Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

malware present on my system, security not able to add. [Solved]


  • This topic is locked This topic is locked

#1
d_may

d_may

    Member

  • Member
  • PipPip
  • 55 posts
I am having issues with not being able to add an anti virus to my system.
Here is the post from my OLT

OTL logfile created on: 10/27/2013 12:57:35 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Dale\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16721)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

5.99 Gb Total Physical Memory | 4.73 Gb Available Physical Memory | 79.02% Memory free
11.98 Gb Paging File | 9.76 Gb Available in Paging File | 81.48% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 582.50 Gb Total Space | 509.66 Gb Free Space | 87.50% Space Free | Partition Type: NTFS
Drive D: | 13.67 Gb Total Space | 2.20 Gb Free Space | 16.05% Space Free | Partition Type: NTFS
Drive K: | 3.74 Gb Total Space | 0.10 Gb Free Space | 2.63% Space Free | Partition Type: FAT32

Computer Name: DALE-PC | User Name: Dale | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2013/10/27 12:57:14 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Dale\Downloads\OTL.exe
PRC - [2013/10/22 10:15:11 | 001,140,736 | ---- | M] (Spotify Ltd) -- C:\Users\Dale\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
PRC - [2013/10/09 15:06:29 | 000,237,960 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler.exe
PRC - [2013/10/08 16:16:12 | 001,862,536 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
PRC - [2013/10/02 09:44:24 | 000,274,840 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2013/09/13 18:23:02 | 001,974,080 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Smart Defrag 2\SmartDefrag.exe
PRC - [2013/08/30 19:26:24 | 000,240,288 | ---- | M] (Microsoft Corporation.) -- C:\Program Files (x86)\Microsoft\BingBar\7.3.107.0\SeaPort.EXE
PRC - [2013/08/16 18:09:02 | 001,549,120 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe
PRC - [2013/08/10 17:44:44 | 000,732,992 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\Monitor.exe
PRC - [2013/06/05 13:40:52 | 002,249,352 | ---- | M] (Microsoft Corp.) -- C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe
PRC - [2013/06/05 13:40:50 | 000,349,832 | ---- | M] (Microsoft Corp.) -- C:\Program Files (x86)\Microsoft\BingDesktop\BDRuntimeHost.exe
PRC - [2013/06/05 13:40:50 | 000,206,984 | ---- | M] (Microsoft Corp.) -- C:\Program Files (x86)\Microsoft\BingDesktop\BDExtHost.exe
PRC - [2013/06/05 13:40:50 | 000,173,192 | ---- | M] (Microsoft Corp.) -- C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe
PRC - [2013/06/05 13:40:50 | 000,153,224 | ---- | M] (Microsoft Corp.) -- C:\Program Files (x86)\Microsoft\BingDesktop\BDAppHost.exe
PRC - [2013/05/11 05:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013/04/25 16:54:10 | 000,335,168 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
  • 0

Advertisements


#2
d_may

d_may

    Member

  • Topic Starter
  • Member
  • PipPip
  • 55 posts
judging from the other poster on this site my OTL doesn't seem to be long. Did I not get all of the log?
  • 0

#3
Buddierdl

Buddierdl

    Trusted Helper

  • Malware Removal
  • 2,524 posts
Hello and welcome to Geeks to Go. I am sorry that you are having troubles with your computer and will try my best to help you. I know that being infected is very frustrating, but I will be here to help you through the whole process of cleaning. Removing malware can be difficult and complicated and will most likely take many steps, so please stick with me until I have declared your computer clean. I always recommend printing my instructions before following them in case you cannot keep this webpage open. Please be sure to alway follow all steps exactly as they are written and let me know what happens each time. Stop and ask if something unexpected happens or if you are unsure of how to proceed.

Please respect my volunteered time and stay with me until I declare your computer clean. If you are going to be delayed for a while, please let me know.

Yes, you seem to have only the top part of the log included. Check for the file in C:\Users\Dale\Downloads and see if you can get the rest of it. If not, then just re-run the scan.
  • 0

#4
d_may

d_may

    Member

  • Topic Starter
  • Member
  • PipPip
  • 55 posts
Thank you for your prompt reply.
I do have to go to work tonight.
Just to add to my first post. In the Action center< can not turn on security monitoring.
No anti virus on system
Not able to add anti virus to system.

OTL complete log follows.

OTL logfile created on: 10/28/2013 11:39:02 AM - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Dale\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16721)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

5.99 Gb Total Physical Memory | 4.50 Gb Available Physical Memory | 75.12% Memory free
11.98 Gb Paging File | 9.95 Gb Available in Paging File | 83.07% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 582.50 Gb Total Space | 509.62 Gb Free Space | 87.49% Space Free | Partition Type: NTFS
Drive D: | 13.67 Gb Total Space | 2.20 Gb Free Space | 16.05% Space Free | Partition Type: NTFS
Drive K: | 3.74 Gb Total Space | 0.10 Gb Free Space | 2.63% Space Free | Partition Type: FAT32

Computer Name: DALE-PC | User Name: Dale | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2013/10/27 12:57:14 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Dale\Downloads\OTL.exe
PRC - [2013/10/22 10:15:11 | 001,140,736 | ---- | M] (Spotify Ltd) -- C:\Users\Dale\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
PRC - [2013/10/09 15:06:29 | 000,237,960 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler.exe
PRC - [2013/10/08 16:16:12 | 001,862,536 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
PRC - [2013/10/02 09:44:24 | 000,274,840 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2013/09/13 18:23:02 | 001,974,080 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Smart Defrag 2\SmartDefrag.exe
PRC - [2013/08/30 19:26:24 | 000,240,288 | ---- | M] (Microsoft Corporation.) -- C:\Program Files (x86)\Microsoft\BingBar\7.3.107.0\SeaPort.EXE
PRC - [2013/08/16 18:09:02 | 001,549,120 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe
PRC - [2013/08/10 17:44:44 | 000,732,992 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\Monitor.exe
PRC - [2013/06/05 13:40:52 | 002,249,352 | ---- | M] (Microsoft Corp.) -- C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe
PRC - [2013/06/05 13:40:50 | 000,349,832 | ---- | M] (Microsoft Corp.) -- C:\Program Files (x86)\Microsoft\BingDesktop\BDRuntimeHost.exe
PRC - [2013/06/05 13:40:50 | 000,206,984 | ---- | M] (Microsoft Corp.) -- C:\Program Files (x86)\Microsoft\BingDesktop\BDExtHost.exe
PRC - [2013/06/05 13:40:50 | 000,173,192 | ---- | M] (Microsoft Corp.) -- C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe
PRC - [2013/06/05 13:40:50 | 000,153,224 | ---- | M] (Microsoft Corp.) -- C:\Program Files (x86)\Microsoft\BingDesktop\BDAppHost.exe
PRC - [2013/05/11 05:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013/04/25 16:54:10 | 000,335,168 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
PRC - [2013/04/18 16:58:08 | 000,574,272 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe
PRC - [2013/04/01 23:28:28 | 000,342,528 | ---- | M] (Alcatel-Lucent) -- C:\Program Files (x86)\Common Files\Motive\pcServiceHost.exe
PRC - [2012/11/29 21:31:04 | 000,038,608 | ---- | M] () -- C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
PRC - [2012/11/13 15:08:12 | 003,487,240 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
PRC - [2012/11/13 15:07:16 | 001,103,392 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
PRC - [2012/08/23 13:37:16 | 000,013,672 | ---- | M] (Intuit Inc.) -- C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
PRC - [2012/05/23 08:11:32 | 000,157,016 | ---- | M] (Yahoo! Inc.) -- C:\Program Files (x86)\Yahoo!\YNanoClient\cpn0\YNanoService.exe
PRC - [2012/02/21 14:05:22 | 000,632,664 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Game Booster 3\gbtray.exe
PRC - [2009/10/20 14:50:34 | 000,128,296 | ---- | M] (CyberLink Corp.) -- c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe
PRC - [2009/09/12 17:43:03 | 000,020,376 | ---- | M] (WebEx Communications, Inc.) -- C:\Windows\SysWOW64\atashost.exe
PRC - [2009/08/28 13:53:00 | 000,210,216 | ---- | M] (CyberLink) -- c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
PRC - [2008/12/04 13:00:26 | 000,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
PRC - [2008/12/04 13:00:20 | 000,186,904 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
PRC - [2008/11/09 15:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) -- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe


========== Modules (No Company Name) ==========

MOD - [2013/10/08 16:16:12 | 016,233,864 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll
MOD - [2013/10/02 09:44:23 | 003,279,768 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2013/09/11 19:06:56 | 000,048,960 | ---- | M] () -- C:\Program Files (x86)\IObit\Smart Defrag 2\NtfsData.dll
MOD - [2013/08/15 17:31:14 | 000,268,968 | ---- | M] () -- C:\Windows\SysWOW64\sqlite3.dll
MOD - [2013/01/15 18:48:26 | 000,348,992 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\madexcept_.bpl
MOD - [2013/01/15 18:48:26 | 000,051,008 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\maddisAsm_.bpl
MOD - [2013/01/15 18:48:24 | 000,183,616 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\madbasic_.bpl
MOD - [2013/01/15 18:47:56 | 000,893,248 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\webres.dll
MOD - [2011/12/15 15:16:32 | 000,516,440 | ---- | M] () -- C:\Program Files (x86)\IObit\Game Booster 3\sqlite3.dll
MOD - [2009/08/28 13:52:58 | 000,931,112 | ---- | M] () -- c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMediaLibrary.dll


========== Services (SafeList) ==========

SRV:64bit: - File not found [Auto | Stopped] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2013/10/10 09:39:57 | 000,224,840 | ---- | M] (Realtek Semiconductor) [Auto | Running] -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe -- (RtkAudioService)
SRV:64bit: - [2013/08/26 03:29:48 | 000,460,288 | ---- | M] (Alcatel-Lucent) [Auto | Running] -- C:\Program Files\Common Files\Motive\pcCMService.exe -- (pcCMService64)
SRV:64bit: - [2013/05/27 00:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2013/05/23 15:12:02 | 000,143,120 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware\SASCore64.exe -- (!SASCORE)
SRV:64bit: - [2010/09/22 18:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:64bit: - [2009/12/03 20:27:24 | 000,028,672 | ---- | M] (LSI Corporation) [Auto | Running] -- C:\Program Files\LSI SoftModem\agr64svc.exe -- (AgereModemAudio)
SRV - [2013/10/08 16:16:12 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013/10/02 09:44:24 | 000,118,680 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013/08/30 19:26:24 | 000,240,288 | ---- | M] (Microsoft Corporation.) [On_Demand | Running] -- C:\Program Files (x86)\Microsoft\BingBar\7.3.107.0\SeaPort.EXE -- (BBUpdate)
SRV - [2013/08/30 19:26:24 | 000,193,696 | ---- | M] (Microsoft Corporation.) [Auto | Stopped] -- C:\Program Files (x86)\Microsoft\BingBar\7.3.107.0\BBSvc.EXE -- (BBSvc)
SRV - [2013/08/15 17:38:16 | 002,298,704 | ---- | M] () [Auto | Stopped] -- C:\Program Files (x86)\Secure Speed Dial\IE\SecureUpdate.exe -- (SecureUpdateSvc)
SRV - [2013/06/05 13:40:50 | 000,173,192 | ---- | M] (Microsoft Corp.) [Auto | Running] -- C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe -- (BingDesktopUpdate)
SRV - [2013/05/11 05:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013/04/25 16:54:10 | 000,335,168 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe -- (IMFservice)
SRV - [2013/04/18 16:58:08 | 000,574,272 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe -- (AdvancedSystemCareService6)
SRV - [2013/04/01 23:28:28 | 000,342,528 | ---- | M] (Alcatel-Lucent) [Auto | Running] -- C:\Program Files (x86)\Common Files\Motive\pcServiceHost.exe -- (pcServiceHost)
SRV - [2012/11/29 21:31:04 | 000,038,608 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe -- (RealNetworks Downloader Resolver Service)
SRV - [2012/08/23 13:37:16 | 000,013,672 | ---- | M] (Intuit Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe -- (IntuitUpdateServiceV4)
SRV - [2012/05/23 08:11:32 | 000,157,016 | ---- | M] (Yahoo! Inc.) [Auto | Running] -- C:\Program Files (x86)\Yahoo!\YNanoClient\cpn0\YNanoService.exe -- (YNanoService)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/09/12 17:43:03 | 000,020,376 | ---- | M] (WebEx Communications, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\atashost.exe -- (atashost)
SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008/12/04 13:00:26 | 000,354,840 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON)
SRV - [2008/11/09 15:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Auto | Running] -- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2013/10/14 11:22:35 | 006,180,832 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2013/10/10 09:26:56 | 000,883,928 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2013/05/22 18:49:32 | 000,017,720 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SmartDefragDriver.sys -- (SmartDefragDriver)
DRV:64bit: - [2012/08/23 09:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012/08/23 09:07:35 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2012/03/13 02:59:50 | 000,043,008 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\Motive\MREMP50a64.sys -- (MREMP50a64)
DRV:64bit: - [2012/03/13 02:59:50 | 000,040,960 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Motive\MRESP50a64.sys -- (MRESP50a64)
DRV:64bit: - [2012/03/08 18:40:52 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2012/03/01 01:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012/02/23 03:18:10 | 000,402,024 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Rtenic64.sys -- (RTLE8023x64)
DRV:64bit: - [2012/02/01 16:16:40 | 000,568,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2011/07/22 11:26:56 | 000,014,928 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys -- (SASDIFSV)
DRV:64bit: - [2011/07/12 16:55:18 | 000,012,368 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\saskutil64.sys -- (SASKUTIL)
DRV:64bit: - [2011/03/11 01:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 01:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010/11/20 08:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/01/26 17:52:22 | 001,212,416 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\agrsm64.sys -- (AgereSoftModem)
DRV:64bit: - [2009/09/02 03:09:34 | 000,221,696 | ---- | M] (Realtek ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Rtlh64.sys -- (RTL8169)
DRV:64bit: - [2009/07/13 20:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 20:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 20:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 15:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2006/03/29 07:20:03 | 000,033,280 | ---- | M] (HP) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HPZius12.sys -- (HPZius12)
DRV:64bit: - [2006/03/29 07:20:02 | 000,269,824 | ---- | M] (HP) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HPZid412.sys -- (HPZid412)
DRV - [2013/03/26 19:34:08 | 000,023,016 | ---- | M] (IObit.com) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\UrlFilter.sys -- (UrlFilter)
DRV - [2013/03/26 19:33:52 | 000,034,336 | ---- | M] (IObit.com) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\RegFilter.sys -- (RegFilter)
DRV - [2013/03/23 15:48:46 | 000,023,048 | ---- | M] (IObit) [File_System | On_Demand | Running] -- C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys -- (FileMonitor)
DRV - [2012/03/13 02:59:50 | 000,021,248 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Motive\MREMP50.sys -- (MREMP50)
DRV - [2012/03/13 02:59:50 | 000,020,096 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Motive\MRESP50.sys -- (MRESP50)
DRV - [2012/01/09 14:22:44 | 000,036,792 | ---- | M] (IObit Information Technology) [File_System | Auto | Running] -- C:\Program Files (x86)\IObit\Protected Folder\pffilter.sys -- (PfFilter)
DRV - [2009/07/13 20:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Program Files (x86)\TurboTax\Basic 2012\32bit\local\dlg\blank.htm
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{1C3F3665-8DF0-495B-852E-3665C2624002}: "URL" = http://www.ask.com/w...}&l=dis&o=ushpd
IE:64bit: - HKLM\..\SearchScopes\{5E22D6BD-163F-454E-B391-FB6EB419F995}: "URL" = http://search.live.c...ms}&FORM=HPDTDF
IE:64bit: - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Program Files (x86)\TurboTax\Basic 2012\32bit\local\dlg\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{1C3F3665-8DF0-495B-852E-3665C2624002}: "URL" = http://www.ask.com/w...}&l=dis&o=ushpd
IE - HKLM\..\SearchScopes\{5E22D6BD-163F-454E-B391-FB6EB419F995}: "URL" = http://search.live.c...ms}&FORM=HPDTDF
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.h...avilion&pf=cndt
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Program Files (x86)\TurboTax\Basic 2012\32bit\local\dlg\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
IE - HKCU\..\URLSearchHook: {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Program Files (x86)\IObit Apps Toolbar\IE\7.6\iobitappsToolbarIE.dll (Spigot, Inc.)
IE - HKCU\..\SearchScopes,DefaultScope = {FE809C08-B738-4C7C-A235-53274EF76E8D}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE10SR
IE - HKCU\..\SearchScopes\{5E22D6BD-163F-454E-B391-FB6EB419F995}: "URL" = http://www.bing.com/...E10SR&pc=HPDTDF
IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7
IE - HKCU\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = http://isearch.avg.c...q={searchTerms}
IE - HKCU\..\SearchScopes\{C79BF1BF-72F6-4415-AFD7-717B71B259C4}: "URL" = http://search.yahoo....p={searchTerms}
IE - HKCU\..\SearchScopes\{FE809C08-B738-4C7C-A235-53274EF76E8D}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.defaulturl: "http://search.yahoo....-8&fr=ytff-&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&ilc=12&type=198484"
FF - prefs.js..browser.search.param.yahoo-fr-cjkt: "moz2-ytff-tyc"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://my.yahoo.com/"
FF - prefs.js..extensions.enabledAddons: feedly%40devhd:16.0.528
FF - prefs.js..extensions.enabledAddons: foobar%40unnecessarilylongurl.com:2.0.1
FF - prefs.js..extensions.enabledAddons: newtabgoogle%40graememcc.co.uk:1.0.2
FF - prefs.js..extensions.enabledAddons: %7B5e889f11-3738-6e34-f5ad-ccce03875424%7D:1.300.436
FF - prefs.js..extensions.enabledAddons: ascsurfingprotection%40iobit.com:1.0
FF - prefs.js..extensions.enabledAddons: speeddial%40instair.net:1.3.1
FF - prefs.js..extensions.enabledAddons: iobitapps%40mybrowserbar.com:7.6
FF - prefs.js..extensions.enabledAddons: %7Bbadea1ae-72ed-4f6a-8c37-4db9a4ac7bc9%7D:1.1
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:24.0
FF - prefs.js..keyword.URL: "http://search.yahoo....type=198484&p="


FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1203133.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.40.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@mcafee.com/MVT: C:\Program Files (x86)\McAfee\Supportability\MVT\NPMVTPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files (x86)\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=16.0.0.282: c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlchromebrowserrecordext;version=1.3.0: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlhtml5videoshim;version=1.3.0: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlpepperflashvideoshim;version=1.3.0: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=15.0.4.53: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=15.0.4.53: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpplugin;version=16.0.0.282: c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF - HKLM\Software\MozillaPlugins\@realnetworks.com/npdlplugin;version=1: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\[email protected]/YahooActiveXPluginBridge;version=1.0.0.1: C:\Program Files (x86)\Mozilla Firefox\plugins\npyaxmpb.dll (Yahoo! Inc.)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\Dale\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O1DPlugin: C:\Users\Dale\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Users\Dale\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Dale\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Dale\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@yahoo.com/BrowserPlus,version=2.9.8: C:\Users\Dale\AppData\Local\Yahoo!\BrowserPlus\2.9.8\Plugins\npybrowserplus_2.9.8.dll (Yahoo! Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013/01/22 07:26:29 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 24.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/10/02 09:44:06 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 24.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/10/09 22:58:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 24.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/10/02 09:44:06 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 24.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/10/09 22:58:00 | 000,000,000 | ---D | M]

[2009/10/30 17:09:30 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Dale\AppData\Roaming\Mozilla\Extensions
[2013/10/26 06:33:53 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\extensions
[2013/08/28 23:01:54 | 000,000,000 | ---D | M] (Advanced SystemCare Surfing Protection) -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\extensions\[email protected]
[2013/08/28 23:02:21 | 000,000,000 | ---D | M] (AccelerateTab) -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\extensions\[email protected]
[2013/06/26 21:59:42 | 000,027,050 | ---- | M] () (No name found) -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\extensions\[email protected]
[2013/07/08 22:40:23 | 000,041,010 | ---- | M] () (No name found) -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\extensions\[email protected]
[2013/04/12 10:07:25 | 000,019,225 | ---- | M] () (No name found) -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\extensions\[email protected]
[2013/04/07 14:44:49 | 000,555,970 | ---- | M] () (No name found) -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\extensions\{5e889f11-3738-6e34-f5ad-ccce03875424}.xpi
[2013/10/26 06:33:53 | 000,007,374 | ---- | M] () (No name found) -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\extensions\{badea1ae-72ed-4f6a-8c37-4db9a4ac7bc9}.xpi
[2009/10/28 15:08:58 | 000,002,186 | ---- | M] () -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\searchplugins\bing.xml
[2013/01/22 22:58:04 | 000,002,402 | ---- | M] () -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\searchplugins\bingp.xml
[2011/03/21 15:18:36 | 000,000,879 | ---- | M] () -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\searchplugins\conduit.xml
[2013/01/10 16:15:58 | 000,001,982 | ---- | M] () -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\searchplugins\search-here.xml
[2013/01/23 09:02:30 | 000,001,375 | ---- | M] () -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\searchplugins\search-the-web.xml
[2013/08/28 10:38:09 | 000,005,751 | ---- | M] () -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\searchplugins\startpage-http.xml
[2013/08/29 10:37:23 | 000,005,472 | ---- | M] () -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\searchplugins\startpage.xml
[2013/08/28 23:02:04 | 000,000,904 | ---- | M] () -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\searchplugins\yahoo.xml
[2013/10/09 23:10:24 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2013/10/02 09:44:09 | 000,000,000 | ---D | M] (Kaspersky URL Advisor) -- C:\Program Files (x86)\Mozilla Firefox\extensions\[email protected]_bak2
[2013/10/02 09:44:06 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013/10/02 09:44:24 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2013/09/04 10:47:26 | 000,000,000 | ---D | M] (IObit Apps Toolbar) -- C:\PROGRAM FILES (X86)\IOBIT APPS TOOLBAR\FF
[2010/06/25 18:49:15 | 000,466,944 | ---- | M] (Invenda Corporation) -- C:\Program Files (x86)\mozilla firefox\plugins\NPcolPM460.dll
[2012/10/19 18:18:49 | 000,248,192 | ---- | M] (Coupons, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npCouponPrinter.dll
[2012/10/19 18:18:57 | 000,248,192 | ---- | M] (Coupons, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npMozCouponPrinter.dll
[2013/01/22 07:25:56 | 000,124,056 | ---- | M] (RealPlayer) -- C:\Program Files (x86)\mozilla firefox\plugins\nprpplugin.dll
[2007/03/09 18:16:44 | 000,189,496 | ---- | M] (Yahoo! Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npyaxmpb.dll
[2013/01/25 10:02:59 | 000,003,565 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\avg-secure-search.xml

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter},
CHR - homepage: http://www.yahoo.com/
CHR - plugin: getPlusPlus for Adobe 16263 (Enabled) = c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - Extension: Google Docs = C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\
CHR - Extension: Google Drive = C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: YouTube = C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Google Search = C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Motive Extension = C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\edmgmpmklgfbohogafcfobonnkogchec\1.1_0\
CHR - Extension: AccelerateTab = C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\
CHR - Extension: Ebay Shopping Assistant by Spigot = C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbcennhacfaagdopikcegfcobcadeocj\1.0_0\
CHR - Extension: Domain Error Assistant = C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj\1.1_0\
CHR - Extension: Slick Savings = C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.4_0\
CHR - Extension: Advanced SystemCare Surfing Protection = C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd\1.0.0_0\
CHR - Extension: Advanced SystemCare Surfing Protection = C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd\1.0.0_1\
CHR - Extension: Chrome In-App Payments service = C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\
CHR - Extension: Chrome In-App Payments service = C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.9_0\
CHR - Extension: Amazon Shopping Assistant by Spigot = C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfndaklgolladniicklehhancnlgocpp\1.0_0\
CHR - Extension: Gmail = C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2012/03/20 12:50:08 | 000,000,698 | ---- | M]) - C:\Windows\SysNative\drivers\etc\HOSTS
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.107.0\amd64\BingExt.dll (Microsoft Corporation.)
O2:64bit: - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (IObit Apps Toolbar) - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Program Files (x86)\IObit Apps Toolbar\IE\7.6\iobitappsToolbarIE.dll (Spigot, Inc.)
O2 - BHO: (AccelerateTab) - {48A789BF-F6D6-4930-9C8B-77855A63EDE1} - C:\Program Files (x86)\Secure Speed Dial\IE\SpeedDial.dll (Secure Speed Dial)
O2 - BHO: (Evernote extension) - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
O2 - BHO: (Advanced SystemCare Browser Protection) - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Advanced SystemCare 6\BrowerProtect\ASCPlugin_Protection.dll (IObit)
O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.107.0\BingExt.dll (Microsoft Corporation.)
O3:64bit: - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.107.0\amd64\BingExt.dll (Microsoft Corporation.)
O3 - HKLM\..\Toolbar: (IObit Apps Toolbar) - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Program Files (x86)\IObit Apps Toolbar\IE\7.6\iobitappsToolbarIE.dll (Spigot, Inc.)
O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.107.0\BingExt.dll (Microsoft Corporation.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [itype] C:\Program Files\Microsoft IntelliType Pro\itype.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4 - HKLM..\Run: [BingDesktop] C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe (Microsoft Corp.)
O4 - HKLM..\Run: [IObit Malware Fighter] C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe (IObit)
O4 - HKCU..\Run: [Spotify Web Helper] C:\Users\Dale\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Spotify Ltd)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 28
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:64bit: - Extra context menu item: Clip Image - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=4 File not found
O8:64bit: - Extra context menu item: Clip selection - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=3 File not found
O8:64bit: - Extra context menu item: Clip this page - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=1 File not found
O8:64bit: - Extra context menu item: Clip URL - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0 File not found
O8:64bit: - Extra context menu item: New Note - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\NewNote.html ()
O8 - Extra context menu item: Clip Image - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=4 File not found
O8 - Extra context menu item: Clip selection - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=3 File not found
O8 - Extra context menu item: Clip this page - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=1 File not found
O8 - Extra context menu item: Clip URL - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0 File not found
O8 - Extra context menu item: New Note - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\NewNote.html ()
O9 - Extra Button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html ()
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html ()
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: $talisma_url$ ([]https in Trusted sites)
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} C:\Program Files (x86)\Yahoo!\Common\Yinsthelper.dll (Installation Support)
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} http://h20614.www2.h...hpdetect121.cab (GMNRev Class)
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} (Reg Error: Value error.)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Value error.)
O16 - DPF: {FFB3A759-98B1-446F-BDA9-909C6EB18CC7} http://utilities.pcp.../pcpitstop2.dll (PCPitstop Exam)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{23910CEA-C965-46E4-B5BA-3D11043DE351}: DhcpNameServer = 192.168.1.254
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\livecall - No CLSID value found
O18 - Protocol\Handler\msnim - No CLSID value found
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (c:\windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O20 - Winlogon\Notify\SDWinLogon: DllName - (SDWinLogon.dll) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/11/22 14:08:16 | 000,000,110 | -H-- | M] () - K:\autorun.inf -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2013/10/27 18:44:50 | 000,000,000 | --SD | C] -- C:\Windows\SysWow64\Microsoft
[2013/10/19 13:42:30 | 000,000,000 | ---D | C] -- C:\Users\Dale\AppData\Local\LogMeIn Rescue Applet
[2013/10/17 12:06:52 | 000,000,000 | ---D | C] -- C:\Users\Dale\.jmc
[2013/10/17 12:06:45 | 000,000,000 | ---D | C] -- C:\Users\Dale\.eclipse
[2013/10/16 10:19:35 | 000,312,744 | ---- | C] (Oracle Corporation) -- C:\Windows\SysNative\javaws.exe
[2013/10/16 10:19:31 | 000,189,352 | ---- | C] (Oracle Corporation) -- C:\Windows\SysNative\javaw.exe
[2013/10/16 10:19:31 | 000,189,352 | ---- | C] (Oracle Corporation) -- C:\Windows\SysNative\java.exe
[2013/10/16 10:19:31 | 000,108,968 | ---- | C] (Oracle Corporation) -- C:\Windows\SysNative\WindowsAccessBridge-64.dll
[2013/10/16 10:18:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit
[2013/10/14 11:22:36 | 001,312,768 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxCoIn_v1930.dll
[2013/10/14 11:22:36 | 000,165,912 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxtray.exe
[2013/10/14 11:22:36 | 000,059,392 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\oemdspif.dll
[2013/10/14 11:22:35 | 006,426,624 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\ig4icd64.dll
[2013/10/14 11:22:35 | 006,180,832 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\drivers\igdkmd64.sys
[2013/10/14 11:22:35 | 005,694,976 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxress.dll
[2013/10/14 11:22:35 | 004,445,184 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\ig4dev64.dll
[2013/10/14 11:22:35 | 004,104,192 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\ig4icd32.dll
[2013/10/14 11:22:35 | 003,829,760 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\igdumd32.dll
[2013/10/14 11:22:35 | 003,474,432 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igd10umd64.dll
[2013/10/14 11:22:35 | 002,686,976 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\ig4dev32.dll
[2013/10/14 11:22:35 | 002,551,808 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\igd10umd32.dll
[2013/10/14 11:22:35 | 000,845,848 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxcfg.exe
[2013/10/14 11:22:35 | 000,536,576 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\igdumdx32.dll
[2013/10/14 11:22:35 | 000,491,032 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxsrvc.exe
[2013/10/14 11:22:35 | 000,385,560 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\hkcmd.exe
[2013/10/14 11:22:35 | 000,372,224 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxTMM.dll
[2013/10/14 11:22:35 | 000,363,544 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxpers.exe
[2013/10/14 11:22:35 | 000,312,832 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrell.lrc
[2013/10/14 11:22:35 | 000,306,688 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrita.lrc
[2013/10/14 11:22:35 | 000,305,664 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrfra.lrc
[2013/10/14 11:22:35 | 000,305,664 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrdeu.lrc
[2013/10/14 11:22:35 | 000,305,152 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxresp.lrc
[2013/10/14 11:22:35 | 000,301,568 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrnld.lrc
[2013/10/14 11:22:35 | 000,296,960 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrptg.lrc
[2013/10/14 11:22:35 | 000,293,376 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrrus.lrc
[2013/10/14 11:22:35 | 000,291,328 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrptb.lrc
[2013/10/14 11:22:35 | 000,290,304 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrhun.lrc
[2013/10/14 11:22:35 | 000,289,792 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrplk.lrc
[2013/10/14 11:22:35 | 000,284,672 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrsve.lrc
[2013/10/14 11:22:35 | 000,284,672 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrsky.lrc
[2013/10/14 11:22:35 | 000,284,672 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrcsy.lrc
[2013/10/14 11:22:35 | 000,283,136 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrfin.lrc
[2013/10/14 11:22:35 | 000,282,624 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrdan.lrc
[2013/10/14 11:22:35 | 000,282,112 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrnor.lrc
[2013/10/14 11:22:35 | 000,281,088 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrtrk.lrc
[2013/10/14 11:22:35 | 000,279,552 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrslv.lrc
[2013/10/14 11:22:35 | 000,278,016 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrenu.lrc
[2013/10/14 11:22:35 | 000,264,704 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrtha.lrc
[2013/10/14 11:22:35 | 000,261,120 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxdev.dll
[2013/10/14 11:22:35 | 000,254,464 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrara.lrc
[2013/10/14 11:22:35 | 000,251,904 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrheb.lrc
[2013/10/14 11:22:35 | 000,246,272 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxpph.dll
[2013/10/14 11:22:35 | 000,218,112 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\igfxdv32.dll
[2013/10/14 11:22:35 | 000,215,576 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxext.exe
[2013/10/14 11:22:35 | 000,208,896 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrjpn.lrc
[2013/10/14 11:22:35 | 000,207,360 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrkor.lrc
[2013/10/14 11:22:35 | 000,181,760 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrcht.lrc
[2013/10/14 11:22:35 | 000,180,224 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrchs.lrc
[2013/10/14 11:22:35 | 000,142,336 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxdo.dll
[2013/10/14 11:22:35 | 000,126,976 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxcpl.cpl
[2013/10/14 11:22:35 | 000,107,520 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\hccutils.dll
[2013/10/14 11:22:35 | 000,106,008 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\difx64.exe
[2013/10/14 11:22:35 | 000,055,808 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxsrvc.dll
[2013/10/14 11:22:35 | 000,027,648 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxexps.dll
[2013/10/13 16:15:37 | 000,000,000 | ---D | C] -- C:\Users\Dale\AppData\Local\{6E7627DE-55D9-46D4-9CBE-679C51CD2A94}
[2013/10/10 09:40:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\SRSLabs
[2013/10/10 09:39:58 | 002,794,056 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtPgEx64.dll
[2013/10/10 09:39:58 | 001,662,024 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTSnMg64.cpl
[2013/10/10 09:39:58 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll
[2013/10/10 09:39:58 | 000,331,880 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtlCPAPI64.dll
[2013/10/10 09:39:58 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll
[2013/10/10 09:39:57 | 024,962,560 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoRes64.dat
[2013/10/10 09:39:57 | 003,693,640 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkAPO64.dll
[2013/10/10 09:39:57 | 001,284,680 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTCOM64.dll
[2013/10/10 09:39:57 | 001,003,592 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkApi64.dll
[2013/10/10 09:39:57 | 000,613,448 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtDataProc64.dll
[2013/10/10 09:39:57 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll
[2013/10/10 09:39:57 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll
[2013/10/10 09:39:57 | 000,149,608 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCfg64.dll
[2013/10/10 09:39:57 | 000,142,408 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoInstII64.dll
[2013/10/10 09:39:56 | 002,735,648 | ---- | C] (Fortemedia Corporation) -- C:\Windows\SysNative\FMAPO64.dll
[2013/10/10 09:39:55 | 000,208,072 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAC64.dll
[2013/10/10 09:39:55 | 000,110,592 | ---- | C] (Real Sound Lab SIA) -- C:\Windows\SysNative\CONEQMSAPOGUILibrary.dll
[2013/10/10 09:39:55 | 000,108,640 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAR64.dll
[2013/10/10 09:26:56 | 000,883,928 | ---- | C] (Realtek ) -- C:\Windows\SysNative\drivers\Rt64win7.sys
[2013/10/10 09:26:56 | 000,074,456 | ---- | C] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RtNicProp64.dll
[2013/10/10 09:25:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster
[2013/10/09 22:52:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Keyboard
[2013/10/09 22:52:18 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft IntelliType Pro
[2013/10/09 21:58:39 | 000,000,000 | ---D | C] -- C:\Users\Dale\AppData\Local\{BFA39CF8-0627-41A4-8B76-21B408D89EC8}
[2013/10/09 10:36:57 | 000,526,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2013/10/09 10:36:57 | 000,391,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2013/10/09 10:36:56 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2013/10/09 10:36:56 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2013/10/09 10:36:56 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2013/10/09 10:36:56 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2013/10/09 10:36:56 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2013/10/09 10:36:56 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2013/10/09 10:36:56 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2013/10/09 10:36:55 | 000,136,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2013/10/09 10:36:55 | 000,089,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2013/10/09 10:36:52 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2013/10/09 10:36:52 | 000,690,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2013/10/09 10:36:52 | 000,603,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2013/10/09 10:36:51 | 003,959,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2013/10/09 10:04:00 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\davclnt.dll
[2013/10/09 10:03:56 | 005,549,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2013/10/09 10:03:56 | 000,878,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\advapi32.dll
[2013/10/09 10:03:55 | 003,969,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2013/10/09 10:03:55 | 003,914,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2013/10/09 10:03:55 | 001,732,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2013/10/09 10:03:55 | 000,859,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdh.dll
[2013/10/09 10:03:55 | 000,619,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdh.dll
[2013/10/09 10:03:54 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2013/10/09 10:03:53 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
[2013/10/09 10:03:53 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
[2013/10/09 10:03:53 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
[2013/10/09 10:03:53 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
[2013/10/09 10:03:53 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
[2013/10/09 10:03:52 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comctl32.dll
[2013/10/09 10:03:51 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidclass.sys
[2013/10/09 10:03:51 | 000,032,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidparse.sys
[2013/10/09 10:03:50 | 000,368,128 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll
[2013/10/09 10:03:50 | 000,295,424 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
[2013/10/09 10:03:49 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontsub.dll
[2013/10/09 10:03:49 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
[2013/10/09 10:03:49 | 000,046,080 | ---- | C] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll
[2013/10/09 10:03:49 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lpk.dll
[2013/10/09 10:03:49 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
[2013/10/09 10:03:49 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dciman32.dll
[2013/10/09 10:03:07 | 000,461,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scavengeui.dll
[2013/10/09 10:03:00 | 000,124,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationCFFRasterizerNative_v0300.dll
[2013/10/09 10:03:00 | 000,102,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
[2013/10/09 10:02:04 | 000,325,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbport.sys
[2013/10/09 10:02:04 | 000,007,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbd.sys
[2013/10/02 09:44:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[60 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\*.tmp files -> C:\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2013/10/28 11:15:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013/10/28 11:11:00 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013/10/28 10:47:00 | 000,000,904 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2662839931-190412607-584344063-1000UA.job
[2013/10/28 09:50:32 | 000,011,104 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/10/28 09:50:32 | 000,011,104 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/10/28 09:43:41 | 000,000,282 | ---- | M] () -- C:\Windows\tasks\Driver Booster Update.job
[2013/10/28 09:43:38 | 000,000,890 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013/10/28 09:43:38 | 000,000,492 | ---- | M] () -- C:\Windows\tasks\ParetoLogic Update Version3 Startup Task.job
[2013/10/28 09:43:37 | 000,000,354 | ---- | M] () -- C:\Windows\tasks\ROC_JAN2013_TB_rmv.job
[2013/10/28 09:43:12 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/10/28 09:43:06 | 529,182,719 | -HS- | M] () -- C:\hiberfil.sys
[2013/10/27 23:15:07 | 000,001,019 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2013/10/27 18:00:00 | 000,000,466 | ---- | M] () -- C:\Windows\tasks\ParetoLogic Registration3.job
[2013/10/27 11:38:31 | 000,000,852 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2662839931-190412607-584344063-1000Core.job
[2013/10/22 02:32:01 | 000,000,440 | ---- | M] () -- C:\Windows\tasks\ParetoLogic Update Version3.job
[2013/10/19 18:48:13 | 000,726,444 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013/10/19 18:48:13 | 000,624,162 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013/10/19 18:48:13 | 000,106,538 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013/10/19 12:58:21 | 000,002,150 | ---- | M] () -- C:\Windows\epplauncher.mif
[2013/10/17 15:14:48 | 000,002,185 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2013/10/16 10:19:27 | 000,312,744 | ---- | M] (Oracle Corporation) -- C:\Windows\SysNative\javaws.exe
[2013/10/16 10:19:27 | 000,189,352 | ---- | M] (Oracle Corporation) -- C:\Windows\SysNative\javaw.exe
[2013/10/16 10:19:27 | 000,189,352 | ---- | M] (Oracle Corporation) -- C:\Windows\SysNative\java.exe
[2013/10/16 10:19:27 | 000,108,968 | ---- | M] (Oracle Corporation) -- C:\Windows\SysNative\WindowsAccessBridge-64.dll
[2013/10/14 11:22:36 | 001,312,768 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxCoIn_v1930.dll
[2013/10/14 11:22:36 | 001,002,008 | ---- | M] (Intel Corporation) -- C:\Windows\SysWow64\igxpun.exe
[2013/10/14 11:22:36 | 000,372,224 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxTMM.dll
[2013/10/14 11:22:36 | 000,165,912 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxtray.exe
[2013/10/14 11:22:36 | 000,059,392 | ---- | M] (Intel Corporation) -- C:\Windows\SysWow64\oemdspif.dll
[2013/10/14 11:22:36 | 000,003,936 | ---- | M] () -- C:\Windows\SysNative\iglhxs64.vp
[2013/10/14 11:22:35 | 006,426,624 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\ig4icd64.dll
[2013/10/14 11:22:35 | 006,180,832 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\drivers\igdkmd64.sys
[2013/10/14 11:22:35 | 005,694,976 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxress.dll
[2013/10/14 11:22:35 | 005,472,256 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igdumd64.dll
[2013/10/14 11:22:35 | 004,445,184 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\ig4dev64.dll
[2013/10/14 11:22:35 | 004,104,192 | ---- | M] (Intel Corporation) -- C:\Windows\SysWow64\ig4icd32.dll
[2013/10/14 11:22:35 | 003,829,760 | ---- | M] (Intel Corporation) -- C:\Windows\SysWow64\igdumd32.dll
[2013/10/14 11:22:35 | 003,474,432 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igd10umd64.dll
[2013/10/14 11:22:35 | 002,686,976 | ---- | M] (Intel Corporation) -- C:\Windows\SysWow64\ig4dev32.dll
[2013/10/14 11:22:35 | 002,551,808 | ---- | M] (Intel Corporation) -- C:\Windows\SysWow64\igd10umd32.dll
[2013/10/14 11:22:35 | 000,845,848 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxcfg.exe
[2013/10/14 11:22:35 | 000,536,576 | ---- | M] (Intel Corporation) -- C:\Windows\SysWow64\igdumdx32.dll
[2013/10/14 11:22:35 | 000,491,032 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxsrvc.exe
[2013/10/14 11:22:35 | 000,385,560 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\hkcmd.exe
[2013/10/14 11:22:35 | 000,363,544 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxpers.exe
[2013/10/14 11:22:35 | 000,312,832 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrell.lrc
[2013/10/14 11:22:35 | 000,306,688 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrita.lrc
[2013/10/14 11:22:35 | 000,305,664 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrfra.lrc
[2013/10/14 11:22:35 | 000,305,664 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrdeu.lrc
[2013/10/14 11:22:35 | 000,305,152 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxresp.lrc
[2013/10/14 11:22:35 | 000,301,568 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrnld.lrc
[2013/10/14 11:22:35 | 000,296,960 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrptg.lrc
[2013/10/14 11:22:35 | 000,293,376 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrrus.lrc
[2013/10/14 11:22:35 | 000,291,328 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrptb.lrc
[2013/10/14 11:22:35 | 000,290,304 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrhun.lrc
[2013/10/14 11:22:35 | 000,289,792 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrplk.lrc
[2013/10/14 11:22:35 | 000,284,672 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrsve.lrc
[2013/10/14 11:22:35 | 000,284,672 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrsky.lrc
[2013/10/14 11:22:35 | 000,284,672 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrcsy.lrc
[2013/10/14 11:22:35 | 000,283,136 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrfin.lrc
[2013/10/14 11:22:35 | 000,282,624 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrdan.lrc
[2013/10/14 11:22:35 | 000,282,112 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrnor.lrc
[2013/10/14 11:22:35 | 000,281,088 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrtrk.lrc
[2013/10/14 11:22:35 | 000,279,552 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrslv.lrc
[2013/10/14 11:22:35 | 000,278,016 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrenu.lrc
[2013/10/14 11:22:35 | 000,264,704 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrtha.lrc
[2013/10/14 11:22:35 | 000,261,120 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxdev.dll
[2013/10/14 11:22:35 | 000,254,464 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrara.lrc
[2013/10/14 11:22:35 | 000,251,904 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrheb.lrc
[2013/10/14 11:22:35 | 000,246,272 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxpph.dll
[2013/10/14 11:22:35 | 000,218,112 | ---- | M] (Intel Corporation) -- C:\Windows\SysWow64\igfxdv32.dll
[2013/10/14 11:22:35 | 000,215,576 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxext.exe
[2013/10/14 11:22:35 | 000,208,896 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrjpn.lrc
[2013/10/14 11:22:35 | 000,207,360 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrkor.lrc
[2013/10/14 11:22:35 | 000,181,760 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrcht.lrc
[2013/10/14 11:22:35 | 000,180,224 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxrchs.lrc
[2013/10/14 11:22:35 | 000,142,336 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxdo.dll
[2013/10/14 11:22:35 | 000,126,976 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxcpl.cpl
[2013/10/14 11:22:35 | 000,107,520 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\hccutils.dll
[2013/10/14 11:22:35 | 000,106,008 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\difx64.exe
[2013/10/14 11:22:35 | 000,055,808 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxsrvc.dll
[2013/10/14 11:22:35 | 000,027,648 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\igfxexps.dll
[2013/10/10 09:39:58 | 002,794,056 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtPgEx64.dll
[2013/10/10 09:39:58 | 001,662,024 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTSnMg64.cpl
[2013/10/10 09:39:58 | 000,518,896 | ---- | M] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll
[2013/10/10 09:39:58 | 000,331,880 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtlCPAPI64.dll
[2013/10/10 09:39:58 | 000,155,888 | ---- | M] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll
[2013/10/10 09:39:57 | 024,962,560 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoRes64.dat
[2013/10/10 09:39:57 | 003,693,640 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkAPO64.dll
[2013/10/10 09:39:57 | 001,284,680 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTCOM64.dll
[2013/10/10 09:39:57 | 001,003,592 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkApi64.dll
[2013/10/10 09:39:57 | 000,613,448 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtDataProc64.dll
[2013/10/10 09:39:57 | 000,576,929 | ---- | M] () -- C:\Windows\SysNative\drivers\RTAIODAT.DAT
[2013/10/10 09:39:57 | 000,310,104 | ---- | M] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll
[2013/10/10 09:39:57 | 000,310,104 | ---- | M] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll
[2013/10/10 09:39:57 | 000,149,608 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCfg64.dll
[2013/10/10 09:39:57 | 000,142,408 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoInstII64.dll
[2013/10/10 09:39:56 | 002,735,648 | ---- | M] (Fortemedia Corporation) -- C:\Windows\SysNative\FMAPO64.dll
[2013/10/10 09:39:55 | 000,208,072 | ---- | M] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAC64.dll
[2013/10/10 09:39:55 | 000,110,592 | ---- | M] (Real Sound Lab SIA) -- C:\Windows\SysNative\CONEQMSAPOGUILibrary.dll
[2013/10/10 09:39:55 | 000,108,640 | ---- | M] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAR64.dll
[2013/10/10 09:26:56 | 000,883,928 | ---- | M] (Realtek ) -- C:\Windows\SysNative\drivers\Rt64win7.sys
[2013/10/10 09:26:56 | 000,108,760 | ---- | M] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RTNUninst64.dll
[2013/10/10 09:26:56 | 000,074,456 | ---- | M] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RtNicProp64.dll
[2013/10/10 09:25:10 | 000,001,182 | ---- | M] () -- C:\Users\Public\Desktop\Driver Booster.lnk
[2013/10/09 23:12:14 | 000,368,088 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013/10/09 22:52:27 | 000,002,677 | ---- | M] () -- C:\Users\Public\Desktop\Microsoft Keyboard.lnk
[2013/10/08 16:16:12 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2013/10/08 16:16:12 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2013/10/05 07:14:36 | 000,005,263 | ---- | M] () -- C:\Windows\wininit.ini
[2013/09/28 21:36:05 | 000,000,330 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForDale.job
[60 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\*.tmp files -> C:\*.tmp -> ]

========== Files Created - No Company Name ==========

[2013/10/25 22:42:52 | 000,017,209 | ---- | C] () -- C:\Users\Dale\Documents\James holding Jessie (2).jpg
[2013/10/25 22:37:45 | 000,259,518 | ---- | C] () -- C:\Users\Dale\Documents\photo.JPG
[2013/10/14 11:22:36 | 000,003,936 | ---- | C] () -- C:\Windows\SysNative\iglhxs64.vp
[2013/10/13 23:34:13 | 000,017,209 | ---- | C] () -- C:\Users\Dale\Documents\James holding Jessie.jpg
[2013/10/10 09:39:57 | 000,576,929 | ---- | C] () -- C:\Windows\SysNative\drivers\RTAIODAT.DAT
[2013/10/10 09:25:11 | 000,000,282 | ---- | C] () -- C:\Windows\tasks\Driver Booster Update.job
[2013/10/10 09:25:10 | 000,001,182 | ---- | C] () -- C:\Users\Public\Desktop\Driver Booster.lnk
[2013/10/09 22:52:27 | 000,002,677 | ---- | C] () -- C:\Users\Public\Desktop\Microsoft Keyboard.lnk
[2013/08/28 23:02:20 | 000,268,968 | ---- | C] () -- C:\Windows\SysWow64\sqlite3.dll
[2012/11/22 12:05:17 | 000,005,263 | ---- | C] () -- C:\Windows\wininit.ini
[2011/12/28 11:31:26 | 000,000,193 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc
[2011/12/07 19:21:57 | 000,000,774 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
[2011/12/07 17:49:25 | 000,017,408 | ---- | C] () -- C:\Users\Dale\AppData\Local\WebpageIcons.db
[2011/11/02 12:16:54 | 000,000,020 | ---- | C] () -- C:\Windows\cmm.dat
[2011/11/02 12:16:38 | 000,000,186 | ---- | C] () -- C:\Windows\SysWow64\CleanMem.ini
[2010/05/23 22:01:21 | 000,004,608 | ---- | C] () -- C:\Users\Dale\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/03/02 14:11:13 | 000,007,622 | ---- | C] () -- C:\Users\Dale\AppData\Local\Resmon.ResmonCfg
[2009/10/19 15:15:12 | 000,061,224 | ---- | C] () -- C:\Users\Dale\GoToAssistDownloadHelper.exe
[2009/09/18 16:00:19 | 000,000,000 | ---- | C] () -- C:\Users\Dale\AppData\Roaming\wklnhst.dat

========== ZeroAccess Check ==========

[2009/07/13 23:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/07/25 21:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/07/25 20:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 20:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 07:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 20:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== Alternate Data Streams ==========

@Alternate Data Stream - 153 bytes -> C:\ProgramData\Temp:07BF512B

< End of report >
  • 0

#5
Buddierdl

Buddierdl

    Trusted Helper

  • Malware Removal
  • 2,524 posts
I would recommend limiting any browsing on this computer until we can get an antivirus installed. Which anti-virus are you trying to install?

I would recommend that you remove IOBIT software from your computer. The company has a bad reputation and we don't recommend using any of their products.


Step 1: Run OTL fix.

Start OTL
  • Under the Custom Scans/Fixes box at the bottom, paste in the following
    :Commands
    [createrestorepoint]
    
    :OTL
    
    SRV - [2013/08/15 17:38:16 | 002,298,704 | ---- | M] () [Auto | Stopped] -- C:\Program Files (x86)\Secure Speed Dial\IE\SecureUpdate.exe -- (SecureUpdateSvc)
    FF - prefs.js..extensions.enabledAddons: %7Bbadea1ae-72ed-4f6a-8c37-4db9a4ac7bc9%7D:1.1
    FF - HKLM\Software\MozillaPlugins\@mcafee.com/MVT: C:\Program Files (x86)\McAfee\Supportability\MVT\NPMVTPlugin.dll File not found
    [2013/10/26 06:33:53 | 000,007,374 | ---- | M] () (No name found) -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\extensions\{badea1ae-72ed-4f6a-8c37-4db9a4ac7bc9}.xpi
    [2011/03/21 15:18:36 | 000,000,879 | ---- | M] () -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\searchplugins\conduit.xml
    [2013/01/10 16:15:58 | 000,001,982 | ---- | M] () -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\searchplugins\search-here.xml
    [2013/01/23 09:02:30 | 000,001,375 | ---- | M] () -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\searchplugins\search-the-web.xml
    [2013/08/28 10:38:09 | 000,005,751 | ---- | M] () -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\searchplugins\startpage-http.xml
    [2013/08/29 10:37:23 | 000,005,472 | ---- | M] () -- C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\searchplugins\startpage.xml
    O2 - BHO: (AccelerateTab) - {48A789BF-F6D6-4930-9C8B-77855A63EDE1} - C:\Program Files (x86)\Secure Speed Dial\IE\SpeedDial.dll (Secure Speed Dial)
    O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
    O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
    O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No CLSID value found.
    O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - No CLSID value found.
    O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
    O15 - HKCU\..Trusted Domains: $talisma_url$ ([]https in Trusted sites)
    O32 - AutoRun File - [2010/11/22 14:08:16 | 000,000,110 | -H-- | M] () - K:\autorun.inf -- [ FAT32 ]
    
    :Files
    C:\Program Files (x86)\Secure Speed Dial
    
  • Then click the Run Fix button at the top
  • Let the program run unhindered.
  • Post the log it produces in your next reply.

Step 2: Run JRT.


Posted Image Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.

Step 3: Run aswMBR.

Download aswMBR.exe to your desktop.
Double click the aswMBR.exe to run it Click the "Scan" button to start scan

Posted Image

On completion of the scan click save log, save it to your desktop and post in your next reply

Posted Image

Step 4: Please remove these Chrome extensions following the directions below:

AccelerateTab
Amazon Shopping Assistant by Spigot


  • Click the Chrome menu Posted Image on the browser toolbar.
  • Click Tools.
  • Select Extensions.
  • Click the trash can icon by the extension you'd like to completely remove.
  • A confirmation dialog appears, click Remove.

Things I need in your next reply:
  • OTL fix log
  • JRT log
  • aswMBR log

  • 0

#6
d_may

d_may

    Member

  • Topic Starter
  • Member
  • PipPip
  • 55 posts
Restore point Set: OTL Restore Point
========== OTL ==========
Service SecureUpdateSvc stopped successfully!
Service SecureUpdateSvc deleted successfully!
C:\Program Files (x86)\Secure Speed Dial\IE\SecureUpdate.exe moved successfully.
Prefs.js: %7Bbadea1ae-72ed-4f6a-8c37-4db9a4ac7bc9%7D:1.1 removed from extensions.enabledAddons
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@mcafee.com/MVT\ deleted successfully.
C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\extensions\{badea1ae-72ed-4f6a-8c37-4db9a4ac7bc9}.xpi moved successfully.
C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\searchplugins\conduit.xml moved successfully.
C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\searchplugins\search-here.xml moved successfully.
C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\searchplugins\search-the-web.xml moved successfully.
C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\searchplugins\startpage-http.xml moved successfully.
C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\8dticc2f.default\searchplugins\startpage.xml moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{48A789BF-F6D6-4930-9C8B-77855A63EDE1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48A789BF-F6D6-4930-9C8B-77855A63EDE1}\ deleted successfully.
C:\Program Files (x86)\Secure Speed Dial\IE\SpeedDial.dll moved successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{604BC32A-9680-40D1-9AC6-E06B23A1BA4C} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{604BC32A-9680-40D1-9AC6-E06B23A1BA4C}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{C55BBCD6-41AD-48AD-9953-3609C48EACC7} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C55BBCD6-41AD-48AD-9953-3609C48EACC7}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\$talisma_url$\ deleted successfully.
K:\autorun.inf moved successfully.
========== FILES ==========
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\zh-TW folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\zh-CN folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\vi folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\uk folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\tr folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\th folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\te folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\ta folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\sw folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\sv folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\sr folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\sl folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\sk folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\ru folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\ro folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\pt_PT folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\pt_BR folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\pl folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\no folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\nl folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\ms folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\mr folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\lv folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\lt folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\ko folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\kn folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\ja folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\it folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\id folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\hu folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\hr folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\hi folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\he folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\gu folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\fr folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\fil folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\fi folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\fa folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\et folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\es - 419 folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\es folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\en-US folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\en-GB folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\en folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\el folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\de folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\da folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\cs folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\ca folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\bn folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\bg folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale\ar folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\locale folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\images\bg folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\images folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\defaults\preferences folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected]\defaults folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox\[email protected] folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Firefox folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\zh_TW folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\zh_CN folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\vi folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\uk folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\tr folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\th folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\te folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\ta folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\sw folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\sv folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\sr folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\sl folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\sk folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\ru folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\ro folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\pt_PT folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\pt_BR folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\pl folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\no folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\nl folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\ms folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\lv folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\lt folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\ko folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\kn folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\ja folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\it folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\id folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\hu folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\hr folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\hi folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\he folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\gu folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\fr folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\fil folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\fi folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\fa folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\et folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\es_419 folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\es folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\en_GB folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\en-US folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\en folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\el folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\de folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\da folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\cs folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\ca folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\bn folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\bg folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\ar folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\js folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\images\bg folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\images folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\dll folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\css folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\cache folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\background folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0 folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome\glmfgahfleepmdfffonfckpmkondpdkg folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source\Chrome folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Source folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\IE\update folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\IE folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\zh-TW folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\zh-CN folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\vi folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\uk folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\tr folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\th folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\te folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\ta folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\sw folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\sv folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\sr folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\sl folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\sk folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\ru folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\ro folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\pt_PT folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\pt_BR folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\pl folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\no folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\nl folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\ms folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\mr folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\lv folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\lt folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\ko folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\kn folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\ja folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\it folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\id folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\hu folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\hr folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\hi folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\he folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\gu folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\fr folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\fil folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\fi folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\fa folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\et folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\es - 419 folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\es folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\en-US folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\en-GB folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\en folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\el folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\de folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\da folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\cs folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\ca folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\bn folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\bg folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale\ar folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\locale folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\images\bg folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\images folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\defaults\preferences folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected]\defaults folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox\[email protected] folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Firefox folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\zh_TW folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\zh_CN folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\vi folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\uk folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\tr folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\th folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\te folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\ta folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\sw folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\sv folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\sr folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\sl folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\sk folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\ru folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\ro folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\pt_PT folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\pt_BR folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\pl folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\no folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\nl folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\ms folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\lv folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\lt folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\ko folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\kn folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\ja folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\it folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\id folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\hu folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\hr folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\hi folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\he folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\gu folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\fr folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\fil folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\fi folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\fa folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\et folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\es_419 folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\es folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\en_GB folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\en-US folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\en folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\el folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\de folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\da folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\cs folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\ca folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\bn folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\bg folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales\ar folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\_locales folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\js folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\images\bg folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\images folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\dll folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\css folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\cache folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\background folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0 folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome\glmfgahfleepmdfffonfckpmkondpdkg folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial\Chrome folder moved successfully.
C:\Program Files (x86)\Secure Speed Dial folder moved successfully.

OTL by OldTimer - Version 3.2.69.0 log created on 10282013_205850
  • 0

#7
d_may

d_may

    Member

  • Topic Starter
  • Member
  • PipPip
  • 55 posts
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.7 (10.15.2013:3)
OS: Windows 7 Home Premium x64
Ran by Dale on Mon 10/28/2013 at 21:12:50.20
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services

Successfully stopped: [Service] application updater
Successfully deleted: [Service] application updater
Successfully stopped: [Service] defaulttabupdate
Successfully deleted: [Service] defaulttabupdate



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{4FBBF769-ECEB-420A-B536-133B1D505C36}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\dnu.exe
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\iehelperv2.5.0.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{F773BB94-6C19-4643-A570-0E429103D1C3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{F773BB94-6C19-4643-A570-0E429103D1C3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{13ABD093-D46F-40DF-A608-47E162EC799D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{B12920CF-BE13-4C09-890D-1B6EFFFE2FBE}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\default tab
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\ilivid
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\installcore
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\softonic
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\speedypc software
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\wecarereminder
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\yahoopartnertoolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\defaulttab
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\freecause
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\search settings
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A1E28287-1A31-4B0F-8D05-AA8C465D3C5A}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\application updater
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\installiq
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\speedypc software
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\applications\ilividsetup.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\dnupdate
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\dnupdater.downloaduibrowser
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\dnupdater.downloaduibrowser.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\dnupdater.downloadupdcontroller
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\dnupdater.downloadupdcontroller.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\defaulttab
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\ilivid
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker-1_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker-1_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader44840_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader44840_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_belarc-advisor_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_belarc-advisor_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstallChecker-1_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstallChecker-1_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader44840_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader44840_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_belarc-advisor_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_belarc-advisor_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{5E22D6BD-163F-454E-B391-FB6EB419F995}
Successfully deleted: [Registry Key] "hkey_current_user\software\apn pip"



~~~ Files

Successfully deleted: [File] "C:\Program Files (x86)\mozilla firefox\plugins\npcouponprinter.dll"
Successfully deleted: [File] "C:\Program Files (x86)\mozilla firefox\plugins\npdnu.dll"
Successfully deleted: [File] "C:\Program Files (x86)\mozilla firefox\plugins\npdnu.xpt"
Successfully deleted: [File] "C:\Program Files (x86)\mozilla firefox\plugins\npdnupdater2.dll"
Successfully deleted: [File] "C:\Program Files (x86)\mozilla firefox\plugins\npdnupdater2.xpt"
Successfully deleted: [File] "C:\Program Files (x86)\mozilla firefox\plugins\npmozcouponprinter.dll"
Successfully deleted: [File] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ebay.lnk"
Successfully deleted: [File] "C:\Users\Dale\AppData\Roaming\microsoft\windows\start menu\programs\ilivid.lnk"
Successfully deleted: [File] "C:\Windows\syswow64\conduitengine.tmp"



