Page 1 of 3 123 LastLast
Results 1 to 10 of 25

Thread: How do I remove Conduit and Adchoices on my Window 7 64-Bit Laptop for good

  1. #1
    Junior Member
    Join Date
    Feb 2014
    Posts
    22

    Default How do I remove Conduit and Adchoices on my Window 7 64-Bit Laptop for good

    I can't figure out how to remove Conduit & Adchoices for good... I have googled and followed the directions given on how to remove them in IE FireFox and Chrome. It works for a while usually but, they both keep coming back?

  2. #2
    Malware Team-Emeritus
    Join Date
    Sep 2012
    Location
    Florida, USA
    Posts
    1,161

    Default

    Hi chucka52,

    My name is OCD. I would be more than happy to help you with solving any malware problems you might have. Logs can take a while to research, so please be patient and know that I am working hard to get you a clean and functional system back in your hands. I'd be grateful if you would note the following:

    • I will be working on your Malware issues, this may or may not, solve other issues you have with your machine.
    • The fixes are specific to your problem and should only be used for the issues on this machine.
    • Please continue to review my answers until I tell you your machine appears to be clear. Absence of symptoms does not mean that everything is clear.
    • It's often worth reading through these instructions and printing them for ease of reference.
    • If you don't know or understand something, please don't hesitate to say or ask!! It's better to be sure and safe than sorry.
    • Please reply to this thread. Do not start a new topic.
    • Copy and Paste logs directly into the reply window. DO NOT attach the logs unless specifically instructed to do so.

    IMPORTANT NOTE : Please do not delete, download or install anything unless instructed to do so.

    DO NOT use any TOOLS such as Combofix or HijackThis fixes without supervision. Doing so could make your system inoperable and could require a full reinstall of your Operating System and losing all your programs and data.

    Please stay with this topic until I let you know that your system appears to be "All Clear"

    Important: All tools MUST be run from the Desktop.

    =========================

    Security Check

    Download Security Check by screen317 from here or here.
    • Save it to your Desktop.
      • Windows XP : Double click on the icon to run it.
      • Windows Vista, Windows 7 & 8 : Right click and select "Run as Administrator"
    • A Notepad document should open automatically called checkup.txt; please post the contents of that document.

    =========================

    aswMBR

    Download aswMBR.exe and save it to your desktop.
      • Windows XP : Double click on the icon to run it.
      • Windows Vista, Windows 7 & 8 : Right click and select "Run as Administrator"
    • When asked if you want to download Avast's virus definitions please select Yes.
    • Click Scan
    • Upon completion of the scan, click Save log and save it to your desktop, and post that log in your next reply for review. Note - do NOT attempt any Fix yet.
    • You will also notice another file created on the desktop named MBR.dat. Right click that file and select Send To>Compressed (zipped) file. Attach that zipped file in your next reply as well.

    =========================
    Download Farbar Recovery Scan Tool and save to your desktop.

    Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.

    • Right click and select "Run as Administrator" to run it. When the tool opens click Yes to disclaimer.
    • Press Scan button.
    • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
    • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply

    =========================

    In your next post please provide the following:
    • checkup.txt
    • aswMBR.txt
    • attach MBR.zip
    • FRST.txt
    • Addition.txt
    OCD
    ----------
    Graduate of WTT Classroom
    Member of UNITE

    Threads will be closed if no response after 5 days

  3. #3
    Junior Member
    Join Date
    Feb 2014
    Posts
    22

    Default OCD I Need your Help

    Hi OCD,
    I followed your directions. But When I tried to copy & paste everything to this page nothing paste to this page? What I am doing wrong?

    Thank you for your help

    Best Regards, Chuck

  4. #4
    Malware Team-Emeritus
    Join Date
    Sep 2012
    Location
    Florida, USA
    Posts
    1,161

    Default

    Hi chucka52,

    I'm unsure what you are doing wrong, try these directions:

    How to post the requested logs, please do the following:
    • Locate each of the requested logs (they should be saved to your desktop)
    • In this thread locate the "Reply to Thread" button and click it.
    • Open each log (one at a time) and Copy & Paste (Ctrl+C and Ctrl+V) them in the window provided.
    • If you encounter a problem where the post is too large, separate the logs into multiple posts.
    • Locate the "Submit Reply" button at the bottom of the page, and click it.
    • You have just posted your logs for review.
    OCD
    ----------
    Graduate of WTT Classroom
    Member of UNITE

    Threads will be closed if no response after 5 days

  5. #5
    Junior Member
    Join Date
    Feb 2014
    Posts
    22

    Default

    Results of screen317's Security Check version 0.99.80
    Windows 7 Service Pack 1 x64 (UAC is enabled)
    Internet Explorer 11
    ``````````````Antivirus/Firewall Check:``````````````
    Windows Firewall Enabled!
    AVG AntiVirus Free Edition 2014
    Microsoft Security Essentials
    Antivirus up to date!
    `````````Anti-malware/Other Utilities Check:`````````
    MVPS Hosts File
    Spybot - Search & Destroy
    SlimCleaner
    Java 7 Update 51
    Adobe Flash Player 12.0.0.70
    Adobe Reader 9
    Adobe Reader XI
    Mozilla Firefox (27.0.1)
    Google Chrome 33.0.1750.117
    Google Chrome 33.0.1750.146
    Google Chrome Plugins...
    ````````Process Check: objlist.exe by Laurent````````
    Microsoft Security Essentials MSMpEng.exe
    Microsoft Security Essentials msseces.exe
    WinPatrol winpatrol.exe
    Spybot Teatimer.exe is disabled!
    AVG avgwdsvc.exe
    BillP Studios WinPatrol WinPatrol.exe
    `````````````````System Health check`````````````````
    Total Fragmentation on Drive C: 1%
    ````````````````````End of Log``````````````````````

  6. #6
    Junior Member
    Join Date
    Feb 2014
    Posts
    22

    Default

    Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-03-2014 01
    Ran by Chuck New_2 at 2014-03-05 17:25:16
    Running from C:\Users\Chuck New_2\Desktop\PC Protection Software Download Folder
    Boot Mode: Normal
    ==========================================================


    ==================== Security Center ========================

    AV: AVG AntiVirus Free Edition 2014 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
    AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
    AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
    AS: AVG AntiVirus Free Edition 2014 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}
    AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}

    ==================== Installed Programs ======================

    7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - )
    Acrobat.com (HKLM-x32\...\{77DCDCE3-2DED-62F3-8154-05E745472D07}) (Version: 1.1.377 - Adobe Systems Incorporated)
    Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 4.0.0.1390 - Adobe Systems Incorporated)
    Adobe AIR (x32 Version: 4.0.0.1390 - Adobe Systems Incorporated) Hidden
    Adobe Flash Player 11 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 11.9.900.152 - Adobe Systems Incorporated)
    Adobe Flash Player 12 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 12.0.0.44 - Adobe Systems Incorporated)
    Adobe Reader XI (11.0.06) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated)
    Advanced Scan to PDF Free 3.9.2 (HKLM-x32\...\Advanced Scan to PDF Free_is1) (Version: - PDFChief Co., Ltd.)
    Alcor Micro USB Card Reader (HKLM-x32\...\InstallShield_{F4BF5F6B-F695-4762-AEB2-D095A4C34D89}) (Version: 1.5.17.25482 - Alcor Micro Corp.)
    Alcor Micro USB Card Reader (x32 Version: 1.5.17.25482 - Alcor Micro Corp.) Hidden
    ASUS AI Recovery (HKLM-x32\...\{06585B02-F20D-4AB2-9A64-86EF2AE0F8F0}) (Version: 1.0.7 - ASUS)
    ASUS FancyStart (HKLM-x32\...\{2B81872B-A054-48DA-BE3B-FA5C164C303A}) (Version: 1.0.8 - ASUSTeK Computer Inc.)
    ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.0.20 - ASUS)
    ASUS Live Update (HKLM-x32\...\{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}) (Version: 2.5.9 - ASUS)
    ASUS Power4Gear Hybrid (HKLM\...\{91EFE3A1-585E-4F66-B5F6-F118F56C4C47}) (Version: 1.1.23 - ASUS)
    ASUS SmartLogon (HKLM-x32\...\{64452561-169F-4A36-A2FF-B5E118EC65F5}) (Version: 1.0.0007 - ASUS)
    ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.19 - asus)
    ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0001 - ASUS)
    AVG 2014 (HKLM\...\AVG) (Version: 2014.0.4259 - AVG Technologies)
    AVG 2014 (Version: 14.0.3705 - AVG Technologies) Hidden
    AVG 2014 (Version: 14.0.4259 - AVG Technologies) Hidden
    AVG SafeGuard toolbar (HKLM-x32\...\AVG SafeGuard toolbar) (Version: 17.0.1.12 - AVG Technologies)
    BatteryCare 0.9.15.0 (HKLM-x32\...\{C6A6036D-FBD0-4324-BEAA-C0845257160C}_is1) (Version: 0.9.15.0 - Filipe Lourenço)
    BlueStacks App Player (HKLM-x32\...\BlueStacks App Player) (Version: 0.7.18.921 - BlueStack Systems, Inc.)
    BlueStacks Notification Center (HKLM-x32\...\{87D0541E-7EB4-44AD-8A0D-D951152020C1}) (Version: 0.7.18.921 - BlueStack Systems, Inc.)
    Brother MFL-Pro Suite DCP-7020 (HKLM-x32\...\{C2530D63-B66B-48B5-BB50-7C6281FE7AA6}) (Version: 1.0.1.0 - Brother Industries, Ltd.)
    Canon MG3100 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3100_series) (Version: - )
    CCleaner (HKLM\...\CCleaner) (Version: 4.11 - Piriform)
    ControlDeck (HKLM-x32\...\{5B65EF64-1DFA-414A-8C94-7BB726158E21}) (Version: 1.0.8 - ASUS)
    D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
    Disketch Disc Label Software (HKLM-x32\...\Disketch) (Version: 3.11 - NCH Software)
    DisplayLink Core Software (HKLM\...\{29E6A126-BB06-41CF-B12D-E6A56261328D}) (Version: 5.6.31854.0 - DisplayLink Corp.)
    DisplayLink Graphics (HKLM\...\{A5836294-D90E-40BC-BF33-BA3751FB134B}) (Version: 5.6.32670.0 - DisplayLink Corp.)
    Doxillion Document Converter (HKLM-x32\...\Doxillion) (Version: 2.17 - NCH Software)
    Elevated Installer (x32 Version: 2.2.7 - Garmin Ltd or its subsidiaries) Hidden
    ETDWare PS/2-x64 7.0.5.9_WHQL (HKLM\...\Elantech) (Version: - )
    Express Burn (HKLM-x32\...\ExpressBurn) (Version: 4.68 - NCH Software)
    Facebook Messenger 2.1.4814.0 (HKLM-x32\...\{7204BDEE-1A48-4D95-A964-44A9250B439E}) (Version: 2.1.4814.0 - Facebook)
    Fast Boot (HKLM\...\{13F4A7F3-EABC-4261-AF6B-1317777F0755}) (Version: 1.0.4 - ASUS)
    File Shredder 2.5 (HKLM\...\File Shredder_is1) (Version: - Pow Tools)
    File Type Assistant (HKLM-x32\...\Trusted Software Assistant_is1) (Version: 2014.1.24.0 - ) <==== ATTENTION
    Free File Viewer 2012 (HKLM-x32\...\FreeFileViewer_is1) (Version: 2012.10.9.0 - Bitberry Software)
    Free YouTube to MP3 TURBO Converter 2013 (HKLM-x32\...\FreeYoutubeToMP3TURBOConverter_is1) (Version: - Bitberry Software)
    Freemake Youtube Mp3 Converter (HKLM-x32\...\Freemake Youtube Mp3 Converter_is1) (Version: 3.5.4 - Ellora Assets Corporation)
    Garmin Express (HKLM-x32\...\{ed2d2e4a-3be7-450b-9c1b-fa727ae92d91}) (Version: 2.2.7 - Garmin Ltd or its subsidiaries)
    Garmin Express (x32 Version: 2.2.7 - Garmin Ltd or its subsidiaries) Hidden
    Garmin Express Tray (x32 Version: 2.2.7 - Garmin Ltd or its subsidiaries) Hidden
    Garmin Update Service (x32 Version: 2.2.7 - Garmin Ltd or its subsidiaries) Hidden
    Garmin USB Drivers (HKLM-x32\...\{3D5D6CFC-3097-425A-8D8F-7EAF5D57641D}) (Version: 2.3.1.0 - Garmin Ltd or its subsidiaries)
    Google Chrome (HKLM-x32\...\Google Chrome) (Version: 33.0.1750.146 - Google Inc.)
    Google Drive (HKLM-x32\...\{E87022D3-C8C9-4C76-8E27-BC7F18F9B8FB}) (Version: 1.14.6059.644 - Google, Inc.)
    Google Talk Plugin (HKLM-x32\...\{2A83AD05-56E6-3FBD-8752-B4143162EF59}) (Version: 4.9.1.16010 - Google)
    Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.4805.320 - Google Inc.)
    Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
    Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden
    IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6259.0 - IDT)
    ieSpell (HKLM-x32\...\ieSpell) (Version: 2.6.4 (build 573) - Red Egg Software)
    Infix PDF Editor version 6.1.5.0 (HKLM-x32\...\83FFB914-6FA7-4F1F-807E-E0FFBA2E49E1_is1) (Version: 6.1.5.0 - Iceni Technology)
    Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.0.1006 - Intel Corporation)
    Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
    Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2993 - Intel Corporation)
    IsoBuster 3.3 (HKLM-x32\...\IsoBuster_is1) (Version: 3.3 - Smart Projects)
    Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.510 - Oracle)
    Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
    Junk Mail filter update (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    K_Series_ScreenSaver_EN (HKLM-x32\...\K_Series_ScreenSaver_EN) (Version: - )
    Memeo AutoSync (HKLM-x32\...\{75B7F766-7998-44d8-A202-F1EC76A121BA}) (Version: - Memeo Inc.)
    Memeo Instant Backup (HKLM-x32\...\{8E666407-AC41-46a2-9692-6C7BFCBFDD37}) (Version: 4.60.0.7252 - Memeo Inc.)
    Memeo Send (HKLM-x32\...\{81784157-3D4D-4bc1-B988-B24C32A26DA8}) (Version: - Memeo Inc.)
    Memeo Share (HKLM-x32\...\{1BC77CEF-C52F-4092-BF87-0D4E6B86D860}) (Version: 3.1.0.3265 - Memeo Inc.)
    Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
    Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
    Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
    Microsoft Security Client (Version: 4.4.0304.0 - Microsoft Corporation) Hidden
    Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.4.304.0 - Microsoft Corporation)
    Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20913.0 - Microsoft Corporation)
    Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
    Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Mozilla Firefox 27.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 27.0.1 (x86 en-US)) (Version: 27.0.1 - Mozilla)
    Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 26.0 - Mozilla)
    MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
    MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
    MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
    MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
    Nitro Reader 3 (HKLM\...\{3C1F302A-CC25-488D-9C24-A76B95BC916F}) (Version: 3.0.6.3 - Nitro)
    OpenOffice 4.0.1 (HKLM-x32\...\{47F460DA-D1BE-4D85-8DF2-AA1F31D3445F}) (Version: 4.01.9714 - Apache Software Foundation)
    PdaNet+ for Android 4.12 (HKLM-x32\...\PdaNet_is1) (Version: - June Fabrics Technology Inc)
    PDF Architect (HKLM-x32\...\{064A929A-4DE8-40CF-A901-BD40C14E4D25}) (Version: 1.1.83.9982 - pdfforge GmbH)
    PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.2 - pdfforge)
    pdfforge Images2PDF 0.9.6.930 (HKLM\...\{00120495-F25C-4F44-9DC7-2D812D025DBA}) (Version: 0.9.6.930 - pdfforge GbR)
    Photo Gallery (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    PhotoPad Image Editor (HKLM-x32\...\PhotoPad) (Version: 2.42 - NCH Software)
    PhotoStage Slideshow Producer (HKLM-x32\...\PhotoStage) (Version: 2.34 - NCH Software)
    Pixillion Image Converter (HKLM-x32\...\Pixillion) (Version: 2.72 - NCH Software)
    Recuva (HKLM\...\Recuva) (Version: 1.50 - Piriform)
    Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.0.13091_9 - Samsung Electronics Co., Ltd.)
    Samsung Kies (x32 Version: 2.6.0.13091_9 - Samsung Electronics Co., Ltd.) Hidden
    Samsung Story Album Viewer (HKLM-x32\...\InstallShield_{698BBAD8-B116-495D-B879-0F07A533E57F}) (Version: 1.0.0.13054_1 - Samsung Electronics Co., Ltd.)
    Samsung Story Album Viewer (x32 Version: 1.0.0.13054_1 - Samsung Electronics Co., Ltd.) Hidden
    SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.29.0 - SAMSUNG Electronics Co., Ltd.)
    Scanner Copier GPL 0.3 (HKLM-x32\...\Scanner Copier GPL) (Version: 0.3 - Tide Tamer Industries, Inc.)
    Seagate Dashboard (HKLM-x32\...\{C3A11907-930D-41AC-A135-CC3B12F92011}) (Version: 1.1.0.1421 - Memeo Inc.)
    Slacker Software Player (HKLM-x32\...\Slacker Software Player) (Version: 2.1.2370.0000 - Slacker)
    SlimCleaner (HKLM-x32\...\{6B8D6199-EE44-4FD7-813A-6D8C62C9B384}) (Version: 4.0.30878 - SlimWare Utilities, Inc.)
    Speccy (HKLM\...\Speccy) (Version: 1.24 - Piriform)
    Spelling Dictionaries Support For Adobe Reader 9 (HKLM-x32\...\{AC76BA86-7AD7-5464-3428-900000000004}) (Version: 9.0.0 - Adobe Systems Incorporated)
    Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.2.25 - Safer-Networking Ltd.)
    SpyHunter (HKLM\...\{ACF5FE1B-3772-4068-8B87-2D2A6EFD0A05}) (Version: 4.17.6.4336 - Enigma Software Group USA, LLC)
    Universal Push2TV HD (HKLM-x32\...\InstallShield_{6D45461F-F0FF-4E32-A16D-C636722FCA12}) (Version: 14.2.135.10 - NETGEAR)
    Universal Push2TV HD (Version: 14.2.135.10 - NETGEAR) Hidden
    USB PnP Sound Device (HKLM\...\C-Media CM108 Like Sound Driver) (Version: - )
    VideoPad Video Editor (HKLM-x32\...\VideoPad) (Version: 3.29 - NCH Software)
    Visual Studio 2010 x64 Redistributables (HKLM\...\{21B133D6-5979-47F0-BE1C-F6A6B304693F}) (Version: 13.0.0.1 - AVG Technologies)
    Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
    Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
    VLC media player 2.1.3 (HKLM\...\VLC media player) (Version: 2.1.3 - VideoLAN)
    WavePad Sound Editor (HKLM-x32\...\WavePad) (Version: 5.55 - NCH Software)
    WIDCOMM Bluetooth Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: 6.5.1.4100 - Broadcom Corporation)
    WIFi Locator version 1.1 (HKLM-x32\...\{80A11778-F86C-4DB2-9DB5-D5B886BEFD05}_is1) (Version: 1.1 - http://tcpmonitor.altervista.org/)
    WiFi Protector (HKLM\...\wifiProt-SL_is1) (Version: 3.0.20.138 - Optimal Software s.r.o)
    Windows Driver Package - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1.0) (HKLM\...\98157A226B40B173301B0F53C8E98C47805D5152) (Version: 04/19/2012 2.3.1.0 - Garmin)
    Windows Live Communications Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation)
    Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live Family Safety (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live Family Safety (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden
    Windows Live Installer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live Mail (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live Messenger (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live MIME IFilter (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live PIMT Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live SOXE (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live UX Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live Writer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live Writer Resources (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Mobile Device Center (HKLM\...\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}) (Version: 6.1.6965.0 - Microsoft Corporation)
    Windows Mobile Device Center Driver Update (HKLM\...\{92DBCA36-9B41-4DD1-941A-AED149DD37F0}) (Version: 6.1.6965.0 - Microsoft Corporation)
    Windows XP Mode (HKLM\...\{1374CC63-B520-4f3f-98E8-E9020BF01CFF}) (Version: 1.3.7600.16423 - Microsoft Corporation)
    WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.30.1 - ASUS)
    Wireless Console 3 (HKLM-x32\...\{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}) (Version: 3.0.15 - ASUS)

    ==================== Restore Points =========================

    01-03-2014 07:24:06 Windows Live Essentials
    01-03-2014 07:28:26 Installed DirectX
    01-03-2014 07:29:03 Installed DirectX
    01-03-2014 21:31:02 Installed Easy WiFi
    01-03-2014 22:12:46 Microsoft Antimalware Checkpoint
    02-03-2014 17:22:45 Windows Update
    04-03-2014 15:22:34 Removed Easy WiFi
    04-03-2014 15:24:40 Removed Easy WiFi
    04-03-2014 15:26:44 Removed System Requirements Lab for Intel
    05-03-2014 20:02:02 Windows Update

    ==================== Hosts content: ==========================

    2009-07-13 21:34 - 2014-02-27 03:34 - 00450639 ____N C:\Windows\system32\Drivers\etc\hosts
    127.0.0.1 www.007guard.com
    127.0.0.1 007guard.com
    127.0.0.1 008i.com
    127.0.0.1 www.008k.com
    127.0.0.1 008k.com
    127.0.0.1 www.00hq.com
    127.0.0.1 00hq.com
    127.0.0.1 010402.com
    127.0.0.1 www.032439.com
    127.0.0.1 032439.com
    127.0.0.1 www.0scan.com
    127.0.0.1 0scan.com
    127.0.0.1 1000gratisproben.com
    127.0.0.1 www.1000gratisproben.com
    127.0.0.1 1001namen.com
    127.0.0.1 www.1001namen.com
    127.0.0.1 100888290cs.com
    127.0.0.1 www.100888290cs.com
    127.0.0.1 www.100sexlinks.com
    127.0.0.1 100sexlinks.com
    127.0.0.1 10sek.com
    127.0.0.1 www.10sek.com
    127.0.0.1 www.1-2005-search.com
    127.0.0.1 1-2005-search.com
    127.0.0.1 123fporn.info
    127.0.0.1 www.123fporn.info
    127.0.0.1 123haustiereundmehr.com
    127.0.0.1 www.123haustiereundmehr.com
    127.0.0.1 123moviedownload.com

    There are 1000 more lines.


    ==================== Scheduled Tasks (whitelisted) =============

    Task: {002CCC08-ABC5-4BA1-A925-3DEF58955136} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe [2014-01-09] (Enigma Software Group USA, LLC.)
    Task: {010EBD91-5BFA-4C27-BC7C-5316630E68F0} - System32\Tasks\P4GIntlCtrl => C:\Program Files\P4G\IntlCtrl.exe [2009-08-11] (TODO: <Company name>)
    Task: {022767FB-C596-46D5-880A-B54A81C187E9} - System32\Tasks\NCH Software\PhotoStageSevenDays => C:\Program Files (x86)\NCH Software\PhotoStage\PhotoStage.exe [2014-01-22] (NCH Software)
    Task: {0477A8B6-AD60-4244-8AEA-9EB618BCF6C0} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDScan.exe
    Task: {17394133-2AFA-4066-9A9C-707DDF5FBBBC} - System32\Tasks\Norton Identity Safe\Norton Error Analyzer => C:\Program Files (x86)\Norton Identity Safe\Engine\2013.1.0.32\SymErr.exe
    Task: {18A518B2-8B06-4353-A5A2-BD16E22E0AAF} - System32\Tasks\WC3 => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2010-01-04] ()
    Task: {20C0476D-78B0-4345-BE74-5383E3A13EDC} - System32\Tasks\{EDD0ED8C-EA30-4B4C-8F0F-BC7C2CCE8930} => Chrome.exe http://ui.skype.com/ui/0/6.7.60.102/...ll?page=tsMain
    Task: {2A2B80FD-4C63-4A54-A511-78AD15D63EEC} - System32\Tasks\{00C73705-0303-4247-B539-7F2C5F566AC2} => C:\Users\Chuck New\Downloads\Brothers DCP-7020 Print- Scanner Tool to Uninstall Old Software Ver Ddelinf_10160.EXE
    Task: {3187541D-C9E2-4E54-AD7F-B61AFFF1CFAB} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2009-09-08] (ATK)
    Task: {34814613-A688-4B51-A55B-258AB12F0934} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-25] (Google Inc.)
    Task: {37101C5A-D0EF-4EAC-9406-78D1FE616385} - System32\Tasks\SlimCleaner Scan => C:\Program Files (x86)\SlimCleaner\SlimCleaner.exe [2013-07-10] (SlimWare Utilities, Inc.)
    Task: {4AC1C553-D1E5-43E8-ABCF-88FDBDA55DFB} - System32\Tasks\Adobe online update program => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21] (Adobe Systems Incorporated)
    Task: {4F20B733-7C45-4231-A603-04358685FE1D} - System32\Tasks\ProgramRefresh-ATFST => C:\Program Files (x86)\File Type Assistant\tsasetup.exe [2014-02-04] ( ) <==== ATTENTION
    Task: {52734F5C-C1D4-4732-8F66-8704EF94AA1F} - System32\Tasks\Microsoft\Windows\MobilePC\DisplayLink TMM Control
    Task: {581E9CCC-468E-4ABC-9905-82279626C8F9} - System32\Tasks\ASUSControlDeck => C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe [2010-06-09] (asus)
    Task: {5A3CD8DB-611F-4A2C-8471-957540233739} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-04] (Adobe Systems Incorporated)
    Task: {7CDEC153-BAA6-42B6-A271-F3F134E11AE5} - System32\Tasks\BatteryCareAuto => C:\Program Files (x86)\BatteryCare\BatteryCare.exe [2013-10-28] (Filipe Lourenço)
    Task: {8ECF16D1-C01F-4CA5-848A-7772849C1431} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDUpdate.exe
    Task: {8F9A51C8-24DD-4A4A-BE82-C5E8AC1A69EF} - System32\Tasks\ProgramUpdateCheck => C:\Program Files (x86)\File Type Assistant\TSAssist.exe [2014-01-24] (Trusted Software ApS) <==== ATTENTION
    Task: {923FDE67-194B-4C3A-B0FD-A7615C67FCE6} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-4229314078-1887863115-615417127-1000Core => C:\Users\Chuck\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-05-27] (Facebook Inc.)
    Task: {958F49D8-EA74-4FA4-945E-A346BFB6FBCF} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation)
    Task: {9CD022FC-5F1E-4D12-9603-CAB9A069B4D3} - System32\Tasks\FreeFileViewerUpdateChecker => C:\Program Files (x86)\FreeFileViewer\FFVCheckForUpdates.exe [2013-03-25] (Bitberry Software)
    Task: {A3B10D9B-B46E-40B2-8B5F-077BBFD56A1E} - System32\Tasks\SpeedyPC Pro_sch_31962B5C-7D33-11E3-BED2-485B39E79C28 => C:\Program Files (x86)\SpeedyPC Software\SpeedyPC\SpeedyPC.exe
    Task: {B263D4D7-2D25-45D8-8CED-B98E7DABE0BE} - System32\Tasks\Google Updater and Installer => C:\Users\Chuck\AppData\Local\Google\Update\GoogleUpdate.exe [2013-10-05] (Google Inc.)
    Task: {BB74B64F-76CE-4968-AAF1-00BEF454B52D} - System32\Tasks\SlimCleaner Run => C:\Program Files (x86)\SlimCleaner\SlimCleaner.exe [2013-07-10] (SlimWare Utilities, Inc.)
    Task: {BEF2D0CB-92F5-41A2-AE5C-D9F87EA75ACD} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
    Task: {C00F94DD-C620-4381-A70B-394FCA2004CE} - System32\Tasks\{15225D4F-88F4-489D-812D-24A3BB55A5F9} => C:\Users\Chuck New\Downloads\Brothers DCP-7020 Print- Scanner Tool to Uninstall Old Software Ver Ddelinf_10160.EXE
    Task: {C0AA91DF-C1B0-4295-A775-2211D67F63B0} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4229314078-1887863115-615417127-1000UA => C:\Users\Chuck\AppData\Local\Google\Update\GoogleUpdate.exe [2013-10-05] (Google Inc.)
    Task: {C3C9AFEA-7EE5-4825-9C74-4F24E6BD00F1} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [2009-05-18] (ASUS)
    Task: {D16194A0-4CD2-4D40-8DEC-87F42E6FDB59} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-25] (Google Inc.)
    Task: {D2F7E1B1-DDC7-47FB-92A5-599E548ED2E0} - System32\Tasks\NCH Software\VideoPadSevenDays => C:\Program Files (x86)\NCH Software\VideoPad\VideoPad.exe [2014-01-22] (NCH Software)
    Task: {DA93948C-0D05-4977-8A42-9F2D97D59C06} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-4229314078-1887863115-615417127-1000UA => C:\Users\Chuck\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-05-27] (Facebook Inc.)
    Task: {E4642D92-16F2-4CB9-A8E6-61C82C3A7889} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDImmunize.exe
    Task: {EADAAC26-5C8E-44F4-9C49-B41E5DF83E9F} - System32\Tasks\P4G Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20] (Microsoft Corporation)
    Task: {F11D5440-2D72-4BB1-963E-ACD9CDE6CA39} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-02-20] (Piriform Ltd)
    Task: {F4A60049-4F85-4701-9DD5-343FB0FE71F0} - System32\Tasks\Norton Identity Safe\Norton Error Processor => C:\Program Files (x86)\Norton Identity Safe\Engine\2013.1.0.32\SymErr.exe
    Task: {FDBE611F-7FEF-45E5-AFFF-7D826C630903} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4229314078-1887863115-615417127-1000Core => C:\Users\Chuck\AppData\Local\Google\Update\GoogleUpdate.exe [2013-10-05] (Google Inc.)
    Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4229314078-1887863115-615417127-1000Core.job => C:\Users\Chuck\AppData\Local\Facebook\Update\FacebookUpdate.exe
    Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4229314078-1887863115-615417127-1000UA.job => C:\Users\Chuck\AppData\Local\Facebook\Update\FacebookUpdate.exe
    Task: C:\Windows\Tasks\FreeFileViewerUpdateChecker.job => C:\Program Files (x86)\FreeFileViewer\FFVCheckForUpdates.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4229314078-1887863115-615417127-1000Core.job => C:\Users\Chuck\AppData\Local\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4229314078-1887863115-615417127-1000UA.job => C:\Users\Chuck\AppData\Local\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\SlimCleaner Scan.job => C:\Program Files (x86)\SlimCleaner\SlimCleaner.exe
    Task: C:\Windows\Tasks\SpeedyPC Pro_sch_31962B5C-7D33-11E3-BED2-485B39E79C28.job => C:\Program Files (x86)\SpeedyPC Software\SpeedyPC\SpeedyPC.exe

    ==================== Loaded Modules (whitelisted) =============

    2011-08-09 13:28 - 2011-08-09 13:28 - 00032576 _____ () C:\Program Files (x86)\NETGEAR\PTVU1000\Association\ResourceDll.dll
    2009-08-28 18:00 - 2009-08-28 18:00 - 00041984 _____ () C:\Program Files\P4G\DevMng.dll
    2009-08-28 14:43 - 2009-08-28 14:43 - 00029184 _____ () C:\Program Files\P4G\OvrClk.dll
    2010-01-04 16:43 - 2010-01-04 16:43 - 01597440 _____ () C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
    2012-01-10 20:12 - 2012-01-10 20:12 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
    2011-06-28 16:59 - 2011-06-28 16:59 - 00056800 _____ () C:\Program Files (x86)\NETGEAR\PTVU1000\Universal Push2TV HD Manager\CompInfo.dll
    2011-08-09 13:28 - 2011-08-09 13:28 - 00107328 _____ () C:\Program Files (x86)\NETGEAR\PTVU1000\Universal Push2TV HD Manager\WUSBResource.dll
    2010-04-22 19:33 - 2010-04-22 19:33 - 00323808 _____ () C:\Program Files (x86)\Memeo\AutoBackup\InstantBackup.exe
    2013-11-18 14:05 - 2013-04-22 10:46 - 01054320 _____ () C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe
    2014-02-27 01:18 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
    2014-02-27 01:18 - 2013-05-16 10:55 - 00113496 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
    2014-02-27 01:18 - 2013-05-16 10:55 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
    2014-02-27 01:18 - 2013-05-16 10:55 - 00161112 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
    2014-02-27 01:18 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
    2014-02-07 20:05 - 2009-02-27 16:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
    2010-04-22 19:33 - 2010-04-22 19:33 - 02887904 _____ () C:\Program Files (x86)\Memeo\AutoBackup\Memeo.Client.UI.dll
    2010-04-22 19:33 - 2010-04-22 19:33 - 00025824 _____ () C:\Program Files (x86)\Memeo\AutoBackup\Memeo.Client.DriveDetection.dll
    2010-03-22 17:59 - 2010-03-22 17:59 - 00504293 _____ () C:\Program Files (x86)\Memeo\AutoBackup\sqlite3.DLL
    2010-02-23 14:14 - 2010-02-23 14:14 - 00041472 _____ () C:\Program Files (x86)\ASUS\ControlDeck\HelpFunc.dll
    2010-02-23 14:14 - 2010-02-23 14:14 - 00071680 _____ () C:\Program Files (x86)\ASUS\ControlDeck\Brightness.dll
    2010-02-23 14:11 - 2010-02-23 14:11 - 00076288 _____ () C:\Program Files (x86)\ASUS\ControlDeck\Volume.dll
    2010-02-23 14:12 - 2010-02-23 14:12 - 00186880 _____ () C:\Program Files (x86)\ASUS\ControlDeck\Resolution.dll
    2010-02-23 14:14 - 2010-02-23 14:14 - 00050688 _____ () C:\Program Files (x86)\ASUS\ControlDeck\P4GControl.dll
    2014-03-04 02:20 - 2014-03-01 21:35 - 00051016 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\chrome_elf.dll
    2014-03-04 02:20 - 2014-03-01 21:35 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\libglesv2.dll
    2014-03-04 02:20 - 2014-03-01 21:35 - 00100168 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\libegl.dll
    2014-03-04 02:20 - 2014-03-01 21:35 - 04061000 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\pdf.dll
    2014-03-04 02:20 - 2014-03-01 21:35 - 00394568 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\ppGoogleNaClPluginChrome.dll
    2014-03-04 02:20 - 2014-03-01 21:35 - 01647432 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\ffmpegsumo.dll
    2013-09-20 12:50 - 2013-09-20 12:50 - 00988160 _____ () C:\Program Files (x86)\OpenOffice 4\program\libxml2.dll
    2013-09-17 03:54 - 2013-09-17 03:54 - 00170496 _____ () C:\Program Files (x86)\OpenOffice 4\program\libxslt.dll

    ==================== Alternate Data Streams (whitelisted) =========

    AlternateDataStreams: C:\ProgramData\TEMP:373E1720
    AlternateDataStreams: C:\Users\Chuck New_2\Downloads\2009 Honda Accord EX-L.eml:OECustomProperty

    ==================== Safe Mode (whitelisted) ===================

    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\sndappv2 => ""="service"

    ==================== Disabled items from MSCONFIG ==============

    MSCONFIG\Services: AdobeARMservice => 2
    MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
    MSCONFIG\Services: AFBAgent => 2
    MSCONFIG\Services: ASLDRService => 2
    MSCONFIG\Services: ATKGFNEXSrv => 2
    MSCONFIG\Services: BackupStack => 2
    MSCONFIG\Services: BstHdAndroidSvc => 2
    MSCONFIG\Services: BstHdLogRotatorSvc => 2
    MSCONFIG\Services: btwdins => 3
    MSCONFIG\Services: CableAssociation => 2
    MSCONFIG\Services: CouponXplorer_5zService => 2
    MSCONFIG\Services: DisplayLinkService => 2
    MSCONFIG\Services: Freemake Improver => 2
    MSCONFIG\Services: FreemakeVideoCapture => 2
    MSCONFIG\Services: Garmin Core Update Service => 3
    MSCONFIG\Services: gupdate => 2
    MSCONFIG\Services: gupdatem => 3
    MSCONFIG\Services: gusvc => 3
    MSCONFIG\Services: LMS => 2
    MSCONFIG\Services: MemeoBackgroundService => 2
    MSCONFIG\Services: MozillaMaintenance => 3
    MSCONFIG\Services: NitroReaderDriverReadSpool3 => 2
    MSCONFIG\Services: PDF Architect Helper Service => 2
    MSCONFIG\Services: PDF Architect Service => 2
    MSCONFIG\Services: SeagateDashboardService => 2
    MSCONFIG\Services: Skype C2C Service => 2
    MSCONFIG\Services: SkypeUpdate => 2
    MSCONFIG\Services: Slacker Portable Service => 2
    MSCONFIG\Services: SProtection => 2
    MSCONFIG\Services: STacSV => 2
    MSCONFIG\Services: TelevisionFanaticService => 2
    MSCONFIG\Services: UNS => 2
    MSCONFIG\Services: Update lucky leap => 2
    MSCONFIG\Services: vToolbarUpdater17.0.12 => 2
    MSCONFIG\Services: wifiProtService => 2
    MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk => C:\Windows\pss\Bluetooth.lnk.CommonStartup
    MSCONFIG\startupfolder: C:^Users^Chuck^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk => C:\Windows\pss\Dropbox.lnk.Startup
    MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    MSCONFIG\startupreg: AmIcoSinglun64 => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
    MSCONFIG\startupreg: ASUS Screen Saver Protector => C:\Windows\AsScrPro.exe
    MSCONFIG\startupreg: ATKMEDIA => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
    MSCONFIG\startupreg: ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
    MSCONFIG\startupreg: AVG_UI => "C:\Program Files (x86)\AVG\AVG2014\avgui.exe" /TRAYONLY
    MSCONFIG\startupreg: BlueStacks Agent => C:\Program Files (x86)\BlueStacks\HD-Agent.exe
    MSCONFIG\startupreg: D4B72B26CB6875D709FF04D0DB2FBE43355516F8._service_run => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=service
    MSCONFIG\startupreg: DelaypluginInstall => C:\ProgramData\Wondershare\Player\DelayPluginI.exe
    MSCONFIG\startupreg: DW7 => "C:\Program Files (x86)\The Weather Channel\The Weather Channel App\TWCApp.exe"
    MSCONFIG\startupreg: ETDWare => C:\Program Files\Elantech\ETDCtrl.exe
    MSCONFIG\startupreg: Facebook Update => "C:\Users\Chuck\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
    MSCONFIG\startupreg: GoogleChromeAutoLaunch_9001C7D091CC23E7588EE40C1DFED158 => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
    MSCONFIG\startupreg: GoogleDriveSync => "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
    MSCONFIG\startupreg: HControlUser => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
    MSCONFIG\startupreg: HotKeysCmds => C:\Windows\system32\hkcmd.exe
    MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exe
    MSCONFIG\startupreg: Iminent => C:\Program Files (x86)\Iminent\Iminent.exe /warmup "F77F87E5-A6BD-4922-A530-EDF63D7E9F8C"
    MSCONFIG\startupreg: IminentMessenger => C:\Program Files (x86)\Iminent\Iminent.Messengers.exe
    MSCONFIG\startupreg: InboxToolbar => "C:\Program Files (x86)\Inbox Toolbar\Inbox.exe" /STARTUP
    MSCONFIG\startupreg: KiesAirMessage => C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup
    MSCONFIG\startupreg: KiesPreload => "C:\Program Files (x86)\Samsung\Kies\Kies.exe" /preload
    MSCONFIG\startupreg: KiesTrayAgent => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
    MSCONFIG\startupreg: Memeo Send => C:\Program Files (x86)\Memeo\Memeo Send\MemeoLauncher.exe --silent
    MSCONFIG\startupreg: NTRedirect => C:\Windows\SysWOW64\rundll32.exe "C:\Users\Chuck\AppData\Roaming\BabSolution\Shared\enhancedNT.dll",Run
    MSCONFIG\startupreg: Persistence => C:\Windows\system32\igfxpers.exe
    MSCONFIG\startupreg: Seagate Dashboard => C:\Program Files (x86)\Seagate\Seagate Dashboard\MemeoLauncher.exe --silent --no_ui
    MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
    MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
    MSCONFIG\startupreg: swg => "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
    MSCONFIG\startupreg: SysTrayApp => C:\Program Files\IDT\WDM\sttray64.exe
    MSCONFIG\startupreg: TelevisionFanatic Browser Plugin Loader => C:\PROGRA~2\TELEVI~2\bar\1.bin\64brmon.exe
    MSCONFIG\startupreg: TelevisionFanatic Home Page Guard 64 bit => "C:\PROGRA~2\TELEVI~2\bar\1.bin\AppIntegrator64.exe"
    MSCONFIG\startupreg: TelevisionFanatic Search Scope Monitor => "C:\PROGRA~2\TELEVI~2\bar\1.bin\64srchmn.exe" /m=2 /w /h
    MSCONFIG\startupreg: Universal Push2TV HD Manager => "C:\Program Files (x86)\NETGEAR\PTVU1000\Universal Push2TV HD Manager\Universal Push2TV HD Manager.exe"
    MSCONFIG\startupreg: VivoxHDN => "C:\Users\Chuck\AppData\Local\Vivox\HDN\Current\Vivox.HDN.Up.exe" /d
    MSCONFIG\startupreg: vProt => "C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe"
    MSCONFIG\startupreg: Windows Mobile Device Center => %windir%\WindowsMobile\wmdc.exe
    MSCONFIG\startupreg: Wondershare Helper Compact.exe => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe

    ==================== Faulty Device Manager Devices =============

    Name: PdaNet Modem
    Description: PdaNet Modem
    Class Guid: {4d36e96d-e325-11ce-bfc1-08002be10318}
    Manufacturer: JuneFabrics
    Service: Modem
    Problem: : This device is disabled. (Code 22)
    Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

    Name: Bluetooth Peripheral Device
    Description: Bluetooth Peripheral Device
    Class Guid:
    Manufacturer:
    Service:
    Problem: : The drivers for this device are not installed. (Code 28)
    Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

    Name: SPH-L710 Stevo's
    Description: SPH-L710
    Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a}
    Manufacturer: SAMSUNG Electronics Co. Ltd.
    Service: WUDFRd
    Problem: : This device cannot start. (Code10)
    Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
    On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

    Name: Bluetooth Peripheral Device
    Description: Bluetooth Peripheral Device
    Class Guid:
    Manufacturer:
    Service:
    Problem: : The drivers for this device are not installed. (Code 28)
    Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

    Name: 590Plantronics (Mono Audio)
    Description: Bluetooth Hands-free Audio Device
    Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
    Manufacturer: CSR plc
    Service: BthAudioHF
    Problem: : This device cannot start. (Code10)
    Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
    On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


    ==================== Event log errors: =========================

    Application errors:
    ==================
    Error: (03/05/2014 03:02:02 PM) (Source: VSS) (User: )
    Description: Volume Shadow Copy Service error: Unexpected error calling routine ConvertStringSidToSid(S-1-5-21-4229314078-1887863115-615417127-501.bak). hr = 0x80070539, The security ID structure is invalid.
    .


    Operation:
    OnIdentify event
    Gathering Writer Data

    Context:
    Execution Context: Shadow Copy Optimization Writer
    Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
    Writer Name: Shadow Copy Optimization Writer
    Writer Instance ID: {07217973-115e-4909-b2f7-3f33210f1295}

    Error: (03/05/2014 02:51:11 PM) (Source: BstHdAndroidSvc) (User: )
    Description: Service cannot be started. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
    at BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
    at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

    Error: (03/05/2014 02:37:53 PM) (Source: MsiInstaller) (User: NT AUTHORITY)
    Description: SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2014 -- Error 27054. CA_Error27054: SetupAction(0xC0070091): Installation failed.

    Error: (03/05/2014 00:24:42 AM) (Source: Application Hang) (User: )
    Description: The program soffice.bin version 4.0.9714.500 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

    Process ID: 6ec

    Start Time: 01cf3830a73aec2f

    Termination Time: 8

    Application Path: C:\Program Files (x86)\OpenOffice 4\program\soffice.bin

    Report Id:

    Error: (03/04/2014 09:18:19 PM) (Source: BstHdAndroidSvc) (User: )
    Description: Service cannot be started. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
    at BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
    at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

    Error: (03/04/2014 10:26:44 AM) (Source: VSS) (User: )
    Description: Volume Shadow Copy Service error: Unexpected error calling routine ConvertStringSidToSid(S-1-5-21-4229314078-1887863115-615417127-501.bak). hr = 0x80070539, The security ID structure is invalid.
    .


    Operation:
    OnIdentify event
    Gathering Writer Data

    Context:
    Execution Context: Shadow Copy Optimization Writer
    Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
    Writer Name: Shadow Copy Optimization Writer
    Writer Instance ID: {bb6d58eb-c6fd-4281-8bd7-cfc5aff374e9}

    Error: (03/04/2014 10:24:40 AM) (Source: VSS) (User: )
    Description: Volume Shadow Copy Service error: Unexpected error calling routine ConvertStringSidToSid(S-1-5-21-4229314078-1887863115-615417127-501.bak). hr = 0x80070539, The security ID structure is invalid.
    .


    Operation:
    OnIdentify event
    Gathering Writer Data

    Context:
    Execution Context: Shadow Copy Optimization Writer
    Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
    Writer Name: Shadow Copy Optimization Writer
    Writer Instance ID: {bb6d58eb-c6fd-4281-8bd7-cfc5aff374e9}

    Error: (03/04/2014 10:22:34 AM) (Source: VSS) (User: )
    Description: Volume Shadow Copy Service error: Unexpected error calling routine ConvertStringSidToSid(S-1-5-21-4229314078-1887863115-615417127-501.bak). hr = 0x80070539, The security ID structure is invalid.
    .


    Operation:
    OnIdentify event
    Gathering Writer Data

    Context:
    Execution Context: Shadow Copy Optimization Writer
    Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
    Writer Name: Shadow Copy Optimization Writer
    Writer Instance ID: {bb6d58eb-c6fd-4281-8bd7-cfc5aff374e9}

    Error: (03/04/2014 10:12:08 AM) (Source: Application Error) (User: )
    Description: Faulting application name: PdaNetPC.exe, version: 0.0.0.0, time stamp: 0x51754ca7
    Faulting module name: PdaNetPC.exe, version: 0.0.0.0, time stamp: 0x51754ca7
    Exception code: 0x40000015
    Fault offset: 0x0003834e
    Faulting process id: 0x1004
    Faulting application start time: 0xPdaNetPC.exe0
    Faulting application path: PdaNetPC.exe1
    Faulting module path: PdaNetPC.exe2
    Report Id: PdaNetPC.exe3

    Error: (03/02/2014 11:25:11 PM) (Source: BstHdAndroidSvc) (User: )
    Description: Service cannot be started. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
    at BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
    at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)


    System errors:
    =============
    Error: (03/05/2014 04:33:31 PM) (Source: Service Control Manager) (User: )
    Description: The Printer Control service terminated unexpectedly. It has done this 1 time(s).

    Error: (03/05/2014 02:51:11 PM) (Source: Service Control Manager) (User: )
    Description: The BlueStacks Android Service service terminated with the following error:
    %%1064

    Error: (03/05/2014 02:50:45 PM) (Source: Service Control Manager) (User: )
    Description: The PDF Architect Service service terminated with the following error:
    %%-2147467259

    Error: (03/05/2014 02:47:34 PM) (Source: DCOM) (User: )
    Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}

    Error: (03/04/2014 09:18:19 PM) (Source: Service Control Manager) (User: )
    Description: The BlueStacks Android Service service terminated with the following error:
    %%1064

    Error: (03/04/2014 09:17:57 PM) (Source: Service Control Manager) (User: )
    Description: The PDF Architect Service service terminated with the following error:
    %%-2147467259

    Error: (03/04/2014 09:17:46 PM) (Source: EventLog) (User: )
    Description: The previous system shutdown at 8:49:33 PM on ‎3/‎4/‎2014 was unexpected.

    Error: (03/02/2014 11:25:11 PM) (Source: Service Control Manager) (User: )
    Description: The BlueStacks Android Service service terminated with the following error:
    %%1064

    Error: (03/02/2014 11:24:58 PM) (Source: Service Control Manager) (User: )
    Description: The PDF Architect Service service terminated with the following error:
    %%-2147467259

    Error: (03/02/2014 11:23:52 PM) (Source: EventLog) (User: )
    Description: The previous system shutdown at 11:21:44 PM on ‎3/‎2/‎2014 was unexpected.


    Microsoft Office Sessions:
    =========================
    Error: (03/05/2014 03:02:02 PM) (Source: VSS)(User: )
    Description: ConvertStringSidToSid(S-1-5-21-4229314078-1887863115-615417127-501.bak)0x80070539, The security ID structure is invalid.


    Operation:
    OnIdentify event
    Gathering Writer Data

    Context:
    Execution Context: Shadow Copy Optimization Writer
    Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
    Writer Name: Shadow Copy Optimization Writer
    Writer Instance ID: {07217973-115e-4909-b2f7-3f33210f1295}

    Error: (03/05/2014 02:51:11 PM) (Source: BstHdAndroidSvc)(User: )
    Description: Service cannot be started. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
    at BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
    at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

    Error: (03/05/2014 02:37:53 PM) (Source: MsiInstaller)(User: NT AUTHORITY)
    Description: SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2014 -- Error 27054. CA_Error27054: SetupAction(0xC0070091): Installation failed.(NULL)(NULL)(NULL)(NULL)(NULL)

    Error: (03/05/2014 00:24:42 AM) (Source: Application Hang)(User: )
    Description: soffice.bin4.0.9714.5006ec01cf3830a73aec2f8C:\Program Files (x86)\OpenOffice 4\program\soffice.bin

    Error: (03/04/2014 09:18:19 PM) (Source: BstHdAndroidSvc)(User: )
    Description: Service cannot be started. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
    at BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
    at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

    Error: (03/04/2014 10:26:44 AM) (Source: VSS)(User: )
    Description: ConvertStringSidToSid(S-1-5-21-4229314078-1887863115-615417127-501.bak)0x80070539, The security ID structure is invalid.


    Operation:
    OnIdentify event
    Gathering Writer Data

    Context:
    Execution Context: Shadow Copy Optimization Writer
    Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
    Writer Name: Shadow Copy Optimization Writer
    Writer Instance ID: {bb6d58eb-c6fd-4281-8bd7-cfc5aff374e9}

    Error: (03/04/2014 10:24:40 AM) (Source: VSS)(User: )
    Description: ConvertStringSidToSid(S-1-5-21-4229314078-1887863115-615417127-501.bak)0x80070539, The security ID structure is invalid.


    Operation:
    OnIdentify event
    Gathering Writer Data

    Context:
    Execution Context: Shadow Copy Optimization Writer
    Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
    Writer Name: Shadow Copy Optimization Writer
    Writer Instance ID: {bb6d58eb-c6fd-4281-8bd7-cfc5aff374e9}

    Error: (03/04/2014 10:22:34 AM) (Source: VSS)(User: )
    Description: ConvertStringSidToSid(S-1-5-21-4229314078-1887863115-615417127-501.bak)0x80070539, The security ID structure is invalid.


    Operation:
    OnIdentify event
    Gathering Writer Data

    Context:
    Execution Context: Shadow Copy Optimization Writer
    Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
    Writer Name: Shadow Copy Optimization Writer
    Writer Instance ID: {bb6d58eb-c6fd-4281-8bd7-cfc5aff374e9}

    Error: (03/04/2014 10:12:08 AM) (Source: Application Error)(User: )
    Description: PdaNetPC.exe0.0.0.051754ca7PdaNetPC.exe0.0.0.051754ca7400000150003834e100401cf3698b4c96424C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exeC:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe59bf7dcb-a3af-11e3-a0d8-485b39e79c28

    Error: (03/02/2014 11:25:11 PM) (Source: BstHdAndroidSvc)(User: )
    Description: Service cannot be started. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
    at BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
    at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)


    ==================== Memory info ===========================

    Percentage of memory in use: 72%
    Total physical RAM: 3884.55 MB
    Available physical RAM: 1061.25 MB
    Total Pagefile: 7767.27 MB
    Available Pagefile: 4686.32 MB
    Total Virtual: 8192 MB
    Available Virtual: 8191.82 MB

    ==================== Drives ================================

    Drive c: (OS) (Fixed) (Total:278.55 GB) (Free:194.02 GB) NTFS ==>[Drive with boot components (obtained from BCD)]

    ==================== MBR & Partition Table ==================

    ========================================================
    Disk: 0 (MBR Code: Windows XP) (Size: 298 GB) (Disk ID: D59D3FD7)

    Partition: GPT Partition Type.

    ==================== End Of Log ============================

  7. #7
    Malware Team-Emeritus
    Join Date
    Sep 2012
    Location
    Florida, USA
    Posts
    1,161

    Default

    Hi chucka52,

    Multiple Anti-Virus Programs Installed

    I notice that you have multiple Anti-Virus programs installed at the same time. Having more than one antivirus program running at the same time can seriously degrade the performance of your system.

    • AVG AntiVirus Free Edition 2014
    • Microsoft Security Essentials


    Please uninstall one (1) (which ever you prefer) using either the provided uninstall feature that is part of the antivirus program or through Add/Remove Programs (for Vista and Win 7 users to go to Programs and Features in the Control Panel). As a rule of thumb one should run one firewall, one antivirus program in memory, and one anti-spyware utility in memory. It's fine to have other security tools available on an as-needed or on-demand basis, but when multiple tools simultaneously perform the same function, you're asking for trouble.

    • AVG AntiVirus Free Edition 2014
    • Microsoft Security Essentials

    =========================

    You seem to have overlooked a few logs:

    1. aswMBR.txt
    2. attach MBR.zip
    3. FRST.txt
    OCD
    ----------
    Graduate of WTT Classroom
    Member of UNITE

    Threads will be closed if no response after 5 days

  8. #8
    Junior Member
    Join Date
    Feb 2014
    Posts
    22

    Default

    aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
    Run date: 2014-03-07 19:52:06
    -----------------------------
    19:52:06.307 OS Version: Windows x64 6.1.7601 Service Pack 1
    19:52:06.307 Number of processors: 4 586 0x2505
    19:52:06.308 ComputerName: STEVO-PC UserName:
    19:52:09.638 Initialize success
    19:52:42.785 AVAST engine defs: 14030600
    19:52:54.531 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
    19:52:54.537 Disk 0 Vendor: ST932032 0003 Size: 305245MB BusType: 3
    19:52:54.708 Disk 0 MBR read successfully
    19:52:54.711 Disk 0 MBR scan
    19:52:54.736 Disk 0 Windows XP default MBR code
    19:52:54.740 Disk 0 Partition 1 00 1C Hidd FAT32 LBA MSDOS5.0 20002 MB offset 63
    19:52:54.763 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 285240 MB offset 40965752
    19:52:54.969 Disk 0 scanning C:\Windows\system32\drivers
    19:53:20.456 Service scanning
    19:54:27.470 Modules scanning
    19:54:27.485 Disk 0 trace - called modules:
    19:54:27.534 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys iaStor.sys hal.dll
    19:54:27.544 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004c9c060]
    19:54:27.568 3 CLASSPNP.SYS[fffff88001ac743f] -> nt!IofCallDriver -> [0xfffffa80049fd630]
    19:54:27.578 5 ACPI.sys[fffff88000e0b7a1] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8004a04050]
    19:54:29.874 AVAST engine scan C:\Windows
    19:54:36.234 AVAST engine scan C:\Windows\system32
    20:02:34.071 AVAST engine scan C:\Windows\system32\drivers
    20:03:17.961 AVAST engine scan C:\Users\Chuck New_2
    20:04:54.779 Disk 0 MBR has been saved successfully to "C:\Users\Chuck New_2\Desktop\MBR.dat"
    20:04:54.793 The log file has been saved successfully to "C:\Users\Chuck New_2\Desktop\aswMBR.txt"
    Attached Files Attached Files

  9. #9
    Junior Member
    Join Date
    Feb 2014
    Posts
    22

    Default First hlaf of Addition.txt

    Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-03-2014 01
    Ran by Chuck New_2 at 2014-03-05 17:25:16
    Running from C:\Users\Chuck New_2\Desktop\PC Protection Software Download Folder
    Boot Mode: Normal
    ==========================================================


    ==================== Security Center ========================

    AV: AVG AntiVirus Free Edition 2014 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
    AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
    AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
    AS: AVG AntiVirus Free Edition 2014 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}
    AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}

    ==================== Installed Programs ======================

    7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - )
    Acrobat.com (HKLM-x32\...\{77DCDCE3-2DED-62F3-8154-05E745472D07}) (Version: 1.1.377 - Adobe Systems Incorporated)
    Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 4.0.0.1390 - Adobe Systems Incorporated)
    Adobe AIR (x32 Version: 4.0.0.1390 - Adobe Systems Incorporated) Hidden
    Adobe Flash Player 11 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 11.9.900.152 - Adobe Systems Incorporated)
    Adobe Flash Player 12 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 12.0.0.44 - Adobe Systems Incorporated)
    Adobe Reader XI (11.0.06) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated)
    Advanced Scan to PDF Free 3.9.2 (HKLM-x32\...\Advanced Scan to PDF Free_is1) (Version: - PDFChief Co., Ltd.)
    Alcor Micro USB Card Reader (HKLM-x32\...\InstallShield_{F4BF5F6B-F695-4762-AEB2-D095A4C34D89}) (Version: 1.5.17.25482 - Alcor Micro Corp.)
    Alcor Micro USB Card Reader (x32 Version: 1.5.17.25482 - Alcor Micro Corp.) Hidden
    ASUS AI Recovery (HKLM-x32\...\{06585B02-F20D-4AB2-9A64-86EF2AE0F8F0}) (Version: 1.0.7 - ASUS)
    ASUS FancyStart (HKLM-x32\...\{2B81872B-A054-48DA-BE3B-FA5C164C303A}) (Version: 1.0.8 - ASUSTeK Computer Inc.)
    ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.0.20 - ASUS)
    ASUS Live Update (HKLM-x32\...\{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}) (Version: 2.5.9 - ASUS)
    ASUS Power4Gear Hybrid (HKLM\...\{91EFE3A1-585E-4F66-B5F6-F118F56C4C47}) (Version: 1.1.23 - ASUS)
    ASUS SmartLogon (HKLM-x32\...\{64452561-169F-4A36-A2FF-B5E118EC65F5}) (Version: 1.0.0007 - ASUS)
    ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.19 - asus)
    ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0001 - ASUS)
    AVG 2014 (HKLM\...\AVG) (Version: 2014.0.4259 - AVG Technologies)
    AVG 2014 (Version: 14.0.3705 - AVG Technologies) Hidden
    AVG 2014 (Version: 14.0.4259 - AVG Technologies) Hidden
    AVG SafeGuard toolbar (HKLM-x32\...\AVG SafeGuard toolbar) (Version: 17.0.1.12 - AVG Technologies)
    BatteryCare 0.9.15.0 (HKLM-x32\...\{C6A6036D-FBD0-4324-BEAA-C0845257160C}_is1) (Version: 0.9.15.0 - Filipe Lourenço)
    BlueStacks App Player (HKLM-x32\...\BlueStacks App Player) (Version: 0.7.18.921 - BlueStack Systems, Inc.)
    BlueStacks Notification Center (HKLM-x32\...\{87D0541E-7EB4-44AD-8A0D-D951152020C1}) (Version: 0.7.18.921 - BlueStack Systems, Inc.)
    Brother MFL-Pro Suite DCP-7020 (HKLM-x32\...\{C2530D63-B66B-48B5-BB50-7C6281FE7AA6}) (Version: 1.0.1.0 - Brother Industries, Ltd.)
    Canon MG3100 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3100_series) (Version: - )
    CCleaner (HKLM\...\CCleaner) (Version: 4.11 - Piriform)
    ControlDeck (HKLM-x32\...\{5B65EF64-1DFA-414A-8C94-7BB726158E21}) (Version: 1.0.8 - ASUS)
    D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
    Disketch Disc Label Software (HKLM-x32\...\Disketch) (Version: 3.11 - NCH Software)
    DisplayLink Core Software (HKLM\...\{29E6A126-BB06-41CF-B12D-E6A56261328D}) (Version: 5.6.31854.0 - DisplayLink Corp.)
    DisplayLink Graphics (HKLM\...\{A5836294-D90E-40BC-BF33-BA3751FB134B}) (Version: 5.6.32670.0 - DisplayLink Corp.)
    Doxillion Document Converter (HKLM-x32\...\Doxillion) (Version: 2.17 - NCH Software)
    Elevated Installer (x32 Version: 2.2.7 - Garmin Ltd or its subsidiaries) Hidden
    ETDWare PS/2-x64 7.0.5.9_WHQL (HKLM\...\Elantech) (Version: - )
    Express Burn (HKLM-x32\...\ExpressBurn) (Version: 4.68 - NCH Software)
    Facebook Messenger 2.1.4814.0 (HKLM-x32\...\{7204BDEE-1A48-4D95-A964-44A9250B439E}) (Version: 2.1.4814.0 - Facebook)
    Fast Boot (HKLM\...\{13F4A7F3-EABC-4261-AF6B-1317777F0755}) (Version: 1.0.4 - ASUS)
    File Shredder 2.5 (HKLM\...\File Shredder_is1) (Version: - Pow Tools)
    File Type Assistant (HKLM-x32\...\Trusted Software Assistant_is1) (Version: 2014.1.24.0 - ) <==== ATTENTION
    Free File Viewer 2012 (HKLM-x32\...\FreeFileViewer_is1) (Version: 2012.10.9.0 - Bitberry Software)
    Free YouTube to MP3 TURBO Converter 2013 (HKLM-x32\...\FreeYoutubeToMP3TURBOConverter_is1) (Version: - Bitberry Software)
    Freemake Youtube Mp3 Converter (HKLM-x32\...\Freemake Youtube Mp3 Converter_is1) (Version: 3.5.4 - Ellora Assets Corporation)
    Garmin Express (HKLM-x32\...\{ed2d2e4a-3be7-450b-9c1b-fa727ae92d91}) (Version: 2.2.7 - Garmin Ltd or its subsidiaries)
    Garmin Express (x32 Version: 2.2.7 - Garmin Ltd or its subsidiaries) Hidden
    Garmin Express Tray (x32 Version: 2.2.7 - Garmin Ltd or its subsidiaries) Hidden
    Garmin Update Service (x32 Version: 2.2.7 - Garmin Ltd or its subsidiaries) Hidden
    Garmin USB Drivers (HKLM-x32\...\{3D5D6CFC-3097-425A-8D8F-7EAF5D57641D}) (Version: 2.3.1.0 - Garmin Ltd or its subsidiaries)
    Google Chrome (HKLM-x32\...\Google Chrome) (Version: 33.0.1750.146 - Google Inc.)
    Google Drive (HKLM-x32\...\{E87022D3-C8C9-4C76-8E27-BC7F18F9B8FB}) (Version: 1.14.6059.644 - Google, Inc.)
    Google Talk Plugin (HKLM-x32\...\{2A83AD05-56E6-3FBD-8752-B4143162EF59}) (Version: 4.9.1.16010 - Google)
    Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.4805.320 - Google Inc.)
    Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
    Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden
    IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6259.0 - IDT)
    ieSpell (HKLM-x32\...\ieSpell) (Version: 2.6.4 (build 573) - Red Egg Software)
    Infix PDF Editor version 6.1.5.0 (HKLM-x32\...\83FFB914-6FA7-4F1F-807E-E0FFBA2E49E1_is1) (Version: 6.1.5.0 - Iceni Technology)
    Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.0.1006 - Intel Corporation)
    Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
    Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2993 - Intel Corporation)
    IsoBuster 3.3 (HKLM-x32\...\IsoBuster_is1) (Version: 3.3 - Smart Projects)
    Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.510 - Oracle)
    Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
    Junk Mail filter update (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    K_Series_ScreenSaver_EN (HKLM-x32\...\K_Series_ScreenSaver_EN) (Version: - )
    Memeo AutoSync (HKLM-x32\...\{75B7F766-7998-44d8-A202-F1EC76A121BA}) (Version: - Memeo Inc.)
    Memeo Instant Backup (HKLM-x32\...\{8E666407-AC41-46a2-9692-6C7BFCBFDD37}) (Version: 4.60.0.7252 - Memeo Inc.)
    Memeo Send (HKLM-x32\...\{81784157-3D4D-4bc1-B988-B24C32A26DA8}) (Version: - Memeo Inc.)
    Memeo Share (HKLM-x32\...\{1BC77CEF-C52F-4092-BF87-0D4E6B86D860}) (Version: 3.1.0.3265 - Memeo Inc.)
    Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
    Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
    Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
    Microsoft Security Client (Version: 4.4.0304.0 - Microsoft Corporation) Hidden
    Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.4.304.0 - Microsoft Corporation)
    Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20913.0 - Microsoft Corporation)
    Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
    Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Mozilla Firefox 27.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 27.0.1 (x86 en-US)) (Version: 27.0.1 - Mozilla)
    Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 26.0 - Mozilla)
    MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
    MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
    MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
    MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
    Nitro Reader 3 (HKLM\...\{3C1F302A-CC25-488D-9C24-A76B95BC916F}) (Version: 3.0.6.3 - Nitro)
    OpenOffice 4.0.1 (HKLM-x32\...\{47F460DA-D1BE-4D85-8DF2-AA1F31D3445F}) (Version: 4.01.9714 - Apache Software Foundation)
    PdaNet+ for Android 4.12 (HKLM-x32\...\PdaNet_is1) (Version: - June Fabrics Technology Inc)
    PDF Architect (HKLM-x32\...\{064A929A-4DE8-40CF-A901-BD40C14E4D25}) (Version: 1.1.83.9982 - pdfforge GmbH)
    PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.2 - pdfforge)
    pdfforge Images2PDF 0.9.6.930 (HKLM\...\{00120495-F25C-4F44-9DC7-2D812D025DBA}) (Version: 0.9.6.930 - pdfforge GbR)
    Photo Gallery (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    PhotoPad Image Editor (HKLM-x32\...\PhotoPad) (Version: 2.42 - NCH Software)
    PhotoStage Slideshow Producer (HKLM-x32\...\PhotoStage) (Version: 2.34 - NCH Software)
    Pixillion Image Converter (HKLM-x32\...\Pixillion) (Version: 2.72 - NCH Software)
    Recuva (HKLM\...\Recuva) (Version: 1.50 - Piriform)
    Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.0.13091_9 - Samsung Electronics Co., Ltd.)
    Samsung Kies (x32 Version: 2.6.0.13091_9 - Samsung Electronics Co., Ltd.) Hidden
    Samsung Story Album Viewer (HKLM-x32\...\InstallShield_{698BBAD8-B116-495D-B879-0F07A533E57F}) (Version: 1.0.0.13054_1 - Samsung Electronics Co., Ltd.)
    Samsung Story Album Viewer (x32 Version: 1.0.0.13054_1 - Samsung Electronics Co., Ltd.) Hidden
    SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.29.0 - SAMSUNG Electronics Co., Ltd.)
    Scanner Copier GPL 0.3 (HKLM-x32\...\Scanner Copier GPL) (Version: 0.3 - Tide Tamer Industries, Inc.)
    Seagate Dashboard (HKLM-x32\...\{C3A11907-930D-41AC-A135-CC3B12F92011}) (Version: 1.1.0.1421 - Memeo Inc.)
    Slacker Software Player (HKLM-x32\...\Slacker Software Player) (Version: 2.1.2370.0000 - Slacker)
    SlimCleaner (HKLM-x32\...\{6B8D6199-EE44-4FD7-813A-6D8C62C9B384}) (Version: 4.0.30878 - SlimWare Utilities, Inc.)
    Speccy (HKLM\...\Speccy) (Version: 1.24 - Piriform)
    Spelling Dictionaries Support For Adobe Reader 9 (HKLM-x32\...\{AC76BA86-7AD7-5464-3428-900000000004}) (Version: 9.0.0 - Adobe Systems Incorporated)
    Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.2.25 - Safer-Networking Ltd.)
    SpyHunter (HKLM\...\{ACF5FE1B-3772-4068-8B87-2D2A6EFD0A05}) (Version: 4.17.6.4336 - Enigma Software Group USA, LLC)
    Universal Push2TV HD (HKLM-x32\...\InstallShield_{6D45461F-F0FF-4E32-A16D-C636722FCA12}) (Version: 14.2.135.10 - NETGEAR)
    Universal Push2TV HD (Version: 14.2.135.10 - NETGEAR) Hidden
    USB PnP Sound Device (HKLM\...\C-Media CM108 Like Sound Driver) (Version: - )
    VideoPad Video Editor (HKLM-x32\...\VideoPad) (Version: 3.29 - NCH Software)
    Visual Studio 2010 x64 Redistributables (HKLM\...\{21B133D6-5979-47F0-BE1C-F6A6B304693F}) (Version: 13.0.0.1 - AVG Technologies)
    Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
    Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
    VLC media player 2.1.3 (HKLM\...\VLC media player) (Version: 2.1.3 - VideoLAN)
    WavePad Sound Editor (HKLM-x32\...\WavePad) (Version: 5.55 - NCH Software)
    WIDCOMM Bluetooth Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: 6.5.1.4100 - Broadcom Corporation)
    WIFi Locator version 1.1 (HKLM-x32\...\{80A11778-F86C-4DB2-9DB5-D5B886BEFD05}_is1) (Version: 1.1 - http://tcpmonitor.altervista.org/)
    WiFi Protector (HKLM\...\wifiProt-SL_is1) (Version: 3.0.20.138 - Optimal Software s.r.o)
    Windows Driver Package - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1.0) (HKLM\...\98157A226B40B173301B0F53C8E98C47805D5152) (Version: 04/19/2012 2.3.1.0 - Garmin)
    Windows Live Communications Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation)
    Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live Family Safety (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live Family Safety (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden
    Windows Live Installer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live Mail (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live Messenger (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live MIME IFilter (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live PIMT Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live SOXE (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live UX Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live Writer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Live Writer Resources (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Windows Mobile Device Center (HKLM\...\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}) (Version: 6.1.6965.0 - Microsoft Corporation)
    Windows Mobile Device Center Driver Update (HKLM\...\{92DBCA36-9B41-4DD1-941A-AED149DD37F0}) (Version: 6.1.6965.0 - Microsoft Corporation)
    Windows XP Mode (HKLM\...\{1374CC63-B520-4f3f-98E8-E9020BF01CFF}) (Version: 1.3.7600.16423 - Microsoft Corporation)
    WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.30.1 - ASUS)
    Wireless Console 3 (HKLM-x32\...\{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}) (Version: 3.0.15 - ASUS)

    ==================== Restore Points =========================

    01-03-2014 07:24:06 Windows Live Essentials
    01-03-2014 07:28:26 Installed DirectX
    01-03-2014 07:29:03 Installed DirectX
    01-03-2014 21:31:02 Installed Easy WiFi
    01-03-2014 22:12:46 Microsoft Antimalware Checkpoint
    02-03-2014 17:22:45 Windows Update
    04-03-2014 15:22:34 Removed Easy WiFi
    04-03-2014 15:24:40 Removed Easy WiFi
    04-03-2014 15:26:44 Removed System Requirements Lab for Intel
    05-03-2014 20:02:02 Windows Update

    ==================== Hosts content: ==========================

    2009-07-13 21:34 - 2014-02-27 03:34 - 00450639 ____N C:\Windows\system32\Drivers\etc\hosts
    127.0.0.1 www.007guard.com
    127.0.0.1 007guard.com
    127.0.0.1 008i.com
    127.0.0.1 www.008k.com
    127.0.0.1 008k.com
    127.0.0.1 www.00hq.com
    127.0.0.1 00hq.com
    127.0.0.1 010402.com
    127.0.0.1 www.032439.com
    127.0.0.1 032439.com
    127.0.0.1 www.0scan.com
    127.0.0.1 0scan.com
    127.0.0.1 1000gratisproben.com
    127.0.0.1 www.1000gratisproben.com
    127.0.0.1 1001namen.com
    127.0.0.1 www.1001namen.com
    127.0.0.1 100888290cs.com
    127.0.0.1 www.100888290cs.com
    127.0.0.1 www.100sexlinks.com
    127.0.0.1 100sexlinks.com
    127.0.0.1 10sek.com
    127.0.0.1 www.10sek.com
    127.0.0.1 www.1-2005-search.com
    127.0.0.1 1-2005-search.com
    127.0.0.1 123fporn.info
    127.0.0.1 www.123fporn.info
    127.0.0.1 123haustiereundmehr.com
    127.0.0.1 www.123haustiereundmehr.com
    127.0.0.1 123moviedownload.com

    There are 1000 more lines.


    ==================== Scheduled Tasks (whitelisted) =============

    Task: {002CCC08-ABC5-4BA1-A925-3DEF58955136} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe [2014-01-09] (Enigma Software Group USA, LLC.)
    Task: {010EBD91-5BFA-4C27-BC7C-5316630E68F0} - System32\Tasks\P4GIntlCtrl => C:\Program Files\P4G\IntlCtrl.exe [2009-08-11] (TODO: <Company name>)
    Task: {022767FB-C596-46D5-880A-B54A81C187E9} - System32\Tasks\NCH Software\PhotoStageSevenDays => C:\Program Files (x86)\NCH Software\PhotoStage\PhotoStage.exe [2014-01-22] (NCH Software)
    Task: {0477A8B6-AD60-4244-8AEA-9EB618BCF6C0} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDScan.exe
    Task: {17394133-2AFA-4066-9A9C-707DDF5FBBBC} - System32\Tasks\Norton Identity Safe\Norton Error Analyzer => C:\Program Files (x86)\Norton Identity Safe\Engine\2013.1.0.32\SymErr.exe
    Task: {18A518B2-8B06-4353-A5A2-BD16E22E0AAF} - System32\Tasks\WC3 => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2010-01-04] ()
    Task: {20C0476D-78B0-4345-BE74-5383E3A13EDC} - System32\Tasks\{EDD0ED8C-EA30-4B4C-8F0F-BC7C2CCE8930} => Chrome.exe http://ui.skype.com/ui/0/6.7.60.102/...ll?page=tsMain
    Task: {2A2B80FD-4C63-4A54-A511-78AD15D63EEC} - System32\Tasks\{00C73705-0303-4247-B539-7F2C5F566AC2} => C:\Users\Chuck New\Downloads\Brothers DCP-7020 Print- Scanner Tool to Uninstall Old Software Ver Ddelinf_10160.EXE
    Task: {3187541D-C9E2-4E54-AD7F-B61AFFF1CFAB} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2009-09-08] (ATK)
    Task: {34814613-A688-4B51-A55B-258AB12F0934} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-25] (Google Inc.)
    Task: {37101C5A-D0EF-4EAC-9406-78D1FE616385} - System32\Tasks\SlimCleaner Scan => C:\Program Files (x86)\SlimCleaner\SlimCleaner.exe [2013-07-10] (SlimWare Utilities, Inc.)
    Task: {4AC1C553-D1E5-43E8-ABCF-88FDBDA55DFB} - System32\Tasks\Adobe online update program => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21] (Adobe Systems Incorporated)
    Task: {4F20B733-7C45-4231-A603-04358685FE1D} - System32\Tasks\ProgramRefresh-ATFST => C:\Program Files (x86)\File Type Assistant\tsasetup.exe [2014-02-04] ( ) <==== ATTENTION
    Task: {52734F5C-C1D4-4732-8F66-8704EF94AA1F} - System32\Tasks\Microsoft\Windows\MobilePC\DisplayLink TMM Control
    Task: {581E9CCC-468E-4ABC-9905-82279626C8F9} - System32\Tasks\ASUSControlDeck => C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe [2010-06-09] (asus)
    Task: {5A3CD8DB-611F-4A2C-8471-957540233739} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-04] (Adobe Systems Incorporated)
    Task: {7CDEC153-BAA6-42B6-A271-F3F134E11AE5} - System32\Tasks\BatteryCareAuto => C:\Program Files (x86)\BatteryCare\BatteryCare.exe [2013-10-28] (Filipe Lourenço)
    Task: {8ECF16D1-C01F-4CA5-848A-7772849C1431} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDUpdate.exe
    Task: {8F9A51C8-24DD-4A4A-BE82-C5E8AC1A69EF} - System32\Tasks\ProgramUpdateCheck => C:\Program Files (x86)\File Type Assistant\TSAssist.exe [2014-01-24] (Trusted Software ApS) <==== ATTENTION
    Task: {923FDE67-194B-4C3A-B0FD-A7615C67FCE6} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-4229314078-1887863115-615417127-1000Core => C:\Users\Chuck\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-05-27] (Facebook Inc.)
    Task: {958F49D8-EA74-4FA4-945E-A346BFB6FBCF} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation)
    Task: {9CD022FC-5F1E-4D12-9603-CAB9A069B4D3} - System32\Tasks\FreeFileViewerUpdateChecker => C:\Program Files (x86)\FreeFileViewer\FFVCheckForUpdates.exe [2013-03-25] (Bitberry Software)
    Task: {A3B10D9B-B46E-40B2-8B5F-077BBFD56A1E} - System32\Tasks\SpeedyPC Pro_sch_31962B5C-7D33-11E3-BED2-485B39E79C28 => C:\Program Files (x86)\SpeedyPC Software\SpeedyPC\SpeedyPC.exe
    Task: {B263D4D7-2D25-45D8-8CED-B98E7DABE0BE} - System32\Tasks\Google Updater and Installer => C:\Users\Chuck\AppData\Local\Google\Update\GoogleUpdate.exe [2013-10-05] (Google Inc.)
    Task: {BB74B64F-76CE-4968-AAF1-00BEF454B52D} - System32\Tasks\SlimCleaner Run => C:\Program Files (x86)\SlimCleaner\SlimCleaner.exe [2013-07-10] (SlimWare Utilities, Inc.)
    Task: {BEF2D0CB-92F5-41A2-AE5C-D9F87EA75ACD} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
    Task: {C00F94DD-C620-4381-A70B-394FCA2004CE} - System32\Tasks\{15225D4F-88F4-489D-812D-24A3BB55A5F9} => C:\Users\Chuck New\Downloads\Brothers DCP-7020 Print- Scanner Tool to Uninstall Old Software Ver Ddelinf_10160.EXE
    Task: {C0AA91DF-C1B0-4295-A775-2211D67F63B0} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4229314078-1887863115-615417127-1000UA => C:\Users\Chuck\AppData\Local\Google\Update\GoogleUpdate.exe [2013-10-05] (Google Inc.)
    Task: {C3C9AFEA-7EE5-4825-9C74-4F24E6BD00F1} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [2009-05-18] (ASUS)
    Task: {D16194A0-4CD2-4D40-8DEC-87F42E6FDB59} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-25] (Google Inc.)
    Task: {D2F7E1B1-DDC7-47FB-92A5-599E548ED2E0} - System32\Tasks\NCH Software\VideoPadSevenDays => C:\Program Files (x86)\NCH Software\VideoPad\VideoPad.exe [2014-01-22] (NCH Software)
    Task: {DA93948C-0D05-4977-8A42-9F2D97D59C06} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-4229314078-1887863115-615417127-1000UA => C:\Users\Chuck\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-05-27] (Facebook Inc.)
    Task: {E4642D92-16F2-4CB9-A8E6-61C82C3A7889} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDImmunize.exe
    Task: {EADAAC26-5C8E-44F4-9C49-B41E5DF83E9F} - System32\Tasks\P4G Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20] (Microsoft Corporation)
    Task: {F11D5440-2D72-4BB1-963E-ACD9CDE6CA39} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-02-20] (Piriform Ltd)
    Task: {F4A60049-4F85-4701-9DD5-343FB0FE71F0} - System32\Tasks\Norton Identity Safe\Norton Error Processor => C:\Program Files (x86)\Norton Identity Safe\Engine\2013.1.0.32\SymErr.exe
    Task: {FDBE611F-7FEF-45E5-AFFF-7D826C630903} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4229314078-1887863115-615417127-1000Core => C:\Users\Chuck\AppData\Local\Google\Update\GoogleUpdate.exe [2013-10-05] (Google Inc.)
    Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4229314078-1887863115-615417127-1000Core.job => C:\Users\Chuck\AppData\Local\Facebook\Update\FacebookUpdate.exe
    Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4229314078-1887863115-615417127-1000UA.job => C:\Users\Chuck\AppData\Local\Facebook\Update\FacebookUpdate.exe
    Task: C:\Windows\Tasks\FreeFileViewerUpdateChecker.job => C:\Program Files (x86)\FreeFileViewer\FFVCheckForUpdates.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4229314078-1887863115-615417127-1000Core.job => C:\Users\Chuck\AppData\Local\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4229314078-1887863115-615417127-1000UA.job => C:\Users\Chuck\AppData\Local\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\SlimCleaner Scan.job => C:\Program Files (x86)\SlimCleaner\SlimCleaner.exe
    Task: C:\Windows\Tasks\SpeedyPC Pro_sch_31962B5C-7D33-11E3-BED2-485B39E79C28.job => C:\Program Files (x86)\SpeedyPC Software\SpeedyPC\SpeedyPC.exe

    ==================== Loaded Modules (whitelisted) =============

    2011-08-09 13:28 - 2011-08-09 13:28 - 00032576 _____ () C:\Program Files (x86)\NETGEAR\PTVU1000\Association\ResourceDll.dll
    2009-08-28 18:00 - 2009-08-28 18:00 - 00041984 _____ () C:\Program Files\P4G\DevMng.dll
    2009-08-28 14:43 - 2009-08-28 14:43 - 00029184 _____ () C:\Program Files\P4G\OvrClk.dll
    2010-01-04 16:43 - 2010-01-04 16:43 - 01597440 _____ () C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
    2012-01-10 20:12 - 2012-01-10 20:12 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
    2011-06-28 16:59 - 2011-06-28 16:59 - 00056800 _____ () C:\Program Files (x86)\NETGEAR\PTVU1000\Universal Push2TV HD Manager\CompInfo.dll
    2011-08-09 13:28 - 2011-08-09 13:28 - 00107328 _____ () C:\Program Files (x86)\NETGEAR\PTVU1000\Universal Push2TV HD Manager\WUSBResource.dll
    2010-04-22 19:33 - 2010-04-22 19:33 - 00323808 _____ () C:\Program Files (x86)\Memeo\AutoBackup\InstantBackup.exe
    2013-11-18 14:05 - 2013-04-22 10:46 - 01054320 _____ () C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe
    2014-02-27 01:18 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
    2014-02-27 01:18 - 2013-05-16 10:55 - 00113496 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
    2014-02-27 01:18 - 2013-05-16 10:55 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
    2014-02-27 01:18 - 2013-05-16 10:55 - 00161112 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
    2014-02-27 01:18 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
    2014-02-07 20:05 - 2009-02-27 16:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
    2010-04-22 19:33 - 2010-04-22 19:33 - 02887904 _____ () C:\Program Files (x86)\Memeo\AutoBackup\Memeo.Client.UI.dll
    2010-04-22 19:33 - 2010-04-22 19:33 - 00025824 _____ () C:\Program Files (x86)\Memeo\AutoBackup\Memeo.Client.DriveDetection.dll
    2010-03-22 17:59 - 2010-03-22 17:59 - 00504293 _____ () C:\Program Files (x86)\Memeo\AutoBackup\sqlite3.DLL
    2010-02-23 14:14 - 2010-02-23 14:14 - 00041472 _____ () C:\Program Files (x86)\ASUS\ControlDeck\HelpFunc.dll
    2010-02-23 14:14 - 2010-02-23 14:14 - 00071680 _____ () C:\Program Files (x86)\ASUS\ControlDeck\Brightness.dll
    2010-02-23 14:11 - 2010-02-23 14:11 - 00076288 _____ () C:\Program Files (x86)\ASUS\ControlDeck\Volume.dll
    2010-02-23 14:12 - 2010-02-23 14:12 - 00186880 _____ () C:\Program Files (x86)\ASUS\ControlDeck\Resolution.dll
    2010-02-23 14:14 - 2010-02-23 14:14 - 00050688 _____ () C:\Program Files (x86)\ASUS\ControlDeck\P4GControl.dll
    2014-03-04 02:20 - 2014-03-01 21:35 - 00051016 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\chrome_elf.dll
    2014-03-04 02:20 - 2014-03-01 21:35 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\libglesv2.dll
    2014-03-04 02:20 - 2014-03-01 21:35 - 00100168 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\libegl.dll
    2014-03-04 02:20 - 2014-03-01 21:35 - 04061000 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\pdf.dll
    2014-03-04 02:20 - 2014-03-01 21:35 - 00394568 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\ppGoogleNaClPluginChrome.dll
    2014-03-04 02:20 - 2014-03-01 21:35 - 01647432 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\ffmpegsumo.dll
    2013-09-20 12:50 - 2013-09-20 12:50 - 00988160 _____ () C:\Program Files (x86)\OpenOffice 4\program\libxml2.dll
    2013-09-17 03:54 - 2013-09-17 03:54 - 00170496 _____ () C:\Program Files (x86)\OpenOffice 4\program\libxslt.dll

    ==================== Alternate Data Streams (whitelisted) =========

    AlternateDataStreams: C:\ProgramData\TEMP:373E1720
    AlternateDataStreams: C:\Users\Chuck New_2\Downloads\2009 Honda Accord EX-L.eml:OECustomProperty

    ==================== Safe Mode (whitelisted) ===================

    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\sndappv2 => ""="service"

    ==================== Disabled items from MSCONFIG ==============

    MSCONFIG\Services: AdobeARMservice => 2
    MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
    MSCONFIG\Services: AFBAgent => 2
    MSCONFIG\Services: ASLDRService => 2
    MSCONFIG\Services: ATKGFNEXSrv => 2
    MSCONFIG\Services: BackupStack => 2
    MSCONFIG\Services: BstHdAndroidSvc => 2
    MSCONFIG\Services: BstHdLogRotatorSvc => 2
    MSCONFIG\Services: btwdins => 3
    MSCONFIG\Services: CableAssociation => 2
    MSCONFIG\Services: CouponXplorer_5zService => 2
    MSCONFIG\Services: DisplayLinkService => 2
    MSCONFIG\Services: Freemake Improver => 2
    MSCONFIG\Services: FreemakeVideoCapture => 2
    MSCONFIG\Services: Garmin Core Update Service => 3
    MSCONFIG\Services: gupdate => 2
    MSCONFIG\Services: gupdatem => 3
    MSCONFIG\Services: gusvc => 3
    MSCONFIG\Services: LMS => 2
    MSCONFIG\Services: MemeoBackgroundService => 2
    MSCONFIG\Services: MozillaMaintenance => 3
    MSCONFIG\Services: NitroReaderDriverReadSpool3 => 2
    MSCONFIG\Services: PDF Architect Helper Service => 2
    MSCONFIG\Services: PDF Architect Service => 2
    MSCONFIG\Services: SeagateDashboardService => 2
    MSCONFIG\Services: Skype C2C Service => 2
    MSCONFIG\Services: SkypeUpdate => 2
    MSCONFIG\Services: Slacker Portable Service => 2
    MSCONFIG\Services: SProtection => 2
    MSCONFIG\Services: STacSV => 2
    MSCONFIG\Services: TelevisionFanaticService => 2
    MSCONFIG\Services: UNS => 2
    MSCONFIG\Services: Update lucky leap => 2
    MSCONFIG\Services: vToolbarUpdater17.0.12 => 2
    MSCONFIG\Services: wifiProtService => 2
    MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk => C:\Windows\pss\Bluetooth.lnk.CommonStartup
    MSCONFIG\startupfolder: C:^Users^Chuck^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk => C:\Windows\pss\Dropbox.lnk.Startup
    MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    MSCONFIG\startupreg: AmIcoSinglun64 => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
    MSCONFIG\startupreg: ASUS Screen Saver Protector => C:\Windows\AsScrPro.exe
    MSCONFIG\startupreg: ATKMEDIA => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
    MSCONFIG\startupreg: ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
    MSCONFIG\startupreg: AVG_UI => "C:\Program Files (x86)\AVG\AVG2014\avgui.exe" /TRAYONLY
    MSCONFIG\startupreg: BlueStacks Agent => C:\Program Files (x86)\BlueStacks\HD-Agent.exe
    MSCONFIG\startupreg: D4B72B26CB6875D709FF04D0DB2FBE43355516F8._service_run => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=service
    MSCONFIG\startupreg: DelaypluginInstall => C:\ProgramData\Wondershare\Player\DelayPluginI.exe
    MSCONFIG\startupreg: DW7 => "C:\Program Files (x86)\The Weather Channel\The Weather Channel App\TWCApp.exe"
    MSCONFIG\startupreg: ETDWare => C:\Program Files\Elantech\ETDCtrl.exe
    MSCONFIG\startupreg: Facebook Update => "C:\Users\Chuck\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
    MSCONFIG\startupreg: GoogleChromeAutoLaunch_9001C7D091CC23E7588EE40C1DFED158 => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
    MSCONFIG\startupreg: GoogleDriveSync => "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
    MSCONFIG\startupreg: HControlUser => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
    MSCONFIG\startupreg: HotKeysCmds => C:\Windows\system32\hkcmd.exe
    MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exe
    MSCONFIG\startupreg: Iminent => C:\Program Files (x86)\Iminent\Iminent.exe /warmup "F77F87E5-A6BD-4922-A530-EDF63D7E9F8C"
    MSCONFIG\startupreg: IminentMessenger => C:\Program Files (x86)\Iminent\Iminent.Messengers.exe
    MSCONFIG\startupreg: InboxToolbar => "C:\Program Files (x86)\Inbox Toolbar\Inbox.exe" /STARTUP
    MSCONFIG\startupreg: KiesAirMessage => C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup
    MSCONFIG\startupreg: KiesPreload => "C:\Program Files (x86)\Samsung\Kies\Kies.exe" /preload
    MSCONFIG\startupreg: KiesTrayAgent => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
    MSCONFIG\startupreg: Memeo Send => C:\Program Files (x86)\Memeo\Memeo Send\MemeoLauncher.exe --silent
    MSCONFIG\startupreg: NTRedirect => C:\Windows\SysWOW64\rundll32.exe "C:\Users\Chuck\AppData\Roaming\BabSolution\Shared\enhancedNT.dll",Run
    MSCONFIG\startupreg: Persistence => C:\Windows\system32\igfxpers.exe
    MSCONFIG\startupreg: Seagate Dashboard => C:\Program Files (x86)\Seagate\Seagate Dashboard\MemeoLauncher.exe --silent --no_ui
    MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
    MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
    MSCONFIG\startupreg: swg => "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
    MSCONFIG\startupreg: SysTrayApp => C:\Program Files\IDT\WDM\sttray64.exe
    MSCONFIG\startupreg: TelevisionFanatic Browser Plugin Loader => C:\PROGRA~2\TELEVI~2\bar\1.bin\64brmon.exe
    MSCONFIG\startupreg: TelevisionFanatic Home Page Guard 64 bit => "C:\PROGRA~2\TELEVI~2\bar\1.bin\AppIntegrator64.exe"
    MSCONFIG\startupreg: TelevisionFanatic Search Scope Monitor => "C:\PROGRA~2\TELEVI~2\bar\1.bin\64srchmn.exe" /m=2 /w /h
    MSCONFIG\startupreg: Universal Push2TV HD Manager => "C:\Program Files (x86)\NETGEAR\PTVU1000\Universal Push2TV HD Manager\Universal Push2TV HD Manager.exe"
    MSCONFIG\startupreg: VivoxHDN => "C:\Users\Chuck\AppData\Local\Vivox\HDN\Current\Vivox.HDN.Up.exe" /d
    MSCONFIG\startupreg: vProt => "C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe"
    MSCONFIG\startupreg: Windows Mobile Device Center => %windir%\WindowsMobile\wmdc.exe
    MSCONFIG\startupreg: Wondershare Helper Compact.exe => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe

  10. #10
    Junior Member
    Join Date
    Feb 2014
    Posts
    22

    Default second half of Additon.txt

    ==================== Faulty Device Manager Devices =============

    Name: PdaNet Modem
    Description: PdaNet Modem
    Class Guid: {4d36e96d-e325-11ce-bfc1-08002be10318}
    Manufacturer: JuneFabrics
    Service: Modem
    Problem: : This device is disabled. (Code 22)
    Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

    Name: Bluetooth Peripheral Device
    Description: Bluetooth Peripheral Device
    Class Guid:
    Manufacturer:
    Service:
    Problem: : The drivers for this device are not installed. (Code 28)
    Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

    Name: SPH-L710 Stevo's
    Description: SPH-L710
    Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a}
    Manufacturer: SAMSUNG Electronics Co. Ltd.
    Service: WUDFRd
    Problem: : This device cannot start. (Code10)
    Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
    On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

    Name: Bluetooth Peripheral Device
    Description: Bluetooth Peripheral Device
    Class Guid:
    Manufacturer:
    Service:
    Problem: : The drivers for this device are not installed. (Code 28)
    Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

    Name: 590Plantronics (Mono Audio)
    Description: Bluetooth Hands-free Audio Device
    Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
    Manufacturer: CSR plc
    Service: BthAudioHF
    Problem: : This device cannot start. (Code10)
    Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
    On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


    ==================== Event log errors: =========================

    Application errors:
    ==================
    Error: (03/05/2014 03:02:02 PM) (Source: VSS) (User: )
    Description: Volume Shadow Copy Service error: Unexpected error calling routine ConvertStringSidToSid(S-1-5-21-4229314078-1887863115-615417127-501.bak). hr = 0x80070539, The security ID structure is invalid.
    .


    Operation:
    OnIdentify event
    Gathering Writer Data

    Context:
    Execution Context: Shadow Copy Optimization Writer
    Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
    Writer Name: Shadow Copy Optimization Writer
    Writer Instance ID: {07217973-115e-4909-b2f7-3f33210f1295}

    Error: (03/05/2014 02:51:11 PM) (Source: BstHdAndroidSvc) (User: )
    Description: Service cannot be started. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
    at BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
    at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

    Error: (03/05/2014 02:37:53 PM) (Source: MsiInstaller) (User: NT AUTHORITY)
    Description: SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2014 -- Error 27054. CA_Error27054: SetupAction(0xC0070091): Installation failed.

    Error: (03/05/2014 00:24:42 AM) (Source: Application Hang) (User: )
    Description: The program soffice.bin version 4.0.9714.500 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

    Process ID: 6ec

    Start Time: 01cf3830a73aec2f

    Termination Time: 8

    Application Path: C:\Program Files (x86)\OpenOffice 4\program\soffice.bin

    Report Id:

    Error: (03/04/2014 09:18:19 PM) (Source: BstHdAndroidSvc) (User: )
    Description: Service cannot be started. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
    at BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
    at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

    Error: (03/04/2014 10:26:44 AM) (Source: VSS) (User: )
    Description: Volume Shadow Copy Service error: Unexpected error calling routine ConvertStringSidToSid(S-1-5-21-4229314078-1887863115-615417127-501.bak). hr = 0x80070539, The security ID structure is invalid.
    .


    Operation:
    OnIdentify event
    Gathering Writer Data

    Context:
    Execution Context: Shadow Copy Optimization Writer
    Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
    Writer Name: Shadow Copy Optimization Writer
    Writer Instance ID: {bb6d58eb-c6fd-4281-8bd7-cfc5aff374e9}

    Error: (03/04/2014 10:24:40 AM) (Source: VSS) (User: )
    Description: Volume Shadow Copy Service error: Unexpected error calling routine ConvertStringSidToSid(S-1-5-21-4229314078-1887863115-615417127-501.bak). hr = 0x80070539, The security ID structure is invalid.
    .


    Operation:
    OnIdentify event
    Gathering Writer Data

    Context:
    Execution Context: Shadow Copy Optimization Writer
    Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
    Writer Name: Shadow Copy Optimization Writer
    Writer Instance ID: {bb6d58eb-c6fd-4281-8bd7-cfc5aff374e9}

    Error: (03/04/2014 10:22:34 AM) (Source: VSS) (User: )
    Description: Volume Shadow Copy Service error: Unexpected error calling routine ConvertStringSidToSid(S-1-5-21-4229314078-1887863115-615417127-501.bak). hr = 0x80070539, The security ID structure is invalid.
    .


    Operation:
    OnIdentify event
    Gathering Writer Data

    Context:
    Execution Context: Shadow Copy Optimization Writer
    Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
    Writer Name: Shadow Copy Optimization Writer
    Writer Instance ID: {bb6d58eb-c6fd-4281-8bd7-cfc5aff374e9}

    Error: (03/04/2014 10:12:08 AM) (Source: Application Error) (User: )
    Description: Faulting application name: PdaNetPC.exe, version: 0.0.0.0, time stamp: 0x51754ca7
    Faulting module name: PdaNetPC.exe, version: 0.0.0.0, time stamp: 0x51754ca7
    Exception code: 0x40000015
    Fault offset: 0x0003834e
    Faulting process id: 0x1004
    Faulting application start time: 0xPdaNetPC.exe0
    Faulting application path: PdaNetPC.exe1
    Faulting module path: PdaNetPC.exe2
    Report Id: PdaNetPC.exe3

    Error: (03/02/2014 11:25:11 PM) (Source: BstHdAndroidSvc) (User: )
    Description: Service cannot be started. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
    at BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
    at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)


    System errors:
    =============
    Error: (03/05/2014 04:33:31 PM) (Source: Service Control Manager) (User: )
    Description: The Printer Control service terminated unexpectedly. It has done this 1 time(s).

    Error: (03/05/2014 02:51:11 PM) (Source: Service Control Manager) (User: )
    Description: The BlueStacks Android Service service terminated with the following error:
    %%1064

    Error: (03/05/2014 02:50:45 PM) (Source: Service Control Manager) (User: )
    Description: The PDF Architect Service service terminated with the following error:
    %%-2147467259

    Error: (03/05/2014 02:47:34 PM) (Source: DCOM) (User: )
    Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}

    Error: (03/04/2014 09:18:19 PM) (Source: Service Control Manager) (User: )
    Description: The BlueStacks Android Service service terminated with the following error:
    %%1064

    Error: (03/04/2014 09:17:57 PM) (Source: Service Control Manager) (User: )
    Description: The PDF Architect Service service terminated with the following error:
    %%-2147467259

    Error: (03/04/2014 09:17:46 PM) (Source: EventLog) (User: )
    Description: The previous system shutdown at 8:49:33 PM on ‎3/‎4/‎2014 was unexpected.

    Error: (03/02/2014 11:25:11 PM) (Source: Service Control Manager) (User: )
    Description: The BlueStacks Android Service service terminated with the following error:
    %%1064

    Error: (03/02/2014 11:24:58 PM) (Source: Service Control Manager) (User: )
    Description: The PDF Architect Service service terminated with the following error:
    %%-2147467259

    Error: (03/02/2014 11:23:52 PM) (Source: EventLog) (User: )
    Description: The previous system shutdown at 11:21:44 PM on ‎3/‎2/‎2014 was unexpected.


    Microsoft Office Sessions:
    =========================
    Error: (03/05/2014 03:02:02 PM) (Source: VSS)(User: )
    Description: ConvertStringSidToSid(S-1-5-21-4229314078-1887863115-615417127-501.bak)0x80070539, The security ID structure is invalid.


    Operation:
    OnIdentify event
    Gathering Writer Data

    Context:
    Execution Context: Shadow Copy Optimization Writer
    Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
    Writer Name: Shadow Copy Optimization Writer
    Writer Instance ID: {07217973-115e-4909-b2f7-3f33210f1295}

    Error: (03/05/2014 02:51:11 PM) (Source: BstHdAndroidSvc)(User: )
    Description: Service cannot be started. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
    at BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
    at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

    Error: (03/05/2014 02:37:53 PM) (Source: MsiInstaller)(User: NT AUTHORITY)
    Description: SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2014 -- Error 27054. CA_Error27054: SetupAction(0xC0070091): Installation failed.(NULL)(NULL)(NULL)(NULL)(NULL)

    Error: (03/05/2014 00:24:42 AM) (Source: Application Hang)(User: )
    Description: soffice.bin4.0.9714.5006ec01cf3830a73aec2f8C:\Program Files (x86)\OpenOffice 4\program\soffice.bin

    Error: (03/04/2014 09:18:19 PM) (Source: BstHdAndroidSvc)(User: )
    Description: Service cannot be started. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
    at BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
    at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

    Error: (03/04/2014 10:26:44 AM) (Source: VSS)(User: )
    Description: ConvertStringSidToSid(S-1-5-21-4229314078-1887863115-615417127-501.bak)0x80070539, The security ID structure is invalid.


    Operation:
    OnIdentify event
    Gathering Writer Data

    Context:
    Execution Context: Shadow Copy Optimization Writer
    Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
    Writer Name: Shadow Copy Optimization Writer
    Writer Instance ID: {bb6d58eb-c6fd-4281-8bd7-cfc5aff374e9}

    Error: (03/04/2014 10:24:40 AM) (Source: VSS)(User: )
    Description: ConvertStringSidToSid(S-1-5-21-4229314078-1887863115-615417127-501.bak)0x80070539, The security ID structure is invalid.


    Operation:
    OnIdentify event
    Gathering Writer Data

    Context:
    Execution Context: Shadow Copy Optimization Writer
    Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
    Writer Name: Shadow Copy Optimization Writer
    Writer Instance ID: {bb6d58eb-c6fd-4281-8bd7-cfc5aff374e9}

    Error: (03/04/2014 10:22:34 AM) (Source: VSS)(User: )
    Description: ConvertStringSidToSid(S-1-5-21-4229314078-1887863115-615417127-501.bak)0x80070539, The security ID structure is invalid.


    Operation:
    OnIdentify event
    Gathering Writer Data

    Context:
    Execution Context: Shadow Copy Optimization Writer
    Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
    Writer Name: Shadow Copy Optimization Writer
    Writer Instance ID: {bb6d58eb-c6fd-4281-8bd7-cfc5aff374e9}

    Error: (03/04/2014 10:12:08 AM) (Source: Application Error)(User: )
    Description: PdaNetPC.exe0.0.0.051754ca7PdaNetPC.exe0.0.0.051754ca7400000150003834e100401cf3698b4c96424C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exeC:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe59bf7dcb-a3af-11e3-a0d8-485b39e79c28

    Error: (03/02/2014 11:25:11 PM) (Source: BstHdAndroidSvc)(User: )
    Description: Service cannot be started. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
    at BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
    at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)


    ==================== Memory info ===========================

    Percentage of memory in use: 72%
    Total physical RAM: 3884.55 MB
    Available physical RAM: 1061.25 MB
    Total Pagefile: 7767.27 MB
    Available Pagefile: 4686.32 MB
    Total Virtual: 8192 MB
    Available Virtual: 8191.82 MB

    ==================== Drives ================================

    Drive c: (OS) (Fixed) (Total:278.55 GB) (Free:194.02 GB) NTFS ==>[Drive with boot components (obtained from BCD)]

    ==================== MBR & Partition Table ==================

    ========================================================
    Disk: 0 (MBR Code: Windows XP) (Size: 298 GB) (Disk ID: D59D3FD7)

    Partition: GPT Partition Type.

    ==================== End Of Log ============================

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •