I ran ComboFix. After the scan, my computer links would not direct to applications, rather, I got a error message saying the links were marked to deletion. I restarted the computer and it resolved the problem, which I thought was interesting.
ComboFix 12-07-31.06 - Mark 08/03/2012 8:30.2.1 - x86
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.2038.1286 [GMT -7:00]
Running from: c:\users\Mark\Desktop\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
SP: Microsoft Security Essentials *Disabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Files Created from 2012-07-03 to 2012-08-03 )))))))))))))))))))))))))))))))
.
.
2012-08-03 15:37 . 2012-08-03 15:37--------d-----w-c:\users\Default\AppData\Local\temp
2012-08-02 18:27 . 2012-08-02 18:27--------d-----w-c:\program files\ESET
2012-08-02 18:15 . 2012-06-29 08:446891424----a-w-c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{90495AE4-9693-4512-BE57-E183B49C2C04}\mpengine.dll
2012-08-01 14:20 . 2012-08-03 15:37--------d-----w-c:\users\Mark\AppData\Local\temp
2012-08-01 13:56 . 2012-06-29 08:446891424----a-w-c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-07-31 16:43 . 2012-07-31 16:43--------d-----w-C:\TDSSKiller_Quarantine
2012-07-30 22:05 . 2012-07-30 22:05--------d-----w-C:\FRST
2012-07-29 07:34 . 2012-07-29 07:34--------d-----w-c:\program files\Common Files\Intel Corporation
2012-07-29 07:33 . 2012-07-29 07:33--------d-----w-c:\users\Mark\AppData\Roaming\Intel Corporation
2012-07-29 07:27 . 2011-10-17 21:45462104----a-w-c:\windows\system32\drivers\iaStor.sys
2012-07-29 07:26 . 2012-07-29 07:26--------d-----w-c:\windows\Sun
2012-07-29 05:29 . 2012-07-29 05:29--------d--h--w-c:\program files\InstallShield Installation Information
2012-07-29 05:29 . 2012-07-29 05:29--------d-----w-c:\users\Mark\AppData\Roaming\InstallShield
2012-07-26 19:17 . 2012-07-26 19:17--------d-----w-c:\program files\Malwarebytes' Anti-Malware2
2012-07-26 19:17 . 2012-07-03 20:4622344----a-w-c:\windows\system32\drivers\mbam.sys
2012-07-26 03:26 . 2012-07-26 15:43--------d-----w-c:\windows\Microsoft Antimalware
2012-07-26 01:37 . 2012-07-26 01:37--------d-----w-C:\57a1178fcd97328dd08af863f233c137
2012-07-25 19:40 . 2012-07-25 19:40--------d-----w-C:\369dde59d4d9c9c4189a4a546101d4
2012-07-25 19:22 . 2012-07-25 19:22--------d-----w-C:\c2d9168ac4728811bb506e
2012-07-25 17:35 . 2012-07-25 17:36--------d-----w-C:\8fafb3b04b8404cc656f54131f3867da
2012-07-25 17:08 . 2012-07-25 17:09--------d-----w-C:\be20fe040c1de8b71be6cf53ff4302
2012-07-25 12:19 . 2012-07-25 12:19711240----a-w-c:\windows\is-9G7TF.exe
2012-07-25 00:42 . 2012-07-25 00:42--------d-----w-c:\users\Mark\AppData\Local\Macromedia
2012-07-25 00:31 . 2012-07-25 00:31--------d-----w-c:\users\Mark\AppData\Local\ElevatedDiagnostics
2012-07-20 07:08 . 2012-06-12 02:402345984----a-w-c:\windows\system32\win32k.sys
2012-07-20 01:19 . 2012-02-11 19:28713784------w-c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{6B632629-7D1C-4076-A226-A563D26225B0}\gapaengine.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-06-02 22:19 . 2012-06-21 16:37171904----a-w-c:\windows\system32\wuwebv.dll
2012-06-02 22:19 . 2012-06-21 16:3945080----a-w-c:\windows\system32\wups2.dll
2012-06-02 22:19 . 2012-06-21 16:3953784----a-w-c:\windows\system32\wuauclt.exe
2012-06-02 22:19 . 2012-06-21 16:3835864----a-w-c:\windows\system32\wups.dll
2012-06-02 22:19 . 2012-06-21 16:38577048----a-w-c:\windows\system32\wuapi.dll
2012-06-02 22:19 . 2012-06-21 16:391933848----a-w-c:\windows\system32\wuaueng.dll
2012-06-02 22:12 . 2012-06-21 16:392422272----a-w-c:\windows\system32\wucltux.dll
2012-06-02 22:12 . 2012-06-21 16:3733792----a-w-c:\windows\system32\wuapp.exe
2012-06-02 22:12 . 2012-06-21 16:3888576----a-w-c:\windows\system32\wudriver.dll
2012-05-15 03:03 . 2012-06-13 16:50981504----a-w-c:\windows\system32\wininet.dll
2012-07-30 13:24 . 2011-05-15 17:06136672----a-w-c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2012-08-01_14.12.34 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-09-10 21:56 . 2012-08-03 15:1635240 c:\windows\System32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 04:55 . 2012-08-03 15:1663076 c:\windows\System32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2010-09-06 17:13 . 2012-08-03 15:1615398 c:\windows\System32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1907212456-2171594974-3975698673-1000_UserData.bin
+ 2010-09-06 06:51 . 2012-08-03 15:1916384 c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2010-09-06 06:51 . 2012-08-01 13:5916384 c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-09-06 06:51 . 2012-08-03 15:1932768 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2010-09-06 06:51 . 2012-08-01 13:5932768 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:41 . 2012-08-03 15:1932768 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:41 . 2012-08-01 13:5932768 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2010-11-02 03:11 . 2012-08-01 13:4716384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-11-02 03:11 . 2012-08-03 15:1716384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-11-02 03:11 . 2012-08-03 15:1732768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2010-11-02 03:11 . 2012-08-01 13:4732768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2010-11-02 03:11 . 2012-08-01 13:4716384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-11-02 03:11 . 2012-08-03 15:1716384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2010-09-06 07:40 . 2012-08-01 14:1216384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-09-06 07:40 . 2012-08-03 15:1816384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2010-09-06 07:40 . 2012-08-01 14:1216384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-09-06 07:40 . 2012-08-03 15:1816384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2012-08-01 13:44 . 2012-08-01 13:442048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-08-03 15:14 . 2012-08-03 15:142048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2012-08-01 13:44 . 2012-08-01 13:442048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2012-08-03 15:14 . 2012-08-03 15:142048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2009-07-14 02:05 . 2012-08-03 15:23626278 c:\windows\System32\perfh009.dat
- 2009-07-14 02:05 . 2012-08-01 13:54626278 c:\windows\System32\perfh009.dat
- 2009-07-14 02:05 . 2012-08-01 13:54107522 c:\windows\System32\perfc009.dat
+ 2009-07-14 02:05 . 2012-08-03 15:23107522 c:\windows\System32\perfc009.dat
- 2009-07-14 04:47 . 2012-07-25 04:49273876 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2009-07-14 04:47 . 2012-08-03 05:06273876 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2009-09-24 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2009-09-24 173592]
"Persistence"="c:\windows\system32\igfxpers.exe" [2009-09-24 150552]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-27 931200]
"Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware2\mbamgui.exe" [2012-07-03 462920]
"IAStorIcon"="c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2011-10-17 284440]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer2"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security PackagesREG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKLM\~\startupfolder\C:^Users^Mark^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.2.lnk]
path=c:\users\Mark\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk
backup=c:\windows\pss\OpenOffice.org 3.2.lnk.Startup
backupExtension=.Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2012-01-03 07:37843712----a-w-c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2011-09-07 22:5837296----a-w-c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
2011-10-14 07:46136176----atw-c:\users\Mark\AppData\Local\Google\Update\GoogleUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LifeCam]
2010-12-13 22:37135536----a-w-c:\program files\Microsoft LifeCam\LifeExp.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
2012-03-09 01:504280184----a-w-c:\program files\Windows Live\Messenger\msnmsgr.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2012-01-17 18:07252296----a-w-c:\program files\Common Files\Java\Java Update\jusched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zune Launcher]
2011-08-05 19:29159456----a-w-c:\program files\Zune\ZuneLauncher.exe
.
R1 MpKslc9080bea;MpKslc9080bea;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{42FED7AD-B1C0-4B77-8AA0-45755F925FB2}\MpKslc9080bea.sys [x]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [x]
R3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver;c:\windows\system32\Drivers\nx6000.sys [x]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x]
R3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\NisSrv.exe [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [x]
R3 WinRing0_1_2_0;WinRing0_1_2_0;c:\users\Mark\Downloads\RealTemp_360\WinRing0.sys [x]
R3 WMZuneComm;Zune Windows Mobile Connectivity Service;c:\program files\Zune\WMZuneComm.exe [x]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware2\mbamservice.exe [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit;c:\windows\system32\DRIVERS\netw5v32.sys [x]
S3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL3.SYS [x]
S3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV3.SYS [x]
S3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT3.SYS [x]
.
.
Contents of the 'Scheduled Tasks' folder
.
2012-08-03 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-04 17:52]
.
2012-08-03 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1907212456-2171594974-3975698673-1000Core.job
- c:\users\Mark\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-14 07:46]
.
2012-08-03 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1907212456-2171594974-3975698673-1000UA.job
- c:\users\Mark\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-14 07:46]
.
.
------- Supplementary Scan -------
.
TCP: DhcpNameServer = 192.168.0.1
FF - ProfilePath - c:\users\Mark\AppData\Roaming\Mozilla\Firefox\Profiles\bb1jcv1q.default\
FF - prefs.js: browser.startup.homepage - hxxp://
www.reddit.com/
FF - prefs.js: keyword.URL - hxxp://
www.google.com/search?ie=UTF-8&oe=UTF-8&sourceid=navclient&gfns=1&q=
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\. 0 W¶
f]
@Class="Shell"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\. 0 W¶
f\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\. 0 r·
f]
@Class="Shell"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\. 0 r·
f\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*a*v*I*’ÊÙZ\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\. c h s 1 1 0 3 2 5 1¶
f\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*D*e*†^l\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*D*e*+†^l\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*D*e*o†^l\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\. D e r·
f\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*e*u*_*s*t*a*r*l*e*t*s*-*p*o*w*¯ù;y\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*m*o*v*¡¢[\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*m*p*4* W3\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\. n W¶
f]
@Class="Shell"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\. n W¶
f\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*o*r*g*_*e*x*p*l*o*I*t*e*d*c*o*Þ6ò:\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*o*r*g*_*I*n*y*a*-*e*r*o*b*e*r*Þ6ò:\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*o*r*g*_*I*n*y*a*-*e*r*o*b*e*r*97ò:\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*o*r*g*_*m*s*h*f*g*r*a*IÛ„'\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*o*r*g*_*m*s*h*f*g*r*a*ù;y\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*o*r*g*_*s*o*_*r*e*a*d*y*_*b*I*_²ïH\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*w*m*ÔV\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*w*ä/ÝN]
@Class="Shell"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*w*ä/ÝN\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*w*ÑÛ„']
@Class="Shell"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*w*ÑÛ„'\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*w*Áù;y]
@Class="Shell"
.
[HKEY_USERS\S-1-5-21-1907212456-2171594974-3975698673-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*w*Áù;y\OpenWithList]
@Class="Shell"
"a"="vlc.exe"
"MRUList"="a"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2012-08-03 08:40:52
ComboFix-quarantined-files.txt 2012-08-03 15:40
ComboFix2.txt 2012-08-01 14:19
.
Pre-Run: 47,669,600,256 bytes free
Post-Run: 47,611,113,472 bytes free
.
- - End Of File - - E9E2A271526DF4749617A76F0EF825E1