combofix scan(s) log
ComboFix 11-11-09.02 - David L 11/09/2011 23:25:47.2.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.510.226 [GMT -6:00]
Running from: c:\documents and settings\David L\Desktop\ComboFix.exe
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
---- Previous Run -------
.
C:\data
c:\data\default\feed4.data
c:\data\default\us_sres.data
c:\documents and settings\All Users\Application Data\TEMP
c:\documents and settings\David L\Cookies\nymucanor.inf
c:\documents and settings\David L\Cookies\umaz.ban
c:\documents and settings\David L\Start Menu\Programs\System Restore
c:\documents and settings\David L\WINDOWS
c:\windows\afeb.scr
c:\windows\iun6002.exe
c:\windows\system32\AutoRun.inf
c:\windows\system32\config\systemprofile\Application Data\Dealio
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\alerts.gif
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\alerts_over.gif
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\alerts_rec.gif
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\alerts_rec_over.gif
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\chevron-small.gif
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\deal_report.jpg
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\DealioSearch.html
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\deals-leftcap.gif
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\ebay_login.jpg
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\err_mainwindow.html
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\err_toolbar.html
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\global_scripts.js
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\headerbgthin.jpg
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\highlight-bg.png
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\logo.gif
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\logo_over.gif
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\man_toolbar.css
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\man_toolbar.html
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\man_toolbar.js
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\man_toolbarl.js
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\post-this-deal.gif
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\post-this-deal_over.gif
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\scripts.js
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\scroller.js
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\search-chevron.gif
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\search-chevron_over.gif
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\search_bg_blink.gif
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\separator.gif
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\settings.gif
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\settings_over.gif
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\res\yahoo-search.png
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\index.76.35
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.10.76
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.109.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.110.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.12.52
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.13.58
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.130.58
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.135.50
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.153.44
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.155.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.156.49
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.16.60
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.161.52
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.178.66
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.184.55
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.188.52
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.189.45
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.196.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.198.56
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.199.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.200.53
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.201.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.202.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.203.71
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.205.62
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.213.71
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.214.49
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.215.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.216.67
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.217.67
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.218.52
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.219.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.220.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.221.57
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.222.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.223.68
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.226.68
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.227.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.228.62
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.229.76
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.23.63
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.239.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.24.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.240.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.241.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.242.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.243.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.244.63
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.245.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.247.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.248.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.249.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.250.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.251.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.252.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.253.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.254.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.255.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.256.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.257.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.279.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.28.58
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.282.75
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.283.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.284.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.289.67
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.290.62
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.291.61
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.296.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.297.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.304.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.307.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.308.75
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.31.47
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.310.46
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.311.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.315.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.316.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.317.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.318.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.319.49
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.32.48
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.334.44
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.335.60
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.336.44
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.337.44
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.338.75
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.339.47
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.34.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.340.47
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.341.47
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.349.50
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.35.48
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.350.50
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.351.51
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.352.54
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.353.51
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.354.51
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.357.62
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.358.52
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.359.52
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.360.53
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.361.54
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.362.68
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.363.58
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.364.54
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.365.53
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.367.56
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.368.58
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.369.55
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.370.56
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.371.56
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.372.57
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.373.55
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.375.56
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.376.57
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.377.55
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.378.65
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.384.58
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.386.71
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.387.59
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.388.59
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.389.59
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.390.60
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.391.60
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.392.60
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.393.60
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.394.60
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.396.61
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.397.61
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.398.60
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.399.60
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.403.61
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.404.63
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.405.61
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.406.61
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.407.76
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.408.63
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.409.61
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.412.62
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.413.62
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.414.62
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.415.62
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.416.62
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.417.62
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.418.62
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.419.62
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.420.62
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.421.62
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.423.63
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.424.63
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.425.63
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.426.63
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.427.63
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.428.65
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.429.63
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.430.63
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.432.65
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.433.64
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.434.65
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.435.64
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.436.76
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.437.64
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.438.71
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.439.71
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.440.75
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.442.73
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.443.73
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.444.73
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.445.68
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.446.69
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.450.67
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.451.67
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.452.68
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.453.68
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.454.69
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.456.69
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.457.75
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.458.70
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.459.70
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.460.69
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.462.74
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.463.69
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.464.70
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.465.68
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.468.70
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.469.70
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.470.70
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.471.73
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.472.70
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.478.74
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.479.73
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.480.68
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.481.71
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.482.74
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.49.67
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.50.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.500.71
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.501.74
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.502.71
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.51.69
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.52.72
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.520.76
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.521.76
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.522.76
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.53.51
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.531.76
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.532.75
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.534.75
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.54.47
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.55.45
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.56.69
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.57.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.58.47
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.593.76
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.595.76
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.63.57
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.66.47
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.70.75
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\rules\rules.1.71.43
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\temp\dealio-14356.log
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\temp\dealio-14357.log
c:\windows\system32\config\systemprofile\Application Data\Dealio\kb127\temp\dod_cache.xml
c:\windows\system32\r2
c:\windows\system32\Thumbs.db
c:\windows\yfemel.exe
.
.
((((((((((((((((((((((((( Files Created from 2011-10-10 to 2011-11-10 )))))))))))))))))))))))))))))))
.
.
2011-11-10 04:54 . 2011-11-10 04:54 -------- d-----w- c:\documents and settings\David L\Local Settings\Application Data\Sun
2011-11-10 01:58 . 2011-11-10 01:58 -------- d-----w- C:\_OTL
2011-11-08 00:57 . 2011-11-08 00:58 -------- d-----w- c:\documents and settings\David L\Application Data\IObit
2011-11-08 00:57 . 2011-11-08 00:57 -------- d-----w- c:\program files\IObit
2011-11-07 00:31 . 2011-11-07 01:46 -------- d-----w- c:\documents and settings\All Users\Immunet
2011-11-07 00:31 . 2011-11-07 00:31 -------- d-----w- c:\documents and settings\David L\Application Data\Immunet
2011-11-06 20:07 . 2011-11-06 20:07 -------- d-----w- c:\documents and settings\David L\Application Data\SUPERAntiSpyware.com
2011-11-06 20:07 . 2011-11-06 20:07 -------- d-----w- c:\program files\SUPERAntiSpyware
2011-11-06 19:49 . 2011-11-06 20:03 -------- d-----w- c:\documents and settings\David L\Application Data\Systweak
2011-11-06 19:49 . 2011-09-30 21:37 17280 ----a-w- c:\windows\system32\roboot.exe
2011-11-06 19:49 . 2011-11-08 02:29 -------- d-----w- c:\program files\YTDSETUP
2011-11-06 17:28 . 2011-11-06 17:43 -------- d-----w- c:\program files\Safer Networking
2011-11-06 16:58 . 2011-11-06 16:58 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-11-06 16:37 . 2011-11-06 16:37 2568 ----a-w- c:\windows\system32\PerfStringBackup.TMP
2011-11-06 16:33 . 2011-11-06 16:33 -------- d-----w- c:\windows\system32\wbem\Repository
2011-11-06 16:06 . 2011-10-07 23:52 660992 ----a-w- c:\windows\system32\drivers\pctEFA.sys
2011-11-06 16:06 . 2011-10-07 23:52 341656 ----a-w- c:\windows\system32\drivers\pctDS.sys
2011-11-06 16:05 . 2011-10-22 21:11 331880 ----a-w- c:\windows\system32\drivers\PCTCore.sys
2011-11-06 16:05 . 2011-10-22 21:11 162584 ----a-w- c:\windows\system32\drivers\PCTAppEvent.sys
2011-11-06 16:05 . 2011-10-28 17:02 185560 ----a-w- c:\windows\system32\drivers\PCTSD.sys
2011-11-06 16:05 . 2011-11-06 16:33 -------- d-----w- c:\program files\Common Files\PC Tools
2011-11-06 16:04 . 2011-11-06 16:10 -------- d-----w- c:\documents and settings\All Users\Application Data\PC Tools
2011-11-06 16:04 . 2011-11-06 16:04 -------- d-----w- c:\documents and settings\David L\Application Data\TestApp
2011-11-06 15:44 . 2011-11-06 15:44 -------- d-----w- c:\documents and settings\David L\Application Data\CallingID
2011-11-06 06:33 . 2011-11-06 06:33 -------- d-----w- c:\documents and settings\All Users\Application Data\{83C3B2FD-37EA-4C06-A228-E9B5E32FF0B1}
2011-11-06 06:21 . 2011-11-06 06:21 -------- d-----w- c:\program files\Uniblue
2011-11-06 06:21 . 2011-10-31 15:53 939368 ----a-w- c:\windows\system32\flash.ocx
2011-11-06 06:21 . 2011-11-06 06:21 -------- d-----w- c:\documents and settings\David L\Local Settings\Application Data\PackageAware
2011-11-05 21:15 . 2011-11-06 19:24 388096 ----a-r- c:\documents and settings\David L\Application Data\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-11-05 17:03 . 2011-11-05 17:03 -------- d-----w- C:\Cache
2011-11-05 16:21 . 2011-11-05 21:01 -------- d-----w- c:\documents and settings\David L\Local Settings\Application Data\adaware
2011-11-05 16:20 . 2011-11-06 14:58 -------- d-----w- c:\documents and settings\All Users\Application Data\Ad-Aware Browsing Protection
2011-11-05 16:19 . 2011-11-05 16:19 -------- d-----w- c:\program files\Toolbar Cleaner
2011-11-05 16:18 . 2011-11-05 16:33 -------- d-----w- c:\documents and settings\David L\Application Data\adawaretb
2011-11-05 16:18 . 2011-11-05 16:20 -------- d-----w- c:\program files\adawaretb
2011-11-05 16:17 . 2011-10-29 00:35 64512 ----a-w- c:\windows\system32\drivers\Lbd.sys
2011-11-05 15:37 . 2011-11-06 06:32 -------- d-----w- c:\program files\SpywareBlaster
2011-11-05 07:30 . 2011-11-05 07:30 -------- d-----w- c:\documents and settings\Davetro23
2011-11-05 01:50 . 2011-11-05 01:58 -------- d-----w- c:\documents and settings\David L\Local Settings\Application Data\Temp
2011-11-04 03:32 . 2011-11-05 01:06 -------- d-----w- c:\program files\NetEraserDemo1
2011-11-04 03:15 . 2001-02-01 02:29 53248 ----a-w- c:\windows\system32\IMAGEPLUSCONTROL.OCX
2011-11-04 03:15 . 2001-05-30 15:00 352256 ----a-w- c:\windows\system32\ijl15.dll
2011-11-04 03:15 . 1998-12-03 00:11 143360 ----a-w- c:\windows\system32\vbuzip10.dll
2011-11-04 03:15 . 1998-08-29 18:50 40448 ----a-w- c:\windows\system32\UNACE.DLL
2011-11-04 03:15 . 1997-02-17 21:23 53248 ----a-w- c:\windows\system32\UNRAR.DLL
2011-11-04 03:15 . 2002-07-25 03:43 667648 ----a-w- c:\windows\system32\FreeImage.dll
2011-11-04 03:15 . 1998-06-18 05:00 89360 ----a-w- c:\windows\system32\VB5DB.DLL
2011-11-04 01:31 . 2011-11-04 01:31 -------- d-----w- c:\documents and settings\David L\Application Data\Malwarebytes
2011-11-04 01:31 . 2011-11-04 01:31 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2011-11-04 01:31 . 2011-11-08 02:49 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-11-04 00:45 . 2011-11-04 00:45 -------- d-----w- c:\program files\CCleaner
2011-11-03 05:51 . 2011-11-05 04:52 -------- d-----w- c:\documents and settings\Administrator
2011-11-03 00:27 . 2011-11-06 18:54 -------- d-----w- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2011-11-03 00:27 . 2011-11-06 17:46 -------- d-----w- c:\program files\Spybot - Search & Destroy
2011-11-02 06:04 . 2010-03-20 09:46 201968 ----a-w- c:\windows\system32\Isafprod.dll
2011-11-02 06:04 . 2010-03-20 09:46 95472 ----a-w- c:\windows\system32\Vetredir.dll
2011-11-02 06:04 . 2010-03-20 09:46 128240 ----a-w- c:\windows\system32\Isafeif.dll
2011-11-02 06:04 . 2010-04-06 12:15 1054032 ----a-w- c:\windows\system32\cfgmig32.dll
2011-11-02 06:03 . 2011-11-06 16:34 -------- d-----w- c:\windows\rnapxs
2011-11-02 04:30 . 2011-11-02 04:30 -------- d-----w- c:\documents and settings\David L\Application Data\OpenCandy
2011-11-02 04:30 . 2011-11-02 04:30 -------- d-----w- c:\documents and settings\David L\Application Data\Sammsoft
2011-11-01 06:27 . 2011-11-01 06:27 -------- d-----w- c:\documents and settings\All Users\Application Data\SUPERAntiSpyware.com
2011-11-01 06:01 . 2011-11-01 06:01 -------- d-----w- c:\program files\Trend Micro
2011-11-01 01:37 . 2011-11-01 01:37 -------- d-----w- c:\documents and settings\All Users\Application Data\Common Files
2011-11-01 01:34 . 2011-11-01 01:34 -------- d-----w- c:\program files\AVG
2011-11-01 01:30 . 2011-11-10 05:08 -------- d-----w- c:\documents and settings\All Users\Application Data\MFAData
2011-10-31 06:43 . 2011-10-31 06:43 101720 ----a-w- c:\windows\system32\drivers\SBREDrv.sys
2011-10-31 04:35 . 2011-10-31 04:35 -------- d-----w- c:\program files\Microsoft CAPICOM 2.1.0.2
2011-10-31 03:18 . 2011-06-24 14:10 139656 ------w- c:\windows\system32\dllcache\rdpwd.sys
2011-10-31 03:18 . 2011-04-21 13:37 105472 ------w- c:\windows\system32\dllcache\mup.sys
2011-10-31 03:16 . 2011-07-08 14:02 10496 ------w- c:\windows\system32\dllcache\ndistapi.sys
2011-10-31 03:04 . 2009-08-07 00:23 274288 ----a-w- c:\windows\system32\mucltui.dll
2011-10-31 03:04 . 2009-08-07 00:23 215920 ----a-w- c:\windows\system32\muweb.dll
2011-10-31 00:53 . 2011-10-31 00:53 -------- d-----w- c:\documents and settings\All Users\Application Data\PC1Data
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-11-10 01:22 . 2011-07-10 04:04 544656 ----a-w- c:\windows\system32\deployJava1.dll
2011-11-10 01:22 . 2008-09-13 17:38 128000 ----a-w- c:\windows\system32\javacpl.cpl
2011-09-26 16:41 . 2011-09-26 16:41 611328 ------w- c:\windows\system32\uiautomationcore.dll
2011-09-26 16:41 . 2004-08-10 17:51 220160 ----a-w- c:\windows\system32\oleacc.dll
2011-09-26 16:41 . 2004-08-10 17:51 20480 ----a-w- c:\windows\system32\oleaccrc.dll
2011-09-09 09:12 . 2004-08-10 17:50 599040 ----a-w- c:\windows\system32\crypt32.dll
2011-09-06 13:20 . 2004-08-10 17:51 1858944 ----a-w- c:\windows\system32\win32k.sys
2011-08-22 23:48 . 2004-08-10 17:51 916480 ----a-w- c:\windows\system32\wininet.dll
2011-08-22 23:48 . 2004-08-10 17:51 43520 ----a-w- c:\windows\system32\licmgr10.dll
2011-08-22 23:48 . 2004-08-10 17:51 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2011-08-22 11:56 . 2004-08-10 17:51 385024 ----a-w- c:\windows\system32\html.iec
2011-08-17 13:49 . 2004-08-10 17:50 138496 ----a-w- c:\windows\system32\drivers\afd.sys
2008-11-02 23:19 . 2008-11-02 23:19 14138 ----a-w- c:\program files\Common Files\ysid.com
2011-11-10 01:10 . 2011-05-12 02:12 134104 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DellSupport"="c:\program files\DellSupport\DSAgnt.exe" [2007-03-15 460784]
"DellSupportCenter"="c:\program files\Dell Support Center\bin\sprtcmd.exe" [2009-05-21 206064]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2011-10-17 4615552]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2005-04-06 94208]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2005-04-06 77824]
"Persistence"="c:\windows\system32\igfxpers.exe" [2005-04-06 114688]
"DMXLauncher"="c:\program files\Dell\Media Experience\DMXLauncher.exe" [2005-10-05 94208]
"ISUSPM Startup"="c:\program files\Common Files\InstallShield\UpdateService\ISUSPM.exe" [2005-06-10 249856]
"ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2005-06-10 81920]
"DLA"="c:\windows\System32\DLA\DLACTRLW.EXE" [2005-11-07 122940]
"dscactivate"="c:\program files\Dell Support Center\gs_agent\custom\dsca.exe" [2007-11-15 16384]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2007-03-12 49152]
"DellSupportCenter"="c:\program files\Dell Support Center\bin\sprtcmd.exe" [2009-05-21 206064]
"MaxMenuMgr"="c:\program files\Seagate\SeagateManager\FreeAgent Status\StxMenuMgr.exe" [2009-03-27 181544]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-06-06 937920]
"Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2011-08-31 449608]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-05-04 252136]
.
c:\documents and settings\All Users\Start Menu\Programs\Startup\
GA311 Smart Wizard Utility.lnk - c:\program files\NETGEAR GA311 Adapter\GA311.exe [2003-12-25 270336]
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2007-3-11 210520]
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2011-07-19 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2011-05-04 17:54 551296 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Kodak EasyShare software.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Kodak EasyShare software.lnk
backup=c:\windows\pss\Kodak EasyShare software.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^KODAK Software Updater.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\KODAK Software Updater.lnk
backup=c:\windows\pss\KODAK Software Updater.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^David L^Start Menu^Programs^Startup^Seagate 2GEYGGZW Product Registration.lnk]
path=c:\documents and settings\David L\Start Menu\Programs\Startup\Seagate 2GEYGGZW Product Registration.lnk
backup=c:\windows\pss\Seagate 2GEYGGZW Product Registration.lnkStartup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
2008-04-14 00:12 15360 ----a-w- c:\windows\system32\ctfmon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotSD TeaTimer]
2009-01-26 21:31 2144088 --sha-r- c:\program files\Spybot - Search & Destroy\TeaTimer.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Kodak\\KODAK Software Updater\\7288971\\Program\\backWeb-7288971.exe"=
.
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [7/22/2011 10:27 AM 12880]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [7/12/2011 3:55 PM 67664]
R2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCore.exe [8/11/2011 5:38 PM 116608]
R2 FreeAgentGoNext Service;Seagate Service;c:\program files\Seagate\SeagateManager\Sync\FreeAgentService.exe [3/27/2009 2:54 PM 165160]
R2 LANPkt;Realtek LANPkt Protocol;c:\windows\system32\drivers\LANPkt.sys [12/25/2003 6:53 PM 8440]
R3 Diag69xp;Diag69xp;c:\windows\system32\drivers\diag69xp.sys [12/25/2003 6:53 PM 11237]
S0 is3srv;is3srv;c:\windows\system32\drivers\is3srv.sys --> c:\windows\system32\drivers\is3srv.sys [?]
S0 szkg5;szkg5;c:\windows\system32\DRIVERS\szkg.sys --> c:\windows\system32\DRIVERS\szkg.sys [?]
S0 szkgfs;szkgfs;c:\windows\system32\drivers\szkgfs.sys --> c:\windows\system32\drivers\szkgfs.sys [?]
S2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [11/7/2011 8:49 PM 366152]
S3 ASPI;Advanced SCSI Programming Interface Driver;c:\windows\system32\drivers\ASPI32.SYS [8/14/2008 7:26 PM 16512]
S3 MBAMProtector;MBAMProtector;\??\c:\windows\system32\drivers\mbam.sys --> c:\windows\system32\drivers\mbam.sys [?]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{B2C3BB6B-E005-4246-B8E5-DF0A4D073CDC}]
2008-06-18 21:04 8192 ----a-w- c:\program files\PixiePack Codec Pack\InstallerHelper.exe
.
Contents of the 'Scheduled Tasks' folder
.
2011-11-10 c:\windows\Tasks\User_Feed_Synchronization-{7CBB0B5E-E906-454A-9643-EF6CB7A8C568}.job
- c:\windows\system32\msfeedssync.exe [2007-08-13 10:31]
.
.
------- Supplementary Scan -------
.
uStart Page = about:blank
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uInternet Connection Wizard,ShellNext = hxxp://www.google.com/ig/dell?hl=en&client=dell-inc&channel=us
uInternet Settings,ProxyOverride = sas.insightbb.com;localhost
uSearchAssistant = hxxp://www.google.com
IE: Yahoo! &Dictionary - file:///c:\program files\Yahoo!\Common/ycdict.htm
IE: Yahoo! &Maps - file:///c:\program files\Yahoo!\Common/ycmap.htm
IE: Yahoo! &SMS - file:///c:\program files\Yahoo!\Common/ycsms.htm
TCP: DhcpNameServer = 74.128.17.114 74.128.19.102
FF - ProfilePath - c:\documents and settings\David L\Application Data\Mozilla\Firefox\Profiles\1mzpq7cn.default\
FF - prefs.js: browser.search.defaulturl - hxxp://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2706&invocationType=tb50fftrie7&query=
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: browser.startup.homepage -
www.yahoo.comFF - prefs.js: keyword.URL - hxxp://isearch.avg.com/search?cid=%7B50f077b9-0371-4059-868b-00aa5df9005e%7D&mid=4c85171e3a3847d19905d16b790da47a-603beb4178b06c01c7fc3d75245f54768a47c957&ds=AVG&v=8.0.0.40&lang=en&pr=fr&d=2011-11-06%2015%3A41%3A31&sap=ku&q=
FF - prefs.js: network.proxy.http - 127.0.0.1
FF - prefs.js: network.proxy.http_port - 50364
FF - prefs.js: network.proxy.type - 4
FF - user.js: network.protocol-handler.warn-external.dnupdate - false
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-SITEguard - (no file)
WebBrowser-{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - (no file)
AddRemove-WebCyberCoach_wtrb - c:\program files\WebCyberCoach\b_Dell\WCC_Wipe.exe WebCyberCoach ext\wtrb
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2011-11-10 00:07
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'winlogon.exe'(660)
c:\program files\SUPERAntiSpyware\SASWINLO.DLL
c:\windows\system32\WININET.dll
.
- - - - - - - > 'explorer.exe'(3532)
c:\windows\system32\WININET.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\mshtml.dll
c:\windows\system32\msls31.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
c:\program files\SUPERAntiSpyware\SASSEH.DLL
c:\progra~1\SPYBOT~1\SDHelper.dll
c:\program files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\LEXBCES.EXE
c:\windows\system32\LEXPPS.EXE
c:\program files\Java\jre7\bin\jqs.exe
c:\windows\system32\drivers\KodakCCS.exe
c:\windows\system32\ScsiAccess.EXE
c:\program files\Dell Support Center\bin\sprtsvc.exe
c:\windows\system32\wscntfy.exe
c:\program files\HP\Digital Imaging\bin\hpqSTE08.exe
c:\program files\Internet Explorer\IEXPLORE.EXE
.
**************************************************************************
.
Completion time: 2011-11-10 00:26:44 - machine was rebooted
ComboFix-quarantined-files.txt 2011-11-10 06:26
.
Pre-Run: 92,078,886,912 bytes free
Post-Run: 91,919,921,152 bytes free
.
- - End Of File - - 96157B7347E96AA9E11E377F5145F300