Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

ok Im running windows 7 using chrome browser kept getting not respondi


  • This topic is locked This topic is locked

#1
jbj1162

jbj1162

    Member

  • Member
  • PipPip
  • 22 posts

chrome running very slow as a matter of fact computer running very slow was gonna try new free antivirus program so I tried uninstalling avira and downloading avast tried to install as administrator wouldnt work it would come up with box asking if I want to run I say yes and ti goes ?? where tried 4 or 5 others same results malware programs the same thing Please HelpAttached File  Addition.txt   84.24KB   224 downloadsAttached File  Addition.txt   84.24KB   224 downloads

Attached Files

  • Attached File  FRST.txt   73.8KB   497 downloads

  • 0

Advertisements


#2
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 8,093 posts
Hi! My name is zep516 and Welcome to Geekstogo!
I'll do the best I can to resolve your computer issue
Please make sure to carefully read any instruction that I give you. If you're not sure, or if something unexpected happens, don't continue Stop and ask! Never be afraid to ask questions! :)

Your computer is very infected! This is going to take a while to fix. Please refrain from running any more scans. I'll be back with some instructions.
  • 1

#3
jbj1162

jbj1162

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts

Hey Zep516 thanks for getting back to me I was this close to giving my computer a serious attitude adjustment i walked by it late last night and I swear it tried to jump off the desk onto the floor lol


  • 0

#4
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 8,093 posts
Hello,

I have also noticed in your log file you are using µTorrent, FrostWire 6.1.2 P2P program. We at Geeks to go ! Recommend removing these type of programs, they are a known cause of Malware infections. When you use file sharing programs like this you can never be sure of the file content and you are put at a much greater risk for infection. I strongly recommend you remove thESE programS before we begin our work. I have them included in the list below


Next
Please remove these programs from your programs an features list, Start > Control panel > Programs an features. In the list find the program listed below and uninstall it.
  • µTorrent
  • Amazon Browser Bar
  • Amazon Browser Settings
  • AnyProtect
  • Delta Chrome Toolbar
  • File Type Assistant
  • Final Media Player
  • FLV Player
  • FoxTab PDF Converter
  • Free File Viewer 2011
  • Free Ride Games Player
  • FrostWire 6.1.2
  • Internet Security by BrowserSafeguard
  • IWON toolbar
  • Mahjong: Mysteries of the Past Bundle by SweetPacks
  • My Web Search
  • Spybot - Search & Destroy *****This may interfere with fixing, can reinstall later.
  • SweetIM for Messenger 3.7
  • Vafmusic12 Toolbar for IE
  • VAFPlayer (HKLM\
  • VideoPlayer v2.0.6

    If a program will not remove skip it and move to the next.
    That's going to take a while.
    Let me know how it goes.

  • 0

#5
jbj1162

jbj1162

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts

Ok zep516 got all those uninstalled thanks for your patients whats next on our mission list ?


  • 0

#6
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 8,093 posts
Hello jbj1162,

The next mission we will do is run the fixlist, and you will post the fixlog.txt.... steady as she goes.......

Next

Download the enclosed ==>Attached File  FIXLIST.txt   107.89KB   234 downloads file. Save it in the location FRST64 is==>C:\Users\Jesus\Desktop\jbj fix this. Right click on FRST64 and "Run as administrator" then click on the Fix button. Wait until finished.

The tool will make a log in the location FRST64 is,C:\Users\Jesus\Desktop\jbj fix this. called==> (Fixlog.txt). Please post it to your reply.
  • 0

#7
jbj1162

jbj1162

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts

ok downloaded FIXLIST.txt right ckicked on FRST64 then run as administratos and got a not compatable with my windows ??

 

and where is the fix button


  • 0

#8
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 8,093 posts
Fixbutton is here, when you open FRST way over on right.
frst.JPG
try just double clicking on FRST

Let me know it's certainly compatible with your windows, of course it's possible the 64Bit Version got installed, you need the 32Bit version. If you continue to have difficulty re-download the 32Bit Version from the link below
Please download Farbar Recovery Scan Tool and save it to your Desktop. It's the first green tab on that page for 32Bit.
  • 0

#9
jbj1162

jbj1162

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
Fix result of Farbar Recovery Scan Tool (x86) Version:25-10-2015 02
Ran by Jesus (2015-10-28 19:45:12) Run:1
Running from C:\Users\Jesus\Desktop\jbj fix this [bleep]
Loaded Profiles: Jesus (Available Profiles: Jesus)
Boot Mode: Normal
 
==============================================
 
fixlist content:
*****************
CloseProcesses:
CreateRestorePoint:
C:\Program Files\Amazon Browser Bar
C:\Program Files\iWon_5k
C:\Users\Jesus\AppData\Roaming\uTorrent\uTorrent.exe
HKLM\...\Run: [ROC_roc_dec12] => "C:\Program Files\AVG Secure Search\ROC_roc_dec12.exe" /PROMPT /CMPID=roc_dec12
HKLM\...\Run: [iWon Search Scope Monitor] => C:\Program Files\iWon_5k\bar\1.bin\5kSrchMn.exe [42552 2012-04-28] (MindSpark)
HKLM\...\Run: [iWon_5k Browser Plugin Loader] => C:\Program Files\iWon_5k\bar\1.bin\5kbrmon.exe [30096 2012-04-28] (VER_COMPANY_NAME)
HKLM\...\Run: [SMessaging] => C:\Users\Jesus\AppData\Local\Strongvault Online Backup\SMessaging.exe
HKLM\...\Run: [SweetIM] => C:\Program Files\SweetIM\Messenger\SweetIM.exe [115032 2012-10-04] (SweetIM Technologies Ltd.)
HKLM\...\Run: [TaskTray] => [X]
HKLM\...\Run: [U7dTFLnn96AD] => regsvr32.exe /s "C:\PROGRA~2\U7dTFLnn96AD.dll"
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\...\Run: [FLV Player] => C:\Users\Jesus\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\...\Run: [TBHostSupport] => "C:\Windows\system32\Rundll32.exe" "C:\Users\Jesus\AppData\Local\TBHostSupport\TBHostSupport.dll",DLLRunTBHostSupportPlugin <===== ATTENTION
C:\Users\Jesus\AppData\Local\TBHostSupport
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\...\Run: [uTorrent] => C:\Users\Jesus\AppData\Roaming\uTorrent\uTorrent.exe [1774432 2015-09-17] (BitTorrent Inc.)
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\...\MountPoints2: F - F:\VZAccess_Manager.exe /z detect
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\...\MountPoints2: {57b30a71-6cb3-11e0-ba8e-806e6f6e6963} - D:\Autorun.exe
HKU\S-1-5-18\...\Run: [SearchProtect] => \SearchProtect\bin\cltmng.exe
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.coupons.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.amazon.com/websearch/ref=bit_bds-p18_serp_ie_us_display?ie=UTF8&tagbase=bds-p18&tbrId=v1_abb-channel-18_efcc836cf317483ba84aa3bf29274106_18_38_20130222_US_ie_sp_OC1
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\Software\Microsoft\Internet Explorer\Main,Start Page Restore = hxxp://go.microsoft.com/fwlink/?LinkId=56626&homepage=hxxp://www.google.com/
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\Software\Microsoft\Internet Explorer\Main,Backup.Old.Start Page = hxxp://www.searchnu.com/406
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\Software\Microsoft\Internet Explorer\Main,OldURL = hxxp://www.amazon.com/websearch/ref=bit_bds-p18_serp_ie_us_display?ie=UTF8&tagbase=bds-p18&tbrId=v1_abb-channel-18_efcc836cf317483ba84aa3bf29274106_18_38_20130222_US_ie_sp_OC1
URLSearchHook: HKLM - PageRage Toolbar - {9565115d-c7d6-46d3-bd63-b67b481a4368} - C:\Program Files\PageRage\prxtbPage.dll (Conduit Ltd.)
URLSearchHook: HKLM - InternetHelper1.5 Toolbar - {1930e38a-deef-4cf4-9bfb-9c4ea3689a9d} -  No File
URLSearchHook: HKLM - xvidly3 Toolbar - {3c2adea7-a96a-4c26-adcb-9e939365b2ae} - C:\Program Files\xvidly3\prxtbxvid.dll No File
URLSearchHook: HKLM - Vafmusic12 Toolbar - {38e3a123-98e8-46fc-8729-f4b49de90555} - C:\Program Files\Vafmusic12\prxtbVafm.dll (Conduit Ltd.)
URLSearchHook: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> Default = {CFBFAE00-17A6-11D0-99CB-00C04FD64497}
URLSearchHook: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 - (No Name) - {ece1a2a4-3672-46f1-82a7-d1137212d9dd} - C:\Program Files\iWon_5k\bar\1.bin\5kSrcAs.dll (MindSpark)
SearchScopes: HKLM -> DefaultScope {9F2073B6-9259-4EAB-8A5D-4D3E497E7E9C} URL = 
SearchScopes: HKLM -> Backup.Old.DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
SearchScopes: HKLM -> {2f96f370-d59b-44d4-a2ef-40e54920b3f6} URL = hxxp://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=ZLxdm002YYus&ptnrS=ZLxdm002YYus&si=CISx0-yw168CFakZQgodAxShBw&ptb=D767A45E-2DF1-4316-8A13-78E0F179708C&ind=2012062404&n=77eda2c4&psa=&st=sb&searchfor={searchTerms}
SearchScopes: HKLM -> {6AFE7379-74AE-7479-C45C-1F7422602C04} URL = hxxp://dts.search-results.com/sr?src=ieb&appid=400&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://start.funmoods.com/results.php?f=4&q={searchTerms}&a=iron2&chnl=iron2&cd=2XzuyEtN2Y1L1QzutDtDtCzy0BzytCyD0DyB0DyBtD0DyDtAtN0D0Tzu0CtByEyBtN1L2XzutBtFtCtFtCtFtAtCtB&cr=1593157597
SearchScopes: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> DefaultScope {9F2073B6-9259-4EAB-8A5D-4D3E497E7E9C} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3303005&CUI=UN37483943281148613&UM=2
SearchScopes: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> Backup.Old.DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
SearchScopes: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> {0228B0A1-E342-4AF4-998C-945746DD15A4} URL = hxxp://search.yahoo.com/search?p={searchterms}&ei=UTF-8&fr=w3i&type=W3i_DS,136,0_0,Search,20110940,17118,0,18,0
SearchScopes: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> {1089625F-5F0E-43C0-991A-AAA9EE56C56F} URL = hxxp://mp3tubetoolbar.com/?tmp=toolbar_sb_results&prt=pinballtbfour01ie&Keywords={searchTerms}&clid=a6bfb87a5f864b3c9756fbd33dee2951
SearchScopes: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> {131B573A-C00D-82EC-098E-145BB127FA4F} URL = hxxp://www.bing.com/search?FORM=U079DF&PC=U079&q={searchTerms}&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> {2C9E0EE4-2610-B903-9AF4-523D61CB8099} URL = hxxp://www.startnow.com/s/?q={searchTerms}&src=defsearch&provider=Bing&provider_code=Z095&partner_id=667&product_id=636&affiliate_id=&channel=&toolbar_id=200&toolbar_version=2.0&install_country=US&install_date=20110710&user_guid=96DB51B10F894A2E93CBD1F92807F729&machine_id=41b5a2789c7867af9899b63eb4cd009f&browser=IE&os=win&os_version=6.1-x86-SP0
SearchScopes: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> {2f96f370-d59b-44d4-a2ef-40e54920b3f6} URL = hxxp://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=ZLxdm002YYus&ptnrS=ZLxdm002YYus&si=CISx0-yw168CFakZQgodAxShBw&ptb=D767A45E-2DF1-4316-8A13-78E0F179708C&ind=2012062404&n=77eda2c4&psa=&st=sb&searchfor={searchTerms}
SearchScopes: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> {63140ECF-C629-BE59-8F0E-90B4FF340C03} URL = hxxp://lf.startnow.com/s/?q={searchTerms}&src=defsearch&provider=bing&provider_name=bing&provider_code=Z051&partner_id=276&product_id=709&affiliate_id=&channel=3999&toolbar_id=200&toolbar_version=2.1.0&install_country=US&install_date=20111031&user_guid=96DB51B10F894A2E93CBD1F92807F729&machine_id=41b5a2789c7867af9899b63eb4cd009f&browser=IE&os=win&os_version=6.1-x86-SP0&iesrc={referrer:source}
SearchScopes: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> {6AFE7379-74AE-7479-C45C-1F7422602C04} URL = hxxp://dts.search-results.com/sr?src=ieb&appid=400&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> {7E8C2074-BD91-4C0E-B6EB-51E37932B4A2} URL = hxxp://www.amazon.com/websearch/ref=bit_bds-p18_serp_ie_us_display?ie=UTF8&tag=bds-p18-serp-us-ie-20&tagbase=bds-p18&tbrId=v1_abb-channel-18_efcc836cf317483ba84aa3bf29274106_18_38_20130222_US_ie_ds_OC1&query={searchTerms}
SearchScopes: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> {91607fa7-3c2f-4f90-93e3-d5337a6b0ac2} URL = hxxp://maxwebsearch.com/s?type=default&user_id=2d5db6e6-baec-4013-afc6-812f90bcef0a&implmentation=browsersafeguardext&uc=20131031&type=provider&query={searchTerms}
SearchScopes: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://isearch.avg.com/search?cid={E89657E3-AA73-4199-B7D6-80E8D24A2E2B}&mid=0e40783545a547d1b40ad150fff13e24-a80e99c47cb451afda33fe2a4feee08034f11fa5&lang=en&ds=ts026&pr=sa&d=2012-02-09 20:22:38&v=10.0.0.7&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://start.funmoods.com/results.php?f=4&q={searchTerms}&a=iron2&chnl=iron2&cd=2XzuyEtN2Y1L1QzutDtDtCzy0BzytCyD0DyB0DyBtD0DyDtAtN0D0Tzu0CtByEyBtN1L2XzutBtFtCtFtCtFtAtCtB&cr=1593157597
SearchScopes: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> {9F2073B6-9259-4EAB-8A5D-4D3E497E7E9C} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3303005&CUI=UN37483943281148613&UM=2
SearchScopes: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> {B85EB77B-BF42-41E8-A75D-DD136AAEF579} URL = hxxp://ws.infospace.com/playsushi_tbar/ws/redir?_iceUrl=true& user_id=%userid&tool_id=60231&qkw={searchTerms}
SearchScopes: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} URL = hxxp://mystart.incredibar.com/?a=6R8YBhzNqQ&loc=skw&search={searchTerms}
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files\Internet Download Manager\IDMIECC.dll [2011-04-05] (Internet Download Manager, Tonec Inc.)
BHO: TinyBHO Class -> {00e71626-0bef-11dc-8314-0800200c9a66} -> No File
BHO: &Yahoo! Toolbar Helper -> {02478D38-C3F9-4efb-9B51-7695ECA05670} -> C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2008-07-28] (Yahoo! Inc.)
BHO: SuperLyrics-16 -> {11111111-1111-1111-1111-110411411162} -> C:\Program Files\SuperLyrics-16\SuperLyrics-16-bho.dll => No File
BHO: Search Assistant BHO -> {1846aebf-22a9-449d-8865-e19eea1a81d2} -> C:\Program Files\iWon_5k\bar\1.bin\5kSrcAs.dll [2012-04-28] (MindSpark)
BHO: InternetHelper1.5 Toolbar -> {1930e38a-deef-4cf4-9bfb-9c4ea3689a9d} -> No File
BHO: RivalGaming Games -> {26D675AC-D925-4bbf-A720-62C2AA4A81EB} -> No File
BHO: Vafmusic12 Toolbar -> {38e3a123-98e8-46fc-8729-f4b49de90555} -> C:\Program Files\Vafmusic12\prxtbVafm.dll [2013-10-15] (Conduit Ltd.)
BHO: xvidly3 Toolbar -> {3c2adea7-a96a-4c26-adcb-9e939365b2ae} -> C:\Program Files\xvidly3\prxtbxvid.dll => No File
BHO: Funmoods Helper Object -> {75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} -> No File
BHO: No Name -> {7F6AFBF1-E065-4627-A2FD-810366367D01} -> No File
BHO: Toolbar BHO -> {8f7f89b5-752e-4194-b92f-cf00177c1590} -> C:\Program Files\iWon_5k\bar\1.bin\5kbar.dll [2012-04-28] (MindSpark)
BHO: PageRage Toolbar -> {9565115d-c7d6-46d3-bd63-b67b481a4368} -> C:\Program Files\PageRage\prxtbPage.dll [2011-05-09] (Conduit Ltd.)
BHO: Search Toolbar -> {9D425283-D487-4337-BAB6-AB8354A81457} -> C:\Program Files\Search Toolbar\SearchToolbar.dll [2010-04-08] ()
BHO: smartdownloader Class -> {F1AF26F8-1828-4279-ABCE-074EF3235BD7} -> C:\Program Files\PutLockerDownloader\smarterdownloader.dll [2012-11-06] (TODO: <Company name>)
BHO: TBSB07898 Class -> {FCBCCB87-9224-4B8D-B117-F56D924BEB18} -> C:\Program Files\Coupons.com CouponBar\tbcore3.dll => No File
Toolbar: HKLM - iWon - {94b03f0f-4130-49fc-98ac-a8a1b3a69c59} - C:\Program Files\iWon_5k\bar\1.bin\5kbar.dll [2012-04-28] (MindSpark)
Toolbar: HKLM - Funmoods Toolbar - {A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} -  No File
Toolbar: HKLM - Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2008-07-28] (Yahoo! Inc.)
Toolbar: HKLM - Vafmusic12 Toolbar - {38e3a123-98e8-46fc-8729-f4b49de90555} - C:\Program Files\Vafmusic12\prxtbVafm.dll [2013-10-15] (Conduit Ltd.)
Toolbar: HKLM - Coupons.com CouponBar - {8660E5B3-6C41-44DE-8503-98D99BBECD41} - C:\Program Files\Coupons.com CouponBar\tbcore3.dll No File
Toolbar: HKLM - Dashlane Toolbar - {669695BC-A811-4A9D-8CDF-BA8C795F261C} - C:\Users\Jesus\AppData\Roaming\Dashlane\ie\KWIEBar.dll [2015-09-03] (Dashlane)
Toolbar: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} -  No File
Toolbar: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> No Name - {C28F5072-1BFA-42F0-BA55-5A802D3490CB} -  No File
Toolbar: HKU\S-1-5-21-11595131-3550647590-3570146784-1001 -> No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} -  No File
FF DefaultSearchEngine: SearchFlyBar2 Customized Web Search
FF SearchEngineOrder.1: Amazon
FF Keyword.URL: hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3303005&SearchSource=2&CUI=UN37266934532419213&UM=2&q=
FF Plugin: @iWon_5k.com/Plugin -> C:\Program Files\iWon_5k\bar\1.bin\NP5kStub.dll [2012-04-28] (MindSpark)
FF Plugin: www.exent.com/GameTreatWidget -> C:\Program Files\Free Ride Games\NPGameTreatPlugin.dll [No File]
FF SearchPlugin: C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\amazon-distro.xml [2013-02-22]
FF SearchPlugin: C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\bingp.xml [2015-01-31]
FF SearchPlugin: C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\Cassiopesa.xml [2015-10-11]
FF SearchPlugin: C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\delta.xml [2013-05-17]
FF SearchPlugin: C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\Lasaoren.xml [2014-11-22]
FF SearchPlugin: C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\MaxWebSearch.xml [2013-10-30]
FF SearchPlugin: C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\MyStart Search.xml [2013-10-30]
FF SearchPlugin: C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\searchflybar2-customized-web-search.xml [2015-10-27]
FF SearchPlugin: C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\smod.xml [2015-10-11]
FF SearchPlugin: C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\SweetIM Search.xml [2013-09-17]
FF SearchPlugin: C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\trovi-search.xml [2014-11-08]
FF SearchPlugin: C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\tuvaro.xml [2013-03-05]
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\avg-secure-search.xml [2012-02-10]
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\pandasecuritytb.xml [2015-10-26]
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\Search_Results.xml [2012-07-17]
FF Extension: RivalGaming  - C:\Users\Jesus\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\[email protected] [2012-01-02] [not signed]
FF Extension: EpicPlay Games - C:\Users\Jesus\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\[email protected] [2011-09-20] [not signed]
FF Extension: LivingPlay TextLinks - C:\Users\Jesus\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\[email protected] [2011-08-21] [not signed]
FF Extension: iWon - C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\5kffxtbr@iWon_5k.com [2012-04-28] [not signed]
FF Extension: Amazon Browser Bar - C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\[email protected] [2013-02-22] [not signed]
FF Extension: Funmoods.com - C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\[email protected] [2012-09-03] [not signed]
FF Extension: deAl2deaLIt - C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\[email protected] [2014-10-26] [not signed]
FF Extension: jid1xUfzOsOFlzSOXgjetpack - C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\jid1-xUfzOsOFlzSOXg@jetpack [2014-10-26] [not signed]
FF Extension: RivalGaming  - C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\[email protected] [2012-01-02] [not signed]
FF Extension: My Web Search - C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\[email protected] [2012-06-17] [not signed]
FF Extension: No Name - C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\[email protected] [2011-09-16] [not signed]
FF Extension: ShopToWin4 - C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\{6cbc25b0-0a52-11df-8a39-0800200c9a66} [2015-05-26] [not signed]
FF Extension: uTorrentControl_v2  - C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\{7473b6bd-4691-4744-a82b-7854eb3d70b6} [2013-01-05] [not signed]
FF Extension: ShopToWin23 - C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\{cea91efe-0f31-40f8-ab54-7b89290323fa} [2015-05-26] [not signed]
FF Extension: Amazon Shopping Assistant by Spigot - C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\{DE1C78C1-2762-47f6-A1D9-1B7866FE7EB4} [2014-11-22] [not signed]
FF Extension: ShopToWin6 - C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\{e68d0d96-5f18-496c-87f2-c0d521d78fbe} [2015-05-26] [not signed]
FF Extension: Super Web Accelerator ! - C:\Program Files\Mozilla Firefox\distribution\bundles\firefox [2015-10-13] [not signed]
FF HKLM\...\Firefox\Extensions: [{6904342A-8307-11DF-A508-4AE2DFD72085}] - C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa => not found
FF HKLM\...\Firefox\Extensions: [{336D0C35-8A85-403a-B9D2-65C292C39087}] - C:\Program Files\IB Updater\Firefox => not found
FF HKLM\...\Firefox\Extensions: [{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}] - C:\Program Files\IB Updater\Firefox => not found
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\Mozilla Firefox\extensions\[email protected] => not found
FF HKLM\...\Firefox\Extensions: [{1C43BAF1-00C2-40A8-A09E-F84CFD79546D}] - C:\Program Files\Coupons.com CouponBar\firefox\{1C43BAF1-00C2-40A8-A09E-F84CFD79546D}\Coupons.com.xpi => not found
FF ExtraCheck: C:\Program Files\mozilla firefox\firefox.cfg [2013-01-30] <==== ATTENTION
CHR HKLM\...\Chrome\Extension: [bbjciahceamgodcoidkjpchnokgfpphh] - C:\Users\Jesus\AppData\Local\funmoods.crx [2012-09-03]
CHR HKLM\...\Chrome\Extension: [cjpglkicenollcignonpgiafdgfeehoj] - C:\Users\Jesus\AppData\Local\funmoods-speeddial.crx [2012-09-03]
CHR HKLM\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\IB Updater\source.crx <not found>
CHR HKLM\...\Chrome\Extension: [ebbbnjjfibbiclgolnopmabjbcpmojpn] - C:\Users\Jesus\AppData\Local\CRE\ebbbnjjfibbiclgolnopmabjbcpmojpn.crx <not found>
CHR HKLM\...\Chrome\Extension: [eihlgbnhhkigaajnpjohgjldcmdhjiol] - C:\Users\Jesus\AppData\Local\CRE\eihlgbnhhkigaajnpjohgjldcmdhjiol.crx <not found>
CHR HKLM\...\Chrome\Extension: [ejpbbhjlbipncjklfjjaedaieimbmdda] - C:\Users\Jesus\AppData\Local\CRE\ejpbbhjlbipncjklfjjaedaieimbmdda.crx <not found>
CHR HKLM\...\Chrome\Extension: [eooncjejnppfjjklapaamhcdmjbilmde] - C:\Users\Jesus\AppData\Roaming\BabSolution\CR\Delta.crx [2013-05-12]
CHR HKLM\...\Chrome\Extension: [fgkbmedckhcibhkdhaokebnllokeokek] - C:\Users\Jesus\AppData\Local\CRE\fgkbmedckhcibhkdhaokebnllokeokek.crx <not found>
CHR HKLM\...\Chrome\Extension: [ggamifejnddpoocdmadhjdbgaijnphdi] - C:\Users\Jesus\AppData\Local\CRE\ggamifejnddpoocdmadhjdbgaijnphdi.crx <not found>
CHR HKLM\...\Chrome\Extension: [hgiifhjbblnglipdbpdgagphlcbililb] - C:\Users\Jesus\AppData\Local\CRE\hgiifhjbblnglipdbpdgagphlcbililb.crx <not found>
CHR HKLM\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Chrome\Ext\rphtml5video.crx <not found>
CHR HKLM\...\Chrome\Extension: [kbemlhjodpfopddibpbppifmogphpmil] - C:\Users\Jesus\AppData\Local\CRE\kbemlhjodpfopddibpbppifmogphpmil.crx <not found>
CHR HKLM\...\Chrome\Extension: [kimdndlhnimhdcchmglaendkednpejjn] - C:\Users\Jesus\AppData\Local\CRE\kimdndlhnimhdcchmglaendkednpejjn.crx <not found>
CHR HKLM\...\Chrome\Extension: [kldbiondcoemmofebkcgcnbigliglcnl] - C:\Users\Jesus\AppData\Local\CRE\kldbiondcoemmofebkcgcnbigliglcnl.crx <not found>
CHR HKLM\...\Chrome\Extension: [ngkdgphikkepnnefheniljdgolldgpld] - C:\Users\Jesus\AppData\Local\CRE\ngkdgphikkepnnefheniljdgolldgpld.crx <not found>
CHR HKLM\...\Chrome\Extension: [ocoombckbcnabpaghmokhaapnbngahck] - C:\Users\Jesus\AppData\Local\CRE\ocoombckbcnabpaghmokhaapnbngahck.crx <not found>
CHR HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bbjciahceamgodcoidkjpchnokgfpphh] - C:\Users\Jesus\AppData\Local\funmoods.crx [2012-09-03]
CHR HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bmkckgpgekmanipelfidlhmkfcjicion] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [cjpglkicenollcignonpgiafdgfeehoj] - C:\Users\Jesus\AppData\Local\funmoods-speeddial.crx [2012-09-03]
CHR DefaultSearchURL: Default -> hxxp://www-searching.com/search.aspx?s=FABzamobl010924,d49c0bac-6890-4ce2-b464-c8a7598bf84d,&q={searchTerms}
CHR DefaultSearchKeyword: Default -> www-searching.com
CHR DefaultSuggestURL: Default -> hxxp://api.searchpredict.com/api/?rqtype=ffplugin&siteID=8661&dbCode=1&command={searchTerms}
CHR Extension: (Request Maker) - C:\Users\Jesus\AppData\Local\Google\Chrome\User Data\Default\Extensions\kajfghlhfkcocafkcjlajldicbikpgnp [2014-10-23] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
CHR Extension: (Remote Desktop auto discovery) - C:\Users\Jesus\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljmpghknnfhlgcgchochgijlgjpmhhfo [2014-10-24] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
CHR HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ebbbnjjfibbiclgolnopmabjbcpmojpn] - C:\Users\Jesus\AppData\Local\CRE\ebbbnjjfibbiclgolnopmabjbcpmojpn.crx <not found>
CHR HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [eihlgbnhhkigaajnpjohgjldcmdhjiol] - C:\Users\Jesus\AppData\Local\CRE\eihlgbnhhkigaajnpjohgjldcmdhjiol.crx <not found>
CHR HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ejpbbhjlbipncjklfjjaedaieimbmdda] - C:\Users\Jesus\AppData\Local\CRE\ejpbbhjlbipncjklfjjaedaieimbmdda.crx <not found>
CHR HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fgkbmedckhcibhkdhaokebnllokeokek] - C:\Users\Jesus\AppData\Local\CRE\fgkbmedckhcibhkdhaokebnllokeokek.crx <not found>
CHR HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ggamifejnddpoocdmadhjdbgaijnphdi] - C:\Users\Jesus\AppData\Local\CRE\ggamifejnddpoocdmadhjdbgaijnphdi.crx <not found>
CHR HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [hgiifhjbblnglipdbpdgagphlcbililb] - C:\Users\Jesus\AppData\Local\CRE\hgiifhjbblnglipdbpdgagphlcbililb.crx <not found>
CHR HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kbemlhjodpfopddibpbppifmogphpmil] - C:\Users\Jesus\AppData\Local\CRE\kbemlhjodpfopddibpbppifmogphpmil.crx <not found>
CHR HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kimdndlhnimhdcchmglaendkednpejjn] - C:\Users\Jesus\AppData\Local\CRE\kimdndlhnimhdcchmglaendkednpejjn.crx <not found>
CHR HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kldbiondcoemmofebkcgcnbigliglcnl] - C:\Users\Jesus\AppData\Local\CRE\kldbiondcoemmofebkcgcnbigliglcnl.crx <not found>
CHR HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ngkdgphikkepnnefheniljdgolldgpld] - C:\Users\Jesus\AppData\Local\CRE\ngkdgphikkepnnefheniljdgolldgpld.crx <not found>
CHR HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ocoombckbcnabpaghmokhaapnbngahck] - C:\Users\Jesus\AppData\Local\CRE\ocoombckbcnabpaghmokhaapnbngahck.crx <not found>
R2 iWon_5kService; C:\Program Files\iWon_5k\bar\1.bin\5kbarsvc.exe [42528 2012-04-28] (COMPANYVERS_NAME)
C:\Program Files\iWon_5k
R2 Updater Service for AMZN; C:\Program Files\Amazon Browser Bar\ToolbarUpdaterService.exe [222368 2012-05-15] ()
S3 globalUpdatem; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe /medsvc [X] <==== ATTENTION
S3 McComponentHostService; "C:\Program Files\McAfee Security Scan\3.0.207\McCHSvc.exe" [X]
S3 NMIndexingService; "C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe" [X]
S2 servervo; C:\Users\Jesus\AppData\Roaming\VOPackage\VOsrv.exe [X] <==== ATTENTION
C:\Program Files\globalUpdate
C:\Users\Jesus\AppData\Roaming\VOPackage
S2 X6XSEx; \??\C:\Program Files\Free Ride Games\X6XSEx.Sys [X]
2015-10-11 01:26 - 2015-10-11 01:26 - 00000000 ___HD C:\Users\Jesus\AppData\Local\BitOptimiserUn
2015-10-11 01:26 - 2015-10-11 01:26 - 00000000 ____D C:\Users\Jesus\AppData\Local\BitOptimiser
2015-10-11 01:25 - 2015-10-11 01:25 - 00000000 __SHD C:\Users\Jesus\AppData\Local\WinDan
2015-10-28 05:53 - 2013-01-05 04:34 - 00000000 ____D C:\Users\Jesus\AppData\Roaming\uTorrent
2015-10-28 05:41 - 2013-08-15 04:30 - 00000268 _____ C:\Windows\Tasks\ArcadeFrontier.job
2015-10-28 05:39 - 2013-04-15 21:32 - 00000886 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-10-28 05:32 - 2012-04-05 02:18 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-10-28 05:26 - 2014-10-03 13:26 - 00004156 _____ C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-6.job
2015-10-28 05:18 - 2014-10-03 13:18 - 00004140 _____ C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-6.job
2015-10-28 05:09 - 2014-10-03 13:27 - 00001334 _____ C:\Windows\Tasks\HOBS.job
2015-10-28 03:17 - 2011-04-22 01:49 - 00000000 ____D C:\Users\Jesus\AppData\Roaming\DMCache
2015-10-28 02:56 - 2011-10-05 20:59 - 00000000 ____D C:\Program Files\McAfee Security Scan
2015-10-28 02:40 - 2014-10-03 13:27 - 00003474 _____ C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-1.job
2015-10-28 02:40 - 2014-10-03 13:27 - 00002444 _____ C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-5_user.job
2015-10-28 02:40 - 2014-10-03 13:27 - 00002444 _____ C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-5.job
2015-10-28 02:40 - 2014-10-03 13:27 - 00002108 _____ C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-2.job
2015-10-28 02:40 - 2014-10-03 13:27 - 00001454 _____ C:\Windows\Tasks\577db44d-d9d7-469f-92dc-7b0e6d777170.job
2015-10-28 02:40 - 2014-10-03 13:26 - 00005182 _____ C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-11.job
2015-10-28 02:40 - 2014-10-03 13:26 - 00004492 _____ C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-4.job
2015-10-28 02:40 - 2014-10-03 13:26 - 00003812 _____ C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-7.job
2015-10-28 02:40 - 2014-10-03 13:26 - 00003468 _____ C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-3.job
2015-10-28 02:40 - 2014-10-03 13:19 - 00003106 _____ C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-1.job
2015-10-28 02:40 - 2014-10-03 13:19 - 00002428 _____ C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-5_user.job
2015-10-28 02:40 - 2014-10-03 13:19 - 00002428 _____ C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-5.job
2015-10-28 02:40 - 2014-10-03 13:19 - 00002092 _____ C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-2.job
2015-10-28 02:40 - 2014-10-03 13:19 - 00001356 _____ C:\Windows\Tasks\51188396-c59e-46c6-b628-c324c540b86b.job
2015-10-28 02:40 - 2014-10-03 13:19 - 00001340 _____ C:\Windows\Tasks\ITECXDE.job
2015-10-28 02:40 - 2014-10-03 13:18 - 00005166 _____ C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-11.job
2015-10-28 02:40 - 2014-10-03 13:18 - 00004476 _____ C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-4.job
2015-10-28 02:40 - 2014-10-03 13:18 - 00003796 _____ C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-7.job
2015-10-28 02:40 - 2014-10-03 13:18 - 00003452 _____ C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-3.job
2015-10-28 02:40 - 2013-10-27 12:36 - 00001340 _____ C:\Windows\Tasks\SuperLyrics-16-updater.job
2015-10-28 02:40 - 2013-10-27 12:35 - 00001146 _____ C:\Windows\Tasks\SuperLyrics-16-enabler.job
2015-10-28 02:40 - 2013-10-27 12:34 - 00001246 _____ C:\Windows\Tasks\SuperLyrics-16-codedownloader.job
2015-10-28 02:40 - 2013-10-27 12:33 - 00001872 _____ C:\Windows\Tasks\SuperLyrics-16-firefoxinstaller.job
2015-10-28 02:40 - 2013-10-27 12:32 - 00001948 _____ C:\Windows\Tasks\SuperLyrics-16-chromeinstaller.job
2015-10-28 02:40 - 2013-09-08 00:32 - 00001906 _____ C:\Windows\Tasks\VisualBee-chromeinstaller.job
2015-10-28 02:40 - 2013-09-08 00:32 - 00001830 _____ C:\Windows\Tasks\VisualBee-firefoxinstaller.job
2015-10-28 02:40 - 2013-04-15 21:32 - 00000882 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-10-27 02:25 - 2013-11-01 01:36 - 00000000 ____D C:\Users\Jesus\AppData\Local\TBHostSupport
2015-10-27 02:25 - 2013-02-22 01:11 - 00000000 ____D C:\Program Files\Amazon Browser Bar
2012-09-03 18:01 - 2012-09-03 18:01 - 0384844 _____ () C:\Users\Jesus\AppData\Local\funmoods-speeddial.crx
2012-09-03 18:01 - 2012-09-03 18:01 - 0031465 _____ () C:\Users\Jesus\AppData\Local\funmoods.crx
C:\ProgramData\taskhost.exe
C:\ProgramData\U7dTFLnn96AD.dll
C:\Users\Jesus\g2ax_customer_downloadhelper_win32_x86.exe
C:\Users\Jesus\jxpiinstall.exe
C:\Users\Public\AlexaNSISPlugin.5284.dll
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{035FBE31-3755-450A-A775-5E6BBD43D344}\InprocServer32 -> C:\Users\Jesus\AppData\Local\Google\Update\1.3.21.135\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{349D0BEB-C7A2-4818-896D-721349FB957F}\localserver32 -> c:\program files\planet7 casino\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{3A2FF062-1CC7-4F01-B758-75218E9F653D}\localserver32 -> c:\program files\club world casinos\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{42866AA5-0088-481E-BE59-F526B4E1C21C}\localserver32 -> c:\program files\planet7 casino\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{0A5E59C5-E141-4134-8016-AFCED8DCE745}\localserver32 -> c:\program files\planet7 casino\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{18195900-F78C-46FE-A55A-5A491C6F7230}\localserver32 -> c:\program files\palace of chance\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{7343C339-68AC-4BC0-964C-527FAF60BEBA}\localserver32 -> c:\program files\palace of chance\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{755185E0-4607-4122-BB8E-561D14049AC7}\localserver32 -> c:\program files\planet7 casino\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{781629FE-B830-46BF-9C41-C20729D6DEB7}\localserver32 -> c:\program files\club world casinos\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{7E91D484-1252-42B1-9D0F-667777CD20F0}\localserver32 -> c:\program files\planet7 casino\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{7F9521A5-6267-4619-A9D2-B2C83945FA74}\localserver32 -> c:\program files\planet7 casino\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{83C57A5A-174A-4FF2-9792-02B761DE4C43}\localserver32 -> c:\program files\palace of chance\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{87F1309E-CBFB-43D3-8A74-A0307875B2B3}\localserver32 -> c:\program files\planet7 casino\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{997A6674-4032-48E8-B1F9-7E6AA6F19312}\localserver32 -> c:\program files\planet7 casino\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{AA8DF900-A3B9-4231-8C2C-0CA3B95E6395}\localserver32 -> c:\program files\planet7 casino\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{AEDBA87C-4A7A-4C4C-8420-8A5E90AF2356}\localserver32 -> c:\program files\prism casino\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{B2EBB08B-3121-4C7C-974F-0161928A2937}\localserver32 -> c:\program files\club world casinos\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{B4DE0D49-3670-4D2F-9228-227FCD258C54}\localserver32 -> c:\program files\planet7 casino\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{B5ED906A-3468-4A41-91B7-A77849329B7C}\localserver32 -> c:\program files\planet7 casino\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{B7C3E3E1-E641-4354-BE71-C0FC5D935458}\localserver32 -> c:\program files\planet7 casino\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{C0CFC164-D12D-440B-AFE8-F673ED340749}\localserver32 -> c:\program files\slots plus casino\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{C44643AF-E3B0-4F0B-92CA-1D86537B6F93}\localserver32 -> c:\program files\prism casino\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{D4DA8972-E5CF-45FF-9D8E-F052A9BCDAFD}\localserver32 -> c:\program files\palace of chance\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{E6F462CC-5075-4637-BC5C-D75DF985DD94}\localserver32 -> c:\program files\planet7 casino\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{E9003BF8-C69B-40BA-A86F-58243B39DCB1}\localserver32 -> c:\program files\club world casinos\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{EA025CFF-6C5C-44EB-8148-97642749B719}\localserver32 -> c:\program files\palace of chance\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{EC59A9FF-D43D-49ED-A72A-C84855087BD7}\localserver32 -> c:\program files\virtual casino\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{ece1a2a4-3672-46f1-82a7-d1137212d9dd}\InprocServer32 -> C:\Program Files\iWon_5k\bar\1.bin\5kSrcAs.dll (MindSpark)
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{ED2430C2-26C8-484C-8C31-CDBDFEAEB8D8}\localserver32 -> c:\program files\prism casino\casino.exe %1 => No File
CustomCLSID: HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{FB3A51E2-BBCF-4CE2-9EDA-4118A3D3B828}\localserver32 -> c:\program files\palace of chance\casino.exe %1 => No File
Task: {06E425EB-0BEB-44F4-814C-D3B0151D2FA6} - System32\Tasks\APSnotifierPP3 => C:\Program Files\AnyProtectEx\AnyProtect.exe [2014-10-03] (AnyProtect.com) <==== ATTENTION
Task: {0987B271-5EBD-4BC1-9D83-FDC05403E7AE} - System32\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-4 => C:\Program Files\CinPlus-2.5cdTube HDV03.10\c18b53c1-d7c3-48f9-96b5-786590d4f08f-4.exe <==== ATTENTION
Task: {0CCF29FD-FA33-4805-A17B-E55F567131B8} - System32\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-7 => C:\Program Files\CinPlus-2.5cdTube HDV03.10\c18b53c1-d7c3-48f9-96b5-786590d4f08f-7.exe <==== ATTENTION
Task: {14CD0091-1916-43DE-BE88-82A718A49A39} - System32\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-5_user => C:\Program Files\TheHDvid-Codec V10\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-5.exe <==== ATTENTION
C:\Program Files\CinPlus-2.5cdTube HDV03.10
C:\Program Files\TheHDvid-Codec V10
Task: {1ACCA364-6708-4C42-95BF-E8EB5A485B8D} - System32\Tasks\BackgroundContainer Startup Task => Rundll32.exe "C:\Users\Jesus\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun <==== ATTENTION
Task: {1BBA4581-81D0-4964-AB8A-66C3D31D82D6} - System32\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-1 => C:\Program Files\TheHDvid-Codec V10\TheHDvid-Codec V10-codedownloader.exe <==== ATTENTION
Task: {1F5C6582-94E5-4DF4-93BD-84D6F0467BBF} - System32\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-3 => C:\Program Files\CinPlus-2.5cdTube HDV03.10\c18b53c1-d7c3-48f9-96b5-786590d4f08f-3.exe <==== ATTENTION
"C:\Users\Jesus\AppData\Local\Conduit
Task: {27E62ECB-56C4-4B28-B276-7FDC4331965E} - System32\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-5 => C:\Program Files\TheHDvid-Codec V10\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-5.exe <==== ATTENTION
Task: {2B76F051-034B-4D14-8FE9-903815FD9F1B} - System32\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-6 => C:\Program Files\CinPlus-2.5cdTube HDV03.10\c18b53c1-d7c3-48f9-96b5-786590d4f08f-6.exe <==== ATTENTION
Task: {33D97B96-6262-40C3-8436-5153BF83A021} - System32\Tasks\HOBS => C:\Users\Jesus\AppData\Roaming\HOBS.exe <==== ATTENTION
Task: {34AB68F6-2658-4BCD-B348-236C49C50E54} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files\Desk 365\desk365.exe <==== ATTENTION
C:\Users\Jesus\AppData\Roaming\HOBS.exe
C:\Program Files\Desk 365
Task: {4A7603D4-7988-4D72-AE1C-9FC62227752E} - System32\Tasks\SuperLyrics-16-chromeinstaller => C:\Program Files\SuperLyrics-16\SuperLyrics-16-chromeinstaller.exe <==== ATTENTION
Task: {504A8E35-584A-43EE-B0F0-90D12BE2318F} - System32\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-1 => C:\Program Files\CinPlus-2.5cdTube HDV03.10\CinPlus-2.5cdTube HDV03.10-codedownloader.exe <==== ATTENTION
Task: {5820F98F-67DD-47F1-80A2-F695BBB94502} - System32\Tasks\RunAsStdUser Task => C:\Program Files\FREEzeFrog\bin\1.0.670.0\FREEzeFrogSA.exe <==== ATTENTION
Task: {59487B4D-DAB6-4C1D-AC61-5935D4B7F437} - System32\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-5_user => C:\Program Files\CinPlus-2.5cdTube HDV03.10\c18b53c1-d7c3-48f9-96b5-786590d4f08f-5.exe <==== ATTENTION
C:\Program Files\SuperLyrics-16
C:\Program Files\FREEzeFrog
C:\Program Files\CinPlus-2.5cdTube HDV03.10
Task: {61177B66-66B5-46BA-9C33-4D9E726CA4C2} - System32\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-11 => C:\Program Files\CinPlus-2.5cdTube HDV03.10\c18b53c1-d7c3-48f9-96b5-786590d4f08f-11.exe <==== ATTENTION
Task: {7238DACE-DC11-406B-B80D-D67A3364DA9C} - System32\Tasks\SuperLyrics-16-enabler => C:\Program Files\SuperLyrics-16\SuperLyrics-16-enabler.exe <==== ATTENTION
Task: {72D320CE-33E0-4902-AB6D-D0575859F970} - System32\Tasks\ITECXDE => C:\Users\Jesus\AppData\Roaming\ITECXDE.exe <==== ATTENTION
Task: {73B8DE3E-D8BB-4ED3-9DF4-22494571B030} - System32\Tasks\SuperLyrics-16-codedownloader => C:\Program Files\SuperLyrics-16\SuperLyrics-16-codedownloader.exe <==== ATTENTION
Task: {7AF47961-00CD-486D-8954-1FF90DE8A4FD} - System32\Tasks\VisualBee-firefoxinstaller => C:\Program Files\VisualBee\VisualBee-firefoxinstaller.exe <==== ATTENTION
Task: {7EA70030-548C-4F56-A910-4BF7A04EF845} - System32\Tasks\EPUpdater => C:\Users\Jesus\AppData\Roaming\BabSolution\Shared\BabMaint.exe [2013-05-09] () <==== ATTENTION
Task: {7ED83585-D194-4FB0-9E34-57E6D2B90E50} - System32\Tasks\Go for FilesUpdate => C:\Program Files\GoforFiles\GFFUpdater.exe <==== ATTENTION
Task: {8080BA93-8396-47B7-A3CD-492F16B1B087} - System32\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-2 => C:\Program Files\TheHDvid-Codec V10\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-2.exe <==== ATTENTION
Task: {8AF94FA0-2EC1-40ED-BD41-774A6509A38D} - System32\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-5 => C:\Program Files\CinPlus-2.5cdTube HDV03.10\c18b53c1-d7c3-48f9-96b5-786590d4f08f-5.exe <==== ATTENTION
Task: {8C7C1340-440C-4937-B801-FE78A5FDF832} - System32\Tasks\gameo_update => C:\Users\Jesus\AppData\Roaming\Gameo\gameo.exe [2015-07-04] () <==== ATTENTION
Task: {8CA8DD93-8E5B-466D-89E2-468109F8BF40} - \Optimizer Pro Schedule -> No File <==== ATTENTION
Task: {8D880592-9061-4FA0-8024-2259F319FC29} - System32\Tasks\577db44d-d9d7-469f-92dc-7b0e6d777170 => C:\Program Files\CinPlus-2.5cdTube HDV03.10\577db44d-d9d7-469f-92dc-7b0e6d777170.exe <==== ATTENTION
C:\Users\Jesus\AppData\Roaming\BabSolution
C:\Users\Jesus\AppData\Roaming\Gameo
Task: {B79089EE-5784-459F-B2DF-B44F4CBE6141} - System32\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-6 => C:\Program Files\TheHDvid-Codec V10\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-6.exe <==== ATTENTION
Task: {B8F5C814-D9C8-47D8-8631-4B249A089D4D} - System32\Tasks\APSnotifierPP2 => C:\Program Files\AnyProtectEx\AnyProtect.exe [2014-10-03] (AnyProtect.com) <==== ATTENTION
C:\Program Files\AnyProtectEx
Task: {CFD7D0C9-2845-4243-AF58-8B53738C0946} - System32\Tasks\FreeFileViewerUpdateChecker => C:\Program Files\FreeFileViewer\FFVCheckForUpdates.exe [2011-03-11] (Bitberry Software) <==== ATTENTION
C:\Program Files\FreeFileViewer
Task: {D93F69E5-0EA4-4ECA-B397-32FE2736858B} - System32\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-4 => C:\Program Files\TheHDvid-Codec V10\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-4.exe <==== ATTENTION
Task: {E2C5D82A-0857-4537-8C08-329E4D82D66C} - System32\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-7 => C:\Program Files\TheHDvid-Codec V10\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-7.exe <==== ATTENTION
Task: {F008B7E9-EDC2-40EB-98DF-1049F51CD82A} - System32\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-3 => C:\Program Files\TheHDvid-Codec V10\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-3.exe <==== ATTENTION
Task: {F6F993D8-AEAA-48E9-9012-AF7742E1ED11} - System32\Tasks\VisualBee-chromeinstaller => C:\Program Files\VisualBee\VisualBee-chromeinstaller.exe <==== ATTENTION
Task: {F86B1A45-ED06-4870-B83B-BED3B8169232} - System32\Tasks\APSnotifierPP1 => C:\Program Files\AnyProtectEx\AnyProtect.exe [2014-10-03] (AnyProtect.com) <==== ATTENTION
Task: {FA843751-5F22-4B03-B4F7-BBF0F65D6E3A} - System32\Tasks\51188396-c59e-46c6-b628-c324c540b86b => C:\Program Files\TheHDvid-Codec V10\51188396-c59e-46c6-b628-c324c540b86b.exe <==== ATTENTION
Task: {FAE73402-DF76-428B-AE8D-C87661CB6341} - System32\Tasks\Microsoft_Hardware_Launch_IType_exe => c:\Program Files\Microsoft IntelliType Pro\IType.exe [2011-04-13] (Microsoft Corporation)
Task: {FE7C4814-38BD-4C08-9A39-742230969083} - System32\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-11 => C:\Program Files\TheHDvid-Codec V10\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-11.exe <==== ATTENTION
Task: C:\Windows\Tasks\51188396-c59e-46c6-b628-c324c540b86b.job => C:\Program Files\TheHDvid-Codec V10\51188396-c59e-46c6-b628-c324c540b86b.exeǴ/agentregpath='TheHDvid-Codec V10' /appid=63315 /srcid='001824' /subid='0' /zdata='0' /bic=2B5C6EA23B6C4B07A5FABD38EFF02C0DIE /verifier=40a4ba2d7989047d6181998a87c21289 /installerversion=1_35_09_29 /installationtime=1412367452 /statsdomain=hxxp:/stats.newdatastatsserv.com /errorsdomain=hxxp:/errors.newdatastatsserv.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,184-0 /monetizationdomain=hxxp:/logs.newdatastatsserv.com <==== ATTENTION
Task: C:\Windows\Tasks\577db44d-d9d7-469f-92dc-7b0e6d777170.job => C:\Program Files\CinPlus-2.5cdTube HDV03.10\577db44d-d9d7-469f-92dc-7b0e6d777170.exeȝ/agentregpath='CinPlus-2.5cdTube HDV03.10' /appid=63285 /srcid='002200' /subid='0' /zdata='0' /bic=2B5C6EA23B6C4B07A5FABD38EFF02C0DIE /verifier=40a4ba2d7989047d6181998a87c21289 /installerversion=1_35_09_29 /installationtime=1412367963 /statsdomain=hxxp:/stats.newdatastatsserv.com /errorsdomain=hxxp:/errors.newdatastatsserv.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /monetizationdomain=hxxp:/logs.newdatastatsserv.com <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP1.job => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP2.job => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP3.job => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\ArcadeFrontier.job => C:\Users\Jesus\AppData\Local\ArcadeFrontier\veragent.exe
Task: C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-1.job => C:\Program Files\TheHDvid-Codec V10\TheHDvid-Codec V10-codedownloader.exe <==== ATTENTION
Task: C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-11.job => C:\Program Files\TheHDvid-Codec V10\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-11.exe <==== ATTENTION
Task: C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-2.job => C:\Program Files\TheHDvid-Codec V10\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-2.exe <==== ATTENTION
Task: C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-3.job => C:\Program Files\TheHDvid-Codec V10\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-3.exe <==== ATTENTION
Task: C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-4.job => C:\Program Files\TheHDvid-Codec V10\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-5.job => C:\Program Files\TheHDvid-Codec V10\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-5_user.job => C:\Program Files\TheHDvid-Codec V10\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-6.job => C:\Program Files\TheHDvid-Codec V10\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-7.job => C:\Program Files\TheHDvid-Codec V10\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-1.job => C:\Program Files\CinPlus-2.5cdTube HDV03.10\CinPlus-2.5cdTube HDV03.10-codedownloader.exe <==== ATTENTION
Task: C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-11.job => C:\Program Files\CinPlus-2.5cdTube HDV03.10\c18b53c1-d7c3-48f9-96b5-786590d4f08f-11.exe <==== ATTENTION
Task: C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-2.job => C:\Program Files\CinPlus-2.5cdTube HDV03.10\c18b53c1-d7c3-48f9-96b5-786590d4f08f-2.exe <==== ATTENTION
Task: C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-3.job => C:\Program Files\CinPlus-2.5cdTube HDV03.10\c18b53c1-d7c3-48f9-96b5-786590d4f08f-3.exe <==== ATTENTION
Task: C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-4.job => C:\Program Files\CinPlus-2.5cdTube HDV03.10\c18b53c1-d7c3-48f9-96b5-786590d4f08f-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-5.job => C:\Program Files\CinPlus-2.5cdTube HDV03.10\c18b53c1-d7c3-48f9-96b5-786590d4f08f-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-5_user.job => C:\Program Files\CinPlus-2.5cdTube HDV03.10\c18b53c1-d7c3-48f9-96b5-786590d4f08f-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-6.job => C:\Program Files\CinPlus-2.5cdTube HDV03.10\c18b53c1-d7c3-48f9-96b5-786590d4f08f-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-7.job => C:\Program Files\CinPlus-2.5cdTube HDV03.10\c18b53c1-d7c3-48f9-96b5-786590d4f08f-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\FreeFileViewerUpdateChecker.job => C:\Program Files\FreeFileViewer\FFVCheckForUpdates.exe <==== ATTENTION
Task: C:\Windows\Tasks\HOBS.job => C:\Users\Jesus\AppData\Roaming\HOBS.exe <==== ATTENTION
Task: C:\Windows\Tasks\ITECXDE.job => C:\Users\Jesus\AppData\Roaming\ITECXDE.exe <==== ATTENTION
Task: C:\Windows\Tasks\SuperLyrics-16-chromeinstaller.job => C:\Program Files\SuperLyrics-16\SuperLyrics-16-chromeinstaller.exe̦/installcrx /agentregpath='SuperLyrics-16' /extensionfilepath C:\Program Files\SuperLyrics-16\44162.crx' /appid=44162 /srcid='000574' /subid='1060-2080' /zdata='d:gui.doneopen.net' /bic=2B5C6EA23B6C4B07A5FABD38EFF02C0DIE /verifier=40a4ba2d7989047d6181998a87c21289 /installerversion=1_29_153 /installerfullversion=1.29.153.2 /installationtime=1382902321 /statsdomain=hxxp:/stats.srvmystats.com /errorsdomain=hxxp:/errors.srvmystats.com <==== ATTENTION
Task: C:\Windows\Tasks\SuperLyrics-16-codedownloader.job => C:\Program Files\SuperLyrics-16\SuperLyrics-16-codedownloader.exeLj/reinstallapp /agentregpath='SuperLyrics-16' /appid=44162 /srcid='000574' /subid='1060-2080' /zdata='d:gui.doneopen.net' /bic=2B5C6EA23B6C4B07A5FABD38EFF02C0DIE /verifier=40a4ba2d7989047d6181998a87c21289 /installerversion=1_29_153 /installerfullversion=1.29.153.2 /installationtime=1382902321 /statsdomain=hxxp:/stats.srvmystats.com /errorsdomain=hxxp:/errors.srvmystats.com /codedownloaddomain=hxxp:/app-static.crossrider.com <==== ATTENTION
Task: C:\Windows\Tasks\SuperLyrics-16-enabler.job => C:\Program Files\SuperLyrics-16\SuperLyrics-16-enabler.exeƝ/enablebho /agentregpath='SuperLyrics-16' /appid=44162 /srcid='000574' /subid='1060-2080' /zdata='d:gui.doneopen.net' /bic=2B5C6EA23B6C4B07A5FABD38EFF02C0DIE /verifier=40a4ba2d7989047d6181998a87c21289 /installerversion=1_29_153 /installationtime=1382902321 /statsdomain=hxxp:/stats.srvmystats.com /errorsdomain=hxxp:/errors.srvmystats.com <==== ATTENTION
Task: C:\Windows\Tasks\SuperLyrics-16-firefoxinstaller.job => C:\Program Files\SuperLyrics-16\SuperLyrics-16-firefoxinstaller.exe˿/installxpi /agentregpath='SuperLyrics-16' /extensionfilepath C:\Program Files\SuperLyrics-16\44162.xpi' /appid=44162 /srcid='000574' /subid='1060-2080' /zdata='d:gui.doneopen.net' /bic=2B5C6EA23B6C4B07A5FABD38EFF02C0DIE /verifier=40a4ba2d7989047d6181998a87c21289 /installerversion=1_29_153 /installerfullversion=1.29.153.2 /installationtime=1382902321 /statsdomain=hxxp:/stats.srvmystats.com /errorsdomain=hxxp:/errors.srvmystats.com /waitforbrowser=300 /extensionid=58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com /extensionversion=0.92 /prefsbranch=a58ad00861cfb48bb8ad233a8905572bc5715d2be69b949308f7e64bdeb961cfdcom44162 /updateurl=hxxps:/w9u6a2p6.ssl.hwcdn.net/plugin/ff/update/44162.rdf <==== ATTENTION
Task: C:\Windows\Tasks\SuperLyrics-16-updater.job => C:\Program Files\SuperLyrics-16\SuperLyrics-16-updater.exeǾ/runupdater /agentregpath='SuperLyrics-16' /appid=44162 /srcid='000574' /subid='1060-2080' /zdata='d:gui.doneopen.net' /bic=2B5C6EA23B6C4B07A5FABD38EFF02C0DIE /verifier=40a4ba2d7989047d6181998a87c21289 /installerversion=1_29_153 /installationtime=1382902321 /statsdomain=hxxp:/stats.srvmystats.com /errorsdomain=hxxp:/errors.srvmystats.com /monetizationdomain=hxxp:/stats.syncstatsdata.com /geoserviceurl=hxxp:/ipgeoapi.com/ /updatejsondomain=hxxp:/update.srvmystats.com <==== ATTENTION
Task: C:\Windows\Tasks\VisualBee-chromeinstaller.job => C:\Program Files\VisualBee\VisualBee-chromeinstaller.exe̛/installcrx /agentregpath='VisualBee' /extensionfilepath C:\Program Files\VisualBee\33906.crx' /appid=33906 /srcid='000196' /subid='verticals-shopping,ads,' /zdata='0' /bic=2B5C6EA23B6C4B07A5FABD38EFF02C0DIE /verifier=40a4ba2d7989047d6181998a87c21289 /installerversion=1_27_153 /installerfullversion=1.27.153.8 /installationtime=1378625552 /statsdomain=hxxp:/stats.update-apps.com /errorsdomain=hxxp:/errors.update-apps.com <==== ATTENTION
Task: C:\Windows\Tasks\VisualBee-firefoxinstaller.job => C:\Program Files\VisualBee\VisualBee-firefoxinstaller.exe˴/installxpi /agentregpath='VisualBee' /extensionfilepath C:\Program Files\VisualBee\33906.xpi' /appid=33906 /srcid='000196' /subid='verticals-shopping,ads,' /zdata='0' /bic=2B5C6EA23B6C4B07A5FABD38EFF02C0DIE /verifier=40a4ba2d7989047d6181998a87c21289 /installerversion=1_27_153 /installerfullversion=1.27.153.8 /installationtime=1378625552 /statsdomain=hxxp:/stats.update-apps.com /errorsdomain=hxxp:/errors.update-apps.com /waitforbrowser=300 /extensionid=67314b39-24e6-4f05-99f3-3f88c7cddd17@6c5fa560-13a3-4d42-8e90-53d9930111f9.com /extensionversion=0.91 /prefsbranch=a67314b3924e64f0599f33f88c7cddd176c5fa56013a34d428e9053d9930111f9com33906 /updateurl=hxxps:/w9u6a2p6.ssl.hwcdn.net/plugin/ff/update/33906.rdf <==== ATTENTION
AlternateDataStreams: C:\ProgramData\TEMP:038F4577
AlternateDataStreams: C:\ProgramData\TEMP:09708CB7
AlternateDataStreams: C:\ProgramData\TEMP:10C8EAEC
AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51
AlternateDataStreams: C:\ProgramData\TEMP:373E1720
AlternateDataStreams: C:\ProgramData\TEMP:390B30B4
AlternateDataStreams: C:\ProgramData\TEMP:4E9307D7
AlternateDataStreams: C:\ProgramData\TEMP:7AB4D952
AlternateDataStreams: C:\ProgramData\TEMP:D1AE9882
AlternateDataStreams: C:\ProgramData\TEMP:DAF232F8
AlternateDataStreams: C:\ProgramData\TEMP:F2721624
FirewallRules: [{C5A050A2-9470-4E93-AEF9-CEF8A551FE8A}] => (Allow) C:\Program Files\uTorrent\uTorrent.exe
FirewallRules: [{2DEAC7A5-7E87-4E56-BB11-60B1CE54B82A}] => (Allow) C:\Program Files\uTorrent\uTorrent.exe
FirewallRules: [{B9DABF82-AE07-43F3-AABE-DE5042006D66}] => (Allow) C:\Program Files\FrostWire\FrostWire.exe
FirewallRules: [{25537DD3-B6F1-4974-B977-3BC4FEE8CF49}] => (Allow) C:\Program Files\FrostWire\FrostWire.exe
FirewallRules: [{49E8B9B5-1691-45A9-9549-B4FF3B3D78AB}] => (Allow) C:\Program Files\FrostWire 6\FrostWire.exe
FirewallRules: [{70072B2D-3E6A-40BB-9840-F90344BF3754}] => (Allow) C:\Program Files\FrostWire 6\FrostWire.exe
FirewallRules: [{7241F8E9-E8C5-45C8-BEFB-18238D0FE8C4}] => (Allow) C:\Users\Jesus\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{AFC84571-1376-48F9-900F-AEE2B0080393}] => (Allow) C:\Users\Jesus\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{AEE9A2CF-54F5-4CA1-9BB8-17E53A214E6A}] => (Allow) C:\Users\Jesus\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{A5EF8DA6-1713-4A4D-A379-39D47EE7F124}] => (Allow) C:\Users\Jesus\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{9323D896-69FD-4429-B04D-893A95094D35}] => (Allow) C:\Users\Jesus\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{7B6C25C3-2690-495A-A184-4E0737268DEA}] => (Allow) C:\Users\Jesus\AppData\Roaming\uTorrent\uTorrent.exe
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset catalog
CMD: ipconfig /flushdns
CMD: netsh winsock reset all
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
hosts:
Emptytemp:
*****************
 
Processes closed successfully.
Restore point was successfully created.
C:\Program Files\Amazon Browser Bar => moved successfully
C:\Program Files\iWon_5k => moved successfully
"C:\Users\Jesus\AppData\Roaming\uTorrent\uTorrent.exe" => not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ROC_roc_dec12 => value removed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\iWon Search Scope Monitor => value not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\iWon_5k Browser Plugin Loader => value not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SMessaging => value removed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SweetIM => value not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\TaskTray => value removed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\U7dTFLnn96AD => value removed successfully.
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\Software\Microsoft\Windows\CurrentVersion\Run\\FLV Player => value removed successfully.
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\Software\Microsoft\Windows\CurrentVersion\Run\\TBHostSupport => value removed successfully.
C:\Users\Jesus\AppData\Local\TBHostSupport => moved successfully
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\Software\Microsoft\Windows\CurrentVersion\Run\\uTorrent => value not found.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\F" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{57b30a71-6cb3-11e0-ba8e-806e6f6e6963}" => key removed successfully.
HKCR\CLSID\{57b30a71-6cb3-11e0-ba8e-806e6f6e6963} => key not found. 
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run\\SearchProtect => value removed successfully.
"HKLM\SOFTWARE\Policies\Google" => key removed successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page => value removed successfully.
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache => value removed successfully.
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\Software\Microsoft\Internet Explorer\Main\\Start Page Restore => value removed successfully.
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\Software\Microsoft\Internet Explorer\Main\\Backup.Old.Start Page => value removed successfully.
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\Software\Microsoft\Internet Explorer\Main\\OldURL => value removed successfully.
HKLM\Software\Microsoft\Internet Explorer\URLSearchHooks\\{9565115d-c7d6-46d3-bd63-b67b481a4368} => value removed successfully.
"HKCR\CLSID\{9565115d-c7d6-46d3-bd63-b67b481a4368}" => key removed successfully.
HKLM\Software\Microsoft\Internet Explorer\URLSearchHooks\\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d} => value removed successfully.
"HKCR\CLSID\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}" => key removed successfully.
HKLM\Software\Microsoft\Internet Explorer\URLSearchHooks\\{3c2adea7-a96a-4c26-adcb-9e939365b2ae} => value removed successfully.
"HKCR\CLSID\{3c2adea7-a96a-4c26-adcb-9e939365b2ae}" => key removed successfully.
HKLM\Software\Microsoft\Internet Explorer\URLSearchHooks\\{38e3a123-98e8-46fc-8729-f4b49de90555} => value removed successfully.
"HKCR\CLSID\{38e3a123-98e8-46fc-8729-f4b49de90555}" => key removed successfully.
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\Software\Microsoft\Internet Explorer\URLSearchHooks\\ => value removed successfully.
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\Software\Microsoft\Internet Explorer\URLSearchHooks\\{ece1a2a4-3672-46f1-82a7-d1137212d9dd} => value not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\Backup.Old.DefaultScope => value removed successfully.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2f96f370-d59b-44d4-a2ef-40e54920b3f6}" => key removed successfully.
HKCR\CLSID\{2f96f370-d59b-44d4-a2ef-40e54920b3f6} => key not found. 
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6AFE7379-74AE-7479-C45C-1F7422602C04}" => key removed successfully.
HKCR\CLSID\{6AFE7379-74AE-7479-C45C-1F7422602C04} => key not found. 
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}" => key removed successfully.
HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} => key not found. 
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully.
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\Backup.Old.DefaultScope => value removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0228B0A1-E342-4AF4-998C-945746DD15A4}" => key removed successfully.
HKCR\CLSID\{0228B0A1-E342-4AF4-998C-945746DD15A4} => key not found. 
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1089625F-5F0E-43C0-991A-AAA9EE56C56F}" => key removed successfully.
HKCR\CLSID\{1089625F-5F0E-43C0-991A-AAA9EE56C56F} => key not found. 
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{131B573A-C00D-82EC-098E-145BB127FA4F}" => key removed successfully.
HKCR\CLSID\{131B573A-C00D-82EC-098E-145BB127FA4F} => key not found. 
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2C9E0EE4-2610-B903-9AF4-523D61CB8099}" => key removed successfully.
HKCR\CLSID\{2C9E0EE4-2610-B903-9AF4-523D61CB8099} => key not found. 
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2f96f370-d59b-44d4-a2ef-40e54920b3f6}" => key removed successfully.
HKCR\CLSID\{2f96f370-d59b-44d4-a2ef-40e54920b3f6} => key not found. 
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{63140ECF-C629-BE59-8F0E-90B4FF340C03}" => key removed successfully.
HKCR\CLSID\{63140ECF-C629-BE59-8F0E-90B4FF340C03} => key not found. 
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6AFE7379-74AE-7479-C45C-1F7422602C04}" => key removed successfully.
HKCR\CLSID\{6AFE7379-74AE-7479-C45C-1F7422602C04} => key not found. 
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{7E8C2074-BD91-4C0E-B6EB-51E37932B4A2}" => key removed successfully.
HKCR\CLSID\{7E8C2074-BD91-4C0E-B6EB-51E37932B4A2} => key not found. 
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{91607fa7-3c2f-4f90-93e3-d5337a6b0ac2}" => key removed successfully.
HKCR\CLSID\{91607fa7-3c2f-4f90-93e3-d5337a6b0ac2} => key not found. 
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}" => key removed successfully.
HKCR\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} => key not found. 
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}" => key removed successfully.
HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} => key not found. 
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9F2073B6-9259-4EAB-8A5D-4D3E497E7E9C}" => key removed successfully.
HKCR\CLSID\{9F2073B6-9259-4EAB-8A5D-4D3E497E7E9C} => key not found. 
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B85EB77B-BF42-41E8-A75D-DD136AAEF579}" => key removed successfully.
HKCR\CLSID\{B85EB77B-BF42-41E8-A75D-DD136AAEF579} => key not found. 
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A}" => key removed successfully.
HKCR\CLSID\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A} => key not found. 
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}" => key removed successfully.
"HKCR\CLSID\{0055C089-8582-441B-A0BF-17B458C2A3A8}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00e71626-0bef-11dc-8314-0800200c9a66}" => key removed successfully.
"HKCR\CLSID\{00e71626-0bef-11dc-8314-0800200c9a66}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}" => key removed successfully.
"HKCR\CLSID\{02478D38-C3F9-4efb-9B51-7695ECA05670}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411411162}" => key removed successfully.
"HKCR\CLSID\{11111111-1111-1111-1111-110411411162}" => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1846aebf-22a9-449d-8865-e19eea1a81d2} => key not found. 
HKCR\CLSID\{1846aebf-22a9-449d-8865-e19eea1a81d2} => key not found. 
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}" => key removed successfully.
HKCR\CLSID\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d} => key not found. 
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{26D675AC-D925-4bbf-A720-62C2AA4A81EB}" => key removed successfully.
"HKCR\CLSID\{26D675AC-D925-4bbf-A720-62C2AA4A81EB}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{38e3a123-98e8-46fc-8729-f4b49de90555}" => key removed successfully.
HKCR\CLSID\{38e3a123-98e8-46fc-8729-f4b49de90555} => key not found. 
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3c2adea7-a96a-4c26-adcb-9e939365b2ae}" => key removed successfully.
HKCR\CLSID\{3c2adea7-a96a-4c26-adcb-9e939365b2ae} => key not found. 
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7}" => key removed successfully.
"HKCR\CLSID\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F6AFBF1-E065-4627-A2FD-810366367D01}" => key removed successfully.
HKCR\CLSID\{7F6AFBF1-E065-4627-A2FD-810366367D01} => key not found. 
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8f7f89b5-752e-4194-b92f-cf00177c1590} => key not found. 
HKCR\CLSID\{8f7f89b5-752e-4194-b92f-cf00177c1590} => key not found. 
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9565115d-c7d6-46d3-bd63-b67b481a4368}" => key removed successfully.
HKCR\CLSID\{9565115d-c7d6-46d3-bd63-b67b481a4368} => key not found. 
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D425283-D487-4337-BAB6-AB8354A81457}" => key removed successfully.
"HKCR\CLSID\{9D425283-D487-4337-BAB6-AB8354A81457}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F1AF26F8-1828-4279-ABCE-074EF3235BD7}" => key removed successfully.
"HKCR\CLSID\{F1AF26F8-1828-4279-ABCE-074EF3235BD7}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}" => key removed successfully.
"HKCR\CLSID\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}" => key removed successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{94b03f0f-4130-49fc-98ac-a8a1b3a69c59} => value not found.
HKCR\CLSID\{94b03f0f-4130-49fc-98ac-a8a1b3a69c59} => key not found. 
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} => value removed successfully.
"HKCR\CLSID\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3}" => key removed successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} => value removed successfully.
"HKCR\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}" => key removed successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{38e3a123-98e8-46fc-8729-f4b49de90555} => value removed successfully.
HKCR\CLSID\{38e3a123-98e8-46fc-8729-f4b49de90555} => key not found. 
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{8660E5B3-6C41-44DE-8503-98D99BBECD41} => value removed successfully.
"HKCR\CLSID\{8660E5B3-6C41-44DE-8503-98D99BBECD41}" => key removed successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{669695BC-A811-4A9D-8CDF-BA8C795F261C} => value removed successfully.
"HKCR\CLSID\{669695BC-A811-4A9D-8CDF-BA8C795F261C}" => key removed successfully.
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} => value removed successfully.
"HKCR\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}" => key removed successfully.
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{C28F5072-1BFA-42F0-BA55-5A802D3490CB} => value removed successfully.
HKCR\CLSID\{C28F5072-1BFA-42F0-BA55-5A802D3490CB} => key not found. 
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} => value removed successfully.
HKCR\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} => key not found. 
Firefox DefaultSearchEngine removed successfully.
Firefox SearchEngineOrder.1 removed successfully.
Firefox "Keyword.URL" removed successfully.
HKLM\Software\MozillaPlugins\@iWon_5k.com/Plugin => key not found. 
C:\Program Files\iWon_5k\bar\1.bin\NP5kStub.dll => not found.
HKLM\Software\MozillaPlugins\www.exent.com/GameTreatWidget => key not found. 
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\amazon-distro.xml => moved successfully
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\bingp.xml => moved successfully
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\Cassiopesa.xml => moved successfully
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\delta.xml => moved successfully
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\Lasaoren.xml => moved successfully
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\MaxWebSearch.xml => moved successfully
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\MyStart Search.xml => moved successfully
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\searchflybar2-customized-web-search.xml => moved successfully
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\smod.xml => moved successfully
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\SweetIM Search.xml => moved successfully
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\trovi-search.xml => moved successfully
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\searchplugins\tuvaro.xml => moved successfully
C:\Program Files\mozilla firefox\searchplugins\avg-secure-search.xml => moved successfully
C:\Program Files\mozilla firefox\searchplugins\pandasecuritytb.xml => moved successfully
C:\Program Files\mozilla firefox\searchplugins\Search_Results.xml => moved successfully
C:\Users\Jesus\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\[email protected] [2012-01-02] => not found.
C:\Users\Jesus\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\[email protected] [2011-09-20] => not found.
C:\Users\Jesus\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\[email protected] [2011-08-21] => not found.
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\5kffxtbr@iWon_5k.com [2012-04-28] => not found.
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\[email protected] [2013-02-22] => not found.
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\[email protected] [2012-09-03] => not found.
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\[email protected] [2014-10-26] => not found.
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\jid1-xUfzOsOFlzSOXg@jetpack [2014-10-26] => not found.
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\[email protected] [2012-01-02] => not found.
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\[email protected] [2012-06-17] => not found.
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\[email protected] [2011-09-16] => not found.
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\{6cbc25b0-0a52-11df-8a39-0800200c9a66} [2015-05-26] => not found.
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\{7473b6bd-4691-4744-a82b-7854eb3d70b6} [2013-01-05] => not found.
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\{cea91efe-0f31-40f8-ab54-7b89290323fa} [2015-05-26] => not found.
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\{DE1C78C1-2762-47f6-A1D9-1B7866FE7EB4} [2014-11-22] => not found.
C:\Users\Jesus\AppData\Roaming\Mozilla\Firefox\Profiles\3z4ize6m.default\Extensions\{e68d0d96-5f18-496c-87f2-c0d521d78fbe} [2015-05-26] => not found.
C:\Program Files\Mozilla Firefox\distribution\bundles\firefox [2015-10-13] => not found.
HKLM\Software\Mozilla\Firefox\Extensions\\{6904342A-8307-11DF-A508-4AE2DFD72085} => value removed successfully.
HKLM\Software\Mozilla\Firefox\Extensions\\{336D0C35-8A85-403a-B9D2-65C292C39087} => value removed successfully.
HKLM\Software\Mozilla\Firefox\Extensions\\{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052} => value removed successfully.
HKLM\Software\Mozilla\Firefox\Extensions\\[email protected] => value removed successfully.
HKLM\Software\Mozilla\Firefox\Extensions\\{1C43BAF1-00C2-40A8-A09E-F84CFD79546D} => value removed successfully.
C:\Program Files\mozilla firefox\firefox.cfg => moved successfully
"HKLM\SOFTWARE\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh" => key removed successfully.
C:\Users\Jesus\AppData\Local\funmoods.crx => moved successfully
"HKLM\SOFTWARE\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj" => key removed successfully.
C:\Users\Jesus\AppData\Local\funmoods-speeddial.crx => moved successfully
"HKLM\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd" => key removed successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\ebbbnjjfibbiclgolnopmabjbcpmojpn" => key removed successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\eihlgbnhhkigaajnpjohgjldcmdhjiol" => key removed successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda" => key removed successfully.
HKLM\SOFTWARE\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde => key not found. 
"C:\Users\Jesus\AppData\Roaming\BabSolution\CR\Delta.crx" => not found.
"HKLM\SOFTWARE\Google\Chrome\Extensions\fgkbmedckhcibhkdhaokebnllokeokek" => key removed successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\ggamifejnddpoocdmadhjdbgaijnphdi" => key removed successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\hgiifhjbblnglipdbpdgagphlcbililb" => key removed successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk" => key removed successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\kbemlhjodpfopddibpbppifmogphpmil" => key removed successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\kimdndlhnimhdcchmglaendkednpejjn" => key removed successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\kldbiondcoemmofebkcgcnbigliglcnl" => key removed successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\ngkdgphikkepnnefheniljdgolldgpld" => key removed successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\ocoombckbcnabpaghmokhaapnbngahck" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh" => key removed successfully.
"C:\Users\Jesus\AppData\Local\funmoods.crx" => not found.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\bmkckgpgekmanipelfidlhmkfcjicion" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj" => key removed successfully.
"C:\Users\Jesus\AppData\Local\funmoods-speeddial.crx" => not found.
Chrome DefaultSearchURL => removed successfully.
Chrome DefaultSearchKeyword => removed successfully.
Chrome DefaultSuggestURL => removed successfully.
C:\Users\Jesus\AppData\Local\Google\Chrome\User Data\Default\Extensions\kajfghlhfkcocafkcjlajldicbikpgnp <==== ATTENTION => not found.
C:\Users\Jesus\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljmpghknnfhlgcgchochgijlgjpmhhfo <==== ATTENTION => not found.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\ebbbnjjfibbiclgolnopmabjbcpmojpn" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\eihlgbnhhkigaajnpjohgjldcmdhjiol" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\fgkbmedckhcibhkdhaokebnllokeokek" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\ggamifejnddpoocdmadhjdbgaijnphdi" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\hgiifhjbblnglipdbpdgagphlcbililb" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\kbemlhjodpfopddibpbppifmogphpmil" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\kimdndlhnimhdcchmglaendkednpejjn" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\kldbiondcoemmofebkcgcnbigliglcnl" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\ngkdgphikkepnnefheniljdgolldgpld" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Google\Chrome\Extensions\ocoombckbcnabpaghmokhaapnbngahck" => key removed successfully.
iWon_5kService => service not found.
"C:\Program Files\iWon_5k" => not found.
Updater Service for AMZN => service removed successfully.
globalUpdatem => service removed successfully.
McComponentHostService => service removed successfully.
NMIndexingService => service removed successfully.
servervo => service removed successfully.
"C:\Program Files\globalUpdate" => not found.
"C:\Users\Jesus\AppData\Roaming\VOPackage" => not found.
X6XSEx => service removed successfully.
C:\Users\Jesus\AppData\Local\BitOptimiserUn => moved successfully
C:\Users\Jesus\AppData\Local\BitOptimiser => moved successfully
C:\Users\Jesus\AppData\Local\WinDan => moved successfully
C:\Users\Jesus\AppData\Roaming\uTorrent => moved successfully
C:\Windows\Tasks\ArcadeFrontier.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\Windows\Tasks\Adobe Flash Player Updater.job => moved successfully
C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-6.job => moved successfully
C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-6.job => moved successfully
C:\Windows\Tasks\HOBS.job => moved successfully
C:\Users\Jesus\AppData\Roaming\DMCache => moved successfully
C:\Program Files\McAfee Security Scan => moved successfully
C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-1.job => moved successfully
C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-5_user.job => moved successfully
C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-5.job => moved successfully
C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-2.job => moved successfully
C:\Windows\Tasks\577db44d-d9d7-469f-92dc-7b0e6d777170.job => moved successfully
C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-11.job => moved successfully
C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-4.job => moved successfully
C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-7.job => moved successfully
C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-3.job => moved successfully
C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-1.job => moved successfully
C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-5_user.job => moved successfully
C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-5.job => moved successfully
C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-2.job => moved successfully
C:\Windows\Tasks\51188396-c59e-46c6-b628-c324c540b86b.job => moved successfully
C:\Windows\Tasks\ITECXDE.job => moved successfully
C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-11.job => moved successfully
C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-4.job => moved successfully
C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-7.job => moved successfully
C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-3.job => moved successfully
C:\Windows\Tasks\SuperLyrics-16-updater.job => moved successfully
C:\Windows\Tasks\SuperLyrics-16-enabler.job => moved successfully
C:\Windows\Tasks\SuperLyrics-16-codedownloader.job => moved successfully
C:\Windows\Tasks\SuperLyrics-16-firefoxinstaller.job => moved successfully
C:\Windows\Tasks\SuperLyrics-16-chromeinstaller.job => moved successfully
C:\Windows\Tasks\VisualBee-chromeinstaller.job => moved successfully
C:\Windows\Tasks\VisualBee-firefoxinstaller.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
"C:\Users\Jesus\AppData\Local\TBHostSupport" => not found.
"C:\Program Files\Amazon Browser Bar" => not found.
"C:\Users\Jesus\AppData\Local\funmoods-speeddial.crx" => not found.
"C:\Users\Jesus\AppData\Local\funmoods.crx" => not found.
C:\ProgramData\taskhost.exe => moved successfully
C:\ProgramData\U7dTFLnn96AD.dll => moved successfully
C:\Users\Jesus\g2ax_customer_downloadhelper_win32_x86.exe => moved successfully
C:\Users\Jesus\jxpiinstall.exe => moved successfully
C:\Users\Public\AlexaNSISPlugin.5284.dll => moved successfully
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{035FBE31-3755-450A-A775-5E6BBD43D344}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{349D0BEB-C7A2-4818-896D-721349FB957F}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{3A2FF062-1CC7-4F01-B758-75218E9F653D}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{42866AA5-0088-481E-BE59-F526B4E1C21C}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{0A5E59C5-E141-4134-8016-AFCED8DCE745}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{18195900-F78C-46FE-A55A-5A491C6F7230}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{7343C339-68AC-4BC0-964C-527FAF60BEBA}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{755185E0-4607-4122-BB8E-561D14049AC7}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{781629FE-B830-46BF-9C41-C20729D6DEB7}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{7E91D484-1252-42B1-9D0F-667777CD20F0}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{7F9521A5-6267-4619-A9D2-B2C83945FA74}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{83C57A5A-174A-4FF2-9792-02B761DE4C43}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{87F1309E-CBFB-43D3-8A74-A0307875B2B3}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{997A6674-4032-48E8-B1F9-7E6AA6F19312}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{AA8DF900-A3B9-4231-8C2C-0CA3B95E6395}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{AEDBA87C-4A7A-4C4C-8420-8A5E90AF2356}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{B2EBB08B-3121-4C7C-974F-0161928A2937}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{B4DE0D49-3670-4D2F-9228-227FCD258C54}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{B5ED906A-3468-4A41-91B7-A77849329B7C}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{B7C3E3E1-E641-4354-BE71-C0FC5D935458}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{C0CFC164-D12D-440B-AFE8-F673ED340749}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{C44643AF-E3B0-4F0B-92CA-1D86537B6F93}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{D4DA8972-E5CF-45FF-9D8E-F052A9BCDAFD}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{E6F462CC-5075-4637-BC5C-D75DF985DD94}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{E9003BF8-C69B-40BA-A86F-58243B39DCB1}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{EA025CFF-6C5C-44EB-8148-97642749B719}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{EC59A9FF-D43D-49ED-A72A-C84855087BD7}" => key removed successfully.
HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{ece1a2a4-3672-46f1-82a7-d1137212d9dd} => key not found. 
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{ED2430C2-26C8-484C-8C31-CDBDFEAEB8D8}" => key removed successfully.
"HKU\S-1-5-21-11595131-3550647590-3570146784-1001_Classes\CLSID\{FB3A51E2-BBCF-4CE2-9EDA-4118A3D3B828}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{06E425EB-0BEB-44F4-814C-D3B0151D2FA6}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{06E425EB-0BEB-44F4-814C-D3B0151D2FA6}" => key removed successfully.
C:\Windows\System32\Tasks\APSnotifierPP3 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP3" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0987B271-5EBD-4BC1-9D83-FDC05403E7AE}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0987B271-5EBD-4BC1-9D83-FDC05403E7AE}" => key removed successfully.
C:\Windows\System32\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-4 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c18b53c1-d7c3-48f9-96b5-786590d4f08f-4" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0CCF29FD-FA33-4805-A17B-E55F567131B8}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0CCF29FD-FA33-4805-A17B-E55F567131B8}" => key removed successfully.
C:\Windows\System32\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-7 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c18b53c1-d7c3-48f9-96b5-786590d4f08f-7" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{14CD0091-1916-43DE-BE88-82A718A49A39}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{14CD0091-1916-43DE-BE88-82A718A49A39}" => key removed successfully.
C:\Windows\System32\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-5_user => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-5_user" => key removed successfully.
"C:\Program Files\CinPlus-2.5cdTube HDV03.10" => not found.
"C:\Program Files\TheHDvid-Codec V10" => not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1ACCA364-6708-4C42-95BF-E8EB5A485B8D}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1ACCA364-6708-4C42-95BF-E8EB5A485B8D}" => key removed successfully.
C:\Windows\System32\Tasks\BackgroundContainer Startup Task => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BackgroundContainer Startup Task" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1BBA4581-81D0-4964-AB8A-66C3D31D82D6}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1BBA4581-81D0-4964-AB8A-66C3D31D82D6}" => key removed successfully.
C:\Windows\System32\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-1 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-1" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1F5C6582-94E5-4DF4-93BD-84D6F0467BBF}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1F5C6582-94E5-4DF4-93BD-84D6F0467BBF}" => key removed successfully.
C:\Windows\System32\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-3 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c18b53c1-d7c3-48f9-96b5-786590d4f08f-3" => key removed successfully.
"C:\Users\Jesus\AppData\Local\Conduit" => not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{27E62ECB-56C4-4B28-B276-7FDC4331965E}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{27E62ECB-56C4-4B28-B276-7FDC4331965E}" => key removed successfully.
C:\Windows\System32\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-5 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-5" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2B76F051-034B-4D14-8FE9-903815FD9F1B}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2B76F051-034B-4D14-8FE9-903815FD9F1B}" => key removed successfully.
C:\Windows\System32\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-6 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c18b53c1-d7c3-48f9-96b5-786590d4f08f-6" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{33D97B96-6262-40C3-8436-5153BF83A021}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{33D97B96-6262-40C3-8436-5153BF83A021}" => key removed successfully.
C:\Windows\System32\Tasks\HOBS => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HOBS" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{34AB68F6-2658-4BCD-B348-236C49C50E54}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{34AB68F6-2658-4BCD-B348-236C49C50E54}" => key removed successfully.
C:\Windows\System32\Tasks\Desk 365 RunAsStdUser => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Desk 365 RunAsStdUser" => key removed successfully.
"C:\Users\Jesus\AppData\Roaming\HOBS.exe" => not found.
"C:\Program Files\Desk 365" => not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4A7603D4-7988-4D72-AE1C-9FC62227752E}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4A7603D4-7988-4D72-AE1C-9FC62227752E}" => key removed successfully.
C:\Windows\System32\Tasks\SuperLyrics-16-chromeinstaller => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SuperLyrics-16-chromeinstaller" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{504A8E35-584A-43EE-B0F0-90D12BE2318F}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{504A8E35-584A-43EE-B0F0-90D12BE2318F}" => key removed successfully.
C:\Windows\System32\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-1 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c18b53c1-d7c3-48f9-96b5-786590d4f08f-1" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5820F98F-67DD-47F1-80A2-F695BBB94502}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5820F98F-67DD-47F1-80A2-F695BBB94502}" => key removed successfully.
C:\Windows\System32\Tasks\RunAsStdUser Task => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RunAsStdUser Task" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{59487B4D-DAB6-4C1D-AC61-5935D4B7F437}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{59487B4D-DAB6-4C1D-AC61-5935D4B7F437}" => key removed successfully.
C:\Windows\System32\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-5_user => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c18b53c1-d7c3-48f9-96b5-786590d4f08f-5_user" => key removed successfully.
C:\Program Files\SuperLyrics-16 => moved successfully
"C:\Program Files\FREEzeFrog" => not found.
"C:\Program Files\CinPlus-2.5cdTube HDV03.10" => not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{61177B66-66B5-46BA-9C33-4D9E726CA4C2}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{61177B66-66B5-46BA-9C33-4D9E726CA4C2}" => key removed successfully.
C:\Windows\System32\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-11 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c18b53c1-d7c3-48f9-96b5-786590d4f08f-11" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7238DACE-DC11-406B-B80D-D67A3364DA9C}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7238DACE-DC11-406B-B80D-D67A3364DA9C}" => key removed successfully.
C:\Windows\System32\Tasks\SuperLyrics-16-enabler => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SuperLyrics-16-enabler" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{72D320CE-33E0-4902-AB6D-D0575859F970}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{72D320CE-33E0-4902-AB6D-D0575859F970}" => key removed successfully.
C:\Windows\System32\Tasks\ITECXDE => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ITECXDE" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{73B8DE3E-D8BB-4ED3-9DF4-22494571B030}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{73B8DE3E-D8BB-4ED3-9DF4-22494571B030}" => key removed successfully.
C:\Windows\System32\Tasks\SuperLyrics-16-codedownloader => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SuperLyrics-16-codedownloader" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7AF47961-00CD-486D-8954-1FF90DE8A4FD}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7AF47961-00CD-486D-8954-1FF90DE8A4FD}" => key removed successfully.
C:\Windows\System32\Tasks\VisualBee-firefoxinstaller => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\VisualBee-firefoxinstaller" => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7EA70030-548C-4F56-A910-4BF7A04EF845} => key not found. 
C:\Windows\System32\Tasks\EPUpdater => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EPUpdater => key not found. 
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7ED83585-D194-4FB0-9E34-57E6D2B90E50}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7ED83585-D194-4FB0-9E34-57E6D2B90E50}" => key removed successfully.
C:\Windows\System32\Tasks\Go for FilesUpdate => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Go for FilesUpdate" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8080BA93-8396-47B7-A3CD-492F16B1B087}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8080BA93-8396-47B7-A3CD-492F16B1B087}" => key removed successfully.
C:\Windows\System32\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-2 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-2" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8AF94FA0-2EC1-40ED-BD41-774A6509A38D}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8AF94FA0-2EC1-40ED-BD41-774A6509A38D}" => key removed successfully.
C:\Windows\System32\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-5 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c18b53c1-d7c3-48f9-96b5-786590d4f08f-5" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8C7C1340-440C-4937-B801-FE78A5FDF832}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8C7C1340-440C-4937-B801-FE78A5FDF832}" => key removed successfully.
C:\Windows\System32\Tasks\gameo_update => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\gameo_update" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8CA8DD93-8E5B-466D-89E2-468109F8BF40}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8CA8DD93-8E5B-466D-89E2-468109F8BF40}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Optimizer Pro Schedule" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8D880592-9061-4FA0-8024-2259F319FC29}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8D880592-9061-4FA0-8024-2259F319FC29}" => key removed successfully.
C:\Windows\System32\Tasks\577db44d-d9d7-469f-92dc-7b0e6d777170 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\577db44d-d9d7-469f-92dc-7b0e6d777170" => key removed successfully.
C:\Users\Jesus\AppData\Roaming\BabSolution => moved successfully
C:\Users\Jesus\AppData\Roaming\Gameo => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B79089EE-5784-459F-B2DF-B44F4CBE6141}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B79089EE-5784-459F-B2DF-B44F4CBE6141}" => key removed successfully.
C:\Windows\System32\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-6 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-6" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B8F5C814-D9C8-47D8-8631-4B249A089D4D}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B8F5C814-D9C8-47D8-8631-4B249A089D4D}" => key removed successfully.
C:\Windows\System32\Tasks\APSnotifierPP2 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP2" => key removed successfully.
C:\Program Files\AnyProtectEx => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CFD7D0C9-2845-4243-AF58-8B53738C0946}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CFD7D0C9-2845-4243-AF58-8B53738C0946}" => key removed successfully.
C:\Windows\System32\Tasks\FreeFileViewerUpdateChecker => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\FreeFileViewerUpdateChecker" => key removed successfully.
C:\Program Files\FreeFileViewer => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D93F69E5-0EA4-4ECA-B397-32FE2736858B}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D93F69E5-0EA4-4ECA-B397-32FE2736858B}" => key removed successfully.
C:\Windows\System32\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-4 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-4" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E2C5D82A-0857-4537-8C08-329E4D82D66C}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E2C5D82A-0857-4537-8C08-329E4D82D66C}" => key removed successfully.
C:\Windows\System32\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-7 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-7" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F008B7E9-EDC2-40EB-98DF-1049F51CD82A}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F008B7E9-EDC2-40EB-98DF-1049F51CD82A}" => key removed successfully.
C:\Windows\System32\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-3 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-3" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F6F993D8-AEAA-48E9-9012-AF7742E1ED11}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F6F993D8-AEAA-48E9-9012-AF7742E1ED11}" => key removed successfully.
C:\Windows\System32\Tasks\VisualBee-chromeinstaller => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\VisualBee-chromeinstaller" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F86B1A45-ED06-4870-B83B-BED3B8169232}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F86B1A45-ED06-4870-B83B-BED3B8169232}" => key removed successfully.
C:\Windows\System32\Tasks\APSnotifierPP1 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP1" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FA843751-5F22-4B03-B4F7-BBF0F65D6E3A}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FA843751-5F22-4B03-B4F7-BBF0F65D6E3A}" => key removed successfully.
C:\Windows\System32\Tasks\51188396-c59e-46c6-b628-c324c540b86b => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\51188396-c59e-46c6-b628-c324c540b86b" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FAE73402-DF76-428B-AE8D-C87661CB6341}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FAE73402-DF76-428B-AE8D-C87661CB6341}" => key removed successfully.
C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_IType_exe => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft_Hardware_Launch_IType_exe" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FE7C4814-38BD-4C08-9A39-742230969083}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FE7C4814-38BD-4C08-9A39-742230969083}" => key removed successfully.
C:\Windows\System32\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-11 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-11" => key removed successfully.
C:\Windows\Tasks\51188396-c59e-46c6-b628-c324c540b86b.job => not found.
C:\Windows\Tasks\577db44d-d9d7-469f-92dc-7b0e6d777170.job => not found.
C:\Windows\Tasks\APSnotifierPP1.job => moved successfully
C:\Windows\Tasks\APSnotifierPP2.job => moved successfully
C:\Windows\Tasks\APSnotifierPP3.job => moved successfully
C:\Windows\Tasks\ArcadeFrontier.job => not found.
C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-1.job => not found.
C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-11.job => not found.
C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-2.job => not found.
C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-3.job => not found.
C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-4.job => not found.
C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-5.job => not found.
C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-5_user.job => not found.
C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-6.job => not found.
C:\Windows\Tasks\b8234d50-54e3-4ecf-b98e-e7ffa8a0c005-7.job => not found.
C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-1.job => not found.
C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-11.job => not found.
C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-2.job => not found.
C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-3.job => not found.
C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-4.job => not found.
C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-5.job => not found.
C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-5_user.job => not found.
C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-6.job => not found.
C:\Windows\Tasks\c18b53c1-d7c3-48f9-96b5-786590d4f08f-7.job => not found.
C:\Windows\Tasks\FreeFileViewerUpdateChecker.job => moved successfully
C:\Windows\Tasks\HOBS.job => not found.
C:\Windows\Tasks\ITECXDE.job => not found.
C:\Windows\Tasks\SuperLyrics-16-chromeinstaller.job => not found.
C:\Windows\Tasks\SuperLyrics-16-codedownloader.job => not found.
C:\Windows\Tasks\SuperLyrics-16-enabler.job => not found.
C:\Windows\Tasks\SuperLyrics-16-firefoxinstaller.job => not found.
C:\Windows\Tasks\SuperLyrics-16-updater.job => not found.
C:\Windows\Tasks\VisualBee-chromeinstaller.job => not found.
C:\Windows\Tasks\VisualBee-firefoxinstaller.job => not found.
C:\ProgramData\TEMP => ":038F4577" ADS removed successfully..
C:\ProgramData\TEMP => ":09708CB7" ADS removed successfully..
C:\ProgramData\TEMP => ":10C8EAEC" ADS removed successfully..
C:\ProgramData\TEMP => ":1CE11B51" ADS removed successfully..
C:\ProgramData\TEMP => ":373E1720" ADS removed successfully..
C:\ProgramData\TEMP => ":390B30B4" ADS removed successfully..
C:\ProgramData\TEMP => ":4E9307D7" ADS removed successfully..
C:\ProgramData\TEMP => ":7AB4D952" ADS removed successfully..
C:\ProgramData\TEMP => ":D1AE9882" ADS removed successfully..
C:\ProgramData\TEMP => ":DAF232F8" ADS removed successfully..
C:\ProgramData\TEMP => ":F2721624" ADS removed successfully..
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C5A050A2-9470-4E93-AEF9-CEF8A551FE8A} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2DEAC7A5-7E87-4E56-BB11-60B1CE54B82A} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B9DABF82-AE07-43F3-AABE-DE5042006D66} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{25537DD3-B6F1-4974-B977-3BC4FEE8CF49} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{49E8B9B5-1691-45A9-9549-B4FF3B3D78AB} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{70072B2D-3E6A-40BB-9840-F90344BF3754} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7241F8E9-E8C5-45C8-BEFB-18238D0FE8C4} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AFC84571-1376-48F9-900F-AEE2B0080393} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AEE9A2CF-54F5-4CA1-9BB8-17E53A214E6A} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A5EF8DA6-1713-4A4D-A379-39D47EE7F124} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9323D896-69FD-4429-B04D-893A95094D35} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7B6C25C3-2690-495A-A184-4E0737268DEA} => value not found.
 
=========  bitsadmin /reset /allusers =========
 
 
BITSADMIN version 3.0 [ 7.5.7600 ]
BITS administration utility.
© Copyright 2000-2006 Microsoft Corp.
 
BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.
 
0 out of 0 jobs canceled.
 
========= End of CMD: =========
 
 
=========  netsh winsock reset catalog =========
 
 
Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.
 
 
========= End of CMD: =========
 
 
=========  ipconfig /flushdns =========
 
 
Windows IP Configuration
 
Successfully flushed the DNS Resolver Cache.
 
========= End of CMD: =========
 
 
=========  netsh winsock reset all =========
 
 
Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.
 
 
========= End of CMD: =========
 
 
=========  netsh int ipv4 reset =========
 
Reseting Global, OK!
Reseting Interface, OK!
Restart the computer to complete this action.
 
 
========= End of CMD: =========
 
 
=========  netsh int ipv6 reset =========
 
There's no user specified settings to be reset.
 
 
========= End of CMD: =========
 
 
========= RemoveProxy: =========
 
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully.
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully.
HKU\S-1-5-21-11595131-3550647590-3570146784-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully.
 
 
========= End of RemoveProxy: =========
 
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
EmptyTemp: => 4.3 GB temporary data Removed.
 
 
The system needed a reboot.
 
==== End of Fixlog 20:08:52 ====

  • 0

#10
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 8,093 posts
Hello,

Can we run a Malwarebytes scan,

Open Malwarebytes and do the following:
  • On the Settings tab > Detection and Protection subtab, Detection Options, tick the box 'Scan for rootkits'.
  • Click on the Scan tab, then click on Scan Now >> . If an update is available, click the Update Now button.
  • A Threat Scan will begin.
  • With some infections, you may see this message box.
  • 'Could not load DDA driver'
  • Click 'Yes' to this message, to allow the driver to load after a restart.
  • Allow the computer to restart. Continue with the rest of these instructions.
  • When the scan is complete, click Apply Actions.
  • wait for the prompt to restart the computer to appear, then click on Yes.


    When the scan is complete, click on 'Cancel'.
  • Click Yes at the next message.
  • Click on the History tab > Application Logs.
  • Double click on the scan log which shows the Date and time of the scan just performed.
  • Click 'Export'.
  • Click 'Text file (*.txt)'
  • In the Save File dialog box which appears, click on Desktop.
  • In the File name: box type a name for your scan log.
  • A message box named 'File Saved' should appear stating "Your file has been
  • successfully exported".
  • Click Ok

    Post that saved log to your next reply.

  • 0

Advertisements


#11
jbj1162

jbj1162

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts

Well first let me say sorry for the delay and thanks for your help now as for the malwarebytes scan I don't see it on desktop so I click on start and do a search and it shows a bunch of them but when I try to open any of them it gets as far as the box that ask me if I want to let Malwarebytes make changes to computer I say yes and it does nothing


  • 0

#12
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 8,093 posts
Did Malwarebytes run a scan, did you see it running ?
  • 0

#13
jbj1162

jbj1162

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts

no it is'nt even set up on computer so I cant just open it and click on settings detection & protection etc etc   when I click on box to install it / set it up  whatever  you want to call it all that happens is box goes away just like when I was trying to install antivirus software 


  • 0

#14
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 8,093 posts
Can we reinstall Malwarebytes, go ahead an try it now.
Get Malwarebytes Here

Let me know how that goes.
  • 0

#15
jbj1162

jbj1162

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts

same thing when I try running as administrator box comes up ask if I wanna let it make changes I say yes and box goes away but nothing happens & if I just double click a box pops up that says run or cancle I click run box goes away nothing happens?


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP