CreateRestorePoint: () C:\Users\BR\AppData\Roaming\BC6A47D4-1425301620-11DF-94BB-158251E1A54F\jnsfE0CE.tmp () C:\Users\BR\AppData\Roaming\BC6A47D4-1425301620-11DF-94BB-158251E1A54F\nsvACBE.tmpfs R2 cehufofi; C:\Users\BR\AppData\Roaming\BC6A47D4-1425301620-11DF-94BB-158251E1A54F\jnsfE0CE.tmp [103424 2015-03-02] () [File not signed] R2 xeqomesu; C:\Users\BR\AppData\Roaming\BC6A47D4-1425301620-11DF-94BB-158251E1A54F\nsvACBE.tmpfs [X] 2015-03-02 13:07 - 2015-03-02 13:07 - 00103424 _____ () C:\Users\BR\AppData\Roaming\BC6A47D4-1425301620-11DF-94BB-158251E1A54F\jnsfE0CE.tmp 2015-03-02 13:07 - 2015-03-02 13:07 - 00114176 _____ () C:\Users\BR\AppData\Roaming\BC6A47D4-1425301620-11DF-94BB-158251E1A54F\nsvACBE.tmpfs C:\Users\BR\AppData\Roaming\BC6A47D4-1425301620-11DF-94BB-158251E1A54F HKLM\...\Run: [3D BubbleSound] => "C:\Program Files\BubbleSound\3D BubbleSound.exe" C:\Program Files\BubbleSound ShortcutTarget: superpc_soft_partner.lnk -> C:\ProgramData\{e464dc0c-3cba-5e51-e464-4dc0c3cb7030}\superpc_soft_partner.exe (Super PC Tools Ltd) Startup: C:\Users\BR\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\superpc_soft_partner.lnk 2015-03-02 13:08 - 2015-03-02 13:08 - 00003236 _____ () C:\Windows\System32\Tasks\Super Optimizer Schedule Task: {00BF9635-66CA-4DFC-A11F-93B3344BB30B} - System32\Tasks\Super Optimizer Schedule => C:\Program Files (x86)\Super Optimizer\SupOptLauncher.exe <==== ATTENTION 2015-03-02 13:14 - 2015-03-02 13:14 - 00021976 _____ () C:\Windows\system32\Drivers\SPPD.sys 2015-03-02 13:03 - 2015-03-02 13:20 - 00000000 ____D () C:\Program Files (x86)\Regprocleaner 2015-03-02 13:03 - 2015-03-02 13:03 - 00003072 _____ () C:\Windows\System32\Tasks\RPC Task: {AB93CB62-09D3-4CB8-A69A-DD87F1BF9463} - System32\Tasks\RPC => C:\Program Files (x86)\Regprocleaner\Regprocleaner.exe 2015-03-02 13:03 - 2015-03-02 13:03 - 00000981 _____ () C:\Users\BRIAN\Desktop\PepperZip.lnk 2015-03-02 13:03 - 2015-03-02 13:03 - 00000981 _____ () C:\Users\bcom\Desktop\PepperZip.lnk 2015-03-02 13:03 - 2015-03-02 13:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip 2015-03-02 13:03 - 2015-03-02 13:03 - 00000000 ____D () C:\Program Files (x86)\predm 2015-03-02 13:03 - 2015-02-02 07:42 - 04686848 ____N () C:\Windows\rcore.exe 2015-03-02 12:51 - 2015-03-02 12:51 - 00000000 ____D () C:\Users\BR\AppData\Roaming\SimpleFiles 2015-02-23 09:42 - 2015-02-23 09:42 - 00002950 _____ () C:\Windows\System32\Tasks\{3B22DB93-5D1E-4887-A309-936490D348AA} 2015-02-23 09:41 - 2015-02-23 09:41 - 00002950 _____ () C:\Windows\System32\Tasks\{EE7250D0-13DD-4831-92FA-5FF718F977CD} 2015-02-16 20:49 - 2015-02-16 20:49 - 00000000 ____D () C:\Users\BR\AppData\Roaming\IsolatedStorage 2015-02-16 20:49 - 2015-02-16 20:49 - 00000000 ____D () C:\Users\BR\AppData\Local\FileViewPro 2015-02-16 20:49 - 2015-02-16 20:49 - 00000000 ____D () C:\ProgramData\IsolatedStorage 2015-02-16 20:47 - 2015-02-16 20:51 - 00000000 ____D () C:\Users\BR\AppData\Roaming\Solvusoft 2015-02-16 20:47 - 2015-02-16 20:47 - 00000000 ____D () C:\Spacekace 2015-02-16 20:47 - 2012-10-15 17:02 - 00019888 _____ (solvusoft) C:\Windows\system32\roboot64.exe 2015-02-16 19:59 - 2015-02-16 20:02 - 00000000 ____D () C:\Program Files (x86)\ExtractNow 2015-02-16 19:59 - 2015-02-16 20:01 - 00000000 ____D () C:\Users\BR\AppData\Local\ExtractNow 2015-02-16 19:58 - 2015-03-02 14:31 - 00000000 ____D () C:\Users\BR\AppData\Roaming\BrowserExtensions Task: {02C67267-8551-4C1C-B7DA-63EA28A6B54E} - \SpeeditUp Update No Task File <==== ATTENTION Task: {78C2A66C-9EA8-4576-B521-87A652EFB47E} - \avayvaxvaa No Task File <==== ATTENTION Task: {A1ADD4D7-6035-4698-926B-41161C68C3CE} - \LuckyTab No Task File <==== ATTENTION 2015-03-02 13:41 - 2015-03-02 13:41 - 00000000 ____D () C:\ProgramData\c2d5e0200004554 2015-03-02 13:01 - 2015-03-02 13:47 - 00000000 ____D () C:\ProgramData\{e464dc0c-3cba-5e51-e464-4dc0c3cb7030} C:\Program Files (x86)\Super Optimizer ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled. ProxyServer: [.DEFAULT] => http=127.0.0.1:53904;https=127.0.0.1:53904 FF DefaultSearchEngine: Trovi cmd: bitsadmin /reset /allusers cmd: netsh advfirewall reset cmd: netsh advfirewall set allprofiles state on Hosts: EmptyTemp: