Share Pastebin
Guest
Public paste!

Untitled

By: a guest | Mar 21st, 2010 | Syntax: None | Size: 47.62 KB | Hits: 111 | Expires: Never
Copy text to clipboard
  1. ComboFix 10-03-20.04 - jason 21/03/2010  13:16:11.1.2 - x86
  2. Microsoft Windows 7 Ultimate   6.1.7600.0.1252.44.1033.18.2430.1727 [GMT 0:00]
  3. Running from: c:\users\jason\Downloads\ComboFix.exe
  4. SP: Spybot - Search and Destroy *disabled* (Updated) {ED588FAF-1B8F-43B4-ACA8-8E3C85DADBE9}
  5. SP: SUPERAntiSpyware *disabled* (Updated) {222A897C-5018-402e-943F-7E7AC8560DA7}
  6. .
  7.  
  8. (((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
  9. .
  10.  
  11. c:\$recycle.bin\S-1-5-21-72279552-1711634458-1876707133-500
  12. c:\program files\temp
  13. c:\windows\Suyin.reg
  14. c:\windows\system32\bin
  15. c:\windows\system32\Connect.dll
  16.  
  17. .
  18. (((((((((((((((((((((((((   Files Created from 2010-02-21 to 2010-03-21  )))))))))))))))))))))))))))))))
  19. .
  20.  
  21. 2010-03-21 13:26 . 2010-03-21 13:26     --------        d-----w-        c:\users\jason\AppData\Local\temp
  22. 2010-03-21 13:26 . 2010-03-21 13:26     --------        d-----w-        c:\users\Default\AppData\Local\temp
  23. 2010-03-20 23:54 . 2010-03-07 01:00     84912   ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\VirusDefs\20100320.022\NAVENG.SYS
  24. 2010-03-20 23:54 . 2010-03-07 01:00     177520  ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\VirusDefs\20100320.022\NAVENG32.DLL
  25. 2010-03-20 23:54 . 2010-03-07 01:00     1647984 ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\VirusDefs\20100320.022\NAVEX32A.DLL
  26. 2010-03-20 23:54 . 2010-03-07 01:00     1324720 ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\VirusDefs\20100320.022\NAVEX15.SYS
  27. 2010-03-20 23:54 . 2010-03-07 01:00     371248  ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\VirusDefs\20100320.022\EECTRL.SYS
  28. 2010-03-20 23:54 . 2010-03-07 01:00     2747440 ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\VirusDefs\20100320.022\CCERASER.DLL
  29. 2010-03-20 23:54 . 2010-03-07 01:00     259440  ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\VirusDefs\20100320.022\ECMSVR32.DLL
  30. 2010-03-20 23:54 . 2010-03-07 01:00     102448  ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\VirusDefs\20100320.022\ERASER.SYS
  31. 2010-03-20 20:29 . 2010-03-20 21:14     --------        d-----w-        c:\users\jason\DoctorWeb
  32. 2010-03-19 00:00 . 2010-03-19 00:00     52224   ----a-w-        c:\users\jason\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll
  33. 2010-03-19 00:00 . 2010-03-19 00:00     117760  ----a-w-        c:\users\jason\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
  34. 2010-03-18 23:59 . 2010-03-18 23:59     --------        d-----w-        c:\programdata\SUPERAntiSpyware.com
  35. 2010-03-18 23:58 . 2010-03-20 18:12     --------        d-----w-        c:\program files\SUPERAntiSpyware
  36. 2010-03-18 23:58 . 2010-03-18 23:58     --------        d-----w-        c:\users\jason\AppData\Roaming\SUPERAntiSpyware.com
  37. 2010-03-18 23:57 . 2010-03-18 23:57     --------        d-----w-        c:\program files\Common Files\Wise Installation Wizard
  38. 2010-03-18 20:56 . 2010-03-18 20:56     --------        d-----w-        c:\program files\Trend Micro
  39. 2010-03-18 20:54 . 2010-03-18 20:54     --------        d-----w-        c:\program files\ESET
  40. 2010-03-14 22:59 . 2009-11-17 00:51     811896  ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\IPSDefs\20100312.001\Scxpx86.dll
  41. 2010-03-14 22:59 . 2009-11-17 00:51     488312  ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\IPSDefs\20100312.001\IDSxpx86.dll
  42. 2010-03-14 22:59 . 2009-11-17 00:51     343088  ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\IPSDefs\20100312.001\IDSvix86.sys
  43. 2010-03-14 22:59 . 2009-11-17 00:51     329592  ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\IPSDefs\20100312.001\IDSXpx86.sys
  44. 2010-03-14 22:59 . 2009-11-17 00:51     466992  ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\IPSDefs\20100312.001\IDSviA64.sys
  45. 2010-03-14 12:58 . 2010-03-14 12:58     --------        d-----w-        c:\users\jason\AppData\Roaming\Malwarebytes
  46. 2010-03-14 12:58 . 2010-01-07 16:07     38224   ----a-w-        c:\windows\system32\drivers\mbamswissarmy.sys
  47. 2010-03-14 12:58 . 2010-03-14 12:58     --------        d-----w-        c:\programdata\Malwarebytes
  48. 2010-03-14 12:58 . 2010-03-14 12:58     --------        d-----w-        c:\program files\Malwarebytes' Anti-Malware
  49. 2010-03-14 12:58 . 2010-01-07 16:07     19160   ----a-w-        c:\windows\system32\drivers\mbam.sys
  50. 2010-03-12 20:32 . 2010-03-12 20:32     --------        d-----w-        c:\users\jason\AppData\Local\CrashDumps
  51. 2010-03-12 16:02 . 2010-03-12 16:02     --------        d-----w-        C:\N360_BACKUP
  52. 2010-03-12 15:57 . 2010-03-12 15:57     409088  ----a-w-        c:\windows\system32\systemcpl.dll
  53. 2010-03-11 01:13 . 2009-11-17 00:51     811896  ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\IPSDefs\20100310.001\Scxpx86.dll
  54. 2010-03-11 01:13 . 2009-11-17 00:51     329592  ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\IPSDefs\20100310.001\IDSXpx86.sys
  55. 2010-03-11 01:13 . 2009-11-17 00:51     488312  ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\IPSDefs\20100310.001\IDSxpx86.dll
  56. 2010-03-11 01:13 . 2009-11-17 00:51     343088  ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\IPSDefs\20100310.001\IDSvix86.sys
  57. 2010-03-11 01:13 . 2009-11-17 00:51     466992  ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\IPSDefs\20100310.001\IDSviA64.sys
  58. 2010-03-09 03:38 . 2009-12-03 06:09     44080   ----a-r-        c:\windows\system32\drivers\SymIMV.sys
  59. 2010-03-09 00:54 . 2009-12-10 03:16     784752  ----a-r-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\coFFPlgn\components\coFFPlgn.dll
  60. 2010-03-09 00:48 . 2010-03-09 00:48     --------        d-sh--w-        c:\windows\BitLockerDiscoveryVolumeContents
  61. 2010-03-09 00:48 . 2010-03-09 00:48     --------        d-----w-        c:\windows\RemotePackages
  62. 2010-03-01 17:24 . 2010-03-01 17:24     --------        d-----w-        c:\program files\PuTTY
  63. 2010-03-01 15:04 . 2010-02-11 07:10     293376  ----a-w-        c:\windows\system32\browserchoice.exe
  64. 2010-03-01 09:48 . 2010-03-01 09:48     --------        d-----w-        c:\program files\WinSCP
  65. 2010-03-01 09:07 . 2010-03-01 09:11     --------        d-----w-        c:\users\jason\AppData\Roaming\UltraVNC
  66. 2010-03-01 09:06 . 2010-03-01 09:06     --------        d-----w-        c:\program files\UltraVNC
  67. 2010-02-28 16:22 . 2010-02-28 16:22     --------        d-----w-        c:\program files\Alcohol Soft
  68. 2010-02-28 16:14 . 2010-02-28 16:14     691696  ----a-w-        c:\windows\system32\drivers\sptd.sys
  69. 2010-02-23 21:11 . 2009-12-13 09:30     641536  ----a-w-        c:\windows\system32\CPFilters.dll
  70. 2010-02-23 21:11 . 2009-12-13 09:30     465408  ----a-w-        c:\windows\system32\psisdecd.dll
  71. 2010-02-23 21:11 . 2009-12-13 09:29     417792  ----a-w-        c:\windows\system32\msdri.dll
  72. 2010-02-23 21:11 . 2010-02-02 07:45     2048    ----a-w-        c:\windows\system32\tzres.dll
  73. 2010-02-21 02:44 . 2010-02-21 02:44     --------        d-----w-        c:\program files\MagicISO
  74. 2010-02-21 02:33 . 2010-02-21 02:33     119808  ----a-r-        c:\users\jason\AppData\Roaming\Microsoft\Installer\{CCF298AF-9CE1-4B26-B251-486E98A34789}\icons.exe
  75.  
  76. .
  77. ((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
  78. .
  79. 2010-03-20 20:15 . 2009-10-01 22:46     69      ---ha-w-        c:\users\jason\jagex_runescape_preferences2.dat
  80. 2010-03-20 20:15 . 2009-10-01 22:45     69      ---ha-w-        c:\users\jason\jagex_runescape_preferences.dat
  81. 2010-03-19 23:44 . 2010-01-23 23:00     --------        d-----w-        c:\program files\SpeedFan
  82. 2010-03-18 00:22 . 2009-09-28 00:03     --------        d-----r-        c:\program files\Skype
  83. 2010-03-12 15:57 . 2009-07-13 23:36     13824   ----a-w-        c:\windows\system32\slwga.dll
  84. 2010-03-11 01:03 . 2009-02-23 17:45     --------        d-----w-        c:\programdata\Microsoft Help
  85. 2010-03-09 14:09 . 2009-11-06 13:04     87968   ----a-w-        c:\users\jason\AppData\Local\GDIPFONTCACHEV1.DAT
  86. 2010-03-09 01:03 . 2009-09-27 22:55     --------        d-----w-        c:\programdata\Norton
  87. 2010-03-08 10:44 . 2009-09-27 22:55     --------        d-----w-        c:\program files\Symantec
  88. 2010-03-08 10:44 . 2009-09-27 22:55     805     ----a-w-        c:\windows\system32\drivers\SYMEVENT.INF
  89. 2010-03-08 10:44 . 2009-09-27 22:55     7443    ----a-w-        c:\windows\system32\drivers\SYMEVENT.CAT
  90. 2010-03-08 10:44 . 2009-09-27 22:55     124976  ----a-w-        c:\windows\system32\drivers\SYMEVENT.SYS
  91. 2010-02-24 10:16 . 2009-10-28 15:59     181632  ------w-        c:\windows\system32\MpSigStub.exe
  92. 2010-02-21 02:36 . 2010-02-14 10:41     --------        d-----w-        c:\users\jason\AppData\Roaming\Nero
  93. 2010-02-17 22:48 . 2010-02-17 22:48     --------        d-----w-        c:\program files\ShutDown After
  94. 2010-02-14 10:38 . 2010-02-14 10:22     --------        d-----w-        c:\program files\Common Files\Nero
  95. 2010-02-14 10:37 . 2010-02-14 10:22     --------        d-----w-        c:\program files\Nero
  96. 2010-02-14 10:25 . 2010-02-14 10:22     --------        d-----w-        c:\programdata\Nero
  97. 2010-02-11 18:44 . 2010-02-11 18:44     201616  ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\BASHDefs\20100211.001\BHRules.dll
  98. 2010-02-11 18:44 . 2010-02-11 18:44     1406352 ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\BASHDefs\20100211.001\BHEngine.dll
  99. 2010-02-11 18:44 . 2010-02-11 18:44     676912  ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\BASHDefs\20100211.001\BHDrvx64.sys
  100. 2010-02-11 18:44 . 2010-02-11 18:44     536112  ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\BASHDefs\20100211.001\BHDrvx86.sys
  101. 2010-02-11 18:44 . 2010-02-11 18:44     611216  ----a-w-        c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\BASHDefs\20100211.001\bbRGen.dll
  102. 2010-02-01 12:29 . 2009-11-05 19:28     --------        d-----w-        c:\program files\BitLord
  103. 2010-02-01 12:29 . 2009-06-24 20:53     --------        d-----w-        c:\program files\EgisTec Egis Software Update
  104. 2010-02-01 12:29 . 2009-02-23 17:45     --------        d-----w-        c:\program files\Microsoft Office Suite Activation Assistant
  105. 2010-02-01 12:29 . 2010-01-24 20:20     --------        d-----w-        c:\program files\SwiftKit
  106. 2010-02-01 12:29 . 2009-12-20 14:35     --------        d-----w-        c:\program files\PS3.ProxyServer
  107. 2010-02-01 12:29 . 2009-11-07 10:07     --------        d-----w-        c:\program files\Spybot - Search & Destroy
  108. 2010-02-01 12:29 . 2009-11-05 19:33     --------        d-----w-        c:\program files\WYSIWYG Web Builder 6
  109. 2010-02-01 12:29 . 2009-09-29 14:53     --------        d-----w-        c:\program files\Opera
  110. 2010-02-01 12:29 . 2009-07-14 02:37     --------        d-----w-        c:\program files\Windows Mail
  111. 2010-02-01 12:29 . 2009-11-07 10:07     --------        d-----w-        c:\programdata\Spybot - Search & Destroy
  112. 2010-02-01 12:06 . 2010-02-01 12:04     --------        d-----w-        c:\users\jason\AppData\Roaming\QuickScan
  113. 2010-02-01 11:53 . 2010-02-01 11:53     --------        d-----w-        c:\program files\Sun
  114. 2010-02-01 11:02 . 2009-10-01 22:43     --------        d-----w-        c:\program files\Java
  115. 2010-01-29 20:59 . 2009-10-01 22:44     411368  ----a-w-        c:\windows\system32\deploytk.dll
  116. 2010-01-29 20:30 . 2010-01-29 20:30     --------        d-----w-        c:\program files\Common Files\Java
  117. 2010-01-25 01:20 . 2010-01-25 01:11     --------        d-----w-        c:\program files\WinHTTrack
  118. 2010-01-24 20:20 . 2010-01-24 20:20     --------        d-----w-        c:\programdata\SwiftKit
  119. 2010-01-22 19:34 . 2009-10-10 22:08     --------        d-----w-        c:\program files\Microsoft Silverlight
  120. 2010-01-18 23:29 . 2010-02-10 04:42     85504   ----a-w-        c:\windows\system32\secproc_ssp_isv.dll
  121. 2010-01-18 23:29 . 2010-02-10 04:42     85504   ----a-w-        c:\windows\system32\secproc_ssp.dll
  122. 2010-01-18 23:29 . 2010-02-10 04:42     365568  ----a-w-        c:\windows\system32\secproc_isv.dll
  123. 2010-01-18 23:29 . 2010-02-10 04:42     369152  ----a-w-        c:\windows\system32\secproc.dll
  124. 2010-01-18 23:28 . 2010-02-10 04:42     324608  ----a-w-        c:\windows\system32\RMActivate_isv.exe
  125. 2010-01-18 23:28 . 2010-02-10 04:42     277504  ----a-w-        c:\windows\system32\RMActivate_ssp_isv.exe
  126. 2010-01-18 23:28 . 2010-02-10 04:42     320512  ----a-w-        c:\windows\system32\RMActivate.exe
  127. 2010-01-18 23:28 . 2010-02-10 04:42     280064  ----a-w-        c:\windows\system32\RMActivate_ssp.exe
  128. 2010-01-08 03:18 . 2010-02-10 04:42     221184  ----a-w-        c:\windows\system32\drivers\mrxsmb10.sys
  129. 2010-01-08 03:17 . 2010-02-10 04:42     123392  ----a-w-        c:\windows\system32\drivers\mrxsmb.sys
  130. 2009-06-10 21:26 . 2009-07-14 02:04     9633792 --sha-r-        c:\windows\Fonts\StaticCache.dat
  131. 2009-07-14 01:14 . 2009-07-13 23:42     396800  --sha-w-        c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
  132. .
  133.  
  134. (((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
  135. .
  136. .
  137. *Note* empty entries & legit default entries are not shown
  138. REGEDIT4
  139.  
  140. [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
  141. "{EEE6C35D-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll" [2009-05-20 177464]
  142.  
  143. [HKEY_CLASSES_ROOT\clsid\{eee6c35d-6118-11dc-9c72-001320c79847}]
  144. [HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook.1]
  145. [HKEY_CLASSES_ROOT\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}]
  146. [HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook]
  147.  
  148. [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
  149. 2009-05-20 13:36        1258808 ----a-w-        c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
  150.  
  151. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
  152. "{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [2009-05-20 1258808]
  153.  
  154. [HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
  155. [HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
  156. [HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
  157. [HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
  158.  
  159. [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
  160. "{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [2009-05-20 1258808]
  161.  
  162. [HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
  163. [HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
  164. [HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
  165. [HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
  166.  
  167. [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\egisPSDP]
  168. @="{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}"
  169. [HKEY_CLASSES_ROOT\CLSID\{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}]
  170. 2008-10-27 11:05        40496   ----a-w-        c:\program files\EgisTec\MyWinLocker 3\x86\PSDProtect.dll
  171.  
  172. [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  173. "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1173504]
  174. "swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-09-27 68856]
  175. "SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2010-02-18 2012912]
  176.  
  177. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  178. "SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-12-05 1410344]
  179. "SweetIM"="c:\program files\SweetIM\Messenger\SweetIM.exe" [2009-08-26 111928]
  180. "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-01-11 246504]
  181. "StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-07-29 98304]
  182. "Skytel"="c:\program files\Realtek\Audio\HDA\Skytel.exe" [2009-07-06 1833504]
  183. "RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2009-07-06 7600672]
  184. "PLFSetI"="c:\windows\PLFSetI.exe" [2008-07-29 200704]
  185. "LManager"="c:\program files\Launch Manager\LManager.exe" [2009-08-27 1200136]
  186. "AmIcoSinglun"="c:\program files\AmIcoSingLun\AmIcoSinglun.exe" [2008-10-24 237568]
  187. "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-10-03 35696]
  188. "Acer ePower Management"="c:\program files\Acer\Acer ePower Management\ePowerTray.exe" [2009-08-28 703008]
  189. "Malwarebytes Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2010-01-07 1394000]
  190.  
  191. c:\users\jason\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
  192. BackupManager.list [2009-11-3 230]
  193.  
  194. [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
  195. "ConsentPromptBehaviorAdmin"= 5 (0x5)
  196. "ConsentPromptBehaviorUser"= 3 (0x3)
  197. "EnableUIADesktopToggle"= 0 (0x0)
  198.  
  199. [hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
  200. "{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
  201.  
  202. [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
  203. 2009-09-03 14:21        548352  ----a-w-        c:\program files\SUPERAntiSpyware\SASWINLO.dll
  204.  
  205. [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
  206. "swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
  207. "msnmsgr"=~"c:\program files\Windows Live\Messenger\msnmsgr.exe" /background
  208. "SpybotSD TeaTimer"=c:\program files\Spybot - Search & Destroy\TeaTimer.exe
  209.  
  210. [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
  211. "Mobile Connectivity Suite"="c:\program files\HTC\HTC Sync\Application Launcher\Application Launcher.exe" /startoptions
  212. "CLMLServer"="c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe"
  213.  
  214. R0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-02-28 691696]
  215. R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2010-01-07 38224]
  216. R3 NTIBackupSvc;NTI Backup Now 5 Backup Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2008-09-23 50424]
  217. R3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [2010-02-17 12872]
  218. R3 SYMNDISV;Symantec Network Filter Driver;c:\windows\System32\Drivers\N360\0308000.029\SYMNDISV.SYS [x]
  219. S0 SymDS;Symantec Data Store;c:\windows\system32\drivers\N360\0400000.07F\SYMDS.SYS [2009-10-15 328752]
  220. S0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\N360\0400000.07F\SYMEFA.SYS [2009-11-26 172592]
  221. S1 BHDrvx86;BHDrvx86;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\BASHDefs\20100211.001\BHDrvx86.sys [2010-02-11 536112]
  222. S1 ccHP;Symantec Hash Provider;c:\windows\system32\drivers\N360\0400000.07F\ccHPx86.sys [2009-12-09 501888]
  223. S1 IDSVix86;IDSVix86;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\IPSDefs\20100312.001\IDSvix86.sys [2009-11-17 343088]
  224. S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [2010-02-17 12872]
  225. S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [2010-02-17 66632]
  226. S1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\N360\0400000.07F\Ironx86.SYS [2009-11-26 116272]
  227. S1 SYMTDIv;Symantec Vista Network Dispatch Driver;c:\windows\system32\drivers\N360\0400000.07F\SYMTDIV.SYS [2009-11-22 340016]
  228. S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-13 48128]
  229. S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-07-29 176128]
  230. S2 CLHNService;CLHNService;c:\program files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe [2008-12-18 75048]
  231. S2 ePowerSvc;Acer ePower Service;c:\program files\Acer\Acer ePower Management\ePowerSvc.exe [2009-08-28 727584]
  232. S2 HsfXAudioService;HsfXAudioService;c:\windows\system32\svchost.exe [2009-07-14 20992]
  233. S2 mwlPSDFilter;mwlPSDFilter;c:\windows\system32\DRIVERS\mwlPSDFilter.sys [2008-10-09 19504]
  234. S2 mwlPSDNServ;mwlPSDNServ;c:\windows\system32\DRIVERS\mwlPSDNServ.sys [2008-10-09 16432]
  235. S2 mwlPSDVDisk;mwlPSDVDisk;c:\windows\system32\DRIVERS\mwlPSDVDisk.sys [2008-10-09 59952]
  236. S2 MWLService;MyWinLocker Service;c:\program files\EgisTec\MyWinLocker 3\x86\\MWLService.exe [2008-10-27 306736]
  237. S2 N360;Norton 360;c:\program files\Norton 360\Engine\4.0.0.127\ccSvcHst.exe [2009-12-09 126392]
  238. S2 NTI IScheduleSvc;NTI IScheduleSvc;c:\program files\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [2009-08-21 62720]
  239. S2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2008-09-23 144632]
  240. S2 SBKUPNT;SBKUPNT;c:\windows\system32\Drivers\SBKUPNT.SYS [2001-07-13 14976]
  241. S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atipmdag.sys [2009-07-29 4994560]
  242. S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [2009-07-29 106496]
  243. S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2010-03-07 102448]
  244. S3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60x.sys [2009-07-13 229888]
  245. S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys [2009-04-03 27320]
  246.  
  247.  
  248. [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
  249. HsfXAudioService        REG_MULTI_SZ    HsfXAudioService
  250. .
  251. .
  252. ------- Supplementary Scan -------
  253. .
  254. uStart Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=0809&s=2&o=vp32&d=0609&m=aspire_7535
  255. mStart Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=0809&s=2&o=vp32&d=0609&m=aspire_7535
  256. IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
  257. FF - ProfilePath - c:\users\jason\AppData\Roaming\Mozilla\Firefox\Profiles\35bqtoiz.default\
  258. FF - prefs.js: browser.startup.homepage - hxxp://mail.tools.sky.com/mail/?AuthEventSource=SSO#inbox
  259. FF - prefs.js: keyword.URL - hxxp://search.sweetim.com/search.asp?src=2&q=
  260. FF - component: c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\coFFPlgn\components\coFFPlgn.dll
  261. FF - component: c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\IPSFFPlgn\components\IPSFFPl.dll
  262. FF - plugin: c:\program files\Microsoft\Office Live\npOLW.dll
  263. FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
  264. FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll
  265. FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
  266.  
  267. ---- FIREFOX POLICIES ----
  268. c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
  269. c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
  270. c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
  271. c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
  272. c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
  273. c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency",   1600);
  274. c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
  275. c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
  276. c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
  277. c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug",            false);
  278. c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight",       2);
  279. c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize",       1);
  280. c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
  281. c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
  282. c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight",   25);
  283. c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight",     5);
  284. c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
  285. c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
  286. c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
  287. c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
  288. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
  289. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
  290. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
  291. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
  292. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
  293. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
  294. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
  295. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
  296. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
  297. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
  298. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
  299. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
  300. .
  301. - - - - ORPHANS REMOVED - - - -
  302.  
  303. HKCU-Run-msnmsgr - ~c:\program files\Windows Live\Messenger\msnmsgr.exe
  304.  
  305.  
  306.  
  307. [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\services\N360]
  308. "ImagePath"="\"c:\program files\Norton 360\Engine\4.0.0.127\ccSvcHst.exe\" /s \"N360\" /m \"c:\program files\Norton 360\Engine\4.0.0.127\diMaster.dll\" /prefetch:1"
  309. .
  310. --------------------- LOCKED REGISTRY KEYS ---------------------
  311.  
  312. [HKEY_USERS\S-1-5-21-72279552-1711634458-1876707133-1000\Software\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Common Client\ccIPC]
  313. @Denied: (C D) (Everyone)
  314.  
  315. [HKEY_USERS\S-1-5-21-72279552-1711634458-1876707133-1000\Software\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Common Client\ccIPC\Endpoints]
  316. @Denied: (C D) (Everyone)
  317. "{9A061E0F-5042-4F31-A7B4-4583E6438EF1}"=""
  318. "{CA4E290D-E792-4F48-9681-EAC5EA398A46}"=""
  319. "{775F5B6C-BE10-430B-B2D6-1F8D56B6E756}"=""
  320. "{0DB61139-EECF-415C-BA9B-5ABDE9D7DBB3}"=""
  321. "{5367392C-C3CD-45DC-9E42-B961B8B46EAE}"=""
  322. "{B7898F84-05D9-450B-BD46-A121A82DC0FC}"=""
  323. "{4E33813D-0A64-4F67-9B60-07C5E1084CDD}"=""
  324. "{7401F623-A337-4A74-9320-F59AB3DFCEED}"=""
  325. "{289485E8-670A-4230-8A18-D6AAD9BFDCFE}"=""
  326. "{F04C49B0-00D3-4DAA-9942-29250CFE527D}"=""
  327. "{C7836BCD-CD99-463A-9AA5-26C5E0C47807}"=""
  328. "{4A5E08EC-197B-451C-8C2E-9631D9B36E23}"=""
  329. "{6E295BFD-1B3B-4B23-ACA6-384E48A7543C}"=""
  330. "{8113D399-D1B0-478C-93A5-A6B3D02E3748}"=""
  331. "{12351D09-9A83-480C-BFC7-B1DA2EE2E2C2}"=""
  332. "{E40E3BDA-AA34-4011-9864-70BDC1404199}"=""
  333. "{EA5A3D7E-80C6-4B9A-B2BB-B23A7D7313F8}"=""
  334. "{EAFD239C-B7C6-4899-9E0A-B181E6535544}"=""
  335. "{27966A1A-3F5A-4BB2-94AC-BD0E2DB8C9BD}"=""
  336. "{D4126599-7DBC-4D01-8BBC-19B3EBCEB7E4}"=""
  337. "{BFE92020-02CC-44BE-A369-F6F15DB8AD11}"=""
  338. "{1B7EF908-956E-4EAD-ABCC-5C0E65A8325C}"=""
  339. "{4971FBFB-D325-47B4-BAFE-F513E25BA286}"=""
  340. "{C2810F88-08B7-4F73-B4BE-CBC77E72C4CA}"=""
  341. "{6BDD55E6-17CD-42B9-81BE-F320F81F12EF}"=""
  342. "{0083C01E-ED24-4905-B029-1D491D7565F7}"=""
  343. "{A856DCE6-693E-43B0-AECA-3F9733BF1FEE}"=""
  344. "{69D1EA3E-7D66-417E-B7F1-0FE150CCCBE5}"=""
  345. "{638E968A-4DE9-44E4-8AD7-71BBA7319E6C}"=""
  346. "{DAB20DC0-91D1-4C1E-9A62-10F73075D968}"=""
  347. "{E504E8B6-E771-4D7F-8593-36DC59CEBF7B}"=""
  348. "{288D4862-3DF4-4F58-81AA-A789C73BFEB6}"=""
  349. "{DE05F7E4-BF32-4AA5-BE5F-ED0CAA8D691D}"=""
  350. "{E459A4FF-9444-4474-BCD2-97C90361006C}"=""
  351. "{AC1E830A-99CE-457B-9EF7-6C320C7FE1F6}"=""
  352. "{69895466-B1FB-4AAB-B477-2E5B3FFD0809}"=""
  353. "{7E89A748-686C-496C-8D9C-8D751008591B}"=""
  354. "{E04B8D4E-3395-4123-B21B-B66D02021D52}"=""
  355. "{E2D243E6-4397-427E-8DE8-6604E806CC4D}"=""
  356. "{781FBFE8-FEA6-408F-BA11-D6ABC3ACEC95}"=""
  357. "{EB475B25-D615-4CBC-B944-22A1763E2129}"=""
  358. "{58365B90-9D3F-4294-BC46-CDCA490C1BCE}"=""
  359. "{80001FC5-CCBE-4AC8-8EF2-C0A7DB1954D1}"=""
  360. "{A955CE2C-D806-453D-90E9-D6B0CD9C7AAD}"=""
  361. "{851E823D-FE9D-4F3C-A834-3A378AB17478}"=""
  362. "{07440A36-3CCF-43D3-B7EA-6B5543507305}"=""
  363. "{34109B25-5D8E-4F86-B007-B9770731D53A}"=""
  364. "{C1AA179B-6FED-464D-A863-70E6CE9801CA}"=""
  365. "{4B7816C5-0CF8-43A2-8C80-E8D47AD0B1BA}"=""
  366. "{3892A1B5-6808-41D9-B9BB-8D41AF4CACAC}"=""
  367. "{099F1A9C-F460-4E0C-B030-8703DB3526C2}"=""
  368. "{AE1DA677-7C65-4473-B46D-A43D8B157E9B}"=""
  369. "{0F028C4F-43A3-448E-A8E8-D8D0340E5189}"=""
  370. "{35F9F8CF-8ADB-4C14-B139-533CD5D417BF}"=""
  371. "{F1BA5FE1-F808-4C9F-9CB7-9DDE80E266D3}"=""
  372. "{443586EB-9966-4CA2-A0B7-147BF6DED8F3}"=""
  373. "{F617C3C0-9152-4495-8334-810A676178E6}"=""
  374. "{AA8501E9-AD7E-467D-8027-55118465ADA6}"=""
  375. "{183C4D46-6E96-44F7-B351-0E4A657F8431}"=""
  376. "{AFFA1174-F095-4253-9814-D42BB6B06C7D}"=""
  377. "{20430899-BBEA-4B45-A4E4-66292C53EEF0}"=""
  378. "{A4A7627D-A417-49DB-9563-13AB9CF4CA06}"=""
  379. "{5F502B0E-E58A-49A6-B966-22D39C22CF4D}"=""
  380. "{63242AEC-F9F5-4F29-B2B7-32E6F2959C92}"=""
  381. "{0DBA69EA-8EFA-4E18-8EAD-A7E657CFB3F5}"=""
  382. "{F2BD6762-721D-46F1-BFC1-E8CC82650A27}"=""
  383. "{582D62EE-029F-4A2B-BB69-B52F756173E9}"=""
  384. "{37EA47B0-6CBA-4C21-AB81-B3EE6C490988}"=""
  385. "{18245DC6-7474-4D77-824E-5EAFAE13A681}"=""
  386. "{06A0DFE2-98B3-410C-97B7-D9061C059D56}"=""
  387. "{ABB9A417-4EE7-4022-8912-94BA6BF8A008}"=""
  388. "{C78C2B5F-C3C6-4162-9D92-60963731100B}"=""
  389. "{A3A6DBE1-1E6C-4721-A279-0DFC13FD05F8}"=""
  390. "{25FF4169-A3A1-4A84-9E0D-80944F9D10A6}"=""
  391. "{35BC396C-DB12-4ECF-8210-5356F6F0D3D2}"=""
  392. "{06E60926-80B4-408A-BDF2-9B3236792C5F}"=""
  393. "{5B44A7D5-2F54-4428-90E2-E8A396328B25}"=""
  394. "{49FBA783-AA06-41FD-A1C7-2AE01D2D7687}"=""
  395. "{A12C819D-5B21-4250-B3FE-89908683AFE3}"=""
  396. "{DDC4EBA0-C3CC-478B-9A28-A5C4C7262BCB}"=""
  397. "{D68F19C8-0497-4812-BE6D-84AEE69E6DB4}"=""
  398. "{50295FA6-75D1-4086-92CE-2C2D6492D2B8}"=""
  399. "{48486178-53AB-4820-A7A8-98D9F8AFA2C1}"=""
  400. "{0D92D6FD-1AF5-4B56-B6A5-54C2D149CE4D}"=""
  401. "{4A8E95D4-CCFA-47AB-8537-17EF46832161}"=""
  402. "{F1FC0CA3-6A70-4B04-A269-FDB717C99DF1}"=""
  403. "{9BB057C1-225A-4625-9DB7-0C833A7602C0}"=""
  404. "{01BF6286-3211-48BB-BD20-796BEE18EF61}"=""
  405. "{F9967A51-AE02-4E0E-9B82-91F53FF9E753}"=""
  406. "{87024912-7EC2-427A-BFF1-9CD0900E117B}"=""
  407. "{733ED8FB-1D3F-4645-88E5-D430C21F1E3A}"=""
  408. "{3198C3C5-571E-4935-8077-F3029C80DC85}"=""
  409. "{3D8DDB72-282F-499C-8864-2446D1199E92}"=""
  410. "{58F94EB9-D94B-4C43-B4AF-29D295EB2058}"=""
  411. "{E4E37F1D-D94F-4572-ABB6-AF02B30E8F72}"=""
  412. "{F3AC67EC-0FE7-4DE9-900F-D2FC73D35F8E}"=""
  413. "{C0E5C3E5-586C-457A-82D5-EFD12879F591}"=""
  414. "{205C5EA2-4E92-4BB6-88D6-4E9F180A3035}"=""
  415. "{F032B97A-2BD8-457F-9995-ECC772627FFF}"=""
  416. "{4E62FD0E-5A32-4BD6-90E7-75FA035373FD}"=""
  417. "{61EF3436-39BF-4EB8-A430-CAA01888B9F6}"=""
  418. "{903D8C08-3EB5-4800-99F4-C0D8F8086D59}"=""
  419. "{A4D42CA5-5611-4D9D-9A70-D1B1CC01298D}"=""
  420. "{A9CF5591-070D-4C5E-BDCA-6AECF5043253}"=""
  421. "{21C4B2FD-FAC2-4B44-B8D0-9594A47273F2}"=""
  422. "{9C017ED3-16B0-4F62-A0A6-EE9AD5305EB3}"=""
  423. "{D0B25A38-5025-4E4D-9B20-897B1D5B77AA}"=""
  424. "{F596C6FC-B4AD-4054-82AE-32155058F793}"=""
  425. "{37C82F13-2A80-4CC8-A950-40C35A72F373}"=""
  426. "{E7451E70-5281-4A75-A3A4-FA8F05A3D533}"=""
  427. "{A7C669FE-CD33-4152-B55F-0A69757C1C8A}"=""
  428. "{2CE68E6C-157C-4C4B-8709-9FF13BB828D4}"=""
  429. "{447B99CA-687C-4F29-BCFF-FE1368F92C40}"=""
  430. "{F17C6084-ABEB-443D-B461-829EECD687C1}"=""
  431. "{60B0E8BA-F515-402A-B5FF-ED76EB6C5B42}"=""
  432. "{0C3E3661-CA4A-4D8E-A264-EA7C7ADB0587}"=""
  433. "{44454B06-5C32-4E63-A9B3-EA3C548A73A0}"=""
  434. "{AF15D4FA-0DEF-4DA8-9AB8-C28D52225410}"=""
  435. "{E1AF7991-DF90-4DEB-B526-EC18C47B7D9F}"=""
  436. "{9057EBAE-97CA-41E7-827F-EA2A8E064C7E}"=""
  437. "{A659B09E-8B18-48B3-B978-26E583A57B90}"=""
  438. "{75D22816-A431-4EFB-BBC6-1BF1C53CFEE9}"=""
  439. "{ABD98DC1-CEA1-4DBA-AB87-E69E598CD1F0}"=""
  440. "{58796C8F-759B-4737-934C-1BFCAD4CA867}"=""
  441. "{70AA7C52-44FA-4441-B772-DBA4DFDC3566}"=""
  442. "{088DD803-9DE0-4F08-8CF3-40F9CEA476CB}"=""
  443. "{0DB1C4B4-1347-46D1-8F08-38F859FA7A2C}"=""
  444. "{ED9CF842-8ADB-41FC-B555-FFE5DF595326}"=""
  445. "{C56269AB-4C55-4992-AA9C-8FCF28035F4B}"=""
  446. "{4CB1FD65-E91C-46F5-8605-DC0067AAD7AE}"=""
  447. "{CD754EA9-3EE9-4858-BD2D-2FF6047D4B3D}"=""
  448. "{FEF26B8C-3804-4A4B-8E5F-78701A0ABF29}"=""
  449. "{DDD81E23-069C-4595-AC2C-917F4E47A133}"=""
  450.  
  451. [HKEY_LOCAL_MACHINE\SOFTWARE\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Common Client\ccIPC]
  452. @Denied: (C D) (Everyone)
  453.  
  454. [HKEY_LOCAL_MACHINE\SOFTWARE\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Common Client\ccIPC\Channels]
  455. @Denied: (C D) (Everyone)
  456. "ccSvcHst_UserSession_3852"="{D737C14E-3A5A-4FCB-80D5-B2AB0C8BEB46}"
  457. "ccSvcHst_UserSession_3652"="{1FB7F01E-E633-4B2D-8F2C-01B4DFE9D5D0}"
  458. "ccSvcHst_UserSession_2852"="{9C1F236C-3AE1-4A25-B035-E21CC2524C6A}"
  459. "ccSvcHst_UserSession_3052"="{B1D84B90-335B-4FC3-BDD9-008BF51628C6}"
  460. "ccSvcHst_UserSession_2528"="{05920972-CDCF-4DAD-A9AE-A85BCFB1F714}"
  461. "ccSvcHst_UserSession_3352"="{13C7F5F0-49D9-4073-802F-04B6DF3883D2}"
  462. "ccSvcHst_UserSession_2836"="{F6D9E92F-0C80-49FF-99C4-3D3A3FBD7A9A}"
  463. "ccSvcHst_UserSession_3108"="{8E2B5605-17E1-4950-93FF-1BD839ABCF2A}"
  464. "ccSvcHst_UserSession_2844"="{C39D0428-51AD-4FF9-9E6F-0D05894FF011}"
  465. "ccSvcHst_UserSession_4704"="{777A92EF-5855-4E12-BAF5-49CE45036CD7}"
  466. "ccSvcHst_UserSession_2168"="{203D7900-DD4A-4D87-A008-9620D6DADC0D}"
  467. "ccSvcHst_UserSession_2936"="{C3B539B5-6314-42BE-B700-6E0DBA3319BF}"
  468. "ccSvcHst_UserSession_4528"="{D08A8C85-8127-40BD-B869-0FC0F3EB668F}"
  469. "ccSvcHst_UserSession_1488"="{BCF0C245-0580-4939-ACDF-26ECE83FDDBD}"
  470. "ccSvcHst_UserSession_3368"="{E58D574C-113C-4D4C-9392-0576B6222483}"
  471. "ccSvcHst_UserSession_2972"="{5CED12CE-DF22-4F10-9876-837D3145DEAC}"
  472. "ccSvcHst_UserSession_3592"="{0505B409-D775-456F-AFFC-188C011A6BB3}"
  473. "ccSvcHst_UserSession_2496"="{D7457B60-3A9F-489D-93FC-5B52C9E8A7B4}"
  474. "ccSvcHst_UserSession_3344"="{750488DA-A91A-4F41-8FE3-E17B7F6E7145}"
  475. "ccSvcHst_UserSession_3372"="{EE75645C-B199-4880-B40A-799B6D0BAED3}"
  476. "ccSvcHst_UserSession_1888"="{760A68B1-8161-493D-8C8E-34955B892BBF}"
  477. "ccSvcHst_UserSession_3508"="{4E9E6EB7-BFD1-46B7-956D-516205FF1DC2}"
  478. "{436E95FE-192E-469f-8F34-5038FBA89BF4}2"="{4E9E6EB7-BFD1-46B7-956D-516205FF1DC2}"
  479. "{B44E7D73-F081-414B-ADD2-CD66675A190D}2"="{4E9E6EB7-BFD1-46B7-956D-516205FF1DC2}"
  480. "AvProdSession_02"="{4E9E6EB7-BFD1-46B7-956D-516205FF1DC2}"
  481. "AvProdSession_Options_02"="{4E9E6EB7-BFD1-46B7-956D-516205FF1DC2}"
  482. "AvProdSession_Scanless_02"="{4E9E6EB7-BFD1-46B7-956D-516205FF1DC2}"
  483. "clt::AlertChannel2_02"="{4E9E6EB7-BFD1-46B7-956D-516205FF1DC2}"
  484. "SDKCHANNEL2"="{4E9E6EB7-BFD1-46B7-956D-516205FF1DC2}"
  485. "QuickStart{4A16DDA3-2513-41ea-90C8-E34A67781129}2"="{4E9E6EB7-BFD1-46B7-956D-516205FF1DC2}"
  486. "ToasterNotify\\SessionID_2"="{4E9E6EB7-BFD1-46B7-956D-516205FF1DC2}"
  487. "AccountServices_2"="{4E9E6EB7-BFD1-46B7-956D-516205FF1DC2}"
  488. "FormHandler_2"="{4E9E6EB7-BFD1-46B7-956D-516205FF1DC2}"
  489. "ccSvcHst_UserSession_2820"="{AE52DBF8-9EA1-4355-A341-B1BA17EB93DD}"
  490. "_buSvcCommSink_{D2F84C19-D8EB-496E-A2E1-A31F1549DF9E}"="{AE52DBF8-9EA1-4355-A341-B1BA17EB93DD}"
  491. "ccSvcHst_UserSession_3016"="{9D71E208-7314-49CC-9869-706B56E0AE6F}"
  492. "_buSvcCommSink_{04E4BF54-FC54-444F-9697-D9E8DD3BAA71}"="{9D71E208-7314-49CC-9869-706B56E0AE6F}"
  493. "ccSvcHst_UserSession_3132"="{B0C47906-424C-4DC1-A032-E7ACE7A9F20A}"
  494. "ccSvcHst_UserSession_2856"="{C4DF0A2C-1948-4E63-AAFF-13406C9A8DC0}"
  495. "ccSvcHst_UserSession_1784"="{0FB07B6B-97D8-4396-A1C0-EB29AF9C2348}"
  496. "ccSvcHst_UserSession_1780"="{91FAC4F3-BA5C-4F3F-9C7C-11A2CF7706B0}"
  497. "ccSvcHst_N360"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  498. "IPS_COMMAND_CHANNEL"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  499. "QuickStart{4302D82E-BA29-4be2-A0EF-72589D61BCD3}"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  500. "ccJobMgr_general_{ABD582DE-8F75-412d-81CF-6A180F1203DD}"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  501. "ccJobMgr_session_{ABD582DE-8F75-412d-81CF-6A180F1203DD}"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  502. "ncw_performance_IPC"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  503. "_NCWSvcComm_NortonCommunityWatchConfiguration"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  504. "_ProcessDetection_"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  505. "ccGenericEvent_Global_EM"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  506. "ccGenericEvent_Global_LM"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  507. "SNDServiceRequestChannel"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  508. "SNDLocationChannel"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  509. "ccSettingsService"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  510. "_AvProdSvcComm_"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  511. "g_coVistaProxyChannel"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  512. "ipcChannel_ShastaServer"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  513. "BashIPCChannel"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  514. "FWAlert"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  515. "{3F11C6A7-CEA8-40c9-88EE-E5461341AE97}_ccSubmissionEngineIPC"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  516. "_isDataPrComm_"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  517. "_HSPlayerCommand_"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  518. "{C4A09495-F6BC-4166-B717-F3F3250462BB}"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  519. "SymRedirSvcRequestChannel"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  520. "NortonNetServiceIPC"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  521. "ccGenericLog_Manager"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  522. "NetMapServiceIPC"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  523. "isError_Service_IPC"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  524. "Tuneup_Context_Switch_Channel"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  525. "_buSvcComm_"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  526. "_buVssComm_"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  527. "{A2DE0E79-877C-485b-B604-78B170313E9E}_IronIPC"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  528. "ccSvcHst_UserSession_3056"="{96F0379E-6995-47B9-A200-4F0663DB01F6}"
  529. "{436E95FE-192E-469f-8F34-5038FBA89BF4}1"="{96F0379E-6995-47B9-A200-4F0663DB01F6}"
  530. "{B44E7D73-F081-414B-ADD2-CD66675A190D}1"="{96F0379E-6995-47B9-A200-4F0663DB01F6}"
  531. "{9BBA000F-092F-432f-B9DF-9D64FD1C2978}"="{96F0379E-6995-47B9-A200-4F0663DB01F6}"
  532. "AvProdSession_01"="{96F0379E-6995-47B9-A200-4F0663DB01F6}"
  533. "AvProdSession_Options_01"="{96F0379E-6995-47B9-A200-4F0663DB01F6}"
  534. "AvProdSession_Scanless_01"="{96F0379E-6995-47B9-A200-4F0663DB01F6}"
  535. "_buUIComm_"="{96F0379E-6995-47B9-A200-4F0663DB01F6}"
  536. "clt::AlertChannel_01"="{96F0379E-6995-47B9-A200-4F0663DB01F6}"
  537. "QuickStart{4A16DDA3-2513-41ea-90C8-E34A67781129}1"="{96F0379E-6995-47B9-A200-4F0663DB01F6}"
  538. "TRUSTCHANNEL"="{96F0379E-6995-47B9-A200-4F0663DB01F6}"
  539. "SDKCHANNEL1"="{96F0379E-6995-47B9-A200-4F0663DB01F6}"
  540. "ToasterNotify\\SessionID_1"="{96F0379E-6995-47B9-A200-4F0663DB01F6}"
  541. "AccountServices_1"="{96F0379E-6995-47B9-A200-4F0663DB01F6}"
  542. "FormHandler_1"="{96F0379E-6995-47B9-A200-4F0663DB01F6}"
  543. "_ReputationSvcComm_ReputationPublisher"="{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"
  544.  
  545. [HKEY_LOCAL_MACHINE\SOFTWARE\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Common Client\ccIPC\Endpoints]
  546. @Denied: (C D) (Everyone)
  547. "{9A557705-BEC9-452C-A1A5-4350158505DB}"=""
  548. "{D737C14E-3A5A-4FCB-80D5-B2AB0C8BEB46}"=""
  549. "{F11A592C-72FE-4753-8247-077678A3319D}"=""
  550. "{DA26DF73-E821-4F41-9010-674CB6856B35}"=""
  551. "{C31CC872-0209-4D1D-81DC-9C27363BD9D6}"=""
  552. "{4017B2DF-DC57-4AC8-92A2-0E1C443ACFBE}"=""
  553. "{1FB7F01E-E633-4B2D-8F2C-01B4DFE9D5D0}"=""
  554. "{CD5CB899-1B06-4796-970E-08A6E4101D3B}"=""
  555. "{9C1F236C-3AE1-4A25-B035-E21CC2524C6A}"=""
  556. "{E3B3C2B6-82C3-405E-9DB3-D948D917AF8E}"=""
  557. "{DC86C1C0-E76D-4FC7-987B-660E498A1022}"=""
  558. "{E36C868F-EBE1-4237-881F-6B59169BDF87}"=""
  559. "{5EDAB680-F230-4C5B-9F65-AA3CDC3F9D7D}"=""
  560. "{086EED47-287A-4BCD-9E6C-2BB0A16A86B4}"=""
  561. "{CA335D77-9DA4-4148-8ECA-DE58DBE58E66}"=""
  562. "{B1D84B90-335B-4FC3-BDD9-008BF51628C6}"=""
  563. "{358BB84D-0DB1-4A37-B542-2D6F44BED8C6}"=""
  564. "{9E634759-99ED-46FA-9B72-C0AAD8D15E35}"=""
  565. "{293497BF-F855-48E8-A053-717D49BD742C}"=""
  566. "{35B75049-1231-41BD-A0A9-051421EDC8C8}"=""
  567. "{A53D0270-9721-4881-BD90-4D30D838DB5C}"=""
  568. "{7C563E07-0389-4D77-BB3B-CAABE852A120}"=""
  569. "{5B3F207E-EFF6-4123-A752-311D60511BFC}"=""
  570. "{13E93426-C239-424A-859C-BAE5ECACB241}"=""
  571. "{EAA57D8E-02F5-42A8-B501-A6CC4CC763E9}"=""
  572. "{05920972-CDCF-4DAD-A9AE-A85BCFB1F714}"=""
  573. "{443AF468-A27B-4A8A-B619-B79B284BC4D5}"=""
  574. "{659392D8-B0CD-4E93-9D9D-B47CCC25B82B}"=""
  575. "{9FD3EFBB-CC40-4EAE-8886-F272B7A6299E}"=""
  576. "{238ED49E-4E25-4091-9C36-518F614E6FB2}"=""
  577. "{F1E1C3A5-8333-4B3A-9DDC-EA72C688A250}"=""
  578. "{CE58D772-B895-4602-AD27-0CC19BD95165}"=""
  579. "{B2E22473-3E61-4C2F-874F-86499FA82C43}"=""
  580. "{7732952F-CE59-4501-B78D-318938BD02EB}"=""
  581. "{BEF07803-5013-49A9-8943-5DF67F4B1FA8}"=""
  582. "{13C7F5F0-49D9-4073-802F-04B6DF3883D2}"=""
  583. "{886B4D86-7459-4FF9-8770-1F06C98DBA5F}"=""
  584. "{68344BE4-2644-4CAF-89BF-3592BF7F588D}"=""
  585. "{FAD6FD96-045C-45FD-BD79-9EC0BF0B9716}"=""
  586. "{BA5BFF61-8654-43FC-BB1D-A94639F3DDB5}"=""
  587. "{4BD1EC30-34D6-4469-B029-75877A054B9E}"=""
  588. "{89C76F0A-680A-43EC-B803-4432E7EF3355}"=""
  589. "{414108D1-CD6F-47DD-B076-5E2D65EBBD32}"=""
  590. "{9FE4AABF-770E-422B-B0A3-E36C50E432FA}"=""
  591. "{52FDB290-C1B1-4AB9-B3CA-CE9BD8FD6EE0}"=""
  592. "{A37960D5-76EF-45F8-BDE8-77F17A6F25D8}"=""
  593. "{33077A00-4168-4C69-A0F2-5358CDEBD2BB}"=""
  594. "{F6D9E92F-0C80-49FF-99C4-3D3A3FBD7A9A}"=""
  595. "{2FC485C9-5E8F-4DF5-BE46-DC8ECDF5D3E4}"=""
  596. "{C16576C9-2749-404B-A7E2-766BA063AAC4}"=""
  597. "{4746A990-7169-43D5-AB5C-F7A35AFE0E9E}"=""
  598. "{9D5EDA4D-6510-4234-BD1B-F2503CDA78C5}"=""
  599. "{FB6AD017-E7C2-4EE4-948F-9EF639C8022F}"=""
  600. "{C39D0428-51AD-4FF9-9E6F-0D05894FF011}"=""
  601. "{FF2ED5B0-5E8F-4542-B617-3644E14832E5}"=""
  602. "{777A92EF-5855-4E12-BAF5-49CE45036CD7}"=""
  603. "{5D5BFF34-B08F-4CF1-B96B-C3549E8E0560}"=""
  604. "{203D7900-DD4A-4D87-A008-9620D6DADC0D}"=""
  605. "{33A84DFE-D90A-40EE-9A02-BA0DE9F8117E}"=""
  606. "{0C6698D1-8936-4EDE-8087-B708A8E01CAC}"=""
  607. "{1E981A1D-7C61-44DB-BF35-22D725EA7204}"=""
  608. "{A3A651F6-71C1-4642-83B1-32C0BE680A2C}"=""
  609. "{C31AA81D-C37F-4721-B228-854C008ACF4D}"=""
  610. "{95C8E31C-BFDC-4C97-918B-42B6A105E558}"=""
  611. "{288CFD09-5E59-4DAB-B3DE-1E58ED6BCFC5}"=""
  612. "{F6611283-0712-410B-9194-4D7F81935A9E}"=""
  613. "{8FD61418-7114-41BD-A16C-C2DECC0CF3A0}"=""
  614. "{6DEFE3D3-08AA-49EF-A140-351BBBD6DBA1}"=""
  615. "{2DAC49D3-1B90-471F-9CE8-349EC2AB3DF6}"=""
  616. "{9FFB5B94-699B-49BF-8185-7641B73B8DEC}"=""
  617. "{E8B4CD93-A979-405A-9855-7375C6A97A7E}"=""
  618. "{78DAB82C-33B6-4E5D-B24E-02ED3A1D7A47}"=""
  619. "{B6EE99C9-65CE-4CDA-9313-358912358C51}"=""
  620. "{C3B539B5-6314-42BE-B700-6E0DBA3319BF}"=""
  621. "{FEE3694C-22C1-4188-A779-834DF10406E8}"=""
  622. "{D08A8C85-8127-40BD-B869-0FC0F3EB668F}"=""
  623. "{2EC6BDF8-2ADF-485E-8E6B-2F8DC455C0B5}"=""
  624. "{4BA7432B-186F-4835-AAF2-4F555DAD4249}"=""
  625. "{C5C4F26E-BC47-4200-A960-7EBAC021CBB2}"=""
  626. "{BCF0C245-0580-4939-ACDF-26ECE83FDDBD}"=""
  627. "{9F5D128D-2EDF-4C94-BFC2-F2589DDE6DB8}"=""
  628. "{CA4756B3-47C1-4AD7-B3B8-18079C8BE9E6}"=""
  629. "{E58D574C-113C-4D4C-9392-0576B6222483}"=""
  630. "{AC455680-FA43-4AE0-A451-8050D0F77258}"=""
  631. "{DAEBC543-7432-4DB0-BFC7-ECC43440895F}"=""
  632. "{8C8DC657-9F02-4591-99C8-95B30FBA2840}"=""
  633. "{F615120F-16BF-49AC-9E4D-EA2CB9E67BE6}"=""
  634. "{91D9AFF0-EDF1-4FA4-A449-C45F057C27A1}"=""
  635. "{DE7926A9-64AB-43D1-BCC5-B65545050EA2}"=""
  636. "{5F423036-9DC3-4F38-8DC3-014F10EB2480}"=""
  637. "{941AB392-0308-47B6-9F55-2EE0DDC31051}"=""
  638. "{66C4E56B-F585-4892-8A73-F8FA79E1C70B}"=""
  639. "{A6A7F686-F4FE-4445-A025-899085FB0CDF}"=""
  640. "{FEC5ADD7-E4E3-49F8-841A-5202909240D7}"=""
  641. "{210A6092-C4AF-464E-AA7F-8E0CC33CC2E0}"=""
  642. "{9A57BC13-CB75-4224-956D-F3605DF08ACE}"=""
  643. "{67721A1A-9876-4832-AF36-C248E1B5ABAC}"=""
  644. "{39786F5E-D2E9-4570-B8F7-ACAF81CBB5E0}"=""
  645. "{C458C227-53B1-4240-ADEF-E2CC2D155BA3}"=""
  646. "{A118EFC5-BED5-4B71-B30B-BB9FD305AD49}"=""
  647. "{5F1BDFCE-A9DE-4A22-91B3-8A66F6E4A570}"=""
  648. "{B796A370-692C-441B-8354-E69C6A107122}"=""
  649. "{626A8921-63C8-4CE5-92F8-76887BF1D650}"=""
  650. "{7904A6DA-D6B1-495D-9FEF-0C69F5D9AEB6}"=""
  651. "{969BFE47-89CE-4F77-8A9B-6DFF3153BC62}"=""
  652. "{33001C50-0E74-4A05-B115-8168EE0231F9}"=""
  653. "{2AF84341-57FB-40B3-ABDA-E1421E56A77A}"=""
  654. "{4D97AED4-36AF-474E-96B9-0CE875E9885D}"=""
  655. "{5BC02A7F-88FE-443E-96B8-F38E7E64A014}"=""
  656. "{9C6BAFE3-71B9-4E81-88D8-B14CE959B330}"=""
  657. "{380A3949-FF5A-4C2F-ADB2-A99AD370E010}"=""
  658. "{8ED6948D-7CA8-4257-B93A-6925816B2181}"=""
  659. "{7CBFFF22-4DDE-4C24-9205-35FEA6D2197A}"=""
  660. "{7B8A94A7-9C68-41B6-8213-F09956F01CC7}"=""
  661. "{4BC2CE4C-9C60-4C5C-8CA6-C96C3B365536}"=""
  662. "{0FE6B389-C2B4-41B3-8BF2-80351541AD12}"=""
  663. "{AC5C3094-E5E5-4DF5-9E80-19B72EABD09A}"=""
  664. "{196E0ABB-FC15-4BDC-A6DA-9E503DD6CC22}"=""
  665. "{7068B23B-AB96-47F3-8D6B-6146EF551A74}"=""
  666. "{29992096-12C7-4D8C-BC95-D966EE6FADBC}"=""
  667. "{5CED12CE-DF22-4F10-9876-837D3145DEAC}"=""
  668. "{7536C0CE-1061-4CD0-836B-D131F24456AF}"=""
  669. "{0505B409-D775-456F-AFFC-188C011A6BB3}"=""
  670. "{AA0CFCFC-446F-49F9-B8B7-EB72296463CE}"=""
  671. "{1B3050D9-4B1B-42F5-8030-3534274FC9EF}"=""
  672. "{D57E9831-1B22-4154-9AE3-B13DF0ECF380}"=""
  673. "{8E2B5605-17E1-4950-93FF-1BD839ABCF2A}"=""
  674. "{3DDE460E-7789-490F-AF0F-FCF7791706CB}"=""
  675. "{C20D63A1-FF0A-41A8-8DDB-D0D0819127E4}"=""
  676. "{211A997A-1C10-4490-8DBF-1FAD1D2032B5}"=""
  677. "{BE597174-9458-4331-95DA-648E9FBFB6F3}"=""
  678. "{58BEECBA-35DE-4A72-A39C-A8981E063C58}"=""
  679. "{4BB63CA7-A997-443D-8522-A75731AF3C2A}"=""
  680. "{5A66280F-27EA-4924-9877-4FCA71275375}"=""
  681. "{D7457B60-3A9F-489D-93FC-5B52C9E8A7B4}"=""
  682. "{76186ED6-FA1A-4983-ACD7-536C7991670D}"=""
  683. "{21C906C3-6E2E-4850-8AB1-510FB7C7C053}"=""
  684. "{FD1BDFA8-DC70-4A39-B099-D8A483B83944}"=""
  685. "{750488DA-A91A-4F41-8FE3-E17B7F6E7145}"=""
  686. "{C587349D-CA3E-4A7F-945A-402055455021}"=""
  687. "{EE75645C-B199-4880-B40A-799B6D0BAED3}"=""
  688. "{3B7BCFC2-C4F1-4111-B67C-1B5C1939B290}"=""
  689. "{760A68B1-8161-493D-8C8E-34955B892BBF}"=""
  690. "{4E9E6EB7-BFD1-46B7-956D-516205FF1DC2}"=""
  691. "{2CE8990D-5650-44EB-A2C9-77622EC2EFE2}"=""
  692. "{AE52DBF8-9EA1-4355-A341-B1BA17EB93DD}"=""
  693. "{2C9C91DA-B9B7-482B-8EFE-F9B8E724CC23}"=""
  694. "{1F153336-0896-4322-960A-A260982AFCE6}"=""
  695. "{13CBFCF2-46A7-49A9-9F94-B9BAE1CB283F}"=""
  696. "{C575059A-7B41-4729-B230-BB6D893A3086}"=""
  697. "{8C594DC6-1B84-4083-A493-C765226F7983}"=""
  698. "{07C4A34A-E9DB-443B-94AC-5DE7204464ED}"=""
  699. "{28F7753D-8A72-47E0-8EFC-5155139C1F97}"=""
  700. "{95A559F4-8566-479C-8350-27ED2118F2F1}"=""
  701. "{51D36F72-F3BD-4D72-B039-33114BD282C4}"=""
  702. "{B9CAD5E2-EE0F-4CB6-AFEB-EBCA63A36652}"=""
  703. "{1F2D693C-C388-47D0-B57A-F1FEBC0027B2}"=""
  704. "{A38B63DC-614F-4554-8845-33B62CD522CF}"=""
  705. "{B47EEDB4-24EE-4B3D-8111-ED30EE50EF3B}"=""
  706. "{1179D382-C8FC-4316-A20D-5B79B5E4FA1C}"=""
  707. "{00C71709-826F-488F-86C0-A6315AFC7E40}"=""
  708. "{2B16B90F-E0B0-4206-B3BC-DA442EA6AD54}"=""
  709. "{E9371C56-AF13-4595-B683-D40F2088D8CD}"=""
  710. "{F9400E5B-DA6C-4B70-B807-5C5102F12ED7}"=""
  711. "{3BC24848-D619-4DB9-87C8-6D7DB528C648}"=""
  712. "{A83C4616-3A9A-4547-91B5-D9591D4FBEDA}"=""
  713. "{BDF17AFD-AA8C-4FDE-8AE3-B3E662ABFB46}"=""
  714. "{9D71E208-7314-49CC-9869-706B56E0AE6F}"=""
  715. "{6E2D898E-8BD5-46B1-8EEB-93CAB27DDF5A}"=""
  716. "{22409907-1BFD-49D8-AFD8-E329C7B6A532}"=""
  717. "{C500D265-C25F-4893-B846-A0879805E60E}"=""
  718. "{386A6DB9-B85E-4A9F-8413-E8451888D906}"=""
  719. "{A1E4C631-7063-4D57-BA12-BEF05841E054}"=""
  720. "{D0731728-5F80-4146-A9E3-659B804B25ED}"=""
  721. "{4CAE7590-6637-4430-8198-9024BB6421D7}"=""
  722. "{C03C8008-46BA-470B-8719-2B172FA72FE8}"=""
  723. "{88C7A274-5678-4D55-8ED7-5A2C2FF9E6AF}"=""
  724. "{B0C47906-424C-4DC1-A032-E7ACE7A9F20A}"=""
  725. "{D77F9056-B087-46B3-82A6-B275375BCD36}"=""
  726. "{C4DF0A2C-1948-4E63-AAFF-13406C9A8DC0}"=""
  727. "{F8CEDF4C-3F82-4FC8-9DE1-0CFDB4622388}"=""
  728. "{62440C97-15DC-46C6-81CF-E2D53B221F87}"=""
  729. "{4A719917-F6F1-45E3-BBBF-1601F0B81951}"=""
  730. "{DE1C2B2F-98C3-4282-A07C-DE27BB74CA02}"=""
  731. "{FE32CCB8-7035-4CA0-A1EC-EB9E5602CE53}"=""
  732. "{2EEEDA4C-5A62-433F-8586-98F0EC21B1C9}"=""
  733. "{0FB07B6B-97D8-4396-A1C0-EB29AF9C2348}"=""
  734. "{8B59F883-40F6-4F45-96E1-F6DAFB359DE9}"=""
  735. "{91FAC4F3-BA5C-4F3F-9C7C-11A2CF7706B0}"=""
  736. "{0ADB73D0-A084-46D1-927E-CE91D6322AA4}"=""
  737. "{0C8CD74C-389A-4B1C-B57E-43094892DC4F}"=""
  738. "{7FA8B0AC-F50B-4B9F-A920-A06048D71331}"=""
  739. "{848340A6-C60E-4092-9D58-1D054EDA2FD6}"=""
  740. "{D315ABAA-13E0-467E-B31C-1A54ACD12C3F}"=""
  741. "{F3282090-22C6-45E9-9E81-20EA18221BE9}"=""
  742. "{4D7ECACB-25A1-4FDC-BD2E-E5B045427002}"=""
  743. "{26CC0066-091C-4D69-B14A-7ACF762374AA}"=""
  744. "{47BBDFEC-6A75-4713-B8B2-C749AC671552}"=""
  745. "{16D6CA5B-1BA7-4C02-B723-CEE76D7464BF}"=""
  746. "{96F0379E-6995-47B9-A200-4F0663DB01F6}"=""
  747.  
  748. [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
  749. @Denied: (A) (Users)
  750. @Denied: (A) (Everyone)
  751. @Allowed: (B 1 2 3 4 5) (S-1-5-20)
  752. "BlindDial"=dword:00000001
  753. "MSCurrentCountry"=dword:000000b5
  754.  
  755. [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Control\PCW\Security]
  756. @Denied: (Full) (Everyone)
  757. .
  758. Completion time: 2010-03-21  13:31:48
  759. ComboFix-quarantined-files.txt  2010-03-21 13:31
  760.  
  761. Pre-Run: 334,187,282,432 bytes free
  762. Post-Run: 333,608,980,480 bytes free
  763.  
  764. - - End Of File - - C79389AC1F73EA3F876BF8564A463603