Documenti di Didattica
Documenti di Professioni
Documenti di Cultura
4 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1252.54.1033.18.1910.955 [GMT -3:00]
Running from: I:\ComboFix.exe
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))
)))))))))))))))))))))))))))))
.
.
C:\Images
c:\images\Sonido 1455508.peak
c:\program files\LyricsPal
c:\program files\LyricsPal\01.crx
c:\program files\LyricsPal\01.xpi
c:\program files\LyricsPal\02.crx
c:\program files\LyricsPal\02.xpi
c:\program files\LyricsPal\128.crx
c:\program files\LyricsPal\128.dat
c:\program files\LyricsPal\128.dll
c:\program files\LyricsPal\128.xpi
c:\program files\LyricsPal\chrome.manifest
c:\program files\LyricsPal\crx.dat
c:\program files\LyricsPal\crx.db
c:\program files\LyricsPal\Lyrics.exe
c:\program files\LyricsPal\sqlite3.dll
c:\program files\LyricsPal\Uninstall.exe
c:\program files\LyricsPal\xpi.dat
c:\program files\LyricsPal\xpi.db
c:\users\valio\AppData\Roaming\msregsvv.dll
c:\windows\msvcr71.dll
c:\windows\system32\drivers\etc\hosts.ics
c:\windows\system32\kernel.dll
c:\windows\system32\msvcsv60.dll
c:\windows\system32\Startup.dll
D:\Images.exe
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))
))))))))))))))))))))))))))))))
.
.
-------\Service_DCService.exe
.
.
((((((((((((((((((((((((( Files Created from 2013-07-26 to 2013-08-26 )))))))
))))))))))))))))))))))))
.
.
2013-08-26 02:39 . 2013-08-26 02:41
-------d-----wc:\users
\valio\AppData\Local\temp
2013-08-26 02:29 . 2013-08-26 02:40
56200 ----a-wc:\programdata\M
icrosoft\Windows Defender\Definition Updates\{53C8AD4E-37ED-4986-98BF-88610499FA
62}\offreg.dll
2013-08-26 02:18 . 2013-08-26 02:18
-------d-----wc:\users
\valio\AppData\Roaming\SUPERAntiSpyware.com
2013-08-26 02:17 . 2013-08-26 02:18
-------d-----wc:\progr
am files\SUPERAntiSpyware
2013-08-26 02:17 . 2013-08-26 02:17
-------d-----wc:\progr
amdata\SUPERAntiSpyware.com
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExec
uteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SAS
SEH.DLL" [2011-07-19 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify
\!SASWinLogon]
2011-05-04 17:54
551296 ----a-wc:\program files\SUPERAntiSpywar
e\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
R3 AVIDUSBFASTTRACKDUO;Service for Avid Fast Track Duo;c:\windows\system32\DRIVE
RS\AvidFastTrackDuo.sys [2013-05-24 494352]
R3 bcm;WiMAX Network Adapter;c:\windows\system32\DRIVERS\drxvi314.sys [x]
R3 bcmbusctr;WiMAX Bus Driver;c:\windows\system32\DRIVERS\BcmBusCtr.sys [x]
R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS
\ew_hwusbdev.sys [2010-03-20 101504]
R3 huawei_cdcacm;huawei_cdcacm;c:\windows\system32\DRIVERS\ew_jucdcacm.sys [2010
-04-09 69504]
R3 TridVid;USB TV Tuner;c:\windows\system32\DRIVERS\tridvid6010.sys [2011-01-21
339712]
R3 USBMULCD;USB Multi-Channel Audio Device Interface;c:\windows\system32\drivers
\CM106.sys [2010-08-12 1517056]
R3 WatAdminSvc;Servicio de tecnologas de activacin de Windows;c:\windows\system32\
Wat\WatAdminSvc.exe [2012-01-13 1343400]
S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [2011-07-22
12880]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [2011-07-12
67664]
S1 VBoxDrv;VirtualBox Service;c:\windows\system32\DRIVERS\VBoxDrv.sys [2011-11-0
4 158512]
S1 VBoxUSBMon;VirtualBox USB Monitor Driver;c:\windows\system32\DRIVERS\VBoxUSBM
on.sys [2011-11-04 91440]
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE.EXE [2011
-08-11 116608]
S2 FastTrackDuoAudioDevMon;Fast Track Duo Audio Device Monitor;c:\program files\
Avid\Fast Track Duo\AudioDevMon.exe [2013-05-24 2036496]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files\Intel\Int
el(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-10-17 13592]
S2 KMService;KMService;c:\windows\system32\srvany.exe [2012-02-16 8192]
S2 NIHardwareService;NIHardwareService;c:\program files\Common Files\Native Inst
ruments\Hardware\NIHardwareService.exe [2012-09-05 4590968]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\p
rogram files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-04-16
2533400]
S3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsof
tbus01.sys [2013-01-10 218176]
S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.
sys [2010-04-09 63616]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [2010-02-26 132480]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [201
1-08-23 270336]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2011
-09-29 490088]
S3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver;c:\windows\system32\D
RIVERS\rtl8192Ce.sys [2011-10-06 1056360]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\
VBoxNetAdp.sys [2011-11-04 104752]
S3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\
VBoxNetFlt.sys [2011-11-04 116016]
.
.
--- Other Services/Drivers In Memory --.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
WindowsMobile REG_MULTI_SZ
wcescomm rapimgr
LocalServiceRestricted REG_MULTI_SZ
WcesComm RapiMgr
.
Contents of the 'Scheduled Tasks' folder
.
2013-08-26 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-06 13
:48]
.
2013-08-26 c:\windows\Tasks\SUPERAntiSpyware Scheduled Task fc535ffb-697c-47dd-b
acd-581b9f9cb256.job
- c:\program files\SUPERAntiSpyware\SASTask.exe [2011-05-04 17:52]
.
.
------- Supplementary Scan ------.
uStart Page = hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=306BE0B9A59967C5
&affID=123622&tsp=4963
uInternet Settings,ProxyServer = proxy.sarmientoba.local:8080
uInternet Settings,ProxyOverride = *.sarmientoba.local
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105
FF - ProfilePath - c:\users\valio\AppData\Roaming\Mozilla\Firefox\Profiles\qna3um
c0.default\
FF - prefs.js: browser.startup.homepage FF - prefs.js: network.proxy.type - 4
FF - ExtSQL: 2013-08-03 14:33; {9309FA47-1B48-4768-AFA4-9E0556F5DC81}; c:\progra
m files\LyricsPal\125.xpi
FF - ExtSQL: 2013-08-03 17:08; ffxtlbr@delta.com; c:\users\vali o\AppData\Roaming\Moz
illa\Firefox\Profiles\qna3umc0.default\extensions\ffxtlbr@delta.com
FF - user.js: extensions.delta.tlbrSrchUrl FF - user.js: extensions.delta.id - 306b496c000000000000e0b9a59967c5
FF - user.js: extensions.delta.appId - {C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
FF - user.js: extensions.delta.instlDay - 15920
FF - user.js: extensions.delta.vrsn - 1.8.22.0
FF - user.js: extensions.delta.vrsni - 1.8.22.0
FF - user.js: extensions.delta.vrsnTs - 1.8.22.017:08
FF - user.js: extensions.delta.prtnrId - delta
FF - user.js: extensions.delta.prdct - delta
FF - user.js: extensions.delta.aflt - babsst
FF - user.js: extensions.delta.smplGrp - none
FF - user.js: extensions.delta.tlbrId - base
FF - user.js: extensions.delta.instlRef - sst
FF - user.js: extensions.delta.dfltLng - es
FF - user.js: extensions.delta.excTlbr - false
FF - user.js: extensions.delta.ffxUnstlRst - true
* *G
* *G
* *G
* *G
"MRUDockTopPos"=dword:00000141
"MRUDockRightPos"=dword:000000c6
"MRUDockBottomPos"=dword:00000287
"MRUFloatStyle"=dword:00002004
"MRUFloatXPos"=dword:80000000
"MRUFloatYPos"=dword:cdcdcdcd
.
[HKEY_USERS\S-1-5-21-279611071-2757080897-2550450903-1000\Software\10Moons\V * *G
r * *Om * * * *hV *\Bars\Settings-Bar4]
"BarID"=dword:0000e807
"XPos"=dword:fffffffe
"YPos"=dword:fffffffe
"Docking"=dword:00000001
"MRUDockID"=dword:00000000
"MRUDockLeftPos"=dword:fffffffe
"MRUDockTopPos"=dword:fffffffe
"MRUDockRightPos"=dword:000000c6
"MRUDockBottomPos"=dword:00000143
"MRUFloatStyle"=dword:00002004
"MRUFloatXPos"=dword:80000000
"MRUFloatYPos"=dword:cdcdcdcd
.
[HKEY_USERS\S-1-5-21-279611071-2757080897-2550450903-1000\Software\10Moons\V * *G
r * *Om * * * *hV *\Bars\Settings-Summary]
"Bars"=dword:00000005
"ScreenCX"=dword:00000400
"ScreenCY"=dword:00000300
.
[HKEY_USERS\S-1-5-21-279611071-2757080897-2550450903-1000\Software\10Moons\V * *G
r * *Om * * * *hV *\Settings]
"FirstRun"=dword:00000000
"xScreen"=dword:00000400
"yScreen"=dword:000002c4
"floats"="1.000000 0.500000 0.500000 120 120"
"skin"="ISR_10Moons.dll"
.
[HKEY_USERS\S-1-5-21-279611071-2757080897-2550450903-1000\Software\10Moons\V * *G
r * *Om * * * *hV *\WNDSTATUS]
"FLAG"=dword:00000000
"SHOWCMD"=dword:00000001
"LEFT"=dword:fffffffc
"TOP"=dword:fffffffc
"RIGHT"=dword:00000404
"BOTTOM"=dword:000002e2
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC108002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)