ComboFix 09-03-27.02 - dekoh 2009-03-28 17:42:44.3 - NTFSx86
Microsoft
Windows Vista
Home Premium 6.0.6001.1.1252.1.1033.18.1918.856 [GMT 0:00]
Running from: c:\users\dekoh\Pictures\2000-01 (Jan)\ComboFix.exe
Command switches used :: c:\users\dekoh\Desktop\cfscript.txt
* Created a new restore point
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\program files\PremierOpinion
c:\program files\PremierOpinion\components\pmxg.dll
c:\program files\PremierOpinion\install.rdf
c:\program files\PremierOpinion\pmls.dll
c:\program files\PremierOpinion\pmoci.bin
c:\program files\PremierOpinion\pmph.dll
c:\program files\PremierOpinion\pmropn.exe
c:\program files\PremierOpinion\pmservice.exe
c:\program files\PremierOpinion\pmxf.dll
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Service_PremierOpinion
((((((((((((((((((((((((( Files Created from 2009-02-28 to 2009-03-28 )))))))))))))))))))))))))))))))
.
2009-03-28 15:55 . 2009-03-28 15:55 d-------- c:\program files\Trend Micro
2009-03-28 11:22 . 2009-03-28 11:22 d-------- c:\program files\Microsoft Windows OneCare Live
2009-03-27 18:00 . 2009-03-27 18:00 d-------- c:\program files\Electronic Arts
2009-03-27 09:40 . 2009-03-27 09:40 d-------- c:\program files\Common Files\Windows Live
2009-03-26 15:28 . 2007-08-08 12:07 101,504 --a------ c:\windows\System32\drivers\ewusbmdm.sys
2009-03-26 15:28 . 2007-08-08 12:06 23,424 --a------ c:\windows\System32\drivers\ewdcsc.sys
2009-03-26 15:26 . 2009-03-26 15:26 d-------- c:\program files\Huawei technologies
2009-03-18 18:26 . 2008-12-16 03:29 8,147,456 --a------ c:\windows\System32\wmploc.DLL
2009-03-18 18:26 . 2009-02-09 03:10 2,033,152 --a------ c:\windows\System32\win32k.sys
2009-03-18 18:26 . 2008-11-27 04:43 268,288 --a------ c:\windows\System32\schannel.dll
2009-03-18 18:26 . 2008-12-16 05:31 7,680 --a------ c:\windows\System32\spwmp.dll
2009-03-18 18:26 . 2008-12-16 05:31 4,096 --a------ c:\windows\System32\msdxm.ocx
2009-03-18 18:26 . 2008-12-16 05:31 4,096 --a------ c:\windows\System32\dxmasf.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-03-28 15:23 --------- d-----w c:\program files\REALTEK USB Wireless LAN Driver and Utility
2009-03-28 14:52 --------- d-----w c:\programdata\Google Updater
2009-03-28 14:15 --------- d-----w c:\program files\Common Files\Symantec Shared
2009-03-28 11:14 --------- d-----w c:\programdata\Electronic Arts
2009-03-28 11:00 --------- d-----w c:\program files\Common Files\PX Storage Engine
2009-03-26 12:27 --------- d-----w c:\program files\Windows Mail
2009-02-28 11:55 --------- d-----w c:\program files\Microsoft Silverlight
2009-02-26 17:13 --------- d-----w c:\program files\Google
2009-02-21 19:47 --------- d-----w c:\program files\Microsoft Games
2009-02-21 19:37 --------- d-----w c:\users\dekoh\AppData\Roaming\Microsoft Games
2009-02-21 19:37 --------- d-----w c:\programdata\Microsoft Games
2009-02-09 18:57 --------- d-----w c:\program files\Unity
2009-02-09 18:17 --------- d-----w c:\program files\Navilog1
2009-02-09 17:16 --------- d-----w c:\program files\Malwarebytes' Anti-Malware
2009-02-09 17:11 --------- d-----w c:\users\dekoh\AppData\Roaming\Malwarebytes
2009-02-09 17:11 --------- d-----w c:\programdata\Malwarebytes
2009-02-09 12:54 --------- d-----w c:\program files\Norton Security Scan
2009-02-08 21:03 --------- d-----w c:\programdata\Symantec
2009-02-07 11:23 --------- d-----w c:\program files\Norton PC Checkup
2009-02-06 17:56 --------- d-----w c:\program files\DivX
2009-02-06 17:55 --------- d--h--w c:\program files\InstallShield Installation Information
2009-02-06 17:29 --------- d-----w c:\programdata\NortonInstaller
2009-02-06 17:29 --------- d-----w c:\program files\NortonInstaller
2009-02-05 14:53 --------- d-----w c:\users\dekoh\AppData\Roaming\Apple Computer
2009-02-04 14:09 695,808 ----a-w c:\windows\System32\nsc670F.dll
2009-02-03 20:50 --------- d---a-w c:\programdata\TEMP
2009-02-03 20:49 --------- d-----w c:\program files\Windows Live Safety Center
2009-01-28 18:59 --------- d-----w c:\users\dekoh\AppData\Roaming\Unity
2009-01-28 11:56 806 ----a-w c:\windows\system32\drivers\SYMEVENT.INF
2009-01-28 11:56 124,464 ----a-w c:\windows\system32\drivers\SYMEVENT.SYS
2009-01-28 11:56 10,635 ----a-w c:\windows\system32\drivers\SYMEVENT.CAT
2009-01-28 11:56 --------- d-----w c:\program files\Symantec
2009-01-15 10:05 911,872 ----a-w c:\windows\System32\wininet.dll
2009-01-15 10:05 43,008 ----a-w c:\windows\System32\licmgr10.dll
2009-01-15 10:04 18,944 ----a-w c:\windows\System32\corpol.dll
2009-01-15 10:04 132,096 ----a-w c:\windows\System32\ieUnatt.exe
2009-01-15 10:04 109,568 ----a-w c:\windows\System32\PDMSetup.exe
2009-01-15 10:04 109,056 ----a-w c:\windows\System32\iesysprep.dll
2009-01-15 10:04 107,520 ----a-w c:\windows\System32\RegisterIEPKEYs.exe
2009-01-15 10:04 107,008 ----a-w c:\windows\System32\SetIEInstalledDate.exe
2009-01-15 10:04 103,936 ----a-w c:\windows\System32\SetDepNx.exe
2009-01-15 10:03 72,704 ----a-w c:\windows\System32\admparse.dll
2009-01-15 10:03 71,680 ----a-w c:\windows\System32\iesetup.dll
2009-01-15 10:03 66,560 ----a-w c:\windows\System32\wextract.exe
2009-01-15 10:03 420,352 ----a-w c:\windows\System32\vbscript.dll
2009-01-15 10:02 169,472 ----a-w c:\windows\System32\iexpress.exe
2009-01-15 10:01 34,304 ----a-w c:\windows\System32\imgutil.dll
2009-01-15 10:00 48,128 ----a-w c:\windows\System32\mshtmler.dll
2009-01-15 10:00 45,568 ----a-w c:\windows\System32\mshta.exe
2009-01-15 09:50 156,160 ----a-w c:\windows\System32\msls31.dll
2009-01-06 11:29 965,664 ----a-w c:\windows\System32\RtkPgExt.dll
2009-01-06 11:29 44,064 ----a-w c:\windows\System32\RtkCoInst.dll
2009-01-06 11:29 322,080 ----a-w c:\windows\System32\RtkApoApi.dll
2009-01-06 11:29 2,510,368 ----a-w c:\windows\System32\RtkAPO.dll
2009-01-06 11:29 109,088 ----a-w c:\windows\RTKAUDIOSERVICE.EXE
2008-08-11 16:21 1,523,200 ----a-w c:\users\dekoh\siw.exe
2008-07-23 20:31 174 --sha-w c:\program files\desktop.ini
2008-03-17 22:14 0 ----a-w c:\users\dekoh\AppData\Roaming\wklnhst.dat
.
(((((((((((((((((((((((((((((
SnapShot@2009-03-28_16.46.55.21 )))))))))))))))))))))))))))))))))))))))))
.
+ 2005-10-20 20:02:28 163,328 ----a-w c:\windows\ERDNT\subs\ERDNT.EXE
- 2009-03-28 11:29:41 133,888 ----a-w c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat
+ 2009-03-28 17:44:47 134,048 ----a-w c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat
- 2009-03-28 16:12:10 262,144 --sha-w c:\windows\ServiceProfiles\LocalService\ntuser.dat
+ 2009-03-28 17:46:04 262,144 --sha-w c:\windows\ServiceProfiles\LocalService\ntuser.dat
+ 2009-03-28 17:46:04 262,144 ---ha-w c:\windows\ServiceProfiles\LocalService\ntuser.dat.LOG1
- 2009-03-28 11:34:04 262,144 --sha-w c:\windows\ServiceProfiles\NetworkService\ntuser.dat
+ 2009-03-28 17:46:04 262,144 --sha-w c:\windows\ServiceProfiles\NetworkService\ntuser.dat
+ 2009-03-28 17:46:04 262,144 ---ha-w c:\windows\ServiceProfiles\NetworkService\ntuser.dat.LOG1
- 2009-03-28 16:38:00 16,384 --sha-w c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-03-28 17:35:18 16,384 --sha-w c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-03-28 16:38:00 81,920 --sha-w c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-03-28 17:35:18 81,920 --sha-w c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-03-28 16:38:00 32,768 --sha-w c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-03-28 17:35:18 32,768 --sha-w c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-03-28 11:36:49 105,448 ----a-w c:\windows\System32\perfc009.dat
+ 2009-03-28 17:17:25 105,448 ----a-w c:\windows\System32\perfc009.dat
- 2009-03-28 11:36:49 599,942 ----a-w c:\windows\System32\perfh009.dat
+ 2009-03-28 17:17:25 599,942 ----a-w c:\windows\System32\perfh009.dat
- 2009-03-28 11:35:00 13,598 ----a-w c:\windows\System32\WDI\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-4069843678-2951840599-648089840-1000_UserData.bin
+ 2009-03-28 17:13:34 13,718 ----a-w c:\windows\System32\WDI\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-4069843678-2951840599-648089840-1000_UserData.bin
- 2009-03-28 11:34:59 68,396 ----a-w c:\windows\System32\WDI\BootPerformanceDiagnostics_SystemData.bin
+ 2009-03-28 17:13:34 68,582 ----a-w c:\windows\System32\WDI\BootPerformanceDiagnostics_SystemData.bin
- 2009-02-28 03:47:13 3,460 ----a-w c:\windows\System32\WDI\ERCQueuedResolutions.dat
+ 2009-03-28 17:44:47 3,562 ----a-w c:\windows\System32\WDI\ERCQueuedResolutions.dat
- 2009-03-28 11:34:57 67,504 ----a-w c:\windows\System32\WDI\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-03-28 17:13:34 67,632 ----a-w c:\windows\System32\WDI\ShutdownPerformanceDiagnostics_SystemData.bin
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.