CreateRestorePoint: SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.co...w={searchTerms} SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.co...w={searchTerms} SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-378932227-2856890839-977457961-1000 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-378932227-2856890839-977457961-1003 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/we...&l=dis&o=HPDTDF SearchScopes: HKU\S-1-5-21-378932227-2856890839-977457961-1003 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.co...w={searchTerms} FF Plugin: @microsoft.com/GENUINE -> disabled No File FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File 2015-06-11 03:17 - 2015-03-12 09:03 - 00000000 ____D C:\Users\family\AppData\Roaming\tor Task: {02736DBA-3471-4A9E-95E9-3E43F1365AA2} - \ProPCCleaner_Start No Task File <==== ATTENTION Task: {2E284F55-E6FD-4AE4-91C0-68AEDAD03949} - System32\Tasks\4823 => Wscript.exe C:\Users\family\AppData\Local\Temp\launchie.vbs //B <==== ATTENTION Task: {87C1E686-6EF2-412E-A89D-3AC736A1CE57} - System32\Tasks\0 => Iexplore.exe <==== ATTENTION Task: {8F319ECB-43E3-4CFA-8AC6-E95C39C75FDF} - \ProPCCleaner_Popup No Task File <==== ATTENTION AlternateDataStreams: C:\Windows:25638C60856ECA57 FirewallRules: [{FD445CF1-73CD-487D-B772-9309457C5A54}] => (Allow) C:\Program Files (x86)\GoforFiles\goforfilesdl.exe FirewallRules: [{ECEE240E-9AEE-44C8-93A6-CECCF9565047}] => (Allow) C:\Program Files (x86)\GoforFiles\goforfilesdl.exe FirewallRules: [{99AF64FD-2E2B-4CC3-AADF-EEE2DC0C8C8B}] => (Allow) C:\Program Files (x86)\GoforFiles\GoforFiles.exe FirewallRules: [{3559082A-6E3C-4FD1-8230-72792E18FC79}] => (Allow) C:\Program Files (x86)\GoforFiles\GoforFiles.exe C:\Program Files (x86)\GoforFiles C:\program files (x86)\vuze CMD: bitsadmin /reset /allusers CMD: netsh advfirewall reset CMD: netsh advfirewall set allprofiles state on Hosts: EmptyTemp: