Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Virus/Malware on Computer [Solved]


  • This topic is locked This topic is locked

#1
njnauticalnut17

njnauticalnut17

    Member

  • Member
  • PipPip
  • 66 posts

Hi,

 

I clicked on a google link and the site was blocked by my computer.  After that my computer is running extremely slow.  In addition my default search engine switched to yahoo instead of google.  I believe that I have some form of virus or malware.

 

I have Windows 7 on a Toshiba laptop.  Please let me know what further infomation you need and what steps I should take.  Appreciate your help.

 

Thank you.


  • 0

Advertisements


#2
DanoNH

DanoNH

    Trusted Helper

  • Malware Removal
  • 2,155 posts

Hello and Welcome! :welcome:

My name is Dan, and I'll be helping you with your issues. If someone else is helping you, either here or at another malware removal assistance site, please let me know so that I may direct my efforts to helping another user.  The Staff at Geeks To Go are ALL volunteers; please keep that in mind if I don’t answer your post as quickly as you’d like. I give what time I can.  PLEASE be patient. ;)

I am currently in training, so there will be another person reviewing my work.  This may cause a bit of a delay in my responses, but on the positive side, you will have two sets of eyes reviewing your logs instead of one... :cool:
 

  • Please note that you should have Administrator rights to perform any fixes.
     
  • Before we proceed, you may wish to print instructions for easy reference during the fix.  Please be aware that many of the required URLs are hyperlinks in the blue names shown on your screen. Part of the fix may require you to be in Safe Mode, which might not allow you to access the internet, or my instructions.
     
  • Please understand that malware removal is a complicated, multi-step process.  Therefore please stay with me until I tell you that your system is clean.  
     
  • Please do NOT make any system or program changes, or run ANY tools unless I specifically ask you to.  Attempting malware removal or clean-up yourself will only extend the time it will take to get your system clean.    If you get stuck or have questions, please stop and ask so I can help you.
     
  • Be sure to back up any personal data files you need to keep (documents, photos, etc.) to a USB flash drive or external hard disk.  While every attempt will be made to precisely repair the infections on your computer, due to the complexity and unpredictability of malware clean-up, there is always a risk of data loss.
     
  • When posting logs, please Copy & Paste the log file contents into a reply.  Use multiple posts if necessary, but please do not attach them or post them on a file hosting site.

OK, let's get started...

Please download Farbar Recovery Scan Tool and save it to your Desktop.

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.
 

  • Right click on FRST on your Desktop and choose Run as Administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens, if asked, click Yes to disclaimer.
  • Make sure the Addition.txt check-box is checked.
  • Press Scan button.
  • It will produce two logs called FRST.txt and Addition.txt in the same directory the tool is run from.
  • Please copy and paste the contents of both of those logs back here.

 


  • 0

#3
njnauticalnut17

njnauticalnut17

    Member

  • Topic Starter
  • Member
  • PipPip
  • 66 posts

Thank you for your reply.  I will back up my data tomorrow and download the Farbar and run it as it is late where I am.  Have a good night.


  • 0

#4
DanoNH

DanoNH

    Trusted Helper

  • Malware Removal
  • 2,155 posts

No problem.  I'm in GMT -4:00 and mostly around in the evening, although periodically throughout the day as well. :)


  • 0

#5
njnauticalnut17

njnauticalnut17

    Member

  • Topic Starter
  • Member
  • PipPip
  • 66 posts

I scanned my laptop with Farbar.

 

Here is FRST.txt file:

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Owner (administrator) on OWNER-PC on 01-04-2015 11:00:39
Running from C:\Users\Owner\Desktop
Loaded Profiles: Owner (Available profiles: Owner)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(PC Drivers Headquarters) C:\Program Files (x86)\Driver Support\Driver Support\DriverSupport.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSvc.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avp.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
(Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
(SEIKO EPSON CORPORATION) C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\Teco.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler64.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
(TOSHIBA Corporation) C:\Windows\System32\ThpSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
(Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe
(Samsung) C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
() C:\Program Files\TOSHIBA\FlashCards\Hotkey\TCrdKBB.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIJAE.EXE
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIJAE.EXE
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIJAE.EXE
(Intuit Inc.) C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
(Intuit Inc.) C:\Program Files (x86)\Intuit\QuickBooks 2014\QBW32.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Dropbox, Inc.) C:\Users\Owner\AppData\Roaming\Dropbox\bin\Dropbox.exe
(TOSHIBA CORPORATION.) C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\ControlCenter3\BrccMCtl.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXRCV.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXSTM.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brmfcmon\BrMfcMon.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Intuit) C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe
(Intuit Inc.) C:\Program Files (x86)\Common Files\Intuit\DataProtect\QBIDPService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(TOSHIBA Corporation) C:\Windows\System32\ThpSrv.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avpui.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [8312352 2009-11-02] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1870120 2009-10-16] (Synaptics Incorporated)
HKLM\...\Run: [TPwrMain] => C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [506208 2009-10-29] (TOSHIBA Corporation)
HKLM\...\Run: [HSON] => C:\Program Files\TOSHIBA\TBS\HSON.exe [52600 2009-03-09] (TOSHIBA Corporation)
HKLM\...\Run: [SmoothView] => C:\Program Files\Toshiba\SmoothView\SmoothView.exe [508216 2009-07-28] (TOSHIBA Corporation)
HKLM\...\Run: [00TCrdMain] => C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [911160 2009-10-26] (TOSHIBA Corporation)
HKLM\...\Run: [Teco] => C:\Program Files\TOSHIBA\TECO\Teco.exe [1482592 2009-09-28] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [705368 2010-02-05] (TOSHIBA Corporation)
HKLM\...\Run: [SmartFaceVWatcher] => C:\Program Files\Toshiba\SmartFaceV\SmartFaceVWatcher.exe [238080 2009-10-19] (TOSHIBA Corporation)
HKLM\...\Run: [ThpSrv] => C:\windows\system32\thpsrv /logon
HKLM\...\Run: [TosSENotify] => C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [709976 2010-02-05] (TOSHIBA Corporation)
HKLM\...\Run: [TosNC] => C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [595816 2009-10-28] (TOSHIBA Corporation)
HKLM\...\Run: [TosReelTimeMonitor] => C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [34648 2009-10-29] (TOSHIBA Corporation)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [284696 2009-10-02] (Intel Corporation)
HKLM-x32\...\Run: [TWebCamera] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe [2446648 2009-11-05] (TOSHIBA CORPORATION.)
HKLM-x32\...\Run: [Intuit SyncManager] => C:\Program Files (x86)\Common Files\Intuit\Sync\IntuitSyncManager.exe [2829624 2013-12-02] (Intuit Inc. All rights reserved.)
HKLM-x32\...\Run: [BrMfcWnd] => C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe [1159168 2009-05-26] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [ControlCenter3] => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe [114688 2008-12-24] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1058400 2012-01-26] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [LTCM Client] => C:\Program Files (x86)\LTCM Client\ltcmClient.exe [1596096 2009-08-05] (Leader Technologies Inc.)
HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-09-04] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [FUFAXRCV] => C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [642664 2013-12-24] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [FUFAXSTM] => C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [863848 2013-12-24] (SEIKO EPSON CORPORATION)
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\...\Run: [KiesPreload] => C:\Program Files (x86)\Samsung\Kies\Kies.exe [1564528 2013-09-04] (Samsung)
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\...\Run: [] => C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844656 2013-09-04] (Samsung)
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2009-12-12] (Google Inc.)
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\...\Run: [TaskScheduler] => C:\ProWin14\32bit\TaskSch.exe [656152 2014-10-27] (Intuit, Inc.)
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\...\Run: [EPLTarget\P0000000000000000] => C:\windows\system32\spool\DRIVERS\x64\3\E_IATIJAE.EXE [283232 2012-02-29] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\...\Run: [EPLTarget\P0000000000000002] => C:\windows\system32\spool\DRIVERS\x64\3\E_IATIJAE.EXE [283232 2012-02-29] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\...\Run: [EPLTarget\P0000000000000003] => C:\windows\system32\spool\DRIVERS\x64\3\E_IATIJAE.EXE [283232 2012-02-29] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\...\MountPoints2: G - G:\LaunchU3.exe -a
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\windows\system32\Ribbons.scr [241664 2010-11-20] (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Intuit Data Protect.lnk
ShortcutTarget: Intuit Data Protect.lnk -> C:\Program Files (x86)\Common Files\Intuit\DataProtect\IntuitDataProtect.exe (Intuit Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\QuickBooks Update Agent.lnk
ShortcutTarget: QuickBooks Update Agent.lnk -> C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe (Intuit Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\QuickBooks_Standard_21.lnk
ShortcutTarget: QuickBooks_Standard_21.lnk -> C:\Program Files (x86)\Intuit\QuickBooks 2014\QBW32.EXE (Intuit Inc.)
Startup: C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Owner\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.autoco...si=10214&bi=400
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://us.yhs4.searc...5_14&os=Windows7 Professional
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.co...=TSNA&bmod=TSNA
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.autoco...si=10214&bi=400
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.autoco...si=10214&bi=400
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\Software\Microsoft\Internet Explorer\Main,Start Default_Page_URL = http://search.autoco...si=10214&bi=400
SearchScopes: HKLM -> DefaultScope {997DF6D6-BD4F-4CAE-9352-98C6E1F1C918} URL = http://us.yhs4.searc...5_14&os=Windows7 Professional&p={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {8CDE19E6-71C2-4B46-89B7-35F6A18C571A} URL = http://www.google.co...ng}&rlz=1I7TSNA
SearchScopes: HKLM -> {997DF6D6-BD4F-4CAE-9352-98C6E1F1C918} URL = http://us.yhs4.searc...5_14&os=Windows7 Professional&p={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope value is missing.
SearchScopes: HKLM-x32 -> {B1D4308A-C6B6-4BE2-BC46-D685D9F8D1DE} URL = http://www.google.co...ng}&rlz=1I7TSNA
SearchScopes: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000 -> DefaultScope {997DF6D6-BD4F-4CAE-9352-98C6E1F1C918} URL = http://us.yhs4.searc...5_14&os=Windows7 Professional&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000 -> {8CDE19E6-71C2-4B46-89B7-35F6A18C571A} URL =
SearchScopes: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000 -> {997DF6D6-BD4F-4CAE-9352-98C6E1F1C918} URL = http://us.yhs4.searc...5_14&os=Windows7 Professional&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000 -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.autoco...q={searchTerms}
SearchScopes: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000 -> {B1D4308A-C6B6-4BE2-BC46-D685D9F8D1DE} URL = http://www.google.co...NA_enUS384US384
SearchScopes: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000 -> {C8442D93-D384-4A69-A72E-F415F8FBED37} URL = http://www.google.co...ng}&rlz=1I7TSNA
BHO: AC-Pro -> {0FB6A909-6086-458F-BD92-1F8EE10042A0} -> C:\Program Files (x86)\AutocompletePro\64\AutocompletePro64.dll [2010-11-11] (SimplyGen)
BHO: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2014-03-26] (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2014-12-24] (Kaspersky Lab ZAO)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
BHO: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll [2014-03-26] (Kaspersky Lab ZAO)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-03-03] (Google Inc.)
BHO: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll [2014-03-26] (Kaspersky Lab ZAO)
BHO-x32: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2010-05-28] (Hewlett-Packard Co.)
BHO-x32: AC-Pro -> {0FB6A909-6086-458F-BD92-1F8EE10042A0} -> C:\Program Files (x86)\AutocompletePro\AutocompletePro.dll [2010-11-11] (SimplyGen)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems Incorporated)
BHO-x32: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2014-03-26] (Kaspersky Lab ZAO)
BHO-x32: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2014-12-24] (Kaspersky Lab ZAO)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
BHO-x32: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll [2014-03-26] (Kaspersky Lab ZAO)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-03] (Google Inc.)
BHO-x32: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll [2014-03-26] (Kaspersky Lab ZAO)
BHO-x32: SingleInstance Class -> {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll [2008-07-28] (Yahoo! Inc)
BHO-x32: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2010-05-28] (Hewlett-Packard Co.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-03-03] (Google Inc.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-02-28] (Microsoft Corporation.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-03] (Google Inc.)
Toolbar: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-03-03] (Google Inc.)
Toolbar: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000 -> No Name - {C55F5517-246E-4426-B745-EE25B08EB8B4} -  No File
DPF: HKLM-x32 {02BCC737-B171-4746-94C9-0D8A0B2C0089} http://office.micros...n/ieawsdc32.cab
DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset...lineScanner.cab
Handler-x32: intu-help-qb2 - {84D77A00-41B5-4b8b-8ADF-86486D72E749} - C:\Program Files (x86)\Intuit\QuickBooks 2009\HelpAsyncPluggableProtocol.dll [2012-05-11] (Intuit, Inc.)
Handler-x32: intu-help-qb4 - {ACE22922-D07C-4860-B51B-8CF472FEC2CB} - C:\Program Files (x86)\Intuit\QuickBooks 2011\HelpAsyncPluggableProtocol.dll [2012-05-18] (Intuit, Inc.)
Handler-x32: intu-help-qb7 - {5A03BD9D-766D-47A6-8E87-CD90F60BE245} - C:\Program Files (x86)\Intuit\QuickBooks 2014\HelpAsyncPluggableProtocol.dll [2013-12-02] (Intuit, Inc.)
Handler-x32: qbwc - {FC598A64-626C-4447-85B8-53150405FD57} - C:\windows\SysWOW64\mscoree.dll [2010-11-04] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF ProfilePath: C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qquctg5w.default-1399488636380
FF DefaultSearchEngine: Google
FF DefaultSearchEngine.US: Google
FF SearchEngineOrder.1: ACPro
FF Homepage: https://att.yahoo.com/
FF Keyword.URL: hxxp://search.autocompletepro.com?si=10214&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll [2015-02-05] ()
FF Plugin: @microsoft.com/GENUINE -> C:\windows\system32\Wat\npWatWeb.dll [2010-06-14] (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-02-05] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2011-04-14] ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE -> C:\windows\system32\Wat\npWatWeb.dll [2010-06-14] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-09] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-09] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2012-09-23] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3893256802-2942114387-4184744975-1000: @sony.com/Some -> C:\Program Files (x86)\Sony\Bloggie Software\npsome.dll [2011-06-09] (Sony)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2012-09-23] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll [2014-01-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll [2014-01-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll [2014-01-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll [2014-01-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll [2014-01-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll [2011-07-11] (Nullsoft, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\browser\plugins\npMozCouponPrinter.dll [2013-08-02] (Coupons, Inc.)
FF SearchPlugin: C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qquctg5w.default-1399488636380\searchplugins\search-provided-by-yahoo.xml [2015-03-30]
FF Extension: AutocompletePro - Your handy search suggestions tool - C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qquctg5w.default-1399488636380\Extensions\[email protected] [2014-07-04]
FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Mozilla Firefox\extensions\[email protected] [2015-03-20]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2012-12-15]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected]
FF Extension: Модуль перевірки посилань - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected] [2014-06-08]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected]
FF Extension: Віртуальна клавіатура - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected] [2014-06-08]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected]
FF Extension: Модуль блокування небезпечних веб-сайтів - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected] [2014-06-08]
FF HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
StartMenuInternet: FIREFOX.EXE - firefox.exe

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [blbkdnmdcafmfhinpmnlhhddbepgkeaa] - https://chrome.google.com/webstore/detail/blbkdnmdcafmfhinpmnlhhddbepgkeaa [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\ChromeExt\urladvisor.crx [2014-03-26]
CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\ChromeExt\content_blocker_chrome.crx [2014-03-26]
CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\ChromeExt\virtkbd.crx [2014-03-26]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [143120 2013-05-23] (SUPERAntiSpyware.com)
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avp.exe [214512 2015-02-02] (Kaspersky Lab ZAO)
R2 EpsonBidirectionalService; C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe [94208 2006-12-19] (SEIKO EPSON CORPORATION) [File not signed]
R2 EpsonScanSvc; C:\windows\system32\EscSvc64.exe [135824 2011-12-12] (Seiko Epson Corporation)
S2 Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [220504 2013-08-22] (Garmin Ltd or its subsidiaries)
R2 LMS; C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe [262144 2009-09-30] (Intel Corporation) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2009-05-14] (Hewlett-Packard) [File not signed]
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2009-05-14] (Hewlett-Packard) [File not signed]
R2 QBCFMonitorService; C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe [45056 2013-12-02] (Intuit) [File not signed]
S3 QBFCService; C:\Program Files (x86)\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe [65536 2013-12-02] (Intuit Inc.) [File not signed]
R2 QBVSS; C:\Program Files (x86)\Common Files\Intuit\DataProtect\QBIDPService.exe [1248256 2013-12-02] (Intuit Inc.) [File not signed]
R2 UNS; C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2314240 2009-09-30] (Intel Corporation) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
S2 vToolbarUpdater15.5.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 avgtp; C:\windows\system32\drivers\avgtpx64.sys [45856 2013-09-15] (AVG Technologies)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2014-03-26] (Kaspersky Lab ZAO)
S4 klflt; C:\Windows\System32\DRIVERS\klflt.sys [115296 2014-03-26] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [625248 2014-03-26] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [29792 2014-03-26] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2014-03-26] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2014-03-26] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [55904 2013-05-14] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178272 2014-03-26] (Kaspersky Lab ZAO)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [15672 2014-06-08] ()

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-01 11:00 - 2015-04-01 11:01 - 00035481 _____ () C:\Users\Owner\Desktop\FRST.txt
2015-04-01 11:00 - 2015-04-01 11:00 - 00000000 ____D () C:\FRST
2015-04-01 10:58 - 2015-04-01 10:59 - 02095616 _____ (Farbar) C:\Users\Owner\Desktop\FRST64.exe
2015-03-30 08:22 - 2015-03-30 08:22 - 00002304 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk
2015-03-30 08:22 - 2015-03-30 08:22 - 00002298 _____ () C:\Users\Public\Desktop\WinZip.lnk
2015-03-30 08:22 - 2015-03-30 08:22 - 00000000 ____D () C:\Users\Owner\AppData\Local\WinZip
2015-03-30 08:22 - 2015-03-30 08:22 - 00000000 ____D () C:\ProgramData\WinZip
2015-03-30 08:22 - 2015-03-30 08:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2015-03-30 08:21 - 2015-03-30 08:22 - 00000000 ____D () C:\Program Files\WinZip
2015-03-30 08:20 - 2015-03-30 08:20 - 01080488 _____ (WinZip) C:\Users\Owner\Downloads\winzip19-wz.exe
2015-03-29 10:06 - 2015-03-29 22:07 - 00000000 ____D () C:\Users\Owner\AppData\Local\{9F08D71F-F33E-4A11-B162-42BA4214C5C3}
2015-03-28 22:05 - 2015-03-28 22:05 - 00000000 ____D () C:\Users\Owner\AppData\Local\{E054DB7B-C6F0-4595-B08B-9CE23ABB0A96}
2015-03-28 10:05 - 2015-03-28 10:05 - 00000000 ____D () C:\Users\Owner\AppData\Local\{8A63017E-AC0C-4247-B5E2-14570BB20981}
2015-03-27 21:35 - 2015-03-27 21:35 - 00000000 ____D () C:\Users\Owner\AppData\Local\{44C1D20B-CC8D-4AE0-AE0F-20F6B1128BF9}
2015-03-27 09:35 - 2015-03-27 09:35 - 00000000 ____D () C:\Users\Owner\AppData\Local\{F4ABB2C2-667F-493E-A3EF-587877B79B00}
2015-03-26 16:58 - 2015-03-26 16:58 - 00000000 ____D () C:\Users\Owner\AppData\Local\{A3C43E5B-C90C-4FAF-A6A9-AC8A5D54F872}
2015-03-26 04:08 - 2015-03-26 04:08 - 00000000 ____D () C:\Users\Owner\AppData\Local\{862087E6-EE3F-40E9-81CD-8A7E047B369D}
2015-03-25 16:07 - 2015-03-25 16:07 - 00000000 ____D () C:\Users\Owner\AppData\Local\{63548A23-2AE3-47FD-9E9D-7FC56E145CAC}
2015-03-20 21:05 - 2015-03-26 09:47 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-03-17 16:58 - 2015-03-17 16:58 - 05271430 _____ () C:\Users\Owner\Downloads\mytalkingpet.mp4
2015-03-17 13:39 - 2015-03-17 13:39 - 00010066 _____ () C:\Users\Owner\.recently-used.xbel
2015-03-11 04:25 - 2015-02-20 00:41 - 00041984 _____ (Microsoft Corporation) C:\windows\system32\lpk.dll
2015-03-11 04:25 - 2015-02-20 00:40 - 00100864 _____ (Microsoft Corporation) C:\windows\system32\fontsub.dll
2015-03-11 04:25 - 2015-02-20 00:40 - 00046080 _____ (Adobe Systems) C:\windows\system32\atmlib.dll
2015-03-11 04:25 - 2015-02-20 00:40 - 00014336 _____ (Microsoft Corporation) C:\windows\system32\dciman32.dll
2015-03-11 04:25 - 2015-02-20 00:13 - 00070656 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontsub.dll
2015-03-11 04:25 - 2015-02-20 00:13 - 00034304 _____ (Adobe Systems) C:\windows\SysWOW64\atmlib.dll
2015-03-11 04:25 - 2015-02-20 00:13 - 00010240 _____ (Microsoft Corporation) C:\windows\SysWOW64\dciman32.dll
2015-03-11 04:25 - 2015-02-20 00:12 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\lpk.dll
2015-03-11 04:25 - 2015-02-19 23:29 - 00372224 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll
2015-03-11 04:25 - 2015-02-19 23:09 - 00299008 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\atmfd.dll
2015-03-11 04:25 - 2015-02-02 23:34 - 05554104 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2015-03-11 04:25 - 2015-02-02 23:34 - 00693176 _____ (Microsoft Corporation) C:\windows\system32\winload.efi
2015-03-11 04:25 - 2015-02-02 23:34 - 00094656 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mountmgr.sys
2015-03-11 04:25 - 2015-02-02 23:33 - 00616360 _____ (Microsoft Corporation) C:\windows\system32\winresume.efi
2015-03-11 04:25 - 2015-02-02 23:31 - 14632960 _____ (Microsoft Corporation) C:\windows\system32\wmp.dll
2015-03-11 04:25 - 2015-02-02 23:31 - 04121600 _____ (Microsoft Corporation) C:\windows\system32\mf.dll
2015-03-11 04:25 - 2015-02-02 23:31 - 01574400 _____ (Microsoft Corporation) C:\windows\system32\quartz.dll
2015-03-11 04:25 - 2015-02-02 23:31 - 00782848 _____ (Microsoft Corporation) C:\windows\system32\wmdrmsdk.dll
2015-03-11 04:25 - 2015-02-02 23:31 - 00641024 _____ (Microsoft Corporation) C:\windows\system32\msscp.dll
2015-03-11 04:25 - 2015-02-02 23:31 - 00503808 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll
2015-03-11 04:25 - 2015-02-02 23:31 - 00500224 _____ (Microsoft Corporation) C:\windows\system32\AUDIOKSE.dll
2015-03-11 04:25 - 2015-02-02 23:31 - 00432128 _____ (Microsoft Corporation) C:\windows\system32\mfplat.dll
2015-03-11 04:25 - 2015-02-02 23:31 - 00371712 _____ (Microsoft Corporation) C:\windows\system32\qdvd.dll
2015-03-11 04:25 - 2015-02-02 23:31 - 00325632 _____ (Microsoft Corporation) C:\windows\system32\msnetobj.dll
2015-03-11 04:25 - 2015-02-02 23:31 - 00229376 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll
2015-03-11 04:25 - 2015-02-02 23:31 - 00206848 _____ (Microsoft Corporation) C:\windows\system32\mfps.dll
2015-03-11 04:25 - 2015-02-02 23:31 - 00188416 _____ (Microsoft Corporation) C:\windows\system32\pcasvc.dll
2015-03-11 04:25 - 2015-02-02 23:31 - 00037376 _____ (Microsoft Corporation) C:\windows\system32\pcadm.dll
2015-03-11 04:25 - 2015-02-02 23:31 - 00011264 _____ (Microsoft Corporation) C:\windows\system32\msmmsp.dll
2015-03-11 04:25 - 2015-02-02 23:30 - 01480192 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2015-03-11 04:25 - 2015-02-02 23:30 - 01202176 _____ (Microsoft Corporation) C:\windows\system32\drmv2clt.dll
2015-03-11 04:25 - 2015-02-02 23:30 - 01069056 _____ (Microsoft Corporation) C:\windows\system32\cryptui.dll
2015-03-11 04:25 - 2015-02-02 23:30 - 00842240 _____ (Microsoft Corporation) C:\windows\system32\blackbox.dll
2015-03-11 04:25 - 2015-02-02 23:30 - 00680960 _____ (Microsoft Corporation) C:\windows\system32\audiosrv.dll
2015-03-11 04:25 - 2015-02-02 23:30 - 00631808 _____ (Microsoft Corporation) C:\windows\system32\evr.dll
2015-03-11 04:25 - 2015-02-02 23:30 - 00497664 _____ (Microsoft Corporation) C:\windows\system32\drmmgrtn.dll
2015-03-11 04:25 - 2015-02-02 23:30 - 00440832 _____ (Microsoft Corporation) C:\windows\system32\AudioEng.dll
2015-03-11 04:25 - 2015-02-02 23:30 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\rstrui.exe
2015-03-11 04:25 - 2015-02-02 23:30 - 00296448 _____ (Microsoft Corporation) C:\windows\system32\AudioSes.dll
2015-03-11 04:25 - 2015-02-02 23:30 - 00187904 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll
2015-03-11 04:25 - 2015-02-02 23:30 - 00146944 _____ (Microsoft Corporation) C:\windows\system32\appidpolicyconverter.exe
2015-03-11 04:25 - 2015-02-02 23:30 - 00140288 _____ (Microsoft Corporation) C:\windows\system32\cryptnet.dll
2015-03-11 04:25 - 2015-02-02 23:30 - 00126464 _____ (Microsoft Corporation) C:\windows\system32\audiodg.exe
2015-03-11 04:25 - 2015-02-02 23:30 - 00112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe
2015-03-11 04:25 - 2015-02-02 23:30 - 00082432 _____ (Microsoft Corporation) C:\windows\system32\cryptsp.dll
2015-03-11 04:25 - 2015-02-02 23:30 - 00058880 _____ (Microsoft Corporation) C:\windows\system32\appidapi.dll
2015-03-11 04:25 - 2015-02-02 23:30 - 00055808 _____ (Microsoft Corporation) C:\windows\system32\rrinstaller.exe
2015-03-11 04:25 - 2015-02-02 23:30 - 00032256 _____ (Microsoft Corporation) C:\windows\system32\appidsvc.dll
2015-03-11 04:25 - 2015-02-02 23:30 - 00024576 _____ (Microsoft Corporation) C:\windows\system32\mfpmp.exe
2015-03-11 04:25 - 2015-02-02 23:19 - 00663552 _____ (Microsoft Corporation) C:\windows\system32\Drivers\PEAuth.sys
2015-03-11 04:25 - 2015-02-02 23:16 - 03973048 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2015-03-11 04:25 - 2015-02-02 23:16 - 03917760 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2015-03-11 04:25 - 2015-02-02 23:12 - 11411968 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmp.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 03209728 _____ (Microsoft Corporation) C:\windows\SysWOW64\mf.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 01329664 _____ (Microsoft Corporation) C:\windows\SysWOW64\quartz.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 01174528 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 01005056 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptui.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 00988160 _____ (Microsoft Corporation) C:\windows\SysWOW64\drmv2clt.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 00744960 _____ (Microsoft Corporation) C:\windows\SysWOW64\blackbox.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 00617984 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmdrmsdk.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 00519680 _____ (Microsoft Corporation) C:\windows\SysWOW64\qdvd.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 00504320 _____ (Microsoft Corporation) C:\windows\SysWOW64\msscp.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 00489984 _____ (Microsoft Corporation) C:\windows\SysWOW64\evr.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 00442880 _____ (Microsoft Corporation) C:\windows\SysWOW64\AUDIOKSE.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 00406016 _____ (Microsoft Corporation) C:\windows\SysWOW64\drmmgrtn.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 00374784 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioEng.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 00354816 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfplat.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 00265216 _____ (Microsoft Corporation) C:\windows\SysWOW64\msnetobj.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 00179200 _____ (Microsoft Corporation) C:\windows\SysWOW64\wintrust.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 00143872 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptsvc.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 00103936 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptnet.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 00103424 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfps.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 00081408 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptsp.dll
2015-03-11 04:25 - 2015-02-02 23:12 - 00050688 _____ (Microsoft Corporation) C:\windows\SysWOW64\appidapi.dll
2015-03-11 04:25 - 2015-02-02 23:11 - 00050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\rrinstaller.exe
2015-03-11 04:25 - 2015-02-02 23:11 - 00023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfpmp.exe
2015-03-11 04:25 - 2015-02-02 22:32 - 00061440 _____ (Microsoft Corporation) C:\windows\system32\Drivers\appid.sys
2015-03-11 04:25 - 2014-10-31 18:24 - 00619056 _____ (Microsoft Corporation) C:\windows\system32\winload.exe
2015-03-11 04:25 - 2014-06-27 20:21 - 00532176 _____ (Microsoft Corporation) C:\windows\system32\winresume.exe
2015-03-11 04:25 - 2014-06-27 20:21 - 00457400 _____ (Microsoft Corporation) C:\windows\system32\ci.dll
2015-03-11 04:24 - 2015-02-13 01:26 - 12875264 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2015-03-11 04:24 - 2015-02-13 01:22 - 14177280 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2015-03-11 04:24 - 2015-02-02 23:31 - 00215552 _____ (Microsoft Corporation) C:\windows\system32\ubpm.dll
2015-03-11 04:24 - 2015-02-02 23:31 - 00063488 _____ (Microsoft Corporation) C:\windows\system32\setbcdlocale.dll
2015-03-11 04:24 - 2015-02-02 23:31 - 00050176 _____ (Microsoft Corporation) C:\windows\system32\srclient.dll
2015-03-11 04:24 - 2015-02-02 23:31 - 00009728 _____ (Microsoft Corporation) C:\windows\system32\spwmp.dll
2015-03-11 04:24 - 2015-02-02 23:31 - 00005120 _____ (Microsoft Corporation) C:\windows\system32\msdxm.ocx
2015-03-11 04:24 - 2015-02-02 23:31 - 00005120 _____ (Microsoft Corporation) C:\windows\system32\dxmasf.dll
2015-03-11 04:24 - 2015-02-02 23:30 - 12625920 _____ (Microsoft Corporation) C:\windows\system32\wmploc.DLL
2015-03-11 04:24 - 2015-02-02 23:30 - 00284672 _____ (Microsoft Corporation) C:\windows\system32\EncDump.dll
2015-03-11 04:24 - 2015-02-02 23:30 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2015-03-11 04:24 - 2015-02-02 23:30 - 00017920 _____ (Microsoft Corporation) C:\windows\system32\appidcertstorecheck.exe
2015-03-11 04:24 - 2015-02-02 23:30 - 00011264 _____ (Microsoft Corporation) C:\windows\system32\pcawrk.exe
2015-03-11 04:24 - 2015-02-02 23:30 - 00009728 _____ (Microsoft Corporation) C:\windows\system32\pcalua.exe
2015-03-11 04:24 - 2015-02-02 23:29 - 00008704 _____ (Microsoft Corporation) C:\windows\system32\pcaevts.dll
2015-03-11 04:24 - 2015-02-02 23:28 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll
2015-03-11 04:24 - 2015-02-02 23:28 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\mferror.dll
2015-03-11 04:24 - 2015-02-02 23:12 - 00195584 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioSes.dll
2015-03-11 04:24 - 2015-02-02 23:12 - 00171520 _____ (Microsoft Corporation) C:\windows\SysWOW64\ubpm.dll
2015-03-11 04:24 - 2015-02-02 23:12 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\srclient.dll
2015-03-11 04:24 - 2015-02-02 23:12 - 00008192 _____ (Microsoft Corporation) C:\windows\SysWOW64\spwmp.dll
2015-03-11 04:24 - 2015-02-02 23:12 - 00004096 _____ (Microsoft Corporation) C:\windows\SysWOW64\msdxm.ocx
2015-03-11 04:24 - 2015-02-02 23:12 - 00004096 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxmasf.dll
2015-03-11 04:24 - 2015-02-02 23:11 - 12625408 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmploc.DLL
2015-03-11 04:24 - 2015-02-02 23:09 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\mferror.dll
2015-03-11 04:24 - 2015-02-02 23:08 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll
2015-03-11 04:23 - 2015-03-06 01:56 - 00155576 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2015-03-11 04:23 - 2015-03-06 01:56 - 00095680 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2015-03-11 04:23 - 2015-03-06 01:42 - 01461760 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2015-03-11 04:23 - 2015-03-06 01:42 - 00728064 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2015-03-11 04:23 - 2015-03-06 01:42 - 00341504 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2015-03-11 04:23 - 2015-03-06 01:42 - 00314880 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2015-03-11 04:23 - 2015-03-06 01:42 - 00309760 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2015-03-11 04:23 - 2015-03-06 01:42 - 00210944 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2015-03-11 04:23 - 2015-03-06 01:42 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2015-03-11 04:23 - 2015-03-06 01:42 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2015-03-11 04:23 - 2015-03-06 01:42 - 00029184 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2015-03-11 04:23 - 2015-03-06 01:42 - 00028160 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2015-03-11 04:23 - 2015-03-06 01:42 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2015-03-11 04:23 - 2015-03-06 01:41 - 00064000 _____ (Microsoft Corporation) C:\windows\system32\auditpol.exe
2015-03-11 04:23 - 2015-03-06 01:41 - 00031232 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2015-03-11 04:23 - 2015-03-06 01:39 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\msobjs.dll
2015-03-11 04:23 - 2015-03-06 01:38 - 00146432 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll
2015-03-11 04:23 - 2015-03-06 01:36 - 00686080 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll
2015-03-11 04:23 - 2015-03-06 01:10 - 00550912 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2015-03-11 04:23 - 2015-03-06 01:10 - 00259584 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2015-03-11 04:23 - 2015-03-06 01:10 - 00248832 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2015-03-11 04:23 - 2015-03-06 01:10 - 00221184 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll
2015-03-11 04:23 - 2015-03-06 01:10 - 00172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll
2015-03-11 04:23 - 2015-03-06 01:10 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2015-03-11 04:23 - 2015-03-06 01:10 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2015-03-11 04:23 - 2015-03-06 01:10 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2015-03-11 04:23 - 2015-03-06 01:09 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2015-03-11 04:23 - 2015-03-06 01:09 - 00050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\auditpol.exe
2015-03-11 04:23 - 2015-03-06 01:07 - 00146432 _____ (Microsoft Corporation) C:\windows\SysWOW64\msaudite.dll
2015-03-11 04:23 - 2015-03-06 01:07 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\msobjs.dll
2015-03-11 04:23 - 2015-03-06 01:06 - 00686080 _____ (Microsoft Corporation) C:\windows\SysWOW64\adtschema.dll
2015-03-11 04:23 - 2015-02-25 23:25 - 03204096 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2015-03-11 04:23 - 2015-02-23 23:15 - 00389800 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2015-03-11 04:23 - 2015-02-23 22:32 - 00342696 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2015-03-11 04:23 - 2015-02-20 21:16 - 25021440 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2015-03-11 04:23 - 2015-02-20 20:41 - 12827648 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2015-03-11 04:23 - 2015-02-20 20:27 - 00418304 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2015-03-11 04:23 - 2015-02-20 20:27 - 00285696 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2015-03-11 04:23 - 2015-02-20 20:25 - 19720192 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2015-03-11 04:23 - 2015-02-20 19:58 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2015-03-11 04:23 - 2015-02-20 19:32 - 00076288 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2015-03-11 04:23 - 2015-02-19 23:06 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2015-03-11 04:23 - 2015-02-19 23:05 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2015-03-11 04:23 - 2015-02-19 22:50 - 00066560 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2015-03-11 04:23 - 2015-02-19 22:49 - 00584192 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2015-03-11 04:23 - 2015-02-19 22:49 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2015-03-11 04:23 - 2015-02-19 22:48 - 02886144 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2015-03-11 04:23 - 2015-02-19 22:47 - 00088064 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2015-03-11 04:23 - 2015-02-19 22:41 - 00054784 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2015-03-11 04:23 - 2015-02-19 22:40 - 00034304 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2015-03-11 04:23 - 2015-02-19 22:36 - 00633856 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2015-03-11 04:23 - 2015-02-19 22:35 - 00144384 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2015-03-11 04:23 - 2015-02-19 22:35 - 00114688 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2015-03-11 04:23 - 2015-02-19 22:34 - 00814080 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2015-03-11 04:23 - 2015-02-19 22:32 - 06035456 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2015-03-11 04:23 - 2015-02-19 22:26 - 00968704 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2015-03-11 04:23 - 2015-02-19 22:22 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2015-03-11 04:23 - 2015-02-19 22:22 - 00490496 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2015-03-11 04:23 - 2015-02-19 22:13 - 00077824 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2015-03-11 04:23 - 2015-02-19 22:09 - 00503296 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2015-03-11 04:23 - 2015-02-19 22:08 - 00199680 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2015-03-11 04:23 - 2015-02-19 22:08 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2015-03-11 04:23 - 2015-02-19 22:08 - 00047616 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2015-03-11 04:23 - 2015-02-19 22:06 - 00064000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2015-03-11 04:23 - 2015-02-19 22:05 - 00316928 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2015-03-11 04:23 - 2015-02-19 22:03 - 02278400 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2015-03-11 04:23 - 2015-02-19 22:01 - 00047104 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2015-03-11 04:23 - 2015-02-19 22:00 - 00030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2015-03-11 04:23 - 2015-02-19 21:58 - 00478208 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2015-03-11 04:23 - 2015-02-19 21:56 - 00620032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2015-03-11 04:23 - 2015-02-19 21:56 - 00115712 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2015-03-11 04:23 - 2015-02-19 21:49 - 00801280 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2015-03-11 04:23 - 2015-02-19 21:49 - 00718848 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2015-03-11 04:23 - 2015-02-19 21:47 - 01359360 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2015-03-11 04:23 - 2015-02-19 21:46 - 02125824 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2015-03-11 04:23 - 2015-02-19 21:43 - 14398976 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2015-03-11 04:23 - 2015-02-19 21:41 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-03-11 04:23 - 2015-02-19 21:37 - 00168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2015-03-11 04:23 - 2015-02-19 21:30 - 04300288 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2015-03-11 04:23 - 2015-02-19 21:28 - 02358784 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2015-03-11 04:23 - 2015-02-19 21:24 - 02052608 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2015-03-11 04:23 - 2015-02-19 21:24 - 00689152 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2015-03-11 04:23 - 2015-02-19 21:23 - 01155072 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2015-03-11 04:23 - 2015-02-19 21:16 - 01548288 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2015-03-11 04:23 - 2015-02-19 21:03 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2015-03-11 04:23 - 2015-02-19 21:01 - 01888256 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2015-03-11 04:23 - 2015-02-19 20:57 - 01311232 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2015-03-11 04:23 - 2015-02-19 20:55 - 00710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2015-03-11 04:23 - 2015-02-02 23:31 - 01424896 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2015-03-11 04:23 - 2015-02-02 23:12 - 01230848 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2015-03-11 04:23 - 2015-01-30 19:56 - 00459336 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2015-03-11 04:23 - 2015-01-16 22:48 - 01067520 _____ (Microsoft Corporation) C:\windows\system32\msctf.dll
2015-03-11 04:23 - 2015-01-16 22:30 - 00828928 _____ (Microsoft Corporation) C:\windows\SysWOW64\msctf.dll
2015-03-11 04:22 - 2015-02-03 23:16 - 00465920 _____ (Microsoft Corporation) C:\windows\system32\WMPhoto.dll
2015-03-11 04:22 - 2015-02-03 22:54 - 00417792 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMPhoto.dll
2015-03-09 14:21 - 2015-03-09 14:21 - 00000000 ____D () C:\Users\Owner\AppData\Local\{58CE1B41-95B5-4303-B645-8C12FE4418FB}
2015-03-09 11:32 - 2015-03-09 11:32 - 00000000 ____D () C:\Users\Owner\AppData\Local\{B6A184EC-DC6A-4DDE-802B-64875C867A6D}
2015-03-09 11:31 - 2015-03-09 11:31 - 00000000 ____D () C:\Users\Owner\AppData\Local\{8192B6F7-F149-4B1A-9E67-A7D280CC2A6B}
2015-03-05 00:42 - 2015-03-05 12:43 - 00000000 ____D () C:\Users\Owner\AppData\Local\{BDF9F4DE-9A71-4008-966F-1C49112CD780}
2015-03-04 16:44 - 2015-03-04 16:45 - 15341856 _____ () C:\Users\Owner\Downloads\epson16698.exe
2015-03-04 16:29 - 2015-03-04 16:31 - 25655584 _____ () C:\Users\Owner\Downloads\epson14807.exe
2015-03-04 15:41 - 2015-03-04 15:54 - 151288096 _____ () C:\Users\Owner\Downloads\epson14514.exe
2015-03-04 12:42 - 2015-03-04 12:42 - 00000000 ____D () C:\Users\Owner\AppData\Local\{23138C4F-CD87-45C7-9E5F-830AD642B78A}
2015-03-02 14:05 - 2015-03-31 21:06 - 00003668 _____ () C:\windows\System32\Tasks\Driver Support

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-01 10:52 - 2009-07-14 01:13 - 00815444 _____ () C:\windows\system32\PerfStringBackup.INI
2015-04-01 10:45 - 2010-06-14 16:46 - 00000898 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-01 10:20 - 2014-09-03 16:19 - 00000292 _____ () C:\windows\Tasks\UpdaterEX.job
2015-04-01 10:12 - 2012-03-30 18:28 - 00000830 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2015-04-01 10:04 - 2010-06-14 20:20 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2015-04-01 05:13 - 2009-07-14 00:45 - 00020960 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-01 05:13 - 2009-07-14 00:45 - 00020960 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-04-01 05:08 - 2010-01-06 07:19 - 01906685 _____ () C:\windows\WindowsUpdate.log
2015-03-31 21:06 - 2014-05-07 13:16 - 00004352 _____ () C:\windows\System32\Tasks\Driver Support-RTMScan
2015-03-31 21:06 - 2014-05-07 13:16 - 00003782 _____ () C:\windows\System32\Tasks\Driver Support-RTMUpdater
2015-03-31 21:06 - 2014-05-07 13:16 - 00003772 _____ () C:\windows\System32\Tasks\Driver Support-RTMRules
2015-03-31 21:02 - 2014-04-04 09:01 - 00000000 ___RD () C:\Users\Owner\Dropbox
2015-03-31 21:02 - 2014-04-04 08:59 - 00000000 ____D () C:\Users\Owner\AppData\Roaming\Dropbox
2015-03-31 20:58 - 2010-06-14 16:46 - 00000894 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-31 20:57 - 2012-01-11 11:48 - 00000324 _____ () C:\windows\Tasks\GlaryInitialize.job
2015-03-31 20:57 - 2009-07-14 01:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2015-03-31 20:57 - 2009-07-14 00:51 - 00075595 _____ () C:\windows\setupact.log
2015-03-30 08:21 - 2010-08-27 22:37 - 00001159 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-03-27 16:52 - 2013-09-01 13:09 - 00000000 ____D () C:\Users\Owner\Documents\RV
2015-03-26 10:48 - 2012-07-04 00:10 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-03-26 03:29 - 2015-02-12 17:01 - 00000000 ____D () C:\ProWin14
2015-03-25 22:21 - 2009-07-14 01:32 - 00000000 ____D () C:\windows\system32\FxsTmp
2015-03-23 16:18 - 2009-07-14 01:09 - 00000000 ____D () C:\windows\System32\Tasks\WPD
2015-03-20 18:14 - 2010-06-20 12:26 - 00000000 ____D () C:\Users\Owner\Documents\M.E. Carney Accounting
2015-03-18 22:47 - 2014-05-07 13:37 - 00129752 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-17 15:42 - 2010-06-20 12:25 - 00000000 ____D () C:\Users\Owner\Documents\Addresses
2015-03-17 14:42 - 2012-04-29 20:11 - 00000000 ____D () C:\Users\Owner\.gimp-2.6
2015-03-17 13:39 - 2012-04-29 20:18 - 00000000 ____D () C:\Users\Owner\AppData\Roaming\gtk-2.0
2015-03-17 13:39 - 2010-03-27 13:51 - 00000000 ____D () C:\Users\Owner
2015-03-12 05:37 - 2009-07-13 23:20 - 00000000 ____D () C:\windows\rescache
2015-03-12 04:00 - 2014-04-04 09:01 - 00001033 _____ () C:\Users\Owner\Desktop\Dropbox.lnk
2015-03-12 04:00 - 2014-04-04 09:00 - 00000000 ____D () C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-03-12 03:50 - 2010-06-20 13:17 - 00000000 ___RD () C:\Users\Owner\Virtual Machines
2015-03-12 03:47 - 2009-07-14 00:45 - 00435272 _____ () C:\windows\system32\FNTCACHE.DAT
2015-03-12 03:41 - 2009-07-13 23:20 - 00000000 ____D () C:\windows\SysWOW64\Dism
2015-03-12 03:41 - 2009-07-13 23:20 - 00000000 ____D () C:\windows\system32\Dism
2015-03-12 03:19 - 2010-01-06 07:24 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-05 22:45 - 2009-12-12 02:43 - 00516152 _____ () C:\windows\PFRO.log
2015-03-04 17:04 - 2011-03-22 19:48 - 00000664 _____ () C:\windows\BRWMARK.INI
2015-03-04 16:50 - 2010-06-17 17:15 - 00000000 ____D () C:\Users\Owner\AppData\Local\Microsoft Help
2015-03-04 16:36 - 2013-05-14 21:45 - 00000951 _____ () C:\Users\Public\Desktop\EPSON Scan.lnk
2015-03-04 16:10 - 2013-05-14 21:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software
2015-03-04 16:00 - 2013-05-14 21:39 - 00000000 ____D () C:\Program Files (x86)\EPSON Software
2015-03-02 14:05 - 2014-05-07 13:16 - 00000000 ____D () C:\ProgramData\UAB

==================== Files in the root of some directories =======

2011-04-28 01:16 - 2011-04-28 01:16 - 0036569 _____ () C:\Users\Owner\AppData\Roaming\Comma Separated Values (Windows).ADR
2012-12-15 18:48 - 2012-12-15 18:48 - 0000697 _____ () C:\Users\Owner\AppData\Roaming\ConvAPIPlugin.log
2014-09-04 00:20 - 2014-09-04 00:20 - 0000042 _____ () C:\Users\Owner\AppData\Roaming\WB.CFG
2011-03-31 14:17 - 2011-03-31 14:17 - 0000093 _____ () C:\Users\Owner\AppData\Local\fusioncache.dat
2010-07-08 18:55 - 2012-12-15 18:48 - 0002622 _____ () C:\ProgramData\hpzinstall.log
2013-02-08 16:55 - 2013-02-08 16:55 - 0000148 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc

Some content of TEMP:
====================
C:\Users\Owner\AppData\Local\Temp\88BF.exe
C:\Users\Owner\AppData\Local\Temp\AcPro.exe
C:\Users\Owner\AppData\Local\Temp\dotnetfx45_full_x86_x64.exe
C:\Users\Owner\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp0qy0sz.dll
C:\Users\Owner\AppData\Local\Temp\Quarantine.exe
C:\Users\Owner\AppData\Local\Temp\vcredist_x86.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-25 00:04

==================== End Of Log ============================


  • 0

#6
njnauticalnut17

njnauticalnut17

    Member

  • Topic Starter
  • Member
  • PipPip
  • 66 posts

Here is the Addition.txt file:

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-03-2015
Ran by Owner at 2015-04-01 11:02:04
Running from C:\Users\Owner\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Kaspersky Anti-Virus (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886}
AS: Kaspersky Anti-Virus (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

6000E609_eDocs (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden
6000E609_Help (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden
6000E609n (x32 Version: 140.0.000.000 - Hewlett-Packard) Hidden
64 Bit HP CIO Components Installer (Version: 6.2.2 - Hewlett-Packard) Hidden
ABBYY FineReader 9.0 Sprint (HKLM-x32\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY)
ABBYY FineReader 9.0 Sprint (x32 Version: 9.01.513.58212 - ABBYY) Hidden
Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Reader XI (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.00 - Adobe Systems Incorporated)
Android SDK Tools (HKLM-x32\...\Android SDK Tools) (Version: 1.14 - Google Inc.)
AnswerWorks 4.0 Runtime - English (HKLM-x32\...\{7DD9A065-2C86-4A9F-A5FF-796EC1B99DCA}) (Version: 4.0.101 - Vantage Software Technologies)
Apple Application Support (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{8F473675-D702-45F9-8EBC-342B40C17BF5}) (Version: 3.4.0.25 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
AutocompletePro (HKLM-x32\...\AutocompletePro3_is1) (Version:  - ) <==== ATTENTION
Bing Bar (HKLM-x32\...\{77F8A71E-3515-4832-B8B2-2F1EDBD2E0F1}) (Version: 7.0.609.0 - Microsoft Corporation)
Bloggie Software (HKLM-x32\...\BloggieSoftware) (Version: 3.3.1.73 - Sony)
Bloggie Software (x32 Version: 3.3.1.73 - Sony Corporation) Hidden
Bonjour (HKLM\...\{0E543634-7E25-4B8F-8D5B-97880E5E5088}) (Version: 2.0.5.0 - Apple Inc.)
BPDSoftware (x32 Version: 140.0.000.000 - Hewlett-Packard) Hidden
BPDSoftware_Ini (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden
Brother MFL-Pro Suite MFC-8480DN (HKLM-x32\...\{004B8D14-7E3A-490A-ABB3-753535E169E3}) (Version: 1.0.5.0 - Brother Industries, Ltd.)
BufferChm (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden
calibre (HKLM-x32\...\{41357C72-23AD-440C-9538-3350AF076253}) (Version: 0.8.32 - Kovid Goyal)
Cisco Connect (HKLM-x32\...\Cisco Connect) (Version: 1.4.11299.0 - Cisco Consumer Products LLC)
Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Coupon Printer for Windows (HKLM-x32\...\Coupon Printer for Windows5.0.0.4) (Version: 5.0.0.4 - Coupons.com Incorporated)
CyberLink PowerDirector 12 (HKLM-x32\...\InstallShield_{E1646825-D391-42A0-93AA-27FA810DA093}) (Version: 12.0.2109.0 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DeviceDiscovery (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden
Document eSort Components (HKLM-x32\...\{ACBE616F-4C5E-4525-8248-06B651D752BF}) (Version: 2.4.2.1013 - Intuit Inc.)
Dolby Control Center (HKLM\...\{20387B45-18A4-4D48-ABD9-A23D2CBE42B3}) (Version: 2.2.1 - Dolby)
Driver Support (HKLM-x32\...\{597FB4A5-DD86-4316-A410-7E8074CC2CCE}) (Version: 8.1 - Driver Support)
DriverUpdate (HKLM-x32\...\{04F46566-A95C-46FF-9CA1-F3FDBAB61283}) (Version: 2.2.16918 - SlimWare Utilities, Inc.)
Dropbox (HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\...\Dropbox) (Version: 3.2.9 - Dropbox, Inc.)
Elevated Installer (x32 Version: 2.2.21 - Garmin Ltd or its subsidiaries) Hidden
EntlClnt (HKLM-x32\...\{C9052439-99E8-4A4C-9C81-49776DDFA969}) (Version: 1.1.0 - Intuit)
Epson Connect Printer Setup (HKLM-x32\...\{D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C}) (Version: 1.3.0 - SEIKO EPSON CORPORATION)
EPSON Connect version 1.0 (HKLM-x32\...\EPSON Connect_is1) (Version: 1.0 - Epson America Inc.)
Epson Customer Participation (HKLM\...\{814FA673-A085-403C-9545-747FC1495069}) (Version: 1.4.0.0 - SEIKO EPSON CORPORATION)
Epson Event Manager (HKLM-x32\...\{44F72193-F59C-4303-BAE8-E3E4BC1C122C}) (Version: 3.01.0003 - Seiko Epson Corporation)
Epson FAX Utility (HKLM-x32\...\{0CBE6C93-CB2E-4378-91EE-12BE6D4E2E4A}) (Version: 1.46.00 - SEIKO EPSON CORPORATION)
Epson PC-FAX Driver (HKLM-x32\...\EPSON PC-FAX Driver 2) (Version:  - )
Epson Print CD (HKLM-x32\...\{D16A31F9-276D-4968-A753-FFEAC56995D0}) (Version: 2.20.00 - SEIKO EPSON CORPORATION)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
EPSON XP-800 Series Printer Uninstall (HKLM\...\EPSON XP-800 Series) (Version:  - SEIKO EPSON Corporation)
EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.5.00 - SEIKO EPSON CORPORATION)
Free Video to JPG Converter version 5.0.17.822 (HKLM-x32\...\Free Video to JPG Converter_is1) (Version: 5.0.17.822 - DVDVideoSoft Ltd.)
Garmin Express (HKLM-x32\...\{31a12940-e5c8-4d27-a6ac-005212152f1f}) (Version: 2.2.21 - Garmin Ltd or its subsidiaries)
Garmin Express (x32 Version: 2.2.21 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express Tray (x32 Version: 2.2.21 - Garmin Ltd or its subsidiaries) Hidden
Garmin Update Service (x32 Version: 2.2.21 - Garmin Ltd or its subsidiaries) Hidden
Garmin USB Drivers (HKLM-x32\...\{3D5D6CFC-3097-425A-8D8F-7EAF5D57641D}) (Version: 2.3.1.0 - Garmin Ltd or its subsidiaries)
Garmin WebUpdater (HKLM-x32\...\{AE1EC58E-B2AC-4959-A4C2-C38202A25239}) (Version: 2.5.6 - Garmin Ltd or its subsidiaries)
Gimp 2.6.2 Debug (HKLM-x32\...\WinGimp-2.0_is1) (Version:  - )
Glary Utilities 2.41.0.1358 (HKLM-x32\...\Glary Utilities_is1) (Version: 2.41.0.1358 - Glarysoft Ltd)
Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.6227.252 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
Google+ Auto Backup (HKLM-x32\...\{A50DE037-B5C0-4C8A-8049-B0C576B313D1}) (Version: 1.0.21.81 - Google)
GPBaseService2 (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Officejet 6000 E609 Series (HKLM\...\{7791308C-85FB-43B9-93F2-7DE9CB7D5C4A}) (Version: 14.0 - HP)
HP Smart Web Printing 4.60 (HKLM\...\HP Smart Web Printing) (Version: 4.60 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Update (HKLM-x32\...\{74DC0593-6BC6-4001-AD5F-D810AFB68D86}) (Version: 5.002.002.002 - Hewlett-Packard)
HPProductAssistant (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden
HPSSupply (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
InFlac 1.1.1 (HKLM-x32\...\InFlac) (Version: 1.1.1 - Michael Facquet)
Intel® Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.0.1006 - Intel Corporation)
Intel® Graphics Media Accelerator Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.1986 - Intel Corporation)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.5.0.1037 - Intel Corporation)
Intuit Entitlement Client (HKLM-x32\...\{FA0092C2-C0FE-40DA-A79E-E4C0FCA129F9}) (Version: 1.0.0 - Intuit Inc.)
Intuit Entitlement Client v8 (HKLM-x32\...\{4C5B3CFD-DF38-49E2-82D9-5A933F36242F}) (Version: 8.0.24 - Intuit Inc.)
iTunes (HKLM\...\{16DDB3D1-5C27-4599-9C63-E583287191CC}) (Version: 10.2.2.12 - Apple Inc.)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Kaspersky Anti-Virus (HKLM-x32\...\InstallWIX_{6F6873E3-5C92-4049-B511-231A138DD090}) (Version: 14.0.0.4651 - Kaspersky Lab)
Kaspersky Anti-Virus (x32 Version: 14.0.0.4651 - Kaspersky Lab) Hidden
K-Lite Codec Pack 9.9.5 (Basic) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 9.9.5 - )
K-Lite Codec Packages (HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\...\K-Lite Codec Packages) (Version:  - ) <==== ATTENTION
LTCM Client (HKLM-x32\...\LTCM Client) (Version:  - Leader Technologies Inc.)
Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
MarketResearch (x32 Version: 140.0.214.000 - Hewlett-Packard) Hidden
Microsoft .NET Framework 1.1 (HKLM-x32\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation)
Microsoft Office 2007 Primary Interop Assemblies (HKLM-x32\...\{50120000-1105-0000-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-00CA-0000-0000-0000000FF1CE}_SMALLBUSINESSR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office PowerPoint Viewer 2007 (English) (HKLM-x32\...\{95120000-00AF-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Small Business 2007 (HKLM-x32\...\SMALLBUSINESSR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Suite Activation Assistant (HKLM-x32\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 (HKLM-x32\...\{E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}) (Version: 9.0.21022.218 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Works (HKLM-x32\...\{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}) (Version: 9.7.0621 - Microsoft Corporation)
Movie Maker 6.0 for Windows 7 (64-bit) (HKLM\...\{A7395F20-2B22-4CB8-8510-B452C0F47E02}) (Version: 6.0.0 - Microsoft Corporation)
Mozilla Firefox 36.0.4 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 36.0.4 (x86 en-US)) (Version: 36.0.4 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
MyFreeCodec (HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\...\MyFreeCodec) (Version:  - )
Network64 (Version: 140.0.215.000 - Hewlett-Packard) Hidden
One-Click Video to MP4 Converter (HKLM-x32\...\One-Click Video to MP4 Converter) (Version: 1.0 - Polaris-Software.com)
ooVoo (HKLM-x32\...\{FAA7F8FF-3C05-4A61-8F14-D8A6E9ED6623}) (Version: 3.6.4001 - ooVoo LLC.)
Pedigree for Windows (HKLM-x32\...\{FF7D1451-0A2F-4D75-98D0-393B796A8A14}) (Version: 1.43.2 - Chuck Orange Software)
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
ProductContext (x32 Version: 140.0.000.000 - Hewlett-Packard) Hidden
ProSeries 2006 (HKLM-x32\...\ProSeries 2006) (Version:  - )
ProSeries 2007 (HKLM-x32\...\ProSeries 2007) (Version:  - )
ProSeries 2008 (HKLM-x32\...\ProSeries 2008) (Version:  - )
ProSeries 2009 (HKLM-x32\...\ProSeries 2009) (Version:  - )
ProSeries 2010 (HKLM-x32\...\ProSeries 2010) (Version:  - )
ProSeries 2011 (HKLM-x32\...\ProSeries 2011) (Version:  - )
ProSeries 2012 (HKLM-x32\...\ProSeries 2012) (Version:  - )
ProSeries 2013 (HKLM-x32\...\ProSeries 2013) (Version:  - Intuit Inc.)
ProSeries 2013 Shared Components  (HKLM-x32\...\{27997608-50A8-466B-B534-743C7498B259}) (Version: 8.0.32 - Intuit Inc.)
ProSeries 2014 (HKLM-x32\...\ProSeries 2014) (Version:  - Intuit Inc.)
ProSeries 2014 Shared Components  (HKLM-x32\...\{9131A24E-F84F-4D15-A46A-57378440E3A8}) (Version: 8.0.51 - Intuit Inc.)
QuickBooks (x32 Version: 19.0.4012.705 - Intuit Inc.) Hidden
QuickBooks (x32 Version: 21.0.4001.904 - Intuit Inc.) Hidden
QuickBooks (x32 Version: 24.0.4004.2403 - Intuit Inc.) Hidden
QuickBooks Premier: Accountant Edition 2009 (HKLM-x32\...\{9A2F0810-3623-4E86-9072-973FBE1679C5}) (Version: 19.0.4012.705 - Intuit Inc.)
QuickBooks Pro 2011 (HKLM-x32\...\{11E0AC7D-6822-4F67-865F-EE1C13D28C38}) (Version: 21.0.4001.904 - Intuit Inc.)
QuickBooks Pro 2014 (HKLM-x32\...\{4A21D17E-2FE8-42CD-88B7-ACF8E8860834}) (Version: 24.0.4004.2403 - Intuit Inc.)
QuickBooks Runtime Redistributable (HKLM\...\{F2A4F809-2DE6-4D27-888B-4D2BB8DAF20E}) (Version: 1.00.0000 - Intuit Inc.)
QuickTime (HKLM-x32\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.)
Realtek Ethernet Controller  Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0008 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5972 - Realtek Semiconductor Corp.)
Realtek WLAN Driver (HKLM-x32\...\{0FB630AB-7BD8-40AE-B223-60397D57C3C9}) (Version: 2.00.0006 - Realtek)
RICOH R5U230 Media Driver ver.2.06.03.02 (HKLM-x32\...\{022CBB38-CEF0-42BA-906A-A49BEFAE0BEE}) (Version: 2.06.03.02 - RICOH)
Roxio Burn (HKLM-x32\...\{B2E47DE7-800B-40BB-BD1F-9F221C3AEE87}) (Version: 1.2 - Roxio)
Roxio Express Labeler 3 (HKLM-x32\...\{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}) (Version: 3.2.1 - Roxio)
Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.5.3.13052_10 - Samsung Electronics Co., Ltd.)
Samsung Kies (x32 Version: 2.5.3.13052_10 - Samsung Electronics Co., Ltd.) Hidden
Samsung Story Album Viewer (HKLM-x32\...\InstallShield_{698BBAD8-B116-495D-B879-0F07A533E57F}) (Version: 1.0.0.13054_1 - Samsung Electronics Co., Ltd.)
Samsung Story Album Viewer (x32 Version: 1.0.0.13054_1 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.27.0 - SAMSUNG Electronics Co., Ltd.)
Sharepod 4.0.0.1 (HKLM-x32\...\{085BCFB8-F6FB-4600-AFAB-1F6DBC7F5F99}_is1) (Version:  - Macroplant LLC)
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
SmartWebPrinting (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden
Software Updater (HKLM-x32\...\{E1BAD1BA-C0E8-4018-9281-E7D2C6B07474}) (Version: 4.3.6 - SEIKO EPSON CORPORATION)
SolutionCenter (x32 Version: 140.0.214.000 - Hewlett-Packard) Hidden
Spelling Dictionaries Support For Adobe Reader 9 (HKLM-x32\...\{AC76BA86-7AD7-5464-3428-900000000004}) (Version: 9.0.0 - Adobe Systems Incorporated)
Status (x32 Version: 140.0.256.000 - Hewlett-Packard) Hidden
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 5.6.1032 - SUPERAntiSpyware.com)
SupportSoft Assisted Service (HKLM-x32\...\{5A3F6A80-7913-475E-8B96-477A952CFA43}) (Version: 15 - SupportSoft)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 14.0.11.0 - Synaptics Incorporated)
Tax Forms Helper 2010 9.5 (HKLM-x32\...\Tax Forms Helper 2010_is1) (Version:  - )
Toolbox (x32 Version: 140.0.428.000 - Hewlett-Packard) Hidden
Toshiba Application Installer (HKLM-x32\...\{970472D0-F5F9-4158-A6E3-1AE49EFEF2D3}) (Version: 9.0.0.9 - Toshiba)
TOSHIBA Assist (HKLM-x32\...\{1B87C40B-A60B-4EF3-9A68-706CF4B69978}) (Version: 3.00.10 - TOSHIBA)
TOSHIBA Bulletin Board (HKLM-x32\...\InstallShield_{F64684A0-754B-4637-B7F9-6E8DAA8CD5CD}) (Version: 1.5.05.64 - TOSHIBA Corporation)
TOSHIBA ConfigFree (HKLM-x32\...\{F3529665-D75E-4D6D-98F0-745C78C68E9B}) (Version: 8.0.25 - TOSHIBA Corporation)
TOSHIBA Disc Creator (HKLM\...\{5DA0E02F-970B-424B-BF41-513A5018E4C0}) (Version: 2.1.0.2 for x64 - TOSHIBA Corporation)
TOSHIBA DVD PLAYER (HKLM-x32\...\{6C5F3BDC-0A1B-4436-A696-5939629D5C31}) (Version: 3.01.1.07-A - TOSHIBA Corporation)
TOSHIBA eco Utility (HKLM-x32\...\InstallShield_{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}) (Version: 1.1.12.64 - TOSHIBA Corporation)
TOSHIBA Extended Tiles for Windows Mobility Center (HKLM-x32\...\InstallShield_{617C36FD-0CBE-4600-84B2-441CEB12FADF}) (Version:  - )
TOSHIBA Face Recognition (HKLM-x32\...\InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F}) (Version: 3.1.3.64 - TOSHIBA Corporation)
TOSHIBA Hardware Setup (HKLM-x32\...\{D0387727-C89D-4774-B643-B9333EAA09DE}) (Version: 2.00.15 - TOSHIBA Corporation)
TOSHIBA HDD Protection (HKLM\...\{94A90C69-71C1-470A-88F5-AA47ECC96B40}) (Version: 2.2.0.3 - TOSHIBA Corporation)
TOSHIBA HDD/SSD Alert (HKLM-x32\...\InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}) (Version: 3.1.64.6 - TOSHIBA Corporation)
TOSHIBA Media Controller (HKLM-x32\...\{983CD6FE-8320-4B80-A8F6-0D0366E0AA22}) (Version: 1.0.65 - TOSHIBA CORPORATION)
TOSHIBA PC Health Monitor (HKLM\...\{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}) (Version: 1.5.6.64 - TOSHIBA Corporation)
TOSHIBA Quality Application (HKLM-x32\...\{E69992ED-A7F6-406C-9280-1C156417BC49}) (Version: 1.0.1 - TOSHIBA)
TOSHIBA Recovery Media Creator (HKLM\...\{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}) (Version: 2.1.0.4 for x64 - TOSHIBA Corporation)
TOSHIBA ReelTime (HKLM-x32\...\InstallShield_{5BCC94A1-DEF1-4AB4-8046-BC13048E929A}) (Version: 1.5.07.64 - TOSHIBA Corporation)
TOSHIBA Service Station (HKLM-x32\...\{AC6569FA-6919-442A-8552-073BE69E247A}) (Version: 2.1.40 - TOSHIBA)
TOSHIBA Speech System Applications (HKLM-x32\...\{EE033C1F-443E-41EC-A0E2-559B539A4E4D}) (Version: 1.00.2518 - )
TOSHIBA Speech System SR Engine(U.S.) Version1.0 (HKLM-x32\...\{008D69EB-70FF-46AB-9C75-924620DF191A}) (Version:  - )
TOSHIBA Speech System TTS Engine(U.S.) Version1.0 (HKLM-x32\...\{3FBF6F99-8EC6-41B4-8527-0A32241B5496}) (Version:  - )
TOSHIBA Supervisor Password (HKLM-x32\...\{A208044D-A88B-4ACF-AE95-E4F213E6EDC0}) (Version: 2.00.11 - TOSHIBA Corporation)
TOSHIBA USB Sleep and Charge Utility (HKLM-x32\...\{E487EE7D-EAAA-4E2A-9116-E3B477D8A74F}) (Version: 1.3.2.0 - TOSHIBA Corporation)
TOSHIBA Value Added Package (HKLM-x32\...\InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}) (Version: 1.2.32.64 - TOSHIBA Corporation)
TOSHIBA Web Camera Application (HKLM-x32\...\{5E6F6CF3-BACC-4144-868C-E14622C658F3}) (Version: 1.1.1.7 - TOSHIBA Corporation)
ToshibaRegistration (HKLM-x32\...\{5AF550B4-BB67-4E7E-82F1-2C4300279050}) (Version: 1.0.3 - Toshiba)
TrayApp (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-00CA-0000-0000-0000000FF1CE}_SMALLBUSINESSR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Visual Studio 2005 Tools for Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation)
WeatherBug® (HKLM-x32\...\WeatherBug®) (Version: 10.0.7.4 - Earth Networks, Inc.)
WebReg (x32 Version: 140.0.213.017 - Hewlett-Packard) Hidden
WexTech AnswerWorks (HKLM-x32\...\{EA2BEBD6-87B9-41E5-95AC-7E4C165A9475}) (Version: 1.00.000 - )
Winamp (HKLM-x32\...\Winamp) (Version: 5.621  - Nullsoft, Inc)
Winamp Detector Plug-in (HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc)
Windows Driver Package - Garmin (grmnusb) GARMIN Devices  (04/19/2012 2.3.1.0) (HKLM\...\98157A226B40B173301B0F53C8E98C47805D5152) (Version: 04/19/2012 2.3.1.0 - Garmin)
Windows Driver Package - Hewlett-Packard Image  (12/27/2006 8.0.0.0) (HKLM\...\F5E51FDA4F39B4D4F8A1DF9178FCF7947925E0F1) (Version: 12/27/2006 8.0.0.0 - Hewlett-Packard)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Sync (HKLM-x32\...\{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Media Encoder 9 Series x64 Edition (HKLM\...\Windows Media Encoder 9) (Version:  - )
Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
Windows XP Mode (HKLM\...\{1374CC63-B520-4f3f-98E8-E9020BF01CFF}) (Version: 1.3.7600.16423 - Microsoft Corporation)
WinZip 19.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240E7}) (Version: 19.0.11294 - WinZip Computing, S.L. )
Yahoo! Toolbar (HKLM-x32\...\Yahoo! Companion) (Version:  - )

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Owner\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{083863F1-70DE-11D0-BD40-00A0C911CE86}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{17CCA71B-ECD7-11D0-B908-00A0C9223196}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{275C23E2-3747-11D0-9FEA-00AA003F8646}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{33156164-81D6-11D3-8006-00C04FA30A73}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{33156168-81D6-11D3-8006-00C04FA30A73}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{33D9A762-90C8-11D0-BD43-00A0C911CE86}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{4315D437-5B8C-11D0-BD3B-00A0C911CE86}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{505C2E67-8615-4CA9-9B57-48CF6EE696FD}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{62BE5D10-60EB-11D0-BD3B-00A0C911CE86}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{632B606A-BBC6-11D2-A329-006097C4E476}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{6A2E0670-28E4-11D0-A18C-00A0C9118956}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{720D4AC0-7533-11D0-A5D6-28DB04C10000}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{8D52AA2E-40BE-46D7-8F36-DB7B0F636824}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{8E849609-C7E8-4EC7-8BD3-D55E871A340D}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{A5AC04E7-3E13-48CE-A43F-9FBA59DB1544}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{AB37E6C0-194D-4C33-A924-5178414DEB98}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{AB406AAC-2B2B-11D3-B36B-00C04F6108FF}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{C1AB3D89-6973-45A6-AA44-09CEBBF872E5}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{C3043B13-E649-436A-9CE7-8DA8CB0BF7C8}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{C6E13344-30AC-11D0-A18C-00A0C9118956}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{C6E13360-30AC-11D0-A18C-00A0C9118956}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{C6E13370-30AC-11D0-A18C-00A0C9118956}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{CDA42200-BD88-11D0-BD4E-00A0C911CE86}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{CF3EBABF-3E64-4422-BE23-514BB066ADBE}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{DF0AD8E0-F91C-4109-AE46-1EAA5CD8AB08}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{DF0AD8E1-F91C-4109-AE46-1EAA5CD8AB08}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{DF0AD8E3-F91C-4109-AE46-1EAA5CD8AB08}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{E297AB5E-40B0-41BD-9E06-E4144084EE5F}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{E30629D2-27E5-11CE-875D-00608CB78066}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{E436EBB3-524F-11CE-9F53-0020AF0BA770}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{EE474070-5CD6-4B74-90AD-7284ADDB6331}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)

==================== Restore Points  =========================

10-03-2015 04:30:37 Windows Update
12-03-2015 03:01:05 Windows Update
17-03-2015 05:49:19 Windows Update
24-03-2015 03:54:06 Windows Update
31-03-2015 02:23:59 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-13 22:34 - 2014-06-04 13:19 - 00000098 ____A C:\windows\system32\Drivers\etc\hosts
127.0.0.1       localhost
::1       localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {050E3665-75DA-44B8-8529-B998F648F168} - System32\Tasks\{FEC94943-EF7B-494A-B9DD-838C53DC2D96} => pcalua.exe -a C:\Users\Owner\Downloads\Welsh_2013-12-13_Data_Installer.exe -d C:\Users\Owner\Downloads
Task: {0C0D22E8-8135-4B10-ACAD-33157F079BCD} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {3271E830-AF22-405F-BF63-46F8C012F185} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-21] (Google Inc.)
Task: {55C8C300-33A5-48A6-A751-5125D4C962C2} - System32\Tasks\ConfigFree Startup Programs => C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe [2009-10-28] (TOSHIBA CORPORATION)
Task: {5C766EAA-187F-4A03-8DDD-3E5BF80958D2} - System32\Tasks\{B243A6E9-D92D-4702-B5C5-59DED3D9CA57} => pcalua.exe -a C:\Users\Owner\Downloads\Voice,AustralianEnglish-Karen_TTS__150.exe -d C:\Users\Owner\Downloads
Task: {724381D4-C04D-43A1-9CCC-DBFEA19DFB86} - System32\Tasks\UpdaterEX => C:\Users\Owner\AppData\Roaming\UPDATE~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: {731FF638-6F05-4BEB-A386-6965E3994562} - \TidyNetwork Update No Task File <==== ATTENTION
Task: {7C530AB6-07F7-4268-A080-907309C3AE22} - System32\Tasks\GlaryInitialize => C:\Program Files (x86)\Glary Utilities\initialize.exe [2011-12-28] (Glarysoft Ltd)
Task: {9176406B-C1F7-4E39-8215-91E76BC4962F} - System32\Tasks\Driver Support => C:\Program Files (x86)\Driver Support\Driver Support\DriverSupport.exe [2015-03-02] (PC Drivers Headquarters)
Task: {9EB70A5A-0763-4660-8067-DAE7D0358198} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-05] (Adobe Systems Incorporated)
Task: {A8501E92-62B5-4617-88DE-8D77433A37CB} - System32\Tasks\{198D9973-4C3C-4860-9B2D-055806D33254} => pcalua.exe -a C:\Users\Owner\Desktop\startuplite-setup-1.07.exe -d C:\Users\Owner\Desktop
Task: {B1EA3BF8-95B2-4329-A320-A79BC85FCD27} - System32\Tasks\{A8825D96-B4AE-495A-98C0-928001E3540F} => pcalua.exe -a D:\setup.exe -d D:\
Task: {B6579A9A-824F-4987-9DB0-54B3163EA3AE} - \DriverUpdate Startup No Task File <==== ATTENTION
Task: {BC4688E0-45F1-408F-A7CB-0604DAFBF602} - System32\Tasks\Driver Support-RTMRules => C:\Program Files (x86)\Driver Support\Driver Support\DriverSupport.exe [2015-03-02] (PC Drivers Headquarters)
Task: {C1922389-C3F6-41A0-95ED-0451DF428CCF} - System32\Tasks\Driver Support-RTMUpdater => C:\Program Files (x86)\Driver Support\Driver Support\DriverSupport.exe [2015-03-02] (PC Drivers Headquarters)
Task: {C4F4DFF4-211A-4EC8-859E-EC7CEAC763A7} - System32\Tasks\Driver Support-RTMScan => C:\Program Files (x86)\Driver Support\Driver Support\DriverSupport.exe [2015-03-02] (PC Drivers Headquarters)
Task: {DA7EC73A-9E2A-4B59-B61C-5A392F57251C} - \Scheduled Update for Ask Toolbar No Task File <==== ATTENTION
Task: {E97258DF-4578-4584-B36C-4EBDA474994F} - System32\Tasks\{83A7B74D-8A06-4F11-BA9B-56565412EC38} => pcalua.exe -a C:\windows\system32\pcwrun.exe -c "C:\Program Files (x86)\Intuit\QuickBooks 2011\QBW32Pro.exe"
Task: {EFC80126-A35F-4933-878B-957222B47DAA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-21] (Google Inc.)
Task: {F2F62C43-A861-4210-B909-101DA9DB9EB7} - System32\Tasks\Total Domination => Chrome.exe --app=http://totaldominati...yzytB0F0FyE0DyB--app-window-size=1366,768
Task: {F72FC43A-5677-4175-9F77-A1A9D3120216} - System32\Tasks\Total Domination t => Chrome.exe --app=http://totaldominati...yzytB0F0FyE0DyB--app-window-size=1366,768
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GlaryInitialize.job => C:\Program Files (x86)\Glary Utilities\initialize.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\UpdaterEX.job => C:\Users\Owner\AppData\Roaming\UPDATE~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION

==================== Loaded Modules (whitelisted) ==============

2015-03-02 14:05 - 2015-03-02 14:05 - 00334112 _____ () C:\Program Files (x86)\Driver Support\Driver Support\Agent.Common.XmlSerializers.dll
2014-04-01 09:42 - 2015-03-02 14:05 - 00465184 _____ () C:\Program Files (x86)\Driver Support\Driver Support\Agent.Communication.XmlSerializers.dll
2009-10-18 19:20 - 2009-10-18 19:20 - 07959864 _____ () C:\Program Files\TOSHIBA\FlashCards\BlackPng.dll
2009-11-03 17:26 - 2009-11-03 17:26 - 00053560 _____ () C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnZ.dll
2009-12-12 02:22 - 2009-06-22 19:40 - 00022328 _____ () C:\Program Files\TOSHIBA\Toshiba Assist\NotifyX.dll
2009-03-12 23:08 - 2009-03-12 23:08 - 00048640 _____ () C:\Program Files (x86)\Toshiba\PCDiag\NotifyPCD.dll
2009-07-25 21:38 - 2009-07-25 21:38 - 00017800 _____ () C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\NotifyTDC.dll
2009-10-30 21:20 - 2009-10-30 21:20 - 00417592 _____ () C:\Program Files\TOSHIBA\FlashCards\Hotkey\TcrdKBB.exe
2010-02-05 17:44 - 2010-02-05 17:44 - 00079192 _____ () C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosIPCWraper.dll
2013-06-17 12:35 - 2013-06-17 12:35 - 00478400 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\dblite.dll
2013-05-08 14:52 - 2013-05-08 14:52 - 01270464 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\kpcengine.2.3.dll
2013-12-02 16:58 - 2013-12-02 16:58 - 00623432 _____ () C:\Program Files (x86)\Intuit\QuickBooks 2014\boost_regex-vc100-mt-1_47.dll
2013-12-02 16:58 - 2013-12-02 16:58 - 00021320 _____ () C:\Program Files (x86)\Intuit\QuickBooks 2014\QBCompressor.dll
2013-12-02 14:27 - 2013-12-02 14:27 - 00059904 _____ () C:\Program Files (x86)\Intuit\QuickBooks 2014\zlib1.dll
2013-12-02 16:58 - 2013-12-02 16:58 - 00148296 _____ () C:\Program Files (x86)\Intuit\QuickBooks 2014\QBMAPILibrary.dll
2013-12-02 16:58 - 2013-12-02 16:58 - 00247112 _____ () C:\Program Files (x86)\Intuit\QuickBooks 2014\boost_serialization-vc100-mt-1_47.dll
2013-12-02 16:58 - 2013-12-02 16:58 - 00621896 _____ () C:\Program Files (x86)\Intuit\QuickBooks 2014\FtuEngine.dll
2013-12-02 16:58 - 2013-12-02 16:58 - 00578888 _____ () C:\Program Files (x86)\Intuit\QuickBooks 2014\BackupLib.dll
2013-12-02 16:58 - 2013-12-02 16:58 - 00140616 _____ () C:\Program Files (x86)\Intuit\QuickBooks 2014\QBProActiveCore.dll
2013-12-02 16:58 - 2013-12-02 16:58 - 00760648 _____ () C:\Program Files (x86)\Intuit\QuickBooks 2014\FeaturesBridge.dll
2013-12-02 16:58 - 2013-12-02 16:58 - 00043848 _____ () C:\Program Files (x86)\Intuit\QuickBooks 2014\mbpopup.dll
2015-03-04 18:08 - 2015-03-04 18:08 - 00750080 _____ () C:\Users\Owner\AppData\Roaming\Dropbox\bin\libGLESv2.dll
2015-03-31 21:01 - 2015-03-31 21:01 - 00043008 _____ () c:\users\owner\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp0qy0sz.dll
2015-03-04 18:08 - 2015-03-04 18:08 - 00047616 _____ () C:\Users\Owner\AppData\Roaming\Dropbox\bin\libEGL.dll
2015-03-04 18:08 - 2015-03-04 18:08 - 00865280 _____ () C:\Users\Owner\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll
2015-03-04 18:07 - 2015-03-04 18:07 - 00200704 _____ () C:\Users\Owner\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll
2011-03-22 19:46 - 2009-02-27 16:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
2010-01-06 07:39 - 2009-10-02 17:18 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IsdiInterop.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ntrexeservice => ""="Service"

==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 75.75.75.75 - 75.75.76.76

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== Accounts: =============================

Administrator (S-1-5-21-3893256802-2942114387-4184744975-500 - Administrator - Disabled)
ASPNET (S-1-5-21-3893256802-2942114387-4184744975-1004 - Limited - Enabled)
Guest (S-1-5-21-3893256802-2942114387-4184744975-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3893256802-2942114387-4184744975-1002 - Limited - Enabled)
Owner (S-1-5-21-3893256802-2942114387-4184744975-1000 - Administrator - Enabled) => C:\Users\Owner

==================== Faulty Device Manager Devices =============

Name: Officejet 6000 E609n
Description: Officejet 6000 E609n
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Officejet 6000 E609n
Description: Officejet 6000 E609n
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Photosmart Plus B209a-m
Description: Photosmart Plus B209a-m
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (04/01/2015 05:22:35 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 90080108

Error: (04/01/2015 04:26:14 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80004005

Error: (03/31/2015 08:58:58 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: TWN BrtTWN: [2015/03/31 20:58:58.294]: [00003400]: Initialize TwdsMain Class failed!

Error: (03/31/2015 08:58:58 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: TWN BrtTWN: [2015/03/31 20:58:58.294]: [00003400]: ##### Fatal ERROR!! Create STI-device failed! #####

Error: (03/31/2015 08:58:58 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: TWN BrtTWN: [2015/03/31 20:58:58.294]: [00003400]: GetDeviceList Failed! pStiInfo = 0x0..

Error: (03/31/2015 10:41:44 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 90080108

Error: (03/31/2015 09:20:36 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80004005

Error: (03/30/2015 08:28:26 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: TWN BrtTWN: [2015/03/30 20:28:26.938]: [00003292]: Initialize TwdsMain Class failed!

Error: (03/30/2015 08:28:26 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: TWN BrtTWN: [2015/03/30 20:28:26.938]: [00003292]: ##### Fatal ERROR!! Create STI-device failed! #####

Error: (03/30/2015 08:28:26 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: TWN BrtTWN: [2015/03/30 20:28:26.938]: [00003292]: GetDeviceList Failed! pStiInfo = 0x0..


System errors:
=============
Error: (03/31/2015 08:59:15 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The vToolbarUpdater15.5.0 service failed to start due to the following error:
%%2

Error: (03/31/2015 08:58:48 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)

Error: (03/31/2015 08:58:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Garmin Core Update Service service failed to start due to the following error:
%%1053

Error: (03/31/2015 08:58:39 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Garmin Core Update Service service to connect.

Error: (03/31/2015 09:12:09 AM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR1.

Error: (03/31/2015 09:12:08 AM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR1.

Error: (03/30/2015 08:28:53 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The vToolbarUpdater15.5.0 service failed to start due to the following error:
%%2

Error: (03/30/2015 08:28:21 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Garmin Core Update Service service failed to start due to the following error:
%%1053

Error: (03/30/2015 08:28:21 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Garmin Core Update Service service to connect.

Error: (03/30/2015 08:28:19 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)


Microsoft Office Sessions:
=========================
Error: (08/22/2014 04:06:57 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6700.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 13409 seconds with 1680 seconds of active time.  This session ended with a crash.

Error: (11/08/2010 00:09:53 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 5393 seconds with 120 seconds of active time.  This session ended with a crash.


CodeIntegrity Errors:
===================================
  Date: 2012-01-11 10:35:29.276
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\Temp\TMP000003185D53E15CD3AD6089 because the set of per-page image hashes could not be found on the system.

  Date: 2012-01-11 10:35:29.171
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\Temp\TMP000003185D53E15CD3AD6089 because the set of per-page image hashes could not be found on the system.

  Date: 2012-01-11 10:35:29.067
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\Temp\TMP000003185D53E15CD3AD6089 because the set of per-page image hashes could not be found on the system.

  Date: 2012-01-11 02:10:43.505
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\Temp\TMP000003185D53E15CD3AD6089 because the set of per-page image hashes could not be found on the system.

  Date: 2012-01-11 02:10:43.349
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\Temp\TMP000003185D53E15CD3AD6089 because the set of per-page image hashes could not be found on the system.

  Date: 2012-01-11 02:10:43.209
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\Temp\TMP000003185D53E15CD3AD6089 because the set of per-page image hashes could not be found on the system.

  Date: 2012-01-10 12:47:23.678
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\Temp\TMP000003185D53E15CD3AD6089 because the set of per-page image hashes could not be found on the system.

  Date: 2012-01-10 12:47:23.553
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\Temp\TMP000003185D53E15CD3AD6089 because the set of per-page image hashes could not be found on the system.

  Date: 2012-01-10 12:47:23.397
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\Temp\TMP000003185D53E15CD3AD6089 because the set of per-page image hashes could not be found on the system.

  Date: 2011-12-22 14:26:01.813
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\Temp\TMP000003185D53E15CD3AD6089 because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Processor: Intel® Core™ i3 CPU M 330 @ 2.13GHz
Percentage of memory in use: 71%
Total physical RAM: 3894.84 MB
Available physical RAM: 1125.79 MB
Total Pagefile: 7787.88 MB
Available Pagefile: 4264.21 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB

==================== Drives ================================

Drive c: (Mary Ellen Carney) (Fixed) (Total:453.89 GB) (Free:245.02 GB) NTFS ==>[System with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 465.8 GB) (Disk ID: 31AC024B)
Partition 1: (Active) - (Size=1.5 GB) - (Type=27)
Partition 2: (Not Active) - (Size=453.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=10.4 GB) - (Type=17)

==================== End Of Log ============================


  • 0

#7
DanoNH

DanoNH

    Trusted Helper

  • Malware Removal
  • 2,155 posts

Hello njnauticalnut17, and thanks for your patience.
 
Please take your time and work through each of the steps below, in order.  If you have any questions or get stuck, please stop where you are at and let me know.
 
Let's begin, shall we? :D
 
First
Programs uninstall

Go to the Control Panel > Uninstall a program or Programs and Features, and uninstall the following programs:

  • AutocompletePro
  • K-Lite Codec Packages

(Let me know if you can't find these or have trouble uninstalling them.)
 
Another program that is recommended, but not required to uninstall is Glary Utilities.  This program has the capability to corrupt your registry or otherwise damage the system.
 

Second
 
Run a FRST Fix

  • Download the attached fixlist.txt file and save it to the DESKTOP.  (NOTE. It's important that both files, FRST/FRST64 and fixlist.txt are in the same location or the fix will not work.)
    Attached File  fixlist.txt   8.05KB   261 downloads
    NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system.
  • Run FRST/FRST64 from your Desktop and press the Fix button just once and wait.
  • If for some reason the tool needs a restart, please make sure you let the system restart normally.  After that let the tool complete its run.
  • When finished FRST will generate a log on the Desktop named Fixlog.txt. Please post the contents of that log file into your next reply.

Third
Run Junkware Removal Tool:

Please download Junkware Removal Tool to your DESKTOP.

  • Shut down your protection software now to avoid potential conflicts.  See here for more information.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.

Fourth
AdwCleaner by Xplode

Download AdwCleaner from here or from here. Save the file to the DESKTOP.

NOTE: If you are using IE 8 or above you may get a warning that stops the program from downloading. Just click on the warning and allow the download to complete.

Close all open windows and browsers.

  • XP users: Double click the AdwCleaner icon to start the program.
  • Vista/7/8 users: Right click the AdwCleaner icon on the desktop, click Run as administrator and accept the UAC prompt to run AdwCleaner.
    You will see the following console:
    AdwCleaner_Scan_zpsvt1mvqxm.png
  • Click the Scan button and wait for the scan to finish.
  • After the Scan has finished the window may or may not show what it found and above, in the progress bar, you will see: Pending. Please uncheck elements you don't want to remove. Please Do Not delete anything at this time.
  • Click the Report button to get the log.
  • Copy and Paste it into your next reply. This report is also saved to C:\AdwCleaner\AdwCleaner[R0].txt.
  • Click the X in the upper right corner of the program or click the File menu and click Exit to close the program.

Finally
 
Please copy & paste the contents of these logs in your reply.  You might need more than one post to do it.

  • FRST fixlog.txt
  • JRT log
  • AdwCleaner log

And tell me how the computer is running. :)


  • 0

#8
njnauticalnut17

njnauticalnut17

    Member

  • Topic Starter
  • Member
  • PipPip
  • 66 posts

Thank you for your response.

 

I have not run the scans yet as I was not able to remove all of the components of AutoComplete Pro.  When I uninstalled the program I got a message saying that not all of the components could be removed that they could be removed manually.  I await your instructions.

 

Thanks.


  • 0

#9
DanoNH

DanoNH

    Trusted Helper

  • Malware Removal
  • 2,155 posts
OK, don't worry about completely removing AutocompletePro for now. It's embedded fairly deep, but my FRST script should handle most of it. We always try the uninstall option first. :)

Please continue to the next uninstall(s) and proceed on from there...
  • 0

#10
njnauticalnut17

njnauticalnut17

    Member

  • Topic Starter
  • Member
  • PipPip
  • 66 posts

Again thank you for your response and help.  I ran the Frst Fix.  I downloaded the Junkware Removal Tool and disabled my anti-virus.  When I click on run as administrator I get the following error message, Non 7z archive.  I have stopped and will proceed once you tell me what to do.

 

Here is the Fixlog:

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-03-2015
Ran by Owner at 2015-04-03 21:03:58 Run:1
Running from C:\Users\Owner\Desktop
Loaded Profiles: Owner (Available profiles: Owner)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
start
CreateRestorePoint:
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\...\MountPoints2: G - G:\LaunchU3.exe -a
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.autoco...si=10214&bi=400
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.autoco...si=10214&bi=400
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.autoco...si=10214&bi=400
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\Software\Microsoft\Internet Explorer\Main,Start Default_Page_URL = http://search.autoco...si=10214&bi=400
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope value is missing.
SearchScopes: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000 -> {8CDE19E6-71C2-4B46-89B7-35F6A18C571A} URL =
SearchScopes: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000 -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.autoco...q={searchTerms}
BHO: AC-Pro -> {0FB6A909-6086-458F-BD92-1F8EE10042A0} -> C:\Program Files (x86)\AutocompletePro\64\AutocompletePro64.dll [2010-11-11] (SimplyGen)
BHO-x32: AC-Pro -> {0FB6A909-6086-458F-BD92-1F8EE10042A0} -> C:\Program Files (x86)\AutocompletePro\AutocompletePro.dll [2010-11-11] (SimplyGen)
FF ProfilePath: C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qquctg5w.default-1399488636380
FF Keyword.URL: hxxp://search.autocompletepro.com?si=10214&q=
FF Extension: AutocompletePro - Your handy search suggestions tool - C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qquctg5w.default-1399488636380\Extensions\[email protected] [2014-07-04]
CHR HKLM\...\Chrome\Extension: [blbkdnmdcafmfhinpmnlhhddbepgkeaa] - https://chrome.google.com/webstore/detail/blbkdnmdcafmfhinpmnlhhddbepgkeaa [Not Found]
S2 vToolbarUpdater15.5.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe [X]
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{083863F1-70DE-11D0-BD40-00A0C911CE86}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{17CCA71B-ECD7-11D0-B908-00A0C9223196}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{275C23E2-3747-11D0-9FEA-00AA003F8646}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{33156164-81D6-11D3-8006-00C04FA30A73}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{33156168-81D6-11D3-8006-00C04FA30A73}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{33D9A762-90C8-11D0-BD43-00A0C911CE86}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{4315D437-5B8C-11D0-BD3B-00A0C911CE86}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{505C2E67-8615-4CA9-9B57-48CF6EE696FD}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{62BE5D10-60EB-11D0-BD3B-00A0C911CE86}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{632B606A-BBC6-11D2-A329-006097C4E476}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{6A2E0670-28E4-11D0-A18C-00A0C9118956}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{720D4AC0-7533-11D0-A5D6-28DB04C10000}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{8D52AA2E-40BE-46D7-8F36-DB7B0F636824}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{8E849609-C7E8-4EC7-8BD3-D55E871A340D}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{A5AC04E7-3E13-48CE-A43F-9FBA59DB1544}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{AB37E6C0-194D-4C33-A924-5178414DEB98}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{AB406AAC-2B2B-11D3-B36B-00C04F6108FF}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{C1AB3D89-6973-45A6-AA44-09CEBBF872E5}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{C3043B13-E649-436A-9CE7-8DA8CB0BF7C8}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{C6E13344-30AC-11D0-A18C-00A0C9118956}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{C6E13360-30AC-11D0-A18C-00A0C9118956}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{C6E13370-30AC-11D0-A18C-00A0C9118956}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{CDA42200-BD88-11D0-BD4E-00A0C911CE86}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{CF3EBABF-3E64-4422-BE23-514BB066ADBE}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{DF0AD8E0-F91C-4109-AE46-1EAA5CD8AB08}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{DF0AD8E1-F91C-4109-AE46-1EAA5CD8AB08}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{DF0AD8E3-F91C-4109-AE46-1EAA5CD8AB08}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{E297AB5E-40B0-41BD-9E06-E4144084EE5F}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{E30629D2-27E5-11CE-875D-00608CB78066}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{E436EBB3-524F-11CE-9F53-0020AF0BA770}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{EE474070-5CD6-4B74-90AD-7284ADDB6331}\InprocServer32 -> No File Path
Task: {724381D4-C04D-43A1-9CCC-DBFEA19DFB86} - System32\Tasks\UpdaterEX => C:\Users\Owner\AppData\Roaming\UPDATE~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: {731FF638-6F05-4BEB-A386-6965E3994562} - \TidyNetwork Update No Task File <==== ATTENTION
Task: {B6579A9A-824F-4987-9DB0-54B3163EA3AE} - \DriverUpdate Startup No Task File <==== ATTENTION
Task: {DA7EC73A-9E2A-4B59-B61C-5A392F57251C} - \Scheduled Update for Ask Toolbar No Task File <==== ATTENTION
Task: C:\windows\Tasks\GlaryInitialize.job => C:\Program Files (x86)\Glary Utilities\initialize.exe
Task: C:\windows\Tasks\UpdaterEX.job => C:\Users\Owner\AppData\Roaming\UPDATE~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ntrexeservice => ""="Service"
VerifySignature: C:\Windows\SysWOW64\svchost.exe
Reg: reg delete HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f
Reg: reg add HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f
RemoveProxy:
EmptyTemp:
CMD: bitsadmin /reset /allusers
end
*****************

Restore point was successfully created.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\G" => Key deleted successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\Software\Microsoft\Internet Explorer\Main\\Search Bar => value deleted successfully.
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\Software\Microsoft\Internet Explorer\Main\\Start Default_Page_URL => value deleted successfully.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{8CDE19E6-71C2-4B46-89B7-35F6A18C571A}" => Key deleted successfully.
HKCR\CLSID\{8CDE19E6-71C2-4B46-89B7-35F6A18C571A} => Key not found.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}" => Key deleted successfully.
HKCR\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b} => Key not found.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0} => Key not found.
HKCR\CLSID\{0FB6A909-6086-458F-BD92-1F8EE10042A0} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0} => Key not found.
HKCR\Wow6432Node\CLSID\{0FB6A909-6086-458F-BD92-1F8EE10042A0} => Key not found.
FF ProfilePath: C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qquctg5w.default-1399488636380 => Should not be moved.
Firefox Keyword.URL deleted successfully.
C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qquctg5w.default-1399488636380\Extensions\[email protected] not found.
"HKLM\SOFTWARE\Google\Chrome\Extensions\blbkdnmdcafmfhinpmnlhhddbepgkeaa" => Key deleted successfully.
vToolbarUpdater15.5.0 => Service deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{00020420-0000-0000-C000-000000000046}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{00020424-0000-0000-C000-000000000046}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{083863F1-70DE-11D0-BD40-00A0C911CE86}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{17CCA71B-ECD7-11D0-B908-00A0C9223196}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{275C23E2-3747-11D0-9FEA-00AA003F8646}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{33156164-81D6-11D3-8006-00C04FA30A73}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{33156168-81D6-11D3-8006-00C04FA30A73}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{33D9A762-90C8-11D0-BD43-00A0C911CE86}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{4315D437-5B8C-11D0-BD3B-00A0C911CE86}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{505C2E67-8615-4CA9-9B57-48CF6EE696FD}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{62BE5D10-60EB-11D0-BD3B-00A0C911CE86}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{632B606A-BBC6-11D2-A329-006097C4E476}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{6A2E0670-28E4-11D0-A18C-00A0C9118956}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{720D4AC0-7533-11D0-A5D6-28DB04C10000}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{8D52AA2E-40BE-46D7-8F36-DB7B0F636824}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{8E849609-C7E8-4EC7-8BD3-D55E871A340D}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{A5AC04E7-3E13-48CE-A43F-9FBA59DB1544}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{AB37E6C0-194D-4C33-A924-5178414DEB98}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{AB406AAC-2B2B-11D3-B36B-00C04F6108FF}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{C1AB3D89-6973-45A6-AA44-09CEBBF872E5}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{C3043B13-E649-436A-9CE7-8DA8CB0BF7C8}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{C6E13344-30AC-11D0-A18C-00A0C9118956}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{C6E13360-30AC-11D0-A18C-00A0C9118956}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{C6E13370-30AC-11D0-A18C-00A0C9118956}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{CDA42200-BD88-11D0-BD4E-00A0C911CE86}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{CF3EBABF-3E64-4422-BE23-514BB066ADBE}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{DF0AD8E0-F91C-4109-AE46-1EAA5CD8AB08}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{DF0AD8E1-F91C-4109-AE46-1EAA5CD8AB08}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{DF0AD8E3-F91C-4109-AE46-1EAA5CD8AB08}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{E297AB5E-40B0-41BD-9E06-E4144084EE5F}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{E30629D2-27E5-11CE-875D-00608CB78066}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{E436EBB3-524F-11CE-9F53-0020AF0BA770}" => Key deleted successfully.
"HKU\S-1-5-21-3893256802-2942114387-4184744975-1000_Classes\CLSID\{EE474070-5CD6-4B74-90AD-7284ADDB6331}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{724381D4-C04D-43A1-9CCC-DBFEA19DFB86}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{724381D4-C04D-43A1-9CCC-DBFEA19DFB86}" => Key deleted successfully.
C:\Windows\System32\Tasks\UpdaterEX => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\UpdaterEX" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{731FF638-6F05-4BEB-A386-6965E3994562}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{731FF638-6F05-4BEB-A386-6965E3994562}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\TidyNetwork Update" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B6579A9A-824F-4987-9DB0-54B3163EA3AE}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B6579A9A-824F-4987-9DB0-54B3163EA3AE}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DriverUpdate Startup" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DA7EC73A-9E2A-4B59-B61C-5A392F57251C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DA7EC73A-9E2A-4B59-B61C-5A392F57251C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Scheduled Update for Ask Toolbar" => Key deleted successfully.
C:\windows\Tasks\GlaryInitialize.job => Moved successfully.
C:\windows\Tasks\UpdaterEX.job => Moved successfully.
"HKLM\System\CurrentControlSet\Control\SafeBoot\Network\ntrexeservice" => Key deleted successfully.
"C:\Windows\SysWOW64\svchost.exe" => File is digitaly signed.

========= reg delete HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f =========

The operation completed successfully.



========= End of Reg: =========


========= reg add HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f =========

The operation completed successfully.



========= End of Reg: =========


========= RemoveProxy: =========

HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value deleted successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value deleted successfully.
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value deleted successfully.
HKU\S-1-5-21-3893256802-2942114387-4184744975-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value deleted successfully.


========= End of RemoveProxy: =========


=========  bitsadmin /reset /allusers =========


BITSADMIN version 3.0 [ 7.5.7601 ]
BITS administration utility.
© Copyright 2000-2006 Microsoft Corp.

BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.

0 out of 0 jobs canceled.

========= End of CMD: =========

EmptyTemp: => Removed 2.3 GB temporary data.


The system needed a reboot.

==== End of Fixlog 21:07:23 ====


  • 0

Advertisements


#11
DanoNH

DanoNH

    Trusted Helper

  • Malware Removal
  • 2,155 posts

Thanks for the FRST fix log, and for stopping when you had questions.  Good job!  :spoton:  

 

As far as JRT goes:

  1. Did you by chance download it to a flash drive and then transfer it to the PC?
  2. Could you please delete your local copy on your Desktop and try directly downloading it from here to the computer?  This time, wait a good 30 seconds before trying to run it as administrator.  Can you get it to run now?

Please let me know the answers to these questions. :)


  • 0

#12
njnauticalnut17

njnauticalnut17

    Member

  • Topic Starter
  • Member
  • PipPip
  • 66 posts

Sorry for the delay.  Had a crazy weekend and in addition I am an accountant and it is tax season.  Of course I stopped, you told me to and I follow directions well!  :P  This time JRT downloaded and ran fine. 

 

Here is the JRT.txt log:

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.5.2 (04.06.2015:1)
OS: Windows 7 Professional x64
Ran by Owner on Mon 04/06/2015 at 13:17:46.08
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-3893256802-2942114387-4184744975-1000\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\\Default_Search_URL



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Eventlog\Application\update linkswift
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\TaskSch_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\TaskSch_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\TaskSch_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\TaskSch_RASMANCS
Successfully deleted: [Registry Key] "hkey_current_user\software\apn pip"
Successfully deleted: [Registry Key] "hkey_current_user\software\microsoft\internet explorer\low rights\elevationpolicy\{a5aa24ea-11b8-4113-95ae-9ed71deaf12a}"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9"
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{997DF6D6-BD4F-4CAE-9352-98C6E1F1C918}



~~~ Files

Successfully deleted: [File] "C:\windows\couponprinter.ocx"
Successfully deleted: [File] C:\windows\prefetch\DRIVERSUPPORT.EXE-7FC7C60C.pf



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\driver support"
Successfully deleted: [Folder] "C:\Users\Owner\AppData\Roaming\updaterex"
Successfully deleted: [Folder] "C:\Users\Owner\appdata\local\pc_drivers_headquarters"
Successfully deleted: [Folder] "C:\Program Files (x86)\autocompletepro"
Successfully deleted: [Folder] "C:\Program Files (x86)\coupons"
Successfully deleted: [Folder] "C:\Program Files (x86)\driver support"
Successfully deleted: [Folder] "C:\Program Files (x86)\eusing free registry cleaner"
Successfully deleted: [Folder] "C:\Program Files (x86)\myfree codec"
Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\driver support"
Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\free registry cleaner"
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{0018916E-5384-4237-BED0-A4EEE01C0BD1}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{019DBF3A-AB5A-4130-B619-9B42BD7B112A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{01C4F036-9C07-4EEB-B939-7A220D7945A8}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{03A9D153-70D2-4348-A2B8-4D24D8C1FC92}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{03E3E3C5-4FAD-412F-9A83-2A0E9630E8E7}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{0584F1FD-66E1-4E4E-9394-E5E22D7E5544}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{05AB261B-0890-47F9-A29E-59DC8A4430E0}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{05C98A56-5278-4376-BBCD-8C0E6F9FA3A0}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{05CEC984-0686-4464-89F7-91201992A530}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{0674BDE5-A1A7-47C0-8243-93CFCFACBE61}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{06B5C41E-989D-443E-914D-26B42294F4CF}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{06DA7B2E-5B95-4EB7-8F0F-1FC42AC56945}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{06DF0E1A-7F98-4BA7-AF1F-F48ECBE75769}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{07D4475B-C45B-4082-94CF-3835656BBBAA}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{08CEE598-F0DE-4970-9ED3-9D646588CCC7}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{0A03466B-4E5B-4638-87A5-C7BFEF686347}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{0B71059B-A277-4573-809B-CD98F69876CB}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{0C1CE1E7-B4AD-4B46-B5A0-17187FC1E4AF}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{0C3B4832-1F20-44D5-B8B9-9292283C2268}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{0C96D04A-979F-4907-85BA-CAF0CA51261B}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{0D539A52-6EAA-4A22-A634-3D6EAD8BC75D}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{0D6352D6-E5AF-48D9-B604-BB910DD5C84D}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{0DC5C8CC-1A34-41D7-B79E-FB64A513E05E}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{0E6B1B4E-4F1F-49DA-BD82-B0CCA42F5039}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{0EAC798D-8263-4DAC-9C77-3FBF44297473}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{0ECE0452-D143-4E5B-A48D-DBDCDA0BC5A2}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{0EF6117C-B06D-421F-9940-B78BB25367C4}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{0FD32D9B-6EE1-4386-8AF3-E6504BDA1091}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{10766E98-7171-4A0E-90D2-92DFDCAD6748}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{111AD92F-4FFE-4FD6-A156-4E65D2AF4BE4}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{1236862C-FA1D-435A-8B55-58C581919FE6}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{12F1C5D4-BB3C-41C5-AEE6-7487B112245B}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{13DD3A07-04B9-4FAB-AE0D-E1B21B2261BB}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{1417A9D4-C021-48DB-BADA-8A805F9EA383}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{1557361F-0B7D-4D63-9A99-89BCBEB14825}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{162628A7-F1B5-4F26-A1D6-D828AE2798C9}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{163987BF-765A-4DE2-8216-DCB095055165}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{16E90289-E5BF-416A-B420-407C2453DD38}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{19482FEF-8101-4C1E-9AB0-0D65D05EFBA7}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{1981A99E-5E6C-40D8-BF86-A183B175EC24}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{1B93C95F-E29D-4E2C-A2CA-B6911611D4BF}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{1CC3566A-0191-4675-9E53-18F89CCEABD0}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{1CCC2E26-1DC8-429D-858E-C18E9C0E8778}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{1CDC51AC-94BF-4D5A-A76E-96BCB10DEB15}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{1E11D977-4301-43F9-B398-616E55A508CA}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{1F5F3DE6-6C5A-496A-95C0-EED0D0C55986}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{1FB44919-E407-45C3-9B1A-CBDE08A22A0E}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{20401442-CADD-482C-A38D-4488AD3B9583}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{2077F7D0-EF88-4344-9B56-2C3DD92C7866}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{20C7DA6E-7B7D-49D0-A953-665E04DC94DF}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{20FCAB07-7A6B-4982-BAC2-68CCBA0D5FED}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{219918F8-A5EA-4D9D-87F8-67168770E56D}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{223F0572-1AC4-485E-A2F5-B984425E35FA}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{230E93B3-EE30-4D9A-946B-C290C5122578}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{23138C4F-CD87-45C7-9E5F-830AD642B78A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{23509BFF-E3D6-41E1-8866-6FD240A7BB25}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{2350AF8F-94DE-4621-BD42-E6E7FD440CFB}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{23522FF0-86BE-455C-9A09-5359427322B1}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{23A44BD3-6DF2-4CC8-9453-AEE130CD596C}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{2508BE3E-4920-48D0-9639-DD1B3B7CABF2}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{2540F228-310B-47C0-9075-6B832C34ED19}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{262392B1-1A46-4F78-8809-87AECC1BCC8B}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{26F417FE-9A33-4108-9F78-D84C05F822F6}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{270AA004-684C-46EA-9621-CF258379D989}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{27EA6616-B87C-47B9-9251-A212D4285346}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{27F5570A-7694-4F23-BA49-FDF07C360186}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{289C563D-4D8D-46D5-B58E-D672101AC8A6}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{28FA0714-A5F9-4084-B4F6-B7891985B40D}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{2918E071-79E1-4871-BC91-8A121E34F760}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{29210F0B-606E-49C8-8A42-8394F6DA4C6E}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{2A2A5749-8ACC-4435-AF04-9AD63D13F8D8}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{2AECA18A-8433-4310-AD70-23A405EB3AA1}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{2B9DA488-EB1E-432E-BF96-8E89CFBC18A8}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{2D55813C-63F3-4B50-8D45-F4D6176A3181}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{2D7C5430-F6A9-4079-9702-6B05A44F7A3B}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{2E2E07CB-C376-4907-892C-AB8787368498}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{2EF58DCA-D95F-4AE8-97A5-33CC5928F41C}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{3050666B-AA5D-43A6-ACF3-14036445AD02}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{30EEF5DB-D908-497B-82A0-898D2E84E143}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{31FAF595-A9FF-4FDE-B5F7-74BFFD8B485B}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{3254FE79-DED4-44F0-BB29-F94A54279F19}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{327CE7E8-88A7-4271-8045-30F7081D38DB}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{343FDD45-6B48-4CD5-AD1B-0E387B2672CD}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{35916D5B-5C0C-4E5B-8C74-9544100F702F}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{35AF3BFA-AE88-4158-A119-A01569335079}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{35C1FC26-9B81-45E7-9BCB-DA52B901834F}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{35CED64E-A71D-43B5-8322-E7B6E06004D8}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{36A210C0-313B-43B7-A7AE-C4CE5D9DBCD9}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{379CB63B-840F-4F21-B79A-61F844D68069}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{395DC74B-F3E8-4C88-B793-117F0D94B05B}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{39CB210E-B11B-4855-84AB-561526E5155D}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{3A42CAD5-4D4E-4A91-90E8-E457C23849E3}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{3ACD3AD9-FF52-4D42-ABD5-B9169B2EB880}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{3AF2AE7A-4120-483B-9BF3-9521512B4B2E}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{3C948DBE-F9CA-49FA-A4ED-B4A2486F3588}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{3D719A5E-C302-4E6B-AE8E-6B8AA0835F77}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{3DA80AEE-AC5E-4690-BDB3-25030FD61DFD}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{3E03C3CE-63C1-4FE8-A904-9345953ED0FB}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{3E6B85BA-CA5C-480F-B4DF-A5A838F88661}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{3FD63AB5-08AF-4257-B97E-E555C8307F6F}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{405FDD2C-AF6C-4DC6-B387-20659E9F376B}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{407B405B-C051-4EAE-8329-8447D0C4FA38}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{40A45C64-26D0-4907-87D6-83D4C947631A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{4142E2AF-E15E-427A-9F22-D5B3B72D4D2B}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{42B5E106-A2CA-4699-84C7-DBFB0C5FBAD7}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{432A2987-8CDB-4E44-A95C-7575B4AF8B5C}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{434CC9E2-1787-4621-9681-1958DD068C18}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{43BCB072-897B-401E-A143-51D5E71C8BA3}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{43D1A384-66DC-4B33-B150-8A5E57234E56}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{448155E5-85A6-41B0-B11B-C4C98486BD8B}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{44B53AB3-6E90-4621-B289-01CF87CB1BE9}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{44C1D20B-CC8D-4AE0-AE0F-20F6B1128BF9}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{4607157B-4C89-4860-AF27-2DC9633452BE}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{46E707C9-43FD-4AD9-920F-0421740B3E09}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{47337F66-A536-4923-ABC1-21ECBFBF78F9}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{481BDE43-DB30-4794-A8FD-14E7BDA9497C}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{492408C8-D27C-4D1C-AE3A-3AEDAE84F2D6}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{4A032F5A-F115-43BF-B763-F154D99AF36A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{4B2D1F82-ED87-42E2-95CC-A1E568094902}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{4B34C895-3382-4405-9CDA-4CBE5EBDC253}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{4D75AEF6-7CFA-4131-9859-2EB3508C725A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{4DAED4BF-DFED-4844-9E68-0AD3DE044F44}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{4E265684-6A32-4110-B81B-9101B5315A95}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{4E7F88B0-0276-45D6-B229-26567F46A864}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{4F86FEE8-1720-46FC-9553-482793F50EA4}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{5020EE94-282C-456B-8635-A0879458E4D5}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{505FFD40-2A35-4ED0-BBC9-268141FFE67D}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{506399B4-4B2A-4C72-AF11-C6AC694FBE4A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{527546A2-BA8A-466F-98CC-FF62BDF6C94B}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{5429A9EA-4419-4987-9F8B-124BABE577E9}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{5496C571-784F-403A-8134-57CF510F9C9B}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{54FB5331-C90A-47CE-A967-D47DD662BF27}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{568D91FC-74D0-4E65-BCF2-5DC69C9BF80A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{56A80A57-A992-4DD1-8CDD-3400800E30B7}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{57848D53-84C1-46D5-A31A-EB40C39B2F8A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{58CE1B41-95B5-4303-B645-8C12FE4418FB}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{5A400077-75F6-4708-BAF3-6AB17237E35B}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{5A71FF00-B65A-45D5-A3D5-366BB567956E}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{5B9DE2CB-7C9C-492B-8B80-5A9FFF26491F}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{5B9F97B2-3D64-470B-9AA8-E7AF6DB674A8}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{5BB5C05E-95AE-4DB0-8957-85111602E411}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{5BDA70B6-919D-4F9F-AF53-9B4019948285}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{5F28DABB-094C-458C-8E1D-F56571891CC5}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{5F3880F0-561A-4F5B-98B5-816DEE1023DD}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{5FC26AD4-66FC-48E9-B645-FEF89587918A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{5FD9C082-A237-4F4C-8B58-BFA460F90BEE}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{616D5E4C-02B1-4897-A609-C4963E632FC9}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{63548A23-2AE3-47FD-9E9D-7FC56E145CAC}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{64BF3C6A-1FA7-493F-A12B-B0E708D28A7A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{667A375A-FC81-4F37-8A98-303A72A4D020}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{66BEC5BF-BCD2-4BC8-89F8-3E874CEE8E65}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{677DC835-9D15-4D4A-88F3-653113F30AA5}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{67A1DBDA-F524-4AA2-B17E-0C761F8D4433}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{67EDA4D6-33BB-46EF-9FE5-E06A8FE11036}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{6884E842-D2E2-42E7-8FAC-04A749B491E6}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{6A09A75F-7CE6-491E-A7AB-80A45B63829A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{6B82E5A8-C634-461F-BA47-325E8AD95A3A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{6C61929D-3586-4C54-A66C-8CDEEE66FAA9}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{6C9C8602-88D2-47DE-9354-3E243881128B}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{6D6130BF-DCE6-4E2B-9724-94DEB458D932}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{6EED57BD-5683-40B3-9CA6-731DBFF9E386}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{71992482-0231-4BE7-8EE9-1734F164FD3F}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{71B41FEE-A64A-4F52-9F9C-90D60F84591F}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{724C1100-BBD0-49A9-AA64-4A34FDD7AE97}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{73913E4A-3E5C-4B33-B95C-56AB577FFBC4}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{741869EC-364C-4C51-8BBF-4F8D2A61CEA5}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{74A4E023-D3D1-4B9F-858E-424172BA4D8E}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{762EC7AF-7F9D-49AE-AD4E-CA2C9FDE28B7}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{766E56B1-F700-44BA-B037-09964CAE351A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{768204C9-1555-4417-9680-287DA84F68C3}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{76A80B0E-9F40-402D-8958-3CE319BEA3DD}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{789A21B9-91FA-4501-AF0D-9B4646117796}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{7941AAEF-F5E1-4754-BAC0-2AB2E9436F6B}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{7A04E052-5982-48E0-A39D-8CB1C609722A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{7B2DF4B2-50EC-4D06-819C-3EE7FA4CC4D5}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{7B2F855F-8804-427E-9DD6-8C84932AFF94}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{7B704564-B6D6-49C1-A17B-34BB4789DABA}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{7C21470D-D0A4-4D44-ACEB-8F03EDE31BD6}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{7C22C44B-DB2F-44D6-B061-D67972B78A89}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{7C259FE2-FF1B-48BE-BB0B-C4905CE89F50}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{7C673D7A-38BB-4CCA-899F-37906A61DAB4}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{7D0DB5CC-5797-447A-B5FE-2A1FF86B617C}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{7D372264-9DCD-45E2-ADB2-14BF8249BBC4}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{7DD59366-4526-4369-8D51-4A6BDF9F7749}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{80A2142D-B9DE-4F97-A894-A21CC098E632}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{80B430FF-8D23-411D-9BBE-AF36A5597E6E}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{80FE5C21-F8CD-4278-BA67-6DEB7D6A0F81}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{8192B6F7-F149-4B1A-9E67-A7D280CC2A6B}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{827480D5-2DEB-49E6-BAA2-2B7327C071DC}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{82ED8795-1130-41F0-96F9-1D91274BDAE4}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{833D0DBA-534C-4CFF-82A5-357438898062}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{8387B257-1EC3-45A5-9F12-865905E3F7CC}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{840637F3-49DF-4E08-A88F-2D813DFCDBE2}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{86146EC9-036C-4173-A566-D17BA5B7A25A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{862087E6-EE3F-40E9-81CD-8A7E047B369D}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{86AD4849-8648-4F62-9DA6-DF7BADF02E4D}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{888E3487-72ED-4E70-AF22-568A8F49B016}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{88E7F7F9-A12A-4B7B-A3E6-54D7793CD08A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{89819757-228D-4972-B7B9-094CB6EB6C42}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{89EE2A72-C801-4483-BE75-2B926BB32E44}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{8A63017E-AC0C-4247-B5E2-14570BB20981}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{8B35298C-3464-4B4B-B0A0-8E402ABA7E6B}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{8B60D8C6-A8A4-41B4-ACE7-DE24BD717B48}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{8BA3EDDD-6325-4292-B404-FB618C2FF9F2}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{8CAC25B0-C337-415E-883A-3D21A5ECCD4F}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{8DF81089-79BA-4397-BD62-89141D72FC38}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{8EC12D38-00A5-49ED-8DA9-9E77BED7402F}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{8F0D8066-70E5-4CBD-B02E-050EBC043704}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{8F5C1A2F-8B0C-484D-A96A-A92BC90B68AF}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{8FE8DED6-AB1F-4627-8092-1366681FA2FD}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{912EFC06-40BE-41FD-B093-F76C55FECBB5}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{91ABC4D2-5693-4EDA-BC8E-51E390BCDD5C}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{94014843-B5D8-44CE-BE0B-1E5AD39E162D}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{947914EF-3294-4171-99EF-1228292E3842}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{95ABDD9C-F854-44E6-8DAB-27932819417A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{95D6E38A-6C1B-4B95-B42C-4A870987E4BE}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{96E13B35-C3F8-4AA7-A3DE-DD4FA1ECB258}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{9755C534-744C-4062-81CA-46DF6B849ACE}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{9811D3C5-A238-402D-891C-662975131584}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{984BB158-50ED-4C95-A7A9-102E665360E7}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{98CB4013-B217-43F2-A7DB-CFE14101FB15}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{9914660B-BF92-48A2-9031-CC897DCE0B9A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{99E2840B-BC08-456D-ADEE-6B2654BEE444}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{99EDD1FA-1499-49B6-9E94-D55FEF4C0475}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{9A5DACEF-0F9B-4822-BD7C-29CAAB5A1BE7}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{9BEF2C05-FF37-450C-836B-E152FDD38ECE}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{9D636546-0D1D-4FA5-92C7-D5509A6BBA22}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{9E1350F7-7FB0-4F62-AE0E-910FAD9BB804}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{9EFED2AF-1281-44DE-BB76-841860BCFF07}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{9F08D71F-F33E-4A11-B162-42BA4214C5C3}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{9F909410-3F04-430F-9415-312B0952090C}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{A0619CAC-9B14-4E05-A7A4-CF3F1A00991A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{A1546352-F98C-494E-9A3B-740FAB6DCDD9}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{A1EDAC14-1C01-49B0-BCB2-0758548E3BF3}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{A1F1DE81-1283-4D36-80C2-3831205DACFF}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{A2055232-2F1B-409A-85FF-96AF0B4334B1}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{A289BB3B-F8B3-42E0-87DD-D66E8FCBC890}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{A3C43E5B-C90C-4FAF-A6A9-AC8A5D54F872}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{A42BDA74-3258-43B5-8458-8A6321E194B9}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{A462156A-EE21-4046-9A9E-F9DF66751AE0}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{A47BCC42-5478-4CCD-BA63-482888E518EB}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{A4DC7E0A-908E-4DF4-A625-29669D102500}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{A4F4CEC2-C644-4702-9421-B805B3F21A93}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{A64A3E9A-943E-4A8E-85F3-F7B0A4835C9D}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{A828E875-2E4C-4ACE-870B-9300F524E093}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{A859447C-7428-4115-B8E8-D22518EEAAFE}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{A9068B63-2AB1-406A-AD6D-E02E103F402D}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{A99DEE59-33D8-4223-A5F0-B32AABBA6115}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{AAA61A8B-99F9-446B-8F70-658AE3EDA35C}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{AAAE2FFD-2E8B-48FF-BB72-5946DCBC2740}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{AE0A872E-C89B-4076-BCB6-81108F52000D}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{AE853CDB-5B59-4C1F-90CD-AC84D2A0F423}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{AEC3928B-FC0B-44E9-9D79-A5E93AF8FAAE}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{AED35318-0A1B-4BE3-B574-AE77644280B0}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{AFCC5613-CD5B-4424-8E2F-426FD9B25CBF}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{B0CE32EE-9B98-444F-832A-3FBBFA7F0283}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{B14DBFEA-B1F1-42C7-8864-D54268FE3CF0}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{B2ABBD34-00B4-4E1E-80C6-048E13259366}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{B3418A13-4913-43FB-826B-881AC08BC434}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{B400152D-8B76-4CD5-B243-5F1374A82C55}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{B4CCC106-0D1D-4F10-9393-01C7A2275C89}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{B5E6F2E9-7AD9-4D8E-B8E5-224BEC8FF039}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{B64101EA-7BDB-4F12-BAEB-97CEE06617CA}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{B6A184EC-DC6A-4DDE-802B-64875C867A6D}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{B7D56E60-FDB3-41E1-80E2-8D1770B43221}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{B81D7BB4-07D2-4347-85CD-CFC224AF0202}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{B8E88743-24C7-4274-813B-CC8E08A37C9C}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{B94D62DE-DB42-409D-B864-A5E5B0DC6383}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{B9978D4C-437B-4106-89CC-5EB2E6E80D02}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{BA41F235-07B7-4F38-BAC4-7E07CD6439DC}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{BA920830-1627-48A0-8DB5-EFBDE3F27EAB}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{BC91A1F9-C8DD-4CD2-9A2E-2B48814F4A7D}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{BDF9F4DE-9A71-4008-966F-1C49112CD780}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{BE51EB92-E4D5-48CF-B121-3254992D9AA1}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{BF238320-BC28-4F2A-A05C-9F6F5DDCE8F9}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{C07C5C0E-EA5A-4A3B-94DD-535B068E6B92}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{C1735CA6-0180-42DC-80EB-715C64DFA056}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{C2081A5C-8657-4667-804F-6B50B119E8A5}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{C244AC8A-3709-4B33-B9C9-EB6F868C02AD}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{C296564A-D88A-4127-9B3F-7E1502423BE8}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{C2B3DA27-DADB-41A0-9A86-94535B6F4DF1}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{C33965D1-FEC9-4212-B909-E10D2D48F18A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{C3912A07-B331-468F-B7A5-740161348BB6}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{C579AAC7-2E5E-4BFD-BF12-D519D8FB466A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{C5CC1D46-E1C5-44F2-B78E-BDE497075639}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{C6808077-13FE-4B17-9808-5807BB36BC76}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{C6EAF5CA-0711-4A25-8EC6-B40CF12B93E3}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{C810C024-2626-4320-BE1B-63A722CDF07A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{C8941A68-92B4-4974-96A4-0916C877F5DB}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{C9C77A8A-4931-415C-8993-97FAE7CCA93A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{CAF7B236-ADEC-44FE-8E81-B7692923797A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{CC91C75F-EAC9-414C-AE7A-25D67C82B598}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{CE1FB89F-504E-4D63-B02A-2EE939373F2B}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{CEFB50AD-391F-487D-B29A-C926EC2207A5}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{CEFE8176-B3E2-4B17-8629-D42CCCDA819A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{CFB2C0EA-B4BB-437F-9C7A-3D128DE86C4B}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{D108A90C-03BE-4B08-B960-18659B58E1D1}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{D1263D2A-343F-41BA-8825-B242A0399105}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{D1692599-AD9B-4A13-ABA1-391F1538E4C9}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{D16AAD9D-88C7-46AA-BF71-CBEF418E261E}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{D2507EBE-B740-4799-B1C0-6D7B9E5B238A}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{D35CDD30-E68A-43C3-88DA-19C415D000FA}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{D3D4A316-9507-4BEE-8588-4284E8F35C83}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{D4A02DF2-CBAC-4E73-BD52-6B57EDDFE3A7}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{D4A20A78-0586-4630-BB2E-6F508DCEB280}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{D561D6D2-2FF6-4F6F-9BE7-CFE955E07989}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{D587431F-F4D9-4344-9DF5-64E4AC630031}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{D6BEC743-75F6-4D7A-BDB0-C76F9FECFC32}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{D755FDCF-BD1A-4928-A934-28011743C647}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{D76AB3E4-9BF4-43D7-87AD-3F071BECEF0E}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{D957B882-81AC-428D-B5C8-C54DD5EAAB0F}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{DABA4FAD-7669-4F7D-A8D6-04CD81A61347}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{DAE8E446-BCDA-4649-B0B2-00FC873B2D73}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{DB641869-1BE6-4E58-B94A-1BDE66AE0780}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{DC48E8C2-EFDA-4B5E-ABF6-6115C2F754F3}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{DC5B0932-2C85-4782-A611-FEEB1CCFB1CA}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{DE2A6E0E-D40D-46F0-9FC1-DF1659F22714}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{DE4D9B13-2EDB-4A90-9310-BF279AA59CFE}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{DEE0F4A9-AD2D-4FC1-8525-B66D138A88EA}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{DF880003-4872-4991-82A8-16CB58909E4E}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{DFD90B7E-F03E-4663-9767-D139A35368C6}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{DFDF02CE-1B85-4F0F-A2D3-FA97F5092A53}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{E0411300-E9A0-426A-ACD0-8BCD5BCCCB69}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{E054DB7B-C6F0-4595-B08B-9CE23ABB0A96}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{E0C7F238-E963-43D0-A5D5-F0C6DC7D53B0}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{E12EC563-588E-4904-A319-06D6D23A76B3}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{E1F7DD94-1335-48E6-B6CD-97CFB2502A68}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{E337FA02-963D-4D0E-9DD9-35B3A96744C1}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{E395546E-3A40-45B3-B6C3-38B07DBA70AC}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{E39591AD-681C-484C-86A9-7C23507367A5}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{E3D010DF-E0AB-454D-9722-59A91D5B0E5F}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{E452EFEE-8229-42B8-A86D-2BA165B3A994}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{E49B9003-CDFA-4C72-A3B0-3C3AFA70989C}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{E52C930C-CC7A-4035-BCF0-770A2D971DAC}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{E646D010-3444-4477-B4E4-8A4818931971}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{E84CAD4E-416D-4DFA-AD46-B568CA639CDD}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{E89C3ADA-709A-4BDB-AC9D-E0D439321B14}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{E8E9BC7C-D9D1-4523-B90B-30636AD5D9CD}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{E9C58349-8850-4130-8C9F-F51FE94E4D24}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{EB1415A4-A88F-46F0-85FD-08A15CCD07B5}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{EB343ADB-1470-456D-879D-123336994FE3}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{EB4411CD-80C8-4F96-A4D5-0CE4801512A5}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{EC1D18D3-D931-4A92-833A-D1478D172835}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{ED02176C-BA0F-41D0-A0CE-2B544BA6CA6F}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{EDECC0C7-0107-4C69-B174-3A382194A229}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{EE14BB75-F79E-4749-B317-FBCC1060DDA1}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{EF397636-6C6F-4F49-B4F5-67FEE0947F49}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{F06D3AB7-BB38-4706-BD90-753B64BB7143}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{F07CB297-3CED-41EB-87A9-15A98134C7FE}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{F0EEE410-F4E2-4D63-B81A-4DE0B6CE3240}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{F43F5C64-EE1A-4D94-8BF7-4A3C4122DBAA}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{F4491037-49C2-4C97-AEC9-4D3EEBDDFCAE}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{F4ABB2C2-667F-493E-A3EF-587877B79B00}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{F57902AA-6F53-4808-89EB-B6ED3C0C7C01}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{F59C8439-1AC2-426D-9808-CA6559BE5E20}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{F6673AEB-11BC-4B0B-A356-87DF566E3340}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{F72E7C08-F410-4727-8E92-61F6C3CBE708}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{F753A821-D5A6-4E61-AF84-88DB1D80439C}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{F79240AA-7C83-45E5-9578-CFCCECB82041}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{F8AF2C89-6EC0-4F91-B5DF-7CADE8E0A116}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{FA24054A-08F8-4728-ACC5-117546E389ED}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{FAFD4AED-20DD-4017-B27A-185F09B6C648}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{FB43E273-0A10-454A-B4DB-73FA803F0F51}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{FB5D03D1-3FCC-4EB7-8613-FE3982D1D418}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{FB697FBB-D4B9-4570-9766-4734EC3B6069}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{FD067B3D-CC93-4CF4-878E-16CD587F0E41}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{FDC701E1-4B02-4743-9DDC-37BD620F2B72}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{FE11B1F5-B4A9-497B-8754-62E0C2A735A9}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{FE31402E-1A82-4D91-BB7C-76C7821453F7}
Successfully deleted: [Empty Folder] C:\Users\Owner\appdata\local\{FEF32179-C790-40B8-8739-A78DC4DFD39F}



~~~ FireFox

Emptied folder: C:\Users\Owner\AppData\Roaming\mozilla\firefox\profiles\qquctg5w.default-1399488636380\minidumps [62 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Mon 04/06/2015 at 13:23:52.87
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 


  • 0

#13
njnauticalnut17

njnauticalnut17

    Member

  • Topic Starter
  • Member
  • PipPip
  • 66 posts

I downloaded Adware and performed the scan. 

 

Here is the Adware log:

# AdwCleaner v4.200 - Logfile created 06/04/2015 at 13:41:50
# Updated 29/03/2015 by Xplode
# Database : 2015-03-29.1 [Server]
# Operating system : Windows 7 Professional Service Pack 1 (x64)
# Username : Owner - OWNER-PC
# Running from : C:\Users\Owner\Desktop\adwcleaner_4.200.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\WeatherBug®.lnk
File Found : C:\Users\Owner\Desktop\Free Music Downloads.lnk
File Found : C:\Users\Owner\Desktop\WeatherBug®.lnk
Folder Found : C:\Program Files\Earth Networks
Folder Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Coupons
Folder Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WeatherBug®
Folder Found : C:\ProgramData\Yahoo! Companion
Folder Found : C:\Users\Owner\AppData\LocalLow\HPAppData

***** [ Scheduled tasks ] *****

Task Found : Driver Support-RTMRules
Task Found : Driver Support-RTMScan
Task Found : Driver Support-RTMUpdater

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\Define Ext
Key Found : HKCU\Software\DriverSupport
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}
Key Found : HKCU\Software\UpdaterEX
Key Found : [x64] HKCU\Software\Define Ext
Key Found : [x64] HKCU\Software\DriverSupport
Key Found : [x64] HKCU\Software\UpdaterEX
Key Found : HKLM\SOFTWARE\Classes\CLSID\{81017EA9-9AA8-4A6A-9734-7AF40E7D593F}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}
Key Found : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Found : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Found : HKLM\SOFTWARE\Define Ext
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{597FB4A5-DD86-4316-A410-7E8074CC2CCE}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Coupon Printer for Windows5.0.0.4
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Companion
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Toolbar
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\464AA55239C100F32AF2D438EDDC0F47
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5652BA3D5FB98AE31B337BF0AF939856
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EB95E1AFCBABE3DB9ECCC669B99494
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17689

Setting Found : HKCU\Software\Microsoft\Internet Explorer\Search [Search Page] - hxxp://search.autocompletepro.com/?si=10214&bi=400
Setting Found : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [(Default)] - hxxp://search.autocompletepro.com/?si=10214&bi=400&q=%s

-\\ Mozilla Firefox v37.0.1 (x86 en-US)


-\\ Google Chrome v


*************************

AdwCleaner[R0].txt - [9956 bytes] - [03/09/2013 10:22:32]
AdwCleaner[R1].txt - [3587 bytes] - [17/09/2013 21:02:19]
AdwCleaner[R2].txt - [1030 bytes] - [18/09/2013 12:38:58]
AdwCleaner[R3].txt - [4257 bytes] - [09/06/2014 14:08:26]
AdwCleaner[R4].txt - [6640 bytes] - [06/04/2015 13:41:50]
AdwCleaner[S0].txt - [9629 bytes] - [03/09/2013 10:32:00]
AdwCleaner[S1].txt - [3720 bytes] - [17/09/2013 21:06:19]
AdwCleaner[S2].txt - [1092 bytes] - [18/09/2013 12:39:59]
AdwCleaner[S3].txt - [4297 bytes] - [09/06/2014 14:10:46]

########## EOF - C:\AdwCleaner\AdwCleaner[R4].txt - [6935 bytes] ##########
 


  • 0

#14
njnauticalnut17

njnauticalnut17

    Member

  • Topic Starter
  • Member
  • PipPip
  • 66 posts

The computer is running faster but it still takes a really long time to boot. 

 

Again thanks for your help.


  • 0

#15
DanoNH

DanoNH

    Trusted Helper

  • Malware Removal
  • 2,155 posts

Excellent, I thought I may have lost you there.  About the taxes, that reminds me... :)

 

So how did you get JRT to run (for feedback purposes)?  Did you have to re-download it?


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP