Thank you so much Polonus. Here’s what was saved in notepad. . .
Malwarebytes’ Anti-Malware 1.24
Database version: 1012
Windows 5.1.2600 Service Pack 2
10:06:37 PM 8/19/2008
mbam-log-8-19-2008 (22-06-37).txt
Scan type: Full Scan (C:|D:|)
Objects scanned: 122504
Time elapsed: 51 minute(s), 3 second(s)
Memory Processes Infected: 1
Memory Modules Infected: 0
Registry Keys Infected: 1
Registry Values Infected: 5
Registry Data Items Infected: 2
Folders Infected: 0
Files Infected: 12
Memory Processes Infected:
C:\WINDOWS\system32\lphccocj0ee5r.exe (Trojan.FakeAlert) → Unloaded process
successfully.
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Software Notifier (Rogue.Multiple) →
Quarantined and deleted successfully.
Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lphccocj0ee5r
(Trojan.FakeAlert) → Quarantined and deleted successfully.
HKEY_CURRENT_USER\Control Panel\Desktop\wallpaper (Hijack.Wallpaper) → Quarantined
and deleted successfully.
HKEY_CURRENT_USER\Control Panel\Desktop\originalwallpaper (Hijack.Wallpaper) →
Quarantined and deleted successfully.
HKEY_CURRENT_USER\Control Panel\Desktop\convertedwallpaper (Hijack.Wallpaper) →
Quarantined and deleted successfully.
HKEY_CURRENT_USER\Control Panel\Desktop\scrnsave.exe (Hijack.Wallpaper) →
Quarantined and deleted successfully.
Registry Data Items Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDis
pBackgroundPage (Hijack.DisplayProperties) → Bad: (1) Good: (0) → Quarantined and
deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDis
pScrSavPage (Hijack.DisplayProperties) → Bad: (1) Good: (0) → Quarantined and deleted
successfully.
Folders Infected:
(No malicious items detected)
Files Infected:
C:\WINDOWS\system32\blphccocj0ee5r.scr (Trojan.FakeAlert) → Quarantined and deleted
successfully.
C:\WINDOWS\system32\lphccocj0ee5r.exe (Trojan.FakeAlert) → Quarantined and deleted
successfully.
C:\WINDOWS\system32\phccocj0ee5r.bmp (Trojan.FakeAlert) → Quarantined and deleted
successfully.
C:\Documents and Settings\Owner\Local Settings\Temp.tt1.tmp (Trojan.Downloader) →
Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Local Settings\Temp.tt2.tmp (Trojan.Downloader) →
Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Local Settings\Temp.tt5.tmp (Trojan.Downloader) →
Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Local Settings\Temp.tt6.tmp (Trojan.Downloader) →
Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Local Settings\Temp.tt7.tmp (Trojan.Downloader) →
Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Local Settings\Temp.tt9.tmp (Trojan.Downloader) →
Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Local Settings\Temp.ttB.tmp (Trojan.Downloader) →
Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Local Settings\Temp.ttC.tmp (Trojan.Downloader) →
Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Local Settings\Temp.ttE.tmp (Trojan.Downloader) →
Quarantined and deleted successfully.