Logs posted below.
Thank you for your help.
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 28-12-2014
Ran by Lea (administrator) on LEA-PC on 30-12-2014 22:11:32
Running from C:\Users\Lea\Downloads
Loaded Profile: Lea (Available profiles: Lea & Guest)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: Launcher)
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(DSGi) C:\Program Files (x86)\Advent\AIO\Center\ADAIOHostService.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe
(Acer Incorporated) C:\Program Files\Sleep Memory Optimizer\FFSService.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
(TODO: <Company name>) C:\Program Files (x86)\STab\ProtectService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(MicroStudio) C:\Program Files (x86)\Windows Network Accelerater\v3\winvxm.exe
(MicroTools) C:\Program Files (x86)\YouTube Downloader Services\P2\youtubeserv.exe
(Atheros) C:\Program Files (x86)\Qualcomm Atheros Fast Reconnect\Ath_WlanAgent.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(SearchProtect) C:\Program Files (x86)\STab\CmdShell.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
(TODO: <Company name>) C:\Program Files (x86)\STab\HPNotify.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Google Inc.) C:\Users\Lea\AppData\Local\Google\Update\GoogleUpdate.exe
(BitTorrent Inc.) C:\Users\Lea\AppData\Roaming\uTorrent\uTorrent.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
(Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe
(Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(MagicISO, Inc.) C:\Program Files (x86)\MagicDisc\MagicDisc.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
(CyberLink) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Qualcomm Atheros) C:\Program Files (x86)\Bluetooth Suite\BtTray.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
() C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Runner.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.EXE
(Egis Technology Inc.) C:\Program Files\EgisTec IPS\PmmUpdate.exe
(Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Windows\System32\PrintIsolationHost.exe
(Opera Software) C:\Program Files (x86)\Opera\26.0.1656.60\opera.exe
() C:\Program Files (x86)\Opera\26.0.1656.60\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\26.0.1656.60\opera.exe
(The Chromium Authors) C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Chrome-bin\chrome.exe
(The Chromium Authors) C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Chrome-bin\chrome.exe
(The Chromium Authors) C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Chrome-bin\chrome.exe
(The Chromium Authors) C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Chrome-bin\chrome.exe
(The Chromium Authors) C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Chrome-bin\chrome.exe
(The Chromium Authors) C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Chrome-bin\chrome.exe
(The Chromium Authors) C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Chrome-bin\chrome.exe
(The Chromium Authors) C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Chrome-bin\chrome.exe
(The Chromium Authors) C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Chrome-bin\chrome.exe
(The Chromium Authors) C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Chrome-bin\chrome.exe
(The Chromium Authors) C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Chrome-bin\chrome.exe
(The Chromium Authors) C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Chrome-bin\chrome.exe
(Opera Software) C:\Program Files (x86)\Opera\26.0.1656.60\opera.exe
(Farbar) C:\Users\Lea\Downloads\FRST64 (1).exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12666984 2011-08-10] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2275944 2011-08-10] (Realtek Semiconductor)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2642728 2011-07-29] (ELAN Microelectronics Corp.)
HKLM\...\Run: [Power Management] => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [1831016 2011-08-02] (Acer Incorporated)
HKLM\...\Run: [ADAiO2StatusMonitor] => C:\Windows\system32\spool\DRIVERS\x64\3\ADAiO2MUI.exe [2779136 2010-12-09] (DSGi)
HKLM\...\Run: [BtPreLoad] => C:\Program Files (x86)\Bluetooth Suite\BtPreLoad.exe [64640 2012-08-10] ()
HKLM-x32\...\Run: [BackupManagerTray] => C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [297280 2011-04-24] (NTI Corporation)
HKLM-x32\...\Run: [Dolby Home Theater v4] => C:\Dolby PCEE4\pcee4.exe [506712 2011-06-01] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1081424 2011-03-15] (Dritek System Inc.)
HKLM-x32\...\Run: [ArcadeMovieService] => C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe [177448 2011-08-26] (CyberLink Corp.)
HKLM-x32\...\Run: [SuiteTray] => C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [341360 2011-09-20] (Egis Technology Inc.)
HKLM-x32\...\Run: [ADAiO2StatusMonitor] => C:\Windows\System32\spool\drivers\x64\3\ADAiO2MUI.exe
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5226600 2014-12-21] (AVAST Software)
HKLM-x32\...\Run: [Conime] => %windir%\system32\conime.exe
HKLM-x32\...\Run: [BrHelp] => C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [2009088 2013-01-18] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [139264 2013-05-14] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [Registry Helper] => "C:\Program Files (x86)\Registry Helper\RegistryHelper.Exe" /boot
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-19\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid}
HKU\S-1-5-20\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid}
HKU\S-1-5-21-826546569-3919575575-2117434215-1000\...\Run: [Google Update] => C:\Users\Lea\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2013-08-06] (Google Inc.)
HKU\S-1-5-21-826546569-3919575575-2117434215-1000\...\Run: [uTorrent] => C:\Users\Lea\AppData\Roaming\uTorrent\uTorrent.exe [1378640 2014-12-10] (BitTorrent Inc.)
HKU\S-1-5-21-826546569-3919575575-2117434215-1000\...\Run: [WindApp] => "C:\Users\Lea\AppData\Roaming\Store\WindApp\WindApp.exe" /winstartup
HKU\S-1-5-21-826546569-3919575575-2117434215-1000\...\Run: [GoogleChromeAutoLaunch_C63F8F50B803D97E61E75CB961FB0DD5] => "C:\Users\Lea\AppData\Local\Vosteran\Application\vosteran.exe" --auto-launch-at-startup --profile-directory="Default"
HKU\S-1-5-21-826546569-3919575575-2117434215-1000\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_15_0_0_246_Plugin.exe [855216 2014-12-09] (Adobe Systems Incorporated)
HKU\S-1-5-21-826546569-3919575575-2117434215-1000\...\MountPoints2: {7fd6b427-97ee-11e2-9134-eca2cd69f851} - E:\Autorun.exe
HKU\S-1-5-21-826546569-3919575575-2117434215-1000\...\MountPoints2: {7fd6b613-97ee-11e2-9134-eca2cd69f851} - F:\Autorun.exe
HKU\S-1-5-21-826546569-3919575575-2117434215-1000\...\MountPoints2: {848a37dc-930e-11e2-b27d-df9d82c3ce52} - D:\Autorun.exe
HKU\S-1-5-21-826546569-3919575575-2117434215-1000\...\MountPoints2: {ca97fde1-adc3-11e1-af3b-74de2be0d183} - D:\AutoRun.exe
HKU\S-1-5-21-826546569-3919575575-2117434215-1000\...\MountPoints2: {ca97fe00-adc3-11e1-af3b-74de2be0d183} - D:\AutoRun.exe
HKU\S-1-5-21-826546569-3919575575-2117434215-1000\...\MountPoints2: {ca97fe11-adc3-11e1-af3b-74de2be0d183} - D:\AutoRun.exe
HKU\S-1-5-21-826546569-3919575575-2117434215-1000\...\MountPoints2: {ca97fe2f-adc3-11e1-af3b-a0972cb61dbb} - D:\AutoRun.exe
HKU\S-1-5-18\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid}
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\VC64Loader.dll => C:\PROGRA~2\SearchProtect\SearchProtect\bin\VC64Loader.dll File Not Found
IFEO\bitguard.exe: [Debugger] tasklist.exe
IFEO\bprotect.exe: [Debugger] tasklist.exe
IFEO\bpsvc.exe: [Debugger] tasklist.exe
IFEO\browserdefender.exe: [Debugger] tasklist.exe
IFEO\browserprotect.exe: [Debugger] tasklist.exe
IFEO\browsersafeguard.exe: [Debugger] tasklist.exe
IFEO\dprotectsvc.exe: [Debugger] tasklist.exe
IFEO\jumpflip: [Debugger] tasklist.exe
IFEO\protectedsearch.exe: [Debugger] tasklist.exe
IFEO\searchinstaller.exe: [Debugger] tasklist.exe
IFEO\searchprotection.exe: [Debugger] tasklist.exe
IFEO\searchprotector.exe: [Debugger] tasklist.exe
IFEO\searchsettings.exe: [Debugger] tasklist.exe
IFEO\searchsettings64.exe: [Debugger] tasklist.exe
IFEO\snapdo.exe: [Debugger] tasklist.exe
IFEO\stinst32.exe: [Debugger] tasklist.exe
IFEO\stinst64.exe: [Debugger] tasklist.exe
IFEO\umbrella.exe: [Debugger] tasklist.exe
IFEO\utiljumpflip.exe: [Debugger] tasklist.exe
IFEO\volaro: [Debugger] tasklist.exe
IFEO\vonteera: [Debugger] tasklist.exe
IFEO\websteroids.exe: [Debugger] tasklist.exe
IFEO\websteroidsservice.exe: [Debugger] tasklist.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Acer VCM.lnk
ShortcutTarget: Acer VCM.lnk -> C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe (Acer Incorporated)
Startup: C:\Users\Lea\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EvernoteClipper.lnk
ShortcutTarget: EvernoteClipper.lnk -> C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
Startup: C:\Users\Lea\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MagicDisc.lnk
ShortcutTarget: MagicDisc.lnk -> C:\Program Files (x86)\MagicDisc\MagicDisc.exe (MagicISO, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Lea\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Lea\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Lea\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Lea\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-826546569-3919575575-2117434215-1000\Software\Microsoft\Internet Explorer\Main,Start Page =
StartMenuInternet: IEXPLORE.EXE - C:\program files (x86)\Internet Explorer\iexplore.exe
BHO: Bing Bar Helper -> {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} -> C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll (Microsoft Corporation.)
BHO: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO-x32: Bing Bar Helper -> {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} -> C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll (Microsoft Corporation.)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM - Bing Bar - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM-x32 - Bing Bar - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll (Microsoft Corporation.)
Toolbar: HKU\S-1-5-21-826546569-3919575575-2117434215-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: Hosts file not detected in the default directory
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_246.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_246.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Services\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.17.2 -> C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll No File
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-826546569-3919575575-2117434215-1000: @talk.google.com/GoogleTalkPlugin -> C:\Users\Lea\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKU\S-1-5-21-826546569-3919575575-2117434215-1000: @talk.google.com/O1DPlugin -> C:\Users\Lea\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKU\S-1-5-21-826546569-3919575575-2117434215-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Lea\AppData\Local\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-826546569-3919575575-2117434215-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Lea\AppData\Local\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\Lea\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\Lea\AppData\Roaming\mozilla\plugins\npo1d.dll (Google)
FF HKLM-x32\...\Firefox\Extensions: [
[email protected]] - C:\Program Files\T-Mobile\InternetManager_H\OCx64\addon
FF HKLM-x32\...\Firefox\Extensions: [
[email protected]] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-05-01]
Chrome:
=======
CHR Profile: C:\Users\Lea\AppData\Local\Google\Chrome\User Data\Default
CHR HKU\S-1-5-21-826546569-3919575575-2117434215-1000\...\Chrome\Extension: [kljghhlcggnhofdcnlkelobcehdbnfnd] - C:\Users\Lea\AppData\Roaming\Nectar Search Toolbar\Toolbar_production_61465_85.crx [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-12-21]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 Advent AIO Network Discovery Service; C:\Program Files (x86)\Advent\AIO\Center\ADAIOHostService.exe [361904 2011-10-14] (DSGi)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [211584 2012-08-10] (Qualcomm Atheros Commnucations)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-12-21] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [104416 2014-12-21] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2014-12-21] (Avast Software)
S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2012-10-26] (Brother Industries, Ltd.) [File not signed]
R2 FFSOpzSvc; C:\Program Files\Sleep Memory Optimizer\FFSService.exe [141192 2011-09-17] (Acer Incorporated)
R2 IHProtect Service; C:\Program Files (x86)\STab\ProtectService.exe [158864 2014-11-10] (TODO: <Company name>)
S3 irstrtsv; C:\Windows\SysWOW64\irstrtsv.exe [184320 2011-07-07] (Intel Corporation) [File not signed]
R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256832 2011-04-24] (NTI Corporation)
R2 RS_Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [260640 2010-01-29] (Acer Incorporated)
R2 WindowsVNT_R3; C:\Program Files (x86)\Windows Network Accelerater\v3\winvxm.exe [2973600 2014-10-20] (MicroStudio) [File not signed]
R2 YouTubeDownload_P2; C:\Program Files (x86)\YouTube Downloader Services\P2\youtubeserv.exe [2967160 2014-11-01] (MicroTools)
R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Qualcomm Atheros Fast Reconnect\Ath_WlanAgent.exe [57344 2011-08-10] (Atheros) [File not signed]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 androidusb; C:\Windows\System32\Drivers\wsadb.sys [40808 2013-12-13] (Google Inc)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-12-21] ()
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [28184 2014-12-21] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-12-21] (AVAST Software)
R0 aswNdisFlt; C:\Windows\System32\DRIVERS\aswNdisFlt.sys [449936 2014-12-21] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-12-21] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-12-21] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-12-21] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-12-21] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-12-21] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-12-21] ()
S3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2012-08-10] (Qualcomm Atheros)
S3 GemCCID; C:\Windows\System32\Drivers\GemCCID.sys [119680 2009-08-10] (Gemalto)
R3 irstrtdv; C:\Windows\System32\DRIVERS\irstrtdv.sys [26504 2011-06-16] (Intel Corporation)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2014-12-21] (Avast Software)
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-30 22:07 - 2014-12-30 22:07 - 02123264 _____ (Farbar) C:\Users\Lea\Downloads\FRST64 (1).exe
2014-12-30 20:54 - 2014-12-30 20:54 - 00110166 _____ () C:\Users\Lea\Documents\OTL.Txt
2014-12-30 20:40 - 2014-12-30 20:40 - 00602112 _____ (OldTimer Tools) C:\Users\Lea\Downloads\OTL (2).exe
2014-12-30 20:35 - 2014-12-30 20:35 - 00108978 _____ () C:\Users\Lea\Downloads\Extras.Txt
2014-12-30 20:32 - 2014-12-30 20:53 - 00110166 _____ () C:\Users\Lea\Downloads\OTL.Txt
2014-12-30 20:24 - 2014-12-30 20:25 - 00880784 _____ (Google Inc.) C:\Users\Lea\Downloads\ChromeSetup (6).exe
2014-12-30 20:17 - 2014-12-30 20:17 - 00651776 _____ () C:\Users\Lea\Downloads\MicrosoftFixit50228.msi
2014-12-30 20:11 - 2014-12-30 20:11 - 00602112 _____ (OldTimer Tools) C:\Users\Lea\Downloads\OTL (1).exe
2014-12-30 20:10 - 2014-12-30 20:11 - 00602112 _____ (OldTimer Tools) C:\Users\Lea\Downloads\OTL.exe
2014-12-30 20:07 - 2014-12-30 20:07 - 00880784 _____ (Google Inc.) C:\Users\Lea\Downloads\ChromeSetup (5).exe
2014-12-30 20:00 - 2014-12-30 20:00 - 00880784 _____ (Google Inc.) C:\Users\Lea\Downloads\ChromeSetup (4).exe
2014-12-30 19:56 - 2014-12-30 19:56 - 00880784 _____ (Google Inc.) C:\Users\Lea\Downloads\ChromeSetup (3).exe
2014-12-30 19:55 - 2014-12-30 19:55 - 00880784 _____ (Google Inc.) C:\Users\Lea\Downloads\ChromeSetup (2).exe
2014-12-30 16:58 - 2014-12-30 16:58 - 00000197 _____ () C:\Windows\system32\2014-12-30-16-58-12.008-AvastVBoxSVC.exe-3512.log
2014-12-29 20:56 - 2014-12-29 20:56 - 00048165 _____ () C:\Users\Lea\Documents\FRST.txt
2014-12-29 20:55 - 2014-12-29 20:55 - 00038357 _____ () C:\Users\Lea\Documents\Addition.txt
2014-12-29 20:48 - 2014-12-29 20:48 - 00004588 _____ () C:\Users\Lea\Documents\mb.txt
2014-12-29 20:43 - 2014-12-29 20:44 - 00038357 _____ () C:\Users\Lea\Downloads\Addition.txt
2014-12-29 20:41 - 2014-12-30 22:11 - 00027715 _____ () C:\Users\Lea\Downloads\FRST.txt
2014-12-29 20:41 - 2014-12-30 22:11 - 00000000 ____D () C:\FRST
2014-12-29 20:40 - 2014-12-29 20:40 - 02123264 _____ (Farbar) C:\Users\Lea\Downloads\FRST64.exe
2014-12-29 16:27 - 2014-12-29 16:28 - 00000197 _____ () C:\Windows\system32\2014-12-29-16-27-59.079-AvastVBoxSVC.exe-2548.log
2014-12-29 14:45 - 2014-12-30 16:57 - 00003962 _____ () C:\Windows\PFRO.log
2014-12-29 11:28 - 2014-12-29 11:28 - 00290304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\subinacl.exe
2014-12-29 11:28 - 2014-12-29 11:28 - 00000000 ____D () C:\Program Files\Adware-Removal-Tool
2014-12-29 11:27 - 2014-12-29 11:27 - 00753184 _____ () C:\Users\Lea\Downloads\Adware-Removal-Tool-v3.9.1.exe
2014-12-29 11:09 - 2014-12-29 11:09 - 00000197 _____ () C:\Windows\system32\2014-12-29-11-09-02.021-AvastVBoxSVC.exe-3984.log
2014-12-29 01:34 - 2014-12-29 01:34 - 00000197 _____ () C:\Windows\system32\2014-12-29-01-34-44.086-AvastVBoxSVC.exe-3768.log
2014-12-29 01:31 - 2014-12-30 16:57 - 00000280 _____ () C:\Windows\setupact.log
2014-12-29 01:31 - 2014-12-29 01:31 - 00000000 _____ () C:\Windows\setuperr.log
2014-12-29 00:37 - 2014-12-30 20:29 - 00009630 _____ () C:\Windows\IE11_main.log
2014-12-28 20:02 - 2014-12-28 20:02 - 00000000 ____D () C:\Users\Lea\AppData\Local\Chromium
2014-12-28 18:16 - 2014-12-28 18:17 - 00000197 _____ () C:\Windows\system32\2014-12-28-18-16-55.099-AvastVBoxSVC.exe-4388.log
2014-12-27 00:40 - 2014-12-27 00:40 - 00001197 _____ () C:\Users\Lea\po.txt
2014-12-27 00:07 - 2014-12-27 00:07 - 00003268 _____ () C:\Windows\System32\Tasks\avastBCLRestartS-1-5-21-826546569-3919575575-2117434215-1000
2014-12-26 21:06 - 2014-12-26 21:06 - 00000197 _____ () C:\Windows\system32\2014-12-26-21-06-01.047-AvastVBoxSVC.exe-4504.log
2014-12-23 23:33 - 2014-12-23 23:33 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2014-12-23 23:31 - 2014-12-23 23:31 - 00000197 _____ () C:\Windows\system32\2014-12-23-23-31-20.058-AvastVBoxSVC.exe-4472.log
2014-12-22 22:52 - 2014-12-22 22:52 - 00000197 _____ () C:\Windows\system32\2014-12-22-22-52-31.003-AvastVBoxSVC.exe-4036.log
2014-12-22 00:58 - 2014-12-22 00:59 - 05317104 _____ (Piriform Ltd) C:\Users\Lea\Downloads\ccsetup501.exe
2014-12-21 23:30 - 2014-12-21 23:30 - 00000197 _____ () C:\Windows\system32\2014-12-21-23-30-10.096-AvastVBoxSVC.exe-3796.log
2014-12-21 22:44 - 2014-12-21 22:44 - 00000197 _____ () C:\Windows\system32\2014-12-21-22-44-36.025-AvastVBoxSVC.exe-1096.log
2014-12-21 20:29 - 2014-12-21 20:29 - 00000197 _____ () C:\Windows\system32\2014-12-21-20-29-39.041-AvastVBoxSVC.exe-3788.log
2014-12-21 19:42 - 2014-12-21 19:42 - 00000247 _____ () C:\Windows\system32\2014-12-21-19-42-32.065-aswFe.exe-3544.log
2014-12-21 19:32 - 2014-12-21 19:42 - 00000247 _____ () C:\Windows\system32\2014-12-21-19-32-56.033-aswFe.exe-8136.log
2014-12-21 19:32 - 2014-12-21 19:32 - 00000197 _____ () C:\Windows\system32\2014-12-21-19-32-51.097-AvastVBoxSVC.exe-6216.log
2014-12-21 19:21 - 2014-12-21 19:21 - 00000247 _____ () C:\Windows\system32\2014-12-21-19-21-49.009-aswFe.exe-5100.log
2014-12-21 19:08 - 2014-12-21 19:21 - 00000247 _____ () C:\Windows\system32\2014-12-21-19-08-53.072-aswFe.exe-604.log
2014-12-21 19:08 - 2014-12-21 19:08 - 00000197 _____ () C:\Windows\system32\2014-12-21-19-08-41.015-AvastVBoxSVC.exe-7432.log
2014-12-21 18:30 - 2014-12-21 18:35 - 00000000 ____D () C:\Windows\SysWOW64\vbox
2014-12-21 18:30 - 2014-12-21 18:35 - 00000000 ____D () C:\Windows\system32\vbox
2014-12-21 17:40 - 2014-12-21 17:41 - 00000000 ____D () C:\ProgramData\{3B77D3B4-6BF5-0232-DA73-72B00AF1A13E}
2014-12-21 17:39 - 2014-12-21 17:40 - 00000000 ____D () C:\ProgramData\Unchecky
2014-12-21 17:39 - 2014-12-21 17:39 - 00000000 ____D () C:\Users\Lea\AppData\Local\StormFall
2014-12-21 17:30 - 2014-12-21 17:30 - 00001994 _____ () C:\Users\Public\Desktop\Avast SafeZone.lnk
2014-12-21 17:30 - 2014-12-21 17:30 - 00001934 _____ () C:\Users\Public\Desktop\Avast Internet Security.lnk
2014-12-21 17:30 - 2014-12-21 17:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2014-12-21 17:28 - 2014-12-21 17:28 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-12-21 17:28 - 2014-12-21 17:28 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-12-21 17:28 - 2014-12-21 17:27 - 00028184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2014-12-21 17:25 - 2014-12-21 17:25 - 00449936 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNdisFlt.sys
2014-12-21 17:19 - 2014-12-30 17:05 - 00000000 ____D () C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800
2014-12-21 17:19 - 2014-12-21 17:19 - 00004614 _____ () C:\Windows\System32\Tasks\Runner IC
2014-12-21 17:15 - 2014-12-29 14:44 - 00000000 ____D () C:\Users\Lea\AppData\Roaming\VOPackage
2014-12-20 23:30 - 2014-12-20 23:30 - 00000671 _____ () C:\Users\Lea\fj.txt
2014-12-16 21:40 - 2014-12-16 21:41 - 03949545 _____ () C:\Users\Lea\Downloads\Week 10 - Academic writing - Part 3.pptx
2014-12-16 21:36 - 2014-12-16 21:36 - 01617371 _____ () C:\Users\Lea\Downloads\Week 11 - Group Presentations.pptx
2014-12-13 23:23 - 2014-12-13 23:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-12-13 23:23 - 2014-12-13 23:23 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-12-13 23:23 - 2014-12-13 23:23 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-12-13 23:21 - 2014-12-13 23:22 - 13087456 _____ (Microsoft Corporation) C:\Users\Lea\Downloads\Silverlight_x64.exe
2014-12-13 02:57 - 2014-12-13 02:57 - 00001690 _____ () C:\Windows\SysWOW64\${LOGFILE}
2014-12-13 00:49 - 2014-12-13 02:11 - 00000000 ____D () C:\Users\Lea\AppData\Roaming\vlc
2014-12-13 00:46 - 2014-12-13 00:46 - 24743106 _____ () C:\Users\Lea\Downloads\vlc-2.1.5-win32.exe
2014-12-13 00:44 - 2014-12-13 02:59 - 00000000 ____D () C:\Users\Lea\AppData\Roaming\Store
2014-12-13 00:44 - 2014-12-13 00:44 - 00000857 _____ () C:\Users\Lea\Desktop\Install VLC.lnk
2014-12-13 00:39 - 2014-12-28 22:16 - 00000000 ____D () C:\Program Files (x86)\VideoLAN
2014-12-13 00:34 - 2014-12-13 00:35 - 00000000 ____D () C:\Users\Lea\AppData\Local\{F1B4641B-6E5B-40AB-AC09-0C6AD40B78A6}
2014-12-13 00:02 - 2014-12-13 00:16 - 00000000 ____D () C:\Users\Lea\Downloads\Soul.Plane.2004.720p.HDTV.DD2.0.x264- EbP
2014-12-13 00:02 - 2014-12-13 00:02 - 00330349 _____ () C:\Users\Lea\Downloads\400787A0A6FDD26974DC72B104B6466B9C9672C8.torrent
2014-12-12 23:45 - 2014-12-12 23:45 - 00014885 _____ () C:\Users\Lea\Downloads\1B56200FF91ED87FB9089DFAF313E3B56276BAE4 (1).torrent
2014-12-12 21:43 - 2014-12-12 21:43 - 00000000 ____D () C:\Users\Lea\Downloads\Convict.2014.HDRip.XviD-SaM[ETRG]
2014-12-12 21:42 - 2014-12-12 21:42 - 00014885 _____ () C:\Users\Lea\Downloads\1B56200FF91ED87FB9089DFAF313E3B56276BAE4.torrent
2014-12-12 19:56 - 2014-12-12 19:56 - 00000000 ____D () C:\showbox
2014-12-12 19:53 - 2014-12-12 20:03 - 00000000 ____D () C:\ProgramData\BlueStacksSetup
2014-12-12 19:51 - 2014-12-12 19:51 - 13444288 _____ (BlueStack Systems Inc.) C:\Users\Lea\Downloads\BlueStacks-SplitInstaller_native.exe
2014-12-11 12:13 - 2014-12-11 12:13 - 04793344 _____ () C:\Users\Lea\Downloads\Living-Links-measuring-behaviour-ppt (1).ppt
2014-12-11 11:41 - 2014-12-11 11:42 - 04793344 _____ () C:\Users\Lea\Downloads\Living-Links-measuring-behaviour-ppt.ppt
2014-12-10 18:30 - 2014-12-10 18:30 - 00740122 _____ () C:\Users\Lea\Downloads\MOLE Lesson 2- The Scientific Method (1).pptx
2014-12-10 16:48 - 2014-12-10 16:48 - 00000000 ____D () C:\Windows\system32\appraiser
2014-12-10 16:22 - 2014-10-18 02:05 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2014-12-10 16:22 - 2014-10-18 01:33 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2014-12-10 16:22 - 2014-07-07 02:06 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2014-12-10 16:22 - 2014-07-07 02:06 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2014-12-10 16:22 - 2014-07-07 02:06 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2014-12-10 16:22 - 2014-07-07 02:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2014-12-10 16:22 - 2014-07-07 01:40 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2014-12-10 16:22 - 2014-07-07 01:39 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2014-12-10 16:22 - 2014-07-07 01:39 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2014-12-10 16:22 - 2014-07-07 01:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2014-12-09 21:41 - 2014-12-04 02:50 - 00830976 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2014-12-09 21:41 - 2014-12-04 02:50 - 00741376 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2014-12-09 21:41 - 2014-12-04 02:50 - 00413184 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-12-09 21:41 - 2014-12-04 02:50 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-12-09 21:41 - 2014-12-04 02:50 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-12-09 21:41 - 2014-12-04 02:50 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-12-09 21:41 - 2014-12-04 02:44 - 01083392 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-12-09 21:41 - 2014-12-01 23:28 - 01232040 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2014-12-09 21:40 - 2014-11-11 03:09 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-12-09 21:40 - 2014-11-11 02:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-12-09 21:40 - 2014-11-11 01:46 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2014-12-09 21:40 - 2014-11-08 03:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-12-09 21:40 - 2014-11-08 02:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-12-09 21:40 - 2014-10-30 02:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2014-12-09 21:40 - 2014-10-30 01:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
2014-12-09 21:40 - 2014-10-03 02:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2014-12-09 21:40 - 2014-10-03 02:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2014-12-09 21:40 - 2014-10-03 02:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2014-12-09 21:40 - 2014-10-03 02:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2014-12-09 21:40 - 2014-10-03 02:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2014-12-09 21:40 - 2014-10-03 01:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2014-12-09 21:40 - 2014-10-03 01:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2014-12-09 21:40 - 2014-10-03 01:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2014-12-09 21:40 - 2014-10-03 01:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2014-12-09 21:40 - 2014-10-03 01:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2014-12-08 16:49 - 2014-12-08 16:49 - 00880784 _____ (Google Inc.) C:\Users\Lea\Downloads\ChromeSetup (1).exe
2014-12-08 16:48 - 2014-12-08 16:48 - 00880784 _____ (Google Inc.) C:\Users\Lea\Downloads\ChromeSetup.exe
2014-12-07 23:27 - 2014-12-17 23:09 - 00003826 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1417994842
2014-12-07 23:27 - 2014-12-07 23:27 - 00683496 _____ (Opera Software) C:\Users\Lea\Downloads\Opera_NI_stable.exe
2014-12-07 23:27 - 2014-12-07 23:27 - 00001099 _____ () C:\Users\Public\Desktop\Opera 26.lnk
2014-12-07 23:27 - 2014-12-07 23:27 - 00001099 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera 26.lnk
2014-12-07 23:27 - 2014-12-07 23:27 - 00000000 ____D () C:\Users\Lea\AppData\Roaming\Opera Software
2014-12-07 23:27 - 2014-12-07 23:27 - 00000000 ____D () C:\Users\Lea\AppData\Local\Opera Software
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-30 22:11 - 2012-04-10 15:35 - 00000000 ____D () C:\Users\Lea\AppData\Roaming\uTorrent
2014-12-30 22:07 - 2013-08-06 01:02 - 00000900 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-826546569-3919575575-2117434215-1000UA.job
2014-12-30 22:04 - 2011-12-05 11:15 - 01226103 _____ () C:\Windows\WindowsUpdate.log
2014-12-30 21:57 - 2012-08-07 15:47 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-30 21:44 - 2012-11-17 00:11 - 00000898 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-30 19:51 - 2012-11-17 00:11 - 00000894 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-30 18:22 - 2012-07-23 18:37 - 00000000 ____D () C:\ProgramData\Advent
2014-12-30 17:07 - 2009-07-14 04:45 - 00031712 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-30 17:07 - 2009-07-14 04:45 - 00031712 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-30 16:57 - 2009-07-14 05:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-12-30 01:39 - 2012-04-10 15:39 - 00000000 ____D () C:\Users\Lea\AppData\Roaming\SoftGrid Client
2014-12-29 23:07 - 2013-08-06 01:02 - 00000848 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-826546569-3919575575-2117434215-1000Core.job
2014-12-29 20:45 - 2014-05-13 11:37 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-12-29 18:47 - 2009-07-14 03:20 - 00000000 ____D () C:\Windows\rescache
2014-12-29 14:45 - 2011-10-21 01:42 - 00000000 ____D () C:\Windows\ca
2014-12-29 14:44 - 2014-05-11 21:26 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2014-12-29 13:35 - 2012-04-15 11:34 - 00000000 ____D () C:\Users\Lea\AppData\Local\CrashDumps
2014-12-28 19:04 - 2014-11-28 20:17 - 00032689 _____ () C:\Users\Lea\Downloads\software_removal_tool.log
2014-12-28 18:18 - 2014-05-01 16:30 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-12-27 00:40 - 2012-04-10 13:36 - 00000000 ____D () C:\Users\Lea
2014-12-22 01:26 - 2012-08-04 23:49 - 00000000 ____D () C:\Windows\Minidump
2014-12-21 17:42 - 2009-07-14 02:34 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.old
2014-12-21 17:29 - 2014-05-13 12:03 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-12-21 17:28 - 2014-05-13 12:03 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-12-21 17:28 - 2014-05-13 12:03 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-12-21 17:28 - 2014-05-13 12:03 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-12-21 17:28 - 2014-05-13 12:03 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-12-21 17:28 - 2014-05-13 12:03 - 00083280 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-12-21 17:28 - 2014-05-13 12:03 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-12-21 17:28 - 2014-05-01 16:28 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-12-21 17:26 - 2012-11-24 14:46 - 00000000 ____D () C:\Users\Lea\AppData\Local\Opera
2014-12-21 17:26 - 2012-11-24 14:46 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-12-21 17:25 - 2012-11-24 14:46 - 00000000 ____D () C:\Users\Lea\AppData\Roaming\Opera
2014-12-15 22:42 - 2009-07-14 05:13 - 00783464 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-12-13 03:01 - 2009-07-14 03:20 - 00000000 __RHD () C:\Users\Public\Libraries
2014-12-13 02:44 - 2012-09-01 11:38 - 00001067 _____ () C:\Windows\wininit.ini
2014-12-13 00:42 - 2014-05-02 00:16 - 00000000 _____ () C:\end
2014-12-11 11:15 - 2011-10-21 01:21 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
2014-12-10 16:48 - 2014-05-06 14:14 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-12-10 16:48 - 2009-07-14 03:20 - 00000000 ____D () C:\Windows\AppCompat
2014-12-10 16:32 - 2013-07-13 21:08 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-10 16:22 - 2012-04-10 20:21 - 112710672 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-12-09 22:57 - 2012-08-07 15:47 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-12-09 22:57 - 2012-08-07 15:47 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-12-09 22:57 - 2011-10-21 01:10 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-12-08 20:17 - 2014-08-06 21:25 - 00023703 _____ () C:\Windows\BRRBCOM.INI
2014-12-08 16:51 - 2012-04-10 15:30 - 00000000 ____D () C:\Users\Lea\AppData\Local\Google
2014-12-07 19:24 - 2014-11-15 00:32 - 00000000 ____D () C:\ProgramData\saferweb
2014-12-07 18:41 - 2014-05-13 11:36 - 00001066 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-12-07 18:41 - 2014-05-13 11:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-12-07 18:41 - 2014-05-13 11:36 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-12-29 18:35
==================== End Of Log ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 28-12-2014
Ran by Lea at 2014-12-30 22:12:36
Running from C:\Users\Lea\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-826546569-3919575575-2117434215-1000\...\uTorrent) (Version: 3.4.2.36802 - BitTorrent Inc.)
Acer Backup Manager (HKLM-x32\...\InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}) (Version: 3.0.0.99 - NTI Corporation)
Acer Crystal Eye Webcam (HKLM-x32\...\InstallShield_{A0382E3C-7384-429A-9BFA-AF5888E5A193}) (Version: 1.5.3018.00 - CyberLink Corp.)
Acer Crystal Eye Webcam (x32 Version: 1.5.3018.00 - CyberLink Corp.) Hidden
Acer Deep Sleep Settings (HKLM-x32\...\{86F3E556-83B1-47E5-A36B-560A521B999B}) (Version: 1.00.3008 - Acer Incorporated)
Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3008 - Acer Incorporated)
Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 5.00.3504 - Acer Incorporated)
Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.04.3504 - Acer Incorporated)
Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0902.2011 - Acer Incorporated)
Acer Updater (HKLM-x32\...\{EE171732-BEB4-4576-887D-CB62727F01CA}) (Version: 1.02.3502 - Acer Incorporated)
Acer VCM (HKLM-x32\...\{047F790A-7A2A-4B6A-AD02-38092BA63DAC}) (Version: 4.05.3501 - Acer Incorporated)
AdC4USelfUpdater (x32 Version: 1.00.0000 - Advent) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 14.0.0.110 - Adobe Systems Incorporated)
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.246 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.246 - Adobe Systems Incorporated)
Adobe Reader X (10.1.13) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.13 - Adobe Systems Incorporated)
ADVENT AIO Printer (HKLM-x32\...\{27B5D9DE-D57D-48ee-A4F1-DC3D9DA0DF57}) (Version: 1.3.3.10 - Advent)
Advent AIO Printer (Version: 1.0.6.2 - DSGi) Hidden
Advent Essentials (x32 Version: 1.0.0.0 - DSGi) Hidden
aioscnnr (x32 Version: 1.0.6.0 - DSGi) Hidden
Amazon MP3-Downloader 1.0.9 (HKLM-x32\...\Amazon MP3-Downloader) (Version: - )
Anki (HKLM-x32\...\Anki) (Version: - )
Atheros Driver Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 9.0 - Atheros)
Avast Internet Security (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software)
Backup Manager V3 (x32 Version: 3.0.0.99 - NTI Corporation) Hidden
Bing Bar (HKLM-x32\...\{3365E735-48A6-4194-9988-CE59AC5AE503}) (Version: 7.3.132.0 - Microsoft Corporation)
Brother MFL-Pro Suite DCP-J132W (HKLM-x32\...\{B742757A-7658-4E09-A51A-085CF0F7F4D3}) (Version: 1.0.0.0 - Brother Industries, Ltd.)
CCleaner (HKLM\...\CCleaner) (Version: 4.13 - Piriform)
clear.fi (HKLM-x32\...\InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 1.0.2024.00 - CyberLink Corp.)
clear.fi (x32 Version: 1.0.1517_36458 - CyberLink Corp.) Hidden
clear.fi (x32 Version: 1.0.2024.00 - CyberLink Corp.) Hidden
clear.fi (x32 Version: 9.0.8026 - CyberLink Corp.) Hidden
clear.fi Client (HKLM-x32\...\{43AAE145-83CF-4C96-9A5E-756CEFCE879F}) (Version: 1.00.3500 - Acer Incorporated)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.7000.7 - Dolby Laboratories Inc)
Dropbox (HKU\S-1-5-21-826546569-3919575575-2117434215-1000\...\Dropbox) (Version: 2.6.24 - Dropbox, Inc.)
Edificius (x32 Version: 6.00 - ACCA) Hidden
Edificius v.6.00g (HKLM-x32\...\{614F8F83-BB96-4000-8116-67D1BC132830}) (Version: 6.00g - EN - ACCA software S.p.A.)
ETDWare PS/2-X64 10.0.6.3_WHQL (HKLM\...\Elantech) (Version: 10.0.6.3 - ELAN Microelectronic Corp.)
Evernote v. 4.6.3 (HKLM-x32\...\{4C8BBCC8-8363-11E2-A3F4-984BE15F174E}) (Version: 4.6.3.8096 - Evernote Corp.)
FinePrint (HKLM\...\FinePrint) (Version: 8.15 - FinePrint Software, LLC)
Fotogalerija Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galeria fotogràfica del Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie foto Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Talk Plugin (HKLM-x32\...\{0C5C1177-94C5-3EFB-A8BE-3F6AF1AF887F}) (Version: 5.38.6.0 - Google)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.5111.1712 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3501 - Acer Incorporated)
Intel® Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel® Identity Protection Technology 1.2.18.0 (HKLM-x32\...\{9602841E-ECE2-1019-AAEE-906A4DE25D6B}) (Version: 1.2.18.0 - Intel Corporation)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2476 - Intel Corporation)
Intel® Rapid Start Technology (HKLM-x32\...\3D073343-CEEB-4ce7-85AC-A69A7631B5D6) (Version: 1.0.0.1008 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.6.0.1002 - Intel Corporation)
Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217055FF}) (Version: 7.0.550 - Oracle)
JavaFX 2.1.1 (HKLM-x32\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
jZip (HKLM-x32\...\jZip) (Version: - )
Kobo (HKLM-x32\...\Kobo) (Version: 3.10.0 - Rakuten Kobo Inc.)
Launch Manager (HKLM-x32\...\LManager) (Version: 5.1.4 - Acer Inc.)
MagicDisc 2.7.106 (HKLM-x32\...\MagicDisc 2.7.106) (Version: - )
Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office PowerPoint Viewer 2007 (English) (HKLM-x32\...\{95120000-00AF-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Starter 2010 - English (HKLM-x32\...\{90140011-0066-0409-0000-0000000FF1CE}) (Version: 14.0.5131.5000 - Microsoft Corporation)
Microsoft PowerPoint Viewer (HKLM-x32\...\{95140000-00AF-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MyWinLocker (Version: 4.0.14.27 - Egis Technology Inc.) Hidden
MyWinLocker 4 (x32 Version: 4.0.14.27 - Egis Technology Inc.) Hidden
MyWinLocker Suite (HKLM-x32\...\InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.19 - Egis Technology Inc.)
MyWinLocker Suite (x32 Version: 4.0.14.19 - Egis Technology Inc.) Hidden
OpenOffice 4.1.0 (HKLM-x32\...\{C87EF11D-36E9-479D-9898-7541EA1E8A6A}) (Version: 4.10.9764 - Apache Software Foundation)
Opera Stable 26.0.1656.60 (HKLM-x32\...\Opera 26.0.1656.60) (Version: 26.0.1656.60 - Opera Software ASA)
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Pošta Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
PreReq (x32 Version: 6.0.5.2 - Eastman Kodak Company) Hidden
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.206 - Qualcomm Atheros Communications)
Qualcomm Atheros Fast Reconnect (HKLM-x32\...\{5C20A342-085D-4000-B69D-492F3BA4BF94}) (Version: 1.0 - QualComm Atheros)
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6433 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Reader Driver (HKLM-x32\...\{62BBB2F0-E220-4821-A564-730807D2C34D}) (Version: 6.1.7601.39013 - Realtek Semiconductor Corp.)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Shredder (Version: 2.0.8.9 - Egis Technology Inc.) Hidden
Shredder (x32 Version: 2.0.8.9 - Egis Technology Inc.) Hidden
Skype™ 6.11 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.)
Sleep Memory Optimizer (HKLM-x32\...\{34BE2594-1D20-4A2E-97A0-B9E2837520AE}) (Version: 1.00.3004 - Acer Incorporated)
The Sims™ 3 Ambitions (HKLM-x32\...\{910F4A29-1134-49E0-AD8B-56E4A3152BD1}) (Version: 4.0.87 - Electronic Arts)
Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3504 - Acer Incorporated)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3538.0513 - Microsoft Corporation)
XMind 2013 (v3.4.1) (HKLM-x32\...\XMind_is1) (Version: 3.4.1.201401221918 - XMind Ltd.)
Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Основные компоненты Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Почта Windows Live (x32 Version: 15.4.3502.0922 - Корпорация Майкрософт) Hidden
Фотоальбом Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Фотогалерия на Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
بريد Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
CustomCLSID: HKU\S-1-5-21-826546569-3919575575-2117434215-1000_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Lea\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-826546569-3919575575-2117434215-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Lea\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-826546569-3919575575-2117434215-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Lea\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-826546569-3919575575-2117434215-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Lea\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-826546569-3919575575-2117434215-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Lea\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-826546569-3919575575-2117434215-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Lea\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-826546569-3919575575-2117434215-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Lea\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-826546569-3919575575-2117434215-1000_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Lea\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll No File
==================== Restore Points =========================
08-12-2014 00:36:44 Windows Update
08-12-2014 17:02:45 Windows Defender Checkpoint
09-12-2014 01:36:57 Windows Update
10-12-2014 16:18:16 Windows Update
13-12-2014 02:59:54 Removed BlueStacks Notification Center
13-12-2014 03:00:13 Windows Update
13-12-2014 04:01:16 Windows Update
13-12-2014 23:16:28 Removed Microsoft Silverlight
14-12-2014 03:00:16 Windows Update
14-12-2014 03:53:45 Windows Update
15-12-2014 22:38:49 Windows Update
16-12-2014 02:34:51 Windows Update
17-12-2014 19:34:08 Windows Update
17-12-2014 23:57:02 Windows Update
18-12-2014 01:57:40 Windows Update
20-12-2014 22:57:33 Windows Update
21-12-2014 00:01:06 Windows Update
21-12-2014 17:14:21 Windows Update
21-12-2014 17:22:25 avast! antivirus system restore point
21-12-2014 17:29:09 Device Driver Package Install: Avast Network Service
21-12-2014 22:34:28 Software Removal Tool
22-12-2014 01:51:39 Windows Update
23-12-2014 00:53:06 Windows Update
26-12-2014 21:09:52 Windows Update
27-12-2014 00:44:33 Windows Update
29-12-2014 00:36:59 Windows Update
29-12-2014 02:03:00 Windows Update
30-12-2014 01:40:10 Windows Update
30-12-2014 20:19:44 Windows Update
30-12-2014 20:22:01 Windows Update
30-12-2014 20:23:53 Windows Update
30-12-2014 20:28:25 Windows Update
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {14743BBA-6DF3-44B0-BD30-F953C3F3BB53} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {2A38BC47-9D38-46AE-98A6-6BD0D80185A3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-25] (Google Inc.)
Task: {37A2C7F1-1C6D-4CB9-BE8C-86B1C1172E68} - System32\Tasks\PMMUpdate => C:\Program Files\EgisTec IPS\PMMUpdate.exe [2011-03-28] (Egis Technology Inc.)
Task: {50A37FFF-AC42-49D5-A56C-DA69DE940823} - System32\Tasks\EgisUpdate => C:\Program Files\EgisTec IPS\EgisUpdate.exe [2011-03-28] (Egis Technology Inc.)
Task: {5A87B349-189E-4059-A3E9-6C2F98530278} - System32\Tasks\clear.fi => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe [2011-08-24] (Acer Incorporated)
Task: {5F0D9F42-FB4F-41D5-BC3A-C541F2CFE462} - System32\Tasks\clear.fiAgent => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe [2011-08-24] (CyberLink Corp.)
Task: {77B3CD3C-0AC3-471C-BAFD-9F25CC5A1016} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-25] (Google Inc.)
Task: {7CF07D9A-8C46-48E7-A0B5-0B0A63DE7A02} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-12-21] (AVAST Software)
Task: {7F56EA38-A7FD-4707-98A6-9B5FB9453768} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-04-17] (Piriform Ltd)
Task: {90FAACE9-D03B-46B3-B81C-D86A16112EEE} - System32\Tasks\{A83BC985-A76D-418A-930E-6A952A51D03D} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{910F4A29-1134-49E0-AD8B-56E4A3152BD1}\Sims3EP02Setup.exe" -c -runfromtemp -l0x0009 -removeonly
Task: {94D5CC3F-2B72-41A7-AA92-A787FAAB2A21} - System32\Tasks\avastBCLRestartS-1-5-21-826546569-3919575575-2117434215-1000 => Chrome.exe
Task: {958E0E1C-859F-447D-A6F1-B243DD96B103} - System32\Tasks\{6DBB1977-06FA-4253-8C11-919DE8C52E34} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{B742757A-7658-4E09-A51A-085CF0F7F4D3}\Setup.exe" -c -runfromtemp -l0x0009 UNINSTALL Reg=BHmini13_C2 -removeonly
Task: {978D6381-14D2-43D5-9579-261789B2A134} - System32\Tasks\UALU notificatin => C:\Program Files\Acer\Acer Updater\UALU.exe [2012-04-05] (Acer Incorporated)
Task: {A2DA72CC-38D6-46DF-9126-037C111AF2C8} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-826546569-3919575575-2117434215-1000UA => C:\Users\Lea\AppData\Local\Google\Update\GoogleUpdate.exe [2013-08-06] (Google Inc.)
Task: {A362F3C4-C978-4340-A16B-16E1A0D52F59} - System32\Tasks\{2A892629-832C-49CA-A6E0-FD7774B6FB6E} => pcalua.exe -a "C:\Program Files (x86)\Freeven pro 1.2\Uninstall.exe" -c /fcp=1
Task: {BECFE957-BAD9-4282-B922-44244A72745B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {C63FD030-9D43-4247-89C6-163AC27A97A4} - System32\Tasks\Runner IC => %LOCALAPPDATA%\7A95CA11-3011-B740-B402-AA0111F90800\Runner.exe
Task: {D9E525AD-4FE4-42FF-B057-D8B601E23AF0} - System32\Tasks\Microsoft\Windows\Maintenance\Update IC => %LOCALAPPDATA%\7A95CA11-3011-B740-B402-AA0111F90800\Runner.exe
Task: {DE3D9038-8E72-4F12-B737-0B2DCC601F6D} - System32\Tasks\Opera scheduled Autoupdate 1417994842 => C:\Program Files (x86)\Opera\launcher.exe [2014-12-17] (Opera Software)
Task: {E130326A-FE90-4CFD-B6D2-8750E3DE15ED} - System32\Tasks\LaunchSignup => C:\Program Files (x86)\MyPC Backup\Signup Wizard.exe <==== ATTENTION
Task: {EC930452-109B-4A89-A433-5BB5A333B34F} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-826546569-3919575575-2117434215-1000Core => C:\Users\Lea\AppData\Local\Google\Update\GoogleUpdate.exe [2013-08-06] (Google Inc.)
Task: {F701F532-F134-412D-87D0-327C5AB0805B} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-09] (Adobe Systems Incorporated)
Task: {F971B0FA-775E-4D9B-9AE9-D0EF7EA4AE5E} - System32\Tasks\DMREngine => C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe [2011-08-24] (CyberLink)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-826546569-3919575575-2117434215-1000Core.job => C:\Users\Lea\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-826546569-3919575575-2117434215-1000UA.job => C:\Users\Lea\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2014-08-06 21:23 - 2005-04-22 04:36 - 00143360 _____ () C:\Windows\system32\BrSNMP64.dll
2014-12-21 17:25 - 2014-12-21 17:25 - 00388208 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxDDU.dll
2014-12-21 17:25 - 2014-12-21 17:25 - 05851328 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxRT.dll
2011-12-05 18:52 - 2011-08-09 15:44 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2012-08-10 18:28 - 2012-08-10 18:28 - 00384128 _____ () C:\Program Files (x86)\Bluetooth Suite\ContactsApi.dll
2014-12-18 12:42 - 2014-12-18 12:42 - 00386608 _____ () C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Runner.exe
2014-12-17 23:09 - 2014-12-17 23:09 - 00535160 _____ () C:\Program Files (x86)\Opera\26.0.1656.60\opera_crashreporter.exe
2014-12-29 20:43 - 2014-12-29 20:43 - 02908160 _____ () C:\Program Files\AVAST Software\Avast\defs\14122901\algo.dll
2014-12-21 17:26 - 2014-12-21 17:26 - 04495336 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\x86\VBoxRT-x86.dll
2014-12-30 16:58 - 2014-12-30 16:58 - 02908160 _____ () C:\Program Files\AVAST Software\Avast\defs\14123000\algo.dll
2014-12-30 20:10 - 2014-12-30 20:10 - 02908160 _____ () C:\Program Files\AVAST Software\Avast\defs\14123001\algo.dll
2011-04-24 01:29 - 2011-04-24 01:29 - 00465640 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll
2011-04-24 01:29 - 2011-04-24 01:29 - 01081664 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\ACE.dll
2011-04-24 01:29 - 2011-04-24 01:29 - 00125760 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\MailConverter32.dll
2012-09-08 12:16 - 2012-09-08 12:16 - 00433664 _____ () C:\Program Files (x86)\Evernote\Evernote\libxml2.dll
2012-09-08 12:16 - 2012-09-08 12:16 - 00315392 _____ () C:\Program Files (x86)\Evernote\Evernote\libtidy.dll
2014-12-21 17:27 - 2014-12-21 17:28 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2014-08-06 21:22 - 2009-02-27 15:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
2011-08-24 18:03 - 2011-08-24 18:03 - 00206216 _____ () C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\CLNetMediaDMA.dll
2014-12-18 12:43 - 2014-12-18 12:43 - 00096816 _____ () C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Modules\ManXec.dll
2014-12-18 12:42 - 2014-12-18 12:42 - 00079408 _____ () C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Modules\CmdProc.dll
2014-12-18 12:43 - 2014-12-18 12:43 - 00049200 _____ () C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Modules\NavSupp.dll
2014-12-18 12:43 - 2014-12-18 12:43 - 00044592 _____ () C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Modules\PrfIns.dll
2014-12-18 12:43 - 2014-12-18 12:43 - 00054320 _____ () C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Modules\WbSes.dll
2014-12-18 12:44 - 2014-12-18 12:44 - 00116784 _____ () C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Modules\WdcMan.dll
2014-12-18 12:43 - 2014-12-18 12:43 - 00122416 _____ () C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Modules\WblSupp.dll
2014-12-18 12:42 - 2014-12-18 12:42 - 00101936 _____ () C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Modules\CmnUtls.dll
2014-12-17 23:09 - 2014-12-17 23:09 - 01358456 _____ () C:\Program Files (x86)\Opera\26.0.1656.60\libglesv2.dll
2014-12-17 23:09 - 2014-12-17 23:09 - 00219256 _____ () C:\Program Files (x86)\Opera\26.0.1656.60\libegl.dll
2014-12-17 23:09 - 2014-12-17 23:09 - 09312888 _____ () C:\Program Files (x86)\Opera\26.0.1656.60\pdf.dll
2014-12-17 23:09 - 2014-12-17 23:09 - 00991352 _____ () C:\Program Files (x86)\Opera\26.0.1656.60\ffmpegsumo.dll
2014-12-30 17:05 - 2014-10-23 08:14 - 01091584 _____ () C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Chrome-bin\libglesv2.dll
2014-12-30 17:05 - 2014-10-23 08:19 - 00167936 _____ () C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Chrome-bin\libEGL.dll
2014-12-30 17:05 - 2014-10-23 08:26 - 08569856 _____ () C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Chrome-bin\pdf.dll
2014-12-30 17:05 - 2014-10-23 08:20 - 00324608 _____ () C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Chrome-bin\ppGoogleNaClPluginChrome.dll
2014-12-30 17:05 - 2014-10-23 08:23 - 00880128 _____ () C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Chrome-bin\ffmpegsumo.dll
2014-12-30 17:05 - 2014-09-23 04:07 - 14891848 _____ () C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Chrome-bin\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
========================= Accounts: ==========================
Administrator (S-1-5-21-826546569-3919575575-2117434215-500 - Administrator - Disabled)
Guest (S-1-5-21-826546569-3919575575-2117434215-501 - Limited - Enabled) => C:\Users\Guest.Lea-PC
HomeGroupUser$ (S-1-5-21-826546569-3919575575-2117434215-1002 - Limited - Enabled)
Lea (S-1-5-21-826546569-3919575575-2117434215-1000 - Administrator - Enabled) => C:\Users\Lea
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (12/30/2014 08:18:08 PM) (Source: MsiInstaller) (EventID: 10005) (User: Lea-PC)
Description: Product: Microsoft Fix it 50228 -- This Microsoft Fix it does not apply to your operating system or application version.
Error: (12/30/2014 04:57:26 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"1".
Dependent Assembly Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195" could not be found.
Please use sxstrace.exe for detailed diagnosis.
Error: (12/29/2014 04:25:13 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"1".
Dependent Assembly Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195" could not be found.
Please use sxstrace.exe for detailed diagnosis.
Error: (12/29/2014 02:45:42 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"1".
Dependent Assembly Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195" could not be found.
Please use sxstrace.exe for detailed diagnosis.
Error: (12/29/2014 01:35:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Runner.exe, version: 0.0.0.0, time stamp: 0x5492c820
Faulting module name: Runner.exe, version: 0.0.0.0, time stamp: 0x5492c820
Exception code: 0xc00000fd
Fault offset: 0x00001c41
Faulting process id: 0x1bd4
Faulting application start time: 0xRunner.exe0
Faulting application path: Runner.exe1
Faulting module path: Runner.exe2
Report Id: Runner.exe3
Error: (12/29/2014 11:07:21 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"1".
Dependent Assembly Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195" could not be found.
Please use sxstrace.exe for detailed diagnosis.
Error: (12/29/2014 01:31:59 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"1".
Dependent Assembly Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195" could not be found.
Please use sxstrace.exe for detailed diagnosis.
Error: (12/28/2014 06:18:02 PM) (Source: Application Error) (EventID: 1005) (User: )
Description: Windows cannot access the file for one of the following reasons:
there is a problem with the network connection, the disk that the file is stored on, or the storage
drivers installed on this computer; or the disk is missing.
Windows closed the program Optimize download youtube video process because of this error.
Program: Optimize download youtube video process
File:
The error value is listed in the Additional Data section.
User Action
1. Open the file again.
This situation might be a temporary problem that corrects itself when the program runs again.
2.
If the file still cannot be accessed and
- It is on the network,
your network administrator should verify that there is not a problem with the network and that the server can be contacted.
- It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer.
3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER.
4. If the problem persists, restore the file from a backup copy.
5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for
further assistance.
Additional Data
Error value: 00000000
Disk type: 0
Error: (12/28/2014 06:18:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: youtubeserv.exe, version: 1.6.7.0, time stamp: 0x5454c8a9
Faulting module name: ole32.dll, version: 6.1.7601.17514, time stamp: 0x4ce7b96f
Exception code: 0xc0000096
Fault offset: 0x00048665
Faulting process id: 0xac4
Faulting application start time: 0xyoutubeserv.exe0
Faulting application path: youtubeserv.exe1
Faulting module path: youtubeserv.exe2
Report Id: youtubeserv.exe3
Error: (12/28/2014 06:15:14 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"1".
Dependent Assembly Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195" could not be found.
Please use sxstrace.exe for detailed diagnosis.
System errors:
=============
Error: (12/30/2014 09:57:54 PM) (Source: DCOM) (EventID: 10016) (User: Lea-PC)
Description: application-specificLocalActivation{4991D34B-80A1-4291-83B6-3328366B9097}{69AD4AEE-51BE-439B-A92C-86AE490E8B30}Lea-PCLeaS-1-5-21-826546569-3919575575-2117434215-1000LocalHost (Using LRPC)
Error: (12/30/2014 09:55:25 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
Error: (12/30/2014 09:55:24 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
Error: (12/30/2014 09:55:23 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
Error: (12/30/2014 09:55:23 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
Error: (12/30/2014 09:55:22 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
Error: (12/30/2014 09:55:21 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
Error: (12/30/2014 09:55:21 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
Error: (12/30/2014 09:48:57 PM) (Source: DCOM) (EventID: 10016) (User: Lea-PC)
Description: application-specificLocalActivation{4991D34B-80A1-4291-83B6-3328366B9097}{69AD4AEE-51BE-439B-A92C-86AE490E8B30}Lea-PCLeaS-1-5-21-826546569-3919575575-2117434215-1000LocalHost (Using LRPC)
Error: (12/30/2014 09:46:47 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
Microsoft Office Sessions:
=========================
Error: (12/30/2014 08:18:08 PM) (Source: MsiInstaller) (EventID: 10005) (User: Lea-PC)
Description: Product: Microsoft Fix it 50228 -- This Microsoft Fix it does not apply to your operating system or application version.(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (12/30/2014 04:57:26 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"C:\Windows\system32\athihvs.dll
Error: (12/29/2014 04:25:13 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"C:\Windows\system32\athihvs.dll
Error: (12/29/2014 02:45:42 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"C:\Windows\system32\athihvs.dll
Error: (12/29/2014 01:35:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Runner.exe0.0.0.05492c820Runner.exe0.0.0.05492c820c00000fd00001c411bd401d023585bd08a58C:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Runner.exeC:\Users\Lea\AppData\Local\7A95CA11-3011-B740-B402-AA0111F90800\Runner.exe8b95247b-8f5f-11e4-81cf-97e39079a052
Error: (12/29/2014 11:07:21 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"C:\Windows\system32\athihvs.dll
Error: (12/29/2014 01:31:59 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"C:\Windows\system32\athihvs.dll
Error: (12/28/2014 06:18:02 PM) (Source: Application Error) (EventID: 1005) (User: )
Description: Optimize download youtube video process000000000
Error: (12/28/2014 06:18:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: youtubeserv.exe1.6.7.05454c8a9ole32.dll6.1.7601.175144ce7b96fc000009600048665ac401d022ca44ae17eeC:\Program Files (x86)\YouTube Downloader Services\P2\youtubeserv.exeC:\Windows\syswow64\ole32.dlldb36e829-8ebd-11e4-92cf-f693f8999856
Error: (12/28/2014 06:15:14 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"C:\Windows\system32\athihvs.dll
==================== Memory info ===========================
Processor: Intel® Core i5-2467M CPU @ 1.60GHz
Percentage of memory in use: 69%
Total physical RAM: 3946.19 MB
Available physical RAM: 1206.25 MB
Total Pagefile: 7890.56 MB
Available Pagefile: 3495.59 MB
Total Virtual: 8192 MB
Available Virtual: 8191.85 MB
==================== Drives ================================
Drive c: (ACER) (Fixed) (Total:282.85 GB) (Free:153.51 GB) NTFS
Drive d: (Sims3) (CDROM) (Total:5.54 GB) (Free:0 GB) UDF
Drive e: (Sims3EP04) (CDROM) (Total:4.95 GB) (Free:0 GB) UDF
Drive f: (Sims3EP03) (CDROM) (Total:6.76 GB) (Free:0 GB) UDF
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 4007CF80)
Partition 1: (Not Active) - (Size=15.1 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=282.9 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 18.6 GB) (Disk ID: 4007CFAE)
Partition 1: (Not Active) - (Size=18.6 GB) - (Type=84)
==================== End Of Log ============================
Edited by cookie88, 30 December 2014 - 04:19 PM.