hey tom you guys sleep or what! how badly infected is my computer

, here are the reports from CF and lopr
thanx Rhys
ComboFix 08-12-06.06 - Rhys Burton 2008-12-07 22:17:29.4 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.206 [GMT 0:00]
Running from: c:\documents and settings\[removed]\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\Rhys Burton\Desktop\CFScript.txt
* Created a new restore point
FILE ::
c:\program files\MSN Messenger\msimg32.dll
c:\program files\MSN Messenger\riched20.dll
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\Preview-T-2493790-Belinda Carlisle - In My Wildest Dreams (from Mannequin).mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\Preview-T-2918571-Crosby, Stills, Nash, and Young - Our House.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\Preview-T-3731540-The Fast And The Furious (Tokyo Drift) Soundtrack - 15. Gritz - My Life Be Like.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\Preview-T-3747508-Godley & Cream - Cry (Soundtrack Miami Vice).mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\Preview-T-4162038-Gary Moore & Phil Lynott - Out In The Fields.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\Preview-T-5035832-Lucky Jim - You're Lovely To Me(2).mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\Preview-T-5326921-Rocky 4 Soundtrack - Sweetest Victory1.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\Preview-T-5745425-in my wildest dreams belinda.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\Preview-T-6592364-Red 7 - Heartbeat - Miami Vice and Manhunter Soundtrack.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\Preview-T-6999249-Miami Vice Soundtrack - 09 - Emilio Estefan - Pennies in my Pocket.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-10219814-02 Pink - Sober.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-10996551-11. This Afternoon.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-1106629-Deacon Blue - Love Hurts.wma
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-11168175-LA Guns-American Hardcore-I Am Alive.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-1177624-Sugarland - Tennessee.MP3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-1504330-01 Born In A Storm.m4a
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-1860487-Sugarland - The Ride.MP3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-1907025-LA Guns - I'm Addicted.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-1984556-Beachboys - Daddy Took The T-Bird Away1.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-2008767-BeachBoys - Let's go Surfing now.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-2144113-Katy Perry - I Kissed A Girl(1).mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-2144113-Katy Perry - I Kissed A Girl.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-2149388-Pink - Please Don't Leave Me.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-2178096-Movie Soundtracks - Rocky Going the Distance.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-233179-LA Guns-American Hardcore-F.N.A..mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-2586752-Sugarland - Mean Girls(1).mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-2589668-13 Kings Of The Western World.m4a
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-2674099-LA Guns-American Hardcore-Next Generation.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-2774969-Nickelback - Fly.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-2994849-LA Guns - One More Reason.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3026079-13. The Beachboys - Help Me Rhonda.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3045692-01 Track 1 (soundtrack).wma
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3046819-03 Ragman.m4a
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3077979-Deacon Blue - Wages Day.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3156149-Jan Hammer - Chase (Miami Vice Soundtrack).mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3226768-LA Guns - Cocked & Loaded.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3233333-LA Guns-American Hardcore-Hugs And Needles.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3314085-LA Guns - Revolution.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3344658-Nickelback - Here Without You.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3407734-Petula Clark - Color My World.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3438636-Deacon Blue - Twist And Shout.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3453144-LA Guns - Some Lie 4 Love.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3462304-LA Guns - Some Lie for Love.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3475359-09 The Very Thing.m4a
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3475748-Queen - Princes of the Universe (Highlander Main Song).mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3476930-beachboys - good vibrations.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3483776-LA Guns - I Wanna Be Your Man.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3509689-LA Guns - City of Angels.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3545923-LA Guns - 17 Crash.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3576442-LA Guns - I Found You.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3593273-LA Guns-American Hardcore-Give.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3597019-10 Love's Great Fears.m4a
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3652247-Gary Moore - Spanish Guitar (Instrumental).mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3701681-LA Guns-American Hardcore-What I've Become.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3739133-04 He Looks Like Spencer Tracy Now.m4a
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3759541-Rod Stewart - The Way You Look Tonight(1).mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3767528-Faith Hill - I Hope You Dance.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3842776-Nickelback - breathe.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3850242-LA Guns-American Hardcore-Mine.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3871219-David Bowie & Queen - Under Pressure.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3907712-Bodycount - There Goes the Neighborhood.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3926016-Gary Moore - Need your love so bad.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3951807-LA Guns - Sleazy Come Easy Go.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-3954688-rocky 4 soundtrack - desire.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4019223-Faith Hill - Breathe.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4044623-LA Guns - Never enough(1).mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4072375-LA Guns - Rip And Tear.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4073150-Rod Stewart - Hot Legs.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4148917-LA Guns - ###### is back.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4172705-Faith Hill & Tim Mcgraw - Like We Never Loved At All(1).mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4179301-Queen - One Year Of Love.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4208640-Nickelback - Never Again(1).mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4247648-Deacon Blue - Bound to Love 1994.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4249984-rocky 4 soundtrack - Sweetest Victory.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4258268-LA Guns-American Hardcore-Pissed.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4262366-LA Guns-American Hardcore-Don't Pray.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4342150-LA Guns - Dirty Luv.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4368495-LA Guns-American Hardcore-Unnatural Act.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4368768-LA Guns - What Happened to Jane.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4381169-The Stumble.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4406526-319 - Bodyrox feat. Luciana - Yeah Yeah.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4453101-All Your Love.wma
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4456238-U2 - I Still Haven't Found What I'm Looking For.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4471518-Ice-T & Bodycount - Cop Killer.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4542592-Rod Stewart - We're Having A Party.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4563072-Bryan Adams, Rod Stewart, & Sting - All For Love.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4592578-LA Guns - Man In The Moon.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4854221-LA Guns - Showdown (Riot On Sunset).MP3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4863982-LimeWire_Pro_4.13.8_Cracked.sfx.exe
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4884933-06 When Will You (Make My Telephone.m4a
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4886002-LA Guns - Hell Raiser.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4919621-LA Guns-American Hardcore-Kevorkian.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4945920-Rocky 4 Soundtrack - The Final Countdown.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-4980092-Moby-Anthem.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5016799-01 Deacon Blue - Your Town [Perfecto Mix].mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5035832-Lucky Jim - You're Lovely To Me.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5130539-Over the Hills & Far away.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5152708-11 Town To Be Blamed.m4a
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5154701-Flying In A Blue Dream.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5207648-Pink - So What.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5226639-LA Guns - Malaria.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5283968-Kate Perry - Hot N Cold.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5283968-Katy Perry - Hot N Cold(1).mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5285333-LA Guns - Lost In The City Of Angels.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5333631-Oh, Pretty Woman.wma
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5388207-Faith Hill - Cry.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5493248-Pink - Funhouse - 12 - Glitter In The Air.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5612188-Pink - Funhouse - 10 - It's All Your Fault.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5640192-LA Guns - Crystal Eyes.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5745425-manic street preachers cardiga.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5830719-Rod Stewart & Jeff Beck - People Get Ready.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5860112-U2 - Beautiful Day.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-5913817-Bodycount - Another Gun Fight.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-6027146-Jefferson Starship - Jane.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-6113115-Nickelback - Rockstar.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-6233180-Pink - Funhouse - 09 - Mean.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-6735651-Sugarland - Just Might (Make Me Believe).mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-6946866-Picture of the moon.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-7243904-Deacon Blue - 06-This Changing Light.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-7579648-Lucky Jim - You're Lovely To Me(1).mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-9482428-09-Gary Moore-Ready For Love.mp3
c:\documents and settings\Rhys Burton\My Documents\LimeWire\Incomplete\T-9693563-06. Just To Get High.mp3
c:\program files\MSN Messenger\msimg32.dll
c:\program files\MSN Messenger\riched20.dll
.
((((((((((((((((((((((((( Files Created from 2008-11-07 to 2008-12-07 )))))))))))))))))))))))))))))))
.
2008-12-07 06:46 . 2008-12-07 06:46 d——– c:\documents and settings\All Users\Application Data\NortonInstaller
2008-12-07 05:54 . 2008-12-07 05:54 d——– c:\program files\Malwarebytes' Anti-Malware
2008-12-07 05:54 . 2008-12-07 05:54 d——– c:\documents and settings\Rhys Burton\Application Data\Malwarebytes
2008-12-07 05:54 . 2008-12-07 05:54 d——– c:\documents and settings\All Users\Application Data\Malwarebytes
2008-12-07 05:54 . 2008-12-03 19:54 38,496 –a—— c:\windows\system32\drivers\mbamswissarmy.sys
2008-12-07 05:54 . 2008-12-03 19:54 15,504 –a—— c:\windows\system32\drivers\mbam.sys
2008-12-06 23:51 . 2008-12-06 23:51 d–h—– c:\windows\PIF
2008-12-06 20:00 . 2008-12-06 20:00 578,560 –a—— c:\windows\system32\dllcache\user32.dll
2008-12-06 19:58 . 2008-12-06 19:58 d——– c:\windows\ERUNT
2008-12-06 19:54 . 2008-12-06 23:49 7,168 –ahs—- c:\windows\Thumbs.db
2008-12-06 19:44 . 2008-12-06 20:10 d——– C:\SDFix
2008-12-05 01:13 . 2008-12-05 01:13 d——– c:\program files\Trend Micro
2008-11-30 01:29 . 2008-12-02 21:17 d——– c:\documents and settings\Rhys Burton\Application Data\Azureus
2008-11-30 01:29 . 2008-11-30 01:29 d——– c:\documents and settings\All Users\Application Data\Azureus
2008-11-12 17:41 . 2008-10-24 11:21 455,296 ——— c:\windows\system32\dllcache\mrxsmb.sys
2008-11-12 17:39 . 2008-09-04 17:15 1,106,944 ——— c:\windows\system32\dllcache\msxml3.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-12-07 22:18 ——— d—–w c:\program files\MSN Messenger
2008-12-07 12:54 ——— d—–w c:\program files\LimeWire
2008-12-07 06:47 ——— d—–w c:\program files\Common Files\Symantec Shared
2008-12-03 18:30 ——— d—–w c:\program files\Java
2008-12-02 21:18 ——— d—a-w c:\program files\Spybot - Search & Destroy
2008-12-02 21:18 ——— d—–w c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2008-11-30 17:37 ——— d—–w c:\documents and settings\Rhys Burton\Application Data\LimeWire
2008-11-13 22:36 ——— d—–w c:\program files\DivX
2008-11-12 17:43 ——— d—–w c:\documents and settings\Rhys Burton\Application Data\Canon
2008-11-10 05:43 410,984 —-a-w c:\windows\system32\deploytk.dll
2008-11-09 13:53 ——— d—–w c:\program files\Common Files\AVSMedia
2008-11-09 13:53 ——— d—–w c:\program files\AVS4YOU
2008-11-06 21:16 ——— d—–w c:\documents and settings\Rhys Burton\Application Data\AVS4YOU
2008-11-06 21:16 ——— d—–w c:\documents and settings\All Users\Application Data\AVS4YOU
2008-10-28 22:36 823,296 —-a-w c:\windows\system32\divx_xx0c.dll
2008-10-28 22:36 823,296 —-a-w c:\windows\system32\divx_xx07.dll
2008-10-28 22:35 815,104 —-a-w c:\windows\system32\divx_xx0a.dll
2008-10-28 22:35 802,816 —-a-w c:\windows\system32\divx_xx11.dll
2008-10-28 22:35 684,032 —-a-w c:\windows\system32\DivX.dll
2008-10-24 11:21 455,296 —-a-w c:\windows\system32\drivers\mrxsmb.sys
2008-10-16 14:13 202,776 —-a-w c:\windows\system32\wuweb.dll
2008-10-16 14:13 202,776 —-a-w c:\windows\system32\dllcache\wuweb.dll
2008-10-16 14:13 1,809,944 —-a-w c:\windows\system32\wuaueng.dll
2008-10-16 14:13 1,809,944 —-a-w c:\windows\system32\dllcache\wuaueng.dll
2008-10-16 14:12 561,688 —-a-w c:\windows\system32\wuapi.dll
2008-10-16 14:12 561,688 —-a-w c:\windows\system32\dllcache\wuapi.dll
2008-10-16 14:12 323,608 —-a-w c:\windows\system32\wucltui.dll
2008-10-16 14:12 323,608 —-a-w c:\windows\system32\dllcache\wucltui.dll
2008-10-16 14:09 92,696 —-a-w c:\windows\system32\dllcache\cdm.dll
2008-10-16 14:09 92,696 —-a-w c:\windows\system32\cdm.dll
2008-10-16 14:09 51,224 —-a-w c:\windows\system32\wuauclt.exe
2008-10-16 14:09 51,224 —-a-w c:\windows\system32\dllcache\wuauclt.exe
2008-10-16 14:09 43,544 —-a-w c:\windows\system32\wups2.dll
2008-10-16 14:08 34,328 —-a-w c:\windows\system32\wups.dll
2008-10-16 14:08 34,328 —-a-w c:\windows\system32\dllcache\wups.dll
2008-10-16 14:06 268,648 —-a-w c:\windows\system32\mucltui.dll
2008-10-16 14:06 208,744 —-a-w c:\windows\system32\muweb.dll
2008-10-15 16:34 337,408 ——w c:\windows\system32\dllcache\netapi32.dll
2008-10-08 12:43 ——— d—–w c:\documents and settings\Rhys Burton\Application Data\OpenOffice.org2
2008-10-08 12:40 ——— d—–w c:\program files\Microsoft Works
2008-09-30 16:43 1,286,152 —-a-w c:\windows\system32\msxml4.dll
2008-09-25 08:03 81,920 —-a-w c:\windows\system32\dpl100.dll
2008-09-25 08:03 593,920 —-a-w c:\windows\system32\dpuGUI11.dll
2008-09-25 08:03 57,344 —-a-w c:\windows\system32\dpv11.dll
2008-09-25 08:03 53,248 —-a-w c:\windows\system32\dpuGUI10.dll
2008-09-25 08:03 524,288 —-a-w c:\windows\system32\DivXsm.exe
2008-09-25 08:03 344,064 —-a-w c:\windows\system32\dpus11.dll
2008-09-25 08:03 294,912 —-a-w c:\windows\system32\dpu11.dll
2008-09-25 08:03 294,912 —-a-w c:\windows\system32\dpu10.dll
2008-09-25 08:03 196,608 —-a-w c:\windows\system32\dtu100.dll
2008-09-25 08:03 161,096 —-a-w c:\windows\system32\DivXCodecVersionChecker.exe
2008-09-19 21:57 3,596,288 —-a-w c:\windows\system32\qt-dx331.dll
2008-09-19 21:55 200,704 —-a-w c:\windows\system32\ssldivx.dll
2008-09-19 21:55 1,044,480 —-a-w c:\windows\system32\libdivx.dll
2008-09-19 21:54 12,288 —-a-w c:\windows\system32\DivXWMPExtType.dll
2008-09-15 12:12 1,846,400 —-a-w c:\windows\system32\win32k.sys
2008-09-15 12:12 1,846,400 ——w c:\windows\system32\dllcache\win32k.sys
2008-09-10 01:14 1,307,648 —-a-w c:\windows\system32\msxml6.dll
2008-09-10 01:14 1,307,648 ——w c:\windows\system32\dllcache\msxml6.dll
2008-09-08 10:41 333,824 ——w c:\windows\system32\dllcache\srv.sys
.
((((((((((((((((((((((((((((( snapshot@2008-12-04_15.23.38.09 )))))))))))))))))))))))))))))))))))))))))
.
+ 2008-08-07 15:27:04 163,328 —-a-w c:\windows\ERUNT\SDFIX\ERDNT.EXE
+ 2008-12-06 19:58:42 8,957,952 —-a-w c:\windows\ERUNT\SDFIX\Users\
00000001\NTUSER.DAT
+ 2008-12-06 19:58:42 176,128 —-a-w c:\windows\ERUNT\SDFIX\Users\
00000002\UsrClass.dat
+ 2008-08-07 15:27:04 163,328 —-a-w c:\windows\ERUNT\SDFIX_First_Run\ERDNT.EXE
+ 2008-12-06 19:58:27 8,957,952 —-a-w c:\windows\ERUNT\SDFIX_First_Run\Users\
00000001\NTUSER.DAT
+ 2008-12-06 19:58:27 176,128 —-a-w c:\windows\ERUNT\SDFIX_First_Run\Users\
00000002\UsrClass.dat
+ 2008-12-07 19:03:19 16,384 —-atw c:\windows\Temp\Perflib_Perfdata_3f4.dat
+ 2008-12-07 19:03:27 16,384 —-atw c:\windows\Temp\Perflib_Perfdata_4f0.dat
+ 2008-12-07 19:03:15 16,384 —-atw c:\windows\Temp\Perflib_Perfdata_6a8.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PcSync"="c:\program files\Nokia\Nokia PC Suite 6\PcSync2.exe" [2006-06-27 1449984]
"NBJ"="c:\program files\Ahead\Nero BackItUp\NBJ.exe" [2005-10-11 1961984]
"TuneUp MemOptimizer"="c:\program files\TuneUp Utilities 2007\MemOptimizer.exe" [BU]
"MsnMsgr"="c:\program files\Windows Live\Messenger\MsnMsgr.Exe" [BU]
"Veoh"="c:\program files\Veoh Networks\Veoh\VeohClient.exe" [2008-09-26 3660848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Adobe Photo Downloader"="c:\program files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" [2005-06-06 57344]
"Omnipage"="c:\program files\ScanSoft\OmniPageSE\opware32.exe" [2002-06-03 49152]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2008-05-27 413696]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2007-02-23 180269]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2008-11-26 81000]
"MPFExe"="c:\progra~1\McAfee.com\PERSON~1\MpfTray.exe" [2003-08-18 1048576]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 39792]
"HPDJ Taskbar Utility"="c:\windows\system32\spool\drivers\w32x86\3\hpztsb04.exe" [2001-11-01 196608]
"NSLauncher"="c:\program files\Nokia\Nokia Software Launcher\NSLauncher.exe" [2006-11-28 2658304]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2008-11-10 136600]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"VTTimer"="VTTimer.exe" [2005-03-08 c:\windows\system32\VTTimer.exe]
"VTTrayp"="VTtrayp.exe" [2005-11-01 c:\windows\system32\VTTrayp.exe]
"SMSERIAL"="sm56hlpr.exe" [2005-11-10 c:\windows\sm56hlpr.exe]
"SoundMan"="SOUNDMAN.EXE" [2006-06-20 c:\windows\SOUNDMAN.EXE]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Start Menu\Programs\Startup\
Adobe Gamma Loader.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2008-04-14 113664]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"msacm.ac3filter"= ac3filter.acm
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"Veoh"="c:\program files\Veoh Networks\Veoh\VeohClient.exe" /VeohHide
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Veoh Networks\\Veoh\\VeohClient.exe"=
"c:\\Program Files\\ScanSoft\\OmniPageSE\\EregEng\\NAVBrowser.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\WINDOWS\\system32\\ftp.exe"=
"c:\\Program Files\\Alwil Software\\Avast4\\ashWebSv.exe"=
[HKLM\~\Services\\ServiceLayer.exe"=]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"17176:TCP"= 17176:TCP:*:Disabled:BitComet 17176 TCP
"17176:UDP"= 17176:UDP:*:Disabled:BitComet 17176 UDP
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2008-04-01 111184]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\DRIVERS\aswFsBlk.sys [2008-04-01 20560]
R2 NwSapAgent;SAP Agent;c:\windows\system32\svchost.exe -k netsvcs [2006-02-13 14336]
R3 EKBfltr;ENE Keyboard Controller;c:\windows\system32\DRIVERS\EKBfltr.sys [2006-10-19 5504]
.
Contents of the 'Scheduled Tasks' folder
2008-10-24 c:\windows\Tasks\1-Click Maintenance.job
- c:\program files\TuneUp Utilities 2007\SystemOptimizer.exe []
.
.
——- Supplementary Scan ——-
.
uStart Page = hxxp://www.google.com
mStart Page = hxxp://www.google.com
uSearchURL,(Default) = hxxp://search.aol.co.uk/web?isinit=true&query;=%s
IE: &AOL; Toolbar search - c:\program files\AOL Toolbar\toolbar.dll/SEARCH.HTML
IE: &Search; - ?p=ZJxdm088YYGB
IE: E&xport; to Microsoft Excel - c:\progra~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
IE: Easy-WebPrint Add To Print List - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
IE: Easy-WebPrint High Speed Print - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
IE: Easy-WebPrint Preview - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
IE: Easy-WebPrint Print - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
FireFox -: Profile - c:\documents and settings\Rhys Burton\Application Data\Mozilla\Firefox\Profiles\x6p5wuyv.default\
FireFox -: prefs.js - SEARCH.DEFAULTURL - hxxp://www.google.com/search?lr=&ie;=UTF-8&oe;=UTF-8&q;=
FF -: plugin - c:\program files\Java\jre6\bin\new_plugin\npdeploytk.dll
FF -: plugin - c:\program files\Java\jre6\bin\new_plugin\npjp2.dll
FF -: plugin - c:\program files\Mozilla Firefox\plugins\npdeploytk.dll
FF -: plugin - c:\program files\Mozilla Firefox\plugins\NPStreamPlug.dll
FF -: plugin - c:\program files\Veoh Networks\Veoh\Plugins\noreg\NPVeohVersion.dll
FF -: plugin - c:\program files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-12-07 22:19:57
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes …
scanning hidden autostart entries …
scanning hidden files …
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-12-07 22:21:26
ComboFix-quarantined-files.txt 2008-12-07 22:20:44
ComboFix2.txt 2008-12-07 16:03:08
ComboFix3.txt 2008-12-07 07:07:50
ComboFix4.txt 2008-12-04 15:30:48
Pre-Run: 37,684,518,912 bytes free
Post-Run: 37,723,410,432 bytes free
326 — E O F — 2008-11-12 18:29:24
——————–\\ Lop S&D; 4.2.4-9c XP/Vista
Microsoft Windows XP Home Edition ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel® Celeron® M CPU 430 @ 1.73GHz )
BIOS : Phoenix NoteBIOS 4.0 Release 6.1
USER : Rhys Burton ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1296 [VPS 081206-0] 4.8.1296 (Not Activated)
C:\ (Local Disk) - NTFS - Total:55 Go (Free:35 Go)
D:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 01-11-2008|16:30 )
Option : [1] ( 07/12/2008|22:27 )
——————–\\ Listing folders in APPLIC~1
[21/10/2007|10:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[01/03/2008|16:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[30/05/2007|16:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL Downloads
[01/09/2008|19:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[06/11/2008|21:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[30/11/2008|01:29] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Azureus
[29/09/2007|10:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Channel4
[24/07/2008|18:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[06/04/2007|22:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[16/04/2008|19:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Installations
[19/10/2007|18:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kontiki
[15/03/2007|13:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macromedia
[07/12/2008|05:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[21/09/2008|18:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[16/04/2008|19:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nokia
[07/12/2008|06:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NortonInstaller
[11/03/2008|16:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PC Drivers HeadQuarters
[09/01/2008|12:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PC Suite
[23/02/2007|21:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[14/02/2006|02:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[06/04/2007|22:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[02/12/2008|21:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[22/01/2007|19:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanAppDataDir
[22/01/2007|19:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanWizard
[17/11/2007|20:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\STOPzilla!
[17/11/2007|19:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[03/09/2007|21:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TuneUp Software
[01/08/2007|21:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint
[14/02/2007|21:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[19/03/2008|19:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[14/02/2006|02:24] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[14/02/2006|02:24] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[14/02/2007|21:49] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[14/02/2006|02:24] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[14/04/2008|17:42] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Adobe
[27/02/2007|22:08] C:\DOCUME~1\RHYSBU~1\APPLIC~1\AdobeAUM
[22/01/2007|18:13] C:\DOCUME~1\RHYSBU~1\APPLIC~1\AdobeUM
[21/06/2008|11:45] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Ahead
[01/03/2008|16:05] C:\DOCUME~1\RHYSBU~1\APPLIC~1\AOL
[18/09/2008|21:34] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Apple Computer
[10/03/2007|17:53] C:\DOCUME~1\RHYSBU~1\APPLIC~1\ArcSoft
[06/11/2008|21:16] C:\DOCUME~1\RHYSBU~1\APPLIC~1\AVS4YOU
[02/12/2008|21:17] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Azureus
[12/11/2008|17:43] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Canon
[14/02/2008|10:58] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Datalayer
[23/07/2007|18:55] C:\DOCUME~1\RHYSBU~1\APPLIC~1\DivX
[06/04/2007|16:13] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Google
[05/02/2007|17:14] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Help
[14/02/2006|02:24] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Identities
[06/03/2007|11:20] C:\DOCUME~1\RHYSBU~1\APPLIC~1\InterVideo
[26/05/2007|09:07] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Kontiki
[19/03/2007|12:20] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Lavasoft
[08/02/2007|20:53] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Leadertech
[30/11/2008|17:37] C:\DOCUME~1\RHYSBU~1\APPLIC~1\LimeWire
[11/10/2007|10:38] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Macromedia
[07/12/2008|05:54] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Malwarebytes
[23/01/2007|19:44] C:\DOCUME~1\RHYSBU~1\APPLIC~1\McAfee.com Personal Firewall
[02/10/2008|00:40] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Microsoft
[05/02/2007|17:05] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Microsoft Web Folders
[30/11/2008|20:32] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Mozilla
[06/02/2008|17:40] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Nokia
[08/07/2008|22:42] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Nokia Multimedia Player
[08/10/2008|12:43] C:\DOCUME~1\RHYSBU~1\APPLIC~1\OpenOffice.org2
[25/04/2008|12:14] C:\DOCUME~1\RHYSBU~1\APPLIC~1\PC Suite
[30/04/2008|15:35] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Real
[22/01/2007|19:02] C:\DOCUME~1\RHYSBU~1\APPLIC~1\ScanSoft
[11/08/2007|21:06] C:\DOCUME~1\RHYSBU~1\APPLIC~1\SecondLife
[03/09/2007|20:19] C:\DOCUME~1\RHYSBU~1\APPLIC~1\SlySoft
[27/02/2007|17:05] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Sun
[21/10/2007|15:39] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Sunbelt Software
[23/02/2007|17:35] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Talkback
[22/01/2007|18:17] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Teleca
[20/02/2007|15:58] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Template
[03/09/2007|21:22] C:\DOCUME~1\RHYSBU~1\APPLIC~1\TuneUp Software
[30/10/2007|13:48] C:\DOCUME~1\RHYSBU~1\APPLIC~1\U3
[01/08/2007|21:12] C:\DOCUME~1\RHYSBU~1\APPLIC~1\Viewpoint
[22/01/2007|22:04] C:\DOCUME~1\RHYSBU~1\APPLIC~1\You've Got Pictures Screensaver
——————–\\ Scheduled Tasks located in C:\WINDOWS\Tasks
[24/10/2008 16:15][–a——] C:\WINDOWS\tasks\1-Click Maintenance.job
[07/12/2008 22:21][–ah—–] C:\WINDOWS\tasks\SA.DAT
[04/08/2004 12:00][-rah—–] C:\WINDOWS\tasks\desktop.ini
——————–\\ Listing Folders in C:\Program Files
[25/03/2008|16:40] C:\Program Files\AC3Filter
[14/04/2008|17:36] C:\Program Files\Adobe
[22/01/2007|17:21] C:\Program Files\Ahead
[27/02/2007|20:53] C:\Program Files\Alwil Software
[09/11/2008|13:53] C:\Program Files\AVS4YOU
[17/04/2008|19:23] C:\Program Files\Canon
[20/06/2008|20:04] C:\Program Files\Cedelia
[07/12/2008|22:19] C:\Program Files\Common Files
[29/08/2007|19:27] C:\Program Files\Crawler
[09/01/2008|12:00] C:\Program Files\DIFX
[15/03/2007|13:26] C:\Program Files\directx
[13/11/2008|22:36] C:\Program Files\DivX
[21/12/2006|06:36] C:\Program Files\ENEKB
[06/02/2008|18:09] C:\Program Files\Google
[06/08/2007|15:21] C:\Program Files\Hewlett-Packard
[05/12/2008|01:12] C:\Program Files\Hijackthis
[13/01/2008|20:18] C:\Program Files\hp deskjet 845c series
[25/06/2008|07:27] C:\Program Files\Huawei technologies
[11/03/2008|17:00] C:\Program Files\InstallShield Installation Information
[03/11/2008|20:49] C:\Program Files\Internet Explorer
[13/01/2008|20:20] C:\Program Files\InterVideo
[03/12/2008|18:30] C:\Program Files\Java
[26/05/2007|09:07] C:\Program Files\KService
[19/03/2007|12:20] C:\Program Files\Lavasoft
[07/12/2008|12:54] C:\Program Files\LimeWire
[15/03/2007|13:23] C:\Program Files\Macromedia
[07/12/2008|05:54] C:\Program Files\Malwarebytes' Anti-Malware
[23/01/2007|19:39] C:\Program Files\McAfee.com
[03/09/2008|01:07] C:\Program Files\Messenger
[21/09/2008|18:40] C:\Program Files\Microsoft ActiveSync
[20/03/2008|14:10] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[05/02/2007|17:05] C:\Program Files\microsoft frontpage
[21/09/2008|18:39] C:\Program Files\Microsoft Office
[08/10/2008|12:40] C:\Program Files\Microsoft Works
[21/09/2008|18:37] C:\Program Files\Microsoft.NET
[03/09/2008|00:57] C:\Program Files\Movie Maker
[07/12/2008|22:21] C:\Program Files\Mozilla Firefox
[14/02/2006|02:24] C:\Program Files\MSN
[14/02/2006|02:24] C:\Program Files\MSN Gaming Zone
[07/12/2008|22:18] C:\Program Files\MSN Messenger
[23/01/2007|10:56] C:\Program Files\MSXML 4.0
[16/04/2008|19:20] C:\Program Files\MSXML 6.0
[03/09/2008|00:50] C:\Program Files\NetMeeting
[24/07/2008|18:01] C:\Program Files\Nokia
[14/02/2006|02:24] C:\Program Files\Online Services
[03/09/2008|00:50] C:\Program Files\Outlook Express
[06/02/2008|18:11] C:\Program Files\Play2 Music
[01/09/2008|19:05] C:\Program Files\QuickTime
[22/01/2007|22:03] C:\Program Files\Real
[22/01/2007|19:02] C:\Program Files\ScanSoft
[06/02/2008|19:55] C:\Program Files\SimpleCenter
[02/12/2008|21:18] C:\Program Files\Spybot - Search & Destroy
[05/12/2008|01:13] C:\Program Files\Trend Micro
[14/02/2006|02:24] C:\Program Files\Uninstall Information
[04/04/2007|16:09] C:\Program Files\Veoh Networks
[22/01/2007|22:04] C:\Program Files\Viewpoint
[24/07/2008|17:39] C:\Program Files\Windows Live Toolbar
[13/01/2008|20:18] C:\Program Files\Windows Media Connect 2
[03/09/2008|00:50] C:\Program Files\Windows Media Player
[03/09/2008|00:50] C:\Program Files\Windows NT
[14/02/2006|02:24] C:\Program Files\WindowsUpdate
[14/02/2006|02:24] C:\Program Files\xerox
——————–\\ Listing Folders in C:\Program Files\Common Files
[14/04/2008|17:36] C:\Program Files\Common Files\Adobe
[22/01/2007|17:21] C:\Program Files\Common Files\Ahead
[09/11/2008|13:53] C:\Program Files\Common Files\AVSMedia
[21/09/2008|18:39] C:\Program Files\Common Files\DESIGNER
[09/01/2008|12:03] C:\Program Files\Common Files\i4j_jres
[06/04/2007|22:38] C:\Program Files\Common Files\InstallShield
[15/03/2007|13:07] C:\Program Files\Common Files\Macromedia
[31/10/2008|03:09] C:\Program Files\Common Files\Microsoft Shared
[14/02/2006|02:24] C:\Program Files\Common Files\MSSoap
[22/01/2007|17:23] C:\Program Files\Common Files\Nero
[24/07/2008|18:00] C:\Program Files\Common Files\Nokia
[22/01/2007|22:04] C:\Program Files\Common Files\Nullsoft
[14/02/2006|02:24] C:\Program Files\Common Files\ODBC
[24/07/2008|18:00] C:\Program Files\Common Files\PCSuite
[23/02/2007|17:35] C:\Program Files\Common Files\Real
[23/01/2007|19:33] C:\Program Files\Common Files\Scanner
[22/01/2007|19:02] C:\Program Files\Common Files\ScanSoft Shared
[17/04/2008|17:26] C:\Program Files\Common Files\Services
[14/02/2006|02:24] C:\Program Files\Common Files\SpeechEngines
[07/12/2008|06:47] C:\Program Files\Common Files\Symantec Shared
[21/09/2008|18:38] C:\Program Files\Common Files\System
[06/02/2008|18:17] C:\Program Files\Common Files\Teleca Shared
[15/03/2007|13:07] C:\Program Files\Common Files\Vbox
[19/03/2008|19:35] C:\Program Files\Common Files\WindowsLiveInstaller
[23/02/2007|17:36] C:\Program Files\Common Files\xing shared
——————–\\ Process
( 41 Processes )
… OK !
——————–\\ Searching with S_Lop
No Lop folder found !
——————–\\ Searching for Lop Files - Folders
C:\DOCUME~1\RHYSBU~1\Cookies\rhys burton@adultfriendfinder[1].txt
C:\DOCUME~1\RHYSBU~1\Cookies\rhys [removed][1].txt
C:\DOCUME~1\RHYSBU~1\Cookies\rhys [removed][1].txt
C:\DOCUME~1\RHYSBU~1\Cookies\rhys burton@partypoker[2].txt
——————–\\ Searching within the Registry
….. OK !
——————–\\ Checking the Hosts file
Hosts file CLEAN
——————–\\ Searching for hidden files with Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-12-07 22:28:07
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes …
scanning hidden files …
scan completed successfully
hidden processes: 0
hidden files: 0
——————–\\ Searching for other infections
No other infections found !
[F:3][D:1]-> C:\DOCUME~1\RHYSBU~1\LOCALS~1\Temp
[F:104][D:0]-> C:\DOCUME~1\RHYSBU~1\Cookies
[F:6][D:4]-> C:\DOCUME~1\RHYSBU~1\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 07/12/2008|22:29 - Option : [1]
——————–\\ Scan completed at 22:29:08