WiredWX Christian Hobby Weather Tools
Would you like to react to this message? Create an account in a few clicks or log in to continue.

WiredWX Christian Hobby Weather ToolsLog in

 


descriptionException Processing Message 0x0000013 Parameters\n0x000007FEFE037240 - Page 1 EmptyRe: Exception Processing Message 0x0000013 Parameters\n0x000007FEFE037240

more_horiz
Yes, with the space and capital leters and everything and I get nothing...

I guess I did something wrong at any moment of the process...

descriptionException Processing Message 0x0000013 Parameters\n0x000007FEFE037240 - Page 1 EmptyRe: Exception Processing Message 0x0000013 Parameters\n0x000007FEFE037240

more_horiz
"Click Start then copy paste the following command into the search box & hit enter: "%userprofile%\desktop\commy.exe" /stepdel"

This is the only thing I couldn't do when I install it....It maybe has something to do....

descriptionException Processing Message 0x0000013 Parameters\n0x000007FEFE037240 - Page 1 EmptyRe: Exception Processing Message 0x0000013 Parameters\n0x000007FEFE037240

more_horiz
Can you double click it and just run it normally?

descriptionException Processing Message 0x0000013 Parameters\n0x000007FEFE037240 - Page 1 EmptyRe: Exception Processing Message 0x0000013 Parameters\n0x000007FEFE037240

more_horiz
Yes....infact, It is what happened the first time I installed and ran it....

descriptionException Processing Message 0x0000013 Parameters\n0x000007FEFE037240 - Page 1 EmptyRe: Exception Processing Message 0x0000013 Parameters\n0x000007FEFE037240

more_horiz
Did it generate a logfile?

descriptionException Processing Message 0x0000013 Parameters\n0x000007FEFE037240 - Page 1 EmptyRe: Exception Processing Message 0x0000013 Parameters\n0x000007FEFE037240

more_horiz
Yes, It did, and when I ran it again it generated the following log and eliminated some of the programs of my desktop....I think I shouldn't have done it... Sad tearing

ComboFix 11-02-17.02 - Shere 18/02/2011 20:06:25.2.2 - x64
Microsoft Windows 7 Ultimate 6.1.7600.0.1252.34.3082.18.1790.1042 [GMT 1:00]
Running from: d:\descargas\ComboFix.exe.exe
AV: avast! Antivirus *Disabled/Updated* {C37D8F93-0602-E43C-40AA-47DAD597F308}
SP: avast! Antivirus *Disabled/Updated* {781C6E77-2038-EBB2-7A1A-7CA8AE10B9B5}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\programdata\Desktop

.
((((((((((((((((((((((((( Files Created from 2011-01-18 to 2011-02-18 )))))))))))))))))))))))))))))))
.

2011-02-18 19:08 . 2011-02-18 19:08 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-02-11 18:49 . 2011-02-11 18:49 -------- d-----w- c:\users\Shere\AppData\Roaming\Malwarebytes
2011-02-11 18:48 . 2010-12-20 17:09 38224 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys
2011-02-11 18:48 . 2011-02-11 18:48 -------- d-----w- c:\programdata\Malwarebytes
2011-02-11 18:48 . 2011-02-11 18:48 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2011-02-11 18:48 . 2010-12-20 17:08 24152 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-02-08 00:13 . 2011-02-08 00:13 -------- d-----w- C:\javara
2011-02-08 00:11 . 2011-02-08 00:11 -------- d-----w- c:\program files (x86)\Common Files\Java
2011-02-08 00:11 . 2011-02-08 00:11 472808 ----a-w- c:\program files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll
2011-02-08 00:11 . 2011-02-08 00:11 472808 ----a-w- c:\windows\SysWow64\deployJava1.dll
2011-02-08 00:11 . 2011-02-08 00:11 -------- d-----w- c:\program files (x86)\Java
2011-01-30 13:57 . 2011-01-30 13:57 103864 ----a-w- c:\program files (x86)\Mozilla Firefox\plugins\nppdf32.dll
2011-01-20 20:32 . 2011-01-13 08:47 237168 ----a-w- c:\windows\system32\aswBoot.exe

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-01-13 08:47 . 2010-08-13 18:52 38848 ----a-w- c:\windows\avastSS.scr
2011-01-13 08:47 . 2010-02-02 11:04 188216 ----a-w- c:\windows\SysWow64\aswBoot.exe
2011-01-13 08:41 . 2010-02-02 11:05 273488 ----a-w- c:\windows\system32\drivers\aswSP.sys
2011-01-13 08:40 . 2010-02-02 11:05 51792 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2011-01-13 08:37 . 2010-02-02 11:05 29264 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2011-01-13 08:37 . 2010-02-02 11:05 62032 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2011-01-13 08:37 . 2010-02-02 11:05 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
.

((((((((((((((((((((((((((((( SnapShot@2011-02-08_23.22.38 )))))))))))))))))))))))))))))))))))))))))
.
- 2010-12-16 23:38 . 2010-11-04 05:49 67072 c:\windows\SysWOW64\mshtmled.dll
+ 2011-02-10 16:35 . 2010-12-18 05:30 67072 c:\windows\SysWOW64\mshtmled.dll
- 2010-12-16 23:38 . 2010-11-04 05:46 12800 c:\windows\SysWOW64\msfeedssync.exe
+ 2011-02-10 16:35 . 2010-12-18 05:26 12800 c:\windows\SysWOW64\msfeedssync.exe
+ 2011-02-10 16:35 . 2010-12-18 05:30 64512 c:\windows\SysWOW64\msfeedsbs.dll
- 2010-12-16 23:38 . 2010-11-04 05:49 64512 c:\windows\SysWOW64\msfeedsbs.dll
- 2010-12-16 23:38 . 2010-11-04 05:52 68608 c:\windows\SysWOW64\migration\WininetPlugin.dll
+ 2011-02-10 16:35 . 2010-12-18 05:32 68608 c:\windows\SysWOW64\migration\WininetPlugin.dll
+ 2011-02-10 16:35 . 2010-12-18 05:29 44544 c:\windows\SysWOW64\licmgr10.dll
- 2010-12-16 23:38 . 2010-11-04 05:48 44544 c:\windows\SysWOW64\licmgr10.dll
+ 2011-02-10 16:35 . 2010-12-18 05:29 48128 c:\windows\SysWOW64\jsproxy.dll
- 2010-12-16 23:38 . 2010-11-04 05:48 48128 c:\windows\SysWOW64\jsproxy.dll
+ 2009-07-14 04:54 . 2011-02-18 19:11 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2011-02-08 23:23 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2011-02-18 19:11 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2011-02-08 23:23 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2011-02-18 19:11 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2011-02-08 23:23 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2010-12-16 23:39 . 2010-10-20 04:54 34304 c:\windows\SysWOW64\atmlib.dll
+ 2011-02-10 16:35 . 2011-01-07 07:27 34304 c:\windows\SysWOW64\atmlib.dll
+ 2009-07-14 00:21 . 2009-07-14 01:41 88064 c:\windows\system32\WpdMtpUS.dll
+ 2009-12-21 17:21 . 2011-02-17 15:55 25628 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2011-02-18 18:24 32508 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2009-12-21 16:25 . 2011-02-18 18:24 27134 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-3371449768-3312462355-1415685752-1000_UserData.bin
+ 2011-02-10 16:35 . 2010-12-18 06:12 97280 c:\windows\system32\mshtmled.dll
- 2010-12-16 23:38 . 2010-11-04 06:32 97280 c:\windows\system32\mshtmled.dll
+ 2011-02-10 16:35 . 2010-12-18 06:08 12288 c:\windows\system32\msfeedssync.exe
- 2010-12-16 23:38 . 2010-11-04 06:28 12288 c:\windows\system32\msfeedssync.exe
- 2010-12-16 23:38 . 2010-11-04 06:32 82944 c:\windows\system32\msfeedsbs.dll
+ 2011-02-10 16:35 . 2010-12-18 06:12 82944 c:\windows\system32\msfeedsbs.dll
+ 2011-02-10 16:35 . 2010-12-18 06:15 95232 c:\windows\system32\migration\WininetPlugin.dll
- 2010-12-16 23:38 . 2010-11-04 06:35 95232 c:\windows\system32\migration\WininetPlugin.dll
- 2010-12-16 23:38 . 2010-11-04 06:31 57856 c:\windows\system32\licmgr10.dll
+ 2011-02-10 16:35 . 2010-12-18 06:11 57856 c:\windows\system32\licmgr10.dll
- 2010-12-16 23:38 . 2010-11-04 06:31 64512 c:\windows\system32\jsproxy.dll
+ 2011-02-10 16:35 . 2010-12-18 06:11 64512 c:\windows\system32\jsproxy.dll
- 2009-07-14 05:30 . 2010-03-13 16:23 86016 c:\windows\system32\DriverStore\infpub.dat
+ 2009-07-14 05:30 . 2011-02-12 09:44 86016 c:\windows\system32\DriverStore\infpub.dat
+ 2009-07-14 00:06 . 2009-07-14 00:06 40448 c:\windows\system32\drivers\winusb.sys
+ 2009-12-21 23:17 . 2011-02-17 17:54 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-12-21 23:17 . 2011-01-28 16:33 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-12-21 23:17 . 2011-01-28 16:33 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-12-21 23:17 . 2011-02-17 17:54 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2011-01-28 16:33 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 04:54 . 2011-02-17 17:54 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2011-02-10 16:35 . 2011-01-07 08:06 46080 c:\windows\system32\atmlib.dll
- 2010-12-16 23:39 . 2010-10-20 05:20 46080 c:\windows\system32\atmlib.dll
+ 2009-12-21 16:39 . 2011-02-18 19:11 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-12-21 16:39 . 2011-02-08 23:22 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:46 . 2011-01-15 16:51 76600 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
+ 2009-07-14 04:46 . 2011-02-11 19:00 76600 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
- 2009-12-21 16:39 . 2011-02-08 23:22 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-12-21 16:39 . 2011-02-18 19:11 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-12-21 16:39 . 2011-02-08 23:22 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-12-21 16:39 . 2011-02-18 19:11 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-12-21 16:39 . 2011-02-08 23:23 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-12-21 16:39 . 2011-02-18 19:11 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-12-21 16:39 . 2011-02-08 23:23 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-12-21 16:39 . 2011-02-18 19:11 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-09-23 03:47 . 2010-09-23 03:47 35760 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA74301B7449A0400000010\9.4.0\reader_sl.exe
+ 2010-09-23 02:03 . 2010-09-23 02:03 99776 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA74301B7449A0400000010\9.4.0\eula.exe
+ 2010-09-23 01:52 . 2010-09-23 01:52 27048 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA74301B7449A0400000010\9.4.0\acrotextextractor.exe
+ 2010-09-22 17:12 . 2010-09-22 17:12 15800 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA74301B7449A0400000010\9.4.0\AcroRd32Info.exe
+ 2011-02-18 19:09 . 2011-02-18 19:09 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2011-02-08 23:21 . 2011-02-08 23:21 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2011-02-08 23:21 . 2011-02-08 23:21 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2011-02-18 19:09 . 2011-02-18 19:09 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2011-02-10 16:35 . 2010-12-18 05:32 981504 c:\windows\SysWOW64\wininet.dll
+ 2011-02-10 16:35 . 2011-01-05 05:37 428032 c:\windows\SysWOW64\vbscript.dll
- 2010-12-16 23:39 . 2010-11-04 05:49 606208 c:\windows\SysWOW64\mstime.dll
+ 2011-02-10 16:35 . 2010-12-18 05:30 606208 c:\windows\SysWOW64\mstime.dll
+ 2011-02-10 16:35 . 2010-12-18 05:30 599040 c:\windows\SysWOW64\msfeeds.dll
- 2010-12-16 23:38 . 2010-11-04 05:49 599040 c:\windows\SysWOW64\msfeeds.dll
- 2009-07-13 23:35 . 2009-07-14 01:15 541184 c:\windows\SysWOW64\kerberos.dll
+ 2011-02-10 16:35 . 2010-12-18 05:29 541184 c:\windows\SysWOW64\kerberos.dll
- 2010-02-24 19:44 . 2009-12-02 08:17 716800 c:\windows\SysWOW64\jscript.dll
+ 2011-02-10 16:35 . 2011-01-05 05:34 716800 c:\windows\SysWOW64\jscript.dll
+ 2011-02-10 16:35 . 2010-12-18 05:29 176640 c:\windows\SysWOW64\ieui.dll
- 2010-12-16 23:38 . 2010-11-04 05:48 176640 c:\windows\SysWOW64\ieui.dll
- 2010-12-16 23:38 . 2010-11-04 05:48 185856 c:\windows\SysWOW64\iepeers.dll
+ 2011-02-10 16:35 . 2010-12-18 05:29 185856 c:\windows\SysWOW64\iepeers.dll
- 2010-12-16 23:38 . 2010-11-04 05:48 381440 c:\windows\SysWOW64\iedkcs32.dll
+ 2011-02-10 16:35 . 2010-12-18 05:29 381440 c:\windows\SysWOW64\iedkcs32.dll
+ 2011-02-10 16:35 . 2011-01-07 05:33 294400 c:\windows\SysWOW64\atmfd.dll
- 2010-12-16 23:39 . 2010-10-20 02:58 294400 c:\windows\SysWOW64\atmfd.dll
+ 2009-07-14 00:21 . 2009-07-14 01:41 297984 c:\windows\system32\WpdMtp.dll
+ 2009-12-22 15:21 . 2011-02-17 18:27 231186 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_FastS4.bin
- 2010-04-15 23:34 . 2010-03-08 21:59 612352 c:\windows\system32\vbscript.dll
+ 2011-02-10 16:35 . 2011-01-05 06:20 612352 c:\windows\system32\vbscript.dll
+ 2009-07-14 09:31 . 2011-02-12 09:34 694148 c:\windows\system32\perfh00A.dat
- 2009-07-14 09:31 . 2011-02-06 22:27 694148 c:\windows\system32\perfh00A.dat
+ 2009-07-14 02:36 . 2011-02-12 09:34 606992 c:\windows\system32\perfh009.dat
- 2009-07-14 02:36 . 2011-02-06 22:27 606992 c:\windows\system32\perfh009.dat
+ 2009-07-14 09:31 . 2011-02-12 09:34 134242 c:\windows\system32\perfc00A.dat
- 2009-07-14 09:31 . 2011-02-06 22:27 134242 c:\windows\system32\perfc00A.dat
+ 2009-07-14 02:36 . 2011-02-12 09:34 103370 c:\windows\system32\perfc009.dat
- 2009-07-14 02:36 . 2011-02-06 22:27 103370 c:\windows\system32\perfc009.dat
- 2010-12-16 23:38 . 2010-11-04 06:32 703488 c:\windows\system32\msfeeds.dll
+ 2011-02-10 16:35 . 2010-12-18 06:12 703488 c:\windows\system32\msfeeds.dll
+ 2011-02-10 16:35 . 2010-12-18 06:11 714752 c:\windows\system32\kerberos.dll
- 2010-02-24 19:44 . 2009-12-02 09:15 852480 c:\windows\system32\jscript.dll
+ 2011-02-10 16:35 . 2011-01-05 06:16 852480 c:\windows\system32\jscript.dll
- 2010-12-16 23:38 . 2010-11-04 06:31 247808 c:\windows\system32\ieui.dll
+ 2011-02-10 16:35 . 2010-12-18 06:11 247808 c:\windows\system32\ieui.dll
+ 2011-02-10 16:35 . 2010-12-18 06:11 256000 c:\windows\system32\iepeers.dll
- 2010-12-16 23:38 . 2010-11-04 06:31 256000 c:\windows\system32\iepeers.dll
- 2010-12-16 23:38 . 2010-11-04 06:31 445952 c:\windows\system32\iedkcs32.dll
+ 2011-02-10 16:35 . 2010-12-18 06:11 445952 c:\windows\system32\iedkcs32.dll
- 2009-07-14 04:45 . 2010-12-17 16:32 425912 c:\windows\system32\FNTCACHE.DAT
+ 2009-07-14 04:45 . 2011-02-11 18:33 425912 c:\windows\system32\FNTCACHE.DAT
+ 2009-07-14 05:30 . 2011-02-12 09:44 143360 c:\windows\system32\DriverStore\infstrng.dat
- 2009-07-14 05:30 . 2010-03-13 16:23 143360 c:\windows\system32\DriverStore\infstrng.dat
+ 2011-02-10 16:35 . 2011-01-07 05:49 366080 c:\windows\system32\atmfd.dll
+ 2010-09-22 17:10 . 2010-09-22 17:10 103864 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA74301B7449A0400000010\9.4.0\nppdf32.dll
+ 2010-09-10 17:17 . 2010-09-10 17:17 684032 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA74301B7449A0400000010\9.4.0\JP2KLib.dll
+ 2010-09-22 19:41 . 2010-09-22 19:41 542168 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA74301B7449A0400000010\9.4.0\AdobeCollabSync.exe
+ 2010-09-23 03:47 . 2010-09-23 03:47 349616 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA74301B7449A0400000010\9.4.0\AcroRd32.exe
+ 2010-09-22 17:04 . 2010-09-22 17:04 660912 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA74301B7449A0400000010\9.4.0\AcroPDF.dll
+ 2010-09-22 18:39 . 2010-09-22 18:39 280024 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA74301B7449A0400000010\9.4.0\acrobroker.exe
+ 2010-09-22 17:50 . 2010-09-22 17:50 251296 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA74301B7449A0400000010\9.4.0\a3dutility.exe
+ 2011-02-10 16:35 . 2010-12-18 05:32 1228288 c:\windows\SysWOW64\urlmon.dll
+ 2011-02-10 16:35 . 2010-10-27 04:43 3901824 c:\windows\SysWOW64\ntoskrnl.exe
+ 2011-02-10 16:35 . 2010-10-27 04:43 3957120 c:\windows\SysWOW64\ntkrnlpa.exe
+ 2011-02-10 16:35 . 2010-10-27 04:40 1293120 c:\windows\SysWOW64\ntdll.dll
+ 2011-02-10 16:35 . 2010-12-18 05:30 5980672 c:\windows\SysWOW64\mshtml.dll
+ 2011-02-10 16:35 . 2010-12-18 05:29 2063360 c:\windows\SysWOW64\iertutil.dll
- 2010-12-16 23:39 . 2010-11-04 05:48 2063360 c:\windows\SysWOW64\iertutil.dll
+ 2011-02-10 16:35 . 2010-12-18 06:15 1197056 c:\windows\system32\wininet.dll
+ 2011-02-10 16:35 . 2011-01-05 04:00 3127808 c:\windows\system32\win32k.sys
+ 2011-02-10 16:35 . 2010-12-18 06:15 1498112 c:\windows\system32\urlmon.dll
+ 2011-02-10 16:35 . 2010-10-27 05:18 5510528 c:\windows\system32\ntoskrnl.exe
+ 2011-02-10 16:35 . 2010-10-27 05:16 1739176 c:\windows\system32\ntdll.dll
- 2010-12-16 23:39 . 2010-11-04 06:32 1026560 c:\windows\system32\mstime.dll
+ 2011-02-10 16:35 . 2010-12-18 06:12 1026560 c:\windows\system32\mstime.dll
+ 2011-02-10 16:35 . 2010-12-18 06:12 9302528 c:\windows\system32\mshtml.dll
+ 2011-02-10 16:35 . 2010-12-18 06:11 2447872 c:\windows\system32\iertutil.dll
- 2010-12-16 23:39 . 2010-11-04 06:31 2447872 c:\windows\system32\iertutil.dll
+ 2009-07-14 00:22 . 2009-07-14 01:41 1195008 c:\windows\system32\drivers\UMDF\WpdMtpDr.dll
- 2009-07-14 04:45 . 2011-01-15 00:00 3606945 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat
+ 2009-07-14 04:45 . 2011-02-11 18:33 3606945 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat
+ 2010-09-22 17:05 . 2010-09-22 17:05 2405784 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA74301B7449A0400000010\9.4.0\rt3d.dll
+ 2010-09-16 02:08 . 2010-09-16 02:08 6210560 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA74301B7449A0400000010\9.4.0\authplay.dll
+ 2010-06-19 16:51 . 2010-06-19 16:51 5713920 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA74301B7449A0400000010\9.4.0\AGM.dll
- 2010-12-16 23:39 . 2010-11-04 05:48 10989056 c:\windows\SysWOW64\ieframe.dll
+ 2011-02-10 16:35 . 2010-12-18 05:29 10989056 c:\windows\SysWOW64\ieframe.dll
+ 2009-07-14 02:34 . 2011-02-18 18:36 10485760 c:\windows\system32\SMI\Store\Machine\schema.dat
+ 2010-05-23 11:38 . 2011-02-11 00:23 39403464 c:\windows\system32\MRT.exe
+ 2011-02-10 16:35 . 2010-12-18 06:11 12369408 c:\windows\system32\ieframe.dll
- 2010-12-16 23:39 . 2010-11-04 06:31 12369408 c:\windows\system32\ieframe.dll
+ 2011-01-31 10:45 . 2011-01-31 10:45 11135488 c:\windows\Installer\14aff.msp
+ 2010-09-23 13:28 . 2010-09-23 13:28 47506432 c:\windows\Installer\14a7f.msi
+ 2010-09-23 02:03 . 2010-09-23 02:03 20460984 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA74301B7449A0400000010\9.4.0\AcroRd32.dll
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2010-04-06 26102056]
"Google Update"="c:\users\Shere\AppData\Local\Google\Update\GoogleUpdate.exe" [2010-10-31 136176]

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2010-05-14 248552]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2011-01-31 35760]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-09-20 932288]

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Gamma Loader.lnk - c:\program files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2010-3-23 113664]
McAfee Security Scan.lnk - c:\program files (x86)\McAfee Security Scan\1.0.150\SSScheduler.exe [2009-7-28 199184]
Push Client.LNK - c:\program files (x86)\Interwise\Participant\pull.exe [2010-1-21 894192]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)

R3 MHIKEY10;MHIKEY10;c:\windows\system32\Drivers\MHIKEY10x64.sys [2008-05-27 59136]
R3 WatAdminSvc;Servicio de tecnologías de activación de Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-05-19 1255736]
S1 aswSP;aswSP; [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-08-18 203264]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2011-01-13 62032]
S3 RTL8167;Controlador NT de Realtek 8167;c:\windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]

.
Contents of the 'Scheduled Tasks' folder

2011-02-03 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3371449768-3312462355-1415685752-1000Core.job
- c:\users\Shere\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-31 01:00]

2011-02-18 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3371449768-3312462355-1415685752-1000UA.job
- c:\users\Shere\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-31 01:00]
.

--------- x86-64 -----------

.
------- Supplementary Scan -------
.
IE: E&xportar a Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\users\Shere\AppData\Roaming\Mozilla\Firefox\Profiles\hrybkxki.default\
FF - prefs.js: browser.startup.homepage - hxxp://go.microsoft.com/fwlink/?LinkId=69157
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Skype extension for Firefox: {AB2CE124-6272-4b12-94A9-7303C7397BD1} - c:\program files (x86)\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - c:\program files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Alwil Software\Avast5\AvastSvc.exe
.
**************************************************************************
.
Completion time: 2011-02-18 20:13:05 - machine was rebooted
ComboFix-quarantined-files.txt 2011-02-18 19:13
ComboFix2.txt 2011-02-08 23:25

Pre-Run: 62.701.449.216 bytes libres
Post-Run: 62.621.175.808 bytes libres

- - End Of File - - 6526AD3A909914168130785FA833D0D2

descriptionException Processing Message 0x0000013 Parameters\n0x000007FEFE037240 - Page 1 EmptyRe: Exception Processing Message 0x0000013 Parameters\n0x000007FEFE037240

more_horiz
Hi,

All that looks good. How are things running?

descriptionException Processing Message 0x0000013 Parameters\n0x000007FEFE037240 - Page 1 EmptyRe: Exception Processing Message 0x0000013 Parameters\n0x000007FEFE037240

more_horiz
Everytihng is running properly... some icons have disapear from the desktop, but the programs are in the start button so...I think everything's right.

descriptionException Processing Message 0x0000013 Parameters\n0x000007FEFE037240 - Page 1 EmptyRe: Exception Processing Message 0x0000013 Parameters\n0x000007FEFE037240

more_horiz
Good to hear. Any more issues to speak of aside from shortcuts being gone?

descriptionException Processing Message 0x0000013 Parameters\n0x000007FEFE037240 - Page 1 EmptyRe: Exception Processing Message 0x0000013 Parameters\n0x000007FEFE037240

more_horiz
I don't think so...
I guess ComboFix is not interfering with anything so I think I will leave it there and, if something happens in the future, we will see...unless you tell me something different.

descriptionException Processing Message 0x0000013 Parameters\n0x000007FEFE037240 - Page 1 EmptyRe: Exception Processing Message 0x0000013 Parameters\n0x000007FEFE037240

more_horiz
It was a typo in ComboFix fixed on 18 February with an update that deleted your desktop shortcuts.

To uninstall ComboFix

  • Click the Start button. Click Run. For Vista: type in Run in the Start search, and click on Run in the results pane.
  • In the field, type in ComboFix /uninstall


(Note: Make sure there's a space between the word ComboFix and the forward-slash.)

  • Then, press Enter, or click OK.
  • This will uninstall ComboFix, delete its folders and files, hides System files and folders, and resets System Restore.

descriptionException Processing Message 0x0000013 Parameters\n0x000007FEFE037240 - Page 1 EmptyRe: Exception Processing Message 0x0000013 Parameters\n0x000007FEFE037240

more_horiz
Finally!!! I know what happens! I was typing "RUN" (in English) instead of "EJECUTAR" (in Spanish, which is my language and my PC's language)...so silly of me...

Ok, so I successfully uninstall ComboFix!!

Thank you very much for all your help and the information!
You and your partners are doing a great and precious job!

descriptionException Processing Message 0x0000013 Parameters\n0x000007FEFE037240 - Page 1 EmptyRe: Exception Processing Message 0x0000013 Parameters\n0x000007FEFE037240

more_horiz
No problem. Glad to help.

descriptionException Processing Message 0x0000013 Parameters\n0x000007FEFE037240 - Page 1 EmptyRe: Exception Processing Message 0x0000013 Parameters\n0x000007FEFE037240

more_horiz
privacy_tip Permissions in this forum:
You cannot reply to topics in this forum