Hello,
please help me in checking my pc situation.
Initially my Avast antivirus showed some dangerous items.
As i usually do, I ran MalwarebytesAntiMalware in safe mode which found (and killed) some malware files.
unfortunately i can't locate the log anymore.
But I still see some strange behaviours on my pc.
I see signs (folder, context menu) of 'Ultrazip' apparently installed, but not showing in "Control panel/programs" so i cant get rid of it.
I followed your instructions and ran a scan with Farbar64, i'll copy down here the logs.
Thank you very much in advance for your help.
Isabella
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:07-11-2015
Ran by Isabella (administrator) on ISABELLA-PC (12-11-2015 00:14:34)
Running from C:\Users\Isabella\Desktop
Loaded Profiles: Isabella (Available Profiles: Isabella)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Italiano (Italia)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AMD) C:\Windows\System32\atieclxx.exe
(SOURCENEXT) C:\Windows\SysWOW64\bgsvcgen.exe
(COMODO Security Solutions) C:\Program Files\COMODO\COMMON\COSService.exe
() C:\Program Files (x86)\Photodex\ProShowGold\scsiaccess.exe
(COMODO Security Solutions) C:\Program Files\COMODO\COMMON\SynchronizationService.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Alcor Micro Corp.) C:\Program Files (x86)\Multimedia Card Reader(9106)\ShwiconXP9106.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Nero AG) C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Google Inc.) C:\Users\Isabella\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Isabella\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Isabella\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Isabella\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Isabella\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Isabella\AppData\Local\Google\Chrome\Application\chrome.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Google Inc.) C:\Users\Isabella\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Isabella\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10060832 2010-02-09] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [497648 2010-07-29] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [StartCCC] => c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-05-17] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [ShwiconXP9106] => C:\Program Files (x86)\Multimedia Card Reader(9106)\ShwiconXP9106.exe [237568 2010-01-27] (Alcor Micro Corp.)
HKLM-x32\...\Run: [NBAgent] => C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe [1234216 2010-04-03] (Nero AG)
HKLM-x32\...\Run: [UnlockerAssistant] => "C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe"
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-05-11] (Avast Software s.r.o.)
HKLM-x32\...\RunOnce: ["C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe"] => "C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe"
HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\Run: [Google Update] => C:\Users\Isabella\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-28] (Google Inc.)
HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\Run: [COS] => C:\Program Files\COMODO\cCloud\cCloud.exe [7195824 2014-09-03] (COMODO Security Solutions)
HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\MountPoints2: {5f2527a0-0faf-11e2-8040-842b2bbcbd6b} - I:\LaunchU3.exe -a
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2015-08-15] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-05-06] (Avast Software s.r.o.)
ShellIconOverlayIdentifiers: [COSDriveIconOverlay] -> {5FDACB62-6B7B-4116-9403-C5E0D3852A57} => C:\Program Files\COMODO\COMMON\ShellExtension.dll [2014-10-07] (C-O-M-O-D-O)
ShellIconOverlayIdentifiers: [COSSyncItemInSyncIconOverlay] -> {68F287EF-DA6D-4595-AF52-90FF6CE52AFE} => C:\Program Files\COMODO\COMMON\ShellExtension.dll [2014-10-07] (C-O-M-O-D-O)
ShellIconOverlayIdentifiers: [COSSyncItemModifiedIconOverlay] -> {AE67D273-7253-4236-B55E-D40055B305D6} => C:\Program Files\COMODO\COMMON\ShellExtension.dll [2014-10-07] (C-O-M-O-D-O)
ShellIconOverlayIdentifiers: [COSSyncItemNewIconOverlay] -> {022F23E9-DA0F-4A86-A728-CAF6150C0B63} => C:\Program Files\COMODO\COMMON\ShellExtension.dll [2014-10-07] (C-O-M-O-D-O)
ShellIconOverlayIdentifiers: [COSSyncItemUnsynchronizedIconOverlay] -> {4D7EE7CF-E7A1-45FE-8F80-3A37574918D7} => C:\Program Files\COMODO\COMMON\ShellExtension.dll [2014-10-07] (C-O-M-O-D-O)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{0E3DAE56-166E-4C0B-98A7-970668D4838F}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKU\S-1-5-21-452585771-3713861376-1813922538-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.findeer.com
HKU\S-1-5-21-452585771-3713861376-1813922538-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/USCON/11
SearchScopes: HKLM -> DefaultScope {1684DDB0-C7DE-4870-A233-C8948CD80246} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {1684DDB0-C7DE-4870-A233-C8948CD80246} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {4BD46720-F58A-4A08-A959-702F4F1B495F} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {4BD46720-F58A-4A08-A959-702F4F1B495F} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-452585771-3713861376-1813922538-1001 -> DefaultScope {4B442977-3486-4FC5-BB28-BBED8B757E12} URL = hxxps://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-452585771-3713861376-1813922538-1001 -> {1684DDB0-C7DE-4870-A233-C8948CD80246} URL =
SearchScopes: HKU\S-1-5-21-452585771-3713861376-1813922538-1001 -> {4B442977-3486-4FC5-BB28-BBED8B757E12} URL = hxxps://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-452585771-3713861376-1813922538-1001 -> {4BD46720-F58A-4A08-A959-702F4F1B495F} URL =
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-04-03] (Avast Software s.r.o.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-01-30] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-04-03] (Avast Software s.r.o.)
BHO-x32: Guida per l'accesso all'account Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-30] (Oracle Corporation)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-13] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-13] ()
FF Plugin-x32: @garmin.com/GpsControl -> C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll [2012-11-02] (GARMIN Corp.)
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-30] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-30] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-05] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-05] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-05] (Microsoft Corporation)
FF Plugin-x32: @photodex.com/PhotodexPresenter -> C:\Program Files (x86)\Photodex Presenter\npPxPlay.dll [2012-03-09] ( )
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-09-27] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-452585771-3713861376-1813922538-1001: @hola.org/FlashPlayer -> C:\Users\Isabella\AppData\Local\Hola\firefox_hola\app\flash\NPSWF32_18_0_0_232.dll [2015-10-14] ()
FF Plugin HKU\S-1-5-21-452585771-3713861376-1813922538-1001: @hola.org/vlc -> C:\Users\Isabella\AppData\Local\Hola\firefox_hola\app\vlc\npvlc.dll [2015-10-14] (Hola)
FF Plugin HKU\S-1-5-21-452585771-3713861376-1813922538-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Isabella\AppData\Local\Google\Update\1.3.28.13\npGoogleUpdate3.dll [No File]
FF Plugin HKU\S-1-5-21-452585771-3713861376-1813922538-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Isabella\AppData\Local\Google\Update\1.3.28.13\npGoogleUpdate3.dll [No File]
FF HKLM-x32\...\Firefox\Extensions: [
[email protected]] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-05-06] [not signed]
Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.it/
CHR StartupUrls: Default -> "hxxp://www.google.it/","hxxp://www.istartsurf.com/?type=hp&ts=1447279696&z=2aa84c04c9bc87ce929ed06g9z9zcm4odmctcz7e4m&from=face&uid=ST31000528AS_9VPAE0H7XXXX9VPAE0H7"
CHR DefaultSearchURL: Default -> hxxp://www.istartsurf.com/web/?type=ds&ts=1447279696&z=2aa84c04c9bc87ce929ed06g9z9zcm4odmctcz7e4m&from=face&uid=ST31000528AS_9VPAE0H7XXXX9VPAE0H7&q={searchTerms}
CHR DefaultSearchKeyword: Default -> istartsurf
CHR Profile: C:\Users\Isabella\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Presentazioni Google) - C:\Users\Isabella\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-10-23]
CHR Extension: (Documenti Google) - C:\Users\Isabella\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-10-23]
CHR Extension: (Google Drive) - C:\Users\Isabella\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-23]
CHR Extension: (YouTube) - C:\Users\Isabella\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-23]
CHR Extension: (Google Search) - C:\Users\Isabella\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-28]
CHR Extension: (Tampermonkey) - C:\Users\Isabella\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2015-10-23]
CHR Extension: (Google Documenti offline) - C:\Users\Isabella\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-10-23]
CHR Extension: (AdBlock) - C:\Users\Isabella\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-10-23]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Isabella\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-10-23]
CHR Extension: (Pagamenti Chrome Web Store) - C:\Users\Isabella\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-10-23]
CHR Extension: (Gmail) - C:\Users\Isabella\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-10-23]
CHR HKU\S-1-5-21-452585771-3713861376-1813922538-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [dhdgffkkebhmkfjojejmpbldmpobfkfo] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [bollbfeakabenkobaocgakdibphdnanj] - <no Path/update_url>
CHR HKLM-x32\...\Chrome\Extension: [bpegkgagfojjbcpkihigfmkojdmmimdf] - <no Path/update_url>
CHR HKLM-x32\...\Chrome\Extension: [ehgldbbpchgpcfagfpfjgoomddhccfgh] - <no Path/update_url>
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-03-18]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-03-18]
CHR HKLM-x32\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - <no Path/update_url>
StartMenuInternet: Google Chrome - Chrome.exe
StartMenuInternet: Google Chrome.Isabella_2 - C:\Users\Isabella_2\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-05-06] (Avast Software s.r.o.)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4034896 2015-05-06] (Avast Software)
R2 bgsvcgen; C:\Windows\SysWOW64\bgsvcgen.exe [139264 2012-01-14] (SOURCENEXT) [File not signed]
R2 COSService.exe; C:\Program Files\COMODO\COMMON\COSService.exe [3550400 2014-10-07] (COMODO Security Solutions)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 ScsiAccess; C:\Program Files (x86)\Photodex\ProShowGold\ScsiAccess.exe [186760 2011-11-08] ()
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 SynchronizationService.exe; C:\Program Files\COMODO\COMMON\SynchronizationService.exe [2575552 2014-10-07] (COMODO Security Solutions)
S2 uzsvc; C:\Program Files (x86)\UltraZip\uzsvc.exe [530624 2015-10-15] ()
S2 uzupd; C:\Program Files (x86)\UltraZip\uzupd.exe [45248 2015-10-15] ()
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
S2 DCE; C:\Program Files\DCE\dce.exe [X]
S3 rpcapd; "%ProgramFiles(x86)%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles(x86)%\WinPcap\rpcapd.ini" [X]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 Apowersoft_AudioDevice; C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [31920 2013-06-02] (Wondershare)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-05-06] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [89944 2015-05-06] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-05-06] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-05-06] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-05-06] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-06-27] (Avast Software s.r.o.)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [137288 2015-05-06] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [272248 2015-05-06] ()
R0 bdisk; C:\Windows\System32\DRIVERS\bdisk.sys [85488 2014-10-07] (COMODO Security Solutions Inc.)
R0 CBUFS; C:\Windows\System32\DRIVERS\CBUFS.sys [230712 2014-10-07] (COMODO Security Solutions Inc.)
R0 cbvd; C:\Windows\System32\DRIVERS\cbvd.sys [677744 2014-10-07] (COMODO Security Solutions Inc.)
R1 cdrbsdrv; C:\Windows\System32\Drivers\cdrbsdrv.sys [38944 2012-01-14] (B.H.A Corporation)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation)
R2 npf; C:\Windows\System32\drivers\npf.sys [35344 2011-02-11] (CACE Technologies, Inc.)
S3 pbfilter; C:\Program Files\PeerBlock\pbfilter.sys [24176 2010-11-06] ()
S3 pwdrvio; C:\Windows\system32\pwdrvio.sys [19032 2012-08-20] ()
S3 pwdspio; C:\Windows\system32\pwdspio.sys [12384 2012-08-20] ()
R0 Reparse; C:\Windows\System32\DRIVERS\CBReparse.sys [674160 2014-10-07] (COMODO Security Solutions Inc.)
R3 stdriver; C:\Windows\System32\DRIVERS\stdriverx64.sys [33488 2013-11-09] ()
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-05-06] (Avast Software)
R3 vdbus; C:\Windows\System32\DRIVERS\vdbus.sys [826040 2014-10-07] (COMODO Security Solutions Inc.)
S3 Andbus; system32\DRIVERS\lgandbus64.sys [X]
S3 AndDiag; system32\DRIVERS\lganddiag64.sys [X]
S3 AndGps; system32\DRIVERS\lgandgps64.sys [X]
S3 ANDModem; system32\DRIVERS\lgandmodem64.sys [X]
S3 androidusb; System32\Drivers\lgandadb.sys [X]
S3 Lavasoft Kernexplorer; \??\C:\Program Files (x86)\Lavasoft\Ad-Aware\KernExplorer64.sys [X]
S0 Lbd; system32\DRIVERS\Lbd.sys [X]
S3 PCDSRVC{1E208CE0-FB7451FF-06020101}_0; \??\c:\program files\dell support center\pcdsrvc_x64.pkms [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-11-12 00:14 - 2015-11-12 00:14 - 00020814 _____ C:\Users\Isabella\Desktop\FRST.txt
2015-11-12 00:14 - 2015-11-12 00:14 - 00000000 ____D C:\FRST
2015-11-12 00:13 - 2015-11-12 00:13 - 02198528 _____ (Farbar) C:\Users\Isabella\Desktop\FRST64.exe
2015-11-11 23:51 - 2015-11-11 23:51 - 00001081 _____ C:\Users\Public\Desktop\SpywareBlaster.lnk
2015-11-11 23:51 - 2015-11-11 23:51 - 00000000 ____D C:\ProgramData\Licenses
2015-11-11 23:34 - 2015-11-11 23:35 - 00000000 ____D C:\ProgramData\UltraZipTemp
2015-11-11 23:08 - 2015-11-11 23:08 - 00000098 _____ C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
2015-11-11 23:08 - 2015-11-11 23:08 - 00000000 ____D C:\Users\Isabella\AppData\Roaming\cpuminer
2015-11-11 23:07 - 2015-11-11 23:07 - 00003104 _____ C:\Windows\System32\Tasks\Car Browser
2015-11-11 22:36 - 2015-11-11 23:34 - 00000000 ____D C:\ProgramData\UltraZip
2015-11-11 22:35 - 2015-11-11 23:35 - 00000000 ____D C:\Program Files (x86)\UltraZip
2015-11-11 22:35 - 2015-11-11 22:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraZip
2015-11-11 22:35 - 2010-04-30 14:56 - 00001798 _____ C:\Windows\system32\Drivers\etc\hp.bak
2015-11-11 22:33 - 2015-11-11 22:33 - 28849904 _____ C:\Users\Isabella\Downloads\Replay Media Catcher 4.4._Downloader.exe
2015-11-10 20:13 - 2015-11-03 23:10 - 00390344 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-11-10 20:13 - 2015-11-03 22:51 - 00342728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-11-10 20:13 - 2015-10-31 00:46 - 25818624 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-11-10 20:13 - 2015-10-31 00:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-11-10 20:13 - 2015-10-31 00:40 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-11-10 20:13 - 2015-10-31 00:25 - 02886656 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-11-10 20:13 - 2015-10-31 00:25 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-11-10 20:13 - 2015-10-31 00:25 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-11-10 20:13 - 2015-10-31 00:25 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-11-10 20:13 - 2015-10-31 00:24 - 00585728 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-11-10 20:13 - 2015-10-31 00:24 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-11-10 20:13 - 2015-10-31 00:17 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-11-10 20:13 - 2015-10-31 00:16 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-11-10 20:13 - 2015-10-31 00:13 - 00616960 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-11-10 20:13 - 2015-10-31 00:12 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-11-10 20:13 - 2015-10-31 00:12 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-11-10 20:13 - 2015-10-31 00:11 - 05990912 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-11-10 20:13 - 2015-10-31 00:11 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-11-10 20:13 - 2015-10-31 00:11 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-11-10 20:13 - 2015-10-31 00:04 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-11-10 20:13 - 2015-10-31 00:01 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-11-10 20:13 - 2015-10-30 23:58 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-11-10 20:13 - 2015-10-30 23:53 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-11-10 20:13 - 2015-10-30 23:52 - 20331520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-11-10 20:13 - 2015-10-30 23:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-11-10 20:13 - 2015-10-30 23:49 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-11-10 20:13 - 2015-10-30 23:47 - 00504832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-11-10 20:13 - 2015-10-30 23:46 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-11-10 20:13 - 2015-10-30 23:46 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-11-10 20:13 - 2015-10-30 23:45 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-11-10 20:13 - 2015-10-30 23:45 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-11-10 20:13 - 2015-10-30 23:44 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-11-10 20:13 - 2015-10-30 23:44 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-11-10 20:13 - 2015-10-30 23:42 - 02279936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-11-10 20:13 - 2015-10-30 23:39 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-11-10 20:13 - 2015-10-30 23:39 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-11-10 20:13 - 2015-10-30 23:37 - 00480256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-11-10 20:13 - 2015-10-30 23:36 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-11-10 20:13 - 2015-10-30 23:36 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-11-10 20:13 - 2015-10-30 23:36 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-11-10 20:13 - 2015-10-30 23:34 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-11-10 20:13 - 2015-10-30 23:32 - 00720896 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-11-10 20:13 - 2015-10-30 23:31 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-11-10 20:13 - 2015-10-30 23:29 - 02126336 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-11-10 20:13 - 2015-10-30 23:29 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-11-10 20:13 - 2015-10-30 23:28 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-11-10 20:13 - 2015-10-30 23:23 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-11-10 20:13 - 2015-10-30 23:22 - 14457856 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-11-10 20:13 - 2015-10-30 23:21 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-11-10 20:13 - 2015-10-30 23:19 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-11-10 20:13 - 2015-10-30 23:18 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-11-10 20:13 - 2015-10-30 23:17 - 02487808 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-11-10 20:13 - 2015-10-30 23:17 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2015-11-10 20:13 - 2015-10-30 23:16 - 04527616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-11-10 20:13 - 2015-10-30 23:11 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-11-10 20:13 - 2015-10-30 23:10 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-11-10 20:13 - 2015-10-30 23:09 - 12854272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-11-10 20:13 - 2015-10-30 23:09 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-11-10 20:13 - 2015-10-30 23:09 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-11-10 20:13 - 2015-10-30 23:04 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-11-10 20:13 - 2015-10-30 22:53 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-11-10 20:13 - 2015-10-30 22:51 - 02011136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-11-10 20:13 - 2015-10-30 22:48 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-11-10 20:13 - 2015-10-30 22:46 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-11-10 20:13 - 2015-10-20 19:42 - 03168768 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-11-10 20:13 - 2015-10-20 19:42 - 02608128 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-11-10 20:13 - 2015-10-20 19:42 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-11-10 20:13 - 2015-10-20 19:42 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-11-10 20:13 - 2015-10-20 19:42 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-11-10 20:13 - 2015-10-20 19:42 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-11-10 20:13 - 2015-10-20 19:42 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-11-10 20:13 - 2015-10-20 19:41 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-11-10 20:13 - 2015-10-20 19:41 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-11-10 20:13 - 2015-10-20 19:41 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-11-10 20:13 - 2015-10-20 19:41 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-11-10 20:13 - 2015-10-20 18:46 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-11-10 20:13 - 2015-10-20 18:46 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-11-10 20:13 - 2015-10-20 18:46 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-11-10 20:13 - 2015-10-20 18:46 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-11-10 20:13 - 2015-10-20 18:45 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-11-10 20:12 - 2015-10-20 02:12 - 05570496 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-11-10 20:12 - 2015-10-20 02:05 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-11-10 20:12 - 2015-10-20 02:05 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-11-10 20:12 - 2015-10-20 01:45 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-11-10 20:11 - 2015-10-20 02:12 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-11-10 20:11 - 2015-10-20 02:12 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-11-10 20:11 - 2015-10-20 02:09 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-11-10 20:11 - 2015-10-20 02:06 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-11-10 20:11 - 2015-10-20 02:06 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-11-10 20:11 - 2015-10-20 02:06 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-11-10 20:11 - 2015-10-20 02:06 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-11-10 20:11 - 2015-10-20 02:05 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-11-10 20:11 - 2015-10-20 02:05 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-11-10 20:11 - 2015-10-20 02:05 - 01164800 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-11-10 20:11 - 2015-10-20 02:05 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-11-10 20:11 - 2015-10-20 02:05 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-11-10 20:11 - 2015-10-20 02:05 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-11-10 20:11 - 2015-10-20 02:05 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-11-10 20:11 - 2015-10-20 02:05 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-11-10 20:11 - 2015-10-20 02:05 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-11-10 20:11 - 2015-10-20 02:05 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-11-10 20:11 - 2015-10-20 02:05 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-11-10 20:11 - 2015-10-20 02:05 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-11-10 20:11 - 2015-10-20 02:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-11-10 20:11 - 2015-10-20 02:05 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-11-10 20:11 - 2015-10-20 02:05 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-11-10 20:11 - 2015-10-20 02:05 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-11-10 20:11 - 2015-10-20 02:05 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-11-10 20:11 - 2015-10-20 02:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-11-10 20:11 - 2015-10-20 02:05 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-11-10 20:11 - 2015-10-20 02:04 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-11-10 20:11 - 2015-10-20 02:04 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-11-10 20:11 - 2015-10-20 02:04 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-11-10 20:11 - 2015-10-20 02:00 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-11-10 20:11 - 2015-10-20 01:59 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:52 - 03991488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-11-10 20:11 - 2015-10-20 01:52 - 03935680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-11-10 20:11 - 2015-10-20 01:48 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-11-10 20:11 - 2015-10-20 01:45 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-11-10 20:11 - 2015-10-20 01:45 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-11-10 20:11 - 2015-10-20 01:45 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-11-10 20:11 - 2015-10-20 01:45 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-11-10 20:11 - 2015-10-20 01:45 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-11-10 20:11 - 2015-10-20 01:45 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-11-10 20:11 - 2015-10-20 01:45 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-11-10 20:11 - 2015-10-20 01:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-11-10 20:11 - 2015-10-20 01:45 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-11-10 20:11 - 2015-10-20 01:45 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-11-10 20:11 - 2015-10-20 01:45 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-11-10 20:11 - 2015-10-20 01:44 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-11-10 20:11 - 2015-10-20 01:44 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-11-10 20:11 - 2015-10-20 01:44 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-11-10 20:11 - 2015-10-20 01:44 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-11-10 20:11 - 2015-10-20 01:44 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-11-10 20:11 - 2015-10-20 01:44 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-11-10 20:11 - 2015-10-20 01:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-11-10 20:11 - 2015-10-20 01:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 01:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 00:41 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-11-10 20:11 - 2015-10-20 00:40 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-11-10 20:11 - 2015-10-20 00:40 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-11-10 20:11 - 2015-10-20 00:29 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-11-10 20:11 - 2015-10-20 00:29 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-11-10 20:11 - 2015-10-20 00:27 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 00:27 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 00:27 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-11-10 20:11 - 2015-10-20 00:27 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-11-10 20:11 - 2015-10-17 17:56 - 03211264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-11-10 20:11 - 2015-10-13 17:41 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-11-10 20:11 - 2015-10-13 17:40 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-11-10 20:11 - 2015-10-13 05:57 - 00950720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-11-10 20:11 - 2015-10-01 19:00 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2015-11-10 20:11 - 2015-10-01 19:00 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2015-11-10 20:11 - 2015-10-01 18:50 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll
2015-11-10 20:11 - 2015-09-23 14:15 - 00460776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-11-10 20:11 - 2015-09-23 14:15 - 00299632 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2015-11-10 20:11 - 2015-09-23 14:09 - 00251000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2015-11-09 00:41 - 2015-11-11 23:11 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-11-09 00:40 - 2015-11-09 00:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-11-09 00:40 - 2015-11-09 00:40 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-11-09 00:40 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-11-09 00:40 - 2015-10-05 09:50 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-11-08 11:08 - 2015-11-08 11:08 - 00003104 _____ C:\Users\Isabella\Documents\video (1).htm
2015-11-07 00:38 - 2015-11-07 00:39 - 00000000 ____D C:\Users\Isabella\AppData\Local\Movavi
2015-11-07 00:37 - 2015-11-08 00:47 - 00000000 ____D C:\ProgramData\Movavi
2015-11-07 00:37 - 2015-11-07 00:37 - 00005076 _____ C:\ProgramData\vczcspay.tpu
2015-11-07 00:37 - 2015-11-07 00:37 - 00000016 _____ C:\ProgramData\mntemp
2015-10-23 22:41 - 2015-11-11 23:33 - 00031272 _____ C:\Windows\PFRO.log
2015-10-23 22:40 - 2015-10-23 22:47 - 00000408 _____ C:\Users\Isabella\AppData\Roaming\CamShapes.ini
2015-10-23 22:40 - 2015-10-23 22:47 - 00000408 _____ C:\Users\Isabella\AppData\Roaming\CamLayout.ini
2015-10-23 22:40 - 2015-10-23 22:47 - 00000096 _____ C:\Users\Isabella\AppData\Roaming\Camdata.ini
2015-10-23 22:35 - 2015-10-23 22:47 - 00004547 _____ C:\Users\Isabella\AppData\Roaming\CamStudio.cfg
2015-10-23 22:23 - 2015-10-23 22:28 - 00000000 ____D C:\Users\Isabella\AppData\Roaming\Opera Software
2015-10-23 22:23 - 2015-10-23 22:28 - 00000000 ____D C:\Users\Isabella\AppData\Local\Opera Software
2015-10-23 22:21 - 2015-10-23 22:21 - 00003164 _____ C:\Windows\System32\Tasks\{1E2CF09C-610E-441B-94D6-B12CC0E35751}
2015-10-23 22:19 - 2015-10-23 22:19 - 00003266 _____ C:\Windows\System32\Tasks\Opera N Sunday
2015-10-23 22:19 - 2015-10-23 22:19 - 00003266 _____ C:\Windows\System32\Tasks\Opera N Saturday
2015-10-23 22:19 - 2015-10-23 22:19 - 00000000 ____D C:\Users\Isabella\AppData\Roaming\Shortcut
2015-10-23 22:18 - 2015-10-23 22:47 - 00000000 ____D C:\Program Files\CamStudio 2.7
2015-10-23 22:18 - 2015-10-23 22:45 - 00000096 _____ C:\Users\Isabella\AppData\Roaming\version2.xml
2015-10-21 22:58 - 2015-10-21 22:58 - 00032305 _____ C:\Users\Isabella\Desktop\TBzSYIbS.jpeg
2015-10-21 22:46 - 2015-10-21 22:54 - 00001649 _____ C:\Users\Isabella\Desktop\DVD-57.txt
2015-10-17 12:47 - 2015-11-01 00:32 - 00001267 _____ C:\Users\Isabella\Desktop\BA TOUR.txt
2015-10-14 18:51 - 2015-10-14 18:59 - 00000000 ____D C:\Users\Isabella\AppData\Roaming\Hola
2015-10-14 18:51 - 2015-10-14 18:51 - 00000000 ____D C:\Users\Isabella\AppData\Local\Hola
2015-10-14 18:50 - 2015-10-14 18:52 - 00000000 ____D C:\Program Files\Hola
2015-10-13 18:30 - 2015-08-06 19:04 - 14176768 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-10-13 18:30 - 2015-08-06 19:03 - 01866752 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2015-10-13 18:30 - 2015-08-06 18:44 - 12875776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-10-13 18:30 - 2015-08-06 18:44 - 01498624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2015-10-13 18:28 - 2015-10-01 19:06 - 00692672 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-10-13 18:28 - 2015-10-01 19:04 - 00616360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-10-13 18:28 - 2015-10-01 19:00 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-10-13 18:28 - 2015-10-01 19:00 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-10-13 18:28 - 2015-10-01 19:00 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-10-13 18:28 - 2015-10-01 19:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-10-13 18:28 - 2015-10-01 19:00 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-10-13 18:28 - 2015-10-01 18:50 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-10-13 18:28 - 2015-10-01 18:00 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-10-13 01:29 - 2015-10-13 01:29 - 00875720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll
2015-10-13 01:22 - 2015-10-13 01:22 - 00869568 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-11-11 23:52 - 2011-01-19 00:32 - 00000000 ____D C:\ProgramData\TEMP
2015-11-11 23:51 - 2011-01-19 00:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpywareBlaster
2015-11-11 23:51 - 2011-01-19 00:32 - 00000000 ____D C:\Program Files (x86)\SpywareBlaster
2015-11-11 23:43 - 2009-07-14 05:45 - 00014240 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-11-11 23:43 - 2009-07-14 05:45 - 00014240 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-11-11 23:41 - 2009-07-14 06:10 - 01118507 _____ C:\Windows\WindowsUpdate.log
2015-11-11 23:34 - 2011-01-17 22:58 - 00001355 _____ C:\Users\Isabella\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-11-11 23:34 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-11-11 23:33 - 2015-08-16 13:00 - 00005894 _____ C:\Windows\setupact.log
2015-11-11 23:33 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\TAPI
2015-11-11 23:31 - 2015-02-20 23:55 - 00000655 _____ C:\Users\Public\Desktop\cCloud.lnk
2015-11-11 23:31 - 2015-02-20 23:53 - 00000793 _____ C:\Users\Public\Desktop\COMODO BackUp.lnk
2015-11-11 23:31 - 2015-01-09 00:42 - 00002429 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-11-11 23:31 - 2015-01-09 00:42 - 00002015 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk
2015-11-11 23:31 - 2014-12-01 20:31 - 00001964 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2015-11-11 23:31 - 2014-08-06 23:37 - 00002634 _____ C:\Users\Public\Desktop\Skype.lnk
2015-11-11 23:31 - 2013-11-09 22:37 - 00001160 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SoundTap Streaming Audio Recorder.lnk
2015-11-11 23:31 - 2013-11-09 22:37 - 00001154 _____ C:\Users\Public\Desktop\SoundTap Streaming Audio Recorder.lnk
2015-11-11 23:31 - 2013-11-09 22:28 - 00001152 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RecordPad Sound Recorder.lnk
2015-11-11 23:31 - 2013-11-09 22:28 - 00001146 _____ C:\Users\Public\Desktop\RecordPad Sound Recorder.lnk
2015-11-11 23:31 - 2013-09-14 22:27 - 00001364 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
2015-11-11 23:31 - 2013-09-14 22:27 - 00001295 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
2015-11-11 23:31 - 2013-03-10 22:52 - 00000975 _____ C:\Users\Public\Desktop\Mp3tag.lnk
2015-11-11 23:31 - 2013-01-16 22:57 - 00000944 _____ C:\Users\Public\Desktop\WinMerge.lnk
2015-11-11 23:31 - 2012-12-11 19:53 - 00001127 _____ C:\Users\Public\Desktop\PhotoSì MyComposer.lnk
2015-11-11 23:31 - 2012-11-25 20:31 - 00001292 _____ C:\Users\Public\Desktop\MiniTool Partition Wizard.lnk
2015-11-11 23:31 - 2012-11-02 22:53 - 00001062 _____ C:\Users\Public\Desktop\VLC media player.lnk
2015-11-11 23:31 - 2012-07-25 23:12 - 00001698 _____ C:\Users\Public\Desktop\Recuva.lnk
2015-11-11 23:31 - 2012-04-06 19:28 - 00002020 _____ C:\Users\Public\Desktop\Replay Converter.lnk
2015-11-11 23:31 - 2012-02-04 12:30 - 00001098 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-11-11 23:31 - 2012-01-18 22:17 - 00000862 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-11-11 23:31 - 2011-11-08 21:17 - 00002084 _____ C:\Users\Public\Desktop\ProShow Gold.lnk
2015-11-11 23:31 - 2011-08-04 00:05 - 00002088 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
2015-11-11 23:31 - 2011-03-12 00:21 - 00001109 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS5 (64 Bit).lnk
2015-11-11 23:31 - 2011-03-12 00:20 - 00001252 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Device Central CS5.lnk
2015-11-11 23:31 - 2011-03-12 00:20 - 00001159 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS5.lnk
2015-11-11 23:31 - 2011-03-12 00:19 - 00001509 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS5.lnk
2015-11-11 23:31 - 2011-03-12 00:19 - 00001343 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS5.lnk
2015-11-11 23:31 - 2011-03-01 22:23 - 00002001 _____ C:\Users\Public\Desktop\Mozilla Thunderbird.lnk
2015-11-11 23:31 - 2011-01-25 23:11 - 00002971 _____ C:\Users\Public\Desktop\Nero StartSmart 10.lnk
2015-11-11 23:31 - 2011-01-25 23:10 - 00002919 _____ C:\Users\Public\Desktop\Nero Vision 10.lnk
2015-11-11 23:31 - 2011-01-25 23:08 - 00003015 _____ C:\Users\Public\Desktop\Nero BackItUp 10.lnk
2015-11-11 23:31 - 2011-01-25 23:08 - 00002961 _____ C:\Users\Public\Desktop\Nero Burning ROM 10.lnk
2015-11-11 23:31 - 2011-01-19 22:18 - 00000991 _____ C:\Users\Public\Desktop\eMule.lnk
2015-11-11 23:31 - 2011-01-17 22:55 - 00001963 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guida in linea Dell.lnk
2015-11-11 23:31 - 2011-01-08 22:30 - 00001333 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2015-11-11 23:31 - 2011-01-08 22:30 - 00001314 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2015-11-11 23:31 - 2009-07-14 05:57 - 00001511 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-11-11 23:31 - 2009-07-14 05:57 - 00001340 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk
2015-11-11 23:31 - 2009-07-14 05:57 - 00001292 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk
2015-11-11 23:31 - 2009-07-14 05:57 - 00001234 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk
2015-11-11 23:31 - 2009-07-14 05:54 - 00001198 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk
2015-11-11 23:30 - 2013-12-21 16:09 - 00000841 _____ C:\Users\Isabella\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2015-11-11 23:30 - 2009-07-14 06:01 - 00001218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk
2015-11-11 23:30 - 2009-07-14 05:49 - 00001246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk
2015-11-11 23:29 - 2015-09-20 13:30 - 00001897 _____ C:\Users\Isabella\Desktop\AVStoDVD.lnk
2015-11-11 23:29 - 2015-08-15 12:48 - 00001240 _____ C:\Users\Isabella\Desktop\Windows Update.lnk
2015-11-11 23:29 - 2014-05-03 12:41 - 00013619 _____ C:\Users\Isabella\Desktop\SCR.lnk
2015-11-11 23:29 - 2014-03-01 22:59 - 00002302 _____ C:\Users\Isabella\Desktop\TMPGEnc Authoring Works 4.lnk
2015-11-11 23:29 - 2013-12-21 16:09 - 00000861 _____ C:\Users\Isabella\Desktop\µTorrent.lnk
2015-11-11 23:29 - 2013-06-10 22:09 - 00001000 _____ C:\Users\Isabella\Desktop\SSC Service Utility.lnk
2015-11-11 23:29 - 2013-01-20 13:54 - 00001916 _____ C:\Users\Isabella\Desktop\DVD Flick.lnk
2015-11-11 23:29 - 2012-10-20 15:09 - 00000985 _____ C:\Users\Isabella\Desktop\DVD Shrink 3.2.lnk
2015-11-11 23:29 - 2012-07-25 22:58 - 00001472 _____ C:\Users\Isabella\Desktop\DiskDigger.lnk
2015-11-11 23:29 - 2012-06-16 09:42 - 00001782 _____ C:\Users\Isabella\Desktop\PeerBlock.lnk
2015-11-11 23:29 - 2011-10-07 16:13 - 00002462 _____ C:\Users\Isabella\Desktop\Opzioni di stampa.lnk
2015-11-11 23:29 - 2011-09-30 22:35 - 00002250 _____ C:\Users\Isabella\Desktop\HiDownload Platinum.lnk
2015-11-11 23:29 - 2011-09-17 23:16 - 00001655 _____ C:\Users\Isabella\Desktop\DirectoryListPrintPro.lnk
2015-11-11 23:29 - 2011-06-09 22:04 - 00001224 _____ C:\Users\Isabella\Desktop\Paint.lnk
2015-11-11 23:29 - 2011-06-05 22:01 - 00001191 _____ C:\Users\Isabella\Desktop\FileZilla.lnk
2015-11-11 23:29 - 2011-05-15 14:56 - 00002503 _____ C:\Users\Isabella\Desktop\Google Chrome.lnk
2015-11-11 23:29 - 2011-03-12 01:00 - 00001364 _____ C:\Users\Isabella\Desktop\Foto Windows Live.lnk
2015-11-11 23:29 - 2011-03-12 00:27 - 00001721 _____ C:\Users\Isabella\Desktop\Photoshop.lnk
2015-11-11 23:29 - 2011-03-09 22:26 - 00001902 _____ C:\Users\Isabella\Desktop\Epson Stylus D68 Series (M).lnk
2015-11-11 23:29 - 2011-03-07 20:48 - 00000916 _____ C:\Users\Isabella\Desktop\Bulk Rename Utility.lnk
2015-11-11 23:29 - 2011-03-07 19:25 - 00001435 _____ C:\Users\Isabella\Desktop\FileTypesMan.lnk
2015-11-11 23:29 - 2011-03-06 23:44 - 00003015 _____ C:\Users\Isabella\Desktop\Nero CoverDesigner.lnk
2015-11-11 23:29 - 2011-02-26 15:19 - 00001220 _____ C:\Users\Isabella\Desktop\OpenOffice.org 3.3.lnk
2015-11-11 23:29 - 2011-02-14 23:28 - 00001439 _____ C:\Users\Isabella\Desktop\Windows Defender.lnk
2015-11-11 23:29 - 2011-01-20 23:57 - 00001069 _____ C:\Users\Isabella\Desktop\PFPortChecker.lnk
2015-11-11 23:29 - 2011-01-19 00:52 - 00000945 _____ C:\Users\Isabella\Desktop\AceMoney.lnk
2015-11-11 23:29 - 2011-01-19 00:31 - 00000661 _____ C:\Users\Isabella\Desktop\TEMP.lnk
2015-11-11 23:29 - 2011-01-18 00:26 - 00001113 _____ C:\Users\Isabella\Desktop\Dell Getting Started Guide.lnk
2015-11-11 23:11 - 2012-01-07 14:23 - 00533504 ___SH C:\Users\Isabella\Desktop\Thumbs.db
2015-11-11 23:02 - 2012-01-21 14:31 - 00000000 ____D C:\Users\Isabella\Desktop\LONDON MIX PIX
2015-11-11 22:34 - 2011-02-01 23:29 - 00001178 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-452585771-3713861376-1813922538-1003UA.job
2015-11-11 21:44 - 2009-07-14 11:53 - 00741386 _____ C:\Windows\system32\perfh010.dat
2015-11-11 21:44 - 2009-07-14 11:53 - 00147440 _____ C:\Windows\system32\perfc010.dat
2015-11-11 21:44 - 2009-07-14 06:13 - 01661180 _____ C:\Windows\system32\PerfStringBackup.INI
2015-11-11 21:41 - 2011-01-17 22:57 - 00000422 _____ C:\Windows\Tasks\SystemToolsDailyTest.job
2015-11-11 21:40 - 2011-01-17 23:14 - 00003488 _____ C:\Windows\System32\Tasks\PCDEventLauncher
2015-11-11 21:40 - 2011-01-17 22:57 - 00003456 _____ C:\Windows\System32\Tasks\SystemToolsDailyTest
2015-11-11 21:28 - 2009-07-14 05:45 - 02278496 _____ C:\Windows\system32\FNTCACHE.DAT
2015-11-11 00:58 - 2015-08-14 22:45 - 00000000 ____D C:\Windows\system32\MRT
2015-11-11 00:51 - 2011-01-21 20:51 - 145617392 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-11-11 00:45 - 2013-09-14 22:23 - 01635066 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2015-11-11 00:43 - 2011-01-09 07:01 - 00000000 ____D C:\Program Files\Windows Journal
2015-11-10 23:34 - 2011-02-01 23:29 - 00001126 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-452585771-3713861376-1813922538-1003Core.job
2015-11-09 21:28 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\LiveKernelReports
2015-11-09 00:41 - 2011-01-19 00:34 - 00000000 ____D C:\Users\Isabella\AppData\Roaming\Malwarebytes
2015-11-09 00:40 - 2011-01-19 00:34 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-11-09 00:40 - 2011-01-19 00:34 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2015-11-09 00:10 - 2011-03-06 01:40 - 00000000 ____D C:\Users\Isabella\Downloads\Software
2015-11-08 15:32 - 2011-01-24 22:46 - 00000000 ____D C:\Program Files\PeerBlock
2015-11-07 10:45 - 2011-01-17 22:55 - 00071296 _____ C:\Users\Isabella\AppData\Local\GDIPFONTCACHEV1.DAT
2015-11-06 23:56 - 2011-04-13 22:10 - 00000000 ____D C:\Users\Isabella\Documents\BA
2015-11-04 23:56 - 2011-03-08 23:28 - 00000000 ____D C:\Users\Isabella\Documents\ISA
2015-11-03 23:06 - 2011-08-06 13:26 - 03419648 ___SH C:\Users\Isabella\Documents\Thumbs.db
2015-11-03 21:58 - 2011-01-17 22:57 - 00000564 _____ C:\Windows\Tasks\PCDoctorBackgroundMonitorTask.job
2015-11-02 20:00 - 2011-01-17 22:57 - 00004274 _____ C:\Windows\System32\Tasks\PCDoctorBackgroundMonitorTask
2015-11-02 08:00 - 2009-07-14 06:08 - 00032556 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-11-01 23:44 - 2015-06-25 17:42 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2015-11-01 00:35 - 2012-12-27 17:15 - 00022016 _____ C:\Users\Isabella\Desktop\lista vinile.xls
2015-10-26 21:57 - 2011-01-19 22:34 - 00000000 ____D C:\Users\Isabella\Downloads\eMule
2015-10-22 20:52 - 2013-12-21 21:59 - 00000000 ____D C:\Users\Isabella\Documents\DVD BA
2015-10-22 20:52 - 2012-01-14 17:22 - 00000000 ____D C:\Users\Isabella\Documents\TMPGEnc Authoring Works 4
2015-10-18 22:46 - 2012-03-04 20:56 - 00000000 ____D C:\Users\Isabella\Documents\ProShowGold
2015-10-18 22:45 - 2012-01-15 18:57 - 00000000 ____D C:\Users\Isabella\Documents\DVD Mk
2015-10-18 10:10 - 2012-11-02 22:53 - 00000000 ____D C:\Users\Isabella\AppData\Roaming\vlc
2015-10-14 18:00 - 2011-01-17 22:54 - 00000000 ____D C:\Users\Isabella
==================== Files in the root of some directories =======
2014-12-19 00:48 - 2014-12-19 00:48 - 0000132 _____ () C:\Users\Isabella\AppData\Roaming\Adobe AIFF Format CS5 Prefs
2011-08-01 20:00 - 2015-01-24 15:58 - 0000132 _____ () C:\Users\Isabella\AppData\Roaming\Adobe GIF Format CS5 Prefs
2011-10-27 23:08 - 2012-12-11 00:01 - 0000132 _____ () C:\Users\Isabella\AppData\Roaming\Adobe PNG Format CS5 Prefs
2015-10-23 22:40 - 2015-10-23 22:47 - 0000096 _____ () C:\Users\Isabella\AppData\Roaming\Camdata.ini
2015-10-23 22:40 - 2015-10-23 22:47 - 0000408 _____ () C:\Users\Isabella\AppData\Roaming\CamLayout.ini
2015-10-23 22:40 - 2015-10-23 22:47 - 0000408 _____ () C:\Users\Isabella\AppData\Roaming\CamShapes.ini
2015-10-23 22:35 - 2015-10-23 22:47 - 0004547 _____ () C:\Users\Isabella\AppData\Roaming\CamStudio.cfg
2011-09-29 23:30 - 2011-09-29 23:24 - 0303104 _____ () C:\Users\Isabella\AppData\Roaming\chrtmp
2011-03-14 23:24 - 2015-07-14 20:50 - 0500068 _____ () C:\Users\Isabella\AppData\Roaming\ReplayConverterLog.log
2013-11-09 22:37 - 2013-11-09 22:37 - 0001167 _____ () C:\Users\Isabella\AppData\Roaming\trace_FilterInstaller.txt
2013-11-09 22:37 - 2013-11-09 22:37 - 0000000 _____ () C:\Users\Isabella\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt
2015-10-23 22:18 - 2015-10-23 22:45 - 0000096 _____ () C:\Users\Isabella\AppData\Roaming\version2.xml
2011-09-29 23:30 - 2011-09-29 23:30 - 0000000 _____ () C:\Users\Isabella\AppData\Roaming\vIqaE.txt
2015-04-01 22:49 - 2015-04-01 22:49 - 0001456 _____ () C:\Users\Isabella\AppData\Local\Adobe Save for Web 12.0 Prefs
2011-01-18 00:58 - 2011-01-18 00:58 - 0000056 ____H () C:\ProgramData\ezsidmv.dat
2015-11-07 00:37 - 2015-11-07 00:37 - 0000016 _____ () C:\ProgramData\mntemp
2015-11-07 00:37 - 2015-11-07 00:37 - 0005076 _____ () C:\ProgramData\vczcspay.tpu
2015-11-11 23:08 - 2015-11-11 23:08 - 0000098 _____ () C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
Files to move or delete:
====================
C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
Some files in TEMP:
====================
C:\Users\Isabella\AppData\Local\Temp\kuzgeeem.dll
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2013-10-31 01:23
==================== End of FRST.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version:07-11-2015
Ran by Isabella (2015-11-12 00:15:29)
Running from C:\Users\Isabella\Desktop
Windows 7 Home Premium Service Pack 1 (X64) (2011-01-17 21:54:44)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-452585771-3713861376-1813922538-500 - Administrator - Disabled)
Guest (S-1-5-21-452585771-3713861376-1813922538-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-452585771-3713861376-1813922538-1007 - Limited - Enabled)
Isabella (S-1-5-21-452585771-3713861376-1813922538-1001 - Administrator - Enabled) => C:\Users\Isabella
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\uTorrent) (Version: 3.3.2.30416 - BitTorrent Inc.)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
AceMoney (HKLM-x32\...\AceMoney_is1) (Version: - MechCAD Software)
Adobe Flash Player 18 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 18.0.0.232 - Adobe Systems Incorporated)
Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.232 - Adobe Systems Incorporated)
Adobe Photoshop CS5 (HKLM-x32\...\{15FEDA5F-141C-4127-8D7E-B962D1742728}) (Version: 12.0 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.13) - Italiano (HKLM-x32\...\{AC76BA86-7AD7-1040-7B44-AB0000000001}) (Version: 11.0.13 - Adobe Systems Incorporated)
ATI Catalyst Control Center (HKLM-x32\...\{055EE59D-217B-43A7-ABFF-507B966405D8}) (Version: 2.010.0517.1741 - )
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.2.2218 - AVAST Software)
AviSynth 2.6 (HKLM-x32\...\AviSynth) (Version: 2.6.0.6 - GPL Public release.)
AVStoDVD 2.8.3 (HKLM-x32\...\AVStoDVD) (Version: 2.8.3 - MrC)
Bulk Rename Utility 2.7.1.2 (HKLM\...\Bulk Rename Utility_is1) (Version: - TGRMN Software)
ccc-core-static (x32 Version: 2010.0517.1742.29870 - ATI) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 3.13 - Piriform)
cCloud (HKLM\...\{CF6C1B06-4F86-4C41-BD21-9E40500006B5}) (Version: 3.0.8.84 - COMODO)
COMODO BackUp (HKLM\...\{B79E9FF2-D932-4FD5-BCAF-4DE6F2FBE521}) (Version: 4.4.1.23 - COMODO)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dell DataSafe Local Backup (HKLM-x32\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 9.4.47 - Dell)
Dell Edoc Viewer (HKLM\...\{8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}) (Version: 1.0.0 - Dell Inc)
Dell Getting Started Guide (HKLM-x32\...\{7DB9F1E5-9ACB-410D-A7DC-7A3D023CE045}) (Version: 1.00.0000 - Dell Inc.)
Dell Support Center (HKLM\...\Dell Support Center) (Version: 3.0.5621.01 - Dell Inc.)
Dell Support Center (Version: 3.0.5621.01 - PC-Doctor, Inc.) Hidden
DVD Flick 1.3.0.7 (HKLM-x32\...\DVD Flick_is1) (Version: 1.3.0.7 - Dennis Meuwissen)
DVD Shrink 3.2 (HKLM-x32\...\DVD Shrink_is1) (Version: - DVD Shrink)
eMule (HKLM-x32\...\eMule) (Version: - )
FileZilla Client 3.5.0 (HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\FileZilla Client) (Version: 3.5.0 - )
Free DVD Creator version 2.0 (HKLM-x32\...\Free DVD Creator (by minidvdsoft)_is1) (Version: 2.0 - www.minidvdsoft.com)
Garmin Communicator Plugin (HKLM-x32\...\{647BB978-2876-487B-9B0E-FDB73F0EA4A2}) (Version: 4.0.4 - Garmin Ltd or its subsidiaries)
Garmin Communicator Plugin x64 (HKLM\...\{237D687E-9E50-4A30-B810-262764CC491B}) (Version: 4.0.4 - Garmin Ltd or its subsidiaries)
Google Chrome (HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\Google Chrome) (Version: 44.0.2403.157 - Google Inc.)
HiDownloadPlatinum (HKLM-x32\...\HiDownload Platinum_is1) (Version: - )
High-Definition Video Playback 10 (x32 Version: 7.0.11400.29.0 - Nero AG) Hidden
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
K-Lite Codec Pack 9.7.0 (Full) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 9.7.0 - )
LAV Filters 0.65 (HKLM-x32\...\lavfilters_is1) (Version: 0.65 - Hendrik Leppkes)
Malwarebytes Anti-Malware versione 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
Microsoft .NET Framework 4 Client Profile - Language Pack (ITA) (HKLM\...\Microsoft .NET Framework 4 Client Profile ITA Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended - Language Pack (ITA) (HKLM\...\Microsoft .NET Framework 4 Extended ITA Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 (HKLM\...\{EE936C7A-EA40-31D5-9B65-8E3E089C3828}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{820B6609-4C97-3A2B-B644-573B06A0F0CC}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
MiniTool Partition Wizard Home Edition 7.6.1 (HKLM-x32\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: - MiniTool Solution Ltd.)
Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Mozilla Thunderbird (7.0.1) (HKLM-x32\...\Mozilla Thunderbird (7.0.1)) (Version: 7.0.1 (it) - Mozilla)
Mp3tag v2.54 (HKLM-x32\...\Mp3tag) (Version: v2.54 - Florian Heidenreich)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Multimedia Card Reader (HKLM-x32\...\InstallShield_{23B4636C-A780-4FEB-B4C9-A2564E9B9F7C}) (Version: 1.6.915.87 - Fitipower)
Multimedia Card Reader (x32 Version: 1.6.915.87 - Fitipower) Hidden
Nero BackItUp 10 (HKLM-x32\...\{68AB6930-5BFF-4FF6-923B-516A91984FE6}) (Version: 5.4.11800.21.100 - Nero AG)
Nero Burning ROM 10 (HKLM-x32\...\{7A5D731D-B4B3-490E-B339-75685712BAAB}) (Version: 10.0.11100.10.100 - Nero AG)
Nero CoverDesigner 10 (HKLM-x32\...\{FCF00A6E-FB58-477A-ABE9-232907105521}) (Version: 5.0.10900.11.100 - Nero AG)
Nero Express 10 (HKLM-x32\...\{70550193-1C22-445C-8FA4-564E155DB1A7}) (Version: 10.0.11000.10.100 - Nero AG)
Nero InfoTool 10 (HKLM-x32\...\{F412B4AF-388C-4FF5-9B2F-33DB1C536953}) (Version: 7.0.10800.8.100 - Nero AG)
Nero Multimedia Suite 10 (HKLM-x32\...\{277C1559-4CF7-44FF-8D07-98AA9C13AABD}) (Version: 10.0.13200 - Nero AG)
Nero Recode 10 (HKLM-x32\...\{8ECEC853-5C3D-4B10-B5C7-FF11FF724807}) (Version: 4.6.10900.4.100 - Nero AG)
Nero RescueAgent 10 (HKLM-x32\...\{E337E787-CF61-4B7B-B84F-509202A54023}) (Version: 3.0.10900.9.100 - Nero AG)
Nero SoundTrax 10 (HKLM-x32\...\{E1EE5339-5D32-458F-BAAB-B19F6301BCE2}) (Version: 4.6.10600.2.100 - Nero AG)
Nero StartSmart 10 (HKLM-x32\...\{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}) (Version: 10.0.11200.12.100 - Nero AG)
Nero Update (HKLM-x32\...\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}) (Version: 1.0.0017 - Nero AG)
Nero Vision 10 (HKLM-x32\...\{9A4297F3-2A51-4ED9-92CA-4BCB8380947E}) (Version: 7.0.11100.8.100 - Nero AG)
Nero WaveEditor 10 (HKLM-x32\...\{EDCDFAD5-DF80-4600-A493-E9DAD6810230}) (Version: 5.6.10600.2.100 - Nero AG)
OpenOffice.org 3.3 (HKLM-x32\...\{2A845A64-3F80-41D7-9F33-6146E56997E6}) (Version: 3.3.9567 - OpenOffice.org)
PDF Settings CS5 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden
PeerBlock 1.1 (r518) (HKLM\...\{015C5B35-B678-451C-9AEE-821E8D69621C}_is1) (Version: 1.1.0.518 - PeerBlock, LLC)
PFPortChecker 1.0.39 (HKLM-x32\...\PFPortChecker) (Version: 1.0.39 - Portforward.com)
Photodex Presenter (HKLM-x32\...\Photodex Presenter) (Version: - Photodex Corporation)
PhotoSì MyComposer 5.0 (HKLM-x32\...\MyComposer_is1) (Version: - )
ProShow Gold (HKLM-x32\...\ProShow Gold) (Version: - Photodex Corporation)
Raccolta foto (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6043 - Realtek Semiconductor Corp.)
RecordPad Sound Recorder (HKLM-x32\...\Recordpad) (Version: 4.32 - NCH Software)
Recuva (HKLM\...\Recuva) (Version: 1.43 - Piriform)
Replay Converter 4 (HKLM-x32\...\Replay Converter 4) (Version: 4.07 - Applian Technologies Inc.)
Skins (x32 Version: 2010.0517.1742.29870 - ATI) Hidden
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
SoundTap Streaming Audio Recorder (HKLM-x32\...\SoundTap) (Version: 2.26 - NCH Software)
SpywareBlaster 5.2 (HKLM-x32\...\SpywareBlaster_is1) (Version: 5.2.0 - BrightFort LLC)
SSC Service Utility v4.30 (HKLM-x32\...\SSC Service Utility_is1) (Version: - SSC Localization Group)
TMPGEnc Authoring Works 4 (HKLM-x32\...\{0AF28D4B-7525-4C85-A89E-10C23D6959AA}) (Version: 4.0.12.42 - Pegasys Inc.)
UnLock Root 2.42 (HKLM-x32\...\UnLock Root) (Version: 2.42 - Unlcokroot)
Visual C++ 2008 x86 Runtime - v9.0.30729.01 (HKLM-x32\...\{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01) (Version: 9.0.30729.01 - Microsoft Corporation)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation)
Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
WinMerge 2.12.4 (HKLM-x32\...\WinMerge_is1) (Version: 2.12.4 - Thingamahoochie Software)
WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies)
WinRAR 4.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.00.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-452585771-3713861376-1813922538-1001_Classes\CLSID\{087B3AE3-E237-4467-B8DB-5A38AB959AC9}\InprocServer32 -> C:\Program Files (x86)\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl_x64.dll (OpenOffice.org)
CustomCLSID: HKU\S-1-5-21-452585771-3713861376-1813922538-1001_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Isabella\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-452585771-3713861376-1813922538-1001_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Isabella\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-452585771-3713861376-1813922538-1001_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Isabella\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-452585771-3713861376-1813922538-1001_Classes\CLSID\{3B092F0C-7696-40E3-A80F-68D74DA84210}\InprocServer32 -> C:\Program Files (x86)\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl_x64.dll (OpenOffice.org)
CustomCLSID: HKU\S-1-5-21-452585771-3713861376-1813922538-1001_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Isabella\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-452585771-3713861376-1813922538-1001_Classes\CLSID\{63542C48-9552-494A-84F7-73AA6A7C99C1}\InprocServer32 -> C:\Program Files (x86)\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl_x64.dll (OpenOffice.org)
CustomCLSID: HKU\S-1-5-21-452585771-3713861376-1813922538-1001_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\Isabella\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-452585771-3713861376-1813922538-1001_Classes\CLSID\{7BC0E710-5703-45BE-A29D-5D46D8B39262}\InprocServer32 -> C:\Program Files (x86)\OpenOffice.org 3\Basis\program\shlxthdl\ooofilt_x64.dll (OpenOffice.org)
CustomCLSID: HKU\S-1-5-21-452585771-3713861376-1813922538-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Isabella\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-452585771-3713861376-1813922538-1001_Classes\CLSID\{AE424E85-F6DF-4910-A6A9-438797986431}\InprocServer32 -> C:\Program Files (x86)\OpenOffice.org 3\Basis\program\shlxthdl\propertyhdl_x64.dll (OpenOffice.org)
CustomCLSID: HKU\S-1-5-21-452585771-3713861376-1813922538-1001_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Isabella\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-452585771-3713861376-1813922538-1001_Classes\CLSID\{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}\InprocServer32 -> C:\Program Files (x86)\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl_x64.dll (OpenOffice.org)
CustomCLSID: HKU\S-1-5-21-452585771-3713861376-1813922538-1001_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Isabella\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-452585771-3713861376-1813922538-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Isabella\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-452585771-3713861376-1813922538-1001_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Isabella\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll => No File
==================== Restore Points =========================
21-09-2015 23:02:03 Windows Update
22-09-2015 23:35:48 Windows Update
26-09-2015 23:59:28 Windows Update
02-10-2015 23:21:49 Windows Update
06-10-2015 22:57:01 Windows Update
10-10-2015 00:09:15 Windows Update
13-10-2015 23:34:38 Windows Update
16-10-2015 23:44:12 Windows Update
21-10-2015 00:32:14 Windows Update
23-10-2015 22:47:53 Removed Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
28-10-2015 00:18:10 Windows Update
03-11-2015 23:24:06 Windows Update
07-11-2015 00:52:45 Windows Update
11-11-2015 00:42:09 Windows Update
12-11-2015 00:01:08 Removed LG United Mobile Drivers.
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2010-04-30 14:56 - 00001798 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 activate.adobe.com
127.0.0.1 practivate.adobe.com
127.0.0.1 ereg.adobe.com
127.0.0.1 activate.wip3.adobe.com
127.0.0.1 wip3.adobe.com
127.0.0.1 3dns-3.adobe.com
127.0.0.1 3dns-2.adobe.com
127.0.0.1 adobe-dns.adobe.com
127.0.0.1 adobe-dns-2.adobe.com
127.0.0.1 adobe-dns-3.adobe.com
127.0.0.1 ereg.wip3.adobe.com
127.0.0.1 activate-sea.adobe.com
127.0.0.1 wwis-dubc1-vip60.adobe.com
127.0.0.1 activate-sjc0.adobe.com
127.0.0.1 adobe.activate.com
127.0.0.1 adobeereg.com
127.0.0.1 www.adobeereg.com
127.0.0.1 wwis-dubc1-vip60.adobe.com
127.0.0.1 125.252.224.90
127.0.0.1 125.252.224.91
127.0.0.1 hl2rcv.adobe.com
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0FF85F1F-0B48-4A03-9CB1-B3001716F11D} - System32\Tasks\{0055C48C-6CE0-4FBC-BCB1-1D538C167031} => C:\Program Files (x86)\QuickTime Alternative\QuickTimePlayer.exe
Task: {152E3138-DD16-46DF-A2B3-D4DC861605EC} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-452585771-3713861376-1813922538-1003Core => C:\Users\Isabella_2\AppData\Local\Google\Update\GoogleUpdate.exe
Task: {1C4001AE-78F1-48F8-91A8-591F172B5D7B} - System32\Tasks\SystemToolsDailyTest => C:\Program Files\Dell Support Center\pcdrcui.exe [2010-08-06] (PC-Doctor, Inc.)
Task: {202E8990-B1D1-499E-92C3-8618EA574BF9} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-13] (Adobe Systems Incorporated)
Task: {29027A17-57AB-41EC-ABB6-E99EDB98AABA} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-452585771-3713861376-1813922538-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe
Task: {2E43457E-FB2C-487C-97D2-3297031BFCDD} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-452585771-3713861376-1813922538-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe
Task: {2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C} - \Microsoft\Windows\WindowsBackup\ConfigNotification -> No File <==== ATTENTION
Task: {36FA847D-641C-470A-8152-5ED6C95D6053} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-452585771-3713861376-1813922538-1001UA => C:\Users\Isabella\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {37100666-9EFD-425F-A364-1678F60B7284} - System32\Tasks\Isabella NBAgent 5 4 => C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe [2010-04-03] (Nero AG)
Task: {3780FB8F-1861-4A41-BC22-1F477E61A0BE} - System32\Tasks\{24D9D7FC-DEAA-48E1-B7A6-781BDE86138A} => pcalua.exe -a "C:\Program Files (x86)\YTDownloader\YTDUninstall.exe"
Task: {3C6A22D5-EC4C-4FC5-9665-3ED00736F567} - \Sense-enabler -> No File <==== ATTENTION
Task: {408DC995-BA9A-4F47-A550-C400BA3C0321} - System32\Tasks\PCDEventLauncher => C:\Program Files\Dell Support Center\sessionchecker.exe [2010-08-06] ()
Task: {45D72423-822D-48A6-B122-9AAA12166FFA} - \Sense-updater -> No File <==== ATTENTION
Task: {4B54824E-3CE0-4916-8234-D74809AE2C94} - \Sense-chromeinstaller -> No File <==== ATTENTION
Task: {50194160-DCA0-4159-A93C-0F0C25335243} - System32\Tasks\{3F88545D-E320-4306-B1DB-4FA12C20818D} => pcalua.exe -a "C:\Program Files (x86)\QuickTime Alternative\QTSystem\quicktime.cpl"
Task: {5048531D-CA04-4815-9C58-EF76A7B3AE4E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated)
Task: {50EC5D7A-155A-40D1-B9D2-ACD8FFFCE2DD} - \amiupdaterExd -> No File <==== ATTENTION
Task: {51F25360-9EF9-4CF9-99F7-BEDF939B47A9} - \Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline -> No File <==== ATTENTION
Task: {59A7EBA1-0C81-4AEF-BAAF-D58F29E585F6} - System32\Tasks\{1E2CF09C-610E-441B-94D6-B12CC0E35751} => pcalua.exe -a C:\Users\Isabella\AppData\Roaming\istartsurf\UninstallManager.exe -c -ptid=cor
Task: {665A3A35-727C-4833-AF5F-42F4236DBE2C} - System32\Tasks\Opera N Saturday => C:\Program Files (x86)\Opera\launcher.exe
Task: {6DBA8A9A-BAC8-42B7-86F3-6DEBEDFA8756} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-452585771-3713861376-1813922538-1003UA => C:\Users\Isabella_2\AppData\Local\Google\Update\GoogleUpdate.exe
Task: {78FDF4EB-FEB0-46D9-A279-A318DDE87ADA} - \Sense-codedownloader -> No File <==== ATTENTION
Task: {7F3AA055-5858-4D67-B4F7-E5E97ED2942A} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-06-18] (Avast Software s.r.o.)
Task: {8E1F9135-098C-4A22-B53E-9AC2A69601F6} - System32\Tasks\{4C191CA7-85E5-486F-81BB-ED8814F75174} => pcalua.exe -a C:\Users\Isabella\Downloads\pxsetup.exe -d C:\Users\Isabella\Downloads
Task: {9642A0C1-4DC5-4ED4-9155-5D5611981889} - System32\Tasks\Car Browser => Rundll32.exe "C:\Users\Isabella\AppData\Local\Car Browser\xBin\CarBrowser.dll",#3 <==== ATTENTION
Task: {AC4E5ACF-89F7-4220-BA21-81EE183975E2} - \Microsoft\Windows\Application Experience\AitAgent -> No File <==== ATTENTION
Task: {BA31A84E-03E3-4049-A272-0AC8586B2A0C} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-452585771-3713861376-1813922538-1001Core => C:\Users\Isabella\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {CB2D1D18-EBB7-4A5B-A652-E0EF3B8360F9} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\Dell Support Center\uaclauncher.exe [2010-08-06] (PC-Doctor, Inc.)
Task: {CEE64558-E1A7-4D9D-80A7-2001912BE5B5} - \Microsoft\Windows\MemoryDiagnostic\CorruptionDetector -> No File <==== ATTENTION
Task: {D7CE3B92-D84F-4E6F-AEBF-5FD5A2AFF80A} - \Sense-firefoxinstaller -> No File <==== ATTENTION
Task: {ED7B7DC2-0344-4905-8A99-80487663631F} - System32\Tasks\Isabella Local Autobackup 5 4 => C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBCore.exe [2010-04-03] (Nero AG)
Task: {F771395E-E640-4E54-94B5-FD56D22B52D3} - System32\Tasks\Opera N Sunday => C:\Program Files (x86)\Opera\launcher.exe
Task: {F9314D00-3E2C-47C0-9D3E-AB0357E816AD} - System32\Tasks\Ad-Aware Update (Weekly) => C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe
Task: {FA2BC0A6-8D4B-458A-85C8-2B8C72487513} - \Microsoft\Windows\MemoryDiagnostic\DecompressionFailureDetector -> No File <==== ATTENTION
Task: {FF8891C6-72FB-4E0C-9DEF-74D13CE09F36} - \Microsoft\Windows\Windows Activation Technologies\ValidationTask -> No File <==== ATTENTION
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-452585771-3713861376-1813922538-1001Core.job => C:\Users\Isabella\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-452585771-3713861376-1813922538-1001UA.job => C:\Users\Isabella\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-452585771-3713861376-1813922538-1003Core.job => C:\Users\Isabella_2\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-452585771-3713861376-1813922538-1003UA.job => C:\Users\Isabella_2\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\PCDoctorBackgroundMonitorTask.job => C:\Program Files\Dell Support Center\uaclauncher.exeo-backgroundmon scripts\defaultscan.xml
Task: C:\Windows\Tasks\SystemToolsDailyTest.job => C:\Program Files\Dell Support Center\pcdrcui.exe
==================== Loaded Modules (Whitelisted) ==============
2011-11-08 21:17 - 2011-11-08 21:17 - 00186760 _____ () C:\Program Files (x86)\Photodex\ProShowGold\ScsiAccess.exe
2015-02-20 23:55 - 2014-09-03 12:53 - 01508032 _____ () C:\Program Files\COMODO\COMMON\LIBEAY32.dll
2015-02-20 23:55 - 2014-09-03 12:53 - 00338112 _____ () C:\Program Files\COMODO\COMMON\SSLEAY32.dll
2008-11-18 12:00 - 2008-11-18 12:00 - 00016384 ____R () c:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll
2010-05-17 17:40 - 2010-05-17 17:40 - 00270336 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2015-05-06 18:36 - 2015-05-06 18:36 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-05-06 18:36 - 2015-05-06 18:36 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-11-11 21:29 - 2015-11-11 21:29 - 02990592 _____ () C:\Program Files\AVAST Software\Avast\defs\15111102\algo.dll
2015-03-18 18:37 - 2015-03-18 18:37 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2015-09-17 18:42 - 2015-09-12 01:22 - 01501512 _____ () C:\Users\Isabella\AppData\Local\Google\Chrome\Application\45.0.2454.93\libglesv2.dll
2015-09-17 18:42 - 2015-09-12 01:22 - 00081224 _____ () C:\Users\Isabella\AppData\Local\Google\Chrome\Application\45.0.2454.93\libegl.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\TEMP:5C321E34
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\hola.org -> hxxp://hola.org
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\008k.com -> 008k.com
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\00hq.com -> 00hq.com
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\1001movie.com -> 1001movie.com
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\1001night.biz -> 1001night.biz
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\100gal.net -> 100gal.net
IE restricted site: HKU\S-1-5-21-452585771-3713861376-1813922538-1001\...\100sexlinks.com -> 100sexlinks.com
There are 5315 more sites.
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-452585771-3713861376-1813922538-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Isabella\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{00938B61-98DB-4266-B462-0C31BCC4257F}] => (Allow) %ProgramFiles% (x86)\eMule\emule.exe
FirewallRules: [{4D47609E-4E71-493E-9ADD-628BF85753B5}] => (Allow) %ProgramFiles% (x86)\eMule\emule.exe
FirewallRules: [TCP Query User{254BA918-FB83-4D6B-9A5A-585BDBCBE763}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{0231C9DA-607B-4110-BAF5-814EC1AB433B}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{9C40CDFE-3446-4E06-AC6D-BD9A37751569}C:\program files (x86)\windows live\messenger\msnmsgr.exe] => (Allow) C:\program files (x86)\windows live\messenger\msnmsgr.exe
FirewallRules: [TCP Query User{65E3B2D3-9C28-4F7D-A397-AF846C460C38}C:\program files (x86)\windows live\contacts\wlcomm.exe] => (Allow) C:\program files (x86)\windows live\contacts\wlcomm.exe
FirewallRules: [TCP Query User{1E80D0ED-B527-4B46-8211-48B491112975}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe
FirewallRules: [UDP Query User{3A77BFFE-2FAB-458F-936C-B1181C3BA7A6}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe
FirewallRules: [TCP Query User{B80262B1-CB62-4ADD-8118-11514A5B66B6}C:\users\isabella\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\isabella\appdata\local\google\chrome\application\chrome.exe
FirewallRules: [UDP Query User{08193B4D-6EAF-4327-AD42-17AF446756C9}C:\users\isabella\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\isabella\appdata\local\google\chrome\application\chrome.exe
FirewallRules: [{66119FCD-9C29-4900-B312-5C84E00516C6}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [TCP Query User{D130388D-384F-4A9B-8088-7C39813915A0}C:\program files (x86)\pfportchecker\pfportchecker.exe] => (Allow) C:\program files (x86)\pfportchecker\pfportchecker.exe
FirewallRules: [UDP Query User{FF9768FF-F823-4E25-927A-B23E9D492EBD}C:\program files (x86)\pfportchecker\pfportchecker.exe] => (Allow) C:\program files (x86)\pfportchecker\pfportchecker.exe
FirewallRules: [{9959186D-9BB1-42A7-AC47-C66B30B7958F}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe
FirewallRules: [{32AF2B1C-E02B-458A-BA2F-C0F08D2EC3D9}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe
FirewallRules: [{61997F70-4BF3-4D5A-8FB5-4D94660C4EB4}] => (Allow) C:\Windows\SysWOW64\msiexec.exe
FirewallRules: [{2B325E6D-553E-4BCE-9ED6-12B3BD704710}] => (Allow) C:\Windows\SysWOW64\msiexec.exe
FirewallRules: [{0A5718CE-395B-49BF-8274-02144E12BD2F}] => (Allow) C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
FirewallRules: [{7DB57D61-33F1-4077-8368-2186C023B97A}] => (Allow) C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
FirewallRules: [TCP Query User{33D3CED8-3510-4B3B-B7E1-1FD5E10BD73D}C:\program files\java\jre6\bin\javaw.exe] => (Allow) C:\program files\java\jre6\bin\javaw.exe
FirewallRules: [UDP Query User{F268D6B6-C47C-4E44-9163-9F3C86B2F5D9}C:\program files\java\jre6\bin\javaw.exe] => (Allow) C:\program files\java\jre6\bin\javaw.exe
FirewallRules: [TCP Query User{6D6358D6-2D1A-45E7-AFE3-8668104C7E99}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe
FirewallRules: [UDP Query User{09294741-2A3E-4C44-B80E-32916D6EC915}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe
FirewallRules: [{8CFF0309-2AB5-4BE7-9865-444D59E01D5A}] => (Allow) LPort=2869
FirewallRules: [{BC1E856F-009E-4540-8225-0E367C673DB0}] => (Allow) LPort=1900
FirewallRules: [TCP Query User{E64C09B2-FBB7-4802-9C8F-962B44EBE9ED}C:\users\isabella\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\isabella\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{7F7B633E-94B3-432C-982B-7542F99305D1}C:\users\isabella\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\isabella\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{041163F6-67A6-4606-B9CE-8A14AE4AA84E}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\Streaming Video Recorder.exe
FirewallRules: [{A121DC86-9610-48F4-8FEC-15F386CCD017}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\Streaming Video Recorder.exe
FirewallRules: [{5F30B678-ED5E-493D-8BDE-DD85DEDFB21C}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftSrv.dll
FirewallRules: [{F469F0B1-1F28-4259-B60D-AB4C7F9C8667}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftSrv.dll
FirewallRules: [{CD60267F-AFE3-49C6-A1E4-EACA0CCB7577}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDump.dll
FirewallRules: [{EB675C49-F9F5-439B-B235-E95E34F07578}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDump.dll
FirewallRules: [{CE50586F-8B29-4C27-8828-00C29C498426}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftAC.dll
FirewallRules: [{8E1F602B-4B47-4CA0-A8C2-04552B8D2FA6}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftAC.dll
FirewallRules: [{FB360BDB-EB9E-4EF2-977A-3691F493AEF7}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftPlayer.dll
FirewallRules: [{24A43595-B981-4480-B9C1-5ACCE9FC0C56}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftPlayer.dll
FirewallRules: [{DF47E231-D33B-4D40-A3C2-716FF903702D}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDownloaderHelp.dll
FirewallRules: [{03FB278C-9BA0-4577-A853-5E0769BBFDFA}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDownloaderHelp.dll
FirewallRules: [TCP Query User{D2D37D81-9F7B-4210-ABE9-5B990EA140B1}C:\users\isabella\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\isabella\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{AC90D0F7-6A25-45D5-A684-A15122A1445A}C:\users\isabella\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\isabella\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{706DBF89-4B3B-4933-813F-7C4ACEF39D5A}] => (Allow) C:\Program Files\COMODO\cCloud\cCloud.exe
FirewallRules: [{65B7E026-0A2B-49C2-A5EE-A3F4C1375B32}] => (Allow) C:\Program Files\COMODO\cCloud\cCloud.exe
FirewallRules: [{1E0BD709-0E32-414E-8600-22444695FBBE}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
FirewallRules: [{C6F7ECE4-529D-4B00-8500-683823237597}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (11/11/2015 11:35:23 PM) (Source: ESENT) (EventID: 215) (User: )
Description: WinMail (2196) WindowsMail0: Il backup è stato interrotto. L'operazione è stata interrotta dal client o la connessione al client non è riuscita.
Error: (11/11/2015 11:08:51 PM) (Source: Microsoft-Windows-RestartManager) (EventID: 10006) (User: Isabella-PC)
Description: Impossibile arrestare l'applicazione o il servizio 'Esplora risorse'.
Error: (11/11/2015 09:40:00 PM) (Source: PC-Doctor) (EventID: 1) (User: )
Description: (5416) Asapi: (21:40:00:5850)(5416) Asapi.State - Error -- 123 Plugin S3LogPusher.dll failed to load.
Error: (11/11/2015 09:40:00 PM) (Source: PC-Doctor) (EventID: 1) (User: )
Description: (5416) Asapi: (21:40:00:5740)(5416) libAsapi.DynamicLoadedPlugin - Error -- 64 Unable to load library 'S3LogPusher.dll'
Error: (11/11/2015 09:31:31 PM) (Source: PC-Doctor) (EventID: 1) (User: )
Description: (3532) Asapi: (21:31:31:6060)(3532) Asapi.State - Error -- 123 Plugin S3LogPusher.dll failed to load.
Error: (11/11/2015 09:31:31 PM) (Source: PC-Doctor) (EventID: 1) (User: )
Description: (3532) Asapi: (21:31:31:3280)(3532) libAsapi.DynamicLoadedPlugin - Error -- 64 Unable to load library 'S3LogPusher.dll'
Error: (11/10/2015 08:10:01 PM) (Source: PC-Doctor) (EventID: 1) (User: )
Description: (1588) Asapi: (20:10:01:1890)(1588) Asapi.State - Error -- 123 Plugin S3LogPusher.dll failed to load.
Error: (11/10/2015 08:10:01 PM) (Source: PC-Doctor) (EventID: 1) (User: )
Description: (1588) Asapi: (20:10:01:1470)(1588) libAsapi.DynamicLoadedPlugin - Error -- 64 Unable to load library 'S3LogPusher.dll'
Error: (11/10/2015 08:00:05 PM) (Source: PC-Doctor) (EventID: 1) (User: )
Description: (2612) Asapi: (20:00:05:2620)(2612) Asapi.State - Error -- 123 Plugin S3LogPusher.dll failed to load.
Error: (11/10/2015 08:00:05 PM) (Source: PC-Doctor) (EventID: 1) (User: )
Description: (2612) Asapi: (20:00:05:2410)(2612) libAsapi.DynamicLoadedPlugin - Error -- 64 Unable to load library 'S3LogPusher.dll'
System errors:
=============
Error: (11/11/2015 11:34:28 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: All'avvio non è stato possibile caricare i seguenti driver:
Lbd
Error: (11/11/2015 11:34:12 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Il servizio Distributed Computing Experiment non è stato avviato per il seguente errore:
%%2
Error: (11/11/2015 11:31:08 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Il servizio Servizio Elenco reti dipende dal servizio Riconoscimento presenza in rete che non è stato avviato per il seguente errore:
%%1068
Error: (11/11/2015 11:31:08 PM) (Source: DCOM) (EventID: 10005) (User: )
Description: 1068fdPHost{D3DCB472-7261-43CE-924B-0704BD730D5F}
Error: (11/11/2015 11:31:08 PM) (Source: DCOM) (EventID: 10005) (User: )
Description: 1068fdPHost{145B4335-FE2A-4927-A040-7C35AD3180EF}
Error: (11/11/2015 11:30:42 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Il servizio Servizio Elenco reti dipende dal servizio Riconoscimento presenza in rete che non è stato avviato per il seguente errore:
%%1068
Error: (11/11/2015 11:12:29 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Il servizio Enumeratore bus IP PnP-X dipende dal servizio Host provider di individuazione funzioni che non è stato avviato per il seguente errore:
%%1068
Error: (11/11/2015 11:11:08 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Il servizio Servizio Elenco reti dipende dal servizio Riconoscimento presenza in rete che non è stato avviato per il seguente errore:
%%1068
Error: (11/11/2015 11:11:08 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Il servizio Servizio Elenco reti dipende dal servizio Riconoscimento presenza in rete che non è stato avviato per il seguente errore:
%%1068
Error: (11/11/2015 11:11:08 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Il servizio Servizio Elenco reti dipende dal servizio Riconoscimento presenza in rete che non è stato avviato per il seguente errore:
%%1068
CodeIntegrity:
===================================
Date: 2011-02-25 23:39:06.485
Description: Impossibile verificare l'integrità dell'immagine del file \Device\HarddiskVolume3\Program Files (x86)\Unlocker\UnlockerDriver5.sys. Impossibile trovare l'hash del file nel sistema. Causa possibile: installazione di un file danneggiato o con firma non corretta in seguito a una modifica hardware o software o malware di origine sconosciuta.
Date: 2011-02-25 23:39:06.477
Description: Impossibile verificare l'integrità dell'immagine del file \Device\HarddiskVolume3\Program Files (x86)\Unlocker\UnlockerDriver5.sys. Impossibile trovare l'hash del file nel sistema. Causa possibile: installazione di un file danneggiato o con firma non corretta in seguito a una modifica hardware o software o malware di origine sconosciuta.
Date: 2011-02-25 23:39:06.470
Description: Impossibile verificare l'integrità dell'immagine del file \Device\HarddiskVolume3\Program Files (x86)\Unlocker\UnlockerDriver5.sys. Impossibile trovare l'hash del file nel sistema. Causa possibile: installazione di un file danneggiato o con firma non corretta in seguito a una modifica hardware o software o malware di origine sconosciuta.
Date: 2011-02-25 23:39:06.462
Description: Impossibile verificare l'integrità dell'immagine del file \Device\HarddiskVolume3\Program Files (x86)\Unlocker\UnlockerDriver5.sys. Impossibile trovare l'hash del file nel sistema. Causa possibile: installazione di un file danneggiato o con firma non corretta in seguito a una modifica hardware o software o malware di origine sconosciuta.
Date: 2011-02-25 23:38:37.325
Description: Impossibile verificare l'integrità dell'immagine del file \Device\HarddiskVolume3\Program Files (x86)\Unlocker\UnlockerDriver5.sys. Impossibile trovare l'hash del file nel sistema. Causa possibile: installazione di un file danneggiato o con firma non corretta in seguito a una modifica hardware o software o malware di origine sconosciuta.
Date: 2011-02-25 23:38:37.318
Description: Impossibile verificare l'integrità dell'immagine del file \Device\HarddiskVolume3\Program Files (x86)\Unlocker\UnlockerDriver5.sys. Impossibile trovare l'hash del file nel sistema. Causa possibile: installazione di un file danneggiato o con firma non corretta in seguito a una modifica hardware o software o malware di origine sconosciuta.
Date: 2011-02-25 23:38:37.310
Description: Impossibile verificare l'integrità dell'immagine del file \Device\HarddiskVolume3\Program Files (x86)\Unlocker\UnlockerDriver5.sys. Impossibile trovare l'hash del file nel sistema. Causa possibile: installazione di un file danneggiato o con firma non corretta in seguito a una modifica hardware o software o malware di origine sconosciuta.
Date: 2011-02-25 23:38:37.302
Description: Impossibile verificare l'integrità dell'immagine del file \Device\HarddiskVolume3\Program Files (x86)\Unlocker\UnlockerDriver5.sys. Impossibile trovare l'hash del file nel sistema. Causa possibile: installazione di un file danneggiato o con firma non corretta in seguito a una modifica hardware o software o malware di origine sconosciuta.
==================== Memory info ===========================
Processor: Intel® Core i5 CPU 760 @ 2.80GHz
Percentage of memory in use: 42%
Total physical RAM: 6103.12 MB
Available physical RAM: 3515.04 MB
Total Virtual: 12204.44 MB
Available Virtual: 9258.56 MB
==================== Drives ================================
Drive c: (OS) (Fixed) (Total:919.12 GB) (Free:271.81 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 38000000)
Partition 1: (Not Active) - (Size=149 MB) - (Type=DE)
Partition 2: (Active) - (Size=12.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=919.1 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================
Edited by lisabel, 12 November 2015 - 03:04 AM.