ComboFix 08-06-05.2 - Emily Challenor-**** 2008-06-07 18:33:07.2 - NTFSx86
Microsoft® Windows Vista™ Home Premium 6.0.6000.0.1252.1.1033.18.989 [GMT 1:00]
Running from: C:\Users\Emily Challenor-****\Desktop\ComboFix.exe
Command switches used :: C:\Users\Emily Challenor-****\Desktop\cfscript.txt.lnk
* Resident AV is active
.
((((((((((((((((((((((((( Files Created from 2008-05-07 to 2008-06-07 )))))))))))))))))))))))))))))))
.
No new files created in this timespan
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))) ))
.
2008-06-06 23:02 --------- d-----w C:\Program Files\Uniblue
2008-06-06 18:09 --------- d-----w C:\Program Files\McAfee
2008-06-04 22:55 --------- d-----w C:\Program Files\Microsoft Silverlight
2008-06-04 22:14 --------- d-----w C:\Users\Emily Challenor-****\AppData\Roaming\Uniblue
2008-06-04 18:50 --------- d-----w C:\Users\Emily Challenor-****\AppData\Roaming\JAM Software
2008-06-02 23:14 --------- d-----w C:\Users\James Challenor\AppData\Roaming\Uniblue
2008-06-02 22:44 --------- d-----w C:\Users\James Challenor\AppData\Roaming\uTorrent
2008-06-02 21:53 --------- d-----w C:\Program Files\SUPERAntiSpyware
2008-06-02 21:50 96,520 ----a-w C:\Windows\system32\drivers\avgldx86.sys
2008-06-02 21:50 67,080 ----a-w C:\Windows\system32\drivers\avgwfpx.sys
2008-06-02 21:50 10,520 ----a-w C:\Windows\System32\avgrsstx.dll
2008-06-02 21:49 --------- d-----w C:\ProgramData\avg8
2008-06-02 21:49 --------- d-----w C:\Program Files\AVG
2008-06-02 20:12 --------- d-----w C:\Users\James Challenor\AppData\Roaming\DVD Flick
2008-06-02 20:12 --------- d-----w C:\Program Files\K-Lite Codec Pack
2008-06-02 20:12 --------- d-----w C:\Program Files\CCleaner
2008-06-02 19:24 --------- d-----w C:\Users\James\AppData\Roaming\Media Player Classic
2008-06-02 19:24 --------- d-----w C:\Users\James\AppData\Roaming\DivX
2008-06-02 19:14 --------- d-----w C:\Users\James\AppData\Roaming\RegistrySmart
2008-06-02 19:14 --------- d-----w C:\Program Files\RegistrySmart
2008-06-02 19:05 --------- d-----w C:\Users\James\AppData\Roaming\uTorrent
2008-06-01 14:19 --------- d-----w C:\Users\James\AppData\Roaming\JAM Software
2008-06-01 13:32 --------- d-----w C:\Users\James\AppData\Roaming\Intel
2008-06-01 12:13 --------- d-----w C:\Program Files\CA Yahoo! Anti-Spy
2008-06-01 11:08 --------- d---a-w C:\ProgramData\TEMP
2008-06-01 11:04 --------- d-----w C:\Users\James Challenor\AppData\Roaming\CleanMyPC Software
2008-05-31 20:03 --------- d-----w C:\Program Files\Elaborate Bytes
2008-05-28 15:51 --------- d-----w C:\Program Files\Google
2008-05-26 23:06 270 ----a-w C:\Users\James Challenor\AppData\Roaming\wklnhst.dat
2008-05-22 18:20 --------- d-----w C:\ProgramData\Trymedia
2008-05-19 15:43 --------- d-----w C:\Users\Emily Challenor-****\AppData\Roaming\Intel
2008-05-18 13:55 --------- d-----w C:\Program Files\SopCast
2008-05-16 10:04 --------- d-----w C:\Users\James Challenor\AppData\Roaming\Vso
2008-05-16 02:02 --------- d-----w C:\Program Files\Windows Mail
2008-05-13 09:41 --------- d-----w C:\ProgramData\SUPERAntiSpyware.com
2008-05-12 20:18 --------- d-----w C:\Program Files\Virtual Earth 3D
2008-05-12 18:45 --------- d-----w C:\Program Files\TerraGame
2008-05-12 18:43 2,560 ----a-w C:\Windows\_MSRSTRT.EXE
2008-05-12 18:23 --------- d-----w C:\Users\James Challenor\AppData\Roaming\Sports Interactive
2008-05-12 17:51 --------- d-----w C:\Program Files\Common Files\TerraGame Shared
2008-05-12 16:06 --------- d-----w C:\ProgramData\vsosdk
2008-05-11 23:46 47,360 ----a-w C:\Windows\system32\drivers\pcouffin.sys
2008-05-11 23:46 47,360 ----a-w C:\Users\James Challenor\AppData\Roaming\pcouffin.sys
2008-05-11 23:46 --------- d-----w C:\Program Files\VSO
2008-05-11 23:37 --------- d-----w C:\Program Files\Avi2Dvd
2008-05-11 23:28 --------- d-----w C:\Program Files\AviSynth 2.5
2008-04-21 19:13 --------- d-----w C:\ProgramData\Nero
2008-04-21 19:13 --------- d-----w C:\Program Files\Common Files\Nero
2008-04-21 18:47 --------- d-----w C:\Users\James Challenor\AppData\Roaming\Nero
2008-04-21 17:25 --------- d-----w C:\ProgramData\Roxio
2008-04-20 23:44 158,456 ------w C:\Windows\System32\pxwma.dll
2008-04-20 12:03 --------- d-----w C:\Users\James Challenor\AppData\Roaming\vlc
2008-04-20 11:57 --------- d-----w C:\Program Files\VideoLAN
2008-04-12 16:34 --------- d-----w C:\Users\James Challenor\AppData\Roaming\Roxio
2008-04-10 19:00 --------- d-----w C:\Users\James Challenor\AppData\Roaming\JAM Software
2008-04-10 18:59 --------- d-----w C:\Program Files\JAM Software
2008-04-10 18:15 --------- d-----w C:\Users\Emily Challenor-****\AppData\Roaming\uTorrent
2008-04-09 18:44 --------- d-----w C:\Program Files\DellTPad
2008-03-27 18:24 194,560 ----a-w C:\Windows\System32\WebClnt.dll
2008-03-27 18:21 3,504,696 ----a-w C:\Windows\System32\ntkrnlpa.exe
2008-03-27 18:21 3,470,392 ----a-w C:\Windows\System32\ntoskrnl.exe
2008-03-27 18:20 24,064 ----a-w C:\Windows\System32\netcfg.exe
2008-03-27 18:20 22,016 ----a-w C:\Windows\System32\netiougc.exe
2008-03-27 18:20 167,424 ----a-w C:\Windows\System32\tcpipcfg.dll
2008-03-27 18:20 11,776 ----a-w C:\Windows\System32\sbunattend.exe
2008-03-27 18:16 1,244,672 ----a-w C:\Windows\System32\mcmde.dll
2008-03-27 18:01 53,080 ----a-w C:\Windows\System32\wuauclt.exe
2008-03-27 18:01 43,352 ----a-w C:\Windows\System32\wups2.dll
2008-03-27 18:01 1,712,984 ----a-w C:\Windows\System32\wuaueng.dll
2008-03-27 18:01 1,524,224 ----a-w C:\Windows\System32\wucltux.dll
2008-03-27 18:00 80,896 ----a-w C:\Windows\System32\wudriver.dll
2008-03-27 18:00 549,720 ----a-w C:\Windows\System32\wuapi.dll
2008-03-27 18:00 33,624 ----a-w C:\Windows\System32\wups.dll
2008-03-27 17:59 31,232 ----a-w C:\Windows\System32\wuapp.exe
2008-03-27 17:59 163,000 ----a-w C:\Windows\System32\wuwebv.dll
2008-03-20 20:14 87,040 ----a-w C:\Windows\System32\msoert2.dll
2008-03-20 20:14 39,424 ----a-w C:\Windows\System32\ACCTRES.dll
2008-03-20 20:14 229,888 ----a-w C:\Windows\System32\msshsq.dll
2008-03-20 20:14 205,824 ----a-w C:\Windows\System32\msoeacct.dll
2008-03-20 20:14 2,048 ----a-w C:\Windows\System32\msxml6r.dll
2008-03-20 20:14 1,335,296 ----a-w C:\Windows\System32\msxml6.dll
2008-03-20 20:13 750,080 ----a-w C:\Windows\System32\qmgr.dll
2008-03-20 20:11 8,704 ----a-w C:\Windows\System32\hcrstco.dll
2008-03-20 20:11 8,704 ----a-w C:\Windows\System32\hccoin.dll
2008-03-20 20:11 8,147,968 ----a-w C:\Windows\System32\wmploc.DLL
2008-03-20 20:11 7,680 ----a-w C:\Windows\System32\spwmp.dll
2008-03-20 20:11 4,096 ----a-w C:\Windows\System32\dxmasf.dll
2008-03-20 20:11 356,864 ----a-w C:\Windows\System32\MediaMetadataHandler.dll
2008-03-20 20:09 633,856 ----a-w C:\Windows\System32\user32.dll
2008-03-20 20:09 414,208 ----a-w C:\Windows\System32\msscp.dll
2008-03-20 20:06 2,048 ----a-w C:\Windows\System32\tzres.dll
2008-03-20 20:05 84,480 ----a-w C:\Windows\System32\INETRES.dll
2008-03-20 20:05 737,792 ----a-w C:\Windows\System32\inetcomm.dll
2008-03-20 20:05 2,048 ----a-w C:\Windows\System32\msxml3r.dll
2008-03-20 20:05 1,191,936 ----a-w C:\Windows\System32\msxml3.dll
2008-03-20 20:04 49,664 ----a-w C:\Windows\System32\csrsrv.dll
2008-03-20 20:04 376,320 ----a-w C:\Windows\System32\winsrv.dll
2008-03-20 20:04 104,448 ----a-w C:\Windows\System32\DWWIN.EXE
2008-03-20 20:04 1,327,104 ----a-w C:\Windows\System32\quartz.dll
2008-03-20 20:01 5,120 ----a-w C:\Windows\System32\wmi.dll
.
------- Sigcheck -------
.
((((((((((((((((((((((((((((( snapshot@2008-06-07_ 1.00.48.00 )))))))))))))))))))))))))))))))))))))))))
.
- 2008-06-06 21:03:50 67,584 --s-a-w C:\Windows\bootstat.dat
+ 2008-06-07 17:17:44 67,584 --s-a-w C:\Windows\bootstat.dat
- 2008-06-06 21:03:52 2,048 --sha-w C:\Windows\ServiceProfiles\LocalService\AppData\Lo cal\lastalive0.dat
+ 2008-06-07 17:17:45 2,048 --sha-w C:\Windows\ServiceProfiles\LocalService\AppData\Lo cal\lastalive0.dat
- 2008-06-06 21:03:52 2,048 --sha-w C:\Windows\ServiceProfiles\LocalService\AppData\Lo cal\lastalive1.dat
+ 2008-06-07 17:17:45 2,048 --sha-w C:\Windows\ServiceProfiles\LocalService\AppData\Lo cal\lastalive1.dat
- 2008-06-06 21:06:29 262,144 --sha-w C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT
+ 2008-06-07 17:20:41 262,144 --sha-w C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT
+ 2008-06-07 17:20:41 262,144 ---ha-w C:\Windows\ServiceProfiles\LocalService\ntuser.dat .LOG1
- 2008-06-06 22:57:43 262,144 --sha-w C:\Windows\ServiceProfiles\NetworkService\NTUSER.D AT
+ 2008-06-07 17:20:36 262,144 --sha-w C:\Windows\ServiceProfiles\NetworkService\NTUSER.D AT
+ 2008-06-07 17:20:36 262,144 ---ha-w C:\Windows\ServiceProfiles\NetworkService\ntuser.d at.LOG1
- 2008-06-06 21:03:54 16,384 --sha-w C:\Windows\System32\config\systemprofile\AppData\L ocal\Microsoft\Windows\History\History.IE5\index.d at
+ 2008-06-07 17:18:41 16,384 --sha-w C:\Windows\System32\config\systemprofile\AppData\L ocal\Microsoft\Windows\History\History.IE5\index.d at
- 2008-06-06 21:03:54 32,768 --sha-w C:\Windows\System32\config\systemprofile\AppData\L ocal\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2008-06-07 17:18:41 32,768 --sha-w C:\Windows\System32\config\systemprofile\AppData\L ocal\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2008-06-06 21:03:54 32,768 --sha-w C:\Windows\System32\config\systemprofile\AppData\R oaming\Microsoft\Windows\Cookies\index.dat
+ 2008-06-07 17:18:41 32,768 --sha-w C:\Windows\System32\config\systemprofile\AppData\R oaming\Microsoft\Windows\Cookies\index.dat
- 2008-06-06 23:54:50 262,144 ----a-w C:\Windows\System32\config\systemprofile\ntuser.da t
+ 2008-06-07 17:32:49 262,144 ----a-w C:\Windows\System32\config\systemprofile\ntuser.da t
- 2008-06-06 21:19:17 108,526 ----a-w C:\Windows\System32\perfc009.dat
+ 2008-06-07 17:25:46 108,526 ----a-w C:\Windows\System32\perfc009.dat
- 2008-06-06 21:19:17 623,342 ----a-w C:\Windows\System32\perfh009.dat
+ 2008-06-07 17:25:46 623,342 ----a-w C:\Windows\System32\perfh009.dat
- 2008-06-06 21:06:43 39,798 ----a-w C:\Windows\System32\WDI\ShutdownPerformanceDiagnos tics_SystemData.bin
+ 2008-06-07 17:24:48 39,830 ----a-w C:\Windows\System32\WDI\ShutdownPerformanceDiagnos tics_SystemData.bin
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A057A204-BACC-4D26-9990-79A187E2698E}]
2008-06-02 22:50 2050816 --a------ C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{A057A204-BACC-4D26-9990-79A187E2698E}"= "C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL" [2008-06-02 22:50 2050816]
[HKEY_CLASSES_ROOT\clsid\{a057a204-bacc-4d26-9990-79a187e2698e}]
[HKEY_CLASSES_ROOT\avgtoolbar.AVGTOOLBAR]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{A057A204-BACC-4D26-9990-79A187E2698E}"= C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL [2008-06-02 22:50 2050816]
[HKEY_CLASSES_ROOT\clsid\{a057a204-bacc-4d26-9990-79a187e2698e}]
[HKEY_CLASSES_ROOT\avgtoolbar.AVGTOOLBAR]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run]
"WindowsWelcomeCenter"="oobefldr.dll" [2006-11-02 13:34 2159104 C:\Windows\System32\oobefldr.dll]
"ehTray.exe"="C:\Windows\ehome\ehTray.exe" [2006-11-02 13:35 125440]
"Uniblue RegistryBooster 2"="c:\program files\uniblue\registrybooster 2\StartRegistryBooster.exe" [ ]
"DellSupportCenter"="C:\Program Files\Dell Support Center\bin\sprtcmd.exe" [2007-11-15 10:23 202544]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run]
"ECenter"="C:\Dell\E-Center\EULALauncher.exe" [2007-05-25 07:03 17920]
"Apoint"="C:\Program Files\DellTPad\Apoint.exe" [2007-10-25 13:31 167936]
"OEM02Mon.exe"="C:\Windows\OEM02Mon.exe" [2007-08-28 06:51 36864]
"SigmatelSysTrayApp"="C:\Program Files\SigmaTel\C-Major Audio\WDM\sttray.exe" [2007-11-12 12:07 405504]
"IgfxTray"="C:\Windows\system32\igfxtray.exe" [2007-12-15 04:54 137752]
"HotKeysCmds"="C:\Windows\system32\hkcmd.exe" [2007-12-15 04:53 154136]
"Persistence"="C:\Windows\system32\igfxpers.ex e" [2007-12-15 04:53 133656]
"SunJavaUpdateSched"="c:\Program Files\Java\jre1.6.0\bin\jusched.exe" [2008-03-20 13:31 77824]
"DELL Webcam Manager"="C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe" [2007-07-27 17:43 118784]
"IAAnotif"="C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [2007-03-21 14:00 174872]
"Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" [2008-03-20 13:41 1838592]
"mcagent_exe"="C:\Program Files\McAfee.com\Agent\mcagent.exe" [2007-08-03 23:33 582992]
"dscactivate"="C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe" [2007-11-15 10:24 16384]
"PCMService"="C:\Program Files\Dell\MediaDirect\PCMService.exe" [2007-11-01 16:39 189736]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2008-03-27 20:22 185896]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 22:16 39792]
"NBKeyScan"="C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" [ ]
"DellSupportCenter"="C:\Program Files\Dell Support Center\bin\sprtcmd.exe" [2007-11-15 10:23 202544]
"AVG8_TRAY"="C:\PROGRA~1\AVG\AVG8\avgtray.exe" [2008-06-02 22:49 1177368]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\
Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe [2008-03-20 13:32:30 50688]
QuickSet.lnk - C:\Program Files\Dell\QuickSet\quickset.exe [2007-09-07 17:27:08 1180952]
[HKEY_CURRENT_USER\software\microsoft\windows\curre ntversion\policies\system]
"LogonHoursAction"= 2 (0x2)
"DontDisplayLogonHoursWarnings"= 1 (0x1)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"VIDC.YV12"= yv12vfw.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiSpyware]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpo licy\DomainProfile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpo licy\FirewallRules]
"{711CAC3D-4656-4A00-98D6-A04681191107}"= Profile=Private|Profile=Public|C:\Program Files\Common Files\Mcafee\MNA\McNaSvc.exe:McAfee Network Agent
"{004E9152-7B61-4E50-A16A-5ECEBEC48AE4}"= C:\Program Files\Dell\MediaDirect\MediaDirect.exe

ell MediaDirect
"{B544BB23-DEA2-44EC-B109-0AD7EF6C32EE}"= C:\Program Files\Dell\MediaDirect\PCMService.exe:CyberLink PowerCinema Resident Program
"{6E0FC739-9228-4EF6-88C8-EF7EBB3CB351}"= C:\Program Files\Dell\MediaDirect\Kernel\DMP\CLBrowserEngine. exe:Cyberlink Media Server Browser Engine
"{51C7F458-3068-4408-8BF4-329472192810}"= C:\Program Files\Dell\MediaDirect\Kernel\DMS\CLMSService.exe: CyberLink Media Server
"{E6E9B4A5-F5BB-4143-996F-62CC3A7B723D}"= UDP:C:\Program Files\Sports Interactive\Football Manager 2008\fm.exe:Football Manager 2008
"{26A8F66A-E6BD-4585-9914-D20C76EE1593}"= TCP:C:\Program Files\Sports Interactive\Football Manager 2008\fm.exe:Football Manager 2008
"{A0B6BB1F-5F5A-493B-A454-00628F3A4F2B}"= C:\Program Files\AVG\AVG8\avgupd.exe:avgupd.exe
"{468128AD-57A2-4725-8BE4-487F73DF36BA}"= C:\Program Files\AVG\AVG8\avgemc.exe:avgemc.exe
[HKLM\~\services\sharedaccess\parameters\firewallpo licy\PublicProfile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpo licy\RestrictedServices\Static\System]
"DFSR-1"= RPort=5722|UDP:%SystemRoot%\system32\svchost.exe|S vc=DFSR:Allow inbound TCP traffic|
[HKLM\~\services\sharedaccess\parameters\firewallpo licy\StandardProfile]
"EnableFirewall"= 0 (0x0)
R1 AvgLdx86;AVG AVI Loader Driver x86;C:\Windows\system32\Drivers\avgldx86.sys [2008-06-02 22:50]
R2 AESTFilters;Andrea ST Filters Service;C:\Windows\system32\aestsrv.exe [2007-11-12 12:07]
R2 avg8emc;AVG8 E-mail Scanner;C:\PROGRA~1\AVG\AVG8\avgemc.exe [2008-06-02 22:49]
R2 avg8wd;AVG8 WatchDog;C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2008-06-02 22:49]
R2 sprtsvc_dellsupportcenter;SupportSoft Sprocket Service (dellsupportcenter);C:\Program Files\Dell Support Center\bin\sprtsvc.exe [2007-11-15 10:23]
R2 XAudio;XAudio;C:\Windows\system32\DRIVERS\xaudio.s ys [2006-08-05 01:39]
R3 AvgWfpX;AVG8 Firewall Driver x86;C:\Windows\system32\Drivers\avgwfpx.sys [2008-06-02 22:50]
R3 igfx;igfx;C:\Windows\system32\DRIVERS\igdkmd32.sys [2007-12-15 04:53]
R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI Service;C:\Windows\system32\drivers\IntcHdmi.sys [2007-12-15 04:54]
R3 OEM02Dev;Creative Camera OEM002 Driver;C:\Windows\system32\DRIVERS\OEM02Dev.sys [2007-08-28 06:51]
R3 OEM02Vfx;Creative Camera OEM002 Video VFX Driver;C:\Windows\system32\DRIVERS\OEM02Vfx.sys [2007-08-28 06:51]
R3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\system32\DRIVERS\yk60x86.sys [2007-09-29 06:31]
S3 R300;R300;C:\Windows\system32\DRIVERS\atikmdag.sys [2006-11-02 08:36]
.
Contents of the 'Scheduled Tasks' folder
"2008-05-15 00:00:00 C:\Windows\Tasks\McDefragTask.job"
- c:\PROGRA~1\mcafee\mqc\QcConsol.exe'
"2008-05-01 00:00:00 C:\Windows\Tasks\McQcTask.job"
- c:\PROGRA~1\mcafee\mqc\QcConsol.exe
.
************************************************** ************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-06-07 18:36:45
Windows 6.0.6000 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
************************************************** ************************
.
Completion time: 2008-06-07 18:39:24
ComboFix-quarantined-files.txt 2008-06-07 17:38:10
ComboFix2.txt 2008-06-07 00:01:39
The system cannot find message text for message number 0x2379 in the message file for Application.
The system cannot find message text for message number 0x2379 in the message file for Application.
252 --- E O F --- 2008-06-06 17:51:05