HKU\S-1-5-21-2443366756-1468529419-453783211-1000\...\Run: [CTRegRun] => C:\Windows\CTRegRun.EXE [53248 2006-10-06] (Creative Technology Ltd ) C:\Windows\CTRegRun.EXE AppInit_DLLs: {DLL_Str} => {DLL_Str} File Not Found AppInit_DLLs-x32: {DLL_Str} => "{DLL_Str}" File Not Found SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - {54CCE146-0603-4190-898D-B43BD86BBA9C} URL = http://www.ask.com/w...}&l=dis&o=ushpd SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 - {54CCE146-0603-4190-898D-B43BD86BBA9C} URL = http://www.ask.com/w...}&l=dis&o=ushpd SearchScopes: HKCU - DefaultScope {AC6C70BA-D774-4C32-A269-7BFEA5CA2226} URL = SearchScopes: HKCU - {54CCE146-0603-4190-898D-B43BD86BBA9C} URL = Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -  No File Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} -  No File Toolbar: HKCU - No Name - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} -  No File Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Bob\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-07-17] C:\Users\Bob\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION U3 altfp3xo; C:\Windows\System32\Drivers\altfp3xo.sys [0 ] (Advanced Micro Devices) C:\Windows\System32\Drivers\altfp3xo.sys 2014-07-23 09:04 - 2014-07-23 18:00 - 00000472 _____ () C:\Windows\Tasks\MyTurboPC.com Registration3.job 2014-07-23 09:04 - 2014-07-23 11:13 - 00000547 _____ () C:\Windows\Tasks\MyTurboPC_sch_3F9D6F8B-1272-11E4-AE09-4061869B0CEC.job 2014-07-23 09:04 - 2014-07-23 09:33 - 00000436 _____ () C:\Windows\Tasks\MyTurboPC.com Update3_triggeronce.job 2014-07-23 09:04 - 2014-07-23 09:33 - 00000436 _____ () C:\Windows\Tasks\MyTurboPC.com Update3.job 2014-07-23 09:04 - 2014-07-23 09:04 - 00003972 _____ () C:\Windows\System32\Tasks\MyTurboPC_sch_3F9D6F8B-1272-11E4-AE09-4061869B0CEC 2014-07-23 09:04 - 2014-07-23 09:04 - 00003248 _____ () C:\Windows\System32\Tasks\MyTurboPC.com Update3 2014-07-23 09:04 - 2014-07-23 09:04 - 00003132 _____ () C:\Windows\System32\Tasks\MyTurboPC.com Registration3 2014-07-23 09:04 - 2014-07-23 09:04 - 00002910 _____ () C:\Windows\System32\Tasks\MyTurboPC.com Update3_triggeronce 2014-07-23 09:04 - 2014-07-23 09:04 - 00001122 ____C () C:\Users\Bob\Desktop\MyTurboPC.lnk 2014-07-23 09:04 - 2014-07-23 09:04 - 00000000 ___DC () C:\Users\Bob\AppData\Roaming\MyTurboPC.com 2014-07-23 09:04 - 2014-07-23 09:04 - 00000000 ___DC () C:\Users\Bob\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyTurboPC.com 2014-07-23 09:04 - 2014-07-23 09:04 - 00000000 ___DC () C:\Users\Bob\AppData\Roaming\DriverCure 2014-07-23 09:04 - 2014-07-23 09:04 - 00000000 ___DC () C:\ProgramData\MyTurboPC.com 2014-07-23 09:04 - 2014-07-23 09:04 - 00000000 ___DC () C:\Program Files (x86)\MyTurboPC.com C:\ProgramData\hash.dat C:\Users\Bob\PremiereElements_10_Content_ALL_LS15.exe C:\Users\Bob\setup.exe Task: {128B2DEF-F16C-4039-870C-9820260410FB} - System32\Tasks\MyTurboPC_sch_3F9D6F8B-1272-11E4-AE09-4061869B0CEC => C:\Program Files (x86)\MyTurboPC.com\MyTurboPC\mtpc.exe [2014-05-09] (MyTurboPC.com) Task: {86D84C27-1961-4555-9837-F16B59C0BCB6} - System32\Tasks\MyTurboPC.com Registration3 => Rundll32.exe "C:\Program Files (x86)\Common Files\MyTurboPC.com\UUS3\UUS3.dll" RunUns Task: {963A97A9-E537-40FA-8CF3-41D2BD83989C} - System32\Tasks\MyTurboPC.com Update3 => c:\program files (x86)\common files\myturbopc.com\uus3\Update3.exe [2014-05-09] (MyTurboPC.com) Task: {A33CBE55-289A-4D66-A4FD-5870E5434CB5} - System32\Tasks\MyTurboPC.com Update3_triggeronce => c:\program files (x86)\common files\myturbopc.com\uus3\Update3.exe [2014-05-09] (MyTurboPC.com) C:\Program Files (x86)\Common Files\MyTurboPC.com c:\program files (x86)\common files\myturbopc.com\uus3\Update3.exe Task: C:\Windows\Tasks\MyTurboPC.com Registration3.job => C:\Program Files (x86)\Common Files\MyTurboPC.com\UUS3\UUS3.dll Task: C:\Windows\Tasks\MyTurboPC.com Update3.job => c:\program files (x86)\common files\myturbopc.com\uus3\Update3.exe Task: C:\Windows\Tasks\MyTurboPC.com Update3_triggeronce.job => c:\program files (x86)\common files\myturbopc.com\uus3\Update3.exe Task: C:\Windows\Tasks\MyTurboPC_sch_3F9D6F8B-1272-11E4-AE09-4061869B0CEC.job => C:\Program Files (x86)\MyTurboPC.com\MyTurboPC\mtpc.exe AlternateDataStreams: C:\ProgramData\Temp:5C321E34 CMD: bitsadmin /list /allusers CMD: DEL %TEMP%\*.* /F /S /Q CMD: RD /S /Q %TEMP% REBOOT: