omboFix 14-01-01.01 - Fred 01/02/2014 17:25:26.2.2 - x86 NETWORK
Running from: c:\users\Fred\Downloads\ComboFix.exe
* Created a new restore point
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\FindLyrics
.
.
((((((((((((((((((((((((( Files Created from 2013-12-03 to 2014-01-03 )))))))))))))))))))))))))))))))
.
.
2014-01-03 01:32 . 2014-01-03 01:32 -------- d-----w- c:\users\virus tester\AppData\Local\temp
2014-01-03 01:32 . 2014-01-03 01:32 -------- d-----w- c:\users\Public\AppData\Local\temp
2014-01-03 01:32 . 2014-01-03 01:32 -------- d-----w- c:\users\IUSR_NMPR\AppData\Local\temp
2014-01-03 01:32 . 2014-01-03 01:32 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-01-03 01:32 . 2014-01-03 01:32 -------- d-----w- c:\users\Fred\AppData\Local\temp
2014-01-02 05:16 . 2014-01-02 05:58 -------- d-----w- c:\programdata\Malwarebytes' Anti-Malware (portable)
2014-01-02 05:16 . 2014-01-02 05:27 104664 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2014-01-02 05:16 . 2014-01-02 05:24 74456 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2014-01-02 05:12 . 2014-01-02 05:12 -------- d-----w- c:\windows\snack
2014-01-02 00:40 . 2014-01-02 03:43 62576 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7FE45AD4-006E-4531-AA41-A950794C6F04}\offreg.dll
2014-01-01 23:27 . 2014-01-01 23:27 -------- d-----w- C:\found.019
2014-01-01 22:56 . 2014-01-01 22:56 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2014-01-01 22:56 . 2013-04-04 22:50 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-01-01 22:48 . 2014-01-01 22:48 -------- d-----w- C:\found.018
2014-01-01 22:37 . 2014-01-01 22:37 -------- d-----w- C:\found.017
2014-01-01 22:32 . 2013-12-04 02:57 7760024 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7FE45AD4-006E-4531-AA41-A950794C6F04}\mpengine.dll
2014-01-01 22:31 . 2013-11-18 09:28 7772552 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2014-01-01 22:28 . 2014-01-01 22:28 -------- d-----w- C:\672bf03c0c65e6cadaf147bace0b5072
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-01-02 05:12 . 2014-01-02 05:12 8704 ----a-w- c:\windows\system32\drivers\XAudio.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 83328 ----a-w- c:\windows\system32\drivers\WUDFRd.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 51200 ----a-w- c:\windows\system32\drivers\WUDFPf.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 39936 ----a-w- c:\windows\system32\drivers\WpdUsb.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 35896 ----a-w- c:\windows\system32\drivers\WdfLdr.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 17976 ----a-w- c:\windows\system32\drivers\wmilib.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 16896 ----a-w- c:\windows\system32\drivers\WSDPrint.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 15872 ----a-w- c:\windows\system32\drivers\ws2ifsl.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 11264 ----a-w- c:\windows\system32\drivers\wmiacpi.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 503864 ----a-w- c:\windows\system32\drivers\Wdf01000.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 62464 ----a-w- c:\windows\system32\drivers\wanarp.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 32768 ----a-w- c:\windows\system32\drivers\watchdog.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 227896 ----a-w- c:\windows\system32\drivers\volsnap.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 20608 ----a-w- c:\windows\system32\drivers\wacompen.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 19560 ----a-w- c:\windows\system32\drivers\wd.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 112232 ----a-w- c:\windows\system32\drivers\vsmraid.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 294456 ----a-w- c:\windows\system32\drivers\volmgrx.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 54376 ----a-w- c:\windows\system32\drivers\VIAAGP.SYS.bak
2014-01-02 05:12 . 2014-01-02 05:12 52792 ----a-w- c:\windows\system32\drivers\volmgr.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 39424 ----a-w- c:\windows\system32\drivers\viac7.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 26112 ----a-w- c:\windows\system32\drivers\vgapnp.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 17512 ----a-w- c:\windows\system32\drivers\viaide.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 110080 ----a-w- c:\windows\system32\drivers\videoprt.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 25088 ----a-w- c:\windows\system32\drivers\vga.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 55296 ----a-w- c:\windows\system32\drivers\USBSTOR.SYS.bak
2014-01-02 05:12 . 2014-01-02 05:12 35328 ----a-w- c:\windows\system32\drivers\usbscan.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 23552 ----a-w- c:\windows\system32\drivers\usbuhci.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 226304 ----a-w- c:\windows\system32\drivers\usbport.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 18944 ----a-w- c:\windows\system32\drivers\usbprint.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 19456 ----a-w- c:\windows\system32\drivers\usbohci.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 73216 ----a-w- c:\windows\system32\drivers\usbccgp.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 68608 ----a-w- c:\windows\system32\drivers\usbcir.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 5888 ----a-w- c:\windows\system32\drivers\usbd.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 39424 ----a-w- c:\windows\system32\drivers\usbehci.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 25728 ----a-w- c:\windows\system32\drivers\USBCAMD2.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 25728 ----a-w- c:\windows\system32\drivers\USBCAMD.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 194560 ----a-w- c:\windows\system32\drivers\usbhub.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 45056 ----a-w- c:\windows\system32\drivers\usbaapl.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 98408 ----a-w- c:\windows\system32\drivers\ulsata.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 7680 ----a-w- c:\windows\system32\drivers\umpass.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 34816 ----a-w- c:\windows\system32\drivers\umbus.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 235112 ----a-w- c:\windows\system32\drivers\uliahci.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 15872 ----a-w- c:\windows\system32\drivers\usb8023.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 115816 ----a-w- c:\windows\system32\drivers\ulsata2.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 58472 ----a-w- c:\windows\system32\drivers\ULIAGPKX.SYS.bak
2014-01-02 05:12 . 2014-01-02 05:12 56936 ----a-w- c:\windows\system32\drivers\UAGP35.SYS.bak
2014-01-02 05:12 . 2014-01-02 05:12 226816 ----a-w- c:\windows\system32\drivers\udfs.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 25088 ----a-w- c:\windows\system32\drivers\tunnel.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 71680 ----a-w- c:\windows\system32\drivers\tdx.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 54328 ----a-w- c:\windows\system32\drivers\termdd.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 29184 ----a-w- c:\windows\system32\drivers\tdtcp.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 23552 ----a-w- c:\windows\system32\drivers\tssecsrv.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 20992 ----a-w- c:\windows\system32\drivers\tdi.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 17920 ----a-w- c:\windows\system32\drivers\tdpipe.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 15360 ----a-w- c:\windows\system32\drivers\TUNMP.SYS.bak
2014-01-02 05:12 . 2014-01-02 05:12 30208 ----a-w- c:\windows\system32\drivers\tcpipreg.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 898952 ----a-w- c:\windows\system32\drivers\tcpip.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 34920 ----a-w- c:\windows\system32\drivers\sym_u3.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 24576 ----a-w- c:\windows\system32\drivers\tape.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 31848 ----a-w- c:\windows\system32\drivers\sym_hi.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 52992 ----a-w- c:\windows\system32\drivers\stream.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 35944 ----a-w- c:\windows\system32\drivers\symc8xx.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 15288 ----a-w- c:\windows\system32\drivers\swenum.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 123960 ----a-w- c:\windows\system32\drivers\Storport.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 102400 ----a-w- c:\windows\system32\drivers\srvnet.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 681984 ----a-w- c:\windows\system32\drivers\spsys.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 66560 ----a-w- c:\windows\system32\drivers\smb.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 304640 ----a-w- c:\windows\system32\drivers\srv.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 21048 ----a-w- c:\windows\system32\drivers\spldr.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 17408 ----a-w- c:\windows\system32\drivers\smclib.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 146432 ----a-w- c:\windows\system32\drivers\srv2.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 71784 ----a-w- c:\windows\system32\drivers\sisraid4.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 83456 ----a-w- c:\windows\system32\drivers\serial.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 53352 ----a-w- c:\windows\system32\drivers\SISAGP.SYS.bak
2014-01-02 05:12 . 2014-01-02 05:12 38504 ----a-w- c:\windows\system32\drivers\sisraid2.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 19968 ----a-w- c:\windows\system32\drivers\sermouse.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 13312 ----a-w- c:\windows\system32\drivers\sfloppy.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 13312 ----a-w- c:\windows\system32\drivers\sffdisk.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 12800 ----a-w- c:\windows\system32\drivers\sffp_sd.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 12800 ----a-w- c:\windows\system32\drivers\sffp_mmc.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 17920 ----a-w- c:\windows\system32\drivers\serenum.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 76392 ----a-w- c:\windows\system32\drivers\sbp2port.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 542312 ----a-w- c:\windows\system32\drivers\RTL8192su.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 20480 ----a-w- c:\windows\system32\drivers\secdrv.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 142904 ----a-w- c:\windows\system32\drivers\scsiport.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 1729632 ----a-w- c:\windows\system32\drivers\RTKVHDA.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 8192 ----a-w- c:\windows\system32\drivers\rootmdm.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 6144 ----a-w- c:\windows\system32\drivers\RDPENCDD.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 60416 ----a-w- c:\windows\system32\drivers\rspndr.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 33280 ----a-w- c:\windows\system32\drivers\RNDISMP.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 242688 ----a-w- c:\windows\system32\drivers\rdpdr.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 181248 ----a-w- c:\windows\system32\drivers\rdpwd.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 113664 ----a-w- c:\windows\system32\drivers\rmcast.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 6144 ----a-w- c:\windows\system32\drivers\RDPCDD.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 76288 ----a-w- c:\windows\system32\drivers\rasl2tp.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 69120 ----a-w- c:\windows\system32\drivers\rassstp.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 62976 ----a-w- c:\windows\system32\drivers\raspptp.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 41472 ----a-w- c:\windows\system32\drivers\raspppoe.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 31232 ----a-w- c:\windows\system32\drivers\qwavedrv.sys.bak
2014-01-02 05:12 . 2014-01-02 05:12 224768 ----a-w- c:\windows\system32\drivers\rdbss.sys.bak
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"Launcher"="c:\windows\SMINST\launcher.exe" [2006-11-24 44136]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Connections.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\HP Connections.lnk
backup=c:\windows\pss\HP Connections.lnk.CommonStartup
backupExtension=.CommonStartup
.
[HKLM\~\startupfolder\C:^Users^Fred^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^MyPC Backup.lnk]
path=c:\users\Fred\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk
backup=c:\windows\pss\MyPC Backup.lnk.Startup
backupExtension=.Startup
.
[HKLM\~\startupfolder\C:^Users^Fred^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^NexGen Media Player.lnk]
path=c:\users\Fred\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\NexGen Media Player.lnk
backup=c:\windows\pss\NexGen Media Player.lnk.Startup
backupExtension=.Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
2013-01-28 21:08 59720 ----a-w- c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleChromeAutoLaunch_A4965B78819F71963FB87671E75564A3]
2013-05-23 05:44 825808 ----a-w- c:\program files\Google\Chrome\Application\chrome.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
2006-11-28 20:17 106496 ----a-w- c:\windows\System32\hkcmd.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
2005-02-17 06:11 49152 ----a-w- c:\program files\HP\HP Software Update\hpwuSchd2.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPAdvisor]
2006-11-23 23:53 1480296 ----a-w- c:\program files\Hewlett-Packard\HP Advisor\HPAdvisor.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpsysdrv]
2006-09-28 13:42 65536 ----a-w- c:\hp\support\hpsysdrv.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAAnotif]
2006-09-29 19:39 151552 ----a-w- c:\program files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
2006-11-28 20:14 98304 ----a-w- c:\windows\System32\igfxtray.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2013-02-20 20:35 152392 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KBD]
2006-12-08 15:16 65536 ----a-w- c:\hp\KBD\KbdStub.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSC]
2013-01-27 18:11 947152 ----a-w- c:\program files\Microsoft Security Client\msseces.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OsdMaestro]
2006-11-20 11:34 155648 ----a-w- c:\program files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence]
2006-11-28 20:13 81920 ----a-w- c:\windows\System32\igfxpers.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
2007-01-18 14:46 4349952 ----a-w- c:\windows\RtHDVCpl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
2008-01-19 07:33 1233920 ----a-w- c:\program files\Windows Sidebar\sidebar.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WindowsWelcomeCenter]
2008-01-19 07:36 2153472 ----a-w- c:\windows\System32\oobefldr.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - ECACHE
*NewlyCreated* - PXHELP20
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-04-10 11:09 1642448 ----a-w- c:\program files\Google\Chrome\Application\26.0.1410.64\Installer\chrmstp.exe
.
Contents of the 'Scheduled Tasks' folder
.
2014-01-01 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-02-12 05:30]
.
2014-01-02 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2013-03-07 02:04]
.
2014-01-02 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2013-03-07 02:04]
.
2013-05-27 c:\windows\Tasks\Norton Security Scan for Fred.job
- c:\progra~1\NORTON~2\Engine\400~1.48\Nss.exe [2013-05-27 15:59]
.
2013-05-27 c:\windows\Tasks\ParetoLogic Registration3.job
- c:\program files\Common Files\ParetoLogic\UUS3\UUS3.dll [2013-05-07 22:47]
.
2013-05-27 c:\windows\Tasks\ParetoLogic Update Version3 Startup Task.job
- c:\program files\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe [2013-05-07 22:47]
.
2013-05-27 c:\windows\Tasks\ParetoLogic Update Version3.job
- c:\program files\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe [2013-05-07 22:47]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://
www.google.com
mStart Page = hxxp://
www.google.com
uInternet Settings,ProxyOverride = *.local
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 208.67.222.222 208.67.220.220
.
- - - - ORPHANS REMOVED - - - -
.
BHO-{95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
Toolbar-{95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
MSConfigStartUp-PrivitizeVPN - c:\program files\PrivitizeVPN\PrivitizeVPN.exe
AddRemove-Adobe Flash Player Plugin - c:\windows\system32\Macromed\Flash\FlashUtil32_11_6_602_180_Plugin.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2014-01-02 17:32
Windows 6.0.6001 Service Pack 1 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Services\TrueSight]
"ImagePath"="\??\"
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'Explorer.exe'(1464)
c:\program files\Hewlett-Packard\HP Advisor\Pillars\Market\MLDeskBand.dll
.
Completion time: 2014-01-02 17:34:30
ComboFix-quarantined-files.txt 2014-01-03 01:34
ComboFix2.txt 2013-03-07 10:03
.
Pre-Run: 455,755,173,888 bytes free
Post-Run: 454,794,203,136 bytes free
.
- - End Of File - - 99A343CFBF79F73A7FBE76907D1AB2C6
8913823FF508CCF109DB74B636C301DA