CloseProcesses: CreateRestorePoint: HKLM-x32\...\Run: [] => [X] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION SearchScopes: HKLM -> DefaultScope {843F8246-B4D3-436E-993C-E683694E7048} URL = http://start.mysearc...cr=20185727&ir= SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {843F8246-B4D3-436E-993C-E683694E7048} URL = http://start.mysearc...cr=20185727&ir= SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1973512931-3336358897-1288466322-1001 -> {843F8246-B4D3-436E-993C-E683694E7048} URL FF user.js: detected! => C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\zfddampy.default-1396900832420\user.js FF Extension: YoutuubeAdBllooCke - C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\zfddampy.default-1396900832420\Extensions\2DRE@w.com [2014-12-16] CHR Extension: (BuyNSAve) - C:\ProgramData\lbihihaaofomgcababbmjgbblobipmib\ [2014-11-04] R2 CouponPrinterService; C:\Program Files (x86)\Coupons\CouponPrinterService.exe [179184 2014-10-15] (Coupons.com Inc.) C:\Program Files (x86)\Coupons Task: {07A2F53B-4786-4062-A24F-C16B7B8626FE} - \Digital Sites No Task File <==== ATTENTION HKLM-x32\...\Run: [IObit Malware Fighter] => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [1802048 2014-10-13] (IObit) HKU\S-1-5-18\...\Run: [Advanced SystemCare 8] => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe [2427680 2014-12-10] (IObit) SearchScopes: HKU\S-1-5-21-1973512931-3336358897-1288466322-1001 -> E2170BFC38574C29915A1E2A25F2714A URL = http://securedsearch...q={searchTerms} BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit) BHO-x32: Ads Removal -> {9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} -> C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll (Adblock) BHO-x32: Advanced SystemCare Surfing Protection -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit) FF NewTab: hxxp://securedsearch.lavasoft.com/?pr=vmn&id=webcompa&ent=hp_WCYID10088_cnet_141226 FF SelectedSearchEngine: Ad-Aware SecureSearch FF SearchPlugin: C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\zfddampy.default-1396900832420\searchplugins\securesearch.xml FF Extension: Ads Removal - C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\zfddampy.default-1396900832420\Extensions\adremoveext@adremoveext.net [2014-12-14] FF Extension: Advanced SystemCare Surfing Protection - C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\zfddampy.default-1396900832420\Extensions\iobitascsurfingprotection@iobit.com [2015-01-02] CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd [2014-04-09] CHR HKLM-x32\...\Chrome\Extension: [nfengeggddojhakldhlpjdlddgkkjkdd] - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASC_GhromePlugin.crx [2014-01-13] R2 AdvancedSystemCareService8; C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe [815392 2014-11-04] (IObit) R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [344896 2014-09-30] (IObit) S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2631456 2015-01-02] (IObit) R3 FileMonitor; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [23048 2013-03-23] (IObit) R3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34848 2013-11-19] (IObit.com) R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [21184 2014-06-04] (IObit) R3 UrlFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [23016 2013-11-19] (IObit.com) 2015-01-02 11:08 - 2015-01-02 11:08 - 00002852 _____ () C:\Windows\System32\Tasks\ASC8_SkipUac_John 2015-01-02 11:07 - 2015-01-02 11:07 - 00002892 _____ () C:\Windows\System32\Tasks\Uninstaller_SkipUac_John 2015-01-02 11:07 - 2015-01-02 11:07 - 00000000 ____D () C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} 2015-01-02 11:06 - 2015-01-02 11:14 - 00002111 _____ () C:\Users\Public\Desktop\Advanced SystemCare 8.lnk 2015-01-02 11:06 - 2015-01-02 11:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8 2014-12-11 22:07 - 2014-12-17 20:11 - 00000000 ____D () C:\Program Files (x86)\Application Updater 2014-12-11 22:07 - 2014-12-17 20:10 - 00000000 ____D () C:\Program Files (x86)\IObit Apps Toolbar 2014-12-09 22:06 - 2014-12-09 22:06 - 00001179 _____ () C:\Users\Public\Desktop\IObit Malware Fighter.lnk 2014-12-09 22:06 - 2014-12-09 22:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Malware Fighter 2014-12-09 22:04 - 2014-12-09 22:05 - 32809520 _____ (IObit ) C:\Users\John\Downloads\IObit-Malware-Fighter-Setup.exe 2015-01-02 11:08 - 2014-01-13 16:39 - 00000000 ____D () C:\ProgramData\ProductData 2015-01-02 11:08 - 2014-01-13 16:37 - 00000000 ____D () C:\Users\John\AppData\Roaming\IObit 2015-01-02 11:07 - 2014-01-13 16:35 - 00000000 ____D () C:\ProgramData\IObit 2015-01-02 11:06 - 2014-01-13 16:35 - 00000000 ____D () C:\Program Files (x86)\IObit Task: {15BF610A-6047-49D5-93A5-4DEBE157F84D} - System32\Tasks\Driver Booster SkipUAC (SYSTEM) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [2014-10-28] (IObit) Task: {73F1ECDA-E878-4546-961F-1A64753EA16E} - System32\Tasks\SmartDefrag3_Startup => C:\Program Files (x86)\IObit\Smart Defrag 3\SmartDefrag.exe [2014-11-04] (IObit) Task: {890EE660-61F4-4441-A4B3-66BE385978EB} - System32\Tasks\ASC8_SkipUac_John => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe [2014-12-10] (IObit) Task: {BA55BC07-9D8B-4B05-84F9-3DEA9F26C048} - System32\Tasks\Driver Booster SkipUAC (John) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [2014-10-28] (IObit) Task: {C190163D-888F-4F09-BEA5-EB4E6D0D0C36} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe [2014-10-13] (IObit) Task: {CAE18874-F60E-4A7F-851F-69D0DD6D6E70} - System32\Tasks\Uninstaller_SkipUac_Administrator => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2015-01-02] (IObit) Task: {CE90F2B6-3A0E-48C7-9779-C70824FB3438} - System32\Tasks\SmartDefrag3_Update => C:\Program Files (x86)\IObit\Smart Defrag 3\AutoUpdate.exe [2014-07-23] (IObit) Task: {F28CB2D1-C20D-4E37-8E15-10F216172851} - System32\Tasks\Uninstaller_SkipUac_John => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2015-01-02] (IObit) 2014-12-26 12:14 - 2014-12-26 12:14 - 00000000 ____D () C:\Users\John\AppData\Roaming\LavasoftStatistics 2014-12-26 12:13 - 2014-12-26 12:13 - 00004720 _____ () C:\Windows\SysWOW64\LavasoftTcpService.ini 2014-12-26 12:13 - 2014-12-26 12:13 - 00002552 _____ () C:\Windows\SysWOW64\LavasoftTcpServiceOff.ini 2014-12-26 12:13 - 2014-12-26 12:13 - 00002552 _____ () C:\Windows\system32\LavasoftTcpServiceOff.ini 2014-12-26 12:13 - 2014-12-16 12:10 - 00358736 _____ (Lavasoft Limited) C:\Windows\system32\LavasoftTcpService64.dll 2014-12-26 12:13 - 2014-12-16 12:10 - 00312424 _____ (Lavasoft Limited) C:\Windows\SysWOW64\LavasoftTcpService.dll 2014-12-26 12:08 - 2014-12-26 12:08 - 01924232 _____ () C:\Users\John\Downloads\Adaware_Installer.exe 2014-12-26 15:08 - 2014-12-26 15:08 - 02077392 _____ (Microsoft Corporation) C:\Users\John\Downloads\7A2E.tmp 2014-12-26 10:53 - 2014-12-26 10:53 - 00003164 _____ () C:\Windows\System32\Tasks\SmartDefrag3_Startup 2014-12-26 10:53 - 2014-12-26 10:53 - 00003162 _____ () C:\Windows\System32\Tasks\SmartDefrag3_Update 2014-12-26 10:52 - 2014-12-26 10:52 - 00003156 _____ () C:\Windows\System32\Tasks\Driver Booster Update 2014-12-26 10:52 - 2014-12-26 10:52 - 00000000 ____D () C:\Windows\Tasks\ImCleanDisabled 2014-12-26 10:52 - 2014-12-26 10:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2 2014-12-16 12:13 - 2014-12-26 11:27 - 00000000 ____D () C:\Program Files (x86)\YoutuubeAdBllooCke 2014-12-16 12:13 - 2014-12-26 11:27 - 00000000 ____D () C:\Program Files (x86)\Free Visio Viewer 2014-12-16 12:12 - 2014-12-16 12:12 - 00000000 ____D () C:\ProgramData\lbihihaaofomgcababbmjgbblobipmib 2014-12-16 12:12 - 2014-12-16 12:12 - 00000000 ____D () C:\ProgramData\15431041915562449580 2014-12-09 22:04 - 2014-12-09 22:05 - 32809520 _____ (IObit ) C:\Users\John\Downloads\IObit-Malware-Fighter-Setup.exe HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" EmptyTemp: