Page 1 of 3 123 LastLast
Results 1 to 10 of 25

Thread: In desperate need of help.

  1. #1
    Junior Member
    Join Date
    Apr 2014
    Posts
    15

    Default In desperate need of help.

    I have no clue what I'm doing here, all I know is that between shutting the computer down early morning Thursday to firing it back up Thursday night something has happened to make it stop working properly. It's XP, when I opened up, the desktop froze on me it unfroze after 5 minutes but then the taskbar froze. I have attempted two restore points, the day of the last update for XP and from the day after, both failed.

    I'm unable to locate the links for ERUNT on either of the three site you've linked to.

    DDS (Ver_2012-11-20.01) - NTFS_x86 NETWORK
    Internet Explorer: 8.0.6001.18702
    Run by SARAH BROUGH at 0:18:32 on 2014-04-18
    Microsoft Windows XP Home Edition 5.1.2600.3.1252.44.1033.18.1023.594 [GMT 1:00]
    .
    AV: Microsoft Security Essentials *Disabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}
    .
    ============== Running Processes ================
    .
    c:\Program Files\Microsoft Security Client\MsMpEng.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\WINDOWS\system32\wbem\wmiprvse.exe
    C:\WINDOWS\System32\svchost.exe -k netsvcs
    C:\WINDOWS\System32\svchost.exe -k NetworkService
    C:\WINDOWS\System32\svchost.exe -k LocalService
    .
    ============== Pseudo HJT Report ===============
    .
    uStart Page = hxxps://www.google.co.uk/
    uWindow Title = Microsoft Internet Explorer
    uSearch Bar = hxxp://www.btopenworld.com/searchpane
    uInternet Connection Wizard,ShellNext = iexplore
    uProxyOverride = localhost
    uSearchURL,(Default) = hxxp://uk.search.yahoo.com/search?fr=mcafee&p=%s
    BHO: myBar BHO: {0494D0D1-F8E0-41ad-92A3-14154ECE70AC} -
    BHO: PlurPush: {82249076-d5c8-431d-982b-023779779587} - c:\program files\plurpush\PlurPushbho.dll
    BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
    BHO: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - c:\program files\google\googletoolbarnotifier\5.7.9012.1008\swg.dll
    BHO: EpsonToolBandKicker Class: {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - c:\program files\epson\epson web-to-page\EPSON Web-To-Page.dll
    BHO: AlxHelper Class: {F443A627-5009-4323-9C1D-7FD598D0D712} - c:\program files\amazon browser bar\AmazonBrowserBar.3.0.dll
    TB: &SearchBar: {0494D0D9-F8E0-41AD-92A3-14154ECE70AC} -
    TB: EPSON Web-To-Page: {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - c:\program files\epson\epson web-to-page\EPSON Web-To-Page.dll
    TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
    TB: &SearchBar: {0494D0D9-F8E0-41ad-92A3-14154ECE70AC} -
    TB: EPSON Web-To-Page: {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - c:\program files\epson\epson web-to-page\EPSON Web-To-Page.dll
    TB: Amazon Browser Bar: {EA582743-9076-4178-9AA6-7393FDF4D5CE} - c:\program files\amazon browser bar\AmazonBrowserBar.3.0.dll
    TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
    EB: {32683183-48a0-441b-a342-7c2a440a9478} - <orphaned>
    EB: Real.com: {FE54FA40-D68C-11d2-98FA-00C0F0318AFE} - c:\windows\system32\shdocvw.dll
    mRun: [HTpatch] c:\windows\htpatch.exe
    mRun: [EPSON Stylus Photo R240 Series] c:\windows\system32\spool\drivers\w32x86\3\E_FATIAHE.EXE /P30 "EPSON Stylus Photo R240 Series" /O6 "USB001" /M "Stylus Photo R240"
    dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
    dRun: [DWQueuedReporting] "c:\progra~1\common~1\micros~1\dw\dwtrig20.exe" -t
    dRun: [Google Update] "c:\windows\system32\config\systemprofile\local settings\application data\google\update\GoogleUpdate.exe" /c
    dRunOnce: [SpUninstallDeleteDir] rmdir /s /q "c:\windows\system32\config\systemprofile\application data\SearchProtect"
    uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
    mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
    mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
    IE: &AOL Toolbar search - c:\program files\aol toolbar\toolbar.dll/SEARCH.HTML
    IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
    IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office10\EXCEL.EXE/3000
    IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - {FE54FA40-D68C-11d2-98FA-00C0F0318AFE}
    IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
    DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
    DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
    DPF: {48DD0448-9209-4F81-9F6D-D83562940134} - hxxp://lads.myspace.com/upload/MySpaceUploader1006.cab
    DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} - hxxp://aolcc.aolsvc.aol.co.uk/computercheckup/qdiagcc.cab
    DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} - hxxp://upload.facebook.com/controls/FacebookPhotoUploader.cab
    DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    DPF: {D6E7CFB5-C074-4D1C-B647-663D1A8D96BF} - hxxp://upload.facebook.com/controls/FacebookPhotoUploader4_5.cab
    TCP: NameServer = 192.168.1.1 0.0.0.0
    TCP: Interfaces\{A5E95AD4-C025-4D79-8589-7E6E60E82AE2} : DHCPNameServer = 192.168.1.1 0.0.0.0
    AppInit_DLLs= c:\progra~1\searchprotect\searchprotect\bin\SPVC32Loader.dll
    mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\34.0.1847.116\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
    .
    ================= FIREFOX ===================
    .
    FF - ProfilePath - c:\documents and settings\sarah brough\application data\mozilla\firefox\profiles\jv73zqex.default\
    FF - prefs.js: browser.startup.homepage - hxxps://www.google.co.uk/
    FF - plugin: c:\documents and settings\sarah brough\local settings\application data\google\google earth\plugin\npgeplugin.dll
    FF - plugin: c:\documents and settings\sarah brough\local settings\application data\google\update\1.3.23.9\npGoogleUpdate3.dll
    FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
    FF - plugin: c:\program files\google\picasa3\npPicasa3.dll
    FF - plugin: c:\program files\google\update\1.3.23.9\npGoogleUpdate3.dll
    FF - plugin: c:\program files\viewpoint\viewpoint experience technology\npViewpoint.dll
    FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_12_0_0_77.dll
    FF - ExtSQL: 2014-03-28 00:00; {552199fb-9890-4055-9aaf-b2f6d51d46e9}; c:\documents and settings\sarah brough\application data\mozilla\firefox\profiles\jv73zqex.default\extensions\{552199fb-9890-4055-9aaf-b2f6d51d46e9}.xpi
    .
    ---- FIREFOX POLICIES ----
    .
    user_pref(extensions.autoDisableScopes,14);
    ============= SERVICES / DRIVERS ===============
    .
    R0 BsStor;InCD Storage Helper Driver;c:\windows\system32\drivers\bsstor.sys [2003-11-1 9344]
    S0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2011-4-18 231960]
    S2 BsUDF;InCD UDF Driver;c:\windows\system32\drivers\bsudf.sys [2003-11-1 468480]
    S2 CltMngSvc;Search Protect by Conduit Service;c:\progra~1\searchprotect\main\bin\CltMngSvc.exe [2014-4-8 2470688]
    S2 Update PlurPush;Update PlurPush;c:\program files\plurpush\updatePlurPush.exe [2014-3-28 348440]
    S2 Updater Service for AMZN;Updater Service for AMZN;c:\program files\amazon browser bar\ToolbarUpdaterService.exe [2012-5-22 222368]
    S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2014-2-21 40776]
    S3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\drivers\rtl8192su.sys [2011-12-10 602912]
    .
    =============== Created Last 30 ================
    .
    2014-04-17 00:54:41 -------- d-----w- c:\windows\pss
    2014-04-16 00:28:40 8049928 ----a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{f572755a-b83f-4f26-bdb3-d37465633cfb}\mpengine.dll
    2014-04-14 23:15:23 7969936 ----a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
    2014-04-07 02:46:47 -------- d-----w- c:\windows\Performance
    2014-04-07 02:46:35 -------- d-----w- c:\documents and settings\sarah brough\local settings\application data\Microsoft Corporation
    2014-04-07 02:45:52 -------- d-----w- c:\program files\Microsoft Windows 7 Upgrade Advisor
    2014-03-29 00:14:32 -------- d-----w- c:\documents and settings\sarah brough\local settings\application data\WinZip
    2014-03-28 02:01:19 -------- d-----w- c:\documents and settings\sarah brough\local settings\application data\SearchProtect
    2014-03-28 01:51:45 -------- d-----w- c:\program files\PlurPush
    2014-03-28 01:51:05 -------- d-----w- c:\program files\SearchProtect
    2014-03-26 22:44:53 13312 -c----w- c:\windows\system32\dllcache\xp_eos.exe
    2014-03-26 22:44:53 13312 ------w- c:\windows\system32\xp_eos.exe
    .
    ==================== Find3M ====================
    .
    2014-03-12 02:40:41 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
    2014-03-12 02:40:41 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
    2014-03-06 17:59:23 920064 ----a-w- c:\windows\system32\wininet.dll
    2014-03-06 17:59:22 43520 ----a-w- c:\windows\system32\licmgr10.dll
    2014-03-06 17:59:22 18944 ----a-w- c:\windows\system32\corpol.dll
    2014-03-06 17:59:22 1469440 ------w- c:\windows\system32\inetcpl.cpl
    2014-03-06 00:46:54 385024 ----a-w- c:\windows\system32\html.iec
    2014-02-21 23:29:39 40776 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
    2014-02-07 02:01:37 1879040 ----a-w- c:\windows\system32\win32k.sys
    2014-02-05 08:55:04 562688 ----a-w- c:\windows\system32\qedit.dll
    2014-01-25 00:19:42 231960 ----a-w- c:\windows\system32\drivers\MpFilter.sys
    2014-01-19 07:32:23 231584 ------w- c:\windows\system32\MpSigStub.exe
    2013-07-07 01:40:18 0 ----a-w- c:\program files\GUM6F.tmp
    .
    ============= FINISH: 0:20:26.84 ===============

    aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
    Run date: 2014-04-18 00:37:37
    -----------------------------
    00:37:37.625 OS Version: Windows 5.1.2600 Service Pack 3
    00:37:37.625 Number of processors: 1 586 0x209
    00:37:37.625 ComputerName: SARAH-IETMS0KJ2 UserName: SARAH BROUGH
    00:37:38.250 Initialize success
    00:39:00.859 AVAST engine defs: 14041703
    00:39:09.656 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-4
    00:39:09.671 Disk 0 Vendor: IC35L060AVV207-0 V22OA66A Size: 58643MB BusType: 3
    00:39:09.843 Disk 0 MBR read successfully
    00:39:09.859 Disk 0 MBR scan
    00:39:09.953 Disk 0 Windows XP default MBR code
    00:39:09.968 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 58627 MB offset 63
    00:39:09.984 Disk 0 scanning sectors +120069810
    00:39:10.125 Disk 0 scanning C:\WINDOWS\system32\drivers
    00:39:29.671 Service scanning
    00:40:00.500 Modules scanning
    00:40:09.843 Disk 0 trace - called modules:
    00:40:09.890 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys PCIIDEX.SYS
    00:40:09.906 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x873caab8]
    00:40:12.343 3 CLASSPNP.SYS[f782efd7] -> nt!IofCallDriver -> \Device\00000058[0x873c99e8]
    00:40:12.468 5 ACPI.sys[f77a5620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-4[0x873c9d98]
    00:40:14.328 AVAST engine scan C:\WINDOWS
    00:40:47.609 AVAST engine scan C:\WINDOWS\system32
    00:44:21.796 AVAST engine scan C:\WINDOWS\system32\drivers
    00:44:48.375 AVAST engine scan C:\Documents and Settings\SARAH BROUGH
    00:46:41.328 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\SARAH BROUGH\Desktop\MBR.dat"
    00:46:41.343 The log file has been saved successfully to "C:\Documents and Settings\SARAH BROUGH\Desktop\aswMBR.txt"

    -----------------------------------------------------------
    Attached Files Attached Files
    Last edited by tashi; 2014-04-18 at 07:56. Reason: Removed second post, helpers look for a zero response.

  2. #2
    Emeritus-Security Expert
    Join Date
    Nov 2005
    Location
    Florida's SpaceCoast
    Posts
    15,208

    Default



    Not sure if this is the problem but on Windows XP, the latest Microsoft Security Essentials update caused problems

    One of the latest updates for Microsoft Security Essentials is reportedly slowing down Windows XP computers so much that they’re becoming unusable, a number of users complained, and without an official patch to fix this, turning to various workarounds is the only option.

    According to Fudzilla, it all comes down to the MsMpEng.exe process that needs to be killed in order to make your Windows XP computer usable once again. This means that Microsoft Security Essentials must be disabled completely, which isn’t quite a recommended thing now that Windows XP no longer receives support and fixes for found vulnerabilities.

    To do this, you can either go to Task Manager and kill the aforementioned process, or simply type “services.msc” and disable the Microsoft Security Essentials service to make sure that it doesn’t run on startup. Reboot your computer and you should be ready to go.

    Let me know if this worked and if it did I can link you to free AVs that still work on XP
    Microsoft MVP Consumer Security 2007-2008-2009-2010-2011-2012-2013-2014

    ERROR MESSAGE 386
    No KeyBoard Detected
    Press F1 To Continue

    Just a reminder that threads will be closed if no reply in 3 days.

  3. #3
    Emeritus-Security Expert
    Join Date
    Nov 2005
    Location
    Florida's SpaceCoast
    Posts
    15,208

    Default

    Sorry, my post was short

    You can go to task manager by clicking on Ctrl. Alt...Del and under Processors click on MsMpEng.exe and End Process, do the same for Microsoft Security Essentials if its listed


    Then go to Start > Run and type in services.msc and hit enter on your keyboard

    Look for Microsoft Security Essentials , click on it and you will see an option to disable it
    Microsoft MVP Consumer Security 2007-2008-2009-2010-2011-2012-2013-2014

    ERROR MESSAGE 386
    No KeyBoard Detected
    Press F1 To Continue

    Just a reminder that threads will be closed if no reply in 3 days.

  4. #4
    Junior Member
    Join Date
    Apr 2014
    Posts
    15

    Default

    Unfortunately the continuation of my first post was deleted, I had to split it into two parts as there was a lot of text to post.

    Spybot results

    Smitfraud-C.gp: [SBI $EE2EF3B5] User settings (Registry key, nothing done)
    HKEY_USERS\S-1-5-21-527237240-1647877149-839522115-1004\Software\Alexa Internet

    Win32.2UrFace.bho: [SBI $51263573] Settings (Registry key, nothing done)
    HKEY_CLASSES_ROOT\CLSID\{D3388703-5092-487C-8217-11ADA1CA68B5}

    Win32.2UrFace.bho: [SBI $62251A5D] Settings (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}

    Win32.2UrFace.bho: [SBI $D31FCF30] Settings (Registry key, nothing done)
    HKEY_CLASSES_ROOT\TypeLib\{DCABB943-792E-44C4-9029-ECBEE6265AF9}

    Systweak.RegCleanPro: [SBI $EA6CE3BF] User settings (Registry key, nothing done)
    HKEY_USERS\S-1-5-21-527237240-1647877149-839522115-1004\Software\Distromatic

    Win32.Downloader.gen: [SBI $C188B636] Executable (File, nothing done)
    C:\Documents and Settings\SARAH BROUGH\Local Settings\Temp\nsz11A.exe
    Properties.size=110936
    Properties.md5=CBB0857B4E4C5D947A0933733F19AFFC
    Properties.filedate=1379849614
    Properties.filedatetext=2013-09-22 12:33:34

    Win32.Downloader.gen: [SBI $C188B636] Executable (File, nothing done)
    C:\Documents and Settings\SARAH BROUGH\Local Settings\Temp\nsl128.exe
    Properties.size=110936
    Properties.md5=CBB0857B4E4C5D947A0933733F19AFFC
    Properties.filedate=1379849614
    Properties.filedatetext=2013-09-22 12:33:34

    Win32.Downloader.gen: [SBI $C188B636] Executable (File, nothing done)
    C:\Documents and Settings\SARAH BROUGH\Local Settings\Temp\nsl113.exe
    Properties.size=110936
    Properties.md5=CBB0857B4E4C5D947A0933733F19AFFC
    Properties.filedate=1379849614
    Properties.filedatetext=2013-09-22 12:33:34

    Win32.Downloader.gen: [SBI $C188B636] Executable (File, nothing done)
    C:\Documents and Settings\SARAH BROUGH\Local Settings\Temp\nsb129.exe
    Properties.size=110936
    Properties.md5=CBB0857B4E4C5D947A0933733F19AFFC
    Properties.filedate=1379849614
    Properties.filedatetext=2013-09-22 12:33:34

    FunWebProducts: [SBI $54A99A1C] Configuration file (File, nothing done)
    C:\Program Files\FunWebProducts\Installr\Cache\files.ini
    Properties.size=136
    Properties.md5=489DC670DB04DFE1BF8648FCCB89B562
    Properties.filedate=1071693167
    Properties.filedatetext=2003-12-17 21:32:46

    FunWebProducts: [SBI $16E7DEC4] Data (File, nothing done)
    C:\Program Files\FunWebProducts\Installr\Cache\00057F3A
    Properties.size=12288
    Properties.md5=816A69882D292A2721B4FA15097C41C3
    Properties.filedate=1071693155
    Properties.filedatetext=2003-12-17 21:32:35

    FunWebProducts: [SBI $16E7DEC4] Data (File, nothing done)
    C:\Program Files\FunWebProducts\Installr\Cache\000588A0
    Properties.size=12288
    Properties.md5=9FA862459ECCC78ABAF7949D1B390BA7
    Properties.filedate=1071693157
    Properties.filedatetext=2003-12-17 21:32:37

    FunWebProducts: [SBI $16E7DEC4] Data (File, nothing done)
    C:\Program Files\FunWebProducts\Installr\Cache\0005915A
    Properties.size=12288
    Properties.md5=AE1209019B64B76F4637E61BC16AC57E
    Properties.filedate=1071693159
    Properties.filedatetext=2003-12-17 21:32:39

    FunWebProducts: [SBI $16E7DEC4] Data (File, nothing done)
    C:\Program Files\FunWebProducts\Installr\Cache\00059A05
    Properties.size=12288
    Properties.md5=042801080C9C7A900B0663BF93023FA5
    Properties.filedate=1071693166
    Properties.filedatetext=2003-12-17 21:32:45

    FunWebProducts: [SBI $7DA4BA2D] Program directory (Directory, nothing done)
    C:\Program Files\FunWebProducts\Installr

    FunWebProducts: [SBI $B71E4FFD] Program directory (Directory, nothing done)
    C:\Program Files\FunWebProducts\

    MyWay.MyBar: [SBI $23C288C0] Settings (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\MyWay

    MyWay.MyBar: [SBI $77C9295E] Library (File, nothing done)
    C:\Program Files\MyWay\myBar\1.bin\NPMYWAY.DLL
    Properties.size=32768
    Properties.md5=E798F7C6602F5577ACDB97D7143083FA
    Properties.filedate=1070114924
    Properties.filedatetext=2003-11-29 15:08:44

    MyWay.MyBar: [SBI $4C728484] Global settings (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\Software\MyWay\myBar

    MyWay.MyBar: [SBI $68C1B745] Netscape hook (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-527237240-1647877149-839522115-1004\Software\Netscape\Netscape Navigator\Automation Shutdown\MyWayToolBar.NetscapeShutdown.1

    MyWay.MyBar: [SBI $9F513381] Netscape hook (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-527237240-1647877149-839522115-1004\Software\Netscape\Netscape Navigator\Automation Startup\MyWayToolBar.NetscapeStartup.1

    MyWay.MyBar: [SBI $7AAC92DD] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MyWayToolBar.NetscapeShutdown

    MyWay.MyBar: [SBI $7AAC92DD] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MyWayToolBar.NetscapeShutdown.1

    MyWay.MyBar: [SBI $7AAC92DD] Class ID (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0494D0D5-F8E0-41ad-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $7AAC92DD] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MyWayToolBar.NetscapeShutdown.1

    MyWay.MyBar: [SBI $7AAC92DD] Class ID (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0494D0D5-F8E0-41ad-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $7AAC92DD] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MyWayToolBar.NetscapeShutdown

    MyWay.MyBar: [SBI $0F58AC5D] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MyWayToolBar.NetscapeStartup

    MyWay.MyBar: [SBI $0F58AC5D] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MyWayToolBar.NetscapeStartup.1

    MyWay.MyBar: [SBI $0F58AC5D] Class ID (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0494D0D7-F8E0-41ad-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $0F58AC5D] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MyWayToolBar.NetscapeStartup.1

    MyWay.MyBar: [SBI $0F58AC5D] Class ID (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0494D0D7-F8E0-41ad-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $0F58AC5D] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MyWayToolBar.NetscapeStartup

    MyWay.MyBar: [SBI $EE7DCE79] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MyWayToolBar.SettingsPlugin

    MyWay.MyBar: [SBI $EE7DCE79] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MyWayToolBar.SettingsPlugin.1

    MyWay.MyBar: [SBI $EE7DCE79] Class ID (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0494D0DB-F8E0-41ad-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $EE7DCE79] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MyWayToolBar.SettingsPlugin.1

    MyWay.MyBar: [SBI $EE7DCE79] Class ID (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0494D0DB-F8E0-41ad-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $EE7DCE79] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MyWayToolBar.SettingsPlugin

    MyWay.MyBar: [SBI $242B9AFE] Class ID (Registry key, nothing done)
    HKEY_CLASSES_ROOT\CLSID\{0494D0D1-F8E0-41ad-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $3703A38D] Class ID (Registry key, nothing done)
    HKEY_CLASSES_ROOT\CLSID\{0494D0D2-F8E0-41ad-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $39E44B5C] Class ID (Registry key, nothing done)
    HKEY_CLASSES_ROOT\CLSID\{0494D0D3-F8E0-41ad-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $1FB439BA] Class ID (Registry key, nothing done)
    HKEY_CLASSES_ROOT\CLSID\{0494D0D5-F8E0-41ad-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $027BE818] Class ID (Registry key, nothing done)
    HKEY_CLASSES_ROOT\CLSID\{0494D0D7-F8E0-41ad-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $5314DC76] Class ID (Registry key, nothing done)
    HKEY_CLASSES_ROOT\CLSID\{0494D0D9-F8E0-41ad-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $D1E90A3E] Class ID (Registry key, nothing done)
    HKEY_CLASSES_ROOT\CLSID\{0494D0DB-F8E0-41ad-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $F95E9009] Class ID (Registry key, nothing done)
    HKEY_CLASSES_ROOT\CLSID\{0494D0DE-F8E0-41ad-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $BA8F5307] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{0494D0D4-F8E0-41AD-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $A74082A5] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{0494D0D6-F8E0-41AD-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $691DB121] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{0494D0DA-F8E0-41AD-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $74D26083] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{0494D0DC-F8E0-41AD-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $A37A11CC] Type library (Registry key, nothing done)
    HKEY_CLASSES_ROOT\TypeLib\{0494D0D0-F8E0-41AD-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $2E46BBC3] Browser helper object (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{0494D0D1-F8E0-41ad-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $35CF119C] Uninstall settings (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\My Way Speedbar Uninstall

    MyWay.MyBar: [SBI $35CF119C] Uninstall settings (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\My Way Speedbar Uninstall

    MyWay.MyBar: [SBI $CDA59C59] IE toolbar (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-527237240-1647877149-839522115-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{0494D0D9-F8E0-41AD-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $0E585F0A] IE toolbar (Registry value, nothing done)
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\{0494D0D9-F8E0-41ad-92A3-14154ECE70AC}

    MyWay.MyBar: [SBI $24D22F00] Program directory (Directory, nothing done)
    C:\Program Files\MyWay\myBar\

    MyWay.MyBar: [SBI $0E5FD087] Data (File, nothing done)
    C:\Program Files\MyWay\myBar\1.bin\MYWAYPLUGINPROXY.CLASS
    Properties.size=321
    Properties.md5=7B993903E6F08D6C35371D891DA8BC50
    Properties.filedate=1070114924
    Properties.filedatetext=2003-11-29 15:08:44

    MyWay.MyBar: [SBI $46DB162E] Picture (File, nothing done)
    C:\Program Files\MyWay\myBar\1.bin\PARTNER.BMP
    Properties.size=668
    Properties.md5=1619AF5D0D1120FF1A7F536B2F97CEF9
    Properties.filedate=1070114924
    Properties.filedatetext=2003-11-29 15:08:44

    MyWay.MyBar: [SBI $7010056B] Data (File, nothing done)
    C:\Program Files\MyWay\myBar\1.bin\PARTNER2.DAT
    Properties.size=440
    Properties.md5=1A66C0BB63A6ED73C39A00EB53D59AE8
    Properties.filedate=1070114924
    Properties.filedatetext=2003-11-29 15:08:44

    MyWay.MyBar: [SBI $EFEF68CB] Data (File, nothing done)
    C:\Program Files\MyWay\myBar\1.bin\PARTNER3.DAT
    Properties.size=440
    Properties.md5=D954FA9F2E5714E72EE4CBBE77F6B81B
    Properties.filedate=1070114924
    Properties.filedatetext=2003-11-29 15:08:44

    MyWay.MyBar: [SBI $36ECC858] Data (File, nothing done)
    C:\Program Files\MyWay\myBar\1.bin\PARTNER4.DAT
    Properties.size=937
    Properties.md5=17791D4AC55E4CBA8FE212D278B4141A
    Properties.filedate=1070114924
    Properties.filedatetext=2003-11-29 15:08:44

    MyWay.MyBar: [SBI $3F7031D8] Data (File, nothing done)
    C:\Program Files\MyWay\myBar\1.bin\PARTNER5.DAT
    Properties.size=909
    Properties.md5=FE730A7A6EB8B7F86FC48F2BE81FB2A2
    Properties.filedate=1070114924
    Properties.filedatetext=2003-11-29 15:08:44

    MyWay.MyBar: [SBI $51D7D610] Data (File, nothing done)
    C:\Program Files\MyWay\myBar\1.bin\PARTNER6.DAT
    Properties.size=919
    Properties.md5=AAECE10FEFBD3D2A34E1F0CF5CAABB18
    Properties.filedate=1070114924
    Properties.filedatetext=2003-11-29 15:08:44

    MyWay.MyBar: [SBI $8D16E788] Installer (File, nothing done)
    C:\Program Files\MyWay\myBar\1.bin\UNINSTALL.INF
    Properties.size=2445
    Properties.md5=AA02769E36B1A1D787DEFEB3BBC6D2F2
    Properties.filedate=1070114924
    Properties.filedatetext=2003-11-29 15:08:44

    BubbleDock: [SBI $9C8ABD50] User settings (Registry key, nothing done)
    HKEY_USERS\S-1-5-21-527237240-1647877149-839522115-1004\Software\Nosibay\Bubble Dock

    Conduit.SearchProtect: [SBI $C559C1BC] Settings (Registry value, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\SearchProtect\Environment

    Conduit.SearchProtect: [SBI $746A4EE2] Settings (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\SearchProtect

    Conduit.SearchProtect: [SBI $0356CF55] Uninstall settings (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect

    Conduit.SearchProtect: [SBI $0356CF55] Uninstall settings (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect

    Conduit.SearchProtect: [SBI $4A92DDE0] Application data folder (Directory, nothing done)
    C:\Documents and Settings\SARAH BROUGH\Local Settings\Application Data\SearchProtect\SearchProtect\Logs\

    Conduit.SearchProtect: [SBI $F4050CA9] Data (File, nothing done)
    C:\Documents and Settings\SARAH BROUGH\Local Settings\Application Data\SearchProtect\SearchProtect\rep\UserRepository.dat
    Properties.size=54110
    Properties.md5=5FDDDBFC5DB7FBC22DB20FDBCA2CE78A
    Properties.filedate=1397699159
    Properties.filedatetext=2014-04-17 02:45:59

    Conduit.SearchProtect: [SBI $453597EC] Data (File, nothing done)
    C:\Documents and Settings\SARAH BROUGH\Local Settings\Application Data\SearchProtect\SearchProtect\rep\UserSettings.dat
    Properties.size=1954
    Properties.md5=9DD1500FA5ACEE9783673690597A5F8F
    Properties.filedate=1397699175
    Properties.filedatetext=2014-04-17 02:46:14

    Conduit.SearchProtect: [SBI $469E3ED0] Application data folder (Directory, nothing done)
    C:\Documents and Settings\SARAH BROUGH\Local Settings\Application Data\SearchProtect\SearchProtect\rep\

    Conduit.SearchProtect: [SBI $192A837B] Application data folder (Directory, nothing done)
    C:\Documents and Settings\SARAH BROUGH\Local Settings\Application Data\SearchProtect\SearchProtect\

    Conduit.SearchProtect: [SBI $0235E586] Data (File, nothing done)
    C:\Documents and Settings\SARAH BROUGH\Local Settings\Application Data\SearchProtect\UI\rep\UIRepository.dat
    Properties.size=13790
    Properties.md5=84B0B77ED96B3E488CC7B00561F0E530
    Properties.filedate=1397613548
    Properties.filedatetext=2014-04-16 02:59:07

    Conduit.SearchProtect: [SBI $55B42006] Application data folder (Directory, nothing done)
    C:\Documents and Settings\SARAH BROUGH\Local Settings\Application Data\SearchProtect\UI\rep\

    Conduit.SearchProtect: [SBI $6699FFBE] Application data folder (Directory, nothing done)
    C:\Documents and Settings\SARAH BROUGH\Local Settings\Application Data\SearchProtect\UI\

    Conduit.SearchProtect: [SBI $59173936] Application data folder (Directory, nothing done)
    C:\Documents and Settings\LocalService\Local Settings\Application Data\SearchProtect\Logs\

    Conduit.SearchProtect: [SBI $59173936] Application data folder (Directory, nothing done)
    C:\Documents and Settings\NetworkService\Local Settings\Application Data\SearchProtect\Logs\

    Conduit.SearchProtect: [SBI $59173936] Application data folder (Directory, nothing done)
    C:\Documents and Settings\SARAH BROUGH\Local Settings\Application Data\SearchProtect\Logs\

    Conduit.SearchProtect: [SBI $CA1A24DA] Application data folder (Directory, nothing done)
    C:\Documents and Settings\LocalService\Local Settings\Application Data\SearchProtect\

    Conduit.SearchProtect: [SBI $CA1A24DA] Application data folder (Directory, nothing done)
    C:\Documents and Settings\NetworkService\Local Settings\Application Data\SearchProtect\

    Conduit.SearchProtect: [SBI $CA1A24DA] Application data folder (Directory, nothing done)
    C:\Documents and Settings\SARAH BROUGH\Local Settings\Application Data\SearchProtect\

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\Apply-default.png
    Properties.size=2240
    Properties.md5=C823284831366AA9C82971F73F434786
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\Apply-onclick.png
    Properties.size=2328
    Properties.md5=AC8DD5EDC8AE4732C973ADEAF5960644
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\Apply-Rollover.png
    Properties.size=2348
    Properties.md5=9AD3CA0D9B9F398BF00205E248F28803
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\bg-uninstall.png
    Properties.size=11390
    Properties.md5=A8216737C79E710DD25848314772E411
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\bg-with-logo.png
    Properties.size=32733
    Properties.md5=012533D7330C1381A965504473766DF1
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\bg.png
    Properties.size=31085
    Properties.md5=47CD216C5F869CB8FC9F33C200598D28
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\bgNotif.png
    Properties.size=12080
    Properties.md5=93B456AE92E34E72757A3EB1FD365E59
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\bgSettings.png
    Properties.size=13426
    Properties.md5=83947801C8C71067E70D2310AB5ADD48
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\bgSettingsDS.png
    Properties.size=10710
    Properties.md5=AA026DE7E5A074804467B60175AAF86B
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\bgUninstall.png
    Properties.size=17758
    Properties.md5=FE560610C4BF512F4680FABCFF5ACBEE
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\btnBlue.png
    Properties.size=1256
    Properties.md5=610708A0FDF2E03669771524E5A6F11A
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\btnClose.png
    Properties.size=933
    Properties.md5=127A8ACFAAE51661CE155A1371816E1F
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\btnSilver.png
    Properties.size=1065
    Properties.md5=215653C3BAF2F6890AE676A0A0B03677
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\button-bg.png
    Properties.size=1364
    Properties.md5=2DD758697096D542B449DDB3A4050831
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\checkbox.png
    Properties.size=378
    Properties.md5=1B8A6B986EFD5BA8E80D480B8E4A98ED
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\checkbox_checked.png
    Properties.size=360
    Properties.md5=77A1019ED61C81C13AE27AEBC4C4D325
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\checkbox_def.png
    Properties.size=274
    Properties.md5=77C3E90B2A59B6B12F3807958C1A3169
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\close-win-def.png
    Properties.size=1264
    Properties.md5=58F653D35176784E2D3C47C654DC2F60
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\close-win-over-click.png
    Properties.size=1405
    Properties.md5=E8749086079E532A3D12D083E4718F7E
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\gray-bg.png
    Properties.size=2993
    Properties.md5=18392D827455EE4A547E2DFC687C4D2F
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\hez-def.png
    Properties.size=1038
    Properties.md5=0C8C517B9B2FED409F630F5FEE55CD9A
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\hez-selected.png
    Properties.size=1049
    Properties.md5=710C8790BF108AF58251A8E414DDF7CA
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\hez.png
    Properties.size=256
    Properties.md5=5B809317B81900CA4FF352B39161D873
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\icon-win.png
    Properties.size=1339
    Properties.md5=57119B0CE24F56043CB53394D3290EAC
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\info-icon.png
    Properties.size=424
    Properties.md5=26742402965AA8F6EBCE440BBD118092
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\menu-rollover.png
    Properties.size=1014
    Properties.md5=C5884E1F373AB89BFD88DA93DD577CDA
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\menu-selected.png
    Properties.size=3264
    Properties.md5=48F60B7BBB12D535976714CA2F374982
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\radio-button-def.png
    Properties.size=1553
    Properties.md5=D5E082CFDA8E92321F066CE6C5379C97
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\radio-button-selected.png
    Properties.size=1715
    Properties.md5=25959ED83887BA9C19564D9D010C8BA9
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\radio-button.png
    Properties.size=859
    Properties.md5=27C663405BB327722461F06C1BA22C64
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\radio-button2.png
    Properties.size=886
    Properties.md5=D2FE1CACCAF82BE2E35CD19600A4CF2B
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\Settings-icon.png
    Properties.size=1257
    Properties.md5=F2D744A1FE7886B67370B957F0CEBE87
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\text-field.png
    Properties.size=1198
    Properties.md5=395D79FF1D175BEDD626F0F89C51E648
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\v.png
    Properties.size=1214
    Properties.md5=52B857BDAA5E394BFA9BED9057230E34
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $622B3442] Picture (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\x.png
    Properties.size=1332
    Properties.md5=82447070E0073012E0AE56D1672ACA50
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $262BC338] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\Images\

    Conduit.SearchProtect: [SBI $6E58973D] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\libs\defaults.js
    Properties.size=983
    Properties.md5=DFACEA71B332DF9FB7E29EADB83DAA3A
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $E38C360B] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\libs\dialogUtils.js
    Properties.size=1909
    Properties.md5=07CA109D1DF3233F39024A8DBFFE5288
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $AF06A4D6] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\libs\jquery.1.7.1.min.js
    Properties.size=93868
    Properties.md5=DDB84C1587287B2DF08966081EF063BF
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $B173AB3C] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\libs\json2.min.js
    Properties.size=2780
    Properties.md5=18C47581E22A53E0985F6704BB9EB607
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $BADBFC66] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\libs\main.js
    Properties.size=10183
    Properties.md5=785C8B4A891E023382846CF5D161309C
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $009E10BD] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\libs\SPDialogAPI.js
    Properties.size=3304
    Properties.md5=1BF2125A090D6918959848FCB71770D5
    Properties.filedate=1396961972
    Properties.filedatetext=2014-04-08 13:59:32

    Conduit.SearchProtect: [SBI $B664B453] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\libs\

    Conduit.SearchProtect: [SBI $FD2E0A4B] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\protection\defaults.js
    Properties.size=862
    Properties.md5=2A014A629C812AB6BEE1C922394BBC04
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $D47DA58B] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\protection\protection.css
    Properties.size=4223
    Properties.md5=3D3ED3CB1651FFF21669C184199E4A14
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $EF996C3D] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\protection\protection.html
    Properties.size=3079
    Properties.md5=B399457BBD1859FEE5A6C734491C3FE8
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $DA42438A] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\protection\protection.js
    Properties.size=4762
    Properties.md5=17DF4FC66E577C4E2663E205DA23D000
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $030516D0] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\protection\

    Conduit.SearchProtect: [SBI $1DECA8D6] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\protectionDS\defaults.js
    Properties.size=287
    Properties.md5=C49AC0FB4C3B4F3EDC5BB8DD3B4FE410
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $3A99343D] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\protectionDS\protectionDS.css
    Properties.size=3622
    Properties.md5=5A3850378CCD7D5EBBA91F6587EA698D
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $CD759E15] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\protectionDS\protectionDS.html
    Properties.size=1254
    Properties.md5=738BC1107E589225E2226981DB08E079
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $30B2D988] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\protectionDS\protectionDS.js
    Properties.size=3645
    Properties.md5=82AA92182CD333A54E443299B776181D
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $3C999955] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\protectionDS\

    Conduit.SearchProtect: [SBI $61C396D3] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\settings\defaults.js
    Properties.size=1064
    Properties.md5=5DB5FDFC65C076C89B272A96847863A2
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $66FF6A61] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\settings\settings.css
    Properties.size=8098
    Properties.md5=F746C1780347AF1D9788993220EF26B4
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $AFF4E594] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\settings\settings.html
    Properties.size=12488
    Properties.md5=47A17A0D62B82212FE2BA2BFDA528DF9
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $E5868133] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\settings\settings.js
    Properties.size=11919
    Properties.md5=4610E3F24E6A5F56341D8E5A8AF160A6
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $4CD5CF39] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\settings\

    Conduit.SearchProtect: [SBI $FF5DF880] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\uninstall\defaults.js
    Properties.size=1191
    Properties.md5=AD1A161C09A3C9D9BCC67113A119A42B
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $881968A8] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\uninstall\uninstall.css
    Properties.size=5128
    Properties.md5=6702EBDFA04856F454F5C3852715E116
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $4DA27982] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\uninstall\uninstall.html
    Properties.size=5144
    Properties.md5=A5EEA6DBE2A0F689ED9C448AD5B9D446
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $0DE56431] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\uninstall\uninstall.js
    Properties.size=5359
    Properties.md5=150A624BB04B094D7BE3CB2F0ECDAD7E
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $27868D8A] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\uninstall\

    Conduit.SearchProtect: [SBI $DAF8F363] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\bubble\bubble.css
    Properties.size=1810
    Properties.md5=F76A88D35751A21CE0A375F3015750FF
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $41468321] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\bubble\bubble.html
    Properties.size=1250
    Properties.md5=426A63B6FBEA10DE6A91F1F7B7D0E63A
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $849C9982] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\bubble\bubble.js
    Properties.size=2353
    Properties.md5=FD4E780F458B2CE7D452393066DA2DF3
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $10076BB9] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\bubble\defaults.js
    Properties.size=266
    Properties.md5=F27FAE519DA7F94F5F11CB6016B1CFB6
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $67232A12] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\bubble\

    Conduit.SearchProtect: [SBI $61720960] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\settings.html
    Properties.size=8030
    Properties.md5=E8FAC50A5DC00FE4C43FE261A70F67EA
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $AB043D30] Data (File, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\style.css
    Properties.size=7233
    Properties.md5=088C8DDE12AE5FE84D9CF82BE075B070
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $25FEE4AE] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\UI\dialogs\

    Conduit.SearchProtect: [SBI $36A947DC] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\UI\rep\

    Conduit.SearchProtect: [SBI $C12F11B8] Executable (File, nothing done)
    C:\Program Files\SearchProtect\UI\bin\cltmngui.exe
    Properties.size=3037472
    Properties.md5=EFAAE131121B7AD73CBA0FECC0B5A277
    Properties.filedate=1396962398
    Properties.filedatetext=2014-04-08 14:06:38

    Conduit.SearchProtect: [SBI $BBEBD6F8] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\UI\bin\

    Conduit.SearchProtect: [SBI $12BC161B] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\UI\

    Conduit.SearchProtect: [SBI $B9D3A88C] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\Main\Logs\

    Conduit.SearchProtect: [SBI $0FD70B5A] Data (File, nothing done)
    C:\Program Files\SearchProtect\Main\rep\SystemRepository.dat
    Properties.size=5326
    Properties.md5=FAC0C1B85C55411136DD7565EC9BFD4C
    Properties.filedate=1397517042
    Properties.filedatetext=2014-04-15 00:10:41

    Conduit.SearchProtect: [SBI $BE9A1AC2] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\Main\rep\

    Conduit.SearchProtect: [SBI $51A9D386] Executable (File, nothing done)
    C:\Program Files\SearchProtect\Main\bin\CltMngSvc.exe
    Properties.size=2470688
    Properties.md5=F31EAD497B8CBE16895A3B7B201C4EAE
    Properties.filedate=1396962398
    Properties.filedatetext=2014-04-08 14:06:38

    Conduit.SearchProtect: [SBI $5D253DB2] Executable (File, nothing done)
    C:\Program Files\SearchProtect\Main\bin\uninstall.exe
    Properties.size=1063800
    Properties.md5=0BE55CE27465CAE6AFB660BCEAD3D5DC
    Properties.filedate=1396962432
    Properties.filedatetext=2014-04-08 14:07:12

    Conduit.SearchProtect: [SBI $B4A74870] Library (File, nothing done)
    C:\Program Files\SearchProtect\Main\bin\SPTool.dll
    Properties.size=2378528
    Properties.md5=662450EE5BC0562E459975942142941E
    Properties.filedate=1396962398
    Properties.filedatetext=2014-04-08 14:06:38

    Conduit.SearchProtect: [SBI $33D88BE6] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\Main\bin\

    Conduit.SearchProtect: [SBI $7BFC40F6] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\Main\

    Conduit.SearchProtect: [SBI $9BBE9398] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\SearchProtect\rep\

    Conduit.SearchProtect: [SBI $715267E7] Executable (File, nothing done)
    C:\Program Files\SearchProtect\SearchProtect\bin\cltmng.exe
    Properties.size=4693792
    Properties.md5=DEABB07BC9B0009D826D2CA04C43F90F
    Properties.filedate=1396962398
    Properties.filedatetext=2014-04-08 14:06:38

    Conduit.SearchProtect: [SBI $D56375D8] Executable (File, nothing done)
    C:\Program Files\SearchProtect\SearchProtect\bin\SPTool64.exe
    Properties.size=1675552
    Properties.md5=6659520EED80EBEF0B252817E15D5551
    Properties.filedate=1396962398
    Properties.filedatetext=2014-04-08 14:06:38

    Conduit.SearchProtect: [SBI $623C6E68] Library (File, nothing done)
    C:\Program Files\SearchProtect\SearchProtect\bin\SPVC32.dll
    Properties.size=12370720
    Properties.md5=BB0A70EA6ECCE4050117D2F951E6AA12
    Properties.filedate=1396962398
    Properties.filedatetext=2014-04-08 14:06:38

    Conduit.SearchProtect: [SBI $002DD404] Library (File, nothing done)
    C:\Program Files\SearchProtect\SearchProtect\bin\SPVC32Loader.dll
    Properties.size=1050912
    Properties.md5=03D24F335740C1AFB61EC58CE0013B86
    Properties.filedate=1396962398
    Properties.filedatetext=2014-04-08 14:06:38

    Conduit.SearchProtect: [SBI $E65DA2D2] Library (File, nothing done)
    C:\Program Files\SearchProtect\SearchProtect\bin\SPVC64.dll
    Properties.size=3180832
    Properties.md5=92FFD31EADF37BED6A17032B972750ED
    Properties.filedate=1396962398
    Properties.filedatetext=2014-04-08 14:06:38

    Conduit.SearchProtect: [SBI $F23FC2F7] Library (File, nothing done)
    C:\Program Files\SearchProtect\SearchProtect\bin\SPVC64Loader.dll
    Properties.size=1355552
    Properties.md5=623115AF90B5868FA4AEBC96F15A218A
    Properties.filedate=1396962398
    Properties.filedatetext=2014-04-08 14:06:38

    Conduit.SearchProtect: [SBI $16FC02BC] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\SearchProtect\bin\

    Conduit.SearchProtect: [SBI $B28BEB4C] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\SearchProtect\

    Conduit.SearchProtect: [SBI $61B05016] Text file (File, nothing done)
    C:\Program Files\SearchProtect\EULA.txt
    Properties.size=30153
    Properties.md5=901F6F54C16EA26E2D62C0D3EBC40E30
    Properties.filedate=1396960690
    Properties.filedatetext=2014-04-08 13:38:10

    Conduit.SearchProtect: [SBI $D161A3CC] Program directory (Directory, nothing done)
    C:\Program Files\SearchProtect\

    Conduit.SearchProtect: [SBI $8FCFA778] Executable (File, nothing done)
    C:\Documents and Settings\SARAH BROUGH\Local Settings\Temporary Internet Files\Content.IE5\4JRPIUBX\SPSetup[1].exe
    Properties.size=2336800
    Properties.md5=12FD3FDD30842B7B335C8B3E984BEC2B
    Properties.filedate=1395971420
    Properties.filedatetext=2014-03-28 02:50:20

    Conduit.SearchProtect: [SBI $8FCFA778] Executable (File, nothing done)
    C:\Documents and Settings\SARAH BROUGH\Local Settings\Temporary Internet Files\Content.IE5\YOP0BEKA\spstub[1].exe
    Properties.size=124184
    Properties.md5=5E144DD2B309BD00D2BE3D7CC4DC786F
    Properties.filedate=1395971437
    Properties.filedatetext=2014-03-28 02:50:37

    AlexaToolbar: [SBI $4AE64A2B] Class ID (Registry key, nothing done)
    HKEY_CLASSES_ROOT\CLSID\{69A72A8A-84ED-4a75-8CE7-263DBEF3E5D3}

    AlexaToolbar: [SBI $3046D4C5] Browser helper object (Registry value, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{EA582743-9076-4178-9AA6-7393FDF4D5CE}

    AlexaToolbar: [SBI $3CFA3B21] Class ID (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EA582743-9076-4178-9AA6-7393FDF4D5CE}

    Altnet: [SBI $3C8FED45] Program directory (Directory, nothing done)
    c:\Program Files\Altnet\

    GAIN.Gator: [SBI $E1911592] Log file (File, nothing done)
    C:\WINDOWS\GatorPdpSetup.log
    Properties.size=19044
    Properties.md5=EA3ECA8FEA23F23685ECD31379F70314
    Properties.filedate=1070140591
    Properties.filedatetext=2003-11-29 22:16:31

    GAIN.Gator: [SBI $D87AFA6F] Log file (File, nothing done)
    C:\WINDOWS\GatorUninstaller_cme.log
    Properties.size=1044
    Properties.md5=EDB8D962400BCE47C4CFB47B012071B3
    Properties.filedate=1093975438
    Properties.filedatetext=2004-08-31 19:03:57

    GAIN.Gator: [SBI $D87AFA6F] Log file (File, nothing done)
    C:\WINDOWS\GatorUninstaller_cme_u.log
    Properties.size=7196
    Properties.md5=C398410BEFD4730342A0FBE4D3C01249
    Properties.filedate=1093975485
    Properties.filedatetext=2004-08-31 19:04:44

    IronInstall.Toolbar.Amazon: [SBI $A663259B] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxSSB.AlxAutoUpdater

    IronInstall.Toolbar.Amazon: [SBI $A663259B] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxSSB.AlxAutoUpdater.1

    IronInstall.Toolbar.Amazon: [SBI $A663259B] Class ID (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87BEF026-9269-413C-A5B3-11F35451380E}

    IronInstall.Toolbar.Amazon: [SBI $A663259B] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxSSB.AlxAutoUpdater.1

    IronInstall.Toolbar.Amazon: [SBI $A663259B] Class ID (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87BEF026-9269-413C-A5B3-11F35451380E}

    IronInstall.Toolbar.Amazon: [SBI $A663259B] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxSSB.AlxAutoUpdater

    IronInstall.Toolbar.Amazon: [SBI $718547BF] Class ID (Registry key, nothing done)
    HKEY_CLASSES_ROOT\CLSID\{87BEF026-9269-413C-A5B3-11F35451380E}

    IronInstall.Toolbar.Amazon: [SBI $2674EF1E] Type library (Registry key, nothing done)
    HKEY_CLASSES_ROOT\TypeLib\{DA9FC525-41ED-4C00-B046-946DA7CDD305}

    IronInstall.Toolbar.Amazon: [SBI $37D68B44] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxSSB.AlxTBSSB

    IronInstall.Toolbar.Amazon: [SBI $37D68B44] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxSSB.AlxTBSSB.1

    IronInstall.Toolbar.Amazon: [SBI $37D68B44] Class ID (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E57091A7-B5F0-4C42-9329-72ED3E59ED31}

    IronInstall.Toolbar.Amazon: [SBI $37D68B44] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxSSB.AlxTBSSB.1

    IronInstall.Toolbar.Amazon: [SBI $37D68B44] Class ID (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E57091A7-B5F0-4C42-9329-72ED3E59ED31}

    IronInstall.Toolbar.Amazon: [SBI $37D68B44] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxSSB.AlxTBSSB

    IronInstall.Toolbar.Amazon: [SBI $ABD3706D] Class ID (Registry key, nothing done)
    HKEY_CLASSES_ROOT\CLSID\{E57091A7-B5F0-4C42-9329-72ED3E59ED31}

    IronInstall.Toolbar.Amazon: [SBI $3146A941] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxTB2.ToolBarProxy

    IronInstall.Toolbar.Amazon: [SBI $3146A941] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxTB2.ToolBarProxy.1

    IronInstall.Toolbar.Amazon: [SBI $3146A941] Class ID (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69A72A8A-84ED-4a75-8CE7-263DBEF3E5D3}

    IronInstall.Toolbar.Amazon: [SBI $3146A941] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxTB2.ToolBarProxy.1

    IronInstall.Toolbar.Amazon: [SBI $3146A941] Class ID (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69A72A8A-84ED-4a75-8CE7-263DBEF3E5D3}

    IronInstall.Toolbar.Amazon: [SBI $3146A941] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxTB2.ToolBarProxy

    IronInstall.Toolbar.Amazon: [SBI $2AFE5FD8] Application ID (Registry key, nothing done)
    HKEY_CLASSES_ROOT\AppID\{1F02FB61-2BE5-4C16-8199-AEAA16EB0342}

    IronInstall.Toolbar.Amazon: [SBI $88601D34] Application ID (Registry key, nothing done)
    HKEY_CLASSES_ROOT\AppID\AlxSSB.EXE

    IronInstall.Toolbar.Amazon: [SBI $384F4A6A] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{0923E315-2D8B-48CE-A37C-AE9A42F9711C}

    IronInstall.Toolbar.Amazon: [SBI $0F322758] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{1A1BBE49-C6F1-40EA-9D2F-262F0AF6DDE3}

    IronInstall.Toolbar.Amazon: [SBI $FCA3D079] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{1B3843C0-3C67-418C-B795-0E6D07DE7A77}

    IronInstall.Toolbar.Amazon: [SBI $B4B906BF] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{2022154E-7E3E-4809-871E-1B45A6FC7058}

    IronInstall.Toolbar.Amazon: [SBI $1CE79BF6] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{292ECB89-350E-45D2-816F-52C15305B144}

    IronInstall.Toolbar.Amazon: [SBI $DEC64730] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{36CC2180-B6BF-4951-9578-6B0C40044AAA}

    IronInstall.Toolbar.Amazon: [SBI $38FD0806] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{44A36944-22C6-4A08-BC7C-161F3E540DBF}

    IronInstall.Toolbar.Amazon: [SBI $02C28952] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{6247DD2C-8CF9-4041-A235-93691D71B8B4}

    IronInstall.Toolbar.Amazon: [SBI $590DCD79] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{835BED79-DF7E-4096-B355-ED43FA2EA87B}

    IronInstall.Toolbar.Amazon: [SBI $195CCE1D] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{8E863BD6-50DE-47D0-A6F1-3C1F6DB72451}

    IronInstall.Toolbar.Amazon: [SBI $1359A61E] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{9DD36F1E-5111-41C5-ADED-A2A11A2FF3E4}

    IronInstall.Toolbar.Amazon: [SBI $CFEBA5AF] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{A2FB8217-E320-434E-BA79-513E357AD54F}

    IronInstall.Toolbar.Amazon: [SBI $A7A01E60] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{A9CEBBF4-9129-479A-9231-E833ED3D3A8F}

    IronInstall.Toolbar.Amazon: [SBI $06E274D6] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{AFD4D1F9-167C-4884-95AE-B5A9797B0D16}

    IronInstall.Toolbar.Amazon: [SBI $4F91D613] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{C47788B1-9604-4D7A-A684-F4D450F2D7D2}

    IronInstall.Toolbar.Amazon: [SBI $B50F966C] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{CA3B41D0-D4C1-4808-B248-75DA27238828}

    IronInstall.Toolbar.Amazon: [SBI $778FFAF2] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{D4A2FF6C-087F-4D40-8DFE-92AAD484BFB8}

    IronInstall.Toolbar.Amazon: [SBI $CA0FD7EB] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{D88B9D5C-A9CF-4C69-906D-1CCA5D85A2EF}

    IronInstall.Toolbar.Amazon: [SBI $CA9389AB] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{F83AF01C-AA2F-469F-8BE7-D178FB15FD07}

    IronInstall.Toolbar.Amazon: [SBI $3335348E] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{FECA4FD3-F0F9-432E-9EA4-3EC4D4AA59D2}

    IronInstall.Toolbar.Amazon: [SBI $F70F59AF] Type library (Registry key, nothing done)
    HKEY_CLASSES_ROOT\TypeLib\{33D0AD98-3347-4A54-8929-5163EBEB9F72}

    IronInstall.Toolbar.Amazon: [SBI $F5C49FED] Settings (Registry value, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\AlexaToolbar/amzni-3.0

    IronInstall.Toolbar.Amazon: [SBI $085238A3] Settings (Registry value, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform\AlexaToolbar/amzni-3.0

    IronInstall.Toolbar.Amazon: [SBI $68EC21A9] User settings (Registry key, nothing done)
    HKEY_USERS\.DEFAULT\Software\AMZN

    IronInstall.Toolbar.Amazon: [SBI $F26A4882] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxTB2.AlxHelper

    IronInstall.Toolbar.Amazon: [SBI $F26A4882] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxTB2.AlxHelper.1

    IronInstall.Toolbar.Amazon: [SBI $F26A4882] Class ID (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F443A627-5009-4323-9C1D-7FD598D0D712}

    IronInstall.Toolbar.Amazon: [SBI $F26A4882] Browser helper object (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F443A627-5009-4323-9C1D-7FD598D0D712}

    IronInstall.Toolbar.Amazon: [SBI $F26A4882] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxTB2.AlxHelper.1

    IronInstall.Toolbar.Amazon: [SBI $F26A4882] Class ID (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F443A627-5009-4323-9C1D-7FD598D0D712}

    IronInstall.Toolbar.Amazon: [SBI $F26A4882] Browser helper object (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F443A627-5009-4323-9C1D-7FD598D0D712}

    IronInstall.Toolbar.Amazon: [SBI $F26A4882] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxTB2.AlxHelper

    IronInstall.Toolbar.Amazon: [SBI $3F2B4E78] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxTB2.TBLayoutBHO

    IronInstall.Toolbar.Amazon: [SBI $3F2B4E78] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxTB2.TBLayoutBHO.1

    IronInstall.Toolbar.Amazon: [SBI $3F2B4E78] Class ID (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{008f6853-9cb4-41c5-a950-39d55e5e06ba}

    IronInstall.Toolbar.Amazon: [SBI $3F2B4E78] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxTB2.TBLayoutBHO.1

    IronInstall.Toolbar.Amazon: [SBI $3F2B4E78] Class ID (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{008f6853-9cb4-41c5-a950-39d55e5e06ba}

    IronInstall.Toolbar.Amazon: [SBI $3F2B4E78] Root class (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AlxTB2.TBLayoutBHO

    IronInstall.Toolbar.Amazon: [SBI $5F622A58] Class ID (Registry key, nothing done)
    HKEY_CLASSES_ROOT\CLSID\{008f6853-9cb4-41c5-a950-39d55e5e06ba}

    IronInstall.Toolbar.Amazon: [SBI $6036A973] Class ID (Registry key, nothing done)
    HKEY_CLASSES_ROOT\CLSID\{8D03FA45-4B8C-4427-BE67-EE8885147151}

    IronInstall.Toolbar.Amazon: [SBI $D4182598] Class ID (Registry key, nothing done)
    HKEY_CLASSES_ROOT\CLSID\{B3EAD50C-ECB0-459A-9EDA-F505AB99675B}

    IronInstall.Toolbar.Amazon: [SBI $1405BCA6] Class ID (Registry key, nothing done)
    HKEY_CLASSES_ROOT\CLSID\{EA582743-9076-4178-9AA6-7393FDF4D5CE}

    IronInstall.Toolbar.Amazon: [SBI $4F3AC01E] Class ID (Registry key, nothing done)
    HKEY_CLASSES_ROOT\CLSID\{F443A627-5009-4323-9C1D-7FD598D0D712}

    IronInstall.Toolbar.Amazon: [SBI $9A35B2C6] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{2DE3D9FB-CB10-4B04-953C-002AE31A0092}

    IronInstall.Toolbar.Amazon: [SBI $8F1744FE] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{51F04BD6-3888-4849-864C-617FAE709CE0}

    IronInstall.Toolbar.Amazon: [SBI $8972524C] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{8D03FA45-4B8C-4427-BE67-EE8885147151}

    IronInstall.Toolbar.Amazon: [SBI $4AC6604A] Interface (Registry key, nothing done)
    HKEY_CLASSES_ROOT\Interface\{E4E394E0-D331-431F-B76D-E3A19193D5F6}

    IronInstall.Toolbar.Amazon: [SBI $B4077BFE] Settings (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Amazon Browser Bar

    IronInstall.Toolbar.Amazon: [SBI $A8B6739E] Uninstall settings (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Amazon Browser Bar

    IronInstall.Toolbar.Amazon: [SBI $A8B6739E] Uninstall settings (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Amazon Browser Bar

    IronInstall.Toolbar.Amazon: [SBI $17BFF426] Settings (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Updater Service for AMZN

    IronInstall.Toolbar.Amazon: [SBI $45B7A467] Settings (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Updater Service for AMZN

    IronInstall.Toolbar.Amazon: [SBI $744F9458] Settings (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Updater Service for AMZN

    IronInstall.Toolbar.Amazon: [SBI $72A935D0] Program directory (Directory, nothing done)
    C:\Documents and Settings\SARAH BROUGH\Local Settings\Application Data\Amazon Browser Bar\

    IronInstall.Toolbar.Amazon: [SBI $672E554F] Data (File, nothing done)
    C:\Documents and Settings\SARAH BROUGH\Local Settings\Application Data\Amazon Browser Bar\protect.xml
    Properties.size=1099
    Properties.md5=E5BE6B16588B86C2B339B9FA3A266F7F
    Properties.filedate=1395283964
    Properties.filedatetext=2014-03-20 03:52:43

    IronInstall.Toolbar.Amazon: [SBI $E84D0066] Program directory (Directory, nothing done)
    C:\Program Files\Amazon Browser Bar\

    IronInstall.Toolbar.Amazon: [SBI $AD786C26] Library (File, nothing done)
    C:\Program Files\Amazon Browser Bar\AlxSSBPS.dll
    Properties.size=66256
    Properties.md5=E59F5B8013950F62BEBB0B314E142ED5
    Properties.filedate=1345059270
    Properties.filedatetext=2012-08-15 20:34:30

    IronInstall.Toolbar.Amazon: [SBI $BC5A8905] Library (File, nothing done)
    C:\Program Files\Amazon Browser Bar\AmazonBrowserBar.3.0.dll
    Properties.size=2162272
    Properties.md5=841F44C5EDCB38B1AAB6A2CB776827AA
    Properties.filedate=1345059328
    Properties.filedatetext=2012-08-15 20:35:28

    IronInstall.Toolbar.Amazon: [SBI $CA1214D2] Executable (File, nothing done)
    C:\Program Files\Amazon Browser Bar\AmazonBrowserBar.3.0.Uninstall.exe
    Properties.size=114680
    Properties.md5=62056BC8DD24D5E3C5C6BB0DF28E8AF4
    Properties.filedate=1345059398
    Properties.filedatetext=2012-08-15 20:36:38

    IronInstall.Toolbar.Amazon: [SBI $60BD7610] Library (File, nothing done)
    C:\Program Files\Amazon Browser Bar\AmazonBrowserBarSSB.3.0.dll
    Properties.size=577072
    Properties.md5=EA5F7FC8041B9653301092D1F9F7459B
    Properties.filedate=1345059362
    Properties.filedatetext=2012-08-15 20:36:02

    IronInstall.Toolbar.Amazon: [SBI $63F62FA7] Data (File, nothing done)
    C:\Program Files\Amazon Browser Bar\installer.xml
    Properties.size=1716
    Properties.md5=62FF7EBE656903C068E7BB83CEDED317
    Properties.filedate=1387673658
    Properties.filedatetext=2013-12-22 01:54:18

    IronInstall.Toolbar.Amazon: [SBI $E9DE9B73] Executable (File, nothing done)
    C:\Program Files\Amazon Browser Bar\search_protect.exe
    Properties.size=673160
    Properties.md5=05A32BA624BCC23CF797E4F8CA74B3F3
    Properties.filedate=1386765416
    Properties.filedatetext=2013-12-11 13:36:56

    IronInstall.Toolbar.Amazon: [SBI $14939D4B] Executable (File, nothing done)
    C:\Program Files\Amazon Browser Bar\ToolbarUpdaterService.exe
    Properties.size=222368
    Properties.md5=6E30C47050124B12D55ECF7F516F28E2
    Properties.filedate=1337703688
    Properties.filedatetext=2012-05-22 17:21:28

    IronInstall.Toolbar.Amazon: [SBI $0512C67B] Configuration file (File, nothing done)
    C:\Program Files\Amazon Browser Bar\ToolbarUpdaterService.ini
    Properties.size=35
    Properties.md5=131A05A54733AB2E0DA5E4B8EF41A7AA
    Properties.filedate=1397694625
    Properties.filedatetext=2014-04-17 01:30:25

    IronInstall.Toolbar.Amazon: [SBI $37673F91] Executable (File, nothing done)
    C:\Program Files\Amazon Browser Bar\uninstall.exe
    Properties.size=666002
    Properties.md5=BD2D7846FD5B87F8F2792C0D69591038
    Properties.filedate=1360282927
    Properties.filedatetext=2013-02-08 01:22:06



    I've attached the complete logs you require to be posted on here and need to continue the spybot logs in another post.
    Attached Files Attached Files

  5. #5
    Junior Member
    Join Date
    Apr 2014
    Posts
    15

    Default

    Continued...

    Alexa: Interface (INavWnd) (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{8C953EC4-8CFA-44FB-B32E-1249E5505091}

    Alexa: Interface (IAlxWebBrowser2) (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B3EAD50C-ECB0-459A-9EDA-F505AB99675B}

    DoubleClick: Tracking cookie (Internet Explorer: SARAH BROUGH) (Cookie, nothing done)


    MediaPlex: Tracking cookie (Internet Explorer: SARAH BROUGH) (Cookie, nothing done)


    MediaPlex: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Zedo: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Right Media: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    MediaPlex: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Zedo: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Zedo: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Zedo: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Adviva: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    BurstMedia: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    BurstMedia: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    BurstMedia: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    BurstMedia: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    BurstMedia: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    BurstMedia: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Zedo: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Zedo: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Statcounter: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Zedo: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    DoubleClick: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Zedo: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    BurstMedia: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    BurstMedia: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Zedo: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    BurstMedia: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    BurstMedia: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    WebTrends live: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    DoubleClick: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Statcounter: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Tradedoubler: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Tradedoubler: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Tradedoubler: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    DoubleClick: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    DoubleClick: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    BurstMedia: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    CasaleMedia: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    CasaleMedia: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    CasaleMedia: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    DoubleClick: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    MediaPlex: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    FastClick: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)



    --- Spybot - Search & Destroy version: 1.6.2 (build: 20090126) ---

    2009-01-26 blindman.exe (1.0.0.8)
    2009-01-26 SDFiles.exe (1.6.1.7)
    2009-01-26 SDMain.exe (1.0.0.6)
    2009-01-26 SDShred.exe (1.0.2.5)
    2009-01-26 SDUpdate.exe (1.6.0.12)
    2009-01-26 SpybotSD.exe (1.6.2.46)
    2009-01-26 TeaTimer.exe (1.6.4.26)
    2014-04-18 unins000.exe (51.49.0.0)
    2009-01-26 Update.exe (1.6.0.7)
    2009-01-26 advcheck.dll (1.6.2.15)
    2007-04-02 aports.dll (2.1.0.0)
    2008-06-14 DelZip179.dll (1.79.11.1)
    2009-01-26 SDHelper.dll (1.6.2.14)
    2008-06-19 sqlite3.dll
    2009-01-26 Tools.dll (2.1.6.10)
    2009-01-16 UninsSrv.dll (1.0.0.0)
    2014-03-05 Includes\Adware-000.sbi (*)
    2014-01-08 Includes\Adware-001.sbi (*)
    2014-04-15 Includes\Adware-C.sbi (*)
    2014-01-13 Includes\Adware.sbi (*)
    2014-01-13 Includes\AdwareC.sbi (*)
    2010-08-13 Includes\Cookies.sbi (*)
    2014-01-08 Includes\Dialer-000.sbi (*)
    2014-01-08 Includes\Dialer-001.sbi (*)
    2014-01-08 Includes\Dialer-C.sbi (*)
    2014-01-08 Includes\Dialer.sbi (*)
    2014-01-13 Includes\DialerC.sbi (*)
    2014-01-09 Includes\Fraud-000.sbi (*)
    2014-01-09 Includes\Fraud-001.sbi (*)
    2014-03-31 Includes\Fraud-002.sbi (*)
    2014-01-09 Includes\Fraud-003.sbi (*)
    2013-04-11 Includes\HeavyDuty.sbi (*)
    2014-01-08 Includes\Hijackers-000.sbi (*)
    2014-01-08 Includes\Hijackers-001.sbi (*)
    2014-01-08 Includes\Hijackers-C.sbi (*)
    2014-01-08 Includes\Hijackers.sbi (*)
    2014-01-13 Includes\HijackersC.sbi (*)
    2014-01-08 Includes\iPhone-000.sbi (*)
    2014-01-08 Includes\iPhone.sbi (*)
    2014-01-08 Includes\Keyloggers-000.sbi (*)
    2014-03-19 Includes\Keyloggers-C.sbi (*)
    2014-01-08 Includes\Keyloggers.sbi (*)
    2014-01-13 Includes\KeyloggersC.sbi (*)
    2004-11-29 Includes\LSP.sbi (*)
    2014-03-03 Includes\Malware-000.sbi (*)
    2014-01-09 Includes\Malware-001.sbi (*)
    2014-03-03 Includes\Malware-002.sbi (*)
    2014-02-05 Includes\Malware-003.sbi (*)
    2014-01-28 Includes\Malware-004.sbi (*)
    2014-04-15 Includes\Malware-005.sbi (*)
    2014-02-26 Includes\Malware-006.sbi (*)
    2014-01-09 Includes\Malware-007.sbi (*)
    2014-04-15 Includes\Malware-C.sbi (*)
    2014-01-13 Includes\Malware.sbi (*)
    2014-01-13 Includes\MalwareC.sbi (*)
    2014-01-15 Includes\PUPS-000.sbi (*)
    2014-01-15 Includes\PUPS-001.sbi (*)
    2014-01-15 Includes\PUPS-002.sbi (*)
    2014-04-08 Includes\PUPS-C.sbi (*)
    2014-01-13 Includes\PUPS.sbi (*)
    2014-01-13 Includes\PUPSC.sbi (*)
    2010-01-25 Includes\Revision.sbi (*)
    2014-01-08 Includes\Security-000.sbi (*)
    2014-01-08 Includes\Security-C.sbi (*)
    2014-01-08 Includes\Security.sbi (*)
    2014-01-13 Includes\SecurityC.sbi (*)
    2008-06-03 Includes\Spybots.sbi (*)
    2008-06-03 Includes\SpybotsC.sbi (*)
    2014-01-28 Includes\Spyware-000.sbi (*)
    2014-01-08 Includes\Spyware-001.sbi (*)
    2014-01-08 Includes\Spyware-C.sbi (*)
    2014-01-13 Includes\Spyware.sbi (*)
    2014-01-08 Includes\SpywareC.sbi (*)
    2012-11-19 Includes\Tracks.uti
    2014-01-15 Includes\Trojans-000.sbi (*)
    2014-02-26 Includes\Trojans-001.sbi (*)
    2014-01-15 Includes\Trojans-002.sbi (*)
    2014-01-28 Includes\Trojans-003.sbi (*)
    2014-01-15 Includes\Trojans-004.sbi (*)
    2014-03-19 Includes\Trojans-005.sbi (*)
    2014-03-14 Includes\Trojans-006.sbi (*)
    2014-01-15 Includes\Trojans-007.sbi (*)
    2014-02-19 Includes\Trojans-008.sbi (*)
    2014-01-15 Includes\Trojans-009.sbi (*)
    2014-04-15 Includes\Trojans-C.sbi (*)
    2014-01-15 Includes\Trojans-OG-000.sbi (*)
    2014-01-15 Includes\Trojans-TD-000.sbi (*)
    2014-01-15 Includes\Trojans-VM-000.sbi (*)
    2014-01-15 Includes\Trojans-VM-001.sbi (*)
    2014-01-15 Includes\Trojans-VM-002.sbi (*)
    2014-01-15 Includes\Trojans-VM-003.sbi (*)
    2014-01-15 Includes\Trojans-VM-004.sbi (*)
    2014-01-15 Includes\Trojans-VM-005.sbi (*)
    2014-01-15 Includes\Trojans-VM-006.sbi (*)
    2014-01-15 Includes\Trojans-VM-007.sbi (*)
    2014-01-15 Includes\Trojans-VM-008.sbi (*)
    2014-01-15 Includes\Trojans-VM-009.sbi (*)
    2014-01-15 Includes\Trojans-VM-010.sbi (*)
    2014-01-15 Includes\Trojans-VM-011.sbi (*)
    2014-01-15 Includes\Trojans-VM-012.sbi (*)
    2014-01-15 Includes\Trojans-VM-013.sbi (*)
    2014-01-15 Includes\Trojans-VM-014.sbi (*)
    2014-01-15 Includes\Trojans-VM-015.sbi (*)
    2014-01-15 Includes\Trojans-VM-016.sbi (*)
    2014-01-15 Includes\Trojans-VM-017.sbi (*)
    2014-01-15 Includes\Trojans-VM-018.sbi (*)
    2014-01-15 Includes\Trojans-VM-019.sbi (*)
    2014-01-15 Includes\Trojans-VM-020.sbi (*)
    2014-01-15 Includes\Trojans-VM-021.sbi (*)
    2014-01-15 Includes\Trojans-VM-022.sbi (*)
    2014-01-15 Includes\Trojans-VM-023.sbi (*)
    2014-01-15 Includes\Trojans-VM-024.sbi (*)
    2014-01-15 Includes\Trojans-ZB-000.sbi (*)
    2014-03-14 Includes\Trojans-ZL-000.sbi (*)
    2014-01-09 Includes\Trojans.sbi (*)
    2014-01-09 Includes\TrojansC-02.sbi (*)
    2014-01-09 Includes\TrojansC-03.sbi (*)
    2014-01-16 Includes\TrojansC-04.sbi (*)
    2014-01-09 Includes\TrojansC-05.sbi (*)
    2014-01-09 Includes\TrojansC.sbi (*)
    2008-03-04 Plugins\Chai.dll
    2008-03-05 Plugins\Fennel.dll
    2008-02-26 Plugins\Mate.dll
    2007-12-24 Plugins\TCPIPAddress.dll

  6. #6
    Emeritus-Security Expert
    Join Date
    Nov 2005
    Location
    Florida's SpaceCoast
    Posts
    15,208

    Default

    You still have some malware on your system, first go ahead and see if you can disable Microsoft Security Essentials and we can go from there
    Microsoft MVP Consumer Security 2007-2008-2009-2010-2011-2012-2013-2014

    ERROR MESSAGE 386
    No KeyBoard Detected
    Press F1 To Continue

    Just a reminder that threads will be closed if no reply in 3 days.

  7. #7
    Junior Member
    Join Date
    Apr 2014
    Posts
    15

    Default

    Quote Originally Posted by ken545 View Post
    You still have some malware on your system, first go ahead and see if you can disable Microsoft Security Essentials and we can go from there
    Disabled but made no difference, desktop icons apart from recycle are all rectangular and the task bar was frozen.

  8. #8
    Emeritus-Security Expert
    Join Date
    Nov 2005
    Location
    Florida's SpaceCoast
    Posts
    15,208

    Default

    Lets do this, go to your Add Remove Programs in the Control Panel and uninstall Microsoft Security Essentials


    -AdwCleaner-by Xplode

    Click on this link to download : ADWCleaner
    Click on ONE of the Two Blue Download Now buttons That have a blue arrow beside them and save it to your desktop.

    Do not click on any links in the top Advertisment.



    • Close all open programs and internet browsers.
    • Double click on AdwCleaner.exe to run the tool.
    • Click on Scan.
    • After the scan is complete click on "Clean"
    • Confirm each time with Ok.
    • Your computer will be rebooted automatically. A text file will open after the restart.
    • Please post the content of that logfile with your next reply.
    • You can find the logfile at C:\AdwCleaner[S1].txt as well.





    Please download Junkware Removal Tool to your desktop.
    • Shut down your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
    • The tool will open and start scanning your system.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Post the contents of JRT.txt into your next message.
    Microsoft MVP Consumer Security 2007-2008-2009-2010-2011-2012-2013-2014

    ERROR MESSAGE 386
    No KeyBoard Detected
    Press F1 To Continue

    Just a reminder that threads will be closed if no reply in 3 days.

  9. #9
    Junior Member
    Join Date
    Apr 2014
    Posts
    15

    Default

    The uninstall of MS security essentials has frozen (couldn't do it in safe mode), can you advise how to proceed?

  10. #10
    Junior Member
    Join Date
    Apr 2014
    Posts
    15

    Default

    Quote Originally Posted by EdHunter View Post
    The uninstall of MS security essentials has frozen (couldn't do it in safe mode), can you advise how to proceed?
    Panic over, managed to restart process.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •