CreateRestorePoint: HKLM-x32\...\Run: [] => [X] HKU\S-1-5-21-985586180-2434019148-3583008384-1000\...\MountPoints2: {f4402584-c094-11e3-9567-806e6f6e6963} - F:\setup.exe HKU\S-1-5-21-985586180-2434019148-3583008384-1000\...\MountPoints2: {f522b089-037b-11e5-9ee9-baf072f5de07} - G:\startme.exe FF Plugin: @microsoft.com/GENUINE -> disabled [No File] FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File] R1 {b99c8534-7800-48fa-bd71-519a46cdc7e1}w64; C:\Windows\System32\drivers\{b99c8534-7800-48fa-bd71-519a46cdc7e1}w64.sys [61120 2014-07-03] (StdLib) S2 AODDriver4.2.0; \??\E:\Program Files\ATI.ACE\Fuel\amd64\AODDriver2.sys [X] Task: {6DA94850-08CB-4AFE-9C92-026F04B64AF7} - \Digital Sites -> No File <==== ATTENTION Task: C:\Windows\Tasks\Digital Sites.job => C:\Users\Sophie\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION AlternateDataStreams: C:\Users\Sophie\Local Settings:h1XCtl5PpDkYV1uib7Sb5J [2386] AlternateDataStreams: C:\Users\Sophie\AppData\Local:h1XCtl5PpDkYV1uib7Sb5J [2386] AlternateDataStreams: C:\Users\Sophie\AppData\Local\Application Data:h1XCtl5PpDkYV1uib7Sb5J [2386] AlternateDataStreams: C:\Users\Sophie\AppData\Local\Temporary Internet Files:fqqp9JE9MrW6bkQ2IZEbViY [2172] CMD: netsh advfirewall reset CMD: netsh advfirewall set allprofiles state on Hosts: EmptyTemp: