These are the copies you requested, thank you very very much for your help. Compared to how it was running about 7-10 days ago it's running good now but the reason I contacted you was because I kept running into different malware or virus notification problems from MSE every time I thought I was clean I would run TDSSKILLER one more time and it would tell me I still had problems. I will follow your directions as you give them exactly!!
Copy of checkup text!!!!
Results of screen317's Security Check version 0.99.32
Windows 7 x64 (UAC is disabled!)
Internet Explorer 9
``````````````````````````````
Antivirus/Firewall Check:
Windows Firewall Enabled!
WMI entry may not exist for antivirus; attempting automatic update.
```````````````````````````````
Anti-malware/Other Utilities Check:
Java 6 Update 29
Java version out of date!
Adobe Reader X (10.1.3)
````````````````````````````````
Process Check:
objlist.exe by Laurent
Windows Defender MSMpEng.exe
Microsoft Security Essentials msseces.exe
``````````End of Log````````````
Copy of Combofix log!!!!
ComboFix 12-05-02.02 - winston 05/02/2012 8:18.3.4 - x64
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.3966.2714 [GMT -5:00]
Running from: c:\users\winston\Desktop\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
SP: Microsoft Security Essentials *Disabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Files Created from 2012-04-02 to 2012-05-02 )))))))))))))))))))))))))))))))
.
.
2012-05-02 13:24 . 2012-05-02 13:24 -------- d-----w- c:\users\Public\AppData\Local\temp
2012-05-02 13:24 . 2012-05-02 13:24 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-05-01 15:17 . 2012-05-01 15:17 -------- d-----w- c:\users\winston\AppData\Roaming\Malwarebytes
2012-05-01 15:17 . 2012-05-01 15:17 -------- d-----w- c:\programdata\Malwarebytes
2012-05-01 15:17 . 2012-05-01 15:17 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-05-01 12:14 . 2011-06-21 04:09 200976 ----a-w- c:\windows\SysWow64\drivers\tmcomm.sys
2012-05-01 03:45 . 2012-04-13 08:46 8917360 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{4ED9F41D-AB8A-4DF8-8743-0128784C893C}\mpengine.dll
2012-05-01 03:41 . 2012-05-01 03:41 -------- d-----w- c:\program files (x86)\Common Files\Adobe
2012-05-01 03:18 . 2012-05-01 03:18 -------- d-----w- c:\program files (x86)\VS Revo Group
2012-05-01 03:03 . 2012-05-01 03:03 -------- d-----w- c:\programdata\NVIDIA
2012-05-01 02:52 . 2012-05-01 02:52 -------- d-----w- c:\programdata\NVIDIA Corporation
2012-05-01 02:51 . 2012-05-01 02:53 -------- d-----w- c:\program files\NVIDIA Corporation
2012-05-01 02:51 . 2010-08-12 16:46 758272 ----a-w- c:\windows\system32\cohelper.dll
2012-05-01 02:51 . 2010-08-10 03:33 11164 ----a-w- c:\windows\system32\drivers\nvphy.bin
2012-05-01 02:51 . 2012-05-01 02:51 -------- d-----w- c:\program files (x86)\Microsoft Security Client
2012-05-01 00:52 . 2012-05-01 00:52 -------- d-----w- c:\program files\SUPERAntiSpyware
2012-05-01 00:51 . 2012-05-01 00:51 -------- d-----w- c:\users\winston\AppData\Roaming\SUPERAntiSpyware.com
