Hi there i received such great help in another area of the forums i thought id give this a try over here. I've received some help from another site in the past that had me downloading quite a few programs over the years and id basically like to know what is necessary and what i could live without pretty much also would love to get a clean bill of health on my PC if possible. Thanks so much for the Help!
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 07-06-2015
Ran by Joseph (administrator) on JOSEPH-PC on 07-06-2015 15:02:16
Running from C:\Users\Joseph\Downloads
Loaded Profiles: Joseph & UpdatusUser (Available Profiles: Joseph & UpdatusUser)
Platform: Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: English (United States)
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(IObit) C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(Lavasoft) C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(IObit) C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe
(IObit) C:\Program Files\IObit\Smart Defrag 4\SmartDefrag.exe
(IObit) C:\Program Files\IObit\Advanced SystemCare 8\Monitor.exe
() C:\Program Files\AVG SafeGuard toolbar\vprot.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-Agent.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(IObit) C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe
(NETGEAR) C:\Program Files\NETGEAR\WN111v2\WN111v2.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(IObit) C:\Program Files\IObit\IObit Malware Fighter\IMF.exe
() C:\Windows\Runservice.exe
(Motive Communications, Inc.) C:\Program Files\Common Files\Motive\McciCMService.exe
() C:\Program Files\Motorola\MotoConnectService\MotoConnectService.exe
(Microsoft Corporation) C:\Program Files\Microsoft LifeCam\MSCamS32.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgnsx.exe.old
(Motorola) C:\Program Files\Motorola\MotoConnectService\MotoConnect.exe
(AVG Secure Search) C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.5.0\ToolbarUpdater.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
() C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.5.0\loggingserver.exe
(IObit) C:\Program Files\IObit\IObit Uninstaller\UninstallMonitor.exe
(Xobni Corporation) C:\Program Files\Xobni\XobniService.exe
(Yahoo! Inc.) C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
(Microsoft Corporation) C:\Windows\System32\mobsync.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-Service.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-LogRotatorService.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-UpdaterService.exe
(IObit) C:\Program Files\IObit\IObit Malware Fighter\IMFTips.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(BlueStack Systems) C:\Program Files\BlueStacks\HD-Network.exe
(BlueStack Systems) C:\Program Files\BlueStacks\HD-BlockDevice.exe
(BlueStack Systems) C:\Program Files\BlueStacks\HD-SharedFolder.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgrsx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\calc.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-RunApp.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [avast] => C:\Program Files\AVAST Software\Avast\avastUI.exe [4767304 2013-03-06] (AVAST Software)
HKLM\...\Run: [vProt] => C:\Program Files\AVG SafeGuard toolbar\vprot.exe [2510784 2015-05-14] ()
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM\...\Run: [IObit Malware Fighter] => C:\Program Files\IObit\IObit Malware Fighter\IMF.exe [5768992 2015-03-06] (IObit)
HKLM\...\Run: [BlueStacks Agent] => C:\Program Files\BlueStacks\HD-Agent.exe [884440 2015-05-07] (BlueStack Systems, Inc.)
HKLM\...\Run: [ATT-SST_UninstallTracking] => C:\Users\Joseph\AppData\Local\Temp\InstallHelper.exe [544768 2008-09-19] (Motive Communications, Inc.) <===== ATTENTION
HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\AVG2014\avgui.exe [4971024 2014-03-19] (AVG Technologies CZ, s.r.o.)
HKLM\...D6A79037F57F\InprocServer32: [Default-fastprox] fastprox.dll ATTENTION! ====> ZeroAccess?
HKU\S-1-5-21-2013592473-1583479073-1329353095-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKU\S-1-5-21-2013592473-1583479073-1329353095-1000\...\Run: [Advanced SystemCare 8] => C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe [2429728 2015-04-08] (IObit)
HKU\S-1-5-21-2013592473-1583479073-1329353095-1000\...409d6c4515e9\InprocServer32: [Default-shell32] shell32.dll ATTENTION! ====> ZeroAccess?
HKU\S-1-5-18\...\Run: [SearchProtect] => \SearchProtect\bin\cltmng.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NETGEAR WN111v2 Smart Wizard.lnk [2012-04-08]
ShortcutTarget: NETGEAR WN111v2 Smart Wizard.lnk -> C:\Program Files\NETGEAR\WN111v2\WN111v2.exe (NETGEAR)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2013-03-06] (AVAST Software)
ShellIconOverlayIdentifiers: [0MediaIconsOerlay] -> {1EC23CFF-4C58-458f-924C-8519AEF61B32} => No File
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-2013592473-1583479073-1329353095-1000\Software\Microsoft\Internet Explorer\Main,Start Page =
https://mysearch.avg...fr&d=2013-08-2621:04:23&v=18.5.0.909&pid=safeguard&sg=0&sap=hp
SearchScopes: HKLM -> DefaultScope {23F88292-FB5A-4907-9DCB-119FE1A39D3B} URL =
SearchScopes: HKU\S-1-5-21-2013592473-1583479073-1329353095-1000 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL =
http://mysearch.avg....fr&d=2013-08-2621:04:23&v=15.6.1.2&pid=safeguard&sg=0&sap=dsp&q={searchTerms}
BHO: No Name -> {02478D38-C3F9-4efb-9B51-7695ECA05670} -> No File
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll [2015-06-04] (IObit)
BHO: AccelerateTab -> {48A789BF-F6D6-4930-9C8B-77855A63EDE1} -> C:\Program Files\Secure Speed Dial\IE\SpeedDial.dll [2014-05-26] (Secure Speed Dial)
BHO: No Name -> {4E7BD74F-2B8D-469E-94BE-FD60BB9AAE29} -> No File
BHO: Search Helper -> {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} -> C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-05-14] (Microsoft Corporation)
BHO: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre6\bin\ssv.dll [2011-11-10] (Sun Microsystems, Inc.)
BHO: avast! WebRep -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-03-06] (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO: AVG SafeGuard toolbar -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files\AVG SafeGuard toolbar\18.5.0.909\AVG SafeGuard toolbar_toolbar.dll [2015-05-14] (AVG Secure Search)
BHO: Advanced SystemCare Surfing Protection -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> C:\Program Files\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll [2015-04-01] (IObit)
BHO: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-11-10] (Sun Microsystems, Inc.)
BHO: No Name -> {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} -> No File
BHO: Adblock -> {EF5F59BA-B2AB-48D8-9747-54DF806C73B8} -> C:\Program Files\Secure Speed Dial\IE\ADBlock\IE\Adblock.dll [2014-06-17] (Adblock)
BHO: No Name -> {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} -> No File
Toolbar: HKLM - avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-03-06] (AVAST Software)
Toolbar: HKLM - AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG SafeGuard toolbar\18.5.0.909\AVG SafeGuard toolbar_toolbar.dll [2015-05-14] (AVG Secure Search)
Toolbar: HKU\S-1-5-21-2013592473-1583479073-1329353095-1000 -> No Name - {A057A204-BACC-4D26-9990-79A187E2698E} - No File
Toolbar: HKU\S-1-5-21-2013592473-1583479073-1329353095-1000 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File
Handler: javascript - No CLSID Value -
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2011-11-03] (Skype Technologies)
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\18.5.0\ViProtocol.dll [2015-05-14] (AVG Secure Search)
ShellExecuteHooks: - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - No File [ ]
Winsock: Catalog5 01 C:\Windows\system32\mswsock.dll [223232 2009-08-07] (Microsoft Corporation) ATTENTION: LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [152864 2011-04-06] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76
FireFox:
========
FF ProfilePath: C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default
FF NewTab: hxxp://www2.delta-search.com/?babsrc=NT_ss&mntrId=4E0C0019D1E594AB&tsp=5004
FF DefaultSearchEngine:
FF DefaultSearchUrl:
FF Homepage: hxxp://mysearch.avg.com/?cid={B07D9E15-0CCE-4409-BDE5-174C9E77CA75}&mid=db26c891e11a47d3b6bed15097017d58-e7cb49739f079b51e65b1a425a1abfc0094586e7&lang=en&ds=AVG&pr=fr&d=2013-08-26 21:04:23&v=18.0.5.292&pid=safeguard&sg=0&sap=hp
FF Keyword.URL: hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3291326&SearchSource=2&CUI=UN53133852618265168&UM=2&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-14] ()
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [2011-04-27] ()
FF Plugin: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\18.5.0\\npsitesafety.dll No File
FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll [2011-11-10] (Sun Microsystems, Inc.)
FF Plugin: @messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6 -> C:\Program Files\Yahoo!\Shared\npYState.dll [2009-05-26] (Yahoo! Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll [2013-09-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2009-07-10] (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @pandonetworks.com/PandoWebPlugin -> C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll [2012-10-26] (Pando Networks)
FF Plugin: @real.com/nppl3260;version=6.0.12.69 -> C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll [2008-09-10] (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.69 -> C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll [2008-09-10] (RealNetworks, Inc.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-17] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-17] (Google Inc.)
FF Plugin HKU\S-1-5-21-2013592473-1583479073-1329353095-1000: @talk.google.com/GoogleTalkPlugin -> C:\Users\Joseph\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2011-01-04] (Google)
FF Plugin HKU\S-1-5-21-2013592473-1583479073-1329353095-1000: @talk.google.com/O3DPlugin -> C:\Users\Joseph\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll [2011-01-04] ()
FF Plugin HKU\S-1-5-21-2013592473-1583479073-1329353095-1000: @tools.google.com/Google Update;version=8 -> C:\Users\Joseph\AppData\Local\Google\Update\1.2.183.39\npGoogleOneClick8.dll [2010-10-15] (Google Inc.)
FF Plugin HKU\S-1-5-21-2013592473-1583479073-1329353095-1000: @yahoo.com/BrowserPlus,version=2.7.1 -> C:\Users\Joseph\AppData\Local\Yahoo!\BrowserPlus\2.7.1\Plugins\npybrowserplus_2.7.1.dll [2010-04-19] (Yahoo! Inc.)
FF Plugin HKU\S-1-5-21-2013592473-1583479073-1329353095-1000: pandonetworks.com/PandoWebPlugin -> C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll [2012-10-26] (Pando Networks)
FF user.js: detected! => C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\user.js [2015-06-05]
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2011-11-10] (Sun Microsystems, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFFICE.DLL [2007-03-22] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppl3260.dll [2008-09-10] (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2013-09-20] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2013-09-20] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2013-09-20] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2013-09-20] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2013-09-20] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nprpjplug.dll [2008-09-10] (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\Joseph\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2011-01-04] (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\Joseph\AppData\Roaming\mozilla\plugins\npgtpo3dautoplugin.dll [2011-01-04] ()
FF SearchPlugin: C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\searchplugins\aim-search.xml [2009-06-29]
FF SearchPlugin: C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\searchplugins\aol-search.xml [2012-11-14]
FF SearchPlugin: C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\searchplugins\keybar-113-customized-web-search.xml [2013-09-29]
FF SearchPlugin: C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\searchplugins\live-search.xml [2009-02-01]
FF SearchPlugin: C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\searchplugins\safeguard-secure-search.xml [2013-08-26]
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\answers.xml [2011-03-06]
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\creativecommons.xml [2011-03-06]
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\safeguard-secure-search.xml [2015-05-14]
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\searchme.xml [2009-03-13]
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\safeguard-secure-search.xml [2015-05-14]
FF Extension: Delta Toolbar - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\
[email protected] [2013-09-13]
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\
[email protected] [2015-06-04]
FF Extension: AD Block - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\searchads@instair(302).net [2014-12-13]
FF Extension: AD Block - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\
[email protected] [2015-03-01]
FF Extension: AccelerateTab - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\speeddial@instair(303).net [2014-12-13]
FF Extension: AccelerateTab - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\
[email protected] [2015-03-01]
FF Extension: Platinum Hide IP - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\
[email protected] [2011-08-10]
FF Extension: KeyBar 1.13 - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\{02edb56b-9b33-435b-b7df-b2843273a694} [2013-08-11]
FF Extension: Microsoft .NET Framework Assistant - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2011-03-08]
FF Extension: Yahoo! Toolbar - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} [2013-08-18]
FF Extension: Yahoo! Toolbar - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}(127) [2009-09-09]
FF Extension: Vafmusic - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\{6c3bc03f-d7b9-43ac-8931-c242e3cae971} [2013-08-11]
FF Extension: WhiteSmoke New - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\{739df940-c5ee-4bab-9d7e-270894ae687a} [2013-08-18]
FF Extension: Address Bar Search - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\{badea1ae-72ed-4f6a-8c37-4db9a4ac7bc9} [2013-08-30]
FF Extension: FreeHDSport.TV - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\
[email protected] [2012-12-16]
FF Extension: GoPhotoIt - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\
[email protected] [2012-07-31]
FF Extension: HDvid Codec 3 - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\
[email protected] [2013-06-30]
FF Extension: Printing Helper - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\
[email protected] [2008-11-21]
FF Extension: Personas Plus - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\
[email protected] [2013-04-04]
FF Extension: Adblock Plus - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-04-26]
FF Extension: The Browser Highlighter - C:\Program Files\Mozilla Firefox\extensions\
[email protected] [2013-08-11]
FF Extension: InfoAtoms - C:\Program Files\Mozilla Firefox\extensions\
[email protected] [2013-08-11]
FF Extension: searchme - C:\Program Files\Mozilla Firefox\extensions\
[email protected] [2013-08-11]
FF HKLM\...\Firefox\Extensions: [
[email protected]] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! WebRep - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-04-26]
FF HKLM\...\Firefox\Extensions: [avg@toolbar] - C:\ProgramData\AVG SafeGuard toolbar\FireFoxExt\18.5.0.909
FF Extension: AVG SafeGuard toolbar - C:\ProgramData\AVG SafeGuard toolbar\FireFoxExt\18.5.0.909 [2015-05-14]
FF Extension: No Name - C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\fb63icx9.default\extensions\
[email protected] [not found]
FF Extension: No Name - C:\Program Files\IObit Apps Toolbar\FF [not found]
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\itms.js [2013-08-11]
FF ExtraCheck: C:\Program Files\mozilla firefox\InfoAtoms.cfg [2013-08-11] <==== ATTENTION
Chrome:
=======
CHR Profile: C:\Users\Joseph\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Bookmark Manager) - C:\Users\Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-04-22]
CHR Extension: (Ebay Shopping Assistant by Spigot) - C:\Users\Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbcennhacfaagdopikcegfcobcadeocj [2013-05-26]
CHR Extension: (InfoAtoms) - C:\Users\Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhbgpoakplhahbklhkcfbpicgjcaoglk [2013-04-27]
CHR Extension: (Domain Error Assistant) - C:\Users\Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj [2013-05-26]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-04]
CHR Extension: (Slick Savings) - C:\Users\Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk [2013-05-26]
CHR Extension: (AVG SafeGuard) - C:\Users\Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof [2013-04-30]
CHR Extension: (KeyBar 1.13) - C:\Users\Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\njljkdinboobkmkihgcohanchjnjpgjk [2013-07-13]
CHR Extension: (Google Wallet) - C:\Users\Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-05]
CHR Extension: (Amazon Shopping Assistant by Spigot) - C:\Users\Joseph\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfndaklgolladniicklehhancnlgocpp [2013-05-26]
CHR HKLM\...\Chrome\Extension: [dcmagccbogebndpoodhhhafmofelpffh] - No Path Or update_url value
CHR HKLM\...\Chrome\Extension: [hbcennhacfaagdopikcegfcobcadeocj] - C:\Program Files\Common Files\Spigot\GC\saebay_1.1.crx [2013-10-14]
CHR HKLM\...\Chrome\Extension: [hhbgpoakplhahbklhkcfbpicgjcaoglk] - C:\Program Files\InfoAtoms\Chrome\InfoAtoms.crx [2012-11-13]
CHR HKLM\...\Chrome\Extension: [icdlfehblmklkikfigmjhbmmpmkmpooj] - C:\Program Files\Common Files\Spigot\GC\ErrorAssistant_1.3.crx [2013-12-27]
CHR HKLM\...\Chrome\Extension: [kpionmjnkbpcdpcflammlgllecmejgjj] - No Path Or update_url value
CHR HKLM\...\Chrome\Extension: [mhkaekfpcppmmioggniknbnbdbcigpkk] - C:\Program Files\Common Files\Spigot\GC\coupons_2.4.crx [2013-04-26]
CHR HKLM\...\Chrome\Extension: [ndibdjnfmopecpmkdieinmbadjfpblof] - C:\ProgramData\AVG SafeGuard toolbar\ChromeExt\18.0.5.292\avg.crx [2014-03-21]
CHR HKLM\...\Chrome\Extension: [njljkdinboobkmkihgcohanchjnjpgjk] - C:\Users\Joseph\AppData\Local\CRE\njljkdinboobkmkihgcohanchjnjpgjk.crx [2013-07-11]
CHR HKLM\...\Chrome\Extension: [pfndaklgolladniicklehhancnlgocpp] - C:\Program Files\Common Files\Spigot\GC\saamazon_1.0.crx [2012-11-22]
CHR HKU\S-1-5-21-2013592473-1583479073-1329353095-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [njljkdinboobkmkihgcohanchjnjpgjk] - C:\Users\Joseph\AppData\Local\CRE\njljkdinboobkmkihgcohanchjnjpgjk.crx [2013-07-11]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aawservice; C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe [611664 2008-09-10] (Lavasoft)
R2 AdvancedSystemCareService8; C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe [814880 2015-04-03] (IObit)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [45248 2013-03-06] (AVAST Software)
S2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3782672 2014-02-23] (AVG Technologies CZ, s.r.o.)
S2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [348008 2013-09-24] (AVG Technologies CZ, s.r.o.)
R3 BstHdAndroidSvc; C:\Program Files\BlueStacks\HD-Service.exe [433880 2015-05-07] (BlueStack Systems, Inc.)
R3 BstHdLogRotatorSvc; C:\Program Files\BlueStacks\HD-LogRotatorService.exe [413400 2015-05-07] (BlueStack Systems, Inc.)
R3 BstHdUpdaterSvc; C:\Program Files\BlueStacks\HD-UpdaterService.exe [806616 2015-05-07] (BlueStack Systems, Inc.)
S3 IJPLMSVC; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [103808 2008-01-22] ()
R2 IMFservice; C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe [344864 2015-01-27] (IObit)
S3 jswpsapi; C:\Program Files\NETGEAR\WN111v2\jswpsapi.exe [942080 2008-02-29] (Atheros Communications, Inc.) [File not signed]
R2 LicCtrlService; C:\Windows\runservice.exe [2560 2009-02-13] () [File not signed]
S2 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2585376 2015-03-26] (IObit)
R2 McciCMService; C:\Program Files\Common Files\Motive\McciCMService.exe [303104 2008-09-19] (Motive Communications, Inc.) [File not signed]
R2 MotoConnect Service; C:\Program Files\Motorola\MotoConnectService\MotoConnectService.exe [91456 2010-04-29] ()
S2 SecureUpdateSvc; C:\Program Files\Secure Speed Dial\IE\SecureUpdate.exe [2580304 2014-05-28] () <==== ATTENTION
R2 vToolbarUpdater18.5.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.5.0\ToolbarUpdater.exe [1812416 2015-05-14] (AVG Secure Search)
R2 XobniService; C:\Program Files\Xobni\XobniService.exe [44776 2009-07-14] (Xobni Corporation)
S2 HPSLPSVC; C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL [X]
S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [X]
S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [X]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswFsBlk; C:\Windows\system32\Drivers\aswFsBlk.sys [29816 2013-03-06] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [66336 2013-03-06] (AVAST Software)
R1 AswRdr; C:\Windows\system32\Drivers\AswRdr.sys [49760 2013-03-06] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49248 2013-03-06] ()
R1 aswSnx; C:\Windows\system32\Drivers\aswSnx.sys [765736 2013-03-06] (AVAST Software)
R1 aswSP; C:\Windows\system32\Drivers\aswSP.sys [368176 2013-03-06] (AVAST Software)
R1 aswTdi; C:\Windows\system32\Drivers\aswTdi.sys [62376 2013-03-06] (AVAST Software)
S3 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [164736 2013-03-06] ()
U1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [120600 2013-11-25] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [210712 2013-11-25] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [149272 2013-11-25] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [22808 2014-01-19] (AVG Technologies CZ, s.r.o.)
R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [176952 2013-11-01] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [222520 2013-10-31] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [102712 2013-10-01] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [27448 2013-09-10] (AVG Technologies CZ, s.r.o.)
R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [193848 2013-08-01] (AVG Technologies CZ, s.r.o.)
S3 BCMH43XX; C:\Windows\System32\DRIVERS\bcmwlhigh6.sys [699896 2009-11-06] (Broadcom Corporation)
R2 BstHdDrv; C:\Program Files\BlueStacks\HD-Hypervisor-x86.sys [131288 2015-05-07] (BlueStack Systems)
S3 DNIMp50; C:\Windows\System32\Drivers\DNIMp50.sys [21504 2006-11-16] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 DNISp50; C:\Windows\System32\Drivers\DNISp50.sys [20480 2006-11-16] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
R3 FileMonitor; C:\Program Files\IObit\IObit Malware Fighter\Drivers\wlh_x86\FileMonitor.sys [21480 2014-11-10] (IObit)
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO32.SYS [23840 2015-06-04] (REALiX)
S3 MREMP50; C:\Program Files\Common Files\Motive\MREMP50.sys [21248 2008-07-28] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 MRESP50; C:\Program Files\Common Files\Motive\MRESP50.sys [20096 2008-07-28] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 PCTINDIS5; C:\Windows\system32\PCTINDIS5.SYS [32160 2007-10-01] (PCTEL Inc.)
S3 PID_PEPI; C:\Windows\System32\DRIVERS\LV302V32.SYS [2687512 2009-04-30] (Logitech Inc.)
R3 RegFilter; C:\Program Files\IObit\IObit Malware Fighter\drivers\wlh_x86\regfilter.sys [32288 2014-11-10] (IObit.com)
R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [18624 2014-06-04] (IObit)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [722416 2013-05-07] () [File not signed]
S3 UrlFilter; C:\Program Files\IObit\IObit Malware Fighter\drivers\wlh_x86\UrlFilter.sys [20944 2014-11-10] (IObit.com)
S3 VX1000; C:\Windows\System32\DRIVERS\VX1000.sys [1963680 2006-12-05] (Microsoft Corporation)
S3 WN111v2; C:\Windows\System32\DRIVERS\WN111v2v.sys [453120 2009-01-13] (Atheros Communications, Inc.)
S2 adfs; No ImagePath
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X]
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 MREMP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS [X]
S3 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X]
S3 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X]
S3 MRESP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
S3 WinRing0_1_2_0; No ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-06-07 15:02 - 2015-06-07 15:04 - 00042485 _____ C:\Users\Joseph\Downloads\FRST.txt
2015-06-07 15:01 - 2015-06-07 15:03 - 00000000 ____D C:\FRST
2015-06-07 15:00 - 2015-06-07 15:00 - 01147904 _____ (Farbar) C:\Users\Joseph\Downloads\FRST.exe
2015-06-07 12:10 - 2015-06-07 12:11 - 05487016 _____ (Microsoft Corporation) C:\Users\Joseph\Downloads\Windows8-UpgradeAssistant.exe
2015-06-07 04:13 - 2015-06-07 04:13 - 00231760 _____ C:\Users\Joseph\Downloads\CrucialScan.exe
2015-06-06 16:02 - 2015-06-06 16:02 - 00689664 _____ C:\Users\Joseph\Downloads\MicrosoftFixit50202.msi
2015-06-05 15:55 - 2015-06-05 15:55 - 00000000 ____D C:\Users\Joseph\AppData\Local\Steam
2015-06-05 13:43 - 2015-06-06 16:10 - 00013618 _____ C:\Windows\PFRO.log
2015-06-05 01:51 - 2015-06-07 01:11 - 00004978 _____ C:\Windows\IE9_main.log
2015-06-05 00:38 - 2015-06-05 00:38 - 00000000 _____ C:\Windows\setuperr.log
2015-06-05 00:38 - 2015-06-05 00:38 - 00000000 _____ C:\Windows\setupact.log
2015-06-05 00:16 - 2015-06-05 00:17 - 14617096 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2um.dll
2015-06-05 00:16 - 2015-06-05 00:16 - 24053392 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv32.dll
2015-06-05 00:16 - 2015-06-05 00:16 - 12852784 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-06-05 00:16 - 2015-06-05 00:16 - 08590480 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-06-05 00:16 - 2015-06-05 00:16 - 01048720 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco3235012.dll
2015-06-05 00:16 - 2015-06-05 00:16 - 00912528 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco3235012.dll
2015-06-05 00:16 - 2015-06-05 00:16 - 00024504 _____ C:\Windows\system32\nvinfo.pb
2015-06-05 00:15 - 2015-06-05 00:15 - 11380728 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-06-05 00:15 - 2015-06-05 00:15 - 02573456 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-06-05 00:13 - 2015-06-05 00:14 - 25374864 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2015-06-04 23:27 - 2015-06-05 01:24 - 00001924 _____ C:\Users\Public\Desktop\Advanced SystemCare 8.lnk
2015-06-04 23:27 - 2015-06-04 23:27 - 00000983 _____ C:\Users\Public\Desktop\IObit Uninstaller.lnk
2015-06-04 23:27 - 2015-06-04 23:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8
2015-06-04 23:27 - 2015-06-04 23:27 - 00000000 ____D C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0}
2015-06-04 23:27 - 2015-06-04 23:27 - 00000000 ____D C:\Program Files\Common Files\IObit
2015-06-04 23:26 - 2015-06-04 23:26 - 00000925 _____ C:\Users\Public\Desktop\Smart Defrag 4.lnk
2015-06-04 23:26 - 2015-06-04 23:26 - 00000000 ____D C:\Windows\Tasks\ImCleanDisabled
2015-06-04 23:26 - 2015-06-04 23:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag 4
2015-06-04 23:26 - 2015-01-10 15:32 - 00109856 _____ (IObit) C:\Windows\system32\IObitSmartDefragExtension.dll
2015-06-04 23:26 - 2014-06-04 15:17 - 00031520 _____ (IObit) C:\Windows\system32\SmartDefragBootTime.exe
2015-06-04 23:26 - 2014-06-04 15:17 - 00018624 _____ (IObit) C:\Windows\system32\Drivers\SmartDefragDriver.sys
2015-06-04 23:25 - 2015-06-04 23:25 - 00023840 _____ (REALiX) C:\Windows\system32\Drivers\HWiNFO32.SYS
2015-06-04 23:25 - 2015-06-04 23:25 - 00001887 _____ C:\Users\Public\Desktop\Driver Booster 2.lnk
2015-06-04 23:25 - 2015-06-04 23:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2
2015-06-01 21:40 - 2015-06-01 21:41 - 00000000 ___HD C:\BOL
2015-06-01 21:40 - 2015-06-01 21:40 - 00001684 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BetOnlineClient.lnk
2015-06-01 21:40 - 2015-06-01 21:40 - 00001672 _____ C:\Users\Public\Desktop\BetOnlineClient.lnk
2015-06-01 21:40 - 2015-06-01 21:40 - 00000000 ____D C:\Program Files\BetOnline Client
2015-05-17 02:19 - 2015-06-07 02:24 - 00000882 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-12 23:44 - 2015-05-12 23:44 - 00000000 ____D C:\Users\Joseph\.android
2015-05-12 23:35 - 2015-05-12 23:35 - 00001638 _____ C:\Users\Public\Desktop\Start BlueStacks.lnk
2015-05-12 23:18 - 2015-05-12 23:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
2015-05-12 21:58 - 2015-05-12 21:58 - 00000348 _____ C:\Windows\Tasks\0415tbUpdateInfo.job
2015-05-12 21:58 - 2015-05-12 21:58 - 00000000 ____D C:\ProgramData\Avg_Update_0415tb
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-06-07 14:55 - 2008-11-15 19:31 - 00002032 _____ C:\Users\Joseph\AppData\Local\d3d9caps.dat
2015-06-07 14:33 - 2006-11-02 05:47 - 00003664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2015-06-07 14:33 - 2006-11-02 05:47 - 00003664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2015-06-07 14:25 - 2013-04-26 23:50 - 00000886 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-06-07 14:09 - 2012-12-29 01:12 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-06-07 13:22 - 2006-11-02 05:52 - 01266082 _____ C:\Windows\WindowsUpdate.log
2015-06-07 08:47 - 2014-03-27 08:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2015-06-07 08:42 - 2013-04-26 23:56 - 00000000 ____D C:\ProgramData\MFAData
2015-06-07 04:18 - 2006-11-02 03:33 - 00759368 _____ C:\Windows\system32\PerfStringBackup.INI
2015-06-07 01:57 - 2011-12-16 03:11 - 00000394 ____H C:\Windows\Tasks\User_Feed_Synchronization-{59C1AD01-8864-4B26-B305-1454909FD816}.job
2015-06-06 18:41 - 2006-11-02 05:47 - 06062472 _____ C:\Windows\system32\FNTCACHE.DAT
2015-06-06 18:32 - 2014-02-19 20:35 - 00001865 ___SH C:\Windows\system32\mmf.sys
2015-06-06 18:29 - 2006-11-02 06:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-06-06 16:09 - 2006-11-02 06:01 - 00032562 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-06-05 20:47 - 2008-11-16 15:49 - 00000000 ___RD C:\Users\Joseph\Desktop\NN ICONS
2015-06-05 15:58 - 2013-08-18 15:41 - 00000000 ____D C:\Program Files\Steam
2015-06-05 15:56 - 2013-08-18 15:42 - 00000000 ____D C:\Program Files\Common Files\Steam
2015-06-05 15:45 - 2009-09-10 02:08 - 00000000 ____D C:\Users\Joseph\AppData\Roaming\Media Player Classic
2015-06-05 14:39 - 2008-12-12 15:06 - 00159744 _____ C:\Users\Joseph\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-06-05 14:20 - 2009-03-05 23:19 - 00000000 ____D C:\Program Files\Common Files\Motive
2015-06-05 14:07 - 2009-02-13 00:20 - 00000000 ____D C:\Program Files\Out of the Park Developments
2015-06-05 14:05 - 2013-04-26 22:53 - 00000000 ____D C:\ProgramData\IObit
2015-06-05 14:04 - 2013-11-24 17:47 - 00000000 ____D C:\ProgramData\ProductData
2015-06-05 14:04 - 2009-08-02 17:12 - 00000000 ____D C:\Users\Joseph\AppData\Roaming\Out of the Park Developments
2015-06-05 01:35 - 2008-02-03 17:42 - 00000000 ____D C:\Temp
2015-06-05 01:17 - 2008-11-16 15:41 - 00000000 ____D C:\ProgramData\NVIDIA
2015-06-05 01:14 - 2010-07-16 03:01 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2015-06-05 00:37 - 2008-11-15 19:31 - 00000000 ____D C:\Users\Joseph
2015-06-05 00:16 - 2013-04-04 19:25 - 12689400 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dum.dll
2015-06-05 00:13 - 2007-09-17 09:07 - 02935416 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi.dll
2015-06-04 23:28 - 2015-03-01 22:01 - 00000000 ____D C:\Users\Joseph\AppData\Roaming\IObit
2015-06-04 23:26 - 2009-10-02 20:44 - 00000000 ____D C:\Program Files\IObit
2015-05-25 19:30 - 2013-04-26 23:52 - 00001933 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-05-14 00:13 - 2013-04-27 00:04 - 00000000 ____D C:\Program Files\AVG SafeGuard toolbar
2015-05-13 01:18 - 2006-11-02 04:18 - 00000000 ____D C:\Windows\Microsoft.NET
2015-05-12 23:19 - 2014-12-13 15:30 - 00000000 ____D C:\Program Files\BlueStacks
==================== Files in the root of some directories =======
2014-01-04 00:19 - 2014-01-04 00:19 - 49940480 _____ () C:\Program Files\GUT95BA.tmp
2015-03-01 23:11 - 2015-03-01 23:11 - 6103040 _____ () C:\Program Files\GUTC582.tmp
2013-04-26 23:07 - 2013-04-26 23:07 - 0087608 _____ () C:\Users\Joseph\AppData\Roaming\inst.exe
2008-12-12 17:27 - 2013-04-26 23:07 - 0007887 _____ () C:\Users\Joseph\AppData\Roaming\pcouffin.cat
2008-12-12 17:27 - 2013-04-26 23:07 - 0001144 _____ () C:\Users\Joseph\AppData\Roaming\pcouffin.inf
2013-04-26 23:07 - 2013-04-26 23:07 - 0000033 _____ () C:\Users\Joseph\AppData\Roaming\pcouffin.log
2008-12-12 17:27 - 2013-04-26 23:07 - 0047360 _____ (VSO Software) C:\Users\Joseph\AppData\Roaming\pcouffin.sys
2008-11-15 19:38 - 2009-08-05 17:59 - 0023580 _____ () C:\Users\Joseph\AppData\Roaming\UserTile.png
2009-05-23 12:08 - 2010-01-09 12:46 - 0000600 _____ () C:\Users\Joseph\AppData\Roaming\winscp.rnd
2010-11-10 14:38 - 2010-11-10 14:38 - 0000000 _____ () C:\Users\Joseph\AppData\Local\AutobahnAcceleratorInstall.txt
2010-02-21 09:46 - 2010-02-21 09:46 - 0000552 _____ () C:\Users\Joseph\AppData\Local\d3d8caps.dat
2008-11-15 19:31 - 2015-06-07 14:55 - 0002032 _____ () C:\Users\Joseph\AppData\Local\d3d9caps.dat
2008-12-12 15:06 - 2015-06-05 14:39 - 0159744 _____ () C:\Users\Joseph\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-04-26 23:20 - 2013-04-26 23:20 - 0000000 _____ () C:\ProgramData\222620313f3a54382a_c
2013-04-25 22:41 - 2013-04-25 22:41 - 0000000 _____ () C:\ProgramData\LQ20O6T.dat
2013-04-25 22:40 - 2013-04-25 22:40 - 0000001 _____ () C:\ProgramData\Ov8S1e7I.exe.b
2013-04-25 22:40 - 2013-04-25 22:40 - 0000001 _____ () C:\ProgramData\Ov8S1e7I.exe_.b
ZeroAccess:
C:\$Recycle.Bin\S-1-5-21-2013592473-1583479073-1329353095-1000\$afd7bede3b150b7dc33f9425a8f88dba
ZeroAccess:
C:\$Recycle.Bin\S-1-5-18\$afd7bede3b150b7dc33f9425a8f88dba
Files to move or delete:
====================
C:\Users\Joseph\AppData\Local\Temp\InstallHelper.exe
C:\ProgramData\LQ20O6T.dat
Some files in TEMP:
====================
C:\Users\Joseph\AppData\Local\temp\BRSVC_1947906_hlp.exe
C:\Users\Joseph\AppData\Local\temp\InstallHelper.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-06-07 07:18
==================== End of log ============================
Edited by Jvescov1, 07 June 2015 - 04:41 PM.