Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Malware on Facebook wont let me sign in


  • Please log in to reply

#1
MHC3

MHC3

    Member

  • Member
  • PipPip
  • 14 posts

I was trying to get into my Facebook and a message stating that I may have malware, keeps popping up.  This is what it says

 

Your Computer Needs to Be Cleaned

It looks like your computer is being affected by malware. We’ll help you fix the problem to keep your account secure and prevent malware from spreading to friends. Malware is software that tries to steal personal information and causes problems when you use Facebook. Clicking or sharing links that contain spam can give your computer malware.

Then it's got a "Get Started" Button.

 

I can access Facebook on mobile, but not on my PC. I've run several malware scans to no avail. Someone stated that F-Secure would get rid of it and all it did was wipe out all my data for the Facebook games. I contacted the game sites and they restored my game status and data. But they offered no help in removing the this malware.

 

Can any one help me get rid of this problem? I was told by someone who thought that this was a legit post by Facebook, and that the scan that was offered only did part of the job and that they wanted $149.00 for the malware removal program. They wound up having to wipe clean the hard drive, because of additional malware that was added to it.

I've done deep root scan with nothing showing up to remove this malware. I can access any other site, just not Facebook.

 

I have the program from inspecting the page, and I tried to attach the file but it wouldn't let me.

 


  • 0

Advertisements


#2
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,031 posts
  • MVP
 
Download : ADWCleaner to your desktop.  Make sure you get the correct Download button.  Sometimes the ads on BleepingComputer will mimic the real Download button which should say: Download Now @BleepingComputer
 
NOTE: If using Internet Explorer and you get an alert that stops the program downloading, click on the warning and allow the download to complete.
 
Close  all programs, pause your anti-virus and run AdwCleaner (Vista or Win 7 => right click and Run As Administrator).
 
scan-results.jpg
 
Click on Scan  and follow the prompts. Let it run unhindered. When done, click on the Clean button, and follow the prompts. Allow the system to reboot. You will then be presented with the report. Copy & Paste this report on your next reply.
 
The report will be saved in the C:\AdwCleaner folder.
 
 
 
Junkware-Removal-Tool
 
Please download Junkware Removal Tool to your desktop.  Make sure you get the correct Download button.  Sometimes the ads on BleepingComputer will mimic the real Download button which should say: Download Now @Author's site
  • Pause your anti-virus.  Close all browsers.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
  •  
     
     
    Please download Farbar Recovery Scan Tool and save it to your Desktop. 
     
    Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version. 
     
    •  
  • Right click to run as administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer. 
  • Press Scan button. 
  • It will produce a log called FRST.txt in the same directory the tool is run from.  
  • Please copy and paste log back here. 
  • The first time the tool is run it generates another log (Addition.txt - also located in the same directory as FRST.exe/FRST64.exe). Please also paste that along with the FRST.txt into your reply. 

    • 1

    #3
    MHC3

    MHC3

      Member

    • Topic Starter
    • Member
    • PipPip
    • 14 posts

    Here's the JRT report

     

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Junkware Removal Tool (JRT) by Malwarebytes
    Version: 8.0.3 (02.09.2016)
    Operating System: Windows 7 Home Premium x64 
    Ran by Mike (Administrator) on Fri 02/19/2016 at 18:38:22.45
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
     
     
     
     
    File System: 578 
     
    Successfully deleted: C:\ProgramData\iobit\driver booster (Folder) 
    Successfully deleted: C:\ProgramData\productdata (Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Roaming\iobit\driver booster (Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Roaming\productdata (Folder) 
    Successfully deleted: C:\Windows\system32\Tasks\Driver Booster Scheduler (Task)
    Successfully deleted: C:\Windows\system32\Tasks\Driver Booster SkipUAC (Mike) (Task)
    Successfully deleted: C:\Windows\system32\Tasks\SmartDefrag4_Startup (Task)
    Successfully deleted: C:\Windows\system32\Tasks\Uninstaller_SkipUac_Mike (Task)
    Successfully deleted: C:\Windows\wininit.ini (File) 
    Successfully deleted: C:\Program Files (x86)\iobit\driver booster (Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\00JIC7EE (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\09KH0K6O (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\09RFRIQ6 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0BRG34AC (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0E6B9XX7 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0FZ37SWC (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0WVEPPEU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0Y78DXR2 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\14AYHGV3 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\15JH9LE6 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\15SFKZLU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\17XMCTD8 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\19EL4HUS (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1CC2JF95 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1F1AYK49 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1IBAI0SF (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1M5T4P7S (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1N8TOWRB (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PS2E0WH (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1V8T3T09 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\27TPAZX1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2ABNKE4R (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2DF2733O (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2DK3AJ0I (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2EFAZIWA (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2HW0XQG3 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2YIJ45C2 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\309WVL9J (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\31V2E4O6 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\34LF3A76 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3FZR6GWR (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3GP249I4 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3JE3IKUB (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3YV5K9KY (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\40A4UGL1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\47Q4RHSJ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4BIS8U7A (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4E6TQQ9C (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4ESYZRNY (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4Q0DGYRR (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4YXPEU35 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\58YQV3H2 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5ATJJE4C (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\649I964P (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6771WF56 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6BAQCXXU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6KP6BTOW (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6KV2NZ0C (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6SV6V135 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\72I069N4 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\74SLJUBU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\76QTX55M (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7I0C85A2 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7QRZV32W (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\80IK4RI1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8FUPR67H (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8FXLK5IU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8KOD81ED (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8LKTW9G0 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8LVE0L5L (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8OFHJYPS (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8OLBJY5L (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8RPYSL0Z (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8UB5TXBC (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\91Y63DB9 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9FAT9MHQ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9K2JFEPV (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9PH81ZC5 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9YPVDTWS (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A3KTMF8U (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A77ENRF0 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A7BFVPRA (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AC6Q8FKY (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AD9JES8L (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AFVR4HD9 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ALLVCO8W (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\APDLXQ5X (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AQBJYJD2 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AQYXX3P1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AYFBY2C3 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B1XL5Q21 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BD64F92L (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BGACPV2Y (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BI1U3OS0 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BI97VS3T (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BOJN8JRZ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BSLF1280 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BUQJXPDF (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\C1QS502Q (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CA8TH66B (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CF4YVT3Q (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CZ31VBHJ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D25DPDIQ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D5BP0WOU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D5W7RDLL (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D69U9WHB (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DDQ4ZPOV (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DFI0IR4S (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DGO00E0D (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DHI82I6Z (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DHLI3V05 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DNNQVX4C (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DTDP7Q0D (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E2IAXZ1K (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E33Y3UZ1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E3WJQ1HT (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E9X47LKI (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EBALV45Z (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EG0FX4QY (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHRLIBSM (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EM5Q944D (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EMK6RSE8 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EU2VDBJW (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EUV58O5O (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EVM1888E (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F33SQLCJ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F84UURFO (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F99JNMCS (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F9VJTEMT (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FDOH19XS (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FM0HRX72 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FO6EGVG5 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FS8LI3K2 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GJNEJIDO (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GKLGCKJQ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\H0G6X0XH (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HC4EL332 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HETH7LEC (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HHFZZWAQ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HJG8RBV8 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HM3JZHBA (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HV5NOGF9 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HX1JOKIJ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HXQU4LG1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HYG03ZU6 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I6RVH5TG (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I9O1V2ES (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IAMJV2MQ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IF4HWZTJ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IGC8UOFM (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ITF2C7T1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IZGO3WMO (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J4WDAAD7 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JAJVXA30 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JF2ZHTX5 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JH0BW22A (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JL8KLXUV (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JT2C4DYI (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JUWHECTX (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K2P2JYA0 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K9YR5H84 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KAMPWY61 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KBFF9126 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KFHSYK9N (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KH2EF4NW (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KIA7KFD4 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KIVV840Z (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KUEIYCXG (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KWWKXS5F (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L1LQG710 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L7JHUA1C (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L8LVZHSR (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LFI3ALRJ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LHB6ZXOG (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LOSZG16G (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M98OSJW0 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MAJKCGCU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MFVKH0AO (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MH2YT2UP (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MQYKVV3H (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MSIR1U4X (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MYBCC8VC (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\N219DA63 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\N81CZE7J (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NEWOKXP2 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NK558AEV (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NK922F20 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NN6B82VU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NRHVGBMA (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NU6MJVQ1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\O8YT1GGZ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\O9OCZT8L (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ON47B3JT (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OPHDQ03Y (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OX45OTCG (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OZPHOUD7 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\P1VA0XI1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PG910UZF (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PKNJHWE9 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PQVG3XZT (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PRJXUDWG (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PYBZ9C04 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Q6EQ7UYG (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Q6FD99ER (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QAIMJY23 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QBIY2CDU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QIDEG2EK (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QTLR1B0Z (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QWMO0E1H (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R6E6AB6W (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8FJJAX4 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RJ5X3IZT (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RJM6OA5N (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RK3WBT2E (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RMW1UOO9 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RO01E2Z7 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RO7YT4Z4 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RQ2XH8V4 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RU22X4F5 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RX8DX5O7 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S7EDRO00 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S9P88WRN (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SF3NZAR0 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SFRK7ZPM (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SGSVK36C (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SMTFK04W (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SOJ027TY (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SWEM5BRB (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SX2POQ82 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\T4CC2E6B (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TA5SJXVS (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TAXABRUN (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TDWE0K2X (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TISRR5KW (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TQL1QUIH (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TR84CBWV (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TX1E0ZZL (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U00RFQIU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U2Z2R498 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U51AO3S6 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U769C9XU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UDTD04SM (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UKP3XPZQ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VA65T39W (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VBKXMFMH (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VCZ3V2PX (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VD3NF5NH (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKXXG0AM (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\W1QVX7DR (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\W2NDAL6D (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WBQDT07S (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WBYSASQP (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WE866G5G (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WEDWAKNT (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WF0TLQP3 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WHVM634T (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WJUVY3MJ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WQ17RVV3 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WQDC5XZ9 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WQJ0VSGH (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WZ5R44RB (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\X0VFJA1M (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XA2AD9DI (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XAKKSDZ7 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XCMV29PR (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XCOZF123 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XD5MK4M6 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XECOEIC1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XOUA1A6K (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XOYIHKWK (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XPCIR9H2 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZZ4SJSJ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YADG2WT1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YB1HYFN3 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YCY5SH0Y (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YF4CYLX7 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YF8WOC3B (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YMF0S1GI (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YMXRK7FY (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YQY4YP4S (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YV4YH612 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YVDG29RF (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z9YOZ8IY (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZGWQHWRO (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZHO46NH6 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZJ6PJY20 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZKMMM5F8 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZOG5TCVL (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZRE4II2F (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTLMEVDB (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\00JIC7EE (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\09KH0K6O (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\09RFRIQ6 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0BRG34AC (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0E6B9XX7 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0FZ37SWC (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0WVEPPEU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0Y78DXR2 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\14AYHGV3 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\15JH9LE6 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\15SFKZLU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\17XMCTD8 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\19EL4HUS (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1CC2JF95 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1F1AYK49 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1IBAI0SF (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1M5T4P7S (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1N8TOWRB (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PS2E0WH (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1V8T3T09 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\27TPAZX1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2ABNKE4R (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2DF2733O (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2DK3AJ0I (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2EFAZIWA (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2HW0XQG3 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2YIJ45C2 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\309WVL9J (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\31V2E4O6 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\34LF3A76 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3FZR6GWR (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3GP249I4 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3JE3IKUB (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3YV5K9KY (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\40A4UGL1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\47Q4RHSJ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4BIS8U7A (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4E6TQQ9C (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4ESYZRNY (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4Q0DGYRR (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4YXPEU35 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\58YQV3H2 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5ATJJE4C (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\649I964P (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6771WF56 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6BAQCXXU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6KP6BTOW (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6KV2NZ0C (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6SV6V135 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\72I069N4 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\74SLJUBU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\76QTX55M (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7I0C85A2 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7QRZV32W (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\80IK4RI1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8FUPR67H (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8FXLK5IU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8KOD81ED (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8LKTW9G0 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8LVE0L5L (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8OFHJYPS (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8OLBJY5L (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8RPYSL0Z (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8UB5TXBC (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\91Y63DB9 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9FAT9MHQ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9K2JFEPV (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9PH81ZC5 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9YPVDTWS (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A3KTMF8U (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A77ENRF0 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A7BFVPRA (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AC6Q8FKY (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AD9JES8L (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AFVR4HD9 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ALLVCO8W (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\APDLXQ5X (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AQBJYJD2 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AQYXX3P1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AYFBY2C3 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B1XL5Q21 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BD64F92L (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BGACPV2Y (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BI1U3OS0 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BI97VS3T (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BOJN8JRZ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BSLF1280 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BUQJXPDF (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\C1QS502Q (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CA8TH66B (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CF4YVT3Q (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CZ31VBHJ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D25DPDIQ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D5BP0WOU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D5W7RDLL (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D69U9WHB (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DDQ4ZPOV (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DFI0IR4S (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DGO00E0D (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DHI82I6Z (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DHLI3V05 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DNNQVX4C (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DTDP7Q0D (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E2IAXZ1K (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E33Y3UZ1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E3WJQ1HT (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E9X47LKI (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EBALV45Z (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EG0FX4QY (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHRLIBSM (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EM5Q944D (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EMK6RSE8 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EU2VDBJW (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EUV58O5O (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EVM1888E (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F33SQLCJ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F84UURFO (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F99JNMCS (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F9VJTEMT (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FDOH19XS (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FM0HRX72 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FO6EGVG5 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FS8LI3K2 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GJNEJIDO (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GKLGCKJQ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\H0G6X0XH (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HC4EL332 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HETH7LEC (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HHFZZWAQ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HJG8RBV8 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HM3JZHBA (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HV5NOGF9 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HX1JOKIJ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HXQU4LG1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HYG03ZU6 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I6RVH5TG (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I9O1V2ES (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IAMJV2MQ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IF4HWZTJ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IGC8UOFM (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ITF2C7T1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IZGO3WMO (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J4WDAAD7 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JAJVXA30 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JF2ZHTX5 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JH0BW22A (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JL8KLXUV (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JT2C4DYI (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JUWHECTX (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K2P2JYA0 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K9YR5H84 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KAMPWY61 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KBFF9126 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KFHSYK9N (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KH2EF4NW (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KIA7KFD4 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KIVV840Z (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KUEIYCXG (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KWWKXS5F (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L1LQG710 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L7JHUA1C (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L8LVZHSR (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LFI3ALRJ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LHB6ZXOG (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LOSZG16G (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M98OSJW0 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MAJKCGCU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MFVKH0AO (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MH2YT2UP (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MQYKVV3H (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MSIR1U4X (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MYBCC8VC (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\N219DA63 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\N81CZE7J (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NEWOKXP2 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NK558AEV (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NK922F20 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NN6B82VU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NRHVGBMA (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NU6MJVQ1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\O8YT1GGZ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\O9OCZT8L (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ON47B3JT (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OPHDQ03Y (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OX45OTCG (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OZPHOUD7 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\P1VA0XI1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PG910UZF (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PKNJHWE9 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PQVG3XZT (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PRJXUDWG (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PYBZ9C04 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Q6EQ7UYG (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Q6FD99ER (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QAIMJY23 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QBIY2CDU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QIDEG2EK (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QTLR1B0Z (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QWMO0E1H (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R6E6AB6W (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8FJJAX4 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RJ5X3IZT (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RJM6OA5N (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RK3WBT2E (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RMW1UOO9 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RO01E2Z7 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RO7YT4Z4 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RQ2XH8V4 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RU22X4F5 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RX8DX5O7 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S7EDRO00 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S9P88WRN (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SF3NZAR0 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SFRK7ZPM (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SGSVK36C (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SMTFK04W (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SOJ027TY (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SWEM5BRB (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SX2POQ82 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\T4CC2E6B (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TA5SJXVS (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TAXABRUN (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TDWE0K2X (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TISRR5KW (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TQL1QUIH (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TR84CBWV (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TX1E0ZZL (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U00RFQIU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U2Z2R498 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U51AO3S6 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U769C9XU (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UDTD04SM (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UKP3XPZQ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VA65T39W (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VBKXMFMH (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VCZ3V2PX (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VD3NF5NH (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKXXG0AM (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\W1QVX7DR (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\W2NDAL6D (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WBQDT07S (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WBYSASQP (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WE866G5G (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WEDWAKNT (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WF0TLQP3 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WHVM634T (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WJUVY3MJ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WQ17RVV3 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WQDC5XZ9 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WQJ0VSGH (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WZ5R44RB (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\X0VFJA1M (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XA2AD9DI (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XAKKSDZ7 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XCMV29PR (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XCOZF123 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XD5MK4M6 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XECOEIC1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XOUA1A6K (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XOYIHKWK (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XPCIR9H2 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZZ4SJSJ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YADG2WT1 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YB1HYFN3 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YCY5SH0Y (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YF4CYLX7 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YF8WOC3B (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YMF0S1GI (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YMXRK7FY (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YQY4YP4S (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YV4YH612 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YVDG29RF (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z9YOZ8IY (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZGWQHWRO (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZHO46NH6 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZJ6PJY20 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZKMMM5F8 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZOG5TCVL (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZRE4II2F (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTLMEVDB (Temporary Internet Files Folder) 
     
     
     
    Registry: 1 
     
    Successfully deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\WeatherBug (Registry Value) 
     
     
     
     
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Scan was completed on Fri 02/19/2016 at 18:40:30.39
    End of JRT log
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
     
    And here's the FRST64 report plus Addition.
     
    Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:17-02-2016
    Ran by Mike (administrator) on MIKE-PC (19-02-2016 18:48:19)
    Running from C:\Users\Mike\Desktop
    Loaded Profiles: Mike (Available Profiles: Mike)
    Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
    Internet Explorer Version 11 (Default browser: Chrome)
    Boot Mode: Normal
    Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
     
    ==================== Processes (Whitelisted) =================
     
    (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
     
    (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCService.exe
    (IOBit) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCAvSvc.exe
    (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
    (AMD) C:\Windows\System32\atiesrxx.exe
    (IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
    () C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
    (Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
    (MSI) C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe
    (MICRO-STAR INTERNATIONAL CO., LTD.) C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe
    (Qualcomm Atheros) C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe
    (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe
    (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe
    (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
    (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
    (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
    (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
    (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
    (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
    (Intel® Corporation) C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe
    (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
    (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    (Microsoft Corporation) C:\Windows\System32\dllhost.exe
    () C:\Program Files\Earth Networks\WeatherBug\WeatherBug.exe
     
     
    ==================== Registry (Whitelisted) ===========================
     
    (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
     
    HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8781568 2016-02-04] (Realtek Semiconductor)
    HKLM\...\Run: [MBCfg64] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\MBCfg64.dll,RunDLLEntry MBCfg64
    HKLM\...\Run: [MouseDriver] => C:\Windows\system32\TiltWheelMouse.exe [241152 2012-12-19] (Pixart Imaging Inc)
    HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1337000 2015-04-30] (Microsoft Corporation)
    HKLM-x32\...\Run: [Sound Blaster Cinema] => C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe [711680 2013-08-16] (Creative Technology Ltd)
    HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE
    HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-25] (Intel Corporation)
    HKLM-x32\...\Run: [Super-Charger] => C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [1047536 2013-11-12] (MSI)
    HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1282120 2013-05-02] (CANON INC.)
    HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-04] (Advanced Micro Devices, Inc.)
    HKLM-x32\...\Run: [IObit Malware Fighter] => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [5893920 2015-11-12] (IObit)
    HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
    Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
    HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\Run: [Advanced SystemCare Ultimate] => C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCTray.exe [2596640 2015-05-22] (IObit)
    HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\Run: [TWC.Win7] => C:\Program Files (x86)\The Weather Channel\Desktop Weather\TWC.Win7.exe [49152 2016-02-13] ()
    HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
    HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\Run: [WeatherBug] => C:\Program Files\Earth Networks\WeatherBug\WeatherBug.exe [146736 2014-09-23] ()
    Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Killer Network Manager.lnk [2014-10-15]
    ShortcutTarget: Killer Network Manager.lnk -> C:\Windows\Installer\{7364C716-1212-4EAE-B0C9-A31D1E797BF8}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe (Flexera Software LLC)
    Startup: C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip [2014-11-01] ()
    BootExecute: autocheck autochk * 搀渀挀氀攀愀渀㘀㐀⸀攀砀攀
     
    ==================== Internet (Whitelisted) ====================
     
    (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
     
    Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
    Tcpip\Parameters: [DhcpNameServer] 209.18.47.61 209.18.47.62
    Tcpip\..\Interfaces\{034704CE-5A88-4793-BF3D-628ED4BDD465}: [DhcpNameServer] 209.18.47.61 209.18.47.62
     
    Internet Explorer:
    ==================
    HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yahoo.com/
    SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000 -> DefaultScope {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} URL = 
    BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07] (CANON INC.)
    BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
    BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20] (Google Inc.)
    BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07] (CANON INC.)
    BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
    BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-20] (Google Inc.)
    Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07] (CANON INC.)
    Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20] (Google Inc.)
    Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07] (CANON INC.)
    Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-20] (Google Inc.)
    Toolbar: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20] (Google Inc.)
    Toolbar: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000 -> Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07] (CANON INC.)
    StartMenuInternet: IEXPLORE.EXE - iexplore.exe
     
    FireFox:
    ========
    FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll [2016-02-09] ()
    FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
    FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
    FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll [2016-02-09] ()
    FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.)
    FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google)
    FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-16] (Intel Corporation)
    FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-16] (Intel Corporation)
    FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
    FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
    FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
    FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
    FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
    FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
    FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
    FF Plugin HKU\S-1-5-21-3800875428-2236599744-3644965068-1000: jpl.nasa.gov/NASAEyes -> C:\Users\Mike\AppData\Roaming\JPL-NASA-Caltech\NASA's Eyes\npNASAEyes.dll [2015-07-08] (Jet Propulsion Laboratory)
     
    Chrome: 
    =======
    CHR HomePage: Profile 2 -> msn.com/?pc=__PARAM__&ocid=__PARAM__DHP&osmkt=en-us
    CHR StartupUrls: Profile 2 -> "hxxp://www.google.com/"
    CHR Plugin: (Widevine Content Decryption Module) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.8.866\_platform_specific\win_x86\widevinecdmadapter.dll (Google Inc.)
    CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.116\PepperFlash\pepflashplayer.dll ()
    CHR Profile: C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 1
    CHR Extension: (No Name) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-05]
    CHR Extension: (No Name) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-05]
    CHR Extension: (No Name) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-12-05]
    CHR Extension: (No Name) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-05]
    CHR Extension: (No Name) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lkbhppfbabandkdmgjmifahoabeodiep [2015-12-05]
    CHR Profile: C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2
    CHR Extension: (Google Slides) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-11-10]
    CHR Extension: (Google Docs) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2015-11-10]
    CHR Extension: (Google Drive) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-10]
    CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\bbmegnmpleoagolcnjnejdacakedpcgd [2015-12-05]
    CHR Extension: (YouTube) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-11-10]
    CHR Extension: (Adblock Plus) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-02-03]
    CHR Extension: (Google Search) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-10]
    CHR Extension: (Google Sheets) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-11-10]
    CHR Extension: (Google Docs Offline) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-17]
    CHR Extension: (Solitaire) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\lkbhppfbabandkdmgjmifahoabeodiep [2015-12-05]
    CHR Extension: (SearchLock) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\madakpajlmcpaodhfbekojajlhbdklol [2015-12-05]
    CHR Extension: (Chrome Web Store Payments) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-11-10]
    CHR Extension: (Gmail) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-11-10]
    CHR Extension: (Space Planet) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ppcocpoeoiajndepaaimnnglicichmbb [2016-02-14]
     
    ==================== Services (Whitelisted) ========================
     
    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
     
    R2 AdvancedSystemCareService8; C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCService.exe [911648 2014-11-22] (IObit)
    R2 ASCAntivirusSrv; C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ascavsvc.exe [660768 2015-06-11] (IOBit)
    R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140456 2012-03-27] ()
    R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [882464 2015-11-04] (IObit)
    R2 Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel® Corporation) [File not signed]
    S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel® Corporation)
    R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation)
    S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2934048 2015-11-10] (IObit)
    R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [161776 2013-09-09] (MSI)
    R2 MSI_Trigger_Service; C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [30240 2013-09-26] (MICRO-STAR INTERNATIONAL CO., LTD.)
    R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2015-04-30] (Microsoft Corporation)
    R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366544 2015-04-30] (Microsoft Corporation)
    R2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [344576 2014-01-22] (Qualcomm Atheros) [File not signed]
    S2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
    R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
    R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
    S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
    R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe [15888 2013-04-01] (Intel® Corporation)
    S2 SpyHunter 4 Service; no ImagePath
     
    ===================== Drivers (Whitelisted) ==========================
     
    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
     
    R3 AcpiCtlDrv; C:\Windows\System32\DRIVERS\AcpiCtlDrv.sys [25880 2012-07-17] (Intel Corporation)
    R1 BfLwf; C:\Windows\System32\DRIVERS\bflwfx64.sys [80080 2013-11-08] (Qualcomm Atheros, Inc.)
    S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
    S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2014-12-12] ()
    R3 FileMonitor; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [23048 2015-03-25] (IObit)
    R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2014-12-26] (REALiX™)
    R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [31144 2016-01-27] (Intel Corporation)
    R2 iocbios2; C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [25448 2013-01-07] (Intel Corporation)
    R3 ISCT; C:\Windows\System32\DRIVERS\ISCTD.sys [44744 2015-05-03] ()
    R3 Ke2200; C:\Windows\System32\DRIVERS\e22w7x64.sys [125488 2015-12-09] (Qualcomm Atheros, Inc.)
    R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [179456 2015-12-09] (Intel Corporation)
    R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [280376 2015-03-04] (Microsoft Corporation)
    R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124568 2015-03-04] (Microsoft Corporation)
    R3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34848 2015-03-25] (IObit.com)
    R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [21184 2014-06-04] (IObit)
    S3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [33448 2015-07-15] (Synaptics Incorporated)
    R3 t_mouse.sys; C:\Windows\System32\DRIVERS\t_mouse.sys [6144 2012-12-19] ()
    R3 UrlFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [23016 2015-03-25] (IObit.com)
    S3 MSICDSetup; \??\D:\CDriver64.sys [X]
    S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X]
     
    ==================== NetSvcs (Whitelisted) ===================
     
    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
     
     
    ==================== One Month Created files and folders ========
     
    (If an entry is included in the fixlist, the file/folder will be moved.)
     
    2016-02-19 18:48 - 2016-02-19 18:48 - 00019811 _____ C:\Users\Mike\Desktop\FRST.txt
    2016-02-19 18:48 - 2016-02-19 18:48 - 00000000 ____D C:\Users\Mike\Desktop\FRST-OlderVersion
    2016-02-19 18:45 - 2016-02-19 18:45 - 00001919 _____ C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\WeatherBug®.lnk
    2016-02-19 18:45 - 2016-02-19 18:45 - 00001895 _____ C:\Users\Mike\Desktop\WeatherBug®.lnk
    2016-02-19 18:45 - 2016-02-19 18:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WeatherBug®
    2016-02-19 18:45 - 2016-02-19 18:45 - 00000000 ____D C:\Program Files\Earth Networks
    2016-02-19 18:44 - 2016-02-19 18:45 - 00000000 __HDC C:\ProgramData\{FA77A43D-F6ED-4924-87B5-517C061388C6}
    2016-02-19 18:44 - 2016-02-19 18:44 - 03390776 _____ (Earth Networks, Inc. ) C:\Users\Mike\Downloads\WeatherBugSetup.exe
    2016-02-19 18:40 - 2016-02-19 18:40 - 00094279 _____ C:\Users\Mike\Desktop\JRT.txt
    2016-02-19 18:37 - 2016-02-19 18:37 - 01609216 _____ (Malwarebytes) C:\Users\Mike\Desktop\JRT.exe
    2016-02-19 17:55 - 2016-02-19 18:21 - 00000000 ____D C:\AdwCleaner
    2016-02-19 17:55 - 2016-02-19 17:55 - 01511424 _____ C:\Users\Mike\Desktop\AdwCleaner.exe
    2016-02-19 12:01 - 2016-02-19 12:01 - 00468480 _____ () C:\Users\Mike\Desktop\CKScanner.exe
    2016-02-19 11:49 - 2016-02-19 11:49 - 00000000 ____D C:\Users\Mike\AppData\LocalLow\Temp
    2016-02-18 02:04 - 2016-01-29 23:40 - 00450902 _____ C:\Windows\system32\Drivers\etc\hosts.20160218-020426.backup
    2016-02-18 02:03 - 2016-02-18 02:03 - 00000000 ____D C:\Users\Mike\Documents\ProcAlyzer Dumps
    2016-02-17 00:42 - 2016-02-18 02:04 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
    2016-02-17 00:42 - 2016-02-17 00:42 - 00001395 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
    2016-02-17 00:42 - 2016-02-17 00:42 - 00001383 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
    2016-02-17 00:37 - 2016-02-17 00:38 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Mike\Downloads\spybot-2.4.exe
    2016-02-15 18:35 - 2016-02-19 18:48 - 02371072 _____ (Farbar) C:\Users\Mike\Desktop\FRST64.exe
    2016-02-15 18:35 - 2016-02-19 18:48 - 00000000 ____D C:\FRST
    2016-02-15 18:23 - 2016-02-15 18:23 - 00231718 _____ C:\Users\Mike\Documents\bookmarks_2_15_16 (Other Bookmarks).html
    2016-02-15 18:22 - 2016-02-15 18:22 - 00231718 _____ C:\Users\Mike\Documents\bookmarks_2_15_16 (Imported).html
    2016-02-15 18:22 - 2016-02-15 18:22 - 00231718 _____ C:\Users\Mike\Documents\bookmarks_2_15_16 (Bookmarks 2).html
    2016-02-15 18:21 - 2016-02-15 18:21 - 00231718 _____ C:\Users\Mike\Documents\bookmarks_2_15_16 (Games).html
    2016-02-15 18:21 - 2016-02-15 18:21 - 00231718 _____ C:\Users\Mike\Documents\bookmarks_2_15_16 (Blizzard).html
    2016-02-15 18:20 - 2016-02-15 18:20 - 00231718 _____ C:\Users\Mike\Documents\bookmarks_2_15_16 (Links).html
    2016-02-15 18:20 - 2016-02-15 18:20 - 00231718 _____ C:\Users\Mike\Documents\bookmarks_2_15_16 (All Todays Picks).html
    2016-02-15 18:19 - 2016-02-15 18:19 - 00231718 _____ C:\Users\Mike\Documents\bookmarks_2_15_16 (Imported From IE).html
    2016-02-15 18:18 - 2016-02-15 18:18 - 00231718 _____ C:\Users\Mike\Documents\bookmarks_2_15_16 (Bookmarks).html
    2016-02-15 12:33 - 2016-02-15 12:33 - 00002117 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
    2016-02-15 12:33 - 2016-02-15 12:33 - 00000000 ____D C:\Program Files\Microsoft Security Client
    2016-02-15 12:33 - 2016-02-15 12:33 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
    2016-02-15 12:32 - 2016-02-15 12:32 - 14243008 _____ (Microsoft Corporation) C:\Users\Mike\Downloads\mseinstall.exe
    2016-02-15 12:16 - 2016-02-15 12:16 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
    2016-02-15 10:51 - 2016-02-15 11:30 - 00000000 ____D C:\ProgramData\F-Secure
    2016-02-15 10:51 - 2016-02-15 11:20 - 00000000 ____D C:\Users\Mike\AppData\Local\F-Secure
    2016-02-15 10:02 - 2016-02-15 11:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
    2016-02-15 10:02 - 2016-02-15 10:02 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Sun
    2016-02-15 10:02 - 2016-02-15 10:02 - 00000000 ____D C:\Users\Mike\AppData\LocalLow\Sun
    2016-02-15 10:02 - 2016-02-15 10:02 - 00000000 ____D C:\Users\Mike\.oracle_jre_usage
    2016-02-15 10:02 - 2016-02-15 10:02 - 00000000 ____D C:\ProgramData\Oracle
    2016-02-15 10:02 - 2016-02-15 10:02 - 00000000 ____D C:\Program Files (x86)\Java
    2016-02-07 00:44 - 2016-02-07 00:44 - 00000000 ____H C:\asc_rdflag
    2016-02-06 20:04 - 2016-02-06 20:04 - 14179840 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
    2016-02-06 20:04 - 2016-02-06 20:04 - 12877824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
    2016-02-06 20:04 - 2016-02-06 20:04 - 03231232 _____ (Microsoft Corporation) C:\Windows\explorer.exe
    2016-02-06 20:04 - 2016-02-06 20:04 - 02973184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
    2016-02-06 20:04 - 2016-02-06 20:04 - 01940992 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
    2016-02-06 20:04 - 2016-02-06 20:04 - 01866752 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
    2016-02-06 20:04 - 2016-02-06 20:04 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
    2016-02-06 20:04 - 2016-02-06 20:04 - 01498624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 03169792 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 02610176 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
    2016-02-06 20:03 - 2016-02-06 20:03 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
    2016-02-06 20:03 - 2016-02-06 20:03 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
    2016-02-06 20:03 - 2016-02-06 20:03 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 04686592 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
    2016-02-04 23:15 - 2016-02-04 23:15 - 04307112 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
    2016-02-04 23:15 - 2016-02-04 23:15 - 03282032 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 03271912 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 03195648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 03040488 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 02893568 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
    2016-02-04 23:15 - 2016-02-04 23:15 - 02050184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 02030208 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 01976560 _____ (Creative Technology Ltd.) C:\Windows\system32\MBAPO264.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 01743080 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBAPO232.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 01356512 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00689888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00574760 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00532384 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00410040 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00387320 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00343712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00330568 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00221968 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00214840 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00209544 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00192984 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00166208 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00122320 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00118600 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00110992 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00088352 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00041088 _____ (Creative Technology Ltd.) C:\Windows\system32\Drivers\MBfilt64.sys
    2016-02-04 23:15 - 2016-02-04 23:15 - 00023704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
    2016-01-29 23:40 - 2009-06-10 16:00 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20160129-234016.backup
    2016-01-27 08:48 - 2016-01-27 08:48 - 01462720 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorA.sys
    2016-01-27 08:48 - 2016-01-27 08:48 - 00031144 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorF.sys
     
    ==================== One Month Modified files and folders ========
     
    (If an entry is included in the fixlist, the file/folder will be moved.)
     
    2016-02-19 18:40 - 2014-10-15 08:17 - 00000000 ____D C:\ProgramData\IObit
    2016-02-19 18:39 - 2014-10-15 08:17 - 00000000 ____D C:\Users\Mike\AppData\Roaming\IObit
    2016-02-19 18:39 - 2014-10-15 08:17 - 00000000 ____D C:\Program Files (x86)\IObit
    2016-02-19 18:31 - 2014-10-15 04:57 - 00002212 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
    2016-02-19 18:31 - 2014-10-15 04:57 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
    2016-02-19 18:31 - 2014-10-15 04:57 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
    2016-02-19 18:30 - 2009-07-13 23:45 - 00029120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    2016-02-19 18:30 - 2009-07-13 23:45 - 00029120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    2016-02-19 18:25 - 2014-11-01 19:11 - 00000000 ____D C:\Users\Mike\AppData\Local\Deployment
    2016-02-19 18:24 - 2014-10-15 04:57 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
    2016-02-19 18:23 - 2014-10-16 00:44 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
    2016-02-19 18:23 - 2009-07-14 00:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
    2016-02-19 18:22 - 2014-10-15 04:48 - 00000000 ____D C:\Users\Mike
    2016-02-19 17:23 - 2014-10-15 05:13 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
    2016-02-19 15:40 - 2014-10-15 11:20 - 00000000 ____D C:\Program Files (x86)\World of Warcraft
    2016-02-19 15:39 - 2014-10-15 11:15 - 00000000 ____D C:\Users\Mike\AppData\Local\Battle.net
    2016-02-19 12:58 - 2014-10-15 11:15 - 00000000 ____D C:\Program Files (x86)\Battle.net
    2016-02-19 12:44 - 2014-10-15 08:43 - 00003918 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{EA08D899-2CF5-4DA5-85F2-D9456F2FE642}
    2016-02-19 00:01 - 2015-12-13 08:11 - 00000000 ____D C:\Users\Mike\AppData\Roaming\vlc
    2016-02-18 23:59 - 2015-12-13 08:09 - 00001070 _____ C:\Users\Public\Desktop\VLC media player.lnk
    2016-02-18 17:55 - 2015-06-21 08:37 - 00000000 ____D C:\Program Files (x86)\Heroes of the Storm
    2016-02-17 00:42 - 2014-10-16 00:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
    2016-02-17 00:40 - 2014-11-12 20:38 - 00000000 ____D C:\Users\Mike\Desktop\Security
    2016-02-16 09:30 - 2015-10-31 15:59 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
    2016-02-15 13:12 - 2014-10-15 08:57 - 00000566 _____ C:\Users\Mike\Documents\wow pw.txt
    2016-02-15 12:33 - 2014-12-22 20:59 - 00001945 _____ C:\Windows\epplauncher.mif
    2016-02-15 12:16 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\inf
    2016-02-15 11:55 - 2016-01-09 08:57 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Speccy
    2016-02-15 11:55 - 2016-01-09 08:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
    2016-02-15 11:55 - 2015-12-13 08:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
    2016-02-15 11:55 - 2015-12-05 22:52 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
    2016-02-15 11:55 - 2015-12-05 04:19 - 00000000 ____D C:\Windows\en
    2016-02-15 11:55 - 2015-12-05 04:18 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
    2016-02-15 11:55 - 2015-11-22 16:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Malware Fighter
    2016-02-15 11:55 - 2015-10-27 05:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 3
    2016-02-15 11:55 - 2015-10-14 19:19 - 00000000 ____D C:\Users\Mike\AppData\LocalLow\Sony Online Entertainment
    2016-02-15 11:55 - 2015-10-14 18:11 - 00000000 ____D C:\Users\Mike\AppData\LocalLow\Daybreak Game Company
    2016-02-15 11:55 - 2015-10-11 21:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
    2016-02-15 11:55 - 2015-08-19 05:19 - 00000000 ___RD C:\Users\Mike\OneDrive
    2016-02-15 11:55 - 2015-07-11 18:03 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NASA's Eyes
    2016-02-15 11:55 - 2015-07-03 13:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
    2016-02-15 11:55 - 2015-06-25 13:11 - 00000000 ___HD C:\ProgramData\CanonIJScan
    2016-02-15 11:55 - 2015-06-21 21:47 - 00000000 ____D C:\Users\Mike\Documents\StarCraft II
    2016-02-15 11:55 - 2015-06-21 21:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarCraft II
    2016-02-15 11:55 - 2015-06-21 11:32 - 00000000 ____D C:\Users\Mike\Documents\Heroes of the Storm
    2016-02-15 11:55 - 2015-06-21 08:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of the Storm
    2016-02-15 11:55 - 2015-04-07 17:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Golden Cherry Casino
    2016-02-15 11:55 - 2015-04-04 12:20 - 00000000 ___SD C:\Windows\system32\GWX
    2016-02-15 11:55 - 2015-04-02 20:50 - 00000000 ____D C:\Users\Mike\AppData\Roaming\RIFT
    2016-02-15 11:55 - 2015-04-02 20:10 - 00000000 ____D C:\Users\Mike\AppData\Local\Glyph
    2016-02-15 11:55 - 2015-04-02 20:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glyph
    2016-02-15 11:55 - 2015-04-02 20:10 - 00000000 ____D C:\ProgramData\Glyph
    2016-02-15 11:55 - 2015-03-18 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag 4
    2016-02-15 11:55 - 2015-03-18 13:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare Ultimate 8
    2016-02-15 11:55 - 2015-02-21 01:11 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Ventrilo
    2016-02-15 11:55 - 2015-02-21 01:11 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ventrilo
    2016-02-15 11:55 - 2015-01-15 16:44 - 00000000 ___HD C:\ProgramData\CanonIJEGV
    2016-02-15 11:55 - 2015-01-15 16:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG2500 series
    2016-02-15 11:55 - 2015-01-15 16:15 - 00000000 ____D C:\Users\Mike\AppData\LocalLow\Canon Easy-WebPrint EX
    2016-02-15 11:55 - 2015-01-15 16:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG2500 series User Registration
    2016-02-15 11:55 - 2015-01-15 16:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG2500 series Manual
    2016-02-15 11:55 - 2014-12-12 18:39 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Enigma Software Group
    2016-02-15 11:55 - 2014-11-18 19:17 - 00000000 ____D C:\Users\Mike\AppData\LocalLow\ADSRemoval
    2016-02-15 11:55 - 2014-11-12 20:40 - 00000000 ____D C:\Users\Mike\Desktop\Games
    2016-02-15 11:55 - 2014-11-01 19:52 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
    2016-02-15 11:55 - 2014-11-01 19:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
    2016-02-15 11:55 - 2014-11-01 19:11 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse
    2016-02-15 11:55 - 2014-10-24 21:44 - 00000000 ____D C:\Users\Mike\AppData\Roaming\dvdcss
    2016-02-15 11:55 - 2014-10-16 00:24 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Azureus
    2016-02-15 11:55 - 2014-10-15 13:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
    2016-02-15 11:55 - 2014-10-15 12:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III
    2016-02-15 11:55 - 2014-10-15 11:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft
    2016-02-15 11:55 - 2014-10-15 11:15 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Battle.net
    2016-02-15 11:55 - 2014-10-15 11:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
    2016-02-15 11:55 - 2014-10-15 08:52 - 00000000 ____D C:\Users\Mike\Documents\MediaSDK
    2016-02-15 11:55 - 2014-10-15 08:52 - 00000000 ____D C:\Users\Mike\Documents\IIPS
    2016-02-15 11:55 - 2014-10-15 08:52 - 00000000 ____D C:\Users\Mike\Documents\ibxHDMI
    2016-02-15 11:55 - 2014-10-15 08:52 - 00000000 ____D C:\Users\Mike\Documents\HDMI
    2016-02-15 11:55 - 2014-10-15 08:52 - 00000000 ____D C:\Users\Mike\Documents\Graphics
    2016-02-15 11:55 - 2014-10-15 08:52 - 00000000 ____D C:\Users\Mike\Documents\Advanced System Care
    2016-02-15 11:55 - 2014-10-15 08:17 - 00000000 ____D C:\Users\Mike\AppData\LocalLow\IObit
    2016-02-15 11:55 - 2014-10-15 08:17 - 00000000 ____D C:\ProgramData\{E1ED556E-3EA0-4F44-8BE7-CC5FB0F4B424}
    2016-02-15 11:55 - 2014-10-15 08:17 - 00000000 ____D C:\ProgramData\{D76294E6-03B8-4971-AF2E-3F846161A690}
    2016-02-15 11:55 - 2014-10-15 05:13 - 00000000 ____D C:\Windows\SysWOW64\Macromed
    2016-02-15 11:55 - 2014-10-15 05:13 - 00000000 ____D C:\Windows\system32\Macromed
    2016-02-15 11:55 - 2014-10-15 05:01 - 00000000 ____D C:\uninstall
    2016-02-15 11:55 - 2014-10-15 05:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI Intel Extreme Tuning Utility
    2016-02-15 11:55 - 2014-10-15 05:00 - 00000000 ___HD C:\SuperChargerProfile
    2016-02-15 11:55 - 2014-10-15 04:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative
    2016-02-15 11:55 - 2014-10-15 04:55 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
    2016-02-15 11:55 - 2009-07-14 00:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
    2016-02-15 11:55 - 2009-07-14 00:32 - 00000000 ____D C:\Windows\Offline Web Pages
    2016-02-15 11:55 - 2009-07-14 00:32 - 00000000 ____D C:\Windows\Downloaded Program Files
    2016-02-15 11:55 - 2009-07-14 00:32 - 00000000 ____D C:\Program Files\Windows Sidebar
    2016-02-15 11:55 - 2009-07-14 00:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar
    2016-02-15 11:55 - 2009-07-13 22:20 - 00000000 __RSD C:\Windows\Media
    2016-02-15 11:55 - 2009-07-13 22:20 - 00000000 __RHD C:\Users\Public\Libraries
    2016-02-15 11:55 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\TAPI
    2016-02-15 11:55 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\system32\NDF
    2016-02-15 11:55 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\system32\Msdtc
    2016-02-15 11:55 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\AppCompat
    2016-02-15 11:54 - 2016-01-09 08:57 - 00000000 ____D C:\Program Files\Speccy
    2016-02-15 11:54 - 2015-12-05 04:17 - 00000000 ____D C:\Program Files (x86)\Windows Live
    2016-02-15 11:54 - 2015-08-19 05:19 - 00000000 ____D C:\Program Files (x86)\Microsoft OneDrive
    2016-02-15 11:54 - 2015-07-03 13:40 - 00000000 ____D C:\Program Files\Microsoft Silverlight
    2016-02-15 11:54 - 2015-07-03 13:40 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
    2016-02-15 11:54 - 2015-06-21 21:47 - 00000000 ____D C:\Program Files (x86)\StarCraft II
    2016-02-15 11:54 - 2015-04-07 17:58 - 00000000 ____D C:\Program Files (x86)\GoldenCherryCasino
    2016-02-15 11:54 - 2015-04-02 20:10 - 00000000 ____D C:\Program Files (x86)\Glyph
    2016-02-15 11:54 - 2015-02-21 01:11 - 00000000 ____D C:\Program Files\Ventrilo
    2016-02-15 11:54 - 2014-12-03 18:09 - 00000000 ____D C:\Program Files (x86)\PopCap Games
    2016-02-15 11:54 - 2014-11-01 19:51 - 00000000 ____D C:\Program Files\WinRAR
    2016-02-15 11:54 - 2014-10-16 00:24 - 00000000 ____D C:\Program Files\Vuze
    2016-02-15 11:54 - 2014-10-15 13:50 - 00000000 ____D C:\Program Files (x86)\Hearthstone
    2016-02-15 11:54 - 2014-10-15 12:47 - 00000000 ____D C:\Program Files (x86)\Diablo III
    2016-02-15 11:54 - 2014-10-15 08:26 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
    2016-02-15 11:54 - 2014-10-15 08:26 - 00000000 ____D C:\Program Files\AMD
    2016-02-15 11:52 - 2014-10-16 00:45 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
    2016-02-15 11:52 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\registration
    2016-02-15 07:38 - 2014-10-31 11:25 - 10244344 _____ C:\Users\Mike\AppData\Local\census.cache
    2016-02-15 07:12 - 2014-10-31 11:25 - 00139948 _____ C:\Users\Mike\AppData\Local\ars.cache
    2016-02-13 19:36 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\PolicyDefinitions
    2016-02-09 22:23 - 2014-10-15 05:13 - 00796864 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
    2016-02-09 22:23 - 2014-10-15 05:13 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
    2016-02-09 22:23 - 2014-10-15 05:13 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
    2016-02-07 14:51 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\rescache
    2016-02-07 00:44 - 2015-06-10 15:19 - 44212224 _____ C:\Windows\system32\config\components.iodefrag.bak
    2016-02-07 00:44 - 2014-10-16 16:22 - 84086784 _____ C:\Windows\system32\config\SOFTWARE.iodefrag.bak
    2016-02-07 00:44 - 2014-10-16 16:22 - 05029888 _____ C:\Windows\system32\config\DEFAULT.iodefrag.bak
    2016-02-07 00:44 - 2014-10-16 16:22 - 00061440 _____ C:\Windows\system32\config\SAM.iodefrag.bak
    2016-02-07 00:44 - 2014-10-16 16:22 - 00024576 _____ C:\Windows\system32\config\SECURITY.iodefrag.bak
    2016-02-04 23:00 - 2009-07-14 00:08 - 00032536 _____ C:\Windows\Tasks\SCHEDLGU.TXT
    2016-02-02 00:21 - 2014-10-15 04:57 - 00003894 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
    2016-02-02 00:21 - 2014-10-15 04:57 - 00003642 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
     
    ==================== Files in the root of some directories =======
     
    2014-10-31 11:25 - 2016-02-15 07:12 - 0139948 _____ () C:\Users\Mike\AppData\Local\ars.cache
    2014-10-31 11:25 - 2016-02-15 07:38 - 10244344 _____ () C:\Users\Mike\AppData\Local\census.cache
    2014-10-15 05:01 - 2014-10-15 05:01 - 0000000 _____ () C:\Users\Mike\AppData\Local\Driver_LOM_8161Present.flag
    2014-10-31 11:06 - 2014-10-31 11:06 - 0000036 _____ () C:\Users\Mike\AppData\Local\housecall.guid.cache
    2014-10-31 11:11 - 2014-10-31 11:11 - 0000010 _____ () C:\Users\Mike\AppData\Local\sponge.last.runtime.cache
     
    Some files in TEMP:
    ====================
    C:\Users\Mike\AppData\Local\Temp\sqlite3.dll
     
     
    ==================== Bamital & volsnap =================
     
    (There is no automatic fix for files that do not pass verification.)
     
    C:\Windows\system32\winlogon.exe => File is digitally signed
    C:\Windows\system32\wininit.exe => File is digitally signed
    C:\Windows\SysWOW64\wininit.exe => File is digitally signed
    C:\Windows\explorer.exe => File is digitally signed
    C:\Windows\SysWOW64\explorer.exe => File is digitally signed
    C:\Windows\system32\svchost.exe => File is digitally signed
    C:\Windows\SysWOW64\svchost.exe => File is digitally signed
    C:\Windows\system32\services.exe => File is digitally signed
    C:\Windows\system32\User32.dll => File is digitally signed
    C:\Windows\SysWOW64\User32.dll => File is digitally signed
    C:\Windows\system32\userinit.exe => File is digitally signed
    C:\Windows\SysWOW64\userinit.exe => File is digitally signed
    C:\Windows\system32\rpcss.dll => File is digitally signed
    C:\Windows\system32\dnsapi.dll => File is digitally signed
    C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
    C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
     
     
    LastRegBack: 2016-02-15 14:14
     
    Additional scan result of Farbar Recovery Scan Tool (x64) Version:17-02-2016
    Ran by Mike (2016-02-19 18:48:59)
    Running from C:\Users\Mike\Desktop
    Windows 7 Home Premium Service Pack 1 (X64) (2014-10-15 09:48:20)
    Boot Mode: Normal
    ==========================================================
     
     
    ==================== Accounts: =============================
     
    Administrator (S-1-5-21-3800875428-2236599744-3644965068-500 - Administrator - Disabled)
    Guest (S-1-5-21-3800875428-2236599744-3644965068-501 - Limited - Disabled)
    HomeGroupUser$ (S-1-5-21-3800875428-2236599744-3644965068-1002 - Limited - Enabled)
    Mike (S-1-5-21-3800875428-2236599744-3644965068-1000 - Administrator - Enabled) => C:\Users\Mike
     
    ==================== Security Center ========================
     
    (If an entry is included in the fixlist, it will be removed.)
     
    AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A}
    AV: Advanced SystemCare Ultimate (Enabled - Up to date) {91A1210C-78DD-A71C-E865-63DB27C767EE}
    AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7}
    AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    AS: Spybot - Search and Destroy (Disabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
    AS: IObit Malware Fighter (Enabled - Up to date) {A751AC20-3B48-5237-898A-78C4436BB78D}
     
    ==================== Installed Programs ======================
     
    (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
     
    ACPI Driver Installer (HKLM-x32\...\553E35CD-0415-41bc-B39A-410375E88534) (Version: 2.1 - Intel Corporation)
    Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.010.20059 - Adobe Systems Incorporated)
    Adobe Flash Player 20 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 20.0.0.306 - Adobe Systems Incorporated)
    Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.306 - Adobe Systems Incorporated)
    Advanced SystemCare Ultimate 8 (HKLM-x32\...\Advanced SystemCare Ultimate_is1) (Version: 8.2.0 - IObit)
    AMD Catalyst Install Manager (HKLM\...\{7E5DC2C5-115A-322B-976C-219237FAED66}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
    Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
    Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.5.0.0 - Canon Inc.)
    Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version:  - Canon Inc.)
    Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 4.0.0 - Canon Inc.)
    Canon MG2500 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG2500_series) (Version: 1.00 - Canon Inc.)
    Canon MG2500 series On-screen Manual (HKLM-x32\...\Canon MG2500 series On-screen Manual) (Version: 7.6.1 - Canon Inc.)
    Canon MG2500 series User Registration (HKLM-x32\...\Canon MG2500 series User Registration) (Version:  - ‭Canon Inc.)
    Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 2.0.1 - Canon Inc.)
    Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 2.0.0 - Canon Inc.)
    Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.1.0 - Canon Inc.)
    Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.2.1 - Canon Inc.)
    Curse Client (HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\101a9f93b8f0bb6f) (Version: 5.1.1.844 - Curse)
    D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
    Diablo III (HKLM-x32\...\Diablo III) (Version:  - Blizzard Entertainment)
    Driver Booster 3.2 (HKLM-x32\...\Driver Booster_is1) (Version: 3.2 - IObit)
    Escape Rosecliff Island (HKLM-x32\...\Escape Rosecliff Island) (Version:  - PopCap Games)
    EverQuest II (HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\DG0-EverQuest II) (Version:  - Sony Online Entertainment)
    EverQuest II (HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\DGC-EverQuest II) (Version: 1.0.3.191 - Daybreak Game Company)
    Glyph (HKLM-x32\...\Glyph) (Version:  - Trion Worlds, Inc.)
    Golden Cherry Casino (HKLM-x32\...\GoldenCherryCasino) (Version: 1.0 - Rival)
    Google Chrome (HKLM-x32\...\Google Chrome) (Version: 48.0.2564.116 - Google Inc.)
    Google Earth (HKLM-x32\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google)
    Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.7210.1528 - Google Inc.)
    Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
    Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
    Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
    Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
    Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version:  - Blizzard Entertainment)
    Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation)
    Intel® USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.0.19 - Intel Corporation)
    Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\{3FD0C489-0F02-481a-A3E1-9754CD396761}) (Version:  - Intel Corporation)
    Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\3FD0C489-0F02-481a-A3E1-9754CD396761) (Version:  - Intel Corporation)
    IObit Malware Fighter 3 (HKLM-x32\...\IObit Malware Fighter_is1) (Version: 3.4 - IObit)
    IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 5.2.1.116 - IObit)
    Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
    Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
    Microsoft OneDrive (HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\OneDriveSetup.exe) (Version: 17.0.4035.0328 - Microsoft Corporation)
    Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.8.204.0 - Microsoft Corporation)
    Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
    Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
    Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
    Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
    MSI Intel Extreme Tuning Utility (HKLM-x32\...\{2301bb34-385a-4a57-877f-c54347957fad}) (Version: 4.0.6.305 - Intel Corporation)
    MSI Intel Extreme Tuning Utility (x32 Version: 4.0.6.305 - Intel Corporation) Hidden
    Qualcomm Atheros Bandwidth Control Filter Driver (Version: 1.1.39.1040 - Qualcomm Atheros) Hidden
    Qualcomm Atheros Killer E220x Drivers (Version: 1.1.39.1040 - Qualcomm Atheros) Hidden
    Qualcomm Atheros Killer Network Manager Suite (HKLM-x32\...\{E70DB50B-10B4-46BC-9DE2-AB8B49E061EE}) (Version: 1.1.39.1040 - Qualcomm Atheros)
    Qualcomm Atheros Network Manager (Version: 1.1.39.1040 - Qualcomm Atheros) Hidden
    Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7673 - Realtek Semiconductor Corp.)
    RIFT (HKLM-x32\...\Glyph RIFT) (Version:  - Trion Worlds, Inc.)
    Smart Defrag 4 (HKLM-x32\...\Smart Defrag 4_is1) (Version: 4.3 - IObit)
    Sound Blaster Cinema (HKLM-x32\...\{8801CA65-921A-4CCC-9D63-879D1D0BAA97}) (Version: 1.00.05 - Creative Technology Limited)
    Speccy (HKLM\...\Speccy) (Version: 1.29 - Piriform)
    Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)
    StarCraft II (HKLM-x32\...\StarCraft II) (Version:  - Blizzard Entertainment)
    Super-Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.2.022 - MSI)
    Surfing Protection (HKLM-x32\...\IObit Surfing Protection_is1) (Version: 1.2 - IObit)
    The Weather Channel App (HKLM-x32\...\{167158CE-1637-4167-8A1C-C2549EEA966A}) (Version: 1.00.0000 - The Weather Channel)
    Ventrilo Client for Windows x64 (HKLM\...\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}) (Version: 3.0.8.0 - Flagship Industries, Inc.)
    VGA Boost (HKLM-x32\...\{809ACFAE-9A4D-4C60-9223-D8B615CD8CBA}}_is1) (Version: 1.0.0.7 - MSI)
    VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
    Vuze (HKLM\...\8461-7759-5462-8226) (Version: 5.6.2.0 - Azureus Software, Inc.)
    WeatherBug® (HKLM-x32\...\WeatherBug®) (Version: 10.0.7.4 - Earth Networks, Inc.)
    Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
    WinRAR 5.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)
    World of Warcraft (HKLM-x32\...\World of Warcraft) (Version:  - Blizzard Entertainment)
     
    ==================== Custom CLSID (Whitelisted): ==========================
     
    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
     
     
    ==================== Scheduled Tasks (Whitelisted) =============
     
    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
     
    Task: {03913373-0A23-47A8-91A8-710EF70E0FD2} - System32\Tasks\ASC7U_SkipUac_Mike => C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ASC.exe
    Task: {24B98838-FA06-424C-B21C-860F1A1DFA19} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
    Task: {2919F166-BC06-499F-A763-53FD77D68544} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2014-06-24] (Safer-Networking Ltd.)
    Task: {2C92086D-11F7-4E97-8EF0-1614F90D93A0} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.)
    Task: {4CFF09DB-94C8-4FDC-880F-1C9C258FE7CE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
    Task: {5BDE43C3-87EE-4632-B4EC-345301F33D82} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated)
    Task: {5CBFD743-E331-464E-9F24-546126C06344} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2014-06-24] (Safer-Networking Ltd.)
    Task: {7176D4A6-DA0C-481B-BAF4-F25BE869523F} - \ProPCCleaner_Popup -> No File <==== ATTENTION
    Task: {8F64BB04-3572-4CFA-AE64-3630122D3F98} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-09] (Adobe Systems Incorporated)
    Task: {93BE5F60-4791-4AC0-BDFE-FBCE434372BB} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe
    Task: {95A25C13-0797-410E-8084-DFFF189F2DDE} - System32\Tasks\{7AC4E509-DF83-462F-9580-A90D835455DD} => pcalua.exe -a "C:\Users\Mike\Downloads\wlsetup-web (2).exe" -d C:\Users\Mike\Downloads
    Task: {A039846E-290E-4BAB-B287-5858564720B4} - \LaunchPreSignup -> No File <==== ATTENTION
    Task: {C1972E33-28A0-4405-B4CC-59A9CE79ADBC} - System32\Tasks\SmartDefrag4_Update => C:\Program Files (x86)\IObit\Smart Defrag 4\AutoUpdate.exe [2015-08-21] (IObit)
    Task: {C2F9B677-B2A7-4011-A604-AC3ECF953210} - \ProPCCleaner_Start -> No File <==== ATTENTION
    Task: {C7394713-73A6-441C-B9F5-8680F7A90BD5} - System32\Tasks\ASCU8_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\Monitor.exe [2015-05-14] (IObit)
    Task: {F2A2789E-D8C2-4ED0-A88A-58721C83E678} - System32\Tasks\ASCU8_SkipUac_Mike => C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASC.exe [2015-11-27] (IObit)
     
    (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
     
    Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
     
    ==================== Shortcuts =============================
     
    (The entries could be listed to be restored or removed.)
     
    ==================== Loaded Modules (Whitelisted) ==============
     
    2015-01-15 16:41 - 2012-03-27 22:49 - 00140456 _____ () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
    2016-02-19 18:45 - 2014-09-23 17:19 - 00146736 ____N () C:\Program Files\Earth Networks\WeatherBug\WeatherBug.exe
    2015-03-18 13:51 - 2013-10-25 12:08 - 00517408 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\sqlite3.dll
    2015-03-18 13:51 - 2013-11-14 16:02 - 00218944 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\Antivirus\bdfltlib.dll
    2015-08-07 21:31 - 2015-01-09 18:46 - 00517408 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\sqlite3.dll
    2016-02-17 00:42 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
    2016-02-17 00:42 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
    2016-02-17 00:42 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
    2014-10-15 04:58 - 2013-09-16 14:20 - 01242584 ____R () C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\ACE.dll
    2016-02-19 18:31 - 2016-02-17 23:14 - 01630360 _____ () C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.116\libglesv2.dll
    2016-02-19 18:31 - 2016-02-17 23:14 - 00085656 _____ () C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.116\libegl.dll
     
    ==================== Alternate Data Streams (Whitelisted) =========
     
    (If an entry is included in the fixlist, only the ADS will be removed.)
     
     
    ==================== Safe Mode (Whitelisted) ===================
     
    (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
     
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice => ""="Service"
     
    ==================== EXE Association (Whitelisted) ===============
     
    (If an entry is included in the fixlist, the registry item will be restored to default or removed.)
     
     
    ==================== Internet Explorer trusted/restricted ===============
     
    (If an entry is included in the fixlist, it will be removed from the registry.)
     
    IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
    IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
    IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
    IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
    IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
    IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
    IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
    IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
    IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
    IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
    IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
    IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
    IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
    IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
    IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
    IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
    IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
    IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
    IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
    IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com
     
    There are 7871 more sites.
     
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\007guard.com -> install.007guard.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\008i.com -> 008i.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\008k.com -> www.008k.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\00hq.com -> www.00hq.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\010402.com -> 010402.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\0190-dialers.com -> 0190-dialers.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\01i.info -> 01i.info
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\05p.com -> 05p.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\0calories.net -> 0calories.net
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\0cj.net -> 0cj.net
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\0scan.com -> www.0scan.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\1-2005-search.com -> www.1-2005-search.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\1-domains-registrations.com -> www.1-domains-registrations.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\1-se.com -> 1-se.com
     
    There are 11408 more sites.
     
     
    ==================== Hosts content: ==========================
     
    (If needed Hosts: directive could be included in the fixlist to reset Hosts.)
     
    2009-07-13 21:34 - 2016-02-18 02:04 - 00450954 ____R C:\Windows\system32\Drivers\etc\hosts
     
    127.0.0.1 www.007guard.com
    127.0.0.1 007guard.com
    127.0.0.1 008i.com
    127.0.0.1 www.008k.com
    127.0.0.1 008k.com
    127.0.0.1 www.00hq.com
    127.0.0.1 00hq.com
    127.0.0.1 010402.com
    127.0.0.1 www.032439.com
    127.0.0.1 032439.com
    127.0.0.1 www.0scan.com
    127.0.0.1 0scan.com
    127.0.0.1 1000gratisproben.com
    127.0.0.1 www.1000gratisproben.com
    127.0.0.1 1001namen.com
    127.0.0.1 www.1001namen.com
    127.0.0.1 100888290cs.com
    127.0.0.1 www.100888290cs.com
    127.0.0.1 www.100sexlinks.com
    127.0.0.1 100sexlinks.com
    127.0.0.1 10sek.com
    127.0.0.1 www.10sek.com
    127.0.0.1 www.1-2005-search.com
    127.0.0.1 1-2005-search.com
    127.0.0.1 123fporn.info
    127.0.0.1 www.123fporn.info
    127.0.0.1 123haustiereundmehr.com
    127.0.0.1 www.123haustiereundmehr.com
    127.0.0.1 123moviedownload.com
    127.0.0.1 www.123moviedownload.com
     
    There are 15469 more lines.
     
     
    ==================== Other Areas ============================
     
    (Currently there is no automatic fix for this section.)
     
    HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
    DNS Servers: 209.18.47.61 - 209.18.47.62
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
    Windows Firewall is enabled.
     
    ==================== MSCONFIG/TASK MANAGER disabled items ==
     
    (Currently there is no automatic fix for this section.)
     
     
    ==================== FirewallRules (Whitelisted) ===============
     
    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
     
    FirewallRules: [{645CE2A2-E953-4063-B0DB-C5BDB68AA0EF}] => (Allow) C:\Program Files (x86)\Intel\Extreme Tuning Utility\Client\PerfTune.exe
    FirewallRules: [{DEEF72E7-D51F-419E-A1C0-86A07BF1DB3B}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
    FirewallRules: [{77652583-E9ED-4313-9E28-A93E0EF06C2E}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
    FirewallRules: [{35431D30-ADE1-423D-84A0-517BFE132941}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe
    FirewallRules: [{7F78D269-2D1F-4A12-878C-147B565C7E6C}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe
    FirewallRules: [{FA8886D9-699E-422C-BB0B-09E254F58B80}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe
    FirewallRules: [{FBDA60BB-4D2D-4D2C-8B37-C7218DC79108}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe
    FirewallRules: [TCP Query User{D0D231B5-C5C2-435E-A374-B7510B106D57}C:\program files\vuze\azureus.exe] => (Allow) C:\program files\vuze\azureus.exe
    FirewallRules: [UDP Query User{92C84195-7FF6-4B9A-8407-B889C1A5DA1C}C:\program files\vuze\azureus.exe] => (Allow) C:\program files\vuze\azureus.exe
    FirewallRules: [{6F982470-3010-4B11-992E-E8DE36FCE27C}] => (Allow) C:\Program Files\Ventrilo\Ventrilo.exe
    FirewallRules: [{EFD5C8A3-883C-4A48-9CF7-08BF84397933}] => (Allow) C:\Program Files\Ventrilo\Ventrilo.exe
    FirewallRules: [{01FE1006-D8C5-4A95-A3E0-EE44D91B9920}] => (Allow) LPort=22001
    FirewallRules: [{CF5F88B0-7108-471B-A698-5E7A8DE6E55B}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe
    FirewallRules: [{27026C79-EFE9-4066-BABA-9C827C843DD3}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe
    FirewallRules: [{28676D46-EFE3-47F7-9624-4C75334B2664}] => (Allow) C:\Program Files\Vuze\Azureus.exe
    FirewallRules: [{197975AF-1DA8-44BB-B8E3-C46EF76FABA8}] => (Allow) C:\Program Files\Vuze\Azureus.exe
    FirewallRules: [{DD7E9193-770B-4C8C-9B67-7DA5C1A6D797}] => (Allow) C:\Users\Mike\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
    FirewallRules: [{D770136D-2F7D-4D2C-A091-7128028BC28B}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
    FirewallRules: [{421CA8F9-5B29-44A2-9667-52DF198E4C8B}] => (Allow) LPort=2869
    FirewallRules: [{A840DC9C-C7AB-4FFA-AD40-F48B2BF1A424}] => (Allow) LPort=1900
    FirewallRules: [{4161B95B-D7BD-4EA0-AFFA-9E9A72967973}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
    FirewallRules: [{C1487ABF-61C4-4F21-83F1-23EEBA030B73}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
    FirewallRules: [{6901681D-8CD6-4190-A77E-9190C10D772E}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
    FirewallRules: [{677BA150-977B-42A5-A079-BE2BD8841902}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DBDownloader.exe
    FirewallRules: [{67699F1D-AA1A-403B-95B8-8F61DD129F97}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DBDownloader.exe
    FirewallRules: [{9B306B93-3E69-49DD-951C-C341C78F6527}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe
    FirewallRules: [{84AB4003-7B06-4CE1-9B42-D862789339E3}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe
    FirewallRules: [{357E364A-A480-44E1-ADFC-C308D57AA5DF}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
    StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
    StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
    StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service
     
    ==================== Restore Points =========================
     
    15-02-2016 11:59:24 Windows Update
    15-02-2016 12:29:35 Microsoft Security Essentials restore point
    17-02-2016 00:33:50 Spybot - Search & Destroy restore point
    18-02-2016 12:49:53 Windows Update
    19-02-2016 18:38:26 JRT Pre-Junkware Removal
     
    ==================== Faulty Device Manager Devices =============
     
    Name: Daniel
    Description: SPH-L900
    Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a}
    Manufacturer: Samsung Electronics Co., Ltd.
    Service: WUDFRd
    Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
    Resolution: Update the driver
     
     
    ==================== Event log errors: =========================
     
    Application errors:
    ==================
    Error: (02/19/2016 06:24:37 PM) (Source: WinMgmt) (EventID: 10) (User: )
    Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
     
    Error: (02/18/2016 11:34:51 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
    Description: 80004005
     
    Error: (02/18/2016 02:04:03 AM) (Source: Application Hang) (EventID: 1002) (User: )
    Description: The program SDLogReport.exe version 2.4.40.107 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
     
    Process ID: 9830
     
    Start Time: 01d16a1a399b54dd
     
    Termination Time: 2
     
    Application Path: C:\Program Files (x86)\Spybot - Search & Destroy 2\SDLogReport.exe
     
    Report Id: b3846545-d60d-11e5-9c7e-448a5b883e2a
     
    Error: (02/17/2016 09:31:21 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
    Description: 80004005
     
    Error: (02/16/2016 02:39:26 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
    Description: 80004005
     
    Error: (02/16/2016 09:30:13 AM) (Source: MsiInstaller) (EventID: 1023) (User: Mike-PC)
    Description: Product: Adobe Acrobat Reader DC - Update '{AC76BA86-7AD7-0000-2550-AC0F0A4E5B00}' could not be installed. Error code 1625. Additional information is available in the log file C:\Users\Mike\AppData\Local\Temp\MSI89b0.LOG.
     
    Error: (02/15/2016 07:27:07 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
    Description: 80004005
     
    Error: (02/15/2016 12:28:45 PM) (Source: Microsoft Security Client Setup) (EventID: 100) (User: Mike-PC)
    Description: HRESULT:0x8004FF06
    Description:Microsoft Security Essentials is already installed. A newer version of Security Essentials is already installed on your computer. Error code:0x8004FF06.
     
    Error: (02/15/2016 11:57:07 AM) (Source: WinMgmt) (EventID: 10) (User: )
    Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
     
    Error: (02/15/2016 11:29:19 AM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Faulting application name: fshoster32.exe, version: 1.10.134.0, time stamp: 0x562a0f70
    Faulting module name: spapi32.dll_unloaded, version: 0.0.0.0, time stamp: 0x559e758b
    Exception code: 0xc0000005
    Fault offset: 0x5401fb5b
    Faulting process id: 0x1274
    Faulting application start time: 0xfshoster32.exe0
    Faulting application path: fshoster32.exe1
    Faulting module path: fshoster32.exe2
    Report Id: fshoster32.exe3
     
     
    System errors:
    =============
    Error: (02/19/2016 06:25:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Spybot-S&D 2 Scanner Service service failed to start due to the following error: 
    %%1053
     
    Error: (02/19/2016 06:25:08 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
    Description: A timeout was reached (30000 milliseconds) while waiting for the Spybot-S&D 2 Scanner Service service to connect.
     
    Error: (02/19/2016 06:24:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Spybot-S&D 2 Scanner Service service failed to start due to the following error: 
    %%1053
     
    Error: (02/19/2016 06:24:33 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
    Description: A timeout was reached (30000 milliseconds) while waiting for the Spybot-S&D 2 Scanner Service service to connect.
     
    Error: (02/19/2016 06:23:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The SpyHunter 4 Service service failed to start due to the following error: 
    %%3
     
    Error: (02/19/2016 06:22:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Spybot-S&D 2 Security Center Service service failed to start due to the following error: 
    %%109
     
    Error: (02/19/2016 06:22:01 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
    Description: The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Windows Search service, but this action failed with the following error: 
    %%1056
     
    Error: (02/19/2016 06:21:33 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: The Spybot-S&D 2 Updating Service service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Restart the service.
     
    Error: (02/19/2016 06:21:32 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: The Spybot-S&D 2 Security Center Service service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Restart the service.
     
    Error: (02/19/2016 06:21:31 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: The Windows Search service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 30000 milliseconds: Restart the service.
     
     
    CodeIntegrity:
    ===================================
      Date: 2016-02-14 05:19:01.788
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
      Date: 2016-02-14 05:19:01.783
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
      Date: 2016-02-14 05:19:01.773
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
      Date: 2016-02-14 05:19:01.773
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
      Date: 2016-02-14 05:18:45.159
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
      Date: 2016-02-14 05:18:45.154
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
      Date: 2016-02-14 05:18:45.119
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
      Date: 2016-02-14 05:18:45.114
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
      Date: 2016-02-14 05:17:38.473
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
      Date: 2016-02-14 05:17:38.473
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
     
    ==================== Memory info =========================== 
     
    Processor: Intel® Core™ i5-4670K CPU @ 3.40GHz
    Percentage of memory in use: 45%
    Total physical RAM: 8135.93 MB
    Available physical RAM: 4450.69 MB
    Total Virtual: 16270.07 MB
    Available Virtual: 12250.52 MB
     
    ==================== Drives ================================
     
    Drive c: () (Fixed) (Total:931.41 GB) (Free:82.79 GB) NTFS
     
    ==================== MBR & Partition Table ==================
     
    ========================================================
    Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: D61C9053)
    Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
    Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS)
     
    ==================== End of Addition.txt ============================
     
    ==================== End of FRST.txt ============================

    • 0

    #4
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 20,031 posts
    • MVP
    Did you not run AdwCleaner?
     
    Uninstall:
     
    Driver Booster 3.2
    IObit Malware Fighter 3 
    IObit Uninstaller 
    Spybot - Search & Destroy (Have it undo its immunizations if you can.)  
    Surfing Protection
     
     
     
    Download the attached fixlist.txt to the same location as FRST
     
     
    Run FRST and press Fix
    A fix log will be generated please post that 
     
    Are you still having problems with Facebook?
     
     
     
     
     

    • 0

    #5
    MHC3

    MHC3

      Member

    • Topic Starter
    • Member
    • PipPip
    • 14 posts

    Yes I did run AdwCleaner nothing found - Here's the fixlist.text:

     

    Fix result of Farbar Recovery Scan Tool (x64) Version:17-02-2016
    Ran by Mike (2016-02-20 18:56:51) Run:1
    Running from C:\Users\Mike\Desktop\Security
    Loaded Profiles: Mike (Available Profiles: Mike)
    Boot Mode: Normal
    ==============================================
     
    fixlist content:
    *****************
    HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE
    BootExecute: autocheck autochk * 搀渀挀氀攀愀渀㘀㐀⸀攀砀攀
    SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000 -> DefaultScope {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} URL = 
    S2 SpyHunter 4 Service; no ImagePath
    S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2014-12-12] ()
    S3 MSICDSetup; \??\D:\CDriver64.sys [X]
    S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X]
    2016-02-15 10:51 - 2016-02-15 11:30 - 00000000 ____D C:\ProgramData\F-Secure
    2016-02-15 10:51 - 2016-02-15 11:20 - 00000000 ____D C:\Users\Mike\AppData\Local\F-Secure 
    Task: {03913373-0A23-47A8-91A8-710EF70E0FD2} - System32\Tasks\ASC7U_SkipUac_Mike => C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ASC.exe
    Task: {2919F166-BC06-499F-A763-53FD77D68544} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2014-06-24] (Safer-Networking Ltd.)
    Task: {2C92086D-11F7-4E97-8EF0-1614F90D93A0} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.)
    Task: {5CBFD743-E331-464E-9F24-546126C06344} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2014-06-24] (Safer-Networking Ltd.)
    Task: {7176D4A6-DA0C-481B-BAF4-F25BE869523F} - \ProPCCleaner_Popup -> No File <==== ATTENTION
    Task: {95A25C13-0797-410E-8084-DFFF189F2DDE} - System32\Tasks\{7AC4E509-DF83-462F-9580-A90D835455DD} => pcalua.exe -a "C:\Users\Mike\Downloads\wlsetup-web (2).exe" -d C:\Users\Mike\Downloads
    Task: {A039846E-290E-4BAB-B287-5858564720B4} - \LaunchPreSignup -> No File <==== ATTENTION
    Task: {C1972E33-28A0-4405-B4CC-59A9CE79ADBC} - System32\Tasks\SmartDefrag4_Update => C:\Program Files (x86)\IObit\Smart Defrag 4\AutoUpdate.exe [2015-08-21] (IObit)
    Task: {C2F9B677-B2A7-4011-A604-AC3ECF953210} - \ProPCCleaner_Start -> No File <==== ATTENTION
    Task: {C7394713-73A6-441C-B9F5-8680F7A90BD5} - System32\Tasks\ASCU8_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\Monitor.exe [2015-05-14] (IObit)
    Task: {F2A2789E-D8C2-4ED0-A88A-58721C83E678} - System32\Tasks\ASCU8_SkipUac_Mike => C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASC.exe [2015-11-27] (IObit)
    Task: {93BE5F60-4791-4AC0-BDFE-FBCE434372BB} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe
    Hosts:
    EmptyTemp:
     
     
     
     
     
     
     
     
     
     
     
     
     
    *****************
     
    HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\UpdReg => value removed successfully
    hklm\System\CurrentControlSet\Control\Session Manager\\BootExecute => value restored successfully
    "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully
    HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found. 
    HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
    SpyHunter 4 Service => service removed successfully
    EsgScanner => service removed successfully
    MSICDSetup => service removed successfully
    NTIOLib_1_0_C => service removed successfully
    C:\ProgramData\F-Secure => moved successfully
    C:\Users\Mike\AppData\Local\F-Secure => moved successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{03913373-0A23-47A8-91A8-710EF70E0FD2}" => key removed successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{03913373-0A23-47A8-91A8-710EF70E0FD2}" => key removed successfully
    C:\Windows\System32\Tasks\ASC7U_SkipUac_Mike => moved successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASC7U_SkipUac_Mike" => key removed successfully
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2919F166-BC06-499F-A763-53FD77D68544} => key not found. 
    C:\Windows\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => moved successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Scan the system" => key removed successfully
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2C92086D-11F7-4E97-8EF0-1614F90D93A0} => key not found. 
    C:\Windows\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => moved successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Check for updates" => key removed successfully
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5CBFD743-E331-464E-9F24-546126C06344} => key not found. 
    C:\Windows\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => moved successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Refresh immunization" => key removed successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7176D4A6-DA0C-481B-BAF4-F25BE869523F}" => key removed successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7176D4A6-DA0C-481B-BAF4-F25BE869523F}" => key removed successfully
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ProPCCleaner_Popup => key not found. 
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{95A25C13-0797-410E-8084-DFFF189F2DDE}" => key removed successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{95A25C13-0797-410E-8084-DFFF189F2DDE}" => key removed successfully
    C:\Windows\System32\Tasks\{7AC4E509-DF83-462F-9580-A90D835455DD} => moved successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{7AC4E509-DF83-462F-9580-A90D835455DD}" => key removed successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A039846E-290E-4BAB-B287-5858564720B4}" => key removed successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A039846E-290E-4BAB-B287-5858564720B4}" => key removed successfully
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\LaunchPreSignup => key not found. 
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C1972E33-28A0-4405-B4CC-59A9CE79ADBC}" => key removed successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C1972E33-28A0-4405-B4CC-59A9CE79ADBC}" => key removed successfully
    C:\Windows\System32\Tasks\SmartDefrag4_Update => moved successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SmartDefrag4_Update" => key removed successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C2F9B677-B2A7-4011-A604-AC3ECF953210}" => key removed successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C2F9B677-B2A7-4011-A604-AC3ECF953210}" => key removed successfully
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ProPCCleaner_Start => key not found. 
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C7394713-73A6-441C-B9F5-8680F7A90BD5}" => key removed successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C7394713-73A6-441C-B9F5-8680F7A90BD5}" => key removed successfully
    C:\Windows\System32\Tasks\ASCU8_PerformanceMonitor => moved successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASCU8_PerformanceMonitor" => key removed successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F2A2789E-D8C2-4ED0-A88A-58721C83E678}" => key removed successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F2A2789E-D8C2-4ED0-A88A-58721C83E678}" => key removed successfully
    C:\Windows\System32\Tasks\ASCU8_SkipUac_Mike => moved successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASCU8_SkipUac_Mike" => key removed successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{93BE5F60-4791-4AC0-BDFE-FBCE434372BB}" => key removed successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{93BE5F60-4791-4AC0-BDFE-FBCE434372BB}" => key removed successfully
    C:\Windows\System32\Tasks\SpyHunter4Startup => moved successfully
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SpyHunter4Startup" => key removed successfully
    C:\Windows\System32\Drivers\etc\hosts => moved successfully
    Hosts restored successfully.
    EmptyTemp: => 655.6 MB temporary data Removed.
     
     
    The system needed a reboot.
     
    ==== End of Fixlog 18:57:26 ====

    • 0

    #6
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 20,031 posts
    • MVP

    If you are still having problems with Facebook, run FRST again, check the Addition.txt box then Scan.


    • 0

    #7
    MHC3

    MHC3

      Member

    • Topic Starter
    • Member
    • PipPip
    • 14 posts
    This is what I got upon inspecting the page. Maybe this will help to figure out why I can't access Facebook.
     
    <!DOCTYPE html>
    <html lang="en" id="facebook" class="highContrastSetting no_js">
    <head><meta charset="utf-8" /><script>function envFlush(a){function b©{for(var d in a)c[d]=a[d];}if(window.requireLazy){window.requireLazy(['Env'],b);}else{window.Env=window.Env||{};b(window.Env);}}envFlush({"ajaxpipe_token":"AXgwZOp3oE_E3Jdk","lhsh":"EAQGbOUeD","khsh":"0`sj`e`rm`s-0fdu^gshdoer-0gc^eurf-3gc^eurf;1;enbtldou;fduDmdldourCxO`ld-2YLMIuuqSdptdru;qsnunuxqd;rdoe-0unjdojnx-0unjdojnx0-0gdubi^rdbsduOdv-0`sj`e`r-0q`xm`r-0StoRbs`qhof-0mhoj^q`xm`r"});</script><script>CavalryLogger=false;</script><noscript><meta http-equiv="refresh" content="0; URL=/checkpoint/?next&amp;_fb_noscript=1" /></noscript><meta name="referrer" content="origin-when-crossorigin" id="meta_referrer" /><title id="pageTitle">Facebook</title><link rel="search" type="application/opensearchdescription+xml" href="/osd.xml" title="Facebook" /><link rel="alternate" media="only screen and (max-width: 640px)" href="https://www.facebook...eckpoint/?next"/><link rel="alternate" media="handheld" href="https://www.facebook.com/checkpoint/?next" /><meta name="robots" content="noodp,noydir" /><noscript><meta http-equiv="X-Frame-Options" content="DENY" /></noscript><link rel="shortcut icon" href="https://static.xx.fbcdn.net/rsrc.php/yl/r/H3nktOa7ZMg.ico" /><link type="text/css" rel="stylesheet" href="https://static.xx.fbcdn.net/rsrc.php/v2/yT/r/QXX6xROaSsI.css" data-bootloader-hash="WctkD" data-permanent="1" crossorigin="anonymous" />
    <link type="text/css" rel="stylesheet" href="https://static.xx.fb...AdM_WA7qHR.css"data-bootloader-hash="vvhj+" data-permanent="1" crossorigin="anonymous" />
    <link type="text/css" rel="stylesheet" href="https://static.xx.fb...QixkSt_bNH.css"data-bootloader-hash="VyEIk" crossorigin="anonymous" />
    <link type="text/css" rel="stylesheet" href="https://static.xx.fb...L6aMCn-3LU.css"data-bootloader-hash="0/7Y6" data-permanent="1" crossorigin="anonymous" />
    <link type="text/css" rel="stylesheet" href="https://static.xx.fb...9eiD0yc6Z8.css"data-bootloader-hash="7FkCN" data-permanent="1" crossorigin="anonymous" />
    <script src="https://static.xx.fb...3U2tPQomqx4.js"data-bootloader-hash="Rr4NZ" crossorigin="anonymous"></script>
    <script>require("TimeSlice").guard(function() {(require("ServerJSDefine")).handleDefines([["WorkModeConfig",[],{},396],["PresenceInitialData",[],{"cookiePollInterval":500,"cookieVersion":3,"dictEncode":true,"serverTime":"1455412347000","shouldSuppress":false},57],["VideoPlayerAbortLoadingExperiment",[],{"canAbort":true,"withoutLoad":true},824],["PhotoSnowliftActionsGating",[],{"ALLOW_MAKE_COVER_PHOTO_BUTTON":false,"ALLOW_MAKE_PROFILE_PICTURE_BUTTON":false},887],["LitestandShareAttachmentConfig",[],{"ALLOW_SIMPLE_CROP":true},1151],["FbtResultGK",[],{"shouldReturnFbtResult":false,"inlineMode":false},876],["AsyncRequestConfig",[],{"pkgCohort":"EXP1:DEFAULT","PKG_COHORT_KEY":"__pc","retryOnNetworkError":"1"},328],["BigPipeExperiments",[],{"preparse_content":"","prefetch":"none","download_js":"blocked_by_dom_ready","link_images_to_pagelets":false},907],["BootloaderConfig",[],{"maxJsRetries":0,"jsRetries":null,"jsRetryAbortNum":2,"jsRetryAbortTime":5},329],["CurrentUserInitialData",[],{"USER_ID":"0","ACCOUNT_ID":"0"},270],["SessionNameConfig",[],{"seed":"0R69"},757],["ReactGK",[],{"logTopLevelRenders":false,"useCreateElement":true},998],["CurrentCommunityInitialData",[],{},490],["LSD",[],{},323],["FbtLogger",[],{"logger":null},288],["URLFragmentPreludeConfig",[],{"incorporateQuicklingFragment":true,"hashtagRedirect":true},137],["UFIConfig",[],{"defaultPageSize":50,"renderEmoji":true,"renderEmoticons":true,"enableStreamingCommentsInFeed":true,"shouldShowStickerNUX":false,"vpvLoggingTimeout":1000,"facecastWWWCommentQueueThreshold":3,"showAccurateStreamingCommentCount":true,"canPublishLive":false,"logChangeOrderingModeUsageSampleRate":1,"logCommentsTimespent":true,"logWhetherUFISeen":false,"showHashtagTypeahead":false,"hasReactionsNUX":false,"numberDelimiter":",","reshareedu":true,"logCommentPost":false,"logCommentLoad":false,"reactActionLinks":true,"reactionsHoverDelay":0,"reactionsHideDelay":0,"reactionsDisplayHoverProgress":false,"reactionsHasEarlyBootload":false,"reactionsMultilineSocialSentence":false,"reactionsDisableMousemoveTrigger":false,"permalinkShareRowShowCommentCount":true,"permalinkShareRowCommentCountTooltip":true},71],["FbtQTOverrides",[],{"overrides":{"1_539bf175108659676097349f8b511a1d":"Donate to International Medical Corps now and Facebook will match your donation.","1_d1c1f6116da4d8f993a151fda3072cb5":"Donate to International Medical Corps today and join us in supporting relief efforts","1_6f7acce98bbf4cfdac77ebf5b9bad304":"100% of your donation will go to {=International Medical Corps} and their work in response to the Nepal earthquake. Facebook will also donate $2 million to local relief efforts.","1_8b130114c0a07a35b47bebd218149f60":"Support earthquake relief efforts","1_65c3391ebe4a1af8364ca4fbb8cb54d1":"Mobile Number or Email:","1_8d7e2c77c3375ec57db92d101f139964":"Donate to International Medical Corps now and support earthquake relief efforts."}},551],["LinkReactUnsafeHrefConfig",[],{"log_unsafe_href":false},1182],["DTSGInitialData",[],{"token":"g5jSuGzpg9E="},258],["AccessibilityConfig",[],{"a11yDontMessWithTabindex":false,"a11yVirtualCursorTrigger":false,"a11yNewsfeedStoryEnumeration":false},1227],["LinkshimHandlerConfig",[],{"supports_meta_referrer":true,"default_meta_referrer_policy":"origin-when-crossorigin","switched_meta_referrer_policy":"origin","render_verification_rate":1000},27],["UserAgentData",[],{"browserArchitecture":"32","browserFullVersion":"48.0.2564.103","browserMinorVersion":0,"browserName":"Chrome","browserVersion":48,"deviceName":"Unknown","engineName":"WebKit","engineVersion":"537.36","platformArchitecture":"64","platformName":"Windows","platformVersion":"7","platformFullVersion":"7"},527],["TrackingConfig",[],{"domain":"https:\/\/pixel.facebook.com"},325],["InitialServerTime",[],{"serverTime":1455412347000},204],["WebSpeedExperiments",[],{"non_blocking_tracker":false,"non_blocking_logger":false},1160],["CSSLoaderConfig",[],{"timeout":5000,"modulePrefix":"BLCSS:","loadEventSupported":true},619],["ISB",[],{},330],["SiteData",[],{"revision":2181183,"tier":"","push_phase":"V3","pkg_cohort":"EXP1:DEFAULT","spdy_enabled":false,"haste_site":"www","vip":"31.13.71.36"},317],["StickerConfig",[],{},515],["BanzaiConfig",[],{"EXPIRY":86400000,"MAX_SIZE":10000,"MAX_WAIT":150000,"RESTORE_WAIT":150000,"blacklist":["time_spent"],"gks":{"boosted_component":true,"boosted_pagelikes":true,"boosted_posts":true,"boosted_website":true,"jslogger":true,"mercury_send_error_logging":true,"pages_client_logging":true,"platform_oauth_client_events":true,"time_spent_bit_array":true,"useraction":true,"videos":true,"visibility_tracking":true,"vitals":true,"allow_userid_mismatch":true,"graphexplorer":true}},7],["CoreWarningGK",[],{"forceWarning":false},725],["IntlViewerContext",[],{"GENDER":50331648},772],["ZeroCategoryHeader",[],{},1127],["ErrorSignalConfig",[],{"uri":"https:\/\/error.facebook.com\/common\/scribe_endpoint.php"},319],["PageTransitionsConfig",[],{"reloadOnBootloadError":false},1067]]);new (require("ServerJS"))().handle({"require":[["TimeSlice"],["markJSEnabled"],["lowerDomain"],["URLFragmentPrelude"],["Primer"],["BigPipe"],["Bootloader"]]});}, "ServerJS define", {"root":true})();</script></head><body class="UIPage_LoggedOut _2gsg _xw8 _5p3y chrome webkit win x1 Locale_en_US" dir="ltr"><div class="_li"><div id="pagelet_bluebar" data-referrer="pagelet_bluebar"><div><div id="blueBarDOMInspector" class="_21mm _2gsf"><div class="_4f7n _1s4v _26aw _hdd _xxp"><div class="_uaw _cx4 clearfix" role="banner"><h1 class="_5lus"><a class="logo _48pw" href="#" role="button">Facebook</a></h1><div class="clearfix"><div class="lfloat _ohe"></div><div class="rfloat _ohf"><ul class="_2exj clearfix" role="navigation"><li class="navItem"><a class="_1ayn" href="https://www.facebook...#38;ref=mb">LogOut</a></li></ul></div></div></div></div></div></div></div><div id="globalContainer" class="uiContextualLayerParent"><div class="fb_content clearfix " id="content" role="main"><div class="_4-u5 _30ny"><form class="checkpoint" action="/checkpoint/?next" method="post" onsubmit="return window.Event &amp;&amp; Event.__inlineSubmit &amp;&amp; Event.__inlineSubmit(this,event)" id="u_0_0"><input type="hidden" name="fb_dtsg" value="g5jSuGzpg9E=" autocomplete="off" /><input type="hidden" autocomplete="off" name="nh" value="b67c86497a996ace2f6d161657931af2af543d4d" /><div class="_4-u2 _5x_7 _p0k _5x_9 _4-u8"><div class="_2e9n" id="u_0_c"><strong id="u_0_d">Your Computer Needs to Be Cleaned</strong></div><div class="_2ph_"><div class="_50f4"><table><tr><td><img class="img" src="https://static.xx.fbcdn.net/rsrc.php/v2/yn/r/1U2ftI0b2hV.png" width="34" height="34" alt="" /></td><td></td><td> It looks like your computer is being affected by malware. We’ll help you fix the problem to keep your account secure and prevent malware from spreading to friends. </td></tr><tr><td></td><td></td><td> Malware is software that tries to steal personal information and causes problems when you use Facebook. Clicking or sharing links that contain spam can give your computer malware. </td></tr></table></div></div><div class="_5hzs" id="checkpointBottomBar"><div class="_2s5p"><button value="Get Started" class="_42ft _4jy0 _5x_e _4jy4 _4jy1 selected _51sy" id="checkpointSubmitButton" name="submit[Get Started]" type="submit">Get Started</button></div><div class="_2s5q"><div id="u_0_1"></div></div></div></div></form><img class="img" src="https://external-lga3-1.xx.fbcdn.net/safe_image.php?d=AQA2_Pb4-pLPsoDq&amp;url=https%3A%2F%2Fpixel.facebook.com%2Fsi%2Fkappa%2F%3FKo%3Dp" alt="" /></div></div><div id="pageFooter" data-referrer="page_footer"><ul class="uiList localeSelectorList _2pid _509- _4ki _6-h _6-j _6-i"><li><a dir="ltr" href="https://www.facebook.com/checkpoint/?next" onclick="intl_set_cookie_locale(&quot;en_US&quot;, &quot;https:\/\/www.facebook.com\/checkpoint\/?next&quot;);" title="English (US)" id="u_0_2">English (US)</a></li><li><a dir="ltr" href="https://es-la.facebook.com/checkpoint/?next" onclick="intl_set_cookie_locale(&quot;es_LA&quot;, &quot;https:\/\/es-la.facebook.com\/checkpoint\/?next&quot;);" title="Spanish" id="u_0_3">Español</a></li><li><a dir="ltr" href="https://fr-fr.facebook.com/checkpoint/?next" onclick="intl_set_cookie_locale(&quot;fr_FR&quot;, &quot;https:\/\/fr-fr.facebook.com\/checkpoint\/?next&quot;);" title="French (France)" id="u_0_4">Français (France)</a></li><li><a dir="ltr" href="https://zh-cn.facebook.com/checkpoint/?next" onclick="intl_set_cookie_locale(&quot;zh_CN&quot;, &quot;https:\/\/zh-cn.facebook.com\/checkpoint\/?next&quot;);" title="Simplified Chinese (China)" id="u_0_5">中文(简体)</a></li><li><a dir="rtl" href="https://ar-ar.facebook.com/checkpoint/?next" onclick="intl_set_cookie_locale(&quot;ar_AR&quot;, &quot;https:\/\/ar-ar.facebook.com\/checkpoint\/?next&quot;);" title="Arabic" id="u_0_6">العربية</a></li><li><a dir="ltr" href="https://pt-br.facebook.com/checkpoint/?next" onclick="intl_set_cookie_locale(&quot;pt_BR&quot;, &quot;https:\/\/pt-br.facebook.com\/checkpoint\/?next&quot;);" title="Portuguese (Brazil)" id="u_0_7">Português (Brasil)</a></li><li><a dir="ltr" href="https://it-it.facebook.com/checkpoint/?next" onclick="intl_set_cookie_locale(&quot;it_IT&quot;, &quot;https:\/\/it-it.facebook.com\/checkpoint\/?next&quot;);" title="Italian" id="u_0_8">Italiano</a></li><li><a dir="ltr" href="https://ko-kr.facebook.com/checkpoint/?next" onclick="intl_set_cookie_locale(&quot;ko_KR&quot;, &quot;https:\/\/ko-kr.facebook.com\/checkpoint\/?next&quot;);" title="Korean" id="u_0_9">한국어</a></li><li><a dir="ltr" href="https://de-de.facebook.com/checkpoint/?next" onclick="intl_set_cookie_locale(&quot;de_DE&quot;, &quot;https:\/\/de-de.facebook.com\/checkpoint\/?next&quot;);" title="German" id="u_0_a">Deutsch</a></li><li><a dir="ltr" href="https://hi-in.facebook.com/checkpoint/?next" onclick="intl_set_cookie_locale(&quot;hi_IN&quot;, &quot;https:\/\/hi-in.facebook.com\/checkpoint\/?next&quot;);" title="Hindi" id="u_0_b">हिन्दी</a></li><li><a class="showMore" rel="dialog" ajaxify="/settings/language/language/?uri=https%3A%2F%2Fwww.facebook.com%2Fcheckpoint%2F%3Fnext&amp;source=TOP_LOCALES_DIALOG" title="Show more languages" href="#" role="button">…</a></li></ul><div id="contentCurve"></div><div role="contentinfo" aria-label="Facebook site links"><table class="uiGrid _51mz navigationGrid" cellspacing="0" cellpadding="0"><tbody><tr class="_51mx"><td class="_51m- hLeft plm"><a href="/r.php" title="Sign Up for Facebook">Sign Up</a></td><td class="_51m- hLeft plm"><a href="/login/" title="Log into Facebook">Log In</a></td><td class="_51m- hLeft plm"><a href="https://messenger.com/" title="Check out Messenger.">Messenger</a></td><td class="_51m- hLeft plm"><a href="/lite/" title="Facebook Lite for Android.">Facebook Lite</a></td><td class="_51m- hLeft plm"><a href="/mobile/?ref=pf" title="Check out Facebook Mobile.">Mobile</a></td><td class="_51m- hLeft plm"><a href="/find-friends?ref=pf" title="Find anyone on the web.">Find Friends</a></td><td class="_51m- hLeft plm"><a href="/badges/?ref=pf" title="Embed a Facebook badge on your website.">Badges</a></td><td class="_51m- hLeft plm"><a href="/directory/people/" title="Browse our people directory.">People</a></td><td class="_51m- hLeft plm"><a href="/directory/pages/" title="Browse our pages directory.">Pages</a></td><td class="_51m- hLeft plm"><a href="/places/" title="Check out popular places on Facebook.">Places</a></td><td class="_51m- hLeft plm _51mw"><a href="/games/" title="Check out Facebook games.">Games</a></td></tr><tr class="_51mx"><td class="_51m- hLeft plm"><a href="/directory/places/" title="Browse our places directory.">Locations</a></td><td class="_51m- hLeft plm"><a href="/facebook" accesskey="8" title="Read our blog, discover the resource center, and find job opportunities.">About</a></td><td class="_51m- hLeft plm"><a href="/campaign/landing.php?placement=pflo&amp;campaign_id=402047449186&amp;extra_1=auto" title="Advertise on Facebook.">Create Ad</a></td><td class="_51m- hLeft plm"><a href="/pages/create/?ref_type=sitefooter" title="Create a Page">Create Page</a></td><td class="_51m- hLeft plm"><a href="https://developers.facebook.com/?ref=pf" title="Develop on our platform.">Developers</a></td><td class="_51m- hLeft plm"><a href="/careers/?ref=pf" title="Make your next career move to our awesome company.">Careers</a></td><td class="_51m- hLeft plm"><a href="/privacy/explanation" title="Learn about your privacy and Facebook.">Privacy</a></td><td class="_51m- hLeft plm"><a href="/help/cookies/?ref=sitefooter" title="Learn about cookies and Facebook.">Cookies</a></td><td class="_51m- hLeft plm"><a class="_41ug" href="https://www.facebook.com/help/568137493302217" title="Learn about Ad Choices.">Ad Choices<i class="img sp_qu4DAuYk1S6 sx_f34f8d"></i></a></td><td class="_51m- hLeft plm"><a href="/policies/?ref=pf" accesskey="9" title="Review our terms and policies.">Terms</a></td><td class="_51m- hLeft plm _51mw"><a href="/help/?ref=pf" accesskey="0" title="Visit our Help Center.">Help</a></td></tr><tr class="_51mx"><td class="_51m- hLeft plm"><a class="accessible_elem" accesskey="6" href="/settings" title="View and edit your Facebook settings.">Settings</a></td><td class="_51m- hLeft plm"><a class="accessible_elem" accesskey="7" href="/allactivity?privacy_source=activity_log_top_menu" title="View your activity log">Activity Log</a></td></tr></tbody></table></div><div class="mvl copyright"><div><span> Facebook © 2016</span></div></div></div></div></div><script type="text/javascript">/*<![CDATA[*/(function(){function si_cj(m){setTimeout(function(){new Image().src="https:\/\/error.facebook.com\/common\/scribe_endpoint.php?c=si_clickjacking&t=5589"+"&m="+m;},5000);}if(top!=self && !false){try{if(parent!=top){throw 1;}var si_cj_d=["apps.facebook.com","apps.beta.facebook.com"];var href=top.location.href.toLowerCase();for(var i=0;i<si_cj_d.length;i++){if (href.indexOf(si_cj_d[i])>=0){throw 1;}}si_cj("3 https:\/\/www.facebook.com\/");}catch(e){si_cj("1 \thttps:\/\/www.facebook.com\/");window.document.write("\u003Cstyle>body * {display:none !important;}\u003C\/style>\u003Ca href=\"#\" onclick=\"top.location.href=window.location.href\" style=\"display:block !important;padding:10px\">Go to Facebook.com\u003C\/a>");/*gj1eszt9*/}}}())/*]]>*/</script>
    <script>requireLazy(["Bootloader"], function(Bootloader) {Bootloader.setResourceMap({"atGq1":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2iaFb3\/yH\/l\/en_US\/Ta5YnQdNSFy.js","crossOrigin":1},"Ktdt1":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yG\/r\/wBg80dBy2Ra.js","crossOrigin":1},"Bi6AL":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2i8gp3\/yj\/l\/en_US\/WIQcBxwlOXr.js","crossOrigin":1},"nL8ID":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yW\/r\/Dppan5o6UJu.js","crossOrigin":1},"yRr7p":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yr\/r\/7ztEcde0Vs0.js","crossOrigin":1},"Mpzk7":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2icMq3\/yM\/l\/en_US\/XOfKJ6pUv0L.js","crossOrigin":1},"4D2nX":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yS\/r\/EeJ-syjZr5W.js","crossOrigin":1},"W1CcH":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2iXqO3\/yg\/l\/en_US\/d2Tdc2D6-_o.js","crossOrigin":1},"Tuja9":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2iQDv3\/yA\/l\/en_US\/9vSWWzdE5eF.js","crossOrigin":1},"Y0is5":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yi\/r\/EEE2zYcQ4va.js","crossOrigin":1},"+askg":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2i2yo3\/yk\/l\/en_US\/aHzz2IgVmMM.js","crossOrigin":1},"ctItv":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2itj93\/y1\/l\/en_US\/Zp2gfEhcpC8.js","crossOrigin":1},"qdFjY":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2iExv3\/yy\/l\/en_US\/46rnTvf4eZp.js","crossOrigin":1},"L1k\/a":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yT\/r\/pLR_pv_fs_j.js","crossOrigin":1},"oE4Do":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/ye\/r\/K9O3qPDtfqb.js","crossOrigin":1},"Ku158":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2iUwt3\/yg\/l\/en_US\/Ww0n4Lpb0P3.js","crossOrigin":1},"14Jn2":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yH\/r\/BJ4DD0fJ63u.js","crossOrigin":1},"ccpBO":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yn\/r\/8v2_hdH4Nfm.js","crossOrigin":1},"fOS5h":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2iLjy3\/y5\/l\/en_US\/Ay9K0mkGMHa.js","crossOrigin":1},"+ClWy":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yF\/r\/A0qdgknEnD5.js","crossOrigin":1},"cNca2":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yS\/r\/_uW33I9lkJl.js","crossOrigin":1},"WSwTv":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/y_\/r\/XXn49zk5GnD.js","crossOrigin":1},"tzAxi":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2icZJ3\/yj\/l\/en_US\/tsktgDt3YVI.js","crossOrigin":1},"CgKH6":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2inse3\/yH\/l\/en_US\/NZ1ljYgAVg4.js","crossOrigin":1},"6USjB":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2iEP43\/yI\/l\/en_US\/seW8RDnxXmN.js","crossOrigin":1},"0idlr":{"type":"css","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yY\/r\/EmK8MBdZrY2.css","permanent":1,"crossOrigin":1},"bjIzU":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2if3Y3\/y2\/l\/en_US\/kGXyTJNoi6f.js","crossOrigin":1},"+S8i3":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yN\/r\/hjypVILAs75.js","crossOrigin":1},"uNu+u":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yZ\/r\/em_elljGQVo.js","crossOrigin":1},"vUTEc":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2ihBw3\/yv\/l\/en_US\/GlAs6lB62Eo.js","crossOrigin":1},"aPhac":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yk\/r\/hBbdugiUUm_.js","crossOrigin":1},"x05XZ":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2ityc3\/yu\/l\/en_US\/38yJdrZSe-Q.js","crossOrigin":1},"0ILtx":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/y3\/r\/rNeMaBtXlnJ.js","crossOrigin":1},"jUoUl":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yV\/r\/-n66vgei5rq.js","crossOrigin":1},"q2E5F":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2iuTv3\/yB\/l\/en_US\/PmGm5V4Z3nd.js","crossOrigin":1},"SrIlq":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2i96X3\/yF\/l\/en_US\/Y72KlHGeW1t.js","crossOrigin":1},"YujYI":{"type":"css","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/ys\/r\/cBrypigVd_P.css","permanent":1,"crossOrigin":1},"AGHpB":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2itD53\/yg\/l\/en_US\/TJimitsuoih.js","crossOrigin":1},"7VE+c":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2iWSE3\/yh\/l\/en_US\/6g1nsCAW9AO.js","crossOrigin":1},"2pvUV":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yU\/r\/eQCMs1uM7U8.js","crossOrigin":1},"S63it":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yE\/r\/GpuEAnDeYka.js","crossOrigin":1},"nglAv":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/y_\/r\/obuuYbfjHHg.js","crossOrigin":1},"VE4Hx":{"type":"css","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/y5\/r\/AHEeV7rkhvm.css","permanent":1,"crossOrigin":1},"y6Q+C":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2iYRT3\/yr\/l\/en_US\/rRaQPXHIYc0.js","crossOrigin":1},"Zgb4V":{"type":"css","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yK\/r\/OBwpfIwnzpY.css","permanent":1,"crossOrigin":1},"2rQR7":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yE\/r\/X6hCdNrzbmL.js","crossOrigin":1},"CL1XL":{"type":"css","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/ym\/r\/fVVji69RSrT.css","permanent":1,"crossOrigin":1},"m58Mm":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2iCO53\/yI\/l\/en_US\/I4s8G41Hoz3.js","crossOrigin":1},"lCGgP":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2iSo53\/y-\/l\/en_US\/Synpo5LQpHP.js","crossOrigin":1},"YQ4Zs":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/ye\/r\/knMZzROfUAC.js","crossOrigin":1},"kLLBo":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yl\/r\/2vAEyR4CGEK.js","crossOrigin":1},"yXVfC":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yn\/r\/dOzBGczuyD6.js","crossOrigin":1},"8EYFh":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yF\/r\/80xh4B2AHGb.js","crossOrigin":1},"acnFz":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2iSvd3\/yz\/l\/en_US\/1AIm8zRjYR4.js","crossOrigin":1},"O5BXE":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yr\/r\/vwvSCaQUS3s.js","crossOrigin":1},"w48nT":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yz\/r\/5Ph1RyjGiKH.js","crossOrigin":1},"FOZWR":{"type":"css","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yY\/r\/VrpZ89Y0nMF.css","permanent":1,"crossOrigin":1},"xQjaB":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2ipgf3\/yE\/l\/en_US\/OwNnuMlrnxQ.js","crossOrigin":1},"HidLU":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yc\/r\/trX7-QCvzUI.js","crossOrigin":1},"zuj6x":{"type":"css","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yY\/r\/qw1fuFLd9rt.css","permanent":1,"crossOrigin":1},"9fOPo":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2iKQv3\/yz\/l\/en_US\/U5ErIZE7iHc.js","crossOrigin":1},"5BLhq":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yT\/r\/cw1s286w_qV.js","crossOrigin":1},"xcnbQ":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2iJPD3\/y1\/l\/en_US\/nME8ubKLxlx.js","crossOrigin":1},"GJXDu":{"type":"css","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/y5\/r\/TMNCNH43tE-.css","crossOrigin":1},"ofKen":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2i2ub3\/yI\/l\/en_US\/nQgunPyh87J.js","crossOrigin":1},"ClIar":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yR\/r\/h4ZoN8mnezg.js","crossOrigin":1},"Cqw9P":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yZ\/r\/DwCtGlPCElL.js","crossOrigin":1},"y4Lpe":{"type":"css","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yO\/r\/BkcmBRzJgf5.css","crossOrigin":1},"y9tE\/":{"type":"js","src":"28375318231721112123012912916029301248112115721171231https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2iP8_3\/ym\/l\/en_US\/XP7k5T3gXJs.js","crossOrigin":1},"HV8NH":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2iWas3\/yJ\/l\/en_US\/DBScwARcZsW.js","crossOrigin":1},"vQD7k":{"type":"css","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yC\/r\/VtD1PkCYdcg.css","permanent":1,"crossOrigin":1},"AtxWD":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yu\/r\/mOwquNMdiEH.js","crossOrigin":1},"XWMaK":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2ioZX3\/yN\/l\/en_US\/xq90Di0_vBE.js","crossOrigin":1},"Rs18G":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yY\/r\/z9xrgSKFbeZ.js","crossOrigin":1},"zyFOp":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yz\/r\/ivYdZ9oXqgz.js","crossOrigin":1},"6AU0l":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2i9By3\/yD\/l\/en_US\/o0QtEkKfXCb.js","crossOrigin":1},"VDymv":{"type":"css","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yt\/r\/jnv4PEDGS8O.css","permanent":1,"crossOrigin":1},"zelhl":{"type":"css","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yO\/r\/WQJYbN-nEr-.css","permanent":1,"crossOrigin":1},"x5D7S":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/y1\/r\/1lMPY7ayovd.js","crossOrigin":1},"r30PS":{"type":"js","src":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yd\/r\/3lHrjC429KJ.js","crossOrigin":1}});if (true) {Bootloader.enableBootload({"DimensionTracking":{"resources":["atGq1","Ktdt1"],"module":1},"HighContrastMode":{"resources":["atGq1","0\/7Y6","Bi6AL","Ktdt1"],"module":1},"DetectBrokenProxyCache":{"resources":["atGq1","0\/7Y6","Ktdt1"],"module":1},"WebStorageMonster":{"resources":["atGq1","0\/7Y6","nL8ID","yRr7p","Mpzk7"],"module":1},"AsyncSignal":{"resources":["atGq1","0\/7Y6"],"module":1},"XLinkshimLogController":{"resources":["atGq1","yRr7p","4D2nX"],"module":1},"LinkHrefChecker":{"resources":["atGq1","yRr7p","4D2nX","Mpzk7"],"module":1},"ExceptionDialog":{"resources":["atGq1","W1CcH","0\/7Y6","Mpzk7","yRr7p","WctkD","Tuja9","Y0is5","+askg","ctItv","qdFjY"],"module":1},"React":{"resources":["Tuja9","yRr7p","atGq1","0\/7Y6"],"module":1},"AsyncDOM":{"resources":["atGq1","0\/7Y6","L1k\/a"],"module":1},"ConfirmationDialog":{"resources":["atGq1","0\/7Y6","oE4Do"],"module":1},"Dialog":{"resources":["atGq1","yRr7p","0\/7Y6","W1CcH","7FkCN","Mpzk7","Ku158"],"module":1},"QuickSandSolver":{"resources":["atGq1","0\/7Y6","14Jn2","ccpBO","Mpzk7","fOS5h","+ClWy"],"module":1},"ErrorSignal":{"resources":["atGq1","0\/7Y6","cNca2"],"module":1},"ReactDOM":{"resources":["Tuja9","yRr7p","atGq1","0\/7Y6"],"module":1},"Animation":{"resources":["atGq1","yRr7p","0\/7Y6","W1CcH"],"module":1},"AsyncDialog":{"resources":["atGq1","0\/7Y6","W1CcH","Mpzk7","yRr7p","WctkD","Tuja9"],"module":1},"AsyncRequest":{"resources":["atGq1","0\/7Y6"],"module":1},"FormSubmit":{"resources":["atGq1","0\/7Y6","WSwTv"],"module":1},"DialogX":{"resources":["atGq1","W1CcH","0\/7Y6","Mpzk7","yRr7p","WctkD"],"module":1},"XUIDialogBody.react":{"resources":["Tuja9","yRr7p","atGq1","0\/7Y6","WctkD","Mpzk7","Y0is5"],"module":1},"XUIDialogButton.react":{"resources":["Tuja9","yRr7p","atGq1","0\/7Y6","Mpzk7","WctkD","Y0is5"],"module":1},"XUIDialogFooter.react":{"resources":["Tuja9","yRr7p","atGq1","0\/7Y6","WctkD","Mpzk7","ctItv"],"module":1},"XUIDialogTitle.react":{"resources":["Tuja9","yRr7p","atGq1","0\/7Y6","WctkD","Mpzk7","W1CcH"],"module":1},"XUIGrayText.react":{"resources":["Tuja9","yRr7p","atGq1","0\/7Y6","WctkD","Mpzk7"],"module":1},"PageTransitions":{"resources":["atGq1","0\/7Y6","Mpzk7","yRr7p","Tuja9","tzAxi","CgKH6","W1CcH","WctkD"],"module":1},"Hovercard":{"resources":["atGq1","0\/7Y6","6USjB","Mpzk7","WctkD","yRr7p","7FkCN","0idlr","W1CcH","bjIzU"],"module":1},"AsyncResponse":{"resources":["atGq1"],"module":1},"UFIAddCommentLiveTypingPublisher":{"resources":["yRr7p","atGq1","6USjB","Tuja9","+S8i3","0\/7Y6","uNu+u"],"module":1},"UFIUploader":{"resources":["atGq1","0\/7Y6","Bi6AL","WctkD","yRr7p","vUTEc","Mpzk7","aPhac"],"module":1},"ContextualLayerAutoFlip":{"resources":["atGq1","0\/7Y6","Mpzk7"],"module":1},"StickerStore.react":{"resources":["atGq1","Tuja9","yRr7p","0\/7Y6","Mpzk7","WctkD","6USjB","x05XZ","0ILtx","Bi6AL","W1CcH","Y0is5","jUoUl","7FkCN","q2E5F","SrIlq","YujYI","AGHpB","7VE+c","YujYI","YujYI"],"module":1},"ScrollableArea":{"resources":["atGq1","yRr7p","0\/7Y6","Mpzk7","W1CcH","WctkD"],"module":1},"XUIErrorDialogImpl":{"resources":["atGq1","0\/7Y6","6USjB","Mpzk7","WctkD","yRr7p","2pvUV"],"module":1},"StickersFlyout.react":{"resources":["atGq1","Tuja9","yRr7p","0\/7Y6","Mpzk7","S63it","q2E5F","x05XZ","6USjB","0ILtx","Bi6AL","WctkD","W1CcH","Y0is5","jUoUl","7FkCN","nglAv","VE4Hx","y6Q+C","Zgb4V","2rQR7","VE4Hx","VE4Hx","VE4Hx","VE4Hx","VE4Hx","VE4Hx","VE4Hx"],"module":1},"XUIContextualDialog.react":{"resources":["7FkCN","atGq1","6USjB","Tuja9","yRr7p","0\/7Y6","Mpzk7","WctkD"],"module":1},"EmoticonUtils":{"resources":["CL1XL","Mpzk7","x05XZ"],"module":1},"EmoticonsList":{"resources":["CL1XL","Mpzk7"],"module":1},"SelectionPosition":{"resources":["atGq1","0\/7Y6","Mpzk7","x05XZ"],"module":1},"TextAreaControl":{"resources":["atGq1","0\/7Y6","WSwTv"],"module":1},"Sticker.react":{"resources":["atGq1","Tuja9","yRr7p","0\/7Y6","Mpzk7","VE4Hx","jUoUl","q2E5F","x05XZ"],"module":1},"UFIAttachedPhotoPreview.react":{"resources":["Tuja9","yRr7p","atGq1","0\/7Y6","Mpzk7","CL1XL","S63it","Y0is5","WctkD","m58Mm"],"module":1},"XUIAmbientNUX.react":{"resources":["Tuja9","yRr7p","atGq1","0\/7Y6","6USjB","Mpzk7","WctkD","7FkCN","lCGgP","Y0is5"],"module":1},"ContextualLayer.react":{"resources":["atGq1","0\/7Y6","Mpzk7","Tuja9","yRr7p","2rQR7"],"module":1},"ContextualLayerUpdateOnScroll":{"resources":["atGq1","yRr7p"],"module":1},"getMentionableRect":{"resources":["atGq1","Mpzk7","YQ4Zs"],"module":1},"TypeaheadMetricReporter":{"resources":["atGq1","0\/7Y6","Mpzk7","kLLBo"],"module":1},"getBusinessMentionsSearchSource":{"resources":["m58Mm","yRr7p","atGq1","S63it","kLLBo","0\/7Y6","Tuja9","Mpzk7","yXVfC","8EYFh"],"module":1},"getMentionsSearchSource":{"resources":["m58Mm","yRr7p","atGq1","S63it","Y0is5","acnFz","0\/7Y6","Tuja9","O5BXE","kLLBo","Mpzk7"],"module":1},"UFIMentionsInput.react":{"resources":["atGq1","yRr7p","ctItv","w48nT","Tuja9","0\/7Y6","FOZWR","Y0is5","Mpzk7","W1CcH","S63it","xQjaB","m58Mm","HidLU","zuj6x","CL1XL","9fOPo","5BLhq"],"module":1},"GroupCommerceProductDetail.react":{"resources":["atGq1","0\/7Y6","yRr7p","xcnbQ","Tuja9","Mpzk7","GJXDu","WctkD","CL1XL","zuj6x","6USjB","ofKen","7FkCN","W1CcH","Y0is5","ClIar","Cqw9P","tzAxi","y4Lpe","WctkD"],"module":1},"Live":{"resources":["atGq1","0\/7Y6","L1k\/a","yRr7p","Ktdt1"],"module":1},"PhotoInlineEditor":{"resources":["atGq1","0\/7Y6","y9tE\/","WSwTv","CL1XL","HV8NH","Tuja9","vQD7k","y6Q+C","AtxWD"],"module":1},"PhotoTagApproval":{"resources":["atGq1","0\/7Y6","y9tE\/","XWMaK"],"module":1},"PhotoTagger":{"resources":["atGq1","0\/7Y6","XWMaK","6USjB","Mpzk7","WctkD","yRr7p","7FkCN","0idlr","W1CcH","bjIzU","y9tE\/"],"module":1},"PhotoTags":{"resources":["atGq1","0\/7Y6","y9tE\/","WctkD","XWMaK"],"module":1},"PhotosButtonTooltips":{"resources":["atGq1","0\/7Y6","Mpzk7","yRr7p","WctkD","W1CcH","Tuja9","Rs18G"],"module":1},"SpotlightShareViewer":{"resources":["atGq1","0\/7Y6","yRr7p","tzAxi","zyFOp"],"module":1},"TagTokenizer":{"resources":["atGq1","0\/7Y6","Tuja9","CL1XL","vQD7k","y6Q+C","XWMaK","HV8NH","WSwTv"],"module":1},"VideoRotate":{"resources":["atGq1","0\/7Y6","yRr7p","W1CcH","7FkCN","Mpzk7","Ku158","6AU0l"],"module":1},"css:fb-photos-snowlift-fullscreen-css":{"resources":["VDymv"]},"PhotoSnowlift":{"resources":["atGq1","0\/7Y6","yRr7p","W1CcH","7FkCN","Mpzk7","Ku158","Tuja9","WctkD","y9tE\/","tzAxi","CL1XL","6USjB","CgKH6","zelhl","jUoUl","zelhl"],"module":1},"Toggler":{"resources":["atGq1","0\/7Y6","yRr7p","Mpzk7","WctkD","W1CcH"],"module":1},"Tooltip":{"resources":["atGq1","0\/7Y6","Mpzk7","yRr7p","WctkD","W1CcH","Tuja9"],"module":1},"DOM":{"resources":["atGq1","0\/7Y6"],"module":1},"Form":{"resources":["atGq1","0\/7Y6"],"module":1},"Input":{"resources":["atGq1","0\/7Y6"],"module":1},"trackReferrer":{"resources":[],"module":1}});}});
    requireLazy(["ix"], function(ix) {ix.add({"\/images\/messaging\/stickers\/store\/basket.png":{"sprited":true,"spriteMapCssClass":"sp_hsafS-1bBqt","spriteCssClass":"sx_200efa"},"\/images\/messaging\/stickers\/store\/characters.png":{"sprited":true,"spriteMapCssClass":"sp_hsafS-1bBqt","spriteCssClass":"sx_e24bb8"},"\/images\/messaging\/stickers\/store\/backarrow.png":{"sprited":false,"uri":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yv\/r\/wNyEZeXrqCV.png","width":8,"height":12},"\/images\/messaging\/stickers\/icons\/emoji.png":{"sprited":true,"spriteMapCssClass":"sp_2ndQ68yLFQo","spriteCssClass":"sx_2acaa2"},"\/images\/messaging\/stickers\/icons\/recent.png":{"sprited":true,"spriteMapCssClass":"sp_2ndQ68yLFQo","spriteCssClass":"sx_3b5880"},"\/images\/messaging\/stickers\/icons\/search.png":{"sprited":true,"spriteMapCssClass":"sp_2ndQ68yLFQo","spriteCssClass":"sx_2326a5"},"\/images\/messaging\/stickers\/selector\/left.png":{"sprited":true,"spriteMapCssClass":"sp_2ndQ68yLFQo","spriteCssClass":"sx_e6330f"},"\/images\/messaging\/stickers\/selector\/right.png":{"sprited":true,"spriteMapCssClass":"sp_2ndQ68yLFQo","spriteCssClass":"sx_a5a9af"},"\/images\/messaging\/stickers\/selector\/sticker_store.png":{"sprited":true,"spriteMapCssClass":"sp_2ndQ68yLFQo","spriteCssClass":"sx_eb2ae0"},"\/images\/messaging\/stickers\/icons\/sad_face.png":{"sprited":true,"spriteMapCssClass":"sp_2ndQ68yLFQo","spriteCssClass":"sx_9de52d"},"\/images\/loaders\/indicator_black.gif":{"sprited":false,"uri":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/y7\/r\/pgEFhPxsWZX.gif","width":32,"height":32},"\/images\/loaders\/indicator_blue_large.gif":{"sprited":false,"uri":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/y9\/r\/jKEcVPZFk-2.gif","width":32,"height":32},"\/images\/loaders\/indicator_blue_medium.gif":{"sprited":false,"uri":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yk\/r\/LOOn0JtHNzb.gif","width":16,"height":16},"\/images\/loaders\/indicator_blue_small.gif":{"sprited":false,"uri":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yb\/r\/GsNJNwuI-UM.gif","width":16,"height":11},"\/images\/loaders\/indicator_white_large.gif":{"sprited":false,"uri":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yG\/r\/b53Ajb4ihCP.gif","width":32,"height":32},"\/images\/loaders\/indicator_white_small.gif":{"sprited":false,"uri":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/y-\/r\/AGUNXgX_Wx3.gif","width":16,"height":11},"images\/groups\/sell\/place_icon_sell.png":{"sprited":false,"uri":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/yJ\/r\/ff0_FKHY_Qm.png","width":10,"height":12},"images\/icons\/wall_arrow.gif":{"sprited":true,"spriteMapCssClass":"sp_qu4DAuYk1S6","spriteCssClass":"sx_b3409f"},"arrow-right:white:small":{"sprited":true,"spriteMapCssClass":"sp_WbN8fef7SYE","spriteCssClass":"sx_2db80b"}});});</script>
    <script>requireLazy(["InitialJSLoader"], function(InitialJSLoader) {InitialJSLoader.loadOnDOMContentReady(["xQjaB","x5D7S","atGq1","r30PS","yRr7p","14Jn2"]);});</script>
    <script>require("TimeSlice").guard(function() {require("ServerJSDefine").handleDefines([]);require("InitialJSLoader").handleServerJS({"instances":[["__inst_9f701630_0_0",["CheckpointSlideController","__elem_a588f507_0_0","__elem_bc804a4c_0_0","__elem_a588f507_0_1","__elem_45d73b5d_0_0","__elem_9f5fac15_0_0","__elem_835c633a_0_0"],[{"__m":"__elem_a588f507_0_0"},{"__m":"__elem_bc804a4c_0_0"},{"__m":"__elem_a588f507_0_1"},{"checkpointSubmitButton":{"__m":"__elem_45d73b5d_0_0"}},{"__m":"__elem_9f5fac15_0_0"},{"__m":"__elem_835c633a_0_0"}],1],["__inst_835c633a_0_0",["UIForm","__elem_85b7cbf7_0_0","FormDisableOnSubmit"],[{"__m":"__elem_85b7cbf7_0_0"},null,false,null,[{"__m":"FormDisableOnSubmit"}]],1]],"elements":[["__elem_835c633a_0_0","u_0_0",1],["__elem_45d73b5d_0_0","checkpointSubmitButton",1],["__elem_9f5fac15_0_0","u_0_1",1],["__elem_072b8e64_0_0","u_0_2",1],["__elem_072b8e64_0_1","u_0_3",1],["__elem_072b8e64_0_2","u_0_4",1],["__elem_072b8e64_0_3","u_0_5",1],["__elem_072b8e64_0_4","u_0_6",1],["__elem_072b8e64_0_5","u_0_7",1],["__elem_072b8e64_0_6","u_0_8",1],["__elem_072b8e64_0_7","u_0_9",1],["__elem_072b8e64_0_8","u_0_a",1],["__elem_072b8e64_0_9","u_0_b",1],["__elem_a588f507_0_2","globalContainer",1],["__elem_85b7cbf7_0_0","u_0_0",1],["__elem_a588f507_0_0","u_0_c",1],["__elem_bc804a4c_0_0","u_0_d",1],["__elem_a588f507_0_1","checkpointBottomBar",1]],"require":[["PixelRatio","startDetecting",[],[1],[]],["__inst_9f701630_0_0"],["__inst_835c633a_0_0"],["Cookie","setIfFirstPartyContext",[],["_js_reg_fb_ref","https:\/\/www.facebook.com\/checkpoint\/?next",0,"\/",false],[]],["Intl","setPhonologicalRules",[],[{"meta":{"\/_B\/":"([.,!?\\s]|^)","\/_E\/":"([.,!?\\s]|$)"},"patterns":{"\/(.*)('|&#039;)s(?:'|&#039;)s(.*)\/":"$1$2s$3","\/_([^]*)\/e":"mb_strtolower(\"$1\")","\/\\^\\x01([^\\x01])(?=[^\\x01]*\\x01)\/e":"mb_strtoupper(\"$1\")","\/_([^]*)\/":"javascript"}}],[]],["PostLoadJS","loadAndRequire",[],["DimensionTracking"],[]],["PostLoadJS","loadAndCall",[],["HighContrastMode","init",[{"isHCM":false,"spacerImage":"https:\/\/static.xx.fbcdn.net\/rsrc.php\/v2\/y4\/r\/-PAXP-deijE.gif"}]],[]],["PostLoadJS","loadAndCall",[],["DetectBrokenProxyCache","run",[0,"c_user"]],[]],["ClickRefLogger"],["ScriptPath","set",[],["WebCheckpointController","01afab33",{"imp_id":"b67052a5"}],[]],["Chromedome","start",[],[{"wipe":1,"hardConsole":1,"warnings":[["%cCareful. This might not do what you think.","font-size:40px; background-color:red; color:yellow; font-weight:bold; font-family:tahoma;"],["%cThis is a browser feature intended for developers. If someone told you to copy-paste something here to enable a Facebook feature or \"hack\" someone's account,%c it is probably a scam and will give them access to your Facebook account.","font-size:20px; font-family:tahoma","font-size:20px; font-family:tahoma; font-weight:bold"]],"block":"The developer console is temporarily disabled; see https:\/\/www.facebook.com\/selfxss for more information"}],[]],["UserActionHistory"],["ScriptPathLogger","startLogging",[],[],[]],["TimeSpentBitArrayLogger","init",[],[],[]],["NavigationClickPointHandler"],["UITinyViewportAction","init",[],[],[]],["ResetScrollOnUnload","init",["__elem_a588f507_0_2"],[{"__m":"__elem_a588f507_0_2"}],[]],["PostLoadJS","loadAndCall",[],["WebStorageMonster","schedule",[]],[]],["AsyncRequestNectarLogging"],["LoggedOutSwitchingLocaleLogger","logOnClick",["__elem_072b8e64_0_0"],[{"__m":"__elem_072b8e64_0_0"},"en_US","en_US",0],[]],["LoggedOutSwitchingLocaleLogger","logOnClick",["__elem_072b8e64_0_1"],[{"__m":"__elem_072b8e64_0_1"},"en_US","es_LA",1],[]],["LoggedOutSwitchingLocaleLogger","logOnClick",["__elem_072b8e64_0_2"],[{"__m":"__elem_072b8e64_0_2"},"en_US","fr_FR",2],[]],["LoggedOutSwitchingLocaleLogger","logOnClick",["__elem_072b8e64_0_3"],[{"__m":"__elem_072b8e64_0_3"},"en_US","zh_CN",3],[]],["LoggedOutSwitchingLocaleLogger","logOnClick",["__elem_072b8e64_0_4"],[{"__m":"__elem_072b8e64_0_4"},"en_US","ar_AR",4],[]],["LoggedOutSwitchingLocaleLogger","logOnClick",["__elem_072b8e64_0_5"],[{"__m":"__elem_072b8e64_0_5"},"en_US","pt_BR",5],[]],["LoggedOutSwitchingLocaleLogger","logOnClick",["__elem_072b8e64_0_6"],[{"__m":"__elem_072b8e64_0_6"},"en_US","it_IT",6],[]],["LoggedOutSwitchingLocaleLogger","logOnClick",["__elem_072b8e64_0_7"],[{"__m":"__elem_072b8e64_0_7"},"en_US","ko_KR",7],[]],["LoggedOutSwitchingLocaleLogger","logOnClick",["__elem_072b8e64_0_8"],[{"__m":"__elem_072b8e64_0_8"},"en_US","de_DE",8],[]],["LoggedOutSwitchingLocaleLogger","logOnClick",["__elem_072b8e64_0_9"],[{"__m":"__elem_072b8e64_0_9"},"en_US","hi_IN",9],[]],["TimeSlice","setLogging",[],[0,0.01],[]],["NavigationMetrics","setPage",[],[{"page":"WebCheckpointController","page_type":"normal","page_uri":"https:\/\/www.facebook.com\/checkpoint\/?next","serverLID":"6250948434495952278"}],[]]]});}, "ServerJS define", {"root":true})();</script>
    <!-- BigPipe construction and first response -->
    <script>var bigPipe = new (require("BigPipe"))({"lid":"6250948434495952278","forceFinish":true});</script>
    <script>bigPipe.beforePageletArrive("first_response")</script>
    <script>require("TimeSlice").guard((function(){bigPipe.onPageletArrive({"id":"first_response","phase":0,"jsmods":{},"is_last":true,"allResources":["xQjaB","WctkD","vvhj+","VyEIk","x5D7S","0\/7Y6","atGq1","r30PS","yRr7p","7FkCN","14Jn2"],"displayResources":["WctkD","vvhj+","VyEIk","0\/7Y6","7FkCN"]});}),"onPageletArrive first_response",{"root":true,"pagelet":"first_response"})();</script><script>bigPipe.beforePageletArrive("last_response")</script>
    <script>require("TimeSlice").guard((function(){bigPipe.onPageletArrive({"id":"last_response","phase":1,"jsmods":{"define":[["ImmediateActiveSecondsConfig",[],{"sampling_rate":0},423],["TimeSpentConfig",[],{"0_delay":0,"0_timeout":8,"delay":200000,"timeout":64},142]]},"is_last":true,"allResources":["xQjaB","WctkD","vvhj+","VyEIk","x5D7S","0\/7Y6","atGq1","r30PS","yRr7p","7FkCN","14Jn2"],"displayResources":["WctkD","vvhj+","VyEIk","0\/7Y6","7FkCN"],"the_end":true});}),"onPageletArrive last_response",{"root":true,"pagelet":"last_response"})();</script>                                                                                                                                                                                                                                                                                                                                                                                                                       </body></html>

    • 0

    #8
    MHC3

    MHC3

      Member

    • Topic Starter
    • Member
    • PipPip
    • 14 posts

    ok ran frst again and here is the frst and addition results:

     

    Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:17-02-2016
    Ran by Mike (administrator) on MIKE-PC (20-02-2016 19:43:05)
    Running from C:\Users\Mike\Desktop\Security
    Loaded Profiles: Mike (Available Profiles: Mike)
    Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
    Internet Explorer Version 11 (Default browser: Chrome)
    Boot Mode: Normal
    Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
     
    ==================== Processes (Whitelisted) =================
     
    (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
     
    (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCService.exe
    (IOBit) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCAvSvc.exe
    (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
    (AMD) C:\Windows\System32\atiesrxx.exe
    (AMD) C:\Windows\System32\atieclxx.exe
    () C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
    (Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
    (MSI) C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe
    (MICRO-STAR INTERNATIONAL CO., LTD.) C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe
    (Qualcomm Atheros) C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe
    (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
    (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
    (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
    (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
    (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
    (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
    (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe
    (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe
    (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
    (Microsoft Corporation) C:\Windows\System32\rundll32.exe
    (Pixart Imaging Inc) C:\Windows\System32\TiltWheelMouse.exe
    (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
    (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCTray.exe
    () C:\Program Files (x86)\The Weather Channel\Desktop Weather\TWC.Win7.exe
    (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
    () C:\Program Files\Earth Networks\WeatherBug\WeatherBug.exe
    () C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe
    (Curse) C:\Users\Mike\AppData\Local\Apps\2.0\HV1G8YBL.R97\MVC16ORJ.TX8\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\CurseClient.exe
    (Creative Technology Ltd) C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
    (MSI) C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe
    (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
    (Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe
    (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
    (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    (Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
    (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    (Intel® Corporation) C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe
    (Microsoft Corporation) C:\Windows\System32\dllhost.exe
    (VideoLAN) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
    (Microsoft Corporation) C:\Windows\System32\dllhost.exe
     
     
    ==================== Registry (Whitelisted) ===========================
     
    (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
     
    HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8781568 2016-02-04] (Realtek Semiconductor)
    HKLM\...\Run: [MBCfg64] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\MBCfg64.dll,RunDLLEntry MBCfg64
    HKLM\...\Run: [MouseDriver] => C:\Windows\system32\TiltWheelMouse.exe [241152 2012-12-19] (Pixart Imaging Inc)
    HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1337000 2015-04-30] (Microsoft Corporation)
    HKLM-x32\...\Run: [Sound Blaster Cinema] => C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe [711680 2013-08-16] (Creative Technology Ltd)
    HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-25] (Intel Corporation)
    HKLM-x32\...\Run: [Super-Charger] => C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [1047536 2013-11-12] (MSI)
    HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1282120 2013-05-02] (CANON INC.)
    HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-04] (Advanced Micro Devices, Inc.)
    HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
    Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
    HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\Run: [Advanced SystemCare Ultimate] => C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCTray.exe [2596640 2015-05-22] (IObit)
    HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\Run: [TWC.Win7] => C:\Program Files (x86)\The Weather Channel\Desktop Weather\TWC.Win7.exe [49152 2016-02-13] ()
    HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
    HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\Run: [WeatherBug] => C:\Program Files\Earth Networks\WeatherBug\WeatherBug.exe [146736 2014-09-23] ()
    Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Killer Network Manager.lnk [2014-10-15]
    ShortcutTarget: Killer Network Manager.lnk -> C:\Windows\Installer\{7364C716-1212-4EAE-B0C9-A31D1E797BF8}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe (Flexera Software LLC)
    Startup: C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip [2014-11-01] ()
    BootExecute: autocheck autochk * SmartDefragBootTime.exe
     
    ==================== Internet (Whitelisted) ====================
     
    (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
     
    ProxyEnable: [S-1-5-21-3800875428-2236599744-3644965068-1000] => Proxy is enabled.
    ProxyServer: [S-1-5-21-3800875428-2236599744-3644965068-1000] => localhost:21320
    Tcpip\Parameters: [DhcpNameServer] 209.18.47.61 209.18.47.62
    Tcpip\..\Interfaces\{034704CE-5A88-4793-BF3D-628ED4BDD465}: [DhcpNameServer] 209.18.47.61 209.18.47.62
    ManualProxies: 1localhost:21320
     
    Internet Explorer:
    ==================
    HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yahoo.com/
    BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07] (CANON INC.)
    BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
    BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20] (Google Inc.)
    BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07] (CANON INC.)
    BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
    BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-20] (Google Inc.)
    Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07] (CANON INC.)
    Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20] (Google Inc.)
    Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07] (CANON INC.)
    Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-20] (Google Inc.)
    Toolbar: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20] (Google Inc.)
    Toolbar: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000 -> Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07] (CANON INC.)
    StartMenuInternet: IEXPLORE.EXE - iexplore.exe
     
    FireFox:
    ========
    FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll [2016-02-09] ()
    FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
    FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
    FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll [2016-02-09] ()
    FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.)
    FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google)
    FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-16] (Intel Corporation)
    FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-16] (Intel Corporation)
    FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
    FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
    FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
    FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
    FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
    FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
    FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
    FF Plugin HKU\S-1-5-21-3800875428-2236599744-3644965068-1000: jpl.nasa.gov/NASAEyes -> C:\Users\Mike\AppData\Roaming\JPL-NASA-Caltech\NASA's Eyes\npNASAEyes.dll [2015-07-08] (Jet Propulsion Laboratory)
     
    Chrome: 
    =======
    CHR HomePage: Profile 2 -> msn.com/?pc=__PARAM__&ocid=__PARAM__DHP&osmkt=en-us
    CHR StartupUrls: Profile 2 -> "hxxp://www.google.com/"
    CHR Plugin: (Widevine Content Decryption Module) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.8.866\_platform_specific\win_x86\widevinecdmadapter.dll (Google Inc.)
    CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.116\PepperFlash\pepflashplayer.dll ()
    CHR Profile: C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 1
    CHR Extension: (No Name) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-05]
    CHR Extension: (No Name) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-05]
    CHR Extension: (No Name) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-12-05]
    CHR Extension: (No Name) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-05]
    CHR Extension: (No Name) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lkbhppfbabandkdmgjmifahoabeodiep [2015-12-05]
    CHR Profile: C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2
    CHR Extension: (Google Slides) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-11-10]
    CHR Extension: (Google Docs) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2015-11-10]
    CHR Extension: (Google Drive) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-10]
    CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\bbmegnmpleoagolcnjnejdacakedpcgd [2015-12-05]
    CHR Extension: (YouTube) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-11-10]
    CHR Extension: (Adblock Plus) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-02-03]
    CHR Extension: (Google Search) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-10]
    CHR Extension: (Google Sheets) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-11-10]
    CHR Extension: (Google Docs Offline) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-17]
    CHR Extension: (Solitaire) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\lkbhppfbabandkdmgjmifahoabeodiep [2015-12-05]
    CHR Extension: (SearchLock) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\madakpajlmcpaodhfbekojajlhbdklol [2015-12-05]
    CHR Extension: (Chrome Web Store Payments) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-11-10]
    CHR Extension: (Gmail) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-11-10]
    CHR Extension: (Space Planet) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ppcocpoeoiajndepaaimnnglicichmbb [2016-02-14]
     
    ==================== Services (Whitelisted) ========================
     
    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
     
    R2 AdvancedSystemCareService8; C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCService.exe [911648 2014-11-22] (IObit)
    R2 ASCAntivirusSrv; C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ascavsvc.exe [660768 2015-06-11] (IOBit)
    R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140456 2012-03-27] ()
    R2 Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel® Corporation) [File not signed]
    S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel® Corporation)
    R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation)
    S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2934048 2015-11-10] (IObit)
    R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [161776 2013-09-09] (MSI)
    R2 MSI_Trigger_Service; C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [30240 2013-09-26] (MICRO-STAR INTERNATIONAL CO., LTD.)
    R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2015-04-30] (Microsoft Corporation)
    R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366544 2015-04-30] (Microsoft Corporation)
    R2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [344576 2014-01-22] (Qualcomm Atheros) [File not signed]
    R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
    R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
    R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
    S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
    R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe [15888 2013-04-01] (Intel® Corporation)
     
    ===================== Drivers (Whitelisted) ==========================
     
    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
     
    R3 AcpiCtlDrv; C:\Windows\System32\DRIVERS\AcpiCtlDrv.sys [25880 2012-07-17] (Intel Corporation)
    R1 BfLwf; C:\Windows\System32\DRIVERS\bflwfx64.sys [80080 2013-11-08] (Qualcomm Atheros, Inc.)
    S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
    R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2014-12-26] (REALiX™)
    R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [31144 2016-01-27] (Intel Corporation)
    R2 iocbios2; C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [25448 2013-01-07] (Intel Corporation)
    R3 ISCT; C:\Windows\System32\DRIVERS\ISCTD.sys [44744 2015-05-03] ()
    R3 Ke2200; C:\Windows\System32\DRIVERS\e22w7x64.sys [125488 2015-12-09] (Qualcomm Atheros, Inc.)
    R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [179456 2015-12-09] (Intel Corporation)
    R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [280376 2015-03-04] (Microsoft Corporation)
    R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124568 2015-03-04] (Microsoft Corporation)
    R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [13368 2012-10-25] (MSI)
    R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [21184 2014-06-04] (IObit)
    S3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [33448 2015-07-15] (Synaptics Incorporated)
    R3 t_mouse.sys; C:\Windows\System32\DRIVERS\t_mouse.sys [6144 2012-12-19] ()
     
    ==================== NetSvcs (Whitelisted) ===================
     
    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
     
     
    ==================== One Month Created files and folders ========
     
    (If an entry is included in the fixlist, the file/folder will be moved.)
     
    2016-02-19 20:22 - 2016-02-19 20:31 - 00002870 _____ C:\Windows\System32\Tasks\Driver Booster SkipUAC (Mike)
    2016-02-19 19:25 - 2016-02-19 19:25 - 00001395 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
    2016-02-19 19:25 - 2016-02-19 19:25 - 00001383 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
    2016-02-19 19:25 - 2016-02-19 19:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
    2016-02-19 19:21 - 2016-02-19 19:21 - 00000085 _____ C:\Windows\wininit.ini
    2016-02-19 19:09 - 2016-02-20 19:00 - 00000000 ____D C:\ProgramData\ProductData
    2016-02-19 19:09 - 2016-02-19 19:09 - 00000000 ____D C:\Users\Mike\AppData\Roaming\ProductData
    2016-02-19 18:45 - 2016-02-19 18:45 - 00001919 _____ C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\WeatherBug®.lnk
    2016-02-19 18:45 - 2016-02-19 18:45 - 00001895 _____ C:\Users\Mike\Desktop\WeatherBug®.lnk
    2016-02-19 18:45 - 2016-02-19 18:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WeatherBug®
    2016-02-19 18:45 - 2016-02-19 18:45 - 00000000 ____D C:\Program Files\Earth Networks
    2016-02-19 18:44 - 2016-02-19 18:59 - 00000000 __HDC C:\ProgramData\{FA77A43D-F6ED-4924-87B5-517C061388C6}
    2016-02-19 18:44 - 2016-02-19 18:44 - 03390776 _____ (Earth Networks, Inc. ) C:\Users\Mike\Downloads\WeatherBugSetup.exe
    2016-02-19 17:55 - 2016-02-19 18:21 - 00000000 ____D C:\AdwCleaner
    2016-02-19 11:49 - 2016-02-20 18:56 - 00000000 ____D C:\Users\Mike\AppData\LocalLow\Temp
    2016-02-18 02:04 - 2016-01-29 23:40 - 00450902 _____ C:\Windows\system32\Drivers\etc\hosts.20160218-020426.backup
    2016-02-18 02:03 - 2016-02-18 02:03 - 00000000 ____D C:\Users\Mike\Documents\ProcAlyzer Dumps
    2016-02-17 00:42 - 2016-02-19 19:25 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
    2016-02-17 00:37 - 2016-02-17 00:38 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Mike\Downloads\spybot-2.4.exe
    2016-02-15 18:35 - 2016-02-20 19:43 - 00000000 ____D C:\FRST
    2016-02-15 18:23 - 2016-02-15 18:23 - 00231718 _____ C:\Users\Mike\Documents\bookmarks_2_15_16 (Other Bookmarks).html
    2016-02-15 18:22 - 2016-02-15 18:22 - 00231718 _____ C:\Users\Mike\Documents\bookmarks_2_15_16 (Imported).html
    2016-02-15 18:22 - 2016-02-15 18:22 - 00231718 _____ C:\Users\Mike\Documents\bookmarks_2_15_16 (Bookmarks 2).html
    2016-02-15 18:21 - 2016-02-15 18:21 - 00231718 _____ C:\Users\Mike\Documents\bookmarks_2_15_16 (Games).html
    2016-02-15 18:21 - 2016-02-15 18:21 - 00231718 _____ C:\Users\Mike\Documents\bookmarks_2_15_16 (Blizzard).html
    2016-02-15 18:20 - 2016-02-15 18:20 - 00231718 _____ C:\Users\Mike\Documents\bookmarks_2_15_16 (Links).html
    2016-02-15 18:20 - 2016-02-15 18:20 - 00231718 _____ C:\Users\Mike\Documents\bookmarks_2_15_16 (All Todays Picks).html
    2016-02-15 18:19 - 2016-02-15 18:19 - 00231718 _____ C:\Users\Mike\Documents\bookmarks_2_15_16 (Imported From IE).html
    2016-02-15 18:18 - 2016-02-15 18:18 - 00231718 _____ C:\Users\Mike\Documents\bookmarks_2_15_16 (Bookmarks).html
    2016-02-15 12:33 - 2016-02-15 12:33 - 00002117 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
    2016-02-15 12:33 - 2016-02-15 12:33 - 00000000 ____D C:\Program Files\Microsoft Security Client
    2016-02-15 12:33 - 2016-02-15 12:33 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
    2016-02-15 12:32 - 2016-02-15 12:32 - 14243008 _____ (Microsoft Corporation) C:\Users\Mike\Downloads\mseinstall.exe
    2016-02-15 12:16 - 2016-02-15 12:16 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
    2016-02-15 10:02 - 2016-02-15 11:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
    2016-02-15 10:02 - 2016-02-15 10:02 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Sun
    2016-02-15 10:02 - 2016-02-15 10:02 - 00000000 ____D C:\Users\Mike\AppData\LocalLow\Sun
    2016-02-15 10:02 - 2016-02-15 10:02 - 00000000 ____D C:\Users\Mike\.oracle_jre_usage
    2016-02-15 10:02 - 2016-02-15 10:02 - 00000000 ____D C:\ProgramData\Oracle
    2016-02-15 10:02 - 2016-02-15 10:02 - 00000000 ____D C:\Program Files (x86)\Java
    2016-02-07 00:44 - 2016-02-07 00:44 - 00000000 ____H C:\asc_rdflag
    2016-02-06 20:04 - 2016-02-06 20:04 - 14179840 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
    2016-02-06 20:04 - 2016-02-06 20:04 - 12877824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
    2016-02-06 20:04 - 2016-02-06 20:04 - 03231232 _____ (Microsoft Corporation) C:\Windows\explorer.exe
    2016-02-06 20:04 - 2016-02-06 20:04 - 02973184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
    2016-02-06 20:04 - 2016-02-06 20:04 - 01940992 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
    2016-02-06 20:04 - 2016-02-06 20:04 - 01866752 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
    2016-02-06 20:04 - 2016-02-06 20:04 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
    2016-02-06 20:04 - 2016-02-06 20:04 - 01498624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 03169792 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 02610176 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
    2016-02-06 20:03 - 2016-02-06 20:03 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
    2016-02-06 20:03 - 2016-02-06 20:03 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
    2016-02-06 20:03 - 2016-02-06 20:03 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
    2016-02-06 20:03 - 2016-02-06 20:03 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 04686592 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
    2016-02-04 23:15 - 2016-02-04 23:15 - 04307112 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
    2016-02-04 23:15 - 2016-02-04 23:15 - 03282032 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 03271912 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 03195648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 03040488 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 02893568 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
    2016-02-04 23:15 - 2016-02-04 23:15 - 02050184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 02030208 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 01976560 _____ (Creative Technology Ltd.) C:\Windows\system32\MBAPO264.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 01743080 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBAPO232.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 01356512 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00689888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00574760 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00532384 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00410040 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00387320 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00343712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00330568 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00221968 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00214840 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00209544 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00192984 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00166208 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00122320 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00118600 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00110992 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00088352 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
    2016-02-04 23:15 - 2016-02-04 23:15 - 00041088 _____ (Creative Technology Ltd.) C:\Windows\system32\Drivers\MBfilt64.sys
    2016-02-04 23:15 - 2016-02-04 23:15 - 00023704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
    2016-01-29 23:40 - 2009-06-10 16:00 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20160129-234016.backup
    2016-01-27 08:48 - 2016-01-27 08:48 - 01462720 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorA.sys
    2016-01-27 08:48 - 2016-01-27 08:48 - 00031144 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorF.sys
     
    ==================== One Month Modified files and folders ========
     
    (If an entry is included in the fixlist, the file/folder will be moved.)
     
    2016-02-20 19:26 - 2014-10-15 04:57 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
    2016-02-20 19:23 - 2014-10-15 05:13 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
    2016-02-20 19:14 - 2009-07-13 23:45 - 00029120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    2016-02-20 19:14 - 2009-07-13 23:45 - 00029120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    2016-02-20 19:00 - 2014-11-01 19:11 - 00000000 ____D C:\Users\Mike\AppData\Local\Deployment
    2016-02-20 18:59 - 2014-10-15 04:57 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
    2016-02-20 18:59 - 2009-07-14 00:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
    2016-02-20 18:57 - 2014-11-12 20:38 - 00000000 ____D C:\Users\Mike\Desktop\Security
    2016-02-20 18:56 - 2014-10-15 11:15 - 00000000 ____D C:\Users\Mike\AppData\Local\Battle.net
    2016-02-20 18:52 - 2014-10-15 08:17 - 00000000 ____D C:\Program Files (x86)\IObit
    2016-02-20 16:46 - 2014-10-15 11:15 - 00000000 ____D C:\Program Files (x86)\Battle.net
    2016-02-20 14:32 - 2014-10-15 08:43 - 00003918 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{EA08D899-2CF5-4DA5-85F2-D9456F2FE642}
    2016-02-20 12:38 - 2015-06-21 21:47 - 00000000 ____D C:\Program Files (x86)\StarCraft II
    2016-02-20 10:50 - 2014-10-15 11:20 - 00000000 ____D C:\Program Files (x86)\World of Warcraft
    2016-02-19 20:45 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\inf
    2016-02-19 20:24 - 2015-07-15 04:56 - 14423632 _____ (IObit ) C:\Users\Mike\Downloads\driver_booster_setup.exe
    2016-02-19 20:22 - 2014-10-15 08:17 - 00000000 ____D C:\Users\Mike\AppData\Roaming\IObit
    2016-02-19 20:22 - 2014-10-15 08:17 - 00000000 ____D C:\ProgramData\IObit
    2016-02-19 19:29 - 2014-10-16 00:44 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
    2016-02-19 18:31 - 2014-10-15 04:57 - 00002212 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
    2016-02-19 18:31 - 2014-10-15 04:57 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
    2016-02-19 18:22 - 2014-10-15 04:48 - 00000000 ____D C:\Users\Mike
    2016-02-19 00:01 - 2015-12-13 08:11 - 00000000 ____D C:\Users\Mike\AppData\Roaming\vlc
    2016-02-18 23:59 - 2015-12-13 08:09 - 00001070 _____ C:\Users\Public\Desktop\VLC media player.lnk
    2016-02-18 17:55 - 2015-06-21 08:37 - 00000000 ____D C:\Program Files (x86)\Heroes of the Storm
    2016-02-18 02:04 - 2009-07-13 21:34 - 00450954 ____R C:\Windows\system32\Drivers\etc\hosts.20160220-185054.backup
    2016-02-16 09:30 - 2015-10-31 15:59 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
    2016-02-15 13:12 - 2014-10-15 08:57 - 00000566 _____ C:\Users\Mike\Documents\wow pw.txt
    2016-02-15 12:33 - 2014-12-22 20:59 - 00001945 _____ C:\Windows\epplauncher.mif
    2016-02-15 11:55 - 2016-01-09 08:57 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Speccy
    2016-02-15 11:55 - 2015-12-13 08:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
    2016-02-15 11:55 - 2015-12-05 22:52 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
    2016-02-15 11:55 - 2015-12-05 04:19 - 00000000 ____D C:\Windows\en
    2016-02-15 11:55 - 2015-12-05 04:18 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
    2016-02-15 11:55 - 2015-10-14 19:19 - 00000000 ____D C:\Users\Mike\AppData\LocalLow\Sony Online Entertainment
    2016-02-15 11:55 - 2015-10-14 18:11 - 00000000 ____D C:\Users\Mike\AppData\LocalLow\Daybreak Game Company
    2016-02-15 11:55 - 2015-10-11 21:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
    2016-02-15 11:55 - 2015-08-19 05:19 - 00000000 ___RD C:\Users\Mike\OneDrive
    2016-02-15 11:55 - 2015-07-11 18:03 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NASA's Eyes
    2016-02-15 11:55 - 2015-07-03 13:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
    2016-02-15 11:55 - 2015-06-25 13:11 - 00000000 ___HD C:\ProgramData\CanonIJScan
    2016-02-15 11:55 - 2015-06-21 21:47 - 00000000 ____D C:\Users\Mike\Documents\StarCraft II
    2016-02-15 11:55 - 2015-06-21 21:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarCraft II
    2016-02-15 11:55 - 2015-06-21 11:32 - 00000000 ____D C:\Users\Mike\Documents\Heroes of the Storm
    2016-02-15 11:55 - 2015-06-21 08:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of the Storm
    2016-02-15 11:55 - 2015-04-07 17:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Golden Cherry Casino
    2016-02-15 11:55 - 2015-04-04 12:20 - 00000000 ___SD C:\Windows\system32\GWX
    2016-02-15 11:55 - 2015-04-02 20:50 - 00000000 ____D C:\Users\Mike\AppData\Roaming\RIFT
    2016-02-15 11:55 - 2015-04-02 20:10 - 00000000 ____D C:\Users\Mike\AppData\Local\Glyph
    2016-02-15 11:55 - 2015-04-02 20:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glyph
    2016-02-15 11:55 - 2015-04-02 20:10 - 00000000 ____D C:\ProgramData\Glyph
    2016-02-15 11:55 - 2015-03-18 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag 4
    2016-02-15 11:55 - 2015-03-18 13:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare Ultimate 8
    2016-02-15 11:55 - 2015-02-21 01:11 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Ventrilo
    2016-02-15 11:55 - 2015-02-21 01:11 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ventrilo
    2016-02-15 11:55 - 2015-01-15 16:44 - 00000000 ___HD C:\ProgramData\CanonIJEGV
    2016-02-15 11:55 - 2015-01-15 16:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG2500 series
    2016-02-15 11:55 - 2015-01-15 16:15 - 00000000 ____D C:\Users\Mike\AppData\LocalLow\Canon Easy-WebPrint EX
    2016-02-15 11:55 - 2015-01-15 16:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG2500 series User Registration
    2016-02-15 11:55 - 2015-01-15 16:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG2500 series Manual
    2016-02-15 11:55 - 2014-12-12 18:39 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Enigma Software Group
    2016-02-15 11:55 - 2014-11-18 19:17 - 00000000 ____D C:\Users\Mike\AppData\LocalLow\ADSRemoval
    2016-02-15 11:55 - 2014-11-12 20:40 - 00000000 ____D C:\Users\Mike\Desktop\Games
    2016-02-15 11:55 - 2014-11-01 19:52 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
    2016-02-15 11:55 - 2014-11-01 19:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
    2016-02-15 11:55 - 2014-11-01 19:11 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse
    2016-02-15 11:55 - 2014-10-24 21:44 - 00000000 ____D C:\Users\Mike\AppData\Roaming\dvdcss
    2016-02-15 11:55 - 2014-10-16 00:24 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Azureus
    2016-02-15 11:55 - 2014-10-15 13:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
    2016-02-15 11:55 - 2014-10-15 12:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III
    2016-02-15 11:55 - 2014-10-15 11:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft
    2016-02-15 11:55 - 2014-10-15 11:15 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Battle.net
    2016-02-15 11:55 - 2014-10-15 11:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
    2016-02-15 11:55 - 2014-10-15 08:52 - 00000000 ____D C:\Users\Mike\Documents\MediaSDK
    2016-02-15 11:55 - 2014-10-15 08:52 - 00000000 ____D C:\Users\Mike\Documents\IIPS
    2016-02-15 11:55 - 2014-10-15 08:52 - 00000000 ____D C:\Users\Mike\Documents\ibxHDMI
    2016-02-15 11:55 - 2014-10-15 08:52 - 00000000 ____D C:\Users\Mike\Documents\HDMI
    2016-02-15 11:55 - 2014-10-15 08:52 - 00000000 ____D C:\Users\Mike\Documents\Graphics
    2016-02-15 11:55 - 2014-10-15 08:52 - 00000000 ____D C:\Users\Mike\Documents\Advanced System Care
    2016-02-15 11:55 - 2014-10-15 08:17 - 00000000 ____D C:\Users\Mike\AppData\LocalLow\IObit
    2016-02-15 11:55 - 2014-10-15 08:17 - 00000000 ____D C:\ProgramData\{E1ED556E-3EA0-4F44-8BE7-CC5FB0F4B424}
    2016-02-15 11:55 - 2014-10-15 08:17 - 00000000 ____D C:\ProgramData\{D76294E6-03B8-4971-AF2E-3F846161A690}
    2016-02-15 11:55 - 2014-10-15 05:13 - 00000000 ____D C:\Windows\SysWOW64\Macromed
    2016-02-15 11:55 - 2014-10-15 05:13 - 00000000 ____D C:\Windows\system32\Macromed
    2016-02-15 11:55 - 2014-10-15 05:01 - 00000000 ____D C:\uninstall
    2016-02-15 11:55 - 2014-10-15 05:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI Intel Extreme Tuning Utility
    2016-02-15 11:55 - 2014-10-15 05:00 - 00000000 ___HD C:\SuperChargerProfile
    2016-02-15 11:55 - 2014-10-15 04:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative
    2016-02-15 11:55 - 2014-10-15 04:55 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
    2016-02-15 11:55 - 2009-07-14 00:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
    2016-02-15 11:55 - 2009-07-14 00:32 - 00000000 ____D C:\Windows\Offline Web Pages
    2016-02-15 11:55 - 2009-07-14 00:32 - 00000000 ____D C:\Windows\Downloaded Program Files
    2016-02-15 11:55 - 2009-07-14 00:32 - 00000000 ____D C:\Program Files\Windows Sidebar
    2016-02-15 11:55 - 2009-07-14 00:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar
    2016-02-15 11:55 - 2009-07-13 22:20 - 00000000 __RSD C:\Windows\Media
    2016-02-15 11:55 - 2009-07-13 22:20 - 00000000 __RHD C:\Users\Public\Libraries
    2016-02-15 11:55 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\TAPI
    2016-02-15 11:55 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\system32\NDF
    2016-02-15 11:55 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\system32\Msdtc
    2016-02-15 11:55 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\AppCompat
    2016-02-15 11:54 - 2016-01-09 08:57 - 00000000 ____D C:\Program Files\Speccy
    2016-02-15 11:54 - 2015-12-05 04:17 - 00000000 ____D C:\Program Files (x86)\Windows Live
    2016-02-15 11:54 - 2015-08-19 05:19 - 00000000 ____D C:\Program Files (x86)\Microsoft OneDrive
    2016-02-15 11:54 - 2015-07-03 13:40 - 00000000 ____D C:\Program Files\Microsoft Silverlight
    2016-02-15 11:54 - 2015-07-03 13:40 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
    2016-02-15 11:54 - 2015-04-07 17:58 - 00000000 ____D C:\Program Files (x86)\GoldenCherryCasino
    2016-02-15 11:54 - 2015-04-02 20:10 - 00000000 ____D C:\Program Files (x86)\Glyph
    2016-02-15 11:54 - 2015-02-21 01:11 - 00000000 ____D C:\Program Files\Ventrilo
    2016-02-15 11:54 - 2014-12-03 18:09 - 00000000 ____D C:\Program Files (x86)\PopCap Games
    2016-02-15 11:54 - 2014-11-01 19:51 - 00000000 ____D C:\Program Files\WinRAR
    2016-02-15 11:54 - 2014-10-16 00:24 - 00000000 ____D C:\Program Files\Vuze
    2016-02-15 11:54 - 2014-10-15 13:50 - 00000000 ____D C:\Program Files (x86)\Hearthstone
    2016-02-15 11:54 - 2014-10-15 12:47 - 00000000 ____D C:\Program Files (x86)\Diablo III
    2016-02-15 11:54 - 2014-10-15 08:26 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
    2016-02-15 11:54 - 2014-10-15 08:26 - 00000000 ____D C:\Program Files\AMD
    2016-02-15 11:52 - 2014-10-16 00:45 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
    2016-02-15 11:52 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\registration
    2016-02-15 07:38 - 2014-10-31 11:25 - 10244344 _____ C:\Users\Mike\AppData\Local\census.cache
    2016-02-15 07:12 - 2014-10-31 11:25 - 00139948 _____ C:\Users\Mike\AppData\Local\ars.cache
    2016-02-13 19:36 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\PolicyDefinitions
    2016-02-09 22:23 - 2014-10-15 05:13 - 00796864 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
    2016-02-09 22:23 - 2014-10-15 05:13 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
    2016-02-09 22:23 - 2014-10-15 05:13 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
    2016-02-07 14:51 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\rescache
    2016-02-07 00:44 - 2015-06-10 15:19 - 44212224 _____ C:\Windows\system32\config\components.iodefrag.bak
    2016-02-07 00:44 - 2014-10-16 16:22 - 84086784 _____ C:\Windows\system32\config\SOFTWARE.iodefrag.bak
    2016-02-07 00:44 - 2014-10-16 16:22 - 05029888 _____ C:\Windows\system32\config\DEFAULT.iodefrag.bak
    2016-02-07 00:44 - 2014-10-16 16:22 - 00061440 _____ C:\Windows\system32\config\SAM.iodefrag.bak
    2016-02-07 00:44 - 2014-10-16 16:22 - 00024576 _____ C:\Windows\system32\config\SECURITY.iodefrag.bak
    2016-02-04 23:00 - 2009-07-14 00:08 - 00032536 _____ C:\Windows\Tasks\SCHEDLGU.TXT
    2016-02-02 00:21 - 2014-10-15 04:57 - 00003894 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
    2016-02-02 00:21 - 2014-10-15 04:57 - 00003642 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
     
    ==================== Files in the root of some directories =======
     
    2014-10-31 11:25 - 2016-02-15 07:12 - 0139948 _____ () C:\Users\Mike\AppData\Local\ars.cache
    2014-10-31 11:25 - 2016-02-15 07:38 - 10244344 _____ () C:\Users\Mike\AppData\Local\census.cache
    2014-10-15 05:01 - 2014-10-15 05:01 - 0000000 _____ () C:\Users\Mike\AppData\Local\Driver_LOM_8161Present.flag
    2014-10-31 11:06 - 2014-10-31 11:06 - 0000036 _____ () C:\Users\Mike\AppData\Local\housecall.guid.cache
    2014-10-31 11:11 - 2014-10-31 11:11 - 0000010 _____ () C:\Users\Mike\AppData\Local\sponge.last.runtime.cache
     
    ==================== Bamital & volsnap =================
     
    (There is no automatic fix for files that do not pass verification.)
     
    C:\Windows\system32\winlogon.exe => File is digitally signed
    C:\Windows\system32\wininit.exe => File is digitally signed
    C:\Windows\SysWOW64\wininit.exe => File is digitally signed
    C:\Windows\explorer.exe => File is digitally signed
    C:\Windows\SysWOW64\explorer.exe => File is digitally signed
    C:\Windows\system32\svchost.exe => File is digitally signed
    C:\Windows\SysWOW64\svchost.exe => File is digitally signed
    C:\Windows\system32\services.exe => File is digitally signed
    C:\Windows\system32\User32.dll => File is digitally signed
    C:\Windows\SysWOW64\User32.dll => File is digitally signed
    C:\Windows\system32\userinit.exe => File is digitally signed
    C:\Windows\SysWOW64\userinit.exe => File is digitally signed
    C:\Windows\system32\rpcss.dll => File is digitally signed
    C:\Windows\system32\dnsapi.dll => File is digitally signed
    C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
    C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
     
     
    LastRegBack: 2016-02-15 14:14
     
    ==================== End of FRST.txt ============================
     
    Additional scan result of Farbar Recovery Scan Tool (x64) Version:17-02-2016
    Ran by Mike (2016-02-20 19:43:55)
    Running from C:\Users\Mike\Desktop\Security
    Windows 7 Home Premium Service Pack 1 (X64) (2014-10-15 09:48:20)
    Boot Mode: Normal
    ==========================================================
     
     
    ==================== Accounts: =============================
     
    Administrator (S-1-5-21-3800875428-2236599744-3644965068-500 - Administrator - Disabled)
    Guest (S-1-5-21-3800875428-2236599744-3644965068-501 - Limited - Disabled)
    HomeGroupUser$ (S-1-5-21-3800875428-2236599744-3644965068-1002 - Limited - Enabled)
    Mike (S-1-5-21-3800875428-2236599744-3644965068-1000 - Administrator - Enabled) => C:\Users\Mike
     
    ==================== Security Center ========================
     
    (If an entry is included in the fixlist, it will be removed.)
     
    AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A}
    AV: Advanced SystemCare Ultimate (Enabled - Up to date) {91A1210C-78DD-A71C-E865-63DB27C767EE}
    AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7}
    AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
     
    ==================== Installed Programs ======================
     
    (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
     
    ACPI Driver Installer (HKLM-x32\...\553E35CD-0415-41bc-B39A-410375E88534) (Version: 2.1 - Intel Corporation)
    Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.010.20059 - Adobe Systems Incorporated)
    Adobe Flash Player 20 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 20.0.0.306 - Adobe Systems Incorporated)
    Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.306 - Adobe Systems Incorporated)
    Advanced SystemCare Ultimate 8 (HKLM-x32\...\Advanced SystemCare Ultimate_is1) (Version: 8.2.0 - IObit)
    AMD Catalyst Install Manager (HKLM\...\{7E5DC2C5-115A-322B-976C-219237FAED66}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
    Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
    Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.5.0.0 - Canon Inc.)
    Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version:  - Canon Inc.)
    Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 4.0.0 - Canon Inc.)
    Canon MG2500 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG2500_series) (Version: 1.00 - Canon Inc.)
    Canon MG2500 series On-screen Manual (HKLM-x32\...\Canon MG2500 series On-screen Manual) (Version: 7.6.1 - Canon Inc.)
    Canon MG2500 series User Registration (HKLM-x32\...\Canon MG2500 series User Registration) (Version:  - ‭Canon Inc.)
    Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 2.0.1 - Canon Inc.)
    Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 2.0.0 - Canon Inc.)
    Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.1.0 - Canon Inc.)
    Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.2.1 - Canon Inc.)
    Curse Client (HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\101a9f93b8f0bb6f) (Version: 5.1.1.844 - Curse)
    D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
    Diablo III (HKLM-x32\...\Diablo III) (Version:  - Blizzard Entertainment)
    Escape Rosecliff Island (HKLM-x32\...\Escape Rosecliff Island) (Version:  - PopCap Games)
    EverQuest II (HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\DG0-EverQuest II) (Version:  - Sony Online Entertainment)
    EverQuest II (HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\DGC-EverQuest II) (Version: 1.0.3.191 - Daybreak Game Company)
    Glyph (HKLM-x32\...\Glyph) (Version:  - Trion Worlds, Inc.)
    Golden Cherry Casino (HKLM-x32\...\GoldenCherryCasino) (Version: 1.0 - Rival)
    Google Chrome (HKLM-x32\...\Google Chrome) (Version: 48.0.2564.116 - Google Inc.)
    Google Earth (HKLM-x32\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google)
    Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.7210.1528 - Google Inc.)
    Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
    Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
    Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
    Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
    Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version:  - Blizzard Entertainment)
    Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation)
    Intel® USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.0.19 - Intel Corporation)
    Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\{3FD0C489-0F02-481a-A3E1-9754CD396761}) (Version:  - Intel Corporation)
    Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\3FD0C489-0F02-481a-A3E1-9754CD396761) (Version:  - Intel Corporation)
    Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
    Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
    Microsoft OneDrive (HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\OneDriveSetup.exe) (Version: 17.0.4035.0328 - Microsoft Corporation)
    Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.8.204.0 - Microsoft Corporation)
    Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
    Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
    Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
    Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
    MSI Intel Extreme Tuning Utility (HKLM-x32\...\{2301bb34-385a-4a57-877f-c54347957fad}) (Version: 4.0.6.305 - Intel Corporation)
    MSI Intel Extreme Tuning Utility (x32 Version: 4.0.6.305 - Intel Corporation) Hidden
    Qualcomm Atheros Bandwidth Control Filter Driver (Version: 1.1.39.1040 - Qualcomm Atheros) Hidden
    Qualcomm Atheros Killer E220x Drivers (Version: 1.1.39.1040 - Qualcomm Atheros) Hidden
    Qualcomm Atheros Killer Network Manager Suite (HKLM-x32\...\{E70DB50B-10B4-46BC-9DE2-AB8B49E061EE}) (Version: 1.1.39.1040 - Qualcomm Atheros)
    Qualcomm Atheros Network Manager (Version: 1.1.39.1040 - Qualcomm Atheros) Hidden
    Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7673 - Realtek Semiconductor Corp.)
    RIFT (HKLM-x32\...\Glyph RIFT) (Version:  - Trion Worlds, Inc.)
    Smart Defrag 4 (HKLM-x32\...\Smart Defrag 4_is1) (Version: 4.3 - IObit)
    Sound Blaster Cinema (HKLM-x32\...\{8801CA65-921A-4CCC-9D63-879D1D0BAA97}) (Version: 1.00.05 - Creative Technology Limited)
    Speccy (HKLM\...\Speccy) (Version: 1.29 - Piriform)
    Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)
    StarCraft II (HKLM-x32\...\StarCraft II) (Version:  - Blizzard Entertainment)
    Super-Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.2.022 - MSI)
    The Weather Channel App (HKLM-x32\...\{167158CE-1637-4167-8A1C-C2549EEA966A}) (Version: 1.00.0000 - The Weather Channel)
    Ventrilo Client for Windows x64 (HKLM\...\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}) (Version: 3.0.8.0 - Flagship Industries, Inc.)
    VGA Boost (HKLM-x32\...\{809ACFAE-9A4D-4C60-9223-D8B615CD8CBA}}_is1) (Version: 1.0.0.7 - MSI)
    VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
    Vuze (HKLM\...\8461-7759-5462-8226) (Version: 5.6.2.0 - Azureus Software, Inc.)
    WeatherBug® (HKLM-x32\...\WeatherBug®) (Version: 10.0.7.4 - Earth Networks, Inc.)
    Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
    WinRAR 5.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)
    World of Warcraft (HKLM-x32\...\World of Warcraft) (Version:  - Blizzard Entertainment)
     
    ==================== Custom CLSID (Whitelisted): ==========================
     
    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
     
     
    ==================== Scheduled Tasks (Whitelisted) =============
     
    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
     
    Task: {24B98838-FA06-424C-B21C-860F1A1DFA19} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
    Task: {3959A805-D1CF-424B-9CE4-73D545C6D6CC} - System32\Tasks\Driver Booster SkipUAC (Mike) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
    Task: {489F5863-20BE-463A-8832-C52D6FF650E7} - \Safer-Networking\Spybot - Search and Destroy\Scan the system -> No File <==== ATTENTION
    Task: {4CFF09DB-94C8-4FDC-880F-1C9C258FE7CE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
    Task: {5BDE43C3-87EE-4632-B4EC-345301F33D82} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated)
    Task: {84B9D9EE-A6C7-40FF-A80F-C7296F1BC93A} - \Safer-Networking\Spybot - Search and Destroy\Check for updates -> No File <==== ATTENTION
    Task: {8F64BB04-3572-4CFA-AE64-3630122D3F98} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-09] (Adobe Systems Incorporated)
    Task: {C51618BC-FF72-4554-91A7-9DB893A08300} - \Safer-Networking\Spybot - Search and Destroy\Refresh immunization -> No File <==== ATTENTION
     
    (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
     
    Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
     
    ==================== Shortcuts =============================
     
    (The entries could be listed to be restored or removed.)
     
    ==================== Loaded Modules (Whitelisted) ==============
     
    2015-01-15 16:41 - 2012-03-27 22:49 - 00140456 _____ () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
    2014-10-15 04:57 - 2012-11-01 10:23 - 00089600 _____ () C:\Windows\SYSTEM32\CmdRtr64.DLL
    2014-10-15 04:57 - 2012-11-01 10:21 - 00325120 _____ () C:\Windows\SYSTEM32\APOMgr64.DLL
    2016-02-04 23:03 - 2016-02-13 16:08 - 00049152 _____ () C:\Program Files (x86)\The Weather Channel\Desktop Weather\TWC.Win7.exe
    2016-02-19 18:45 - 2014-09-23 17:19 - 00146736 ____N () C:\Program Files\Earth Networks\WeatherBug\WeatherBug.exe
    2014-01-22 14:15 - 2014-01-22 14:15 - 00300544 _____ () C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe
    2015-07-15 04:55 - 2015-07-15 04:55 - 00016384 _____ () C:\Users\Mike\AppData\Local\Apps\2.0\HV1G8YBL.R97\MVC16ORJ.TX8\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\Curse.CurseClient.WowDb.dll
    2014-11-01 19:11 - 2014-11-01 19:11 - 00035840 _____ () C:\Users\Mike\AppData\Local\Apps\2.0\HV1G8YBL.R97\MVC16ORJ.TX8\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\Curse.Advertising.dll
    2015-07-15 04:55 - 2015-07-15 04:55 - 00099840 _____ () C:\Users\Mike\AppData\Local\Apps\2.0\HV1G8YBL.R97\MVC16ORJ.TX8\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\Curse.CurseClient.CMOD2.dll
    2015-03-18 13:51 - 2013-10-25 12:08 - 00517408 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\sqlite3.dll
    2015-03-18 13:51 - 2013-11-14 16:02 - 00218944 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\Antivirus\bdfltlib.dll
    2016-02-19 19:25 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
    2016-02-19 19:25 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
    2016-02-19 19:25 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
    2016-02-19 19:25 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
    2016-02-19 19:25 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
    2015-03-18 13:51 - 2013-01-15 18:47 - 00893248 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\webres.dll
    2016-02-19 18:31 - 2016-02-17 23:14 - 01630360 _____ () C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.116\libglesv2.dll
    2016-02-19 18:31 - 2016-02-17 23:14 - 00085656 _____ () C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.116\libegl.dll
    2014-10-15 04:58 - 2013-09-16 14:20 - 01242584 ____R () C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\ACE.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00143296 _____ () C:\Program Files (x86)\VideoLAN\VLC\libvlc.dll
    2015-04-13 09:00 - 2015-04-13 09:00 - 02631616 _____ () C:\Program Files (x86)\VideoLAN\VLC\libvlccore.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00554944 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdshow_plugin.dll
    2015-04-13 09:00 - 2015-04-13 09:00 - 00041920 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_output\libdirectsound_plugin.dll
    2015-04-13 09:00 - 2015-04-13 09:00 - 00039872 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_output\libwaveout_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00086464 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libdirect3d_plugin.dll
    2015-04-13 08:56 - 2015-04-13 08:56 - 00070675 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libdirectdraw_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 02158528 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\liblibbluray_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00114112 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_bd_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00245184 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdvdnav_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00089536 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libvdr_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00055744 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libfilesystem_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00072128 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libsmooth_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00593344 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libhttplive_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00771520 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libdash_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00131520 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libzip_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00052672 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\librar_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00023488 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\librecord_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00145856 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libplaylist_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 01566656 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\meta_engine\libtaglib_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00332736 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\lua\liblua_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 01264064 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\misc\libxml_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00024512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\control\libwin_msg_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00069568 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\control\libhotkeys_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00048576 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\control\libwin_hotkeys_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00242112 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libmp4_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00108992 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libavi_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00096704 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libasf_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00091584 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libflacsys_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00036800 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libes_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00032192 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libnuv_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00024512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libtta_plugin.dll
    2015-04-13 09:00 - 2015-04-13 09:00 - 12001728 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\gui\libqt4_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00084928 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libmpc_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00030144 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libwav_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00034752 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libcaf_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00961472 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libsid_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00137152 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\services_discovery\libsap_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 01303488 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libmkv_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00024000 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libdiracsys_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00338368 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libogg_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00720832 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\liblive555_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00031680 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libsmf_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00418240 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libgme_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00035264 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libimage_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00022976 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libxa_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00029632 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libpva_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00027072 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libvoc_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00024512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libau_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00046528 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\meta_engine\libfolder_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00022976 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libdemux_cdg_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00086976 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libvobsub_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00026560 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libdemux_stl_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00100800 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libsubtitle_plugin.dll
    2015-04-13 09:00 - 2015-04-13 09:00 - 00261056 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libjpeg_plugin.dll
    2015-04-13 09:00 - 2015-04-13 09:00 - 00027072 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libcdg_plugin.dll
    2015-04-13 09:00 - 2015-04-13 09:00 - 00304576 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libpng_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 01291200 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libschroedinger_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00754624 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libvorbis_plugin.dll
    2015-04-13 09:00 - 2015-04-13 09:00 - 00344512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libtheora_plugin.dll
    2015-04-13 09:00 - 2015-04-13 09:00 - 00028608 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libdts_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00036800 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libaraw_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00052160 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libsubstx3g_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00456128 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libflac_plugin.dll
    2015-04-13 09:00 - 2015-04-13 09:00 - 00035776 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libg711_plugin.dll
    2015-04-13 09:00 - 2015-04-13 09:00 - 00024512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libaes3_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00157632 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libspeex_plugin.dll
    2015-04-13 09:00 - 2015-04-13 09:00 - 01549248 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\liblibass_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00356288 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libfaad_plugin.dll
    2015-04-13 09:00 - 2015-04-13 09:00 - 00028096 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\liba52_plugin.dll
    2015-04-13 09:00 - 2015-04-13 09:00 - 00028096 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libmpeg_audio_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00031680 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\liblpcm_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00363456 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libopus_plugin.dll
    2015-04-13 09:00 - 2015-04-13 09:00 - 00121792 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libdvbsub_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00028608 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libspudec_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 13522368 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libavcodec_plugin.dll
    2015-04-13 09:00 - 2015-04-13 09:00 - 01532864 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libvpx_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00038336 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libscte27_plugin.dll
    2015-04-13 09:00 - 2015-04-13 09:00 - 01573824 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libzvbi_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00024512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\librawvideo_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00067008 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libsubsdec_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00772544 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\text_renderer\libfreetype_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00038848 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi420_yuy2_sse2_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00030144 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi420_yuy2_mmx_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00702400 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libswscale_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00036800 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi422_yuy2_sse2_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00125376 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi420_rgb_sse2_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00064448 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi420_rgb_mmx_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00028608 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi422_yuy2_mmx_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00027584 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libyuy2_i422_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00024512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libgrey_yuv_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00030656 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libyuy2_i420_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00027584 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi422_yuy2_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00029120 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi420_yuy2_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00037312 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi420_rgb_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00024000 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi422_i420_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00023488 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libscale_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00022976 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libyuvp_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00022464 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_mixer\libfloat_mixer_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 00027072 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libscaletempo_plugin.dll
    2015-04-13 08:59 - 2015-04-13 08:59 - 01504704 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libsamplerate_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00681408 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\services_discovery\libupnp_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00030144 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\services_discovery\libpodcast_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00026560 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\services_discovery\libmediadirs_plugin.dll
    2015-04-13 08:58 - 2015-04-13 08:58 - 00023488 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\services_discovery\libwindrive_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00028096 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\librawvid_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00026048 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libaiff_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00027584 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libnsv_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00168384 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libts_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00531392 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libmod_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00047552 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libps_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00045504 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libty_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00028096 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libmjpeg_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00022464 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libmpgv_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00060864 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libnsc_plugin.dll
    2015-04-13 08:57 - 2015-04-13 08:57 - 00025536 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\librawdv_plugin.dll
     
    ==================== Alternate Data Streams (Whitelisted) =========
     
    (If an entry is included in the fixlist, only the ADS will be removed.)
     
     
    ==================== Safe Mode (Whitelisted) ===================
     
    (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
     
     
    ==================== EXE Association (Whitelisted) ===============
     
    (If an entry is included in the fixlist, the registry item will be restored to default or removed.)
     
     
    ==================== Internet Explorer trusted/restricted ===============
     
    (If an entry is included in the fixlist, it will be removed from the registry.)
     
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\0190-dialers.com -> 0190-dialers.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\01i.info -> 01i.info
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\05p.com -> 05p.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\0calories.net -> 0calories.net
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\0cj.net -> 0cj.net
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\1-se.com -> 1-se.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\1001movie.com -> 1001movie.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\1001night.biz -> 1001night.biz
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\100gal.net -> 100gal.net
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\101hotteens.com -> 101hotteens.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\101lottery.com -> 101lottery.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\123expressview.com -> 123expressview.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\123found.com -> 123found.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\123keno.com -> 123keno.com
    IE restricted site: HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\...\12don.info -> 12don.info
     
    There are 3519 more sites.
     
     
    ==================== Hosts content: ===============================
     
    (If needed Hosts: directive could be included in the fixlist to reset Hosts.)
     
    2009-07-13 21:34 - 2016-02-20 18:56 - 00000035 ____A C:\Windows\system32\Drivers\etc\hosts
     
     
    ==================== Other Areas ============================
     
    (Currently there is no automatic fix for this section.)
     
    HKU\S-1-5-21-3800875428-2236599744-3644965068-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
    DNS Servers: 209.18.47.61 - 209.18.47.62
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
    Windows Firewall is enabled.
     
    ==================== MSCONFIG/TASK MANAGER disabled items ==
     
    (Currently there is no automatic fix for this section.)
     
     
    ==================== FirewallRules (Whitelisted) ===============
     
    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
     
    FirewallRules: [{645CE2A2-E953-4063-B0DB-C5BDB68AA0EF}] => (Allow) C:\Program Files (x86)\Intel\Extreme Tuning Utility\Client\PerfTune.exe
    FirewallRules: [{DEEF72E7-D51F-419E-A1C0-86A07BF1DB3B}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
    FirewallRules: [{77652583-E9ED-4313-9E28-A93E0EF06C2E}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
    FirewallRules: [{35431D30-ADE1-423D-84A0-517BFE132941}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe
    FirewallRules: [{7F78D269-2D1F-4A12-878C-147B565C7E6C}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe
    FirewallRules: [{FA8886D9-699E-422C-BB0B-09E254F58B80}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe
    FirewallRules: [{FBDA60BB-4D2D-4D2C-8B37-C7218DC79108}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe
    FirewallRules: [TCP Query User{D0D231B5-C5C2-435E-A374-B7510B106D57}C:\program files\vuze\azureus.exe] => (Allow) C:\program files\vuze\azureus.exe
    FirewallRules: [UDP Query User{92C84195-7FF6-4B9A-8407-B889C1A5DA1C}C:\program files\vuze\azureus.exe] => (Allow) C:\program files\vuze\azureus.exe
    FirewallRules: [{6F982470-3010-4B11-992E-E8DE36FCE27C}] => (Allow) C:\Program Files\Ventrilo\Ventrilo.exe
    FirewallRules: [{EFD5C8A3-883C-4A48-9CF7-08BF84397933}] => (Allow) C:\Program Files\Ventrilo\Ventrilo.exe
    FirewallRules: [{01FE1006-D8C5-4A95-A3E0-EE44D91B9920}] => (Allow) LPort=22001
    FirewallRules: [{CF5F88B0-7108-471B-A698-5E7A8DE6E55B}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe
    FirewallRules: [{27026C79-EFE9-4066-BABA-9C827C843DD3}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe
    FirewallRules: [{28676D46-EFE3-47F7-9624-4C75334B2664}] => (Allow) C:\Program Files\Vuze\Azureus.exe
    FirewallRules: [{197975AF-1DA8-44BB-B8E3-C46EF76FABA8}] => (Allow) C:\Program Files\Vuze\Azureus.exe
    FirewallRules: [{DD7E9193-770B-4C8C-9B67-7DA5C1A6D797}] => (Allow) C:\Users\Mike\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
    FirewallRules: [{D770136D-2F7D-4D2C-A091-7128028BC28B}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
    FirewallRules: [{421CA8F9-5B29-44A2-9667-52DF198E4C8B}] => (Allow) LPort=2869
    FirewallRules: [{A840DC9C-C7AB-4FFA-AD40-F48B2BF1A424}] => (Allow) LPort=1900
    FirewallRules: [{4161B95B-D7BD-4EA0-AFFA-9E9A72967973}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
    FirewallRules: [{C1487ABF-61C4-4F21-83F1-23EEBA030B73}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
    FirewallRules: [{6901681D-8CD6-4190-A77E-9190C10D772E}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
    FirewallRules: [{677BA150-977B-42A5-A079-BE2BD8841902}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DBDownloader.exe
    FirewallRules: [{67699F1D-AA1A-403B-95B8-8F61DD129F97}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DBDownloader.exe
    FirewallRules: [{9B306B93-3E69-49DD-951C-C341C78F6527}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe
    FirewallRules: [{84AB4003-7B06-4CE1-9B42-D862789339E3}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe
    FirewallRules: [{357E364A-A480-44E1-ADFC-C308D57AA5DF}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
    StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
    StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
    StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service
     
    ==================== Restore Points =========================
     
    17-02-2016 00:33:50 Spybot - Search & Destroy restore point
    18-02-2016 12:49:53 Windows Update
    19-02-2016 18:38:26 JRT Pre-Junkware Removal
    19-02-2016 20:24:17 Driver Booster : Daniel
     
    ==================== Faulty Device Manager Devices =============
     
    Name: Daniel
    Description: SPH-L900
    Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a}
    Manufacturer: Samsung Electronics Co., Ltd.
    Service: WUDFRd
    Problem: : This device cannot start. (Code10)
    Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
    On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
     
     
    ==================== Event log errors: =========================
     
    Application errors:
    ==================
    Error: (02/20/2016 07:26:03 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Faulting application name: vlc.exe, version: 2.2.1.0, time stamp: 0x00000004
    Faulting module name: libqt4_plugin.dll, version: 2.2.1.0, time stamp: 0x00020002
    Exception code: 0x40000015
    Fault offset: 0x007ca10a
    Faulting process id: 0x1aa8
    Faulting application start time: 0xvlc.exe0
    Faulting application path: vlc.exe1
    Faulting module path: vlc.exe2
    Report Id: vlc.exe3
     
    Error: (02/20/2016 06:59:17 PM) (Source: ESENT) (EventID: 455) (User: )
    Description: taskhost (2188) WebCacheLocal: Error -1811 (0xfffff8ed) occurred while opening logfile C:\Users\Mike\AppData\Local\Microsoft\Windows\WebCache\V01.log.
     
    Error: (02/20/2016 06:59:07 PM) (Source: WinMgmt) (EventID: 10) (User: )
    Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
     
    Error: (02/20/2016 06:58:05 PM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
    Description: The handle is invalid
     
    Error: (02/20/2016 06:58:05 PM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
    Description: The handle is invalid
     
    Error: (02/20/2016 01:35:27 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
    Description: 80004005
     
    Error: (02/20/2016 01:23:06 PM) (Source: Application Hang) (EventID: 1002) (User: )
    Description: The program googleearth.exe version 7.1.5.1557 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
     
    Process ID: 5ce4
     
    Start Time: 01d16c0b8f2e02b3
     
    Termination Time: 5
     
    Application Path: C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe
     
    Report Id: ed28285c-d7fe-11e5-93fb-448a5b883e2a
     
    Error: (02/19/2016 07:23:39 PM) (Source: WinMgmt) (EventID: 10) (User: )
    Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
     
    Error: (02/19/2016 06:24:37 PM) (Source: WinMgmt) (EventID: 10) (User: )
    Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
     
    Error: (02/18/2016 11:34:51 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
    Description: 80004005
     
     
    System errors:
    =============
    Error: (02/20/2016 06:58:36 PM) (Source: volmgr) (EventID: 46) (User: )
    Description: Crash dump initialization failed!
     
    Error: (02/20/2016 06:57:44 PM) (Source: DCOM) (EventID: 10010) (User: )
    Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
     
    Error: (02/19/2016 07:21:58 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The SpyHunter 4 Service service failed to start due to the following error: 
    %%3
     
    Error: (02/19/2016 06:25:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Spybot-S&D 2 Scanner Service service failed to start due to the following error: 
    %%1053
     
    Error: (02/19/2016 06:25:08 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
    Description: A timeout was reached (30000 milliseconds) while waiting for the Spybot-S&D 2 Scanner Service service to connect.
     
    Error: (02/19/2016 06:24:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Spybot-S&D 2 Scanner Service service failed to start due to the following error: 
    %%1053
     
    Error: (02/19/2016 06:24:33 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
    Description: A timeout was reached (30000 milliseconds) while waiting for the Spybot-S&D 2 Scanner Service service to connect.
     
    Error: (02/19/2016 06:23:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The SpyHunter 4 Service service failed to start due to the following error: 
    %%3
     
    Error: (02/19/2016 06:22:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Spybot-S&D 2 Security Center Service service failed to start due to the following error: 
    %%109
     
    Error: (02/19/2016 06:22:01 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
    Description: The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Windows Search service, but this action failed with the following error: 
    %%1056
     
     
    CodeIntegrity:
    ===================================
      Date: 2016-02-14 05:19:01.788
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
      Date: 2016-02-14 05:19:01.783
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
      Date: 2016-02-14 05:19:01.773
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
      Date: 2016-02-14 05:19:01.773
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
      Date: 2016-02-14 05:18:45.159
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
      Date: 2016-02-14 05:18:45.154
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
      Date: 2016-02-14 05:18:45.119
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
      Date: 2016-02-14 05:18:45.114
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
      Date: 2016-02-14 05:17:38.473
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
      Date: 2016-02-14 05:17:38.473
      Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.
     
     
    ==================== Memory info =========================== 
     
    Processor: Intel® Core™ i5-4670K CPU @ 3.40GHz
    Percentage of memory in use: 54%
    Total physical RAM: 8135.93 MB
    Available physical RAM: 3680 MB
    Total Virtual: 16270.07 MB
    Available Virtual: 11138.33 MB
     
    ==================== Drives ================================
     
    Drive c: () (Fixed) (Total:931.41 GB) (Free:85.87 GB) NTFS
     
    ==================== MBR & Partition Table ==================
     
    ========================================================
    Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: D61C9053)
    Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
    Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS)
     
    ==================== End of Addition.txt ============================

    • 0

    #9
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 20,031 posts
    • MVP

    It's probably via the proxy that FRST is showing:

     

    ProxyEnable: [S-1-5-21-3800875428-2236599744-3644965068-1000] => Proxy is enabled.
    ProxyServer: [S-1-5-21-3800875428-2236599744-3644965068-1000] => localhost:21320
    Tcpip\Parameters: [DhcpNameServer] 209.18.47.61 209.18.47.62
    Tcpip\..\Interfaces\{034704CE-5A88-4793-BF3D-628ED4BDD465}: [DhcpNameServer] 209.18.47.61 209.18.47.62
    ManualProxies: 1localhost:21320
     

     

     

     

    Get TCPView 

    https://live.sysinte...com/Tcpview.exe

     

    This will start downloading immediately.  Save it then right click and Run As Admin.  Once it loads, click on File, Save As (point it to your desktop), tcp OK.  This will create 

    a file tcp.txt on your desktop.  Open it and copy and paste or attach the file to a Reply.  That should tell me which file is doing the proxy then we can do another fixlist to get it.


    • 0

    #10
    MHC3

    MHC3

      Member

    • Topic Starter
    • Member
    • PipPip
    • 14 posts
    [System Process] 0 TCP Mike-PC 21320 localhost 56561 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56927 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56579 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56938 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56592 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56596 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56619 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56625 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56645 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56667 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56668 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56676 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56679 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56681 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56729 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56752 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56828 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56766 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56767 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56885 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56900 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56905 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56912 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56922 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56622 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56933 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56951 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56588 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56956 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56587 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56589 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56590 localhost 21320 TIME_WAIT
    [System Process] 0 TCP mike-pc 56595 38.113.165.116 https TIME_WAIT
    [System Process] 0 TCP Mike-PC 56599 localhost 21322 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56600 localhost 21322 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56601 localhost 21322 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56602 localhost 21322 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56603 localhost 21322 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56618 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56620 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56623 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56624 localhost 21320 TIME_WAIT
    [System Process] 0 TCP mike-pc 56635 ord30s21-in-f68.1e100.net https TIME_WAIT
    [System Process] 0 TCP mike-pc 56636 104.28.28.94 https TIME_WAIT
    [System Process] 0 TCP Mike-PC 56641 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56643 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56646 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56669 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56670 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56671 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56672 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56673 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56674 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56680 localhost 21320 TIME_WAIT
    [System Process] 0 TCP mike-pc 56694 jg-in-f154.1e100.net https TIME_WAIT
    [System Process] 0 TCP Mike-PC 56698 localhost 21322 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56702 localhost 21322 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56703 localhost 21320 TIME_WAIT
    [System Process] 0 TCP mike-pc 56704 ord31s22-in-f14.1e100.net https TIME_WAIT
    [System Process] 0 TCP Mike-PC 56705 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56706 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56710 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56714 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56715 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56726 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56727 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56730 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56735 localhost 21320 TIME_WAIT
    [System Process] 0 TCP mike-pc 56745 ord30s22-in-f109.1e100.net https TIME_WAIT
    [System Process] 0 TCP Mike-PC 56746 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56747 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56753 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56760 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56768 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56769 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56770 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56775 localhost 21320 TIME_WAIT
    [System Process] 0 TCP mike-pc 56781 ord31s21-in-f1.1e100.net https TIME_WAIT
    [System Process] 0 TCP mike-pc 56782 ord30s21-in-f3.1e100.net https TIME_WAIT
    [System Process] 0 TCP Mike-PC 56784 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56790 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56796 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56797 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56799 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56800 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56802 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56805 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56813 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56816 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56818 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56821 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56823 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56824 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56832 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56835 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56838 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56839 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56841 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56850 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56851 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56853 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56856 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56857 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56859 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56867 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56869 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56871 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56872 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56875 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56886 localhost 21320 TIME_WAIT
    [System Process] 0 TCP mike-pc 56896 172.217.0.110 https TIME_WAIT
    [System Process] 0 TCP Mike-PC 56908 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56909 localhost 21322 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56913 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56915 localhost 21322 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56917 localhost 21322 TIME_WAIT
    [System Process] 0 TCP Mike-PC 56918 localhost 21322 TIME_WAIT
    [System Process] 0 TCP mike-pc 56919 live.sysinternals.com https TIME_WAIT
    [System Process] 0 TCP mike-pc 56928 r2.ycpi.vip.che.yahoo.net https TIME_WAIT
    [System Process] 0 TCP mike-pc 56930 38.113.165.71 https TIME_WAIT
    [System Process] 0 TCP mike-pc 56939 live.sysinternals.com https TIME_WAIT
    [System Process] 0 TCP mike-pc 56947 38.113.165.71 https TIME_WAIT
    [System Process] 0 TCP mike-pc 56948 38.113.165.71 https TIME_WAIT
    [System Process] 0 TCP Mike-PC 56960 localhost 21320 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56755 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56943 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56721 TIME_WAIT
    [System Process] 0 TCP Mike-PC 21320 localhost 56964 TIME_WAIT 8 693 8 2,034
    [System Process] 0 TCP Mike-PC 21320 localhost 56987 TIME_WAIT 2 253
    [System Process] 0 TCP mike-pc 56988 r2.ycpi.vip.che.yahoo.net https TIME_WAIT 7 1,887 9 3,552
    avp.exe 7624 TCP Mike-PC 50361 Mike-PC 0 LISTENING
    avp.exe 7624 TCP Mike-PC 50362 Mike-PC 0 LISTENING
    avp.exe 7624 TCP mike-pc 50367 4.27.18.254 http CLOSE_WAIT
    chrome.exe 5796 TCP Mike-PC 56987 localhost 21320 ESTABLISHED 8 2,119 10 5,051
    chrome.exe 5796 TCP Mike-PC 56992 localhost 21320 ESTABLISHED 4 1,017 5 473
    chrome.exe 5796 TCP Mike-PC 56994 localhost 21320 ESTABLISHED
    CurseClient.exe 4676 TCP Mike-PC 49206 Mike-PC 0 LISTENING
    jhi_service.exe 5140 TCPV6 [0:0:0:0:0:0:0:1] 49565 [0:0:0:0:0:0:0:0] 0 LISTENING
    KillerService.exe 1436 TCP Mike-PC 7790 Mike-PC 0 LISTENING
    KillerService.exe 1436 TCP Mike-PC 7790 localhost 49260 ESTABLISHED 3,124 334,836 58 232 16,118 12 150 3
    lsass.exe 720 TCP Mike-PC 49156 Mike-PC 0 LISTENING
    lsass.exe 720 TCPV6 [0:0:0:0:0:0:0:0] 49156 [0:0:0:0:0:0:0:0] 0 LISTENING
    MsMpEng.exe 724 TCP mike-pc 56946 23.96.212.225 https ESTABLISHED
    NetworkManager.exe 4572 TCP Mike-PC 49260 localhost 7790 ESTABLISHED 58 232 3,123 334,739 12 16,021 3 149
    SDFSSvc.exe 2072 TCP Mike-PC 21320 localhost 56994 ESTABLISHED
    SDFSSvc.exe 2072 TCP Mike-PC 21320 localhost 56992 ESTABLISHED
    SDFSSvc.exe 2072 TCP Mike-PC 21320 Mike-PC 0 LISTENING
    SDFSSvc.exe 2072 TCP Mike-PC 21322 Mike-PC 0 LISTENING
    SDFSSvc.exe 2072 TCP Mike-PC 21323 Mike-PC 0 LISTENING
    SDFSSvc.exe 2072 UDP Mike-PC 21328 * *
    SDFSSvc.exe 2072 UDP Mike-PC 59943 * *
    SDFSSvc.exe 2072 TCP mike-pc 56965 74.125.126.188 5228 FIN_WAIT2 3 916 4 434
    SDFSSvc.exe 2072 TCP mike-pc 56993 74.125.126.188 5228 ESTABLISHED 3 916 4 434
    SDTray.exe 5016 TCP Mike-PC 21327 Mike-PC 0 LISTENING
    SDUpdSvc.exe 2424 TCP Mike-PC 21321 Mike-PC 0 LISTENING
    services.exe 640 TCP Mike-PC 49155 Mike-PC 0 LISTENING
    services.exe 640 TCPV6 [0:0:0:0:0:0:0:0] 49155 [0:0:0:0:0:0:0:0] 0 LISTENING
    svchost.exe 488 TCP Mike-PC epmap Mike-PC 0 LISTENING
    svchost.exe 1160 TCP Mike-PC 49153 Mike-PC 0 LISTENING
    svchost.exe 1236 TCP Mike-PC 49154 Mike-PC 0 LISTENING
    svchost.exe 1236 UDP Mike-PC isakmp * *
    svchost.exe 3388 UDP Mike-PC ssdp * * 41 8,419 438 3
    svchost.exe 3388 UDP mike-pc ssdp * *
    svchost.exe 1376 UDP Mike-PC ws-discovery * *
    svchost.exe 3388 UDP Mike-PC ws-discovery * *
    svchost.exe 1376 UDP Mike-PC ws-discovery * *
    svchost.exe 3388 UDP Mike-PC ws-discovery * *
    svchost.exe 1236 UDP Mike-PC ipsec-msft * *
    svchost.exe 1492 UDP Mike-PC llmnr * *
    svchost.exe 1376 UDP Mike-PC 56272 * *
    svchost.exe 3388 UDP mike-pc 60970 * *
    svchost.exe 3388 UDP Mike-PC 60971 * *
    svchost.exe 3388 UDP Mike-PC 61986 * *
    svchost.exe 1376 UDP Mike-PC 61988 * *
    svchost.exe 488 TCPV6 [0:0:0:0:0:0:0:0] epmap [0:0:0:0:0:0:0:0] 0 LISTENING
    svchost.exe 5216 TCPV6 [0:0:0:0:0:0:0:0] 3587 [0:0:0:0:0:0:0:0] 0 LISTENING
    svchost.exe 1160 TCPV6 [0:0:0:0:0:0:0:0] 49153 [0:0:0:0:0:0:0:0] 0 LISTENING
    svchost.exe 1236 TCPV6 [0:0:0:0:0:0:0:0] 49154 [0:0:0:0:0:0:0:0] 0 LISTENING
    svchost.exe 1236 UDPV6 [0:0:0:0:0:0:0:0] 500 * *
    svchost.exe 3388 UDPV6 [0:0:0:0:0:0:0:1] 1900 * *
    svchost.exe 3388 UDPV6 [fe80:0:0:0:806f:6d54:e0ea:d193] 1900 * *
    svchost.exe 5216 UDPV6 [0:0:0:0:0:0:0:0] 3540 * * 8 6,246
    svchost.exe 1376 UDPV6 [0:0:0:0:0:0:0:0] 3702 * *
    svchost.exe 1376 UDPV6 [0:0:0:0:0:0:0:0] 3702 * *
    svchost.exe 3388 UDPV6 [0:0:0:0:0:0:0:0] 3702 * *
    svchost.exe 3388 UDPV6 [0:0:0:0:0:0:0:0] 3702 * *
    svchost.exe 1236 UDPV6 [0:0:0:0:0:0:0:0] 4500 * *
    svchost.exe 1492 UDPV6 [0:0:0:0:0:0:0:0] 5355 * *
    svchost.exe 1376 UDPV6 [0:0:0:0:0:0:0:0] 56273 * *
    svchost.exe 3388 UDPV6 [fe80:0:0:0:806f:6d54:e0ea:d193] 60968 * *
    svchost.exe 3388 UDPV6 [0:0:0:0:0:0:0:1] 60969 * * 16 5,952
    svchost.exe 3388 UDPV6 [0:0:0:0:0:0:0:0] 61987 * *
    svchost.exe 1376 UDPV6 [0:0:0:0:0:0:0:0] 61989 * *
    System 4 TCP mike-pc netbios-ssn Mike-PC 0 LISTENING
    System 4 TCP Mike-PC microsoft-ds Mike-PC 0 LISTENING
    System 4 TCP Mike-PC icslap Mike-PC 0 LISTENING
    System 4 TCP Mike-PC wsd Mike-PC 0 LISTENING
    System 4 TCP Mike-PC 10243 Mike-PC 0 LISTENING
    System 4 UDP mike-pc netbios-ns * * 15 750
    System 4 UDP mike-pc netbios-dgm * *
    System 4 TCPV6 [0:0:0:0:0:0:0:0] microsoft-ds [0:0:0:0:0:0:0:0] 0 LISTENING
    System 4 TCPV6 [0:0:0:0:0:0:0:0] icslap [0:0:0:0:0:0:0:0] 0 LISTENING
    System 4 TCPV6 [0:0:0:0:0:0:0:0] wsd [0:0:0:0:0:0:0:0] 0 LISTENING
    System 4 TCPV6 [0:0:0:0:0:0:0:0] 10243 [0:0:0:0:0:0:0:0] 0 LISTENING
    wininit.exe 580 TCP Mike-PC 49152 Mike-PC 0 LISTENING
    wininit.exe 580 TCPV6 [0:0:0:0:0:0:0:0] 49152 [0:0:0:0:0:0:0:0] 0 LISTENING
    wmpnetwk.exe 4844 TCP Mike-PC rtsp Mike-PC 0 LISTENING
    wmpnetwk.exe 4844 UDP Mike-PC 5004 * *
    wmpnetwk.exe 4844 UDP Mike-PC 5005 * *
    wmpnetwk.exe 4844 TCPV6 [0:0:0:0:0:0:0:0] rtsp [0:0:0:0:0:0:0:0] 0 LISTENING
    wmpnetwk.exe 4844 UDPV6 [0:0:0:0:0:0:0:0] 5004 * *
    wmpnetwk.exe 4844 UDPV6 [0:0:0:0:0:0:0:0] 5005 * *

    • 0

    Advertisements


    #11
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 20,031 posts
    • MVP

    Download delfix.zip and Save it.  Right click on it and Extract All.  Find delfix.inf and right click and Install.

     

     

     

     

     
    Right click on (My) Computer and select Manage (Continue) Then click on the arrow in front of Event Viewer. Next Click on the arrow in front of Windows Logs Right click on System and Clear Log, Clear. Repeat for Application.
     

     

     

     

     

    Download the attached fixlist.txt to the same location as FRST
     
     
    Run FRST and press Fix.  PC will reboot.
    A fix log will be generated please post that 
     
     
    Start, All Programs, Accessories then right click on Command Prompt and Run as Administrator.  Then type (with an Enter after each line).
    sfc  /scannow
     
     
    Copy the next two lines:
     
    findstr  /c:"[SR]"  \windows\logs\cbs\cbs.log  >  \windows\logs\cbs\junk.txt 
    notepad \windows\logs\cbs\junk.txt 
     
    Start, All Programs, Accessories, right click on Command Prompt and Run as Administrator, Continue.  Right click and Paste or Edit then Paste and the copied line should appear.
    Hit Enter. Copy and paste the text from notepad or if it is too big, just attach the file.)
     
     
    1. Please download the Event Viewer Tool by Vino Rosso
    and save it to your Desktop:
    2. Right-click VEW.exe and Run AS Administrator
    3. Under 'Select log to query', select:
     
    * System
    4. Under 'Select type to list', select:
    * Error
    * Warning
     
     
    Then use the 'Number of events' as follows:
     
     
    1. Click the radio button for 'Number of events'
    Type 20 in the 1 to 20 box
    Then click the Run button.
    Notepad will open with the output log.
     
     
    Please post the Output log in your next reply then repeat but select Application.  (Each time you run VEW it overwrites the log so copy the first one to a Reply or rename it before running it a second time.)
     
    If you still have the facebook hack, rerun FRST as before and post both logs.
     
     
     
     
     
     
     

    • 0

    #12
    MHC3

    MHC3

      Member

    • Topic Starter
    • Member
    • PipPip
    • 14 posts

    The junk.txt is from the command prompt. VEW.txt is for the System events. VEW-Application is for the Application process.

    Attached Files


    • 0

    #13
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 20,031 posts
    • MVP

    fix log?


    • 0

    #14
    MHC3

    MHC3

      Member

    • Topic Starter
    • Member
    • PipPip
    • 14 posts

    I forgot the fixlog previously due to the computer restart. I ran it again(still forgetting about it) and it restarted again. Here is all 3 from FRST. Still no facebook.

    Attached Files


    • 0

    #15
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 20,031 posts
    • MVP

    Do you have the same problem in each browser?  (IE, Firefox, Chrome)

     
    Open the browser you usually use and type in:
     
    66.220.156.68
     
    Does that go to https://www.facebook.com ?
     
    How about:
     
    31.13.65.36  ?
     
    Start, All Programs, Accessories then right click on Command Prompt and Run As Admin.  Yes.
     
    Type (with an Enter after each line) and wait for the prompt to return.
     
    nslookup  facebook.com

    (This should give you something like:

     

    Server:  UnKnown
    Address:  192.168.0.1
     
    Non-authoritative answer:
    Name:    facebook.com
    Addresses:  2a03:2880:2040:7f21:face:b00c:0:25de
              66.220.156.68
     
    Does it? )
     
     
    nslookup  www.facebook.com
    (This should be:
     
    Server:  UnKnown
    Address:  192.168.0.1
     
    Non-authoritative answer:
    Name:    star-mini.c10r.facebook.com
    Addresses:  2a03:2880:f011:1e:face:b00c:0:25de
              31.13.65.36
    Aliases:  www.facebook.com)
     
     
     
     
     

    • 0






    Similar Topics

    0 user(s) are reading this topic

    0 members, 0 guests, 0 anonymous users

    As Featured On:

    Microsoft Yahoo BBC MSN PC Magazine Washington Post HP