Jump to content

Build Theme!
  •  
  • Infected?

WE'RE SURE THAT YOU'LL LOVE US!

Hey there! :wub: Looks like you're enjoying the discussion, but you're not signed up for an account. When you create an account, we remember exactly what you've read, so you always come right back where you left off. You also get notifications, here and via email, whenever new posts are made. You can like posts to share the love. :D Join 93081 other members! Anybody can ask, anybody can answer. Consistently helpful members may be invited to become staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

Blue Screen [Solved]


  • This topic is locked This topic is locked
13 replies to this topic

#1 Karelia

Karelia

    Authentic Member

  • Authentic Member
  • PipPip
  • 37 posts

Posted 29 March 2014 - 08:33 AM

Windows XP Professional x64

Attempted to revert back to Restore Point crashed to blue screen.
Will not boot into safe mode
Will not allow reinstall of OS


Blue screen codes =
0x0000007B. (OxF78A2524, 0xC0000034, 0x00000000, 0x00000000 )

Please advise

    Advertisements

Register to Remove


#2 paws

paws

    Tech Team

  • Administrator
  • 6,088 posts

Posted 29 March 2014 - 04:58 PM

Hi Karelia,

this could be a BIOS issue.

 

Try entering the BIOS and check the settings for your AHCI/RAID mode (SATA controller) "SATA Mode" option and change it from AHCI to ATA or IDE

Let us know if this does the trick for you.

 

As always be careful in the BIOS make good notes of all your settings so you can set them back to how they were...

Regards

paws


The help you receive here is free. If you wish to show your appreciation, then you may donate to help keep us online. http://www.whatthetech.com/donate

#3 Karelia

Karelia

    Authentic Member

  • Authentic Member
  • PipPip
  • 37 posts

Posted 29 March 2014 - 09:44 PM

I found ATA/IDE Mode Native and legacy. Currently set on Native

Under that is SATA ports 0-3
But not SATA Mode is BIOS

#4 Karelia

Karelia

    Authentic Member

  • Authentic Member
  • PipPip
  • 37 posts

Posted 30 March 2014 - 09:19 AM

Well my discovery was a cracked SATA cable attached to HD. Also had missing NTRLDR.
Reassigned SATA cables so HD has a good one, installed NTRLDR from windows install cd.
Now let's look at what lead me to restore to a pervious saved spot.

I was getting pop ups and auto loading web sites while using browser.
I am no longer seeing these pop ups or auto loads. As the PC rebooted to save spot I had chosen.

Leave it alone or clean house?

#5 LDTate

LDTate

    Grand Poobah

  • Root Admin
  • 57,211 posts

Posted 31 March 2014 - 01:04 PM

I would run a anti-virus scan atleast.

What other security software do you have installed?

 

Lets collect additional information off the system to see if we can spot the issue.
 
Please download DDS from the link below and save it to your desktop:
Note: Be sure to select Save as Type > All Types
 
Download one of the DDS tools from the location below and save to your Desktop
dds.scr - http://download.blee...om/sUBs/dds.scr
dds.com - http://download.blee...om/sUBs/dds.com
 
Double click dds.scr to run the tool.
 
It will automatically run; all you will see is a small message saying DDS is running in silent mode, then a message saying 2 logs shall be created on your Desktop. 
 
When done, DDS will have saved 2 logs to your desktop:
 1. DDS.txt
 2. Attach.txt Please attach both logs in your next reply.


The forum is run by volunteers who donate their time and expertise.

Want to help others? Join the ClassRoom and learn how.

Logs will be closed if you haven't replied within 3 days

 

If you would like to paypal.gif for the help you received.
 

Proud graduate of TC/WTT Classroom

 


#6 Karelia

Karelia

    Authentic Member

  • Authentic Member
  • PipPip
  • 37 posts

Posted 06 April 2014 - 06:53 PM

Sorry for the long delay, i'm a single mother of 3.

 

DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 8.0.6001.18702
Run by STACY at 20:34:51 on 2014-04-06
Microsoft Windows XP Professional  5.1.2600.3.1252.1.1033.18.3581.2293 [GMT -4:00]
.
AV: avast! Antivirus *Enabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
============== Running Processes ================
.
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Seagate\SeagateManager\Sync\FreeAgentService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Motorola\MotoHelper\MotoHelperService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
C:\Documents and Settings\All Users.WINDOWS\Application Data\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Motorola\MotoHelper\MotoHelperAgent.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\WrtMon.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\WrtProc.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10.exe
C:\WINDOWS\vVX3000.exe
C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\PROGRA~1\SearchProtect\Main\bin\CltMngSvc.exe
C:\PROGRA~1\SearchProtect\SearchProtect\bin\cltmng.exe
C:\PROGRA~1\SearchProtect\UI\bin\cltmngui.exe
C:\Program Files\Microsoft Office\Office12\WINWORD.EXE
C:\program files\real\realplayer\update\realsched.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://search.conduit.com/?ctid=CT3317825&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SP4C92BC7D-B1AC-46C8-88D1-7CD825EB50A6&SSPV=
uProxyServer = hxxp=127.0.0.1:5577
uProxyOverride = 192.168.*.*;<local>
BHO: RealNetworks Download and Record Plugin for Internet Explorer: {3049C3E9-B461-4BC5-8870-4C09146192CA} - c:\documents and settings\all users.windows\application data\realnetworks\realdownloader\browserplugins\ie\rndlbrowserrecordplugin.dll
BHO: AVG Safe Search: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} -
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
BHO: Windows Live Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: ValueApps: {93DBF2BB-A2B3-4683-A92E-57E60751F346} - c:\program files\conduit\valueapps\ie\ValueAppsLoader.dll
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - c:\program files\google\googletoolbarnotifier\5.7.9012.1008\swg.dll
BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
BHO: {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - <orphaned>
TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /minimized /regrun
uRun: [swg] "c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe"
uRunOnce: [FlashPlayerUpdate] c:\windows\system32\macromed\flash\FlashUtil32_11_9_900_152_Plugin.exe -update plugin
mRun: [RTHDCPL] RTHDCPL.EXE
mRun: [Alcmtr] ALCMTR.EXE
mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [WrtMon.exe] c:\windows\system32\spool\drivers\w32x86\3\WrtMon.exe
mRun: [HPDJ Taskbar Utility] c:\windows\system32\spool\drivers\w32x86\3\hpztsb10.exe
mRun: [GB_UPDATE] c:\program files\razer\razer game booster\AutoUpdate.exe/AUTORUN
mRun: [TkBellExe] "c:\program files\real\realplayer\update\realsched.exe"  -osboot
mRun: [VX3000] c:\windows\vVX3000.exe
mRun: [Nvtmru] "c:\program files\nvidia corporation\nvidia update core\nvtmru.exe"
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [nwiz] c:\program files\nvidia corporation\nview\nwiz.exe /installquiet
mRun: [APSDaemon] "c:\program files\common files\apple\apple application support\APSDaemon.exe"
mRun: [mobilegeni daemon] c:\program files\mobogenie\DaemonProcess.exe
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [AvastUI.exe] "c:\program files\avast software\avast\AvastUI.exe" /nogui
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoDriveTypeAutoRun = dword:28
mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: Add to Anti-Banner - c:\program files\kaspersky lab\kaspersky internet security 2011\ie_banner_deny.htm
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office12\ONBttnIE.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089} - hxxp://office.microsoft.com/sites/production/ieawsdc32.cab
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {6678BE91-1E04-4A4A-9C32-63145EA79C2A} - hxxp://www.fifa-online.easports.com/fo3-theme/addons/EAFO3AXLauncher.cab
DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} - hxxps://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_19-windows-i586.cab
DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
DPF: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_19-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_19-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
DPF: {D4003189-95B1-4A2F-9A87-F2B03665960D} - hxxp://www.vexcast.com/download/vexcast.cab
TCP: NameServer = 192.168.2.1
TCP: Interfaces\{E01345C7-55E5-4171-9F93-6098CE006E39} : DHCPNameServer = 192.168.2.1
Handler: cetihpz - {CF184AD3-CDCB-4168-A3F7-8E447D129300} - c:\program files\hp\hpcoretech\comp\hpuiprot.dll
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} -
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
AppInit_DLLs= c:\progra~1\searchprotect\searchprotect\bin\SPVC32Loader.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
SEH: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - c:\program files\windows desktop search\MSNLNamespaceMgr.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\stacy\application data\mozilla\firefox\profiles\4wl8ht18.default\
FF - prefs.js: browser.search.selectedEngine - Conduit Search
FF - prefs.js: browser.startup.homepage - www.google.com
FF - plugin: c:\documents and settings\all users.windows\application data\realnetworks\realdownloader\browserplugins\mozillaplugins\nprndlchromebrowserrecordext.dll
FF - plugin: c:\documents and settings\all users.windows\application data\realnetworks\realdownloader\browserplugins\mozillaplugins\nprndlhtml5videoshim.dll
FF - plugin: c:\documents and settings\all users.windows\application data\realnetworks\realdownloader\browserplugins\mozillaplugins\nprndlpepperflashvideoshim.dll
FF - plugin: c:\documents and settings\all users.windows\application data\realnetworks\realdownloader\browserplugins\npdlplugin.dll
FF - plugin: c:\documents and settings\jim.jims\application data\neulion\adaptiveplugin\npadaptiveplugin_1_6_5_7131.dll
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\divx\divx plus web player\npdivx32.dll
FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\google\update\1.3.23.9\npGoogleUpdate3.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.30214.0\npctrlui.dll
FF - plugin: c:\program files\real\realplayer\netscape6\nprpplugin.dll
FF - plugin: c:\program files\unity\webplayer\loader\npUnity3D32.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_9_900_152.dll
.
---- FIREFOX POLICIES ----
FF - user.js: extensions.autoDisableScopes - 0
FF - user.js: extensions.shownSelectionUI - true
.
============= SERVICES / DRIVERS ===============
.
R0 aswRvrt;avast! Revert;c:\windows\system32\drivers\aswRvrt.sys [2014-3-30 49944]
R0 aswVmm;avast! VM Monitor;c:\windows\system32\drivers\aswVmm.sys [2014-3-30 180760]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2014-3-30 776976]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2014-3-30 411552]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2014-3-30 67824]
R2 avast! Antivirus;avast! Antivirus;c:\program files\avast software\avast\AvastSvc.exe [2014-3-30 50344]
R2 CltMngSvc;Search Protect by Conduit Service;c:\progra~1\searchprotect\main\bin\CltMngSvc.exe [2014-3-30 2466080]
R2 FreeAgentGoNext Service;Seagate Service;c:\program files\seagate\seagatemanager\sync\FreeAgentService.exe [2009-5-1 181544]
R2 MotoHelper;MotoHelper Service;c:\program files\motorola\motohelper\MotoHelperService.exe [2011-4-26 223088]
R2 RealNetworks Downloader Resolver Service;RealNetworks Downloader Resolver Service;c:\program files\realnetworks\realdownloader\rndlresolversvc.exe [2013-4-16 39056]
R2 Skype C2C Service;Skype C2C Service;c:\documents and settings\all users.windows\application data\skype\toolbars\skype c2c service\c2c_service.exe [2013-10-9 3275136]
R3 rzdaendpt;Razer DeathAdder end point;c:\windows\system32\drivers\rzdaendpt.sys [2013-6-1 22400]
R3 rzkbdhid;Razer HID Keyboard Driver Service;c:\windows\system32\drivers\rzkbdhid.sys [2013-6-1 3456]
R3 rzudd;Razer Keyboard Driver;c:\windows\system32\drivers\rzudd.sys [2013-6-1 105600]
R3 rzvkeyboard;Razer Virtual Keyboard Driver;c:\windows\system32\drivers\rzvkeyboard.sys [2013-6-1 20352]
S0 Lbd;Lbd;c:\windows\system32\drivers\lbd.sys --> c:\windows\system32\drivers\Lbd.sys [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2013-10-23 172192]
S3 massfilter_hs;HS HandSet Mass Storage Filter Driver;c:\windows\system32\drivers\massfilter_hs.sys [2013-11-2 15896]
S3 motccgp;Motorola USB Composite Device Driver;c:\windows\system32\drivers\motccgp.sys --> c:\windows\system32\drivers\motccgp.sys [?]
S3 motccgpfl;MotCcgpFlService;c:\windows\system32\drivers\motccgpfl.sys --> c:\windows\system32\drivers\motccgpfl.sys [?]
S3 SQTECH9060;Dual Mode Camera 1300;c:\windows\system32\drivers\Capt9060.sys [2009-11-9 30634]
S3 vproiah;vproiah;c:\windows\system32\drivers\vproiah.sys --> c:\windows\system32\drivers\vproiah.sys [?]
S3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files\razer\razer game booster\driver\WinRing0.sys [2013-6-1 14416]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2013-7-20 754856]
S3 zghsdiag;ZTE General Handset Diagnostic Port;c:\windows\system32\drivers\zghsdiag.sys [2013-11-2 113688]
S3 zghsmdm;ZTE General Handset USB Modem Proprietary;c:\windows\system32\drivers\zghsmdm.sys [2013-11-2 113688]
S3 zghsnmea;ZTE General Handset NMEA Port;c:\windows\system32\drivers\zghsnmea.sys [2013-11-2 113688]
.
=============== Created Last 30 ================
.
2014-03-30 15:33:56    --------    d-----w-    c:\documents and settings\stacy\application data\AVAST Software
2014-03-30 15:33:01    776976    ----a-w-    c:\windows\system32\drivers\aswSnx.sys
2014-03-30 15:33:01    49944    ----a-w-    c:\windows\system32\drivers\aswRvrt.sys
2014-03-30 15:33:01    180760    ----a-w-    c:\windows\system32\drivers\aswVmm.sys
2014-03-30 15:33:00    67824    ----a-w-    c:\windows\system32\drivers\aswMonFlt.sys
2014-03-30 15:32:56    43152    ----a-w-    c:\windows\avastSS.scr
2014-03-30 15:32:32    --------    d-----w-    c:\program files\AVAST Software
2014-03-30 15:30:59    --------    d-----w-    c:\documents and settings\all users.windows\application data\AVAST Software
2014-03-23 15:36:29    --------    d-----w-    c:\windows\system32\wbem\repository\FS
2014-03-23 15:36:29    --------    d-----w-    c:\windows\system32\wbem\Repository
2014-03-23 15:36:00    --------    d-----w-    c:\program files\FOX News Live
2014-03-23 15:35:53    --------    d-----w-    c:\program files\JumpStart World
2014-03-23 15:22:39    --------    d-----w-    c:\documents and settings\stacy\application data\Compete
2014-03-23 15:07:43    --------    d-----w-    c:\program files\Consumer Input
2014-03-23 15:05:04    --------    d-----w-    c:\documents and settings\stacy\local settings\application data\BenchUpdater
2014-03-23 15:05:02    --------    d-----w-    c:\program files\Bee Coupons
2014-03-23 15:04:57    --------    d-----w-    c:\program files\Bench
2014-03-23 15:04:57    --------    d-----w-    c:\documents and settings\stacy\local settings\application data\Bee Coupons
2014-03-23 15:04:27    --------    d-----w-    c:\program files\Re-Markable-soft
2014-03-18 07:28:37    13312    -c----w-    c:\windows\system32\dllcache\xp_eos.exe
2014-03-18 07:28:37    13312    ------w-    c:\windows\system32\xp_eos.exe
2014-03-09 19:35:35    --------    d-----w-    c:\documents and settings\all users.windows\application data\188F1432-103A-4ffb-80F1-36B633C5C9E1
2014-03-09 19:24:45    159744    ----a-w-    c:\program files\internet explorer\plugins\npqtplugin5.dll
2014-03-09 19:24:45    159744    ----a-w-    c:\program files\internet explorer\plugins\npqtplugin4.dll
2014-03-09 19:24:45    159744    ----a-w-    c:\program files\internet explorer\plugins\npqtplugin3.dll
2014-03-09 19:24:45    159744    ----a-w-    c:\program files\internet explorer\plugins\npqtplugin2.dll
2014-03-09 19:24:45    159744    ----a-w-    c:\program files\internet explorer\plugins\npqtplugin.dll
.
==================== Find3M  ====================
.
2014-02-24 11:46:36    920064    ----a-w-    c:\windows\system32\wininet.dll
2014-02-24 11:45:58    43520    ----a-w-    c:\windows\system32\licmgr10.dll
2014-02-24 11:45:57    1469440    ------w-    c:\windows\system32\inetcpl.cpl
2014-02-24 11:45:42    18944    ----a-w-    c:\windows\system32\corpol.dll
2014-02-24 10:54:21    385024    ----a-w-    c:\windows\system32\html.iec
2014-02-07 02:01:37    1879040    ----a-w-    c:\windows\system32\win32k.sys
2014-02-05 08:55:04    562688    ----a-w-    c:\windows\system32\qedit.dll
2014-01-17 20:24:12    94208    ----a-w-    c:\windows\system32\QuickTimeVR.qtx
2014-01-17 20:24:12    69632    ----a-w-    c:\windows\system32\QuickTime.qts
.
============= FINISH: 20:35:56.02 ===============

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 12/26/2008 9:54:05 PM
System Uptime: 3/30/2014 11:35:18 AM (177 hours ago)
.
Motherboard: Intel Corporation |  | D945GCNL
Processor: Intel® Core™2 Duo CPU     E4500  @ 2.20GHz | LGA 775 | 2194/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 466 GiB total, 263.796 GiB free.
D: is CDROM ()
E: is CDROM ()
F: is FIXED (NTFS) - 932 GiB total, 436.048 GiB free.
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP1918: 1/7/2014 12:22:12 AM - System Checkpoint
RP1919: 1/8/2014 1:15:08 AM - System Checkpoint
RP1920: 1/9/2014 2:05:34 AM - System Checkpoint
RP1921: 1/10/2014 3:00:47 AM - System Checkpoint
RP1922: 1/11/2014 3:53:53 AM - System Checkpoint
RP1923: 1/12/2014 4:50:28 AM - System Checkpoint
RP1924: 1/12/2014 4:02:03 PM - Uniblue SpeedUpMyPC installation
RP1925: 1/12/2014 7:27:14 PM - Removed Ask Toolbar.
RP1926: 1/12/2014 7:32:07 PM - Removed Microsoft Visual C++ 2005 Redistributable
RP1927: 1/12/2014 7:37:14 PM - Removed FIFA 12 DEMO
RP1928: 1/13/2014 7:42:59 PM - System Checkpoint
RP1929: 1/14/2014 8:40:21 PM - System Checkpoint
RP1930: 1/15/2014 5:00:20 AM - Software Distribution Service 3.0
RP1931: 1/16/2014 5:00:19 AM - Software Distribution Service 3.0
RP1932: 1/17/2014 5:21:06 AM - System Checkpoint
RP1933: 1/18/2014 6:15:05 AM - System Checkpoint
RP1934: 1/19/2014 7:07:33 AM - System Checkpoint
RP1935: 1/20/2014 8:03:55 AM - System Checkpoint
RP1936: 1/21/2014 9:02:41 AM - System Checkpoint
RP1937: 1/22/2014 10:02:40 AM - System Checkpoint
RP1938: 1/23/2014 11:01:51 AM - System Checkpoint
RP1939: 1/24/2014 12:01:51 PM - System Checkpoint
RP1940: 1/25/2014 1:01:51 PM - System Checkpoint
RP1941: 1/26/2014 2:01:51 PM - System Checkpoint
RP1942: 1/27/2014 2:56:35 PM - System Checkpoint
RP1943: 1/28/2014 3:50:54 PM - System Checkpoint
RP1944: 1/29/2014 4:46:12 PM - System Checkpoint
RP1945: 1/30/2014 5:48:23 PM - System Checkpoint
RP1946: 1/31/2014 6:45:29 PM - System Checkpoint
RP1947: 2/1/2014 7:41:04 PM - System Checkpoint
RP1948: 2/2/2014 10:02:42 PM - System Checkpoint
RP1949: 2/3/2014 10:21:01 PM - System Checkpoint
RP1950: 2/4/2014 11:15:32 PM - System Checkpoint
RP1951: 2/6/2014 12:09:02 AM - System Checkpoint
RP1952: 2/7/2014 1:04:46 AM - System Checkpoint
RP1953: 2/8/2014 1:10:39 AM - System Checkpoint
RP1954: 2/9/2014 1:27:58 AM - System Checkpoint
RP1955: 2/10/2014 2:24:50 AM - System Checkpoint
RP1956: 2/11/2014 3:18:56 AM - System Checkpoint
RP1957: 2/12/2014 4:12:49 AM - System Checkpoint
RP1958: 2/12/2014 5:00:17 AM - Software Distribution Service 3.0
RP1959: 2/13/2014 5:51:21 AM - System Checkpoint
RP1960: 2/14/2014 6:00:18 AM - System Checkpoint
RP1961: 2/15/2014 6:56:42 AM - System Checkpoint
RP1962: 2/16/2014 7:51:13 AM - System Checkpoint
RP1963: 2/17/2014 8:44:53 AM - System Checkpoint
RP1964: 2/18/2014 9:38:23 AM - System Checkpoint
RP1965: 2/19/2014 10:32:26 AM - System Checkpoint
RP1966: 2/20/2014 11:27:56 AM - System Checkpoint
RP1967: 2/21/2014 12:22:37 PM - System Checkpoint
RP1968: 2/22/2014 1:15:44 PM - System Checkpoint
RP1969: 2/23/2014 2:10:18 PM - System Checkpoint
RP1970: 2/24/2014 3:03:37 PM - System Checkpoint
RP1971: 2/25/2014 3:56:58 PM - System Checkpoint
RP1972: 2/26/2014 4:48:24 PM - System Checkpoint
RP1973: 2/27/2014 5:43:28 PM - System Checkpoint
RP1974: 2/28/2014 6:37:38 PM - System Checkpoint
RP1975: 3/1/2014 7:31:54 PM - System Checkpoint
RP1976: 3/2/2014 8:25:59 PM - System Checkpoint
RP1977: 3/3/2014 8:31:01 PM - System Checkpoint
RP1978: 3/4/2014 9:26:05 PM - System Checkpoint
RP1979: 3/5/2014 5:00:16 AM - Software Distribution Service 3.0
RP1980: 3/6/2014 5:15:04 AM - System Checkpoint
RP1981: 3/7/2014 6:05:46 AM - System Checkpoint
RP1982: 3/8/2014 6:55:34 AM - System Checkpoint
RP1983: 3/9/2014 8:46:39 AM - System Checkpoint
RP1984: 3/10/2014 9:24:50 AM - System Checkpoint
RP1985: 3/11/2014 9:26:01 AM - System Checkpoint
RP1986: 3/12/2014 10:24:56 AM - System Checkpoint
RP1987: 3/13/2014 5:00:18 AM - Software Distribution Service 3.0
RP1988: 3/14/2014 5:18:41 AM - System Checkpoint
RP1989: 3/15/2014 6:12:08 AM - System Checkpoint
RP1990: 3/16/2014 7:05:31 AM - System Checkpoint
RP1991: 3/17/2014 8:04:14 AM - System Checkpoint
RP1992: 3/18/2014 5:00:17 AM - Software Distribution Service 3.0
RP1993: 3/19/2014 5:15:44 AM - System Checkpoint
RP1994: 3/20/2014 6:11:56 AM - System Checkpoint
RP1995: 3/21/2014 6:16:44 AM - System Checkpoint
RP1996: 3/22/2014 7:10:38 AM - System Checkpoint
RP1997: 3/23/2014 8:04:50 AM - System Checkpoint
RP1998: 3/23/2014 11:06:29 AM - Installed Microsoft Visual Studio 2010 Tools for Office Runtime (x86)
RP1999: 3/23/2014 11:16:44 AM - Removed FOX News Live
RP2000: 3/23/2014 11:35:09 AM - Restore Operation
RP2001: 3/30/2014 11:32:32 AM - avast! antivirus system restore point
RP2002: 3/31/2014 11:40:38 AM - System Checkpoint
RP2003: 4/1/2014 11:45:13 AM - System Checkpoint
RP2004: 4/2/2014 12:36:58 PM - System Checkpoint
RP2005: 4/3/2014 1:28:29 PM - System Checkpoint
RP2006: 4/4/2014 2:20:05 PM - System Checkpoint
RP2007: 4/5/2014 3:12:00 PM - System Checkpoint
RP2008: 4/6/2014 4:04:05 PM - System Checkpoint
.
==== Installed Programs ======================
.
Acrobat.com
Adobe AIR
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Adobe Reader X (10.1.9)
Adobe Shockwave Player 11.6
Aniosoft iBackup Pro 1.2.2
Apple Application Support
Apple Mobile Device Support
Apple Software Update
ArcSoft PhotoStudio 5.5
avast! Free Antivirus
Belkin Setup and Router Monitor
BitPim 1.0.7
Bonjour
Canon MP Navigator EX 1.0
Canon Utilities Solution Menu
CanoScan 8800F
Compatibility Pack for the 2007 Office system
Console Classix 4.06
DivX Codec
DivX Converter
DivX Player
DivX Plus DirectShow Filters
DivX Plus Web Player
Dual Mode Camera 1300
FairStars CD Ripper 1.60
FOX News Live
Free Video to iPad Converter version 5.0.28.827
FrostWire 5.4.0
Google Earth
Google Quick Search Box
Google Toolbar for Internet Explorer
Google Update Helper
HijackThis 2.0.2
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows XP (KB2443685)
Hotfix for Windows XP (KB2570791)
Hotfix for Windows XP (KB2633952)
Hotfix for Windows XP (KB2756822)
Hotfix for Windows XP (KB2779562)
HP Deskjet 6500
HP Deskjet 6500 Series
HP Share-to-Web
HP Update
iTunes
Java Auto Updater
Java™ 6 Update 19
Join Me Drivers
JS World 1st Grade
JSWorld1GMain
JSWPFCom
JSWPFGrade1
JumpStart 3D Ages 5-7
K-Lite Codec Pack 5.4.4 (Basic)
LG United Mobile Drivers
LiveVDO plugin 1.3
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Security Update (KB2698023)
Microsoft .NET Framework 1.1 Security Update (KB2833941)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Extended
Microsoft Application Error Reporting
Microsoft Choice Guard
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Flight Simulator X Demo
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
Microsoft National Language Support Downlevel APIs
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office File Validation Add-In
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (English) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Professional 2007
Microsoft Office Professional 2007 Trial
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Silverlight
Microsoft Software Update for Web Folders  (English) 12
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
Microsoft Visual C++ Run Time  Lib Setup
Microsoft Works 6-9 Converter
MixPad
MobileMe Control Panel
MotoHelper 2.0.51 Driver 5.1.0
MotoHelper MergeModules
Motorola Mobile Drivers Installation 5.1.0
Mozilla Firefox 27.0.1 (x86 en-US)
Mozilla Maintenance Service
MSVCRT
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 4.0 SP2 Parser and SDK
NCsoft Launcher
Need For Speed™ World
NeuLion Adaptive Plugin
NVIDIA Control Panel 295.73
NVIDIA GeForce Experience 1.7.1
NVIDIA Graphics Driver 295.73
NVIDIA HD Audio Driver 1.3.26.4
NVIDIA Install Application
NVIDIA nView 136.18
NVIDIA nView Desktop Manager
NVIDIA PhysX
NVIDIA PhysX System Software 9.13.0725
NVIDIA Update 9.3.21
NVIDIA Update Components
OGA Notifier 2.0.0048.0
Origin
PC Tune-Up
PhoTags Express
Pirate101
Pixillion Image Converter
Presto! PageManager 7.15.16
PrinterShare 2.3.06
PunkBuster Services
QuickTime 7
Razer Game Booster
Razer Synapse 2.0
Reading Blaster Ages 6-8
RealDownloader
RealNetworks - Microsoft Visual C++ 2008 Runtime
RealNetworks - Microsoft Visual C++ 2010 Runtime
RealPlayer
REALTEK GbE & FE Ethernet PCI-E NIC Driver
Realtek High Definition Audio Driver
RealUpgrade 1.1
Safari
SAMSUNG Intelli-studio
ScanSoft OmniPage SE 4
Seagate Manager Installer
Search Protect
Security Update for CAPICOM (KB931906)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2736416)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2840629)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2861697)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2736428)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2832407)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2858302v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2861188)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2898855v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2901110v2)
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
Security Update for Microsoft .NET Framework 4 Extended (KB2736428)
Security Update for Microsoft .NET Framework 4 Extended (KB2742595)
Security Update for Microsoft .NET Framework 4 Extended (KB2858302v2)
Security Update for Microsoft .NET Framework 4 Extended (KB2901110v2)
Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2597973) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687441) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760411) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760415) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2817641) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2827326) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2837615) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition
Security Update for Microsoft Office Excel 2007 (KB2827324) 32-Bit Edition
Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition
Security Update for Microsoft Office Outlook 2007 (KB2825644) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition
Security Update for Microsoft Office Publisher 2007 (KB2597971) 32-Bit Edition
Security Update for Microsoft Office Word 2007 (KB2837617) 32-Bit Edition
Security Update for Microsoft Windows (KB2564958)
Security Update for Windows Internet Explorer 7 (KB938127-v2)
Security Update for Windows Internet Explorer 7 (KB938127)
Security Update for Windows Internet Explorer 7 (KB956390)
Security Update for Windows Internet Explorer 7 (KB958215)
Security Update for Windows Internet Explorer 7 (KB961260)
Security Update for Windows Internet Explorer 7 (KB963027)
Security Update for Windows Internet Explorer 7 (KB969897)
Security Update for Windows Internet Explorer 8 (KB2183461)
Security Update for Windows Internet Explorer 8 (KB2360131)
Security Update for Windows Internet Explorer 8 (KB2416400)
Security Update for Windows Internet Explorer 8 (KB2482017)
Security Update for Windows Internet Explorer 8 (KB2497640)
Security Update for Windows Internet Explorer 8 (KB2510531)
Security Update for Windows Internet Explorer 8 (KB2530548)
Security Update for Windows Internet Explorer 8 (KB2544521)
Security Update for Windows Internet Explorer 8 (KB2559049)
Security Update for Windows Internet Explorer 8 (KB2586448)
Security Update for Windows Internet Explorer 8 (KB2618444)
Security Update for Windows Internet Explorer 8 (KB2647516)
Security Update for Windows Internet Explorer 8 (KB2675157)
Security Update for Windows Internet Explorer 8 (KB2699988)
Security Update for Windows Internet Explorer 8 (KB2722913)
Security Update for Windows Internet Explorer 8 (KB2744842)
Security Update for Windows Internet Explorer 8 (KB2761465)
Security Update for Windows Internet Explorer 8 (KB2792100)
Security Update for Windows Internet Explorer 8 (KB2797052)
Security Update for Windows Internet Explorer 8 (KB2799329)
Security Update for Windows Internet Explorer 8 (KB2809289)
Security Update for Windows Internet Explorer 8 (KB2817183)
Security Update for Windows Internet Explorer 8 (KB2829530)
Security Update for Windows Internet Explorer 8 (KB2838727)
Security Update for Windows Internet Explorer 8 (KB2846071)
Security Update for Windows Internet Explorer 8 (KB2847204)
Security Update for Windows Internet Explorer 8 (KB2862772)
Security Update for Windows Internet Explorer 8 (KB2870699)
Security Update for Windows Internet Explorer 8 (KB2879017)
Security Update for Windows Internet Explorer 8 (KB2888505)
Security Update for Windows Internet Explorer 8 (KB2898785)
Security Update for Windows Internet Explorer 8 (KB2909210)
Security Update for Windows Internet Explorer 8 (KB2909921)
Security Update for Windows Internet Explorer 8 (KB2925418)
Security Update for Windows Internet Explorer 8 (KB969897)
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB972260)
Security Update for Windows Internet Explorer 8 (KB974455)
Security Update for Windows Internet Explorer 8 (KB976325)
Security Update for Windows Internet Explorer 8 (KB978207)
Security Update for Windows Internet Explorer 8 (KB981332)
Security Update for Windows Internet Explorer 8 (KB982381)
Security Update for Windows Media Player (KB2834904-v2)
Security Update for Windows Media Player (KB2834904)
Security Update for Windows XP (KB2296199)
Security Update for Windows XP (KB2393802)
Security Update for Windows XP (KB2412687)
Security Update for Windows XP (KB2419632)
Security Update for Windows XP (KB2423089)
Security Update for Windows XP (KB2436673)
Security Update for Windows XP (KB2440591)
Security Update for Windows XP (KB2443105)
Security Update for Windows XP (KB2476490)
Security Update for Windows XP (KB2476687)
Security Update for Windows XP (KB2478960)
Security Update for Windows XP (KB2478971)
Security Update for Windows XP (KB2479628)
Security Update for Windows XP (KB2479943)
Security Update for Windows XP (KB2481109)
Security Update for Windows XP (KB2483185)
Security Update for Windows XP (KB2485376)
Security Update for Windows XP (KB2485663)
Security Update for Windows XP (KB2503658)
Security Update for Windows XP (KB2503665)
Security Update for Windows XP (KB2506212)
Security Update for Windows XP (KB2506223)
Security Update for Windows XP (KB2507618)
Security Update for Windows XP (KB2507938)
Security Update for Windows XP (KB2508272)
Security Update for Windows XP (KB2508429)
Security Update for Windows XP (KB2509553)
Security Update for Windows XP (KB2511455)
Security Update for Windows XP (KB2524375)
Security Update for Windows XP (KB2535512)
Security Update for Windows XP (KB2536276-v2)
Security Update for Windows XP (KB2536276)
Security Update for Windows XP (KB2544893-v2)
Security Update for Windows XP (KB2544893)
Security Update for Windows XP (KB2555917)
Security Update for Windows XP (KB2562937)
Security Update for Windows XP (KB2566454)
Security Update for Windows XP (KB2567053)
Security Update for Windows XP (KB2567680)
Security Update for Windows XP (KB2570222)
Security Update for Windows XP (KB2570947)
Security Update for Windows XP (KB2584146)
Security Update for Windows XP (KB2585542)
Security Update for Windows XP (KB2592799)
Security Update for Windows XP (KB2598479)
Security Update for Windows XP (KB2603381)
Security Update for Windows XP (KB2618451)
Security Update for Windows XP (KB2619339)
Security Update for Windows XP (KB2620712)
Security Update for Windows XP (KB2621440)
Security Update for Windows XP (KB2624667)
Security Update for Windows XP (KB2631813)
Security Update for Windows XP (KB2633171)
Security Update for Windows XP (KB2639417)
Security Update for Windows XP (KB2641653)
Security Update for Windows XP (KB2646524)
Security Update for Windows XP (KB2647518)
Security Update for Windows XP (KB2653956)
Security Update for Windows XP (KB2655992)
Security Update for Windows XP (KB2659262)
Security Update for Windows XP (KB2660465)
Security Update for Windows XP (KB2661637)
Security Update for Windows XP (KB2676562)
Security Update for Windows XP (KB2685939)
Security Update for Windows XP (KB2686509)
Security Update for Windows XP (KB2691442)
Security Update for Windows XP (KB2695962)
Security Update for Windows XP (KB2698365)
Security Update for Windows XP (KB2705219)
Security Update for Windows XP (KB2707511)
Security Update for Windows XP (KB2709162)
Security Update for Windows XP (KB2712808)
Security Update for Windows XP (KB2718523)
Security Update for Windows XP (KB2719985)
Security Update for Windows XP (KB2723135)
Security Update for Windows XP (KB2724197)
Security Update for Windows XP (KB2727528)
Security Update for Windows XP (KB2731847)
Security Update for Windows XP (KB2753842-v2)
Security Update for Windows XP (KB2753842)
Security Update for Windows XP (KB2757638)
Security Update for Windows XP (KB2758857)
Security Update for Windows XP (KB2761226)
Security Update for Windows XP (KB2770660)
Security Update for Windows XP (KB2778344)
Security Update for Windows XP (KB2779030)
Security Update for Windows XP (KB2780091)
Security Update for Windows XP (KB2799494)
Security Update for Windows XP (KB2802968)
Security Update for Windows XP (KB2807986)
Security Update for Windows XP (KB2808735)
Security Update for Windows XP (KB2813170)
Security Update for Windows XP (KB2813345)
Security Update for Windows XP (KB2820197)
Security Update for Windows XP (KB2820917)
Security Update for Windows XP (KB2829361)
Security Update for Windows XP (KB2834886)
Security Update for Windows XP (KB2839229)
Security Update for Windows XP (KB2845187)
Security Update for Windows XP (KB2847311)
Security Update for Windows XP (KB2849470)
Security Update for Windows XP (KB2850851)
Security Update for Windows XP (KB2850869)
Security Update for Windows XP (KB2859537)
Security Update for Windows XP (KB2862152)
Security Update for Windows XP (KB2862330)
Security Update for Windows XP (KB2862335)
Security Update for Windows XP (KB2864063)
Security Update for Windows XP (KB2868038)
Security Update for Windows XP (KB2868626)
Security Update for Windows XP (KB2876217)
Security Update for Windows XP (KB2876315)
Security Update for Windows XP (KB2876331)
Security Update for Windows XP (KB2883150)
Security Update for Windows XP (KB2892075)
Security Update for Windows XP (KB2893294)
Security Update for Windows XP (KB2893984)
Security Update for Windows XP (KB2898715)
Security Update for Windows XP (KB2900986)
Security Update for Windows XP (KB2914368)
Security Update for Windows XP (KB2916036)
Security Update for Windows XP (KB2929961)
Security Update for Windows XP (KB2930275)
Segoe UI
Sid Meier's Civilization V
Skype Click to Call
Skype™ 6.11
SopCast 3.0.3
Star Math 123 - v1.0
Star Wars: The Old Republic
Steam
StreamTorrent 1.0
swMSM
System Requirements Lab
System Requirements Lab for Intel
Unity Web Player
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2878234) 32-Bit Edition
Update for Windows Internet Explorer 8 (KB971180)
Update for Windows Internet Explorer 8 (KB976662)
Update for Windows Internet Explorer 8 (KB976749)
Update for Windows Internet Explorer 8 (KB980182)
Update for Windows XP (KB2467659)
Update for Windows XP (KB2541763)
Update for Windows XP (KB2607712)
Update for Windows XP (KB2616676)
Update for Windows XP (KB2641690)
Update for Windows XP (KB2661254-v2)
Update for Windows XP (KB2718704)
Update for Windows XP (KB2736233)
Update for Windows XP (KB2749655)
Update for Windows XP (KB2863058)
Update for Windows XP (KB2904266)
Update for Windows XP (KB2934207)
Update for Windows XP (KB971029)
ValueApps
VC80CRTRedist - 8.0.50727.4053
Ventrilo Client
Visual C++ 2008 x86 Runtime - (v9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01
VJOcx2.0
VLC media player 1.0.1
WebFldrs XP
Windows Internet Explorer 7
Windows Internet Explorer 8
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Messenger
Windows Live Sign-in Assistant
Windows Live Upload Tool
Windows Media Format 11 runtime
Windows Media Player 11
Windows XP Service Pack 3
WinRAR archiver
WinUtilities 10.36 Free Edition
Xfire (remove only)
Xilisoft AVI to DVD Converter
Xvid 1.1.2 final uninstall
Yahoo! Messenger
Yahoo! Software Update
Yahoo! Toolbar
ZTE Handset USB Driver
.
==== Event Viewer Messages From Past Week ========
.
4/6/2014 7:47:22 PM, error: Service Control Manager [7001]  - The Remote Access Connection Manager service depends on the Telephony service which failed to start because of the following error:  The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
.
==== End Of File ===========================
 

 



#7 LDTate

LDTate

    Grand Poobah

  • Root Admin
  • 57,211 posts

Posted 07 April 2014 - 07:32 AM

You still have hijackers.

uStart Page = hxxp://search.conduit.com/?ctid=CT3317825&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SP4C92BC7D-B1AC-46C8-88D1-7CD825EB50A6&SSPV=
uProxyServer = hxxp=127.0.0.1:5577

First

Internet Explorer (Windows)
1. Click "Tools", then click "Internet Options". This will bring up the Internet Options window.

2. Click the "Connections" tab, then click the "LAN Settings" button.

3. Uncheck the box labeled "Use a proxy server for your LAN". Click "OK", and click "OK" in the previous window. This will remove the proxy server settings in Internet Explorer.



Firefox (Windows)
1. Click "Tools", then click "Options" to bring up the Options window.

2. Click the "Advanced" button, then click the "Network" tab.

3. Click the "Settings" button, located next to "Configure how Firefox connects to the Internet".

4. Click the radio button labeled "No proxy". Click "OK" twice. This will remove the proxy server settings in Firefox.

Chrome:

1. Open Chrome and click the wrench icon in the screen's upper left corner.

2. Click "Settings" to open your Settings page.

3. Click "Show advanced settings" and click "Change proxy settings" to open the Windows Internet Properties dialog box.

4. Click "Settings" to open your connection's settings.

5. Click the check box labeled "Use a proxy server for this connection" to clear it.

6. Click "OK" in both open dialog boxes to close them.

**Next**

Note the spaces between G / it needs to be there.

Click the Microsoft Start logo in the bottom left corner of the screen Type CMD and click Ok.
The MSDOS Window will be displayed. At the command prompt, copy / paste or type the following and press Enter after each line:

IPCONFIG /release

IPCONFIG /flushdns

IPCONFIG /renew

IPCONFIG /registerdns

netsh winsock reset

netsh int ip reset

regsvr32 netshell.dll

regsvr32 netcfgx.dll

regsvr32 netman.dll

Type in **Exit**

Restart the computer.


Install Malwarebytes' Anti-Malware by following the link below.

http://downloads.mal...s.org/file/mbam

Save the file and double-click it to begin the installation, selecting options you desire when presented.


**Next:**

**Step 1:**

Potentially Unwanted Programs (PUPs)

You will need to modify your MBAM settings, if you haven't already, and want them checked for removal. By default it will scan them but will not mark them for removal.

Please open Malwarebytes.
Click the Settings Tab
Click the Scanner Settings Tab
Change the Action for (PUP) and (PUM) to Show in results list and check for removal

Run a new scan and remove whatever is found.

Attach the scan results in your next reply.

**Step 2:**

This is a two step process.

First run you use **Scan**
Second run you use **Clean**

Please download AdwCleaner and save it on your Desktop.
Note: Be sure to select Save as Type > All Types

Download **AdwCleaner** from here: You should see a Green Tab to click to download
http://forums.whatth...ads&showfile=55
OR:
http://www.bleepingc...cleaner/dl/125/


Note: You can skip the install of the: Hosts Anti-PUP/Adware if asked

Double click on AdwCleaner.exe to run the tool.

Click on **Scan** Button.
A logfile will automatically open after the scan has finished. Please attach that log in your reply.
You can find the logfile at C:\AdwCleaner\AdwCleaner[Rn].txt ('n' is the scan order number).



Please run another scan with AdwCleaner.

This tool might remove add-ons that you added by choice like Ask Toolbar.
Please uncheck / untick any items you don't want to remove.

Click the **Clean** Button.
It will require a reboot, so please be sure to close any other open programs first.
A text file will open after the restart.

**Step 3:**

Please attach that logfile in your reply.
You can find the logfile at C:\AdwCleaner\AdwCleaner[Sn].txt ('n' is the scan order number).

**Let us know if that solves the issue.**

The forum is run by volunteers who donate their time and expertise.

Want to help others? Join the ClassRoom and learn how.

Logs will be closed if you haven't replied within 3 days

 

If you would like to paypal.gif for the help you received.
 

Proud graduate of TC/WTT Classroom

 


#8 Karelia

Karelia

    Authentic Member

  • Authentic Member
  • PipPip
  • 37 posts

Posted 12 April 2014 - 05:00 PM

Just wanted to let you know i'm working on this ToDo list and scanning tonight.



#9 Karelia

Karelia

    Authentic Member

  • Authentic Member
  • PipPip
  • 37 posts

Posted 12 April 2014 - 05:40 PM

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 4/12/2014
Scan Time: 7:42:47 PM
Logfile: SCAN.txt
Administrator: Yes

Version: 2.00.1.1004
Malware Database: v2014.04.12.06
Rootkit Database: v2014.03.27.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Chameleon: Disabled

OS: Windows XP Service Pack 3
CPU: x86
File System: NTFS
User: STACY

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 557185
Time Elapsed: 42 min, 51 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Shuriken: Enabled
PUP: Warn
PUM: Warn

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 2
PUP.Optional.SearchProtect.A, C:\Program Files\SearchProtect\UI\bin, Delete-on-Reboot, [651170b92655d85edbd2de7d0ff328d8],
PUP.Optional.SearchProtect.A, C:\Program Files\SearchProtect\SearchProtect\bin, Delete-on-Reboot, [b4c2b37697e49d99f8b6aab15ca613ed],

Files: 3
PUP.Optional.Conduit.A, C:\Program Files\SearchProtect\Main\bin\CltMngSvc.exe, Delete-on-Reboot, [bcbaa7826f0c81b5fd34c751af52867a],
PUP.Optional.Conduit.A, C:\Program Files\SearchProtect\SearchProtect\bin\cltmng.exe, Delete-on-Reboot, [04722ffa2556a39364cdbf594eb30000],
PUP.Optional.Conduit.A, C:\Program Files\SearchProtect\UI\bin\cltmngui.exe, Delete-on-Reboot, [4e2880a93c3f93a3a988a96fa06137c9],

Physical Sectors: 0
(No malicious items detected)


(end)



#10 Karelia

Karelia

    Authentic Member

  • Authentic Member
  • PipPip
  • 37 posts

Posted 12 April 2014 - 05:44 PM

# AdwCleaner v3.023 - Report created 12/04/2014 at 19:45:57
# Updated 01/04/2014 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : STACY - ALPHA
# Running from : C:\Documents and Settings\STACY\My Documents\Downloads\adwcleaner.exe
# Option : Scan

***** [ Services ] *****

Service Found : CltMngSvc

***** [ Files / Folders ] *****

File Found : C:\DOCUME~1\STACY\LOCALS~1\Temp\Uninstall.exe
File Found : C:\Documents and Settings\STACY\Application Data\Mozilla\Firefox\Profiles\4wl8ht18.default\user.js
File Found : C:\Program Files\Mozilla Firefox\Components\AskSearch.js
File Found : C:\WINDOWS\system32\Uninstall.exe
File Found : C:\WINDOWS\Tasks\Re-Markable_wd.job
Folder Found : C:\Documents and Settings\JIM.JIMS\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pbiamblgmkgbcgbcgejjgebalncpmhnp
Folder Found : C:\Documents and Settings\STACY\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ejdfidgapfiokiphmcjpmmjbdndepoja
Folder Found : C:\Documents and Settings\STACY\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pbiamblgmkgbcgbcgejjgebalncpmhnp
Folder Found C:\DOCUME~1\JIM.JIMS\LOCALS~1\Temp\AskSearch
Folder Found C:\Documents and Settings\All Users.WINDOWS\Application Data\FreeRIP
Folder Found C:\Documents and Settings\All Users.WINDOWS\Application Data\Trymedia
Folder Found C:\Documents and Settings\JIM.JIMS\Application Data\AVG Secure Search
Folder Found C:\Documents and Settings\JIM.JIMS\Local Settings\Application Data\apn
Folder Found C:\Documents and Settings\JIM.JIMS\Local Settings\Application Data\AskToolbar
Folder Found C:\Documents and Settings\NetworkService.NT AUTHORITY.000\Local Settings\Application Data\SearchProtect
Folder Found C:\Documents and Settings\STACY\Local Settings\Application Data\Conduit
Folder Found C:\Documents and Settings\STACY\Local Settings\Application Data\genienext
Folder Found C:\Documents and Settings\STACY\Local Settings\Application Data\Mobogenie
Folder Found C:\Documents and Settings\STACY\Local Settings\Application Data\SearchProtect
Folder Found C:\Documents and Settings\STACY\My Documents\Mobogenie
Folder Found C:\Documents and Settings\UpdatusUser.ALPHA\Local Settings\Application Data\SearchProtect
Folder Found C:\Documents and Settings\UpdatusUser.ALPHA\Local Settings\Application Data\SearchProtect
Folder Found C:\hotspot shield
Folder Found C:\Program Files\Bench
Folder Found C:\Program Files\Conduit
Folder Found C:\Program Files\Mobogenie
Folder Found C:\Program Files\MyPC Backup
Folder Found C:\Program Files\SearchProtect
Folder Found C:\Program Files\StartSearch plugin

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\APN PIP
Key Found : HKCU\Software\AVG Security Toolbar
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\hotspotshield
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Key Found : HKLM\Software\AskBarDis
Key Found : HKLM\SOFTWARE\Classes\AppID\{7E8A36EA-2501-4ED3-A3C8-CFA9143FB169}
Key Found : HKLM\SOFTWARE\Classes\AppID\NCTAudioCDGrabber2.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\Toolbar.DLL
Key Found : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{01AD9322-02FF-4F4F-AC52-92FDA5AE65F0}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{5D9E7BE9-95E5-4392-8CD2-D82DE89589ED}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{5EB0259D-AB79-4AE6-A6E6-24FFE21C3DA4}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{8F97BFF8-488B-4107-BCEE-B161AB4E4183}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{94496571-6AC5-4836-82D5-D46260C44B17}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{9AFB8248-617F-460D-9366-D71CDEDA3179}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A1B48071-416D-474E-A13B-BE5456E7FC31}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{BC9FD17D-30F6-4464-9E53-596A90AFF023}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6181B}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : HKLM\SOFTWARE\Classes\Interface\{0BBF19A5-BE50-4E06-A340-6777A505E490}
Key Found : HKLM\SOFTWARE\Classes\Interface\{1C888195-0160-4883-91B7-294C0CE2F277}
Key Found : HKLM\SOFTWARE\Classes\Interface\{2BEF239C-752E-4001-8048-F256E0D8CD93}
Key Found : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Found : HKLM\SOFTWARE\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D2157FAD67B}
Key Found : HKLM\SOFTWARE\Classes\Interface\{6427058B-217C-4C7F-A6CE-C7934C0BDCEB}
Key Found : HKLM\SOFTWARE\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFFC6DB2982}
Key Found : HKLM\SOFTWARE\Classes\Interface\{869E753F-BD0D-4832-8131-94FEEE058AE3}
Key Found : HKLM\SOFTWARE\Classes\Interface\{99ACA0F7-D864-45CB-8C40-FD42A077E7CA}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A68F63F377}
Key Found : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Found : HKLM\SOFTWARE\Classes\nctaudiocdwriter2.audiocdwriter2
Key Found : HKLM\SOFTWARE\Classes\nctaudiocdwriter2.audiocdwriter2.1
Key Found : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Found : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Found : HKLM\SOFTWARE\Classes\RewardsArcade.FBApi
Key Found : HKLM\SOFTWARE\Classes\RewardsArcade.FBApi.1
Key Found : HKLM\SOFTWARE\Classes\RewardsArcade.Sandbox
Key Found : HKLM\SOFTWARE\Classes\RewardsArcade.Sandbox.1
Key Found : HKLM\SOFTWARE\Classes\speedupmypc
Key Found : HKLM\SOFTWARE\Classes\Toolbar.BandObject
Key Found : HKLM\SOFTWARE\Classes\Toolbar.BandObject.1
Key Found : HKLM\SOFTWARE\Classes\Toolbar.ToolbarHelperObject
Key Found : HKLM\SOFTWARE\Classes\Toolbar.ToolbarHelperObject.1
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{13ABD093-D46F-40DF-A608-47E162EC799D}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{2D77AC8A-0A4C-40D0-9557-51907A575E45}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{60BE6B2E-F2F5-4404-AA1E-4381D4A6EEA2}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{6857AC4A-95B4-4E2C-B2D2-8A235FCCEF4A}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{79D60450-56C5-4A8C-9321-6D5BC2A81E5A}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{99C22A61-21BA-4F81-85FF-CDC9EB5DB10B}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Found : HKLM\Software\Conduit
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\pbiamblgmkgbcgbcgejjgebalncpmhnp
Key Found : HKLM\Software\MGShareware
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CF739809-1C6C-47C0-85B9-569DBB141420}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{E55B3271-7CA8-4D0C-AE06-69A24856E996}_is1
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\LiveVDO plugin
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\MyPC Backup
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SearchProtect
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{8F97BFF8-488B-4107-BCEE-B161AB4E4183}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A1B48071-416D-474E-A13B-BE5456E7FC31}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LiveVDO plugin
Key Found : HKLM\Software\PIP
Key Found : HKLM\Software\SearchProtect
Key Found : HKLM\Software\Trymedia Systems
Key Found : HKLM\Software\Uniblue
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{CCC7A320-B3CA-4199-B1A6-9F516DD69829}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702


-\\ Mozilla Firefox v28.0 (en-US)

[ File : C:\Documents and Settings\STACY\Application Data\Mozilla\Firefox\Profiles\4wl8ht18.default\prefs.js ]

Line Found : user_pref("browser.search.defaultenginename", "Conduit Search");
Line Found : user_pref("browser.search.selectedEngine", "Conduit Search");
Line Found : user_pref("valueApps.ct3319214./9B+7E+x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E,x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E-x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E.:2z527.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E.x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E/x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E06CG5EL8:", "6E6D686B716F71746F72");
Line Found : user_pref("valueApps.ct3319214./9B+7E06CG5EL8:.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B+7E06CG5EL;8I:K", "247E2D2F226A74736E717775777A7578242F4B49474F42357D5D5C3D");
Line Found : user_pref("valueApps.ct3319214./9B+7E06CG5EL;8I:K.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B+7E0x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E1x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E2x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E31;CJ6B?H7N>CMAQTTKS,WLO", "247E61393F236B2575787674782B222D6F4250454E337B35434F4C55445B4B505A4E5E616158603964595C49404B2E6B605B635E615B543D56242759505B6D6C707C6C2[...]
Line Found : user_pref("valueApps.ct3319214./9B+7E31;CJ6B?H7N>CMAQTTKS,WLO.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B+7E31;CJ7FK;KG#NCEP@MC+VKN.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E31;CJ:F8GB@9$ODG.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E31;CJ>BJH<;7D=??TJ*UJM", "247E61393F236B25766F7177722B222D6F4250454E337B354B4F5755494844514A4C4C61573762575A473E492C695E59615C5F59523B542225574E593C68646E7A5F48615[...]
Line Found : user_pref("valueApps.ct3319214./9B+7E31;CJ>BJH<;7D=??TJ*UJM.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B+7E31;CJE=8H<?>H?N'RGJ", "247E61393F236B25717372752A212C6E414F444D327A3451494454484B4A544B5A335E5356433A4528655A555D585B554E37507D21534A55387578665A435C4D505F56614470[...]
Line Found : user_pref("valueApps.ct3319214./9B+7E31;CJE=8H<?>H?N'RGJ.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B+7E31;CJH<=BEAIO=OP<)TIL.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E31;CJHB>F!LAD.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E31;CJI;<AI\"MBE.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E31;CJI?@4!LAD", "247E61393F236B256E7570792A212C6E414F444D327A34554B4C402D584D503D343F225F544F5752554F48314A777A4D444F326F7260543D56474A59505B3E6A6B746049625352655C[...]
Line Found : user_pref("valueApps.ct3319214./9B+7E31;CJI?@4!LAD.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B+7E31;CJIB:=?=<?ME@TJTWGG.YNQ", "247E61393F236B2575717274792B222D6F4250454E337B35564F474A4C4A494C5A524D6157616454543B665B5E4B424D306D625D6560635D563F5826295B525D407D2[...]
Line Found : user_pref("valueApps.ct3319214./9B+7E31;CJIB:=?=<?ME@TJTWGG.YNQ.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B+7E3x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E4x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E5x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E6x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E7x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E8x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E9x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E:x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E;x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E<x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E=x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E>x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E?x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7E@x305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7EAx305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7EBE3G=;D9N9=D", "372C2D326975762E3A3C7B3A39434A494841434B265146492965504656496571734D334B57");
Line Found : user_pref("valueApps.ct3319214./9B+7EBE3G=;D9N9=D.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B+7EBx305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7ECx305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7EDx305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B+7Etx305.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214./9B-0?3G>D", "3C3C6E716B6B73727A7470717320487A7A4A25225223522A5420292A5724585A5928312D");
Line Found : user_pref("valueApps.ct3319214./9B-0?3G>D.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B-0?3G@6:5;", "");
Line Found : user_pref("valueApps.ct3319214./9B-0?3G@6:5;.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B-0?3GFA7EF", "2B2E2C3D");
Line Found : user_pref("valueApps.ct3319214./9B-0?3GFA7EF.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B-3=3ECCJA=F>", "247E333D2C452F4135276F292A212C393D44307832332A354448584C3A23282E2E3132333435363B466068576C5E6857705A6C60606B6668563F73796F697861");
Line Found : user_pref("valueApps.ct3319214./9B-3=3ECCJA=F>.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B/>01=9A6K6<IM;KRIE@PDAWM", "6A696B7273747576");
Line Found : user_pref("valueApps.ct3319214./9B/>01=9A6K6<IM;KRIE@PDAWM.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B3=>@44I48?", "372C2D3269757633423633414847203E3D474E4D4C45474F2A554A4D2D5858585E4B554E366352564F");
Line Found : user_pref("valueApps.ct3319214./9B3=>@44I48?.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B5BA==9CJAG", "6A6D6872403F6D727A47477A7875497C4E4B4B227E");
Line Found : user_pref("valueApps.ct3319214./9B5BA==9CJAG.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B6B11G4C56B>F;P;ANR@P", "6E6D686B716F7171756F797473");
Line Found : user_pref("valueApps.ct3319214./9B6B11G4C56B>F;P;ANR@P.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B90E@.3C;7B=?OFB>>RHIQS", "393F352F3E");
Line Found : user_pref("valueApps.ct3319214./9B90E@.3C;7B=?OFB>>RHIQS.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B9643G3/9E", "6A");
Line Found : user_pref("valueApps.ct3319214./9B9643G3/9E.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B;45>:BI9I7IE", "2B2E2C3D");
Line Found : user_pref("valueApps.ct3319214./9B;45>:BI9I7IE.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B<:222H64<", "393F352F3E");
Line Found : user_pref("valueApps.ct3319214./9B<:222H64<.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B<:222H64<L8DAJ", "6D70706E7674737976762A7973727D7E757C20");
Line Found : user_pref("valueApps.ct3319214./9B<:222H64<L8DAJ.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B=+03EH8H8J?:", "4443");
Line Found : user_pref("valueApps.ct3319214./9B=+03EH8H8J?:.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B?+E2A52D8", "372C2D326975762E3A3C7B3A39434A494841434B2651464929655046566470727951555E5E52");
Line Found : user_pref("valueApps.ct3319214./9B?+E2A52D8.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9B?B0D:8AJ62<H", "6D");
Line Found : user_pref("valueApps.ct3319214./9B?B0D:8AJ62<H.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214./9BA@0<0BI6A7GN:6@L?", "6C");
Line Found : user_pref("valueApps.ct3319214./9BA@0<0BI6A7GN:6@L?.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.PG_ENABLE", "74727565");
Line Found : user_pref("valueApps.ct3319214.PG_ENABLE.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.SF_JUST_INSTALLED", "46414C5345");
Line Found : user_pref("valueApps.ct3319214.SF_JUST_INSTALLED.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.SF_STATUS", "454E41424C4544");
Line Found : user_pref("valueApps.ct3319214.SF_STATUS.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.SF_USER_ID", "6369645F31323232303134313331323236363236373832");
Line Found : user_pref("valueApps.ct3319214.SF_USER_ID.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214._key_cl_active", "64613663363830652D323665362D343962342D613264302D323030653265326666326438");
Line Found : user_pref("valueApps.ct3319214._key_cl_active.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.cb_experience_000", "3332");
Line Found : user_pref("valueApps.ct3319214.cb_experience_000.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.cb_firstuse0100", "31");
Line Found : user_pref("valueApps.ct3319214.cb_firstuse0100.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.cb_user_id_000", "43423839303531373034313436305F313339323330313431363638335F46697265666F78");
Line Found : user_pref("valueApps.ct3319214.cb_user_id_000.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.cbfirsttime", "5765642046656220313220323031342031333A30313A303320474D542D3035303020284561737465726E205374616E646172642054696D6529");
Line Found : user_pref("valueApps.ct3319214.cbfirsttime.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.impression_session_counter", "3133");
Line Found : user_pref("valueApps.ct3319214.impression_session_counter.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.impression_session_id", "2239663235636333622D323036352D343733612D393432382D66643938306236616530396622");
Line Found : user_pref("valueApps.ct3319214.impression_session_id.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.impression_session_last_active", "31333936383331383231303930");
Line Found : user_pref("valueApps.ct3319214.impression_session_last_active.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.mam_gk_appStateReportTime", "31333937323534353233373533");
Line Found : user_pref("valueApps.ct3319214.mam_gk_appStateReportTime.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.mam_gk_appState_Clarity_Active", "6F6E");
Line Found : user_pref("valueApps.ct3319214.mam_gk_appState_Clarity_Active.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.mam_gk_appsConfig.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214.mam_gk_appsDefaultEnabled", "6E756C6C");
Line Found : user_pref("valueApps.ct3319214.mam_gk_appsDefaultEnabled.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.mam_gk_calledSetupService", "31");
Line Found : user_pref("valueApps.ct3319214.mam_gk_calledSetupService.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.mam_gk_currentBadgeValue", "30");
Line Found : user_pref("valueApps.ct3319214.mam_gk_currentBadgeValue.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.mam_gk_currentVersion", "312E31332E302E3137");
Line Found : user_pref("valueApps.ct3319214.mam_gk_currentVersion.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.mam_gk_first_time", "31");
Line Found : user_pref("valueApps.ct3319214.mam_gk_first_time.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.mam_gk_lastLoginTime", "31333937323534353234303430");
Line Found : user_pref("valueApps.ct3319214.mam_gk_lastLoginTime.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.mam_gk_localization.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214.mam_gk_mamEnabled", "74727565");
Line Found : user_pref("valueApps.ct3319214.mam_gk_mamEnabled.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.mam_gk_newApps", "5B5D");
Line Found : user_pref("valueApps.ct3319214.mam_gk_newApps.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.mam_gk_settings1.13.0.17.storedInFile", true);
Line Found : user_pref("valueApps.ct3319214.mam_gk_showWelcomeGadget", "66616C7365");
Line Found : user_pref("valueApps.ct3319214.mam_gk_showWelcomeGadget.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.mam_gk_stamp", "313034335F30");
Line Found : user_pref("valueApps.ct3319214.mam_gk_stamp.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.mam_gk_userBornDate", "3230313430323132");
Line Found : user_pref("valueApps.ct3319214.mam_gk_userBornDate.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.mam_gk_userId", "62656639333161382D613039642D346437362D386633332D356235366664386664636632");
Line Found : user_pref("valueApps.ct3319214.mam_gk_userId.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.mam_gk_user_approval_interacted", "");
Line Found : user_pref("valueApps.ct3319214.mam_gk_user_approval_interacted.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.rematchGround-city", "22434841524C4F54544522");
Line Found : user_pref("valueApps.ct3319214.rematchGround-city.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.rematchGround-country-code", "22555322");
Line Found : user_pref("valueApps.ct3319214.rematchGround-country-code.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.rematchGround-region", "224E4F525448204341524F4C494E4122");
Line Found : user_pref("valueApps.ct3319214.rematchGround-region.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.rematchGround.upstairs", "7B22687474703A2F2F66617374636F6E74656E742E636F6E647569742E636F6D2F646F776E6C6F61645F6F66666572732E68746D6C3F637469643D6374333331393231347E62313[...]
Line Found : user_pref("valueApps.ct3319214.rematchGround.upstairs.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.rematchagent-is-test-user", "66616C7365");
Line Found : user_pref("valueApps.ct3319214.rematchagent-is-test-user.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.rematchagent-matkot-user-id", "22313339323232383033373833303630323334353622");
Line Found : user_pref("valueApps.ct3319214.rematchagent-matkot-user-id.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.rematchagent-periodic-reports", "7B2270696E675F30223A5B313339373235343532373937332C31343430303030305D7D");
Line Found : user_pref("valueApps.ct3319214.rematchagent-periodic-reports.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.rematchagent-user-id", "2230386431366465622D303539662D343132652D613439642D35373266633333383564643722");
Line Found : user_pref("valueApps.ct3319214.rematchagent-user-id.storedInFile", false);
Line Found : user_pref("valueApps.ct3319214.url_history0001", "73746172743A3A3A636C69636B68616E646C65723A3A3A313339323330313431363931382C2C2C73746172743A3A3A636C69636B68616E646C65723A3A3A31333932333031343231323334[...]
Line Found : user_pref("valueApps.ct3319214.url_history0001.storedInFile", true);

-\\ Google Chrome v

[ File : C:\Documents and Settings\JIM.JIMS\Local Settings\Application Data\Google\Chrome\User Data\Default\preferences ]


[ File : C:\Documents and Settings\STACY\Local Settings\Application Data\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [27409 octets] - [12/04/2014 19:45:57]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [27470 octets] ##########
 


Edited by Karelia, 12 April 2014 - 05:45 PM.


#11 Karelia

Karelia

    Authentic Member

  • Authentic Member
  • PipPip
  • 37 posts

Posted 13 April 2014 - 09:14 AM

Second Scan Runs

 

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 4/12/2014
Scan Time: 8:28:58 PM
Logfile: After.txt
Administrator: Yes

Version: 2.00.1.1004
Malware Database: v2014.04.12.07
Rootkit Database: v2014.03.27.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Chameleon: Disabled

OS: Windows XP Service Pack 3
CPU: x86
File System: NTFS
User: STACY

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 556781
Time Elapsed: 29 min, 19 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Shuriken: Enabled
PUP: Warn
PUM: Warn

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)

 

# AdwCleaner v3.023 - Report created 13/04/2014 at 11:14:09
# Updated 01/04/2014 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : STACY - ALPHA
# Running from : C:\Documents and Settings\STACY\Desktop\SECURITY AND SCANS\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702


-\\ Mozilla Firefox v28.0 (en-US)

[ File : C:\Documents and Settings\STACY\Application Data\Mozilla\Firefox\Profiles\4wl8ht18.default\prefs.js ]


-\\ Google Chrome v

[ File : C:\Documents and Settings\JIM.JIMS\Local Settings\Application Data\Google\Chrome\User Data\Default\preferences ]


[ File : C:\Documents and Settings\STACY\Local Settings\Application Data\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [27551 octets] - [12/04/2014 19:45:57]
AdwCleaner[R1].txt - [1016 octets] - [13/04/2014 11:14:09]
AdwCleaner[S0].txt - [28149 octets] - [12/04/2014 19:50:29]

########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [1137 octets] ##########



#12 LDTate

LDTate

    Grand Poobah

  • Root Admin
  • 57,211 posts

Posted 13 April 2014 - 12:51 PM

That looks great.

 

How's it running now?


The forum is run by volunteers who donate their time and expertise.

Want to help others? Join the ClassRoom and learn how.

Logs will be closed if you haven't replied within 3 days

 

If you would like to paypal.gif for the help you received.
 

Proud graduate of TC/WTT Classroom

 


#13 Karelia

Karelia

    Authentic Member

  • Authentic Member
  • PipPip
  • 37 posts

Posted 16 April 2014 - 03:33 PM

PC is running just fine.

Thank you again for all that you do.

 



#14 LDTate

LDTate

    Grand Poobah

  • Root Admin
  • 57,211 posts

Posted 22 April 2014 - 10:11 AM

Since this issue appears to be resolved ... this Topic has been closed. Glad we could be of assistance.

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please follow the instructions here http://forums.whatth...ed_t106388.html
and start a New Topic.

The forum is run by volunteers who donate their time and expertise.

Want to help others? Join the ClassRoom and learn how.

Logs will be closed if you haven't replied within 3 days

 

If you would like to paypal.gif for the help you received.
 

Proud graduate of TC/WTT Classroom

 

Related Topics



0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users