PDA

View Full Version : My computer is extremely slow, not responding sometimes, and may have malware



c_lady
2013-11-17, 00:35
I did read the before you post thread. I am running all scans now and will update this as they finish. I've had problems with this laptop since I bought it 2 years ago. In the last year it has become unbearably slow and gives me not responding notifications quite a bit. I have run malwarebytes often and sometimes it has shown to have an object detected and sometimes not. It's getting to the point where it extremely slow and I've had the blue screen pop up occasionally. You guys have helped me once before quite some time ago with another computer and I'm hoping someone here can help me again.

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 10.0.9200.16736 BrowserJavaVersion: 10.45.2
Run by Carla at 17:30:55 on 2013-11-16
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.6051.3366 [GMT -5:00]
.
AV: Norton Security Suite *Enabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Norton Security Suite *Enabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
FW: Norton Security Suite *Enabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Program Files\IDT\WDM\STacSV64.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\IDT\WDM\AESTSr64.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
C:\Program Files\Intel\WiFi\bin\EvtEng.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\ccSvcHst.exe
C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe
C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\taskhost.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\DellTPad\Apoint.exe
C:\Program Files\IDT\WDM\sttray64.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
C:\Windows\System32\rundll32.exe
C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe
C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files\DellTPad\ApMsgFwd.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\DellTPad\HidFind.exe
C:\Program Files\DellTPad\Apntex.exe
C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\ccSvcHst.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\Dell DataSafe Local Backup\COMPONENTS\SCHEDULER\STSERVICE.EXE
C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
C:\Windows\system32\svchost.exe -k SDRSVC
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe
C:\Users\Carla\Downloads\aswMBR.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/
mWinlogon: Userinit = userinit.exe,
BHO: DivX Plus Web Player HTML5 <video>: {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
BHO: Spybot-S&D IE Protection: {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
BHO: Norton Identity Protection: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\coieplg.dll
BHO: Norton Vulnerability Protection: {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\ips\ipsbho.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Skype add-on for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
TB: Norton Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\coieplg.dll
uRun: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
uRunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_9_900_117_Plugin.exe -update plugin
mRun: [Dell Webcam Central] "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2
mRun: [Dell DataSafe Online] C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuClient.exe
mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe"
mRun: [AccuWeatherWidget] "C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe" "C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\start.umj" --startup
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
mRun: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
DPF: {5EA13312-8764-496F-B4AB-F7A872B51E14} - hxxps://oovoowww3-a.akamaihd.net/oovoomelink/oovoome/webvc/ooVooWeb.dll
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{6644228F-02DE-4AD4-87A1-8D5284F2BE18} : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{6644228F-02DE-4AD4-87A1-8D5284F2BE18}\2656C6B696E6E2432336 : DHCPNameServer = 192.168.2.1
TCP: Interfaces\{6644228F-02DE-4AD4-87A1-8D5284F2BE18}\B4B47393A4 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{6644228F-02DE-4AD4-87A1-8D5284F2BE18}\E4544574541425 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{C077BD2A-A1D4-4AF2-8DDA-9A3999F1A78C} : DHCPNameServer = 10.1.10.1
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SSODL: WebCheck - <orphaned>
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: {DBC80044-A445-435b-BC74-9C25C1C588A9} - <orphaned>
x64-Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
x64-Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe
x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
x64-Run: [QuickSet] c:\Program Files\Dell\QuickSet\QuickSet.exe
x64-Run: [IntelTBRunOnce] wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
x64-Run: [IntelWireless] "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel Wireless Tray
x64-Run: [BTMTrayAgent] rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
x64-Run: [DellStage] "C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe" "C:\Program Files (x86)\Dell Stage\Dell Stage\start.umj" --startup
x64-IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - <orphaned>
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Carla\AppData\Roaming\Mozilla\Firefox\Profiles\vvk1xh17.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxps://www.google.com/
FF - prefs.js: keyword.URL - hxxp://us.yhs4.search.yahoo.com/yhs/search?ei=UTF-8&hspart=w3i&hsimp=yhs-synd1&type=W3i_DS,221,0_0,Search,00000000,0,0,0,%PARTNERID%&p=
FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
FF - plugin: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll
FF - plugin: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll
.
---- FIREFOX POLICIES ----
FF - user.js: yahoo.ytff.general.dontshowhpoffer - true
============= SERVICES / DRIVERS ===============
.
R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2011-8-23 55856]
R0 SymDS;Symantec Data Store;C:\Windows\System32\drivers\N360x64\1404000.028\symds64.sys [2013-7-16 493656]
R0 SymEFA;Symantec Extended File Attributes;C:\Windows\System32\drivers\N360x64\1404000.028\symefa64.sys [2013-7-16 1139800]
R1 BHDrvx64;BHDrvx64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\BASHDefs\20131101.003\BHDrvx64.sys [2013-11-5 1524824]
R1 ccSet_N360;Norton Security Suite Settings Manager;C:\Windows\System32\drivers\N360x64\1404000.028\ccsetx64.sys [2013-7-16 169048]
R1 IDSVia64;IDSVia64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\IPSDefs\20131115.001\IDSviA64.sys [2013-11-16 521816]
R1 SymIRON;Symantec Iron Driver;C:\Windows\System32\drivers\N360x64\1404000.028\ironx64.sys [2013-7-16 224416]
R1 SymNetS;Symantec Network Security WFP Driver;C:\Windows\System32\drivers\N360x64\1404000.028\symnets.sys [2013-7-16 433752]
R2 AESTFilters;Andrea ST Filters Service;C:\Program Files\IDT\WDM\AESTSr64.exe [2011-8-23 89600]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor;C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2010-11-3 897088]
R2 cvhsvc;Client Virtualization Handler;C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE [2013-4-22 822504]
R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-9-21 418376]
R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-9-21 701512]
R2 N360;Norton Security Suite;C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\ccsvchst.exe [2013-7-16 144368]
R2 NOBU;Dell DataSafe Online;C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe [2010-8-25 2823000]
R2 SBSDWSCService;SBSD Security Center Service;C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [2012-1-13 1153368]
R2 sftlist;Application Virtualization Client;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2013-6-26 523944]
R2 SftService;SoftThinks Agent Service;C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe [2011-8-23 1688384]
R2 TurboB;Turbo Boost UI Monitor driver;C:\Windows\System32\drivers\TurboB.sys [2010-11-29 16120]
R3 Bluetooth Media Service;Bluetooth Media Service;C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [2010-11-3 1298496]
R3 CtClsFlt;Creative Camera Class Upper Filter Driver;C:\Windows\System32\drivers\CtClsFlt.sys [2011-8-23 176096]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-8-29 140376]
R3 IntcDAud;Intel(R) Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2011-8-9 317440]
R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2012-3-21 25928]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;C:\Windows\System32\drivers\nusb3hub.sys [2011-8-9 80384]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;C:\Windows\System32\drivers\nusb3xhc.sys [2011-8-9 181248]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2011-8-9 406632]
R3 Sftfs;Sftfs;C:\Windows\System32\drivers\Sftfslh.sys [2013-6-26 767144]
R3 Sftplay;Sftplay;C:\Windows\System32\drivers\Sftplaylh.sys [2013-6-26 273576]
R3 Sftredir;Sftredir;C:\Windows\System32\drivers\Sftredirlh.sys [2013-6-26 28840]
R3 Sftvol;Sftvol;C:\Windows\System32\drivers\Sftvollh.sys [2013-6-26 23208]
R3 sftvsa;Application Virtualization Service Agent;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2013-6-26 207528]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 DellDigitalDelivery;Dell Digital Delivery Service;C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe [2011-3-24 148360]
S2 RoxWatch12;Roxio Hard Drive Watcher 12;C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe [2010-11-25 219632]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-3-1 161384]
S3 btmaux;Intel Bluetooth Auxiliary Service;C:\Windows\System32\drivers\btmaux.sys [2010-11-4 58128]
S3 btmhsf;btmhsf;C:\Windows\System32\drivers\btmhsf.sys [2010-10-19 274432]
S3 BTWAMPFL;BTWAMPFL;C:\Windows\System32\drivers\btwampfl.sys [2011-11-9 349224]
S3 btwl2cap;Bluetooth L2CAP Service;C:\Windows\System32\drivers\btwl2cap.sys [2011-11-9 39464]
S3 iBtFltCoex;iBtFltCoex;C:\Windows\System32\drivers\iBtFltCoex.sys [2010-11-4 59904]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2010-12-17 340240]
S3 RoxMediaDB12OEM;RoxMediaDB12OEM;C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe [2010-11-25 1116656]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2011-8-9 250984]
S3 tihub3;TI USB3 Hub Service;C:\Windows\System32\drivers\tihub3.sys [2011-8-9 131656]
S3 tixhci;TI XHCI Service;C:\Windows\System32\drivers\tixhci.sys [2011-8-9 399944]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2011-8-24 59392]
S3 TurboBoost;Intel(R) Turbo Boost Technology Monitor 2.0;C:\Program Files\Intel\TurboBoost\TurboBoost.exe [2010-11-29 149504]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2012-12-13 54784]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2011-8-25 1255736]
S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]
.
=============== File Associations ===============
.
FileExt: .inf: inffile=C:\Windows\System32\NOTEPAD.EXE %1 [UserChoice]
.
=============== Created Last 30 ================
.
2013-11-16 22:18:08 -------- d-----w- C:\Windows\11-16-2013
2013-11-13 07:36:24 1474048 ----a-w- C:\Windows\System32\crypt32.dll
2013-10-25 19:19:53 -------- d-----w- C:\Windows\pss
2013-10-25 18:42:05 159744 ----a-w- C:\Program Files\Internet Explorer\Plugins\npqtplugin5.dll
2013-10-25 18:42:05 159744 ----a-w- C:\Program Files\Internet Explorer\Plugins\npqtplugin4.dll
2013-10-25 18:42:05 159744 ----a-w- C:\Program Files\Internet Explorer\Plugins\npqtplugin3.dll
2013-10-25 18:42:05 159744 ----a-w- C:\Program Files\Internet Explorer\Plugins\npqtplugin2.dll
2013-10-25 18:42:05 159744 ----a-w- C:\Program Files\Internet Explorer\Plugins\npqtplugin.dll
2013-10-21 03:53:41 96168 ----a-w- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
.
==================== Find3M ====================
.
2013-10-12 08:45:20 2241536 ----a-w- C:\Windows\System32\wininet.dll
2013-10-12 08:43:37 3959808 ----a-w- C:\Windows\System32\jscript9.dll
2013-10-12 08:43:32 67072 ----a-w- C:\Windows\System32\iesetup.dll
2013-10-12 08:43:32 136704 ----a-w- C:\Windows\System32\iesysprep.dll
2013-10-12 07:03:50 1767936 ----a-w- C:\Windows\SysWow64\wininet.dll
2013-10-12 07:02:33 2877952 ----a-w- C:\Windows\SysWow64\jscript9.dll
2013-10-12 07:02:29 61440 ----a-w- C:\Windows\SysWow64\iesetup.dll
2013-10-12 07:02:29 109056 ----a-w- C:\Windows\SysWow64\iesysprep.dll
2013-10-12 06:35:26 2706432 ----a-w- C:\Windows\System32\mshtml.tlb
2013-10-12 06:08:58 2706432 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2013-10-12 05:44:38 89600 ----a-w- C:\Windows\System32\RegisterIEPKEYs.exe
2013-10-12 05:15:39 71680 ----a-w- C:\Windows\SysWow64\RegisterIEPKEYs.exe
2013-10-12 02:30:42 830464 ----a-w- C:\Windows\System32\nshwfp.dll
2013-10-12 02:29:21 859648 ----a-w- C:\Windows\System32\IKEEXT.DLL
2013-10-12 02:29:08 324096 ----a-w- C:\Windows\System32\FWPUCLNT.DLL
2013-10-12 02:03:08 656896 ----a-w- C:\Windows\SysWow64\nshwfp.dll
2013-10-12 02:01:25 216576 ----a-w- C:\Windows\SysWow64\FWPUCLNT.DLL
2013-10-10 08:49:27 692616 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2013-10-10 08:49:25 71048 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2013-10-05 19:57:25 1168384 ----a-w- C:\Windows\SysWow64\crypt32.dll
2013-10-04 02:28:31 190464 ----a-w- C:\Windows\System32\SmartcardCredentialProvider.dll
2013-10-04 02:25:17 197120 ----a-w- C:\Windows\System32\credui.dll
2013-10-04 02:24:49 1930752 ----a-w- C:\Windows\System32\authui.dll
2013-10-04 01:58:50 152576 ----a-w- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
2013-10-04 01:56:25 168960 ----a-w- C:\Windows\SysWow64\credui.dll
2013-10-04 01:56:00 1796096 ----a-w- C:\Windows\SysWow64\authui.dll
2013-10-03 02:23:48 404480 ----a-w- C:\Windows\System32\gdi32.dll
2013-10-03 02:00:44 311808 ----a-w- C:\Windows\SysWow64\gdi32.dll
2013-09-28 01:09:10 497152 ----a-w- C:\Windows\System32\drivers\afd.sys
2013-09-25 02:26:40 95680 ----a-w- C:\Windows\System32\drivers\ksecdd.sys
2013-09-25 02:26:40 154560 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys
2013-09-25 02:23:33 28672 ----a-w- C:\Windows\System32\sspisrv.dll
2013-09-25 02:23:33 135680 ----a-w- C:\Windows\System32\sspicli.dll
2013-09-25 02:23:01 28160 ----a-w- C:\Windows\System32\secur32.dll
2013-09-25 02:22:59 340992 ----a-w- C:\Windows\System32\schannel.dll
2013-09-25 02:21:50 307200 ----a-w- C:\Windows\System32\ncrypt.dll
2013-09-25 02:21:07 1447936 ----a-w- C:\Windows\System32\lsasrv.dll
2013-09-25 01:58:17 96768 ----a-w- C:\Windows\SysWow64\sspicli.dll
2013-09-25 01:57:26 22016 ----a-w- C:\Windows\SysWow64\secur32.dll
2013-09-25 01:57:24 247808 ----a-w- C:\Windows\SysWow64\schannel.dll
2013-09-25 01:56:42 220160 ----a-w- C:\Windows\SysWow64\ncrypt.dll
2013-09-25 01:03:24 30720 ----a-w- C:\Windows\System32\lsass.exe
2013-09-08 02:30:37 1903552 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2013-09-08 02:27:14 327168 ----a-w- C:\Windows\System32\mswsock.dll
2013-09-08 02:03:58 231424 ----a-w- C:\Windows\SysWow64\mswsock.dll
2013-08-29 02:17:48 5549504 ----a-w- C:\Windows\System32\ntoskrnl.exe
2013-08-29 02:16:35 1732032 ----a-w- C:\Windows\System32\ntdll.dll
2013-08-29 02:16:28 243712 ----a-w- C:\Windows\System32\wow64.dll
2013-08-29 02:16:14 859648 ----a-w- C:\Windows\System32\tdh.dll
2013-08-29 02:13:28 878080 ----a-w- C:\Windows\System32\advapi32.dll
2013-08-29 01:51:45 3969472 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2013-08-29 01:51:45 3914176 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2013-08-29 01:50:31 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2013-08-29 01:50:30 1292192 ----a-w- C:\Windows\SysWow64\ntdll.dll
2013-08-29 01:50:16 619520 ----a-w- C:\Windows\SysWow64\tdh.dll
2013-08-29 01:48:17 640512 ----a-w- C:\Windows\SysWow64\advapi32.dll
2013-08-29 01:48:15 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2013-08-29 00:49:53 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2013-08-29 00:49:52 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2013-08-29 00:49:52 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2013-08-29 00:49:49 2048 ----a-w- C:\Windows\SysWow64\user.exe
2013-08-28 01:21:06 3155968 ----a-w- C:\Windows\System32\win32k.sys
2013-08-28 01:12:33 461312 ----a-w- C:\Windows\System32\scavengeui.dll
.
============= FINISH: 17:31:59.43 ===============

aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2013-11-16 17:30:03
-----------------------------
17:30:03.074 OS Version: Windows x64 6.1.7601 Service Pack 1
17:30:03.074 Number of processors: 4 586 0x2A07
17:30:03.075 ComputerName: CARLA-PC UserName: Carla
17:30:05.960 Initialize success
17:30:29.259 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
17:30:29.261 Disk 0 Vendor: TOSHIBA_ GJ00 Size: 610480MB BusType: 3
17:30:29.445 Disk 0 MBR read successfully
17:30:29.446 Disk 0 MBR scan
17:30:29.448 Disk 0 Windows 7 default MBR code
17:30:29.449 Disk 0 Partition 1 00 DE Dell Utility Dell 8.0 117 MB offset 63
17:30:29.473 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 13564 MB offset 245760
17:30:29.509 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 596792 MB offset 28024832
17:30:29.677 Disk 0 scanning C:\Windows\system32\drivers
17:30:45.966 Service scanning
17:30:54.303 Service BHDrvx64 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\BASHDefs\20131101.003\BHDrvx64.sys **LOCKED** 5
17:30:58.600 Service ccSet_N360 C:\Windows\system32\drivers\N360x64\1404000.028\ccSetx64.sys **LOCKED** 5
17:31:05.932 Service eeCtrl C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys **LOCKED** 5
17:31:06.897 Service EraserUtilRebootDrv C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys **LOCKED** 5
17:31:15.669 Service IDSVia64 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\IPSDefs\20131115.001\IDSvia64.sys **LOCKED** 5
17:31:29.481 Service NAVENG C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\VirusDefs\20131116.006\ENG64.SYS **LOCKED** 5
17:31:29.989 Service NAVEX15 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\VirusDefs\20131116.006\EX64.SYS **LOCKED** 5
17:31:58.242 Service SRTSPX C:\Windows\system32\drivers\N360x64\1404000.028\SRTSPX64.SYS **LOCKED** 5
17:32:00.883 Service SymDS C:\Windows\system32\drivers\N360x64\1404000.028\SYMDS64.SYS **LOCKED** 5
17:32:01.704 Service SymEvent C:\Windows\system32\Drivers\SYMEVENT64x86.SYS **LOCKED** 5
17:32:01.949 Service SymIRON C:\Windows\system32\drivers\N360x64\1404000.028\Ironx64.SYS **LOCKED** 5
17:32:02.165 Service SymNetS C:\Windows\System32\Drivers\N360x64\1404000.028\SYMNETS.SYS **LOCKED** 5
17:32:21.199 Modules scanning
17:32:21.200 Disk 0 trace - called modules:
17:32:21.219 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys iaStor.sys
17:32:21.220 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8005c1c060]
17:32:21.220 3 CLASSPNP.SYS[fffff880013d043f] -> nt!IofCallDriver -> [0xfffffa80058e6560]
17:32:21.220 5 ACPI.sys[fffff88000eef7a1] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa80058ec050]
17:32:21.221 Scan finished successfully
17:36:19.507 Disk 0 MBR has been saved successfully to "C:\Users\Carla\Desktop\MBR.dat"
17:36:19.699 The log file has been saved successfully to "C:\Users\Carla\Desktop\aswMBR.txt"


I've got spybot and malwarebytes still scanning and I will post them as soon as I can

ken545
2013-11-22, 18:20
:welcome:

Sorry for the delay.

Lets see the log from Spybot and Malwarebytes please and we can go from there

c_lady
2013-11-23, 06:06
Thanks for replying!

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Database version: v2013.11.16.06

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16736
Carla :: CARLA-PC [administrator]

11/22/2013 3:24:34 PM
MBAM-log-2013-11-22 (23-01-34).txt

Scan type: Full scan (C:\|D:\|Q:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 406101
Time elapsed: 1 hour(s), 31 minute(s), 53 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 2
HKCU\Software\Conduit\FF (PUP.Optional.Conduit.A) -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IECT3288691 (PUP.Optional.Conduit.A) -> No action taken.

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 2
C:\ProgramData\Conduit\IE (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3288691 (PUP.Optional.Conduit.A) -> No action taken.

Files Detected: 5
C:\Program Files (x86)\DivX_Browser_Bar\DivX_Browser_BarToolbarHelper.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\Carla\AppData\Local\Conduit\CT3288691\DivX_Browser_BarAutoUpdateHelper.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3288691\configutaion.json (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3288691\SetupIcon.ico (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3288691\UninstallerUI.exe (PUP.Optional.Conduit.A) -> No action taken.

(end)



Spybot found two items. I don't know how to copy that log. I had scanned and posted a log from malwarebytes when I originally started this thread and it showed no items and this has been going on for a while. Sometimes malwarebytes finds them and sometimes not. I have not removed anything with malwarebytes this time around, I'll await instruction first.

ken545
2013-11-23, 12:47
Good Morning,

Go ahead and rerun Malwarebytes but this time check all entries and have it remove them.

Then do this

Please download AdwCleaner (http://www.bleepingcomputer.com/download/adwcleaner/) by Xplode and save to your Desktop.

Double click on AdwCleaner.exe to run the tool.
Vista/Windows 7/8 users right-click and select Run As Administrator (http://windows.microsoft.com/en-US/windows7/How-do-I-run-an-application-once-with-a-full-administrator-access-token).
Click on the Scan button.
AdwCleaner will begin...be patient as the scan may take some time to complete.
After the scan has finished, click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review.
The contents of the log file may be confusing. Unless you see a program name that you know should not be removed, don't worry about it. If you see an entry you want to keep, let me know about it.
Copy and paste the contents of that logfile in your next reply.
A copy of all logfiles are saved in the C:\AdwCleaner folder which was created when running the tool.

c_lady
2013-11-23, 19:09
Removed Selected with Malwarebytes. Had to rerun it because my computer stalled. It found only two problems instead of the 9 it had found before. Below is the Adwcleaner log


# AdwCleaner v3.012 - Report created 23/11/2013 at 12:05:04
# Updated 11/11/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Carla - CARLA-PC
# Running from : C:\Users\Carla\Downloads\AdwCleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\END
File Found : C:\Users\Carla\AppData\Roaming\Mozilla\Firefox\Profiles\vvk1xh17.default\user.js
File Found : C:\Windows\System32\Tasks\BackgroundContainer Startup Task
Folder Found : C:\Users\Carla\AppData\Roaming\Mozilla\Firefox\Profiles\vvk1xh17.default\Extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
Folder Found : C:\Users\Carla\AppData\Roaming\Mozilla\Firefox\Profiles\vvk1xh17.default\Extensions\{77E8143B-6759-416E-B521-82CFED75150B}
Folder Found : C:\Users\Carla\AppData\Roaming\Mozilla\Firefox\Profiles\vvk1xh17.default\Extensions\{77e8143b-6759-416e-b521-82cfed75150b}
Folder Found C:\Program Files (x86)\Conduit
Folder Found C:\ProgramData\Conduit
Folder Found C:\Users\Carla\AppData\Local\Conduit
Folder Found C:\Users\Carla\AppData\LocalLow\boost_interprocess
Folder Found C:\Users\Carla\AppData\LocalLow\Conduit
Folder Found C:\Users\Carla\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Video downloader
Folder Found C:\Users\Carla\AppData\Roaming\Mozilla\Firefox\Profiles\vvk1xh17.default\CT3288691

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\AppDataLow\Software\smartbar
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\YahooPartnerToolbar
Key Found : [x64] HKCU\Software\Conduit
Key Found : [x64] HKCU\Software\YahooPartnerToolbar
Key Found : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT3288691
Key Found : HKLM\Software\Conduit
Key Found : HKLM\Software\Iminent
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : [x64] HKLM\SOFTWARE\DivX\Install\Setup\WizardLayout\ConduitToolbar

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16736


-\\ Mozilla Firefox v25.0.1 (en-US)

[ File : C:\Users\Carla\AppData\Roaming\Mozilla\Firefox\Profiles\vvk1xh17.default\prefs.js ]

Line Found : user_pref("CT3288691.FF19Solved", "true");
Line Found : user_pref("CT3288691.UserID", "UN13293672307958943");
Line Found : user_pref("CT3288691.fullUserID", "UN13293672307958943.IN.20131121210106");
Line Found : user_pref("CT3288691.installDate", "21/11/2013 21:01:08");
Line Found : user_pref("CT3288691.installSessionId", "{5783971E-83BC-4906-B906-636129F52F4D}");
Line Found : user_pref("CT3288691.installSp", "false");
Line Found : user_pref("CT3288691.installerVersion", "1.8.1.4");
Line Found : user_pref("CT3288691.keyword", "true");
Line Found : user_pref("CT3288691.originalSearchAddressUrl", "hxxp://us.yhs4.search.yahoo.com/yhs/search?ei=UTF-8&hspart=w3i&hsimp=yhs-synd1&type=W3i_DS,221,0_0,Search,00000000,0,0,0,%PARTNERID%&p=");
Line Found : user_pref("CT3288691.searchRevert", "false");
Line Found : user_pref("CT3288691.searchUninstallUserMode", "2");
Line Found : user_pref("CT3288691.searchUserMode", "2");
Line Found : user_pref("CT3288691.toolbarInstallDate", "21-11-2013 21:01:06");
Line Found : user_pref("CT3288691.versionFromInstaller", "10.22.5.10");
Line Found : user_pref("CT3288691.xpeMode", "0");
Line Found : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "hxxp://us.yhs4.search.yahoo.com/yhs/search?ei=UTF-8&hspart=w3i&hsimp=yhs-synd1&type=W3i_DS,221,0_0,Search,00000000,0,0,0,%PARTNERID%&p=");
Line Found : user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3288691&SearchSource=2&CUI=UN13293672307958943&UM=2&q=");
Line Found : user_pref("smartbar.addressBarOwnerCTID", "CT3288691");
Line Found : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3288691&SearchSource=2&CUI=UN13293672307958943&UM=2&q=");
Line Found : user_pref("smartbar.machineId", "M95TUOFELEVD5B3Y6WGDPIPNTNAT6YBXGZVEISMQRDEDFQYJ6ECAI9NWPBRSBWERR1LFYKRMWRXHKHQM/AHUHW");

-\\ Google Chrome v

[ File : C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [4783 octets] - [23/11/2013 12:05:04]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [4843 octets] ##########

ken545
2013-11-23, 19:26
Ok, thanks for the logs


Double click on AdwCleaner.exe to run the tool again.

Click on the Scan button.
AdwCleaner will begin to scan your computer like it did before.
After the scan has finished...
This time, click on the Clean button.
Press OK when asked to close all programs and follow the onscreen prompts.
Press OK again to allow AdwCleaner to restart the computer and complete the removal process.
After rebooting, a logfile report (AdwCleaner[S0].txt) will open automatically.
Copy and paste the contents of that logfile in your next reply.
A copy of that logfile will also be saved in the C:\AdwCleaner folder.





http://imageshack.us/a/img841/7292/thisisujrt.gif Please download Junkware Removal Tool (http://thisisudax.org/downloads/JRT.exe) to your desktop.

Shut down your protection software now to avoid potential conflicts.
Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
The tool will open and start scanning your system.
Please be patient as this can take a while to complete depending on your system's specifications.
On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
Post the contents of JRT.txt into your next message.

c_lady
2013-11-23, 20:06
AdwCleaner v3.012 - Report created 23/11/2013 at 13:01:02
# Updated 11/11/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Carla - CARLA-PC
# Running from : C:\Users\Carla\Downloads\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Conduit
Folder Deleted : C:\Program Files (x86)\Conduit
Folder Deleted : C:\Users\Carla\AppData\Local\Conduit
Folder Deleted : C:\Users\Carla\AppData\LocalLow\boost_interprocess
Folder Deleted : C:\Users\Carla\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Carla\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Video downloader
Folder Deleted : C:\Users\Carla\AppData\Roaming\Mozilla\Firefox\Profiles\vvk1xh17.default\CT3288691
Folder Deleted : C:\Users\Carla\AppData\Roaming\Mozilla\Firefox\Profiles\vvk1xh17.default\Extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
Folder Deleted : C:\Users\Carla\AppData\Roaming\Mozilla\Firefox\Profiles\vvk1xh17.default\Extensions\{77E8143B-6759-416E-B521-82CFED75150B}
File Deleted : C:\END
File Deleted : C:\Users\Carla\AppData\Roaming\Mozilla\Firefox\Profiles\vvk1xh17.default\user.js
File Deleted : C:\Windows\System32\Tasks\BackgroundContainer Startup Task

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3288691
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\YahooPartnerToolbar
Key Deleted : HKCU\Software\AppDataLow\Software\smartbar
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\Iminent
Key Deleted : [x64] HKLM\SOFTWARE\DivX\Install\Setup\WizardLayout\ConduitToolbar

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16736


-\\ Mozilla Firefox v25.0.1 (en-US)

[ File : C:\Users\Carla\AppData\Roaming\Mozilla\Firefox\Profiles\vvk1xh17.default\prefs.js ]

Line Deleted : user_pref("CT3288691.FF19Solved", "true");
Line Deleted : user_pref("CT3288691.UserID", "UN13293672307958943");
Line Deleted : user_pref("CT3288691.fullUserID", "UN13293672307958943.IN.20131121210106");
Line Deleted : user_pref("CT3288691.installDate", "21/11/2013 21:01:08");
Line Deleted : user_pref("CT3288691.installSessionId", "{5783971E-83BC-4906-B906-636129F52F4D}");
Line Deleted : user_pref("CT3288691.installSp", "false");
Line Deleted : user_pref("CT3288691.installerVersion", "1.8.1.4");
Line Deleted : user_pref("CT3288691.keyword", "true");
Line Deleted : user_pref("CT3288691.originalSearchAddressUrl", "hxxp://us.yhs4.search.yahoo.com/yhs/search?ei=UTF-8&hspart=w3i&hsimp=yhs-synd1&type=W3i_DS,221,0_0,Search,00000000,0,0,0,%PARTNERID%&p=");
Line Deleted : user_pref("CT3288691.searchRevert", "false");
Line Deleted : user_pref("CT3288691.searchUninstallUserMode", "2");
Line Deleted : user_pref("CT3288691.searchUserMode", "2");
Line Deleted : user_pref("CT3288691.toolbarInstallDate", "21-11-2013 21:01:06");
Line Deleted : user_pref("CT3288691.versionFromInstaller", "10.22.5.10");
Line Deleted : user_pref("CT3288691.xpeMode", "0");
Line Deleted : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "hxxp://us.yhs4.search.yahoo.com/yhs/search?ei=UTF-8&hspart=w3i&hsimp=yhs-synd1&type=W3i_DS,221,0_0,Search,00000000,0,0,0,%PARTNERID%&p=");
Line Deleted : user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3288691&SearchSource=2&CUI=UN13293672307958943&UM=2&q=");
Line Deleted : user_pref("smartbar.addressBarOwnerCTID", "CT3288691");
Line Deleted : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3288691&SearchSource=2&CUI=UN13293672307958943&UM=2&q=");
Line Deleted : user_pref("smartbar.machineId", "M95TUOFELEVD5B3Y6WGDPIPNTNAT6YBXGZVEISMQRDEDFQYJ6ECAI9NWPBRSBWERR1LFYKRMWRXHKHQM/AHUHW");

-\\ Google Chrome v

[ File : C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [4935 octets] - [23/11/2013 12:05:04]
AdwCleaner[R1].txt - [4995 octets] - [23/11/2013 13:00:26]
AdwCleaner[S0].txt - [4785 octets] - [23/11/2013 13:01:02]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4845 octets] ##########

ken545
2013-11-23, 22:14
:bigthumb:

Waiting on the Junkware Removal tool report

c_lady
2013-11-23, 23:22
Sorry for the delay


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Home Premium x64
Ran by Carla on Sat 11/23/2013 at 16:09:08.05
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\big fish"
Successfully deleted: [Folder] "C:\Users\Carla\appdata\local\big fish"
Successfully deleted: [Folder] "C:\bigfishcache"
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0028D223-E863-4DA4-8E61-704B69CD1472}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{00634DF7-FD5F-40D1-A37B-E4E060796C12}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{00FE4CEC-3DA5-42C8-B290-679CF9C412D0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{010837E1-9FE7-49C5-B88F-FCD4817D0C7F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0144F970-C02B-4209-A247-C485DF1B3369}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{01654340-590E-4172-A96A-AF8FBDA2FF59}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{01A1EA20-FE24-4D1A-8EE4-265F616D4907}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{02F3D632-467A-4985-89E3-E23C92F03AE6}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{037E1930-D4D8-43C1-80D1-101971D9D6FA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0384BDB3-C849-4B05-ACE0-5717C1806197}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{03AA59E1-751F-4C28-8369-65BABC0DAC60}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{042EB54E-8D7C-467B-A5CD-A33B5F32C53F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0499EC40-24AE-44E3-8A0D-2E5065720FA4}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{04A93D81-1ADB-4FC7-A595-AB0555625B6C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{04D08285-BF58-40E5-AA56-7CC26B745844}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{04DCB304-54B0-4F3D-9327-DB683291E625}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{04EC1245-F154-4F27-98FE-248D7B1D8C89}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{050F515E-1A17-48E5-B227-F9E8A6B09FF3}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{052C5C19-46D1-4213-99FF-8ED9B323C3F0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{053B4DC0-DAE7-460E-AC20-ABBAEFFAD856}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{054246F3-CF6E-4880-B33F-6792DAC93B8F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{057E5B42-9D24-48A5-94CE-1744F4953869}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0634122F-0C66-458C-954A-C62E451E1EEF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0673F651-5DDE-407F-BCEB-D47845C83DDA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{06764077-4744-4BE0-98C0-1C477623FE7C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{06A7A154-1356-4439-9055-8C26A112E883}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{07E58789-D603-424D-AA4B-2F39ED5051CE}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{08B5C6E7-4912-4CEA-B62A-A5E1FA6CB21C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{09A49A9E-0CFF-471F-8837-2061973784D0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{09AE6084-5EBA-4ABA-88F4-4E194CBCC8B0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0A4A1287-2C37-4CA1-B7F3-BBA37AE8991E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0AF49DD1-59AA-410D-94A1-679A6D1AE3A7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0AFCD90A-4049-47D8-87FF-4CBDEF54556C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0B5A3EF3-B6A0-4F74-B148-97E7BA1C232C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0BF01B9A-42C7-4B56-BB38-84CF19972069}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0BFB5108-4B6B-4782-8AA8-04C98BA0CE22}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0C44948B-D8B8-4CCB-84A9-A8A17356D414}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0C899030-66B1-4095-819B-08E211814A07}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0CAB1A00-F0FF-4AEE-ACCC-13C4FC8E5C5A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0CC3E285-DB3C-4FAB-A21F-FC7F906F29B1}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0D907920-1353-4A50-A46E-34D7A76DC45B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0DED6A49-CD77-4758-A82C-F96C12510885}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0E47C3EA-7E9F-45FF-A970-D630216EBE9E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0E7D664B-5D0A-4055-9227-65CBD5EE3F4F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0EA970D8-646F-458B-92B4-4E962D9BE695}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0EB8E213-C49A-4252-BC29-8CD5249D131E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0EF21889-6370-4582-98A0-AACA9DE7765A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0F3E93AF-B2BC-4BD6-BDCF-8413493C2C86}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0F85C548-6521-4AF3-AE39-C40CC288C473}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0F97B340-20DF-4487-BD39-9003B68EDD75}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{0FCE5887-3841-4E0E-8217-4D7BC3F8B1FA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1025DEFD-8E4E-4AA7-AEA0-43A956B37826}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1071061E-8285-4657-992F-D2CA142258F0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{10C04F2B-1D10-4E4C-97F7-9D9808B3166A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{10E84F19-E321-4AB7-A3B0-213886DCEDC0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1112BE5F-B8BF-46D1-8E8F-90905E2345F7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{115C38E2-10D9-40F1-AA69-70963FF006E9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1190E44C-180A-4350-B35E-4EC4B702AAA7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{11EF895D-B857-4142-816B-220BE2FAF4E9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{12AC75B9-DBF0-414F-B841-DC8E94E9571D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1334F50C-D9B5-4071-A189-BA5475BF8872}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1420EBD4-D505-4F2C-87C3-F6681B8FDDCD}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1463B1EA-0008-48E1-B5A4-22F365971174}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{15356C8A-350F-4CEF-AB43-222E6AA52835}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1571F185-AAD3-452E-90F9-9A146A591E04}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{15951BBF-3FEF-4BDD-8377-E450F1959A92}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{15D11E89-F2C6-44A6-BEAC-1B8814F77FCA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{166D3ADF-5FA9-4B36-A335-F1718BFAE1F8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{16775C4C-F32C-47D1-9DE9-9FD0E4637DB8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{16BEDA83-4524-4B45-9371-DCECA2C1945C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{16C10A22-8617-4D7C-B8E9-827A87918A96}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{16DAB40A-88B4-4A55-9848-FDF76B084D98}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{16F72F24-5127-4F08-8FBF-11B152F6E7EF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{17234C0E-F008-46B1-AF78-F246E47B7515}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{17891228-33A2-438F-B809-BD3F20492566}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{17E806A5-D175-4EA4-8E82-B00118AF8476}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{17F83B53-CC35-4AAA-A301-2DE1605B062A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{188D7950-92F0-47D2-AFB3-648B2C950DC2}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{18948008-F5CA-4DFC-BCAB-DE83B2F58DF5}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{198633EF-7687-495A-B86F-8CEFD898E7E0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{19EB138C-ABF5-4140-8DF4-4B6619F59219}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1A1DCFAF-9E0E-4D56-A86D-7241E1E2157D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1AC1B02F-138C-4C85-98C0-879904BA0388}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1B2C8CB6-1CC9-4976-BC37-CD2A7425BA12}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1C02A692-6298-4F47-9915-0E12A9D66E92}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1CFD9990-0B05-4103-AC2F-6AA85B24B55F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1D98A2F8-782D-4CF3-8955-97256EBD8746}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1DC5F873-9D8F-443E-8936-B3071E88D3D2}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1DD5A156-CAEF-42B9-9640-E87872C6C60C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1E09837F-DF73-4F09-B35C-967D847AC74C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1E1C1C0E-6F92-4EE2-9439-A16FD99DE81F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1F5B7D3B-A98A-44A3-9057-B67FD2C24DE9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1F6DBFCF-EC67-4A5E-8B59-370EF21B2F39}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{1F7DED87-3CEA-48DC-B930-7573350EB5A0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{203C1C5B-5137-4B66-8F1A-17E80F8880A0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{20A2ACB1-AB8B-4CA3-B085-E46EAB8487E2}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{20EFB012-D3F4-4955-A0C8-99CB22BE42EB}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{21613AB8-CF0A-4B28-B2D4-72A5874B54DF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{21FA1035-557E-41C0-87E0-FD50D97091DB}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{227B12B3-D47B-49C2-BE7D-66B24FFDD1C9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{228EBA95-7C98-4B70-BE11-4B31C9DE23C0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{230AD235-6313-4547-9810-58665B638486}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{231904B7-DEA1-41C7-801A-8A9AED0EBEB8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2357DDC0-E331-4A84-96DB-950E6A51A124}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{24666234-2653-4094-A357-2A6FF41857A5}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{24740255-80C6-4E1E-8C11-3D5FAFDB589B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{24C6A9C6-9D90-4357-85A3-34C2EB2EA5AD}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{25CF5D56-001A-471E-A60C-8109C472E282}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{25F84FE3-E74E-4C7D-8828-2C664BBEC438}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2615107F-A89A-49B5-99E5-CC438E55A3B7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{26A71381-8526-43F5-A1BF-C33AFFC1DF08}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{26ADBFA3-E1E9-49A4-8CE6-6A4A1D084B17}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{26B2F956-9D05-43FF-B3AA-4D7D9130453F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{26C688B9-BB84-460F-BFCA-818FC4157962}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{275A59D7-7F90-4F04-A86D-23EBD81924C9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{27CA9239-7281-465F-9926-D99AA2689545}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{27ECB757-4D04-4CD8-AA47-125EF71DDB91}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{27FAAECC-C90E-489D-93C8-A680D86CB377}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{286AD608-F1CC-4CEC-BA2D-9DA3D3ACC510}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2889EEEA-BEA7-4743-9E32-4F17551CF7E2}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{28FE7D1F-3569-4FF1-9AA1-849B6B93C93B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2980DC75-A4A3-4DA7-81CB-99D85C9B6921}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2992D8CD-8159-438E-958E-81647C396224}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{29BCD228-C108-4748-8029-DE679D2A2973}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2A209AC9-808B-4292-9FD9-3EF86B86922A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2A957B67-FF77-46E3-AC08-45D540B2227B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2AA86DF8-47A1-4F3E-9435-5064B9426AA0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2AE3922C-2AA6-4A72-BEE8-CB6468A2A35B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2AEFEA8B-45D1-4178-AAA0-0AC0F9CCA48E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2C166F40-D8FE-44E7-B064-52A4F76F9606}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2C32B54F-8CCB-4C0D-99AC-05EAB0CB16F4}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2C3949C1-DB2A-41FA-B66E-EB7779B88826}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2C45CEC1-C96E-4B68-BDB0-C38DC0B088C0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2E1E5E95-F3BE-4F37-8122-7364708129C8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2EC9DF4B-1C2F-415A-8555-0B3D33FAE18F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2EE083E0-FF5E-47C6-B9AE-4933DED8189C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2EEE96C1-35C6-417A-BFE1-B4C7D8F62F06}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2F2F74A4-66B3-4B83-BEE7-93D7C5E413F1}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2F47DDF3-F27A-4279-B20C-30D1ECA902D6}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2F70382B-323B-4DA6-ACDC-1DC55E6880EF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2F71D2ED-1AD3-44CA-A54E-C39F7ADD5BCD}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{2FE3C6C6-E761-488D-AC2C-033361B75F0C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{301E8A54-02DD-46FC-9B6A-AB81394771A6}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{307E2075-AFE9-4641-8E66-9CD2EF287DED}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{30FBE5E2-0F4E-4E7A-AC85-EA9B46F364A9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3132523D-6AC8-4BCA-B699-6CD5E1AE124E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{315D240F-BECC-46E3-986E-6C69F142DEF0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{320329D6-C879-46CA-B14F-96C8A7C746A6}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{32407AEC-5480-4E81-879A-39EFFCFE6EDF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{32521650-C199-4F8E-A078-D46A7CAFD745}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{325721B7-EFC1-4171-A5AB-2932136F813B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3263CC73-CC25-4159-9C49-4544CD375CD1}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{32E38A0E-3C96-4490-9821-B1F5F55BC43A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3310E728-E399-4468-A0AB-B50AC6D76AEF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{332E9D97-2ED5-4DC4-8B30-91E73F74C974}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{33D1BD52-9982-403C-97EA-1BC12C818B22}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{342E176D-4078-4DC0-8D9E-27DD3CDA9BEF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{34698784-9467-414D-8B43-DD8FA0C9D1B3}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{34BC5ED0-980C-4E5F-B7EC-0324115FDAF7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3557CA60-BD4E-4C04-BCEF-6C73F61138F9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{357805D9-BB3E-408E-BB28-DDE7FE628B0B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{35B2A496-6B40-48EE-83C1-1E17D101545C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{35E730A4-097B-4945-92B1-F63DCB3A08CB}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{373F7193-A036-473C-B2EA-BA2C22D5D66E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3764DE35-9519-437A-9998-211DE272DB6A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{383D51A0-2809-4830-B555-644C4981D92D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{39234056-0493-4602-9BC2-8FD565D84CA3}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{39CAD29F-5D20-485E-95A1-4905BD977DF9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{39EC7FD0-67D7-4395-B614-7425008B8701}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3A3B619E-0D6B-449B-BCD5-D67CE263D15F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3A55F0B9-D461-44AE-A88A-B02FA2D6293B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3A78A5D4-7E3E-4BDA-B71C-E44D52570FB7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3A90C876-50DC-470F-961B-311952EB3D9F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3A91FF46-D11E-4DF6-8038-49ABC01D6818}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3AD614D8-B8CD-4BC0-8002-2C63F1746F42}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3B80269A-42A6-4C43-A88F-4E413455F876}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3B925309-075C-441A-A158-E03A409E2A52}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3B995EDF-23F8-44EB-9F91-DCD06BCB8074}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3BE6BB36-230B-43E6-BC1C-92E651B4DD12}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3C4C03D7-5425-4BD3-A28D-7523E1A90F63}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3CAEF80E-C524-44B6-8DC9-1E33F8D9F319}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3CC9DFE5-85DD-4A01-847A-0D881C50EA92}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3CCA56C2-57AB-426F-8A20-11A2533B8863}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3E2C025B-D5FD-4CA7-A9F4-37D94A61531F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3E367D9A-444B-4D8A-9D7B-DE362C01E1C2}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3E8FFCB9-74D9-45DB-95FB-A9BDF7E32B42}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{3FDC1676-A640-4F61-84C4-123ADD4D35F0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{400B0353-C899-43CC-BA01-509F783F8976}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4037ACE4-3F49-4999-BFB1-8D0F92901B75}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{40688E5E-77C4-41F9-BADF-04113F4C1611}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{421B042E-CF8A-4E9D-BB42-9BB21A20A7B1}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{421EFF38-1623-43E0-90F2-420209CFDD5A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{422C747E-3C63-4411-943D-7CCCF64DF267}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{42A754D7-3414-4431-A016-829D35FD4C91}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{42DBE471-8DA9-49C1-9C95-12B40BF479BE}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{42ED238D-BB37-483B-9202-30D008557902}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{435EEBA2-253D-4D9E-9EFE-87ADD5093AA3}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{43A96984-2712-471D-B4EF-9BA3B27DCDF7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{43ABEF85-7DDA-4B97-9FFC-7424F30D73FE}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{43DF4848-0CC2-4307-9AB7-E0491FBE04DD}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{442576A7-83A8-4E24-9672-3C6C6CCA0C85}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4442B517-7FE0-414A-90E3-04F1E156916B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{447AB65A-3864-4A32-BBC1-1CE3626AB923}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{44FDE0CD-E3A4-4D23-A3BF-B5A9B7978CE9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{45166B43-765D-435C-AFD1-4C6D8D78DE4D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4582C4C9-FA82-4A99-961E-D03691472C03}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4583DB6E-7F0C-4EA1-8581-56F127A191A8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{46911FEC-C165-4ABC-9BBE-4B0A9E7E30AF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{46E6D793-F688-4EE1-A098-1D824337D370}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{46FCEB87-DD8A-42DE-B797-D4B83131EB70}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{471A6D9C-07BA-43C8-A8F0-78BAF6FC8955}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4734539B-99A9-425F-B117-786F84368DAE}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{47586084-733C-4FD7-88D9-6792CB8FA5E8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{475A63E3-D600-47E5-9193-4608F8E5C04C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{47C268D4-F574-405A-8ADA-2483C0D0C32B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{47F0BD76-5E9E-4C84-8B39-E8FBD6A7211D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{48149B5F-7232-4E22-907F-54A349DE75F8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{48B9AB9E-9481-40C0-927F-8D3C2A87B278}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{48F157A6-6BAC-47FB-9FA9-D8CE697B28F6}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{497E9E6F-E6F0-4C35-A541-FA62F28A4359}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{49DF5339-E9E3-4402-A86D-43190F1135B7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4A6B8374-826C-460A-BB54-9BDD2F7468EF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4A91C466-CA10-483C-B9DD-516FACF94EEF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4AD869FD-8D10-4865-B2FC-159DFCBBC962}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4C115FD1-6739-44C5-AD8A-DA81959AD6CA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4C5CCBB2-C093-4BC4-ABE3-AE497778859B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4CCA2D2A-6D28-41ED-9290-76C932D2BD7D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4D5F2106-0C97-45A1-8B81-0F72BBC912EE}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4E0D84A4-143A-45FD-9D9F-C67448F9D547}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4E0F53D3-84C3-47C1-A096-F7DF4851265C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4E3467C9-4E72-4710-8F8E-EA3FF40B8AC9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4F1A4498-C64A-4FDD-BBD9-682E94B67AF5}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4F75EB09-F233-44BD-85A5-5E5CAE4CF4BF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4F96CF66-64E8-42DB-ADC8-E416F43094B8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{4FC43A39-FF5B-4197-854F-AF43527E79FF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5018EB10-BAAE-4DF3-A0D9-3E319206DDBF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5091A61D-27A4-4F6E-BDCE-87580A6A48AB}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{509BAB51-7F4F-4F45-879A-CF43C66BB348}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{50F2D3F6-4D6A-434A-B202-FAC894DE066D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{510169BD-688F-442A-8C1F-FF81F71BEB2F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{51B2E9BC-D4AB-4315-8076-9068B6BD3BB1}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{51B58CB9-9399-492E-90E7-0A914CA97496}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{524594FE-B70E-4439-BDCF-4E9216A780CF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{52FFBE43-C3E3-4F46-855F-8962DDB1306C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{533EB40F-FAB9-4089-B8A3-61D96B6E940F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5345CC7C-7F0A-448D-B82E-AC911676FFDC}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{537854AA-8BDA-4AA0-84DF-92D4641CDC50}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{53B46F5E-E633-4B48-8865-68BE7A8B37B1}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{546D375A-7C4D-465D-8712-F781B7DBECEC}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{55551024-F5BB-4AD1-B470-AEC7F39A6A9B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{556E5D4A-DF69-473F-ABAF-3055C02AA29E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{559DCF94-1FA6-4926-9080-467451860153}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{55AE8596-D1BA-4CD6-A237-856A4D9392DD}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{55B75F1F-9E82-4A0C-8410-A39EC720BB8F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5661379C-4DAC-4525-9884-EF7ED3073E99}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{56F9F51E-0118-4EFA-90DD-944BAC723EEF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{56FA5B2E-CD96-4185-9F27-4F9EB8D8CC20}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5770AFFA-026E-4BD9-BCB7-3EED27324348}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{579A46A6-348E-43E5-BBD3-941D87E4D6F3}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{579FCF26-37C8-476A-B169-D14366356F3F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{58298615-C1B3-4E58-8F28-303099B9CD81}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{590DD96E-C893-482F-B926-8D1A18F08C63}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{593A9A8D-FCD8-455E-98C8-2854014D3310}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{598166BC-DF78-4A1F-8C44-0097354031AB}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{59B32898-5F44-44CC-BDC1-00B93DFC9C45}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5A6FE04C-98C2-43E1-B4FC-D83A4F4706B7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5B1A0DC5-5DCF-4AC2-B3CD-E1E041074325}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5BBD9A0C-8735-4D4D-A983-D256D0CCF535}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5BD33915-8A0D-41CC-8EB8-D4901199A2DA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5C6B8DF9-D676-4FE7-8AE4-A1D08942276A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5C875C75-F0B5-4E2A-B02A-BA4B7A9B6607}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5C89C071-04D9-47A4-B158-91E7383010B8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5CC34487-E978-43A9-B205-2A9F01C2AFF6}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5D031664-1EF9-406F-976D-C406CB9F3FA6}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5D0F6391-04FC-4B34-8FB5-5F423BD2A98D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5E871531-98AF-42B0-AAD7-E0550279BADC}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5E9C5319-F99A-42C8-B165-4DF0F283CD34}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5EBA30E0-88F8-461E-A9AB-B77C208C7208}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5F509A17-B4B5-4651-81D5-BFD35392E2E4}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5F81D79A-8604-4945-888C-282C462D9A9C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{5FEB6C6E-C7DF-46AB-AA22-C87004C3F176}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{60153389-BEF6-43DD-B52E-9FCEF8A90316}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{60229034-C326-46EE-9E41-3D4198E41989}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{614AB50C-761C-4904-B3AA-A6D33FAE51D0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{615FCCA7-0392-4B47-B5F7-DFBDC749E900}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6337D942-9B35-4A95-BF7C-CA941931C596}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6377057F-F30F-49A6-8553-D1C6BEB75E0B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{643CFFB8-63A0-4F84-BA5F-2AFB1654F507}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6468BF6A-B4C4-40D0-926C-8ABA2FE9EA87}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{64DCC02E-554C-437D-B443-6460B5A42678}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{64EA1E30-AD5E-4944-A9EC-572EC5D8EAF4}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{654DF74B-6619-4463-B180-FC01250E37F3}

c_lady
2013-11-23, 23:24
I had to post this in two parts due to the post length restrictions.



Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6588D62C-75DB-4517-ADDA-E4BFF0649A01}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{65D72F4A-EBE1-4FCB-BC9F-4016ACFE2A35}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{65E40F5A-4C6C-418A-BFE9-E7C85E76EE89}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6602580B-B8DE-40BD-AD3C-004BB7DBCA55}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{660BBC71-7672-4815-8169-042B8B08837F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6623F141-AB2F-4D71-B42F-7C677FA19C7A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6632F131-3F94-4A22-9A48-47AF053D16F6}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{671104EF-CCC7-47F7-819C-EC4D48F34FBA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{675A5A15-DD5F-4640-97A7-A9E3B255C37F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{67AB9276-4775-42C6-B0E6-C162AAB7080C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{67B5D619-8F71-4FD9-B6F2-1B295B3825A0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{686AE8B2-F533-4596-A2D6-C8A797367890}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{689471B8-B70E-44AD-A20D-8B3E5F54F5F2}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{68E719BE-2CB9-4E3D-8460-D19F549299AA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{69302DF4-50DE-42C0-8210-88D95850C865}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{699E6556-BEB1-4BDE-A773-88771608D2AB}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6A5F9C13-FE6B-45B6-BE53-E7637D370875}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6A788678-2232-489B-A6BF-3E0F71B5F308}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6B70846D-458B-47B8-B44D-F45B7F38BAEF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6BC0D361-83ED-4D17-A0F7-8AA7A50F24BB}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6BC22F0B-62C7-45D2-B172-929F811EB6E9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6C7F1AC4-9709-4720-AE5D-40F2C4093F51}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6CAF412F-4BF5-42FC-AD8F-61344698AE9A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6D2680F3-9F01-4B54-8B00-73C7FE1B974A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6D850858-300B-464C-A182-FA6AD63B0E9B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6DDBBEE3-145B-4235-A9F1-C4D0029DCB78}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6DFC52C0-7459-4BBB-A58C-C8A0E60D1856}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6E0CBD5D-1635-4445-AF66-81146AEA53A1}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6E2691C2-E551-4978-87AA-ADF430FF0A1C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6E33DDFE-68D4-44A4-8F36-6A04CCC0D802}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6EAEBDAB-A7BF-4695-8A36-F4A123F8A734}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6EE89676-B5E5-452F-AA8F-D1A95B5B2E41}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6F1DFA2C-36E3-4CBE-9528-5F2970420AA3}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6F3FB5DB-E1A2-493B-975F-86751E291DB8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{6FDF93B9-A4EB-4662-B095-0EBA24F79AF0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{70009AD7-93DF-47D3-8FF9-C74BAAC089BD}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7003CFEA-E265-43C7-B838-A91E808DC172}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{700A27AC-42AD-45D6-BA66-2D4FD7AA6363}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{70D295F7-F0BD-4169-984E-9AF1EDCE0F00}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{70DEC2FA-D0AB-4595-928C-BA67D7DD732C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{70EE3936-5BFF-48BE-B7A1-9797F872B6C1}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{71143B51-DC3C-4B4E-9AFC-FE7E617E12ED}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7143EA6F-1A41-45D9-BC85-66AEB175667E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{71578F58-6512-44CF-B52C-5747354B1BC7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{723580F8-1D2C-40F3-838A-FC71ADD97128}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{723965F0-2D00-4AD3-97CC-75A1B45BB6BE}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7239D783-FFDB-4428-BF7E-D1C8B19BB948}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7243D3A5-821B-4F61-84B6-784DF30B0826}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{72C34542-C0B4-4DE9-A453-FDF95CF7C20C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7313D77F-A8AE-4C18-95DC-D234D8F42C60}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7321748B-141D-434C-B698-2C4482B459C8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{732DEC3A-88E8-4459-A1B4-570C7D868BC3}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{737FED0D-3C10-4A2A-90BE-2187640EA9B5}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7396F5EF-5298-4601-8A62-57FEC7700853}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{73D778F3-51C8-463A-A8F5-E8C988B8CF93}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{74891B6A-FBC6-47DA-8D84-9273F1C971E8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{74BB221D-B6C8-4160-B7B4-612FFBB05440}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{74F4411C-6E71-4B65-AD75-76B2ABDDBA48}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{751E35A5-A336-4076-922A-A53CD2AE6659}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7739D3E7-BC6C-4F11-8346-8D47FB25A9B8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{773F79B5-DF19-4C25-B988-C1FBD33826EA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{77DEE8B8-F107-4CA5-8EAF-541DE3657FB7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{78164F09-5FAB-4DFB-AF76-551824F1C367}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{784343AE-B6EE-479B-BF31-19E809A819E6}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{78B0025A-D822-43FF-8F21-FE2D86ED8FB1}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{78EBC7F6-9279-4D30-806D-C59A5D61C94B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{79014308-E091-4AC2-84F5-3AAE3A524EA0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7992F5FB-406B-45E5-9138-D8B65FBF3347}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7A01DF46-CBB9-484B-A6F5-469A87180117}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7A875007-554F-4FB6-BBF7-4580BED53F74}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7A990819-FF95-4A24-AC04-7D71EF6A3B0A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7AAE7F5A-E5AF-4293-8E74-3B064ECA056B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7BE86478-3686-44B9-A721-616BD8A8DF56}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7BEFA5D5-1508-4062-A826-97B3541BDDB3}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7BEFBD9A-D076-4AB0-82FA-DF4BF2692888}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7C265599-FDA7-42CD-AA2B-86D234DE4078}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7C9B7F84-3141-41FF-A4D7-15D4C21A673E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7CFE5851-594C-4655-B6B5-A2BECBC8FF3A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7D294B08-7538-4F00-97CA-3D1965026044}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7D3BEE12-211F-43B2-9CE4-D0AD299DB075}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7D52A7E0-BD96-4FE3-92D5-75789CEFE4F4}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7D5CB65C-1EA7-443C-B979-E488F11D9311}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7D95A07A-D02D-4F61-A7D7-083EB378225E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7DD75E46-D592-47D0-80A2-1ACC95CAF664}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7E08321A-C243-4501-9494-FFB6301EA8A9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7E435BCD-45C3-4196-968B-506A38FB0545}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7E4D217D-B65B-4DD0-A1BC-6EDFB762BD3E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7E931DED-9DCE-4FC3-A7DF-BAF2FD662F25}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7F47FBEA-9D73-469A-88C2-94430BFB7C48}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7F5BC3FC-EC6F-4413-A773-AE11673AECAA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7F6F8A8B-9153-47FA-92AB-4CF40879C8EC}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{7F81E044-FD99-4520-8048-AF5915FD06FA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{80151C47-16FE-4DCD-A1FD-E69882D1D542}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{801FABFF-E26D-469D-A54E-9AC0EA3EA4A5}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{808C2667-B391-4908-9AB7-18D864486C4A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{80BA3542-046F-4295-9FF0-C37C7D656B0E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{80DB0256-9198-4946-B785-FDE87106178F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{8126ED55-A8C5-48F5-A235-108DE474B04E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{81422AE2-93C2-479D-9FC3-DE67489B8191}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{818E6397-F94B-473A-B0AC-266D27100596}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{819231B4-38CD-42AB-8CFB-818413E9334B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{819472B4-60E3-4437-A3A1-E370003805CA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{81D8D653-D0DC-4041-8442-4A2D1D0A2383}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{8285A1C8-3909-44B5-817F-67ED0E11CEA6}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{82E7C8A6-7D46-48EE-90AD-5BD53CC74474}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{844791D2-DF28-48DF-BB84-BB03F5F21E29}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{847B83C3-D9C3-42B3-B982-0BA2DC02B7D1}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{84EA77E7-B04B-4650-9964-0B79C8EDFE08}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{8542C343-F918-404B-9030-279841F6FAF8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{856C3201-7EDC-4447-A535-164C2E6AD3CB}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{858CF82D-40FD-43A1-9365-2D5B7DD8372E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{8637C108-93A0-4B27-8107-7175B6B97316}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{871278A5-5F25-4E9E-A6BA-EC9879EA6440}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{872E922C-3694-4F8D-ADA9-1CFA7EFA41F2}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{87EF8894-6EA5-47AD-8871-B3A91E546606}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{87F1D83B-7267-408D-8611-5685DD2F1BB4}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{880D1D7D-8411-40CA-8311-93B2D77F8FBA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{880D7AC4-2F15-445B-AAFF-75278A204914}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{88615E72-235D-443E-BEC9-413F8CC7BB7B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{892CF7D8-D1EB-4C53-98BE-40D47B5925DA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{896EA6C0-FBB3-4DB3-B794-3833A812A5D2}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{898374A5-180D-4D17-BC76-552AE4B65B86}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{8990FA71-80C7-446D-A7C2-366DD0D64C16}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{899F3A45-42D3-4349-82A5-D0D553896287}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{8AAC842F-80E5-48FA-AED0-C3A6D3EDDEC2}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{8B1E3CC1-0BA0-4CEC-9D65-BE9A8598C5D9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{8B70ED55-7D95-4D06-95D7-EAB2FB0BAD54}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{8CC78056-CD99-4329-9C37-BA37C767634E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{8D7BF0F6-5E83-457C-AAEB-5BFFE050930C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{8DAB78CD-8D51-4883-96B8-299D190666BB}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{8DC026B7-81F7-42EF-B05E-6A7D9FCE9BC9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{8E865A23-68E1-4871-AEF9-2627427DAE58}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{8EB778C1-A2A4-41E2-8B2B-88E2E49A2097}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{8F340519-5F68-4A65-8C49-78FE0C361C77}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{8FB0FC9E-8565-4C91-A4B0-883392D45358}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{8FF9D512-F068-42B8-A954-D1C726822924}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9070A046-3B7D-4245-9C85-1B0FDA232D27}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{90B84CFE-5FB7-4F0D-AFFC-89900D21B37E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{917A7532-3A26-4AB1-8A80-CDA96D56E42D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{91BBE3F0-092D-475F-A8CD-92FB81F393C0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{91CF4317-7100-4573-A15A-BCC09B5A13EB}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{91DED8E0-7D47-4C31-BD8D-A437792B337A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{926F0DE5-A375-4045-9E8D-0AE27340312A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9277A4EC-A49E-486B-8637-C2F367981AB8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9310B72D-9A2A-454A-9343-866C14828181}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{93BA2323-F41A-4BDD-AD8D-A7A1CE807C1B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{93E5C1F4-1039-437C-A00F-31091383C80F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{93FC455F-7338-4245-87CE-D95712A1902C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{940CE40F-D45A-4311-A66D-561F843B7146}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{94C90058-819C-4386-8308-A5A89B461446}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9509687A-B28F-49C5-88BE-22DFACB7DEEA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{95A151A0-20F7-4D84-AB5B-2E3486D18B21}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{96554A60-CCD2-4FD7-B0CF-522D1FBF5426}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{967DC0C5-C378-4B14-8E72-238711B0702E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{96923B23-CB24-42E9-976E-9429D5DC6B15}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{96B43ABE-6399-49CD-9A61-128F34D93409}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9727A315-0673-422F-974D-5FD5A8CAEDDD}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{97DE1161-0215-4664-80BF-181017D49EA8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9954C7E9-E62F-4889-AFA9-AB17AA189F08}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{995922A4-8DA9-497C-B897-317B3855A7FE}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{996C4BD7-12A4-44F0-A014-481E9E3598C9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9986A2AF-03E4-4F11-A2E3-8665CFC15A88}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{999545EC-6631-4799-86D9-7D23D7765B9E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{99D7274C-2499-4376-9A4B-E350EA0FEE2B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9AB076F4-6C98-4645-BA1E-BC9B99AA6864}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9AB3D410-B7E4-43F0-BE3E-57C14935A91C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9B302C5C-42C0-4E8B-A7DD-56AA9DBCD77D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9BB3A2EB-683D-4F9E-AA09-A83961A0FD42}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9C19908A-26EA-4558-9A47-58FB5B4EFBBC}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9C5DA3DA-37AC-4BFF-BF0D-8683CDD90A50}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9C9F81F9-FF67-4D92-8F42-A3DFECCDA355}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9CC8C603-D044-4EA5-B0D1-B507773D9F71}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9CF38B85-39A4-434F-BC1E-4CD793AECB46}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9D0B55BF-62D7-40AB-A386-58750909A28C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9DC17AE0-3FC8-427F-B978-353C476B9D0D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9DCF7BFF-EAAE-4064-A081-55BBAD84BBF9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9DEAE5C6-3BFB-4EE4-9884-4C6B6351680D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9DFDD26F-8523-406C-AEB7-035F54E5AF31}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9E40AA3A-CFD9-40A1-ABD8-800AB9D82572}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9EAA5A2A-CBA8-4CCC-BE8F-74FC713DEBA2}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9EB1278D-4FE3-4CF5-A0E0-C37D08BF0768}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{9F338865-DCC7-4C57-B9B4-D952503C90D7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A0DBE649-AE96-44BC-8573-9BA73EDA5677}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A15E0F23-D557-47BF-85C0-1F7B404F8B0E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A1AC3178-27C4-4575-936F-7BDF31415BAC}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A1AE081E-8354-4927-BEF8-F1AC8C4CC768}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A1BF4058-C3FD-4B97-B81C-E023AC3F289C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A1C74C9B-E721-49C4-9A33-894DDF6AC356}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A2A7F3D0-86D4-4A58-85DB-51C1586690C5}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A2BB8CA2-8B26-4462-8EB3-F302BF37AB90}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A388B803-7F8F-42E7-8945-4A436E14C710}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A3D79B22-EC1B-4009-B137-5E43BB6219DE}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A46117F4-8537-4B24-9BD7-6A59238C391E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A53EC1A3-7524-4859-A822-FB36B64DE1C3}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A5A56B27-F724-4297-AFFE-CD29D9008F6A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A62CB263-684C-4F9C-A03C-A114EBA4D69C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A64844E2-7EE3-4E41-A727-83D454B1D98C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A6754E42-0393-4A8D-A113-D6CA0E172CAD}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A69B3F68-2D50-4EE1-A5FB-4100FC0B8CB8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A6A2A4B8-1951-4310-9B3E-7E44D2C9A862}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A7303856-E029-40BE-8871-B9C3CD9B9BDE}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A7A39031-BE58-401B-B4C7-B5E4E3680AD6}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A7C49853-6F4E-4968-A8EE-5B457EE21B6B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A7FE4D2C-AA6E-49DE-8643-C17DA89B60CA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A8834366-9160-42C0-B986-06A532DAC2D5}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A8B0301F-7656-4B47-AEE9-07B37CCD8150}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A8CB5C75-505F-4E33-947A-58E45EB0FCD0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A907CF08-0E5D-41EB-88C3-4AB280D1E9AF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A90EA5B5-382D-4780-9CF9-70CCE43EA56A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A97A4582-E81D-47CA-9D88-BE55CD1CFE56}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A9CE62B0-0A4D-447B-B53C-A8A0C4C10A03}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{A9D63D08-6165-4765-9E7E-217074BA7675}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{AA1D4F6D-BCCB-446C-BD21-C10B2F169E4B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{AB74DD0D-6934-466D-90BD-4D5DA871FC0A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{AB95C223-6EFE-466E-8550-014433B0D87D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{ACBB5314-F375-4572-A228-545AC7C601F8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{ACE31B25-DC3C-4313-B48F-E2ACA5EB3978}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{AD1BA74B-507D-4595-A2CF-7CCDEA80F1C1}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{AD2460D0-DFF2-4BB4-9E4B-B0BDD08E2753}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{AD97D65F-BA38-41C8-9CE5-ACBB34456477}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{ADBDCFA4-ABDA-4BC5-A360-757F346A3920}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{ADE6DCD6-3A60-4BDD-AC7E-0F662F115BE9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{AEF813D4-DE2A-4CD0-8D58-C76F4997C428}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{AF34B37D-2749-46CF-91AF-F092BCEEEA4C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{AF3AD017-FB95-4671-B8E8-1CE2CE362759}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{AFD85A98-508F-41DB-8A6B-88AA1F7C6FCF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B1578E2C-6BE7-45EE-AB81-2589F8AA8D1D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B1FACE79-4346-4B27-9EAE-6768E72EC93B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B21FEBD8-027A-4B69-96BA-0175C5C6D523}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B24BF7E6-8EF6-4164-A799-2E5BC034CCE2}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B3218BBA-488F-464D-8E58-0515E761038B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B3AC106C-802B-499B-9C54-719BEBFC90A8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B41833D6-B10F-4403-9718-5A0EF7763BFB}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B49F59B1-E766-41C9-9DB2-D7E80E7E84AC}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B4B71789-748C-494A-A360-BA7F25ED0814}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B5128D36-A5CE-4DB6-BACC-680814835B3A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B5722CD4-57EB-4615-8AC4-0DFBCDECAF32}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B5CA389B-19E9-4428-916B-1B14F8B09F1F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B6EE3B82-F93B-434F-A018-581E6F655129}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B6F92534-1693-4710-A61E-D47964716531}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B708990E-E897-4985-AA3A-61C7D0069ACF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B750B5C5-C049-4CE9-A4F3-B098E72BCE4C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B75EE75E-E3B8-4D11-B3E8-563BCE8F248D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B789FED0-1A33-42A3-8F54-895DA73FED07}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B7B7DD91-D1F6-47F9-B186-CDDDCCF412E1}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B7C41F3B-1D64-4AD3-9C56-C06962C0D5AF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B8972B6A-E1DB-4CD7-AF42-DBF979B15DBD}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B89C8DCF-6355-44B0-9DD7-F5343155241F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B8D3E701-8CB0-401E-AADF-97B9D46B2FB5}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B919A8A7-5B7F-4638-A3D5-8C163397ACAF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B919ED93-0823-461A-AC27-E076EB24C342}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B972FC59-7BDA-4FD5-AE48-CF75B288304E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B9A08CF9-5F67-497C-B434-729470264BBF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{B9ADA2B0-03A6-4A52-AD30-CD0BE41FAE46}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{BA08AC94-2AD6-4851-ACCE-8657A9165EBB}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{BA97C8CF-0641-430B-BF66-8752FA56B701}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{BA986812-9EDA-4321-9299-FE13E6F26EE8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{BAA218FD-1DEC-452D-8C95-C78E2A5D702B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{BB24D1F7-0F4E-4284-A396-66BEE9975F4F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{BBFD08A0-E832-43B8-A435-C85DB67B2E90}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{BBFE9405-031B-48DA-977E-853258DC407A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{BC701AF5-978F-4CAE-86AF-EE8B696DA0EE}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{BC7D181B-04D7-481D-B5A4-030054EC9EED}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{BD081688-652F-4F61-9EE1-2287B41B13BA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{BD38A774-9DC5-4206-AA76-1FFEE303AA9E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{BD3C3172-D381-4920-8723-BCFBFF852799}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{BD5BA441-62B6-49EB-992A-E462B012DCC8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{BE79C3AB-14D2-4824-9480-98A3A8B946AE}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{BE7EBD2C-F4DD-4FCE-8B69-AF9E7D59566F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C094AF96-9001-4C4E-BEBF-DAA2782FC128}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C17695F6-0F61-44C3-89CA-0CFE5BEF91DC}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C222AD40-4444-4D2F-9DA8-81F80D6FA55F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C23BC8F5-3903-47D9-BC92-5C3D47235F43}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C25E92D7-3F53-4AA1-B3A6-516FBFD02BEA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C2A80878-3512-420C-A254-F55290FA184E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C3C1CECE-17A0-4D51-9E5D-D1D38024EB08}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C3D05EA3-31E3-4B0C-98E2-DB02EA0A2F6F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C43E0E0A-A74B-4FD5-BD0B-7D3D5AD58070}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C44E4A74-F084-4F5D-8A58-92C4EF74324E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C56D7DA0-86FA-456B-88E0-49B603B9C14E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C58D67E3-0E22-486C-A70E-3BD0346100A9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C6301557-5F55-4630-8C6E-BB3118E494EC}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C72A8BAA-5B80-4773-AFD9-F3A4A3FD39FA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C8125392-1479-468E-942E-57E5351A5F76}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C8141818-A6CB-46BB-85C5-1CC00D508E03}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C82FA171-E2F4-4016-8594-1116CA55F6E0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C84484A7-9A6D-4EDD-8210-9157AC12AD1C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C88428CE-130D-43EB-9AF7-BEC4E05E4F49}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C8B80460-0D40-4B5A-BA30-DD92AC1E5B52}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C8EC10D5-B511-4D43-B11E-9B599B0A1068}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C92940D1-08E2-4813-9DB6-C2EC964CFA04}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C95206EB-3B0A-4F80-9169-50E0301E35ED}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C9D3C046-EE94-4112-963C-C89A5C652BBB}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{C9E08EF3-83B5-4E56-B34A-6DF751FD3D48}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CA04A9EE-9929-437E-ACE6-A41DDEE6AF4F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CA8327FB-2BF4-44AC-BFDB-019AD0338A40}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CAEC55B3-C2C0-4D93-9691-BA2A8A766E8D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CB0DB7CC-FDD1-470C-B6E7-967469DD83D5}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CB2AB324-FEF8-4B76-A41C-E3EEE4F2E47E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CB5A65B2-AFFF-4726-8CA5-CEAF09C72BB7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CB7830C4-69ED-4454-9C9A-CBFF7A734D8E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CBA4CD6B-194D-42BB-B363-B6A172FDF604}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CBC10C76-6E8A-4DE1-860A-FCE8C2B366CD}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CBD7E6F9-490B-4797-8FA8-75C902D828C9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CC80BA9E-9E8A-4291-AC35-F3D3B8CF4C0F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CC899BA1-205C-4EE9-8E05-7DFA5C9DB311}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CC9A5085-05CF-44AE-AA3E-9E13B96AA827}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CCC5A7F6-732D-4F14-8B19-128FC56B36EF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CCC966BE-D8AB-4B55-AE3B-F505ED84C5BF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CD2E1F3C-9EAF-43AD-A776-9874199299B3}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CDBFBBA0-BC2C-44B7-9F84-C2CDE5286CA2}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CED15A37-9BF8-4065-AB1E-DB707C27AF65}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CF1E4879-C92A-427D-9E48-D14C0C2D4C91}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CFB7649B-882A-4AD7-AD90-AA2CE1C53066}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{CFC7A3DC-C82B-483B-AD08-1C7295573AF1}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D0676C1C-46A8-4A41-A195-EDEDBB343276}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D0BF427A-0BE3-4C24-821B-1A94F071B62B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D0CF1737-E2E9-4196-B4A1-9F749F33C9BE}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D144747D-96D4-4FB8-90A1-F2F87E9B2A69}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D1C81673-878A-45B6-AE1F-38AE34BFB373}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D1E63424-F4E6-4418-8898-F261C6142C84}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D28C8051-DD9E-4028-9014-C256216E9CF9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D2ED7D4E-079D-4370-9EDB-04297D563D7D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D3564F9C-EECD-4144-BC34-63B7B00DD148}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D38ACD72-82E6-4FB5-A409-5AD6CC029DD1}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D3D651E9-EEC7-4C0B-B1CF-CA840B55BD71}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D43C4795-C284-4D5B-8BB4-37B8F9DBBCCA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D44ED6C9-291C-4113-A3E8-48A7E57246AC}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D5033F95-CAB0-43EE-88A7-0D16DC8918EC}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D54842B9-B4D2-4E38-A4A2-9568047B3D80}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D6568D77-6D38-4FCE-9736-0780237F935A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D65BA90A-A277-4E63-BE73-03436A63A5AD}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D698A24E-5454-47A7-A41B-6DDE2CA1D262}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D6BC1558-6001-4D3E-A99D-27DAB4B8DCA4}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D73624E9-9354-4497-B43D-2FF7F3EA76C7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D78614A1-4BF2-4E4C-91BE-4C1DE94CB72C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D787D1BA-6494-4B53-A7F7-D01E369EDFB7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D7FD7A6F-FD79-49A0-8FC3-91707B83295A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D8243F8D-A0D3-4DAA-AE88-4538A5502AE9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D8AF1FFF-A85F-4FA6-91B0-3DAC4A90E0D9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D8B1EE5A-5B62-4B0E-8181-EEB593A0C872}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D8B94A29-3BF5-4563-A4CD-F76C3CBCB695}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D91AFB23-5FF8-4B14-A360-D1FEB53173F8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D984D0BF-CB49-4221-995E-69BEEF20FE39}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{D9D2AE3F-7EE2-46AB-918A-4A56E7357E1A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DA45C36E-C474-4CDB-8872-7D0CC9EEBF8C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DB79E780-34F2-4727-8D09-1BFF439FC5E3}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DBABAB6A-4E18-4662-AB7F-DFADB722D9A6}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DBC99A8F-6C63-4228-BD04-6B53659CB2EC}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DBE0A9EC-4BCF-4BBA-8119-788C7587D750}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DC12BB02-4C1D-43BB-99F8-5CBC2CC4A41E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DC2ABF1F-E9E3-4050-9FBA-9EFA9B1D1B11}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DD18C485-AED1-4B97-832F-8B792BB14227}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DDD06B99-540C-46F9-A161-29DE138C16B1}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DE1A6AA9-2107-4074-9EA1-45F988F106D7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DE48B46A-CA21-4A9A-9F7A-55C11B36BB51}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DE891AD2-E041-4375-ABB9-07E2BB1F5591}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DE9F75C8-166A-4974-B05A-33E6E00DCA82}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DEB4251E-4126-402C-9819-6473D653E071}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DEF01429-FC42-42FD-805F-27C65B134368}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DF08E718-7440-4D12-9D41-3705465F5EC7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DF17FCD7-04C0-4D7A-B15F-44C41E1075EE}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DF65E2A4-9416-44B3-BB4F-2A98D94E7776}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DFBF4487-DE7A-44A3-B897-95BDC9D9D94D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DFD1FADD-E95E-4667-98B4-9C3E04045C32}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{DFF511A3-BE82-4745-8C14-BE06278A0DB6}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E00ADA30-6242-4258-AE0D-D0BE4E24C90A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E0318E3D-D264-46E6-88A4-EE628C79A7CC}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E097B2EE-08DA-476C-8D0B-039BC04533DB}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E0AAD238-9F27-47C8-A466-BB6BDBBE1CD0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E0B56F9D-6931-4317-83B3-A07BA8CDBDE8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E13DF030-ACC0-46A6-84DD-C96DB9A9BAD2}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E1FF1EF8-4997-489E-B086-2EAF3FC4474D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E2FD9D17-6B57-46B3-BE8A-2CBC5CD455D7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E37CCF41-F2BB-4441-A920-BEEAE1D970AF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E3BA3AF9-7F05-4AB6-B584-B568E261067D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E3D95931-EA09-4658-9C65-A522CF72BBF0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E414FBA5-0D95-4894-8F4D-F2CEC903E436}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E427BD26-6B9F-42BE-89FA-8296601DB958}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E4D1E663-2412-4573-AC0C-A4BDC0937CB0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E53E5424-B870-448A-B076-D11A7DEC8496}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E598BF20-B003-428E-972E-3BE7AB2EA273}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E5A3BFDD-1C83-41DA-ACC5-AF7601C3DB4C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E5CC802D-A4F6-4B5B-B1E5-1B1930D7317B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E5EBFE87-8D82-4FBB-A42B-63FA758F174A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E620B822-2DD0-4226-91EE-7B58DF746BCA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E6A517C1-9A70-4C6C-BDDB-82D1856A1BF5}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E6BD1B97-38A9-463E-B5FE-89BB88B5C3FF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E6F74EB0-E10B-4F30-A031-A2CC57E2571C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E77AAE31-9B5C-478D-9C87-484EB5355FE5}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E78485BB-19B3-4266-9F5F-4B3E93EB2F86}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E7C4C473-0317-4B82-9B00-9960DC91BA45}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E7DBF0CE-8251-4C4B-9107-62092F50CB5B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E905D07E-4E5D-400A-84D8-A37AAF7B5A16}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E94B2993-F846-4467-BE0B-E9AC5A884787}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E958B029-7456-4171-9594-A80F4E37E9A5}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{E9A06A87-7F80-413F-A877-1CFFCF5EAA85}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{EA5826C5-E1D3-48A2-A758-0C7224A25191}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{EA733DDF-19FD-4CAB-9C15-CB2A6DCE7422}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{EAA4D70B-8F1D-4F12-9B69-A8E2F9702A58}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{EAB57B0B-C6D5-42C4-8670-0D3A89CB3593}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{EACED17F-73E3-4DB7-B531-C51676F5E308}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{EB80B4DB-D82B-49B2-83B7-AFFCA71AAA6A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{ECB6DD17-0DA3-4CD4-A4B8-7896DC28EE1A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{ED276911-97DF-4292-B25F-E5CB384565FC}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{ED910AD6-7AB7-466C-A559-037692A97815}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{EDBA5430-498B-49D5-8FBD-EA4B84F5CA8D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{EDEB90CD-0B49-4407-A595-D8845DB061D2}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{EE288FAE-83BE-44A0-BA01-E41291979856}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{EE3461D3-FE4C-4F42-B627-4AC18B32E017}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{EE92C5FB-2CF8-449C-9F72-74E8100A51C9}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{EEA9850D-6C0E-47D9-9D49-16E971258E95}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{EEEE1238-3A0A-4484-B6B7-C14085CC7394}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{EEEF3A9B-EADF-456D-987C-5B4F34FE8A90}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{EFE68F8A-D19B-4A4E-A48A-42DC6CA7AB8E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F0879F05-D607-40FA-9DB3-6B0931F28657}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F08B6FC2-7452-4605-97F1-9C7103778174}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F0B4FAE6-0C20-4C63-AB66-ABD0DFC0402C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F0B665DC-C234-4257-8EEC-F4464AF5897D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F1383CCB-6E24-48BC-909B-CB671F1F0B00}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F13FCBF7-9032-4488-9FE7-F883890D4CF2}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F1997BAD-EEB7-4CF7-8797-1D71226B1B4D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F1BD0F87-D67A-4D47-84E2-4BFADC826D91}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F1D515AB-B196-4EED-AB1E-58C95C07266B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F2190061-7A18-4647-8185-60EAFDEE2F43}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F27173DF-C336-4631-98FE-494A0302106B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F2F15D67-C030-4BC2-A991-5B89ACA7C630}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F32D51A0-9BCA-4156-9231-A07D1A877A6A}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F393E470-C947-48F4-9A19-DBAFCD0519E1}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F407B5ED-7142-4175-8190-1034EEED1F49}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F4B6876C-9124-4E8C-9AA4-4DFED9B3417B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F4FBE449-FEEE-4EE8-BEA1-0F29784F9136}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F4FCD474-5C31-47A2-8E89-53D440FA6445}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F5394730-BD2B-4EEA-AA94-2FE72B00F7E8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F5402F2D-EE43-4CB3-995A-D67A53F5CBE8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F5547BFD-0270-46B6-9DEE-DFFDD933A76B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F6559F48-7D79-40E2-B5F8-16457DF0EF17}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F664A81A-C604-47DA-9EAE-245294791818}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F6EF681C-A810-4EA0-ADF9-FA7E8096169B}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F7381787-EA19-4EE9-B67E-761CA6D938E4}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F8B307CD-7B8A-4EDD-A8B2-ECD9D0045C52}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F8F29A04-4765-4FEB-A976-A46C525F3E9C}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F924C813-F585-4D2A-8F2E-6C691F8BDC6F}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{F9B11F26-488E-4018-ABEC-062E2C7EB76D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FA23C45D-2149-4A15-8809-6D90BD07A7E0}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FA377319-F68E-4E1C-AFFF-760F55E1E9EE}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FA786B78-ABC3-472A-B6A7-C7C0AC1F9727}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FAA8CE17-6B0B-46B1-B9D1-2C6910B71276}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FAC389C8-6A63-4040-8E15-4C9777D820AA}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FB2581E2-23B5-46DA-ACBE-39E9DDC83EDC}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FBA70E27-A24B-40AE-BD5C-79D4DB3BA386}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FBB871C3-A20B-49E4-927B-809A1E37D9BB}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FBCF58A6-A24A-4337-A84B-EFD82AB45E59}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FBDDA6F4-D4BD-4531-8DD7-A17979B34EC7}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FBE012CA-42C5-40E8-9FE0-276785671CAE}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FCA2A05A-522F-49A8-86C0-B0997669DFF3}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FCF872D9-F28D-4291-9EE6-0396BBD4CD73}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FCFE3B0A-81FF-4399-A8D0-9986980810BD}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FD124044-67CD-4EF7-9755-932C8B9B18EE}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FD167A57-EE6C-44EE-BF97-9A2DB9C28BC3}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FDC61C17-4717-4A06-889F-744DAD1E3BA1}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FE3C8C43-0E28-4C04-BFC8-43FA95D129D1}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FE5496DF-4A71-4568-91C6-A83FC05399BF}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FE5FD6E6-8AE7-4C06-AC5D-BAFA7550720E}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FE7599D3-1B4B-4AB4-8487-3FFD0787678D}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FEC1E7A8-ED1F-4FED-BB22-D7292B39FFA4}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FF033D67-58BB-4622-A4AE-68B55692BB72}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FF5EEF89-8C9A-4829-81CB-018EA5FDABC8}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FF9B5BB3-F5CF-439C-9FEA-0C3647740FAB}
Successfully deleted: [Empty Folder] C:\Users\Carla\appdata\local\{FFFDB79A-50C5-41FF-8235-8330EF3A7B5E}



~~~ FireFox

Successfully deleted: [File] C:\Users\Carla\AppData\Roaming\mozilla\firefox\profiles\vvk1xh17.default\extensions\fiimbvwtnu@fiimbvwtnu.org.xpi [Tracur]
Emptied folder: C:\Users\Carla\AppData\Roaming\mozilla\firefox\profiles\vvk1xh17.default\minidumps [2750 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sat 11/23/2013 at 16:19:05.77
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

ken545
2013-11-24, 01:15
Thats fine, sometimes you have to do that when logs are large. Lots of junk removed

OTL by OldTimer

Download OTL (http://oldtimer.geekstogo.com/OTL.exe) to your desktop.
Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
When the window appears, underneath Output at the top change it to Minimal Output.
Click the "Scan All Users" checkbox.
Check the boxes beside LOP Check and Purity Check.
Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.

When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt.
Note:These logs can be located in the OTL. folder on you C:\ drive if they fail to open automatically.
Please copy (Edit->Select All, Edit->Copy) the contents of these files, one at a time, and post it with your next reply. You may need two posts to fit them both in.

c_lady
2013-11-24, 02:11
OTL logfile created on: 11/23/2013 6:54:46 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Carla\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16736)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

5.91 Gb Total Physical Memory | 4.20 Gb Available Physical Memory | 71.11% Memory free
11.82 Gb Paging File | 9.99 Gb Available in Paging File | 84.56% Paging File free
Paging file location(s): ?:\pagefile.sys

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 582.80 Gb Total Space | 525.07 Gb Free Space | 90.09% Space Free | Partition Type: NTFS

Computer Name: CARLA-PC | User Name: Carla | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Users\Carla\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
PRC - C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AVAST Software)
PRC - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
PRC - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation)
PRC - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation)
PRC - C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\ccsvchst.exe (Symantec Corporation)
PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
PRC - C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\STService.exe ()
PRC - C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe (SoftThinks SAS)
PRC - C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe (Creative Technology Ltd)
PRC - C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe ()
PRC - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Intel Corporation)
PRC - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Intel Corporation)
PRC - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe (Safer Networking Ltd.)


========== Modules (No Company Name) ==========

MOD - C:\Program Files\AVAST Software\Avast\libcef.dll ()
MOD - C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll ()
MOD - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
MOD - C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\wincfi39.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll ()
MOD - C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\STService.exe ()
MOD - c:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\SQLite352.dll ()
MOD - C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe ()


========== Services (SafeList) ==========

SRV:[b]64bit: - (avast! Antivirus) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AVAST Software)
SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV:64bit: - (STacSV) -- C:\Program Files\IDT\WDM\stacsv64.exe (IDT, Inc.)
SRV:64bit: - (btwdins) -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (Broadcom Corporation.)
SRV:64bit: - (EvtEng) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel(R) Corporation)
SRV:64bit: - (MyWiFiDHCPDNS) -- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe ()
SRV:64bit: - (RegSrvc) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel(R) Corporation)
SRV:64bit: - (TurboBoost) -- C:\Program Files\Intel\TurboBoost\TurboBoost.exe (Intel(R) Corporation)
SRV:64bit: - (wlcrasvc) -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe (Microsoft Corporation)
SRV:64bit: - (AESTFilters) -- C:\Program Files\IDT\WDM\AESTSr64.exe (Andrea Electronics Corporation)
SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
SRV - (sftvsa) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation)
SRV - (sftlist) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation)
SRV - (N360) -- C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\ccSvcHst.exe (Symantec Corporation)
SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (MBAMScheduler) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
SRV - (SkypeUpdate) -- C:\Program Files (x86)\Skype\Updater\Updater.exe (Skype Technologies)
SRV - (SftService) -- C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe (SoftThinks SAS)
SRV - (DellDigitalDelivery) -- c:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe (Dell Products, LP.)
SRV - (RoxWatch12) -- C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe (Sonic Solutions)
SRV - (RoxMediaDB12OEM) -- C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe (Sonic Solutions)
SRV - (Bluetooth Media Service) -- C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Intel Corporation)
SRV - (Bluetooth Device Monitor) -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Intel Corporation)
SRV - (NOBU) -- C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe (Dell, Inc.)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)


========== Driver Services (SafeList) ==========

DRV:64bit: - (aswSnx) -- C:\Windows\SysNative\drivers\aswSnx.sys (AVAST Software)
DRV:64bit: - (aswSP) -- C:\Windows\SysNative\drivers\aswSP.sys (AVAST Software)
DRV:64bit: - (aswVmm) -- C:\Windows\SysNative\drivers\aswVmm.sys ()
DRV:64bit: - (aswMonFlt) -- C:\Windows\SysNative\drivers\aswMonFlt.sys (AVAST Software)
DRV:64bit: - (aswRvrt) -- C:\Windows\SysNative\drivers\aswRvrt.sys ()
DRV:64bit: - (aswTdi) -- C:\Windows\SysNative\drivers\aswTdi.sys (AVAST Software)
DRV:64bit: - (aswFsBlk) -- C:\Windows\SysNative\drivers\aswFsBlk.sys (AVAST Software)
DRV:64bit: - (aswRdr) -- C:\Windows\SysNative\drivers\aswRdr2.sys (AVAST Software)
DRV:64bit: - (SymEvent) -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS (Symantec Corporation)
DRV:64bit: - (Sftvol) -- C:\Windows\SysNative\drivers\Sftvollh.sys (Microsoft Corporation)
DRV:64bit: - (Sftredir) -- C:\Windows\SysNative\drivers\Sftredirlh.sys (Microsoft Corporation)
DRV:64bit: - (Sftplay) -- C:\Windows\SysNative\drivers\Sftplaylh.sys (Microsoft Corporation)
DRV:64bit: - (Sftfs) -- C:\Windows\SysNative\drivers\Sftfslh.sys (Microsoft Corporation)
DRV:64bit: - (SymEFA) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\symefa64.sys (Symantec Corporation)
DRV:64bit: - (SymDS) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\symds64.sys (Symantec Corporation)
DRV:64bit: - (SRTSP) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\srtsp64.sys (Symantec Corporation)
DRV:64bit: - (SymNetS) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\symnets.sys (Symantec Corporation)
DRV:64bit: - (ccSet_N360) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\ccsetx64.sys (Symantec Corporation)
DRV:64bit: - (MBAMProtector) -- C:\Windows\SysNative\drivers\mbam.sys (Malwarebytes Corporation)
DRV:64bit: - (SRTSPX) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\srtspx64.sys (Symantec Corporation)
DRV:64bit: - (USBAAPL64) -- C:\Windows\SysNative\drivers\usbaapl64.sys (Apple, Inc.)
DRV:64bit: - (GEARAspiWDM) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys (GEAR Software Inc.)
DRV:64bit: - (SymIRON) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\ironx64.sys (Symantec Corporation)
DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (ApfiltrService) -- C:\Windows\SysNative\drivers\Apfiltr.sys (Alps Electric Co., Ltd.)
DRV:64bit: - (tixhci) -- C:\Windows\SysNative\drivers\tixhci.sys (Texas Instruments Incorporated)
DRV:64bit: - (tihub3) -- C:\Windows\SysNative\drivers\tihub3.sys (Texas Instruments Incorporated)
DRV:64bit: - (igfx) -- C:\Windows\SysNative\drivers\igdkmd64.sys (Intel Corporation)
DRV:64bit: - (STHDA) -- C:\Windows\SysNative\drivers\stwrt64.sys (IDT, Inc.)
DRV:64bit: - (CtClsFlt) -- C:\Windows\SysNative\drivers\CtClsFlt.sys (Creative Technology Ltd.)
DRV:64bit: - (NETwNs64) -- C:\Windows\SysNative\drivers\NETwNs64.sys (Intel Corporation)
DRV:64bit: - (BTWAMPFL) -- C:\Windows\SysNative\drivers\btwampfl.sys (Broadcom Corporation.)
DRV:64bit: - (btwl2cap) -- C:\Windows\SysNative\drivers\btwl2cap.sys (Broadcom Corporation.)
DRV:64bit: - (btwrchid) -- C:\Windows\SysNative\drivers\btwrchid.sys (Broadcom Corporation.)
DRV:64bit: - (btwavdt) -- C:\Windows\SysNative\drivers\btwavdt.sys (Broadcom Corporation.)
DRV:64bit: - (btwaudio) -- C:\Windows\SysNative\drivers\btwaudio.sys (Broadcom Corporation.)
DRV:64bit: - (nusb3xhc) -- C:\Windows\SysNative\drivers\nusb3xhc.sys (Renesas Electronics Corporation)
DRV:64bit: - (nusb3hub) -- C:\Windows\SysNative\drivers\nusb3hub.sys (Renesas Electronics Corporation)
DRV:64bit: - (TurboB) -- C:\Windows\SysNative\drivers\TurboB.sys (Intel(R) Corporation)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (iaStor) -- C:\Windows\SysNative\drivers\iaStor.sys (Intel Corporation)
DRV:64bit: - (btmaux) -- C:\Windows\SysNative\drivers\btmaux.sys (Intel Corporation)
DRV:64bit: - (iBtFltCoex) -- C:\Windows\SysNative\drivers\iBtFltCoex.sys (Intel Corporation)
DRV:64bit: - (RSUSBSTOR) -- C:\Windows\SysNative\drivers\RtsUStor.sys (Realtek Semiconductor Corp.)
DRV:64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek )
DRV:64bit: - (btmhsf) -- C:\Windows\SysNative\drivers\btmhsf.sys (Intel Corporation)
DRV:64bit: - (IntcDAud) -- C:\Windows\SysNative\drivers\IntcDAud.sys (Intel(R) Corporation)
DRV:64bit: - (MEIx64) -- C:\Windows\SysNative\drivers\HECIx64.sys (Intel Corporation)
DRV:64bit: - (PxHlpa64) -- C:\Windows\SysNative\drivers\PxHlpa64.sys (Sonic Solutions)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:64bit: - (WimFltr) -- C:\Windows\SysNative\drivers\WimFltr.sys (Microsoft Corporation)
DRV - (eeCtrl) -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys (Symantec Corporation)
DRV - (EraserUtilRebootDrv) -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys (Symantec Corporation)
DRV - (IDSVia64) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\IPSDefs\20131122.001\IDSviA64.sys (Symantec Corporation)
DRV - (BHDrvx64) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\BASHDefs\20131114.001\BHDrvx64.sys (Symantec Corporation)
DRV - (NAVEX15) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\VirusDefs\20131121.023\ex64.sys (Symantec Corporation)
DRV - (NAVENG) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\VirusDefs\20131121.023\eng64.sys (Symantec Corporation)
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {49606DC7-976D-4030-A74E-9FB5C842FA68}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{49606DC7-976D-4030-A74E-9FB5C842FA68}: "URL" = http://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{49606DC7-976D-4030-A74E-9FB5C842FA68}: "URL" = http://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-403588509-1578940831-2739536460-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/USCON/1
IE - HKU\S-1-5-21-403588509-1578940831-2739536460-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKU\S-1-5-21-403588509-1578940831-2739536460-1001\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-403588509-1578940831-2739536460-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR
IE - HKU\S-1-5-21-403588509-1578940831-2739536460-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-403588509-1578940831-2739536460-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..browser.search.order.1: "Yahoo"
FF - prefs.js..browser.search.order.2: ""
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.suggest.enabled: false
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "https://www.google.com/"
FF - prefs.js..extensions.enabledAddons: wrc%40avast.com:9.0.2006.53
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:25.0.1
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Web Player Plug-In,version=1.0.0: C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\coFFPlgn\ [2013/11/23 13:07:02 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\IPSFF [2013/10/10 03:12:17 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2013/11/16 18:32:31 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/11/15 20:53:25 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/11/15 20:53:26 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/11/15 20:53:25 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/11/15 20:53:26 | 000,000,000 | ---D | M]

[2011/08/23 13:52:07 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Carla\AppData\Roaming\Mozilla\Extensions
[2013/11/23 16:16:55 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Carla\AppData\Roaming\Mozilla\Firefox\Profiles\vvk1xh17.default\extensions
[2013/01/23 09:18:25 | 000,401,328 | ---- | M] () (No name found) -- C:\Users\Carla\AppData\Roaming\Mozilla\Firefox\Profiles\vvk1xh17.default\extensions\jid1-xUfzOsOFlzSOXg@jetpack.xpi
[2013/11/15 20:53:25 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2013/11/15 20:53:25 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
[2013/11/15 20:53:25 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}
[2013/11/15 20:53:25 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013/11/15 20:53:33 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2013/11/16 18:32:31 | 000,000,000 | ---D | M] (avast! Online Security) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
CHR - Extension: Google Docs = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0\
CHR - Extension: Google Docs = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\
CHR - Extension: Google Drive = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0\
CHR - Extension: YouTube = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: YouTube = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Google Search = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: avast! Online Security = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2005.45_0\
CHR - Extension: Norton Identity Protection = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2013.4.3.4_0\
CHR - Extension: Google Wallet = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0\
CHR - Extension: DivX Plus Web Player HTML5 \u003Cvideo\u003E = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\
CHR - Extension: Gmail = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
CHR - Extension: Gmail = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\

O1 HOSTS File: ([2009/06/10 16:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (avast! Online Security) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:64bit: - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No CLSID value found.
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (Norton Identity Protection) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\coieplg.dll (Symantec Corporation)
O2 - BHO: (Norton Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\ips\ipsbho.dll (Symantec Corporation)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3:64bit: - HKLM\..\Toolbar: (avast! Online Security) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\coieplg.dll (Symantec Corporation)
O3 - HKLM\..\Toolbar: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:64bit: - HKLM..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.)
O4:64bit: - HKLM..\Run: [BTMTrayAgent] C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll (Intel Corporation)
O4:64bit: - HKLM..\Run: [DellStage] C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe ()
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IntelTBRunOnce] wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs" File not found
O4:64bit: - HKLM..\Run: [IntelWireless] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel(R) Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [QuickSet] c:\Program Files\Dell\QuickSet\quickset.exe (Dell Inc.)
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [20131121] C:\Program Files\AVAST Software\Avast\setup\emupdate\c4f64daa-94ed-4922-b3e9-7e0688e94327.exe (AVAST Software)
O4 - HKLM..\Run: [AccuWeatherWidget] C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe ()
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
O4 - HKLM..\Run: [Dell DataSafe Online] C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuClient.exe (Dell, Inc.)
O4 - HKLM..\Run: [Dell Webcam Central] C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [Desktop Disc Tool] C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe ()
O4 - HKLM..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe (DivX, LLC)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\S-1-5-21-403588509-1578940831-2739536460-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:64bit: - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8:64bit: - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra 'Tools' menuitem : @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {5EA13312-8764-496F-B4AB-F7A872B51E14} https://oovoowww3-a.akamaihd.net/oovoomelink/oovoome/webvc/ooVooWeb.dll (ooVooWebCtrl Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6644228F-02DE-4AD4-87A1-8D5284F2BE18}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C077BD2A-A1D4-4AF2-8DDA-9A3999F1A78C}: DhcpNameServer = 10.1.10.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\livecall - No CLSID value found
O18 - Protocol\Handler\msnim - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{978c5d04-cdc6-11e0-80cd-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{978c5d04-cdc6-11e0-80cd-806e6f6e6963}\Shell\AutoRun\command - "" = D:\PC_Clickme.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2013/11/23 16:09:05 | 000,000,000 | ---D | C] -- C:\Windows\ERUNT
[2013/11/23 12:04:55 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2013/11/21 21:01:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX
[2013/11/16 18:52:52 | 000,000,000 | ---D | C] -- C:\N360_BACKUP
[2013/11/16 18:37:12 | 000,000,000 | ---D | C] -- C:\Users\Carla\AppData\Roaming\AVAST Software
[2013/11/16 18:36:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
[2013/11/16 18:34:47 | 000,000,000 | ---D | C] -- C:\Users\Carla\AppData\Local\Google
[2013/11/16 18:34:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
[2013/11/16 18:32:48 | 001,032,416 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2013/11/16 18:32:48 | 000,065,264 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswTdi.sys
[2013/11/16 18:32:47 | 000,409,832 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2013/11/16 18:32:46 | 000,084,328 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2013/11/16 18:32:46 | 000,038,984 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2013/11/16 18:32:45 | 000,092,544 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2013/11/16 18:32:31 | 000,334,648 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2013/11/16 18:32:27 | 000,043,152 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2013/11/16 18:31:38 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2013/11/16 18:30:14 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2013/11/16 17:18:08 | 000,000,000 | ---D | C] -- C:\Windows\11-16-2013
[2013/11/16 17:17:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ERUNT
[2013/11/16 17:17:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ERUNT
[2013/11/15 20:53:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2013/11/13 03:04:58 | 000,391,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2013/11/13 03:04:57 | 000,526,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2013/11/13 03:04:55 | 000,136,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2013/11/13 03:04:55 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2013/11/13 03:04:55 | 000,089,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2013/11/13 03:04:55 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2013/11/13 03:04:55 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2013/11/13 03:04:55 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2013/11/13 03:04:55 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2013/11/13 03:04:55 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2013/11/13 03:04:55 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2013/11/13 03:04:53 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2013/11/13 03:04:53 | 000,690,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2013/11/13 03:04:53 | 000,603,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2013/11/13 03:04:52 | 003,959,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2013/11/13 02:36:24 | 001,474,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2013/11/13 02:36:17 | 001,930,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2013/11/13 02:36:17 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2013/11/13 02:36:17 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\credui.dll
[2013/11/13 02:36:17 | 000,190,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmartcardCredentialProvider.dll
[2013/11/13 02:36:17 | 000,152,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
[2013/11/13 02:36:11 | 001,447,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2013/11/13 02:36:11 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2013/11/13 02:36:11 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2013/11/13 02:36:11 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2013/11/13 02:36:11 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2013/11/13 02:36:08 | 000,404,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2013/11/13 02:36:07 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nshwfp.dll
[2013/11/13 02:36:07 | 000,656,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshwfp.dll
[2013/11/13 02:36:07 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FWPUCLNT.DLL
[2013/11/13 02:36:07 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FWPUCLNT.DLL
[2013/11/03 15:46:05 | 000,000,000 | ---D | C] -- C:\Users\Carla\Desktop\view_certificate.php_files
[2013/10/25 14:19:53 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2013/10/25 13:41:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
[2013/10/25 13:41:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\QuickTime

========== Files - Modified Within 30 Days ==========

[2013/11/23 18:49:48 | 000,727,398 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013/11/23 18:49:48 | 000,624,864 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013/11/23 18:49:48 | 000,106,950 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013/11/23 18:49:24 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013/11/23 18:48:39 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/11/23 13:11:56 | 000,014,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/11/23 13:11:56 | 000,014,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/11/23 13:02:42 | 463,867,903 | -HS- | M] () -- C:\hiberfil.sys
[2013/11/21 22:14:10 | 000,334,176 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013/11/16 18:36:51 | 000,001,928 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2013/11/16 18:32:30 | 001,032,416 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2013/11/16 18:32:30 | 000,409,832 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2013/11/16 18:32:30 | 000,334,648 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2013/11/16 18:32:30 | 000,205,320 | ---- | M] () -- C:\Windows\SysNative\drivers\aswVmm.sys
[2013/11/16 18:32:30 | 000,084,328 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2013/11/16 18:32:30 | 000,065,776 | ---- | M] () -- C:\Windows\SysNative\drivers\aswRvrt.sys
[2013/11/16 18:32:30 | 000,065,264 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswTdi.sys
[2013/11/16 18:32:30 | 000,038,984 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2013/11/16 18:32:28 | 000,092,544 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2013/11/16 18:32:27 | 000,043,152 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2013/11/16 17:36:19 | 000,000,512 | ---- | M] () -- C:\Users\Carla\Desktop\MBR.dat
[2013/11/03 15:46:08 | 000,006,408 | ---- | M] () -- C:\Users\Carla\Desktop\view_certificate.php.htm
[2013/10/27 12:11:27 | 1060,143,367 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2013/10/25 14:42:45 | 000,000,928 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-403588509-1578940831-2739536460-1001UA.job
[2013/10/25 14:42:45 | 000,000,906 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-403588509-1578940831-2739536460-1001Core.job
[2013/10/25 14:10:15 | 235,447,244 | ---- | M] () -- C:\Users\Carla\Desktop\reg backup.reg

========== Files Created - No Company Name ==========

[2013/11/16 18:36:51 | 000,001,928 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2013/11/16 18:32:48 | 000,205,320 | ---- | C] () -- C:\Windows\SysNative\drivers\aswVmm.sys
[2013/11/16 18:32:48 | 000,065,776 | ---- | C] () -- C:\Windows\SysNative\drivers\aswRvrt.sys
[2013/11/16 17:36:19 | 000,000,512 | ---- | C] () -- C:\Users\Carla\Desktop\MBR.dat
[2013/11/03 15:46:05 | 000,006,408 | ---- | C] () -- C:\Users\Carla\Desktop\view_certificate.php.htm
[2013/10/27 12:11:27 | 1060,143,367 | ---- | C] () -- C:\Windows\MEMORY.DMP
[2013/10/25 14:10:06 | 235,447,244 | ---- | C] () -- C:\Users\Carla\Desktop\reg backup.reg
[2013/05/01 19:21:59 | 001,169,609 | ---- | C] () -- C:\Windows\unins000.exe
[2013/05/01 19:21:59 | 000,081,817 | ---- | C] () -- C:\Windows\unins000.dat
[2013/05/01 19:21:23 | 000,000,258 | RHS- | C] () -- C:\Users\Carla\ntuser.pol
[2013/02/04 18:50:52 | 000,005,120 | ---- | C] () -- C:\Users\Carla\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/04/19 19:12:23 | 000,036,864 | ---- | C] () -- C:\Users\Carla\06091507.dot
[2012/04/08 13:28:38 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat

========== ZeroAccess Check ==========

[2009/07/13 23:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/07/25 21:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/07/25 20:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 20:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 07:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 20:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2013/11/16 18:37:12 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\AVAST Software
[2011/08/23 13:47:11 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\Fingertapps
[2013/07/11 21:31:26 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\Garmin
[2013/08/25 23:19:21 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\PCDr
[2011/09/12 15:45:20 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\SecondLife
[2013/08/15 02:33:44 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\SoftGrid Client
[2012/03/20 18:49:08 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\Tific
[2011/08/23 13:55:59 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\TP

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 127 bytes -> C:\ProgramData\Temp:E1D06077

< End of report >

c_lady
2013-11-24, 02:13
OTL Extras logfile created on: 11/23/2013 6:54:46 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Carla\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16736)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

5.91 Gb Total Physical Memory | 4.20 Gb Available Physical Memory | 71.11% Memory free
11.82 Gb Paging File | 9.99 Gb Available in Paging File | 84.56% Paging File free
Paging file location(s): ?:\pagefile.sys

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 582.80 Gb Total Space | 525.07 Gb Free Space | 90.09% Space Free | Partition Type: NTFS

Computer Name: CARLA-PC | User Name: Carla | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[b]64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- Reg Error: Key error.
https [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- Reg Error: Key error.
https [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{03853A46-B1F4-4E5B-A7E1-1F303C0344D6}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{06E7D57F-A278-45CD-92C8-48D0213759BC}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{0BF9404C-4F11-4747-9CC1-A8499F570FC5}" = rport=137 | protocol=17 | dir=out | app=system |
"{11040016-3A8A-4951-95AA-1CA3F455DCBB}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{11F1293E-4817-4FC3-BEF7-18FB0C740BCE}" = lport=445 | protocol=6 | dir=in | app=system |
"{1694C6B9-9E71-4353-ABA2-96CEE3CF2F73}" = rport=139 | protocol=6 | dir=out | app=system |
"{203CBE29-A0FD-477C-82DE-4885CBF5395F}" = rport=10243 | protocol=6 | dir=out | app=system |
"{33346AA4-526C-4D6D-87EC-B0153345C661}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{36133230-F910-4B12-9ADF-16E9797AF967}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{3667A98A-B9F2-434F-9CE7-6AE40A06F228}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{4A595310-7237-4BC3-B52F-0BFD91FAE756}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{511467EA-A20B-412E-9633-69F4C69F2373}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{9AFBFC20-6237-4821-80D1-9257EB5E92AF}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{B4F00A31-897E-4476-ACD8-C81EE4B01E9A}" = lport=137 | protocol=17 | dir=in | app=system |
"{B80A14EC-EB5F-4483-BA5E-DF3A57617372}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{C1AA2FA7-2061-4668-94C3-F04877F30502}" = lport=10243 | protocol=6 | dir=in | app=system |
"{D15BB557-15AF-4E6A-9D27-46470265BE00}" = lport=2869 | protocol=6 | dir=in | app=system |
"{D3AC125E-6D6E-4DEF-8FEA-793F3422740A}" = lport=138 | protocol=17 | dir=in | app=system |
"{D5F4CE3E-4327-4CE5-AA5F-40EEC19BF430}" = rport=445 | protocol=6 | dir=out | app=system |
"{E406F6D6-3088-4C27-BE06-EE4A0423F529}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{E8EA7E2C-3B87-4DA3-916C-2AA9F60B36C9}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{EAB79784-BF51-46CC-8478-86EDB0357550}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{EAB88967-1CA1-44FB-91B3-7BA3449F8220}" = lport=139 | protocol=6 | dir=in | app=system |
"{EAD5FBD5-D924-4CCF-B6E7-7A39FE6E73F0}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{F0507CD4-0671-4DD0-B7AE-DB6A03E34E30}" = rport=138 | protocol=17 | dir=out | app=system |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0A2D6FB5-76A7-4F7F-9487-52F034EB66D5}" = protocol=6 | dir=out | app=system |
"{0FBFCC9D-3D69-40CD-AF16-EBD05BB7BAA0}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{2C22F639-3A40-4909-B171-FFB626CCEE0F}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{5537AD51-2F85-4D18-ACE9-E0A80CDBCDB6}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{5814561D-F98C-4600-BC4F-C5C2ABFFC141}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{5996EB59-CE85-4CCB-AC80-78F109A34A0B}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe |
"{5CCF06DF-69F5-4DF1-9E0B-E72E113C1292}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{606F4808-FF83-433E-829A-732C6793E15A}" = dir=in | app=c:\program files (x86)\dell\videostage\videostage.exe |
"{9D9DDB74-0BB1-41D8-8521-647A608109BA}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe |
"{9FA9D957-82DA-4091-9B18-F4EE5B9E12F7}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{A66A3791-8F67-4298-87A8-374755F488A8}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{A6B16314-2F8C-4054-B17A-DC10FC2A5CDD}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{ADC6ACEC-BDC6-4962-89A9-61AAD03D01BA}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{B1115E98-3EEA-4DAF-B97C-42E67AAC1070}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{B6273FC0-3109-4BBB-B6F8-158DF504B1A8}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{B8323FE1-A71D-4D56-AAC6-63B5F1132ADA}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{C28B1960-2A9C-4EA8-B467-C813805936C9}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{C914222F-65C3-47A8-9607-B3AC6862F2F5}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{C9E3951D-D0C8-426A-85A3-35A9F640E196}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{CA732497-E8D2-4B68-9422-4256BB9424A7}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{CB32FD1D-0D22-4924-9019-9470B0E4FDEB}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{D73FBEEF-1097-474E-8733-56BCC36C0F54}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{DC7A731C-F231-4DEE-A8D6-7714A869A30A}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{E03DA44C-677B-42F0-BF4A-1AE5D2FC3F12}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{E85EF951-C8CE-415D-BE5C-E0950DE0AD06}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{ED9C8E51-DA91-4381-9F9F-F74097A5604B}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{EF9F0E48-2439-414C-BC4E-C0C0BBE3D248}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{F2DE98C2-76C0-4741-8460-333174E528C1}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{F4D4BC75-FB1B-44E9-B969-5562801CA3CE}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{FA8086B2-31D9-4550-BAD2-3687D64F288B}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0225AD21-F3E2-4916-BFF3-65D3F9052582}" = iTunes
"{027E5FAB-1476-4C59-AAB4-32EF28520399}" = Windows Live Language Selector
"{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant
"{290D4DB2-F1B4-4B8E-918D-D71EF29A001B}" = Intel(R) PROSet/Wireless WiFi Software
"{2F72F540-1F60-4266-9506-952B21D6640D}" = Apple Mobile Device Support
"{436E0B79-2CFB-4E5F-9380-E17C1B25D0C5}" = WIDCOMM Bluetooth Software
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{60B2315F-680F-4EB3-B8DD-CCDC86A7CCAB}" = Roxio File Backup
"{656DEEDE-F6AC-47CA-A568-A1B4E34B5760}" = Windows Live Remote Service Resources
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{7CE8BE79-ABC3-4B2C-9543-28ED2B0A9EA8}" = Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}" = Windows Live Remote Client Resources
"{87CF757E-C1F1-4D22-865C-00C6950B5258}" = Quickset64
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}" = Dell Edoc Viewer
"{90140000-006D-0409-1000-0000000FF1CE}" = Microsoft Office Click-to-Run 2010
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9D6DFAD6-09E5-445E-A4B5-A388FEEBD90D}" = RBVirtualFolder64Inst
"{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = Dell Touchpad
"{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}" = Intel(R) Turbo Boost Technology Monitor 2.0
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client
"{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"CCleaner" = CCleaner
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"PC-Doctor for Windows" = My Dell
"ProInst" = Intel PROSet Wireless

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0ED7EE95-6A97-47AA-AD73-152C08A15B04}" = Dell DataSafe Local Backup
"{0EEBAFB5-CB0F-4E1A-A33F-4ECAF15CE2F9}" = Dell Digital Delivery
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{26A24AE4-039D-4CA4-87B4-2F83217045FF}" = Java 7 Update 45
"{2902F983-B4C1-44BA-B85D-5C6D52E2C441}" = Windows Live Mesh ActiveX Control for Remote Connections
"{2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}" = Windows Live Messenger
"{3250260C-7A95-4632-893B-89657EB5545B}" = PhotoShowExpress
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.3
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{5A06423A-210C-49FB-950E-CB0EB8C5CEC7}" = Roxio BackOnTrack
"{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}" = Apple Application Support
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6F0BBEFE-BE1C-419B-BA1F-D36C9E7915BC}" = Roxio Creator Starter
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7746BFAA-2B5D-4FFD-A0E8-4558F4668105}" = Roxio Burn
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7DB9F1E5-9ACB-410D-A7DC-7A3D023CE045}" = Dell Getting Started Guide
"{7EC66A95-AC2D-4127-940B-0445A526AB2F}" = Dell DataSafe Online
"{820B6609-4C97-3A2B-B644-573B06A0F0CC}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{90140011-0066-0409-0000-0000000FF1CE}" = Microsoft Office Starter 2010 - English
"{91AF2672-F5BC-42CF-8037-A9D2F92BBCC0}" = Dell MusicStage
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
"{981029E0-7FC9-4CF3-AB39-6F133621921A}" = Skype Toolbars
"{9A00EC4E-27E1-42C4-98DD-662F32AC8870}" = Sonic CinePlayer Decoder Pack
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{A0C91188-C88F-4E86-93E6-CD7C9A266649}" = Windows Live Mesh
"{A121EEDE-C68F-461D-91AA-D48BA226AF1C}" = Roxio Activation Module
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A9668246-FB70-4103-A1E3-66C9BC2EFB49}" = Dell DataSafe Local Backup - Support Software
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AA31EA7B-7917-4000-949B-38E91F848A25}" = Internet Explorer
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
"{AC76BA86-7AD7-FFFF-7B44-AA0000000001}" = Adobe Reader X (10.1.8) MUI
"{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}" = DirectX 9 Runtime
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{B67BAFBA-4C9F-48FA-9496-933E3B255044}" = QuickTime
"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CF67ED0C-F85D-4791-AED3-3FE882EDB45D}" = Dell Marketplace Webslice IE8
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{DCE0E79A-B9AC-41AC-98C1-7EF0538BCA7F}" = Dell VideoStage
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E2EBA7C0-8072-447F-856D-FFEE8D15B23B}" = Dell Stage
"{E4335E82-17B3-460F-9E70-39D9BC269DB3}" = Dell PhotoStage
"{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
"{EF56258E-0326-48C5-A86C-3BAC26FC15DF}" = Roxio Creator Starter
"{F06B5C4C-8D2E-4B24-9D43-7A45EEC6C878}" = Roxio Creator Starter
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F47C37A4-7189-430A-B81D-739FF8A7A554}" = Consumer In-Home Service Agreement
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 12.0
"Advanced Audio FX Engine" = Advanced Audio FX Engine
"Avast" = avast! Free Antivirus
"Dell Webcam Central" = Dell Webcam Central
"DivX Setup" = DivX Setup
"ERUNT_is1" = ERUNT 1.1j
"InstallShield_{DCE0E79A-B9AC-41AC-98C1-7EF0538BCA7F}" = Dell VideoStage
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.75.0.1300
"Mozilla Firefox 25.0.1 (x86 en-US)" = Mozilla Firefox 25.0.1 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"N360" = Norton Security Suite
"Office14.Click2Run" = Microsoft Office Click-to-Run 2010
"Video Downloader_is1" = Video Downloader version 2.0
"WinLiveSuite" = Windows Live Essentials
"YTdetect" = Yahoo! Detect

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-403588509-1578940831-2739536460-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"f031ef6ac137efc5" = Dell Driver Download Manager

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 11/23/2013 5:31:41 PM | Computer Name = Carla-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second

Error - 11/23/2013 5:31:41 PM | Computer Name = Carla-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 15584

Error - 11/23/2013 5:31:41 PM | Computer Name = Carla-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 15584

[ System Events ]
Error - 11/23/2013 5:31:36 PM | Computer Name = Carla-PC | Source = Service Control Manager | ID = 7001
Description = The Peer Networking Grouping service depends on the Peer Name Resolution
Protocol service which failed to start because of the following error: %%-2140993535

Error - 11/23/2013 7:48:27 PM | Computer Name = Carla-PC | Source = DCOM | ID = 10010
Description =

Error - 11/23/2013 7:48:45 PM | Computer Name = Carla-PC | Source = PNRPSvc | ID = 102
Description =

Error - 11/23/2013 7:48:45 PM | Computer Name = Carla-PC | Source = PNRPSvc | ID = 102
Description =

Error - 11/23/2013 7:48:45 PM | Computer Name = Carla-PC | Source = Service Control Manager | ID = 7023
Description = The Peer Name Resolution Protocol service terminated with the following
error: %%-2140993535

Error - 11/23/2013 7:48:45 PM | Computer Name = Carla-PC | Source = Service Control Manager | ID = 7001
Description = The Peer Networking Grouping service depends on the Peer Name Resolution
Protocol service which failed to start because of the following error: %%-2140993535

Error - 11/23/2013 7:48:45 PM | Computer Name = Carla-PC | Source = Service Control Manager | ID = 7023
Description = The Peer Name Resolution Protocol service terminated with the following
error: %%-2140993535

Error - 11/23/2013 7:48:45 PM | Computer Name = Carla-PC | Source = Service Control Manager | ID = 7001
Description = The Peer Networking Grouping service depends on the Peer Name Resolution
Protocol service which failed to start because of the following error: %%-2140993535

Error - 11/23/2013 7:49:44 PM | Computer Name = Carla-PC | Source = BTHUSB | ID = 327697
Description = The local Bluetooth adapter has failed in an undetermined manner and
will not be used. The driver has been unloaded.

Error - 11/23/2013 8:01:42 PM | Computer Name = Carla-PC | Source = Service Control Manager | ID = 7009
Description = A timeout was reached (30000 milliseconds) while waiting for the Windows
Error Reporting Service service to connect.


< End of report >

ken545
2013-11-24, 02:45
Malware and junkwise the log looks fine.

But you have two antivirus programs running, there running in the background hogging up system resources. Its recommended to have just one AV, keep it updated and run regular scans, more than one is overkill, I am sure its one of the main reasons your computer has run slow

AVAST
Norton Security Suite

It looks like Norton may be the paid version and Avast is free.

Use this program to uninstall one, your call, then run a new scan with OTL and lets make sure its gone



Run AppRemover

Vista , Win 7 users, right click on the icon and select "run as administrator"

Please download AppRemover (http://www.appremover.com/) and save it to your desktop.
Double click on AppRemover.exe to run it.
Uncheck "Enable anonymous usage statistics. No personal data will be recorded."
Click on the Next button.
Click on "Remove Security Application" or "Clean Up a Failed Uninstall" depending on what you want to do.
Click on the Next button.
A scan begins, please wait. Once done, click on the Next button.
Now you should have a list of your installed security programs, choose the one you want to uninstall and click on the Next button.
Follow the last step and reboot if asked to do so.

c_lady
2013-11-24, 03:23
I downloaded avast after I posted this thread, maybe two days ago. The computer had been slow and had problems long before that. My computer is actually a lot faster now and stops responding less frequently so thank you so much. Can I ask which virus program you'd recommend? Norton is just from my cable company, it was free not paid as was Avast.

ken545
2013-11-24, 13:45
Norton is a suite, it contains Anti Virus, Anti Spyware and a firewall, Avast is just a stand alone AV so I would be leaning towards removing Avast. Can you remember back prior to your computer becoming slow about any software programs you may have installed ?

c_lady
2013-11-24, 18:23
I don't install much really. I update only when the computer tells me to. I did update java and when I went to open a police scanner my brother works for which I listen to every night so I know it isn't the scanner. It gave me a message that the version of java I was using had security vulnerabilities. That went on for a week or so even when I uninstalled and reinstalled java. I googled it and it seemed like it was a known issue and not a huge deal. Eventually the scanner started working again. I can't remember if that was when the computer started slowing down or not, but that is the only known problem I have had. And my virus scanner never told me there was a problem. I only found out there was from the malware bytes scans. Which I started doing regularly about 2 months ago. Like I said before sometimes there were problems detected sometimes not and then when I posted this thread my computer wasn't working at all. Now it is normal. Thank you so much, I really appreciate the help.

ken545
2013-11-24, 18:58
Wonderful. Did you uninstall Avast ?

c_lady
2013-11-24, 19:31
No I keep trying and it gives me a message saying App remover has encountered an error in removing submit a report. So I did and I'm fine with Avast being downloaded too. It's not a big deal. My computer is running normally.

ken545
2013-11-24, 19:38
You can go to Programs and Features in the Control Panel and uninstall Avast, i would do that, let me know how it went

c_lady
2013-11-24, 23:45
I think it is uninstalled now. It kept stalling and not responding (Avast, not the computer) everytime I tried to uninstall it. 4 tries later and I think it is gone. Thanks a bunch!

ken545
2013-11-25, 01:16
Why dont you run a new scan with OTL and post the log, if Avast is still running we can stop it

c_lady
2013-11-25, 02:28
OTL logfile created on: 11/24/2013 7:10:30 PM - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Carla\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16736)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

5.91 Gb Total Physical Memory | 3.30 Gb Available Physical Memory | 55.81% Memory free
11.82 Gb Paging File | 9.12 Gb Available in Paging File | 77.15% Paging File free
Paging file location(s): ?:\pagefile.sys

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 582.80 Gb Total Space | 519.03 Gb Free Space | 89.06% Space Free | Partition Type: NTFS
Drive D: | 7.53 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF

Computer Name: CARLA-PC | User Name: Carla | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Users\Carla\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe (Adobe Systems, Inc.)
PRC - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\SyncServer.exe (Apple Inc.)
PRC - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
PRC - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation)
PRC - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation)
PRC - C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\ccsvchst.exe (Symantec Corporation)
PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
PRC - C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\STService.exe ()
PRC - C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe (SoftThinks SAS)
PRC - C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe (Creative Technology Ltd)
PRC - C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe ()
PRC - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Intel Corporation)
PRC - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Intel Corporation)
PRC - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe (Safer Networking Ltd.)


========== Modules (No Company Name) ==========

MOD - C:\Program Files\AVAST Software\Avast\libcef.dll ()
MOD - C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ()
MOD - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
MOD - C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll ()
MOD - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
MOD - \\?\C:\ProgramData\Microsoft\PlayReady\Cache\S-1-5-21-403588509-1578940831-2739536460-1001\MSPRindiv02.key ()
MOD - C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\wincfi39.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll ()
MOD - C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\STService.exe ()
MOD - c:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\SQLite352.dll ()
MOD - C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe ()


========== Services (SafeList) ==========

SRV:[b]64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV:64bit: - (STacSV) -- C:\Program Files\IDT\WDM\stacsv64.exe (IDT, Inc.)
SRV:64bit: - (btwdins) -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (Broadcom Corporation.)
SRV:64bit: - (EvtEng) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel(R) Corporation)
SRV:64bit: - (MyWiFiDHCPDNS) -- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe ()
SRV:64bit: - (RegSrvc) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel(R) Corporation)
SRV:64bit: - (TurboBoost) -- C:\Program Files\Intel\TurboBoost\TurboBoost.exe (Intel(R) Corporation)
SRV:64bit: - (wlcrasvc) -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe (Microsoft Corporation)
SRV:64bit: - (AESTFilters) -- C:\Program Files\IDT\WDM\AESTSr64.exe (Andrea Electronics Corporation)
SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
SRV - (sftvsa) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation)
SRV - (sftlist) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation)
SRV - (N360) -- C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\ccSvcHst.exe (Symantec Corporation)
SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (MBAMScheduler) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
SRV - (SkypeUpdate) -- C:\Program Files (x86)\Skype\Updater\Updater.exe (Skype Technologies)
SRV - (SftService) -- C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe (SoftThinks SAS)
SRV - (DellDigitalDelivery) -- c:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe (Dell Products, LP.)
SRV - (RoxWatch12) -- C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe (Sonic Solutions)
SRV - (RoxMediaDB12OEM) -- C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe (Sonic Solutions)
SRV - (Bluetooth Media Service) -- C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Intel Corporation)
SRV - (Bluetooth Device Monitor) -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Intel Corporation)
SRV - (NOBU) -- C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe (Dell, Inc.)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)


========== Driver Services (SafeList) ==========

DRV:64bit: - (SymEvent) -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS (Symantec Corporation)
DRV:64bit: - (Sftvol) -- C:\Windows\SysNative\drivers\Sftvollh.sys (Microsoft Corporation)
DRV:64bit: - (Sftredir) -- C:\Windows\SysNative\drivers\Sftredirlh.sys (Microsoft Corporation)
DRV:64bit: - (Sftplay) -- C:\Windows\SysNative\drivers\Sftplaylh.sys (Microsoft Corporation)
DRV:64bit: - (Sftfs) -- C:\Windows\SysNative\drivers\Sftfslh.sys (Microsoft Corporation)
DRV:64bit: - (SymEFA) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\symefa64.sys (Symantec Corporation)
DRV:64bit: - (SymDS) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\symds64.sys (Symantec Corporation)
DRV:64bit: - (SRTSP) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\srtsp64.sys (Symantec Corporation)
DRV:64bit: - (SymNetS) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\symnets.sys (Symantec Corporation)
DRV:64bit: - (ccSet_N360) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\ccsetx64.sys (Symantec Corporation)
DRV:64bit: - (MBAMProtector) -- C:\Windows\SysNative\drivers\mbam.sys (Malwarebytes Corporation)
DRV:64bit: - (SRTSPX) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\srtspx64.sys (Symantec Corporation)
DRV:64bit: - (USBAAPL64) -- C:\Windows\SysNative\drivers\usbaapl64.sys (Apple, Inc.)
DRV:64bit: - (GEARAspiWDM) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys (GEAR Software Inc.)
DRV:64bit: - (SymIRON) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\ironx64.sys (Symantec Corporation)
DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (ApfiltrService) -- C:\Windows\SysNative\drivers\Apfiltr.sys (Alps Electric Co., Ltd.)
DRV:64bit: - (tixhci) -- C:\Windows\SysNative\drivers\tixhci.sys (Texas Instruments Incorporated)
DRV:64bit: - (tihub3) -- C:\Windows\SysNative\drivers\tihub3.sys (Texas Instruments Incorporated)
DRV:64bit: - (igfx) -- C:\Windows\SysNative\drivers\igdkmd64.sys (Intel Corporation)
DRV:64bit: - (STHDA) -- C:\Windows\SysNative\drivers\stwrt64.sys (IDT, Inc.)
DRV:64bit: - (CtClsFlt) -- C:\Windows\SysNative\drivers\CtClsFlt.sys (Creative Technology Ltd.)
DRV:64bit: - (NETwNs64) -- C:\Windows\SysNative\drivers\NETwNs64.sys (Intel Corporation)
DRV:64bit: - (BTWAMPFL) -- C:\Windows\SysNative\drivers\btwampfl.sys (Broadcom Corporation.)
DRV:64bit: - (btwl2cap) -- C:\Windows\SysNative\drivers\btwl2cap.sys (Broadcom Corporation.)
DRV:64bit: - (btwrchid) -- C:\Windows\SysNative\drivers\btwrchid.sys (Broadcom Corporation.)
DRV:64bit: - (btwavdt) -- C:\Windows\SysNative\drivers\btwavdt.sys (Broadcom Corporation.)
DRV:64bit: - (btwaudio) -- C:\Windows\SysNative\drivers\btwaudio.sys (Broadcom Corporation.)
DRV:64bit: - (nusb3xhc) -- C:\Windows\SysNative\drivers\nusb3xhc.sys (Renesas Electronics Corporation)
DRV:64bit: - (nusb3hub) -- C:\Windows\SysNative\drivers\nusb3hub.sys (Renesas Electronics Corporation)
DRV:64bit: - (TurboB) -- C:\Windows\SysNative\drivers\TurboB.sys (Intel(R) Corporation)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (iaStor) -- C:\Windows\SysNative\drivers\iaStor.sys (Intel Corporation)
DRV:64bit: - (btmaux) -- C:\Windows\SysNative\drivers\btmaux.sys (Intel Corporation)
DRV:64bit: - (iBtFltCoex) -- C:\Windows\SysNative\drivers\iBtFltCoex.sys (Intel Corporation)
DRV:64bit: - (RSUSBSTOR) -- C:\Windows\SysNative\drivers\RtsUStor.sys (Realtek Semiconductor Corp.)
DRV:64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek )
DRV:64bit: - (btmhsf) -- C:\Windows\SysNative\drivers\btmhsf.sys (Intel Corporation)
DRV:64bit: - (IntcDAud) -- C:\Windows\SysNative\drivers\IntcDAud.sys (Intel(R) Corporation)
DRV:64bit: - (MEIx64) -- C:\Windows\SysNative\drivers\HECIx64.sys (Intel Corporation)
DRV:64bit: - (PxHlpa64) -- C:\Windows\SysNative\drivers\PxHlpa64.sys (Sonic Solutions)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:64bit: - (WimFltr) -- C:\Windows\SysNative\drivers\WimFltr.sys (Microsoft Corporation)
DRV - (eeCtrl) -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys (Symantec Corporation)
DRV - (EraserUtilRebootDrv) -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys (Symantec Corporation)
DRV - (IDSVia64) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\IPSDefs\20131122.001\IDSviA64.sys (Symantec Corporation)
DRV - (BHDrvx64) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\BASHDefs\20131114.001\BHDrvx64.sys (Symantec Corporation)
DRV - (NAVEX15) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\VirusDefs\20131123.001\ex64.sys (Symantec Corporation)
DRV - (NAVENG) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\VirusDefs\20131123.001\eng64.sys (Symantec Corporation)
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {49606DC7-976D-4030-A74E-9FB5C842FA68}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{49606DC7-976D-4030-A74E-9FB5C842FA68}: "URL" = http://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{49606DC7-976D-4030-A74E-9FB5C842FA68}: "URL" = http://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/USCON/1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKCU\..\SearchScopes,DefaultScope = {49606DC7-976D-4030-A74E-9FB5C842FA68}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..browser.search.order.1: "Yahoo"
FF - prefs.js..browser.search.order.2: ""
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.suggest.enabled: false
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "https://www.google.com/"
FF - prefs.js..extensions.enabledAddons: wrc%40avast.com:9.0.2006.53
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:25.0.1
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Web Player Plug-In,version=1.0.0: C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\coFFPlgn\ [2013/11/23 13:07:02 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\IPSFF [2013/10/10 03:12:17 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/11/15 20:53:25 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/11/15 20:53:26 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/11/15 20:53:25 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/11/15 20:53:26 | 000,000,000 | ---D | M]

[2011/08/23 13:52:07 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Carla\AppData\Roaming\Mozilla\Extensions
[2013/11/23 16:16:55 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Carla\AppData\Roaming\Mozilla\Firefox\Profiles\vvk1xh17.default\extensions
[2013/01/23 09:18:25 | 000,401,328 | ---- | M] () (No name found) -- C:\Users\Carla\AppData\Roaming\Mozilla\Firefox\Profiles\vvk1xh17.default\extensions\jid1-xUfzOsOFlzSOXg@jetpack.xpi
[2013/11/15 20:53:25 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2013/11/15 20:53:25 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
[2013/11/15 20:53:25 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}
[2013/11/15 20:53:25 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013/11/15 20:53:33 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2013/11/16 18:32:31 | 000,000,000 | ---D | M] (avast! Online Security) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
CHR - Extension: Google Docs = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0\
CHR - Extension: Google Docs = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\
CHR - Extension: Google Drive = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0\
CHR - Extension: YouTube = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: YouTube = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Google Search = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: avast! Online Security = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2005.45_0\
CHR - Extension: Norton Identity Protection = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2013.4.3.4_0\
CHR - Extension: Google Wallet = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0\
CHR - Extension: DivX Plus Web Player HTML5 \u003Cvideo\u003E = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\
CHR - Extension: Gmail = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
CHR - Extension: Gmail = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\

O1 HOSTS File: ([2009/06/10 16:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No CLSID value found.
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (Norton Identity Protection) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\coieplg.dll (Symantec Corporation)
O2 - BHO: (Norton Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\ips\ipsbho.dll (Symantec Corporation)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\coieplg.dll (Symantec Corporation)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:64bit: - HKLM..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.)
O4:64bit: - HKLM..\Run: [BTMTrayAgent] C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll (Intel Corporation)
O4:64bit: - HKLM..\Run: [DellStage] C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe ()
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IntelTBRunOnce] wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs" File not found
O4:64bit: - HKLM..\Run: [IntelWireless] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel(R) Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [QuickSet] c:\Program Files\Dell\QuickSet\quickset.exe (Dell Inc.)
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [20131121] C:\Program Files\AVAST Software\Avast\setup\emupdate\c4f64daa-94ed-4922-b3e9-7e0688e94327.exe (AVAST Software)
O4 - HKLM..\Run: [AccuWeatherWidget] C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe ()
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [Dell DataSafe Online] C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuClient.exe (Dell, Inc.)
O4 - HKLM..\Run: [Dell Webcam Central] C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [Desktop Disc Tool] C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe ()
O4 - HKLM..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe (DivX, LLC)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\RunOnce: [AppRemover Feedback] C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:64bit: - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8:64bit: - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra 'Tools' menuitem : @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {5EA13312-8764-496F-B4AB-F7A872B51E14} https://oovoowww3-a.akamaihd.net/oovoomelink/oovoome/webvc/ooVooWeb.dll (ooVooWebCtrl Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6644228F-02DE-4AD4-87A1-8D5284F2BE18}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C077BD2A-A1D4-4AF2-8DDA-9A3999F1A78C}: DhcpNameServer = 10.1.10.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\livecall - No CLSID value found
O18 - Protocol\Handler\msnim - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{978c5d04-cdc6-11e0-80cd-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{978c5d04-cdc6-11e0-80cd-806e6f6e6963}\Shell\AutoRun\command - "" = D:\PC_Clickme.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2013/11/24 02:03:48 | 000,000,000 | ---D | C] -- C:\Windows\Sun
[2013/11/24 00:33:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2013/11/24 00:28:44 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2013/11/24 00:28:43 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2013/11/24 00:28:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2013/11/24 00:28:43 | 000,000,000 | ---D | C] -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
[2013/11/23 16:09:05 | 000,000,000 | ---D | C] -- C:\Windows\ERUNT
[2013/11/23 12:04:55 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2013/11/21 21:01:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX
[2013/11/16 18:52:52 | 000,000,000 | ---D | C] -- C:\N360_BACKUP
[2013/11/16 18:37:12 | 000,000,000 | ---D | C] -- C:\Users\Carla\AppData\Roaming\AVAST Software
[2013/11/16 18:34:47 | 000,000,000 | ---D | C] -- C:\Users\Carla\AppData\Local\Google
[2013/11/16 18:34:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
[2013/11/16 18:32:31 | 000,334,648 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2013/11/16 18:32:27 | 000,043,152 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2013/11/16 18:31:38 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2013/11/16 18:30:14 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2013/11/16 17:18:08 | 000,000,000 | ---D | C] -- C:\Windows\11-16-2013
[2013/11/16 17:17:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ERUNT
[2013/11/16 17:17:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ERUNT
[2013/11/15 20:53:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2013/11/13 03:04:58 | 000,391,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2013/11/13 03:04:57 | 000,526,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2013/11/13 03:04:55 | 000,136,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2013/11/13 03:04:55 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2013/11/13 03:04:55 | 000,089,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2013/11/13 03:04:55 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2013/11/13 03:04:55 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2013/11/13 03:04:55 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2013/11/13 03:04:55 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2013/11/13 03:04:55 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2013/11/13 03:04:55 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2013/11/13 03:04:53 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2013/11/13 03:04:53 | 000,690,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2013/11/13 03:04:53 | 000,603,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2013/11/13 03:04:52 | 003,959,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2013/11/13 02:36:24 | 001,474,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2013/11/13 02:36:17 | 001,930,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2013/11/13 02:36:17 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2013/11/13 02:36:17 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\credui.dll
[2013/11/13 02:36:17 | 000,190,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmartcardCredentialProvider.dll
[2013/11/13 02:36:17 | 000,152,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
[2013/11/13 02:36:11 | 001,447,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2013/11/13 02:36:11 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2013/11/13 02:36:11 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2013/11/13 02:36:11 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2013/11/13 02:36:11 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2013/11/13 02:36:08 | 000,404,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2013/11/13 02:36:07 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nshwfp.dll
[2013/11/13 02:36:07 | 000,656,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshwfp.dll
[2013/11/13 02:36:07 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FWPUCLNT.DLL
[2013/11/13 02:36:07 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FWPUCLNT.DLL

========== Files - Modified Within 30 Days ==========

[2013/11/24 18:49:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013/11/24 12:12:23 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2013/11/24 12:12:23 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2013/11/24 11:51:46 | 000,727,398 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013/11/24 11:51:46 | 000,624,864 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013/11/24 11:51:46 | 000,106,950 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013/11/24 11:50:09 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/11/24 01:30:07 | 000,014,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/11/24 01:30:07 | 000,014,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/11/23 13:02:42 | 463,867,903 | -HS- | M] () -- C:\hiberfil.sys
[2013/11/21 22:14:10 | 000,334,176 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013/11/16 18:32:30 | 000,334,648 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2013/11/16 18:32:27 | 000,043,152 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2013/10/27 12:11:27 | 1060,143,367 | ---- | M] () -- C:\Windows\MEMORY.DMP

========== Files Created - No Company Name ==========

[2013/10/27 12:11:27 | 1060,143,367 | ---- | C] () -- C:\Windows\MEMORY.DMP
[2013/05/01 19:21:59 | 001,169,609 | ---- | C] () -- C:\Windows\unins000.exe
[2013/05/01 19:21:59 | 000,081,817 | ---- | C] () -- C:\Windows\unins000.dat
[2013/05/01 19:21:23 | 000,000,258 | RHS- | C] () -- C:\Users\Carla\ntuser.pol
[2013/02/04 18:50:52 | 000,005,120 | ---- | C] () -- C:\Users\Carla\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/04/19 19:12:23 | 000,036,864 | ---- | C] () -- C:\Users\Carla\06091507.dot
[2012/04/08 13:28:38 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat

========== ZeroAccess Check ==========

[2009/07/13 23:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/07/25 21:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/07/25 20:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 20:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 07:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 20:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2013/11/16 18:37:12 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\AVAST Software
[2011/08/23 13:47:11 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\Fingertapps
[2013/07/11 21:31:26 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\Garmin
[2013/08/25 23:19:21 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\PCDr
[2011/09/12 15:45:20 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\SecondLife
[2013/08/15 02:33:44 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\SoftGrid Client
[2012/03/20 18:49:08 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\Tific
[2011/08/23 13:55:59 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\TP

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 127 bytes -> C:\ProgramData\Temp:E1D06077

< End of report >

ken545
2013-11-25, 03:17
Avast is still running on your system.


Open OTL.exe

Copy/paste the following text written inside of the code box into the Custom Scans/Fixes box located at the bottom of OTL




:OTL
PRC - C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
MOD - C:\Program Files\AVAST Software\Avast\libcef.dll ()
O4 - HKLM..\Run: [20131121] C:\Program Files\AVAST Software\Avast\setup\emupdate\c4f64daa-94ed-4922-b3e9-7e0688e94327.exe (AVAST Software)
[2013/11/16 18:37:12 | 000,000,000 | ---D | C] -- C:\Users\Carla\AppData\Roaming\AVAST Software
[2013/11/16 18:32:31 | 000,334,648 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2013/11/16 18:32:27 | 000,043,152 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2013/11/16 18:31:38 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2013/11/16 18:30:14 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2013/11/16 18:32:30 | 000,334,648 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2013/11/16 18:32:27 | 000,043,152 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr

:Services

:Reg

:Files
ipconfig /flushdns /c


:Commands
[purity]
[EMPTYJAVA]
[emptytemp]
[start explorer]
[Reboot]

Then click the Run Fix button at the top. <--Not run Scan
Let the program run unhindered, reboot when it is done
Then post the results of the log it produces



Post the log from the fix and then run a new scan with OTL and post the new log please

c_lady
2013-11-25, 04:37
I'm running the second scan now and will post it soon.

From the fix:

All processes killed
========== OTL ==========
No active process named AvastUI.exe was found!
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\20131121 deleted successfully.
C:\Program Files\AVAST Software\Avast\setup\emupdate\c4f64daa-94ed-4922-b3e9-7e0688e94327.exe moved successfully.
C:\Users\Carla\AppData\Roaming\AVAST Software\Avast\Cache\Local Storage folder moved successfully.
C:\Users\Carla\AppData\Roaming\AVAST Software\Avast\Cache\AppCache folder moved successfully.
C:\Users\Carla\AppData\Roaming\AVAST Software\Avast\Cache folder moved successfully.
C:\Users\Carla\AppData\Roaming\AVAST Software\Avast folder moved successfully.
C:\Users\Carla\AppData\Roaming\AVAST Software folder moved successfully.
C:\Windows\SysNative\aswBoot.exe moved successfully.
C:\Windows\avastSS.scr moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\Safari folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\Opera folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\zh_TW folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\zh_CN folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\vi folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\ur folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\uk folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\tr folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\th folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\sv folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\sr folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\sl folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\sk folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\ru folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\ro folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\pt_PT folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\pt_BR folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\pl folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\nl folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\nb folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\ms folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\lv folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\ko folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\ja folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\it folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\id folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\hu folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\hr folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\hi folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\he folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\fr folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\fi folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\fa folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\et folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\es folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\en_GB folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\en folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\el folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\de folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\da folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\cs folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\ca folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\bn folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\bg folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\be folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales\ar folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\_locales folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\templates\img folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE\templates folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\IE folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\skin folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\zh_TW folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\zh_CN folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\vi folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\ur folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\uk folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\tr folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\th folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\sv folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\sr folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\sl folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\sk folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\ru folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\ro folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\pt_PT folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\pt_BR folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\pl folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\nl folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\nb folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\ms folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\lv folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\ko folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\ja folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\it folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\id folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\hu folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\hr folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\hi folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\he folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\fr folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\fi folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\fa folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\et folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\es folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\en_GB folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\en folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\el folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\de folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\da folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\cs folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\ca folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\bn folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\bg folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\be folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale\ar folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\locale folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\common\skin\img folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\common\skin\css folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\common\skin folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\common\scripts folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\common\libs folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content\common folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF\content folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\FF folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep\Chrome folder moved successfully.
C:\Program Files\AVAST Software\Avast\WebRep folder moved successfully.
C:\Program Files\AVAST Software\Avast\setup\INF\x64 folder moved successfully.
C:\Program Files\AVAST Software\Avast\setup\INF folder moved successfully.
C:\Program Files\AVAST Software\Avast\setup\emupdate folder moved successfully.
C:\Program Files\AVAST Software\Avast\setup\CRT\x86 folder moved successfully.
C:\Program Files\AVAST Software\Avast\setup\CRT\x64 folder moved successfully.
C:\Program Files\AVAST Software\Avast\setup\CRT folder moved successfully.
C:\Program Files\AVAST Software\Avast\setup folder moved successfully.
C:\Program Files\AVAST Software\Avast\resources folder moved successfully.
C:\Program Files\AVAST Software\Avast\RescueDisk folder moved successfully.
C:\Program Files\AVAST Software\Avast\OpenVPN\driver\win64\ndis6 folder moved successfully.
C:\Program Files\AVAST Software\Avast\OpenVPN\driver\win64 folder moved successfully.
C:\Program Files\AVAST Software\Avast\OpenVPN\driver folder moved successfully.
C:\Program Files\AVAST Software\Avast\OpenVPN folder moved successfully.
C:\Program Files\AVAST Software\Avast\locales folder moved successfully.
C:\Program Files\AVAST Software\Avast\License folder moved successfully.
C:\Program Files\AVAST Software\Avast\flash\ammap\maps folder moved successfully.
C:\Program Files\AVAST Software\Avast\flash\ammap\icons folder moved successfully.
C:\Program Files\AVAST Software\Avast\flash\ammap folder moved successfully.
C:\Program Files\AVAST Software\Avast\flash folder moved successfully.
C:\Program Files\AVAST Software\Avast\defs\13112400_stream folder moved successfully.
C:\Program Files\AVAST Software\Avast\defs\13112400 folder moved successfully.
C:\Program Files\AVAST Software\Avast\defs folder moved successfully.
C:\Program Files\AVAST Software\Avast\DATA\report folder moved successfully.
C:\Program Files\AVAST Software\Avast\DATA\RemoteCache folder moved successfully.
C:\Program Files\AVAST Software\Avast\DATA\moved folder moved successfully.
C:\Program Files\AVAST Software\Avast\DATA\log folder moved successfully.
C:\Program Files\AVAST Software\Avast\DATA\integ folder moved successfully.
C:\Program Files\AVAST Software\Avast\DATA\fw folder moved successfully.
C:\Program Files\AVAST Software\Avast\DATA\chest folder moved successfully.
C:\Program Files\AVAST Software\Avast\DATA\backup folder moved successfully.
C:\Program Files\AVAST Software\Avast\DATA folder moved successfully.
C:\Program Files\AVAST Software\Avast\Certificates folder moved successfully.
C:\Program Files\AVAST Software\Avast\1033 folder moved successfully.
C:\Program Files\AVAST Software\Avast folder moved successfully.
C:\Program Files\AVAST Software folder moved successfully.
C:\ProgramData\AVAST Software\Persistent Data\Avast\Logs folder moved successfully.
C:\ProgramData\AVAST Software\Persistent Data\Avast folder moved successfully.
C:\ProgramData\AVAST Software\Persistent Data folder moved successfully.
C:\ProgramData\AVAST Software\Avast\spool\suspic folder moved successfully.
C:\ProgramData\AVAST Software\Avast\spool folder moved successfully.
C:\ProgramData\AVAST Software\Avast\sounds\1033 folder moved successfully.
C:\ProgramData\AVAST Software\Avast\sounds folder moved successfully.
C:\ProgramData\AVAST Software\Avast\SecureLine folder moved successfully.
C:\ProgramData\AVAST Software\Avast\report folder moved successfully.
C:\ProgramData\AVAST Software\Avast\RemoteCache folder moved successfully.
C:\ProgramData\AVAST Software\Avast\moved folder moved successfully.
C:\ProgramData\AVAST Software\Avast\log folder moved successfully.
C:\ProgramData\AVAST Software\Avast\journal folder moved successfully.
C:\ProgramData\AVAST Software\Avast\integ folder moved successfully.
C:\ProgramData\AVAST Software\Avast\HtmlData folder moved successfully.
C:\ProgramData\AVAST Software\Avast\fw folder moved successfully.
C:\ProgramData\AVAST Software\Avast\Fonts folder moved successfully.
C:\ProgramData\AVAST Software\Avast\dwjobs folder moved successfully.
C:\ProgramData\AVAST Software\Avast\chest folder moved successfully.
C:\ProgramData\AVAST Software\Avast\backup folder moved successfully.
C:\ProgramData\AVAST Software\Avast folder moved successfully.
C:\ProgramData\AVAST Software folder moved successfully.
File C:\Windows\SysNative\aswBoot.exe not found.
File C:\Windows\avastSS.scr not found.
========== SERVICES/DRIVERS ==========
========== REGISTRY ==========
========== FILES ==========
< ipconfig /flushdns /c >
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
C:\Users\Carla\Downloads\cmd.bat deleted successfully.
C:\Users\Carla\Downloads\cmd.txt deleted successfully.
========== COMMANDS ==========

[EMPTYJAVA]

User: Administrator

User: All Users

User: Carla
->Java cache emptied: 268865 bytes

User: Default

User: Default User

User: Public

Total Java Files Cleaned = 0.00 mb


[EMPTYTEMP]

User: Administrator

User: All Users

User: Carla
->Temp folder emptied: 7624116 bytes
->Temporary Internet Files folder emptied: 107562610 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 433840302 bytes
->Google Chrome cache emptied: 6294949 bytes
->Flash cache emptied: 47785 bytes

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 42 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 37856 bytes
%systemroot%\system32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 753 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 95403 bytes
%systemroot%\sysnative\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 749 bytes
RecycleBin emptied: 825121236 bytes

Total Files Cleaned = 1,317.00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 11242013_212509

Files\Folders moved on Reboot...
C:\Users\Carla\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\Carla\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

c_lady
2013-11-25, 04:53
Scan results





OTL logfile created on: 11/24/2013 9:36:42 PM - Run 3
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Carla\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16736)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

5.91 Gb Total Physical Memory | 4.30 Gb Available Physical Memory | 72.82% Memory free
11.82 Gb Paging File | 10.06 Gb Available in Paging File | 85.11% Paging File free
Paging file location(s): ?:\pagefile.sys

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 582.80 Gb Total Space | 524.61 Gb Free Space | 90.01% Space Free | Partition Type: NTFS
Drive D: | 7.53 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF

Computer Name: CARLA-PC | User Name: Carla | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Users\Carla\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
PRC - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation)
PRC - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation)
PRC - C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\ccsvchst.exe (Symantec Corporation)
PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
PRC - C:\Program Files (x86)\Dell DataSafe Local Backup\Toaster.exe (SoftThinks - Dell)
PRC - C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\STService.exe ()
PRC - C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe (SoftThinks SAS)
PRC - C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe (Creative Technology Ltd)
PRC - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Intel Corporation)
PRC - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Intel Corporation)
PRC - C:\Program Files (x86)\Intel\Bluetooth\btplayerctrl.exe (Intel Corporation)
PRC - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe (Safer Networking Ltd.)


========== Modules (No Company Name) ==========

MOD - C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\8f5b881951592b2fd05f710650bf7e04\System.Core.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\bcf51dc88597d0835c819a2d5a755b74\PresentationFramework.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\ef0a534be135cd8f0d99d938d8b1814a\System.Windows.Forms.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\51478a61dbd40488e320a0061e23c4df\PresentationCore.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\4eef5a3a4d0ed6d6fd882947a70df530\WindowsBase.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\29f3ae8d313e62b4daed1107ccd29f9f\System.Configuration.ni.dll ()
MOD - C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll ()
MOD - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\5aa44bce7933e4de09d935848f868a4b\System.Drawing.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\09db78d6068543df01862a023aca785a\System.Xml.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System\5d22a30e587e2cac106b81fb351e7c08\System.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\a2920ed81e097f8551231a9350697bbd\PresentationFramework.Aero.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\9a6c1b7af18b4d5a91dc7f8d6617522f\mscorlib.ni.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll ()
MOD - C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\STService.exe ()


========== Services (SafeList) ==========

SRV:[b]64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV:64bit: - (STacSV) -- C:\Program Files\IDT\WDM\stacsv64.exe (IDT, Inc.)
SRV:64bit: - (btwdins) -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (Broadcom Corporation.)
SRV:64bit: - (EvtEng) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel(R) Corporation)
SRV:64bit: - (MyWiFiDHCPDNS) -- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe ()
SRV:64bit: - (RegSrvc) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel(R) Corporation)
SRV:64bit: - (TurboBoost) -- C:\Program Files\Intel\TurboBoost\TurboBoost.exe (Intel(R) Corporation)
SRV:64bit: - (wlcrasvc) -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe (Microsoft Corporation)
SRV:64bit: - (AESTFilters) -- C:\Program Files\IDT\WDM\AESTSr64.exe (Andrea Electronics Corporation)
SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
SRV - (sftvsa) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation)
SRV - (sftlist) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation)
SRV - (N360) -- C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\ccSvcHst.exe (Symantec Corporation)
SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (MBAMScheduler) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
SRV - (SkypeUpdate) -- C:\Program Files (x86)\Skype\Updater\Updater.exe (Skype Technologies)
SRV - (SftService) -- C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe (SoftThinks SAS)
SRV - (DellDigitalDelivery) -- c:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe (Dell Products, LP.)
SRV - (Bluetooth Media Service) -- C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Intel Corporation)
SRV - (Bluetooth Device Monitor) -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Intel Corporation)
SRV - (NOBU) -- C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe (Dell, Inc.)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)


========== Driver Services (SafeList) ==========

DRV:64bit: - (SymEvent) -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS (Symantec Corporation)
DRV:64bit: - (Sftvol) -- C:\Windows\SysNative\drivers\Sftvollh.sys (Microsoft Corporation)
DRV:64bit: - (Sftredir) -- C:\Windows\SysNative\drivers\Sftredirlh.sys (Microsoft Corporation)
DRV:64bit: - (Sftplay) -- C:\Windows\SysNative\drivers\Sftplaylh.sys (Microsoft Corporation)
DRV:64bit: - (Sftfs) -- C:\Windows\SysNative\drivers\Sftfslh.sys (Microsoft Corporation)
DRV:64bit: - (SymEFA) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\symefa64.sys (Symantec Corporation)
DRV:64bit: - (SymDS) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\symds64.sys (Symantec Corporation)
DRV:64bit: - (SRTSP) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\srtsp64.sys (Symantec Corporation)
DRV:64bit: - (SymNetS) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\symnets.sys (Symantec Corporation)
DRV:64bit: - (ccSet_N360) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\ccsetx64.sys (Symantec Corporation)
DRV:64bit: - (MBAMProtector) -- C:\Windows\SysNative\drivers\mbam.sys (Malwarebytes Corporation)
DRV:64bit: - (SRTSPX) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\srtspx64.sys (Symantec Corporation)
DRV:64bit: - (USBAAPL64) -- C:\Windows\SysNative\drivers\usbaapl64.sys (Apple, Inc.)
DRV:64bit: - (GEARAspiWDM) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys (GEAR Software Inc.)
DRV:64bit: - (SymIRON) -- C:\Windows\SysNative\drivers\N360x64\1404000.028\ironx64.sys (Symantec Corporation)
DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (ApfiltrService) -- C:\Windows\SysNative\drivers\Apfiltr.sys (Alps Electric Co., Ltd.)
DRV:64bit: - (tixhci) -- C:\Windows\SysNative\drivers\tixhci.sys (Texas Instruments Incorporated)
DRV:64bit: - (tihub3) -- C:\Windows\SysNative\drivers\tihub3.sys (Texas Instruments Incorporated)
DRV:64bit: - (igfx) -- C:\Windows\SysNative\drivers\igdkmd64.sys (Intel Corporation)
DRV:64bit: - (STHDA) -- C:\Windows\SysNative\drivers\stwrt64.sys (IDT, Inc.)
DRV:64bit: - (CtClsFlt) -- C:\Windows\SysNative\drivers\CtClsFlt.sys (Creative Technology Ltd.)
DRV:64bit: - (NETwNs64) -- C:\Windows\SysNative\drivers\NETwNs64.sys (Intel Corporation)
DRV:64bit: - (BTWAMPFL) -- C:\Windows\SysNative\drivers\btwampfl.sys (Broadcom Corporation.)
DRV:64bit: - (btwl2cap) -- C:\Windows\SysNative\drivers\btwl2cap.sys (Broadcom Corporation.)
DRV:64bit: - (btwrchid) -- C:\Windows\SysNative\drivers\btwrchid.sys (Broadcom Corporation.)
DRV:64bit: - (btwavdt) -- C:\Windows\SysNative\drivers\btwavdt.sys (Broadcom Corporation.)
DRV:64bit: - (btwaudio) -- C:\Windows\SysNative\drivers\btwaudio.sys (Broadcom Corporation.)
DRV:64bit: - (nusb3xhc) -- C:\Windows\SysNative\drivers\nusb3xhc.sys (Renesas Electronics Corporation)
DRV:64bit: - (nusb3hub) -- C:\Windows\SysNative\drivers\nusb3hub.sys (Renesas Electronics Corporation)
DRV:64bit: - (TurboB) -- C:\Windows\SysNative\drivers\TurboB.sys (Intel(R) Corporation)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (iaStor) -- C:\Windows\SysNative\drivers\iaStor.sys (Intel Corporation)
DRV:64bit: - (btmaux) -- C:\Windows\SysNative\drivers\btmaux.sys (Intel Corporation)
DRV:64bit: - (iBtFltCoex) -- C:\Windows\SysNative\drivers\iBtFltCoex.sys (Intel Corporation)
DRV:64bit: - (RSUSBSTOR) -- C:\Windows\SysNative\drivers\RtsUStor.sys (Realtek Semiconductor Corp.)
DRV:64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek )
DRV:64bit: - (btmhsf) -- C:\Windows\SysNative\drivers\btmhsf.sys (Intel Corporation)
DRV:64bit: - (IntcDAud) -- C:\Windows\SysNative\drivers\IntcDAud.sys (Intel(R) Corporation)
DRV:64bit: - (MEIx64) -- C:\Windows\SysNative\drivers\HECIx64.sys (Intel Corporation)
DRV:64bit: - (PxHlpa64) -- C:\Windows\SysNative\drivers\PxHlpa64.sys (Sonic Solutions)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:64bit: - (WimFltr) -- C:\Windows\SysNative\drivers\WimFltr.sys (Microsoft Corporation)
DRV - (eeCtrl) -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys (Symantec Corporation)
DRV - (EraserUtilRebootDrv) -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys (Symantec Corporation)
DRV - (IDSVia64) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\IPSDefs\20131122.001\IDSviA64.sys (Symantec Corporation)
DRV - (BHDrvx64) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\BASHDefs\20131114.001\BHDrvx64.sys (Symantec Corporation)
DRV - (NAVEX15) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\VirusDefs\20131123.001\ex64.sys (Symantec Corporation)
DRV - (NAVENG) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\VirusDefs\20131123.001\eng64.sys (Symantec Corporation)
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {49606DC7-976D-4030-A74E-9FB5C842FA68}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{49606DC7-976D-4030-A74E-9FB5C842FA68}: "URL" = http://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{49606DC7-976D-4030-A74E-9FB5C842FA68}: "URL" = http://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-403588509-1578940831-2739536460-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/USCON/1
IE - HKU\S-1-5-21-403588509-1578940831-2739536460-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKU\S-1-5-21-403588509-1578940831-2739536460-1001\..\SearchScopes,DefaultScope = {49606DC7-976D-4030-A74E-9FB5C842FA68}
IE - HKU\S-1-5-21-403588509-1578940831-2739536460-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR
IE - HKU\S-1-5-21-403588509-1578940831-2739536460-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-403588509-1578940831-2739536460-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..browser.search.order.1: "Yahoo"
FF - prefs.js..browser.search.order.2: ""
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.suggest.enabled: false
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "https://www.google.com/"
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:25.0.1
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Web Player Plug-In,version=1.0.0: C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\coFFPlgn\ [2013/11/24 21:36:56 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\IPSFF [2013/10/10 03:12:17 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/11/15 20:53:25 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/11/15 20:53:26 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/11/15 20:53:25 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/11/15 20:53:26 | 000,000,000 | ---D | M]

[2011/08/23 13:52:07 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Carla\AppData\Roaming\Mozilla\Extensions
[2013/11/23 16:16:55 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Carla\AppData\Roaming\Mozilla\Firefox\Profiles\vvk1xh17.default\extensions
[2013/01/23 09:18:25 | 000,401,328 | ---- | M] () (No name found) -- C:\Users\Carla\AppData\Roaming\Mozilla\Firefox\Profiles\vvk1xh17.default\extensions\jid1-xUfzOsOFlzSOXg@jetpack.xpi
[2013/11/15 20:53:25 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2013/11/15 20:53:25 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
[2013/11/15 20:53:25 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}
[2013/11/15 20:53:25 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013/11/15 20:53:33 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
CHR - Extension: Google Docs = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0\
CHR - Extension: Google Docs = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\
CHR - Extension: Google Drive = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0\
CHR - Extension: YouTube = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: YouTube = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Google Search = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: avast! Online Security = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2005.45_0\
CHR - Extension: Norton Identity Protection = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2013.4.3.4_0\
CHR - Extension: Google Wallet = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0\
CHR - Extension: DivX Plus Web Player HTML5 \u003Cvideo\u003E = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\
CHR - Extension: Gmail = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
CHR - Extension: Gmail = C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\

O1 HOSTS File: ([2009/06/10 16:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No CLSID value found.
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (Norton Identity Protection) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\coieplg.dll (Symantec Corporation)
O2 - BHO: (Norton Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\ips\ipsbho.dll (Symantec Corporation)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security Suite\Engine\20.4.0.40\coieplg.dll (Symantec Corporation)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:64bit: - HKLM..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.)
O4:64bit: - HKLM..\Run: [BTMTrayAgent] C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll (Intel Corporation)
O4:64bit: - HKLM..\Run: [DellStage] C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe ()
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IntelTBRunOnce] wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs" File not found
O4:64bit: - HKLM..\Run: [IntelWireless] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel(R) Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [QuickSet] c:\Program Files\Dell\QuickSet\quickset.exe (Dell Inc.)
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [AccuWeatherWidget] C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe ()
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [Dell DataSafe Online] C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuClient.exe (Dell, Inc.)
O4 - HKLM..\Run: [Dell Webcam Central] C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe (DivX, LLC)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\S-1-5-21-403588509-1578940831-2739536460-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:64bit: - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8:64bit: - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra 'Tools' menuitem : @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {5EA13312-8764-496F-B4AB-F7A872B51E14} https://oovoowww3-a.akamaihd.net/oovoomelink/oovoome/webvc/ooVooWeb.dll (ooVooWebCtrl Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6644228F-02DE-4AD4-87A1-8D5284F2BE18}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C077BD2A-A1D4-4AF2-8DDA-9A3999F1A78C}: DhcpNameServer = 10.1.10.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\livecall - No CLSID value found
O18 - Protocol\Handler\msnim - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{978c5d04-cdc6-11e0-80cd-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{978c5d04-cdc6-11e0-80cd-806e6f6e6963}\Shell\AutoRun\command - "" = D:\PC_Clickme.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2013/11/24 21:25:09 | 000,000,000 | ---D | C] -- C:\_OTL
[2013/11/24 19:50:51 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2013/11/24 19:49:50 | 000,000,000 | ---D | C] -- C:\Users\Carla\AppData\Roaming\Roxio Log Files
[2013/11/24 02:03:48 | 000,000,000 | ---D | C] -- C:\Windows\Sun
[2013/11/24 00:33:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2013/11/24 00:28:44 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2013/11/24 00:28:43 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2013/11/24 00:28:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2013/11/24 00:28:43 | 000,000,000 | ---D | C] -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
[2013/11/23 16:09:05 | 000,000,000 | ---D | C] -- C:\Windows\ERUNT
[2013/11/23 12:04:55 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2013/11/21 21:01:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX
[2013/11/16 18:52:52 | 000,000,000 | ---D | C] -- C:\N360_BACKUP
[2013/11/16 18:34:47 | 000,000,000 | ---D | C] -- C:\Users\Carla\AppData\Local\Google
[2013/11/16 18:34:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
[2013/11/16 17:18:08 | 000,000,000 | ---D | C] -- C:\Windows\11-16-2013
[2013/11/16 17:17:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ERUNT
[2013/11/16 17:17:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ERUNT
[2013/11/15 20:53:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2013/11/13 03:04:58 | 000,391,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2013/11/13 03:04:57 | 000,526,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2013/11/13 03:04:55 | 000,136,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2013/11/13 03:04:55 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2013/11/13 03:04:55 | 000,089,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2013/11/13 03:04:55 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2013/11/13 03:04:55 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2013/11/13 03:04:55 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2013/11/13 03:04:55 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2013/11/13 03:04:55 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2013/11/13 03:04:55 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2013/11/13 03:04:53 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2013/11/13 03:04:53 | 000,690,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2013/11/13 03:04:53 | 000,603,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2013/11/13 03:04:52 | 003,959,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2013/11/13 02:36:24 | 001,474,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2013/11/13 02:36:17 | 001,930,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2013/11/13 02:36:17 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2013/11/13 02:36:17 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\credui.dll
[2013/11/13 02:36:17 | 000,190,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmartcardCredentialProvider.dll
[2013/11/13 02:36:17 | 000,152,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
[2013/11/13 02:36:11 | 001,447,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2013/11/13 02:36:11 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2013/11/13 02:36:11 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2013/11/13 02:36:11 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2013/11/13 02:36:11 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2013/11/13 02:36:08 | 000,404,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2013/11/13 02:36:07 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nshwfp.dll
[2013/11/13 02:36:07 | 000,656,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshwfp.dll
[2013/11/13 02:36:07 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FWPUCLNT.DLL
[2013/11/13 02:36:07 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FWPUCLNT.DLL

========== Files - Modified Within 30 Days ==========

[2013/11/24 21:41:21 | 000,014,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/11/24 21:41:21 | 000,014,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/11/24 21:33:37 | 000,279,488 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013/11/24 21:33:32 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/11/24 21:33:04 | 463,867,903 | -HS- | M] () -- C:\hiberfil.sys
[2013/11/24 20:49:17 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013/11/24 12:12:23 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2013/11/24 12:12:23 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2013/11/24 11:51:46 | 000,727,398 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013/11/24 11:51:46 | 000,624,864 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013/11/24 11:51:46 | 000,106,950 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013/10/27 12:11:27 | 1060,143,367 | ---- | M] () -- C:\Windows\MEMORY.DMP

========== Files Created - No Company Name ==========

[2013/10/27 12:11:27 | 1060,143,367 | ---- | C] () -- C:\Windows\MEMORY.DMP
[2013/05/01 19:21:59 | 001,169,609 | ---- | C] () -- C:\Windows\unins000.exe
[2013/05/01 19:21:59 | 000,081,817 | ---- | C] () -- C:\Windows\unins000.dat
[2013/05/01 19:21:23 | 000,000,258 | RHS- | C] () -- C:\Users\Carla\ntuser.pol
[2013/02/04 18:50:52 | 000,005,120 | ---- | C] () -- C:\Users\Carla\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/04/19 19:12:23 | 000,036,864 | ---- | C] () -- C:\Users\Carla\06091507.dot
[2012/04/08 13:28:38 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat

========== ZeroAccess Check ==========

[2009/07/13 23:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/07/25 21:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/07/25 20:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 20:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 07:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 20:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2011/08/23 13:47:11 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\Fingertapps
[2013/07/11 21:31:26 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\Garmin
[2013/08/25 23:19:21 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\PCDr
[2011/09/12 15:45:20 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\SecondLife
[2013/08/15 02:33:44 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\SoftGrid Client
[2012/03/20 18:49:08 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\Tific
[2011/08/23 13:55:59 | 000,000,000 | ---D | M] -- C:\Users\Carla\AppData\Roaming\TP

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 127 bytes -> C:\ProgramData\Temp:E1D06077

< End of report >

ken545
2013-11-25, 05:16
Looking good, Avast is gone. How is your system behaving now ?

c_lady
2013-11-25, 05:35
Much better than when I started this thread. I think I am all set now. Thanks again for all your help!

ken545
2013-11-25, 12:45
Your very welcome

Open OTL and click on Clean Up and it will remove programs we used to clean your system along with there backups, any programs that where not removed you can just drag to the trash.


Malwarebytes is the free version and yours to keep and will not be removed



How did I get infected in the first place ?
Read these links and find out how to prevent getting infected again.
Tutorial for System Restore (http://www.bleepingcomputer.com/tutorials/tutorial56.html) <-- Do this first to prevent yourself from being reinfected.
WhattheTech (http://forums.whatthetech.com/index.php?showtopic=57817)
Grinler BleepingComputer (http://www.bleepingcomputer.com/forums/topic2520.html)
GeeksTo Go (http://www.geekstogo.com/forum/index.php?autocom=custom&page=How_did_I)
Dslreports (http://www.dslreports.com/faq/10002)



Safe Surfn
Ken