~~~ Folders

Successfully deleted: [Folder] C:\Users\Dale\AppData\LocalLow\FCTB000061107
Successfully deleted: [Folder] "C:\ProgramData\ammyy"
Successfully deleted: [Folder] "C:\ProgramData\apn"
Successfully deleted: [Folder] "C:\ProgramData\pc1data"
Successfully deleted: [Folder] "C:\ProgramData\speedypc software"
Successfully deleted: [Folder] "C:\ProgramData\tarma installer"
Successfully deleted: [Folder] "C:\ProgramData\wecarereminder"
Successfully deleted: [Folder] "C:\Users\Dale\AppData\Roaming\drivercure"
Successfully deleted: [Folder] "C:\Users\Dale\AppData\Roaming\pcpro"
Successfully deleted: [Folder] "C:\Users\Dale\AppData\Roaming\speedypc software"
Successfully deleted: [Folder] "C:\Users\Dale\appdata\local\ilivid"
Successfully deleted: [Folder] "C:\Users\Dale\appdata\local\visi_coupon"
Successfully deleted: [Folder] "C:\Users\Dale\appdata\locallow\search settings"
Successfully deleted: [Folder] "C:\Program Files (x86)\application updater"
Successfully deleted: [Folder] "C:\Program Files (x86)\coupons"
Successfully deleted: [Folder] "C:\Program Files (x86)\delicious add-on for internet explorer"
Successfully deleted: [Folder] "C:\Program Files (x86)\Common Files\software update utility"
Successfully deleted: [Folder] "C:\Program Files (x86)\Common Files\spigot"
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{016BA377-DB04-45FA-8978-4893644B3C8C}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{06B1111D-AC61-4233-A236-136E34EEA4FC}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{07ED829F-6B9A-4648-A033-EBAA29887C57}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{0E34303B-D614-4BA1-9B3C-EB4356DE3450}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{0FBCAC27-E7B1-4D04-9FCA-B089E094582D}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{0FE9AADC-ED4B-43B9-97C5-FAC1F9C0861A}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{1D131137-411E-4D31-AF56-4236970768E9}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{1D46C436-F352-449B-8C47-88CDAAA0EDE8}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{217955F4-7346-425E-8A8D-C30126B3EE54}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{21F37DE8-EEB8-49AD-AC3E-B48B31C96BA2}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{24BEEB28-5EA6-4C87-9A4B-003204679E0F}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{270FC1C4-FBA6-42B1-B89C-647BE45F6098}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{27DA6CEE-8FF3-432B-A7CC-6932103DF8C1}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{2CE165EE-2C86-45A4-9884-8DAFB795B549}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{30266EBD-0681-4EED-BF8F-42E8D9D7E92A}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{316AEFA5-FDAF-4371-9E96-443B53D48280}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{32D8FB2B-1362-4A39-ABAC-18DA0E2FFD0D}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{347BD6BB-3F31-4A68-A8D6-CA1F7D6542E8}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{35FF0A8B-AB59-4961-BB5C-F33AFFADE286}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{37CA8750-579F-40D3-93AD-CE98FFA81F38}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{39487A1A-6577-4A93-ABC8-3E7166CB5085}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{3A84BD54-7023-4D78-A0CF-0B9E1CCF67C8}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{3ABAC5C3-106B-4986-80A2-EE5CCF2C4C80}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{3C7F9610-01A1-44C6-91B8-611977033593}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{400C15CF-0A70-482E-8CE9-44847D4BB4B2}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{4119C2BD-5715-440A-84B1-078B155C77AA}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{4166888A-1A18-4DA9-AC24-9DCE3AAE82A4}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{472DF787-0433-45B4-885C-EFF0096157B5}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{4C6C2982-1C0D-4976-AEBC-BF2BDAEC9CB5}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{4FD8DB59-9A9F-4A11-A380-74EB6CE5FA6D}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{506FF3C2-36F1-47CA-9EE4-8A660A62E87C}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{526469B6-98A5-4B40-B6D6-294AFC3CE827}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{53602352-CAE0-406B-9E03-40684E558E02}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{56B4A9B7-0CEE-4E23-AF48-0DF594640A65}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{5754BAF8-1C1F-4FBC-943F-7900BB0B86B8}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{5C5B7097-1EE2-4EE0-AEBF-6E10BB4DC7AB}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{601D2BE2-2DD0-46EE-A64D-D9495CD7E0CF}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{6A2E5086-2494-4E21-8937-0CE1218F6D8A}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{6BC471F5-C985-4C7B-B8DD-62C255BDB530}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{6E7627DE-55D9-46D4-9CBE-679C51CD2A94}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{6F2AF614-9F59-45C3-B813-97549225F511}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{70C1B41F-AC74-4044-AE60-8086B1D33B37}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{70F6713E-AC2F-4989-BFA5-A2817520B30A}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{73D23F48-0FE4-4411-85E7-D9C65B44C2DF}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{73EE5CC9-A21F-433D-8B0F-514D09ED8BAF}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{78E1211D-C654-4A41-8F1E-9BFE59470DAF}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{79044547-46EA-426B-AB6B-7A8DA7686DC2}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{79AD1D19-369F-4F76-9A71-5ECD46207697}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{7ADC4B61-E848-45F9-B862-1247A668ED53}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{7B5DC328-9CDE-4340-8772-EE4E0EDF5C4A}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{7CFE5DDD-3914-4ACB-83F4-D8B682378837}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{7F1D0C3A-BACD-40B0-B4F7-A8E6F0304D3D}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{80376F53-8F2E-4A01-99B1-928A16C13553}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{821CC9A1-A39F-4551-9E0E-2E0D08D2236B}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{85D383A7-C385-4F73-B513-57275B2CE3D4}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{8A525605-5EAD-4F1F-9864-058C4FAFD97C}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{8B184169-6B5A-4E16-94A5-61C246CFA90D}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{8DD419DD-5C41-4BB9-95BB-191B60DFB67A}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{939861D7-1E2D-4400-8C1D-E9DFE0816E99}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{9631A7D3-7601-459E-AFEA-811710BC25F3}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{97203042-49E2-4707-94C4-BA4F46531AE8}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{99052C6D-ADF1-4BC8-BCCC-50CD66DBA29C}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{991F189E-DF08-476F-970C-1807A717449D}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{9B267C18-A3F3-4367-A53C-1F54EBFBBE63}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{9EC031BF-8878-4106-9374-1DF26F148900}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{9F1E1329-DEC5-47CD-AE58-26BE1C9AB8F3}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{9F848119-7DA5-4815-9E34-8893D0ACE0F2}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{A452D558-611D-4477-B5FA-C7AB35F3F48D}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{A6C4C29D-9BB9-4FCA-A764-2B23F05EBE4C}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{A722297B-F95A-4A84-97DA-5C33A408195D}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{A948B3F0-FA97-4295-879D-36F159067333}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{AA4C5DAB-7A35-4F61-B9CB-44E95852DCDA}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{AB661D9C-AFD1-426B-82E0-2D6332E1484A}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{AD5F24FA-A2BC-4235-A171-2517E7F01B61}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{ADE0D225-2F7D-4300-A168-72B600D51584}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{AF703482-96F9-4D82-90BA-4629D4EFB16B}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{B01C6865-923B-4782-952F-0474CB612334}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{B05FFC8A-9E1D-414C-A464-C3F63738BB45}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{B539E5DF-4AB2-4F63-B9BE-6765EDB2ADE1}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{B72E95DB-F615-4BE6-80E5-14E80A082D66}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{B91946D2-30EC-47D6-AE6D-2991B10389A5}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{BCE7B76F-8D72-4CEE-AE8A-15C287ECAC76}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{BD8FCB39-21FA-4086-96D6-322AF7770D4B}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{BFA39CF8-0627-41A4-8B76-21B408D89EC8}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{C4092D44-30E0-46D2-BF12-283D80653B6D}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{C4798176-295A-4725-9D00-7B7305D9957A}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{C66FBAC4-DD43-4CC8-A63E-0CC9DE0FBA88}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{C6D13EB1-CEC6-444F-9B8D-3C416D8F7F31}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{C8071237-FCCC-413C-A112-00F3CBECF074}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{C9014CC4-10B5-4AC9-82CC-61252486801F}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{C99AB497-F363-4448-B913-3708407C095D}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{C9D497C3-C029-407D-BDB9-C4BAACFB0086}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{CB6E3A66-9D10-4636-8D4D-4C407FB5DB7E}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{CDF6D23C-180F-495F-A1D8-4ED0A9E5CA54}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{CEB27A6B-DF69-406A-A70D-4113467B81F2}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{D3DB9613-FDF9-471F-88A7-6FCB4AAECB99}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{D499008E-11A5-4CB2-AF6D-E067C47030DD}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{D4D7EAB3-1969-4FF0-B794-3D8469D02411}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{D596FEB8-F949-4981-8C4C-82F3D50E7C50}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{DC51B389-41B7-464C-8918-3EDC74584D87}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{DF009018-4207-4C76-9492-F733010830E6}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{DF534013-01B5-4AB1-AC75-0A9C075A5C95}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{DF67C37A-78FB-41FE-85D1-BEB792D4EAFF}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{E144C85E-93F4-46E8-83C7-0B1978B73FDC}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{E161EEDD-3411-48C7-B33B-DD0028E48BFA}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{E1E3D735-ED9A-46AA-A3DB-F40A040AAF83}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{E3AF9546-0836-4C77-90CC-2E0B66C297C7}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{E671A0A3-E640-4E97-AEB5-E5E0458C3E17}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{E7C38380-6E18-47DF-87F5-774F3087C727}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{E9382F58-ABA6-48F8-934D-4344CA603B6F}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{EDB71DFC-B9EB-4DD7-AF24-B2AD67C7DABC}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{F162A994-19E1-4E64-8F44-6912FE9E8DCF}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{F26603F5-BFE4-47B3-80EB-34F9CE207A4F}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{FA933AAB-0114-457F-A34F-8E3E7FD56BD7}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{FAD259F7-0EDB-4730-B231-6D9B0FA4AC86}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{FB6094ED-882F-4ED2-9789-283216D528B4}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{FBC9DD41-6826-45B3-B876-8916920DF6CD}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{FE58B48D-8CBD-4355-9238-539E8A035A6A}



~~~ FireFox

Successfully deleted: [File] C:\Users\Dale\AppData\Roaming\mozilla\firefox\profiles\8dticc2f.default\user.js
Successfully deleted: [File] C:\Users\Dale\AppData\Roaming\mozilla\firefox\profiles\8dticc2f.default\invalidprefs.js
Failed to delete: [Folder] C:\Users\Dale\AppData\Roaming\mozilla\firefox\profiles\8dticc2f.default\fctb
Successfully deleted the following from C:\Users\Dale\AppData\Roaming\mozilla\firefox\profiles\8dticc2f.default\prefs.js

user_pref("extensions.AMAZONNEW_NS_PH.searchconf", "{\n \"google\" : {\n \"urlexp\" : \"hxxp(s)?:\\\\/\\\\/www\\\\.google\\\\..*\\\\/.*[?#&]q=([^&]+)\",\n \"rankometer\
user_pref("freecause5e889f1137386e34f5adccce03875424.AutoSearchEventData", "auto%20search");
user_pref("freecause5e889f1137386e34f5adccce03875424.ClearCacheDate", 28);
user_pref("freecause5e889f1137386e34f5adccce03875424.DNSCatch", true);
user_pref("freecause5e889f1137386e34f5adccce03875424.DisplayEULA", true);
user_pref("freecause5e889f1137386e34f5adccce03875424.DnsCatchEventData", "dns%20catch");
user_pref("freecause5e889f1137386e34f5adccce03875424.EBOMode", false);
user_pref("freecause5e889f1137386e34f5adccce03875424.EnableDCAData_xx", true);
user_pref("freecause5e889f1137386e34f5adccce03875424.EnableDCA_xx", false);
user_pref("freecause5e889f1137386e34f5adccce03875424.FirstLaunchShown", true);
user_pref("freecause5e889f1137386e34f5adccce03875424.InstallDomain", "sharethis.com");
user_pref("freecause5e889f1137386e34f5adccce03875424.InstallType", "one_click");
user_pref("freecause5e889f1137386e34f5adccce03875424.LoadLayoutDate.100311", 28);
user_pref("freecause5e889f1137386e34f5adccce03875424.NewTabSearchEventData", "tab%20search");
user_pref("freecause5e889f1137386e34f5adccce03875424.ShowRecommendedOptions", true);
user_pref("freecause5e889f1137386e34f5adccce03875424.StateReportDate", "1383012040957");
user_pref("freecause5e889f1137386e34f5adccce03875424.TopRightSearchEventData", "top%20right%20search");
user_pref("freecause5e889f1137386e34f5adccce03875424.beforeInstallSaved", true);
user_pref("freecause5e889f1137386e34f5adccce03875424.beforeinstall.homepage", "hxxp%3A//my.yahoo.com/");
user_pref("freecause5e889f1137386e34f5adccce03875424.beforeinstall.search", "Yahoo");
user_pref("freecause5e889f1137386e34f5adccce03875424.comp.search.sharethis_search.engine_img", "aHR0cDovL3Mzd2l6YXJkLmZyZWVjYXVzZS5jb20vc2VhcmNoLnBuZw%3D%3D");
user_pref("freecause5e889f1137386e34f5adccce03875424.comp.search.sharethis_search.engine_url", "aHR0cDovL3NlYXJjaC55YWhvby5jb20vc2VhcmNoP2VpPXV0Zi04JmZyPWZyZWVjYXVzZSZ0eXBlPSV
user_pref("freecause5e889f1137386e34f5adccce03875424.comp.search.sharethis_search.text", "Search%20Here%21");
user_pref("freecause5e889f1137386e34f5adccce03875424.customNewTab", true);
user_pref("freecause5e889f1137386e34f5adccce03875424.dcaDefaultMode", false);
user_pref("freecause5e889f1137386e34f5adccce03875424.dcaShowInstallerPage", false);
user_pref("freecause5e889f1137386e34f5adccce03875424.dcaShowSurvey", true);
user_pref("freecause5e889f1137386e34f5adccce03875424.helpUsImprove", true);
user_pref("freecause5e889f1137386e34f5adccce03875424.hideOthers", true);
user_pref("freecause5e889f1137386e34f5adccce03875424.partnerauth", false);
user_pref("freecause5e889f1137386e34f5adccce03875424.processAddrBar", true);
user_pref("freecause5e889f1137386e34f5adccce03875424.remove_search", true);
user_pref("freecause5e889f1137386e34f5adccce03875424.restoreSearch", false);
user_pref("freecause5e889f1137386e34f5adccce03875424.searchHistory", true);
user_pref("freecause5e889f1137386e34f5adccce03875424.showFirstLaunchOptions", false);
user_pref("freecause5e889f1137386e34f5adccce03875424.tb_lang", "en");
user_pref("freecause5e889f1137386e34f5adccce03875424.tool_id", "100311");
user_pref("freecause5e889f1137386e34f5adccce03875424.user_id", "132170273");
user_pref("freecause5e889f1137386e34f5adccce03875424.user_key", "d3231f7b12f4b0c893268a09a15712da974f769d");
user_pref("freecause5e889f1137386e34f5adccce03875424.user_layouts", "100311");
user_pref("freecause5e889f1137386e34f5adccce03875424.user_lnames", "ShareThis%20Toolbar");
user_pref("freecause5e889f1137386e34f5adccce03875424.xml_service_url", "6bb94bbf55fe2f255901a560824a6ebe");
user_pref("freecause5e889f1137386e34f5adccce03875424.yahooSearch", true);
user_pref("keyword.URL", "hxxp://search.yahoo.com/search?ourmark=3&ei=utf-8&fr=freecause&type=100311&p=");
Emptied folder: C:\Users\Dale\AppData\Roaming\mozilla\firefox\profiles\8dticc2f.default\minidumps [137 files]



~~~ Chrome

Successfully deleted: [Folder] C:\Users\Dale\appdata\local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Mon 10/28/2013 at 21:20:23.45
End of JRT log
  • 0

#8
d_may

d_may

    Member

  • Topic Starter
  • Member
  • PipPip
  • 55 posts
aswMBR version 0.9.9.1771 Copyright© 2011 AVAST Software
Run date: 2013-10-28 21:28:38
-----------------------------
21:28:38.272 OS Version: Windows x64 6.1.7601 Service Pack 1
21:28:38.272 Number of processors: 2 586 0x170A
21:28:38.273 ComputerName: DALE-PC UserName: Dale
21:28:39.728 Initialize success
21:34:13.418 AVAST engine defs: 13102801
21:34:54.744 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
21:34:54.754 Disk 0 Vendor: WDC_WD64 01.0 Size: 610480MB BusType: 8
21:34:54.924 Disk 0 MBR read successfully
21:34:54.924 Disk 0 MBR scan
21:34:54.934 Disk 0 unknown MBR code
21:34:54.944 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 596475 MB offset 63
21:34:54.994 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 14001 MB offset 1221582600
21:34:55.054 Disk 0 scanning C:\Windows\system32\drivers
21:35:04.274 Service scanning
21:35:22.856 Modules scanning
21:35:22.866 Disk 0 trace - called modules:
21:35:22.876 ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys hal.dll
21:35:22.886 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80083f1330]
21:35:22.896 3 CLASSPNP.SYS[fffff88001cfc43f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8005f60050]
21:35:24.246 AVAST engine scan C:\Windows
21:35:27.476 AVAST engine scan C:\Windows\system32
21:38:21.966 AVAST engine scan C:\Windows\system32\drivers
21:38:34.196 AVAST engine scan C:\Users\Dale
21:46:32.309 AVAST engine scan C:\ProgramData
21:49:15.731 Scan finished successfully
21:49:53.376 Disk 0 MBR has been saved successfully to "C:\Users\Dale\Desktop\MBR.dat"
21:49:53.385 The log file has been saved successfully to "C:\Users\Dale\Desktop\aswMBR.txt"
  • 0

#9
d_may

d_may

    Member

  • Topic Starter
  • Member
  • PipPip
  • 55 posts
I have removed all of the i-orbits software
Added Avest anti virus security (Free)
Removed Accelerare Tab
Was not able to find Amazon Shopping Assisted by Spigot
Now thinking of running a complete scan of Avest after resarting computer.
Seems to be ruuning fine now and have anti virus installed!
  • 0

#10
Buddierdl

Buddierdl

    Trusted Helper

  • Malware Removal
  • 2,524 posts
Glad it worked good. AVAST is a good anti-virus. Let's check for any leftovers.

Step 1: Run SecurityCheck

Download Security Check by screen317 from here or here.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.

Step 2: Run MBAM.

Please download Malwarebytes' Anti-Malware
  • Double Click mbam-setup.exe to install the application.
  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish, so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply.
Extra Note:
If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts, click OK to either and let MBAM proceed with the disinfection process, if asked to restart the computer, please do so immediately.

Step 3: Run online scan.

Run ESET Online Scanner:

Note: You can use either Internet Explorer or Mozilla FireFox for this scan. You will however need to disable your current installed Anti-Virus, how to do so can be read here.

  • Please go here then click on: Posted Image

    Note: If using Mozilla Firefox you will need to download esetsmartinstaller_enu.exe when prompted then double click on it to install.
    All of the below instructions are compatible with either Internet Explorer or Mozilla FireFox.

  • Select the option YES, I accept the Terms of Use then click on: Posted Image
  • When prompted allow the Add-On/Active X to install.
  • Make sure that the option Remove found threats is Not checked, and the option Scan archives is checked.
  • Now click on Advanced Settings and select the following:
    • Scan for potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth Technology
  • Now click on: Posted Image
  • The virus signature database... will begin to download. Be patient this make take some time depending on the speed of your Internet Connection.
  • When completed the Online Scan will begin automatically. The scan may take several hours.
  • Do not touch either the Mouse or keyboard during the scan otherwise it may stall.
  • When completed select Uninstall application on close if you so wish, make sure you copy the logfile first!
  • Now click on: Posted Image
  • Use notepad to open the logfile located at C:\Program Files\ESET\EsetOnlineScanner\log.txt.
  • Copy and paste that log as a reply to this topic.
Note: Do not forget to re-enable your Anti-Virus application after running the above scan!

Step 4: Upload to Virustotal.

Please go to VirusTotal and upload C:\Users\Dale\Desktop\MBR.dat for scanning. Please send me a link to the results page.

Things I need in your next reply:
  • SecurityCheck log
  • MBAM log
  • ESET log
  • Any outstanding problems?

  • 0

Advertisements


#11
d_may

d_may

    Member

  • Topic Starter
  • Member
  • PipPip
  • 55 posts
Results of screen317's Security Check version 0.99.75
Windows 7 Service Pack 1 x64 (UAC is enabled)
Internet Explorer 10
``````````````Antivirus/Firewall Check:``````````````
Windows Security Center service is not running! This report may not be accurate!
Windows Firewall Enabled!
WMI entry may not exist for antivirus; attempting automatic update.
`````````Anti-malware/Other Utilities Check:`````````
WinPatrol
WinPatrol 2009 (Outdated! Latest version is WinPatrol 2012)
Spybot - Search & Destroy
Toolbar Cleaner 1.1
Adobe Flash Player 11.9.900.117
Adobe Reader XI
Mozilla Firefox (24.0)
Google Chrome 30.0.1599.101
Google Chrome 30.0.1599.69
````````Process Check: objlist.exe by Laurent````````
WinPatrol winpatrol.exe is disabled!
Spybot Teatimer.exe is disabled!
AVAST Software Avast AvastSvc.exe
AVAST Software Avast avastui.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C: 0%
````````````````````End of Log``````````````````````
  • 0

#12
d_may

d_may

    Member

  • Topic Starter
  • Member
  • PipPip
  • 55 posts
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Database version: v2013.10.29.07

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16721
Dale :: DALE-PC [administrator]

10/29/2013 10:56:49 AM
mbam-log-2013-10-29 (10-56-49).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 223728
Time elapsed: 5 minute(s), 32 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 3
C:\Users\Dale\Downloads\Razer_Game_Booster_downloader.exe (PUP.Optional.FreeNew.A) -> Quarantined and deleted successfully.
C:\Windows\Installer\1e041a.msi (PUP.Optional.WeCare.A) -> Quarantined and deleted successfully.
C:\Windows\Installer\57e42b8.msi (PUP.Optional.Spigot.A) -> Quarantined and deleted successfully.

(end)
  • 0

#13
Buddierdl

Buddierdl

    Trusted Helper

  • Malware Removal
  • 2,524 posts
After you finish the ESET scan, could you please run this as well. Your security center is not running properly.


Please download Farbar Service Scanner and run it on the computer with the issue.
  • Make sure the all of the options are checked:

    Posted Image
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log to your reply.

  • 0

#14
d_may

d_may

    Member

  • Topic Starter
  • Member
  • PipPip
  • 55 posts
The Eset scan is taking a long time and I have to go to work.
It may be tomorrow before I get everything posted for you, Thanks, Dale
  • 0

#15
Buddierdl

Buddierdl

    Trusted Helper

  • Malware Removal
  • 2,524 posts
ESET will take awhile. Thanks for letting me know. :)
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP