Can I now re-install AVG?
Here's the log from Cobofix:
ComboFix 13-06-12.01 - Moira 06/12/2013 18:24:41.2.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.2039.1332 [GMT -5:00]
Running from: c:\documents and settings\Moira\Desktop\ComboFix.exe
FW: AVG Firewall *Disabled* {8decf618-9569-4340-b34a-d78d28969b66}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\Thumbs.db
c:\windows\EventSystem.log
c:\windows\system32\roboot.exe
c:\windows\winhelp.ini
.
---- Previous Run -------
.
c:\documents and settings\All Users\Application Data\SSEyaarch-NNewTaab
c:\documents and settings\All Users\Application Data\SSEyaarch-NNewTaab\51461cd156b65.tlb
c:\documents and settings\All Users\Application Data\SSEyaarch-NNewTaab\settings.ini
c:\documents and settings\All Users\Application Data\TEMP
c:\documents and settings\Moira\Application Data\PriceGong
c:\documents and settings\Moira\Application Data\PriceGong\Data\1.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\17672.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\2085.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\22249.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\2256.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\2620.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\4436.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\4489.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\a.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\b.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\c.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\d.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\e.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\f.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\g.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\h.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\I.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\j.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\k.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\l.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\m.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\n.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\o.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\p.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\q.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\r.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\s.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\t.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\u.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\v.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\w.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\wlu.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\x.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\y.txt
c:\documents and settings\Moira\Application Data\PriceGong\Data\z.txt
C:\install.exe
c:\windows\system32\Cache
c:\windows\system32\Cache\0d9416ab3d8fbf3a.fb
c:\windows\system32\Cache\0dbbc8b07811e75d.fb
c:\windows\system32\Cache\26c630d098e22dd5.fb
c:\windows\system32\Cache\272512937d9e61a4.fb
c:\windows\system32\Cache\287204568329e189.fb
c:\windows\system32\Cache\28bc8f716fd76a47.fb
c:\windows\system32\Cache\2c53092c95605355.fb
c:\windows\system32\Cache\31a0997e9a5b5eb3.fb
c:\windows\system32\Cache\32c84fe32bb74d60.fb
c:\windows\system32\Cache\3917078cb68ec657.fb
c:\windows\system32\Cache\590ba23ce359fd0c.fb
c:\windows\system32\Cache\5ba97b0e5611ee1d.fb
c:\windows\system32\Cache\610289e025a3ee9a.fb
c:\windows\system32\Cache\651c5d3cdbfb8bd1.fb
c:\windows\system32\Cache\6c59ac5e7e7a3ad0.fb
c:\windows\system32\Cache\6d03dad1035885d3.fb
c:\windows\system32\Cache\73b895551a1e90ae.fb
c:\windows\system32\Cache\95f567698be8a182.fb
c:\windows\system32\Cache\a8556537add6dfc5.fb
c:\windows\system32\Cache\ad10a52aff5e038d.fb
c:\windows\system32\Cache\b0853efdc692de39.fb
c:\windows\system32\Cache\bbb1e7346d9a4c71.fb
c:\windows\system32\Cache\c1fa887b03019701.fb
c:\windows\system32\Cache\c4d28dca2e7648be.fb
c:\windows\system32\Cache\d201ef9910cd39de.fb
c:\windows\system32\Cache\d2e94710a5708128.fb
c:\windows\system32\Cache\d79b9dfe81484ec4.fb
c:\windows\system32\Cache\d8c7b83cc2962142.fb
c:\windows\system32\Cache\d9d79cedd8055ad0.fb
c:\windows\system32\Cache\e0de16f883bea794.fb
c:\windows\system32\Cache\e8b1c7a84abc6d93.fb
c:\windows\system32\Cache\f998975c9cc711ee.fb
c:\windows\system32\Cache\ff112ce7af4d4e83.fb
c:\windows\system32\SETE2.tmp
c:\windows\system32\SETE7.tmp
F:\Autorun.inf
F:\Setup.exe
.
.
((((((((((((((((((((((((( Files Created from 2013-05-12 to 2013-06-12 )))))))))))))))))))))))))))))))
.
.
2013-06-12 23:14 . 2013-06-12 23:14 -------- d-----w- c:\windows\LastGood
2013-06-12 23:05 . 2013-06-12 23:05 -------- d-----w- c:\documents and settings\Moira\Application Data\TuneUp Software
2013-06-11 23:59 . 2013-06-12 01:01 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes' Anti-Malware (portable)
2013-06-10 17:03 . 2013-04-04 19:50 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-06-10 17:03 . 2013-06-10 17:04 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2013-06-10 16:31 . 2013-06-10 16:31 -------- d-----w- c:\documents and settings\Moira\Application Data\Foresight Software
2013-06-10 16:31 . 2013-06-10 16:41 -------- d-----w- c:\documents and settings\All Users\Application Data\Foresight Software
2013-06-10 02:55 . 2013-06-10 03:03 -------- d-----w- c:\documents and settings\Moira\Application Data\RegistryTool
2013-06-10 02:54 . 2013-06-10 03:08 -------- d-----w- c:\program files\RegistryTool
2013-06-03 02:20 . 2013-06-03 02:26 -------- d-----w- c:\program files\Common Files\XCPCSync.OEM
2013-05-24 02:49 . 2013-05-24 02:51 -------- d-----w- c:\documents and settings\All Users\Application Data\188F1432-103A-4ffb-80F1-36B633C5C9E1
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-06-12 00:07 . 2012-04-16 12:15 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-06-12 00:07 . 2011-05-25 12:16 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-05-07 22:30 . 2004-08-04 00:56 920064 ----a-w- c:\windows\system32\wininet.dll
2013-05-07 22:30 . 2004-08-04 00:56 1469440 ------w- c:\windows\system32\inetcpl.cpl
2013-05-07 22:30 . 2004-08-04 00:56 43520 ----a-w- c:\windows\system32\licmgr10.dll
2013-05-07 21:53 . 2004-08-03 22:59 385024 ----a-w- c:\windows\system32\html.iec
2013-05-03 01:26 . 2004-08-03 23:20 2193536 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-05-03 00:38 . 2004-08-03 22:59 2070144 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-04-10 01:31 . 2004-08-03 23:17 1876352 ----a-w- c:\windows\system32\win32k.sys
2013-04-04 10:35 . 2013-04-19 12:14 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-04-17 23:01 . 2013-04-17 23:00 263064 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{88ac3cb6-596b-4217-964c-b6757ef9602d}"= "c:\program files\express-files\prxtbexp2.dll" [2013-05-20 231712]
.
[HKEY_CLASSES_ROOT\clsid\{88ac3cb6-596b-4217-964c-b6757ef9602d}]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\~\Browser Helper Objects\{88ac3cb6-596b-4217-964c-b6757ef9602d}]
2013-05-20 09:21 231712 ----a-w- c:\program files\express-files\prxtbexp2.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{88ac3cb6-596b-4217-964c-b6757ef9602d}"= "c:\program files\express-files\prxtbexp2.dll" [2013-05-20 231712]
.
[HKEY_CLASSES_ROOT\clsid\{88ac3cb6-596b-4217-964c-b6757ef9602d}]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{88AC3CB6-596B-4217-964C-B6757EF9602D}"= "c:\program files\express-files\prxtbexp2.dll" [2013-05-20 231712]
.
[HKEY_CLASSES_ROOT\clsid\{88ac3cb6-596b-4217-964c-b6757ef9602d}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"OfficeSyncProcess"="c:\program files\Microsoft Office\Office14\MSOSYNC.EXE" [2010-01-16 717696]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2011-07-09 39408]
"SearchProtect"="c:\documents and settings\Moira\Application Data\SearchProtect\bin\cltmng.exe" [2013-05-08 2852640]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Broadcom Wireless Manager UI"="c:\windows\system32\WLTRAY.exe" [2007-03-17 1392640]
"IntelZeroConfig"="c:\program files\Intel\Wireless\bin\ZCfgSvc.exe" [2007-02-21 819200]
"IntelWireless"="c:\program files\Intel\Wireless\Bin\ifrmewrk.exe" [2007-02-21 970752]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2004-10-08 155648]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2004-10-08 126976]
"Apoint"="c:\program files\Apoint\Apoint.exe" [2005-10-07 176128]
"ArcSoft Connection Service"="c:\program files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe" [2010-10-28 207424]
"Memeo AutoSync"="c:\program files\Memeo\AutoSync\MemeoLauncher2.exe" [2010-04-16 144608]
"Seagate Dashboard"="c:\program files\Seagate\Seagate Dashboard\MemeoLauncher.exe" [2011-06-01 79112]
"RIMBBLaunchAgent.exe"="c:\program files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe" [2013-01-17 267792]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-04-22 59720]
"Memeo Backup Premium"="c:\program files\Memeo\AutoBackupPro\MemeoLauncher2.exe" [2010-04-23 136416]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]
"Garmin Lifetime Updater"="c:\program files\Garmin\Lifetime Updater\GarminLifetime.exe" [2012-06-04 1466760]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2012-10-25 421888]
"SearchProtectAll"="c:\program files\SearchProtect\bin\cltmng.exe" [2013-05-08 2852640]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2013-05-15 152392]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"AvgUninstallURL"="start
http://www.avg.com/ww.special-unins...2LUNJQTEwKzItRDM4MUwrNg&prod=94&ver=10.0.1432" [?]
.
c:\documents and settings\Moira\Start Menu\Programs\Startup\
OneNote 2010 Screen Clipper and Launcher.lnk - c:\program files\Microsoft Office\Office14\ONENOTEM.EXE /tsr [2010-1-21 226176]
.
c:\documents and settings\All Users\Start Menu\Programs\Startup\
Corel Desktop Application Director 8.LNK - c:\corel\Suite8\Programs\DAD8.EXE [2011-6-8 202240]
PHOTOfunSTUDIO -viewer-.lnk - c:\program files\Panasonic\PHOTOfunSTUDIO -viewer-\PhAutoRun.exe [2011-6-23 40960]
Windows Search.lnk - c:\program files\Windows Desktop Search\WindowsSearch.exe /startup [2008-5-26 123904]
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\program files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-25 304128]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\BitComet\\BitComet.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"15739:TCP"= 15739:TCP:BitComet 15739 TCP
"15739:UDP"= 15739:UDP:BitComet 15739 UDP
.
R2 CltMngSvc;Search Protect by Conduit Updater;c:\program files\SearchProtect\bin\CltMngSvc.exe [3/6/2013 7:36 AM 93984]
R2 MemeoBackgroundService;MemeoBackgroundService;c:\program files\Memeo\AutoBackupPro\MemeoBackgroundService.exe [4/22/2010 7:49 PM 25824]
R2 SeagateDashboardService;Seagate Dashboard Service;c:\program files\Seagate\Seagate Dashboard\SeagateDashboardService.exe [6/1/2011 11:42 AM 14088]
R4 Avgfwdx;Avgfwdx;c:\windows\system32\DRIVERS\avgfwdx.sys --> c:\windows\system32\DRIVERS\avgfwdx.sys [?]
R4 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\AVGIDSDriver.Sys --> c:\windows\system32\DRIVERS\AVGIDSDriver.Sys [?]
R4 AVGIDSEH;AVGIDSEH;c:\windows\system32\DRIVERS\AVGIDSEH.Sys --> c:\windows\system32\DRIVERS\AVGIDSEH.Sys [?]
R4 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\DRIVERS\AVGIDSFilter.Sys --> c:\windows\system32\DRIVERS\AVGIDSFilter.Sys [?]
R4 AVGIDSShim;AVGIDSShim;c:\windows\system32\DRIVERS\AVGIDSShim.Sys --> c:\windows\system32\DRIVERS\AVGIDSShim.Sys [?]
R4 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx86.sys --> c:\windows\system32\DRIVERS\avgrkx86.sys [?]
R4 Avgtdix;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdix.sys --> c:\windows\system32\DRIVERS\avgtdix.sys [?]
S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [7/13/2012 1:28 PM 160944]
S3 AVG Security Toolbar Service;AVG Security Toolbar Service;c:\program files\AVG\AVG10\Toolbar\ToolbarBroker.exe --> c:\program files\AVG\AVG10\Toolbar\ToolbarBroker.exe [?]
S3 Blackberry Device Manager;BlackBerry Device Manager;c:\program files\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe [1/18/2013 5:10 PM 577536]
S3 cpudrv;cpudrv;c:\program files\SystemRequirementsLab\cpudrv.sys [12/18/2009 1:58 PM 11336]
S3 cpuz134;cpuz134;\??\e:\apps\PC Wizard\pcwiz_x32.sys --> e:\apps\PC Wizard\pcwiz_x32.sys [?]
S3 libusb0;libusb-win32 - Kernel Driver, Version 1.2.4.0;c:\windows\system32\drivers\libusb0.sys [10/7/2011 12:52 PM 21504]
.
--- Other Services/Drivers In Memory ---
.
*Deregistered* - Avgldx86
*Deregistered* - avgtp
.
Contents of the 'Scheduled Tasks' folder
.
2013-06-12 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-16 00:07]
.
2013-05-24 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2011-06-01 22:57]
.
2013-06-12 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-07-09 13:24]
.
2013-06-12 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-07-09 13:24]
.
2013-06-12 c:\windows\Tasks\User_Feed_Synchronization-{7F0BECA1-A2DF-4E7E-AB94-3CC74FB35C1E}.job
- c:\windows\system32\msfeedssync.exe [2009-03-08 11:31]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://
www.canada.com/news/index.html
mStart Page = hxxp://websearch.pu-results.info/?pid=726&r=2013/03/17&hid=276928473&lg=EN&cc=CA
uInternet Settings,ProxyOverride = *.local
IE: &D&ownload &with BitComet - c:\program files\BitComet\BitComet.exe/AddLink.htm
IE: &D&ownload all with BitComet - c:\program files\BitComet\BitComet.exe/AddAllLink.htm
TCP: DhcpNameServer = 142.165.200.5 142.165.21.5
Handler: intu-tt2011 - {B3B5DAD9-E96D-45b4-B636-B6CF2F773DE1} - c:\program files\TurboTax 2011\ic2011pp.dll
Handler: intu-tt2012 - {02F985EF-502B-4597-993F-6BF9E004C138} - c:\program files\TurboTax 2012\ic2012pp.dll
DPF: Garmin Communicator Plug-In - hxxps://static.garmincdn.com/gcp/ie/4.0.3.0/GarminAxControl_32.CAB
FF - ProfilePath - c:\documents and settings\Moira\Application Data\Mozilla\Firefox\Profiles\v0hi8m7e.default\
FF - prefs.js: browser.search.defaulturl - hxxp://websearch.pu-results.info/?pid=726&r=2013/03/17&hid=276928473&lg=EN&cc=CA&l=1&q=
FF - prefs.js: browser.search.selectedEngine - AVG Secure Search
FF - prefs.js: browser.startup.homepage -
www.yahoo.ca
FF - ExtSQL: 2013-06-01 17:41; {739df940-c5ee-4bab-9d7e-270894ae687a}; c:\documents and settings\Moira\Application Data\Mozilla\Firefox\Profiles\v0hi8m7e.default\extensions\{739df940-c5ee-4bab-9d7e-270894ae687a}
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
Toolbar-10 - (no file)
WebBrowser-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2013-06-12 18:34
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'winlogon.exe'(1372)
c:\windows\System32\BCMLogon.dll
.
Completion time: 2013-06-12 18:37:02
ComboFix-quarantined-files.txt 2013-06-12 23:36
.
Pre-Run: 6,150,197,248 bytes free
Post-Run: 6,139,240,448 bytes free
.
- - End Of File - - 88E16020DEFA17FA7270B23FB221DE34
8F558EB6672622401DA993E1E865C861