Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Browswers won't let me download anything [Closed]


  • This topic is locked This topic is locked

#1
anish2

anish2

    New Member

  • Member
  • Pip
  • 1 posts
I recently cleaned out my computer of all malware and yet I still can't download anything no matter which browser I use. The message I get is "Your security settings do not allow this file to be downloaded". I saw in a previous post that I need to download and run FRST and McShield and run those. I used another computer to download the files, transfered those over via flash drive and installed and then ran those. I am hoping someone can help me with the next steps. Thanks. I will attach the FRST.txt, Addition.txt and the McShield scan text.

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 07-02-2014
Ran by Anish Joseph (administrator) on ANISHJOSEPH-PC on 08-02-2014 09:23:45
Running from C:\Users\Anish Joseph\Desktop
Windows Vista ™ Home Premium Service Pack 2 (X64) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingc...can-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingc...can-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe
(Bitdefender) C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_15f4e438\stacsv64.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(Stardock Corporation) C:\Program Files\Dell\DellDock\DockLogin.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(SoftThinks) C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(SupportSoft, Inc.) C:\Program Files (x86)\Dell Support Center\bin\sprtsvc.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Bitdefender) C:\Program Files\Bitdefender\Antivirus Free Edition\gziface.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\WPFFontCache_v0400.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe


==================== Registry (Whitelisted) ==================

HKLM-x32\...\Run: [FAStartup] - [X]
HKLM-x32\...\Run: [] - [X]
Winlogon\Notify\GoToAssist: C:\Program Files (x86)\Citrix\GoToAssist\514\G2AWinLogon_x64.dll [X]
Winlogon\Notify\FastAccess-x32: C:\Program Files (x86)\Sensible Vision\Fast Access\FALogNot.dll [X]
HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-21-3039304259-2379085820-2277983735-1000\...\Run: [AdobeBridge] - [X]
HKU\S-1-5-21-3039304259-2379085820-2277983735-1000\...\Run: [Advanced SystemCare 7] - C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe [2285344 2013-12-18] (IObit)
HKU\S-1-5-21-3039304259-2379085820-2277983735-1000\...\MountPoints2: {5339cafa-ab82-11de-a714-0026b9058eb3} - I:\LaunchU3.exe -a
HKU\S-1-5-21-3039304259-2379085820-2277983735-1000\...\MountPoints2: {7290f679-a9d0-11de-a12d-0026b9058eb3} - G:\LaunchU3.exe -a
HKU\S-1-5-21-3039304259-2379085820-2277983735-1000\...409d6c4515e9\InprocServer32: [Default-shell32] SHELL32.dll ATTENTION! ====> ZeroAccess?
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk
ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk
ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.yahoo....r=spigot-yhp-ie
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/USCON/1
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/USCON/1
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/USCON/1
URLSearchHook: HKLM-x32 - BitTorrentBar Toolbar - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - C:\Program Files (x86)\BitTorrentBar\tbBitT.dll No File
URLSearchHook: HKCU - BitTorrentBar Toolbar - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - C:\Program Files (x86)\BitTorrentBar\tbBitT.dll No File
StartMenuInternet: IEXPLORE.EXE - %ProgramFiles(x86)%\Internet Explorer\iexplore.exe
SearchScopes: HKCU - DefaultScope {D9155BEE-C38D-4811-B4D0-F2BB497AF1B3} URL = http://search.yahoo....p={searchTerms}
SearchScopes: HKCU - {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = http://securedsearch...q={searchTerms}
SearchScopes: HKCU - {76BBEEF3-A833-4F56-B0C5-C7D45DD1A081} URL = http://search.yahoo....p={searchTerms}
SearchScopes: HKCU - {CA5D911F-CDE1-4C90-9967-E8AEB854CC48} URL = http://www.google.co...age={startPage}
SearchScopes: HKCU - {D9155BEE-C38D-4811-B4D0-F2BB497AF1B3} URL = http://search.yahoo....p={searchTerms}
BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Shop to Win 9 - {0095C290-A428-4BDD-B98C-E0A116F1C702} - C:\Program Files (x86)\Shop to Win 9\ShoppingBHO.dll (Freecause Inc.)
BHO-x32: No Name - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
BHO-x32: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll (Adobe Systems Incorporated.)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll No File
BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
BHO-x32: DivX HiQ - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
BHO-x32: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: BitTorrentBar Toolbar - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - C:\Program Files (x86)\BitTorrentBar\tbBitT.dll No File
BHO-x32: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: FAIESSOHelper Class - {A2F122DA-055F-4df7-8F24-7354DBDBA85B} - C:\Program Files (x86)\Sensible Vision\Fast Access\FAIESSO.dll No File
BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll (Adobe Systems Incorporated.)
Toolbar: HKLM-x32 - BitTorrentBar Toolbar - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - C:\Program Files (x86)\BitTorrentBar\tbBitT.dll No File
Toolbar: HKLM-x32 - Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll No File
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
Toolbar: HKCU - No Name - {88C7F2AA-F93F-432C-8F0E-B7D85967A527} - No File
Toolbar: HKCU - No Name - {30F9B915-B755-4826-820B-08FBA6BD249D} - No File
DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab
DPF: HKLM-x32 {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebo...oUploader55.cab
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation)
Winsock: Catalog5 01 mswsock.dll File Not found () ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
Winsock: Catalog5 05 mswsock.dll File Not found () ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll"
Winsock: Catalog5-x64 01 mswsock.dll File Not found () ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
Winsock: Catalog5-x64 05 mswsock.dll File Not found () ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll"
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6 - C:\Program Files (x86)\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8051.1204 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\Anish Joseph\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\Anish Joseph\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKCU: @talk.google.com/O3DPlugin - C:\Users\Anish Joseph\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Anish Joseph\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Anish Joseph\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nphssb.dll (Homestead Technologies, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\Anish Joseph\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\Anish Joseph\AppData\Roaming\mozilla\plugins\npgtpo3dautoplugin.dll ()
FF Plugin ProgramFiles/Appdata: C:\Users\Anish Joseph\AppData\Roaming\mozilla\plugins\npo1d.dll (Google)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\adawaretb.xml
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} [2010-11-22]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} [2011-03-24]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} [2011-06-25]
FF HKLM-x32\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []
FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video
FF Extension: DivX Plus Web Player HTML5 &lt;video&gt; - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video [2011-05-04]
FF HKLM-x32\...\Firefox\Extensions: [{6904342A-8307-11DF-A508-4AE2DFD72085}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa
FF Extension: DivX HiQ - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa [2011-05-04]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Users\Anish Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\m68uikuw.default\extensions\[email protected]
FF StartMenuInternet: FIREFOX.EXE - firefox.exe

Chrome:
=======
CHR DefaultSearchKeyword: yahoo.com search
CHR DefaultSearchProvider: Yahoo
CHR DefaultSearchURL: http://search.yahoo....p={searchTerms}
CHR DefaultNewTabURL:
CHR Extension: (Google Docs) - C:\Users\Anish Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-11-05]
CHR Extension: (Google Drive) - C:\Users\Anish Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-05]
CHR Extension: (YouTube) - C:\Users\Anish Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-05]
CHR Extension: (Google Search) - C:\Users\Anish Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-11-05]
CHR Extension: (DivX HiQ) - C:\Users\Anish Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnjbmmemklcjgepojigaapkoodmkgbae [2013-11-05]
CHR Extension: (Google Wallet) - C:\Users\Anish Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-05]
CHR Extension: (DivX Plus Web Player HTML5 <video>) - C:\Users\Anish Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm [2013-11-05]
CHR Extension: (20-20 3D Viewer for IKEA) - C:\Users\Anish Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfhldcakmgpmglboaclpfdedehjblalp [2013-11-05]
CHR Extension: (Gmail) - C:\Users\Anish Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-11-05]
CHR HKLM-x32\...\Chrome\Extension: [ekdjfcdinekpfcedakhpngcnaamhiihn] - C:\ProgramData\Codec-C\ekdjfcdinekpfcedakhpngcnaamhiihn.crx [2013-11-05]
CHR HKLM-x32\...\Chrome\Extension: [fnjbmmemklcjgepojigaapkoodmkgbae] - C:\Program Files (x86)\DivX\DivX Plus Web Player\google_chrome\wpa\wpa.crx [2011-02-07]
CHR HKLM-x32\...\Chrome\Extension: [licjnkifamhpbaefhdpacpmihicfbomb] - C:\Program Files (x86)\PricePeep\pricepeep.crx [2011-02-07]
CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\google_chrome\html5video\html5video.crx [2011-02-07]
CHR HKLM-x32\...\Chrome\Extension: [oejkcgajlodefenbbjdnaiahmbnnoole] - C:\Program Files (x86)\Lavasoft\AdAware SecureSearch Toolbar\chrome-newtab-search.crx [2011-02-07]

==================== Services (Whitelisted) =================

S4 Adobe Version Cue CS4; C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe [284016 2008-08-15] (Adobe Systems Incorporated)
R2 AdvancedSystemCareService7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [881440 2013-12-09] (IObit)
R2 Akamai; c:\program files (x86)\common files\akamai/netsession_win_8fa3539.dll [4569856 2013-07-04] (Akamai Technologies, Inc.)
R2 gzserv; C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe [69368 2013-10-23] (Bitdefender)
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151200 2013-12-03] (IObit)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S4 msvsmon90; c:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x64\msvsmon.exe [4737024 2008-07-29] (Microsoft Corporation)
S3 nosGetPlusHelper; C:\Program Files (x86)\NOS\bin\getPlus_Helper_3001.dll [64328 2010-07-19] (NOS Microsystems Ltd.)
S2 FastUserSwitchingCompatibility; C:\Windows\system32\FastUserSwitchingCompatibilityex.dll [X]

==================== Drivers (Whitelisted) ====================

R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [718840 2013-04-17] (BitDefender)
R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [593144 2013-04-17] (BitDefender)
R1 bdftdif; C:\Program Files\Bitdefender\Antivirus Free Edition\bdftdif.sys [138920 2013-04-17] (Bitdefender SRL)
R0 gfibto; C:\Windows\System32\drivers\gfibto.sys [14456 2013-08-03] (GFI Software)
R1 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [148696 2013-04-22] (BitDefender LLC)
S3 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [91352 2014-02-06] (Malwarebytes Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R0 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [382536 2014-02-06] (BitDefender S.R.L.)
U5 avchv; C:\Windows\System32\Drivers\avchv.sys [261056 2012-11-02] (BitDefender)
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 Netaapl; system32\DRIVERS\netaapl64.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================

NETSVC: SE2Emgmt -> No ServiceDLL Path.

==================== One Month Created Files and Folders ========

2014-02-08 09:23 - 2014-02-08 09:24 - 00022028 _____ () C:\Users\Anish Joseph\Desktop\FRST.txt
2014-02-08 09:23 - 2014-02-08 09:23 - 00000000 ____D () C:\FRST
2014-02-08 09:22 - 2014-02-08 09:20 - 02079744 _____ (Farbar) C:\Users\Anish Joseph\Desktop\FRST64.exe
2014-02-08 08:59 - 2014-02-08 08:59 - 00000258 __RSH () C:\ProgramData\ntuser.pol
2014-02-06 21:49 - 2014-02-06 21:49 - 00093875 _____ () C:\Users\Anish Joseph\Downloads\ShareEnum.zip
2014-02-06 21:49 - 2014-02-06 21:49 - 00045258 _____ () C:\Users\Anish Joseph\Downloads\Streams.zip
2014-02-06 21:33 - 2014-02-06 22:39 - 00166550 _____ () C:\Windows\PFRO.log
2014-02-06 21:17 - 2014-02-06 21:17 - 61755392 _____ () C:\Windows\system32\config\components.iobit
2014-02-06 21:17 - 2014-02-06 21:17 - 129871872 _____ () C:\Windows\system32\config\software.iobit
2014-02-06 21:17 - 2014-02-06 21:17 - 00696320 _____ () C:\Windows\system32\config\default.iobit
2014-02-06 21:17 - 2014-02-06 21:17 - 00057344 _____ () C:\Windows\system32\config\sam.iobit
2014-02-06 21:17 - 2014-02-06 21:17 - 00020480 _____ () C:\Windows\system32\config\security.iobit
2014-02-06 21:09 - 2014-02-06 21:09 - 00382536 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\trufos.sys
2014-02-06 21:09 - 2012-11-02 14:17 - 00261056 _____ (BitDefender) C:\Windows\system32\Drivers\avchv.sys
2014-02-06 20:48 - 2014-02-06 20:48 - 00364985 _____ () C:\ProgramData\1391740977.bdinstall.bin
2014-02-06 20:48 - 2014-02-06 20:48 - 00002009 _____ () C:\Users\Public\Desktop\Bitdefender Antivirus Free Edition.lnk
2014-02-06 20:46 - 2014-02-06 20:47 - 00000112 _____ () C:\Users\Anish Joseph\Desktop\VIRSCAN.ORG.url
2014-02-06 20:46 - 2013-04-17 14:59 - 00718840 _____ (BitDefender) C:\Windows\system32\Drivers\avc3.sys
2014-02-06 20:46 - 2013-04-17 14:59 - 00593144 _____ (BitDefender) C:\Windows\system32\Drivers\avckf.sys
2014-02-06 20:46 - 2009-07-15 01:21 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll
2014-02-06 20:43 - 2014-02-06 20:48 - 00000000 ____D () C:\Program Files\Bitdefender
2014-02-06 20:43 - 2013-04-22 13:21 - 00148696 _____ (BitDefender LLC) C:\Windows\system32\Drivers\gzflt.sys
2014-02-06 20:42 - 2014-02-06 20:43 - 00000000 ____D () C:\Users\Anish Joseph\AppData\Roaming\QuickScan
2014-02-06 20:27 - 2014-02-06 21:25 - 00002042 _____ () C:\Users\Public\Desktop\Advanced SystemCare 7.lnk
2014-02-06 20:27 - 2014-02-06 20:30 - 00000000 ____D () C:\ProgramData\IObit
2014-02-06 20:27 - 2014-02-06 20:27 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-02-06 20:27 - 2014-02-06 20:27 - 00003108 _____ () C:\Windows\System32\Tasks\ASC7_PerformanceMonitor
2014-02-06 20:27 - 2014-02-06 20:27 - 00002864 _____ () C:\Windows\System32\Tasks\ASC7_SkipUac_Anish Joseph
2014-02-06 20:27 - 2014-02-06 20:27 - 00001050 _____ () C:\Users\Public\Desktop\IObit Uninstaller.lnk
2014-02-06 20:27 - 2014-02-06 20:27 - 00000000 ____D () C:\ProgramData\ProductData
2014-02-06 20:27 - 2014-02-06 20:27 - 00000000 ____D () C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2014-02-06 20:26 - 2014-02-06 20:27 - 00000000 ____D () C:\Users\Anish Joseph\AppData\Roaming\IObit
2014-02-06 20:26 - 2014-02-06 20:27 - 00000000 ____D () C:\Program Files (x86)\IObit
2014-02-06 20:21 - 2014-02-06 20:22 - 35641992 _____ (IObit ) C:\Users\Anish Joseph\Desktop\advanced-systemcare-setup.exe
2014-02-06 19:29 - 2014-02-06 21:04 - 00000000 ____D () C:\Users\Anish Joseph\Desktop\mbar
2014-02-06 19:29 - 2014-02-06 19:29 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-02-06 19:26 - 2014-02-06 19:27 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Anish Joseph\Downloads\mbar-1_07_0_1009_exe
2014-02-06 19:26 - 2014-02-06 19:27 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Anish Joseph\Desktop\a.exe
2014-02-06 16:08 - 2014-02-06 16:08 - 00000999 _____ () C:\Users\Public\Desktop\TeamViewer 9.lnk
2014-02-06 16:08 - 2014-02-06 16:08 - 00000000 ____D () C:\Users\Anish Joseph\AppData\Roaming\TeamViewer
2014-02-06 16:08 - 2014-02-06 16:08 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2014-02-06 16:07 - 2014-02-06 16:04 - 05814120 _____ (TeamViewer GmbH) C:\Users\Anish Joseph\Desktop\TeamViewer_Setup_en.exe
2014-02-05 07:12 - 2014-02-05 07:12 - 00000000 ____D () C:\ProgramData\WindowsSearch
2014-01-26 15:45 - 2014-01-26 15:45 - 01727624 _____ () C:\Users\Anish Joseph\Downloads\download_asp
2014-01-26 15:42 - 2014-01-26 15:43 - 19362952 _____ (IObit ) C:\Users\Anish Joseph\Downloads\imfv2-setup-for-review_exe
2014-01-11 16:56 - 2014-01-11 16:56 - 00000000 ____D () C:\Windows\Sun
2014-01-11 16:55 - 2014-01-11 16:55 - 00000000 ____D () C:\ProgramData\Oracle
2014-01-11 16:55 - 2013-10-08 07:50 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-01-11 16:55 - 2013-10-08 07:46 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-01-11 16:55 - 2013-10-08 07:46 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-01-11 16:55 - 2013-10-08 07:46 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-01-11 16:54 - 2014-01-11 16:55 - 00005521 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_45-b18.log

==================== One Month Modified Files and Folders =======

2014-02-08 09:24 - 2014-02-08 09:23 - 00022028 _____ () C:\Users\Anish Joseph\Desktop\FRST.txt
2014-02-08 09:23 - 2014-02-08 09:23 - 00000000 ____D () C:\FRST
2014-02-08 09:20 - 2014-02-08 09:22 - 02079744 _____ (Farbar) C:\Users\Anish Joseph\Desktop\FRST64.exe
2014-02-08 09:16 - 2012-04-03 19:16 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-02-08 08:59 - 2014-02-08 08:59 - 00000258 __RSH () C:\ProgramData\ntuser.pol
2014-02-08 08:59 - 2009-09-16 20:59 - 01166017 _____ () C:\Windows\WindowsUpdate.log
2014-02-08 08:59 - 2006-11-02 07:34 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2014-02-08 08:42 - 2010-08-19 15:18 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3039304259-2379085820-2277983735-1000UA.job
2014-02-08 08:42 - 2010-07-23 14:56 - 00000000 ____D () C:\Users\Anish Joseph\AppData\Roaming\Mozilla
2014-02-08 08:37 - 2010-05-05 10:29 - 00000906 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-08 08:27 - 2010-05-05 10:29 - 00000910 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-08 07:56 - 2006-11-02 09:42 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-08 07:56 - 2006-11-02 09:22 - 00003616 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-08 07:56 - 2006-11-02 09:22 - 00003616 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-06 22:48 - 2006-11-02 09:42 - 00032628 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-02-06 22:39 - 2014-02-06 21:33 - 00166550 _____ () C:\Windows\PFRO.log
2014-02-06 22:39 - 2011-06-12 17:29 - 00000000 ____D () C:\Program Files (x86)\Yahoo!
2014-02-06 22:32 - 2011-06-12 17:30 - 00000000 ____D () C:\ProgramData\Yahoo!
2014-02-06 22:31 - 2010-06-02 08:34 - 00000000 ____D () C:\Users\Anish Joseph\AppData\Local\Unity
2014-02-06 22:26 - 2011-04-05 11:30 - 00003366 _____ () C:\Windows\System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-3039304259-2379085820-2277983735-1000
2014-02-06 22:26 - 2011-04-05 11:30 - 00003246 _____ () C:\Windows\System32\Tasks\RealUpgradeLogonTaskS-1-5-21-3039304259-2379085820-2277983735-1000
2014-02-06 22:26 - 2011-04-05 11:29 - 00000000 ____D () C:\Users\Anish Joseph\AppData\Roaming\Real
2014-02-06 22:26 - 2011-04-05 11:29 - 00000000 ____D () C:\ProgramData\Real
2014-02-06 22:26 - 2011-04-05 11:29 - 00000000 ____D () C:\Program Files (x86)\Real
2014-02-06 22:19 - 2013-08-03 15:30 - 00000000 ____D () C:\Program Files (x86)\Lavasoft
2014-02-06 22:18 - 2009-12-15 01:28 - 00000000 ____D () C:\ProgramData\Lavasoft
2014-02-06 21:49 - 2014-02-06 21:49 - 00093875 _____ () C:\Users\Anish Joseph\Downloads\ShareEnum.zip
2014-02-06 21:49 - 2014-02-06 21:49 - 00045258 _____ () C:\Users\Anish Joseph\Downloads\Streams.zip
2014-02-06 21:25 - 2014-02-06 20:27 - 00002042 _____ () C:\Users\Public\Desktop\Advanced SystemCare 7.lnk
2014-02-06 21:25 - 2011-03-27 14:48 - 00000000 ____D () C:\Users\Anish Joseph\Desktop\desktop stuff
2014-02-06 21:25 - 2010-03-21 20:20 - 00000000 ____D () C:\Users\Anish Joseph\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-02-06 21:25 - 2009-09-27 00:15 - 00000000 ____D () C:\Users\Anish Joseph\Desktop\shortcuts
2014-02-06 21:25 - 2009-04-24 20:39 - 00000000 ____D () C:\Windows\Panther
2014-02-06 21:22 - 2009-09-26 23:42 - 00000000 ____D () C:\Users\Anish Joseph\AppData\Roaming\BitTorrent
2014-02-06 21:17 - 2014-02-06 21:17 - 61755392 _____ () C:\Windows\system32\config\components.iobit
2014-02-06 21:17 - 2014-02-06 21:17 - 129871872 _____ () C:\Windows\system32\config\software.iobit
2014-02-06 21:17 - 2014-02-06 21:17 - 00696320 _____ () C:\Windows\system32\config\default.iobit
2014-02-06 21:17 - 2014-02-06 21:17 - 00057344 _____ () C:\Windows\system32\config\sam.iobit
2014-02-06 21:17 - 2014-02-06 21:17 - 00020480 _____ () C:\Windows\system32\config\security.iobit
2014-02-06 21:17 - 2009-09-23 18:34 - 00000000 ____D () C:\Users\Anish Joseph
2014-02-06 21:09 - 2014-02-06 21:09 - 00382536 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\trufos.sys
2014-02-06 21:04 - 2014-02-06 19:29 - 00000000 ____D () C:\Users\Anish Joseph\Desktop\mbar
2014-02-06 20:48 - 2014-02-06 20:48 - 00364985 _____ () C:\ProgramData\1391740977.bdinstall.bin
2014-02-06 20:48 - 2014-02-06 20:48 - 00002009 _____ () C:\Users\Public\Desktop\Bitdefender Antivirus Free Edition.lnk
2014-02-06 20:48 - 2014-02-06 20:43 - 00000000 ____D () C:\Program Files\Bitdefender
2014-02-06 20:47 - 2014-02-06 20:46 - 00000112 _____ () C:\Users\Anish Joseph\Desktop\VIRSCAN.ORG.url
2014-02-06 20:43 - 2014-02-06 20:42 - 00000000 ____D () C:\Users\Anish Joseph\AppData\Roaming\QuickScan
2014-02-06 20:30 - 2014-02-06 20:27 - 00000000 ____D () C:\ProgramData\IObit
2014-02-06 20:27 - 2014-02-06 20:27 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-02-06 20:27 - 2014-02-06 20:27 - 00003108 _____ () C:\Windows\System32\Tasks\ASC7_PerformanceMonitor
2014-02-06 20:27 - 2014-02-06 20:27 - 00002864 _____ () C:\Windows\System32\Tasks\ASC7_SkipUac_Anish Joseph
2014-02-06 20:27 - 2014-02-06 20:27 - 00001050 _____ () C:\Users\Public\Desktop\IObit Uninstaller.lnk
2014-02-06 20:27 - 2014-02-06 20:27 - 00000000 ____D () C:\ProgramData\ProductData
2014-02-06 20:27 - 2014-02-06 20:27 - 00000000 ____D () C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2014-02-06 20:27 - 2014-02-06 20:26 - 00000000 ____D () C:\Users\Anish Joseph\AppData\Roaming\IObit
2014-02-06 20:27 - 2014-02-06 20:26 - 00000000 ____D () C:\Program Files (x86)\IObit
2014-02-06 20:22 - 2014-02-06 20:21 - 35641992 _____ (IObit ) C:\Users\Anish Joseph\Desktop\advanced-systemcare-setup.exe
2014-02-06 19:51 - 2009-09-26 23:20 - 00000680 _____ () C:\Users\Anish Joseph\AppData\Local\d3d9caps.dat
2014-02-06 19:48 - 2013-12-26 10:06 - 00000000 ____D () C:\Users\Anish Joseph\AppData\Roaming\Search Protection
2014-02-06 19:42 - 2010-08-19 15:18 - 00000884 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3039304259-2379085820-2277983735-1000Core.job
2014-02-06 19:31 - 2010-11-22 16:18 - 00000000 ____D () C:\Program Files (x86)\BitTorrentBar
2014-02-06 19:29 - 2014-02-06 19:29 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-02-06 19:27 - 2014-02-06 19:26 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Anish Joseph\Downloads\mbar-1_07_0_1009_exe
2014-02-06 19:27 - 2014-02-06 19:26 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Anish Joseph\Desktop\a.exe
2014-02-06 19:15 - 2010-05-04 23:13 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-02-06 19:13 - 2012-06-05 21:43 - 00000950 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-02-06 16:28 - 2006-11-02 09:21 - 01948280 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-02-06 16:21 - 2009-09-23 18:34 - 00157928 _____ () C:\Users\Anish Joseph\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-06 16:08 - 2014-02-06 16:08 - 00000999 _____ () C:\Users\Public\Desktop\TeamViewer 9.lnk
2014-02-06 16:08 - 2014-02-06 16:08 - 00000000 ____D () C:\Users\Anish Joseph\AppData\Roaming\TeamViewer
2014-02-06 16:08 - 2014-02-06 16:08 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2014-02-06 16:04 - 2014-02-06 16:07 - 05814120 _____ (TeamViewer GmbH) C:\Users\Anish Joseph\Desktop\TeamViewer_Setup_en.exe
2014-02-05 19:37 - 2010-08-19 15:18 - 00003834 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3039304259-2379085820-2277983735-1000UA
2014-02-05 19:37 - 2010-08-19 15:18 - 00003438 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3039304259-2379085820-2277983735-1000Core
2014-02-05 19:34 - 2012-04-03 19:16 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-02-05 19:34 - 2012-04-03 19:16 - 00003682 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-02-05 19:34 - 2011-05-15 15:03 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-02-05 07:40 - 2013-11-05 21:53 - 00002027 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-02-05 07:12 - 2014-02-05 07:12 - 00000000 ____D () C:\ProgramData\WindowsSearch
2014-01-28 20:11 - 2012-02-12 19:45 - 00000000 ____D () C:\Users\Anish Joseph\AppData\Roaming\Spotify
2014-01-27 21:57 - 2010-03-21 20:20 - 00000000 ____D () C:\Users\Anish Joseph\AppData\Roaming\Dropbox
2014-01-27 21:44 - 2012-04-08 20:40 - 00000000 ____D () C:\Insanity
2014-01-26 15:47 - 2012-12-28 16:58 - 00000000 ____D () C:\Users\Anish Joseph\AppData\Roaming\LavasoftStatistics
2014-01-26 15:45 - 2014-01-26 15:45 - 01727624 _____ () C:\Users\Anish Joseph\Downloads\download_asp
2014-01-26 15:43 - 2014-01-26 15:42 - 19362952 _____ (IObit ) C:\Users\Anish Joseph\Downloads\imfv2-setup-for-review_exe
2014-01-24 19:28 - 2012-02-12 19:45 - 00000000 ____D () C:\Users\Anish Joseph\AppData\Local\Spotify
2014-01-23 21:19 - 2012-01-02 13:23 - 00000000 ____D () C:\Design
2014-01-18 03:03 - 2013-08-14 19:03 - 00000000 ____D () C:\Windows\system32\MRT
2014-01-18 03:01 - 2006-11-02 06:35 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2014-01-11 16:56 - 2014-01-11 16:56 - 00000000 ____D () C:\Windows\Sun
2014-01-11 16:55 - 2014-01-11 16:55 - 00000000 ____D () C:\ProgramData\Oracle
2014-01-11 16:55 - 2014-01-11 16:54 - 00005521 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_45-b18.log
2014-01-11 16:55 - 2009-09-17 02:21 - 00000000 ____D () C:\Program Files (x86)\Java

Files to move or delete:
====================
C:\ProgramData\.bf45c81f8dc8abfeecf09.dat


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-02-08 08:11

==================== End Of Log ============================

Attached Files


  • 0

Advertisements


#2
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Hi there, download the attached fixlist.txt to the same location as FRST

Run FRST and press FIX
On completion a log will appear please post that
Internet should now be restored

THEN

Download OTL to your Desktop
Secondary link
  • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.

    Posted Image
  • Select All Users
  • Select LOP and Purity
  • Under the Custom Scan box paste this in

    netsvcs
    BASESERVICES
    %SYSTEMDRIVE%\*.exe
    c:\program files (x86)\Google\Desktop
    c:\program files\Google\Desktop
    dir "%systemdrive%\*" /S /A:L /C
    /md5start
    rpcss.dll
    /md5stop
    CREATERESTOREPOINT

  • Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.
  • When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
  • Attach both logs

  • 0

#3
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP