:10 d——– C:\Program Files\Defcon
2007-06-21 19:16 d——– C:\Program Files\Alex Feinman
2007-06-07 15:30 9,506 –a—— C:\DOCUME~1\Mike\APPLIC~1\antivirus.exe
2007-06-03 17:28 d——– C:\DOCUME~1\Mike\APPLIC~1\vlc
2007-06-03 16:20 d——– C:\Program Files\VideoLAN
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-07-03 03:46:06 ——– d—–w C:\DOCUME~1\Mike\APPLIC~1\Xfire
2007-07-03 03:45:36 ——– d-s—w C:\Program Files\Xfire
2007-07-02 10:15:29 ——– d—–w C:\Program Files\Zoom Player
2007-06-30 00:37:08 ——– d–h–w C:\Program Files\WindowsUpdate
2007-06-30 00:33:14 ——– d—–w C:\Program Files\Morpheus
2007-06-29 01:32:12 ——– d—–w C:\DOCUME~1\Mike\APPLIC~1\ultra
2007-06-29 01:26:02 ——– d—–w C:\DOCUME~1\Mike\APPLIC~1\.clamwin
2007-06-04 16:00:40 ——– d—–w C:\Program Files\MorpheusBar
2007-06-02 01:23:55 ——– d—–w C:\Program Files\iTunes
2007-06-02 01:23:47 ——– d—–w C:\Program Files\iPod
2007-05-26 14:18:23 ——– d—–w C:\Program Files\QuickTime
2007-05-23 01:45:06 ——– d—–w C:\Program Files\Common Files\AOL
2007-05-23 01:44:51 ——– d—–w C:\Program Files\Yahoo!
2007-05-23 01:42:20 ——– d–h–w C:\Program Files\InstallShield Installation Information
2007-05-22 21:52:08 ——– d—–w C:\Program Files\Common Files\Wise Installation Wizard
2007-05-22 20:34:49 ——– d—–w C:\Program Files\AIM
2007-05-22 20:32:58 ——– d—–w C:\Program Files\AOD
2007-05-20 19:46:02 1,417 -c–a-w C:\WINDOWS\eReg.dat
2007-05-20 19:41:53 ——– d—–w C:\Program Files\EA GAMES
2007-05-19 00:38:59 ——– d—–w C:\DOCUME~1\Mike\APPLIC~1\iPodder
2007-05-16 15:12:02 683,520 —-a-w C:\WINDOWS\system32\inetcomm.dll
2007-05-14 21:40:11 21,840 —-atw C:\WINDOWS\system32\SIntfNT.dll
2007-05-14 21:40:11 17,212 —-atw C:\WINDOWS\system32\SIntf32.dll
2007-05-14 21:40:11 12,067 —-atw C:\WINDOWS\system32\SIntf16.dll
2007-05-12 18:18:46 ——– d—–w C:\Program Files\Combined Community Codec Pack
2007-05-12 17:45:51 ——– d—–w C:\DOCUME~1\Mike\APPLIC~1\Media Player Classic
2007-05-12 15:53:18 ——– d—–w C:\Program Files\FileZilla
2007-05-11 19:56:06 ——– d—–w C:\Program Files\BitTorrent
2007-05-10 23:23:18 ——– d—–w C:\DOCUME~1\Mike\APPLIC~1\PrivacyProtector Free
2007-05-10 23:02:08 ——– d—–w C:\Program Files\Tunebite
2007-05-10 09:56:47 ——– d—–w C:\DOCUME~1\Mike\APPLIC~1\tunebite
2007-05-10 08:13:54 322,872 —-a-w C:\DOCUME~1\Mike\APPLIC~1\privprotect.exe
2007-05-08 20:44:49 ——– d—–w C:\Program Files\AviSynth 2.5
2007-05-08 20:44:03 ——– d—–w C:\Program Files\eRightSoft
2007-04-25 14:21:15 144,896 —-a-w C:\WINDOWS\system32\schannel.dll
2007-04-18 16:12:23 2,854,400 —-a-w C:\WINDOWS\system32\msi.dll
2007-04-17 03:47:36 33,624 —-a-w C:\WINDOWS\system32\wups.dll
2007-04-17 03:45:54 1,710,936 —-a-w C:\WINDOWS\system32\wuaueng.dll
2007-04-17 03:45:48 549,720 —-a-w C:\WINDOWS\system32\wuapi.dll
2007-04-17 03:45:42 325,976 —-a-w C:\WINDOWS\system32\wucltui.dll
2007-04-17 03:45:36 203,096 —-a-w C:\WINDOWS\system32\wuweb.dll
2007-04-17 03:45:28 92,504 —-a-w C:\WINDOWS\system32\cdm.dll
2007-04-17 03:45:20 53,080 —-a-w C:\WINDOWS\system32\wuauclt.exe
