Stránka 1 z 1

Prosim kontrolu logu, dakujem

Napsal: 04 zář 2007 18:15
od Dusan
ogfile of HijackThis v1.99.1
Scan saved at 18:15:01, on 4.9.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Panda Software\Panda Antivirus 2007\pavsrv51.exe
C:\Program Files\Panda Software\Panda Antivirus 2007\AVENGINE.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Panda Software\Panda Antivirus 2007\PsImSvc.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\RunDLL32.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Panda Software\Panda Antivirus 2007\APVXDWIN.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TuneUp Utilities 2007\MemOptimizer.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\WinZip\WZQKPICK.EXE
c:\program files\panda software\panda antivirus 2007\WebProxy.exe
C:\Program Files\Avant Browser\avant.exe
C:\Program Files\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://google.icq.com/search/search_frame.php
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\ntos.exe,
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: XTTBPos00 Class - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.1.6.14.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: Alcohol Toolbar Helper - {8126A4A5-BFD3-46FE-BBDF-BFB5CF78E489} - C:\Program Files\Alcohol Toolbar\v3.2.0.0\Alcohol_Toolbar.dll
O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O3 - Toolbar: Alcohol Toolbar - {ED4BD629-C1B6-4399-8A34-02CCAA921DC9} - C:\Program Files\Alcohol Toolbar\v3.2.0.0\Alcohol_Toolbar.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [JMB36X Configure] C:\WINDOWS\system32\JMRaidTool.exe boot
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Microsoft Updates] svehost.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [APVXDWIN] "C:\Program Files\Panda Software\Panda Antivirus 2007\APVXDWIN.EXE" /s
O4 - HKLM\..\RunServices: [Microsoft Updates] svehost.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2007\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [Windows Update] C:\Documents and Settings\Dusan\Application Data\brisane.exe
O4 - HKCU\..\Run: [userinit] C:\WINDOWS\system32\ntos.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Stáhnout odkaz s použitím BitCometu - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: Stáhnout všechna videa s použitím BitCometu - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: Stáhnout všechny odkazy s použitím BitCometu - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\npjpi160_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\npjpi160_02.dll
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O20 - Winlogon Notify: avldr - C:\WINDOWS\SYSTEM32\avldr.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Panda anti-virus service (PAVSRV) - Panda Software International - C:\Program Files\Panda Software\Panda Antivirus 2007\pavsrv51.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Panda IManager Service (PSIMSVC) - Panda Software - C:\Program Files\Panda Software\Panda Antivirus 2007\PsImSvc.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe

Napsal: 04 zář 2007 18:27
od sakiri
Aplikuj ComboFix:
Stáhni si ComboFix, ulož ho na plochu zavři všechna spuštěná okna a spusť ho.
Postupuj dle pokynů během aplikování ComboFixu neklikej do zobrazujícího se okna může se stát totiž že to proces zastaví.
Po skončení se vytvoří log tak sem zkopíruj jeho obsah.
(Je možné že se počítač restartuje, bude to kvůli tomu že ComboFix našel infikované soubory aby je smazal tak se restartuje PC)
Pro spusťění ComboFixu je nutné mít práva administrátora.
Jinak je ComboFixův log umístěný na C:\ComboFix.txt

Napsal: 04 zář 2007 18:48
od Dusan
ComboFix 07-08-30.3 - "Dusan" 2007-09-04 18:36:40.1 - NTFSx86
Syst‚m Microsoft Windows XP Professional 5.1.2600.2.1250.1.1033.18.565 [GMT 2:00]
* Created a new restore point


((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))


C:\WINDOWS\system32\drivers\npf.sys
C:\WINDOWS\system32\packet.dll
C:\WINDOWS\system32\wpcap.dll
C:\WINDOWS\system32\wsnpoem
C:\WINDOWS\system32\wsnpoem\audio.dll
C:\WINDOWS\system32\wsnpoem\video.dll


((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))


-------\NPF


((((((((((((((((((((((((( Files Created from 2007-08-04 to 2007-09-04 )))))))))))))))))))))))))))))))


