Hey here is my combofix file txt
ComboFix 08-03-21.1 - Wojtek 2008-03-21 15:15:25.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.505 [GMT -7:00]
Running from: C:\Documents and Settings\Wojtek\Desktop\ComboFix.exe
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\All Users\Application Data\Starware381
C:\Documents and Settings\All Users\Application Data\Starware381\buttons\FindIt.bmp
C:\Documents and Settings\All Users\Application Data\Starware381\buttons\FindItHot.bmp
C:\Documents and Settings\All Users\Application Data\Starware381\buttons\findithotxp.png
C:\Documents and Settings\All Users\Application Data\Starware381\buttons\finditxp.png
C:\Documents and Settings\All Users\Application Data\Starware381\buttons\Highlight.bmp
C:\Documents and Settings\All Users\Application Data\Starware381\buttons\HighlightHot.bmp
C:\Documents and Settings\All Users\Application Data\Starware381\buttons\highlighthotxp.png
C:\Documents and Settings\All Users\Application Data\Starware381\buttons\highlightxp.png
C:\Documents and Settings\All Users\Application Data\Starware381\buttons\lyrics.bmp
C:\Documents and Settings\All Users\Application Data\Starware381\buttons\lyrics.png
C:\Documents and Settings\All Users\Application Data\Starware381\buttons\music_search.bmp
C:\Documents and Settings\All Users\Application Data\Starware381\buttons\music_search.png
C:\Documents and Settings\All Users\Application Data\Starware381\buttons\starware_toolbar_icon.bmp
C:\Documents and Settings\All Users\Application Data\Starware381\contexts\error.xml
C:\Documents and Settings\All Users\Application Data\Starware381\contexts\related.xml
C:\Documents and Settings\All Users\Application Data\Starware381\contexts\Travel.xml
C:\Documents and Settings\All Users\Application Data\Starware381\SimpleUpdate\ProductMessagingConf ig.xml
C:\Documents and Settings\All Users\Application Data\Starware381\SimpleUpdate\ProductMessagingConf ig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware381\SimpleUpdate\SimpleUpdateConfig.x ml
C:\Documents and Settings\All Users\Application Data\Starware381\SimpleUpdate\SimpleUpdateConfig.x ml.backup
C:\Documents and Settings\All Users\Application Data\Starware381\SimpleUpdate\TimerManagerConfig.x ml
C:\Documents and Settings\All Users\Application Data\Starware381\SimpleUpdate\TimerManagerConfig.x ml.backup
C:\Documents and Settings\Mallory\Application Data\Starware381
C:\Documents and Settings\Mallory\Application Data\Starware381\BrowserSearch\BrowserSearch.xml
C:\Documents and Settings\Mallory\Application Data\Starware381\BrowserSearch\BrowserSearch.xml.b ackup
C:\Documents and Settings\Mallory\Application Data\Starware381\Configurator\Configurator.xml
C:\Documents and Settings\Mallory\Application Data\Starware381\Configurator\Configurator.xml.bac kup
C:\Documents and Settings\Mallory\Application Data\Starware381\ErrorSearch\ErrorSearchOptions.xm l
C:\Documents and Settings\Mallory\Application Data\Starware381\ErrorSearch\ErrorSearchOptions.xm l.backup
C:\Documents and Settings\Mallory\Application Data\Starware381\Games\GamesOptions.xml
C:\Documents and Settings\Mallory\Application Data\Starware381\Games\GamesOptions.xml.backup
C:\Documents and Settings\Mallory\Application Data\Starware381\Games\images\active\Games0.bmp
C:\Documents and Settings\Mallory\Application Data\Starware381\GenericRSSFeed\GenericRSSFeedOpti ons.xml
C:\Documents and Settings\Mallory\Application Data\Starware381\GenericRSSFeed\GenericRSSFeedOpti ons.xml.backup
C:\Documents and Settings\Mallory\Application Data\Starware381\Layouts\ToolbarLayout.xml
C:\Documents and Settings\Mallory\Application Data\Starware381\Layouts\ToolbarLayout.xml.backup
C:\Documents and Settings\Mallory\Application Data\Starware381\Manager\ManagerOptions.xml
C:\Documents and Settings\Mallory\Application Data\Starware381\Manager\ManagerOptions.xml.backup
C:\Documents and Settings\Mallory\Application Data\Starware381\Marketing4\images\active\Marketin g40.bmp
C:\Documents and Settings\Mallory\Application Data\Starware381\Marketing4\Marketing4Options.xml
C:\Documents and Settings\Mallory\Application Data\Starware381\Marketing4\Marketing4Options.xml. backup
C:\Documents and Settings\Mallory\Application Data\Starware381\Movies\images\active\Movies0.bmp
C:\Documents and Settings\Mallory\Application Data\Starware381\Movies\MoviesOptions.xml
C:\Documents and Settings\Mallory\Application Data\Starware381\Movies\MoviesOptions.xml.backup
C:\Documents and Settings\Mallory\Application Data\Starware381\MusicSearch\MusicSearchOptions.xm l
C:\Documents and Settings\Mallory\Application Data\Starware381\MusicSearch\MusicSearchOptions.xm l.backup
C:\Documents and Settings\Mallory\Application Data\Starware381\RelatedSearch\RelatedSearchOption s.xml
C:\Documents and Settings\Mallory\Application Data\Starware381\RelatedSearch\RelatedSearchOption s.xml.backup
C:\Documents and Settings\Mallory\Application Data\Starware381\ScreensaversMarketingSitePager\im ages\active\ScreensaversMarketingSitePager0.bmp
C:\Documents and Settings\Mallory\Application Data\Starware381\ScreensaversMarketingSitePager\Sc reensaversMarketingSitePagerOptions.xml
C:\Documents and Settings\Mallory\Application Data\Starware381\ScreensaversMarketingSitePager\Sc reensaversMarketingSitePagerOptions.xml.backup
C:\Documents and Settings\Mallory\Application Data\Starware381\Toolbar\TBProductsOptions.xml
C:\Documents and Settings\Mallory\Application Data\Starware381\Toolbar\TBProductsOptions.xml.bac kup
C:\Documents and Settings\Mallory\Application Data\Starware381\ToolbarLogo\ToolbarLogoOptions.xm l
C:\Documents and Settings\Mallory\Application Data\Starware381\ToolbarLogo\ToolbarLogoOptions.xm l.backup
C:\Documents and Settings\Mallory\Application Data\Starware381\ToolbarSearch\ToolbarSearchOption s.xml
C:\Documents and Settings\Mallory\Application Data\Starware381\ToolbarSearch\ToolbarSearchOption s.xml.backup
C:\Documents and Settings\Mallory\Application Data\Starware381\TravelSearch\TravelSearchOptions. xml
C:\Documents and Settings\Mallory\Application Data\Starware381\TravelSearch\TravelSearchOptions. xml.backup
C:\Documents and Settings\Wojtek\Application Data\inst.exe
C:\Documents and Settings\Wojtek\Application Data\Starware381
C:\Documents and Settings\Wojtek\Application Data\Starware381\BrowserSearch\BrowserSearch.xml
C:\Documents and Settings\Wojtek\Application Data\Starware381\BrowserSearch\BrowserSearch.xml.b ackup
C:\Documents and Settings\Wojtek\Application Data\Starware381\Configurator\Configurator.xml
C:\Documents and Settings\Wojtek\Application Data\Starware381\Configurator\Configurator.xml.bac kup
C:\Documents and Settings\Wojtek\Application Data\Starware381\ErrorSearch\ErrorSearchOptions.xm l
C:\Documents and Settings\Wojtek\Application Data\Starware381\ErrorSearch\ErrorSearchOptions.xm l.backup
C:\Documents and Settings\Wojtek\Application Data\Starware381\Games\GamesOptions.xml
C:\Documents and Settings\Wojtek\Application Data\Starware381\Games\GamesOptions.xml.backup
C:\Documents and Settings\Wojtek\Application Data\Starware381\Games\images\active\Games0.bmp
C:\Documents and Settings\Wojtek\Application Data\Starware381\GenericRSSFeed\GenericRSSFeedOpti ons.xml
C:\Documents and Settings\Wojtek\Application Data\Starware381\GenericRSSFeed\GenericRSSFeedOpti ons.xml.backup
C:\Documents and Settings\Wojtek\Application Data\Starware381\Layouts\ToolbarLayout.xml
C:\Documents and Settings\Wojtek\Application Data\Starware381\Layouts\ToolbarLayout.xml.backup
C:\Documents and Settings\Wojtek\Application Data\Starware381\Manager\ManagerOptions.xml
C:\Documents and Settings\Wojtek\Application Data\Starware381\Manager\ManagerOptions.xml.backup
C:\Documents and Settings\Wojtek\Application Data\Starware381\Marketing4\images\active\Marketin g40.bmp
C:\Documents and Settings\Wojtek\Application Data\Starware381\Marketing4\Marketing4Options.xml
C:\Documents and Settings\Wojtek\Application Data\Starware381\Marketing4\Marketing4Options.xml. backup
C:\Documents and Settings\Wojtek\Application Data\Starware381\Movies\images\active\Movies0.bmp
C:\Documents and Settings\Wojtek\Application Data\Starware381\Movies\MoviesOptions.xml
C:\Documents and Settings\Wojtek\Application Data\Starware381\Movies\MoviesOptions.xml.backup
C:\Documents and Settings\Wojtek\Application Data\Starware381\MusicSearch\MusicSearchOptions.xm l
C:\Documents and Settings\Wojtek\Application Data\Starware381\MusicSearch\MusicSearchOptions.xm l.backup
C:\Documents and Settings\Wojtek\Application Data\Starware381\RelatedSearch\RelatedSearchOption s.xml
C:\Documents and Settings\Wojtek\Application Data\Starware381\RelatedSearch\RelatedSearchOption s.xml.backup
C:\Documents and Settings\Wojtek\Application Data\Starware381\ScreensaversMarketingSitePager\im ages\active\ScreensaversMarketingSitePager0.bmp
C:\Documents and Settings\Wojtek\Application Data\Starware381\ScreensaversMarketingSitePager\Sc reensaversMarketingSitePagerOptions.xml
C:\Documents and Settings\Wojtek\Application Data\Starware381\ScreensaversMarketingSitePager\Sc reensaversMarketingSitePagerOptions.xml.backup
C:\Documents and Settings\Wojtek\Application Data\Starware381\Toolbar\TBProductsOptions.xml
C:\Documents and Settings\Wojtek\Application Data\Starware381\Toolbar\TBProductsOptions.xml.bac kup
C:\Documents and Settings\Wojtek\Application Data\Starware381\ToolbarLogo\ToolbarLogoOptions.xm l
C:\Documents and Settings\Wojtek\Application Data\Starware381\ToolbarLogo\ToolbarLogoOptions.xm l.backup
C:\Documents and Settings\Wojtek\Application Data\Starware381\ToolbarSearch\ToolbarSearchOption s.xml
C:\Documents and Settings\Wojtek\Application Data\Starware381\ToolbarSearch\ToolbarSearchOption s.xml.backup
C:\Documents and Settings\Wojtek\Application Data\Starware381\TravelSearch\TravelSearchOptions. xml
C:\Documents and Settings\Wojtek\Application Data\Starware381\TravelSearch\TravelSearchOptions. xml.backup
C:\Program Files\Starware381
C:\Program Files\Starware381\brand.bmp
C:\Program Files\Starware381\icons\star_16.ico
C:\Program Files\Starware381\Starware381Config.xml
C:\Program Files\Starware381\Starware381Uninstall.exe
C:\WINDOWS\setup.exe
C:\WINDOWS\system32\rsvp32_2.dll
.
((((((((((((((((((((((((( Files Created from 2008-02-21 to 2008-03-21 )))))))))))))))))))))))))))))))
.
2008-03-21 15:13 . 2008-03-21 15:13 3,631 --a------ C:\1D.tmp
2008-03-20 16:27 . 2008-03-20 16:27 <DIR> d-------- C:\WINDOWS\ERUNT
2008-03-20 16:20 . 2008-03-20 18:50 <DIR> d-------- C:\SDFix
2008-03-19 15:29 . 2008-03-19 15:29 <DIR> d-------- C:\VundoFix Backups
2008-03-19 14:38 . 2008-03-19 14:38 <DIR> d-------- C:\Documents and Settings\Wojtek\Application Data\WinIFixer.com
2008-03-19 05:27 . 2008-03-19 05:27 5,120 --ahs---- C:\WINDOWS\dvvid32.exe
2008-03-15 03:57 . 2008-03-15 03:57 <DIR> d-------- C:\evetest
2008-03-05 00:14 . 2008-03-05 00:14 <DIR> d-------- C:\Program Files\NVIDIA Corporation
2008-03-05 00:12 . 2008-03-05 00:12 <DIR> d-------- C:\Program Files\NVIDIA nTune Performance Application
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))) ))
.
2008-03-21 22:12 --------- d-----w C:\Documents and Settings\Wojtek\Application Data\DNA
2008-03-21 22:00 --------- d-----w C:\Documents and Settings\All Users\Application Data\Symantec
2008-03-21 17:31 --------- d-----w C:\Program Files\Common Files\Symantec Shared
2008-03-19 22:21 --------- d-----w C:\Documents and Settings\All Users\Application Data\Google Updater
2008-03-17 21:34 --------- d-----w C:\Documents and Settings\LocalService\Application Data\Sony Corporation
2008-03-12 08:37 --------- d-----w C:\Documents and Settings\All Users\Application Data\CCP
2008-03-05 07:15 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-02-29 01:50 --------- d-----w C:\Documents and Settings\Wojtek\Application Data\Ventrilo
2008-02-22 01:54 --------- d-----w C:\Program Files\Sony
2008-02-22 01:52 --------- d-----w C:\Documents and Settings\Wojtek\Application Data\Sony Corporation
2008-02-14 11:59 --------- d-----w C:\Program Files\Norton Internet Security
2008-02-14 11:08 805 ----a-w C:\WINDOWS\system32\drivers\SYMEVENT.INF
2008-02-14 11:08 60,800 ----a-w C:\WINDOWS\system32\S32EVNT1.DLL
2008-02-14 11:08 123,952 ----a-w C:\WINDOWS\system32\drivers\SYMEVENT.SYS
2008-02-14 11:08 10,740 ----a-w C:\WINDOWS\system32\drivers\SYMEVENT.CAT
2008-02-14 11:08 --------- d-----w C:\Program Files\Symantec
2007-09-16 23:42 47,360 ----a-w C:\Documents and Settings\Wojtek\Application Data\pcouffin.sys
2006-03-09 05:41 0 ----a-w C:\Documents and Settings\Wojtek\Application Data\wklnhst.dat
2006-01-30 19:51 162 ----a-w C:\Documents and Settings\Mallory\Application Data\wklnhst.dat
2007-06-04 23:05 8 --sh--r C:\WINDOWS\system32\F1855CE623.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNo tifier.exe" [2007-04-03 15:31 68856]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 05:00 15360]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-02-16 11:54 282624]
"Active@ Eraser"="C:\PROGRA~1\ACTIVE~1\ACTIVE~1\EraserD.exe " [ ]
"Window Washer"="C:\Program Files\Webroot\Washer\wwDisp.exe" [2007-11-26 15:47 1206600]
"msnmsgr"="C:\Program Files\MSN Messenger\msnmsgr.exe" [2007-01-19 13:54 5674352]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" [ ]
"BitTorrent DNA"="C:\Program Files\DNA\btdna.exe" [2008-03-17 18:01 287040]
"NVIDIA nTune"="C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" [2007-09-04 20:25 81920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run]
"ATIPTA"="C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2004-09-09 22:10 344064]
"High Definition Audio Property Page Shortcut"="HDAudPropShortcut.exe" [2004-08-12 18:45 61952 C:\WINDOWS\system32\Hdaudpropshortcut.exe]
"SoundMan"="SOUNDMAN.EXE" [2004-11-02 15:53 77824 C:\WINDOWS\SOUNDMAN.EXE]
"AlcWzrd"="ALCWZRD.EXE" [2004-11-29 15:00 2748928 C:\WINDOWS\ALCWZRD.EXE]
"IgfxTray"="C:\WINDOWS\system32\igfxtray.exe" [2005-02-08 11:36 155648]
"HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe" [2005-02-08 11:32 126976]
"VZRemoteCommander"="C:\Program Files\Sony\VAIO Zone Remote Commander\AvRmtCtr.exe" [2005-01-31 10:10 192512]
"AGRSMMSG"="AGRSMMSG.exe" [2004-10-08 10:50 88363 C:\WINDOWS\AGRSMMSG.exe]
"AOLDialer"="C:\Program Files\Common Files\AOL\ACS\AOLDial.exe" [2006-10-23 05:50 71216]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-12-05 02:41 8523776]
"nwiz"="nwiz.exe" [2007-12-05 02:41 1626112 C:\WINDOWS\system32\nwiz.exe]
"ccApp"="C:\Program Files\Common Files\Symantec Shared\ccApp.exe" [2007-01-09 22:59 115816]
"osCheck"="C:\Program Files\Norton Internet Security\osCheck.exe" [2006-09-05 18:22 26248]
"Motive SmartBridge"="C:\PROGRA~1\TELUSE~1\SMARTB~1\Motive SB.exe" [2007-01-03 21:52 393216]
"HostManager"="C:\Program Files\Common Files\AOL\1168209236\ee\AOLSoftware.exe" [2006-09-25 17:52 50736]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-02-16 11:54 282624]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2007-03-02 16:24 257088]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-05-11 03:06 40048]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" [2007-07-12 04:00 132496]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2007-09-12 21:50 185632]
"SsAAD.exe"="C:\PROGRA~1\sony\SONICS~1\SsAAD.e xe" [2005-01-24 19:58 81920]
"NeroFilterCheck"="C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe" [2007-03-01 15:57 153136]
"NBKeyScan"="C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" [2007-09-20 09:51 1836328]
"Symantec PIF AlertEng"="C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" [2007-11-28 20:51 583048]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray. dll" [2007-12-05 02:41 81920]
"VAIO Update 3"="C:\Program Files\Sony\VAIO Update 3\VAIOUpdt.exe" [2007-05-15 21:46 551032]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\Cur rentVersion\Run]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNo tifier.exe" [2007-04-03 15:31 68856]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Google Updater.lnk - C:\Program Files\Google\Google Updater\GoogleUpdater.exe [2007-01-18 03:10:28 124912]
Service Manager.lnk - C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe [2002-12-17 18:23:32 74308]
SpySubtract.lnk - C:\Program Files\InterMute\SpySubtract\SpySub.exe [2005-06-21 14:25:13 1187840]
TELUS eCare.lnk - C:\Program Files\TELUS eCare\bin\matcli.exe [2007-01-03 19:38:31 217088]
[HKEY_USERS\.default\software\microsoft\windows\cur rentversion\policies\explorer]
"NoSetActiveDesktop"= 1 (0x1)
"NoActiveDesktopChanges"= 1 (0x1)
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpo licy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpo licy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe"=
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLacsd.exe"=
"C:\\Program Files\\America Online 9.0\\waol.exe"=
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\Documents and Settings\\Mallory\\My Documents\\LimeWire\\LimeWire.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Documents and Settings\\All Users\\Desktop\\LimeWire\\LimeWire.exe"=
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"C:\\Program Files\\MSN Messenger\\livecall.exe"=
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"C:\\Program Files\\123CopyDVD\\123CopyDVD.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
"C:\\Program Files\\DNA\\btdna.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpo licy\standardprofile\GloballyOpenPorts\List]
"7669:TCP"= 7669:TCP:BitComet 7669 TCP
"7669:UDP"= 7669:UDP:BitComet 7669 UDP
R2 MSSQL$VAIO_VEDB;MSSQL$VAIO_VEDB;C:\Program Files\Microsoft SQL Server\MSSQL$VAIO_VEDB\Binn\sqlservr.exe [2002-12-17 18:26]
R2 wwEngineSvc;Window Washer Engine;C:\Program Files\Webroot\Washer\WasherSvc.exe [2007-11-26 15:47]
S3 Image Converter video recording monitor for VAIO Entertainment;Image Converter video recording monitor for VAIO Entertainment;C:\Program Files\Sony\Image Converter 2\IcVzMon.exe [2005-02-14 21:30]
S3 lredbooo;lredbooo;C:\DOCUME~1\Wojtek\LOCALS~1\Temp \lredbooo.sys []
S3 SQLAgent$VAIO_VEDB;SQLAgent$VAIO_VEDB;C:\Program Files\Microsoft SQL Server\MSSQL$VAIO_VEDB\Binn\sqlagent.EXE [2002-12-17 18:23]
*Newly Created Service* - COMHOST
.
Contents of the 'Scheduled Tasks' folder
"2008-03-21 01:11:00 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-03-21 21:38:04 C:\WINDOWS\Tasks\Check Updates for Windows Live Toolbar.job"
- C:\Program Files\Windows Live Toolbar\MSNTBUP.EXE
"2008-03-15 07:38:50 C:\WINDOWS\Tasks\Norton Internet Security - Run Full System Scan - Wojtek.job"
- C:\PROGRA~1\NORTON~1\NORTON~1\Navw32.exeh/TASK:
.
************************************************** ************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-03-21 15:20:14
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
************************************************** ************************
.
Completion time: 2008-03-21 15

01
ComboFix-quarantined-files.txt 2008-03-21 22:20:49
.
2008-03-20 10:02:22 --- E O F ---