by ally-x » April 10th, 2008, 4:19 pm
Here's the log, hope this helps as i've not got a clue
Inet Delivery: User settings (Registry key, nothing done)
HKEY_USERS\.default\Software\Inet Delivery
Inet Delivery: User settings (Registry key, nothing done)
HKEY_USERS\s-1-5-18\Software\Inet Delivery
Inet Delivery: Uninstall settings (Registry key, nothing done)
HKEY_USERS\.default\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Inet Delivery
Inet Delivery: Uninstall settings (Registry key, nothing done)
HKEY_USERS\s-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Inet Delivery
Inet Delivery: Program directory (Directory, nothing done)
C:\Program Files\Inet Delivery\
GoldenPalace.Casino: Uninstall settings (Registry key, nothing done)
HKEY_USERS\.default\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Golden Palace Casino NEW
GoldenPalace.Casino: Uninstall settings (Registry key, nothing done)
HKEY_USERS\s-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Golden Palace Casino NEW
MagicControl.Agent: Uninstall settings (Registry key, nothing done)
HKEY_USERS\.default\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\mslagent
MagicControl.Agent: Uninstall settings (Registry key, nothing done)
HKEY_USERS\s-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\mslagent
MagicControl.Agent: Program directory (Directory, nothing done)
C:\WINDOWS\mslagent\
Win32.Agent.pz: Settings (Registry value, nothing done)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit=...C:\WINDOWS\system32\ntos.exe,...
Smitfraud-C.: Autorun settings (Registry value, nothing done)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\System
Microsoft.Windows.Explorer: User settings (Registry change, nothing done)
HKEY_USERS\.default\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoControlPanel!=W=0
Microsoft.Windows.Explorer: User settings (Registry change, nothing done)
HKEY_USERS\s-1-5-18\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoControlPanel!=W=0
Microsoft.Windows.Explorer: User settings (Registry change, nothing done)
HKEY_USERS\.default\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoFolderOptions!=W=0
Microsoft.Windows.Explorer: User settings (Registry change, nothing done)
HKEY_USERS\s-1-5-21-1060284298-1580436667-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoFolderOptions!=W=0
Microsoft.Windows.Explorer: User settings (Registry change, nothing done)
HKEY_USERS\s-1-5-18\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoFolderOptions!=W=0
Microsoft.WindowsSecurityCenter.TaskManager: Settings (Registry change, nothing done)
HKEY_USERS\.default\Software\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr!=dword:0
Microsoft.WindowsSecurityCenter.TaskManager: Settings (Registry change, nothing done)
HKEY_USERS\s-1-5-21-1060284298-1580436667-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr!=dword:0
Microsoft.WindowsSecurityCenter.TaskManager: Settings (Registry change, nothing done)
HKEY_USERS\s-1-5-18\Software\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr!=dword:0
Microsoft.WindowsSecurityCenter.RegistryTools: Settings (Registry change, nothing done)
HKEY_USERS\.default\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\DisableRegistryTools!=dword:0
Microsoft.WindowsSecurityCenter.RegistryTools: Settings (Registry change, nothing done)
HKEY_USERS\s-1-5-21-1060284298-1580436667-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\DisableRegistryTools!=dword:0
Microsoft.WindowsSecurityCenter.RegistryTools: Settings (Registry change, nothing done)
HKEY_USERS\s-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\DisableRegistryTools!=dword:0
Microsoft.WindowsSecurityCenter.RegistryTools: Settings (Registry change, nothing done)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\DisableRegistryTools!=dword:0
Microsoft.WindowsSecurityCenter.TaskManager: Settings (Registry change, nothing done)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\DisableTaskMgr!=dword:0
MediaUpdate: Class ID (Registry key, nothing done)
HKEY_CLASSES_ROOT\CLSID\{B8C0220D-763D-49A4-95F4-61DFDEC66EE6}
BraveSentry: Settings (Registry value, nothing done)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\kr_done1
PWS.LDPinchIE: User settings (Registry value, nothing done)
HKEY_USERS\.default\Software\Microsoft\Windows\CurrentVersion\Explorer\idstrf
PWS.LDPinchIE: User settings (Registry value, nothing done)
HKEY_USERS\s-1-5-21-1060284298-1580436667-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\idstrf
PWS.LDPinchIE: User settings (Registry value, nothing done)
HKEY_USERS\s-1-5-18\Software\Microsoft\Windows\CurrentVersion\Explorer\idstrf
Win32.Agent.ac: Settings (Registry key, nothing done)
HKEY_CLASSES_ROOT\CLSID\{54645654-2225-4455-44A1-9F4543D34545}
Zlob.DNSChanger: TCP/IP Settings #1 (Undefined) (Registry change, nothing done)
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\NameServer=208.67.220.220,208.67.222.222
Virtumonde: Settings (Registry key, nothing done)
HKEY_USERS\.default\Software\mwc
Virtumonde: Settings (Registry key, nothing done)
HKEY_USERS\s-1-5-21-1060284298-1580436667-725345543-1003\Software\mwc
Virtumonde: Settings (Registry key, nothing done)
HKEY_USERS\s-1-5-18\Software\mwc
Zlob.Downloader.vcd: Uninstall settings (Registry key, nothing done)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WebVideo
--- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---
2005-05-31 blindman.exe (1.0.0.1)
2005-05-31 SpybotSD.exe (1.4.0.3)
2005-05-31 TeaTimer.exe (1.4.0.2)
2007-11-04 unins000.exe (51.41.0.0)
2005-05-31 Update.exe (1.4.0.0)
2007-05-23 advcheck.dll (1.5.3.0)
2005-05-31 aports.dll (2.1.0.0)
2005-05-31 borlndmm.dll (7.0.4.453)
2005-05-31 delphimm.dll (7.0.4.453)
2005-05-31 SDHelper.dll (1.4.0.0)
2007-07-31 Tools.dll (2.1.2.0)
2005-05-31 UnzDll.dll (1.73.1.1)
2005-05-31 ZipDll.dll (1.73.2.0)
2007-10-31 Includes\Cookies.sbi (*)
2007-10-31 Includes\Dialer.sbi (*)
2007-10-31 Includes\DialerC.sbi (*)
2007-08-29 Includes\Hijackers.sbi (*)
2007-10-31 Includes\HijackersC.sbi (*)
2007-10-04 Includes\Keyloggers.sbi (*)
2007-10-31 Includes\KeyloggersC.sbi (*)
2007-10-24 Includes\Malware.sbi (*)
2007-10-31 Includes\MalwareC.sbi (*)
2007-10-24 Includes\PUPS.sbi (*)
2007-10-31 Includes\PUPSC.sbi (*)
2007-10-31 Includes\Revision.sbi (*)
2007-05-30 Includes\Security.sbi (*)
2007-10-31 Includes\SecurityC.sbi (*)
2007-10-24 Includes\Spybots.sbi (*)
2007-10-31 Includes\SpybotsC.sbi (*)
2007-08-21 Includes\Tracks.uti
2007-11-01 Includes\Trojans.sbi (*)
2007-10-31 Includes\TrojansC.sbi (*)
2007-06-06 Plugins\TCPIPAddress.dll