Here is the Malwarebytes log from the full scan:
Malwarebytes' Anti-Malware 1.51.0.1200
www.malwarebytes.org
Database version: 7059
Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.19088
09/07/2011 1:27:26 PM
mbam-log-2011-07-09 (13-27-26).txt
Scan type: Full scan (C:\|)
Objects scanned: 375506
Time elapsed: 56 minute(s), 31 second(s)
Memory Processes Infected: 2
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 1
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 4
Memory Processes Infected:
c:\programdata\rgdeaivvgrljeja.exe (Trojan.FakeAlert) -> 3708 -> Failed to unload process.
c:\programdata\42458872.exe (Trojan.Agent) -> 352 -> Failed to unload process.
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\rGDEAIvvgrLJejA (Trojan.FakeAlert) -> Value: rGDEAIvvgrLJejA -> Quarantined and deleted successfully.
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
c:\programdata\rgdeaivvgrljeja.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\Users\Home\AppData\Local\microsoft\Windows\temporary internet files\virtualized\C\Users\Home\Desktop\0.30278755771502475.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\Users\Home\AppData\Local\Temp\Low\jar_cache41391.tmp (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\programdata\42458872.exe (Trojan.Agent) -> Quarantined and deleted successfully.
--------
Here is the Attach log from DDS:
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-06-23.01)
.
Microsoft® Windows Vista™ Home Premium
Boot Device: \Device\HarddiskVolume2
Install Date: 28/11/2008 2:44:51 PM
System Uptime: 09/07/2011 11:31:56 AM (1 hours ago)
.
Motherboard: TOSHIBA | | Satellite M300
Processor: Intel(R) Core(TM)2 Duo CPU T5750 @ 2.00GHz | U2E1 | 2000/166mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 225 GiB total, 125.544 GiB free.
D: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP1342: 21/06/2011 9:10:38 PM - Scheduled Checkpoint
RP1343: 21/06/2011 9:25:13 PM - Windows Update
RP1344: 22/06/2011 8:57:16 AM - Windows Update
RP1345: 22/06/2011 8:42:25 PM - Windows Update
RP1346: 23/06/2011 10:04:19 AM - Scheduled Checkpoint
RP1347: 23/06/2011 10:41:52 AM - Windows Update
RP1348: 24/06/2011 1:15:42 AM - Windows Update
RP1349: 24/06/2011 8:29:52 AM - Windows Update
RP1350: 24/06/2011 10:46:20 AM - Windows Update
RP1351: 24/06/2011 8:55:48 PM - Windows Update
RP1352: 25/06/2011 3:40:57 PM - Scheduled Checkpoint
RP1353: 25/06/2011 10:02:03 PM - Windows Update
RP1354: 26/06/2011 7:25:00 AM - Scheduled Checkpoint
RP1355: 26/06/2011 10:14:32 PM - Windows Update
RP1356: 27/06/2011 6:59:52 PM - Windows Update
RP1357: 28/06/2011 7:29:40 AM - Windows Update
RP1358: 29/06/2011 6:32:36 AM - Windows Update
RP1359: 29/06/2011 10:18:38 AM - Windows Update
RP1360: 30/06/2011 6:17:01 AM - Windows Update
RP1361: 30/06/2011 9:47:12 PM - Windows Update
RP1362: 01/07/2011 1:05:22 AM - Windows Update
RP1363: 01/07/2011 9:23:17 AM - Windows Update
RP1364: 01/07/2011 8:54:33 PM - Windows Update
RP1365: 02/07/2011 1:55:26 PM - Scheduled Checkpoint
RP1366: 03/07/2011 8:16:52 AM - Windows Update
RP1367: 04/07/2011 6:33:56 AM - Windows Update
RP1368: 04/07/2011 10:00:22 PM - Windows Update
RP1369: 05/07/2011 8:02:13 AM - Windows Update
RP1370: 05/07/2011 8:08:18 AM - Windows Update
RP1371: 06/07/2011 8:23:39 AM - Windows Update
RP1372: 06/07/2011 10:18:18 PM - Windows Update
RP1373: 06/07/2011 10:43:06 PM - Windows Update
RP1374: 08/07/2011 8:04:14 AM - Windows Update
RP1375: 08/07/2011 8:08:40 AM - Windows Update
RP1376: 09/07/2011 12:34:57 AM - Removed Bing Bar
RP1377: 09/07/2011 3:04:36 AM - Windows Update
.
==== Installed Programs ======================
.
Activation Assistant for the 2007 Microsoft Office suites
Adobe Flash Player 10 ActiveX
Adobe Reader 8.1.0
Advanced System Optimizer (Registered Version)
Amazonia BONUS
Apple Application Support
Apple Software Update
ArcSoft MediaImpression
Business Contact Manager for Outlook 2007 SP2
Camera Assistant Software for Toshiba
Catalyst Control Center - Branding
Catalyst Control Center Core Implementation
Catalyst Control Center Graphics Full Existing
Catalyst Control Center Graphics Full New
Catalyst Control Center Graphics Light
Catalyst Control Center Graphics Previews Vista
Catalyst Control Center Localization Chinese Standard
Catalyst Control Center Localization Chinese Traditional
Catalyst Control Center Localization Dutch
Catalyst Control Center Localization French
Catalyst Control Center Localization German
Catalyst Control Center Localization Italian
Catalyst Control Center Localization Japanese
Catalyst Control Center Localization Korean
Catalyst Control Center Localization Portuguese
Catalyst Control Center Localization Spanish
Catalyst Control Center Localization Swedish
ccc-core-static
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Dutch
CCC Help English
CCC Help French
CCC Help German
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Portuguese
CCC Help Spanish
CCC Help Swedish
CD/DVD Drive Acoustic Silencer
Conduit Engine
D3DX10
Definition update for Microsoft Office 2010 (KB982726)
DVD MovieFactory for TOSHIBA
Epson Event Manager
EPSON Scan
GamesBar 2.0.1.59
GearDrvs
HDMI Control Manager
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Java(TM) 6 Update 3
Junk Mail filter update
LiveUpdate 3.2 (Symantec Corporation)
LiveUpdate Notice (Symantec Corporation)
Malwarebytes' Anti-Malware version 1.51.0.1200
Microsoft Office 2003 Web Components
Microsoft Office 2007 Primary Interop Assemblies
Microsoft Office Access MUI (English) 2010
Microsoft Office Access Setup Metadata MUI (English) 2010
Microsoft Office Excel MUI (English) 2010
Microsoft Office Home and Student 2010
Microsoft Office Live Add-in 1.3
Microsoft Office OneNote MUI (English) 2010
Microsoft Office Outlook Connector
Microsoft Office Outlook MUI (English) 2010
Microsoft Office PowerPoint MUI (English) 2010
Microsoft Office Proof (English) 2010
Microsoft Office Proof (French) 2010
Microsoft Office Proof (Spanish) 2010
Microsoft Office Proofing (English) 2010
Microsoft Office Publisher MUI (English) 2010
Microsoft Office Shared MUI (English) 2010
Microsoft Office Shared Setup Metadata MUI (English) 2010
Microsoft Office Single Image 2010
Microsoft Office Small Business Connectivity Components
Microsoft Office Word MUI (English) 2010
Microsoft Silverlight
Microsoft SQL Server 2005
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft SQL Server 2005 Express Edition (MSSMLBIZ)
Microsoft SQL Server Setup Support Files (English)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft XML Parser
MSVCRT
MSVCRT_amd64
MSXML 4.0 SP2 (KB941833)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MyIdentityDefender Toolbar
NetWaiting
Norton 360
OnlinePlay 1.0
QuickTime
SANYO User's Manual
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
Security Update for Microsoft Excel 2010 (KB2523021)
Security Update for Microsoft Office 2010 (KB2289078)
Security Update for Microsoft Office 2010 (KB2289161)
Security Update for Microsoft PowerPoint 2010 (KB2519975)
Security Update for Microsoft Publisher 2010 (KB2409055)
Security Update for Microsoft Word 2010 (KB2345000)
Security Update for Windows Media Encoder (KB2447961)
Security Update for Windows Media Encoder (KB954156)
Security Update for Windows Media Encoder (KB979332)
Segoe UI
Skins
Spyware Doctor 8.0
Toshiba Assist
TOSHIBA ConfigFree
TOSHIBA DVD PLAYER
TOSHIBA Extended Tiles for Windows Mobility Center
TOSHIBA Face Recognition
TOSHIBA Hardware Setup
Toshiba Registration
TOSHIBA Speech System Applications
TOSHIBA Speech System SR Engine(U.S.) Version1.0
TOSHIBA Speech System TTS Engine(U.S.) Version1.0
TOSHIBA Supervisor Password
TOSHIBA Value Added Package
TranslatorBar 3.2 Toolbar
Ulead Photo Explorer 8.0 SE Basic
Uninstall 1.0.0.1
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft Office 2010 (KB2202188)
Update for Microsoft Office 2010 (KB2413186)
Update for Microsoft Office 2010 (KB2494150)
Update for Microsoft Office 2010 (KB2523113)
Update for Microsoft OneNote 2010 (KB2493983)
Update for Microsoft Outlook Social Connector (KB2441641)
Visual C++ 8.0 Runtime Setup Package (x64)
Visual Studio 2008 x64 Redistributables
Windows Live Communications Platform
Windows Live Essentials
Windows Live Installer
Windows Live Mail
Windows Live Messenger
Windows Live Movie Maker
Windows Live Photo Common
Windows Live Photo Gallery
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live Sync
Windows Live UX Platform
Windows Live UX Platform Language Pack
Windows Live Writer
Windows Live Writer Resources
Windows Media Encoder 9 Series
.
==== Event Viewer Messages From Past Week ========
.
09/07/2011 3:06:46 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Security Update for Microsoft Office PowerPoint 2007 (KB2535818).
09/07/2011 3:06:46 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Security Update for Microsoft .NET Framework 4 on Windows XP, Windows Server 2003, Windows Vista, Windows 7, Windows Server 2008, Windows Server 2008 R2 for x64-based Systems (KB2518870).
09/07/2011 3:06:31 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Security Update for Microsoft .NET Framework 4 on Windows XP, Windows Server 2003, Windows Vista, Windows 7, Windows Server 2008, Windows Server 2008 R2 for x64-based Systems (KB2478663).
09/07/2011 2:25:00 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service BITS with arguments "" in order to run the server: {4991D34B-80A1-4291-83B6-3328366B9097}
09/07/2011 2:23:53 AM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: spldr Wanarpv6
09/07/2011 2:23:53 AM, Error: Service Control Manager [7001] - The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start.
09/07/2011 2:23:12 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
09/07/2011 2:23:11 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
09/07/2011 2:23:07 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
09/07/2011 2:23:00 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC}
09/07/2011 2:08:54 AM, Error: EventLog [6008] - The previous system shutdown at 2:07:44 AM on 09/07/2011 was unexpected.
09/07/2011 2:05:10 AM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Windows Font Cache Service service to connect.
09/07/2011 2:05:10 AM, Error: Service Control Manager [7000] - The Windows Font Cache Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
09/07/2011 12:55:00 AM, Error: EventLog [6008] - The previous system shutdown at 12:53:07 AM on 09/07/2011 was unexpected.
09/07/2011 11:39:19 AM, Error: Service Control Manager [7022] - The Windows Update service hung on starting.
09/07/2011 11:37:32 AM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ShellHWDetection service.
09/07/2011 11:36:24 AM, Error: Service Control Manager [7024] - The KtmRm for Distributed Transaction Coordinator service terminated with service-specific error 2147942438 (0x80070026).
06/07/2011 8:25:21 AM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the iPod Service service to connect.
06/07/2011 8:25:21 AM, Error: Service Control Manager [7000] - The iPod Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
06/07/2011 8:25:21 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1053" attempting to start the service iPod Service with arguments "" in order to run the server: {063D34A4-BF84-4B8D-B699-E8CA06504DDE}
04/07/2011 6:03:04 PM, Error: Microsoft-Windows-Dhcp-Client [1002] - The IP address lease 192.168.1.2 for the Network Card with network address 00215C40FC11 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).
.
==== End Of File ===========================
----
Just rebooting now, as soon as it starts up I will start with Combofix.