Vous êtes sur la page 1sur 2

ComboFix 14-04-30.01 - UmaDesktop 11/24/2014 16:13:58.2.

2 - x86
Microsoft Windows 7 Ultimate 6.1.7601.1.1252.1.1033.18.2038.1078 [GMT 5.5:30]
Running from: c:\users\UmaDesktop\Desktop\ComboFix_14_4_30_1.exe
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
.
((((((((((((((((((((((((( Files Created from 2014-10-24 to 2014-11-24 )))))))
))))))))))))))))))))))))
.
.
2014-11-24 10:49 . 2014-11-24 10:49
-------d-----wc:\users
\Public\AppData\Local\temp
2014-11-24 10:49 . 2014-11-24 10:49
-------d-----wc:\users
\Default\AppData\Local\temp
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))
)))))))))))))))))))))))))))))))
.
2013-02-07 12:22 . 2013-02-07 12:22
50330 ----a-wc:\program files
\AntiDust.exe
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))
)))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2009-10-02 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2009-10-02 173592]
"Persistence"="c:\windows\system32\igfxpers.exe" [2009-10-02 150552]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Re
ader Speed Launcher]
2008-06-11 21:08
34672 ----a-wc:\program files\Adobe\Reader 9.
0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMo
nitor]
2006-10-26 19:17
31016 ----a-wc:\program files\Microsoft Offic
e\Office12\GrooveMonitor.exe
.
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS
\ew_hwusbdev.sys [x]
R3 ewusbnet;HUAWEI USB-NDIS miniport;c:\windows\system32\DRIVERS\ewusbnet.sys [x
]
R3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.
sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\dri

vers\rdpvideominiport.sys [2010-11-20 15872]


R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [2010-11-20
77184]
R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\te
rminpt.sys [2010-11-20 25600]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD
.sys [2010-11-20 27264]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [2010-11-20 112640
]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D3
45-D564-463c-AFF1-A69D9E530F96}]
2014-11-23 05:45
1087304 ----a-wc:\program files\Google\Chrome\A
pplication\39.0.2171.65\Installer\chrmstp.exe
.
Contents of the 'Scheduled Tasks' folder
.
2014-11-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2014-08-11 10:26]
.
2014-11-24 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2014-08-11 10:26]
.
.
------- Supplementary Scan ------.
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\users\UmaDesktop\AppData\Roaming\Mozilla\Firefox\Profiles\
l4yhcewe.default\
.
.
--------------------- LOCKED REGISTRY KEYS --------------------.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
--------------------- DLLs Loaded Under Running Processes --------------------.
- - - - - - - > 'Explorer.exe'(3636)
c:\program files\Microsoft Office\Office12\1033\GrooveIntlResource.dll
c:\windows\System32\NLSLexicons0009.dll
.
Completion time: 2014-11-24 16:21:36
ComboFix-quarantined-files.txt 2014-11-24 10:51
ComboFix2.txt 2014-08-09 17:32
.
Pre-Run: 35,601,494,016 bytes free
Post-Run: 35,569,868,800 bytes free
.
- - End Of File - - A19ECCD401737BE509B640A4527E674D
A36C5E4F47E84449FF07ED3517B43A31

Vous aimerez peut-être aussi