2007-04-17 03:45:20 43,352 —-a-w C:\WINDOWS\system32\wups2.dll
2007-04-12 10:45:28 237,568 —-a-w C:\Program Files\Uninstall Morpheus Toolbar.dll
2005-05-13 22:12:00 217,073 –sha-r C:\WINDOWS\meta4.exe
2005-10-24 16:13:58 66,560 –sha-r C:\WINDOWS\MOTA113.exe
2005-10-14 02:27:00 422,400 –sha-r C:\WINDOWS\x2.64.exe
2005-10-08 00:14:52 308,224 –sha-r C:\WINDOWS\system32\avisynth.dll
2005-07-14 17:31:20 27,648 –sha-r C:\WINDOWS\system32\AVSredirect.dll
2005-06-26 20:32:28 616,448 –sha-r C:\WINDOWS\system32\cygwin1.dll
2005-06-22 03:37:42 45,568 –sha-r C:\WINDOWS\system32\cygz.dll
2004-01-25 05:00:00 70,656 –sha-r C:\WINDOWS\system32\i420vfw.dll
2006-04-27 15:24:24 2,945,024 –sha-r C:\WINDOWS\system32\Smab.dll
2005-02-28 18:16:22 240,128 –sha-r C:\WINDOWS\system32\x.264.exe
2004-01-25 05:00:00 70,656 –sha-r C:\WINDOWS\system32\yv12vfw.dll
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
{1F6581D5-AA53-4b73-A6F9-41420C6B61F1}=C:\WINDOWS\system32\skoxudrk.dll []
{3F3714A1-89A4-46be-8AF3-D0C9D1FB03F9}=C:\Program Files\MorpheusBar\bar\3.bin\MORPHBAR.DLL [2007-06-04 11:00]
{6F3F46F8-A91B-DB94-1B1B-FB8DCB57D5CF}=C:\WINDOWS\system32\djgdbj.dll []
{A6807262-1D7A-44AB-947B-23B71E97915C}=C:\WINDOWS\system32\qomkiii.dll []
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}=C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.5672\swg.dll [2007-05-09 08:18]
{D73F49B1-B51B-4d32-A3B7-BD04B8342F53}=C:\Program Files\MorpheusBar\SrchAstt\3.bin\MBSRCAS.DLL [2007-06-04 11:00]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"VSOCheckTask"="c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" [2003-03-21 14:50]
"MCAgentExe"="c:\PROGRA~1\mcafee.com\agent\mcagent.exe" [2003-03-18 15:53]
"MCUpdateExe"="C:\PROGRA~1\mcafee.com\agent\McUpdate.exe" [2003-08-04 20:25]
"MPFExe"="C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe" [2003-07-02 21:32]
"Repair Registry Pro"="C:\Program Files\Repair Registry Pro\RepairRegistryPro.exe" []
"VirusScan Online"="c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe" [2003-03-21 14:52]
"HostManager"="C:\Program Files\Common Files\AOL\1145125183\ee\AOLSoftware.exe" [2006-05-09 19:24]
"ViewMgr"="C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe" [2007-01-04 16:38]
"Adobe Photo Downloader"="C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" [2005-06-07 01:46]
"IPHSend"="C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe" [2006-02-17 11:59]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-02-20 20:18]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2006-10-28 12:38]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-04-27 09:41]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2007-05-26 12:45]
"ClamWin"="C:\Program Files\ClamWin\bin\ClamTray.exe" [2007-05-27 20:48]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2004-10-13 11:24]
"Aim6"="C:\Program Files\Common Files\AOL\Launch\AOLLaunch.exe" [2006-05-09 19:24]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-04-02 20:14]
[HKEY_USERS\.default\software\microsoft\windows\currentversion\runonce]
"RunNarrator"=Narrator.exe
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"AllowLegacyWebView"=1 (0x1)
"AllowUnhashedWebView"=1 (0x1)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll" [2007-07-02 22:40]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BJCFD]
C:\Program Files\BroadJump\Client Foundation\CFD.exe
Contents of the 'Scheduled Tasks' folder
2007-06-30 01:03:13 C:\WINDOWS\tasks\AppleSoftwareUpdate.job
2007-07-03 03:59:20 C:\WINDOWS\tasks\McAfee.com Update Check (FAMILY-Mike).job
2007-07-03 03:57:00 C:\WINDOWS\tasks\McAfee.com Update Check (MIKE-C7MGGZWNUB-Mike).job
**************************************************************************
catchme 0.3.721 W2K/XP/Vista - userland rootkit detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-07-02 22:59:10
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes …
scanning hidden autostart entries …
scanning hidden files …
**************************************************************************
Completion time: 2007-07-02 23:02:47 - machine was rebooted
C:\ComboFix-quarantined-files.txt … 2007-07-02 23:02
C:\ComboFix2.txt … 2007-07-02 16:15
— E O F —
(((((((((((((((((((((((((((((((((((((((((((( V Log )))))))))))))))))))))))))))))))))))))))))))))))))))))))
C:\WINDOWS\system32\jjjlm.bak1
C:\WINDOWS\system32\jjjlm.ini
C:\WINDOWS\system32\mljjj.dll
* * * POST RUN FILES/FOLDERS * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\DOCUME~1\ALLUSE~1\APPLIC~1\dyfmvipo.exe
C:\DOCUME~1\ALLUSE~1\APPLIC~1\xiladgte.exe
C:\DOCUME~1\Mike\APPLIC~1\xxx.exe
C:\WINDOWS\system32\arpl.exe
C:\WINDOWS\system32\baeyyksx.dll
C:\WINDOWS\system32\djgdbj.dll
C:\WINDOWS\system32\gebxxwu.dll
C:\WINDOWS\system32\iiffdde.dll
C:\WINDOWS\system32\kedkbbhq.exe
C:\WINDOWS\system32\ljtgworb.exe
C:\WINDOWS\system32\mljjihi.dll
C:\WINDOWS\system32\qomkiii.dll
C:\WINDOWS\system32\skoxudrk.dll
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
——-\LEGACY_DOMAINSERVICE
——-\DomainService
((((((((((((((((((((((((( Files Created from 2007-06-03 to 2007-07-03 )))))))))))))))))))))))))))))))
2007-06-28 20:18 d——– C:\DOCUME~1\Mike\APPLIC~1\.clamwin
2007-06-28 20:18 d——– C:\DOCUME~1\ALLUSE~1\.clamwin
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-07-03 04:01:16 ——– d—–w C:\DOCUME~1\Mike\APPLIC~1\Xfire
2007-07-03 04:00:17 ——– d-s—w C:\Program Files\Xfire
2007-07-02 10:15:29 ——– d—–w C:\Program Files\Zoom Player
2007-06-30 00:37:08 ——– d–h–w C:\Program Files\WindowsUpdate
2007-06-30 00:33:14 ——– d—–w C:\Program Files\Morpheus
2007-06-29 01:32:12 ——– d—–w C:\DOCUME~1\Mike\APPLIC~1\ultra
2007-06-29 01:26:02 ——– d—–w C:\DOCUME~1\Mike\APPLIC~1\.clamwin
2007-06-04 16:00:40 ——– d—–w C:\Program Files\MorpheusBar
2007-06-02 01:23:55 ——– d—–w C:\Program Files\iTunes
2007-06-02 01:23:47 ——– d—–w C:\Program Files\iPod
2007-05-26 14:18:23 ——– d—–w C:\Program Files\QuickTime
2007-05-23 01:45:06 ——– d—–w C:\Program Files\Common Files\AOL
2007-05-23 01:44:51 ——– d—–w C:\Program Files\Yahoo!
2007-05-23 01:42:20 ——– d–h–w C:\Program Files\InstallShield Installation Information
2007-05-22 21:52:08 ——– d—–w C:\Program Files\Common Files\Wise Installation Wizard
2007-05-22 20:34:49 ——– d—–w C:\Program Files\AIM
2007-05-22 20:32:58 ——– d—–w C:\Program Files\AOD
2007-05-20 19:46:02 1,417 -c–a-w C:\WINDOWS\eReg.dat
2007-05-20 19:41:53 ——– d—–w C:\Program Files\EA GAMES
2007-05-19 00:38:59 ——– d—–w C:\DOCUME~1\Mike\APPLIC~1\iPodder
2007-05-16 15:12:02 683,520 —-a-w C:\WINDOWS\system32\inetcomm.dll
2007-05-14 21:40:11 21,840 —-atw C:\WINDOWS\system32\SIntfNT.dll
2007-05-14 21:40:11 17,212 —-atw C:\WINDOWS\system32\SIntf32.dll
2007-05-14 21:40:11 12,067 —-atw C:\WINDOWS\system32\SIntf16.dll
2007-05-12 18:18:46 ——– d—–w C:\Program Files\Combined Community Codec Pack
2007-05-12 17:45:51 ——– d—–w C:\DOCUME~1\Mike\APPLIC~1\Media Player Classic
2007-05-12 15:53:18 ——– d—–w C:\Program Files\FileZilla
2007-05-11 19:56:06 ——– d—–w C:\Program Files\BitTorrent
2007-05-10 23:23:18 ——– d—–w C:\DOCUME~1\Mike\APPLIC~1\PrivacyProtector Free
2007-05-10 23:02:08 ——– d—–w C:\Program Files\Tunebite
2007-05-10 09:56:47 ——– d—–w C:\DOCUME~1\Mike\APPLIC~1\tunebite
2007-05-10 08:13:54 322,872 —-a-w C:\DOCUME~1\Mike\APPLIC~1\privprotect.exe
2007-05-08 20:44:49 ——– d—–w C:\Program Files\AviSynth 2.5
2007-05-08 20:44:03 ——– d—–w C:\Program Files\eRightSoft
2007-04-25 14:21:15 144,896 —-a-w C:\WINDOWS\system32\schannel.dll
2007-04-18 16:12:23 2,854,400 —-a-w C:\WINDOWS\system32\msi.dll
2007-04-17 03:47:36 33,624 —-a-w C:\WINDOWS\system32\wups.dll
2007-04-17 03:45:54 1,710,936 —-a-w C:\WINDOWS\system32\wuaueng.dll
2007-04-17 03:45:48 549,720 —-a-w C:\WINDOWS\system32\wuapi.dll
2007-04-17 03:45:42 325,976 —-a-w C:\WINDOWS\system32\wucltui.dll
2007-04-17 03:45:36 203,096 —-a-w C:\WINDOWS\system32\wuweb.dll
2007-04-17 03:45:28 92,504 —-a-w C:\WINDOWS\system32\cdm.dll
2007-04-17 03:45:20 53,080 —-a-w C:\WINDOWS\system32\wuauclt.exe
2007-04-17 03:45:20 43,352 —-a-w C:\WINDOWS\system32\wups2.dll
2007-04-12 10:45:28 237,568 —-a-w C:\Program Files\Uninstall Morpheus Toolbar.dll
2005-05-13 22:12:00 217,073 –sha-r C:\WINDOWS\meta4.exe
2005-10-24 16:13:58 66,560 –sha-r C:\WINDOWS\MOTA113.exe
2005-10-14 02:27:00 422,400 –sha-r C:\WINDOWS\x2.64.exe
2005-10-08 00:14:52 308,224 –sha-r C:\WINDOWS\system32\avisynth.dll
2005-07-14 17:31:20 27,648 –sha-r C:\WINDOWS\system32\AVSredirect.dll
2005-06-26 20:32:28 616,448 –sha-r C:\WINDOWS\system32\cygwin1.dll
2005-06-22 03:37:42 45,568 –sha-r C:\WINDOWS\system32\cygz.dll
2004-01-25 05:00:00 70,656 –sha-r C:\WINDOWS\system32\i420vfw.dll
2006-04-27 15:24:24 2,945,024 –sha-r C:\WINDOWS\system32\Smab.dll
2005-02-28 18:16:22 240,128 –sha-r C:\WINDOWS\system32\x.264.exe
2004-01-25 05:00:00 70,656 –sha-r C:\WINDOWS\system32\yv12vfw.dll
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
{1F6581D5-AA53-4b73-A6F9-41420C6B61F1}=C:\WINDOWS\system32\skoxudrk.dll []
{3F3714A1-89A4-46be-8AF3-D0C9D1FB03F9}=C:\Program Files\MorpheusBar\bar\3.bin\MORPHBAR.DLL [2007-06-04 11:00]
{6F3F46F8-A91B-DB94-1B1B-FB8DCB57D5CF}=C:\WINDOWS\system32\djgdbj.dll []