2012-05-01 00:51 . 2012-05-01 00:51 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2012-04-30 21:02 . 2012-03-06 06:53 5559152 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-04-30 21:02 . 2012-03-06 05:59 3968368 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe
2012-04-30 21:02 . 2012-03-06 05:59 3913072 ----a-w- c:\windows\SysWow64\ntoskrnl.exe
2012-04-27 20:21 . 2012-04-27 20:21 -------- d-----w- C:\Quarantine
2012-04-27 17:56 . 2012-04-27 17:56 -------- d-----w- c:\users\winston\AppData\Local\Norman Malware Cleaner
2012-04-27 17:21 . 2012-04-27 17:21 -------- d-----we c:\windows\system64
2012-04-27 16:56 . 2012-04-28 15:23 -------- d-----w- c:\programdata\B7E85B35000435DB00703F80B4EB2331
2012-04-27 16:56 . 2012-04-27 21:55 -------- d-----w- c:\program files (x86)\Common Files\Analog
2012-04-27 03:25 . 2012-04-27 03:25 -------- d-----w- c:\program files\iPod
2012-04-27 03:25 . 2012-04-27 03:26 -------- d-----w- c:\program files (x86)\iTunes
2012-04-27 03:25 . 2012-04-27 03:26 -------- d-----w- c:\program files\iTunes
2012-04-14 21:08 . 2012-04-14 21:08 -------- d-----w- c:\users\Default\AppData\Roaming\Apple Computer
2012-04-14 21:08 . 2012-04-14 21:08 -------- d-----w- c:\users\Default\AppData\Local\Apple Computer
2012-04-13 10:28 . 2012-04-13 10:28 -------- d-----w- C:\Cache
2012-04-12 08:00 . 2012-03-01 06:46 23408 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-04-12 08:00 . 2012-03-01 06:33 81408 ----a-w- c:\windows\system32\imagehlp.dll
2012-04-12 08:00 . 2012-03-01 05:33 159232 ----a-w- c:\windows\SysWow64\imagehlp.dll
2012-04-12 08:00 . 2012-03-01 06:38 220672 ----a-w- c:\windows\system32\wintrust.dll
2012-04-12 08:00 . 2012-03-01 06:28 5120 ----a-w- c:\windows\system32\wmi.dll
2012-04-12 08:00 . 2012-03-01 05:37 172544 ----a-w- c:\windows\SysWow64\wintrust.dll
2012-04-12 08:00 . 2012-03-01 05:29 5120 ----a-w- c:\windows\SysWow64\wmi.dll
2012-04-04 05:53 . 2012-04-04 05:53 182160 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\nppdf32.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-04-13 08:46 . 2011-12-24 12:04 8917360 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-04-04 20:56 . 2011-12-22 01:51 24904 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-03-21 01:44 . 2011-04-27 21:25 98688 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys
2012-03-21 01:44 . 2011-04-18 19:18 203888 ----a-w- c:\windows\system32\drivers\MpFilter.sys
2012-03-14 17:00 . 2011-06-06 07:07 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-02-17 06:38 . 2012-03-14 07:17 1031680 ----a-w- c:\windows\system32\rdpcore.dll
2012-02-17 05:34 . 2012-03-14 07:17 826880 ----a-w- c:\windows\SysWow64\rdpcore.dll
2012-02-17 04:58 . 2012-03-14 07:17 210944 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2012-02-17 04:57 . 2012-03-14 07:17 23552 ----a-w- c:\windows\system32\drivers\tdtcp.sys
2012-02-10 20:21 . 2012-02-10 20:21 927800 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E62215B4-5ED9-425A-A300-6FB48BAE4959}\gapaengine.dll
2012-02-10 06:36 . 2012-03-14 07:17 1544192 ----a-w- c:\windows\system32\DWrite.dll
2012-02-10 05:38 . 2012-03-14 07:17 1077248 ----a-w- c:\windows\SysWow64\DWrite.dll
2012-02-03 04:34 . 2012-03-14 07:18 3145728 ----a-w- c:\windows\system32\win32k.sys
.
.
((((((((((((((((((((((((((((( SnapShot_2012-04-30_23.22.13 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-07-10 10:38 . 2010-07-10 10:38 56936 c:\windows\SysWOW64\OpenCL.dll
+ 2009-11-05 18:29 . 2012-05-02 13:27 42958 c:\windows\system64\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2012-05-02 13:27 30254 c:\windows\system64\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2009-11-05 18:13 . 2012-05-02 13:27 14628 c:\windows\system64\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-662776635-4278041600-1742292764-1001_UserData.bin
+ 2010-07-10 10:38 . 2010-07-10 10:38 65128 c:\windows\system64\OpenCL.dll
+ 2010-07-09 21:27 . 2010-07-09 21:27 61032 c:\windows\system64\nvshext.dll
+ 2009-07-14 05:30 . 2012-05-01 02:52 86016 c:\windows\system64\DriverStore\infpub.dat
- 2009-07-14 05:30 . 2012-04-27 03:22 86016 c:\windows\system64\DriverStore\infpub.dat
+ 2010-07-10 10:38 . 2010-07-10 10:38 65128 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\OpenCL64.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 56936 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\OpenCL.dll
+ 2012-05-01 02:51 . 2010-08-10 03:33 11164 c:\windows\system64\drivers\nvphy.bin
+ 2011-04-27 21:25 . 2012-03-21 01:44 98688 c:\windows\system64\drivers\NisDrvWFP.sys
+ 2011-12-22 01:51 . 2012-04-04 20:56 24904 c:\windows\system64\drivers\mbam.sys
+ 2009-11-05 17:19 . 2012-05-02 02:37 16384 c:\windows\system64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-11-05 17:19 . 2012-04-30 21:06 16384 c:\windows\system64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-11-05 17:19 . 2012-04-30 21:06 32768 c:\windows\system64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-11-05 17:19 . 2012-05-02 02:37 32768 c:\windows\system64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2012-04-30 21:06 16384 c:\windows\system64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 04:54 . 2012-05-02 02:37 16384 c:\windows\system64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-11-05 18:29 . 2012-05-02 13:27 42958 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2012-05-02 13:27 30254 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2009-11-05 18:13 . 2012-05-02 13:27 14628 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-662776635-4278041600-1742292764-1001_UserData.bin
+ 2010-07-10 10:38 . 2010-07-10 10:38 65128 c:\windows\system32\OpenCL.dll
+ 2010-07-09 21:27 . 2010-07-09 21:27 61032 c:\windows\system32\nvshext.dll
- 2009-07-14 05:30 . 2012-04-27 03:22 86016 c:\windows\system32\DriverStore\infpub.dat
+ 2009-07-14 05:30 . 2012-05-01 02:52 86016 c:\windows\system32\DriverStore\infpub.dat
+ 2010-07-10 10:38 . 2010-07-10 10:38 65128 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\OpenCL64.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 56936 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\OpenCL.dll
- 2009-11-05 17:19 . 2012-04-30 21:06 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-11-05 17:19 . 2012-05-02 02:37 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-11-05 17:19 . 2012-04-30 21:06 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-11-05 17:19 . 2012-05-02 02:37 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-05-02 02:37 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2012-04-30 21:06 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2012-05-01 02:53 . 2012-05-01 02:53 10134 c:\windows\Installer\{DA97BDF9-BC72-46FD-8E76-427F2BB951EE}\ARPPRODUCTICON.exe
+ 2012-05-01 02:52 . 2012-05-01 02:52 10134 c:\windows\Installer\{3D3E663D-4E7E-4577-A560-7ECDDD45548A}\ARPPRODUCTICON.exe
+ 2011-06-06 17:55 . 2011-06-06 17:55 73624 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\wow_helper.exe
+ 2011-06-06 17:55 . 2011-06-06 17:55 17304 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\ViewerPS.dll
+ 2011-06-06 17:55 . 2011-06-06 17:55 35736 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\reader_sl.exe
+ 2011-06-06 17:55 . 2011-06-06 17:55 88992 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\PDFPrevHndlr.dll
+ 2011-06-06 17:55 . 2011-06-06 17:55 94608 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\eula.exe
+ 2011-06-06 17:55 . 2011-06-06 17:55 64952 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\armsvc.exe
+ 2011-06-06 17:55 . 2011-06-06 17:55 49064 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\acrotextextractor.exe
+ 2011-06-06 17:55 . 2011-06-06 17:55 17824 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\AcroRd32Info.exe
+ 2011-06-06 17:55 . 2011-06-06 17:55 63912 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\acroiehelpershim.dll
+ 2011-06-06 17:55 . 2011-06-06 17:55 64928 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\AcroIEHelper.dll
+ 2011-06-06 17:55 . 2011-06-06 17:55 63384 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\Acrofx32.dll
+ 2012-05-02 13:25 . 2012-05-02 13:25 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2012-04-30 23:21 . 2012-04-30 23:21 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2012-04-30 23:21 . 2012-04-30 23:21 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2012-05-02 13:25 . 2012-05-02 13:25 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2009-07-14 02:36 . 2012-05-01 02:51 634574 c:\windows\system64\perfh009.dat
+ 2009-07-14 02:36 . 2012-05-01 02:51 111454 c:\windows\system64\perfc009.dat
+ 2010-07-09 21:27 . 2010-07-09 21:27 159336 c:\windows\system64\nvvsvc.exe
+ 2010-07-09 21:27 . 2010-07-09 21:27 116328 c:\windows\system64\nvmctray.dll
+ 2010-08-12 15:14 . 2010-08-12 15:14 263784 c:\windows\system64\nvconrm.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 260712 c:\windows\system64\nvcod1922.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 260712 c:\windows\system64\nvcod.dll
+ 2010-08-12 16:46 . 2010-08-12 16:46 953344 c:\windows\system64\fdco2.dll
- 2009-07-14 05:30 . 2012-04-27 03:22 143360 c:\windows\system64\DriverStore\infstrng.dat
+ 2009-07-14 05:30 . 2012-05-01 02:52 143360 c:\windows\system64\DriverStore\infstrng.dat
+ 2009-07-14 05:30 . 2012-05-01 02:52 143360 c:\windows\system64\DriverStore\infstor.dat
- 2009-07-14 05:30 . 2012-04-27 03:22 143360 c:\windows\system64\DriverStore\infstor.dat
+ 2010-08-12 15:14 . 2010-08-12 15:14 660072 c:\windows\system64\DriverStore\FileRepository\nvfd6x64.inf_amd64_neutral_6548e16d80c85b6f\nvunrm.exe
+ 2010-08-12 17:07 . 2010-08-12 17:07 344680 c:\windows\system64\DriverStore\FileRepository\nvfd6x64.inf_amd64_neutral_6548e16d80c85b6f\nvmfdx64.sys
+ 2010-08-12 17:07 . 2010-08-12 17:07 350952 c:\windows\system64\DriverStore\FileRepository\nvfd6x64.inf_amd64_neutral_6548e16d80c85b6f\nvm62x64.sys
+ 2010-08-12 15:14 . 2010-08-12 15:14 263784 c:\windows\system64\DriverStore\FileRepository\nvfd6x64.inf_amd64_neutral_6548e16d80c85b6f\nvconrm.dll
+ 2010-08-12 16:46 . 2010-08-12 16:46 953344 c:\windows\system64\DriverStore\FileRepository\nvfd6x64.inf_amd64_neutral_6548e16d80c85b6f\fdco1.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 660072 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvudisp.exe
+ 2010-07-10 10:38 . 2010-07-10 10:38 261268 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvdrsdb.bin
+ 2010-07-10 10:38 . 2010-07-10 10:38 260712 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvcod.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 930272 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\dpinst.exe
+ 2010-07-10 10:38 . 2010-07-10 10:38 189032 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\dbInstaller.exe
+ 2010-08-12 17:07 . 2010-08-12 17:07 350952 c:\windows\system64\drivers\nvmf6264.sys
+ 2011-04-18 19:18 . 2012-03-21 01:44 203888 c:\windows\system64\drivers\MpFilter.sys
+ 2010-07-10 10:38 . 2010-07-10 10:38 930272 c:\windows\system64\dpinst.exe
+ 2012-05-01 02:51 . 2010-08-12 16:46 758272 c:\windows\system64\cohelper.dll
+ 2009-07-14 02:36 . 2012-05-01 02:51 634574 c:\windows\system32\perfh009.dat
+ 2009-07-14 02:36 . 2012-05-01 02:51 111454 c:\windows\system32\perfc009.dat
+ 2010-07-09 21:27 . 2010-07-09 21:27 159336 c:\windows\system32\nvvsvc.exe
+ 2010-07-09 21:27 . 2010-07-09 21:27 116328 c:\windows\system32\nvmctray.dll
+ 2010-08-12 15:14 . 2010-08-12 15:14 263784 c:\windows\system32\nvconrm.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 260712 c:\windows\system32\nvcod1922.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 260712 c:\windows\system32\nvcod.dll
+ 2010-08-12 16:46 . 2010-08-12 16:46 953344 c:\windows\system32\fdco2.dll
- 2009-07-14 05:30 . 2012-04-27 03:22 143360 c:\windows\system32\DriverStore\infstrng.dat
+ 2009-07-14 05:30 . 2012-05-01 02:52 143360 c:\windows\system32\DriverStore\infstrng.dat
- 2009-07-14 05:30 . 2012-04-27 03:22 143360 c:\windows\system32\DriverStore\infstor.dat
+ 2009-07-14 05:30 . 2012-05-01 02:52 143360 c:\windows\system32\DriverStore\infstor.dat
+ 2010-08-12 15:14 . 2010-08-12 15:14 660072 c:\windows\system32\DriverStore\FileRepository\nvfd6x64.inf_amd64_neutral_6548e16d80c85b6f\nvunrm.exe
+ 2010-08-12 17:07 . 2010-08-12 17:07 344680 c:\windows\system32\DriverStore\FileRepository\nvfd6x64.inf_amd64_neutral_6548e16d80c85b6f\nvmfdx64.sys
+ 2010-08-12 17:07 . 2010-08-12 17:07 350952 c:\windows\system32\DriverStore\FileRepository\nvfd6x64.inf_amd64_neutral_6548e16d80c85b6f\nvm62x64.sys
+ 2010-08-12 15:14 . 2010-08-12 15:14 263784 c:\windows\system32\DriverStore\FileRepository\nvfd6x64.inf_amd64_neutral_6548e16d80c85b6f\nvconrm.dll
+ 2010-08-12 16:46 . 2010-08-12 16:46 953344 c:\windows\system32\DriverStore\FileRepository\nvfd6x64.inf_amd64_neutral_6548e16d80c85b6f\fdco1.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 660072 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvudisp.exe
+ 2010-07-10 10:38 . 2010-07-10 10:38 261268 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvdrsdb.bin
+ 2010-07-10 10:38 . 2010-07-10 10:38 260712 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvcod.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 930272 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\dpinst.exe
+ 2010-07-10 10:38 . 2010-07-10 10:38 189032 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\dbInstaller.exe
+ 2010-08-12 17:07 . 2010-08-12 17:07 350952 c:\windows\system32\drivers\nvmf6264.sys
+ 2010-07-10 10:38 . 2010-07-10 10:38 930272 c:\windows\system32\dpinst.exe
+ 2009-07-14 04:46 . 2012-04-30 23:31 108208 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
- 2009-07-14 05:01 . 2012-04-30 21:59 261556 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2009-07-14 05:01 . 2012-05-02 13:25 261556 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2012-05-01 02:51 . 2012-05-01 02:51 109563 c:\windows\Installer\{9D046B26-7978-47CD-91E6-AC3C1DFBC3D0}\SCEP.exe
+ 2012-05-01 02:51 . 2012-05-01 02:51 123352 c:\windows\Installer\{9D046B26-7978-47CD-91E6-AC3C1DFBC3D0}\MSE.exe
+ 2012-05-01 02:51 . 2012-05-01 02:51 109563 c:\windows\Installer\{9D046B26-7978-47CD-91E6-AC3C1DFBC3D0}\INTUNE.exe
+ 2012-05-01 02:51 . 2012-05-01 02:51 109563 c:\windows\Installer\{9D046B26-7978-47CD-91E6-AC3C1DFBC3D0}\FEP.exe
+ 2012-05-01 02:51 . 2012-05-01 02:51 109563 c:\windows\Installer\{9D046B26-7978-47CD-91E6-AC3C1DFBC3D0}\EPP.exe
+ 2011-06-06 17:55 . 2011-06-06 17:55 249232 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\sqlite.dll
+ 2011-06-06 17:55 . 2011-06-06 17:55 394136 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\pdfshell.dll
+ 2011-06-06 17:55 . 2011-06-06 17:55 183696 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\nppdf32.dll
+ 2011-06-06 17:55 . 2011-06-06 17:55 104344 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\AiodLite.dll
+ 2011-06-06 17:55 . 2011-06-06 17:55 937920 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\adobearm.exe
+ 2011-06-06 17:55 . 2011-06-06 17:55 102808 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\AcroRdIF.dll
+ 2011-06-06 17:55 . 2011-06-06 17:55 755088 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\AcroPDF.dll
+ 2011-06-06 17:55 . 2011-06-06 17:55 296344 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\acrobroker.exe
+ 2011-06-06 17:55 . 2011-06-06 17:55 205720 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\a3dutils.dll
+ 2008-10-31 15:51 . 2008-10-31 15:51 1314816 c:\windows\SysWOW64\PVSonyDll.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 9818728 c:\windows\SysWOW64\nvd3dum.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 2892904 c:\windows\SysWOW64\nvcuvid.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 2506344 c:\windows\SysWOW64\nvcuvenc.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 4553832 c:\windows\SysWOW64\nvcuda.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 1625192 c:\windows\SysWOW64\nvapi.dll
+ 2008-10-31 15:51 . 2008-10-31 15:51 1319424 c:\windows\system64\PVSonyDll.dll
+ 2010-07-09 21:27 . 2010-07-09 21:27 1585256 c:\windows\system64\nvsvc64.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 3089512 c:\windows\system64\nvcuvid.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 2761832 c:\windows\system64\nvcuvenc.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 6116968 c:\windows\system64\nvcuda.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 2037864 c:\windows\system64\nvapi64.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 9818728 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvd3dum.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 2892904 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvcuvid32.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 3089512 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvcuvid.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 2761832 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvcuvenc64.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 2506344 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvcuvenc.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 4553832 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvcuda32.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 6116968 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvcuda.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 2037864 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvapi64.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 1625192 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvapi.dll
+ 2008-10-31 15:51 . 2008-10-31 15:51 1319424 c:\windows\system32\PVSonyDll.dll
+ 2010-07-09 21:27 . 2010-07-09 21:27 1585256 c:\windows\system32\nvsvc64.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 3089512 c:\windows\system32\nvcuvid.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 2761832 c:\windows\system32\nvcuvenc.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 6116968 c:\windows\system32\nvcuda.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 2037864 c:\windows\system32\nvapi64.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 9818728 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvd3dum.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 2892904 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvcuvid32.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 3089512 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvcuvid.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 2761832 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvcuvenc64.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 2506344 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvcuvenc.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 4553832 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvcuda32.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 6116968 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvcuda.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 2037864 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvapi64.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 1625192 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvapi.dll
+ 2012-05-01 02:52 . 2012-05-01 02:52 1796096 c:\windows\Installer\bfbe5c.msi
+ 2012-03-27 00:21 . 2012-03-27 00:21 7622656 c:\windows\Installer\bfbe55.msi
+ 2011-06-06 20:45 . 2011-06-06 20:45 2318848 c:\windows\Installer\22df1d.msi
+ 2011-06-06 17:55 . 2011-06-06 17:55 2215312 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\rt3d.dll
+ 2011-06-06 17:55 . 2011-06-06 17:55 1189004 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\JSByteCodeWin.bin
+ 2011-06-06 17:55 . 2011-06-06 17:55 6543768 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\authplay.dll
+ 2011-06-06 17:55 . 2011-06-06 17:55 1240992 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\AdobeCollabSync.exe
+ 2011-06-06 17:55 . 2011-06-06 17:55 1480600 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\AcroRd32.exe
+ 2010-07-10 10:38 . 2010-07-10 10:38 14092904 c:\windows\SysWOW64\nvoglv32.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 10267240 c:\windows\SysWOW64\nvcompiler.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 19114088 c:\windows\system64\nvoglv64.dll
+ 2009-07-13 21:59 . 2010-07-10 10:38 12471400 c:\windows\system64\nvd3dumx.dll
+ 2010-07-09 21:27 . 2010-07-09 21:27 15314024 c:\windows\system64\nvcpl.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 14513768 c:\windows\system64\nvcompiler.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 19114088 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvoglv64.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 14092904 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvoglv32.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 13187176 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvlddmkm.sys
+ 2010-07-10 10:38 . 2010-07-10 10:38 12471400 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvd3dumx.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 51549944 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\NvCplSetupInt.exe
+ 2010-07-10 10:38 . 2010-07-10 10:38 10267240 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvcompiler32.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 14513768 c:\windows\system64\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvcompiler.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 13187176 c:\windows\system64\drivers\nvlddmkm.sys
+ 2010-07-10 10:38 . 2010-07-10 10:38 19114088 c:\windows\system32\nvoglv64.dll
+ 2009-07-13 21:59 . 2010-07-10 10:38 12471400 c:\windows\system32\nvd3dumx.dll
+ 2010-07-09 21:27 . 2010-07-09 21:27 15314024 c:\windows\system32\nvcpl.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 14513768 c:\windows\system32\nvcompiler.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 19114088 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvoglv64.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 14092904 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvoglv32.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 13187176 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvlddmkm.sys
+ 2010-07-10 10:38 . 2010-07-10 10:38 12471400 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvd3dumx.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 51549944 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\NvCplSetupInt.exe
+ 2010-07-10 10:38 . 2010-07-10 10:38 10267240 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvcompiler32.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 14513768 c:\windows\system32\DriverStore\FileRepository\nv_disp.inf_amd64_neutral_d2b638a3a492a5e9\nvcompiler.dll
+ 2010-07-10 10:38 . 2010-07-10 10:38 13187176 c:\windows\system32\drivers\nvlddmkm.sys
+ 2011-04-07 14:51 . 2012-05-02 13:25 31516240 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-662776635-4278041600-1742292764-1001-12288.dat
+ 2012-04-04 11:17 . 2012-04-04 11:17 16613376 c:\windows\Installer\22df1e.msp
+ 2011-06-06 17:55 . 2011-06-06 17:55 24731544 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\AcroRd32.dll
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-03-11 39408]
"MobileDocuments"="c:\program files (x86)\Common Files\Apple\Internet Services\ubd.exe" [2012-02-23 59240]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2012-04-30 4786048]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
"Easy Dock"="" [BU]
"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-02-21 59240]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2011-10-24 421888]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2012-03-27 421736]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-04-04 843712]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"HideSCAHealth"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"AntiVirusDisableNotify"=dword:00000001
"AntiVirusOverride"=dword:00000001
"FirewallDisableNotify"=dword:00000001
"FirewallOverride"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
.
R0 Lbd;Lbd;c:\windows\system32\DRIVERS\Lbd.sys [x]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R3 BVRPMPR5a64;BVRPMPR5a64 NDIS Protocol Driver;c:\windows\system32\drivers\BVRPMPR5a64.SYS [x]
R3 gupdatem;Google Update Service (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2009-11-19 135664]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x]
R3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\NisSrv.exe [2012-03-26 291696]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [x]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [x]
R4 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2009-11-19 135664]
S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys [x]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL64.SYS [2011-07-12 12368]
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE64.EXE [2011-08-11 140672]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-04-04 63928]
.
.
Contents of the 'Scheduled Tasks' folder
.
2012-05-02 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2009-11-19 18:25]
.
2012-05-02 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2009-11-19 18:25]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-26 1271168]
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = *.local
TCP: DhcpNameServer = 10.0.0.1
.
- - - - ORPHANS REMOVED - - - -
.
Wow6432Node-HKU-Default-Run-Apple Computer - c:\windows\system32\config\systemprofile\AppData\Local\Sunbelt Software\Apple Computer\rjfiya.dll
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\Approved Extensions]
@Denied: (2) (LocalSystem)
"{EF99BD32-C1FB-11D2-892F-0090271D4F88}"=hex:51,66,7a,6c,4c,1d,38,12,5c,be,8a,
eb,c9,8f,bc,54,f6,39,43,d0,22,43,0b,9c
"{2318C2B1-4965-11D4-9B18-009027A5CD4F}"=hex:51,66,7a,6c,4c,1d,38,12,df,c1,0b,
27,57,07,ba,54,e4,0e,43,d0,22,fb,89,5b
"{02478D38-C3F9-4EFB-9B51-7695ECA05670}"=hex:51,66,7a,6c,4c,1d,38,12,56,8e,54,
06,cb,8d,95,0b,e4,47,35,d5,e9,fe,12,64
"{18DF081C-E8AD-4283-A596-FA578C2EBDC3}"=hex:51,66,7a,6c,4c,1d,38,12,72,0b,cc,
1c,9f,a6,ed,07,da,80,b9,17,89,70,f9,d7
"{53707962-6F74-2D53-2644-206D7942484F}"=hex:51,66,7a,6c,4c,1d,38,12,0c,7a,63,
57,46,21,3d,68,59,52,63,2d,7c,1c,0c,5b
"{AA58ED58-01DD-4D91-8333-CF10577473F7}"=hex:51,66,7a,6c,4c,1d,38,12,36,ee,4b,
ae,ef,4f,ff,08,fc,25,8c,50,52,2a,37,e3
"{DBC80044-A445-435B-BC74-9C25C1C588A9}"=hex:51,66,7a,6c,4c,1d,38,12,2a,03,db,
df,77,ea,35,06,c3,62,df,65,c4,9b,cc,bd
"{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}"=hex:51,66,7a,6c,4c,1d,38,12,cf,4e,be,
f9,90,2f,b6,0a,e3,01,c5,b7,a9,7a,14,95
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration]
@Denied: (2) (LocalSystem)
"Timestamp"=hex:80,3f,e1,ab,b7,18,cd,01
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (LocalSystem)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,f5,ba,39,62,56,4d,72,4c,9f,8f,d8,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,f5,ba,39,62,56,4d,72,4c,9f,8f,d8,\
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe
.
**************************************************************************
.
Completion time: 2012-05-02 08:31:57 - machine was rebooted
ComboFix-quarantined-files.txt 2012-05-02 13:31
ComboFix2.txt 2012-04-30 23:28
ComboFix3.txt 2011-12-22 21:52
.
Pre-Run: 15,804,080,128 bytes free
Post-Run: 16,074,690,560 bytes free
.
- - End Of File - - B79BBE663CBE6ECAC55B93726635CCB9