ComboFix 12-01-18.04 - John 01/18/2012 16:02:34.1.4 - x86
Microsoft Windows 7 Ultimate 6.1.7601.1.1252.1.1033.18.3322.2141 [GMT -8:00]
Running from: c:\users\John\Downloads\ComboFix.exe
AV: AVG Internet Security 2012 *Enabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
FW: AVG Firewall *Enabled* {621CC794-9486-F902-D092-0484E8EA828B}
SP: AVG Internet Security 2012 *Enabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\Install.exe
c:\users\John\AppData\Roaming\Microsoft\Windows\Recent\bios.url
.
.
((((((((((((((((((((((((( Files Created from 2011-12-19 to 2012-01-19 )))))))))))))))))))))))))))))))
.
.
2012-01-19 00:08 . 2012-01-19 00:10 -------- d-----w- c:\users\John\AppData\Local\temp
2012-01-19 00:08 . 2012-01-19 00:08 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-01-18 14:00 . 2012-01-18 14:00 -------- d-----w- C:\$AVG
2012-01-18 13:33 . 2012-01-18 13:33 -------- d-----w- c:\program files\WiseFixer
2012-01-18 13:25 . 2012-01-18 13:25 -------- d-----w- c:\program files\CCP
2012-01-18 13:11 . 2012-01-18 13:11 -------- d-----w- c:\users\John\AppData\Roaming\AVG2012
2012-01-18 13:09 . 2012-01-18 13:09 -------- d--h--w- c:\programdata\Common Files
2012-01-18 13:06 . 2012-01-18 23:38 -------- d-----w- c:\windows\system32\drivers\AVG
2012-01-18 13:06 . 2012-01-18 13:29 -------- d-----w- c:\programdata\AVG2012
2012-01-18 13:05 . 2012-01-18 13:05 -------- d-----w- c:\program files\AVG
2012-01-18 12:54 . 2012-01-18 23:38 -------- d-----w- c:\programdata\MFAData
2012-01-18 12:44 . 2012-01-18 12:44 237 ----a-w- C:\user.js
2012-01-18 12:44 . 2012-01-18 12:44 -------- d-----w- c:\program files\BabylonToolbar
2012-01-18 12:44 . 2012-01-18 12:44 -------- d-----w- c:\users\John\AppData\Roaming\Babylon
2012-01-18 12:44 . 2012-01-18 12:44 -------- d-----w- c:\users\John\AppData\Local\Babylon
2012-01-18 12:44 . 2012-01-18 12:44 -------- d-----w- c:\programdata\Babylon
2012-01-18 12:31 . 2012-01-18 12:31 -------- d-----w- c:\users\John\AppData\Local\CCP
2012-01-18 06:46 . 2012-01-18 06:46 74936 ----a-w- c:\windows\system32\NicInE6.dll
2012-01-18 06:46 . 2012-01-18 06:46 28792 ----a-w- c:\windows\system32\NicCo36.dll
2012-01-18 06:46 . 2012-01-18 06:46 221400 ----a-w- c:\windows\system32\drivers\e1e6232.sys
2012-01-18 06:46 . 2012-01-18 06:46 121440 ----a-w- c:\windows\system32\e1000msg.dll
2012-01-18 05:28 . 2012-01-18 05:28 1606368 ----a-w- c:\windows\system32\drivers\athw.sys
2012-01-18 05:16 . 2012-01-18 06:57 -------- dc-h--w- c:\programdata\{83C3B2FD-37EA-4C06-A228-E9B5E32FF0B1}
2012-01-18 05:15 . 2011-11-07 08:26 939368 ----a-w- c:\windows\system32\flash.ocx
2012-01-18 05:15 . 2012-01-18 05:15 -------- d-----w- c:\users\John\AppData\Local\PackageAware
2012-01-18 04:47 . 2012-01-18 04:47 -------- dc-h--w- c:\programdata\{66E2F539-12B6-4870-A500-7689CDE75C5E}
2012-01-18 04:10 . 2012-01-18 04:10 -------- d-----w- c:\users\John\AppData\Local\Conduit
2012-01-18 04:10 . 2012-01-18 04:10 -------- d-----w- c:\program files\Conduit
2012-01-18 04:10 . 2012-01-18 04:10 -------- d-----w- c:\program files\uTorrent
2012-01-18 04:10 . 2012-01-19 00:08 -------- d-----w- c:\users\John\AppData\Roaming\uTorrent
2012-01-18 03:58 . 2012-01-18 04:04 -------- d-----w- c:\programdata\ErrorEND
2012-01-18 03:40 . 2012-01-18 04:40 -------- d-----w- c:\programdata\RegCure
2012-01-18 03:40 . 2012-01-18 04:16 -------- d-----w- c:\program files\RegCure
2012-01-18 03:24 . 2012-01-18 03:24 -------- d-----w- c:\program files\Common Files\InstallShield
2012-01-18 02:32 . 2012-01-18 13:08 -------- d-----w- c:\users\John\AppData\Local\Google
2012-01-18 02:32 . 2012-01-18 02:32 -------- d-----w- c:\program files\Google
2012-01-17 23:44 . 2011-11-30 10:21 6823496 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2C2A5FA7-F3AF-4364-9F4C-16632C8D3F1B}\mpengine.dll
2012-01-17 06:54 . 2012-01-17 06:54 -------- d-----w- c:\users\John\AppData\Local\Black_Tree_Gaming
2012-01-17 06:54 . 2012-01-17 06:54 -------- d-----w- c:\program files\Nexus Mod Manager
2012-01-17 01:10 . 2011-11-24 04:54 7677248 ----a-w- c:\windows\system32\nvwgf2um.dll
2012-01-17 01:10 . 2011-11-24 04:54 5868352 ----a-w- c:\windows\system32\nvcuda.dll
2012-01-17 01:10 . 2011-11-24 04:54 2206016 ----a-w- c:\windows\system32\nvcuvenc.dll
2012-01-17 01:10 . 2011-11-24 04:54 19348800 ----a-w- c:\windows\system32\nvoglv32.dll
2012-01-17 01:10 . 2011-11-24 04:54 17498432 ----a-w- c:\windows\system32\nvcompiler.dll
2012-01-17 01:10 . 2011-11-24 04:54 11147072 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2012-01-17 01:10 . 2011-11-24 04:54 61248 ----a-w- c:\windows\system32\OpenCL.dll
2012-01-17 01:10 . 2011-11-24 04:54 2506048 ----a-w- c:\windows\system32\nvcuvid.dll
2012-01-17 00:42 . 2012-01-17 00:42 -------- d-----w- c:\program files\Microsoft
2012-01-16 14:59 . 2012-01-16 14:59 -------- d-----w- c:\program files\Common Files\Adobe AIR
2012-01-16 14:59 . 2012-01-16 15:00 -------- d-----w- c:\users\John\AppData\Local\Adobe
2012-01-16 14:58 . 2012-01-16 14:58 -------- d-----w- c:\program files\Common Files\Adobe
2012-01-16 14:28 . 2012-01-16 14:28 -------- d-----w- c:\users\John\AppData\Local\Skyrim
2012-01-16 14:27 . 2008-10-15 14:22 452440 ----a-w- c:\windows\system32\d3dx10_40.dll
2012-01-16 14:27 . 2008-10-15 14:22 2036576 ----a-w- c:\windows\system32\D3DCompiler_40.dll
2012-01-16 14:27 . 2008-10-15 14:22 4379984 ----a-w- c:\windows\system32\D3DX9_40.dll
2012-01-16 14:18 . 2012-01-17 01:12 -------- d-----w- c:\users\UpdatusUser
2012-01-16 13:34 . 2012-01-16 22:50 -------- d-----w- c:\program files\Common Files\Steam
2012-01-16 13:34 . 2012-01-18 23:34 -------- d-----w- c:\program files\Steam
2012-01-16 11:17 . 2012-01-16 11:18 -------- d-----w- c:\program files\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition
2012-01-16 11:06 . 2012-01-16 11:06 -------- d-----w- c:\users\John\AppData\Roaming\NVIDIA
2012-01-16 11:06 . 2012-01-16 11:06 -------- d-----w- c:\program files\Geeks3D
2012-01-16 10:10 . 2012-01-17 00:42 -------- d--h--w- c:\windows\msdownld.tmp
2012-01-16 10:09 . 2012-01-16 15:15 -------- d-----w- c:\program files\EVGA Precision
2012-01-16 09:50 . 2012-01-18 03:24 -------- d--h--w- c:\program files\InstallShield Installation Information
2012-01-16 09:49 . 2012-01-16 09:49 -------- d-----w- c:\program files\NETGEAR
2012-01-16 09:49 . 2012-01-16 09:49 -------- d-----w- c:\windows\Downloaded Installations
2012-01-16 09:12 . 2012-01-16 09:12 -------- d-----w- c:\windows\system32\SPReview
2012-01-16 09:11 . 2012-01-16 09:11 -------- d-----w- c:\windows\system32\EventProviders
2012-01-16 09:09 . 2010-11-05 01:58 1130824 ----a-w- c:\windows\system32\dfshim.dll
2012-01-16 09:07 . 2010-11-20 12:21 507392 ----a-w- c:\windows\system32\wmdrmdev.dll
2012-01-16 09:03 . 2011-11-24 04:54 993088 ----a-w- c:\windows\system32\nvdispco32.dll
2012-01-16 09:03 . 2011-11-24 04:54 881984 ----a-w- c:\windows\system32\nvgenco32.dll
2012-01-16 08:58 . 2012-01-16 08:58 -------- d--h--w- c:\windows\AxInstSV
2012-01-16 08:53 . 2012-01-16 08:53 -------- d-----w- c:\programdata\Uniblue
2012-01-16 08:53 . 2012-01-18 06:57 -------- d-----w- c:\program files\Uniblue
2012-01-16 08:48 . 2012-01-16 08:48 -------- d-----w- c:\program files\CPUID
2012-01-16 08:48 . 2011-09-21 18:25 21992 ----a-w- c:\windows\system32\drivers\cpuz135_x32.sys
2012-01-16 07:55 . 2011-11-17 05:41 67440 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2012-01-16 07:55 . 2011-11-17 05:41 134000 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2012-01-16 07:55 . 2011-11-17 05:39 369352 ----a-w- c:\windows\system32\drivers\cng.sys
2012-01-16 07:55 . 2011-11-17 05:35 314880 ----a-w- c:\windows\system32\webio.dll
2012-01-16 07:55 . 2011-11-17 05:34 15872 ----a-w- c:\windows\system32\sspisrv.dll
2012-01-16 07:55 . 2011-11-17 05:34 100352 ----a-w- c:\windows\system32\sspicli.dll
2012-01-16 07:55 . 2011-11-17 05:34 224768 ----a-w- c:\windows\system32\schannel.dll
2012-01-16 07:55 . 2011-11-17 05:34 22016 ----a-w- c:\windows\system32\secur32.dll
2012-01-16 07:55 . 2011-11-17 05:32 1038848 ----a-w- c:\windows\system32\lsasrv.dll
2012-01-16 07:55 . 2011-11-17 05:29 22528 ----a-w- c:\windows\system32\lsass.exe
2012-01-16 07:38 . 2012-01-16 07:38 -------- d-----w- c:\windows\system32\Wat
2012-01-16 07:27 . 2012-01-16 07:27 -------- d-----w- c:\program files\Microsoft IntelliPoint
2012-01-16 07:27 . 2012-01-16 07:27 -------- d-----w- c:\windows\PCHEALTH
2012-01-16 07:27 . 2012-01-18 13:13 -------- d-sh--w- c:\windows\Installer
2012-01-16 07:07 . 2012-01-18 23:33 -------- d-----w- c:\programdata\NVIDIA
2012-01-16 07:07 . 2011-11-24 02:32 645440 ----a-w- c:\windows\system32\nvvsvc.exe
2012-01-16 07:07 . 2011-11-24 02:32 2561856 ----a-w- c:\windows\system32\nvsvcr.dll
2012-01-16 07:07 . 2011-11-24 02:32 62272 ----a-w- c:\windows\system32\nvshext.dll
2012-01-16 07:07 . 2011-11-24 02:32 108352 ----a-w- c:\windows\system32\nvmctray.dll
2012-01-16 07:07 . 2011-11-24 02:31 2671936 ----a-w- c:\windows\system32\nvsvc.dll
2012-01-16 07:07 . 2011-11-24 02:30 3836224 ----a-w- c:\windows\system32\nvcpl.dll
2012-01-16 07:06 . 2012-01-16 07:06 -------- d-----w- c:\programdata\NVIDIA Corporation
2012-01-16 07:06 . 2012-01-17 01:12 -------- d-----w- c:\program files\NVIDIA Corporation
2012-01-16 06:29 . 2011-04-29 02:46 311808 ----a-w- c:\windows\system32\drivers\srv.sys
2012-01-16 06:25 . 2011-05-04 04:34 1549312 ----a-w- c:\windows\system32\tquery.dll
2012-01-16 06:24 . 2011-10-01 04:37 708608 ----a-w- c:\program files\Common Files\System\wab32.dll
2012-01-16 06:23 . 2011-03-11 05:33 1164288 ----a-w- c:\windows\system32\mfc42u.dll
2012-01-16 06:23 . 2011-03-11 05:33 1137664 ----a-w- c:\windows\system32\mfc42.dll
2012-01-16 06:23 . 2011-04-29 04:57 759296 ----a-w- c:\program files\Common Files\Microsoft Shared\VGX\VGX.dll
2012-01-16 06:23 . 2011-04-09 05:56 123904 ----a-w- c:\windows\system32\poqexec.exe
2012-01-16 06:23 . 2010-11-20 12:29 728448 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2012-01-16 06:23 . 2011-02-03 05:54 219008 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2012-01-16 06:23 . 2010-11-20 11:56 107520 ----a-w- c:\windows\system32\cdd.dll
2012-01-16 06:23 . 2011-02-23 04:47 69632 ----a-w- c:\windows\system32\drivers\bowser.sys
2012-01-16 06:23 . 2011-04-22 19:14 27008 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2012-01-16 06:11 . 2011-11-15 22:29 222080 ------w- c:\windows\system32\MpSigStub.exe
2012-01-14 02:19 . 2012-01-14 02:19 -------- d-----w- C:\Games
2012-01-12 02:54 . 2012-01-15 06:18 -------- d-----w- C:\cabs
2012-01-12 02:04 . 2012-01-12 02:04 -------- d-----w- C:\EbuDllTmpDir
2011-12-30 02:19 . 2011-12-30 02:19 -------- d-----w- C:\Fraps
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-01-16 09:24 . 2009-07-14 02:05 152576 ----a-w- c:\windows\system32\msclmd.dll
2011-11-24 04:54 . 2011-05-21 14:01 2095424 ----a-w- c:\windows\system32\nvapi.dll
2011-11-24 04:54 . 2011-05-21 14:01 14854464 ----a-w- c:\windows\system32\nvd3dum.dll
2011-11-24 03:29 . 2011-11-24 03:29 406336 ----a-w- c:\windows\system32\nvStreaming.exe
2011-10-22 11:21 . 2011-10-22 11:21 65536 ----a-w- c:\windows\system32\frapsvid.dll
2011-12-21 07:24 . 2012-01-18 13:10 121816 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}"= "c:\program files\uTorrentBar\prxtbuTor.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}]
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
2012-01-18 13:10 1574240 ----a-w- c:\program files\AVG Secure Search\9.0.0.23\AVG Secure Search_toolbar.dll
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}]
2011-05-09 08:49 176936 ----a-w- c:\program files\uTorrentBar\prxtbuTor.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}"= "c:\program files\uTorrentBar\prxtbuTor.dll" [2011-05-09 176936]
"{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files\AVG Secure Search\9.0.0.23\AVG Secure Search_toolbar.dll" [2012-01-18 1574240]
.
[HKEY_CLASSES_ROOT\clsid\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}]
.
[HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Steam"="c:\program files\Steam\Steam.exe" [2012-01-16 1242448]
"uTorrent"="c:\program files\uTorrent\uTorrent.exe" [2012-01-18 735608]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IntelliPoint"="c:\program files\Microsoft IntelliPoint\ipoint.exe" [2011-08-01 1821576]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-01-04 37296]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-02 843712]
"AVG_TRAY"="c:\program files\AVG\AVG2012\avgtray.exe" [2011-12-03 2415456]
"vProt"="c:\program files\AVG Secure Search\vprot.exe" [2012-01-18 892768]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0c:\progra~1\AVG\AVG2012\avgrsx.exe /sync /restart
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2012-01-18 136176]
R3 BBSvc;Bing Bar Update Service;c:\program files\Microsoft\BingBar\BBSvc.EXE [2011-07-08 195336]
R3 gupdatem;Google Update Service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2012-01-18 136176]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2010-11-20 15872]
R3 RTCore32;RTCore32;c:\program files\EVGA Precision\RTCore32.sys [2011-09-07 5632]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2012-01-16 1343400]
S0 AVGIDSEH;AVGIDSEH;c:\windows\system32\DRIVERS\AVGIDSEH.Sys [2011-07-11 23120]
S0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx86.sys [2011-09-13 32592]
S1 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwd6x.sys [2011-05-23 47968]
S1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx86.sys [2011-10-07 230608]
S1 Avgtdix;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdix.sys [2011-07-11 295248]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-13 48128]
S2 avgfws;AVG Firewall;c:\program files\AVG\AVG2012\avgfws.exe [2011-11-23 2391832]
S2 AVGIDSAgent;AVGIDSAgent;c:\program files\AVG\AVG2012\AVGIDSAgent.exe [2011-10-12 4433248]
S2 avgwd;AVG WatchDog;c:\program files\AVG\AVG2012\avgwdsvc.exe [2011-08-02 192776]
S2 BBUpdate;BBUpdate;c:\program files\Microsoft\BingBar\SeaPort.EXE [2011-06-16 249648]
S2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x32.sys [2011-09-21 21992]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2011-11-24 2348864]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-11-24 381248]
S2 vToolbarUpdater;vToolbarUpdater;c:\program files\Common Files\AVG Secure Search\vToolbarUpdater\9.0.1\ToolbarUpdater.exe [2012-01-18 869216]
S3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\AVGIDSDriver.Sys [2011-07-11 134736]
S3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\DRIVERS\AVGIDSFilter.Sys [2011-07-11 24272]
S3 AVGIDSShim;AVGIDSShim;c:\windows\system32\DRIVERS\AVGIDSShim.Sys [2011-10-04 16720]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - AVGIDSEH
.
Contents of the 'Scheduled Tasks' folder
.
2012-01-18 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-01-18 02:32]
.
2012-01-18 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-01-18 02:32]
.
2012-01-18 c:\windows\Tasks\RegCure Program Check.job
- c:\program files\RegCure\RegCure.exe [2010-05-19 04:12]
.
2012-01-18 c:\windows\Tasks\RegCure.job
- c:\program files\RegCure\RegCure.exe [2010-05-19 04:12]
.
.
------- Supplementary Scan -------
.
uStart Page =
hxxp://search.babylon.com/?AF=109130&ba ... 1e2a4b067aTCP: DhcpNameServer = 192.168.1.1
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\Common Files\AVG Secure Search\ViProtocolInstaller\9.0.1\ViProtocol.dll
FF - ProfilePath - c:\users\John\AppData\Roaming\Mozilla\Firefox\Profiles\jbex6dq7.default\
FF - prefs.js: browser.search.defaulturl -
hxxp://search.conduit.com/ResultsExt.as ... ource=3&q={searchTerms}
FF - prefs.js: browser.startup.homepage - about:home
FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=109130
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar_i.id - 64d59f73000000000000001e2a4b067a
FF - user.js: extensions.BabylonToolbar_i.hardId - 64d59f73000000000000001e2a4b067a
FF - user.js: extensions.BabylonToolbar_i.instlDay - 15357
FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.174:44
FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar_i.tlbrId - base
FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
.
- - - - ORPHANS REMOVED - - - -
.
AddRemove-ExpressFiles - c:\program files\ExpressFiles\uninstall.exe
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2012-01-18 16:13:41
ComboFix-quarantined-files.txt 2012-01-19 00:13
.
Pre-Run: 552,338,235,392 bytes free
Post-Run: 552,399,544,320 bytes free
.
- - End Of File - - 5B34DA6B83FD6277D2D973001F62E587