2 - x86
Microsoft Windows 7 Home Premium 6.1.7600.0.1252.593.3082.18.3003.1972 [GMT -5
:00]
Running from: c:\users\Amalita\Desktop\ComboFix.exe
Command switches used :: /u
* Resident AV is active
.
(((((((((((((((((((((((((
))))))))))))))))))))))))
.
--------
d-----w-
c:\users
--------
d-----w-
c:\users
--------
d-----w-
c:\users
--------
d-----w-
c:\users
--------
d-----w-
c:\users
--------
d-----w-
c:\users
--------
d-----w-
c:\users
--------
d-----w-
c:\users
--------
d-----w-
c:\progr
--------
d-----w-
c:\progr
--------
d-----w-
c:\progr
2048
----a-w-
c:\windows\syste
--------
d-----w-
c:\progr
--------
d-----w-
c:\progr
--------
d-----w-
c:\progr
--------
d-----w-
c:\users
165376 ----a-w-
c:\windows\syste
108032 ----a-w-
c:\windows\syste
790528 ----a-w-
c:\windows\syste
134144 ----a-w-
c:\windows\syste
217088 ----a-w-
c:\windows\syste
--------
d-----w-
c:\progr
--------
d-----w-
c:\users
--------
d-----w-
c:\progr
am files\Common Files\Java
2010-09-22 23:00 . 2010-09-24 04:04
-------d-----wc:\users
\Amalita\AppData\Local\WMTools Downloaded Files
2010-09-22 20:59 . 2010-09-22 20:59
-------d-----wc:\progr
am files\Movie Maker 2.6
2010-09-22 20:59 . 2010-09-22 20:59
-------d-----wc:\progr
am files\Conduit
2010-09-22 17:21 . 2010-09-22 17:21
-------d-----wc:\progr
am files\DzSoft
2010-09-16 17:42 . 2010-07-17 10:00
423656 ----a-wc:\windows\syste
m32\deployJava1.dll
2010-09-16 16:31 . 2010-08-21 05:32
316928 ----a-wc:\windows\syste
m32\spoolsv.exe
2010-09-10 15:40 . 2010-09-23 18:02
-------d-----wc:\progr
am files\Java
2010-09-10 15:14 . 2010-09-10 15:41
-------d-----wc:\progr
am files\LimeWire
2010-09-10 14:48 . 2010-09-10 14:48
-------d-----wc:\users
\Amalita\AppData\Local\Ares
2010-09-10 14:48 . 2010-09-10 14:48
-------d-----wc:\progr
am files\Ares
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))
)))))))))))))))))))))))))))))))
.
2010-10-07 21:22 . 2009-07-14 08:48
697070 ----a-wc:\windows\syste
m32\perfh00A.dat
2010-10-07 21:22 . 2009-07-14 08:48
135658 ----a-wc:\windows\syste
m32\perfc00A.dat
2010-10-07 21:20 . 2010-09-10 15:41
-------d-----wc:\users
\Amalita\AppData\Roaming\LimeWire
2010-10-07 16:34 . 2010-02-18 03:56
-------d-----wc:\progr
amdata\VMware
2010-10-05 23:18 . 2010-03-03 13:54
-------d--h--wc:\progr
am files\InstallShield Installation Information
2010-10-05 23:18 . 2010-02-19 22:19
-------d-----wc:\progr
am files\Oracle
2010-09-24 21:19 . 2010-09-24 21:19
-------d-----wc:\progr
am files\Emprenet Turnos FREE
2010-09-16 17:26 . 2010-02-12 02:41
-------d-----wc:\progr
amdata\Microsoft Help
2010-08-18 00:03 . 2010-08-18 00:03
-------d-----wc:\progr
am files\HUAWEI Modem Driver
2010-08-18 00:03 . 2010-03-03 13:53
-------d-----wc:\progr
am files\Movistar
2010-08-11 16:54 . 2010-08-11 16:54
-------d-----wc:\users
\Amalita\AppData\Roaming\Foxit
2010-08-11 16:54 . 2010-08-11 16:54
-------d-----wc:\progr
am files\Foxit Software
2010-08-09 16:21 . 2010-08-09 16:21
-------d-----wc:\progr
am files\LightScribe Template Labeler
2010-08-09 16:11 . 2010-08-09 16:11
-------d-----wc:\progr
am files\LightScribe
2010-08-09 16:05 . 2010-03-20 18:08
-------d-----wc:\progr
amdata\LightScribe
2010-08-05 16:40 . 2010-07-01 15:53
154
----a-wC:\modificar.bat
2010-07-29 06:30 . 2010-08-12 02:36
197632 ----a-wc:\windows\syste
m32\ir32_32.dll
2010-07-29 06:30 . 2010-08-12 02:36
82944 ----a-wc:\windows\syste
m32\iccvid.dll
2010-06-25 02:22 . 2010-06-25 02:22
119808 ----a-w\mozilla firefox\components\GoogleDesktopMozilla.dll
2009-06-10 21:26 . 2009-07-14 02:04
9633792 --sha-r\StaticCache.dat
.
c:\program files
c:\windows\Fonts
[2010-07-09 536056]
c:\users\Amalita\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
LimeWire On Startup.lnk - c:\program files\LimeWire\LimeWire.exe [2010-8-19 5038
08]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\ThinkPad\Bluetooth Software\BTTray.exe [2009-10
-2 795936]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\progra~1\Google\GOOGLE~1\GoogleDesktopNetwork3.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer9"=wdmaud.drv
[HKLM\~\startupfolder\C:^Users^Amalita^AppData^Roaming^Microsoft^Windows^Start M
enu^Programs^Startup^LimeWire On Startup.lnk]
backup=c:\windows\pss\LimeWire On Startup.lnk.Startup
backupExtension=.Startup
[HKLM\~\startupfolder\C:^Users^Amalita^AppData^Roaming^Microsoft^Windows^Start M
enu^Programs^Startup^Recorte de pantalla e Inicio rpido de OneNote 2007.lnk]
backup=c:\windows\pss\Recorte de pantalla e Inicio rpido de OneNote 2007.lnk.Star
tup
backupExtension=.Startup
[HKLM\~\startupfolder\C:^Users^Amalita^AppData^Roaming^Microsoft^Windows^Start M
enu^Programs^Startup^sukisuki.lnk]
backup=c:\windows\pss\sukisuki.lnk.Startup
backupExtension=.Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ares]
2010-07-10 12:56
1015808 ----a-wc:\program files\Ares\Ares.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BroadCam
]
2010-09-24 22:20
1175556 ----a-wc:\program files\NCH Software\Br
oadCam\broadcam.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google D
esktop Search]
2010-06-25 02:22
30192 ----a-wc:\program files\Google\Google D
esktop Search\GoogleDesktop.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google U
pdate]
2010-06-18 04:58
136176 ----atwc:\users\Amalita\AppData\Local\G
oogle\Update\GoogleUpdate.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScr
ibe Control Panel]
2008-06-09 15:16
2363392 ----a-wc:\program files\Common Files\Li
ghtScribe\LightScribeControlPanel.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MMRemind
erService]
2007-05-18 05:05
37392
ager 7\MmReminderService.exe
----a-r-
c:\program files\Mindjet\MindMan
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\OracleOraDb10g_home1TNSListene
r]
"ImagePath"="c:\oracle\product\10.2.0\db_1\BIN\TNSLSNR "
.
--------------------- LOCKED REGISTRY KEYS --------------------[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC108002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC108002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC108002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC108002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC108002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC108002BE10318}\0005\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
--------------------- DLLs Loaded Under Running Processes --------------------- - - - - - - > 'winlogon.exe'(736)
c:\program files\Common Files\Adobe\Adobe Drive CS4\AdobeDriveCS4_NP.dll
- - - - - - - > 'Explorer.exe'(4456)
c:\program files\Iminent\IMBooster\Iminent.WinCore.dll
c:\program files\ThinkPad\Bluetooth Software\btmmhook.dll
.
Completion time: 2010-10-07 16:33:50
ComboFix-quarantined-files.txt 2010-10-07 21:33
ComboFix2.txt 2010-10-07 21:16
Pre-Run: 155,285,880,832 bytes libres
Post-Run: 155,253,456,896 bytes libres
- - End Of File - - E38B5D21A4C164BC14E9114B1520C9BF