ComboFix 09-07-14.08 - Administrator 07/16/2009 15:49.2.1 - NTFSx86 NETWORK
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.254.116 [GMT -4:00]
Running from: c:\documents and settings\Administrator\Desktop\Combo-Fix.exe
Command switches used :: c:\documents and settings\Administrator\Desktop\CFScript.txt
AV: AVG Anti-Virus Free *On-access scanning enabled* (Outdated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\program files\Viewpoint
c:\program files\Viewpoint\Common\ViewpointService.exe
c:\program files\Viewpoint\Common\VistaBoot.sdll
c:\program files\Viewpoint\Viewpoint Manager\CPtask.xml
c:\program files\Viewpoint\Viewpoint Manager\VETScriptInterpreter.dll
c:\program files\Viewpoint\Viewpoint Manager\ViewCP.cpl
c:\program files\Viewpoint\Viewpoint Manager\ViewCPData\images\s.gif
c:\program files\Viewpoint\Viewpoint Manager\ViewCPData\images\Thumbs.db
c:\program files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_header_av.gif
c:\program files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_header_cp.gif
c:\program files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_header_up.gif
c:\program files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_inner_bg.gif
c:\program files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_inner_bottom.gif
c:\program files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_tab_bg.gif
c:\program files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_tab1_off.gif
c:\program files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_tab1_on.gif
c:\program files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_tab2_off.gif
c:\program files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_tab2_on.gif
c:\program files\Viewpoint\Viewpoint Manager\ViewCPData\images\vwpt_logo.gif
c:\program files\Viewpoint\Viewpoint Manager\ViewCPData\options.ini
c:\program files\Viewpoint\Viewpoint Manager\ViewCPData\viewpoint.ico
c:\program files\Viewpoint\Viewpoint Manager\ViewCPData\vmctrl.html
c:\program files\Viewpoint\Viewpoint Manager\ViewCPexe.exe
c:\program files\Viewpoint\Viewpoint Manager\ViewMgr.exe
c:\program files\Viewpoint\Viewpoint Manager\ViewMgrCore.dll
c:\program files\Viewpoint\Viewpoint Manager\ViewMgrInstaller.exe
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_BLSXPHEGUKQBY
-------\Legacy_HAUCMWHR
-------\Legacy_JCWTXWNDIC
-------\Legacy_QLNTMXEUL
-------\Legacy_VIEWPOINT_MANAGER_SERVICE
-------\Legacy_XSUOVW
-------\Service_blsxphegukqby
-------\Service_haucmwhr
-------\Service_jcwtxwndic
-------\Service_qlntmxeul
-------\Service_Viewpoint Manager Service
-------\Service_xsuovw
((((((((((((((((((((((((( Files Created from 2009-06-16 to 2009-07-16 )))))))))))))))))))))))))))))))
.
2009-07-16 16:46 . 2009-07-16 16:46 -------- d-----w- c:\windows\LastGood.Tmp
2009-07-16 16:32 . 2008-04-14 00:12 50176 -c--a-w- c:\windows\system32\dllcache\proquota.exe
2009-07-16 16:32 . 2008-04-14 00:12 50176 ----a-w- c:\windows\system32\proquota.exe
2009-07-14 20:29 . 2009-07-13 17:36 38160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-07-14 20:29 . 2009-07-14 20:29 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-07-14 20:29 . 2009-07-13 17:36 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-07-14 16:04 . 2009-07-14 16:04 -------- d-----w- c:\program files\Trend Micro
2009-07-14 13:37 . 2009-07-14 13:37 -------- d-----w- c:\windows\system32\config\systemprofile\Local Settings\Application Data\Adobe
2009-07-14 13:35 . 2009-07-14 13:35 15080 ----a-w- c:\documents and settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-07-14 01:44 . 2009-07-14 16:22 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2009-07-14 00:44 . 2009-07-14 00:44 -------- d-----w- c:\documents and settings\Administrator\Application Data\Malwarebytes
2009-07-13 00:23 . 2009-07-13 00:23 -------- d-----w- c:\documents and settings\Andrew\Application Data\Malwarebytes
2009-07-13 00:23 . 2009-07-13 00:23 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2009-07-12 22:49 . 2009-07-12 22:49 -------- d-----w- c:\documents and settings\Administrator\Local Settings\Application Data\AVG Security Toolbar
2009-07-12 22:48 . 2009-07-12 22:48 -------- d-----w- c:\documents and settings\Administrator\Application Data\Talkback
2009-07-12 22:44 . 2009-07-12 22:44 -------- d-----w- c:\documents and settings\Administrator\Local Settings\Application Data\Mozilla
2009-07-05 19:27 . 2009-06-14 20:07 1004800 ----a-w- c:\documents and settings\All Users\Application Data\AVG Security Toolbar\IEToolbar.dll
2009-06-29 14:40 . 2009-06-29 14:40 -------- d-----w- c:\documents and settings\Andrew\Local Settings\Application Data\AVG Security Toolbar
2009-06-29 12:10 . 2009-06-29 12:09 832144 ----a-w- c:\documents and settings\All Users\Application Data\avg8\update\backup\AVGToolbarInstall.exe
2009-06-29 12:10 . 2009-07-05 19:27 -------- d-----w- c:\documents and settings\All Users\Application Data\AVG Security Toolbar
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-29 12:09 . 2009-05-23 14:13 11952 ----a-w- c:\windows\system32\avgrsstx.dll
2009-06-29 12:09 . 2009-05-23 14:13 27784 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2009-06-29 12:09 . 2009-05-23 14:13 327688 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2009-06-27 17:38 . 2009-05-25 20:58 -------- d-----w- c:\documents and settings\Andrew\Application Data\AVGTOOLBAR
2009-06-25 19:20 . 2006-03-12 23:26 -------- d-----w- c:\documents and settings\Andrew\Application Data\OpenOffice.org2
2009-06-16 14:36 . 2004-08-04 12:00 81920 ----a-w- c:\windows\system32\fontsub.dll
2009-06-16 14:36 . 2004-08-04 12:00 119808 ----a-w- c:\windows\system32\t2embed.dll
2009-06-14 19:16 . 2006-03-09 19:20 -------- d-----w- c:\program files\Java
2009-06-14 19:13 . 2009-06-14 19:13 152576 ----a-w- c:\documents and settings\Andrew\Application Data\Sun\Java\jre1.6.0_13\lzma.dll
2009-06-14 19:01 . 2006-03-12 22:12 -------- d-----w- c:\documents and settings\All Users\Application Data\Viewpoint
2009-06-14 18:21 . 2006-03-10 17:44 -------- d-----w- c:\program files\Creative
2009-06-14 18:18 . 2009-06-14 18:18 -------- d-----w- c:\program files\Eraser
2009-06-11 21:14 . 2006-03-09 16:16 -------- d-----w- c:\program files\Mozilla Thunderbird
2009-06-10 13:22 . 2009-06-14 18:18 83344 ----a-w- c:\windows\system32\Erasext.dll
2009-06-10 13:22 . 2009-06-14 18:18 307088 ----a-w- c:\windows\system32\Eraser.dll
2009-06-10 13:22 . 2009-06-14 18:18 73104 ----a-w- c:\windows\system32\Eraserl.exe
2009-06-03 19:09 . 2004-08-04 12:00 1291264 ----a-w- c:\windows\system32\quartz.dll
2009-05-23 14:13 . 2009-05-23 14:13 108552 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2009-05-23 14:12 . 2009-05-23 14:12 -------- d-----w- c:\documents and settings\LocalService\Application Data\AVGTOOLBAR
2009-05-23 14:12 . 2009-05-23 14:12 -------- d-----w- c:\program files\AVG
2009-05-23 14:12 . 2009-05-23 14:12 -------- d-----w- c:\documents and settings\All Users\Application Data\avg8
2009-05-07 15:32 . 2004-08-04 12:00 345600 ----a-w- c:\windows\system32\localspl.dll
2009-04-29 04:46 . 2004-08-04 12:00 666624 ----a-w- c:\windows\system32\wininet.dll
2009-04-29 04:46 . 2004-08-04 12:00 81920 ----a-w- c:\windows\system32\ieencode.dll
2006-04-05 23:33 . 2006-04-05 23:32 8715352 -c--a-w- c:\program files\Common Files\Install_AIM.exe
2006-03-14 02:03 . 2006-03-14 02:03 1659116 -c--a-w- c:\program files\Common Files\MuVoTXFM_PCFW_LF_1_19_01.exe
2006-03-13 00:19 . 2006-03-13 00:19 359112 -c--a-w- c:\program files\Common Files\LimeWireWin.exe
2008-12-22 19:19 . 2006-03-09 16:04 67688 ----a-w- c:\program files\mozilla firefox\components\jar50.dll
2008-12-22 19:19 . 2006-03-09 16:04 54368 ----a-w- c:\program files\mozilla firefox\components\jsd3250.dll
2008-12-22 19:19 . 2008-02-04 20:25 34944 ----a-w- c:\program files\mozilla firefox\components\myspell.dll
2008-12-22 19:19 . 2008-02-04 20:25 46712 ----a-w- c:\program files\mozilla firefox\components\spellchk.dll
2008-12-22 19:20 . 2006-03-09 16:04 172136 ----a-w- c:\program files\mozilla firefox\components\xpinstal.dll
.
(((((((((((((((((((((((((((((
SnapShot@2009-07-16_16.37.30 )))))))))))))))))))))))))))))))))))))))))
.
+ 2007-07-31 14:30 . 2008-07-08 13:02 17272 c:\windows\system32\spmsg.dll
- 2007-07-31 14:30 . 2008-07-09 07:38 17272 c:\windows\system32\spmsg.dll
+ 2009-06-16 14:36 . 2009-06-16 14:36 81920 c:\windows\system32\dllcache\fontsub.dll
+ 2009-06-16 14:36 . 2009-06-16 14:36 119808 c:\windows\system32\dllcache\t2embed.dll
+ 2008-05-07 05:12 . 2009-06-03 19:09 1291264 c:\windows\system32\dllcache\quartz.dll
+ 2006-03-11 18:07 . 2009-07-07 15:10 24539592 c:\windows\system32\MRT.exe
.