ComboFix 09-06-13.02 - Vytas 13/06/2009 20:57.1 - NTFSx86 NETWORK
Microsoft
Windows Vista
Home Basic 6.0.6000.0.1257.370.1033.18.1526.1084 [GMT 1:00]
Running from: c:\users\Vytas\Desktop\Combo-Fix.exe
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\programdata\17997794
c:\programdata\98007786
c:\programdata\Microsoft\Network\Downloader\qmgr0.dat
c:\programdata\Microsoft\Network\Downloader\qmgr1.dat
c:\programdata\Microsoft\Windows\Start Menu\Programs\freshplay
c:\users\Vytas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\freshplay
c:\program files\Mozilla Firefox\components\iamfamous.dll
c:\programdata\17997794\17997794.exe
c:\programdata\17997794\17997794.glu
c:\programdata\17997794\pc17997794cnf
c:\programdata\17997794\pc17997794ins
c:\programdata\98007786\98007786.exe
c:\programdata\Microsoft\Windows\Start Menu\Programs\freshplay\Uninstall.lnk
c:\windows\system32\abegaday.ini
c:\windows\system32\adazipar.ini
c:\windows\system32\aworokob.ini
c:\windows\system32\boyudozu.dll
c:\windows\system32\dawesiye.dll
c:\windows\system32\efikivew.ini
c:\windows\system32\egetunip.ini
c:\windows\system32\egusisay.ini
c:\windows\system32\enomoyup.ini
c:\windows\system32\erumavop.ini
c:\windows\system32\ezivoyoh.ini
c:\windows\system32\fozovinu.dll
c:\windows\system32\gaopdxcounter
c:\windows\system32\idivewav.ini
c:\windows\system32\ijozuzuj.ini
c:\windows\system32\irogeyun.ini
c:\windows\system32\isafugaz.ini
c:\windows\system32\isawamab.ini
c:\windows\system32\ivapogej.ini
c:\windows\system32\iwaroyiv.ini
c:\windows\system32\jimikene.dll
c:\windows\system32\jipilere.dll
c:\windows\system32\obohewej.ini
c:\windows\system32\ohidaruj.ini
c:\windows\system32\okisikin.ini
c:\windows\system32\oniwakeb.ini
c:\windows\system32\osugeken.ini
c:\windows\system32\owekiwid.ini
c:\windows\system32\ozudefeh.ini
c:\windows\system32\skinboxer43.dll
c:\windows\system32\u2g.f
c:\windows\system32\udayibow.ini
c:\windows\system32\ufaputud.ini
c:\windows\system32\ufohizuz.ini
c:\windows\system32\ugihojom.ini
c:\windows\system32\ukibunis.ini
c:\windows\system32\ulakirow.ini
c:\windows\system32\univozof.ini
c:\windows\system32\upotizag.ini
c:\windows\system32\urivodoz.ini
c:\windows\system32\uzoduyob.ini
c:\windows\system32\vawevidi.dll
c:\windows\system32\zuzihofu.dll
D:\Autorun.inf
----- BITS: Possible infected sites -----
hxxp://82.98.231.95.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Service_gaopdxserv.sys
((((((((((((((((((((((((( Files Created from 2009-05-13 to 2009-06-13 )))))))))))))))))))))))))))))))
.
2009-06-13 18:39 . 2009-06-13 18:39 0 ----a-w- c:\windows\system32\x2.dat
2009-06-11 08:56 . 2009-06-08 22:38 64160 ----a-w- c:\windows\system32\drivers\Lbd.sys
2009-06-08 22:38 . 2009-06-08 22:38 64160 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\Drivers\32\lbd.sys
2009-06-08 22:38 . 2009-06-08 22:38 73064 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\Drivers\32\AAWDriverTool.exe
2009-06-08 11:43 . 2009-03-30 09:33 96104 ----a-w- c:\windows\system32\drivers\avipbb.sys
2009-06-08 11:43 . 2009-03-24 15:08 55640 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2009-06-08 11:43 . 2009-06-08 11:43 -------- d-----w- c:\programdata\Avira
2009-06-08 11:43 . 2009-06-08 11:43 -------- d-----w- c:\program files\Avira
2009-06-08 11:13 . 2009-06-08 11:13 655872 ----a-w- c:\users\Vytas\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\uno_packages\15E5.tmp_\sun-presenter-screen.oxt\msvcr90.dll
2009-06-08 11:13 . 2009-06-08 11:13 601088 ----a-w- c:\users\Vytas\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\uno_packages\15E5.tmp_\sun-presenter-screen.oxt\PresenterScreen.uno.dll
2009-06-08 11:13 . 2009-06-08 11:13 568832 ----a-w- c:\users\Vytas\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\uno_packages\15E5.tmp_\sun-presenter-screen.oxt\msvcp90.dll
2009-06-08 11:13 . 2009-06-08 11:13 224768 ----a-w- c:\users\Vytas\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\uno_packages\15E5.tmp_\sun-presenter-screen.oxt\msvcm90.dll
2009-06-07 18:34 . 2009-06-08 11:22 -------- d-----w- c:\program files\CCleaner
2009-05-24 21:39 . 2007-08-24 18:26 172032 ----a-w- c:\windows\system32\igfxres.dll
2009-05-24 17:43 . 2009-05-24 17:43 -------- d-----w- c:\programdata\zewehapo
2009-05-24 17:43 . 2009-05-24 17:43 -------- d-----w- c:\programdata\lowagora
2009-05-23 15:35 . 2009-05-23 15:35 -------- d-----w- c:\programdata\rewebafe
2009-05-23 15:35 . 2009-05-23 15:35 -------- d-----w- c:\programdata\fisawuve
2009-05-22 14:10 . 2009-05-22 14:31 -------- d-----w- c:\programdata\kuvikave
2009-05-22 14:10 . 2009-05-22 14:10 -------- d-----w- c:\programdata\wufidipe
2009-05-22 02:10 . 2009-05-22 02:10 -------- d-----w- c:\programdata\wuteluga
2009-05-22 02:10 . 2009-05-22 02:10 -------- d-----w- c:\programdata\hizemeki
2009-05-21 14:09 . 2009-05-21 14:10 -------- d-----w- c:\programdata\simetuwi
2009-05-21 14:09 . 2009-05-21 14:09 -------- d-----w- c:\programdata\howayofa
2009-05-20 22:57 . 2009-05-20 22:57 -------- d-----w- c:\programdata\nosukiwe
2009-05-20 22:57 . 2009-05-20 22:57 -------- d-----w- c:\programdata\geruwupe
2009-05-20 10:57 . 2009-05-20 10:57 -------- d-----w- c:\programdata\vitumepa
2009-05-20 10:57 . 2009-05-20 10:57 -------- d-----w- c:\programdata\hulebaru
2009-05-19 16:03 . 2009-05-20 16:25 -------- d-----w- c:\programdata\vugehoye
2009-05-19 16:03 . 2009-05-19 16:03 -------- d-----w- c:\programdata\sizehapu
2009-05-19 00:32 . 2009-05-19 08:06 -------- d-----w- c:\programdata\lelukiwi
2009-05-19 00:32 . 2009-05-19 00:32 -------- d-----w- c:\programdata\pahewuja
2009-05-18 12:32 . 2009-05-18 12:53 -------- d-----w- c:\programdata\rijebehu
2009-05-18 12:32 . 2009-05-18 12:32 -------- d-----w- c:\programdata\zidukisu
2009-05-17 19:32 . 2009-05-17 19:53 -------- d-----w- c:\programdata\gofuhuvo
2009-05-17 19:32 . 2009-05-17 19:32 -------- d-----w- c:\programdata\kusavapu
2009-05-17 07:33 . 2009-05-17 07:54 -------- d-----w- c:\programdata\nidenefe
2009-05-17 07:33 . 2009-05-17 07:33 -------- d-----w- c:\programdata\powohefa
2009-05-16 17:11 . 2009-05-16 20:13 -------- d-----w- c:\programdata\wizisili
2009-05-16 17:11 . 2009-05-16 17:11 -------- d-----w- c:\programdata\dagenijo
2009-05-16 05:12 . 2009-05-16 15:44 -------- d-----w- c:\programdata\jahomayo
2009-05-16 05:12 . 2009-05-16 05:12 -------- d-----w- c:\programdata\pojovosa
2009-05-15 15:00 . 2009-05-15 15:21 -------- d-----w- c:\programdata\kefunuya
2009-05-15 15:00 . 2009-05-15 15:00 -------- d-----w- c:\programdata\zorihumu
2009-05-15 00:47 . 2009-05-27 13:33 -------- d-----w- c:\programdata\seyamoyu
2009-05-15 00:47 . 2009-05-27 13:33 -------- d-----w- c:\programdata\hisukeba
2009-05-15 00:47 . 2009-05-27 13:33 -------- d-----w- c:\programdata\fahumaki
2009-05-15 00:46 . 2009-05-15 01:08 -------- d-----w- c:\programdata\kejepuha
2009-05-15 00:46 . 2009-05-15 00:46 -------- d-----w- c:\programdata\leramada
2009-05-15 00:46 . 2009-05-15 00:46 -------- d-----w- c:\programdata\fomasopi
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-13 18:39 . 2009-03-13 18:39 81408 --sha-w- c:\windows\system32\kufisobe.dll
2009-06-13 18:39 . 2009-03-13 18:39 79872 --sha-w- c:\windows\system32\davotudo.dll
2009-06-13 18:39 . 2009-03-13 18:39 538430 --sha-w- c:\windows\system32\kijudawi.exe
2009-06-13 18:39 . 2009-03-13 18:39 15360 --sha-w- c:\windows\system32\zawomebe.exe
2009-06-12 22:54 . 2007-11-01 11:41 1356 ----a-w- c:\users\Vytas\AppData\Local\d3d9caps.dat
2009-06-12 22:28 . 2007-10-11 14:42 -------- d-----w- c:\users\Vytas\AppData\Roaming\Skype
2009-06-12 22:11 . 2009-03-12 22:11 538430 --sha-w- c:\windows\system32\kebizoru.exe
2009-06-12 22:11 . 2009-03-12 22:11 81920 --sha-w- c:\windows\system32\tijayoni.dll
2009-06-12 22:11 . 2009-03-12 22:11 79360 --sha-w- c:\windows\system32\yasisuge.dll
2009-06-12 10:11 . 2009-03-12 10:11 81920 --sha-w- c:\windows\system32\lenevode.dll
2009-06-11 23:30 . 2009-03-11 23:30 81920 --sha-w- c:\windows\system32\tayunazi.dll
2009-06-11 08:34 . 2009-03-11 08:33 48640 --sha-w- c:\windows\system32\momolane.dll
2009-06-11 08:33 . 2009-03-11 08:33 80896 --sha-w- c:\windows\system32\lujiyafa.dll
2009-06-10 18:23 . 2007-10-28 22:00 -------- d-----w- c:\users\Vytas\AppData\Roaming\uTorrent
2009-06-10 18:15 . 2009-03-10 18:15 82432 ----a-w- c:\windows\system32\huyavamu.VIR
2009-06-10 06:15 . 2009-03-10 06:15 82432 ----a-w- c:\windows\system32\kofumaje.VIR
