ComboFix 08-11-27.03 - Darkromeo 2008-11-27 18:43:52.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2268 [GMT -5:00]
Running from: c:\documents and settings\Darkromeo\Desktop\ComboFix.exe
* Created a new restore point
* Resident AV is active
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\BlueRoses\Application Data\gadcom
c:\documents and settings\BlueRoses\Application Data\gadcom\gadcom.exe
c:\documents and settings\BlueRoses\Local Settings\Temporary Internet Files\fbk.sts
c:\program files\FunWebProducts
c:\program files\FunWebProducts\ScreenSaver\Images\00314325.urr
c:\program files\FunWebProducts\Shared\Cache\AvatarSmallBtn.html
c:\program files\FunWebProducts\Shared\Cache\CursorManiaBtn.html
c:\program files\FunWebProducts\Shared\Cache\FunBuddyIconBtn.html
c:\program files\FunWebProducts\Shared\Cache\MailStampBtn.html
c:\program files\FunWebProducts\Shared\Cache\MyFunCardsIMBtn.html
c:\program files\FunWebProducts\Shared\Cache\MyStationeryBtn.html
c:\program files\FunWebProducts\Shared\Cache\SmileyCentralBtn.html
c:\program files\Mjcore
c:\program files\Mjcore\Mjcore.dll
c:\program files\MyWebSearch
c:\program files\MyWebSearch\bar\1.bin\F3BKGERR.JPG
c:\program files\MyWebSearch\bar\1.bin\F3BROVLY.DLL
c:\program files\MyWebSearch\bar\1.bin\F3CJPEG.DLL
c:\program files\MyWebSearch\bar\1.bin\F3DTACTL.DLL
c:\program files\MyWebSearch\bar\1.bin\F3HISTSW.DLL
c:\program files\MyWebSearch\bar\1.bin\F3HTMLMU.DLL
c:\program files\MyWebSearch\bar\1.bin\F3HTTPCT.DLL
c:\program files\MyWebSearch\bar\1.bin\F3IMSTUB.DLL
c:\program files\MyWebSearch\bar\1.bin\F3POPSWT.DLL
c:\program files\MyWebSearch\bar\1.bin\F3PSSAVR.SCR
c:\program files\MyWebSearch\bar\1.bin\F3REPROX.DLL
c:\program files\MyWebSearch\bar\1.bin\F3SCHMON.EXE
c:\program files\MyWebSearch\bar\1.bin\F3SCRCTR.DLL
c:\program files\MyWebSearch\bar\1.bin\F3SHLLVW.DLL
c:\program files\MyWebSearch\bar\1.bin\F3SPACER.WMV
c:\program files\MyWebSearch\bar\1.bin\F3WALLPP.DAT
c:\program files\MyWebSearch\bar\1.bin\F3WPHOOK.DLL
c:\program files\MyWebSearch\bar\1.bin\M3FFXTBR.JAR
c:\program files\MyWebSearch\bar\1.bin\M3FFXTBR.MANIFEST
c:\program files\MyWebSearch\bar\1.bin\M3HTML.DLL
c:\program files\MyWebSearch\bar\1.bin\M3IDLE.DLL
c:\program files\MyWebSearch\bar\1.bin\M3MSG.DLL
c:\program files\MyWebSearch\bar\1.bin\M3NTSTBR.JAR
c:\program files\MyWebSearch\bar\1.bin\M3NTSTBR.MANIFEST
c:\program files\MyWebSearch\bar\1.bin\M3OUTLCN.DLL
c:\program files\MyWebSearch\bar\1.bin\M3SKIN.DLL
c:\program files\MyWebSearch\bar\1.bin\M3SKPLAY.EXE
c:\program files\MyWebSearch\bar\1.bin\M3SLSRCH.EXE
c:\program files\MyWebSearch\bar\1.bin\M3SRCHMN.EXE
c:\program files\MyWebSearch\bar\1.bin\MWSBAR.DLL
c:\program files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
c:\program files\MyWebSearch\bar\1.bin\MWSOEPLG.DLL
c:\program files\MyWebSearch\bar\1.bin\MWSOESTB.DLL
c:\program files\MyWebSearch\bar\Avatar\COMMON.F3S
c:\program files\MyWebSearch\bar\Cache\0002AF80.bin
c:\program files\MyWebSearch\bar\Cache\0002AFED.bin
c:\program files\MyWebSearch\bar\Cache\0002B07A.bin
c:\program files\MyWebSearch\bar\Cache\0002B0C8.bin
c:\program files\MyWebSearch\bar\Cache\0002B183
c:\program files\MyWebSearch\bar\Cache\0007437F.bin
c:\program files\MyWebSearch\bar\Cache\00074F56.bin
c:\program files\MyWebSearch\bar\Cache\00075B2D.bin
c:\program files\MyWebSearch\bar\Cache\00076753.bin
c:\program files\MyWebSearch\bar\Cache\0007684D.bin
c:\program files\MyWebSearch\bar\Cache\000769F3
c:\program files\MyWebSearch\bar\Cache\00309282.bin
c:\program files\MyWebSearch\bar\Cache\00309457.bin
c:\program files\MyWebSearch\bar\Cache\0030A07C.bin
c:\program files\MyWebSearch\bar\Cache\0030A109.bin
c:\program files\MyWebSearch\bar\Cache\0030A186.bin
c:\program files\MyWebSearch\bar\Cache\00F20035
c:\program files\MyWebSearch\bar\Cache\013BD42C
c:\program files\MyWebSearch\bar\Cache\files.ini
c:\program files\MyWebSearch\bar\Game\CHECKERS.F3S
c:\program files\MyWebSearch\bar\Game\CHESS.F3S
c:\program files\MyWebSearch\bar\Game\REVERSI.F3S
c:\program files\MyWebSearch\bar\History\search2
c:\program files\MyWebSearch\bar\Notifier\COMMON.F3S
c:\program files\MyWebSearch\bar\Notifier\DOG.F3S
c:\program files\MyWebSearch\bar\Notifier\FISH.F3S
c:\program files\MyWebSearch\bar\Notifier\KUNGFU.F3S
c:\program files\MyWebSearch\bar\Notifier\LIFEGARD.F3S
c:\program files\MyWebSearch\bar\Notifier\MAID.F3S
c:\program files\MyWebSearch\bar\Notifier\MAILBOX.F3S
c:\program files\MyWebSearch\bar\Notifier\OPERA.F3S
c:\program files\MyWebSearch\bar\Notifier\ROBOT.F3S
c:\program files\MyWebSearch\bar\Notifier\SEDUCT.F3S
c:\program files\MyWebSearch\bar\Notifier\SURFER.F3S
c:\program files\MyWebSearch\bar\Search\COMMON.F3S
c:\program files\MyWebSearch\bar\Search\COMMON\bd_grad.gif
c:\program files\MyWebSearch\bar\Search\COMMON\center.htm
c:\program files\MyWebSearch\bar\Search\COMMON\index.htm
c:\program files\MyWebSearch\bar\Search\COMMON\mid_dots.gif
c:\program files\MyWebSearch\bar\Search\COMMON\stop.gif
c:\program files\MyWebSearch\bar\Search\COMMON\systray.htm
c:\program files\MyWebSearch\bar\Search\COMMON\systrayp.htm
c:\program files\MyWebSearch\bar\Search\COMMON\tp_grad.gif
c:\program files\MyWebSearch\bar\Search\COMMON\warn.gif
c:\program files\MyWebSearch\bar\Settings\prevcfg2.htm
c:\program files\MyWebSearch\bar\Settings\s_pid.dat
c:\program files\MyWebSearch\bar\Settings\setting2.htm
c:\program files\MyWebSearch\bar\Settings\settings.dat
c:\program files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
c:\program files\screensavers.com
c:\program files\screensavers.com\SSSInst\bin\SSSInst.dll
c:\program files\screensavers.com\SSSInst\bin\SSSUninst.exe
c:\program files\screensavers.com\Wallpaper\Land of the Dead.jpg
c:\program files\screensavers.com\Wallpaper\swpstart.exe
c:\temp\1cb
c:\temp\1cb\syscheck.log
c:\temp\tn3
c:\windows\Downloaded Program Files\setup.inf
c:\windows\IE4 Error Log.txt
c:\windows\system32\cwhjafqg.dll
c:\windows\system32\drivers\core.cache(2).dsk
c:\windows\system32\drivers\core.cache(3).dsk
c:\windows\system32\drivers\core.cache(4).dsk
c:\windows\system32\f3PSSavr.scr
c:\windows\system32\gqfajhwc.ini
c:\windows\system32\gxtbji(2).dll
c:\windows\system32\hgGAQjHy.dll
c:\windows\system32\ilirlg.dll
c:\windows\system32\kxuifusq.dll
c:\windows\system32\liaynocu.dll
c:\windows\system32\prunnet.exe
c:\windows\system32\pulamiwa.dll
c:\windows\system32\rtavqwpg.dll
c:\windows\system32\siludodi.dll
c:\windows\system32\tinqfz.dll
c:\windows\system32\uconyail.ini
c:\windows\system32\vakumene.dll
c:\windows\system32\yHjQAGgh.ini
c:\windows\system32\yHjQAGgh.ini2
c:\windows\system32\drivers\core.cache.dsk . . . . failed to delete
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2268 [GMT -5:00]
Running from: c:\documents and settings\Darkromeo\Desktop\ComboFix.exe
* Created a new restore point
* Resident AV is active
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\BlueRoses\Application Data\gadcom
c:\documents and settings\BlueRoses\Application Data\gadcom\gadcom.exe
c:\documents and settings\BlueRoses\Local Settings\Temporary Internet Files\fbk.sts
c:\program files\FunWebProducts
c:\program files\FunWebProducts\ScreenSaver\Images\00314325.urr
c:\program files\FunWebProducts\Shared\Cache\AvatarSmallBtn.html
c:\program files\FunWebProducts\Shared\Cache\CursorManiaBtn.html
c:\program files\FunWebProducts\Shared\Cache\FunBuddyIconBtn.html
c:\program files\FunWebProducts\Shared\Cache\MailStampBtn.html
c:\program files\FunWebProducts\Shared\Cache\MyFunCardsIMBtn.html
c:\program files\FunWebProducts\Shared\Cache\MyStationeryBtn.html
c:\program files\FunWebProducts\Shared\Cache\SmileyCentralBtn.html
c:\program files\Mjcore
c:\program files\Mjcore\Mjcore.dll
c:\program files\MyWebSearch
c:\program files\MyWebSearch\bar\1.bin\F3BKGERR.JPG
c:\program files\MyWebSearch\bar\1.bin\F3BROVLY.DLL
c:\program files\MyWebSearch\bar\1.bin\F3CJPEG.DLL
c:\program files\MyWebSearch\bar\1.bin\F3DTACTL.DLL
c:\program files\MyWebSearch\bar\1.bin\F3HISTSW.DLL
c:\program files\MyWebSearch\bar\1.bin\F3HTMLMU.DLL
c:\program files\MyWebSearch\bar\1.bin\F3HTTPCT.DLL
c:\program files\MyWebSearch\bar\1.bin\F3IMSTUB.DLL
c:\program files\MyWebSearch\bar\1.bin\F3POPSWT.DLL
c:\program files\MyWebSearch\bar\1.bin\F3PSSAVR.SCR
c:\program files\MyWebSearch\bar\1.bin\F3REPROX.DLL
c:\program files\MyWebSearch\bar\1.bin\F3SCHMON.EXE
c:\program files\MyWebSearch\bar\1.bin\F3SCRCTR.DLL
c:\program files\MyWebSearch\bar\1.bin\F3SHLLVW.DLL
c:\program files\MyWebSearch\bar\1.bin\F3SPACER.WMV
c:\program files\MyWebSearch\bar\1.bin\F3WALLPP.DAT
c:\program files\MyWebSearch\bar\1.bin\F3WPHOOK.DLL
c:\program files\MyWebSearch\bar\1.bin\M3FFXTBR.JAR
c:\program files\MyWebSearch\bar\1.bin\M3FFXTBR.MANIFEST
c:\program files\MyWebSearch\bar\1.bin\M3HTML.DLL
c:\program files\MyWebSearch\bar\1.bin\M3IDLE.DLL
c:\program files\MyWebSearch\bar\1.bin\M3MSG.DLL
c:\program files\MyWebSearch\bar\1.bin\M3NTSTBR.JAR
c:\program files\MyWebSearch\bar\1.bin\M3NTSTBR.MANIFEST
c:\program files\MyWebSearch\bar\1.bin\M3OUTLCN.DLL
c:\program files\MyWebSearch\bar\1.bin\M3SKIN.DLL
c:\program files\MyWebSearch\bar\1.bin\M3SKPLAY.EXE
c:\program files\MyWebSearch\bar\1.bin\M3SLSRCH.EXE
c:\program files\MyWebSearch\bar\1.bin\M3SRCHMN.EXE
c:\program files\MyWebSearch\bar\1.bin\MWSBAR.DLL
c:\program files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
c:\program files\MyWebSearch\bar\1.bin\MWSOEPLG.DLL
c:\program files\MyWebSearch\bar\1.bin\MWSOESTB.DLL
c:\program files\MyWebSearch\bar\Avatar\COMMON.F3S
c:\program files\MyWebSearch\bar\Cache\0002AF80.bin
c:\program files\MyWebSearch\bar\Cache\0002AFED.bin
c:\program files\MyWebSearch\bar\Cache\0002B07A.bin
c:\program files\MyWebSearch\bar\Cache\0002B0C8.bin
c:\program files\MyWebSearch\bar\Cache\0002B183
c:\program files\MyWebSearch\bar\Cache\0007437F.bin
c:\program files\MyWebSearch\bar\Cache\00074F56.bin
c:\program files\MyWebSearch\bar\Cache\00075B2D.bin
c:\program files\MyWebSearch\bar\Cache\00076753.bin
c:\program files\MyWebSearch\bar\Cache\0007684D.bin
c:\program files\MyWebSearch\bar\Cache\000769F3
c:\program files\MyWebSearch\bar\Cache\00309282.bin
c:\program files\MyWebSearch\bar\Cache\00309457.bin
c:\program files\MyWebSearch\bar\Cache\0030A07C.bin
c:\program files\MyWebSearch\bar\Cache\0030A109.bin
c:\program files\MyWebSearch\bar\Cache\0030A186.bin
c:\program files\MyWebSearch\bar\Cache\00F20035
c:\program files\MyWebSearch\bar\Cache\013BD42C
c:\program files\MyWebSearch\bar\Cache\files.ini
c:\program files\MyWebSearch\bar\Game\CHECKERS.F3S
c:\program files\MyWebSearch\bar\Game\CHESS.F3S
c:\program files\MyWebSearch\bar\Game\REVERSI.F3S
c:\program files\MyWebSearch\bar\History\search2
c:\program files\MyWebSearch\bar\Notifier\COMMON.F3S
c:\program files\MyWebSearch\bar\Notifier\DOG.F3S
c:\program files\MyWebSearch\bar\Notifier\FISH.F3S
c:\program files\MyWebSearch\bar\Notifier\KUNGFU.F3S
c:\program files\MyWebSearch\bar\Notifier\LIFEGARD.F3S
c:\program files\MyWebSearch\bar\Notifier\MAID.F3S
c:\program files\MyWebSearch\bar\Notifier\MAILBOX.F3S
c:\program files\MyWebSearch\bar\Notifier\OPERA.F3S
c:\program files\MyWebSearch\bar\Notifier\ROBOT.F3S
c:\program files\MyWebSearch\bar\Notifier\SEDUCT.F3S
c:\program files\MyWebSearch\bar\Notifier\SURFER.F3S
c:\program files\MyWebSearch\bar\Search\COMMON.F3S
c:\program files\MyWebSearch\bar\Search\COMMON\bd_grad.gif
c:\program files\MyWebSearch\bar\Search\COMMON\center.htm
c:\program files\MyWebSearch\bar\Search\COMMON\index.htm
c:\program files\MyWebSearch\bar\Search\COMMON\mid_dots.gif
c:\program files\MyWebSearch\bar\Search\COMMON\stop.gif
c:\program files\MyWebSearch\bar\Search\COMMON\systray.htm
c:\program files\MyWebSearch\bar\Search\COMMON\systrayp.htm
c:\program files\MyWebSearch\bar\Search\COMMON\tp_grad.gif
c:\program files\MyWebSearch\bar\Search\COMMON\warn.gif
c:\program files\MyWebSearch\bar\Settings\prevcfg2.htm
c:\program files\MyWebSearch\bar\Settings\s_pid.dat
c:\program files\MyWebSearch\bar\Settings\setting2.htm
c:\program files\MyWebSearch\bar\Settings\settings.dat
c:\program files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
c:\program files\screensavers.com
c:\program files\screensavers.com\SSSInst\bin\SSSInst.dll
c:\program files\screensavers.com\SSSInst\bin\SSSUninst.exe
c:\program files\screensavers.com\Wallpaper\Land of the Dead.jpg
c:\program files\screensavers.com\Wallpaper\swpstart.exe
c:\temp\1cb
c:\temp\1cb\syscheck.log
c:\temp\tn3
c:\windows\Downloaded Program Files\setup.inf
c:\windows\IE4 Error Log.txt
c:\windows\system32\cwhjafqg.dll
c:\windows\system32\drivers\core.cache(2).dsk
c:\windows\system32\drivers\core.cache(3).dsk
c:\windows\system32\drivers\core.cache(4).dsk
c:\windows\system32\f3PSSavr.scr
c:\windows\system32\gqfajhwc.ini
c:\windows\system32\gxtbji(2).dll
c:\windows\system32\hgGAQjHy.dll
c:\windows\system32\ilirlg.dll
c:\windows\system32\kxuifusq.dll
c:\windows\system32\liaynocu.dll
c:\windows\system32\prunnet.exe
c:\windows\system32\pulamiwa.dll
c:\windows\system32\rtavqwpg.dll
c:\windows\system32\siludodi.dll
c:\windows\system32\tinqfz.dll
c:\windows\system32\uconyail.ini
c:\windows\system32\vakumene.dll
c:\windows\system32\yHjQAGgh.ini
c:\windows\system32\yHjQAGgh.ini2
c:\windows\system32\drivers\core.cache.dsk . . . . failed to delete