Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Firefox Infested [Solved]


  • This topic is locked This topic is locked

#1
peejaygee1

peejaygee1

    Member

  • Member
  • PipPip
  • 27 posts
When i open Firefox i am repeatedly getting new pop-ups open and it is generally running slowly. Also, i am getting a message stating "adobe flash plugin has crashed"

Chrome is not as bad, however (http://start.mysearchdial.com/) is set as my homepage and i cannot get rid of it.







OTL logfile created on: 26/02/2014 17:03:55 - Run 8
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\sarah_000\Downloads
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16798)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

3.89 Gb Total Physical Memory | 1.74 Gb Available Physical Memory | 44.78% Memory free
7.89 Gb Paging File | 5.70 Gb Available in Paging File | 72.17% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 678.57 Gb Total Space | 293.68 Gb Free Space | 43.28% Space Free | Partition Type: NTFS
Drive D: | 19.30 Gb Total Space | 2.42 Gb Free Space | 12.52% Space Free | Partition Type: NTFS

Computer Name: SARAH | User Name: paul | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2014/02/20 01:03:06 | 000,859,464 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2014/02/14 22:26:12 | 000,775,872 | ---- | M] () -- C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
PRC - [2014/02/13 00:36:25 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2014/02/10 11:35:22 | 001,444,120 | ---- | M] (Trusteer Ltd.) -- C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
PRC - [2014/02/10 11:35:20 | 002,484,504 | ---- | M] (Trusteer Ltd.) -- C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe
PRC - [2014/02/08 22:11:57 | 000,223,112 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe
PRC - [2013/12/08 20:46:02 | 003,568,312 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2013/12/08 20:46:01 | 000,050,344 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2013/11/26 16:36:04 | 001,213,960 | ---- | M] (TorchMedia Inc.) -- C:\Users\paul\AppData\Local\Torch\Update\TorchCrashHandler.exe
PRC - [2013/11/13 16:43:45 | 000,194,224 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE
PRC - [2013/09/22 17:22:55 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\sarah_000\Downloads\OTL (1).exe
PRC - [2013/06/29 09:49:28 | 000,068,608 | ---- | M] (IvoSoft) -- C:\Program Files\Classic Shell\ClassicShellService.exe
PRC - [2012/09/07 16:33:08 | 000,581,024 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
PRC - [2012/09/07 16:33:08 | 000,035,232 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
PRC - [2012/07/27 17:21:26 | 000,136,488 | ---- | M] (CyberLink) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
PRC - [2012/07/18 01:10:32 | 000,364,416 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
PRC - [2012/07/18 01:10:30 | 000,276,864 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
PRC - [2012/07/18 01:10:24 | 000,128,896 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe
PRC - [2012/07/18 01:10:16 | 000,165,760 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe
PRC - [2012/06/08 03:34:06 | 000,111,120 | ---- | M] (CyberLink) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
PRC - [2011/08/26 13:37:18 | 001,342,008 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe
PRC - [2010/03/10 10:17:10 | 000,358,448 | ---- | M] (National Instruments Corporation) -- C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe
PRC - [2010/03/10 10:17:04 | 000,053,808 | ---- | M] (National Instruments Corporation) -- C:\Windows\SysWOW64\lktsrv.exe
PRC - [2010/03/10 10:17:02 | 000,043,056 | ---- | M] (National Instruments Corporation) -- C:\Windows\SysWOW64\lkads.exe
PRC - [2009/10/20 10:00:22 | 000,013,896 | ---- | M] (National Instruments Corporation) -- C:\Windows\SysWOW64\nisvcloc.exe


========== Modules (No Company Name) ==========

MOD - [2014/02/20 01:03:05 | 000,394,568 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\ppgooglenaclpluginchrome.dll
MOD - [2014/02/20 01:03:04 | 013,632,840 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\PepperFlash\pepflashplayer.dll
MOD - [2014/02/20 01:03:03 | 004,060,488 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\pdf.dll
MOD - [2014/02/20 01:02:59 | 000,716,616 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\libglesv2.dll
MOD - [2014/02/20 01:02:58 | 000,100,168 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\libegl.dll
MOD - [2014/02/20 01:02:56 | 001,647,432 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\ffmpegsumo.dll
MOD - [2014/02/20 01:02:54 | 000,051,016 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\chrome_elf.dll
MOD - [2014/02/14 22:26:13 | 000,061,440 | ---- | M] () -- C:\Program Files (x86)\Mobogenie\Device.dll
MOD - [2014/02/14 22:26:12 | 000,775,872 | ---- | M] () -- C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
MOD - [2014/02/14 22:26:12 | 000,471,040 | ---- | M] () -- C:\Program Files (x86)\Mobogenie\DCR.dll
MOD - [2014/02/13 00:36:40 | 003,578,992 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2014/02/03 23:27:24 | 001,125,592 | ---- | M] () -- C:\ProgramData\Trusteer\Rapport\store\exts\RapportMS\baseline\RapportMS.dll
MOD - [2013/12/19 18:26:59 | 000,359,592 | ---- | M] () -- C:\Program Files\Microsoft Office 15\root\office15\c2r32.dll
MOD - [2013/12/08 20:46:11 | 019,336,120 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\libcef.dll
MOD - [2013/11/13 16:41:40 | 000,316,584 | ---- | M] () -- C:\Program Files\Microsoft Office 15\root\office15\appvisvstream32.dll
MOD - [2013/09/13 19:51:44 | 000,087,952 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2013/09/13 19:51:20 | 001,242,952 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2012/06/27 14:09:06 | 000,557,056 | ---- | M] () -- C:\Program Files (x86)\Trusteer\Rapport\bin\js32.dll
MOD - [2012/06/08 10:34:06 | 000,016,400 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll
MOD - [2012/06/08 03:34:06 | 000,627,216 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll


========== Services (SafeList) ==========

SRV:64bit: - [2013/12/08 20:46:01 | 000,050,344 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2013/11/02 00:48:44 | 001,907,896 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe -- (OfficeSvc)
SRV:64bit: - [2013/08/16 05:39:26 | 002,371,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WSService.dll -- (WSService)
SRV:64bit: - [2013/07/02 00:44:21 | 000,016,048 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)
SRV:64bit: - [2013/06/29 09:49:28 | 000,068,608 | ---- | M] (IvoSoft) [Auto | Running] -- C:\Program Files\Classic Shell\ClassicShellService.exe -- (ClassicShellService)
SRV:64bit: - [2013/06/24 22:54:45 | 000,263,680 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wcmsvc.dll -- (Wcmsvc)
SRV:64bit: - [2013/06/01 09:19:58 | 000,207,872 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DeviceSetupManager.dll -- (DsmSvc)
SRV:64bit: - [2013/05/04 06:58:02 | 000,470,528 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm)
SRV:64bit: - [2013/05/04 06:57:05 | 000,179,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\bisrv.dll -- (BrokerInfrastructure)
SRV:64bit: - [2013/04/09 04:48:42 | 000,169,472 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
SRV:64bit: - [2013/03/02 02:45:07 | 000,171,008 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\TimeBrokerServer.dll -- (TimeBroker)
SRV:64bit: - [2013/03/02 02:45:05 | 000,180,224 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\SystemEventsBrokerServer.dll -- (SystemEventsBroker)
SRV:64bit: - [2013/01/09 23:23:16 | 001,964,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wlidsvc.dll -- (wlidsvc)
SRV:64bit: - [2013/01/09 23:22:35 | 000,438,272 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsm.dll -- (LSM)
SRV:64bit: - [2012/09/20 06:31:18 | 000,116,736 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\fhsvc.dll -- (fhsvc)
SRV:64bit: - [2012/08/10 14:24:28 | 000,029,600 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Windows\SysNative\hpservice.exe -- (hpsrv)
SRV:64bit: - [2012/07/26 03:30:05 | 002,675,200 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
SRV:64bit: - [2012/07/26 03:08:39 | 000,051,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rundll32.exe -- (70e6ca8c)
SRV:64bit: - [2012/07/26 03:07:47 | 000,065,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wiarpc.dll -- (WiaRpc)
SRV:64bit: - [2012/07/26 03:07:40 | 000,283,648 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\vaultsvc.dll -- (VaultSvc)
SRV:64bit: - [2012/07/26 03:07:25 | 000,012,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svsvc.dll -- (svsvc)
SRV:64bit: - [2012/07/26 03:06:34 | 000,743,936 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netlogon.dll -- (Netlogon)
SRV:64bit: - [2012/07/26 03:06:33 | 000,161,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcaSvc.dll -- (NcaSvc)
SRV:64bit: - [2012/07/26 03:06:33 | 000,073,728 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\NcdAutoSetup.dll -- (NcdAutoSetup)
SRV:64bit: - [2012/07/26 03:05:55 | 000,059,904 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso)
SRV:64bit: - [2012/07/26 03:05:34 | 000,037,376 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\efssvc.dll -- (EFS)
SRV:64bit: - [2012/07/26 03:05:24 | 000,342,016 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\das.dll -- (DeviceAssociationService)
SRV:64bit: - [2012/07/26 03:05:08 | 000,122,368 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AUInstallAgent.dll -- (AllUserInstallAgent)
SRV:64bit: - [2012/07/26 00:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicvss)
SRV:64bit: - [2012/07/26 00:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmictimesync)
SRV:64bit: - [2012/07/26 00:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicshutdown)
SRV:64bit: - [2012/07/26 00:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicrdv)
SRV:64bit: - [2012/07/26 00:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmickvpexchange)
SRV:64bit: - [2012/07/26 00:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicheartbeat)
SRV:64bit: - [2012/07/22 07:30:36 | 000,321,536 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Program Files\IDT\WDM\stacsv64.exe -- (STacSV)
SRV:64bit: - [2012/04/20 13:16:12 | 000,635,104 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel®
SRV - [2014/02/20 19:21:01 | 000,257,928 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014/02/13 00:36:33 | 000,118,896 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2014/02/10 11:35:22 | 001,444,120 | ---- | M] (Trusteer Ltd.) [Auto | Running] -- C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe -- (RapportMgmtService)
SRV - [2013/11/26 16:36:04 | 001,213,960 | ---- | M] (TorchMedia Inc.) [Auto | Running] -- C:\Users\paul\AppData\Local\Torch\Update\TorchCrashHandler.exe -- (TorchCrashHandler)
SRV - [2013/11/04 18:31:56 | 000,092,160 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe -- (HP Support Assistant Service)
SRV - [2012/09/07 16:33:08 | 000,035,232 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe -- (HPWMISVC)
SRV - [2012/08/08 11:09:02 | 000,276,288 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
SRV - [2012/07/26 03:30:05 | 002,675,200 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll -- (PrintNotify)
SRV - [2012/07/26 03:20:04 | 000,018,432 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\StorSvc.dll -- (StorSvc)
SRV - [2012/07/26 03:18:41 | 000,408,064 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (WAS)
SRV - [2012/07/26 03:17:52 | 000,060,416 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\apphostsvc.dll -- (AppHostSvc)
SRV - [2012/07/18 01:10:32 | 000,364,416 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2012/07/18 01:10:30 | 000,276,864 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2012/07/18 01:10:24 | 000,128,896 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe -- (Intel®
SRV - [2012/07/18 01:10:16 | 000,165,760 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe -- (jhi_service)
SRV - [2012/07/14 16:02:16 | 002,451,456 | ---- | M] (Realsil Microelectronics Inc.) [Auto | Running] -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe -- (IconMan_R)
SRV - [2010/10/12 17:59:12 | 000,206,072 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe -- (GamesAppService)
SRV - [2010/05/17 18:18:44 | 001,007,616 | ---- | M] (Macrovision Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\National Instruments\Shared\License Manager\Bin\lmgrd.exe -- (NILM License Manager)
SRV - [2010/03/10 10:17:10 | 000,358,448 | ---- | M] (National Instruments Corporation) [Auto | Running] -- C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe -- (NIDomainService)
SRV - [2010/03/10 10:17:04 | 000,053,808 | ---- | M] (National Instruments Corporation) [Auto | Running] -- C:\Windows\SysWOW64\lktsrv.exe -- (lkTimeSync)
SRV - [2010/03/10 10:17:02 | 000,043,056 | ---- | M] (National Instruments Corporation) [Auto | Running] -- C:\Windows\SysWOW64\lkads.exe -- (lkClassAds)
SRV - [2009/10/20 10:00:22 | 000,013,896 | ---- | M] (National Instruments Corporation) [Auto | Running] -- C:\Windows\SysWOW64\nisvcloc.exe -- (niSvcLoc)
SRV - [2009/09/29 12:56:52 | 000,695,136 | ---- | M] (National Instruments, Inc.) [Auto | Stopped] -- C:\Windows\SysWOW64\lkcitdl.exe -- (LkCitadelServer)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2014/02/10 11:35:42 | 000,273,592 | ---- | M] (Trusteer Ltd.) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\RapportHades64.sys -- (RapportHades64)
DRV:64bit: - [2014/02/10 11:35:40 | 000,316,312 | ---- | M] (Trusteer Ltd.) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\RapportKE64.sys -- (RapportKE64)
DRV:64bit: - [2013/12/08 20:46:22 | 001,032,416 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\Drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2013/12/08 20:46:22 | 000,409,832 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\aswSP.sys -- (aswSP)
DRV:64bit: - [2013/12/08 20:46:22 | 000,205,320 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswVmm.sys -- (aswVmm)
DRV:64bit: - [2013/12/08 20:46:22 | 000,065,776 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt)
DRV:64bit: - [2013/12/08 20:46:21 | 000,084,328 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\Drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2013/12/08 20:46:21 | 000,038,984 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\Drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:64bit: - [2013/12/08 20:46:20 | 000,092,544 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\aswRdr2.sys -- (aswRdr)
DRV:64bit: - [2013/10/10 11:53:35 | 000,096,600 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\wfplwfs.sys -- (WFPLWFS)
DRV:64bit: - [2013/10/05 06:10:20 | 000,285,016 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\spaceport.sys -- (spaceport)
DRV:64bit: - [2013/10/02 02:50:07 | 000,447,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\USBHUB3.SYS -- (USBHUB3)
DRV:64bit: - [2013/08/20 06:02:12 | 000,204,568 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\ssudmdm.sys -- (ssudmdm)
DRV:64bit: - [2013/08/20 06:02:12 | 000,103,576 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\ssudbus.sys -- (dg_ssudbus)
DRV:64bit: - [2013/08/16 05:41:13 | 000,058,200 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\Drivers\dam.sys -- (dam)
DRV:64bit: - [2013/08/10 06:30:22 | 000,151,896 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\tpm.sys -- (TPM)
DRV:64bit: - [2013/07/09 08:04:07 | 000,120,144 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\msgpioclx.sys -- (GPIOClx0101)
DRV:64bit: - [2013/07/02 01:41:47 | 000,337,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\USBXHCI.SYS -- (USBXHCI)
DRV:64bit: - [2013/07/02 01:41:47 | 000,213,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\UCX01000.SYS -- (UCX01000)
DRV:64bit: - [2013/07/02 00:44:14 | 000,036,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\WdBoot.sys -- (WdBoot)
DRV:64bit: - [2013/07/01 22:08:49 | 000,247,216 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\WdFilter.sys -- (WdFilter)
DRV:64bit: - [2013/06/29 06:15:54 | 000,195,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2013/06/01 03:08:57 | 000,037,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\BthAvrcpTg.sys -- (BthAvrcpTg)
DRV:64bit: - [2013/05/26 17:31:41 | 000,495,856 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2013/05/26 17:31:39 | 000,033,008 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\Smb_driver_Intel.sys -- (SmbDrvI)
DRV:64bit: - [2013/04/15 06:02:04 | 002,482,960 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\netr28x.sys -- (netr28x)
DRV:64bit: - [2013/03/02 10:57:46 | 000,077,544 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\storahci.sys -- (storahci)
DRV:64bit: - [2013/03/02 10:39:38 | 000,069,864 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\pdc.sys -- (pdc)
DRV:64bit: - [2013/01/10 01:53:32 | 000,028,904 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\msgpiowin32.sys -- (msgpiowin32)
DRV:64bit: - [2012/12/13 14:50:36 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2012/11/27 03:55:44 | 000,029,952 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\BthhfHid.sys -- (bthhfhid)
DRV:64bit: - [2012/11/20 04:54:31 | 000,039,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\hidi2c.sys -- (hidi2c)
DRV:64bit: - [2012/11/06 03:55:44 | 000,022,528 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\fxppm.sys -- (FxPPM)
DRV:64bit: - [2012/10/12 08:08:01 | 000,027,880 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012/10/11 07:25:48 | 000,056,552 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\sdstor.sys -- (sdstor)
DRV:64bit: - [2012/09/20 07:55:27 | 003,265,256 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2012/09/20 07:55:24 | 000,533,224 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2012/08/31 08:40:24 | 000,020,800 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\WirelessButtonDriver64.sys -- (WirelessButtonDriver)
DRV:64bit: - [2012/08/24 09:38:26 | 000,041,272 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\Smb_driver_AMDASF.sys -- (SmbDrv)
DRV:64bit: - [2012/08/21 13:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2012/08/10 14:24:28 | 000,042,400 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\Accelerometer.sys -- (Accelerometer)
DRV:64bit: - [2012/08/10 14:24:28 | 000,029,600 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\hpdskflt.sys -- (hpdskflt)
DRV:64bit: - [2012/08/08 05:17:54 | 008,987,456 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2012/07/31 19:22:00 | 000,645,952 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\iaStorA.sys -- (iaStorA)
DRV:64bit: - [2012/07/31 08:04:12 | 000,690,832 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\Rt630x64.sys -- (RTL8168)
DRV:64bit: - [2012/07/26 05:26:46 | 000,025,328 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012/07/26 05:26:45 | 000,033,792 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\condrv.sys -- (condrv)
DRV:64bit: - [2012/07/26 05:00:58 | 000,322,800 | ---- | M] (VIA Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\VSTXRAID.SYS -- (VSTXRAID)
DRV:64bit: - [2012/07/26 05:00:58 | 000,106,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\VerifierExt.sys -- (VerifierExt)
DRV:64bit: - [2012/07/26 05:00:58 | 000,097,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\uaspstor.sys -- (UASPStor)
DRV:64bit: - [2012/07/26 05:00:57 | 000,077,040 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\acpiex.sys -- (acpiex)
DRV:64bit: - [2012/07/26 05:00:55 | 000,064,240 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\mvumis.sys -- (mvumis)
DRV:64bit: - [2012/07/26 05:00:55 | 000,030,960 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2012/07/26 05:00:52 | 000,092,400 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2012/07/26 05:00:52 | 000,081,136 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\lsi_sss.sys -- (LSI_SSS)
DRV:64bit: - [2012/07/26 05:00:52 | 000,064,752 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2012/07/26 05:00:51 | 000,113,904 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv)
DRV:64bit: - [2012/07/26 05:00:51 | 000,081,136 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\EhStorClass.sys -- (EhStorClass)
DRV:64bit: - [2012/07/26 05:00:49 | 000,258,288 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2012/07/26 05:00:49 | 000,106,736 | ---- | M] (LSI) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\3ware.sys -- (3ware)
DRV:64bit: - [2012/07/26 05:00:49 | 000,076,016 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2012/07/26 05:00:48 | 000,026,352 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2012/07/26 04:57:54 | 000,361,200 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\clfs.sys -- (CLFS)
DRV:64bit: - [2012/07/26 04:53:16 | 000,067,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\vpci.sys -- (vpci)
DRV:64bit: - [2012/07/26 03:17:38 | 000,036,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\terminpt.sys -- (terminpt)
DRV:64bit: - [2012/07/26 02:29:14 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\mshidumdf.sys -- (mshidumdf)
DRV:64bit: - [2012/07/26 02:29:08 | 000,048,640 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\BasicDisplay.sys -- (BasicDisplay)
DRV:64bit: - [2012/07/26 02:29:03 | 000,024,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\HyperVideo.sys -- (HyperVideo)
DRV:64bit: - [2012/07/26 02:28:52 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\BasicRender.sys -- (BasicRender)
DRV:64bit: - [2012/07/26 02:27:58 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\vmgencounter.sys -- (gencounter)
DRV:64bit: - [2012/07/26 02:27:41 | 000,018,432 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\kdnic.sys -- (kdnic)
DRV:64bit: - [2012/07/26 02:27:37 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\acpitime.sys -- (acpitime)
DRV:64bit: - [2012/07/26 02:27:33 | 000,023,552 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\npsvctrig.sys -- (npsvctrig)
DRV:64bit: - [2012/07/26 02:27:29 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\WpdUpFltr.sys -- (WpdUpFltr)
DRV:64bit: - [2012/07/26 02:27:16 | 000,010,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\acpipagr.sys -- (acpipagr)
DRV:64bit: - [2012/07/26 02:27:01 | 000,011,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\hyperkbd.sys -- (hyperkbd)
DRV:64bit: - [2012/07/26 02:26:46 | 000,062,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\SerCx.sys -- (SerCx)
DRV:64bit: - [2012/07/26 02:26:43 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\SpbCx.sys -- (SpbCx)
DRV:64bit: - [2012/07/26 02:26:34 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2012/07/26 02:26:13 | 000,051,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\bthhfenum.sys -- (BthHFEnum)
DRV:64bit: - [2012/07/26 02:25:57 | 000,033,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\dmvsc.sys -- (dmvsc)
DRV:64bit: - [2012/07/26 02:25:56 | 000,057,344 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2012/07/26 02:25:13 | 000,045,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\wpcfltr.sys -- (wpcfltr)
DRV:64bit: - [2012/07/26 02:25:01 | 000,126,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\NdisImPlatform.sys -- (NdisImPlatform)
DRV:64bit: - [2012/07/26 02:23:53 | 000,068,608 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\mslldp.sys -- (MsLldp)
DRV:64bit: - [2012/07/26 02:23:42 | 000,097,792 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\Drivers\Ndu.sys -- (Ndu)
DRV:64bit: - [2012/07/25 22:53:22 | 011,926,528 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2012/07/22 07:30:36 | 000,540,160 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\stwrt64.sys -- (STHDA)
DRV:64bit: - [2012/07/04 13:09:08 | 000,269,968 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\RtsP2Stor.sys -- (RSP2STOR)
DRV:64bit: - [2012/07/02 23:16:02 | 000,062,784 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2012/06/29 02:00:48 | 000,360,448 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2012/06/25 09:24:50 | 000,092,536 | ---- | M] (CyberLink) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\CLVirtualDrive.sys -- (CLVirtualDrive)
DRV:64bit: - [2012/06/19 15:40:50 | 000,342,528 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\IntcDAud.sys -- (IntcDAud)
DRV:64bit: - [2012/06/02 14:31:47 | 011,400,192 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\NETwNe64.sys -- (NETwNe64)
DRV - [2014/02/10 11:35:42 | 000,282,712 | ---- | M] (Trusteer Ltd.) [Kernel | System | Running] -- C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys -- (RapportEI64)
DRV - [2014/02/10 11:35:40 | 000,397,848 | ---- | M] (Trusteer Ltd.) [Kernel | System | Running] -- C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys -- (RapportPG64)
DRV - [2013/12/29 18:17:47 | 000,075,016 | ---- | M] (Insyde Software) [Kernel | On_Demand | Stopped] -- C:\SWSetup\sp63746\iscflashx64.sys -- (iscFlash)
DRV - [2013/11/14 20:05:07 | 000,606,672 | ---- | M] () [Kernel | System | Running] -- C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_59849.sys -- (RapportCerberus_59849)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.mysearc...=1381852371&ir=
IE:64bit: - HKLM\..\SearchScopes,DefaultScope =
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...0TR&pc=HPNTDFJS
IE:64bit: - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = http://dts.search.as...q={searchTerms}
IE:64bit: - HKLM\..\SearchScopes\{A8FBBD84-5331-42A3-B73E-01280FA29F33}: "URL" = http://www.amazon.co...s={searchTerms}
IE:64bit: - HKLM\..\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC}: "URL" = http://rover.ebay.co...9550-11896-25/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com/HPNOT13/2
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.mysearc...=1381852371&ir=
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = http://dts.search.as...q={searchTerms}

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
IE - HKCU\..\SearchScopes,DefaultScope =
IE - HKCU\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = http://dts.search.as...q={searchTerms}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <-loopback>

========== FireFox ==========

FF - prefs.js..browser.search.defaultengine: "Google"
FF - prefs.js..browser.search.defaultthis.engineName: ""
FF - prefs.js..browser.search.defaulturl: ""
FF - prefs.js..browser.search.order.1: "Mysearchdial"
FF - prefs.js..browser.search.param.yahoo-fr: ""
FF - prefs.js..browser.search.suggest.enabled: false
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "www.google.com"
FF - prefs.js..extensions.enabledAddons: %7B6F977649-B06D-7809-9725-1FCFD3AC8308%7D:5.0.0.11465
FF - prefs.js..extensions.enabledAddons: b5a8adb2-854a-46d3-bf7d-b12f49185917%40e6bdf66d-4584-4d26-80a8-081e925b80a5.com:0.93.31
FF - prefs.js..extensions.enabledAddons: %7Bad9a41d2-9a49-4fa6-a79e-71a0785364c8%7D:9.5.3
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:27.0.1
FF - prefs.js..keyword.URL: ""


FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42: C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.5: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.2: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()

64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{DEDAF650-12B8-48f5-A843-BBA100716106}: C:\PROGRAM FILES\UPDATER BY SWEETPACKS\FIREFOX
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\AVAST Software\Avast\WebRep\FF [2013/12/08 20:46:28 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014/02/15 00:54:47 | 000,000,000 | ---D | M]

[2013/03/18 22:05:41 | 000,000,000 | ---D | M] (No name found) -- C:\Users\paul\AppData\Roaming\mozilla\Extensions
[2014/02/26 15:24:46 | 000,000,000 | ---D | M] (No name found) -- C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions
[2014/02/09 20:00:43 | 000,000,000 | ---D | M] (Ask New Tabs) -- C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{6F977649-B06D-7809-9725-1FCFD3AC8308}
[2014/02/25 19:18:40 | 000,000,000 | ---D | M] ("MySearchDial NewTab") -- C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}
[2014/02/01 21:52:54 | 000,000,000 | ---D | M] ("Feven 1.8") -- C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\b5a8adb2-854a-46d3-bf7d-b12f49185917@e6bdf66d-4584-4d26-80a8-081e925b80a5.com
[2014/02/13 17:05:42 | 000,000,000 | ---D | M] (No name found) -- C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\b5a8adb2-854a-46d3-bf7d-b12f49185917@e6bdf66d-4584-4d26-80a8-081e925b80a5.com\extensionData
[2014/02/13 17:05:42 | 000,000,000 | ---D | M] (No name found) -- C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\b5a8adb2-854a-46d3-bf7d-b12f49185917@e6bdf66d-4584-4d26-80a8-081e925b80a5.com\extensionData\plugins
[2014/02/13 17:05:43 | 000,000,000 | ---D | M] (No name found) -- C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\b5a8adb2-854a-46d3-bf7d-b12f49185917@e6bdf66d-4584-4d26-80a8-081e925b80a5.com\extensionData\userCode
[2013/10/08 20:56:27 | 000,013,228 | ---- | M] () (No name found) -- C:\Users\paul\AppData\Roaming\mozilla\firefox\profiles\detmy00y.default\extensions\[email protected]
[2014/02/09 20:00:55 | 000,002,664 | ---- | M] () -- C:\Users\paul\AppData\Roaming\mozilla\firefox\profiles\detmy00y.default\searchplugins\Ask.xml
[2014/02/25 19:17:04 | 000,000,847 | ---- | M] () -- C:\Users\paul\AppData\Roaming\mozilla\firefox\profiles\detmy00y.default\searchplugins\Mysearchdial.xml
[2014/02/15 00:54:46 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2014/02/25 09:24:16 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2008/12/10 14:49:34 | 000,023,040 | ---- | M] (National Instruments) -- C:\Program Files (x86)\mozilla firefox\plugins\nplv86win32.dll
[2010/05/25 12:43:16 | 000,025,088 | ---- | M] (National Instruments) -- C:\Program Files (x86)\mozilla firefox\plugins\nplv90win32.dll

========== Chrome ==========

CHR - default_search_provider: Mysearchdial (Enabled)
CHR - default_search_provider: search_url = http://start.mysearc...=1381852371&ir=
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?client=chrome&hl={language}&q={searchTerms},
CHR - homepage: http://start.mysearc...=1381852371&ir=
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\pdf.dll
CHR - plugin: Conduit Chrome Plugin (Enabled) = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\iaenoodoabpfbmpcidlgdmjnghapjchg\10.14.370.24_0\plugins/ConduitChromeApiPlugin.dll
CHR - plugin: Conduit Radio Plugin (Enabled) = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\iaenoodoabpfbmpcidlgdmjnghapjchg\10.14.370.24_0\plugins/np-cwmp.dll
CHR - plugin: Conduit Chrome Approve TB Plugin (Enabled) = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\iaenoodoabpfbmpcidlgdmjnghapjchg\10.14.370.24_0\plugins/ChromeApproveTBPlugin.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll
CHR - plugin: Intel Identity Protection Technology (Enabled) = C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll
CHR - plugin: Intel Identity Protection Technology (Enabled) = C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll
CHR - plugin: VLC Web Plugin (Enabled) = C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
CHR - plugin: Windows Live Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Microsoft Office 2013 (Enabled) = C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\windows\SysWOW64\Adobe\Director\np32dsw.dll
CHR - Extension: Google Docs = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\
CHR - Extension: Google Drive = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: YouTube = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Google Search = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Feven 1.8 = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfnfkjennojjkajjmghdgkibohcnefdk\12039.8594.4348_0\crossrider
CHR - Extension: Feven 1.8 = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfnfkjennojjkajjmghdgkibohcnefdk\12039.8594.4348_0\
CHR - Extension: Google Wallet = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: GreatArcadeHits = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocifcogajbgikalbpphmoedjlcfjkhgh\1.0.1_0\
CHR - Extension: MySearchDial = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff\9.4.14_0\
CHR - Extension: Gmail = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2013/12/19 12:33:24 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\Drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (avast! Online Security) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:64bit: - BHO: (no name) - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - No CLSID value found.
O2:64bit: - BHO: (Lync Browser Helper) - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
O2:64bit: - BHO: (ExplorerBHO Class) - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
O2:64bit: - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
O2:64bit: - BHO: (Microsoft SkyDrive Pro Browser Helper) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
O2:64bit: - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
O2:64bit: - BHO: (ClassicIE9BHO Class) - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_64.dll (IvoSoft)
O2 - BHO: (ExplorerBHO Class) - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\office15\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
O2 - BHO: (ClassicIE9BHO Class) - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_32.dll (IvoSoft)
O3:64bit: - HKLM\..\Toolbar: (avast! Online Security) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3:64bit: - HKLM\..\Toolbar: (Classic Explorer Bar) - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
O3 - HKLM\..\Toolbar: (Classic Explorer Bar) - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O4:64bit: - HKLM..\Run: [EKIJ5000StatusMonitor] C:\Windows\SysNative\spool\drivers\x64\3\EKIJ5000MUI.exe (Eastman Kodak Company)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
O4 - HKLM..\Run: [CLVirtualDrive] C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe (CyberLink Corp.)
O4 - HKLM..\Run: [HP CoolSense] C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (Hewlett-Packard Development Company, L.P.)
O4 - HKLM..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Development Company, L.P.)
O4 - HKLM..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe ()
O4 - HKLM..\Run: [NI Background Service] C:\Program Files (x86)\National Instruments\Shared\Update Service\niupdate.exe (National Instruments)
O4 - HKLM..\Run: [RemoteControl10] C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (CyberLink Corp.)
O4 - HKCU..\Run: [uTorrent] C:\Users\paul\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
O4:64bit: - HKLM..\RunOnce: [NCPluginUpdater] C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe (Hewlett-Packard)
O4 - Startup: C:\Users\paul\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk = C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation)
O8:64bit: - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll (Microsoft Corporation)
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll (Microsoft Corporation)
O9:64bit: - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9:64bit: - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9:64bit: - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll (Microsoft Corporation)
O9:64bit: - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll (Microsoft Corporation)
O9:64bit: - Extra Button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
O9:64bit: - Extra 'Tools' menuitem : Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
O9:64bit: - Extra 'Tools' menuitem : Classic IE9 Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE9_32.exe (IvoSoft)
O9:64bit: - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9:64bit: - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Classic IE9 Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE9_32.exe (IvoSoft)
O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9A6F4C74-43A9-4F5A-BAB0-9A2EEB32D75D}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C76B6B6B-6D91-4D3F-9D4F-81AC8FCCABFF}: DhcpNameServer = 40.21.1.201 40.21.1.202
O18:64bit: - Protocol\Handler\osf - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\osf {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O27:64bit: - HKLM IFEO\bitguard.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\bprotect.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\bpsvc.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\browserdefender.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\browserprotect.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\browsersafeguard.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\dprotectsvc.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\protectedsearch.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\searchprotection.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\searchprotector.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\snapdo.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\stinst32.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\stinst64.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\utiljumpflip.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\bitguard.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\bprotect.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\bpsvc.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\browserdefender.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\browserprotect.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\browsersafeguard.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\dprotectsvc.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\protectedsearch.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\searchprotection.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\searchprotector.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\snapdo.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\stinst32.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\stinst64.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\utiljumpflip.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O30 - LSA: Security Packages - (livessp) - File not found
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2014/02/25 20:37:46 | 001,037,734 | ---- | C] (Thisisu) -- C:\Users\paul\Desktop\JRT_NEW.exe
[2014/02/25 19:12:10 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\Plarium
[2014/02/25 19:12:10 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Plarium
[2014/02/25 19:11:54 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\mysearchdial
[2014/02/25 19:11:49 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z
[2014/02/25 19:11:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image Converter
[2014/02/25 19:11:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Image Converter
[2014/02/25 09:24:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2014/02/17 20:36:45 | 000,000,000 | ---D | C] -- C:\ProgramData\{18165758-115C-4DC0-9EC2-FF89F725767F}
[2014/02/15 00:54:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2014/02/14 22:31:57 | 000,000,000 | ---D | C] -- C:\Users\paul\Desktop\New folder
[2014/02/14 22:25:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Samsung
[2014/02/09 20:00:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Datamngr
[2014/02/02 14:44:33 | 000,000,000 | ---D | C] -- C:\Users\paul\Sketchup
[2014/02/02 13:45:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Google
[2014/02/02 13:45:57 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\Google
[2014/02/02 13:44:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SketchUp 8
[2014/02/02 08:43:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
[2014/02/01 22:11:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Uninstaller
[2014/02/01 21:52:46 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DownQuick
[2014/02/01 21:52:46 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\downquick
[2014/02/01 21:52:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Tuguu SL
[2014/02/01 21:52:11 | 000,000,000 | ---D | C] -- C:\Users\paul\Documents\Optimizer Pro
[2014/02/01 21:52:09 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\Optimizer Pro
[2014/02/01 21:51:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2
[2014/02/01 21:51:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Optimizer Pro
[2014/02/01 19:46:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
[1 C:\Program Files\*.tmp files -> C:\Program Files\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2014/02/26 16:20:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/02/26 16:17:41 | 000,000,912 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/02/26 16:13:00 | 000,000,300 | ---- | M] () -- C:\Windows\tasks\Digital Sites.job
[2014/02/26 15:20:13 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/02/26 15:20:01 | 000,000,908 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/02/26 15:18:03 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys
[2014/02/26 15:18:02 | 3345,604,608 | -HS- | M] () -- C:\hiberfil.sys
[2014/02/26 15:02:53 | 000,002,513 | ---- | M] () -- C:\Users\paul\Desktop\Game - Total Domination.lnk
[2014/02/26 14:40:00 | 000,000,360 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForsarah_000.job
[2014/02/26 10:13:03 | 000,000,124 | ---- | M] () -- C:\Users\paul\AppData\Roaming\WB.CFG
[2014/02/26 09:51:34 | 000,000,340 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForpaul.job
[2014/02/25 19:12:01 | 000,000,393 | ---- | M] () -- C:\Users\paul\Desktop\MySearchDial.url
[2014/02/25 19:12:01 | 000,000,388 | ---- | M] () -- C:\Users\paul\Desktop\FREE Games.url
[2014/02/25 19:11:44 | 000,001,270 | ---- | M] () -- C:\Users\Public\Desktop\Image Converter.lnk
[2014/02/25 09:37:46 | 000,000,847 | ---- | M] () -- C:\Users\paul\Desktop\µTorrent.lnk
[2014/02/25 09:24:26 | 000,001,151 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2014/02/20 17:22:33 | 000,002,183 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014/02/20 06:33:41 | 001,037,734 | ---- | M] (Thisisu) -- C:\Users\paul\Desktop\JRT_NEW.exe
[2014/02/19 23:21:57 | 765,777,359 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2014/02/15 19:18:08 | 000,941,114 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014/02/15 19:18:08 | 000,788,176 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014/02/15 19:18:08 | 000,162,458 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014/02/14 23:06:44 | 000,002,200 | -H-- | M] () -- C:\Users\paul\Documents\Default.rdp
[2014/02/10 11:35:42 | 000,273,592 | ---- | M] (Trusteer Ltd.) -- C:\Windows\SysNative\drivers\RapportHades64.sys
[2014/02/10 11:35:40 | 000,316,312 | ---- | M] (Trusteer Ltd.) -- C:\Windows\SysNative\drivers\RapportKE64.sys
[2014/02/02 14:54:32 | 000,001,144 | ---- | M] () -- C:\Users\paul\Desktop\Sketchup - Shortcut.lnk
[2014/02/02 13:44:20 | 000,002,025 | ---- | M] () -- C:\Users\Public\Desktop\SketchUp 8.lnk
[2014/02/02 08:43:59 | 000,002,212 | ---- | M] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2014/02/01 21:52:46 | 000,003,041 | ---- | M] () -- C:\Users\paul\Desktop\DownQuick.lnk
[2014/02/01 21:51:58 | 000,001,066 | ---- | M] () -- C:\Users\paul\Desktop\Optimizer Pro.lnk
[2014/02/01 19:42:12 | 000,001,070 | ---- | M] () -- C:\Users\Public\Desktop\VLC media player.lnk
[1 C:\Program Files\*.tmp files -> C:\Program Files\*.tmp -> ]

========== Files Created - No Company Name ==========

[2014/02/25 19:12:10 | 000,002,513 | ---- | C] () -- C:\Users\paul\Desktop\Game - Total Domination.lnk
[2014/02/25 19:11:49 | 000,000,300 | ---- | C] () -- C:\Windows\tasks\Digital Sites.job
[2014/02/25 19:11:44 | 000,001,270 | ---- | C] () -- C:\Users\Public\Desktop\Image Converter.lnk
[2014/02/25 09:24:26 | 000,001,151 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2014/02/25 09:24:25 | 000,001,163 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2014/02/17 20:40:03 | 000,000,360 | ---- | C] () -- C:\Windows\tasks\HPCeeScheduleForsarah_000.job
[2014/02/13 17:53:44 | 000,385,614 | ---- | C] () -- C:\Windows\SysNative\ApnDatabase.xml
[2014/02/02 14:54:32 | 000,001,144 | ---- | C] () -- C:\Users\paul\Desktop\Sketchup - Shortcut.lnk
[2014/02/02 13:44:20 | 000,002,025 | ---- | C] () -- C:\Users\Public\Desktop\SketchUp 8.lnk
[2014/02/02 08:43:59 | 000,002,212 | ---- | C] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2014/02/01 21:52:46 | 000,003,041 | ---- | C] () -- C:\Users\paul\Desktop\DownQuick.lnk
[2014/02/01 21:51:58 | 000,001,066 | ---- | C] () -- C:\Users\paul\Desktop\Optimizer Pro.lnk
[2014/02/01 20:04:35 | 000,000,335 | ---- | C] () -- C:\Users\paul\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\All Control Panel Items.lnk
[2014/01/11 18:00:35 | 000,351,124 | ---- | C] () -- C:\Users\paul\AppData\Local\mysearchdial-speeddial.crx
[2014/01/11 17:56:06 | 000,000,005 | ---- | C] () -- C:\Users\paul\AppData\Roaming\WBPU-TTL.DAT
[2014/01/11 17:56:05 | 000,000,124 | ---- | C] () -- C:\Users\paul\AppData\Roaming\WB.CFG
[2013/12/16 09:00:50 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2013/12/16 09:00:50 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2013/12/16 09:00:50 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2013/12/16 09:00:50 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2013/12/16 09:00:50 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2013/09/11 17:01:38 | 000,083,968 | ---- | C] () -- C:\Windows\SysWow64\OEMLicense.dll
[2013/07/10 11:10:37 | 000,000,258 | RHS- | C] () -- C:\Users\paul\ntuser.pol
[2012/08/08 05:18:02 | 000,272,928 | ---- | C] () -- C:\Windows\SysWow64\igvpkrng600.bin
[2012/08/08 05:17:52 | 000,064,512 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
[2012/08/08 05:17:50 | 000,963,388 | ---- | C] () -- C:\Windows\SysWow64\igcodeckrng600.bin
[2012/08/03 22:40:09 | 000,916,510 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012/07/26 08:13:10 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2012/07/26 08:13:09 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2012/07/26 07:21:26 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2012/07/26 01:17:42 | 000,043,520 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2012/07/25 20:37:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2012/07/25 20:28:31 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2012/07/25 20:22:56 | 000,733,840 | ---- | C] () -- C:\Windows\SysWow64\igcodeckrng700.bin
[2012/07/25 20:22:56 | 000,492,340 | ---- | C] () -- C:\Windows\SysWow64\igvpkrng700.bin
[2012/07/25 20:22:54 | 000,982,240 | ---- | C] () -- C:\Windows\SysWow64\igkrng500.bin
[2012/07/25 20:22:54 | 000,439,308 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng500.bin
[2012/07/25 20:22:54 | 000,092,356 | ---- | C] () -- C:\Windows\SysWow64\igfcg500m.bin
[2012/06/02 14:31:19 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2012/04/20 12:59:44 | 000,001,536 | ---- | C] () -- C:\Windows\SysWow64\IusEventLog.dll

========== ZeroAccess Check ==========

[2012/08/24 16:52:35 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/08/02 06:28:20 | 019,758,080 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/08/02 05:08:10 | 017,561,088 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2012/07/26 03:05:38 | 001,004,544 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2012/07/26 03:18:27 | 000,784,896 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2012/07/26 03:07:41 | 000,455,680 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2013/10/03 20:24:44 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\0D0S1L2Z1P1B
[2014/02/25 19:11:49 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z
[2013/12/09 22:27:20 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\AVAST Software
[2014/01/11 17:55:50 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\DigitalSites
[2014/02/01 21:52:46 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\downquick
[2014/02/25 19:11:54 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\mysearchdial
[2013/12/19 14:55:55 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\National Instruments
[2014/02/25 07:38:25 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\newnext.me
[2013/09/23 21:16:35 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\Nico Mak Computing
[2014/02/01 21:52:09 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\Optimizer Pro
[2014/02/25 19:12:10 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\Plarium
[2013/03/18 22:01:39 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\Synaptics
[2014/02/26 16:14:44 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\uTorrent
[2013/03/27 13:26:06 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\WildTangent

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 118 bytes -> C:\ProgramData\Temp:373E1720

< End of report >
  • 0

Advertisements


#2
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Hi lets get you tidied up

Warning This fix is only relevant for this system and no other, using on another computer may cause problems

Be advised that when the fix commences it will shut down all running processes and you may lose the desktop and icons, they will return on reboot

Run OTL
  • Under the Custom Scans/Fixes box at the bottom, paste in the following
    Posted Image
:Commands
[CREATERESTOREPOINT]

:OTL
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.mysearc...=1381852371&ir=
IE:64bit: - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = http://dts.search.as...q={searchTerms}
IE:64bit: - HKLM\..\SearchScopes\{A8FBBD84-5331-42A3-B73E-01280FA29F33}: "URL" = http://www.amazon.co...s={searchTerms}
IE:64bit: - HKLM\..\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC}: "URL" = http://rover.ebay.co...9550-11896-25/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.mysearc...=1381852371&ir=
IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = http://dts.search.as...q={searchTerms}
IE - HKCU\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = http://dts.search.as...q={searchTerms}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <-loopback>
FF - prefs.js..browser.search.order.1: "Mysearchdial"
FF - prefs.js..extensions.enabledAddons: b5a8adb2-854a-46d3-bf7d-b12f49185917%40e6bdf66d-4584-4d26-80a8-081e925b80a5.com:0.93.31
64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{DEDAF650-12B8-48f5-A843-BBA100716106}: C:\PROGRAM FILES\UPDATER BY SWEETPACKS\FIREFOX
[2014/02/09 20:00:43 | 000,000,000 | ---D | M] (Ask New Tabs) -- C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{6F977649-B06D-7809-9725-1FCFD3AC8308}
[2014/02/25 19:18:40 | 000,000,000 | ---D | M] ("MySearchDial NewTab") -- C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}
[2014/02/01 21:52:54 | 000,000,000 | ---D | M] ("Feven 1.8") -- C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\b5a8adb2-854a-46d3-bf7d-b12f49185917@e6bdf66d-4584-4d26-80a8-081e925b80a5.com
[2013/10/08 20:56:27 | 000,013,228 | ---- | M] () (No name found) -- C:\Users\paul\AppData\Roaming\mozilla\firefox\profiles\detmy00y.default\extensions\[email protected]
[2014/02/09 20:00:55 | 000,002,664 | ---- | M] () -- C:\Users\paul\AppData\Roaming\mozilla\firefox\profiles\detmy00y.default\searchplugins\Ask.xml
[2014/02/25 19:17:04 | 000,000,847 | ---- | M] () -- C:\Users\paul\AppData\Roaming\mozilla\firefox\profiles\detmy00y.default\searchplugins\Mysearchdial.xml
O2:64bit: - BHO: (no name) - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O4 - HKLM..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe ()
O27:64bit: - HKLM IFEO\bitguard.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\bprotect.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\bpsvc.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\browserdefender.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\browserprotect.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\browsersafeguard.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\dprotectsvc.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\protectedsearch.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\searchprotection.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\searchprotector.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\snapdo.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\stinst32.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\stinst64.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\utiljumpflip.exe: Debugger - C:\Windows\SysNative\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\bitguard.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\bprotect.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\bpsvc.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\browserdefender.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\browserprotect.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\browsersafeguard.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\dprotectsvc.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\protectedsearch.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\searchprotection.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\searchprotector.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\snapdo.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\stinst32.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\stinst64.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\utiljumpflip.exe: Debugger - C:\Windows\SysWow64\tasklist.exe (Microsoft Corporation)
[2014/02/25 19:11:54 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\mysearchdial
[2014/02/25 19:11:49 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z
[2014/02/09 20:00:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Datamngr
[2014/02/01 21:52:46 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DownQuick
[2014/02/01 21:52:46 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\downquick
[2014/02/01 21:52:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Tuguu SL
[2014/02/01 21:52:11 | 000,000,000 | ---D | C] -- C:\Users\paul\Documents\Optimizer Pro
[2014/02/01 21:52:09 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\Optimizer Pro
[2014/02/01 21:51:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2
[2014/02/01 21:51:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Optimizer Pro
[2014/02/26 16:13:00 | 000,000,300 | ---- | M] () -- C:\Windows\tasks\Digital Sites.job
[2014/02/25 19:12:01 | 000,000,393 | ---- | M] () -- C:\Users\paul\Desktop\MySearchDial.url
[2014/02/25 19:12:01 | 000,000,388 | ---- | M] () -- C:\Users\paul\Desktop\FREE Games.url
[2014/02/25 19:11:44 | 000,001,270 | ---- | M] () -- C:\Users\Public\Desktop\Image Converter.lnk
[2014/02/25 19:12:10 | 000,002,513 | ---- | C] () -- C:\Users\paul\Desktop\Game - Total Domination.lnk
[2014/02/25 19:11:49 | 000,000,300 | ---- | C] () -- C:\Windows\tasks\Digital Sites.job
[2014/02/25 19:11:44 | 000,001,270 | ---- | C] () -- C:\Users\Public\Desktop\Image Converter.lnk
[2014/02/13 17:53:44 | 000,385,614 | ---- | C] () -- C:\Windows\SysNative\ApnDatabase.xml
[2014/02/01 21:52:46 | 000,003,041 | ---- | C] () -- C:\Users\paul\Desktop\DownQuick.lnk
[2014/02/01 21:51:58 | 000,001,066 | ---- | C] () -- C:\Users\paul\Desktop\Optimizer Pro.lnk
[2014/01/11 18:00:35 | 000,351,124 | ---- | C] () -- C:\Users\paul\AppData\Local\mysearchdial-speeddial.crx
[2013/10/03 20:24:44 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\0D0S1L2Z1P1B
[2014/02/25 19:11:49 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z
[2014/01/11 17:55:50 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\DigitalSites
[2014/02/01 21:52:46 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\downquick
[2014/02/25 19:11:54 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\mysearchdial
[2014/02/25 07:38:25 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\newnext.me
[2014/02/01 21:52:09 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\Optimizer Pro

:Files
C:\Program Files (x86)\Mobogenie
C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\iaenoodoabpfbmpcidlgdmjnghapjchg
C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfnfkjennojjkajjmghdgkibohcnefdk
C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocifcogajbgikalbpphmoedjlcfjkhgh
C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff

:Commands
[resethosts]
[emptytemp]
[Reboot]
  • Then click the Run Fix button at the top
  • Let the program run unhindered, reboot the PC when it is done
  • Open OTL again and click the Quick Scan button. Post the log it produces in your next reply.

THEN

Please download AdwCleaner by Xplode onto your desktop.
  • Close all open programs and internet browsers.
  • Double click on AdwCleaner.exe to run the tool.
  • Click on Scan.
  • After the scan is complete click on "Clean"
  • Confirm each time with Ok.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the content of that logfile with your next answer.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.

  • 0

#3
peejaygee1

peejaygee1

    Member

  • Topic Starter
  • Member
  • PipPip
  • 27 posts
After I ran the OTL scan I left the machine to restart. After nearly a day, I cold booted it. Secondly, after I ran Adwcleaner and signed back in, the screen was all black with OTL box in the middle.



All processes killed
========== COMMANDS ==========
Restore point Set: OTL Restore Point
========== OTL ==========
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{A8FBBD84-5331-42A3-B73E-01280FA29F33}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A8FBBD84-5331-42A3-B73E-01280FA29F33}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D944BB61-2E34-4DBF-A683-47E505C587DC}\ not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}\ not found.
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride| /E : value set successfully!
Prefs.js: "Mysearchdial" removed from browser.search.order.1
Prefs.js: b5a8adb2-854a-46d3-bf7d-b12f49185917%40e6bdf66d-4584-4d26-80a8-081e925b80a5.com:0.93.31 removed from extensions.enabledAddons
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{6F977649-B06D-7809-9725-1FCFD3AC8308}\content folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{6F977649-B06D-7809-9725-1FCFD3AC8308}\components folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{6F977649-B06D-7809-9725-1FCFD3AC8308} folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\_locales\en-US folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\_locales folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\skin\plugins\resources folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\skin\plugins\images\info folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\skin\plugins\images\favorites folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\skin\plugins\images\chrome folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\skin\plugins\images folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\skin\plugins\css folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\skin\plugins folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\skin\newtab\resources folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\skin\newtab\images\patterns folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\skin\newtab\images folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\skin\newtab\css folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\skin\newtab folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\skin\icons folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\skin\gallery folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\skin\external folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\skin folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\defaults\preferences folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\defaults folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\content\newtab folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\content\external folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\content\data folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\content\browser folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}\content folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8} folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\b5a8adb2-854a-46d3-bf7d-b12f49185917@e6bdf66d-4584-4d26-80a8-081e925b80a5.com\skin folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\b5a8adb2-854a-46d3-bf7d-b12f49185917@e6bdf66d-4584-4d26-80a8-081e925b80a5.com\locale\en-US folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\b5a8adb2-854a-46d3-bf7d-b12f49185917@e6bdf66d-4584-4d26-80a8-081e925b80a5.com\locale folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\b5a8adb2-854a-46d3-bf7d-b12f49185917@e6bdf66d-4584-4d26-80a8-081e925b80a5.com\extensionData\userCode folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\b5a8adb2-854a-46d3-bf7d-b12f49185917@e6bdf66d-4584-4d26-80a8-081e925b80a5.com\extensionData\plugins folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\b5a8adb2-854a-46d3-bf7d-b12f49185917@e6bdf66d-4584-4d26-80a8-081e925b80a5.com\extensionData folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\b5a8adb2-854a-46d3-bf7d-b12f49185917@e6bdf66d-4584-4d26-80a8-081e925b80a5.com\defaults\preferences folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\b5a8adb2-854a-46d3-bf7d-b12f49185917@e6bdf66d-4584-4d26-80a8-081e925b80a5.com\defaults folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\b5a8adb2-854a-46d3-bf7d-b12f49185917@e6bdf66d-4584-4d26-80a8-081e925b80a5.com\chrome\content\core folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\b5a8adb2-854a-46d3-bf7d-b12f49185917@e6bdf66d-4584-4d26-80a8-081e925b80a5.com\chrome\content\api folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\b5a8adb2-854a-46d3-bf7d-b12f49185917@e6bdf66d-4584-4d26-80a8-081e925b80a5.com\chrome\content folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\b5a8adb2-854a-46d3-bf7d-b12f49185917@e6bdf66d-4584-4d26-80a8-081e925b80a5.com\chrome folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\b5a8adb2-854a-46d3-bf7d-b12f49185917@e6bdf66d-4584-4d26-80a8-081e925b80a5.com folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\firefox\profiles\detmy00y.default\extensions\[email protected] moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\firefox\profiles\detmy00y.default\searchplugins\Ask.xml moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\firefox\profiles\detmy00y.default\searchplugins\Mysearchdial.xml moved successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31ad400d-1b06-4e33-a59a-90c2c140cba0}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31ad400d-1b06-4e33-a59a-90c2c140cba0}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{ae07101b-46d4-4a98-af68-0333ea26e113} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\10 deleted successfully.
Registry delete failed. HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\mobilegeni daemon scheduled to be deleted on reboot.
C:\Program Files (x86)\Mobogenie\DaemonProcess.exe moved successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe\ deleted successfully.
File move failed. C:\Windows\SysNative\tasklist.exe scheduled to be moved on reboot.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe\ deleted successfully.
File move failed. C:\Windows\SysNative\tasklist.exe scheduled to be moved on reboot.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe\ deleted successfully.
File move failed. C:\Windows\SysNative\tasklist.exe scheduled to be moved on reboot.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe\ deleted successfully.
File move failed. C:\Windows\SysNative\tasklist.exe scheduled to be moved on reboot.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe\ deleted successfully.
File move failed. C:\Windows\SysNative\tasklist.exe scheduled to be moved on reboot.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe\ deleted successfully.
File move failed. C:\Windows\SysNative\tasklist.exe scheduled to be moved on reboot.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe\ deleted successfully.
File move failed. C:\Windows\SysNative\tasklist.exe scheduled to be moved on reboot.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe\ deleted successfully.
File move failed. C:\Windows\SysNative\tasklist.exe scheduled to be moved on reboot.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe\ deleted successfully.
File move failed. C:\Windows\SysNative\tasklist.exe scheduled to be moved on reboot.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe\ deleted successfully.
File move failed. C:\Windows\SysNative\tasklist.exe scheduled to be moved on reboot.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe\ deleted successfully.
File move failed. C:\Windows\SysNative\tasklist.exe scheduled to be moved on reboot.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe\ deleted successfully.
File move failed. C:\Windows\SysNative\tasklist.exe scheduled to be moved on reboot.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe\ deleted successfully.
File move failed. C:\Windows\SysNative\tasklist.exe scheduled to be moved on reboot.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe\ deleted successfully.
File move failed. C:\Windows\SysNative\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe\ not found.
File move failed. C:\Windows\SysWOW64\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe\ not found.
File move failed. C:\Windows\SysWOW64\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe\ not found.
File move failed. C:\Windows\SysWOW64\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe\ not found.
File move failed. C:\Windows\SysWOW64\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe\ not found.
File move failed. C:\Windows\SysWOW64\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe\ not found.
File move failed. C:\Windows\SysWOW64\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe\ not found.
File move failed. C:\Windows\SysWOW64\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe\ not found.
File move failed. C:\Windows\SysWOW64\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe\ not found.
File move failed. C:\Windows\SysWOW64\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe\ not found.
File move failed. C:\Windows\SysWOW64\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe\ not found.
File move failed. C:\Windows\SysWOW64\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe\ not found.
File move failed. C:\Windows\SysWOW64\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe\ not found.
File move failed. C:\Windows\SysWOW64\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe\ not found.
File move failed. C:\Windows\SysWOW64\tasklist.exe scheduled to be moved on reboot.
C:\Users\paul\AppData\Roaming\mysearchdial\icons_2.2.15.1631 folder moved successfully.
C:\Users\paul\AppData\Roaming\mysearchdial folder moved successfully.
C:\Users\paul\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z\Image Editor Packages folder moved successfully.
C:\Users\paul\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z folder moved successfully.
C:\ProgramData\Datamngr folder moved successfully.
C:\Users\paul\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DownQuick folder moved successfully.
C:\Users\paul\AppData\Roaming\downquick folder moved successfully.
C:\Program Files (x86)\Tuguu SL\DownQuick\Languages folder moved successfully.
C:\Program Files (x86)\Tuguu SL\DownQuick folder moved successfully.
C:\Program Files (x86)\Tuguu SL folder moved successfully.
C:\Users\paul\Documents\Optimizer Pro folder moved successfully.
C:\Users\paul\AppData\Roaming\Optimizer Pro\Undo folder moved successfully.
C:\Users\paul\AppData\Roaming\Optimizer Pro\Log folder moved successfully.
C:\Users\paul\AppData\Roaming\Optimizer Pro\Backup folder moved successfully.
C:\Users\paul\AppData\Roaming\Optimizer Pro folder moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2 folder moved successfully.
Folder move failed. C:\Program Files (x86)\Optimizer Pro scheduled to be moved on reboot.
C:\Windows\Tasks\Digital Sites.job moved successfully.
C:\Users\paul\Desktop\MySearchDial.url moved successfully.
C:\Users\paul\Desktop\FREE Games.url moved successfully.
C:\Users\Public\Desktop\Image Converter.lnk moved successfully.
C:\Users\paul\Desktop\Game - Total Domination.lnk moved successfully.
File C:\Windows\tasks\Digital Sites.job not found.
File C:\Users\Public\Desktop\Image Converter.lnk not found.
File move failed. C:\Windows\SysNative\ApnDatabase.xml scheduled to be moved on reboot.
C:\Users\paul\Desktop\DownQuick.lnk moved successfully.
C:\Users\paul\Desktop\Optimizer Pro.lnk moved successfully.
C:\Users\paul\AppData\Local\mysearchdial-speeddial.crx moved successfully.
C:\Users\paul\AppData\Roaming\0D0S1L2Z1P1B\Zip Extractor Packages folder moved successfully.
C:\Users\paul\AppData\Roaming\0D0S1L2Z1P1B folder moved successfully.
Folder C:\Users\paul\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z\ not found.
C:\Users\paul\AppData\Roaming\DigitalSites\UpdateProc folder moved successfully.
C:\Users\paul\AppData\Roaming\DigitalSites folder moved successfully.
Folder C:\Users\paul\AppData\Roaming\downquick\ not found.
Folder C:\Users\paul\AppData\Roaming\mysearchdial\ not found.
C:\Users\paul\AppData\Roaming\newnext.me\cache folder moved successfully.
C:\Users\paul\AppData\Roaming\newnext.me folder moved successfully.
Folder C:\Users\paul\AppData\Roaming\Optimizer Pro\ not found.
========== FILES ==========
C:\Program Files (x86)\Mobogenie\templates\web\js_static\info\notice folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_static\info\download folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_static\info\connect folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_static\info folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\tab_switch folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_static\dialog folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_static folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\welcome folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\util folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\tpls folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\skin folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\pb folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\moduletemp folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\module\vedio folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\module\ui folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\module\subject folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\module\message folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\module\image folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\module\driver folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\module\download folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\module\contact folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\module\app folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\module folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\lib folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\interface folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\poland folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\italian folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\chinese folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\js_ folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\light_square folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\light_rounded folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\facebook folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\default folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\dark_square folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\dark_rounded folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\images\photo folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\images\debug folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\images folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\iframe folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\htmlTemp folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\poland folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\italian folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\chinese folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_ folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\dialog\images folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\dialog folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web\css folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\web folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\skin\skin2 folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\skin\skin1 folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\skin\default folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\skin folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\page folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\javascript\libraries folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\test folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\examples\views folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\examples folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\bin folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\benchmarks\templating folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\benchmarks folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\javascript folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates\css folder moved successfully.
C:\Program Files (x86)\Mobogenie\templates folder moved successfully.
C:\Program Files (x86)\Mobogenie\sqldrivers folder moved successfully.
C:\Program Files (x86)\Mobogenie\phonon_backend folder moved successfully.
C:\Program Files (x86)\Mobogenie\log folder moved successfully.
C:\Program Files (x86)\Mobogenie\imageformats folder moved successfully.
C:\Program Files (x86)\Mobogenie folder moved successfully.
File\Folder C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\iaenoodoabpfbmpcidlgdmjnghapjchg not found.
File\Folder C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfnfkjennojjkajjmghdgkibohcnefdk not found.
File\Folder C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocifcogajbgikalbpphmoedjlcfjkhgh not found.
File\Folder C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff not found.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Guest
->Temp folder emptied: 3012 bytes
->Temporary Internet Files folder emptied: 128 bytes
->FireFox cache emptied: 17089177 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 1874 bytes

User: paul
->Temp folder emptied: 1355380047 bytes
->Temporary Internet Files folder emptied: 103146999 bytes
->FireFox cache emptied: 64607790 bytes
->Google Chrome cache emptied: 309861421 bytes
->Flash cache emptied: 8416 bytes

User: Public
->Temp folder emptied: 0 bytes

User: Sarah24
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: sarah_000
->Temp folder emptied: 76609896 bytes
->Temporary Internet Files folder emptied: 4782715 bytes
->FireFox cache emptied: 249497313 bytes
->Google Chrome cache emptied: 372357987 bytes
->Flash cache emptied: 6327 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 16715412 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 128 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 2,451.00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 02272014_205916

Files\Folders moved on Reboot...
File move failed. C:\Windows\SysNative\tasklist.exe scheduled to be moved on reboot.
File move failed. C:\Windows\SysWOW64\tasklist.exe scheduled to be moved on reboot.
Folder move failed. C:\Program Files (x86)\Optimizer Pro scheduled to be moved on reboot.
File move failed. C:\Windows\SysNative\ApnDatabase.xml scheduled to be moved on reboot.
C:\Users\paul\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.
C:\Windows\temp\FireFly(20140227201242914).log moved successfully.
C:\Windows\temp\integratedoffice.exe_c2ruidll(20140227201242914).log moved successfully.
C:\Windows\temp\integratedoffice.exe_streamserver(20140227201243914).log moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
Registry delete failed. HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\mobilegeni daemon scheduled to be deleted on reboot.






















# AdwCleaner v3.020 - Report created 28/02/2014 at 22:33:01
# Updated 27/02/2014 by Xplode
# Operating System : Windows 8 (64 bits)
# Username : paul - SARAH
# Running from : C:\Users\paul\Downloads\AdwCleaner (3).exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bicnnkjibmphdeigoodpjlcklcnaobdj
Folder Deleted : C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nbdbmopeebalgaeghmjoegpkngglikgn
Folder Deleted : C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk
Folder Deleted : C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkhojieggfgllhllcegoffdcnmdeojgb

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\aipfmkinhleccnodemkoofnnofpbbpac
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bicnnkjibmphdeigoodpjlcklcnaobdj
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\gflandjopdloblmlcoiidmncpinmmacn
Key Deleted : HKCU\Software\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Key Deleted : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Key Deleted : HKCU\Software\Classes\*\shell\pokki
Key Deleted : HKCU\Software\Classes\Folder\shell\pokki
Key Deleted : HKCU\Software\Classes\iLivid.torrent
Key Deleted : HKCU\Software\Classes\pokki
Key Deleted : HKCU\Software\SIEN SA
Key Deleted : HKLM\SOFTWARE\Classes\*\shell\filescout
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\Iminent.WebBooster.InternetExplorer.DLL
Key Deleted : HKLM\SOFTWARE\Classes\esrv.mysearchdialesrvc
Key Deleted : HKLM\SOFTWARE\Classes\esrv.mysearchdialesrvc.1
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.bandobjectattribute
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.bho
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.dockingpanel
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbar
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbarbandobject
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.smartbardisplaystate
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.smartbarmenuform
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.DownloadArgs
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.LinkToPromoteArgs
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.RawDataArgs
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.TinyUrlArgs
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.ViralLinkArgs
Key Deleted : HKLM\SOFTWARE\Classes\iminent.iminentdskBnd
Key Deleted : HKLM\SOFTWARE\Classes\iminent.iminentdskBnd.1
Key Deleted : HKLM\SOFTWARE\Classes\iminent.iminentHlpr
Key Deleted : HKLM\SOFTWARE\Classes\iminent.iminentHlpr.1
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ClientCallback
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ContractBase
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GameOverCallback
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetCreditCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableResult
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.InstallationContextResult
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LogoutCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MyAccountCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PlayContentCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PostContentCallback
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.SetVariableCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.TestContentCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WarmUpCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WelcomeCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerCommand
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerResult
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightContent
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightUri
Key Deleted : HKLM\SOFTWARE\Classes\Iminent.Mediator.MediatorServiceProxy
Key Deleted : HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject
Key Deleted : HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject.1
Key Deleted : HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender
Key Deleted : HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender.1
Key Deleted : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialappCore
Key Deleted : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialappCore.1
Key Deleted : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialdskBnd
Key Deleted : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialdskBnd.1
Key Deleted : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialHlpr
Key Deleted : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialHlpr.1
Key Deleted : HKLM\SOFTWARE\Classes\searchgol.searchgoldskBnd
Key Deleted : HKLM\SOFTWARE\Classes\searchgol.searchgoldskBnd.1
Key Deleted : HKLM\SOFTWARE\Classes\searchgol.searchgolHlpr
Key Deleted : HKLM\SOFTWARE\Classes\searchgol.searchgolHlpr.1
Key Deleted : HKLM\SOFTWARE\Classes\Zula Games.BackgroundHostObject
Key Deleted : HKLM\SOFTWARE\Classes\Zula Games.BackgroundHostObject.1
Key Deleted : HKLM\SOFTWARE\Classes\Zula Games.Navbar
Key Deleted : HKLM\SOFTWARE\Classes\Zula Games.Navbar.1
Key Deleted : HKLM\SOFTWARE\Classes\Zula Games.ScriptHostObject
Key Deleted : HKLM\SOFTWARE\Classes\Zula Games.ScriptHostObject.1
Key Deleted : HKLM\SOFTWARE\Classes\Zula Games.Tool
Key Deleted : HKLM\SOFTWARE\Classes\Zula Games.Tool.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Mobogenie.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
Key Deleted : HKCU\Software\f28adfe03ae949
Key Deleted : HKLM\SOFTWARE\f28adfe03ae949
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{01994268-3C10-4044-A1EA-7A9C1B739A11}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0E4B2CAB-B859-4C57-B96E-63DDEC692BC4}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4277F7CF-0000-46CF-BA49-D624465C4BAB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{01A602A0-D0B9-445B-8081-719E4177C4A7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02C9C7B0-C7C8-4AAC-A9E4-55295BF60F8F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{0398B101-6DA7-473F-A290-17D2FBC88CC0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{0CC36196-8589-4B80-A771-D659411D7F90}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{143D96F9-EB64-48B3-B192-91C2C41A1F43}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{14F7D91F-F669-45C9-9F42-BACBFDB86EAD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{187A6488-6E71-4A2A-B118-7BEFBFE58257}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2D065204-A024-4C39-8A38-EE7078EC7ACF}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3004627E-F8E9-4E8B-909D-316753CBA923}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{30F5476C-677B-4DB0-B397-51F5BFD86840}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3223F2FB-D9B9-45FC-9D66-CD717FFA4EE5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{351798B1-C1D2-45AB-92B4-4D6C2D6AB5AF}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3AEA1BEF-6195-46F4-ACA2-0ED14F7EFA1B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3D7F9AC3-BAC3-4E51-81D7-D121D79E550A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4498C5E9-93C6-4142-B6BE-F0C6DC48B77A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{479BF2D6-E362-4A99-B1AB-BC764D7B97AE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{492A108F-51D0-4BD8-899D-AD4AB2893064}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4B6D6E60-FBD2-4E79-BF4B-886BC98F1797}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4ED063C9-4A0B-4B44-A9DC-23AFF424A0D3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{60893E02-2E5B-43F9-A93A-BAD60C2DF6EF}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6D39931F-451E-4BDD-BAF4-37FB96DBBA5D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{76C684D2-C35D-4284-976A-D862F53ADB81}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{796D822A-C3F9-4A97-BAAB-42FE7628EA63}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{79EF3691-EC1A-4705-A01A-D2E36EC11758}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{82F41418-8E64-47EB-A7F1-4702A974D289}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{85D920CE-63A7-46DC-8992-41D1D2E07FAD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{895ED5E8-ABB4-40C3-A0CA-2571964268E2}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8AAC123A-1959-4A45-BFC5-E2D50783098A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A07956CD-81F8-4A03-B524-5D87E690DC83}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B5E3B26B-6E5C-4865-A63D-58D04B10E245}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B84D2DC5-42B2-4E5E-BF61-7B48152FF8EF}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B89D5309-0367-4494-A92F-3D4C94F88307}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B89F5C49-51DB-4974-AB5A-E25901AA339C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C014EBF8-8854-448B-B5A4-557C4090EDCE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C31191DB-2F64-464C-B97C-6AC81ACB7AAC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C342C7A7-F622-4EF3-8B7F-ABB9FBE73F14}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C358B3D0-B911-41E3-A276-E7D43A6BA56D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C4765B07-BC2F-477B-925C-B2BF24887823}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C875C0A1-09E3-48D5-9F8E-BD337796FD14}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CD126DA6-FF5B-4181-AC13-54A62240D2FA}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D40753C7-8A59-4C1F-BE88-C300F4624D5B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D8E43B96-EB46-4820-92B7-232AEB735685}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DD438708-AAB4-422D-A322-B619589F5680}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E812AE43-7799-4E67-8CF8-4104297A2D16}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E9B5B0D2-D08A-49FC-8B5C-159B60BAA268}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F0BAAEC7-9AE0-49FF-9C4B-86E774FF397F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F92193FD-2243-4401-9ACC-49FF30885898}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD21B8A2-910B-45AC-9C10-45E6A8B84984}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AB4DA692-F26B-403C-AF8F-FD87D121F8F1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{0131533C-F056-4E64-8A9D-B7C0EF342EFD}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8B0295E2-967E-439E-9560-807D9F625B57}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A9CAF365-EA35-45DA-BD8B-2EFA09D374AC}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3004627E-F8E9-4E8B-909D-316753CBA923}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0AF350D9-3916-454B-AC53-0B0B65F41301}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{12C1F3F5-4FB2-4191-A1FD-CA464E6823C0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{219046AE-358F-4CF1-B1FD-2B4DE83642A8}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D86A75B-CB6B-4764-885D-CA6336F04BA2}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6FA9C2C7-B82C-4944-B077-E1D8EA9E2B3D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{730C3A0D-8C88-468A-B617-7E9913DD6ABC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AA267627-1EF3-4619-A982-8B57C636CA73}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C11CE4D0-9C73-491D-A95C-23C0B7BBD490}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4B71-B0A3-3D82E62A6909}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{3004627E-F8E9-4E8B-909D-316753CBA923}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{0AFD55C8-ADF8-4A33-A6E1-DEDB7A36AEB4}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1F8EDE97-36D5-422A-B8F0-9406E2D87C60}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{AB4DA692-F26B-403C-AF8F-FD87D121F8F1}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Key Deleted : HKCU\Software\1ClickDownload
Key Deleted : HKCU\Software\DataMngr
Key Deleted : HKCU\Software\dsiteproducts
Key Deleted : HKCU\Software\ilivid
Key Deleted : HKCU\Software\Iminent.com
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\mysearchdial
Key Deleted : HKCU\Software\mysearchdial.com
Key Deleted : HKCU\Software\Optimizer Pro
Key Deleted : HKCU\Software\Pokki
Key Deleted : HKCU\Software\SmartBar
Key Deleted : HKCU\Software\Speedchecker Limited
Key Deleted : HKCU\Software\torch
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\FreeHDSport TV
Key Deleted : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Deleted : HKLM\Software\caphyon
Key Deleted : HKLM\Software\DataMngr
Key Deleted : HKLM\Software\Driver-Soft
Key Deleted : HKLM\Software\FreeHDSport TV
Key Deleted : HKLM\Software\InstallCore
Key Deleted : HKLM\Software\mysearchdial
Key Deleted : HKLM\Software\Speedchecker Limited
Key Deleted : HKLM\Software\torch
Key Deleted : HKLM\Software\Uniblue
Key Deleted : HKLM\Software\visualbee
Key Deleted : HKLM\Software\Whilokii
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Digital Sites
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\torch
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Zip Opener Packages
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Mobogenie
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\mysearchdial
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\openit open it!
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\zulagames
Key Deleted : [x64] HKLM\SOFTWARE\Speedchecker Limited
Key Deleted : [x64] HKLM\SOFTWARE\Updater By Sweetpacks
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Whilokii
Key Deleted : HKLM\Software\Classes\Installer\Features\5EC33E4FBA7A86F47A7E0FAA48FED2E9
Key Deleted : HKLM\Software\Classes\Installer\Products\5EC33E4FBA7A86F47A7E0FAA48FED2E9

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16798

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]

-\\ Mozilla Firefox v27.0.1 (en-US)

[ File : C:\Users\Sarah24\AppData\Roaming\Mozilla\Firefox\Profiles\s1xgld5r.default\prefs.js ]

Line Deleted : user_pref("browser.startup.homepage", "hxxp://start.mysearchdial.com/?f=1&a=dsites0301&cd=2XzuyEtN2Y1L1QzutBzzzytByE0AyDyCzytC0ByE0DyCyDzztN0D0Tzu0CyBzytDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC[...]
Line Deleted : user_pref("browser.search.selectedEngine", "Mysearchdial");
Line Deleted : user_pref("browser.search.defaultenginename", "Mysearchdial");

[ File : C:\Users\paul\AppData\Roaming\Mozilla\Firefox\Profiles\detmy00y.default\prefs.js ]

Line Deleted : user_pref("CT3287810.searchProtector.notifyChanges", "{\"dataType\":\"string\",\"data\":\"false\"}");
Line Deleted : user_pref("CT3289075.searchProtector.notifyChanges", "{\"dataType\":\"string\",\"data\":\"false\"}");
Line Deleted : user_pref("browser.search.order.1", "Mysearchdial");
Line Deleted : user_pref("browser.startup.homepage", "hxxp://start.mysearchdial.com/?f=1&a=dsites0301&cd=2XzuyEtN2Y1L1QzutBzzzytByE0AyDyCzytC0ByE0DyCyDzztN0D0Tzu0CyBzytDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC[...]
Line Deleted : user_pref("extensions.Y1kjOwWbL.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"txtlnkusaolp00000800\")>-1||url.indexOf(\"s[...]
Line Deleted : user_pref("extensions.crossrider.bic", "143ef71442ae18b5602fa61625fbe934");
Line Deleted : user_pref("extensions.mysearchdial.AL", 2);
Line Deleted : user_pref("extensions.mysearchdial.aflt", "dsites0301");
Line Deleted : user_pref("extensions.mysearchdial.appId", "{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}");
Line Deleted : user_pref("extensions.mysearchdial.cd", "2XzuyEtN2Y1L1QzutBzzzytByE0AyDyCzytC0ByE0DyCyDzztN0D0Tzu0CyBzytDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R");
Line Deleted : user_pref("extensions.mysearchdial.cntry", "GB");
Line Deleted : user_pref("extensions.mysearchdial.cr", "1678902452");
Line Deleted : user_pref("extensions.mysearchdial.dfltLng", "");
Line Deleted : user_pref("extensions.mysearchdial.dfltSrch", true);
Line Deleted : user_pref("extensions.mysearchdial.dnsErr", true);
Line Deleted : user_pref("extensions.mysearchdial.dpkLst", "3654782829,1334533236,1121012847,231756876,1895130307,603719297,4288797614,3754950497,426401714,3046281807,752626116,1657571787,3224935090,2597085128,18285[...]
Line Deleted : user_pref("extensions.mysearchdial.excTlbr", false);
Line Deleted : user_pref("extensions.mysearchdial.hdrMd5", "93AB3F22899E418A05802F6D4AA8FFD7");
Line Deleted : user_pref("extensions.mysearchdial.hmpg", true);
Line Deleted : user_pref("extensions.mysearchdial.hmpgUrl", "hxxp://start.mysearchdial.com/?f=1&a=dsites0301&cd=2XzuyEtN2Y1L1QzutBzzzytByE0AyDyCzytC0ByE0DyCyDzztN0D0Tzu0CyBzytDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1Czut[...]
Line Deleted : user_pref("extensions.mysearchdial.id", "28924A5691B4D658");
Line Deleted : user_pref("extensions.mysearchdial.instlDay", "16129");
Line Deleted : user_pref("extensions.mysearchdial.instlRef", "");
Line Deleted : user_pref("extensions.mysearchdial.lastB", "hxxp://start.mysearchdial.com/?f=1&a=dsites0301&cd=2XzuyEtN2Y1L1QzutBzzzytByE0AyDyCzytC0ByE0DyCyDzztN0D0Tzu0CyBzytDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBt[...]
Line Deleted : user_pref("extensions.mysearchdial.lastVrsnTs", "1.8.21.017:30:39");
Line Deleted : user_pref("extensions.mysearchdial.newTabUrl", "hxxp://start.mysearchdial.com/?f=2&a=dsites0301&cd=2XzuyEtN2Y1L1QzutBzzzytByE0AyDyCzytC0ByE0DyCyDzztN0D0Tzu0CyBzytDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1Cz[...]
Line Deleted : user_pref("extensions.mysearchdial.pnu_base", "{\"newVrsn\":\"90\",\"lastVrsn\":\"90\",\"vrsnLoad\":\"\",\"showMsg\":\"false\",\"showSilent\":\"false\",\"msgTs\":0,\"lstMsgTs\":\"0\"}");
Line Deleted : user_pref("extensions.mysearchdial.prdct", "mysearchdial");
Line Deleted : user_pref("extensions.mysearchdial.prtnrId", "mysearchdial");
Line Deleted : user_pref("extensions.mysearchdial.sg", "none");
Line Deleted : user_pref("extensions.mysearchdial.srchPrvdr", "Mysearchdial");
Line Deleted : user_pref("extensions.mysearchdial.tlbrId", "base");
Line Deleted : user_pref("extensions.mysearchdial.tlbrSrchUrl", "hxxp://start.mysearchdial.com/?f=3&a=dsites0301&cd=2XzuyEtN2Y1L1QzutBzzzytByE0AyDyCzytC0ByE0DyCyDzztN0D0Tzu0CyBzytDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1[...]
Line Deleted : user_pref("extensions.mysearchdial.vrsn", "1.8.21.0");
Line Deleted : user_pref("extensions.mysearchdial.vrsni", "1.8.21.0");
Line Deleted : user_pref("extensions.mysearchdial_i.hmpg", true);
Line Deleted : user_pref("extensions.mysearchdial_i.newTab", false);
Line Deleted : user_pref("extensions.mysearchdial_i.smplGrp", "none");
Line Deleted : user_pref("extensions.mysearchdial_i.vrsnTs", "1.8.21.017:30:39");

[ File : C:\Users\sarah_000\AppData\Roaming\Mozilla\Firefox\Profiles\cpzivtb2.default\prefs.js ]

Line Deleted : user_pref("browser.startup.homepage", "hxxp://start.mysearchdial.com/?f=1&a=dsites0301&cd=2XzuyEtN2Y1L1QzutBzzzytByE0AyDyCzytC0ByE0DyCyDzztN0D0Tzu0CyBzytDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC[...]
Line Deleted : user_pref("browser.search.selectedEngine", "Mysearchdial");
Line Deleted : user_pref("browser.search.defaultenginename", "Mysearchdial");

-\\ Google Chrome v33.0.1750.117

[ File : C:\Users\Sarah24\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted : homepage
Deleted : urls_to_restore_on_startup

[ File : C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted : homepage
Deleted : icon_url
Deleted : search_url
Deleted : keyword

[ File : C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted : homepage
Deleted : urls_to_restore_on_startup

*************************

AdwCleaner[R5].txt - [37082 octets] - [28/02/2014 18:29:24]
AdwCleaner[S].txt - [35704 octets] - [28/02/2014 22:33:01]

########## EOF - C:\AdwCleaner\AdwCleaner[S].txt - [35764 octets] ##########
  • 0

#4
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
The black screen with OTL was due to the amount of junk being removed Total Files Cleaned = 2,451.00 mb

How is the computer behaving at the moment ?

Malwarebytes' Anti-Malware
Please download Malwarebytes' Anti-Malware from here

Double Click mbam-setup.exe to install the application.
  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Attach the entire report in your next reply.
If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediately.
  • 0

#5
peejaygee1

peejaygee1

    Member

  • Topic Starter
  • Member
  • PipPip
  • 27 posts
It is performing alot better. :thumbsup:

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Database version: v2014.03.03.07

Windows 8 x64 NTFS
Internet Explorer 10.0.9200.16798
paul :: SARAH [administrator]

03/03/2014 20:36:08
mbam-log-2014-03-03 (20-36-08).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 304142
Time elapsed: 8 minute(s), 39 second(s)

Memory Processes Detected: 5
C:\Users\paul\AppData\Roaming\ProtectExtension\protect\ProtectExtension.exe (Trojan.Agent) -> 168 -> Delete on reboot.
C:\Program Files (x86)\Surftastic\updateSurftastic.exe (PUP.Optional.Surftastic.A) -> 14008 -> Delete on reboot.
C:\Program Files (x86)\Surftastic\Surftastic.FirstRun.exe (PUP.Optional.Sambreel.A) -> 14264 -> Delete on reboot.
C:\Program Files (x86)\HomeTab\WBrokerProductivity.exe (PUP.Optional.HomeTab.A) -> 2392 -> Delete on reboot.
C:\Program Files (x86)\HomeTab\WBrowserProtect.exe (PUP.Optional.HomeTab.A) -> 9700 -> Delete on reboot.

Memory Modules Detected: 2
C:\Program Files (x86)\HomeTab\cinshlpr.dll (PUP.Optional.HomeTab.A) -> Delete on reboot.
C:\Program Files (x86)\HomeTab\InstallHelper.dll (PUP.Optional.HomeTab.A) -> Delete on reboot.

Registry Keys Detected: 46
HKLM\SYSTEM\CurrentControlSet\Services\srvProtectExtension (Trojan.Agent) -> Quarantined and deleted successfully.
HKLM\SYSTEM\CurrentControlSet\Services\Update Surftastic (PUP.Optional.Surftastic.A) -> Quarantined and deleted successfully.
HKCR\CLSID\{c6673938-a52b-4dc6-af05-783e7e2c8b65} (PUP.Optional.Surftastic.A) -> Quarantined and deleted successfully.
HKCR\TypeLib\{07eeef8a-080a-4478-94b6-778245d7a04f} (PUP.Optional.Surftastic.A) -> Quarantined and deleted successfully.
HKCR\Interface\{861E67AE-B5A7-4EC6-9B02-54AA7825F2DC} (PUP.Optional.Surftastic.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C6673938-A52B-4DC6-AF05-783E7E2C8B65} (PUP.Optional.Surftastic.A) -> Quarantined and deleted successfully.
HKCR\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23} (PUP.Optional.BrowseFox.A) -> Quarantined and deleted successfully.
HKCR\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9} (PUP.Optional.SoftwareUpdater) -> Quarantined and deleted successfully.
HKCR\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476} (PUP.Optional.SoftwareUpdater) -> Quarantined and deleted successfully.
HKCR\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67} (PUP.Optional.SoftwareUpdater) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96} (PUP.Optional.SoftwareUpdater) -> Quarantined and deleted successfully.
HKCR\Updater.AmiUpd.1 (PUP.Optional.SoftwareUpdater) -> Quarantined and deleted successfully.
HKCR\Updater.AmiUpd (PUP.Optional.SoftwareUpdater) -> Quarantined and deleted successfully.
HKCR\CLSID\{EBD839AE-B08C-4fb7-859B-F54AF16C159F} (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
HKCR\TypeLib\{6857AC4A-95B4-4E2C-B2D2-8A235FCCEF4A} (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
HKCR\Interface\{1C888195-0160-4883-91B7-294C0CE2F277} (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
HKCR\CLSID\{FE478DC2-E4AD-4197-8F80-5E456BEBC57F} (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FE478DC2-E4AD-4197-8F80-5E456BEBC57F} (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EBD839AE-B08C-4FB7-859B-F54AF16C159F} (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
HKCR\Typelib\{FBC322D5-407E-4854-8C0B-555B951FD8E3} (PUP.Optional.MySearchDial.A) -> Quarantined and deleted successfully.
HKCR\Interface\{0400EBCA-042C-4000-AA89-9713FBEDB671} (PUP.Optional.MySearchDial.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{764f9059-6965-4561-95b6-916ca8d5f8f7}_is1 (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
HKCR\CLSID\{7000bc7f-7791-463d-8faa-7000e90d3d99} (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
HKCR\TypeLib\{3b883158-b545-43c8-81f6-fb9da339af2b} (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
HKCR\Interface\{8DA8B89E-0C65-403B-8231-AB22ECFA0687} (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
HKCR\wtb.ToolbarInfo.1 (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
HKCR\wtb.ToolbarInfo (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
HKCR\CLSID\{8b617b00-279e-42ff-beac-1f7a8f41ca13} (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
HKCR\wtb.Band.1 (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
HKCR\wtb.Band (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8B617B00-279E-42FF-BEAC-1F7A8F41CA13} (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{8B617B00-279E-42FF-BEAC-1F7A8F41CA13} (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
HKCR\TypeLib\{F25FAEB1-AC58-4FE7-A2EB-F58578FA4A06} (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
HKCR\Interface\{746DB37C-1206-42CF-9CE1-8D5AF2205E18} (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\EazelBar (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
HKCU\Software\iVIDI Plugin (PUP.Optional.Ividi.A) -> Quarantined and deleted successfully.
HKCU\Software\Surftastic (PUP.Optional.Surftastic.A) -> Quarantined and deleted successfully.
HKCU\Software\AppDataLow\Software\Search Protection (PUP.Optional.MyEmoticons.A) -> Quarantined and deleted successfully.
HKCU\Software\Nosibay\Bubble Dock Tag (PUP.Optional.BubbleDock.A) -> Quarantined and deleted successfully.
HKCU\Software\SimplyTech\HomeTab (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\EazelBar (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Vittalia\AxtanInstaller (PUP.Optional.BundleInstaller.A) -> Quarantined and deleted successfully.
HKLM\SYSTEM\CurrentControlSet\Services\Updater Service for EazelBar (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
HKLM\Software\qualitink (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
HKLM\Software\Surftastic (PUP.Optional.Surftastic.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\EazelBar (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.

Registry Values Detected: 7
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar|{EBD839AE-B08C-4FB7-859B-F54AF16C159F} (PUP.Optional.EazelBar.A) -> Data: EazelBar -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Mozilla\Firefox\Extensions|{EBD839AE-B08C-4FB7-859B-F54AF16C159F} (PUP.Optional.EazelBar.A) -> Data: C:\Program Files (x86)\EazelBar\Firefox -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{EBD839AE-B08C-4fb7-859B-F54AF16C159F} (PUP.Optional.EazelBar.A) -> Data: -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Mozilla\Firefox\Extensions\{EBD839AE-B08C-4fb7-859B-F54AF16C159F} (PUP.Optional.EazelBar.A) -> Data: -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar|{8B617B00-279E-42FF-BEAC-1F7A8F41CA13} (PUP.Optional.HomeTab.A) -> Data: -> Quarantined and deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings|ProxyServer (PUM.Bad.Proxy) -> Data: http=127.0.0.1:13828 -> Quarantined and deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings|AutoConfigURL (PUP.Optional.HomeTab.A) -> Data: http://cdn1.browsers...B62DA74059A7FC8 -> Quarantined and deleted successfully.

Registry Data Items Detected: 10
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Search Page (Hijack.SearchPage) -> Bad: (http://search.certif...C8&st=chrome&q=) Good: (http://www.google.com) -> Quarantined and repaired successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Search Bar (Hijack.SearchPage) -> Bad: (http://search.certif...C8&st=chrome&q=) Good: (http://www.google.com) -> Quarantined and repaired successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Default_Search_URL (Hijack.SearchPage) -> Bad: (http://search.certif...C8&st=chrome&q=) Good: (http://www.google.com) -> Quarantined and repaired successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Search|Default_Search_URL (Hijack.SearchPage) -> Bad: (http://search.certif...C8&st=chrome&q=) Good: (http://www.google.com/) -> Quarantined and repaired successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchURL|(Default) (PUP.Optional.SearchCertifiedTB.A) -> Bad: (http://search.certif...74059A7FC8&q=%s) Good: (http://www.google.com/) -> Quarantined and repaired successfully.
HKCU\Software\Microsoft\Internet Explorer\SearchURI|(Default) (PUP.Optional.SearchCertifiedTB.A) -> Bad: (http://search.certif...74059A7FC8&q=%s) Good: (http://www.google.com) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main|Default_Search_URL (Hijack.SearchPage) -> Bad: (http://search.certif...C8&st=chrome&q=) Good: (http://www.google.com) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main|Search Page (Hijack.SearchPage) -> Bad: (http://search.certif...C8&st=chrome&q=) Good: (http://www.google.com) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main|Search Bar (Hijack.SearchPage) -> Bad: (http://search.certif...C8&st=chrome&q=) Good: (http://www.google.com) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search|Default_Search_URL (Hijack.SearchPage) -> Bad: (http://search.certif...C8&st=chrome&q=) Good: (http://www.google.com/) -> Quarantined and repaired successfully.

Folders Detected: 133
C:\Program Files (x86)\Surftastic (PUP.Optional.Surftastic.A) -> Delete on reboot.
C:\Users\paul\AppData\Roaming\SimplyTech\home (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab (PUP.Optional.HomeTab.A) -> Delete on reboot.
C:\Program Files (x86)\HomeTab\chrome (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\IE (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\[email protected] (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\[email protected]\chrome (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\[email protected]\components (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\[email protected]\plugins (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Roaming\OpenCandy (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Roaming\OpenCandy\8A76F32B48B54B0E9497A7348BEE7947 (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Roaming\OpenCandy\OpenCandy_8A76F32B48B54B0E9497A7348BEE7947 (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Local\temp\CT3319613 (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\banners (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\banners (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\skin (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0\html (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0\images (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0\js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_0 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_1 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_10 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_11 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_12 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_13 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_14 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_15 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_16 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_17 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_18 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_19 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_2 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_20 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_21 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_22 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_23 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_24 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_25 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_26 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_27 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_28 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_29 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_3 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_30 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_31 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_32 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_33 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_34 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_35 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_36 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_37 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_38 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_39 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_4 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_40 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_41 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_42 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_43 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_44 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_45 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_46 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_47 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_48 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_49 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_5 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_50 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_51 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_52 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_53 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_54 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_55 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_56 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_57 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_58 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_59 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_6 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_60 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_61 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_62 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_63 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_64 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_65 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_66 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_67 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_68 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_69 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_7 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_70 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_71 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_72 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_73 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_74 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_75 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_76 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_77 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_78 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_79 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_8 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_80 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_81 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_82 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_83 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_84 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_85 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_86 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_87 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_88 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_89 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_9 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_90 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_91 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_92 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_93 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_94 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_95 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_96 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_97 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_98 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_99 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_0 (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.

Files Detected: 658
C:\Users\paul\AppData\Roaming\ProtectExtension\protect\ProtectExtension.exe (Trojan.Agent) -> Delete on reboot.
C:\Program Files (x86)\Surftastic\updateSurftastic.exe (PUP.Optional.Surftastic.A) -> Delete on reboot.
C:\Program Files (x86)\Surftastic\Surftastic.FirstRun.exe (PUP.Optional.Sambreel.A) -> Delete on reboot.
C:\Program Files (x86)\Surftastic\SurftasticBHO.dll (PUP.Optional.Surftastic.A) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Local\SwvUpdater\Updater.exe (PUP.Optional.SoftwareUpdater) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Toolbar32.dll (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Local\temp\instloffer.exe (PUP.Optional.Vittalia) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Local\temp\setup__1995.exe (PUP.Optional.Amonetize.A) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Local\temp\332014202552\Uninstall Bubble Dock.exe (PUP.Optional.BubbleDock.A) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Local\temp\is357113909\3574204_stp\Mysearchdial.exe (PUP.Optional.MySpeedDial.A) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Local\temp\nsk860F.tmp\tkDecript.dll (PUP.Optional.Vittalia) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Local\temp\nsrA474.tmp\tkDecript.dll (PUP.Optional.Vittalia) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Local\temp\nsyA83D.tmp\tkDecript.dll (PUP.Optional.Vittalia) -> Quarantined and deleted successfully.
C:\Users\paul\Downloads\iLividSetup-r679-n-bf.exe (PUP.Optional.Bandoo) -> Quarantined and deleted successfully.
C:\Users\paul\Downloads\InstallConverter_TSV35BZAJ.exe (PUP.Optional.Conduit) -> Quarantined and deleted successfully.
C:\Users\paul\Downloads\InstallConverter_TSV35BZL3.exe (PUP.Optional.Conduit) -> Quarantined and deleted successfully.
C:\Users\paul\Downloads\installer_utorrent_English.exe (PUP.Optional.BundleInstaller.A) -> Quarantined and deleted successfully.
C:\Users\paul\Downloads\MultiSim_11_0_1_Ultiboard_PowerPro_Crack_Keygen(1).exe (PUP.Optional.OneClickDownloader.A) -> Quarantined and deleted successfully.
C:\Users\paul\Downloads\MultiSim_11_0_1_Ultiboard_PowerPro_Crack_Keygen.exe (PUP.Optional.OneClickDownloader.A) -> Quarantined and deleted successfully.
C:\Users\paul\Downloads\PluginV2.exe (PUP.Optional.BundleInstaller.A) -> Quarantined and deleted successfully.
C:\Users\paul\Downloads\Setup_V2.exe (PUP.Optional.BundleInstaller.A) -> Quarantined and deleted successfully.
C:\Users\paul\Downloads\Updater_Setup(1).exe (PUP.Optional.OptimumInstaller.A) -> Quarantined and deleted successfully.
C:\Users\paul\Downloads\Updater_Setup(2).exe (PUP.Optional.OptimumInstaller.A) -> Quarantined and deleted successfully.
C:\Users\paul\Downloads\Updater_Setup.exe (PUP.Optional.OptimumInstaller.A) -> Quarantined and deleted successfully.
C:\Users\paul\Downloads\ZipExtractorSetup.exe (PUP.Optional.JumpyApps.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\Downloads\InstallConverter_TSV13EMNM.exe (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\Downloads\VipBoxSportsAppsInstall(18_3f)_ff(1).exe (PUP.Optional.OneClickDownloader.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\Downloads\VipBoxSportsAppsInstall(18_3f)_ff.exe (PUP.Optional.OneClickDownloader.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Mozilla Firefox\searchplugins\Web Search.xml (PUP.Optional.SearchCertifiedTB.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Surftastic\Surftastic.ico (PUP.Optional.Surftastic.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Surftastic\0 (PUP.Optional.Surftastic.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Surftastic\7za.exe (PUP.Optional.Surftastic.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Surftastic\updateSurftastic.InstallState (PUP.Optional.Surftastic.A) -> Quarantined and deleted successfully.
C:\Windows\Tasks\PassWidget Update.job (PUP.Optional.PassWidget.A) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Roaming\Bubble Dock.boostrap.log (PUP.Optional.Bubbledock.A) -> Quarantined and deleted successfully.
C:\Windows\Tasks\AmiUpdXp.job (PUP.Software.Updater) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Roaming\SimplyTech\home\home.htm (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Roaming\SimplyTech\home\jquery-ui-1.10.1.custom.min.js (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Roaming\SimplyTech\home\jquiso.js (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Roaming\SimplyTech\home\socket.io.js (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Roaming\SimplyTech\home\style.css (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Roaming\SimplyTech\home\vars.js (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\Microsoft.Win32.TaskScheduler.xml (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\cinshlpr.dll (PUP.Optional.HomeTab.A) -> Delete on reboot.
C:\Program Files (x86)\HomeTab\hometab_icon.ico (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\InstallHelper.dll (PUP.Optional.HomeTab.A) -> Delete on reboot.
C:\Program Files (x86)\HomeTab\Interop.IWshRuntimeLibrary.dll (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\Microsoft.Win32.TaskScheduler.dll (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\ProtectedSearch.ico (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\stinst.dat (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\STInst.exe (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\stinst.wls (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\stinst.xml (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\STInst64.dll (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\System.Data.SQLite.dll (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\TaskSchedulerCreator.exe (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\TBUpdater.dll (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\ToolbarUninstall.exe (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\unins000.dat (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\unins000.exe (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\WBrokerProductivity.exe (PUP.Optional.HomeTab.A) -> Delete on reboot.
C:\Program Files (x86)\HomeTab\WBrowserProtect.exe (PUP.Optional.HomeTab.A) -> Delete on reboot.
C:\Program Files (x86)\HomeTab\WBrowserUpgrade.exe (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\chrome\HomeTab.crx (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\IE\HomeTab.dll (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\IE\HomeTab_64.dll (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\IE\wdapimng.exe (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\IE\wdapimng_64.exe (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\[email protected]\chrome.manifest (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\[email protected]\install.js (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\[email protected]\install.rdf (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\[email protected]\pop.htm (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\[email protected]\chrome\HomeTab_18145.jar (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\[email protected]\components\wtb_complete.js (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HomeTab\[email protected]\plugins\npwiddit.dll (PUP.Optional.HomeTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\ToolbarUpdaterService.exe (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Roaming\OpenCandy\8A76F32B48B54B0E9497A7348BEE7947\pokkiInstaller.exe (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\paul\AppData\Local\temp\CT3319613\ddt.csf (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Toolbar64.dll (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\uninstall.exe (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\configuration.xml (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\dynamicConfiguration.xml (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\LatestVersion.xml (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\banners\0.html (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\banners\1.html (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\banners\bannerHTML.html (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\banners\window.css (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\banners\window.js (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\amazon.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\angryCows.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\baidu.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\blogger.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\bomb.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\bubble.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\bug.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\chess.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\citysiege.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\comment.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\dashboard.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\ebay.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\facebook.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\facebookFriends.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\facebookWall.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\flights.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\google.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\handsofwar.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\hotels.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\isoballx.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\live.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\logo.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\msn.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\photo.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\qq.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\raze2.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\ruby.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\shadowess.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\sport_basketball.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\stuntcrazy.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\sudos.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\tetris.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\travels.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\trophy.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\twitter.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\utilsBarSearch.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\wikipedia.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\yahoo.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\yourlogo.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\images\youtube.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\chevron_button.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\dropdown_menu_triangle.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\searchbox.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\searchbox.psd (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\searchbox_button.psd (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\searchbox_button_hover.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\searchbox_button_normal.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\searchbox_dropdown_button_normal.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\searchbox_input_background.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\searchbox_input_left.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\searchbox_input_middle.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\separator.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\splitter.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\toolbarbutton.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\toolbarbutton.psd (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\toolbarbuttonhl.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\toolbarbutton_ff_hover_c.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\toolbarbutton_ff_hover_l.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\toolbarbutton_ff_hover_r.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\toolbarbutton_ff_normal_c.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\toolbarbutton_ff_normal_l.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\toolbarbutton_ff_normal_r.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\toolbarbutton_ie_hover_c.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\toolbarbutton_ie_hover_l.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\toolbarbutton_ie_hover_r.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\toolbarbutton_ie_normal_c.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\toolbarbutton_ie_normal_l.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Configuration\skin\toolbarbutton_ie_normal_r.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome.manifest (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\install.rdf (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\bar.js (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\bar.xul (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\buttons.js (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\constants.js (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\events.js (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\globals.js (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\htmldropdown.xul (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\init.js (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\configuration.xml (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\dynamicConfiguration.xml (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\LatestVersion.xml (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\banners\0.html (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\banners\1.html (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\banners\bannerHTML.html (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\banners\window.css (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\banners\window.js (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\amazon.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\angryCows.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\baidu.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\blogger.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\bomb.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\bubble.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\bug.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\chess.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\citysiege.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\comment.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\dashboard.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\ebay.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\facebook.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\facebookFriends.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\facebookWall.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\flights.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\google.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\handsofwar.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\hotels.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\isoballx.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\live.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\logo.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\msn.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\photo.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\qq.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\raze2.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\ruby.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\shadowess.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\sport_basketball.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\stuntcrazy.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\sudos.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\tetris.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\travels.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\trophy.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\twitter.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\utilsBarSearch.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\wikipedia.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\yahoo.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\yourlogo.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\images\youtube.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\chevron_button.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\dropdown_menu_triangle.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\searchbox.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\searchbox.psd (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\searchbox_button.psd (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\searchbox_button_hover.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\searchbox_button_normal.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\searchbox_dropdown_button_normal.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\searchbox_input_background.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\searchbox_input_left.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\searchbox_input_middle.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\separator.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\splitter.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\toolbarbutton.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\toolbarbutton.psd (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\toolbarbuttonhl.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\toolbarbutton_ff_hover_c.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\toolbarbutton_ff_hover_l.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\toolbarbutton_ff_hover_r.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\toolbarbutton_ff_normal_c.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\toolbarbutton_ff_normal_l.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\toolbarbutton_ff_normal_r.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\toolbarbutton_ie_hover_c.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\toolbarbutton_ie_hover_l.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\toolbarbutton_ie_hover_r.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\toolbarbutton_ie_normal_c.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\toolbarbutton_ie_normal_l.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\content\Configuration\skin\toolbarbutton_ie_normal_r.png (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\EazelBar\Firefox\chrome\skin\overlay.css (PUP.Optional.EazelBar.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0\html\background.html (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0\images\icon.128.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0\images\icon.16.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0\images\icon.48.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0\js\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0\js\ex.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0\js\jquery.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_0\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_0\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_0\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_0\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_1\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_1\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_1\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_1\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_10\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_10\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_10\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_10\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_11\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_11\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_11\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_11\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_12\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_12\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_12\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_12\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_13\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_13\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_13\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_13\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_14\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_14\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_14\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_14\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_15\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_15\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_15\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_15\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_16\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_16\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_16\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_16\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_17\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_17\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_17\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_17\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_18\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_18\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_18\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_18\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_19\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_19\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_19\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_19\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_2\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_2\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_2\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_2\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_20\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_20\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_20\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_20\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_21\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_21\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_21\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_21\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_22\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_22\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_22\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_22\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_23\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_23\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_23\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_23\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_24\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_24\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_24\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_24\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_25\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_25\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_25\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_25\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_26\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_26\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_26\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_26\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_27\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_27\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_27\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_27\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_28\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_28\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_28\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_28\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_29\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_29\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_29\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_29\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_3\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_3\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_3\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_3\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_30\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_30\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_30\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_30\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_31\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_31\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_31\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_31\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_32\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_32\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_32\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_32\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_33\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_33\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_33\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_33\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_34\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_34\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_34\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_34\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_35\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_35\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_35\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_35\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_36\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_36\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_36\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_36\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_37\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_37\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_37\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_37\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_38\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_38\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_38\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_38\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_39\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_39\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_39\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_39\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_4\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_4\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_4\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_4\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_40\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_40\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_40\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_40\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_41\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_41\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_41\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_41\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_42\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_42\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_42\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_42\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_43\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_43\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_43\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_43\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_44\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_44\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_44\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_44\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_45\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_45\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_45\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_45\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_46\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_46\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_46\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_46\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_47\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_47\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_47\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_47\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_48\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_48\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_48\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_48\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_49\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_49\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_49\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_49\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_5\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_5\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_5\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_5\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_50\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_50\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_50\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_50\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_51\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_51\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_51\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_51\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_52\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_52\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_52\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_52\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_53\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_53\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_53\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_53\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_54\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_54\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_54\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_54\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_55\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_55\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_55\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_55\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_56\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_56\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_56\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_56\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_57\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_57\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_57\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_57\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_58\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_58\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_58\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_58\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_59\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_59\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_59\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_59\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_6\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_6\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_6\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_6\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_60\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_60\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_60\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_60\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_61\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_61\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_61\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_61\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_62\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_62\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_62\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_62\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_63\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_63\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_63\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_63\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_64\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_64\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_64\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_64\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_65\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_65\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_65\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_65\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_66\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_66\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_66\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_66\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_67\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_67\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_67\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_67\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_68\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_68\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_68\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_68\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_69\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_69\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_69\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_69\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_7\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_7\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_7\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_7\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_70\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_70\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_70\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_70\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_71\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_71\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_71\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_71\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_72\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_72\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_72\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_72\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_73\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_73\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_73\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_73\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_74\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_74\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_74\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_74\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_75\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_75\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_75\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_75\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_76\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_76\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_76\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_76\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_77\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_77\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_77\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_77\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_78\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_78\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_78\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_78\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_79\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_79\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_79\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_79\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_8\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_8\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_8\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_8\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_80\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_80\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_80\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_80\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_81\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_81\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_81\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_81\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_82\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_82\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_82\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_82\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_83\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_83\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_83\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_83\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_84\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_84\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_84\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_84\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_85\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_85\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_85\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_85\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_86\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_86\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_86\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_86\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_87\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_87\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_87\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_87\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_88\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_88\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_88\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_88\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_89\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_89\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_89\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_89\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_9\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_9\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_9\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_9\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_90\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_90\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_90\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_90\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_91\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_91\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_91\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_91\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_92\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_92\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_92\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_92\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_93\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_93\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_93\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_93\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_94\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_94\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_94\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_94\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_95\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_95\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_95\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_95\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_96\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_96\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_96\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_96\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_97\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_97\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_97\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_97\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_98\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_98\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_98\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_98\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_99\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_99\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_99\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_99\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_0\background.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_0\content.js (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_0\icon.png (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.
C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf\1.0.0_0\manifest.json (PUP.Optional.Qualitink.A) -> Quarantined and deleted successfully.

(end)
  • 0

#6
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Could I have one final OTL quick scan please to ensure that it has all gone
  • 0

#7
peejaygee1

peejaygee1

    Member

  • Topic Starter
  • Member
  • PipPip
  • 27 posts
OTL logfile created on: 04/03/2014 10:16:05 - Run 9
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\sarah_000\Downloads
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16798)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

3.89 Gb Total Physical Memory | 2.10 Gb Available Physical Memory | 54.03% Memory free
7.89 Gb Paging File | 6.12 Gb Available in Paging File | 77.54% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 678.57 Gb Total Space | 291.08 Gb Free Space | 42.90% Space Free | Partition Type: NTFS
Drive D: | 19.30 Gb Total Space | 2.42 Gb Free Space | 12.52% Space Free | Partition Type: NTFS

Computer Name: SARAH | User Name: paul | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2014/03/03 17:55:30 | 000,193,024 | ---- | M] () -- C:\Program Files (x86)\Pass-Widget-soft\PassWidget155.exe
PRC - [2014/03/03 17:55:30 | 000,093,184 | ---- | M] () -- C:\Program Files (x86)\Pass-Widget-soft\PassWidget_wd.exe
PRC - [2014/02/20 19:21:00 | 001,863,560 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_70.exe
PRC - [2014/02/13 00:36:25 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2014/02/10 11:35:22 | 001,444,120 | ---- | M] (Trusteer Ltd.) -- C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
PRC - [2014/02/10 11:35:20 | 002,484,504 | ---- | M] (Trusteer Ltd.) -- C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe
PRC - [2014/02/08 22:11:57 | 000,223,112 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe
PRC - [2013/12/08 20:46:02 | 003,568,312 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2013/12/08 20:46:01 | 000,050,344 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2013/12/05 18:24:00 | 008,285,512 | ---- | M] (Pokki) -- C:\Users\paul\AppData\Local\Pokki\Engine\pokki.exe
PRC - [2013/11/13 16:43:45 | 000,194,224 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE
PRC - [2013/09/22 17:22:55 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\sarah_000\Downloads\OTL (1).exe
PRC - [2013/06/29 09:49:28 | 000,068,608 | ---- | M] (IvoSoft) -- C:\Program Files\Classic Shell\ClassicShellService.exe
PRC - [2013/04/04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2013/04/04 14:50:32 | 000,532,040 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2013/04/04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2013/02/02 08:40:58 | 000,375,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
PRC - [2012/09/07 16:33:08 | 000,581,024 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
PRC - [2012/09/07 16:33:08 | 000,035,232 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
PRC - [2012/07/27 17:21:26 | 000,136,488 | ---- | M] (CyberLink) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
PRC - [2012/07/18 01:10:32 | 000,364,416 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
PRC - [2012/07/18 01:10:30 | 000,276,864 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
PRC - [2012/07/18 01:10:24 | 000,128,896 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe
PRC - [2012/07/18 01:10:16 | 000,165,760 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe
PRC - [2012/06/08 03:34:06 | 000,111,120 | ---- | M] (CyberLink) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
PRC - [2011/08/26 13:37:18 | 001,342,008 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe
PRC - [2010/03/10 10:17:10 | 000,358,448 | ---- | M] (National Instruments Corporation) -- C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe
PRC - [2010/03/10 10:17:04 | 000,053,808 | ---- | M] (National Instruments Corporation) -- C:\Windows\SysWOW64\lktsrv.exe
PRC - [2010/03/10 10:17:02 | 000,043,056 | ---- | M] (National Instruments Corporation) -- C:\Windows\SysWOW64\lkads.exe
PRC - [2009/10/20 10:00:22 | 000,013,896 | ---- | M] (National Instruments Corporation) -- C:\Windows\SysWOW64\nisvcloc.exe
PRC - [2009/09/29 12:56:52 | 000,695,136 | ---- | M] (National Instruments, Inc.) -- C:\Windows\SysWOW64\lkcitdl.exe


========== Modules (No Company Name) ==========

MOD - [2014/03/03 17:55:30 | 000,093,184 | ---- | M] () -- C:\Program Files (x86)\Pass-Widget-soft\PassWidget_wd.exe
MOD - [2014/02/20 19:20:59 | 016,265,096 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll
MOD - [2014/02/13 00:36:40 | 003,578,992 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2014/02/03 23:27:24 | 001,125,592 | ---- | M] () -- C:\ProgramData\Trusteer\Rapport\store\exts\RapportMS\baseline\RapportMS.dll
MOD - [2013/12/19 18:26:59 | 000,359,592 | ---- | M] () -- C:\Program Files\Microsoft Office 15\root\office15\c2r32.dll
MOD - [2013/12/08 20:46:11 | 019,336,120 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\libcef.dll
MOD - [2013/11/13 16:41:40 | 000,316,584 | ---- | M] () -- C:\Program Files\Microsoft Office 15\root\office15\appvisvstream32.dll
MOD - [2013/09/13 19:51:44 | 000,087,952 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2013/09/13 19:51:20 | 001,242,952 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2013/09/07 02:11:12 | 001,400,846 | ---- | M] () -- C:\Users\paul\AppData\Local\Pokki\Engine\avcodec-54.dll
MOD - [2013/09/07 02:11:12 | 000,569,856 | ---- | M] () -- C:\Users\paul\AppData\Local\Pokki\Engine\ppGoogleNaClPluginChrome.dll
MOD - [2013/09/07 02:11:12 | 000,222,734 | ---- | M] () -- C:\Users\paul\AppData\Local\Pokki\Engine\avformat-54.dll
MOD - [2013/09/07 02:11:12 | 000,151,054 | ---- | M] () -- C:\Users\paul\AppData\Local\Pokki\Engine\avutil-51.dll
MOD - [2012/06/27 14:09:06 | 000,557,056 | ---- | M] () -- C:\Program Files (x86)\Trusteer\Rapport\bin\js32.dll
MOD - [2012/06/08 10:34:06 | 000,016,400 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll
MOD - [2012/06/08 03:34:06 | 000,627,216 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll


========== Services (SafeList) ==========

SRV:64bit: - [2013/12/08 20:46:01 | 000,050,344 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2013/11/02 00:48:44 | 001,907,896 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe -- (OfficeSvc)
SRV:64bit: - [2013/08/16 05:39:26 | 002,371,728 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\WSService.dll -- (WSService)
SRV:64bit: - [2013/07/02 00:44:21 | 000,016,048 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)
SRV:64bit: - [2013/06/29 09:49:28 | 000,068,608 | ---- | M] (IvoSoft) [Auto | Running] -- C:\Program Files\Classic Shell\ClassicShellService.exe -- (ClassicShellService)
SRV:64bit: - [2013/06/24 22:54:45 | 000,263,680 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wcmsvc.dll -- (Wcmsvc)
SRV:64bit: - [2013/06/01 09:19:58 | 000,207,872 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DeviceSetupManager.dll -- (DsmSvc)
SRV:64bit: - [2013/05/04 06:58:02 | 000,470,528 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm)
SRV:64bit: - [2013/05/04 06:57:05 | 000,179,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\bisrv.dll -- (BrokerInfrastructure)
SRV:64bit: - [2013/04/09 04:48:42 | 000,169,472 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
SRV:64bit: - [2013/03/02 02:45:07 | 000,171,008 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\TimeBrokerServer.dll -- (TimeBroker)
SRV:64bit: - [2013/03/02 02:45:05 | 000,180,224 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\SystemEventsBrokerServer.dll -- (SystemEventsBroker)
SRV:64bit: - [2013/01/09 23:23:16 | 001,964,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wlidsvc.dll -- (wlidsvc)
SRV:64bit: - [2013/01/09 23:22:35 | 000,438,272 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsm.dll -- (LSM)
SRV:64bit: - [2012/09/20 06:31:18 | 000,116,736 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\fhsvc.dll -- (fhsvc)
SRV:64bit: - [2012/08/10 14:24:28 | 000,029,600 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Windows\SysNative\hpservice.exe -- (hpsrv)
SRV:64bit: - [2012/07/26 03:30:05 | 002,675,200 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
SRV:64bit: - [2012/07/26 03:07:47 | 000,065,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wiarpc.dll -- (WiaRpc)
SRV:64bit: - [2012/07/26 03:07:40 | 000,283,648 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\vaultsvc.dll -- (VaultSvc)
SRV:64bit: - [2012/07/26 03:07:25 | 000,012,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svsvc.dll -- (svsvc)
SRV:64bit: - [2012/07/26 03:06:34 | 000,743,936 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netlogon.dll -- (Netlogon)
SRV:64bit: - [2012/07/26 03:06:33 | 000,161,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcaSvc.dll -- (NcaSvc)
SRV:64bit: - [2012/07/26 03:06:33 | 000,073,728 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\NcdAutoSetup.dll -- (NcdAutoSetup)
SRV:64bit: - [2012/07/26 03:05:55 | 000,059,904 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso)
SRV:64bit: - [2012/07/26 03:05:34 | 000,037,376 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\efssvc.dll -- (EFS)
SRV:64bit: - [2012/07/26 03:05:24 | 000,342,016 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\das.dll -- (DeviceAssociationService)
SRV:64bit: - [2012/07/26 03:05:08 | 000,122,368 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AUInstallAgent.dll -- (AllUserInstallAgent)
SRV:64bit: - [2012/07/26 00:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicvss)
SRV:64bit: - [2012/07/26 00:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmictimesync)
SRV:64bit: - [2012/07/26 00:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicshutdown)
SRV:64bit: - [2012/07/26 00:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicrdv)
SRV:64bit: - [2012/07/26 00:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmickvpexchange)
SRV:64bit: - [2012/07/26 00:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicheartbeat)
SRV:64bit: - [2012/07/22 07:30:36 | 000,321,536 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Program Files\IDT\WDM\stacsv64.exe -- (STacSV)
SRV:64bit: - [2012/04/20 13:16:12 | 000,635,104 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel®
SRV - [2014/03/03 17:55:30 | 000,193,024 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Pass-Widget-soft\PassWidget155.exe -- (PassWidget)
SRV - [2014/02/20 19:21:01 | 000,257,928 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014/02/13 00:36:33 | 000,118,896 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2014/02/10 11:35:22 | 001,444,120 | ---- | M] (Trusteer Ltd.) [Auto | Running] -- C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe -- (RapportMgmtService)
SRV - [2013/11/04 18:31:56 | 000,092,160 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe -- (HP Support Assistant Service)
SRV - [2013/04/04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2013/04/04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2012/09/07 16:33:08 | 000,035,232 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe -- (HPWMISVC)
SRV - [2012/08/08 11:09:02 | 000,276,288 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
SRV - [2012/07/26 03:30:05 | 002,675,200 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll -- (PrintNotify)
SRV - [2012/07/26 03:20:04 | 000,018,432 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\StorSvc.dll -- (StorSvc)
SRV - [2012/07/26 03:18:41 | 000,408,064 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (WAS)
SRV - [2012/07/26 03:17:52 | 000,060,416 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\apphostsvc.dll -- (AppHostSvc)
SRV - [2012/07/18 01:10:32 | 000,364,416 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2012/07/18 01:10:30 | 000,276,864 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2012/07/18 01:10:24 | 000,128,896 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe -- (Intel®
SRV - [2012/07/18 01:10:16 | 000,165,760 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe -- (jhi_service)
SRV - [2012/07/14 16:02:16 | 002,451,456 | ---- | M] (Realsil Microelectronics Inc.) [Auto | Running] -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe -- (IconMan_R)
SRV - [2010/10/12 17:59:12 | 000,206,072 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe -- (GamesAppService)
SRV - [2010/05/17 18:18:44 | 001,007,616 | ---- | M] (Macrovision Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\National Instruments\Shared\License Manager\Bin\lmgrd.exe -- (NILM License Manager)
SRV - [2010/03/10 10:17:10 | 000,358,448 | ---- | M] (National Instruments Corporation) [Auto | Running] -- C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe -- (NIDomainService)
SRV - [2010/03/10 10:17:04 | 000,053,808 | ---- | M] (National Instruments Corporation) [Auto | Running] -- C:\Windows\SysWOW64\lktsrv.exe -- (lkTimeSync)
SRV - [2010/03/10 10:17:02 | 000,043,056 | ---- | M] (National Instruments Corporation) [Auto | Running] -- C:\Windows\SysWOW64\lkads.exe -- (lkClassAds)
SRV - [2009/10/20 10:00:22 | 000,013,896 | ---- | M] (National Instruments Corporation) [Auto | Running] -- C:\Windows\SysWOW64\nisvcloc.exe -- (niSvcLoc)
SRV - [2009/09/29 12:56:52 | 000,695,136 | ---- | M] (National Instruments, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\lkcitdl.exe -- (LkCitadelServer)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2014/02/10 11:35:42 | 000,273,592 | ---- | M] (Trusteer Ltd.) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\RapportHades64.sys -- (RapportHades64)
DRV:64bit: - [2014/02/10 11:35:40 | 000,316,312 | ---- | M] (Trusteer Ltd.) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\RapportKE64.sys -- (RapportKE64)
DRV:64bit: - [2013/12/08 20:46:22 | 001,032,416 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\Drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2013/12/08 20:46:22 | 000,409,832 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\aswSP.sys -- (aswSP)
DRV:64bit: - [2013/12/08 20:46:22 | 000,205,320 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswVmm.sys -- (aswVmm)
DRV:64bit: - [2013/12/08 20:46:22 | 000,065,776 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt)
DRV:64bit: - [2013/12/08 20:46:21 | 000,084,328 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\Drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2013/12/08 20:46:21 | 000,038,984 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\Drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:64bit: - [2013/12/08 20:46:20 | 000,092,544 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\aswRdr2.sys -- (aswRdr)
DRV:64bit: - [2013/10/10 11:53:35 | 000,096,600 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\wfplwfs.sys -- (WFPLWFS)
DRV:64bit: - [2013/10/05 06:10:20 | 000,285,016 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\spaceport.sys -- (spaceport)
DRV:64bit: - [2013/10/02 02:50:07 | 000,447,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\USBHUB3.SYS -- (USBHUB3)
DRV:64bit: - [2013/08/20 06:02:12 | 000,204,568 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\ssudmdm.sys -- (ssudmdm)
DRV:64bit: - [2013/08/20 06:02:12 | 000,103,576 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\ssudbus.sys -- (dg_ssudbus)
DRV:64bit: - [2013/08/16 05:41:13 | 000,058,200 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\Drivers\dam.sys -- (dam)
DRV:64bit: - [2013/08/10 06:30:22 | 000,151,896 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\tpm.sys -- (TPM)
DRV:64bit: - [2013/07/09 08:04:07 | 000,120,144 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\msgpioclx.sys -- (GPIOClx0101)
DRV:64bit: - [2013/07/02 01:41:47 | 000,337,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\USBXHCI.SYS -- (USBXHCI)
DRV:64bit: - [2013/07/02 01:41:47 | 000,213,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\UCX01000.SYS -- (UCX01000)
DRV:64bit: - [2013/07/02 00:44:14 | 000,036,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\WdBoot.sys -- (WdBoot)
DRV:64bit: - [2013/07/01 22:08:49 | 000,247,216 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\WdFilter.sys -- (WdFilter)
DRV:64bit: - [2013/06/29 06:15:54 | 000,195,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2013/06/01 03:08:57 | 000,037,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\BthAvrcpTg.sys -- (BthAvrcpTg)
DRV:64bit: - [2013/05/26 17:31:41 | 000,495,856 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2013/05/26 17:31:39 | 000,033,008 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\Smb_driver_Intel.sys -- (SmbDrvI)
DRV:64bit: - [2013/04/15 06:02:04 | 002,482,960 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\netr28x.sys -- (netr28x)
DRV:64bit: - [2013/04/04 14:50:32 | 000,025,928 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\Drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2013/03/02 10:57:46 | 000,077,544 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\storahci.sys -- (storahci)
DRV:64bit: - [2013/03/02 10:39:38 | 000,069,864 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\pdc.sys -- (pdc)
DRV:64bit: - [2013/01/10 01:53:32 | 000,028,904 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\msgpiowin32.sys -- (msgpiowin32)
DRV:64bit: - [2012/12/13 14:50:36 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2012/11/27 03:55:44 | 000,029,952 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\BthhfHid.sys -- (bthhfhid)
DRV:64bit: - [2012/11/20 04:54:31 | 000,039,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\hidi2c.sys -- (hidi2c)
DRV:64bit: - [2012/11/06 03:55:44 | 000,022,528 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\fxppm.sys -- (FxPPM)
DRV:64bit: - [2012/10/12 08:08:01 | 000,027,880 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012/10/11 07:25:48 | 000,056,552 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\sdstor.sys -- (sdstor)
DRV:64bit: - [2012/09/20 07:55:27 | 003,265,256 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2012/09/20 07:55:24 | 000,533,224 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2012/08/31 08:40:24 | 000,020,800 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\WirelessButtonDriver64.sys -- (WirelessButtonDriver)
DRV:64bit: - [2012/08/24 09:38:26 | 000,041,272 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\Smb_driver_AMDASF.sys -- (SmbDrv)
DRV:64bit: - [2012/08/21 13:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2012/08/10 14:24:28 | 000,042,400 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\Accelerometer.sys -- (Accelerometer)
DRV:64bit: - [2012/08/10 14:24:28 | 000,029,600 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\hpdskflt.sys -- (hpdskflt)
DRV:64bit: - [2012/08/08 05:17:54 | 008,987,456 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2012/07/31 19:22:00 | 000,645,952 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\iaStorA.sys -- (iaStorA)
DRV:64bit: - [2012/07/31 08:04:12 | 000,690,832 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\Rt630x64.sys -- (RTL8168)
DRV:64bit: - [2012/07/26 05:26:46 | 000,025,328 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012/07/26 05:26:45 | 000,033,792 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\condrv.sys -- (condrv)
DRV:64bit: - [2012/07/26 05:00:58 | 000,322,800 | ---- | M] (VIA Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\VSTXRAID.SYS -- (VSTXRAID)
DRV:64bit: - [2012/07/26 05:00:58 | 000,106,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\VerifierExt.sys -- (VerifierExt)
DRV:64bit: - [2012/07/26 05:00:58 | 000,097,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\uaspstor.sys -- (UASPStor)
DRV:64bit: - [2012/07/26 05:00:57 | 000,077,040 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\acpiex.sys -- (acpiex)
DRV:64bit: - [2012/07/26 05:00:55 | 000,064,240 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\mvumis.sys -- (mvumis)
DRV:64bit: - [2012/07/26 05:00:55 | 000,030,960 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2012/07/26 05:00:52 | 000,092,400 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2012/07/26 05:00:52 | 000,081,136 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\lsi_sss.sys -- (LSI_SSS)
DRV:64bit: - [2012/07/26 05:00:52 | 000,064,752 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2012/07/26 05:00:51 | 000,113,904 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv)
DRV:64bit: - [2012/07/26 05:00:51 | 000,081,136 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\EhStorClass.sys -- (EhStorClass)
DRV:64bit: - [2012/07/26 05:00:49 | 000,258,288 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2012/07/26 05:00:49 | 000,106,736 | ---- | M] (LSI) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\3ware.sys -- (3ware)
DRV:64bit: - [2012/07/26 05:00:49 | 000,076,016 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2012/07/26 05:00:48 | 000,026,352 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2012/07/26 04:57:54 | 000,361,200 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\clfs.sys -- (CLFS)
DRV:64bit: - [2012/07/26 04:53:16 | 000,067,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\vpci.sys -- (vpci)
DRV:64bit: - [2012/07/26 03:17:38 | 000,036,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\terminpt.sys -- (terminpt)
DRV:64bit: - [2012/07/26 02:29:14 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\mshidumdf.sys -- (mshidumdf)
DRV:64bit: - [2012/07/26 02:29:08 | 000,048,640 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\BasicDisplay.sys -- (BasicDisplay)
DRV:64bit: - [2012/07/26 02:29:03 | 000,024,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\HyperVideo.sys -- (HyperVideo)
DRV:64bit: - [2012/07/26 02:28:52 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\BasicRender.sys -- (BasicRender)
DRV:64bit: - [2012/07/26 02:27:58 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\vmgencounter.sys -- (gencounter)
DRV:64bit: - [2012/07/26 02:27:41 | 000,018,432 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\kdnic.sys -- (kdnic)
DRV:64bit: - [2012/07/26 02:27:37 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\acpitime.sys -- (acpitime)
DRV:64bit: - [2012/07/26 02:27:33 | 000,023,552 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\npsvctrig.sys -- (npsvctrig)
DRV:64bit: - [2012/07/26 02:27:29 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\WpdUpFltr.sys -- (WpdUpFltr)
DRV:64bit: - [2012/07/26 02:27:16 | 000,010,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\acpipagr.sys -- (acpipagr)
DRV:64bit: - [2012/07/26 02:27:01 | 000,011,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\hyperkbd.sys -- (hyperkbd)
DRV:64bit: - [2012/07/26 02:26:46 | 000,062,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\SerCx.sys -- (SerCx)
DRV:64bit: - [2012/07/26 02:26:43 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\SpbCx.sys -- (SpbCx)
DRV:64bit: - [2012/07/26 02:26:34 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2012/07/26 02:26:13 | 000,051,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\bthhfenum.sys -- (BthHFEnum)
DRV:64bit: - [2012/07/26 02:25:57 | 000,033,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\dmvsc.sys -- (dmvsc)
DRV:64bit: - [2012/07/26 02:25:56 | 000,057,344 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2012/07/26 02:25:13 | 000,045,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\wpcfltr.sys -- (wpcfltr)
DRV:64bit: - [2012/07/26 02:25:01 | 000,126,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\NdisImPlatform.sys -- (NdisImPlatform)
DRV:64bit: - [2012/07/26 02:23:53 | 000,068,608 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\mslldp.sys -- (MsLldp)
DRV:64bit: - [2012/07/26 02:23:42 | 000,097,792 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\Drivers\Ndu.sys -- (Ndu)
DRV:64bit: - [2012/07/25 22:53:22 | 011,926,528 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2012/07/22 07:30:36 | 000,540,160 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\stwrt64.sys -- (STHDA)
DRV:64bit: - [2012/07/04 13:09:08 | 000,269,968 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\RtsP2Stor.sys -- (RSP2STOR)
DRV:64bit: - [2012/07/02 23:16:02 | 000,062,784 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2012/06/29 02:00:48 | 000,360,448 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2012/06/25 09:24:50 | 000,092,536 | ---- | M] (CyberLink) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\CLVirtualDrive.sys -- (CLVirtualDrive)
DRV:64bit: - [2012/06/19 15:40:50 | 000,342,528 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\IntcDAud.sys -- (IntcDAud)
DRV:64bit: - [2012/06/02 14:31:47 | 011,400,192 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\NETwNe64.sys -- (NETwNe64)
DRV - [2014/02/10 11:35:42 | 000,282,712 | ---- | M] (Trusteer Ltd.) [Kernel | System | Running] -- C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys -- (RapportEI64)
DRV - [2014/02/10 11:35:40 | 000,397,848 | ---- | M] (Trusteer Ltd.) [Kernel | System | Running] -- C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys -- (RapportPG64)
DRV - [2013/12/29 18:17:47 | 000,075,016 | ---- | M] (Insyde Software) [Kernel | On_Demand | Stopped] -- C:\SWSetup\sp63746\iscflashx64.sys -- (iscFlash)
DRV - [2013/11/14 20:05:07 | 000,606,672 | ---- | M] () [Kernel | System | Running] -- C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_59849.sys -- (RapportCerberus_59849)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE:64bit: - HKLM\..\SearchScopes,DefaultScope =
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...0TR&pc=HPNTDFJS
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com/HPNOT13/2
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Default_Page_URL = about:newtab
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:newtab
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Search Bar = http://search.certif...C8&st=chrome&q=
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page = http://search.certif...C8&st=chrome&q=
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Default_Page_URL = about:newtab
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = about:newtab
IE - HKLM\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.certif...q={searchTerms}

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Default_Page_URL = about:newtab
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:newtab
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Search Bar = http://search.certif...C8&st=chrome&q=
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page = http://search.certif...C8&st=chrome&q=
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Start Default_Page_URL = about:newtab
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = about:newtab
IE - HKCU\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b}
IE - HKCU\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.certif...q={searchTerms}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:13828

========== FireFox ==========

FF - prefs.js..browser.search.defaultengine: "Web Search"
FF - prefs.js..browser.search.defaultthis.engineName: ""
FF - prefs.js..browser.search.defaulturl: "http://en.eazel.com/...={searchTerms}"
FF - prefs.js..browser.search.order.1: "Web Search"
FF - prefs.js..browser.search.param.yahoo-fr: ""
FF - prefs.js..browser.search.suggest.enabled: false
FF - prefs.js..browser.search.useDBForOrder: false
FF - prefs.js..browser.startup.homepage: "www.google.com"
FF - prefs.js..extensions.enabledAddons: %7Bc1cf3e93-27e8-4c2e-97f6-263264da0e5a%7D:1.155
FF - prefs.js..extensions.enabledAddons: %7B01531192-f7ef-415f-a549-cfdb11836731%7D:1.0.1
FF - prefs.js..extensions.enabledAddons: %7B1d33de57-fc7b-4526-97dc-e6bdbdcbf862%7D:5.7
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:27.0.1
FF - prefs.js..keyword.URL: "http://search.certif...8&st=chrome&q="


FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42: C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.5: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.2: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()

64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{DEDAF650-12B8-48f5-A843-BBA100716106}: C:\PROGRAM FILES\UPDATER BY SWEETPACKS\FIREFOX
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\AVAST Software\Avast\WebRep\FF [2013/12/08 20:46:28 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files (x86)\iRobinHood\iRobinHood Addon\[email protected]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014/02/15 00:54:47 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{c1cf3e93-27e8-4c2e-97f6-263264da0e5a}: C:\Program Files (x86)\Pass-Widget-soft\155.xpi [2014/03/03 17:55:33 | 000,011,241 | ---- | M] ()

[2013/03/18 22:05:41 | 000,000,000 | ---D | M] (No name found) -- C:\Users\paul\AppData\Roaming\mozilla\Extensions
[2014/03/03 20:29:25 | 000,000,000 | ---D | M] (No name found) -- C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions
[2014/03/03 20:29:34 | 000,000,000 | ---D | M] (HomeTab) -- C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{1d33de57-fc7b-4526-97dc-e6bdbdcbf862}
[2014/02/26 05:02:50 | 000,009,571 | ---- | M] () (No name found) -- C:\Users\paul\AppData\Roaming\mozilla\firefox\profiles\detmy00y.default\extensions\{01531192-f7ef-415f-a549-cfdb11836731}.xpi
[2014/03/03 17:55:38 | 000,001,559 | ---- | M] () -- C:\Users\paul\AppData\Roaming\mozilla\firefox\profiles\detmy00y.default\searchplugins\search-with-eazelbar.xml
[2014/03/03 20:29:33 | 000,002,018 | ---- | M] () -- C:\Users\paul\AppData\Roaming\mozilla\firefox\profiles\detmy00y.default\searchplugins\Web Search.xml
[2014/02/15 00:54:46 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2014/02/25 09:24:16 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2014/03/03 17:55:33 | 000,011,241 | ---- | M] () (No name found) -- C:\PROGRAM FILES (X86)\PASS-WIDGET-SOFT\155.XPI
[2008/12/10 14:49:34 | 000,023,040 | ---- | M] (National Instruments) -- C:\Program Files (x86)\mozilla firefox\plugins\nplv86win32.dll
[2010/05/25 12:43:16 | 000,025,088 | ---- | M] (National Instruments) -- C:\Program Files (x86)\mozilla firefox\plugins\nplv90win32.dll

========== Chrome ==========

CHR - Extension: No name found = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: No name found = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: No name found = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: No name found = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbdagnimlohkpamglloopgfnoiijpmoj\1.155.0.0_0\
CHR - Extension: No name found = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: No name found = C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2014/02/27 21:00:32 | 000,000,098 | ---- | M]) - C:\Windows\SysNative\Drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2:64bit: - BHO: (avast! Online Security) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:64bit: - BHO: (ExplorerBHO Class) - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
O2:64bit: - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (HomeTab) - {8b617b00-279e-42ff-beac-1f7a8f41ca13} - C:\Program Files\HomeTab\IE\HomeTab.dll (Simply Tech Ltd.)
O2:64bit: - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
O2:64bit: - BHO: (Microsoft SkyDrive Pro Browser Helper) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
O2:64bit: - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
O2:64bit: - BHO: (ClassicIE9BHO Class) - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_64.dll (IvoSoft)
O2:64bit: - BHO: (EazelBar Helper) - {FE478DC2-E4AD-4197-8F80-5E456BEBC57F} - C:\Program Files (x86)\EazelBar\Toolbar64.dll File not found
O2 - BHO: (ExplorerBHO Class) - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\office15\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
O2 - BHO: (ClassicIE9BHO Class) - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_32.dll (IvoSoft)
O3:64bit: - HKLM\..\Toolbar: (avast! Online Security) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3:64bit: - HKLM\..\Toolbar: (Classic Explorer Bar) - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
O3:64bit: - HKLM\..\Toolbar: (HomeTab) - {8b617b00-279e-42ff-beac-1f7a8f41ca13} - C:\Program Files\HomeTab\IE\HomeTab.dll (Simply Tech Ltd.)
O3:64bit: - HKLM\..\Toolbar: (EazelBar) - {EBD839AE-B08C-4fb7-859B-F54AF16C159F} - C:\Program Files (x86)\EazelBar\Toolbar64.dll File not found
O3 - HKLM\..\Toolbar: (Classic Explorer Bar) - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O4:64bit: - HKLM..\Run: [EKIJ5000StatusMonitor] C:\Windows\SysNative\spool\drivers\x64\3\EKIJ5000MUI.exe (Eastman Kodak Company)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
O4 - HKLM..\Run: [CLVirtualDrive] C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe (CyberLink Corp.)
O4 - HKLM..\Run: [HP CoolSense] C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (Hewlett-Packard Development Company, L.P.)
O4 - HKLM..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Development Company, L.P.)
O4 - HKLM..\Run: [NI Background Service] C:\Program Files (x86)\National Instruments\Shared\Update Service\niupdate.exe (National Instruments)
O4 - HKLM..\Run: [RemoteControl10] C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (CyberLink Corp.)
O4 - HKCU..\Run: [Pokki] C:\Windows\system32\rundll32.exe "%LOCALAPPDATA%\Pokki\Engine\Launcher.dll",RunLaunchPlatform File not found
O4 - HKCU..\Run: [uTorrent] C:\Users\paul\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
O4:64bit: - HKLM..\RunOnce: [NCPluginUpdater] C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe (Hewlett-Packard)
O4 - Startup: C:\Users\paul\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk = C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation)
O8:64bit: - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll (Microsoft Corporation)
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll (Microsoft Corporation)
O9:64bit: - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9:64bit: - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9:64bit: - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll (Microsoft Corporation)
O9:64bit: - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll (Microsoft Corporation)
O9:64bit: - Extra Button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - Reg Error: Key error. File not found
O9:64bit: - Extra 'Tools' menuitem : Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - Reg Error: Key error. File not found
O9:64bit: - Extra 'Tools' menuitem : Classic IE9 Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE9_32.exe (IvoSoft)
O9:64bit: - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9:64bit: - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Classic IE9 Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE9_32.exe (IvoSoft)
O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9A6F4C74-43A9-4F5A-BAB0-9A2EEB32D75D}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C76B6B6B-6D91-4D3F-9D4F-81AC8FCCABFF}: DhcpNameServer = 40.21.1.201 40.21.1.202
O18:64bit: - Protocol\Handler\osf - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\osf {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O30 - LSA: Security Packages - (livessp) - File not found
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2014/03/03 20:34:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2014/03/03 20:34:05 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2014/03/03 20:34:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2014/03/03 20:29:52 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Local\SwvUpdater
[2014/03/03 20:28:13 | 000,000,000 | ---D | C] -- C:\Program Files\HomeTab
[2014/03/03 20:27:50 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\SimplyTech
[2014/03/03 18:11:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Uniblue
[2014/03/03 17:58:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Nosibay
[2014/03/03 17:57:35 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\Nosibay
[2014/03/03 17:57:30 | 000,019,544 | ---- | C] (System Speedup) -- C:\Windows\SysNative\roboot64.exe
[2014/03/03 17:57:25 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\systweak
[2014/03/03 17:56:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iRobinHood
[2014/03/03 17:55:49 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\ProtectExtension
[2014/03/03 17:55:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Pass-Widget-soft
[2014/03/03 11:10:57 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Local\Pokki
[2014/02/25 19:12:10 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\Plarium
[2014/02/25 19:12:10 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Plarium
[2014/02/25 19:11:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image Converter
[2014/02/25 19:11:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Image Converter
[2014/02/25 09:24:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2014/02/17 20:36:45 | 000,000,000 | ---D | C] -- C:\ProgramData\{18165758-115C-4DC0-9EC2-FF89F725767F}
[2014/02/15 00:54:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2014/02/14 22:31:57 | 000,000,000 | ---D | C] -- C:\Users\paul\Desktop\New folder
[2014/02/14 22:25:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Samsung
[2014/02/02 14:44:33 | 000,000,000 | ---D | C] -- C:\Users\paul\Sketchup
[2014/02/02 13:45:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Google
[2014/02/02 13:45:57 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\Google
[2014/02/02 13:44:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SketchUp 8
[1 C:\Program Files\*.tmp files -> C:\Program Files\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2014/03/04 10:20:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/03/04 10:17:00 | 000,000,912 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/03/04 10:09:46 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/03/04 10:09:21 | 000,000,908 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/03/04 10:08:17 | 000,000,410 | ---- | M] () -- C:\Windows\tasks\PassWidget_wd.job
[2014/03/04 10:07:42 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys
[2014/03/04 10:07:39 | 3345,604,608 | -HS- | M] () -- C:\hiberfil.sys
[2014/03/04 09:30:00 | 000,000,300 | ---- | M] () -- C:\Windows\tasks\Digital Sites.job
[2014/03/03 21:04:58 | 000,941,114 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014/03/03 21:04:58 | 000,788,176 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014/03/03 21:04:58 | 000,162,458 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014/03/03 20:34:08 | 000,001,113 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2014/03/03 20:31:30 | 000,001,681 | ---- | M] () -- C:\Windows\SysWow64\${LOGFILE}
[2014/03/03 17:55:34 | 000,000,258 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2014/03/03 11:10:12 | 000,000,847 | ---- | M] () -- C:\Users\paul\Desktop\µTorrent.lnk
[2014/03/03 11:04:06 | 000,000,360 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForsarah_000.job
[2014/03/03 11:04:06 | 000,000,340 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForpaul.job
[2014/02/28 17:42:58 | 000,003,615 | ---- | M] () -- C:\Users\paul\Desktop\AdwCleaner (3) - Shortcut.lnk
[2014/02/28 17:30:54 | 000,001,088 | ---- | M] () -- C:\Users\paul\Desktop\Continue Zip Opener Installation.lnk
[2014/02/28 17:30:53 | 000,000,388 | ---- | M] () -- C:\Users\paul\Desktop\FREE Games.url
[2014/02/27 21:00:32 | 000,000,098 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\Hosts
[2014/02/27 20:11:21 | 607,516,111 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2014/02/27 17:13:02 | 000,000,120 | ---- | M] () -- C:\Users\paul\AppData\Roaming\WB.CFG
[2014/02/25 09:24:26 | 000,001,151 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2014/02/20 17:22:33 | 000,002,183 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014/02/19 02:05:46 | 000,034,376 | ---- | M] () -- C:\Windows\Launcher.exe
[2014/02/14 23:06:44 | 000,002,200 | -H-- | M] () -- C:\Users\paul\Documents\Default.rdp
[2014/02/10 11:35:42 | 000,273,592 | ---- | M] (Trusteer Ltd.) -- C:\Windows\SysNative\drivers\RapportHades64.sys
[2014/02/10 11:35:40 | 000,316,312 | ---- | M] (Trusteer Ltd.) -- C:\Windows\SysNative\drivers\RapportKE64.sys
[2014/02/02 14:54:32 | 000,001,144 | ---- | M] () -- C:\Users\paul\Desktop\Sketchup - Shortcut.lnk
[2014/02/02 13:44:20 | 000,002,025 | ---- | M] () -- C:\Users\Public\Desktop\SketchUp 8.lnk
[1 C:\Program Files\*.tmp files -> C:\Program Files\*.tmp -> ]

========== Files Created - No Company Name ==========

[2014/03/03 20:34:08 | 000,001,113 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2014/03/03 20:30:33 | 000,001,681 | ---- | C] () -- C:\Windows\SysWow64\${LOGFILE}
[2014/03/03 20:27:48 | 000,034,376 | ---- | C] () -- C:\Windows\Launcher.exe
[2014/03/03 17:55:34 | 000,000,410 | ---- | C] () -- C:\Windows\tasks\PassWidget_wd.job
[2014/03/03 17:55:34 | 000,000,258 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2014/03/03 11:11:14 | 000,002,109 | ---- | C] () -- C:\Users\paul\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
[2014/02/28 17:42:58 | 000,003,615 | ---- | C] () -- C:\Users\paul\Desktop\AdwCleaner (3) - Shortcut.lnk
[2014/02/28 17:30:54 | 000,001,088 | ---- | C] () -- C:\Users\paul\Desktop\Continue Zip Opener Installation.lnk
[2014/02/28 17:30:53 | 000,000,388 | ---- | C] () -- C:\Users\paul\Desktop\FREE Games.url
[2014/02/28 17:30:43 | 000,000,300 | ---- | C] () -- C:\Windows\tasks\Digital Sites.job
[2014/02/25 09:24:26 | 000,001,151 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2014/02/25 09:24:25 | 000,001,163 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2014/02/17 20:40:03 | 000,000,360 | ---- | C] () -- C:\Windows\tasks\HPCeeScheduleForsarah_000.job
[2014/02/13 17:53:44 | 000,385,614 | ---- | C] () -- C:\Windows\SysNative\ApnDatabase.xml
[2014/02/02 14:54:32 | 000,001,144 | ---- | C] () -- C:\Users\paul\Desktop\Sketchup - Shortcut.lnk
[2014/02/02 13:44:20 | 000,002,025 | ---- | C] () -- C:\Users\Public\Desktop\SketchUp 8.lnk
[2014/01/11 17:56:06 | 000,000,005 | ---- | C] () -- C:\Users\paul\AppData\Roaming\WBPU-TTL.DAT
[2014/01/11 17:56:05 | 000,000,120 | ---- | C] () -- C:\Users\paul\AppData\Roaming\WB.CFG
[2013/12/16 09:00:50 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2013/12/16 09:00:50 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2013/12/16 09:00:50 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2013/12/16 09:00:50 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2013/12/16 09:00:50 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2013/09/11 17:01:38 | 000,083,968 | ---- | C] () -- C:\Windows\SysWow64\OEMLicense.dll
[2013/07/10 11:10:37 | 000,000,258 | RHS- | C] () -- C:\Users\paul\ntuser.pol
[2012/08/08 05:18:02 | 000,272,928 | ---- | C] () -- C:\Windows\SysWow64\igvpkrng600.bin
[2012/08/08 05:17:52 | 000,064,512 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
[2012/08/08 05:17:50 | 000,963,388 | ---- | C] () -- C:\Windows\SysWow64\igcodeckrng600.bin
[2012/08/03 22:40:09 | 000,916,510 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012/07/26 08:13:10 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2012/07/26 08:13:09 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2012/07/26 07:21:26 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2012/07/26 01:17:42 | 000,043,520 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2012/07/25 20:37:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2012/07/25 20:28:31 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2012/07/25 20:22:56 | 000,733,840 | ---- | C] () -- C:\Windows\SysWow64\igcodeckrng700.bin
[2012/07/25 20:22:56 | 000,492,340 | ---- | C] () -- C:\Windows\SysWow64\igvpkrng700.bin
[2012/07/25 20:22:54 | 000,982,240 | ---- | C] () -- C:\Windows\SysWow64\igkrng500.bin
[2012/07/25 20:22:54 | 000,439,308 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng500.bin
[2012/07/25 20:22:54 | 000,092,356 | ---- | C] () -- C:\Windows\SysWow64\igfcg500m.bin
[2012/06/02 14:31:19 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2012/04/20 12:59:44 | 000,001,536 | ---- | C] () -- C:\Windows\SysWow64\IusEventLog.dll

========== ZeroAccess Check ==========

[2012/08/24 16:52:35 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/08/02 06:28:20 | 019,758,080 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/08/02 05:08:10 | 017,561,088 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2012/07/26 03:05:38 | 001,004,544 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2012/07/26 03:18:27 | 000,784,896 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2012/07/26 03:07:41 | 000,455,680 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2013/12/09 22:27:20 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\AVAST Software
[2013/12/19 14:55:55 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\National Instruments
[2013/09/23 21:16:35 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\Nico Mak Computing
[2014/02/25 19:12:10 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\Plarium
[2014/03/03 17:56:21 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\ProtectExtension
[2014/03/03 20:50:18 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\SimplyTech
[2013/03/18 22:01:39 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\Synaptics
[2014/03/03 18:00:59 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\systweak
[2014/03/03 20:08:57 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\uTorrent
[2013/03/27 13:26:06 | 000,000,000 | ---D | M] -- C:\Users\paul\AppData\Roaming\WildTangent

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 118 bytes -> C:\ProgramData\Temp:373E1720

< End of report >
  • 0

#8
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
A few minor items that you appear to have picked up yesterday, what programme was installed ?

Warning This fix is only relevant for this system and no other, using on another computer may cause problems

Be advised that when the fix commences it will shut down all running processes and you may lose the desktop and icons, they will return on reboot

Run OTL
  • Under the Custom Scans/Fixes box at the bottom, paste in the following
    Posted Image
:Commands
[CREATERESTOREPOINT]

:OTL
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Search Bar = http://search.certif...C8&st=chrome&q=
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page = http://search.certif...C8&st=chrome&q=
IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.certif...q={searchTerms}
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Search Bar = http://search.certif...C8&st=chrome&q=
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page = http://search.certif...C8&st=chrome&q=
IE - HKCU\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.certif...q={searchTerms}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:13828
FF - prefs.js..browser.search.defaulturl: "http://en.eazel.com/results.php?oid=10&id=F142BDF5D04E4DD08E0CC754A354885E&cat=web&co=&lg=en&q={searchTerms}"
FF - prefs.js..keyword.URL: "http://search.certified-toolbar.com?si=77302&tid=18145&ver=5.7&ts=1393804800000.000000&tguid=77302-18145-1393878429377-F559B327A3D2B5315B62DA74059A7FC8&st=chrome&q="
[2014/03/03 17:55:38 | 000,001,559 | ---- | M] () -- C:\Users\paul\AppData\Roaming\mozilla\firefox\profiles\detmy00y.default\searchplugins\search-with-eazelbar.xml
[2014/03/03 20:29:33 | 000,002,018 | ---- | M] () -- C:\Users\paul\AppData\Roaming\mozilla\firefox\profiles\detmy00y.default\searchplugins\Web Search.xml
[2014/03/03 20:29:34 | 000,000,000 | ---D | M] (HomeTab) -- C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{1d33de57-fc7b-4526-97dc-e6bdbdcbf862}
O2:64bit: - BHO: (HomeTab) - {8b617b00-279e-42ff-beac-1f7a8f41ca13} - C:\Program Files\HomeTab\IE\HomeTab.dll (Simply Tech Ltd.)
O2:64bit: - BHO: (EazelBar Helper) - {FE478DC2-E4AD-4197-8F80-5E456BEBC57F} - C:\Program Files (x86)\EazelBar\Toolbar64.dll File not found
O3:64bit: - HKLM\..\Toolbar: (HomeTab) - {8b617b00-279e-42ff-beac-1f7a8f41ca13} - C:\Program Files\HomeTab\IE\HomeTab.dll (Simply Tech Ltd.)
O3:64bit: - HKLM\..\Toolbar: (EazelBar) - {EBD839AE-B08C-4fb7-859B-F54AF16C159F} - C:\Program Files (x86)\EazelBar\Toolbar64.dll File not found
[2014/03/03 20:29:52 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Local\SwvUpdater
[2014/03/03 17:57:30 | 000,019,544 | ---- | C] (System Speedup) -- C:\Windows\SysNative\roboot64.exe
[2014/03/03 17:57:25 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\systweak
[2014/03/03 17:55:49 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\ProtectExtension
[2014/02/28 17:30:43 | 000,000,300 | ---- | C] () -- C:\Windows\tasks\Digital Sites.job
[2014/03/03 20:28:13 | 000,000,000 | ---D | C] -- C:\Program Files\HomeTab
[2014/03/03 20:27:50 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\SimplyTech
[2014/03/03 18:11:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Uniblue
[2014/03/03 17:58:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Nosibay
[2014/03/03 17:57:35 | 000,000,000 | ---D | C] -- C:\Users\paul\AppData\Roaming\Nosibay

:Commands
[resethosts]
[emptytemp]
[Reboot]
  • Then click the Run Fix button at the top
  • Let the program run unhindered, reboot the PC when it is done
  • Open OTL again and click the Quick Scan button. Post the log it produces in your next reply.

  • 0

#9
peejaygee1

peejaygee1

    Member

  • Topic Starter
  • Member
  • PipPip
  • 27 posts
adobe plug-in




All processes killed
========== COMMANDS ==========
Restore point Set: OTL Restore Point
========== OTL ==========
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search\\Search Bar| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search\\Search Page| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Search\\Search Bar| /E : value set successfully!
HKCU\SOFTWARE\Microsoft\Internet Explorer\Search\\Search Page| /E : value set successfully!
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ not found.
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
Prefs.js: "http://en.eazel.com/...={searchTerms}" removed from browser.search.defaulturl
Prefs.js: "http://search.certif...8&st=chrome&q=" removed from keyword.URL
C:\Users\paul\AppData\Roaming\mozilla\firefox\profiles\detmy00y.default\searchplugins\search-with-eazelbar.xml moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\firefox\profiles\detmy00y.default\searchplugins\Web Search.xml moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{1d33de57-fc7b-4526-97dc-e6bdbdcbf862}\plugins folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{1d33de57-fc7b-4526-97dc-e6bdbdcbf862}\components folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{1d33de57-fc7b-4526-97dc-e6bdbdcbf862}\chrome folder moved successfully.
C:\Users\paul\AppData\Roaming\mozilla\Firefox\Profiles\detmy00y.default\extensions\{1d33de57-fc7b-4526-97dc-e6bdbdcbf862} folder moved successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8b617b00-279e-42ff-beac-1f7a8f41ca13}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8b617b00-279e-42ff-beac-1f7a8f41ca13}\ deleted successfully.
C:\Program Files\HomeTab\IE\HomeTab.dll moved successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FE478DC2-E4AD-4197-8F80-5E456BEBC57F}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE478DC2-E4AD-4197-8F80-5E456BEBC57F}\ deleted successfully.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{8b617b00-279e-42ff-beac-1f7a8f41ca13} deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8b617b00-279e-42ff-beac-1f7a8f41ca13}\ not found.
File C:\Program Files\HomeTab\IE\HomeTab.dll not found.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{EBD839AE-B08C-4fb7-859B-F54AF16C159F} deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EBD839AE-B08C-4fb7-859B-F54AF16C159F}\ deleted successfully.
C:\Users\paul\AppData\Local\SwvUpdater folder moved successfully.
C:\Windows\SysNative\roboot64.exe moved successfully.
C:\Users\paul\AppData\Roaming\systweak\ssd folder moved successfully.
C:\Users\paul\AppData\Roaming\systweak\BeforeUninstall folder moved successfully.
C:\Users\paul\AppData\Roaming\systweak folder moved successfully.
C:\Users\paul\AppData\Roaming\ProtectExtension\protect folder moved successfully.
C:\Users\paul\AppData\Roaming\ProtectExtension folder moved successfully.
C:\Windows\Tasks\Digital Sites.job moved successfully.
C:\Program Files\HomeTab\IE folder moved successfully.
C:\Program Files\HomeTab folder moved successfully.
C:\Users\paul\AppData\Roaming\SimplyTech folder moved successfully.
C:\ProgramData\Uniblue\DriverScanner folder moved successfully.
C:\ProgramData\Uniblue folder moved successfully.
C:\Program Files (x86)\Nosibay folder moved successfully.
C:\Users\paul\AppData\Roaming\Nosibay folder moved successfully.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Guest
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: paul
->Temp folder emptied: 91177491 bytes
->Temporary Internet Files folder emptied: 32252457 bytes
->FireFox cache emptied: 98261798 bytes
->Google Chrome cache emptied: 73548424 bytes
->Flash cache emptied: 13653 bytes

User: Public
->Temp folder emptied: 0 bytes

User: Sarah24
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: sarah_000
->Temp folder emptied: 864441 bytes
->Temporary Internet Files folder emptied: 328 bytes
->FireFox cache emptied: 0 bytes
->Google Chrome cache emptied: 353858096 bytes
->Flash cache emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 2906299 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 128 bytes
RecycleBin emptied: 4372917943 bytes

Total Files Cleaned = 4,793.00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 03042014_113237

Files\Folders moved on Reboot...
C:\Users\paul\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.
C:\Windows\temp\FireFly(201403041008418C0).log moved successfully.
C:\Windows\temp\integratedoffice.exe_c2ruidll(201403041008408C0).log moved successfully.
C:\Windows\temp\integratedoffice.exe_streamserver(201403041008438C0).log moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
  • 0

#10
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
OK thanks for that, how is the computer behaving now ?
  • 0

Advertisements


#11
peejaygee1

peejaygee1

    Member

  • Topic Starter
  • Member
  • PipPip
  • 27 posts
Better, but the are still a few pop-ups and it is freezing.
  • 0

#12
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
OK could you run AdwCleaner again as the adobe plugin came loaded with adware
  • 0

#13
peejaygee1

peejaygee1

    Member

  • Topic Starter
  • Member
  • PipPip
  • 27 posts
# AdwCleaner v3.020 - Report created 04/03/2014 at 13:03:10
# Updated 27/02/2014 by Xplode
# Operating System : Windows 8 (64 bits)
# Username : paul - SARAH
# Running from : C:\Users\paul\Downloads\AdwCleaner (3).exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Program Files (x86)\iRobinHood
[!] Folder Deleted : C:\Users\paul\AppData\Local\Pokki
Folder Deleted : C:\Users\paul\AppData\LocalLow\SimplyTech
Folder Deleted : C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbdagnimlohkpamglloopgfnoiijpmoj
File Deleted : C:\Users\Sarah24\AppData\Roaming\Mozilla\Firefox\Profiles\s1xgld5r.default\searchplugins\Web Search.xml
File Deleted : C:\Users\sarah_000\AppData\Roaming\Mozilla\Firefox\Profiles\cpzivtb2.default\searchplugins\Web Search.xml
File Deleted : C:\Users\paul\AppData\Roaming\Mozilla\Firefox\Profiles\detmy00y.default\user.js
File Deleted : C:\Windows\System32\Tasks\Browser Updater
File Deleted : C:\Windows\System32\Tasks\ProtectedSearch

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\Classes\AllFileSystemObjects\shell\pokki
Key Deleted : HKCU\Software\Classes\Directory\shell\pokki
Key Deleted : HKCU\Software\Classes\Drive\shell\pokki
Key Deleted : HKCU\Software\Classes\lnkfile\shell\pokki
Key Deleted : HKCU\Software\Classes\pokki
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Pokki]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\HomeTab.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\Toolbar.DLL
Key Deleted : HKLM\SOFTWARE\Classes\driverscanner
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.BandObject
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.BandObject.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.ToolbarHelperObject
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.ToolbarHelperObject.1
Key Deleted : HKLM\SOFTWARE\Classes\wtb.NotificationSource
Key Deleted : HKLM\SOFTWARE\Classes\wtb.NotificationSource.1
Key Deleted : HKLM\SOFTWARE\Classes\wtb.SourceSinkImpl
Key Deleted : HKLM\SOFTWARE\Classes\wtb.SourceSinkImpl.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\HomeTab_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\HomeTab_RASMANCS
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3FC27B34-0C19-49DA-875E-1875DDD4A6B2}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7E8A36EA-2501-4ED3-A3C8-CFA9143FB169}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A928E66C-F501-4E66-9953-855C712F93B2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{99ACA0F7-D864-45CB-8C40-FD42A077E7CA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A928E66C-F501-4E66-9953-855C712F93B2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B0E28FA0-DF07-44B6-95CE-48BE26DB9266}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E6B4EE8F-C38E-4994-BE28-229A3F92262C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FCA8936E-403A-4487-A966-70F80F1D5A6A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CFD485F0-96BD-47CD-BB6D-CD7DDA95F102}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A75BE48D-BF58-4A8B-B96C-F9A09DFB9844}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A928E66C-F501-4E66-9953-855C712F93B2}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1C888195-0160-4883-91B7-294C0CE2F277}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{8DA8B89E-0C65-403B-8231-AB22ECFA0687}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{99ACA0F7-D864-45CB-8C40-FD42A077E7CA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{A928E66C-F501-4E66-9953-855C712F93B2}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{B0E28FA0-DF07-44B6-95CE-48BE26DB9266}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E6B4EE8F-C38E-4994-BE28-229A3F92262C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FCA8936E-403A-4487-A966-70F80F1D5A6A}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CFD485F0-96BD-47CD-BB6D-CD7DDA95F102}
Key Deleted : HKCU\Software\HomeTab
Key Deleted : HKCU\Software\Nosibay
Key Deleted : HKCU\Software\Pokki
Key Deleted : HKCU\Software\powerpack
Key Deleted : HKCU\Software\simplytech
Key Deleted : HKCU\Software\systweak
Key Deleted : HKCU\Software\AppDataLow\Software\PassWidget
Key Deleted : HKCU\Software\AppDataLow\Software\simplytech
Key Deleted : HKLM\Software\systweak
Key Deleted : HKLM\Software\Uniblue
Key Deleted : HKLM\Software\Vittalia
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16798

Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [(Default)]

-\\ Mozilla Firefox v27.0.1 (en-US)

[ File : C:\Users\Sarah24\AppData\Roaming\Mozilla\Firefox\Profiles\s1xgld5r.default\prefs.js ]

Line Deleted : user_pref("keyword.URL", "hxxp://search.certified-toolbar.com?si=77302&tid=18145&ver=5.7&ts=1393804800000.000000&tguid=77302-18145-1393878429377-F559B327A3D2B5315B62DA74059A7FC8&st=chrome&q=");
Line Deleted : user_pref("browser.search.defaultenginename", "Web Search");
Line Deleted : user_pref("browser.search.defaultengine", "Web Search");
Line Deleted : user_pref("browser.search.selectedEngine", "Web Search");
Line Deleted : user_pref("browser.search.order.1", "Web Search");

[ File : C:\Users\paul\AppData\Roaming\Mozilla\Firefox\Profiles\detmy00y.default\prefs.js ]

Line Deleted : user_pref("browser.search.defaultengine", "Web Search");
Line Deleted : user_pref("browser.search.order.1", "Web Search");
Line Deleted : user_pref("{EBD839AE-B08C-4fb7-859B-F54AF16C159F}.BrowserSearch", "hxxp://en.eazel.com/results.php?oid=10&id=F142BDF5D04E4DD08E0CC754A354885E&cat=web&co=&lg=en&q={searchTerms}");
Line Deleted : user_pref("{EBD839AE-B08C-4fb7-859B-F54AF16C159F}.Homepage", "hxxp://en.eazel.com?oid=10&id=F142BDF5D04E4DD08E0CC754A354885E");
Line Deleted : user_pref("{EBD839AE-B08C-4fb7-859B-F54AF16C159F}.ToolbarName", "EazelBar");
Line Deleted : user_pref("{EBD839AE-B08C-4fb7-859B-F54AF16C159F}.UpdateURL", "hxxp://media.eazel.com/xmlbar/EazelBar/LatestVersion.xml");

[ File : C:\Users\sarah_000\AppData\Roaming\Mozilla\Firefox\Profiles\cpzivtb2.default\prefs.js ]

Line Deleted : user_pref("keyword.URL", "hxxp://search.certified-toolbar.com?si=77302&tid=18145&ver=5.7&ts=1393804800000.000000&tguid=77302-18145-1393878429377-F559B327A3D2B5315B62DA74059A7FC8&st=chrome&q=");
Line Deleted : user_pref("browser.search.defaultengine", "Web Search");
Line Deleted : user_pref("browser.search.order.1", "Web Search");
Line Deleted : user_pref("browser.search.defaultenginename", "Web Search");
Line Deleted : user_pref("browser.search.selectedEngine", "Web Search");

-\\ Google Chrome v33.0.1750.117

[ File : C:\Users\Sarah24\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted : urls_to_restore_on_startup

[ File : C:\Users\paul\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted : homepage

[ File : C:\Users\sarah_000\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted : urls_to_restore_on_startup

*************************

AdwCleaner[R0].txt - [8294 octets] - [04/03/2014 12:57:18]
AdwCleaner[R5].txt - [37082 octets] - [28/02/2014 18:29:24]
AdwCleaner[S1].txt - [7507 octets] - [04/03/2014 13:03:10]
AdwCleaner[S].txt - [36100 octets] - [28/02/2014 22:33:01]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [7627 octets] ##########
  • 0

#14
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
How is Firefox behaving now ?
  • 0

#15
peejaygee1

peejaygee1

    Member

  • Topic Starter
  • Member
  • PipPip
  • 27 posts
There are still popups.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP