Heres my MBAM log1:
Malwarebytes' Anti-Malware 1.38
Database version: 2411
Windows 5.1.2600 Service Pack 3
7/11/2009 9:42:17 PM
mbam-log-2009-07-11 (21-42-17).txt
Scan type: Full Scan (C:\|)
Objects scanned: 176285
Time elapsed: 39 minute(s), 27 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 2
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
c:\WINDOWS\system32\hjgruihmxfimxm.dll (Trojan.TDSS) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\drivers\hjgruilqjnagoa.sys (Trojan.Agent) -> Quarantined and deleted successfully.
Heres my MBAM Log2:
Malwarebytes' Anti-Malware 1.38
Database version: 2411
Windows 5.1.2600 Service Pack 3
7/11/2009 11:09:03 PM
mbam-log-2009-07-11 (23-09-03).txt
Scan type: Full Scan (C:\|)
Objects scanned: 176173
Time elapsed: 1 hour(s), 13 minute(s), 18 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 1
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
c:\system volume information\_restore{0c4798e2-ab13-4b90-bdf2-0b9f62cdd32a}\RP234\A0096787.dll (Trojan.TDSS) -> Quarantined and deleted successfully.
Heres my rootrepeal file tab report:
ROOTREPEAL © AD, 2007-2009
==================================================
Scan Time: 2009/07/11 23:32
Program Version: Version 1.3.0.0
Windows Version: Windows XP SP3
==================================================
Hidden/Locked Files
-------------------
Path: c:\windows\temp\perflib_perfdata_7b4.dat
Status: Allocation size mismatch (API: 4096, Raw: 16384)
Path: c:\windows\temp\sqlite_egajjoieetfm4ei
Status: Allocation size mismatch (API: 4096, Raw: 0)
Path: c:\windows\temp\sqlite_jc9mdsslhtgraid
Status: Allocation size mismatch (API: 4096, Raw: 0)
Path: c:\documents and settings\ifarted\desktop\mssetupv72.exe.downloading
Status: Allocation size mismatch (API: 215261184, Raw: 179257344)
Path: c:\documents and settings\ifarted\local settings\temp\etilqs_cqtnyxfqghjzexbmrgw7
Status: Allocation size mismatch (API: 65536, Raw: 0)
Path: c:\documents and settings\ifarted\local settings\application data\mozilla\firefox\profiles\gb5or0vr.default\urlclassifier3.sqlite
Status: Allocation size mismatch (API: 15757312, Raw: 16818176)
Path: c:\documents and settings\ifarted\local settings\application data\mozilla\firefox\profiles\gb5or0vr.default\cache\_cache_003_
Status: Allocation size mismatch (API: 720896, Raw: 716800)
Heres my rootrepeal hidden services tab log:
ROOTREPEAL © AD, 2007-2009
==================================================
Scan Time: 2009/07/11 23:35
Program Version: Version 1.3.0.0
Windows Version: Windows XP SP3
==================================================
Hidden Services
-------------------
Service Name: hjgruialljklpj
Image Path: C:\WINDOWS\system32\drivers\hjgruilqjnagoa.sys
Thanks for any help and for taking the time to help!
Edited by IFaRted, 11 July 2009 - 10:37 PM.