2007-09-04 18:35 51,200 --a------ C:\WINDOWS\nircmd.exe
2007-09-04 13:57 45,056 --a------ C:\WINDOWS\system32\avldr.dll
2007-09-04 13:57 <DIR> d-------- C:\WINDOWS\system32\PAV
2007-09-03 21:39 9,488 --a------ C:\WINDOWS\system32\sporder.dll
2007-09-03 21:35 <DIR> d-------- C:\Program Files\Common Files\Panda Software
2007-09-03 20:44 <DIR> d-------- C:\Program Files\Panda Software
2007-09-03 20:33 71,552 --a------ C:\WINDOWS\system32\drivers\pavdrv51.sys
2007-08-27 06:33 5,600 --a------ C:\WINDOWS\system\WINASPI.DLL
2007-08-27 06:33 45,056 --a------ C:\WINDOWS\system32\WNASPI32.DLL
2007-08-27 06:33 4,672 --a------ C:\WINDOWS\system\WOWPOST.EXE
2007-08-27 06:33 25,244 --a------ C:\WINDOWS\system32\drivers\ASPI32.SYS
2007-08-27 06:33 <DIR> d-------- C:\Program Files\EasyDVDShrink
2007-08-24 12:19 <DIR> d-------- C:\DOCUME~1\Dusan\Incomplete
2007-08-24 12:18 <DIR> d-------- C:\Program Files\LimeWire
2007-08-24 12:18 <DIR> d-------- C:\DOCUME~1\Dusan\APPLIC~1\LimeWire
2007-08-23 23:59 <DIR> d-------- C:\Program Files\QIP
2007-08-14 20:31 221,184 --a------ C:\WINDOWS\system32\wmpns.dll
2007-08-13 20:36 223,128 --a------ C:\WINDOWS\system32\drivers\vaxscsi.sys
2007-08-05 10:58 <DIR> d-------- C:\DOCUME~1\Dusan\Phone Browser
2007-08-05 10:56 90,624 --a------ C:\WINDOWS\system32\nmwcdcls.dll
2007-08-05 10:56 8,320 --a------ C:\WINDOWS\system32\drivers\nmwcdc.sys
2007-08-05 10:56 65,536 --a------ C:\WINDOWS\system32\nmwcdcocls.dll
2007-08-05 10:56 137,216 --a------ C:\WINDOWS\system32\drivers\nmwcd.sys
2007-08-05 10:56 12,288 --a------ C:\WINDOWS\system32\drivers\nmwcdcm.sys
2007-08-05 10:56 12,288 --a------ C:\WINDOWS\system32\drivers\nmwcdcj.sys
2007-08-05 10:56 <DIR> d----c--- C:\WINDOWS\system32\DRVSTORE
2007-08-05 10:56 <DIR> d-------- C:\Program Files\PC Connectivity Solution
2007-08-05 10:56 <DIR> d-------- C:\Program Files\Nokia
2007-08-05 10:56 <DIR> d-------- C:\Program Files\DIFX
2007-08-05 10:56 <DIR> d-------- C:\Program Files\Common Files\PCSuite
2007-08-05 10:56 <DIR> d-------- C:\Program Files\Common Files\Nokia
2007-08-05 10:56 <DIR> d-------- C:\DOCUME~1\Dusan\APPLIC~1\PC Suite
2007-08-05 10:56 <DIR> d-------- C:\DOCUME~1\Dusan\APPLIC~1\Nokia
2007-08-05 10:56 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\PC Suite
2007-08-05 10:51 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Installations


(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

2007-09-04 14:00 --------- d-------- C:\Program Files\TuneUp Utilities 2007
2007-09-04 14:00 --------- d-------- C:\Program Files\Avant Browser
2007-09-04 13:57 --------- d--h----- C:\Program Files\InstallShield Installation Information
2007-09-04 11:30 --------- d-------- C:\DOCUME~1\Dusan\APPLIC~1\My Battle for Middle-earth(tm) II Files
2007-09-04 09:22 --------- d-------- C:\Program Files\BitComet
2007-09-03 20:48 --------- d-a------ C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
2007-08-26 20:39 --------- d-------- C:\DOCUME~1\Dusan\APPLIC~1\Hamachi
2007-08-21 18:08 --------- d-------- C:\Program Files\ICQ6
2007-08-12 22:11 9344 --a------ C:\WINDOWS\system32\drivers\NSDriver.sys
2007-08-12 22:11 8320 --a------ C:\WINDOWS\system32\drivers\AWRTRD.sys
2007-07-31 18:54 --------- d-------- C:\Program Files\Common Files\Teleca Shared
2007-07-30 19:19 92504 --a------ C:\WINDOWS\system32\cdm.dll
2007-07-30 19:19 549720 --a------ C:\WINDOWS\system32\wuapi.dll
2007-07-30 19:19 53080 --a------ C:\WINDOWS\system32\wuauclt.exe
2007-07-30 19:19 43352 --a------ C:\WINDOWS\system32\wups2.dll
2007-07-30 19:19 325976 --a------ C:\WINDOWS\system32\wucltui.dll
2007-07-30 19:19 203096 --a------ C:\WINDOWS\system32\wuweb.dll
2007-07-30 19:19 1712984 --a------ C:\WINDOWS\system32\wuaueng.dll
2007-07-30 19:18 33624 --a------ C:\WINDOWS\system32\wups.dll
2007-07-19 17:36 --------- d-------- C:\Program Files\DAEMON Tools
2007-07-19 08:06 --------- d-------- C:\DOCUME~1\Dusan\APPLIC~1\InstallShield
2007-07-18 21:28 --------- d-------- C:\Program Files\Creative Labs
2007-07-16 19:36 685816 --a------ C:\WINDOWS\system32\drivers\sptd.sys
2007-07-11 09:01 --------- d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\NVIDIA
2007-07-10 23:53 --------- d-------- C:\DOCUME~1\Dusan\APPLIC~1\Command & Conquer 3 Tiberium Wars
2007-07-10 20:14 --------- dr-h----- C:\DOCUME~1\Dusan\APPLIC~1\SecuROM
2007-07-09 12:51 359808 --a------ C:\WINDOWS\system32\drivers\tcpip.sys
2007-07-09 12:19 2560 --a------ C:\WINDOWS\system32\BitCometRes.dll
2007-07-08 01:04 --------- d-------- C:\Program Files\Common Files\PC Tools
2007-07-07 18:42 --------- d-------- C:\Program Files\Lavasoft
2007-07-07 18:42 --------- d-------- C:\Program Files\Common Files\Wise Installation Wizard
2007-07-07 18:42 --------- d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft
2007-07-06 20:29 --------- d-------- C:\Program Files\Mplayer
2007-07-04 19:45 --------- d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\TuneUp Software
2007-07-04 19:40 --------- d-------- C:\DOCUME~1\Dusan\APPLIC~1\TuneUp Software
2007-07-04 19:23 --------- d-------- C:\Program Files\TweakNow RegCleaner Pro
2007-07-04 13:21 --------- d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Test Drive Unlimited
2007-06-26 08:08 1104896 --a------ C:\WINDOWS\system32\msxml3.dll
2007-06-19 15:31 282112 --a------ C:\WINDOWS\system32\gdi32.dll
2007-06-14 09:40 229057 --a------ C:\WINDOWS\Alcohol_Toolbar_Uninstaller_3656.exe
2007-06-13 12:23 1033216 --a------ C:\WINDOWS\explorer.exe
2007-06-12 17:12 81920 --a------ C:\WINDOWS\system32\OpenAL32.dll
2007-06-12 17:12 221184 --a------ C:\WINDOWS\system32\wrap_oal.dll


((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))


*Note* empty entries & legit default entries are not shown

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvMediaCenter"="NvMCTray.dll" [2006-06-01 11:22 C:\WINDOWS\system32\nvmctray.dll]
"JMB36X Configure"="C:\WINDOWS\system32\JMRaidTool.exe" [2006-08-14 04:51]
"SkyTel"="SkyTel.EXE" [2006-05-16 12:04 C:\WINDOWS\SkyTel.exe]
"RTHDCPL"="RTHDCPL.EXE" [2006-09-06 05:44 C:\WINDOWS\RTHDCPL.exe]
"Microsoft Updates"="svehost.exe" []
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2006-06-01 11:22]
"APVXDWIN"="C:\Program Files\Panda Software\Panda Antivirus 2007\APVXDWIN.exe" [2006-09-13 07:59]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 00:56]
"TuneUp MemOptimizer"="C:\Program Files\TuneUp Utilities 2007\MemOptimizer.exe" [2006-12-26 14:30]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2004-10-13 18:24]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runservices]
"Microsoft Updates"=svehost.exe

[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"Nokia.PCSync"=C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avldr]
avldr.dll 2005-09-27 12:13 45056 C:\WINDOWS\system32\avldr.dll

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"DAEMON Tools"="C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"Adobe Photo Downloader"="C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe
"CloneCDTray"="C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
"HP Component Manager"="C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
"SW24"=C:\WINDOWS\system32\sw24.exe
"nwiz"=nwiz.exe /install
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
"SW20"=C:\WINDOWS\system32\sw20.exe
"PCSuiteTrayApplication"=C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup
"NvCplDaemon"=RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

R0 JGOGO;JMicron Hot-Plug Driver;C:\WINDOWS\system32\DRIVERS\JGOGO.sys
R0 JRAID;JRAID;C:\WINDOWS\system32\DRIVERS\jraid.sys
R0 videX32;videX32;C:\WINDOWS\system32\DRIVERS\videX32.sys
R0 xfilt;VIA SATA IDE Hot-plug Driver;C:\WINDOWS\system32\DRIVERS\xfilt.sys
R2 PAVDRV;pavdrv;C:\WINDOWS\system32\DRIVERS\pavdrv51.sys
R2 UxTuneUp;TuneUp Design Expansion;C:\WINDOWS\System32\svchost.exe -k netsvcs
R3 PSched;QoS Packet Scheduler;C:\WINDOWS\system32\DRIVERS\psched.sys
S3 axsaki;axsaki;C:\WINDOWS\system32\DRIVERS\axsaki.sys
S3 axskbus;axskbus;C:\WINDOWS\system32\DRIVERS\axskbus.sys
S3 PavSRK.sys;PavSRK.sys;\??\C:\WINDOWS\system32\PavSRK.sys
S3 PavTPK.sys;PavTPK.sys;\??\C:\WINDOWS\system32\PavTPK.sys
S3 XDva020;XDva020;\??\C:\WINDOWS\system32\XDva020.sys

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
Schedule
UxTuneUp


[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{F54BE479-AA88-A120-EFF1-FFB024A0AE00}]
C:\Documents and Settings\Dusan\Application Data\brisane.exe

Contents of the 'Scheduled Tasks' folder
2007-08-31 15:15:54 C:\WINDOWS\Tasks\1-Click Maintenance.job

**************************************************************************

catchme 0.3.1061 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-09-04 18:41:47
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************

Completion time: 2007-09-04 18:42:54 - machine was rebooted
C:\ComboFix-quarantined-files.txt ... 2007-09-04 18:42

--- E O F ---