2009-06-09 11:21 . 2009-05-09 16:32 1 ----a-w- c:\users\Vytas\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2009-05-30 21:52 . 2009-03-16 18:14 -------- d-----w- c:\users\Vytas\AppData\Roaming\RayV
2009-05-26 15:53 . 2008-03-09 20:32 -------- d-----w- c:\users\Vytas\AppData\Roaming\dvdcss
2009-05-24 17:43 . 2009-02-24 17:43 81920 --sha-w- c:\programdata\lowagora\lowagora.dll
2009-05-24 17:43 . 2009-02-24 17:43 78848 --sha-w- c:\programdata\zewehapo\zewehapo.dll
2009-05-23 15:35 . 2009-02-23 15:35 81920 --sha-w- c:\programdata\fisawuve\fisawuve.dll
2009-05-23 15:35 . 2009-02-23 15:35 78848 --sha-w- c:\programdata\rewebafe\rewebafe.dll
2009-05-22 14:10 . 2009-02-22 14:10 81920 --sha-w- c:\programdata\wufidipe\wufidipe.dll
2009-05-22 14:10 . 2009-02-22 14:10 78848 ------w- c:\programdata\kuvikave\kuvikave.dll
2009-05-22 02:10 . 2009-02-22 02:10 81920 --sha-w- c:\programdata\wuteluga\wuteluga.dll
2009-05-22 02:10 . 2009-02-22 02:10 78848 --sha-w- c:\programdata\hizemeki\hizemeki.dll
2009-05-21 14:09 . 2009-02-21 14:09 81920 --sha-w- c:\programdata\howayofa\howayofa.dll
2009-05-21 14:09 . 2009-02-21 14:09 78848 --sha-w- c:\programdata\simetuwi\simetuwi.dll
2009-05-20 22:57 . 2009-02-20 22:57 81920 --sha-w- c:\programdata\geruwupe\geruwupe.dll
2009-05-20 22:57 . 2009-02-20 22:57 78848 --sha-w- c:\programdata\nosukiwe\nosukiwe.dll
2009-05-20 10:57 . 2009-02-20 10:57 81920 --sha-w- c:\programdata\hulebaru\hulebaru.dll
2009-05-20 10:57 . 2009-02-20 10:57 78848 --sha-w- c:\programdata\vitumepa\vitumepa.dll
2009-05-19 16:03 . 2009-02-19 16:03 81920 --sha-w- c:\programdata\sizehapu\sizehapu.dll
2009-05-19 16:03 . 2009-02-19 16:03 78848 ------w- c:\programdata\vugehoye\vugehoye.dll
2009-05-19 00:32 . 2009-02-19 00:32 81920 --sha-w- c:\programdata\pahewuja\pahewuja.dll
2009-05-19 00:32 . 2009-02-19 00:32 78848 --sha-w- c:\programdata\lelukiwi\lelukiwi.dll
2009-05-18 12:32 . 2009-02-18 12:32 81920 --sha-w- c:\programdata\zidukisu\zidukisu.dll
2009-05-18 12:32 . 2009-02-18 12:32 78848 ------w- c:\programdata\rijebehu\rijebehu.dll
2009-05-17 19:32 . 2009-02-17 19:32 81920 --sha-w- c:\programdata\kusavapu\kusavapu.dll
2009-05-17 19:32 . 2009-02-17 19:32 78848 ------w- c:\programdata\gofuhuvo\gofuhuvo.dll
2009-05-17 07:33 . 2009-02-17 07:33 81920 --sha-w- c:\programdata\powohefa\powohefa.dll
2009-05-17 07:33 . 2009-02-17 07:33 78848 ------w- c:\programdata\nidenefe\nidenefe.dll
2009-05-16 17:11 . 2009-02-16 17:11 78848 ------w- c:\programdata\wizisili\wizisili.dll
2009-05-16 17:11 . 2009-02-16 17:11 81920 --sha-w- c:\programdata\dagenijo\dagenijo.dll
2009-05-16 05:12 . 2009-02-16 05:12 81920 --sha-w- c:\programdata\pojovosa\pojovosa.dll
2009-05-16 05:12 . 2009-02-16 05:12 79360 ------w- c:\programdata\jahomayo\jahomayo.dll
2009-05-15 15:00 . 2009-02-15 15:00 81408 --sha-w- c:\programdata\zorihumu\zorihumu.dll
2009-05-15 15:00 . 2009-02-15 15:00 80384 ------w- c:\programdata\kefunuya\kefunuya.dll
2009-05-15 00:47 . 2009-05-14 12:41 -------- d-----w- c:\programdata\werusizo
2009-05-15 00:47 . 2009-05-14 12:41 -------- d-----w- c:\programdata\rumorojo
2009-05-15 00:47 . 2009-05-14 12:41 -------- d-----w- c:\programdata\mehahoda
2009-05-15 00:47 . 2009-02-15 00:46 48640 --sha-w- c:\programdata\leramada\leramada.dll
2009-05-15 00:46 . 2009-02-15 00:46 81408 --sha-w- c:\programdata\fomasopi\fomasopi.dll
2009-05-15 00:46 . 2009-02-15 00:46 79872 ------w- c:\programdata\kejepuha\kejepuha.dll
2009-05-14 13:08 . 2009-05-14 12:46 -------- d-----w- c:\programdata\pibiluta
2009-05-14 12:46 . 2009-05-14 12:46 -------- d-----w- c:\programdata\fenenefu
2009-05-14 12:46 . 2009-02-14 12:46 81408 --sha-w- c:\programdata\fenenefu\fenenefu.dll
2009-05-14 12:46 . 2009-02-14 12:46 79872 ------w- c:\programdata\pibiluta\pibiluta.dll
2009-05-14 09:13 . 2007-10-12 16:19 -------- d-----w- c:\program files\Java
2009-05-12 17:02 . 2007-10-11 22:55 77560 ----a-w- c:\users\Vytas\AppData\Local\GDIPFONTCACHEV1.DAT
2009-05-12 14:28 . 2009-05-12 14:27 -------- d-----w- c:\users\Vytas\AppData\Roaming\vlc
2009-05-09 16:43 . 2009-05-09 16:43 568832 ----a-w- c:\users\Vytas\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\uno_packages\ADE5.tmp_\sun-presentation-minimizer.oxt\msvcp90.dll
2009-05-09 16:43 . 2009-05-09 16:43 251392 ----a-w- c:\users\Vytas\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\uno_packages\ADE5.tmp_\sun-presentation-minimizer.oxt\SunPresentationMinimizer.uno.dll
2009-05-09 16:43 . 2009-05-09 16:43 655872 ----a-w- c:\users\Vytas\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\uno_packages\ADE5.tmp_\sun-presentation-minimizer.oxt\msvcr90.dll
2009-05-09 16:43 . 2009-05-09 16:43 224768 ----a-w- c:\users\Vytas\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\uno_packages\ADE5.tmp_\sun-presentation-minimizer.oxt\msvcm90.dll
2009-05-09 16:32 . 2009-05-09 16:32 -------- d-----w- c:\users\Vytas\AppData\Roaming\OpenOffice.org
2009-05-09 16:29 . 2009-05-09 16:29 -------- d-----w- c:\program files\JRE
2009-05-09 16:29 . 2009-05-09 16:29 -------- d-----w- c:\program files\OpenOffice.org 3
2009-05-09 16:29 . 2007-10-12 16:24 -------- d-----w- c:\program files\OpenOffice.org 2.3
2009-05-08 10:06 . 2007-10-12 16:33 1 ----a-w- c:\users\Vytas\AppData\Roaming\OpenOffice.org2\user\uno_packages\cache\stamp.sys
2009-05-08 10:05 . 2007-10-12 16:32 -------- d-----w- c:\users\Vytas\AppData\Roaming\OpenOffice.org2
2009-05-07 14:59 . 2006-02-18 21:36 -------- d-----w- c:\programdata\Microsoft Help
2009-05-06 15:30 . 2009-05-06 15:30 4030464 ----a-w- c:\users\Vytas\AppData\Roaming\RayV\Viewer\RayV.dll
2009-05-06 02:19 . 2006-02-18 20:47 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-04-25 14:45 . 2007-11-05 07:41 304160 ----a-w- C:\PA207.DAT
2007-11-07 17:10 . 2007-10-19 18:53 80 --sh--w- c:\windows\System32\82D200A335.dll
2009-03-11 08:34 . 2009-03-11 08:34 48640 --sha-w- c:\windows\System32\jahinepa.dll
2009-03-11 08:34 . 2009-03-11 08:34 48640 --sha-w- c:\windows\System32\rulituzi.dll
.