{A6807262-1D7A-44AB-947B-23B71E97915C}=C:\WINDOWS\system32\qomkiii.dll []
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}=C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.5672\swg.dll [2007-05-09 08:18]
{D73F49B1-B51B-4d32-A3B7-BD04B8342F53}=C:\Program Files\MorpheusBar\SrchAstt\3.bin\MBSRCAS.DLL [2007-06-04 11:00]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"VSOCheckTask"="c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" [2003-03-21 14:50]
"MCAgentExe"="c:\PROGRA~1\mcafee.com\agent\mcagent.exe" [2003-03-18 15:53]
"MCUpdateExe"="C:\PROGRA~1\mcafee.com\agent\McUpdate.exe" [2003-08-04 20:25]
"MPFExe"="C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe" [2003-07-02 21:32]
"Repair Registry Pro"="C:\Program Files\Repair Registry Pro\RepairRegistryPro.exe" []
"VirusScan Online"="c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe" [2003-03-21 14:52]
"HostManager"="C:\Program Files\Common Files\AOL\1145125183\ee\AOLSoftware.exe" [2006-05-09 19:24]
"ViewMgr"="C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe" [2007-01-04 16:38]
"Adobe Photo Downloader"="C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" [2005-06-07 01:46]
"IPHSend"="C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe" [2006-02-17 11:59]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-02-20 20:18]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2006-10-28 12:38]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-04-27 09:41]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2007-05-26 12:45]
"ClamWin"="C:\Program Files\ClamWin\bin\ClamTray.exe" [2007-05-27 20:48]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2004-10-13 11:24]
"Aim6"="C:\Program Files\Common Files\AOL\Launch\AOLLaunch.exe" [2006-05-09 19:24]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-04-02 20:14]
[HKEY_USERS\.default\software\microsoft\windows\currentversion\runonce]
"RunNarrator"=Narrator.exe
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"AllowLegacyWebView"=1 (0x1)
"AllowUnhashedWebView"=1 (0x1)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll" [2007-07-02 22:40]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BJCFD]
C:\Program Files\BroadJump\Client Foundation\CFD.exe
Contents of the 'Scheduled Tasks' folder
2007-06-30 01:03:13 C:\WINDOWS\tasks\AppleSoftwareUpdate.job
2007-07-03 04:04:00 C:\WINDOWS\tasks\McAfee.com Update Check (FAMILY-Mike).job
2007-07-03 04:02:00 C:\WINDOWS\tasks\McAfee.com Update Check (MIKE-C7MGGZWNUB-Mike).job
**************************************************************************
catchme 0.3.721 W2K/XP/Vista - userland rootkit detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-07-02 23:03:25
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes …
scanning hidden autostart entries …
scanning hidden files …
**************************************************************************
Completion time: 2007-07-02 23:05:09 - machine was rebooted
C:\ComboFix-quarantined-files.txt … 2007-07-02 23:05
C:\ComboFix2.txt … 2007-07-02 16:15
— E O F —