HKU\S-1-5-21-475818928-1566985967-3258346663-1001\...\RunOnce: [WindowsUpdate] => C:\Program Files (x86)\Windows Manager\winmgr.exe [41598976 2014-04-22] (Wondershare Software Co.,Ltd.) HKU\S-1-5-21-475818928-1566985967-3258346663-1001\...\CurrentVersion\Windows: [Load] C:\ProgramData\Microsoft.com <===== ATTENTION HKU\S-1-5-21-475818928-1566985967-3258346663-1001\...\MountPoints2: {914b137f-5f6d-11e3-824b-806e6f6e6963} - "E:\autorun.exe" IFEO\AvastSvc.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\AvastUI.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\avcenter.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\avconfig.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\avgcsrvx.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\avgidsagent.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\avgnt.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\avgrsx.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\avguard.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\avgui.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\avgwdsvc.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\avp.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\avscan.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\bdagent.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\ccuac.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\ComboFix.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\egui.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\hijackthis.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\instup.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\keyscrambler.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\mbam.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\mbamgui.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\mbampt.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\mbamscheduler.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\mbamservice.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\MpCmdRun.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\MSASCui.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\MsMpEng.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\msseces.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\rstrui.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\spybotsd.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\taskman.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\wireshark.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com IFEO\zlclient.exe: [Debugger] C:\WINDOWS\system32\Microsoft.com 2014-11-03 19:32 - 2014-11-03 19:32 - 00000000 ____D () C:\Users\DSW79\AppData\Roaming\Wondershare 2014-11-03 19:32 - 2014-11-03 19:32 - 00000000 ____D () C:\Users\DSW79\AppData\Local\Wondershare 2014-11-03 19:31 - 2014-11-05 11:23 - 00000000 __SHD () C:\ProgramData\Windows Manager 2014-11-03 23:49 - 2014-11-04 00:05 - 00000000 __SHD () C:\Program Files (x86)\Windows Manager 2014-11-03 19:31 - 2014-04-22 18:28 - 41598976 __RSH (Wondershare Software Co.,Ltd. ) C:\WINDOWS\SysWOW64\Microsoft.com 2014-11-03 19:31 - 2014-04-22 18:28 - 41598976 __RSH (Wondershare Software Co.,Ltd. ) C:\ProgramData\Microsoft.com C:\WINDOWS\SysWOW64\Microsoft.com C:\Program Files (x86)\Windows Manager\winmgr.exe C:\ProgramData\Windows Manager C:\ProgramData\Microsoft.com C:\Users\DSW79\AppData\Local\Temp\ose00000.exe C:\Users\DSW79\AppData\Local\Temp\WondersharePDFEditor3.6.2.exe