:OTL MOD - [2011-08-22 20:51:32 | 000,382,464 | ---- | M] () – C:\WINDOWS\update.7.1\svchostdriver.exe SRV - File not found [Auto | Stopped] – -- (wxpdrivers) SRV - File not found [Auto | Stopped] – -- (srviecheck) SRV - File not found [Auto | Stopped] – -- (avgwd) SRV - File not found [Auto | Stopped] – -- (AVGIDSAgent) SRV - File not found [On_Demand | Stopped] – -- (AVG Security Toolbar Service) SRV - [2011-08-22 20:51:32 | 000,382,464 | ---- | M] () [Auto | Running] – C:\WINDOWS\update.7.1\svchostdriver.exe – (ddservice) O2 - BHO: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.) O2 - BHO: (DVDVideoSoftTB Toolbar) - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVD0.dll (Conduit Ltd.) O2 - BHO: (no name) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - No CLSID value found. O3 - HKLM…\Toolbar: (DVDVideoSoftTB Toolbar) - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVD0.dll (Conduit Ltd.) O3 - HKLM…\Toolbar: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - File not found O3 - HKCU…\Toolbar\WebBrowser: (no name) - {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No CLSID value found. O3 - HKCU…\Toolbar\WebBrowser: (DVDVideoSoftTB Toolbar) - {872B5B88-9DB5-4310-BDD0-AC189557E5F5} - C:\Program Files\DVDVideoSoftTB\prxtbDVD0.dll (Conduit Ltd.) O3 - HKCU…\Toolbar\WebBrowser: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - File not found O4 - HKLM…\Run: [KernelFaultCheck] File not found [2011-08-22 20:51:34 | 000,000,000 | —D | C] – C:\WINDOWS\ufa [2011-08-22 20:51:34 | 000,000,000 | —D | C] – C:\WINDOWS\phoenix [2011-08-22 20:51:33 | 000,000,000 | -H-D | C] – C:\WINDOWS\update.7.1 [2011-08-22 20:49:34 | 000,000,000 | -H-D | C] – C:\WINDOWS\update.2 [2011-08-22 20:48:18 | 000,000,000 | -H-D | C] – C:\WINDOWS\update.5.0 [2011-08-22 20:46:02 | 000,000,000 | —D | C] – C:\WINDOWS\av_ico [2011-08-22 20:43:55 | 000,000,000 | -H-D | C] – C:\WINDOWS\update.1 [2011-08-22 20:43:28 | 000,000,000 | -H-D | C] – C:\WINDOWS\update.tray-12-0-lnk [2011-08-22 20:43:28 | 000,000,000 | -H-D | C] – C:\WINDOWS\update.tray-12-0 [2011-08-22 21:07:52 | 000,000,734 | ---- | M] () – C:\WINDOWS\System32\drivers\etc\hîsts [2011-08-22 20:59:50 | 000,000,198 | ---- | M] () – C:\WINDOWS\info1 [2011-08-22 20:55:13 | 000,904,792 | ---- | M] () – C:\WINDOWS\geoiplist.rar [2011-08-22 20:55:13 | 000,246,272 | ---- | M] () – C:\WINDOWS\unrar.exe [2011-08-22 20:51:33 | 005,589,370 | ---- | M] () – C:\WINDOWS\phoenix.rar [2011-08-22 20:51:33 | 000,182,617 | ---- | M] () – C:\WINDOWS\ufa.rar [2011-08-22 20:51:32 | 001,075,284 | ---- | M] () – C:\WINDOWS\rpcminer.rar [2011-08-22 20:46:47 | 000,000,000 | ---- | M] () – C:\WINDOWS\loader2.exe_ok [2011-08-22 20:51:33 | 005,589,370 | ---- | C] () – C:\WINDOWS\phoenix.rar [2011-08-22 20:51:33 | 000,182,617 | ---- | C] () – C:\WINDOWS\ufa.rar [2011-08-22 20:51:32 | 001,075,284 | ---- | C] () – C:\WINDOWS\rpcminer.rar [2011-08-22 20:50:45 | 004,636,907 | ---- | C] () – C:\WINDOWS\geoiplist [2011-08-22 20:50:44 | 000,904,792 | ---- | C] () – C:\WINDOWS\geoiplist.rar [2011-08-22 20:50:44 | 000,246,272 | ---- | C] () – C:\WINDOWS\unrar.exe [2011-08-22 20:47:46 | 000,000,198 | ---- | C] () – C:\WINDOWS\info1 [2011-08-22 20:46:42 | 000,000,000 | ---- | C] () – C:\WINDOWS\loader2.exe_ok :Reg [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot] “AlternateShell”=“cmd.exe” :Commands [emptytemp] [resethosts]