Prosím o kontrolu Combofix
Napsal: 09 úno 2008 23:33
ComboFix 08-02.05.3 - Administrator 2008-02-09 23:28:00.19 - NTFSx86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.1.1029.18.463 [GMT 1:00]
Running from: C:\Documents and Settings\Administrator.A123\Plocha\ComboFix.exe
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((( Files Created from 2008-01-09 to 2008-02-09 )))))))))))))))))))))))))))))))
.
2008-02-09 20:53 . 2008-02-09 20:51 691,545 --a------ C:\WINDOWS\unins000.exe
2008-02-09 20:53 . 2008-02-09 20:53 3,469 --a------ C:\WINDOWS\unins000.dat
2008-02-09 18:50 . 2008-02-09 18:50 4,708 --a------ C:\WINDOWS\system32\PerfStringBackup.TMP
2008-02-06 21:12 . 2008-02-06 21:12 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\MSScanAppDataDir
2008-02-06 17:31 . 2004-03-22 23:17 24,816 --a------ C:\WINDOWS\system32\mdimon.dll
2008-02-06 17:29 . 2008-02-06 17:29 <DIR> d-------- C:\WINDOWS\SHELLNEW
2008-02-06 17:29 . 2008-02-06 17:29 <DIR> d-------- C:\Program Files\Microsoft.NET
2008-01-31 16:55 . 2001-08-17 21:28 794,654 --a------ C:\WINDOWS\system32\dllcache\usr1801.sys
2008-01-31 16:54 . 2001-09-13 15:44 285,792 --a------ C:\WINDOWS\system32\dllcache\stlnata.sys
2008-01-31 16:53 . 2001-08-17 20:50 166,720 --a------ C:\WINDOWS\system32\dllcache\s3m.sys
2008-01-31 16:52 . 2001-09-13 17:52 899,146 --a------ C:\WINDOWS\system32\dllcache\r2mdkxga.sys
2008-01-31 16:51 . 2001-08-17 20:50 198,144 --a------ C:\WINDOWS\system32\dllcache\nv3.sys
2008-01-31 16:50 . 2001-08-17 21:28 802,683 --a------ C:\WINDOWS\system32\dllcache\ltsm.sys
2008-01-31 16:49 . 2004-08-17 15:49 153,088 --a------ C:\WINDOWS\system32\dllcache\irftp.exe
2008-01-31 16:48 . 2001-09-13 17:57 907,456 --a------ C:\WINDOWS\system32\dllcache\hcf_msft.sys
2008-01-31 16:47 . 2001-09-13 17:38 629,952 --a------ C:\WINDOWS\system32\dllcache\eqn.sys
2008-01-31 16:46 . 2001-08-17 20:14 952,007 --a------ C:\WINDOWS\system32\dllcache\diwan.sys
2008-01-31 16:45 . 2001-09-13 16:23 980,034 --a------ C:\WINDOWS\system32\dllcache\cicap.sys
2008-01-31 16:44 . 2001-08-17 21:28 871,388 --a------ C:\WINDOWS\system32\dllcache\bcmdm.sys
2008-01-31 16:43 . 2001-08-17 21:28 762,780 --a------ C:\WINDOWS\system32\dllcache\3cwmcru.sys
2008-01-28 17:45 . 2008-01-28 17:45 <DIR> d-------- C:\Documents and Settings\Administrator.A123\Data aplikací\ICQ
2008-01-28 17:44 . 2008-01-28 17:44 <DIR> d-------- C:\Program Files\ICQ6
2008-01-28 13:37 . 2008-02-08 22:02 139,264 --a------ C:\WINDOWS\War3Unin.exe
2008-01-28 13:37 . 2008-02-08 22:16 52,545 --a------ C:\WINDOWS\War3Unin.dat
2008-01-28 13:37 . 2008-02-08 22:02 2,829 --a------ C:\WINDOWS\War3Unin.pif
2008-01-28 13:27 . 2008-02-09 11:20 <DIR> d-------- C:\Program Files\Warcraft III
2008-01-23 21:08 . 2008-02-09 20:56 <DIR> d-------- C:\Program Files\Spybot - Search & Destroy
2008-01-23 21:08 . 2008-02-09 21:01 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Spybot - Search & Destroy
2008-01-23 18:12 . 2008-01-23 18:12 <DIR> d-------- C:\Program Files\Lavasoft
2008-01-22 22:23 . 2008-01-22 22:23 <DIR> d--hs---- C:\Recycled
2008-01-21 21:59 . 2008-01-22 15:19 26 --a------ C:\WINDOWS\Lic.xxx
2008-01-15 22:04 . 2006-02-24 09:33 10,608,708 --a------ C:\WINDOWS\system32\Goldfish2.scr
2008-01-15 10:40 . 2008-01-15 10:40 <DIR> d--h----- C:\FOUND.045
2008-01-14 19:17 . 2008-01-14 19:17 <DIR> d-------- C:\Program Files\Prolific Publishing, Inc
2008-01-14 19:17 . 2006-02-24 09:45 4,833,280 --a------ C:\WINDOWS\system32\SHARKS2.scr
2008-01-12 19:11 . 2008-01-12 19:11 <DIR> d-------- C:\Documents and Settings\Administrator.A123\Data aplikací\RealWorld
2008-01-12 19:10 . 2008-01-12 19:10 <DIR> d-------- C:\Program Files\RealWorld Icon Editor
2008-01-09 20:56 . 2008-01-09 20:56 <DIR> d-------- C:\WINDOWS\MetaCreations
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-02-09 21:56 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Data aplikací\ConMet
2008-02-09 21:56 --------- d-----w C:\Documents and Settings\Administrator.A123\Data aplikací\Skype
2008-02-09 21:56 --------- d-----w C:\Documents and Settings\Administrator.A123\Data aplikací\ConMet
2008-02-09 17:34 --------- d-----w C:\Documents and Settings\Administrator.A123\Data aplikací\skypePM
2008-01-08 11:13 --------- d-----w C:\Program Files\ScanSoft
2008-01-08 11:13 --------- d-----w C:\Documents and Settings\Administrator.A123\Data aplikací\ScanSoft
2008-01-08 11:08 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Data aplikací\CanonBJ
2008-01-08 11:07 --------- d-----w C:\Program Files\CanonBJ
2008-01-08 11:05 --------- d-----w C:\Program Files\Canon
2008-01-07 17:40 --------- d-----w C:\Documents and Settings\Administrator.A123\Data aplikací\ubi.com
2008-01-06 14:04 --------- d-----w C:\Program Files\CDBFW
2007-12-21 13:34 --------- d-----w C:\Program Files\City Interactive
2007-12-21 13:26 107,888 ----a-w C:\WINDOWS\system32\CmdLineExt.dll
2007-12-21 13:26 --------- d-----w C:\Documents and Settings\Administrator.A123\Data aplikací\SecuROM
2007-12-21 13:16 --------- d-----w C:\Program Files\Sierra Entertainment
2007-12-20 12:20 --------- d-----w C:\Program Files\Winamp
2007-12-20 07:40 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Lavasoft
2007-12-18 15:26 --------- d-----w C:\Program Files\RegCleaner
2007-12-18 12:32 --------- d-----w C:\Program Files\Seznam
2007-12-18 08:18 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Grisoft
2007-12-17 20:49 --------- d-----w C:\Program Files\IObit
2007-12-14 12:58 --------- d-----w C:\Program Files\FlatOut2
2007-12-13 15:11 --------- d-----w C:\Documents and Settings\Administrator.A123\Data aplikací\Canon
2007-12-11 19:57 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Nero
2007-12-09 20:08 --------- d-----w C:\Program Files\Simpli Software
2007-12-06 18:51 18,480 ----a-w C:\Documents and Settings\Administrator.A123\Data aplikací\GDIPFONTCACHEV1.DAT
2007-12-04 13:04 837,496 ----a-w C:\WINDOWS\system32\aswBoot.exe
2007-12-04 12:54 95,608 ----a-w C:\WINDOWS\system32\AVASTSS.scr
2007-11-22 16:39 43,520 ----a-w C:\WINDOWS\system32\CmdLineExt03.dll
2007-11-15 19:57 32 ----a-w C:\Documents and Settings\All Users.WINDOWS\Data aplikací\ezsid.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools"="C:\Program Files\DAEMON Tools\daemon.exe" [2007-09-18 16:16 171464]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 11:43 2097488]
"Skype"="C:\Program Files\Skype\Phone\Skype.exe" [2007-12-07 15:08 21686568]
"ICQ"="C:\Program Files\ICQ6\ICQ.exe" [2007-12-17 16:12 172280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"nwiz"="nwiz.exe" [2007-09-17 01:07 1626112 C:\WINDOWS\system32\nwiz.exe]
"ConMet"="C:\Program Files\ConMet\ConMet.exe" [2007-12-25 21:56 3005952]
"SMail"="C:\Program Files\Seznam\Postak\Postak.exe" [2006-05-18 14:36 450560]
"tsnpstd3"="C:\WINDOWS\tsnpstd3.exe" [2006-06-19 11:43 262144]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 14:00 79224]
"{0228e555-4f9c-4e35-a3ec-b109a192b4c2}"="C:\Program Files\Google\Gmail Notifier\gnotify.exe" [2005-07-15 22:48 479232]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-09-17 01:07 8491008]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-17 15:49 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoResolveSearch"= 1 (0x1)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoToolbarCustomize"= 0 (0x0)
"NoBandCustomize"= 0 (0x0)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" /background
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
R1 fwdrv;Kerio Personal Firewall Driver;C:\WINDOWS\system32\Drivers\fwdrv.sys [2002-04-15 12:18]
R2 {95808DC4-FA4A-4c74-92FE-5B863F82066B};{95808DC4-FA4A-4c74-92FE-5B863F82066B};C:\Program Files\CyberLink\PowerDVD\000.fcl [2006-11-02 16:51]
R3 PSched;Plánovač paketů technologie QoS;C:\WINDOWS\system32\DRIVERS\psched.sys [2004-08-03 23:04]
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-02-09 23:29:02
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-02-09 23:29:30
ComboFix-quarantined-files.txt 2008-02-09 22:29:22
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.1.1029.18.463 [GMT 1:00]
Running from: C:\Documents and Settings\Administrator.A123\Plocha\ComboFix.exe
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((( Files Created from 2008-01-09 to 2008-02-09 )))))))))))))))))))))))))))))))
.
2008-02-09 20:53 . 2008-02-09 20:51 691,545 --a------ C:\WINDOWS\unins000.exe
2008-02-09 20:53 . 2008-02-09 20:53 3,469 --a------ C:\WINDOWS\unins000.dat
2008-02-09 18:50 . 2008-02-09 18:50 4,708 --a------ C:\WINDOWS\system32\PerfStringBackup.TMP
2008-02-06 21:12 . 2008-02-06 21:12 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\MSScanAppDataDir
2008-02-06 17:31 . 2004-03-22 23:17 24,816 --a------ C:\WINDOWS\system32\mdimon.dll
2008-02-06 17:29 . 2008-02-06 17:29 <DIR> d-------- C:\WINDOWS\SHELLNEW
2008-02-06 17:29 . 2008-02-06 17:29 <DIR> d-------- C:\Program Files\Microsoft.NET
2008-01-31 16:55 . 2001-08-17 21:28 794,654 --a------ C:\WINDOWS\system32\dllcache\usr1801.sys
2008-01-31 16:54 . 2001-09-13 15:44 285,792 --a------ C:\WINDOWS\system32\dllcache\stlnata.sys
2008-01-31 16:53 . 2001-08-17 20:50 166,720 --a------ C:\WINDOWS\system32\dllcache\s3m.sys
2008-01-31 16:52 . 2001-09-13 17:52 899,146 --a------ C:\WINDOWS\system32\dllcache\r2mdkxga.sys
2008-01-31 16:51 . 2001-08-17 20:50 198,144 --a------ C:\WINDOWS\system32\dllcache\nv3.sys
2008-01-31 16:50 . 2001-08-17 21:28 802,683 --a------ C:\WINDOWS\system32\dllcache\ltsm.sys
2008-01-31 16:49 . 2004-08-17 15:49 153,088 --a------ C:\WINDOWS\system32\dllcache\irftp.exe
2008-01-31 16:48 . 2001-09-13 17:57 907,456 --a------ C:\WINDOWS\system32\dllcache\hcf_msft.sys
2008-01-31 16:47 . 2001-09-13 17:38 629,952 --a------ C:\WINDOWS\system32\dllcache\eqn.sys
2008-01-31 16:46 . 2001-08-17 20:14 952,007 --a------ C:\WINDOWS\system32\dllcache\diwan.sys
2008-01-31 16:45 . 2001-09-13 16:23 980,034 --a------ C:\WINDOWS\system32\dllcache\cicap.sys
2008-01-31 16:44 . 2001-08-17 21:28 871,388 --a------ C:\WINDOWS\system32\dllcache\bcmdm.sys
2008-01-31 16:43 . 2001-08-17 21:28 762,780 --a------ C:\WINDOWS\system32\dllcache\3cwmcru.sys
2008-01-28 17:45 . 2008-01-28 17:45 <DIR> d-------- C:\Documents and Settings\Administrator.A123\Data aplikací\ICQ
2008-01-28 17:44 . 2008-01-28 17:44 <DIR> d-------- C:\Program Files\ICQ6
2008-01-28 13:37 . 2008-02-08 22:02 139,264 --a------ C:\WINDOWS\War3Unin.exe
2008-01-28 13:37 . 2008-02-08 22:16 52,545 --a------ C:\WINDOWS\War3Unin.dat
2008-01-28 13:37 . 2008-02-08 22:02 2,829 --a------ C:\WINDOWS\War3Unin.pif
2008-01-28 13:27 . 2008-02-09 11:20 <DIR> d-------- C:\Program Files\Warcraft III
2008-01-23 21:08 . 2008-02-09 20:56 <DIR> d-------- C:\Program Files\Spybot - Search & Destroy
2008-01-23 21:08 . 2008-02-09 21:01 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Spybot - Search & Destroy
2008-01-23 18:12 . 2008-01-23 18:12 <DIR> d-------- C:\Program Files\Lavasoft
2008-01-22 22:23 . 2008-01-22 22:23 <DIR> d--hs---- C:\Recycled
2008-01-21 21:59 . 2008-01-22 15:19 26 --a------ C:\WINDOWS\Lic.xxx
2008-01-15 22:04 . 2006-02-24 09:33 10,608,708 --a------ C:\WINDOWS\system32\Goldfish2.scr
2008-01-15 10:40 . 2008-01-15 10:40 <DIR> d--h----- C:\FOUND.045
2008-01-14 19:17 . 2008-01-14 19:17 <DIR> d-------- C:\Program Files\Prolific Publishing, Inc
2008-01-14 19:17 . 2006-02-24 09:45 4,833,280 --a------ C:\WINDOWS\system32\SHARKS2.scr
2008-01-12 19:11 . 2008-01-12 19:11 <DIR> d-------- C:\Documents and Settings\Administrator.A123\Data aplikací\RealWorld
2008-01-12 19:10 . 2008-01-12 19:10 <DIR> d-------- C:\Program Files\RealWorld Icon Editor
2008-01-09 20:56 . 2008-01-09 20:56 <DIR> d-------- C:\WINDOWS\MetaCreations
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-02-09 21:56 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Data aplikací\ConMet
2008-02-09 21:56 --------- d-----w C:\Documents and Settings\Administrator.A123\Data aplikací\Skype
2008-02-09 21:56 --------- d-----w C:\Documents and Settings\Administrator.A123\Data aplikací\ConMet
2008-02-09 17:34 --------- d-----w C:\Documents and Settings\Administrator.A123\Data aplikací\skypePM
2008-01-08 11:13 --------- d-----w C:\Program Files\ScanSoft
2008-01-08 11:13 --------- d-----w C:\Documents and Settings\Administrator.A123\Data aplikací\ScanSoft
2008-01-08 11:08 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Data aplikací\CanonBJ
2008-01-08 11:07 --------- d-----w C:\Program Files\CanonBJ
2008-01-08 11:05 --------- d-----w C:\Program Files\Canon
2008-01-07 17:40 --------- d-----w C:\Documents and Settings\Administrator.A123\Data aplikací\ubi.com
2008-01-06 14:04 --------- d-----w C:\Program Files\CDBFW
2007-12-21 13:34 --------- d-----w C:\Program Files\City Interactive
2007-12-21 13:26 107,888 ----a-w C:\WINDOWS\system32\CmdLineExt.dll
2007-12-21 13:26 --------- d-----w C:\Documents and Settings\Administrator.A123\Data aplikací\SecuROM
2007-12-21 13:16 --------- d-----w C:\Program Files\Sierra Entertainment
2007-12-20 12:20 --------- d-----w C:\Program Files\Winamp
2007-12-20 07:40 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Lavasoft
2007-12-18 15:26 --------- d-----w C:\Program Files\RegCleaner
2007-12-18 12:32 --------- d-----w C:\Program Files\Seznam
2007-12-18 08:18 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Grisoft
2007-12-17 20:49 --------- d-----w C:\Program Files\IObit
2007-12-14 12:58 --------- d-----w C:\Program Files\FlatOut2
2007-12-13 15:11 --------- d-----w C:\Documents and Settings\Administrator.A123\Data aplikací\Canon
2007-12-11 19:57 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Nero
2007-12-09 20:08 --------- d-----w C:\Program Files\Simpli Software
2007-12-06 18:51 18,480 ----a-w C:\Documents and Settings\Administrator.A123\Data aplikací\GDIPFONTCACHEV1.DAT
2007-12-04 13:04 837,496 ----a-w C:\WINDOWS\system32\aswBoot.exe
2007-12-04 12:54 95,608 ----a-w C:\WINDOWS\system32\AVASTSS.scr
2007-11-22 16:39 43,520 ----a-w C:\WINDOWS\system32\CmdLineExt03.dll
2007-11-15 19:57 32 ----a-w C:\Documents and Settings\All Users.WINDOWS\Data aplikací\ezsid.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools"="C:\Program Files\DAEMON Tools\daemon.exe" [2007-09-18 16:16 171464]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 11:43 2097488]
"Skype"="C:\Program Files\Skype\Phone\Skype.exe" [2007-12-07 15:08 21686568]
"ICQ"="C:\Program Files\ICQ6\ICQ.exe" [2007-12-17 16:12 172280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"nwiz"="nwiz.exe" [2007-09-17 01:07 1626112 C:\WINDOWS\system32\nwiz.exe]
"ConMet"="C:\Program Files\ConMet\ConMet.exe" [2007-12-25 21:56 3005952]
"SMail"="C:\Program Files\Seznam\Postak\Postak.exe" [2006-05-18 14:36 450560]
"tsnpstd3"="C:\WINDOWS\tsnpstd3.exe" [2006-06-19 11:43 262144]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 14:00 79224]
"{0228e555-4f9c-4e35-a3ec-b109a192b4c2}"="C:\Program Files\Google\Gmail Notifier\gnotify.exe" [2005-07-15 22:48 479232]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-09-17 01:07 8491008]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-17 15:49 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoResolveSearch"= 1 (0x1)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoToolbarCustomize"= 0 (0x0)
"NoBandCustomize"= 0 (0x0)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" /background
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
R1 fwdrv;Kerio Personal Firewall Driver;C:\WINDOWS\system32\Drivers\fwdrv.sys [2002-04-15 12:18]
R2 {95808DC4-FA4A-4c74-92FE-5B863F82066B};{95808DC4-FA4A-4c74-92FE-5B863F82066B};C:\Program Files\CyberLink\PowerDVD\000.fcl [2006-11-02 16:51]
R3 PSched;Plánovač paketů technologie QoS;C:\WINDOWS\system32\DRIVERS\psched.sys [2004-08-03 23:04]
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-02-09 23:29:02
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-02-09 23:29:30
ComboFix-quarantined-files.txt 2008-02-09 22:29:22