View Single Post
  #13  
Old April 11th, 2008, 06:35 PM
simespsb simespsb is offline
Member
 
Join Date: Apr 2008
Posts: 34
ComboFix log (1)

ComboFix 08-04-09.9 - Simes 2008-04-11 18:17:36.3 - NTFSx86
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.1.1033.18.381 [GMT 1:00]
Running from: C:\Users\Simes\Desktop\ComboFix.exe
Command switches used :: C:\Users\Simes\Desktop\CFScript.txt
* Created a new restore point
.

((((((((((((((((((((((((( Files Created from 2008-03-11 to 2008-04-11 )))))))))))))))))))))))))))))))
.

2008-04-09 15:32 . 2008-04-09 15:32 <DIR> d-------- C:\Deckard
2008-04-09 02:42 . 2008-04-09 02:42 <DIR> d-------- C:\Users\All Users\eSellerate
2008-04-09 02:42 . 2008-04-09 02:42 <DIR> d-------- C:\ProgramData\eSellerate
2008-04-09 02:32 . 2008-04-09 02:32 <DIR> d-------- C:\Users\All Users\TEMP
2008-04-09 02:32 . 2008-04-09 02:32 <DIR> d-------- C:\ProgramData\TEMP
2008-04-09 02:32 . 2008-04-09 02:42 <DIR> d-------- C:\Program Files\1 Click PC Fix
2008-04-09 02:32 . 2001-08-17 00:00 494,352 --a------ C:\Windows\System32\SHDOC401.DLL
2008-04-09 02:32 . 2000-05-22 15:58 83,144 --a------ C:\Windows\System32\PICCLP32.OCX
2008-04-09 02:32 . 2007-12-19 16:12 53,248 --a------ C:\Windows\System32\ArmAccess.dll
2008-04-08 23:58 . 2008-04-08 23:58 2,560 --a------ C:\Windows\_MSRSTRT.EXE
2008-04-07 05:05 . 2008-03-29 18:31 75,856 --a------ C:\Windows\System32\drivers\aswSP.sys
2008-04-07 05:05 . 2008-03-29 18:35 20,560 --a------ C:\Windows\System32\drivers\aswFsBlk.sys
2008-03-31 19:34 . 2008-03-31 19:34 <DIR> d-------- C:\Program Files\Safari
2008-03-30 10:45 . 2008-03-30 10:45 <DIR> d-------- C:\PerfLogs
2008-03-30 10:12 . 2008-01-19 08:43 3,600,440 --a------ C:\Windows\System32\ntkrnlpa.exe
2008-03-30 10:12 . 2008-01-19 08:33 2,623,488 --a------ C:\Windows\System32\SLsvc.exe
2008-03-30 10:12 . 2008-01-19 08:36 1,541,120 --a------ C:\Windows\System32\onex.dll
2008-03-30 10:12 . 2008-01-19 08:43 266,808 --a------ C:\Windows\System32\drivers\acpi.sys
2008-03-30 10:12 . 2008-01-19 08:42 151,096 --a------ C:\Windows\System32\drivers\pci.sys
2008-03-30 10:12 . 2008-01-19 08:42 51,768 --a------ C:\Windows\System32\PSHED.DLL
2008-03-30 10:10 . 2008-01-19 08:35 4,875,776 --a------ C:\Windows\System32\NlsData0009.dll
2008-03-30 10:09 . 2008-01-19 08:35 9,847,296 --a------ C:\Windows\System32\NlsData000a.dll
2008-03-30 10:08 . 2008-01-19 08:34 6,103,040 --a------ C:\Windows\System32\chtbrkr.dll
2008-03-30 10:07 . 2008-01-19 07:06 8,147,456 --a------ C:\Windows\System32\wmploc.DLL
2008-03-26 16:20 . 2008-04-09 00:35 <DIR> d-------- C:\nav-update
2008-03-25 22:48 . 2008-04-11 18:04 12 --a------ C:\Windows\bthservsdp.dat
2008-03-20 14:04 . 2008-03-20 20:07 <DIR> d-------- C:\Users\All Users\SITEguard
2008-03-20 14:04 . 2008-03-20 20:07 <DIR> d-------- C:\ProgramData\SITEguard
2008-03-20 14:00 . 2008-03-20 20:41 <DIR> d-------- C:\Users\All Users\STOPzilla!
2008-03-20 14:00 . 2008-03-20 20:41 <DIR> d-------- C:\ProgramData\STOPzilla!
2008-03-20 14:00 . 2008-03-20 14:00 <DIR> d-------- C:\Program Files\Common Files\iS3
2008-03-11 16:53 . 2007-09-12 18:58 58,792 --a------ C:\Windows\System32\wbload.dll
2008-03-11 16:53 . 2007-07-11 15:06 42,672 --a------ C:\Windows\System32\wbsys.dll
2008-03-11 15:52 . 2008-03-11 15:52 <DIR> d-------- C:\Program Files\Common Files\Adobe
2008-03-11 10:53 . 2006-11-29 14:06 3,426,072 --a------ C:\Windows\System32\d3dx9_32.dll
2008-03-11 10:52 . 2008-03-11 10:52 <DIR> d-------- C:\Program Files\Microsoft SQL Server Compact Edition
2008-03-11 10:50 . 2008-03-11 10:50 <DIR> d-------- C:\Program Files\Windows Live Favorites
2008-03-11 10:43 . 2008-03-11 10:48 <DIR> d--hsc--- C:\Program Files\Common Files\WindowsLiveInstaller

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))) ))
.
2008-04-11 09:51 --------- d-----w C:\ProgramData\Google Updater
2008-04-09 00:58 --------- d-----w C:\Program Files\Windows Mail
2008-04-09 00:12 --------- d-----w C:\ProgramData\Microsoft Help
2008-04-08 23:39 615,424 ----a-w C:\Windows\System32\themeui.dll
2008-04-08 23:39 240,640 ----a-w C:\Windows\System32\uxtheme.dll
2008-04-08 23:32 21,936,640 ----a-w C:\Windows\System32\imageres.dll
2008-04-01 03:37 --------- d-----w C:\Program Files\Java
2008-03-30 12:32 --------- d-----w C:\ProgramData\NVIDIA
2008-03-30 09:56 174 --sha-w C:\Program Files\desktop.ini
2008-03-30 09:46 --------- d-----w C:\Program Files\Windows Sidebar
2008-03-30 09:46 --------- d-----w C:\Program Files\Windows Photo Gallery
2008-03-30 09:46 --------- d-----w C:\Program Files\Windows Journal
2008-03-30 09:46 --------- d-----w C:\Program Files\Windows Defender
2008-03-30 09:46 --------- d-----w C:\Program Files\Windows Collaboration
2008-03-30 09:46 --------- d-----w C:\Program Files\Windows Calendar
2008-03-30 09:25 82,432 ----a-w C:\Windows\System32\axaltocm.dll
2008-03-30 09:25 101,888 ----a-w C:\Windows\System32\ifxcardm.dll
2008-03-29 17:45 1,146,232 ----a-w C:\Windows\System32\aswBoot.exe
2008-03-29 17:32 50,768 ----a-w C:\Windows\system32\drivers\aswMonFlt.sys
2008-03-29 17:29 23,152 ----a-w C:\Windows\system32\drivers\aswRdr.sys
2008-03-29 17:27 42,912 ----a-w C:\Windows\system32\drivers\aswTdi.sys
2008-03-29 17:23 95,608 ----a-w C:\Windows\System32\AvastSS.scr
2008-03-15 00:42 --------- d-----w C:\Program Files\Windows Live
2008-03-12 23:34 --------- d-----w C:\Users\Simes\AppData\Roaming\uTorrent
2008-03-11 20:27 --------- d-----w C:\Users\Simes\AppData\Roaming\LimeWire
2008-03-11 09:52 --------- d-----w C:\Program Files\Windows Live Toolbar
2008-03-11 09:42 --------- d-----w C:\ProgramData\WLInstaller
2008-03-06 22:40 --------- d-----w C:\Program Files\Microsoft Silverlight
2008-03-05 07:59 --------- d-----w C:\ProgramData\Windows Live Toolbar
2008-02-29 07:14 19,000 ----a-w C:\Windows\System32\kd1394.dll
2008-02-29 07:11 988,216 ----a-w C:\Windows\System32\winload.exe
2008-02-29 07:11 927,288 ----a-w C:\Windows\System32\winresume.exe
2008-02-29 06:53 46,592 ----a-w C:\Windows\System32\setbcdlocale.dll
2008-02-29 06:53 40,960 ----a-w C:\Windows\System32\srclient.dll
2008-02-29 06:53 378,368 ----a-w C:\Windows\System32\srcore.dll
2008-02-29 06:35 6,656 ----a-w C:\Windows\System32\kbd106n.dll
2008-02-29 04:21 2,032,128 ----a-w C:\Windows\System32\win32k.sys
2008-02-29 04:12 318,464 ----a-w C:\Windows\System32\rstrui.exe
2008-02-29 04:12 14,848 ----a-w C:\Windows\System32\srdelayed.exe
2008-02-26 04:54 43,520 ----a-w C:\Windows\system32\drivers\fetnd5bv.sys
2008-02-25 18:21 --------- d-----w C:\Program Files\iTunes
2008-02-25 18:21 --------- d-----w C:\Program Files\iPod
2008-02-25 18:19 --------- d-----w C:\Program Files\QuickTime
2008-02-24 17:01 --------- d-----w C:\Program Files\LimeWire
2008-02-22 05:05 615,992 ----a-w C:\Windows\System32\ci.dll
2008-02-22 05:01 826,880 ----a-w C:\Windows\System32\wininet.dll
2008-02-22 04:57 295,936 ----a-w C:\Windows\System32\gdi32.dll
2008-02-20 08:31 69,414 ----a-w C:\Windows\System32\uninst.exe
2008-02-20 08:31 --------- d-----w C:\Program Files\Shutdown Logoff Reboot ActiveX
2008-02-17 20:33 --------- d-----w C:\Program Files\AOL 9.0 VR
2008-02-17 19:04 --------- d-----w C:\Users\Vile\AppData\Roaming\AVG7
2008-02-17 19:03 --------- d-----w C:\ProgramData\Avg7
2008-02-17 19:00 --------- d-----w C:\Program Files\Alwil Software
2008-02-15 08:05 --------- d-----w C:\Program Files\DFX
2008-02-15 08:04 --------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
2008-02-01 11:11 586,240 ----a-w C:\Windows\WLXPGSS.SCR
2008-01-19 07:43 376,376 ----a-w C:\Windows\System32\mcupdate_GenuineIntel.dll
2008-01-19 07:43 3,548,728 ----a-w C:\Windows\System32\ntoskrnl.exe
2008-01-19 07:42 94,776 ----a-w C:\Windows\System32\MigAutoPlay.exe
2008-01-19 07:42 247,352 ----a-w C:\Windows\System32\clfs.sys
2008-01-19 07:42 177,208 ----a-w C:\Windows\System32\halmacpi.dll
2008-01-19 07:42 141,880 ----a-w C:\Windows\System32\halacpi.dll
2008-01-19 07:41 24,120 ----a-w C:\Windows\System32\BOOTVID.DLL
2008-01-19 07:41 21,560 ----a-w C:\Windows\System32\kdusb.dll
2008-01-19 07:41 19,512 ----a-w C:\Windows\System32\kdcom.dll
2008-01-19 07:38 46,080 ----a-w C:\Windows\System32\NAPCRYPT.DLL
2008-01-19 07:38 4,595,712 ----a-w C:\Windows\System32\AuthFWSnapin.dll
2008-01-19 07:38 242,744 ----a-w C:\Windows\System32\rsaenh.dll
2008-01-19 07:38 155,704 ----a-w C:\Windows\System32\dssenh.dll
2008-01-19 07:38 131,640 ----a-w C:\Windows\System32\basecsp.dll
2008-01-19 07:38 103,936 ----a-w C:\Windows\System32\NAPHLPR.DLL
2008-01-19 07:38 1,203,792 ----a-w C:\Windows\System32\ntdll.dll
2008-01-19 07:36 996,352 ----a-w C:\Windows\System32\WMNetMgr.dll
2008-01-19 07:35 98,304 ----a-w C:\Windows\System32\mssitlb.dll
2008-01-19 07:34 98,816 ----a-w C:\Windows\System32\mfps.dll
2008-01-19 07:33 98,304 ----a-w C:\Windows\System32\makecab.exe
2008-01-19 07:32 879,616 ----a-w C:\Windows\System32\Bubbles.scr
2008-01-19 07:32 704,512 ----a-w C:\Windows\System32\PhotoScreensaver.scr
2008-01-19 07:32 5,714,432 ----a-w C:\Windows\System32\logon.scr
2008-01-19 07:32 258,048 ----a-w C:\Windows\System32\winspool.drv
2008-01-19 07:32 221,184 ----a-w C:\Windows\System32\Mystify.scr
2008-01-19 07:32 220,672 ----a-w C:\Windows\System32\Ribbons.scr
2008-01-19 07:32 21,504 ----a-w C:\Windows\System32\msacm32.drv
2008-01-19 07:32 166,912 ----a-w C:\Windows\System32\wdmaud.drv
2008-01-19 07:32 1,370,624 ----a-w C:\Windows\System32\Aurora.scr
2008-01-19 07:31 7,680 ----a-w C:\Windows\System32\spwizres.dll
2008-01-19 07:31 57,856 ----a-w C:\Windows\System32\nlsbres.dll
2008-01-19 07:31 118,272 ----a-w C:\Windows\System32\RDPENCDD.dll
2008-01-19 07:30 17,920 ----a-w C:\Windows\System32\netevent.dll
2008-01-19 07:29 705,536 ----a-w C:\Windows\System32\imagesp1.dll
2008-01-19 07:29 58,880 ----a-w C:\Windows\System32\msobjs.dll
2008-01-19 07:28 7,168 ----a-w C:\Windows\System32\f3ahvoas.dll
2008-01-19 07:26 36,864 ----a-w C:\Windows\System32\cdd.dll
2008-01-19 06:01 14,336 ----a-w C:\Windows\System32\tsddd.dll
2008-01-19 06:01 134,656 ----a-w C:\Windows\System32\rdpdd.dll
2008-01-19 05:52 56,320 ----a-w C:\Windows\System32\vga256.dll
2008-01-19 05:52 21,504 ----a-w C:\Windows\System32\vga64k.dll
2008-01-19 05:52 11,776 ----a-w C:\Windows\System32\framebuf.dll
2008-01-19 05:52 10,752 ----a-w C:\Windows\System32\vga.dll
2008-01-19 05:50 14,848 ----a-w C:\Windows\System32\iscsilog.dll
.

(((((((((((((((((((((((((((((((((((((((((((( Look )))))))))))))))))))))))))))))))))))))))))))))))))) )))))))
.

---- Directory of C:\nav-update ----

2008-04-09 00:35 1078420 --a------ C:\nav-update\VistaGlazzSetup.exe
2008-04-02 20:03 0 --a------ C:\nav-update\PopupSecure.exe
2008-03-26 16:21 6057132 --a------ C:\nav-update\UPDATE_V2100_297.exe


((((((((((((((((((((((((((((( snapshot@2008-04-11_ 6.49.48.20 )))))))))))))))))))))))))))))))))))))))))
.
- 2008-04-11 04:02:21 67,584 --s-a-w C:\Windows\bootstat.dat
+ 2008-04-11 17:05:45 67,584 --s-a-w C:\Windows\bootstat.dat
- 2008-04-11 05:44:22 53,248 ----a-w C:\Windows\PSEXESVC.EXE
+ 2008-04-11 17:22:44 53,248 ----a-w C:\Windows\PSEXESVC.EXE
- 2008-04-11 05:17:36 262,144 ----a-w C:\Windows\ServiceProfiles\LocalService\AppData\Lo cal\Microsoft\Windows\usrclass.dat
+ 2008-04-11 17:21:02 262,144 ----a-w C:\Windows\ServiceProfiles\LocalService\AppData\Lo cal\Microsoft\Windows\usrclass.dat
- 2008-04-11 04:04:43 262,144 --sha-w C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT
+ 2008-04-11 17:07:24 262,144 --sha-w C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT
- 2008-04-11 05:40:19 262,144 ----a-w C:\Windows\ServiceProfiles\NetworkService\AppData\ Local\Microsoft\Windows\usrclass.dat
+ 2008-04-11 17:17:14 262,144 ----a-w C:\Windows\ServiceProfiles\NetworkService\AppData\ Local\Microsoft\Windows\usrclass.dat
- 2008-04-11 04:04:38 262,144 --sha-w C:\Windows\ServiceProfiles\NetworkService\NTUSER.D AT
+ 2008-04-11 17:07:18 262,144 --sha-w C:\Windows\ServiceProfiles\NetworkService\NTUSER.D AT
+ 2008-04-11 17:07:18 262,144 ---ha-w C:\Windows\ServiceProfiles\NetworkService\ntuser.d at.LOG1
- 2008-04-11 04:04:12 16,384 --sha-w C:\Windows\System32\config\systemprofile\AppData\L ocal\Microsoft\Windows\History\History.IE5\index.d at
+ 2008-04-11 17:06:30 16,384 --sha-w C:\Windows\System32\config\systemprofile\AppData\L ocal\Microsoft\Windows\History\History.IE5\index.d at
- 2008-04-11 04:04:12 32,768 --sha-w C:\Windows\System32\config\systemprofile\AppData\L ocal\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2008-04-11 17:06:30 32,768 --sha-w C:\Windows\System32\config\systemprofile\AppData\L ocal\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2008-04-11 04:04:12 16,384 --sha-w C:\Windows\System32\config\systemprofile\AppData\R oaming\Microsoft\Windows\Cookies\index.dat
+ 2008-04-11 17:06:30 16,384 --sha-w C:\Windows\System32\config\systemprofile\AppData\R oaming\Microsoft\Windows\Cookies\index.dat
- 2008-04-09 02:13:03 9,584 ----a-w C:\Windows\System32\WDI\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1821962517-124290910-3490180065-1003_UserData.bin
+ 2008-04-11 17:07:37 9,608 ----a-w C:\Windows\System32\WDI\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1821962517-124290910-3490180065-1003_UserData.bin
- 2008-04-11 04:05:19 64,800 ----a-w C:\Windows\System32\WDI\BootPerformanceDiagnostics _SystemData.bin
+ 2008-04-11 17:07:37 64,816 ----a-w C:\Windows\System32\WDI\BootPerformanceDiagnostics _SystemData.bin
- 2008-04-09 15:48:27 57,972 ----a-w C:\Windows\System32\WDI\ShutdownPerformanceDiagnos tics_SystemData.bin
+ 2008-04-11 17:07:35 58,126 ----a-w C:\Windows\System32\WDI\ShutdownPerformanceDiagnos tics_SystemData.bin
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
Reply With Quote