erm, the first log accidently got deleted but I ran combofix again so here's the second one:
oh and it doesn't look like the virus is there anymore!! no more annoying "you've got a viruss!!" popups! : ) I've got a question though, our Norton is going to expire in 2 days and I don't have anything else installed the computer to protect it. do you have any recommendations for some good antivirus programs..?
ComboFix 09-06-11.06 - Nadine 06/13/2009 14:08.3 - NTFSx86
Microsoft
Windows Vista
Home Premium 6.0.6001.1.1252.2.1033.18.2942.1895 [GMT -7:00]
Running from: c:\users\Nadine\Desktop\Combo-Fix.exe
AV: Norton Internet Security *On-access scanning disabled* (Updated) {E10A9785-9598-4754-B552-92431C1C35F8}
FW: Norton Internet Security *disabled* {7C21A4C9-F61F-4AC4-B722-A6E19C16F220}
SP: Norton Internet Security *disabled* (Updated) {CBB7EE13-8244-4DAB-8B55-D5C7AA91E59A}
SP: Windows Defender *disabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.
((((((((((((((((((((((((( Files Created from 2009-05-13 to 2009-06-13 )))))))))))))))))))))))))))))))
.
2009-06-13 21:09 . 2009-06-13 21:09 -------- d-----w- c:\users\sarah\AppData\Local\temp
2009-06-13 21:00 . 2009-06-13 21:10 -------- d-----w- c:\users\Nadine\AppData\Local\temp
2009-06-11 02:53 . 2009-06-11 02:53 -------- d-----w- c:\users\Nadine\AppData\Roaming\SYSTEMAX Software Development
2009-06-10 03:38 . 2008-10-06 17:53 15656 ----a-w- c:\windows\system32\drivers\wacmoumonitor.sys
2009-06-08 00:58 . 2009-06-08 00:58 -------- d-----w- c:\program files\Trend Micro
2009-06-07 22:04 . 2009-04-15 20:16 89104 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\20090607.004\NAVENG.SYS
2009-06-07 22:04 . 2009-04-15 20:16 876144 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\20090607.004\NAVEX15.SYS
2009-06-07 22:04 . 2009-04-15 20:16 371248 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\20090607.004\EECTRL.SYS
2009-06-07 22:04 . 2009-04-15 20:16 259368 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\20090607.004\ECMSVR32.DLL
2009-06-07 22:04 . 2009-04-15 20:16 2414128 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\20090607.004\CCERASER.DLL
2009-06-07 22:04 . 2009-04-15 20:16 177520 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\20090607.004\NAVENG32.DLL
2009-06-07 22:04 . 2009-04-15 20:16 1181040 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\20090607.004\NAVEX32A.DLL
2009-06-07 22:04 . 2009-04-15 20:16 101936 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\20090607.004\ERASER.SYS
2009-06-05 04:40 . 2009-04-15 20:16 876144 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\20090604.021\NAVEX15.SYS
2009-06-05 04:40 . 2009-04-15 20:16 1181040 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\20090604.021\NAVEX32A.DLL
2009-06-05 04:40 . 2009-04-15 20:16 89104 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\20090604.021\NAVENG.SYS
2009-06-05 04:40 . 2009-04-15 20:16 371248 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\20090604.021\EECTRL.SYS
2009-06-05 04:40 . 2009-04-15 20:16 259368 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\20090604.021\ECMSVR32.DLL
2009-06-05 04:40 . 2009-04-15 20:16 2414128 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\20090604.021\CCERASER.DLL
2009-06-05 04:40 . 2009-04-15 20:16 177520 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\20090604.021\NAVENG32.DLL
2009-06-05 04:40 . 2009-04-15 20:16 101936 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\20090604.021\ERASER.SYS
2009-06-04 03:20 . 2009-06-08 01:44 -------- d-----w- c:\users\Nadine\AppData\Local\Microsoft Games
2009-06-04 03:16 . 2009-06-04 03:16 -------- d-----w- c:\users\Nadine\AppData\Roaming\Malwarebytes
2009-06-04 02:26 . 2009-06-04 02:26 -------- d-----w- c:\users\sarah\AppData\Roaming\Malwarebytes
2009-06-04 02:26 . 2009-05-26 20:20 40160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-06-04 02:26 . 2009-06-04 02:26 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-06-04 02:26 . 2009-06-04 02:26 -------- d-----w- c:\programdata\Malwarebytes
2009-06-04 02:26 . 2009-05-26 20:19 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-05-30 04:28 . 2009-03-06 17:25 439672 ----a-w- c:\programdata\Symantec\Definitions\SymcData\ipsdefs\20090528.001\Scxpx86.dll
2009-05-30 04:28 . 2009-02-09 22:59 272432 ----a-w- c:\programdata\Symantec\Definitions\SymcData\ipsdefs\20090528.001\IDSvix86.sys
2009-05-30 04:28 . 2009-02-09 22:59 251768 ----a-w- c:\programdata\Symantec\Definitions\SymcData\ipsdefs\20090528.001\SymIDSCo.sys
2009-05-30 04:28 . 2009-02-09 22:59 685432 ----a-w- c:\programdata\Symantec\Definitions\SymcData\ipsdefs\20090528.001\IDSxpx86.dll
2009-05-30 04:28 . 2009-02-09 22:59 173432 ----a-w- c:\programdata\Symantec\Definitions\SymcData\ipsdefs\20090528.001\SymIDSI.dll
2009-05-30 04:28 . 2009-02-09 22:59 370224 ----a-w- c:\programdata\Symantec\Definitions\SymcData\ipsdefs\20090528.001\IDSviA64.sys
2009-05-30 04:28 . 2007-08-07 15:25 157120 ----a-w- c:\programdata\Symantec\Definitions\SymcData\ipsdefs\20090528.001\IDS9xx86.dll
2009-05-25 00:27 . 2009-06-13 21:05 -------- d-----w- c:\users\sarah\.rainlendar2
2009-05-25 00:27 . 2009-05-25 00:27 -------- d-----w- c:\program files\Rainlendar2
2009-05-24 23:59 . 2009-05-25 02:08 -------- d-----w- c:\users\sarah\AppData\Roaming\Winamp
2009-05-24 23:59 . 2009-05-25 00:01 -------- d-----w- c:\program files\Winamp
2009-05-24 22:12 . 2009-05-24 22:13 -------- d-----w- c:\users\sarah\AppData\Roaming\muvee Technologies
2009-05-22 04:43 . 2009-03-06 17:25 439672 ----a-w- c:\programdata\Symantec\Definitions\SymcData\ipsdefs\20090519.005\Scxpx86.dll
2009-05-22 04:43 . 2009-02-09 22:59 272432 ----a-w- c:\programdata\Symantec\Definitions\SymcData\ipsdefs\20090519.005\IDSvix86.sys
2009-05-22 04:43 . 2009-02-09 22:59 251768 ----a-w- c:\programdata\Symantec\Definitions\SymcData\ipsdefs\20090519.005\SymIDSCo.sys
2009-05-22 04:43 . 2009-02-09 22:59 685432 ----a-w- c:\programdata\Symantec\Definitions\SymcData\ipsdefs\20090519.005\IDSxpx86.dll
2009-05-22 04:43 . 2009-02-09 22:59 173432 ----a-w- c:\programdata\Symantec\Definitions\SymcData\ipsdefs\20090519.005\SymIDSI.dll
2009-05-22 04:43 . 2009-02-09 22:59 370224 ----a-w- c:\programdata\Symantec\Definitions\SymcData\ipsdefs\20090519.005\IDSviA64.sys
2009-05-22 04:43 . 2007-08-07 15:25 157120 ----a-w- c:\programdata\Symantec\Definitions\SymcData\ipsdefs\20090519.005\IDS9xx86.dll
2009-05-18 23:12 . 2009-05-18 23:12 239865 ----a-w- c:\users\sarah\gunslingngeisha-sakuraimgpack.zip
2009-05-18 21:50 . 2009-05-18 21:50 -------- d-----w- c:\users\sarah\AppData\Roaming\SYSTEMAX Software Development
2009-05-18 21:50 . 2009-05-18 21:50 -------- d-----w- c:\programdata\SYSTEMAX Software Development
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-13 21:06 . 2008-06-18 15:29 -------- d-----w- c:\users\Nadine\AppData\Roaming\WTablet
2009-06-13 21:05 . 2008-06-18 00:37 -------- d-----w- c:\users\sarah\AppData\Roaming\WTablet
2009-06-13 17:04 . 2008-09-12 02:00 -------- d-----w- c:\programdata\Google Updater
2009-06-13 02:37 . 2008-04-08 01:56 316 ----a-w- c:\users\sarah\AppData\Roaming\wklnhst.dat
2009-06-10 03:43 . 2008-06-18 00:33 -------- d-----w- c:\program files\Tablet
2009-06-10 00:26 . 2009-05-09 00:15 -------- d-----w- c:\programdata\Viewpoint
2009-06-10 00:26 . 2007-12-06 18:33 -------- d-----w- c:\program files\Java
2009-06-04 14:28 . 2008-06-17 21:22 -------- d-----w- c:\program files\Common Files\PX Storage Engine
2009-06-04 14:27 . 2008-10-02 02:34 -------- d-----w- c:\programdata\HP Product Assistant
2009-06-04 14:27 . 2007-12-06 18:34 -------- d-----w- c:\program files\Microsoft Works
2009-06-04 14:27 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2009-06-04 05:31 . 2008-08-22 04:32 -------- d-----w- c:\programdata\Microsoft Help
2009-06-04 00:01 . 2008-04-20 19:46 71872 ----a-w- c:\users\Nadine\AppData\Local\GDIPFONTCACHEV1.DAT
2009-05-25 03:29 . 2007-12-06 18:23 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-05-25 03:29 . 2008-06-14 02:30 -------- d-----w- c:\program files\Conduit
2009-05-24 22:41 . 2008-04-06 01:57 71872 ----a-w- c:\users\sarah\AppData\Local\GDIPFONTCACHEV1.DAT
2009-05-24 22:15 . 2009-04-19 04:36 -------- d-----w- c:\program files\ConsoleClassix.com
2009-05-24 22:08 . 2008-06-17 20:58 -------- d-----w- c:\program files\Veoh Networks
2009-05-24 22:07 . 2009-04-19 17:15 -------- d-----w- c:\program files\StepMania
2009-05-24 22:05 . 2008-04-06 18:33 -------- d-----w- c:\program files\LimeWire
2009-05-09 20:19 . 2008-04-06 18:34 -------- d-----w- c:\users\sarah\AppData\Roaming\LimeWire
2009-05-09 00:17 . 2009-05-09 00:15 -------- d-----w- c:\programdata\AOL OCP
2009-05-09 00:16 . 2009-05-09 00:16 -------- d-----w- c:\users\sarah\AppData\Roaming\acccore
2009-05-09 00:16 . 2009-05-09 00:14 -------- d-----w- c:\program files\AIM6
2009-05-09 00:15 . 2009-05-09 00:15 -------- d-----w- c:\programdata\acccore
2009-05-09 00:15 . 2009-05-09 00:15 -------- d-----w- c:\programdata\AOL
2009-05-09 00:14 . 2009-05-09 00:14 -------- d-----w- c:\program files\Common Files\AOL
2009-04-25 03:06 . 2007-12-06 18:43 -------- d-----w- c:\programdata\Symantec
2009-04-15 20:16 . 2009-05-06 18:33 89104 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\BinHub\NAVENG.SYS
2009-04-15 20:16 . 2009-05-06 18:33 876144 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\BinHub\NAVEX15.SYS
2009-04-15 20:16 . 2009-05-06 18:33 371248 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\BinHub\EECTRL.SYS
2009-04-15 20:16 . 2009-05-06 18:33 259368 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\BinHub\ECMSVR32.DLL
2009-04-15 20:16 . 2009-05-06 18:33 2414128 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\BinHub\CCERASER.DLL
2009-04-15 20:16 . 2009-05-06 18:33 177520 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\BinHub\NAVENG32.DLL
2009-04-15 20:16 . 2009-05-06 18:33 1181040 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\BinHub\NAVEX32A.DLL
2009-04-15 20:16 . 2009-05-06 18:33 101936 ----a-w- c:\programdata\Symantec\Definitions\VirusDefs\BinHub\ERASER.SYS
2009-04-11 23:06 . 2009-04-11 23:06 483 ----a-w- c:\windows\eReg.dat
2009-04-11 15:47 . 2009-03-06 03:47 227 ----a-w- c:\windows\PowerReg.dat
2009-04-07 03:02 . 2009-04-07 03:02 75048 ----a-w- c:\programdata\Apple Computer\Installer Cache\iTunes 8.1.1.10\SetupAdmin.exe
2009-04-06 02:23 . 2008-12-07 21:04 340953 ----a-w- c:\users\sarah\wmv-1-2676.zip
2009-03-19 23:32 . 2009-04-07 03:06 23400 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2009-03-19 23:32 . 2009-03-19 23:32 23400 ----a-w- c:\programdata\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}\x86\x86\GEARAspiWDM.sys
2009-03-17 03:38 . 2009-06-04 04:40 13824 ----a-w- c:\windows\system32\apilogen.dll
2009-03-17 03:38 . 2009-06-04 04:40 24064 ----a-w- c:\windows\system32\amxread.dll
1999-07-07 00:00 . 1999-07-07 00:00 6 --sh--r- c:\windows\@@desktop.dat
2007-12-06 17:46 . 2007-12-06 17:41 8192 --sha-w- c:\windows\Users\Default\NTUSER.DAT
.