ComboFix 12-07-31.03 - Sachin 02/08/2012 19:21:35.5.8 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.61.1033.18.6038.3674 [GMT 10:00]
Running from: c:\users\Sachin\Desktop\Sachin\System Settings\ComboFix.exe
Command switches used :: c:\users\Sachin\Desktop\Sachin\System Settings\CFScript.txt.txt
AV: AVG Internet Security 2012 *Disabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
FW: AVG Internet Security 2012 *Disabled* {621CC794-9486-F902-D092-0484E8EA828B}
SP: AVG Internet Security 2012 *Disabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\PCDr\5907\Downloads\140239b3-d59a-46fa-b856-17682a46cb44.dll
c:\programdata\PCDr\5907\Downloads\f0fc9c9c-10ba-435b-8365-dadb523644ff.dll
.
.
((((((((((((((((((((((((( Files Created from 2012-07-02 to 2012-08-02 )))))))))))))))))))))))))))))))
.
.
2012-08-02 09:36 . 2012-08-02 09:36 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2012-08-02 09:36 . 2012-08-02 09:36 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-08-01 08:53 . 2012-08-01 09:10 -------- d-----w- c:\users\Sachin\AppData\Local\Ubisoft Game Launcher
2012-08-01 08:53 . 2012-08-01 08:53 -------- d-----w- c:\program files (x86)\Ubisoft
2012-07-31 13:18 . 2012-07-31 13:18 -------- d-----w- c:\program files (x86)\ESET
2012-07-31 10:18 . 2012-07-31 10:23 -------- d-----w- c:\users\Sachin\AppData\Local\Darksiders
2012-07-31 08:39 . 2012-07-31 08:39 -------- d-----w- c:\program files (x86)\THQ
2012-07-28 10:47 . 2012-07-28 10:47 -------- d-----w- c:\users\Sachin\AppData\Roaming\AVG2012
2012-07-28 10:47 . 2012-07-28 10:47 -------- d-----w- c:\users\Sachin\AppData\Local\AVG Secure Search
2012-07-28 10:46 . 2012-07-28 10:47 -------- d-----w- c:\programdata\AVG Secure Search
2012-07-28 10:46 . 2012-07-28 10:46 31080 ----a-w- c:\windows\system32\drivers\avgtpx64.sys
2012-07-28 10:46 . 2012-07-28 10:46 -------- d-----w- c:\program files (x86)\AVG Secure Search
2012-07-28 10:46 . 2012-07-28 10:46 -------- d-----w- c:\program files (x86)\Common Files\AVG Secure Search
2012-07-28 10:46 . 2012-07-28 10:46 -------- d-----w- c:\windows\SysWow64\drivers\AVG
2012-07-28 10:45 . 2012-07-28 10:45 -------- d-----w- C:\$AVG
2012-07-28 10:45 . 2012-08-01 21:42 -------- d-----w- c:\windows\system32\drivers\AVG
2012-07-28 10:45 . 2012-07-28 11:15 -------- d-----w- c:\programdata\AVG2012
2012-07-28 03:43 . 2012-07-28 03:43 388096 ----a-r- c:\users\Sachin\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2012-07-28 03:43 . 2012-07-28 03:43 -------- d-----w- c:\program files (x86)\Trend Micro
2012-07-28 03:16 . 2012-07-02 17:19 59701280 ----a-w- c:\windows\system32\MRT.exe
2012-07-28 02:30 . 2012-07-28 02:30 -------- d-----w- c:\users\Sachin\AppData\Roaming\addpcs
2012-07-28 02:30 . 2012-07-28 02:30 -------- d-----w- c:\program files\Temp File Cleaner
2012-07-28 01:20 . 2012-07-28 01:20 -------- d-----w- c:\users\Sachin\AppData\Roaming\Malwarebytes
2012-07-28 01:19 . 2012-07-28 01:19 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-07-28 01:19 . 2012-07-28 01:19 -------- d-----w- c:\programdata\Malwarebytes
2012-07-28 01:19 . 2012-07-03 03:46 24904 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-07-28 01:12 . 2012-07-28 01:12 -------- d-sh--w- c:\windows\SysWow64\%APPDATA%
2012-07-27 07:08 . 2012-07-27 07:08 -------- d-----w- c:\program files\WinRAR
2012-07-24 07:34 . 2012-07-27 12:58 -------- d-----w- c:\users\Sachin\AppData\Roaming\Tropico 3
2012-07-22 08:33 . 2012-07-22 08:33 -------- d-----w- c:\program files (x86)\WhiteSmoke_US
2012-07-22 08:33 . 2012-07-28 01:24 -------- d-----w- c:\programdata\UpdaterService
2012-07-22 04:35 . 2012-07-22 04:35 -------- d-----w- c:\programdata\Age of Empires 3
2012-07-18 09:40 . 2012-07-18 09:40 -------- d-----w- c:\users\Sachin\AppData\Roaming\The Creative Assembly
2012-07-12 17:04 . 2012-06-12 03:08 3148800 ----a-w- c:\windows\system32\win32k.sys
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-07-27 10:16 . 2012-04-21 23:56 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-07-27 10:16 . 2012-01-19 01:17 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-06-02 22:19 . 2012-06-21 02:40 38424 ----a-w- c:\windows\system32\wups.dll
2012-06-02 22:19 . 2012-06-21 02:40 2428952 ----a-w- c:\windows\system32\wuaueng.dll
2012-06-02 22:19 . 2012-06-21 02:40 57880 ----a-w- c:\windows\system32\wuauclt.exe
2012-06-02 22:19 . 2012-06-21 02:40 44056 ----a-w- c:\windows\system32\wups2.dll
2012-06-02 22:19 . 2012-06-21 02:40 701976 ----a-w- c:\windows\system32\wuapi.dll
2012-06-02 22:15 . 2012-06-21 02:40 2622464 ----a-w- c:\windows\system32\wucltux.dll
2012-06-02 22:15 . 2012-06-21 02:40 99840 ----a-w- c:\windows\system32\wudriver.dll
2012-06-02 05:19 . 2012-06-21 02:40 186752 ----a-w- c:\windows\system32\wuwebv.dll
2012-06-02 05:15 . 2012-06-21 02:40 36864 ----a-w- c:\windows\system32\wuapp.exe
2012-05-11 06:30 . 2012-05-11 06:33 715038 ----a-w- c:\windows\unins000.exe
2012-05-04 11:06 . 2012-06-14 03:30 5559664 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-05-04 10:03 . 2012-06-14 03:30 3968368 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe
2012-05-04 10:03 . 2012-06-14 03:30 3913072 ----a-w- c:\windows\SysWow64\ntoskrnl.exe
.
.
(((((((((((((((((((((((((((((
SnapShot@2012-07-28_03.11.41 )))))))))))))))))))))))))))))))))))))))))
.
- 2012-03-13 05:17 . 2012-02-10 04:13 61248 c:\windows\SysWOW64\OpenCL.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 61248 c:\windows\SysWOW64\OpenCL.dll
+ 2012-08-01 13:27 . 2012-08-01 13:27 14197 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\SoftGrid Client\Icon Cache\icon_ex.dat
- 2012-07-28 03:03 . 2012-07-28 03:03 14197 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\SoftGrid Client\Icon Cache\icon_ex.dat
+ 2012-07-28 01:10 . 2012-08-02 04:48 65536 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2012-07-28 01:10 . 2012-07-28 02:42 65536 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-11-21 03:09 . 2012-08-01 10:43 69558 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2012-08-01 21:41 41980 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2012-03-01 10:28 . 2012-08-01 21:41 15226 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-3155437634-2107215997-1005474797-1001_UserData.bin
- 2012-03-13 05:17 . 2012-02-10 04:13 68928 c:\windows\system32\OpenCL.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 68928 c:\windows\system32\OpenCL.dll
- 2011-04-22 04:35 . 2012-02-10 03:07 63296 c:\windows\system32\nvshext.dll
+ 2011-04-22 04:35 . 2012-02-29 20:59 63296 c:\windows\system32\nvshext.dll
- 2011-04-22 02:35 . 2012-02-10 03:07 55616 c:\windows\system32\nv3dappshextr.dll
+ 2011-04-22 02:35 . 2012-02-29 20:59 55616 c:\windows\system32\nv3dappshextr.dll
+ 2009-07-14 05:30 . 2012-08-01 01:54 86016 c:\windows\system32\DriverStore\infpub.dat
- 2009-07-14 05:30 . 2012-07-02 08:54 86016 c:\windows\system32\DriverStore\infpub.dat
+ 2012-08-01 01:53 . 2012-01-17 12:46 31040 c:\windows\system32\DriverStore\FileRepository\nvhda.inf_amd64_neutral_6c95c0b9e91efef4\nvhdap64.dll
- 2012-03-13 05:17 . 2012-01-17 12:46 31040 c:\windows\system32\DriverStore\FileRepository\nvhda.inf_amd64_neutral_6c95c0b9e91efef4\nvhdap64.dll
- 2012-03-13 05:17 . 2012-01-17 12:45 72512 c:\windows\system32\DriverStore\FileRepository\nvhda.inf_amd64_neutral_6c95c0b9e91efef4\nvapo64v.dll
+ 2012-08-01 01:53 . 2012-01-17 12:45 72512 c:\windows\system32\DriverStore\FileRepository\nvhda.inf_amd64_neutral_6c95c0b9e91efef4\nvapo64v.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 68928 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\OpenCL64.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 61248 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\OpenCL.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 28992 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvpciflt.sys
+ 2012-08-01 01:53 . 2012-03-01 00:02 28992 c:\windows\system32\drivers\nvpciflt.sys
- 2012-03-13 05:17 . 2012-02-10 04:13 28992 c:\windows\system32\drivers\nvpciflt.sys
+ 2012-01-30 18:46 . 2012-01-30 18:46 36944 c:\windows\system32\drivers\avgrkx64.sys
+ 2011-12-23 03:32 . 2011-12-23 03:32 47696 c:\windows\system32\drivers\avgmfx64.sys
+ 2012-04-18 18:50 . 2012-04-18 18:50 28480 c:\windows\system32\drivers\avgidsha.sys
+ 2011-12-23 03:32 . 2011-12-23 03:32 29776 c:\windows\system32\drivers\avgidsfiltera.sys
+ 2011-05-22 15:03 . 2011-05-22 15:03 48992 c:\windows\system32\drivers\avgfwd6a.sys
+ 2009-07-14 04:46 . 2012-08-01 10:42 93232 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
+ 2012-07-31 08:39 . 2012-07-31 08:39 53248 c:\windows\Installer\{B93EEE50-9C8F-45DF-95E4-3D85A6E242F3}\ARPPRODUCTICON.exe
+ 2012-08-01 08:51 . 2012-08-01 08:51 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
- 2012-07-27 12:43 . 2012-07-27 12:43 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
- 2012-07-27 12:43 . 2012-07-27 12:43 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2012-08-01 08:51 . 2012-08-01 08:51 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 4096 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvdetx.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 4096 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvdet.dll
+ 2012-01-19 03:10 . 2012-08-01 13:27 1859 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Bluetooth\bthservsdp.dat
- 2012-01-19 03:10 . 2012-07-28 03:03 1859 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Bluetooth\bthservsdp.dat
- 2012-07-28 03:04 . 2012-07-28 03:04 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-08-01 21:38 . 2012-08-01 21:38 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-08-01 21:38 . 2012-08-01 21:38 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2012-07-28 03:04 . 2012-07-28 03:04 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2012-01-19 02:29 . 2012-02-10 04:13 812352 c:\windows\SysWOW64\nvumdshim.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 812352 c:\windows\SysWOW64\nvumdshim.dll
- 2012-02-09 10:05 . 2012-02-09 10:05 416064 c:\windows\SysWOW64\nvStreaming.exe
+ 2012-02-29 03:26 . 2012-02-29 03:26 416064 c:\windows\SysWOW64\nvStreaming.exe
+ 2012-08-01 01:53 . 2012-03-01 00:02 215360 c:\windows\SysWOW64\nvinit.dll
- 2012-01-19 02:28 . 2012-02-10 04:13 215360 c:\windows\SysWOW64\nvinit.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 301376 c:\windows\SysWOW64\nvdecodemft.dll
- 2012-03-13 05:17 . 2012-02-10 04:13 301376 c:\windows\SysWOW64\nvdecodemft.dll
- 2012-01-19 01:11 . 2012-02-10 04:13 812352 c:\windows\SysWOW64\NV\igdumdx32.dll
+ 2012-01-19 01:11 . 2012-03-01 00:02 812352 c:\windows\SysWOW64\NV\igdumdx32.dll
- 2012-01-19 01:11 . 2012-02-10 04:13 812352 c:\windows\SysWOW64\NV\igd10umd32.dll
+ 2012-01-19 01:11 . 2012-03-01 00:02 812352 c:\windows\SysWOW64\NV\igd10umd32.dll
+ 2009-07-14 04:54 . 2012-08-02 04:48 753664 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2012-07-28 02:42 753664 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2012-07-28 02:42 393216 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 04:54 . 2012-08-02 04:48 393216 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2012-03-01 10:30 . 2012-08-02 08:26 352894 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin
- 2009-07-14 02:36 . 2012-07-03 08:06 665232 c:\windows\system32\perfh009.dat
+ 2009-07-14 02:36 . 2012-07-28 10:35 665232 c:\windows\system32\perfh009.dat
+ 2009-07-14 02:36 . 2012-07-28 10:35 125678 c:\windows\system32\perfc009.dat
- 2009-07-14 02:36 . 2012-07-03 08:06 125678 c:\windows\system32\perfc009.dat
- 2011-04-22 02:35 . 2012-02-10 03:07 889664 c:\windows\system32\nvvsvc.exe
+ 2011-04-22 02:35 . 2012-02-29 20:59 889664 c:\windows\system32\nvvsvc.exe
+ 2012-01-19 02:29 . 2012-03-01 00:02 962368 c:\windows\system32\nvumdshimx.dll
- 2012-01-19 02:29 . 2012-02-10 04:13 962368 c:\windows\system32\nvumdshimx.dll
+ 2011-04-22 02:35 . 2012-02-29 20:59 118080 c:\windows\system32\nvmctray.dll
- 2011-04-22 02:35 . 2012-02-10 03:07 118080 c:\windows\system32\nvmctray.dll
- 2012-01-19 02:28 . 2012-02-10 04:13 260416 c:\windows\system32\nvinitx.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 260416 c:\windows\system32\nvinitx.dll
- 2012-03-13 05:17 . 2012-02-10 04:13 364352 c:\windows\system32\nvdecodemft.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 364352 c:\windows\system32\nvdecodemft.dll
- 2011-04-22 02:35 . 2012-02-10 03:07 849728 c:\windows\system32\nv3dappshext.dll
+ 2011-04-22 02:35 . 2012-02-29 20:59 849728 c:\windows\system32\nv3dappshext.dll
+ 2012-01-19 01:11 . 2012-03-01 00:02 962368 c:\windows\system32\NV\igdumd64.dll
- 2012-01-19 01:11 . 2012-02-10 04:13 962368 c:\windows\system32\NV\igdumd64.dll
- 2012-01-19 01:11 . 2012-02-10 04:13 962368 c:\windows\system32\NV\igd10umd64.dll
+ 2012-01-19 01:11 . 2012-03-01 00:02 962368 c:\windows\system32\NV\igd10umd64.dll
+ 2009-07-14 05:30 . 2012-08-01 01:54 239616 c:\windows\system32\DriverStore\infstrng.dat
- 2009-07-14 05:30 . 2012-07-02 08:54 239616 c:\windows\system32\DriverStore\infstrng.dat
+ 2009-07-14 05:30 . 2012-08-01 01:54 143360 c:\windows\system32\DriverStore\infstor.dat
- 2009-07-14 05:30 . 2012-07-02 08:54 143360 c:\windows\system32\DriverStore\infstor.dat
- 2012-03-13 05:17 . 2012-01-17 12:45 188224 c:\windows\system32\DriverStore\FileRepository\nvhda.inf_amd64_neutral_6c95c0b9e91efef4\nvhda64v.sys
+ 2012-08-01 01:53 . 2012-01-17 12:45 188224 c:\windows\system32\DriverStore\FileRepository\nvhda.inf_amd64_neutral_6c95c0b9e91efef4\nvhda64v.sys
+ 2012-08-01 01:53 . 2012-01-17 12:45 156480 c:\windows\system32\DriverStore\FileRepository\nvhda.inf_amd64_neutral_6c95c0b9e91efef4\nvhda64.sys
- 2012-03-13 05:17 . 2012-01-17 12:45 156480 c:\windows\system32\DriverStore\FileRepository\nvhda.inf_amd64_neutral_6c95c0b9e91efef4\nvhda64.sys
+ 2012-08-01 01:53 . 2012-03-01 00:02 962368 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvumdshimx.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 812352 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvumdshim.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 310592 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvml.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 249152 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvkflt.sys
+ 2012-08-01 01:53 . 2012-03-01 00:02 260416 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvinitx.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 215360 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvinit.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 201024 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvidia-smi.exe
+ 2012-08-01 01:53 . 2012-03-01 00:02 202752 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvdxgiwrapx.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 182080 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvdxgiwrap.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 325888 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvdrsdb.bin
+ 2012-08-01 01:53 . 2012-03-01 00:02 301376 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvdecodemft32.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 364352 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvdecodemft.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 261120 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\Nvd3d9wrapx.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 236352 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\Nvd3d9wrap.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 224064 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\dbInstaller.exe
- 2012-03-13 05:17 . 2012-02-10 04:13 249152 c:\windows\system32\drivers\nvkflt.sys
+ 2012-08-01 01:53 . 2012-03-01 00:02 249152 c:\windows\system32\drivers\nvkflt.sys
+ 2012-03-18 19:17 . 2012-03-18 19:17 383808 c:\windows\system32\drivers\avgtdia.sys
+ 2012-02-21 19:25 . 2012-02-21 19:25 289872 c:\windows\system32\drivers\avgldx64.sys
+ 2011-12-23 03:31 . 2011-12-23 03:31 124496 c:\windows\system32\drivers\avgidsdrivera.sys
+ 2009-07-14 05:01 . 2012-08-01 13:27 519832 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
- 2009-07-14 05:01 . 2012-07-28 03:03 519832 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2012-07-31 08:39 . 2012-07-31 08:39 221184 c:\windows\Installer\{B93EEE50-9C8F-45DF-95E4-3D85A6E242F3}\NewShortcut3_017E5C45DD354BA28142E7E72C99A9D0.exe
+ 2012-07-31 08:39 . 2012-07-31 08:39 221184 c:\windows\Installer\{B93EEE50-9C8F-45DF-95E4-3D85A6E242F3}\NewShortcut2_C143FA2028B64CC890A6E52B0DA5D475.exe
+ 2012-07-31 08:39 . 2012-07-31 08:39 221184 c:\windows\Installer\{B93EEE50-9C8F-45DF-95E4-3D85A6E242F3}\NewShortcut1_DD5F286D70C44700989D754E99D800A3.exe
+ 2012-07-31 08:39 . 2012-07-31 08:39 221184 c:\windows\Installer\{B93EEE50-9C8F-45DF-95E4-3D85A6E242F3}\Darksiders_Comic.p_3E05F0DCF4C74476BB6ADA8EB89D7388.exe
- 2012-07-27 12:43 . 2012-07-27 12:43 223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
+ 2012-08-01 08:51 . 2012-08-01 08:51 223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
+ 2012-08-01 08:51 . 2012-08-01 08:51 178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
- 2012-07-27 12:43 . 2012-07-27 12:43 178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
- 2012-07-27 12:43 . 2012-07-27 12:43 364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
+ 2012-08-01 08:51 . 2012-08-01 08:51 364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
+ 2012-08-01 08:51 . 2012-08-01 08:51 159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
- 2012-07-27 12:43 . 2012-07-27 12:43 159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
- 2012-07-27 12:43 . 2012-07-27 12:43 145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
+ 2012-08-01 08:51 . 2012-08-01 08:51 145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
- 2012-07-27 12:43 . 2012-07-27 12:43 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-01 08:51 . 2012-08-01 08:51 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2012-07-27 12:43 . 2012-07-27 12:43 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-01 08:51 . 2012-08-01 08:51 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2012-07-27 12:43 . 2012-07-27 12:43 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-01 08:51 . 2012-08-01 08:51 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2012-07-27 12:43 . 2012-07-27 12:43 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-01 08:51 . 2012-08-01 08:51 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-01 08:51 . 2012-08-01 08:51 577024 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2012-07-27 12:43 . 2012-07-27 12:43 577024 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2012-07-27 12:43 . 2012-07-27 12:43 576000 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-01 08:51 . 2012-08-01 08:51 576000 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2012-07-27 12:43 . 2012-07-27 12:43 567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-01 08:51 . 2012-08-01 08:51 567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-01 08:51 . 2012-08-01 08:51 563712 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2012-07-27 12:43 . 2012-07-27 12:43 563712 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-01 08:51 . 2012-08-01 08:51 473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
- 2012-07-27 12:43 . 2012-07-27 12:43 473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 7713088 c:\windows\SysWOW64\nvwgf2um.dll
- 2012-03-13 05:17 . 2012-02-10 04:13 7713088 c:\windows\SysWOW64\nvwgf2um.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 2517312 c:\windows\SysWOW64\nvcuvid.dll
- 2012-03-13 05:17 . 2012-02-10 04:13 2517312 c:\windows\SysWOW64\nvcuvid.dll
- 2012-03-13 05:17 . 2012-02-10 04:13 2437440 c:\windows\SysWOW64\nvcuvenc.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 2437440 c:\windows\SysWOW64\nvcuvenc.dll
- 2012-03-13 05:17 . 2012-02-10 04:13 5892928 c:\windows\SysWOW64\nvcuda.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 5892928 c:\windows\SysWOW64\nvcuda.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 2301248 c:\windows\SysWOW64\nvapi.dll
- 2012-01-19 02:28 . 2012-02-10 04:13 2301248 c:\windows\SysWOW64\nvapi.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 9717568 c:\windows\system32\nvwgf2umx.dll
- 2012-03-13 05:17 . 2012-02-10 04:13 9717568 c:\windows\system32\nvwgf2umx.dll
+ 2011-04-22 02:35 . 2012-02-29 20:59 2561856 c:\windows\system32\nvsvcr.dll
- 2011-04-22 02:35 . 2012-02-10 03:07 2561856 c:\windows\system32\nvsvcr.dll
- 2011-04-22 02:35 . 2012-02-10 03:14 3089728 c:\windows\system32\nvsvc64.dll
+ 2011-04-22 02:35 . 2012-02-29 21:00 3089728 c:\windows\system32\nvsvc64.dll
- 2012-03-13 05:17 . 2012-02-10 04:13 1466176 c:\windows\system32\nvgenco64.dll
+ 2012-03-13 05:17 . 2012-03-01 00:02 1466176 c:\windows\system32\nvgenco64.dll
- 2012-03-13 05:17 . 2012-02-10 04:13 1737536 c:\windows\system32\nvdispco64.dll
+ 2012-03-13 05:17 . 2012-03-01 00:02 1737536 c:\windows\system32\nvdispco64.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 2672448 c:\windows\system32\nvcuvid.dll
- 2012-03-13 05:17 . 2012-02-10 04:13 2672448 c:\windows\system32\nvcuvid.dll
- 2012-03-13 05:17 . 2012-02-10 04:13 2872640 c:\windows\system32\nvcuvenc.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 2872640 c:\windows\system32\nvcuvenc.dll
- 2012-03-13 05:17 . 2012-02-10 04:13 8008000 c:\windows\system32\nvcuda.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 8008000 c:\windows\system32\nvcuda.dll
+ 2011-04-22 02:35 . 2012-02-29 21:00 6074176 c:\windows\system32\nvcpl.dll
- 2011-04-22 02:35 . 2012-02-10 03:14 6074176 c:\windows\system32\nvcpl.dll
+ 2011-04-22 04:35 . 2012-02-29 20:59 2515790 c:\windows\system32\nvcoproc.bin
+ 2012-01-19 02:28 . 2012-03-01 00:02 2660160 c:\windows\system32\nvapi64.dll
- 2012-01-19 02:28 . 2012-02-10 04:13 2660160 c:\windows\system32\nvapi64.dll
- 2012-03-13 05:17 . 2012-01-17 12:45 1451840 c:\windows\system32\DriverStore\FileRepository\nvhda.inf_amd64_neutral_6c95c0b9e91efef4\nvgenco64.dll
+ 2012-08-01 01:53 . 2012-01-17 12:45 1451840 c:\windows\system32\DriverStore\FileRepository\nvhda.inf_amd64_neutral_6c95c0b9e91efef4\nvgenco64.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 9717568 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvwgf2umx.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 7713088 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvwgf2um.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 1466176 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvgenco64.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 1737536 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvdispco64.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 2517312 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvcuvid32.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 2672448 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvcuvid.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 2872640 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvcuvenc64.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 2437440 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvcuvenc.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 5892928 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvcuda32.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 8008000 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvcuda.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 2660160 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvapi64.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 2301248 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvapi.dll
+ 2009-07-14 04:45 . 2012-08-01 02:01 7187735 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat
- 2009-07-14 04:45 . 2012-07-14 00:19 7187735 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat
+ 2012-06-20 14:49 . 2012-08-01 13:27 1078256 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat
+ 2012-03-02 17:26 . 2012-08-01 01:56 8135120 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-3155437634-2107215997-1005474797-1001-12288.dat
- 2012-03-02 17:26 . 2012-07-28 02:36 8135120 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-3155437634-2107215997-1005474797-1001-12288.dat
+ 2009-07-11 16:35 . 2009-07-11 16:35 2736640 c:\windows\Installer\234b55a.msi
+ 2012-08-01 08:51 . 2012-08-01 08:51 2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2012-07-27 12:43 . 2012-07-27 12:43 2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2012-07-27 12:43 . 2012-07-27 12:43 2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-01 08:51 . 2012-08-01 08:51 2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 19444544 c:\windows\SysWOW64\nvoglv32.dll
- 2012-01-19 02:28 . 2012-02-10 04:13 15009600 c:\windows\SysWOW64\nvd3dum.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 15009600 c:\windows\SysWOW64\nvd3dum.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 17543488 c:\windows\SysWOW64\nvcompiler.dll
- 2012-03-13 05:17 . 2012-02-10 04:13 17543488 c:\windows\SysWOW64\nvcompiler.dll
+ 2012-01-19 01:11 . 2012-03-01 00:02 19444544 c:\windows\SysWOW64\NV\ig4icd32.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 25543488 c:\windows\system32\nvoglv64.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 17642816 c:\windows\system32\nvd3dumx.dll
- 2012-03-13 05:17 . 2012-02-10 04:13 17642816 c:\windows\system32\nvd3dumx.dll
- 2012-03-13 05:17 . 2012-02-10 04:13 25222976 c:\windows\system32\nvcompiler.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 25222976 c:\windows\system32\nvcompiler.dll
+ 2012-01-19 01:11 . 2012-03-01 00:02 25543488 c:\windows\system32\NV\ig4icd64.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 25543488 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvoglv64.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 19444544 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvoglv32.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 13626688 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvlddmkm.sys
+ 2012-08-01 01:53 . 2012-03-01 00:02 17642816 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvd3dumx.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 15009600 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvd3dum.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 71582120 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\NvCplSetupInt.exe
+ 2012-08-01 01:53 . 2012-03-01 00:02 17543488 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvcompiler32.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 25222976 c:\windows\system32\DriverStore\FileRepository\nvdm.inf_amd64_neutral_31cccaa0c50bc5cd\nvcompiler.dll
+ 2012-08-01 01:53 . 2012-03-01 00:02 13626688 c:\windows\system32\drivers\nvlddmkm.sys
+ 2012-03-02 17:26 . 2012-08-01 13:27 26559916 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-3155437634-2107215997-1005474797-1001-8192.dat
+ 2012-02-13 16:57 . 2012-02-13 16:57 30412800 c:\windows\Installer\5e97c96.msi
+ 2012-07-31 08:39 . 2012-07-31 08:39 161944064 c:\windows\Installer\234b55f.msi
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{656461ef-40f6-4115-9ff1-bced9812ccbb}]
c:\program files (x86)\BitTorrentBar2\prxtbBitT.dll [BU]
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
2012-07-28 10:46 2086496 ----a-w- c:\program files (x86)\AVG Secure Search\12.1.0.21\AVG Secure Search_toolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{656461ef-40f6-4115-9ff1-bced9812ccbb}"= "c:\program files (x86)\BitTorrentBar2\prxtbBitT.dll" [BU]
"{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files (x86)\AVG Secure Search\12.1.0.21\AVG Secure Search_toolbar.dll" [2012-07-28 2086496]
.
[HKEY_CLASSES_ROOT\clsid\{656461ef-40f6-4115-9ff1-bced9812ccbb}]
.
[HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj]
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2012-02-15 00:32 94208 ----a-w- c:\users\Sachin\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2012-02-15 00:32 94208 ----a-w- c:\users\Sachin\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2012-02-15 00:32 94208 ----a-w- c:\users\Sachin\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Steam"="c:\program files (x86)\Steam\steam.exe" [2012-03-01 1242448]
"WirelessManager"="c:\program files (x86)\Dell\Dell Mobile Broadband Manager\WirelessManager.exe" [2010-07-28 194600]
"Facebook Update"="c:\users\Sachin\AppData\Local\Facebook\Update\FacebookUpdate.exe" [2012-07-12 138096]
"MobileDocuments"="c:\program files (x86)\Common Files\Apple\Internet Services\ubd.exe" [2012-02-23 59240]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"UpdReg"="c:\windows\UpdReg.EXE" [2000-05-10 90112]
"FATrayAlert"="c:\program files (x86)\Sensible Vision\Fast Access\FATrayMon.exe" [2011-08-19 96240]
"Dell Webcam Central"="c:\program files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" [2011-04-13 503942]
"Dell DataSafe Online"="c:\program files (x86)\Dell\Dell Datasafe Online\NOBuClient.exe" [2010-08-26 1117528]
"RoxWatchTray"="c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe" [2010-11-25 240112]
"Desktop Disc Tool"="c:\program files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe" [2010-11-17 514544]
"NeroLauncher"="c:\program files (x86)\Nero\SyncUP\NeroLauncher.exe" [2012-02-06 66872]
"AccuWeatherWidget"="c:\program files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe" [2012-02-01 968048]
"VolPanel"="c:\program files (x86)\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe" [2009-05-04 241789]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"DivXUpdate"="c:\program files (x86)\DivX\DivX Update\DivXUpdate.exe" [2011-07-28 1259376]
"HPUsageTrackingLEDM"="c:\program files (x86)\HP\HP UT LEDM\bin\hppusg.exe" [2009-08-04 30264]
"SwitchBoard"="c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"AdobeCS6ServiceManager"="c:\program files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" [2012-03-09 1073312]
"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-05-30 59280]
"amd_dc_opt"="c:\program files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe" [2008-07-22 77824]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-01-17 252296]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2012-04-18 421888]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2012-06-07 421776]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-07-03 462920]
"FAStartup"="" [BU]
"AVG_TRAY"="c:\program files (x86)\AVG\AVG2012\avgtray.exe" [2012-04-04 2587008]
"vProt"="c:\program files (x86)\AVG Secure Search\vprot.exe" [2012-07-28 1147488]
.
c:\users\Sachin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Sachin\AppData\Roaming\Dropbox\bin\Dropbox.exe [2012-5-25 27112840]
Intel(R) Turbo Boost Technology Monitor 2.0.lnk - c:\program files\Intel\TurboBoost\SignalIslandUi.exe [2010-11-30 204288]
OneNote 2010 Screen Clipper and Launcher.lnk - c:\program files (x86)\Microsoft Office\Office14\ONENOTEM.EXE [2010-12-21 227712]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Digital Line Detect.lnk - c:\program files (x86)\Digital Line Detect\DLG.exe [2012-3-3 50688]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\FastAccess]
2011-08-19 17:34 153584 ----a-w- c:\program files (x86)\Sensible Vision\Fast Access\FALogNot.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0c:\progra~2\AVG\AVG2012\avgrsa.exe /sync /restart
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Notification Packages REG_MULTI_SZ scecli FAPassSync
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
R2 AVGIDSAgent;AVGIDSAgent;c:\program files (x86)\AVG\AVG2012\avgidsagent.exe [2012-07-04 5160568]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 RoxWatch12;Roxio Hard Drive Watcher 12;c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe [2010-11-25 219632]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-06-07 160944]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-27 250056]
R3 AMPPALP;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Protocol;c:\windows\system32\DRIVERS\amppal.sys [2011-10-19 195072]
R3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2012-03-03 79360]
R3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2012-01-19 79360]
R3 dc3d;MS Hardware Device Detection Driver;c:\windows\system32\DRIVERS\dc3d.sys [2011-08-01 52584]
R3 FACAP;facap, FastAccess Video Capture;c:\windows\system32\DRIVERS\facap.sys [2008-09-25 238848]
R3 Impcd;Impcd;c:\windows\system32\drivers\Impcd.sys [2010-02-27 158976]
R3 intaud_WaveExtensible;Intel WiDi Audio Device;c:\windows\system32\drivers\intelaud.sys [2011-05-17 34200]
R3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys [2010-12-15 174168]
R3 mvusbews;USB EWS Device;c:\windows\system32\Drivers\mvusbews.sys [2010-03-06 20480]
R3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;c:\program files\Intel\WiFi\bin\PanDhcpDns.exe [2011-11-01 340240]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [2012-01-17 188224]
R3 NvStUSB;NVIDIA Stereoscopic 3D USB driver;c:\windows\system32\drivers\nvstusb.sys [2010-12-12 121960]
R3 Point64;Microsoft IntelliPoint Filter Driver;c:\windows\system32\DRIVERS\point64.sys [2011-08-01 45416]
R3 RoxMediaDB12OEM;RoxMediaDB12OEM;c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe [2010-11-25 1116656]
R3 Sound Blaster X-Fi MB Licensing Service;Sound Blaster X-Fi MB Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\XMBLicensing.exe [2012-01-19 79360]
R3 SwitchBoard;Adobe SwitchBoard;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2012-03-03 1255736]
R3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam64.sys [2008-05-06 14464]
R3 WSDPrintDevice;WSD Print Support via UMB;c:\windows\system32\DRIVERS\WSDPrint.sys [2009-07-14 23040]
R3 WSDScan;WSD Scan Support via UMB;c:\windows\system32\DRIVERS\WSDScan.sys [2009-07-14 25088]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]
S0 AVGIDSHA;AVGIDSHA;c:\windows\system32\DRIVERS\avgidsha.sys [2012-04-18 28480]
S0 Avgrkx64;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx64.sys [2012-01-30 36944]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [2012-03-01 28992]
S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys [2010-03-19 55856]
S0 stdcfltn;Disk Class Filter Driver for Accelerometer;c:\windows\system32\DRIVERS\stdcfltn.sys [2010-08-20 21616]
S1 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwd6a.sys [2011-05-22 48992]
S1 Avgldx64;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx64.sys [2012-02-21 289872]
S1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\DRIVERS\avgmfx64.sys [2011-12-23 47696]
S1 Avgtdia;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdia.sys [2012-03-18 383808]
S1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx64.sys [2012-07-28 31080]
S1 nvkflt;nvkflt;c:\windows\system32\DRIVERS\nvkflt.sys [2012-03-01 249152]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S2 AERTFilters;Andrea RT Filters Service;c:\program files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]
S2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Service;c:\program files\Intel\BluetoothHS\BTHSAmpPalService.exe [2011-10-19 661504]
S2 avgfws;AVG Firewall;c:\program files (x86)\AVG\AVG2012\avgfws.exe [2012-06-12 2321560]
S2 avgwd;AVG WatchDog;c:\program files (x86)\AVG\AVG2012\avgwdsvc.exe [2012-02-13 193288]
S2 Bluetooth Device Monitor;Bluetooth Device Monitor;c:\program files (x86)\Intel\Bluetooth\devmonsrv.exe [2011-10-18 936272]
S2 Bluetooth OBEX Service;Bluetooth OBEX Service;c:\program files (x86)\Intel\Bluetooth\obexsrv.exe [2011-10-18 1001808]
S2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) 3.0 + High Speed Security Service;c:\program files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2011-10-21 135440]
S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2012-01-04 822624]
S2 FAService;FAService;c:\program files (x86)\Sensible Vision\Fast Access\FAService.exe [2011-08-19 2451440]
S2 HP LaserJet Service;HP LaserJet Service;c:\program files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [2009-06-24 136704]
S2 HPSIService;HP SI Service;c:\windows\system32\HPSIsvc.exe [2010-04-07 127800]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-07-03 655944]
S2 NAUpdate;Nero Update;c:\program files (x86)\Nero\Update\NASvc.exe [2011-11-25 687400]
S2 NOBU;Dell DataSafe Online;c:\program files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe SERVICE [x]
S2 NvtlService;NovaCore SDK Service;c:\program files (x86)\Novatel Wireless\Novacore\Server\NvtlSrvr.exe [2009-12-29 83456]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-03-01 2348352]
S2 QDLService2kDell;Qualcomm Gobi 2000 Download Service (Dell);c:\program files (x86)\QUALCOMM\QDLService2k\QDLService2kDell.exe [2010-06-25 331512]
S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-09-30 508776]
S2 SftService;SoftThinks Agent Service;c:\program files (x86)\Dell DataSafe Local Backup\sftservice.EXE [2011-09-22 1692480]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-02-29 382272]
S2 TurboB;Turbo Boost UI Monitor driver;c:\windows\system32\DRIVERS\TurboB.sys [2010-11-29 16120]
S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-21 2656280]
S2 vToolbarUpdater12.1.5;vToolbarUpdater12.1.5;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\12.1.5\ToolbarUpdater.exe [2012-07-28 830048]
S2 WMCoreService;Mobile Broadband Service;c:\program files (x86)\Dell\Dell WWAN\WMCore\mini_WMCore.exe servicemode [x]
S3 Acceler;Accelerometer Service;c:\windows\system32\DRIVERS\Accelern.sys [2010-12-13 27760]
S3 AMPPAL;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Virtual Adapter;c:\windows\system32\DRIVERS\AMPPAL.sys [2011-10-19 195072]
S3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdrivera.sys [2011-12-23 124496]
S3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\DRIVERS\avgidsfiltera.sys [2011-12-23 29776]
S3 Bluetooth Media Service;Bluetooth Media Service;c:\program files (x86)\Intel\Bluetooth\mediasrv.exe [2011-10-18 1354064]
S3 btmaudio;Intel Bluetooth Audio Service;c:\windows\system32\drivers\btmaud.sys [2011-05-19 51712]
S3 btmaux;Intel Bluetooth Auxiliary Service;c:\windows\system32\DRIVERS\btmaux.sys [2011-08-29 53760]
S3 btmhsf;btmhsf;c:\windows\system32\DRIVERS\btmhsf.sys [2011-10-10 288768]
S3 CtClsFlt;Creative Camera Class Upper Filter Driver;c:\windows\system32\DRIVERS\CtClsFlt.sys [2011-01-20 176096]
S3 iBtFltCoex;iBtFltCoex;c:\windows\system32\DRIVERS\iBtFltCoex.sys [2011-10-11 59904]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-16 317440]
S3 iwdbus;IWD Bus Enumerator;c:\windows\system32\DRIVERS\iwdbus.sys [2011-05-17 25496]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-07-03 24904]
S3 MEIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
S3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit;c:\windows\system32\DRIVERS\NETwNs64.sys [2011-12-02 8615936]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2011-02-10 82432]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2011-02-10 181760]
S3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 qicflt;upper Device Filter Driver;c:\windows\system32\DRIVERS\qicflt.sys [2010-07-13 29288]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2011-02-17 428136]
S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys [2011-09-30 764264]
S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys [2011-09-30 268648]
S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys [2011-09-30 25960]
S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys [2011-09-30 22376]
S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-09-30 219496]
S3 TurboBoost;Intel(R) Turbo Boost Technology Monitor 2.0;c:\program files\Intel\TurboBoost\TurboBoost.exe [2010-11-29 149504]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
.
.
Contents of the 'Scheduled Tasks' folder
.
2012-08-02 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-21 10:16]
.
2012-08-02 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3155437634-2107215997-1005474797-1001Core.job
- c:\users\Sachin\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-04-09 02:13]
.
2012-08-02 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3155437634-2107215997-1005474797-1001UA.job
- c:\users\Sachin\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-04-09 02:13]
.
2012-08-02 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3155437634-2107215997-1005474797-1001Core.job
- c:\users\Sachin\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-28 05:55]
.
2012-08-02 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3155437634-2107215997-1005474797-1001UA.job
- c:\users\Sachin\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-28 05:55]
.
2012-08-02 c:\windows\Tasks\PCDoctorBackgroundMonitorTask.job
- c:\program files\Dell Support Center\uaclauncher.exe [2012-04-13 06:11]
.
2012-08-02 c:\windows\Tasks\SDMsgUpdate (TE).job
- c:\progra~2\SMARTD~1\Messages\SDNotify.exe [2012-05-01 18:22]
.
2012-08-02 c:\windows\Tasks\SystemToolsDailyTest.job
- c:\program files\Dell Support Center\uaclauncher.exe [2012-04-13 06:11]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2012-02-15 00:32 97792 ----a-w- c:\users\Sachin\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2012-02-15 00:32 97792 ----a-w- c:\users\Sachin\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2012-02-15 00:32 97792 ----a-w- c:\users\Sachin\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2012-02-15 00:32 97792 ----a-w- c:\users\Sachin\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTMasterOnOffMonitor"="CTMWatch.dll StartCTMasterOnOffWatch" [X]
"SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2011-02-18 6611048]
"RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2011-01-18 2188904]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-08-05 167704]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-08-05 392472]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-08-05 416024]
"FreeFallProtection"="c:\program files (x86)\STMicroelectronics\AccelerometerP11\FF_Protection.exe" [2010-12-17 686704]
"BTMTrayAgent"="c:\program files (x86)\Intel\Bluetooth\btmshell.dll" [2011-10-18 10357008]
"IntelPAN"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2011-11-01 1935120]
"IntelTBRunOnce"="wscript.exe" [2009-07-14 168960]
"RunDLLEntry"="c:\windows\system32\AmbRunE.dll" [2009-02-26 17920]
"Stage Remote"="c:\program files (x86)\Dell\Stage Remote\StageRemote.exe" [2011-06-28 2022976]
"DellStage"="c:\program files (x86)\Dell Stage\Dell Stage\stage_primary.exe" [2012-02-01 2195824]
"IntelliPoint"="c:\program files\Microsoft IntelliPoint\ipoint.exe" [2011-08-01 2417032]
"AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2012-04-03 446392]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x1
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll c:\windows\System32\nvinitx.dll
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page =
hxxp://isearch.avg.com/?cid={0A75AA03-01A3-4570-B3E4-6D3E5BDA9871}&mid=4c3e86adb04247d0ae3c9dc9d57bd75b-df72869919b6cdb8411562d30907de0038b31e28&lang=en&ds=AVG&pr=pr&d=2012-04-10 14:02&v=11.1.0.12&sap=hp
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = *.local
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 192.168.0.1
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\12.1.5\ViProtocol.dll
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-Locked - (no file)
WebBrowser-{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - (no file)
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-3155437634-2107215997-1005474797-1001\Software\SecuROM\License information*]
"datasecu"=hex:ea,59,db,be,2d,5f,37,d6,46,cc,a9,08,16,65,14,0b,d8,f0,fb,e9,50,
39,d0,bc,64,62,25,5b,37,9f,91,be,ea,90,6d,7e,81,6e,bd,2f,5d,df,8d,65,83,dc,\
"rkeysecu"=hex:db,3b,c2,23,52,43,a6,c8,b7,58,d9,1d,26,f8,6d,43
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_268_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_268_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_268.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_268.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_268.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_268.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2012-08-02 20:10:11
ComboFix-quarantined-files.txt 2012-08-02 10:10
ComboFix2.txt 2012-07-30 11:36
ComboFix3.txt 2012-07-29 14:09
ComboFix4.txt 2012-07-28 03:15
.
Pre-Run: 337,109,045,248 bytes free
Post-Run: 337,059,074,048 bytes free
.
- - End Of File - - 20BD1BD7460C903B2BED286B3BA812B8