Hello I am sorry I have never said hello.
I would like to keep the windows AV program. unless you know of a better free one. I would like to get rid of Frostwire like I said it all came on here. Internet Helper 1.5 Toolbar was not able to be removed in safe mode
All processes killed
========== COMMANDS ==========
Restore point Set: OTL Restore Point
========== OTL ==========
Process Re-Markable155.exe killed successfully!
No active process named upfst_us_7.exe was found!
No active process named ExtensionUpdaterService.exe was found!
Service Re-Markable stopped successfully!
Service Re-Markable deleted successfully!
C:\Program Files\Re-Markable-soft\Re-Markable155.exe moved successfully.
Error: No service named Web Assistant Updater was found to stop!
Service\Driver key Web Assistant Updater not found.
File C:\Program Files\Web Assistant\ExtensionUpdaterService.exe not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\ deleted successfully.
C:\Program Files\InternetHelper1.5\prxtbInte.dll moved successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{006ee092-9658-4fd6-bd8e-a21a348e59f5}\ not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Bar| /E : value set successfully!
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Page| /E : value set successfully!
HKCU\SOFTWARE\Microsoft\Internet Explorer\Search\\Default_Search_URL| /E : value set successfully!
HKCU\SOFTWARE\Microsoft\Internet Explorer\Search\\SearchAssistant| /E : value set successfully!
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{006ee092-9658-4fd6-bd8e-a21a348e59f5}\ not found.
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride| /E : value set successfully!
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
Prefs.js: {336D0C35-8A85-403a-B9D2-65C292C39087}:2.0.0.469 removed from extensions.enabledAddons
Registry value HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\
[email protected] deleted successfully.
File C:\Program Files\Social Privacy\FF\ not found.
Registry value HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{849d5217-0f07-4490-af96-0ce0b116db63} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{849d5217-0f07-4490-af96-0ce0b116db63}\ not found.
File C:\Program Files\Re-Markable-soft\155.xpi [2014/03/05 12:41:32 | 000,011,416 | ---- | M] not found.
Registry value HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\
[email protected] not found.
File C:\Users\Dawn\AppData\Local\Arcadesafari\
[email protected] not found.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\Plugins folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\modules folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\META-INF folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\lib folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\defaults\preferences folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\defaults folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\skin folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\sl folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\lib folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\core folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\WEATHER\js folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\WEATHER\css folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\WEATHER folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\TWITTER\resources folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\TWITTER\js folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\TWITTER\img folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\TWITTER folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\TESTER_POPUP\js folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\TESTER_POPUP folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\TESTER_EMBEDDED\js folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\TESTER_EMBEDDED folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\TESTER_BCAPI\js folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\TESTER_BCAPI\autoTest\spec folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\TESTER_BCAPI\autoTest\lib\jasmine-1.1.0 folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\TESTER_BCAPI\autoTest\lib folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\TESTER_BCAPI\autoTest folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\TESTER_BCAPI folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\SEARCH_IN_NEW_TAB folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\SEARCH\view\style\rsx folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\SEARCH\view\style folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\SEARCH\view\script folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\SEARCH\view folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\SEARCH\resources folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\SEARCH\js folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\SEARCH\Css folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\SEARCH\buildSettings folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\SEARCH folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\RADIO_PLAYER\js\resources folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\RADIO_PLAYER\js folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\RADIO_PLAYER\css\custom-theme folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\RADIO_PLAYER\css folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\RADIO_PLAYER folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\PRICE_GONG\menu_dlg folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\PRICE_GONG\images folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\PRICE_GONG\css\custom-theme folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\PRICE_GONG\css folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\PRICE_GONG\agreement folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\PRICE_GONG folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\Optimizer\js folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\Optimizer folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\NOTIFICATION\js folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\NOTIFICATION\images\light folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\NOTIFICATION\images\dark folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\NOTIFICATION\images folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\NOTIFICATION\css folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\NOTIFICATION folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\MULTI_RSS\js\resources folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\MULTI_RSS\js folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\MULTI_RSS\img folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\MULTI_RSS\css folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\MULTI_RSS folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\HIGHLIGHTER\js folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\HIGHLIGHTER\css folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\HIGHLIGHTER folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\EMAIL_NOTIFIER\js\plugins folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\EMAIL_NOTIFIER\js folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\EMAIL_NOTIFIER\css folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\EMAIL_NOTIFIER folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\APPLICATION_BUTTON\resources folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\APPLICATION_BUTTON\Js folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\APPLICATION_BUTTON folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa\404 folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\wa folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\ui\menu\js folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\ui\menu\img folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\ui\menu\css folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\ui\menu folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\ui\gf\img folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\ui\gf\css folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\ui\gf folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\ui\gadgetFrame folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\ui\dlg\ftd\images folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\ui\dlg\ftd folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\ui\dlg folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\ui folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\searchProtector\searchProtectorSettingsDialog\images folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\searchProtector\searchProtectorSettingsDialog folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\searchProtector\SearchProtectorBubbleDialog\images folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\searchProtector\SearchProtectorBubbleDialog folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\searchProtector\js folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\searchProtector folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\options\js\resources folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\options\js folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\options\images folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\options\css folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\options folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\myStuffDialogs folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\features\js\resources folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\features\js folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\features folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\api folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\ac\res folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\ac\img folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\ac\css folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\ac folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\aboutBox\js folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\aboutBox\images folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al\aboutBox folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb\al folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content\tb folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201\content folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome\CT3247201 folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\chrome folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d} folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{a018b213-6b46-4791-9298-519020db5737}\chrome\skin folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{a018b213-6b46-4791-9298-519020db5737}\chrome\content\locale folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{a018b213-6b46-4791-9298-519020db5737}\chrome\content folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{a018b213-6b46-4791-9298-519020db5737}\chrome folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{a018b213-6b46-4791-9298-519020db5737} folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\skin folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\locale\en-US folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\locale folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\userCode folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\defaults\preferences folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\defaults folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\ScorpionSaver\tests folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\ScorpionSaver\lib folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\ScorpionSaver\data folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\ScorpionSaver folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\api-utils\lib\windows folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\api-utils\lib\window folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\api-utils\lib\utils folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\api-utils\lib\traits folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\api-utils\lib\tabs folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\api-utils\lib\system folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\api-utils\lib\private-browsing folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\api-utils\lib\l10n folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\api-utils\lib\events folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\api-utils\lib\event folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\api-utils\lib\dom folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\api-utils\lib\content folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\api-utils\lib\addon folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\api-utils\lib folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\api-utils\data folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\api-utils folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\addon-kit\lib folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\addon-kit\data folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources\addon-kit folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\resources folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\locale folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\defaults\preferences folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack\defaults folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\ScorpionSaver@jetpack folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\staged\
[email protected]\content folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\staged\
[email protected] folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\staged\
[email protected]\content folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\staged\
[email protected] folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\staged\
[email protected]\content folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\staged\
[email protected] folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\staged\
[email protected]\content folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\staged\
[email protected] folder moved successfully.
C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\staged folder moved successfully.
Folder C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\ not found.
Folder C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\ not found.
Folder C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\userCode\ not found.
C:\Program Files\Mozilla Firefox\searchplugins\bingober893121.xml moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4efb-9B51-7695ECA05670}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\ not found.
File C:\Program Files\InternetHelper1.5\prxtbInte.dll not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{336D0C35-8A85-403a-B9D2-65C292C39087}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{336D0C35-8A85-403a-B9D2-65C292C39087}\ not found.
File C:\Program Files\Web Assistant\Extension32.dll not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{91FBEA5C-E3C7-42EA-8C2B-B168189AB5BE}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91FBEA5C-E3C7-42EA-8C2B-B168189AB5BE}\ not found.
File C:\Program Files\Social Privacy\sp.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}\ not found.
File C:\Program Files\InternetHelper1.5\prxtbInte.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\10 deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{064B7C36-A156-4233-8D06-921F8A60FB6A} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{064B7C36-A156-4233-8D06-921F8A60FB6A}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{1930E38A-DEEF-4CF4-9BFB-9C4EA3689A9D} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1930E38A-DEEF-4CF4-9BFB-9C4EA3689A9D}\ not found.
File C:\Program Files\InternetHelper1.5\prxtbInte.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\dnsshield not found.
File C:\Program Files\Social Privacy DNS\dnswatch.exe not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\fst_us_7 deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\BackgroundContainer deleted successfully.
C:\Users\Dawn\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll moved successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\upfst_us_7.exe not found.
File C:\Users\Dawn\AppData\Local\fst_us_7\upfst_us_7.exe not found.
Starting removal of ActiveX control {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
C:\Windows\Downloaded Program Files\gp.inf not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_Dlls:C:\PROGRA~1\SearchProtect\SearchProtect\bin\SPVC32Loader.dll deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_Dlls:c:\progra~1\optimi~1\optpro~1.dll deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{3bec90c3-92f6-11e3-8e54-c0cb38bf53b8}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3bec90c3-92f6-11e3-8e54-c0cb38bf53b8}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{3bec90c3-92f6-11e3-8e54-c0cb38bf53b8}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3bec90c3-92f6-11e3-8e54-c0cb38bf53b8}\ not found.
File E:\menu.exe not found.
Folder C:\Users\Dawn\AppData\Local\fst_us_7\ not found.
Folder C:\Program Files\fst_us_7\ not found.
Folder C:\Users\Dawn\AppData\Local\Smartbar\ not found.
C:\Program Files\Re-Markable-soft folder moved successfully.
C:\Program Files\MediaPlayerEnhance folder moved successfully.
C:\Users\Dawn\AppData\Roaming\ValueApps\CH folder moved successfully.
C:\Users\Dawn\AppData\Roaming\ValueApps folder moved successfully.
File C:\Windows\tasks\Arcadesafari.job not found.
C:\Windows\Tasks\PCHelpers1st.job moved successfully.
C:\Windows\Tasks\PCHelpers_period.job moved successfully.
C:\Windows\Tasks\Re-Markable_wd.job moved successfully.
C:\Windows\Tasks\Re-Markable Update.job moved successfully.
C:\Windows\Tasks\MediaPlayerEnhance-updater.job moved successfully.
C:\Windows\Tasks\MediaPlayerEnhance-enabler.job moved successfully.
C:\Windows\Tasks\MediaPlayerEnhance-codedownloader.job moved successfully.
C:\Windows\Tasks\MediaPlayerEnhance-firefoxinstaller.job moved successfully.
C:\Windows\Tasks\MediaPlayerEnhance-validator.job moved successfully.
C:\Users\Dawn\AppData\Roaming\OpenCandy\DC5CBF94AEA047A3BF168A83D9468030 folder moved successfully.
C:\Users\Dawn\AppData\Roaming\OpenCandy folder moved successfully.
Folder C:\Users\Dawn\AppData\Roaming\ValueApps\ not found.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{32056994-0F76-4171-9E0D-B171BF8C08EB} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32056994-0F76-4171-9E0D-B171BF8C08EB}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{359A5C30-ABDA-4261-8E0D-019A77C7B736} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{359A5C30-ABDA-4261-8E0D-019A77C7B736}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3A783A56-85AD-427A-A181-4D4F97B4230A} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3A783A56-85AD-427A-A181-4D4F97B4230A}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{56A15B3A-EA7C-4C2B-BB61-7F5F1C5182E6} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56A15B3A-EA7C-4C2B-BB61-7F5F1C5182E6}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{69E95160-AD4E-4567-B595-FF9C9F3C3D33} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69E95160-AD4E-4567-B595-FF9C9F3C3D33}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{79432B49-F455-45D8-833C-B9E7BB04419C} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{79432B49-F455-45D8-833C-B9E7BB04419C}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{92AACF50-3668-4B17-9A77-7C5EFBC32B2A} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92AACF50-3668-4B17-9A77-7C5EFBC32B2A}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9A203537-1E60-41C4-8378-6A437C85C0AE} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9A203537-1E60-41C4-8378-6A437C85C0AE}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C98FD8B6-AF92-4CFE-AE74-5B3A2020130C} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C98FD8B6-AF92-4CFE-AE74-5B3A2020130C}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DAD6539A-1DEE-4E0C-84F2-6B6CECE198D8} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DAD6539A-1DEE-4E0C-84F2-6B6CECE198D8}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E02D6347-7BAA-41D3-9E8E-4904E801A6FD} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E02D6347-7BAA-41D3-9E8E-4904E801A6FD}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E37CA94E-8636-4F4F-9D87-4250292C5A05} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E37CA94E-8636-4F4F-9D87-4250292C5A05}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E8C719F3-BACA-4BB4-9E34-A2CE2002260E} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E8C719F3-BACA-4BB4-9E34-A2CE2002260E}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A9E3D01B-4CE2-4860-89A7-3DAA62328AEA}C:\program files\bearshare applications\bearshare\bearshare.exe deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A743FA5B-CAEB-4111-9600-6A43E6197AA2}C:\program files\bearshare applications\bearshare\bearshare.exe deleted successfully.
========== FILES ==========
< ipconfig /flushdns /c >Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
C:\Users\Dawn\Downloads\cmd.bat deleted successfully.
C:\Users\Dawn\Downloads\cmd.txt deleted successfully.
File\Folder C:\Users\Dawn\AppData\Local\Arcadesafari not found.
File\Folder C:\Program Files\Re-Markable-soft not found.
File\Folder C:\Users\Dawn\AppData\Local\fst_us_7 not found.
File\Folder C:\Program Files\Web Assistant not found.
File\Folder C:\Program FilesC:\Program Files\Social Privacy not found.
C:\Users\Dawn\AppData\Local\Conduit\CT3247201 folder moved successfully.
C:\Users\Dawn\AppData\Local\Conduit\BackgroundContainer folder moved successfully.
C:\Users\Dawn\AppData\Local\Conduit folder moved successfully.
File\Folder C:\PROGRA~1\SearchProtect not found.
File\Folder c:\progra~1\optimi~1 not found.
File\Folder c:\program files\bearshare applications not found.
< netsh advfirewall reset /c >Ok.
C:\Users\Dawn\Downloads\cmd.bat deleted successfully.
C:\Users\Dawn\Downloads\cmd.txt deleted successfully.
< netsh advfirewall set allprofiles state off /c >Ok.
C:\Users\Dawn\Downloads\cmd.bat deleted successfully.
C:\Users\Dawn\Downloads\cmd.txt deleted successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Dawn
->Temp folder emptied: 723164023 bytes
->Temporary Internet Files folder emptied: 446174575 bytes
->Java cache emptied: 3465028 bytes
->FireFox cache emptied: 174685071 bytes
->Google Chrome cache emptied: 378257842 bytes
->Apple Safari cache emptied: 11897856 bytes
->Flash cache emptied: 933 bytes
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56502 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Guest
->Temp folder emptied: 685515 bytes
->Temporary Internet Files folder emptied: 605708 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 6836009 bytes
User: kaycie
->Temp folder emptied: 273184436 bytes
->Temporary Internet Files folder emptied: 3551107563 bytes
->Java cache emptied: 1393056 bytes
->FireFox cache emptied: 586502789 bytes
->Flash cache emptied: 186101 bytes
User: Mr Morgan
->Temp folder emptied: 8543681 bytes
->Temporary Internet Files folder emptied: 314783284 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 87561056 bytes
->Flash cache emptied: 84709 bytes
User: Public
User: Rodney
->Temp folder emptied: 9279473 bytes
->Temporary Internet Files folder emptied: 711022 bytes
->Google Chrome cache emptied: 336729463 bytes
->Flash cache emptied: 56502 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 403553839 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 1318767143 bytes
Total Files Cleaned = 8,238.00 mb
OTL by OldTimer - Version 3.2.69.0 log created on 03082014_160538
Files\Folders moved on Reboot...
File move failed. C:\Windows\temp\sndappv2.log scheduled to be moved on reboot.
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
# AdwCleaner v3.020 - Report created 08/03/2014 at 18:01:10
# Updated 27/02/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (32 bits)
# Username : Dawn - DAWN-PC
# Running from : C:\Users\Dawn\Downloads\AdwCleaner.exe
# Option : Scan
***** [ Services ] *****
Service Found : ca82e1a5
***** [ Files / Folders ] *****
File Found : C:\END
File Found : C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\searchplugins\Askcom.xml
File Found : C:\Windows\System32\Tasks\BackgroundContainer Startup Task
Folder Found : C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\Extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
Folder Found C:\Program Files\Conduit
Folder Found C:\Program Files\InternetHelper1.5
Folder Found C:\Program Files\Level Quality Watcher
Folder Found C:\Program Files\predm
Folder Found C:\Users\Dawn\AppData\Local\apn
Folder Found C:\Users\Dawn\AppData\Local\PackageAware
Folder Found C:\Users\Dawn\AppData\LocalLow\Conduit
Folder Found C:\Users\Dawn\AppData\LocalLow\InternetHelper1.5
Folder Found C:\Users\Dawn\AppData\LocalLow\searchquband
Folder Found C:\Users\kaycie\AppData\LocalLow\PriceGong
Folder Found C:\Users\Rodney\AppData\Local\SearchProtect
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Found : HKCU\Software\APN PIP
Key Found : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Found : HKCU\Software\AppDataLow\Software\BackgroundContainer
Key Found : HKCU\Software\AppDataLow\Software\Conduit
Key Found : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Found : HKCU\Software\AppDataLow\Software\Crossrider
Key Found : HKCU\Software\AppDataLow\Software\Freecause
Key Found : HKCU\Software\AppDataLow\Software\InternetHelper1.5
Key Found : HKCU\Software\AppDataLow\Software\Scorpion Saver
Key Found : HKCU\Software\AppDataLow\Software\searchqutoolbar
Key Found : HKCU\Software\AppDataLow\Software\SmartBar
Key Found : HKCU\Software\AppDataLow\Toolbar
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\FreeSoftToday
Key Found : HKCU\Software\IM
Key Found : HKCU\Software\ImInstaller
Key Found : HKCU\Software\installedbrowserextensions
Key Found : HKCU\Software\InternetHelper1.5
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{99079A25-328F-4BD4-BE04-00955ACAA0A7}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{99079A25-328F-4BD4-BE04-00955ACAA0A7}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35D-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\SmartBar
Key Found : HKCU\Software\Softonic
Key Found : HKCU\Software\TutoTag
Key Found : HKCU\Software\YahooPartnerToolbar
Key Found : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Found : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Found : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Found : HKLM\Software\Bandoo
Key Found : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Found : HKLM\SOFTWARE\Classes\AppID\{1301A8A5-3DFB-4731-A162-B357D00C9644}
Key Found : HKLM\SOFTWARE\Classes\AppID\{9DC8FA51-B596-4F77-802C-5B295919C205}
Key Found : HKLM\SOFTWARE\Classes\AppID\AdpeakProxy.exe
Key Found : HKLM\SOFTWARE\Classes\AppID\BandooCore.EXE
Key Found : HKLM\SOFTWARE\Classes\BandooCore.BandooCore
Key Found : HKLM\SOFTWARE\Classes\BandooCore.BandooCore.1
Key Found : HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr
Key Found : HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr.1
Key Found : HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr
Key Found : HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr.1
Key Found : HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr
Key Found : HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr.1
Key Found : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220422412250}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{27F69C85-64E1-43CE-98B5-3C9F22FB408E}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3E28F712-0D6C-4EE3-AC8C-8F060F5D7C33}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{533403E2-6E21-4615-9E28-43F4E97E977B}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{6CE321DA-DC11-45C6-A0FC-4E8A7D978ABC}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{6EEBC7FF-67DA-4B90-9251-C2C5696E4B48}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{74137531-80F7-406F-9543-7D11385FA8C8}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{832599B2-55BF-4437-8F3E-030CF5AEB262}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{99079A25-328F-4BD4-BE04-00955ACAA0A7}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{9B7B034B-944A-4261-B487-862F642F7615}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{B1A429DB-FB06-4645-B7C0-0CC405EAD3CD}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{B543EF05-9758-464E-9F37-4C28525B4A4C}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{BB76A90B-2B4C-4378-8506-9A2B6E16943C}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{C3AB94A4-BFD0-4BBA-A331-DE504F07D2DB}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{CF0A6C67-CFD0-40B0-A375-4B9893C2B339}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{DD67706E-819E-4EBD-BF8D-6D6147CC7A49}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{F62A4AF9-58B4-4FEC-89CC-D717A547D8E8}
Key Found : HKLM\SOFTWARE\Classes\CrossriderApp0044150.BHO
Key Found : HKLM\SOFTWARE\Classes\CrossriderApp0044150.BHO.1
Key Found : HKLM\SOFTWARE\Classes\CrossriderApp0044150.Sandbox
Key Found : HKLM\SOFTWARE\Classes\CrossriderApp0044150.Sandbox.1
Key Found : HKLM\SOFTWARE\Classes\iesmartbar.bandobjectattribute
Key Found : HKLM\SOFTWARE\Classes\iesmartbar.bho
Key Found : HKLM\SOFTWARE\Classes\iesmartbar.dockingpanel
Key Found : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbar
Key Found : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbarbandobject
Key Found : HKLM\SOFTWARE\Classes\iesmartbar.smartbardisplaystate
Key Found : HKLM\SOFTWARE\Classes\iesmartbar.smartbarmenuform
Key Found : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : HKLM\SOFTWARE\Classes\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}
Key Found : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Found : HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Found : HKLM\SOFTWARE\Classes\Interface\{477F210A-2A86-4666-9C4B-1189634D2C84}
Key Found : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550455415550}
Key Found : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660466416650}
Key Found : HKLM\SOFTWARE\Classes\Interface\{6F43FA77-C18F-4D0C-9C7E-958876FE2061}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Found : HKLM\SOFTWARE\Classes\Interface\{DF948646-8BF4-450E-A059-CF8A4E0FE2BE}
Key Found : HKLM\SOFTWARE\Classes\Interface\{E96B49B0-E11F-48FC-984A-EEC29A4F57E1}
Key Found : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{FF871E51-2655-4D06-AED5-745962A96B32}
Key Found : HKLM\SOFTWARE\Classes\PCProxy.DataContainer
Key Found : HKLM\SOFTWARE\Classes\speedupmypc
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT3063386
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT3247201
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440444414450}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{DCABB943-792E-44C4-9029-ECBEE6265AF9}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Found : HKLM\Software\Conduit
Key Found : HKLM\Software\InternetHelper1.5
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1EA0DF4A-F458-45F3-BA45-061995A29CB1}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{424624F4-C5DD-4E1D-BDD0-1E9C9B7799CC}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{429E0C87-C956-45BE-B453-FDF0CB2A4CE0}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F000001-DB8E-F89C-2FEC-49BF726F8C12}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C8A3CA5-889E-4554-BEEC-EC0876E4E96A}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9189560-573A-4FDE-B055-AE7B0F4CF080}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\Searchqu Toolbar uninstall_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\Searchqu Toolbar uninstall_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_safari_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_safari_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_teamspeak[1]_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_teamspeak[1]_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\speedupmypc_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\speedupmypc_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\BackgroundContainer Startup Task
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DD12ED2F-EFBB-41BD-A251-5215ABD36D89}
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DD12ED2F-EFBB-41BD-A251-5215ABD36D89}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{CF0A6C67-CFD0-40B0-A375-4B9893C2B339}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F9E44926-2497-46F3-8A25-928136AC079E}
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InternetHelper1.5 Toolbar
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PricePeep
Key Found : HKLM\Software\PIP
Key Found : HKLM\Software\Scorpion Saver
Key Found : HKLM\Software\SearchProtect
Key Found : HKLM\Software\Tutorials
Key Found : HKLM\Software\Uniblue
Key Found : HKLM\Software\Web Assistant
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Value Found : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{336D0C35-8A85-403A-B9D2-65C292C39087}]
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16798
Setting Found : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default] - hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbQlzfY2uPTYeQjAjEDkq4w6O7BEwWot70sldsFqghGWL_tj4X1cDclTWlWKQqIqm4F6MBE4RNcEtlTblIbQZXSKyivfciPPhJE2cigfiiRgxHtyJFo-DuvbdbgvX3SPIWFY0yjKXSfKOHxUrJIUlNz8rKXzD4kk1lcdql-lbwH4pAryvQ,,&q={searchTerms}
Setting Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default] - hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbQlzfY2uPTYeQjAjEDkq4w6O7BEwWot70sldsFqghGWL_tj4X1cDclTWlWKQqIqm4F6MBE4RNcEtlTblIbQZXSKyivfciPPhJE2cigfiiRgxHtyJFo-DuvbdbgvX3SPIWFY0yjKXSfKOHxUrJIUlNz8rKXzD4kk1lcdql-lbwH4pAryug,,&q={searchTerms}
-\\ Mozilla Firefox v
[ File : C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\prefs.js ]
Line Found : user_pref("browser.search.defaultengine", "Ask.com");
Line Found : user_pref("browser.search.order.1", "Ask.com");
Line Found : user_pref("extensions.asktb.InstallDir", "C:\\Program Files\\Ask.com\\");
Line Found : user_pref("extensions.asktb.abar-war-regex", "conduit\\.com");
Line Found : user_pref("extensions.asktb.abar-war-timeout", "4000");
Line Found : user_pref("extensions.asktb.apn_dbr", "cr_17.0.963.56");
Line Found : user_pref("extensions.asktb.autofill-competitor-query-enabled", true);
Line Found : user_pref("extensions.asktb.cbid", "FM");
Line Found : user_pref("extensions.asktb.config-updated", false);
Line Found : user_pref("extensions.asktb.cr-o", "14193cr");
Line Found : user_pref("extensions.asktb.crumb", "2012.02.25+11.28.14-toolbar014iad-US-Q2hpY2FnbyxJTCxVbml0ZWQgU3RhdGVz");
Line Found : user_pref("extensions.asktb.default-channel-url-mask", "hxxp://www.ask.com/web?q={query}&o={o}&l={l}&qsrc={qsrc}");
Line Found : user_pref("extensions.asktb.displaybehavior", "");
Line Found : user_pref("extensions.asktb.displaytext", "");
Line Found : user_pref("extensions.asktb.dtid", "TES002U2US");
Line Found : user_pref("extensions.asktb.dyn-weather-do-locid-lookup-weatherWidget", false);
Line Found : user_pref("extensions.asktb.dyn-weather-locid-weatherWidget", "USIL0225");
Line Found : user_pref("extensions.asktb.dyn-weather-tempunit-weatherWidget", "F");
Line Found : user_pref("extensions.asktb.ff-original-keyword-url", "");
Line Found : user_pref("extensions.asktb.fresh-install", false);
Line Found : user_pref("extensions.asktb.guid", "53c5d626-21b5-4469-a059-f036c24c2ca2");
Line Found : user_pref("extensions.asktb.hpr", "YES");
Line Found : user_pref("extensions.asktb.hxxp-header-whitelist-hosts", "[\"static-dev.en.dev.ask.com\", \"ask.com\", \"www.facebook.com\", \"www.playsushi.com\", \"WWW.google.com\", \"hxxps://websearch.ask.com\", [...]
Line Found : user_pref("extensions.asktb.if", "first");
Line Found : user_pref("extensions.asktb.l", "dis");
Line Found : user_pref("extensions.asktb.last-config-req", "1348990420828");
Line Found : user_pref("extensions.asktb.last-search-timestamp", "1330490524866");
Line Found : user_pref("extensions.asktb.locale", "en_US");
Line Found : user_pref("extensions.asktb.location", "Chicago,IL,United States");
Line Found : user_pref("extensions.asktb.lstation", "");
Line Found : user_pref("extensions.asktb.new-tab-enabled", true);
Line Found : user_pref("extensions.asktb.news-native-on", true);
Line Found : user_pref("extensions.asktb.o", "14193");
Line Found : user_pref("extensions.asktb.overlay-reloaded-using-restart", true);
Line Found : user_pref("extensions.asktb.pstate", "");
Line Found : user_pref("extensions.asktb.qsrc", "2871");
Line Found : user_pref("extensions.asktb.r", "2");
Line Found : user_pref("extensions.asktb.sa", "YES");
Line Found : user_pref("extensions.asktb.saguid", "75E09092-9B73-43C3-A9A7-05BA9FF9D409");
Line Found : user_pref("extensions.asktb.search-history-queries", "ww2||paul shipman in world war 2");
Line Found : user_pref("extensions.asktb.search-plugin-suggestions-url", "hxxp://ss.websearch.ask.com/query?qsrc=2922&li=ff&sstype=prefix&q={searchTerms}");
Line Found : user_pref("extensions.asktb.search-suggestions-enabled", true);
Line Found : user_pref("extensions.asktb.silent-upgrade", true);
Line Found : user_pref("extensions.asktb.silent-upgrade-from-pre-newtabs-build", false);
Line Found : user_pref("extensions.asktb.socialmini-first", true);
Line Found : user_pref("extensions.asktb.socialmini-interval", "1200000");
Line Found : user_pref("extensions.asktb.socialmini-max-char-ticker", "33");
Line Found : user_pref("extensions.asktb.socialmini-max-items", "30");
Line Found : user_pref("extensions.asktb.socialmini-native-on", true);
Line Found : user_pref("extensions.asktb.socialmini-speed", "10000");
Line Found : user_pref("extensions.asktb.socialmini-transition-first-open", false);
Line Found : user_pref("extensions.asktb.themeid", "");
Line Found : user_pref("extensions.asktb.timeinstalled", "2/25/2012 1:29:00 PM");
Line Found : user_pref("extensions.asktb.to", "");
Line Found : user_pref("extensions.asktb.v", "3.15.4.100013");
Line Found : user_pref("extensions.asktb.version", "5.15.4.23821");
Line Found : user_pref("extensions.asktb.volume", "");
Line Found : user_pref("extensions.enabledAddons", "{635abd67-4fe9-1b23-4f01-e679fa7484c1}:2.4.8.20120412011105,"",
[email protected]:3.15.4.100013,{972ce4c6-7e08-4474-a285-3208198ce6fd}:6.0.2");
Line Found : user_pref("keyword.URL", "hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=FWV5&o=14193&locale=en_US&apn_uid=53c5d626-21b5-4469-a059-f036c24c2ca2&apn_ptnrs=FM&apn_sauid=75E09092-9B73-43C3-A9A7-05[...]
Line Found : user_pref("{336D0C35-8A85-403a-B9D2-65C292C39087}.ScriptData_WSG_whiteList", "{\"search.babylon.com\":\"q\",\"search.sweetim.com\":\"q\",\"search.imesh.net\":\"q\",\"www.search-results.com\":\"q\",\"h[...]
Line Found : user_pref("CT3247201.autoDisableScopes", 0);
[ File : C:\Users\kaycie\AppData\Roaming\Mozilla\Firefox\Profiles\2we4w1m6.default\prefs.js ]
Line Found : user_pref("browser.search.defaultengine", "Ask.com");
Line Found : user_pref("browser.search.defaultenginename", "Ask.com");
Line Found : user_pref("browser.search.order.1", "Ask.com");
Line Found : user_pref("browser.search.selectedEngine", "Ask.com");
Line Found : user_pref("browser.startup.homepage", "hxxp://www.ask.com/?l=dis&o=14196");
Line Found : user_pref("extensions.asktb.ff-original-keyword-url", "");
Line Found : user_pref("extensions.gamesbar.msnus.config.partner_logo", "iVBORw0KGgoAAAANSUhEUgAAAF8AAAAYCAYAAACcESEhAAAABGdBTUEAALGOfPtRkwAAACBjSFJNAACHDwAAjA8AAP1SAACBQAAAfXkAAOmLAAA85QAAGcxzPIV3AAAKOWlDQ1BQaG90[...]
Line Found : user_pref("extensions.gamesbar.msnus.homepage", "hxxp://www.ask.com/?l=dis&o=14196");
-\\ Google Chrome v32.0.1700.76
[ File : C:\Users\Dawn\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Found : search_url
Found : search_url
[ File : C:\Users\Rodney\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Found : urls_to_restore_on_startup
Found : homepage
Found : urls_to_restore_on_startup
Found : homepage
Found : urls_to_restore_on_startup
Found : urls_to_restore_on_startup
Found : urls_to_restore_on_startup
Found : urls_to_restore_on_startup
Found : urls_to_restore_on_startup
*************************
AdwCleaner[R0].txt - [20687 octets] - [08/03/2014 18:01:10]
########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [20748 octets] ##########
OTL logfile created on: 3/8/2014 6:09:26 PM - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Dawn\Desktop
Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16798)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.87 Gb Total Physical Memory | 1.80 Gb Available Physical Memory | 62.96% Memory free
5.73 Gb Paging File | 4.40 Gb Available in Paging File | 76.87% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 223.55 Gb Total Space | 155.48 Gb Free Space | 69.55% Space Free | Partition Type: NTFS
Computer Name: DAWN-PC | User Name: Dawn | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ========== PRC - [2014/03/07 09:56:46 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Dawn\Desktop\OTL.exe
PRC - [2014/01/22 12:19:38 | 003,788,816 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgidsagent.exe
PRC - [2014/01/22 12:17:36 | 004,962,320 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgui.exe
PRC - [2013/12/18 12:42:32 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013/12/06 08:56:38 | 000,223,112 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Update\1.3.22.3\GoogleCrashHandler.exe
PRC - [2013/12/05 12:48:12 | 000,680,976 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgemcx.exe
PRC - [2013/11/25 22:03:56 | 000,591,888 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgcsrvx.exe
PRC - [2013/11/25 22:00:24 | 000,892,944 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgnsx.exe
PRC - [2013/11/13 22:03:10 | 000,729,616 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgrsx.exe
PRC - [2013/11/13 09:37:44 | 000,166,072 | ---- | M] (Local Weather LLC) -- C:\Users\Dawn\AppData\Local\WeatherAlerts\WeatherAlerts.exe
PRC - [2013/10/07 13:50:28 | 000,120,096 | ---- | M] (Sendori, Inc.) -- C:\Program Files\Sendori\SendoriSvc.exe
PRC - [2013/10/07 13:50:28 | 000,083,232 | ---- | M] (Sendori, Inc.) -- C:\Program Files\Sendori\SendoriTray.exe
PRC - [2013/10/07 13:50:24 | 003,623,200 | ---- | M] (Sendori) -- C:\Program Files\Sendori\sndappv2.exe
PRC - [2013/10/07 13:50:24 | 000,022,304 | ---- | M] (sendori) -- C:\Program Files\Sendori\Sendori.Service.exe
PRC - [2013/09/24 01:33:08 | 000,348,008 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgwdsvc.exe
PRC - [2013/08/01 18:52:57 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
PRC - [2012/11/22 20:48:41 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2011/04/27 13:39:26 | 000,208,944 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe
PRC - [2011/02/24 23:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2011/01/07 01:16:55 | 005,249,024 | ---- | M] (Dell Inc.) -- C:\Program Files\Dell\DW WLAN Card\WLTRAY.EXE
PRC - [2011/01/07 01:16:55 | 000,040,960 | ---- | M] (Dell Inc.) -- C:\Program Files\Dell\DW WLAN Card\WLTRYSVC.EXE
PRC - [2011/01/07 01:16:53 | 004,539,392 | ---- | M] (Dell Inc.) -- C:\Program Files\Dell\DW WLAN Card\BCMWLTRY.EXE
PRC - [2010/10/01 09:48:18 | 000,727,664 | ---- | M] () -- C:\Program Files\STMicroelectronics\AccelerometerP11\FF_Protection.exe
PRC - [2010/08/19 18:06:56 | 000,487,562 | ---- | M] (Creative Technology Ltd) -- C:\Program Files\Dell Webcam\Dell Webcam Central\WebcamDell2.exe
PRC - [2010/04/07 06:35:04 | 000,495,708 | ---- | M] (IDT, Inc.) -- C:\Program Files\IDT\WDM\sttray.exe
PRC - [2010/04/07 06:35:04 | 000,229,458 | ---- | M] (IDT, Inc.) -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_f39a6924a795ad94\stacsv.exe
PRC - [2010/01/15 10:26:52 | 003,873,648 | ---- | M] (Dell Inc.) -- C:\Program Files\Dell\QuickSet\quickset.exe
PRC - [2009/11/04 15:45:46 | 002,320,920 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel® Management Engine Components\UNS\UNS.exe
PRC - [2009/11/04 15:45:44 | 000,268,824 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel® Management Engine Components\LMS\LMS.exe
PRC - [2009/10/20 09:11:58 | 002,364,704 | ---- | M] (Broadcom Corporation.) -- c:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
PRC - [2009/10/20 09:11:58 | 000,795,936 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
PRC - [2009/10/20 09:11:58 | 000,595,232 | ---- | M] (Broadcom Corporation.) -- c:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
PRC - [2009/07/13 19:14:28 | 000,646,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\osk.exe
PRC - [2009/03/03 04:43:08 | 000,081,920 | ---- | M] (Andrea Electronics Corporation) -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_f39a6924a795ad94\AEstSrv.exe
========== Modules (No Company Name) ========== MOD - [2014/02/13 03:41:14 | 011,922,944 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\4b1795df6372b251625f958595e08d3d\System.Web.ni.dll
MOD - [2014/02/13 03:40:46 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\59312674865dc2a19c27f9f460b1673b\System.Runtime.Remoting.ni.dll
MOD - [2014/02/13 03:39:03 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\8bc548587e91ecf0552a40e47bbf99cc\System.Windows.Forms.ni.dll
MOD - [2014/02/13 03:38:35 | 001,593,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\5c24d3b0041ebf4f48a93615b9fa3de9\System.Drawing.ni.dll
MOD - [2014/02/13 03:37:24 | 005,464,064 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\217ece46920546d718414291d463bb1c\System.Xml.ni.dll
MOD - [2014/02/13 03:37:10 | 000,978,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\f96e07044730442ee1f3dd90db984e6a\System.Configuration.ni.dll
MOD - [2014/02/13 03:37:07 | 007,989,760 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\b3a78269847005365001c33870cd121f\System.ni.dll
MOD - [2014/02/13 03:36:48 | 011,499,520 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\ede2c6c842840e009f01bcc74fa4c457\mscorlib.ni.dll
MOD - [2010/10/01 09:48:18 | 000,727,664 | ---- | M] () -- C:\Program Files\STMicroelectronics\AccelerometerP11\FF_Protection.exe
MOD - [2009/10/20 09:12:10 | 000,132,384 | ---- | M] () -- C:\Program Files\WIDCOMM\Bluetooth Software\BTKeyInd.dll
========== Services (SafeList) ========== SRV - [2014/03/06 19:18:25 | 000,257,712 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014/01/22 12:19:38 | 003,788,816 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2014\avgidsagent.exe -- (AVGIDSAgent)
SRV - [2013/12/18 12:42:32 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013/10/07 13:50:28 | 000,120,096 | ---- | M] (Sendori, Inc.) [Auto | Running] -- C:\Program Files\Sendori\SendoriSvc.exe -- (Application Sendori)
SRV - [2013/10/07 13:50:24 | 003,623,200 | ---- | M] (Sendori) [Auto | Running] -- C:\Program Files\Sendori\sndappv2.exe -- (sndappv2)
SRV - [2013/10/07 13:50:24 | 000,022,304 | ---- | M] (sendori) [Auto | Running] -- C:\Program Files\Sendori\Sendori.Service.exe -- (Service Sendori)
SRV - [2013/09/24 01:33:08 | 000,348,008 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2014\avgwdsvc.exe -- (avgwd)
SRV - [2013/05/26 22:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2011/04/27 13:39:26 | 000,208,944 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe -- (NisSrv)
SRV - [2011/04/27 13:39:26 | 000,011,736 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe -- (MsMpSvc)
SRV - [2011/01/27 03:00:24 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2011/01/07 01:16:55 | 000,040,960 | ---- | M] (Dell Inc.) [Auto | Running] -- C:\Program Files\Dell\DW WLAN Card\WLTRYSVC.EXE -- (wltrysvc)
SRV - [2010/04/07 06:35:04 | 000,229,458 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_f39a6924a795ad94\stacsv.exe -- (STacSV)
SRV - [2009/11/04 15:45:46 | 002,320,920 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel® Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2009/11/04 15:45:44 | 000,268,824 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel® Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2009/10/20 09:11:58 | 000,595,232 | ---- | M] (Broadcom Corporation.) [Auto | Running] -- c:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe -- (btwdins)
SRV - [2009/07/13 19:16:15 | 000,016,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\StorSvc.dll -- (StorSvc)
SRV - [2009/07/13 19:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009/07/13 19:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc)
SRV - [2009/03/03 04:43:08 | 000,081,920 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_f39a6924a795ad94\AEstSrv.exe -- (AESTFilters)
========== Driver Services (SafeList) ========== DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\lmimirr.sys -- (lmimirr)
DRV - [2014/01/19 21:46:54 | 000,022,808 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgidsshimx.sys -- (AVGIDSShim)
DRV - [2013/11/25 21:56:22 | 000,210,712 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\System32\drivers\avgidsdriverx.sys -- (AVGIDSDriver)
DRV - [2013/11/25 21:56:22 | 000,149,272 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\System32\drivers\avgidshx.sys -- (AVGIDSHX)
DRV - [2013/11/25 21:49:18 | 000,120,600 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\System32\drivers\avgdiskx.sys -- (Avgdiskx)
DRV - [2013/10/31 23:00:28 | 000,176,952 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\System32\drivers\avgldx86.sys -- (Avgldx86)
DRV - [2013/10/31 22:30:08 | 000,222,520 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\System32\drivers\avglogx.sys -- (Avglogx)
DRV - [2013/10/01 00:49:38 | 000,102,712 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\System32\drivers\avgmfx86.sys -- (Avgmfx86)
DRV - [2013/09/10 00:43:20 | 000,027,448 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\System32\drivers\avgrkx86.sys -- (Avgrkx86)
DRV - [2013/08/01 16:08:52 | 000,193,848 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgtdix.sys -- (Avgtdix)
DRV - [2011/04/27 13:25:24 | 000,065,024 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\NisDrvWFP.sys -- (NisDrv)
DRV - [2011/04/18 11:18:50 | 000,043,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\MpNWMon.sys -- (MpNWMon)
DRV - [2011/01/07 01:16:53 | 000,018,424 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\bcm42rly.sys -- (BCM42RLY)
DRV - [2010/11/20 06:30:15 | 000,175,360 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmbus.sys -- (vmbus)
DRV - [2010/11/20 06:30:15 | 000,040,704 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmstorfl.sys -- (storflt)
DRV - [2010/11/20 06:30:15 | 000,028,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\storvsc.sys -- (storvsc)
DRV - [2010/11/20 04:24:41 | 000,052,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2010/11/20 03:59:44 | 000,035,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb)
DRV - [2010/11/20 03:14:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VMBusHID.sys -- (VMBusHID)
DRV - [2010/11/20 03:14:41 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vms3cap.sys -- (s3cap)
DRV - [2010/09/29 10:38:00 | 000,043,888 | ---- | M] (ST Microelectronics) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Accelern.sys -- (Acceler)
DRV - [2010/08/30 21:15:56 | 000,247,808 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\IntcDAud.sys -- (IntcDAud)
DRV - [2010/08/20 11:04:38 | 000,017,648 | ---- | M] (ST Microelectronics) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\stdcfltn.sys -- (stdcfltn)
DRV - [2010/08/12 10:50:20 | 000,146,528 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CtClsFlt.sys -- (CtClsFlt)
DRV - [2010/07/30 17:35:30 | 000,021,744 | ---- | M] (PC-Doctor, Inc.) [Kernel | On_Demand | Running] -- c:\Program Files\Dell Support Center\pcdsrvc.pkms -- (PCDSRVC{E9D79540-57D5953E-06020101}_0)
DRV - [2010/07/01 17:52:18 | 000,044,432 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\dc3d.sys -- (dc3d)
DRV - [2010/04/07 06:35:04 | 000,423,936 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\stwrt.sys -- (STHDA)
DRV - [2010/02/27 09:31:24 | 000,132,480 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Impcd.sys -- (Impcd)
DRV - [2009/09/17 14:54:14 | 000,041,088 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HECI.sys -- (HECI)
DRV - [2009/08/10 13:06:08 | 000,171,520 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV - [2009/07/13 17:52:10 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\vwifimp.sys -- (vwifimp)
DRV - [2009/05/28 10:48:20 | 000,134,144 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\CtAudDrv.sys -- (CtAudDrv)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-2121746328-1834018783-3590070646-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://g.msn.com/USSMB/1IE - HKU\S-1-5-21-2121746328-1834018783-3590070646-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKU\S-1-5-21-2121746328-1834018783-3590070646-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKU\S-1-5-21-2121746328-1834018783-3590070646-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://google.com/IE - HKU\S-1-5-21-2121746328-1834018783-3590070646-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
IE - HKU\S-1-5-21-2121746328-1834018783-3590070646-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
IE - HKU\S-1-5-21-2121746328-1834018783-3590070646-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-2121746328-1834018783-3590070646-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ========== FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "bing"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.selectedEngine: "bing"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "
http://start.msn.ipl...lay.com/?o=shp"FF - prefs.js..extensions.enabledAddons: {635abd67-4fe9-1b23-4f01-e679fa7484c1}:2.4.8.20120412011105
FF - prefs.js..extensions.enabledAddons:
FF - prefs.js..extensions.enabledAddons:
[email protected]:3.15.4.100013
FF - prefs.js..keyword.URL: "
http://websearch.ask...TES002U2US&&q="FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_154.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@oberon-media.com/ONCAdapter: C:\Program Files\Common Files\Oberon Media\NCAdapter\1.0.0.8\npapicomadapter.dll (Oberon-Media )
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Dawn\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{336D0C35-8A85-403a-B9D2-65C292C39087}: C:\Program Files\Web Assistant\Firefox
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\
[email protected]: C:\Program Files\Hewlett-Packard\SmartPrint\QPExtension [2014/02/11 21:11:07 | 000,000,000 | ---D | M]
[2011/04/21 17:44:09 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Dawn\AppData\Roaming\Mozilla\Extensions
[2014/03/08 16:07:53 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions
[2012/05/19 07:02:48 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2012/09/30 01:33:40 | 000,002,573 | ---- | M] () -- C:\Users\Dawn\AppData\Roaming\Mozilla\Firefox\Profiles\wditxiun.default\searchplugins\askcom.xml
[2012/09/30 13:19:32 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2011/06/25 00:47:15 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
[2011/11/05 13:42:21 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
[2011/10/03 03:06:04 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
========== Chrome ========== CHR - default_search_provider: Web (Enabled)
CHR - default_search_provider: search_url =
http://feed.helperba...q={searchTerms}CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms},
CHR - Extension: IcouCOnnverTErr = C:\Users\Dawn\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdmnamhfocgihbcmmdailjknfehamddf\2.2_0\
CHR - Extension: Google Wallet = C:\Users\Dawn\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
O1 HOSTS File: ([2009/06/10 15:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-2121746328-1834018783-3590070646-1000\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O3 - HKU\S-1-5-21-2121746328-1834018783-3590070646-1000\..\Toolbar\WebBrowser: (no name) - {EEE6C35B-6118-11DC-9C72-001320C79847} - No CLSID value found.
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [AVG_UI] C:\Program Files\AVG\AVG2014\avgui.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [Broadcom Wireless Manager UI] C:\Program Files\Dell\DW WLAN Card\WLTRAY.EXE (Dell Inc.)
O4 - HKLM..\Run: [CCE] C:\Users\Dawn\Downloads\cce_2.5.242177.201_x32\CCE\CCE.exe (COMODO)
O4 - HKLM..\Run: [Dell Webcam Central] C:\Program Files\Dell Webcam\Dell Webcam Central\WebcamDell2.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [FreeFallProtection] C:\Program Files\STMicroelectronics\AccelerometerP11\FF_Protection.exe ()
O4 - HKLM..\Run: [Logitech Download Assistant] C:\Windows\System32\LogiLDA.dll (Logitech, Inc.)
O4 - HKLM..\Run: [QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe (Dell Inc.)
O4 - HKLM..\Run: [Sendori Tray] C:\Program Files\Sendori\SendoriTray.exe (Sendori, Inc.)
O4 - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe (IDT, Inc.)
O4 - HKU\S-1-5-21-2121746328-1834018783-3590070646-1000..\Run: [GoogleChromeAutoLaunch_58B6F8ECAF76F56F8565A106D625FE62] C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)
O4 - HKU\.DEFAULT..\RunOnce: [osk.exe] C:\Windows\System32\osk.exe (Microsoft Corporation)
O4 - HKU\S-1-5-18..\RunOnce: [osk.exe] C:\Windows\System32\osk.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
O4 - Startup: C:\Users\Dawn\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Weather Alerts.lnk = C:\Users\Dawn\AppData\Local\WeatherAlerts\WeatherAlerts.exe (Local Weather LLC)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\S-1-5-21-2121746328-1834018783-3590070646-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-2121746328-1834018783-3590070646-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: LogonHoursAction = 2
O7 - HKU\S-1-5-21-2121746328-1834018783-3590070646-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DontDisplayLogonHoursWarnings = 1
O8 - Extra context menu item: Send image to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Send page to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\SmartPrint\smartprintsetup.exe (Hewlett-Packard)
O9 - Extra 'Tools' menuitem : HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\SmartPrint\smartprintsetup.exe (Hewlett-Packard)
O9 - Extra Button: @c:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @c:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\System32\Sendori.dll (Sendori)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\System32\Sendori.dll (Sendori)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\System32\Sendori.dll (Sendori)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\System32\Sendori.dll (Sendori)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\Windows\System32\Sendori.dll (Sendori)
O13 - gopher Prefix: missing
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9}
https://secure.logme...trl.cab?lmi=100 (Performance Viewer Activex Control)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 205.171.2.25
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{CF8C5FCB-0DA7-4981-B335-7C705BBC33A9}: DhcpNameServer = 192.168.0.1 205.171.2.65
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E6040A3D-4211-49D4-A601-18EDF38ECC76}: DhcpNameServer = 192.168.0.1 205.171.2.25
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/10 15:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found
========== Files/Folders - Created Within 30 Days ========== [2014/03/08 18:00:05 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014/03/08 16:05:38 | 000,000,000 | ---D | C] -- C:\_OTL
[2014/03/08 11:02:56 | 000,000,000 | ---D | C] -- C:\Program Files\predm
[2014/03/07 15:11:32 | 000,000,000 | ---D | C] -- C:\Users\Dawn\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RMPrepUSB
[2014/03/07 15:11:29 | 000,000,000 | ---D | C] -- C:\Program Files\RMPrepUSB
[2014/03/07 13:14:59 | 000,000,000 | ---D | C] -- C:\Users\Dawn\Documents\Bluetooth Exchange Folder
[2014/03/07 09:56:19 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Dawn\Desktop\OTL.exe
[2014/03/07 03:13:08 | 000,000,000 | ---D | C] -- C:\CCE_Quarantine
[2014/03/06 19:18:09 | 017,917,104 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerInstaller.exe
[2014/03/05 19:12:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle
[2014/03/05 19:08:37 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2014/03/05 19:08:32 | 000,264,616 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\javaws.exe
[2014/03/05 19:07:42 | 000,175,016 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\javaw.exe
[2014/03/05 19:07:42 | 000,174,504 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\java.exe
[2014/03/05 19:07:42 | 000,094,632 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\WindowsAccessBridge.dll
[2014/03/05 19:07:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
[2014/03/05 12:57:44 | 000,000,000 | ---D | C] -- C:\Users\Dawn\AppData\Roaming\AVG2014
[2014/03/05 12:57:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
[2014/03/05 12:56:41 | 000,000,000 | -H-D | C] -- C:\$AVG
[2014/03/05 12:56:40 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG2014
[2014/03/05 12:54:58 | 000,000,000 | ---D | C] -- C:\Program Files\AVG
[2014/03/05 12:43:43 | 000,000,000 | ---D | C] -- C:\Program Files\LPT
[2014/03/05 12:43:34 | 000,000,000 | ---D | C] -- C:\Users\Dawn\AppData\Local\Avg2014
[2014/03/05 11:24:40 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMPhoto.dll
[2014/03/05 11:23:57 | 003,419,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d2d1.dll
[2014/03/05 11:23:57 | 001,987,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10warp.dll
[2014/03/05 10:17:35 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2014/03/05 10:07:42 | 000,000,000 | ---D | C] -- C:\Downloads
[2014/03/05 09:33:35 | 000,745,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MsSpellCheckingFacility.exe
[2014/03/05 09:33:35 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\elshyph.dll
[2014/03/05 09:33:34 | 002,877,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
[2014/03/05 09:33:34 | 002,706,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2014/03/05 09:33:34 | 001,441,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
[2014/03/05 09:33:34 | 001,400,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dat
[2014/03/05 09:33:34 | 000,719,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtmlmedia.dll
[2014/03/05 09:33:34 | 000,629,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll
[2014/03/05 09:33:34 | 000,493,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2014/03/05 09:33:34 | 000,391,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2014/03/05 09:33:34 | 000,361,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2014/03/05 09:33:34 | 000,357,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtmsft.dll
[2014/03/05 09:33:34 | 000,242,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2014/03/05 09:33:34 | 000,232,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll
[2014/03/05 09:33:34 | 000,226,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtrans.dll
[2014/03/05 09:33:34 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrating.dll
[2014/03/05 09:33:34 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msls31.dll
[2014/03/05 09:33:34 | 000,150,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iexpress.exe
[2014/03/05 09:33:34 | 000,138,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wextract.exe
[2014/03/05 09:33:34 | 000,137,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
[2014/03/05 09:33:34 | 000,117,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
[2014/03/05 09:33:34 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\IEAdvpack.dll
[2014/03/05 09:33:34 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll
[2014/03/05 09:33:34 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inseng.dll
[2014/03/05 09:33:34 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SetIEInstalledDate.exe
[2014/03/05 09:33:34 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RegisterIEPKEYs.exe
[2014/03/05 09:33:34 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll
[2014/03/05 09:33:34 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pngfilt.dll
[2014/03/05 09:33:34 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtmler.dll
[2014/03/05 09:33:34 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe
[2014/03/05 09:33:34 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2014/03/05 09:33:34 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2014/03/05 09:33:34 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\imgutil.dll
[2014/03/05 09:33:34 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll
[2014/03/05 09:33:34 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\licmgr10.dll
[2014/03/05 09:33:34 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe
[2014/03/05 09:31:30 | 002,284,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msmpeg2vdec.dll
[2014/03/05 09:31:30 | 001,247,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DWrite.dll
[2014/03/05 09:31:30 | 001,158,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsPrint.dll
[2014/03/05 09:31:30 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsGdiConverter.dll
[2014/03/05 09:31:30 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2014/03/05 09:31:30 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2014/03/05 09:31:30 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2014/03/05 09:31:30 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll
[2014/03/05 09:31:30 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll
[2014/03/05 09:31:30 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2014/03/05 09:31:30 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll
[2014/03/05 09:31:30 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
[2014/03/05 09:31:30 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2014/03/05 09:31:29 | 001,080,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10.dll
[2014/03/05 09:31:29 | 000,604,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10level9.dll
[2014/03/05 09:31:29 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxgi.dll
[2014/03/05 09:31:29 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1core.dll
[2014/03/05 09:31:29 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10core.dll
[2014/03/05 09:31:29 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WindowsCodecsExt.dll
[2014/03/05 09:31:29 | 000,187,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIAnimation.dll
[2014/03/05 09:31:29 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1.dll
[2014/02/26 02:17:35 | 000,000,000 | ---D | C] -- C:\Windows\Migration
[2014/02/13 21:03:09 | 000,000,000 | ---D | C] -- C:\ProgramData\deeaL4me
[2014/02/12 18:00:05 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msxml3r.dll
[2014/02/12 17:59:42 | 000,594,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_isv.exe
[2014/02/12 17:59:42 | 000,572,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate.exe
[2014/02/12 17:59:41 | 000,510,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp.exe
[2014/02/12 17:59:41 | 000,508,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp_isv.exe
[2014/02/12 17:59:41 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc.dll
[2014/02/12 17:59:41 | 000,423,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_isv.dll
[2014/02/12 17:59:40 | 000,390,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdrm.dll
[2014/02/12 17:59:40 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp_isv.dll
[2014/02/12 17:59:40 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp.dll
[2014/02/11 21:11:04 | 000,000,000 | ---D | C] -- C:\Program Files\Hewlett-Packard
[2014/02/11 21:10:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Visan
[2014/02/11 21:10:57 | 000,000,000 | ---D | C] -- C:\ProgramData\HP Photo Creations
[2014/02/11 21:10:57 | 000,000,000 | ---D | C] -- C:\Program Files\HP Photo Creations
[2014/02/11 21:10:03 | 000,000,000 | ---D | C] -- C:\Users\Dawn\AppData\Roaming\HpUpdate
[2014/02/11 21:09:40 | 000,563,048 | ---- | C] (Hewlett-Packard Co.) -- C:\Windows\System32\HPDiscoPMAD11.dll
[2014/02/11 21:09:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
[2014/02/11 21:08:10 | 000,000,000 | ---D | C] -- C:\ProgramData\HP
[2014/02/11 21:05:34 | 000,000,000 | ---D | C] -- C:\Program Files\HP
[2014/02/11 21:04:48 | 000,000,000 | ---D | C] -- C:\Users\Dawn\AppData\Local\HP
[2014/02/11 16:57:15 | 000,000,000 | ---D | C] -- C:\Users\Dawn\AppData\Roaming\TuneUp Software
[2014/02/11 16:44:53 | 000,000,000 | -H-D | C] -- C:\ProgramData\Common Files
[2014/02/11 16:44:52 | 000,000,000 | ---D | C] -- C:\Users\Dawn\AppData\Local\MFAData
[2014/02/11 16:44:52 | 000,000,000 | ---D | C] -- C:\ProgramData\MFAData
[2014/02/11 16:39:42 | 000,000,000 | ---D | C] -- C:\Users\Dawn\AppData\Local\Local_Weather_LLC
[2014/02/11 16:39:31 | 000,000,000 | ---D | C] -- C:\Users\Dawn\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Weather Alerts
[2014/02/11 16:38:53 | 000,000,000 | ---D | C] -- C:\Users\Dawn\AppData\Local\WeatherAlerts
[1 C:\Users\Dawn\AppData\Local\*.tmp files -> C:\Users\Dawn\AppData\Local\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2014/03/08 18:20:06 | 000,000,422 | ---- | M] () -- C:\Windows\tasks\SystemToolsDailyTest.job
[2014/03/08 18:16:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/03/08 17:59:52 | 000,014,256 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/03/08 17:59:52 | 000,014,256 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/03/08 17:57:05 | 000,664,750 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2014/03/08 17:57:05 | 000,123,486 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2014/03/08 17:53:27 | 000,001,936 | ---- | M] () -- C:\Users\Dawn\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitor Ink Alerts - HP Deskjet 3510 series.lnk
[2014/03/08 17:52:46 | 000,000,374 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts.ics
[2014/03/08 17:52:05 | 000,065,536 | ---- | M] () -- C:\Windows\System32\Ikeext.etl
[2014/03/08 17:51:22 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/03/08 17:51:14 | 2307,928,064 | -HS- | M] () -- C:\hiberfil.sys
[2014/03/08 17:28:00 | 000,000,882 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/03/07 15:11:33 | 000,000,999 | ---- | M] () -- C:\Users\Dawn\Desktop\RMPrepUSB.lnk
[2014/03/07 09:56:46 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Dawn\Desktop\OTL.exe
[2014/03/06 19:18:17 | 000,692,400 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
[2014/03/06 19:18:17 | 000,070,832 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
[2014/03/06 19:18:10 | 017,917,104 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerInstaller.exe
[2014/03/05 19:18:28 | 000,001,375 | ---- | M] () -- C:\Users\Dawn\Desktop\Continue Java Runtime Environment.lnk
[2014/03/05 19:07:07 | 000,094,632 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\WindowsAccessBridge.dll
[2014/03/05 19:07:06 | 000,264,616 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\javaws.exe
[2014/03/05 19:07:06 | 000,175,016 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\javaw.exe
[2014/03/05 19:07:06 | 000,174,504 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\java.exe
[2014/03/05 12:57:13 | 000,000,937 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2014.lnk
[2014/03/05 12:37:35 | 000,000,000 | ---- | M] () -- C:\END
[2014/03/05 12:34:24 | 000,001,419 | ---- | M] () -- C:\Users\Dawn\Desktop\Internet Explorer.lnk
[2014/03/05 09:45:30 | 000,001,413 | ---- | M] () -- C:\Users\Dawn\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2014/03/05 09:33:35 | 000,745,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\MsSpellCheckingFacility.exe
[2014/03/05 09:33:35 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\elshyph.dll
[2014/03/05 09:33:34 | 002,877,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
[2014/03/05 09:33:34 | 002,706,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2014/03/05 09:33:34 | 001,441,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
[2014/03/05 09:33:34 | 001,400,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dat
[2014/03/05 09:33:34 | 000,719,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mshtmlmedia.dll
[2014/03/05 09:33:34 | 000,629,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll
[2014/03/05 09:33:34 | 000,493,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2014/03/05 09:33:34 | 000,391,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2014/03/05 09:33:34 | 000,361,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2014/03/05 09:33:34 | 000,357,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dxtmsft.dll
[2014/03/05 09:33:34 | 000,242,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2014/03/05 09:33:34 | 000,232,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\url.dll
[2014/03/05 09:33:34 | 000,226,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dxtrans.dll
[2014/03/05 09:33:34 | 000,163,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msrating.dll
[2014/03/05 09:33:34 | 000,158,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msls31.dll
[2014/03/05 09:33:34 | 000,150,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iexpress.exe
[2014/03/05 09:33:34 | 000,138,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wextract.exe
[2014/03/05 09:33:34 | 000,137,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
[2014/03/05 09:33:34 | 000,117,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
[2014/03/05 09:33:34 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\IEAdvpack.dll
[2014/03/05 09:33:34 | 000,109,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll
[2014/03/05 09:33:34 | 000,082,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\inseng.dll
[2014/03/05 09:33:34 | 000,073,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SetIEInstalledDate.exe
[2014/03/05 09:33:34 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\RegisterIEPKEYs.exe
[2014/03/05 09:33:34 | 000,061,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll
[2014/03/05 09:33:34 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\pngfilt.dll
[2014/03/05 09:33:34 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mshtmler.dll
[2014/03/05 09:33:34 | 000,042,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe
[2014/03/05 09:33:34 | 000,041,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2014/03/05 09:33:34 | 000,039,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2014/03/05 09:33:34 | 000,038,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\imgutil.dll
[2014/03/05 09:33:34 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll
[2014/03/05 09:33:34 | 000,025,185 | ---- | M] () -- C:\Windows\System32\ieuinit.inf
[2014/03/05 09:33:34 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\licmgr10.dll
[2014/03/05 09:33:34 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe
[2014/03/05 09:31:30 | 002,284,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msmpeg2vdec.dll
[2014/03/05 09:31:30 | 001,247,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\DWrite.dll
[2014/03/05 09:31:30 | 001,158,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\XpsPrint.dll
[2014/03/05 09:31:30 | 000,364,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\XpsGdiConverter.dll
[2014/03/05 09:31:30 | 000,010,752 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2014/03/05 09:31:30 | 000,009,728 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2014/03/05 09:31:30 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2014/03/05 09:31:30 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll
[2014/03/05 09:31:30 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll
[2014/03/05 09:31:30 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2014/03/05 09:31:30 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll
[2014/03/05 09:31:30 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
[2014/03/05 09:31:30 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2014/03/05 09:31:29 | 001,080,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10.dll
[2014/03/05 09:31:29 | 000,604,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10level9.dll
[2014/03/05 09:31:29 | 000,293,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dxgi.dll
[2014/03/05 09:31:29 | 000,249,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1core.dll
[2014/03/05 09:31:29 | 000,220,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10core.dll
[2014/03/05 09:31:29 | 000,207,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\WindowsCodecsExt.dll
[2014/03/05 09:31:29 | 000,187,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\UIAnimation.dll
[2014/03/05 09:31:29 | 000,161,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1.dll
[2014/02/13 07:00:00 | 000,000,564 | ---- | M] () -- C:\Windows\tasks\PCDoctorBackgroundMonitorTask.job
[2014/02/11 21:10:58 | 000,001,955 | ---- | M] () -- C:\Users\Public\Desktop\HP Photo Creations.lnk
[2014/02/11 21:09:39 | 000,002,214 | ---- | M] () -- C:\Users\Public\Desktop\HP Deskjet 3510 series.lnk
[2014/02/11 21:09:39 | 000,001,161 | ---- | M] () -- C:\Users\Public\Desktop\Shop for Supplies - HP Deskjet 3510 series.lnk
[2014/02/11 21:05:20 | 000,000,057 | ---- | M] () -- C:\ProgramData\Ament.ini
[2014/02/11 16:39:32 | 000,001,148 | ---- | M] () -- C:\Users\Dawn\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Weather Alerts.lnk
[1 C:\Users\Dawn\AppData\Local\*.tmp files -> C:\Users\Dawn\AppData\Local\*.tmp -> ]
========== Files Created - No Company Name ========== [2014/03/08 16:08:21 | 000,065,536 | ---- | C] () -- C:\Windows\System32\Ikeext.etl
[2014/03/07 15:11:33 | 000,000,999 | ---- | C] () -- C:\Users\Dawn\Desktop\RMPrepUSB.lnk
[2014/03/05 19:18:28 | 000,001,375 | ---- | C] () -- C:\Users\Dawn\Desktop\Continue Java Runtime Environment.lnk
[2014/03/05 12:57:13 | 000,000,937 | ---- | C] () -- C:\Users\Public\Desktop\AVG 2014.lnk
[2014/03/05 12:34:24 | 000,001,419 | ---- | C] () -- C:\Users\Dawn\Desktop\Internet Explorer.lnk
[2014/03/05 09:45:30 | 000,001,419 | ---- | C] () -- C:\Users\Dawn\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2014/03/05 09:45:30 | 000,001,413 | ---- | C] () -- C:\Users\Dawn\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2014/03/05 09:33:34 | 000,025,185 | ---- | C] () -- C:\Windows\System32\ieuinit.inf
[2014/02/11 21:16:28 | 000,001,936 | ---- | C] () -- C:\Users\Dawn\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitor Ink Alerts - HP Deskjet 3510 series.lnk
[2014/02/11 21:10:58 | 000,001,955 | ---- | C] () -- C:\Users\Public\Desktop\HP Photo Creations.lnk
[2014/02/11 21:09:39 | 000,002,214 | ---- | C] () -- C:\Users\Public\Desktop\HP Deskjet 3510 series.lnk
[2014/02/11 21:09:39 | 000,001,161 | ---- | C] () -- C:\Users\Public\Desktop\Shop for Supplies - HP Deskjet 3510 series.lnk
[2014/02/11 21:05:20 | 000,000,057 | ---- | C] () -- C:\ProgramData\Ament.ini
[2014/02/11 16:39:32 | 000,001,148 | ---- | C] () -- C:\Users\Dawn\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Weather Alerts.lnk
[2014/01/31 07:40:37 | 000,002,446 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2013/12/24 22:50:47 | 000,000,632 | RHS- | C] () -- C:\Users\Dawn\ntuser.pol
[2013/12/18 21:28:58 | 000,188,200 | -H-- | C] () -- C:\Windows\System32\mlfcache.dat
[2011/06/06 17:12:15 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2011/03/08 09:22:54 | 000,000,107 | ---- | C] () -- C:\Users\Dawn\webct_upload_applet.properties
[2011/01/19 23:31:31 | 000,065,024 | ---- | C] () -- C:\Users\Dawn\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
========== ZeroAccess Check ========== [2009/07/13 22:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/07/25 19:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 06:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/13 19:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
========== LOP Check ========== [2014/03/05 12:57:45 | 000,000,000 | ---D | M] -- C:\Users\Dawn\AppData\Roaming\AVG2014
[2011/06/06 22:33:17 | 000,000,000 | ---D | M] -- C:\Users\Dawn\AppData\Roaming\FrostWire
[2011/04/21 00:58:09 | 000,000,000 | ---D | M] -- C:\Users\Dawn\AppData\Roaming\Jasc
[2011/02/26 11:33:15 | 000,000,000 | ---D | M] -- C:\Users\Dawn\AppData\Roaming\MusicNet
[2011/02/06 16:00:22 | 000,000,000 | ---D | M] -- C:\Users\Dawn\AppData\Roaming\PCDr
[2011/05/19 13:17:37 | 000,000,000 | ---D | M] -- C:\Users\Dawn\AppData\Roaming\TS3Client
[2014/02/11 16:57:15 | 000,000,000 | ---D | M] -- C:\Users\Dawn\AppData\Roaming\TuneUp Software
[2013/06/03 09:49:27 | 000,000,000 | ---D | M] -- C:\Users\Dawn\AppData\Roaming\Unity
[2012/05/09 05:25:21 | 000,000,000 | ---D | M] -- C:\Users\kaycie\AppData\Roaming\Oberon Media
[2012/05/09 05:26:20 | 000,000,000 | ---D | M] -- C:\Users\kaycie\AppData\Roaming\PlayFirst
[2013/12/24 23:03:08 | 000,000,000 | ---D | M] -- C:\Users\Rodney\AppData\Roaming\Unity
========== Purity Check ========== ========== Custom Scans ========== ========== Base Services ==========SRV - [2009/07/13 19:14:53 | 000,062,464 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\aelupsvc.dll -- (AeLookupSvc)
SRV - [2013/02/26 22:49:16 | 000,047,104 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\appinfo.dll -- (Appinfo)
SRV - [2009/07/13 19:14:11 | 000,059,392 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\alg.exe -- (ALG)
SRV - [2010/11/20 06:20:58 | 000,585,728 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\qmgr.dll -- (BITS)
SRV - [2010/11/20 06:18:06 | 000,494,592 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\BFE.DLL -- (BFE)
SRV - [2013/09/24 18:49:20 | 000,022,016 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\lsass.exe -- (KeyIso)
SRV - [2009/07/13 19:15:19 | 000,271,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\es.dll -- (EventSystem)
SRV - [2012/07/04 15:14:34 | 000,102,912 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\browser.dll -- (Browser)
SRV - [2013/07/08 22:46:31 | 000,140,288 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\cryptsvc.dll -- (CryptSvc)
SRV - [2010/11/20 06:21:03 | 000,376,832 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\rpcss.dll -- (DcomLaunch)
SRV - [2010/11/20 06:18:30 | 000,254,464 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\dhcpcore.dll -- (Dhcp)
SRV - [2011/03/02 23:38:01 | 000,132,608 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\dnsrslvr.dll -- (Dnscache)
SRV - [2009/07/13 19:15:13 | 000,098,304 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\eapsvc.dll -- (EapHost)
SRV - [2009/07/13 19:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\hidserv.dll -- (hidserv)
SRV - [2009/07/13 19:15:33 | 000,300,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\ipnathlp.dll -- (SharedAccess)
SRV - [2010/11/20 06:19:23 | 000,350,208 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\IPSECSVC.DLL -- (PolicyAgent)
SRV - [2011/04/27 13:39:26 | 000,011,736 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe -- (MsMpSvc)
SRV - [2011/04/27 13:39:26 | 000,208,944 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe -- (NisSrv)
SRV - [2009/07/13 19:16:15 | 000,313,856 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\swprv.dll -- (swprv)
SRV - [2009/07/13 19:15:41 | 000,049,664 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\mmcss.dll -- (MMCSS)
SRV - [2009/07/13 19:16:03 | 000,280,576 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\netman.dll -- (Netman)
SRV - [2009/07/13 19:16:03 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\netprofm.dll -- (netprofm)
SRV - [2012/10/03 10:42:26 | 000,242,176 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\nlasvc.dll -- (NlaSvc)
SRV - [2009/07/13 19:16:11 | 000,019,456 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\nsisvc.dll -- (nsi)
SRV - [2011/05/24 04:44:59 | 000,293,376 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\umpnpmgr.dll -- (PlugPlay)
SRV - [2012/02/10 23:37:49 | 000,317,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\spoolsv.exe -- (Spooler)
SRV - [2013/09/24 18:49:20 | 000,022,016 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\lsass.exe -- (ProtectedStorage)
No service found with a name of EMDMgmt
SRV - [2009/07/13 19:16:12 | 000,090,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\rasauto.dll -- (RasAuto)
SRV - [2010/11/20 06:21:00 | 000,286,208 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\rasmans.dll -- (RasMan)
SRV - [2010/11/20 06:21:03 | 000,376,832 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\rpcss.dll -- (RpcSs)
SRV - [2009/07/13 19:16:13 | 000,021,504 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\seclogon.dll -- (seclogon)
SRV - [2013/09/24 18:49:20 | 000,022,016 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\lsass.exe -- (SamSs)
SRV - [2009/07/13 19:16:20 | 000,073,728 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wscsvc.dll -- (wscsvc)
SRV - [2010/11/20 06:21:26 | 000,168,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\srvsvc.dll -- (LanmanServer)
SRV - [2010/11/20 06:21:19 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV - [2010/11/20 06:21:05 | 000,750,592 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\schedsvc.dll -- (Schedule)
SRV - [2010/11/20 06:21:28 | 000,242,176 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\tapisrv.dll -- (TapiSrv)
SRV - [2009/07/13 19:16:16 | 000,037,376 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\themeservice.dll -- (Themes)
SRV - [2012/04/30 22:44:12 | 000,164,352 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\profsvc.dll -- (ProfSvc)
SRV - [2010/11/20 06:17:51 | 001,025,536 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\VSSVC.exe -- (VSS)
SRV - [2010/11/20 06:18:05 | 000,473,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\audiosrv.dll -- (Audiosrv)
SRV - [2010/11/20 06:18:05 | 000,473,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\audiosrv.dll -- (AudioEndpointBuilder)
SRV - [2010/11/20 06:21:06 | 000,125,952 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sdrsvc.dll -- (SDRSVC)
SRV - [2013/05/26 22:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2010/11/20 06:21:35 | 001,086,976 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wevtsvc.dll -- (eventlog)
SRV - [2010/11/20 06:19:40 | 000,566,272 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\MPSSVC.dll -- (MpsSvc)
SRV - [2010/11/20 06:21:35 | 000,463,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wiaservc.dll -- (StiSvc)
SRV - [2010/11/20 06:17:22 | 000,073,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\msiexec.exe -- (msiserver)
SRV - [2009/07/13 19:16:19 | 000,168,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wbem\WMIsvc.dll -- (Winmgmt)
SRV - [2012/06/02 16:19:17 | 001,933,848 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wuaueng.dll -- (wuauserv)
SRV - [2010/11/20 06:18:34 | 000,214,016 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\dot3svc.dll -- (dot3svc)
SRV - [2009/07/13 19:16:19 | 000,829,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wlansvc.dll -- (Wlansvc)
SRV - [2010/11/20 06:21:36 | 000,084,480 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wkssvc.dll -- (LanmanWorkstation)
< dir "C:\Program Files\*" /c > Volume in drive C is OS
Volume Serial Number is C627-7DDE
Directory of C:\PROGRAM FILES
03/08/2014 04:08 PM <DIR> .
03/08/2014 04:08 PM <DIR> ..
08/25/2011 09:25 PM <DIR> Adobe
03/05/2014 12:54 PM <DIR> AVG
12/18/2013 09:25 PM <DIR> Bonjour
01/07/2011 01:18 AM <DIR> Cisco
03/05/2014 07:08 PM <DIR> Common Files
12/07/2011 06:07 PM <DIR> Conduit
01/07/2011 01:19 AM <DIR> Creative
01/07/2011 01:19 AM <DIR> Creative Live! Cam
01/07/2011 01:17 AM <DIR> Dell
01/07/2011 01:11 AM <DIR> Dell Inc
01/07/2011 01:21 AM <DIR> Dell Support Center
01/07/2011 01:19 AM <DIR> Dell Webcam
04/15/2011 11:43 AM <DIR> Driver Whiz
06/23/2011 01:51 AM <DIR> DVD Maker
02/20/2011 11:38 AM <DIR> Electronic Arts
06/06/2011 04:07 PM <DIR> FrostWire
09/30/2012 01:30 AM <DIR> Google
02/11/2014 09:11 PM <DIR> Hewlett-Packard
10/10/2012 01:54 PM <DIR> HideMyMAC
02/11/2014 09:10 PM <DIR> HP
02/11/2014 09:10 PM <DIR> HP Photo Creations
01/07/2011 03:07 AM <DIR> IDT
01/07/2011 01:13 AM <DIR> Intel
03/05/2014 09:40 AM <DIR> Internet Explorer
03/08/2014 04:07 PM <DIR> InternetHelper1.5
04/21/2011 12:57 AM <DIR> Jasc Software Inc
03/05/2014 07:06 PM <DIR> Java
12/18/2013 09:27 PM <DIR> Level Quality Watcher
03/05/2014 04:23 PM <DIR> LPT
02/19/2011 04:45 PM <DIR> Maxis
01/18/2011 04:10 PM <DIR> Microsoft
11/11/2011 10:15 AM <DIR> Microsoft Office
05/01/2012 02:01 AM <DIR> Microsoft Security Client
12/07/2013 04:18 AM <DIR> Microsoft Silverlight
01/07/2011 01:25 AM <DIR> Microsoft SQL Server Compact Edition
01/18/2011 04:08 PM <DIR> Microsoft Visual Studio
01/18/2011 04:06 PM <DIR> Microsoft Visual Studio 8
01/27/2011 03:02 AM <DIR> Microsoft Works
01/28/2011 03:00 AM <DIR> Microsoft.NET
06/08/2011 01:45 AM <DIR> Mihov Image Resizer
09/30/2012 01:19 PM <DIR> Mozilla Firefox
01/18/2011 04:08 PM <DIR> MSBuild
01/29/2014 03:12 PM <DIR> Nova Development
05/09/2012 05:24 AM <DIR> Oberon Media
03/08/2014 11:14 AM <DIR> PCFriendly
03/08/2014 11:02 AM <DIR> predm
03/07/2014 09:06 AM <DIR> QuickTime
07/13/2009 10:52 PM <DIR> Reference Assemblies
03/07/2014 03:11 PM <DIR> RMPrepUSB
01/07/2011 01:18 AM <DIR> Roxio
01/06/2014 12:05 AM <DIR> Sendori
01/06/2014 12:01 AM <DIR> sp
01/07/2011 01:13 AM <DIR> STMicroelectronics
01/07/2011 03:02 AM <DIR> Synaptics
01/07/2011 01:16 AM <DIR> WIDCOMM
12/07/2013 04:15 AM <DIR> Windows Defender
12/07/2013 04:15 AM <DIR> Windows Journal
03/31/2011 01:01 AM <DIR> Windows Live
06/23/2011 01:51 AM <DIR> Windows Mail
12/12/2013 03:34 AM <DIR> Windows Media Player
07/13/2009 10:52 PM <DIR> Windows NT
06/23/2011 01:51 AM <DIR> Windows Photo Viewer
06/23/2011 01:51 AM <DIR> Windows Portable Devices
06/23/2011 01:51 AM <DIR> Windows Sidebar
03/05/2014 12:17 PM <DIR> Yahoo!
09/23/2011 04:22 PM <DIR> YourBountyHunter!
0 File(s) 0 bytes
68 Dir(s) 167,012,671,488 bytes free
< MD5 for: EXPLORER.EXE >[2011/01/07 03:00:33 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=00B0358734CAA32C39D181FE6916B178 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20542_none_523cdab8f40fe558\explorer.exe
[2011/02/25 23:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_54149f9ef14031fc\explorer.exe
[2009/07/13 19:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_518afd35db100430\explorer.exe
[2011/02/25 23:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_525b5180f3f95373\explorer.exe
[2011/01/07 03:00:43 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_51a66d6ddafc2ed1\explorer.exe
[2011/02/25 23:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_51a3a583dafd0cef\explorer.exe
[2010/11/20 06:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_53bc10fdd7fe87ca\explorer.exe
[2011/02/24 23:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\explorer.exe
[2011/02/24 23:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_5389023fd8245f84\explorer.exe
[2011/01/07 03:00:37 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_526619d4f3f142e6\explorer.exe
[2011/01/07 03:00:37 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_51e07e31dad00878\explorer.exe
[2011/01/07 03:00:43 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_52283b2af41f3691\explorer.exe
[2011/01/07 03:00:33 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=FC89FACA0473641CB625EDA9277D0885 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16434_none_51c00e6ddae85c4b\explorer.exe
< MD5 for: SVCHOST.EXE >[2009/07/13 19:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\System32\svchost.exe
[2009/07/13 19:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
< MD5 for: USERINIT.EXE >[2010/11/20 06:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\System32\userinit.exe
[2010/11/20 06:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009/07/13 19:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
< MD5 for: WINLOGON.EXE >[2011/01/07 03:00:43 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=37CDB7E72EB66BA85A87CBE37E7F03FD -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_6fc699643622d177\winlogon.exe
[2011/01/07 03:00:43 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=3BABE6767C78FBF5FB8435FEED187F30 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_703394514f56f7c2\winlogon.exe
[2010/11/20 06:17:54 | 000,286,720 | ---- | M] (Microsoft Corporation) MD5=6D13E1406F50C66E2A95D97F22C47560 -- C:\Windows\System32\winlogon.exe
[2010/11/20 06:17:54 | 000,286,720 | ---- | M] (Microsoft Corporation) MD5=6D13E1406F50C66E2A95D97F22C47560 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_71ca6b0233339500\winlogon.exe
[2009/07/13 19:14:45 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=8EC6A4AB12B8F3759E21F8E3A388F2CF -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_6f99573a36451166\winlogon.exe
< c:\program files (x86)\Google\Desktop >[2009/07/13 22:53:46 | 000,032,612 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2009/07/13 22:53:47 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2011/01/18 15:56:55 | 000,000,564 | ---- | C] () -- C:\Windows\Tasks\PCDoctorBackgroundMonitorTask.job
[2011/01/18 15:56:56 | 000,000,422 | ---- | C] () -- C:\Windows\Tasks\SystemToolsDailyTest.job
[2012/09/30 01:30:01 | 000,000,882 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2013/06/27 21:48:04 | 000,000,830 | ---- | C] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2013/12/06 08:56:55 | 000,000,882 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cef29367a9eb04.job
< c:\program files\Google\Desktop > < dir "%systemdrive%\*" /S /A:L /C > Volume in drive C is OS
Volume Serial Number is C627-7DDE
Directory of C:\
07/13/2009 10:53 PM <JUNCTION> Documents and Settings [C:\Users]
0 File(s) 0 bytes
Directory of C:\ProgramData
07/13/2009 10:53 PM <JUNCTION> Application Data [C:\ProgramData]
07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Users\Public\Desktop]
07/13/2009 10:53 PM <JUNCTION> Documents [C:\Users\Public\Documents]
07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Users\Public\Favorites]
07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 10:53 PM <JUNCTION> Templates [C:\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Users
07/13/2009 10:53 PM <SYMLINKD> All Users [C:\ProgramData]
07/13/2009 10:53 PM <JUNCTION> Default User [C:\Users\Default]
0 File(s) 0 bytes
Directory of C:\Users\All Users
07/13/2009 10:53 PM <JUNCTION> Application Data [C:\ProgramData]
07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Users\Public\Desktop]
07/13/2009 10:53 PM <JUNCTION> Documents [C:\Users\Public\Documents]
07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Users\Public\Favorites]
07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 10:53 PM <JUNCTION> Templates [C:\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Users\Dawn
01/18/2011 03:54 PM <JUNCTION> Application Data [C:\Users\Dawn\AppData\Roaming]
01/18/2011 03:54 PM <JUNCTION> Cookies [C:\Users\Dawn\AppData\Roaming\Microsoft\Windows\Cookies]
01/18/2011 03:54 PM <JUNCTION> Local Settings [C:\Users\Dawn\AppData\Local]
01/18/2011 03:54 PM <JUNCTION> My Documents [C:\Users\Dawn\Documents]
01/18/2011 03:54 PM <JUNCTION> NetHood [C:\Users\Dawn\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
01/18/2011 03:54 PM <JUNCTION> PrintHood [C:\Users\Dawn\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
01/18/2011 03:54 PM <JUNCTION> Recent [C:\Users\Dawn\AppData\Roaming\Microsoft\Windows\Recent]
01/18/2011 03:54 PM <JUNCTION> SendTo [C:\Users\Dawn\AppData\Roaming\Microsoft\Windows\SendTo]
01/18/2011 03:54 PM <JUNCTION> Start Menu [C:\Users\Dawn\AppData\Roaming\Microsoft\Windows\Start Menu]
01/18/2011 03:54 PM <JUNCTION> Templates [C:\Users\Dawn\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Users\Dawn\AppData\Local
01/18/2011 03:54 PM <JUNCTION> Application Data [C:\Users\Dawn\AppData\Local]
01/18/2011 03:54 PM <JUNCTION> History [C:\Users\Dawn\AppData\Local\Microsoft\Windows\History]
01/18/2011 03:54 PM <JUNCTION> Temporary Internet Files [C:\Users\Dawn\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Users\Dawn\AppData\LocalLow
05/01/2011 12:20 AM <JUNCTION> PlayReady [C:\ProgramData\Microsoft\PlayReady]
0 File(s) 0 bytes
Directory of C:\Users\Dawn\Documents
01/18/2011 03:54 PM <JUNCTION> My Music [C:\Users\Dawn\Music]
01/18/2011 03:54 PM <JUNCTION> My Pictures [C:\Users\Dawn\Pictures]
01/18/2011 03:54 PM <JUNCTION> My Videos [C:\Users\Dawn\Videos]
0 File(s) 0 bytes
Directory of C:\Users\Default
07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Users\Default\AppData\Roaming]
07/13/2009 10:53 PM <JUNCTION> Cookies [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Cookies]
07/13/2009 10:53 PM <JUNCTION> Local Settings [C:\Users\Default\AppData\Local]
07/13/2009 10:53 PM <JUNCTION> My Documents [C:\Users\Default\Documents]
07/13/2009 10:53 PM <JUNCTION> NetHood [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
07/13/2009 10:53 PM <JUNCTION> PrintHood [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
07/13/2009 10:53 PM <JUNCTION> Recent [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Recent]
07/13/2009 10:53 PM <JUNCTION> SendTo [C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo]
07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu]
07/13/2009 10:53 PM <JUNCTION> Templates [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Users\Default\AppData\Local
07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Users\Default\AppData\Local]
07/13/2009 10:53 PM <JUNCTION> History [C:\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Users\Default\Documents
07/13/2009 10:53 PM <JUNCTION> My Music [C:\Users\Default\Music]
07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Users\Default\Pictures]
07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Users\Default\Videos]
0 File(s) 0 bytes
Directory of C:\Users\Guest
01/19/2011 07:21 AM <JUNCTION> Application Data [C:\Users\Guest\AppData\Roaming]
01/19/2011 07:21 AM <JUNCTION> Cookies [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Cookies]
01/19/2011 07:21 AM <JUNCTION> Local Settings [C:\Users\Guest\AppData\Local]
01/19/2011 07:21 AM <JUNCTION> My Documents [C:\Users\Guest\Documents]
01/19/2011 07:21 AM <JUNCTION> NetHood [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
01/19/2011 07:21 AM <JUNCTION> PrintHood [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
01/19/2011 07:21 AM <JUNCTION> Recent [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Recent]
01/19/2011 07:21 AM <JUNCTION> SendTo [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\SendTo]
01/19/2011 07:21 AM <JUNCTION> Start Menu [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu]
01/19/2011 07:21 AM <JUNCTION> Templates [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Users\Guest\AppData\Local
01/19/2011 07:21 AM <JUNCTION> Application Data [C:\Users\Guest\AppData\Local]
01/19/2011 07:21 AM <JUNCTION> History [C:\Users\Guest\AppData\Local\Microsoft\Windows\History]
01/19/2011 07:21 AM <JUNCTION> Temporary Internet Files [C:\Users\Guest\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Users\Guest\Documents
01/19/2011 07:21 AM <JUNCTION> My Music [C:\Users\Guest\Music]
01/19/2011 07:21 AM <JUNCTION> My Pictures [C:\Users\Guest\Pictures]
01/19/2011 07:21 AM <JUNCTION> My Videos [C:\Users\Guest\Videos]
0 File(s) 0 bytes
Directory of C:\Users\kaycie
06/23/2011 06:34 AM <JUNCTION> Application Data [C:\Users\kaycie\AppData\Roaming]
06/23/2011 06:34 AM <JUNCTION> Cookies [C:\Users\kaycie\AppData\Roaming\Microsoft\Windows\Cookies]
06/23/2011 06:34 AM <JUNCTION> Local Settings [C:\Users\kaycie\AppData\Local]
06/23/2011 06:34 AM <JUNCTION> My Documents [C:\Users\kaycie\Documents]
06/23/2011 06:34 AM <JUNCTION> NetHood [C:\Users\kaycie\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
06/23/2011 06:34 AM <JUNCTION> PrintHood [C:\Users\kaycie\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
06/23/2011 06:34 AM <JUNCTION> Recent [C:\Users\kaycie\AppData\Roaming\Microsoft\Windows\Recent]
06/23/2011 06:34 AM <JUNCTION> SendTo [C:\Users\kaycie\AppData\Roaming\Microsoft\Windows\SendTo]
06/23/2011 06:34 AM <JUNCTION> Start Menu [C:\Users\kaycie\AppData\Roaming\Microsoft\Windows\Start Menu]
06/23/2011 06:34 AM <JUNCTION> Templates [C:\Users\kaycie\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Users\kaycie\AppData\Local
06/23/2011 06:34 AM <JUNCTION> Application Data [C:\Users\kaycie\AppData\Local]
06/23/2011 06:34 AM <JUNCTION> History [C:\Users\kaycie\AppData\Local\Microsoft\Windows\History]
06/23/2011 06:34 AM <JUNCTION> Temporary Internet Files [C:\Users\kaycie\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Users\kaycie\Documents
06/23/2011 06:34 AM <JUNCTION> My Music [C:\Users\kaycie\Music]
06/23/2011 06:34 AM <JUNCTION> My Pictures [C:\Users\kaycie\Pictures]
06/23/2011 06:34 AM <JUNCTION> My Videos [C:\Users\kaycie\Videos]
0 File(s) 0 bytes
Directory of C:\Users\Mr Morgan
12/04/2011 11:39 AM <JUNCTION> Application Data [C:\Users\Mr Morgan\AppData\Roaming]
12/04/2011 11:39 AM <JUNCTION> Cookies [C:\Users\Mr Morgan\AppData\Roaming\Microsoft\Windows\Cookies]
12/04/2011 11:39 AM <JUNCTION> Local Settings [C:\Users\Mr Morgan\AppData\Local]
12/04/2011 11:39 AM <JUNCTION> My Documents [C:\Users\Mr Morgan\Documents]
12/04/2011 11:39 AM <JUNCTION> NetHood [C:\Users\Mr Morgan\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
12/04/2011 11:39 AM <JUNCTION> PrintHood [C:\Users\Mr Morgan\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
12/04/2011 11:39 AM <JUNCTION> Recent [C:\Users\Mr Morgan\AppData\Roaming\Microsoft\Windows\Recent]
12/04/2011 11:39 AM <JUNCTION> SendTo [C:\Users\Mr Morgan\AppData\Roaming\Microsoft\Windows\SendTo]
12/04/2011 11:39 AM <JUNCTION> Start Menu [C:\Users\Mr Morgan\AppData\Roaming\Microsoft\Windows\Start Menu]
12/04/2011 11:39 AM <JUNCTION> Templates [C:\Users\Mr Morgan\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Users\Mr Morgan\AppData\Local
12/04/2011 11:39 AM <JUNCTION> Temporary Internet Files [C:\Users\Mr Morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Users\Mr Morgan\Documents
12/04/2011 11:39 AM <JUNCTION> My Music [C:\Users\Mr Morgan\Music]
12/04/2011 11:39 AM <JUNCTION> My Pictures [C:\Users\Mr Morgan\Pictures]
12/04/2011 11:39 AM <JUNCTION> My Videos [C:\Users\Mr Morgan\Videos]
0 File(s) 0 bytes
Directory of C:\Users\Public\Documents
07/13/2009 10:53 PM <JUNCTION> My Music [C:\Users\Public\Music]
07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Users\Public\Pictures]
07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Users\Rodney
12/24/2013 10:52 PM <JUNCTION> Application Data [C:\Users\Rodney\AppData\Roaming]
12/24/2013 10:52 PM <JUNCTION> Cookies [C:\Users\Rodney\AppData\Roaming\Microsoft\Windows\Cookies]
12/24/2013 10:52 PM <JUNCTION> Local Settings [C:\Users\Rodney\AppData\Local]
12/24/2013 10:52 PM <JUNCTION> My Documents [C:\Users\Rodney\Documents]
12/24/2013 10:52 PM <JUNCTION> NetHood [C:\Users\Rodney\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
12/24/2013 10:52 PM <JUNCTION> PrintHood [C:\Users\Rodney\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
12/24/2013 10:52 PM <JUNCTION> Recent [C:\Users\Rodney\AppData\Roaming\Microsoft\Windows\Recent]
12/24/2013 10:52 PM <JUNCTION> SendTo [C:\Users\Rodney\AppData\Roaming\Microsoft\Windows\SendTo]
12/24/2013 10:52 PM <JUNCTION> Start Menu [C:\Users\Rodney\AppData\Roaming\Microsoft\Windows\Start Menu]
12/24/2013 10:52 PM <JUNCTION> Templates [C:\Users\Rodney\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Users\Rodney\AppData\Local
12/24/2013 10:52 PM <JUNCTION> Application Data [C:\Users\Rodney\AppData\Local]
12/24/2013 10:52 PM <JUNCTION> History [C:\Users\Rodney\AppData\Local\Microsoft\Windows\History]
12/24/2013 10:52 PM <JUNCTION> Temporary Internet Files [C:\Users\Rodney\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Users\Rodney\Documents
12/24/2013 10:52 PM <JUNCTION> My Music [C:\Users\Rodney\Music]
12/24/2013 10:52 PM <JUNCTION> My Pictures [C:\Users\Rodney\Pictures]
12/24/2013 10:52 PM <JUNCTION> My Videos [C:\Users\Rodney\Videos]
0 File(s) 0 bytes
Directory of C:\Windows\System32\config\systemprofile
01/07/2011 01:18 AM <JUNCTION> Application Data [C:\Windows\system32\config\systemprofile\AppData\Roaming]
01/07/2011 01:18 AM <JUNCTION> Cookies [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies]
01/07/2011 01:18 AM <JUNCTION> Local Settings [C:\Windows\system32\config\systemprofile\AppData\Local]
0 File(s) 0 bytes
Directory of C:\Windows\System32\config\systemprofile\AppData\Local
01/07/2011 01:18 AM <JUNCTION> Application Data [C:\Windows\system32\config\systemprofile\AppData\Local]
01/07/2011 01:18 AM <JUNCTION> History [C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History]
01/07/2011 01:18 AM <JUNCTION> Temporary Internet Files [C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Total Files Listed:
0 File(s) 0 bytes
119 Dir(s) 167,010,312,192 bytes free
========== Alternate Data Streams ========== @Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:DF9323A5
< End of report >