Additional scan result of Farbar Recovery Scan Tool (x64) Version:29-05-2016 02
Ran by [removed] (2016-05-29 18:40:42)
Running from C:\Users\[removed]\Desktop
Windows 8.1 (Update) (X64) (2013-12-25 00:41:06)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1111288859-4143947986-3219784061-500 - Administrator - Disabled)
Guest (S-1-5-21-1111288859-4143947986-3219784061-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1111288859-4143947986-3219784061-1005 - Limited - Enabled)
Windows8 (S-1-5-21-1111288859-4143947986-3219784061-1001 - Administrator - Enabled) => C:\Users\Windows8
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: AVG AntiVirus Free Edition 2015 (Enabled - Out of date) {4D41356F-32AD-7C42-C820-63775EE4F413}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
AS: AVG AntiVirus Free Edition 2015 (Enabled - Out of date) {F620D48B-1497-73CC-F290-58052563BEAE}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\uTorrent) (Version: 3.4.2.37754 - BitTorrent Inc.)
Advanced SystemCare 9 (HKLM-x32\…\Advanced SystemCare_is1) (Version: 9.1.0 - IObit)
Apple Application Support (HKLM-x32\…\{21ECABC3-40B2-42DF-8E21-ACF3A4D0D95A}) (Version: 3.0.5 - Apple Inc.)
Apple Mobile Device Support (HKLM\…\{6AF2AC2A-3532-43FD-9F4D-BDC9C0D724C7}) (Version: 7.1.2.6 - Apple Inc.)
Apple Software Update (HKLM-x32\…\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
AVG 2015 (HKLM\…\AVG) (Version: 2015.0.6201 - AVG Technologies)
AVG 2015 (Version: 15.0.4568 - AVG Technologies) Hidden
AVG 2015 (Version: 15.0.6201 - AVG Technologies) Hidden
AVG Web TuneUp (HKLM-x32\…\AVG Web TuneUp) (Version: 4.2.9.726 - AVG Technologies)
Bonjour (HKLM\…\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
ChromecastApp (HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\{079ede36-133d-44b0-8053-c7c1fa8d2e0d}_is1) (Version: 1.5.1693.0 - Google Inc.)
Cypress TrackPad (HKLM\…\{7F2F6CC5-434B-4311-9DE2-60C7CAF50B73}_is1) (Version: 2.5.1.27 - Cypress Semiconductor, Inc.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dell Backup and Recovery - Support Software (HKLM-x32\…\{A9668246-FB70-4103-A1E3-66C9BC2EFB49}) (Version: 1.6.1.1 - Dell Inc.)
Dell Backup and Recovery (HKLM-x32\…\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 1.6.1.1 - Dell Inc.)
Dell Support Center (HKLM\…\PC-Doctor for Windows) (Version: 3.2.6032.39 - PC-Doctor, Inc.)
Driver Booster 3.2 (HKLM-x32\…\Driver Booster_is1) (Version: 3.2 - IObit)
DriverUpdate (HKLM-x32\…\{E2A3A216-9DFE-4EC1-AA69-162588FEF014}) (Version: 2.2.36929 - SlimWare Utilities, Inc.)
Dropbox (HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\Dropbox) (Version: 3.20.1 - Dropbox, Inc.)
DSC/AA Factory Installer (Version: 3.2.6032.39 - PC-Doctor, Inc.) Hidden
Freemake Video Converter version 4.1.9 (HKLM-x32\…\Freemake Video Converter_is1) (Version: 4.1.9 - Ellora Assets Corporation)
Google Chrome (HKLM-x32\…\Google Chrome) (Version: 50.0.2661.102 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden
Intel(R) Control Center (HKLM-x32\…\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\…\FFD10ECE-F715-4a86-9BD8-F6F47DA5DA1C) (Version: 6.0.5.1080 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\…\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\…\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3379 - Intel Corporation)
Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (HKLM\…\{E77289CF-12B9-4CAB-A49E-FEAE947F4D95}) (Version: 15.5.4.0423 - Intel Corporation)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\…\{7854AA22-A2F0-4F29-A2E9-D0C5A2B685E7}) (Version: 2.5.0.0248 - Motorola Solutions, Inc)
Intel(R) Rapid Start Technology (HKLM-x32\…\3D073343-CEEB-4ce7-85AC-A69A7631B5D6) (Version: 2.1.0.1002 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\…\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.0.1207 - Intel Corporation)
Intel(R) Smart Connect Technology 3.0 x64 (HKLM\…\{DE788AD4-F7CE-4995-ADF8-56174A7B613C}) (Version: 3.0.41.1571 - Intel)
Intel(R) WiDi (HKLM\…\{6097158B-0184-4140-BEC3-7885794D2571}) (Version: 3.5.40.0 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\…\{c9967fbd-e3c3-4ed0-992a-5b33260f2944}) (Version: 16.1.5 - Intel Corporation)
IObit Uninstaller (HKLM-x32\…\IObitUninstall) (Version: 5.2.1.126 - IObit)
iTunes (HKLM\…\{33E28B58-7BA0-47B7-AA01-9225ABA2B8A9}) (Version: 11.3.0.54 - Apple Inc.)
Microsoft Office Home and Student 2010 (HKLM-x32\…\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\…\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\OneDriveSetup.exe) (Version: 17.3.6386.0412 - Microsoft Corporation)
Microsoft Silverlight (HKLM\…\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\…\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\…\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\…\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\…\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
NWZ-W270S WALKMAN Guide (HKLM-x32\…\{2DD336BD-D504-4AD7-AA03-201114C24495}) (Version: 2.2.0.07230 - Sony Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Quickset64 (HKLM\…\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 10.15.011 - Dell Inc.)
Realtek High Definition Audio Driver (HKLM-x32\…\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6704 - Realtek Semiconductor Corp.)
Secure Download Manager (HKLM-x32\…\{E86B07AE-9F94-44D5-AD47-DC2716EA90D2}) (Version: 3.1.40 - Kivuto Solutions Inc.)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\…\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\…\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
Skype Click to Call (HKLM-x32\…\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.0.0.9103 - Microsoft Corporation)
Skype™ 7.18 (HKLM-x32\…\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.18.112 - Skype Technologies S.A.)
Spybot - Search & Destroy (HKLM-x32\…\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.2.25 - Safer-Networking Ltd.)
Surfing Protection (HKLM-x32\…\IObit Surfing Protection_is1) (Version: 1.3 - IObit)
Update for Skype for Business 2015 (KB3039776) 64-Bit Edition (HKLM\…\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{0FA8AE0C-69AE-4F60-A1AB-F79C6BA5A999}) (Version: - Microsoft)
Visual Studio 2012 x64 Redistributables (HKLM\…\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\…\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Windows Live Essentials (HKLM-x32\…\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Windows8\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001_Classes\CLSID\{162C6FB5-44D3-435B-903D-E613FA093FB5}\InprocServer32 -> C:\Users\Windows8\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64\FileCoAuthLib64.dll ()
CustomCLSID: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Windows8\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Windows8\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Windows8\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Windows8\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Windows8\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Windows8\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Windows8\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Windows8\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Windows8\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Windows8\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Windows8\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Windows8\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Windows8\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Windows8\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {08493D07-95F2-4819-A0EF-5A92CAC8A381} - System32\Tasks\Uninstaller_SkipUac_Windows8 => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2016-01-12] (IObit)
Task: {11CFFD5D-F18B-4DA6-8A01-6993C3E245A6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {17647455-016C-4246-A7CF-7434ED4EDDC7} - System32\Tasks\Intel® Rapid Start Technology Manager => C:\Program Files (x86)\Intel\irstrt\RapidStartConfig.exe [2012-07-28] (Intel)
Task: {1AFF13F5-7A07-476F-B48B-F9D14EB43ECF} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {21794EA1-882E-4195-A525-89E9F30C65A0} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2016-03-21] (Safer-Networking Ltd.)
Task: {23FF464C-A40C-44F1-9E45-39EA4A3C7B37} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe
Task: {29F4DAF6-345D-425E-8466-6FBC511821CB} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {2C11253F-49F2-4B34-98E7-388D3BDF02AB} - System32\Tasks\1015tbUpdateInfo => C:\ProgramData\Avg_Update_1015tb\1015tb_{AE64D40E-1BEE-4610-BFC9-1FB99089736A}.exe [2015-11-03] ()
Task: {321F5878-2878-4F45-B30B-BA4257C9663A} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe [2016-01-13] (IObit)
Task: {32BF4194-7813-4662-8037-8A4C15CF0146} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2013-09-20] (Safer-Networking Ltd.)
Task: {3B7406C4-611B-467B-98D5-3DA17D2BABF8} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1111288859-4143947986-3219784061-1001UA => C:\Users\Windows8\AppData\Local\Google\Update\GoogleUpdate.exe [2015-03-24] (Google Inc.)
Task: {3F4F36C0-507B-4672-9B3B-F2BAAA94DF61} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {503D63E9-0F68-48D8-ABA3-FF3543A946BD} - System32\Tasks\Driver Booster SkipUAC (Windows8) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [2016-01-18] (IObit)
Task: {5644832E-4948-4F73-A206-47C6C782462F} - System32\Tasks\ASC9_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [2016-01-15] (IObit)
Task: {5B3202DA-EF61-4E2F-8ED1-280912E5A999} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1111288859-4143947986-3219784061-1001Core => C:\Users\Windows8\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-07] (Dropbox, Inc.)
Task: {7B56A085-69A9-4F50-88D3-9BB3124912DA} - System32\Tasks\DriverUpdate Startup => C:\Program Files (x86)\DriverUpdate\DriverUpdate.exe [2014-03-19] (SlimWare Utilities, Inc.)
Task: {A9EF24F4-8A77-4B4F-82D2-213932E27E0C} - System32\Tasks\ASC9_SkipUac_Windows8 => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [2016-01-26] (IObit)
Task: {AC3E2BE0-43E2-4DC1-AB8B-160E8E20A529} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1111288859-4143947986-3219784061-1001UA => C:\Users\Windows8\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-07] (Dropbox, Inc.)
Task: {B91D28F1-5E64-41E4-A0C8-BD4995C7CBEC} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {BFA72960-AD91-4AFE-9CB8-854057611B24} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1111288859-4143947986-3219784061-1001 => C:\Users\Windows8\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-04-21] (Microsoft Corporation)
Task: {BFC1047B-D2A8-4374-B22B-C9CCD6680387} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2016-03-21] (Safer-Networking Ltd.)
Task: {CC3D3302-E55E-4FC8-9E87-B487CB13F30C} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1111288859-4143947986-3219784061-1001Core => C:\Users\Windows8\AppData\Local\Google\Update\GoogleUpdate.exe [2015-03-24] (Google Inc.)
Task: {D7D420C5-FCBD-4610-A006-4E48FB3010B6} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\Dell Support Center\uaclauncher.exe [2012-07-17] (PC-Doctor, Inc.)
Task: {D8AC1357-1002-438D-B0BF-1957EC7EC19B} - System32\Tasks\PCDEventLauncher => C:\Program Files\Dell Support Center\sessionchecker.exe [2012-07-17] (PC-Doctor, Inc.)
Task: {E3514D57-E5BB-42D7-A4D4-8769BD58ACFA} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\1015tbUpdateInfo.job => C:\ProgramData\Avg_Update_1015tb\1015tb_{AE64D40E-1BEE-4610-BFC9-1FB99089736A}.exe
Task: C:\WINDOWS\Tasks\ASC9_SkipUac_Windows8.job => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe
Task: C:\WINDOWS\Tasks\DriverUpdate Startup.job => C:\Program Files (x86)\DriverUpdate\DriverUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1111288859-4143947986-3219784061-1001Core.job => C:\Users\Windows8\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1111288859-4143947986-3219784061-1001UA.job => C:\Users\Windows8\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1111288859-4143947986-3219784061-1001Core.job => C:\Users\Windows8\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1111288859-4143947986-3219784061-1001UA.job => C:\Users\Windows8\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Windows8.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2016-04-21 19:00 - 2016-04-21 19:00 - 01223752 _____ () C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe
2013-01-23 02:21 - 2012-07-30 20:26 - 00029056 _____ () C:\WINDOWS\system32\DptfParticipantProcessorService.exe
2013-01-23 02:21 - 2012-07-30 20:27 - 00030592 _____ () C:\WINDOWS\system32\DptfPolicyConfigTDPService.exe
2012-08-16 21:36 - 2012-08-16 21:36 - 00149032 _____ () c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
2012-08-16 21:36 - 2012-08-16 21:36 - 00058920 _____ () c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll
2015-09-15 14:58 - 2015-09-15 14:58 - 08901184 _____ () C:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2015-07-16 18:15 - 2016-05-29 17:52 - 01941064 _____ () C:\Program Files (x86)\AVG Web TuneUp\vprot.exe
2016-02-08 19:08 - 2016-01-19 17:51 - 00073216 _____ () C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
2014-04-23 16:05 - 2014-04-23 16:05 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-04-23 16:04 - 2014-04-23 16:04 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2016-02-08 18:42 - 2015-12-28 14:49 - 00629536 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll
2013-12-25 18:50 - 2012-08-23 11:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2013-12-25 18:50 - 2013-05-16 11:55 - 00113496 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2013-12-25 18:50 - 2013-05-16 11:55 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2013-12-25 18:50 - 2013-05-16 11:55 - 00161112 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2013-12-25 18:50 - 2012-04-03 18:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2016-05-11 19:52 - 2016-05-11 19:52 - 00016384 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PSIClient\8e749780289ceb24f72730345e019061\PSIClient.ni.dll
2013-01-23 02:58 - 2012-06-25 11:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2016-02-08 18:42 - 2015-12-23 19:32 - 00355616 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madExcept_.bpl
2016-02-08 18:42 - 2015-12-23 19:32 - 00190240 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madBasic_.bpl
2016-02-08 18:42 - 2015-12-23 19:32 - 00057632 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madDisAsm_.bpl
2016-05-11 19:58 - 2016-04-19 12:47 - 00034768 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd
2016-05-11 19:58 - 2016-04-19 12:48 - 00019408 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\faulthandler.pyd
2016-05-11 19:58 - 2016-04-19 12:47 - 00116688 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\pywintypes27.dll
2016-05-11 19:58 - 2016-04-19 12:47 - 00093640 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\_ctypes.pyd
2016-05-11 19:58 - 2016-04-19 12:47 - 00018376 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\select.pyd
2016-05-11 19:58 - 2016-05-06 15:35 - 00019760 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd
2016-05-11 19:58 - 2016-04-19 12:49 - 00105928 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\win32api.pyd
2016-05-11 19:58 - 2016-04-19 12:47 - 00392144 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\pythoncom27.dll
2016-05-11 19:58 - 2016-05-06 15:35 - 00381752 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd
2016-05-11 19:58 - 2016-04-19 12:47 - 00692688 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\unicodedata.pyd
2016-05-11 19:58 - 2016-05-06 15:34 - 00020816 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd
2016-05-11 19:58 - 2016-04-19 12:48 - 00121296 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd
2016-05-11 19:58 - 2016-05-06 15:34 - 01682760 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd
2016-05-11 19:58 - 2016-05-06 15:34 - 00020808 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd
2016-05-11 19:58 - 2016-05-06 15:35 - 00021840 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\_cffi_unicode_environ_win32_x8bf8e68bx9968e850.pyd
2016-05-11 19:58 - 2016-05-06 15:34 - 00038696 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\fastpath.pyd
2016-05-11 19:58 - 2016-04-19 12:49 - 00020936 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\mmapfile.pyd
2016-05-11 19:58 - 2016-04-19 12:49 - 00024528 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\win32event.pyd
2016-05-11 19:58 - 2016-04-19 12:49 - 00114640 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\win32security.pyd
2016-05-11 19:58 - 2016-04-19 12:49 - 00124880 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\win32file.pyd
2016-05-11 19:58 - 2016-05-06 15:35 - 00021832 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\_cffi_pywin_kernel32_x64d8f881xc8c369be.pyd
2016-05-11 19:58 - 2016-04-19 12:49 - 00024016 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\win32clipboard.pyd
2016-05-11 19:58 - 2016-04-19 12:49 - 00175560 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\win32gui.pyd
2016-05-11 19:58 - 2016-04-19 12:49 - 00030160 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\win32pipe.pyd
2016-05-11 19:58 - 2016-04-19 12:49 - 00043472 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\win32process.pyd
2016-05-11 19:58 - 2016-04-19 12:49 - 00028616 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\win32ts.pyd
2016-05-11 19:58 - 2016-04-19 12:49 - 00048592 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\win32service.pyd
2016-05-11 19:58 - 2016-05-06 15:34 - 00026456 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\dropbox.infinite.win.compiled._driverinstallation.pyd
2016-05-11 19:58 - 2016-04-19 12:49 - 00057808 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\win32evtlog.pyd
2016-05-11 19:58 - 2016-04-19 12:49 - 00024016 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\win32profile.pyd
2016-05-11 19:58 - 2016-05-06 15:34 - 00117056 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\breakpad.client.windows.handler.pyd
2016-05-11 19:58 - 2016-05-06 15:34 - 00052024 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd
2016-05-11 19:58 - 2016-04-19 12:47 - 00134608 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\_elementtree.pyd
2016-05-11 19:58 - 2016-04-19 12:47 - 00134088 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\pyexpat.pyd
2016-05-11 19:58 - 2016-04-19 12:48 - 00240584 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\jpegtran.pyd
2016-05-11 19:58 - 2016-05-06 15:35 - 00020800 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\winffi.iphlpapi._winffi_iphlpapi.pyd
2016-05-11 19:58 - 2016-05-06 15:35 - 00021824 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\winffi.kernel32._winffi_kernel32.pyd
2016-05-11 19:58 - 2016-05-06 15:35 - 00019776 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\winffi.winerror._winffi_winerror.pyd
2016-05-11 19:58 - 2016-05-06 15:35 - 00020800 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\winffi.wininet._winffi_wininet.pyd
2016-05-11 19:58 - 2016-05-06 15:34 - 00024392 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd
2016-05-11 19:58 - 2016-04-19 12:50 - 00036296 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\librsync.dll
2016-05-11 19:58 - 2016-05-06 15:34 - 00020280 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd
2016-05-11 19:58 - 2016-05-06 15:35 - 00023376 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd
2016-05-11 19:58 - 2016-04-19 12:49 - 00350152 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\winxpgui.pyd
2016-05-11 19:58 - 2016-05-06 15:35 - 00022352 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\winverifysignature.compiled._VerifySignature.pyd
2016-05-11 19:58 - 2016-05-06 15:34 - 00084280 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL
2016-05-11 19:58 - 2016-05-06 15:34 - 01826096 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd
2016-05-11 19:58 - 2016-04-19 12:48 - 00083912 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\sip.pyd
2016-05-11 19:58 - 2016-05-06 15:35 - 03928880 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd
2016-05-11 19:58 - 2016-05-06 15:34 - 01971504 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd
2016-05-11 19:58 - 2016-05-06 15:34 - 00531248 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd
2016-05-11 19:58 - 2016-05-06 15:35 - 00132912 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd
2016-05-11 19:58 - 2016-05-06 15:35 - 00223544 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd
2016-05-11 19:58 - 2016-05-06 15:34 - 00207672 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd
2016-05-11 19:58 - 2016-04-19 12:49 - 00060880 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\win32print.pyd
2016-05-11 19:58 - 2016-05-06 15:35 - 00024904 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\_cffi_wpad_proxy_win_x752e3d61xdcfdcc84.pyd
2016-05-11 19:58 - 2016-05-06 15:35 - 00546096 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd
2016-05-11 19:58 - 2016-05-06 15:35 - 00357680 _____ () C:\Users\Windows8\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd
2016-02-08 18:42 - 2015-12-28 14:50 - 00899872 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\webres.dll
2016-02-08 18:42 - 2015-12-28 14:49 - 00629536 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\ProductStatistics.dll
2016-02-08 18:42 - 2015-12-23 19:32 - 00355616 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madExcept_.bpl
2016-02-08 18:42 - 2015-12-23 19:32 - 00190240 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madBasic_.bpl
2016-02-08 18:42 - 2015-12-23 19:32 - 00057632 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madDisAsm_.bpl
2016-05-29 18:04 - 2016-05-11 04:48 - 01738904 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.102\libglesv2.dll
2016-05-29 18:04 - 2016-05-11 04:48 - 00086168 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.102\libegl.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
IE restricted site: HKU\.DEFAULT\…\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\…\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\…\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\…\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\…\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\…\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\…\0scan.com -> www.0scan.com
IE restricted site: HKU\.DEFAULT\…\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\…\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\…\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\…\1001namen.com -> www.1001namen.com
IE restricted site: HKU\.DEFAULT\…\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\…\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\…\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\…\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\…\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\…\123fporn.info -> www.123fporn.info
IE restricted site: HKU\.DEFAULT\…\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\…\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\…\123simsen.com -> www.123simsen.com
There are 7864 more sites.
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\…\1-se.com -> 1-se.com
There are 11406 more sites.
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 06:25 - 2014-06-11 21:00 - 00450639 ____R C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com
127.0.0.1 100sexlinks.com
127.0.0.1 10sek.com
127.0.0.1 www.10sek.com
127.0.0.1 www.1-2005-search.com
127.0.0.1 1-2005-search.com
127.0.0.1 123fporn.info
127.0.0.1 www.123fporn.info
127.0.0.1 123haustiereundmehr.com
127.0.0.1 www.123haustiereundmehr.com
127.0.0.1 123moviedownload.com
127.0.0.1 www.123moviedownload.com
There are 15459 more lines.
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1111288859-4143947986-3219784061-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Windows8\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\dscf3029.jpg
DNS Servers: 10.0.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{B74841EF-D19C-4A59-AD12-0074742947B2}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{3DF3340E-8E1E-4831-8080-F9B7E082A0B6}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{0C4D8989-8CBF-468E-A3EA-0151F5294C5F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{9CA38F24-E92F-492C-8EB3-3E6EBE0955AE}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{A650D865-A8DD-46C7-9567-9153629131E6}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{8601C018-AFA7-4DB6-B096-FB610D5BAF40}] => (Allow) LPort=1900
FirewallRules: [{A7932E08-9DB1-40B2-A4A2-48EE22A8F558}] => (Allow) LPort=2869
FirewallRules: [{B163C1DC-4E4A-4FC3-B573-D49CD06873C9}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{D73BBD5C-1A14-4296-B2DD-74A77A722B23}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\WiDiApp.exe
FirewallRules: [{05649B14-3868-4DA7-8353-A2C24D82FABC}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{5CA61427-46A0-4806-AA20-320F8139A888}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{ECE3BE6A-0D1D-4004-98D9-8A4C7E5D285E}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{A4840003-265A-4CD9-A8F2-08732DCAADDE}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{A27E8AC7-47D5-4417-A525-0C0550094F38}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{485A7AB5-AD69-449B-903D-B0F26E8805FC}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{1744C66D-D9FC-4996-9EE6-66853A9F35F8}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{1680C258-C402-4A44-B2DE-D4EA0D8D087C}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{835233FF-78E5-46C9-9CE2-5324A25C4071}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe
FirewallRules: [TCP Query User{256D2195-85D4-4E9F-953E-5E52A2693719}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{6BE91B13-7898-47EC-8841-68A933AE12A1}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{AED09B2E-AED9-401A-A29C-C602DFD157B5}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{519AFE76-9BA1-4C7A-9AA7-026124D32970}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{A84D8A40-19C5-4156-97EC-CEFE81E38E60}] => (Allow) C:\Users\Windows8\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{06B5367D-E5D0-4764-BA94-AB50D9F99511}] => (Allow) C:\Users\Windows8\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [TCP Query User{41423131-5AF8-49A6-B557-599A966E52B3}C:\users\windows8\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\windows8\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [UDP Query User{30E1A6E8-581F-4675-9142-82BE74B739A9}C:\users\windows8\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\windows8\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [{71B0BD0D-6C45-46A7-B329-3110538AF487}] => (Allow) C:\Users\Windows8\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{661C4392-B9F8-41FC-915B-3BCC1A5677A1}] => (Allow) C:\Users\Windows8\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{DEF45839-DDD5-452E-82D8-5B888F81BC44}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe
FirewallRules: [{3324330D-C9F4-4090-B0B5-F8EF0E84F8ED}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe
FirewallRules: [{74F9DFEE-E783-478D-AC56-A3D2B274AF3C}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
FirewallRules: [{2789F43A-9EE3-4D10-B0D5-66F35E8E30C3}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
FirewallRules: [{5B47A005-04E3-46C7-BBEA-DC7509D4BEF2}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe
FirewallRules: [{9F4235EC-742E-48D0-AA44-9E28A3961625}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe
FirewallRules: [{9DE4464B-6AF0-49B1-9FE7-A941A3455130}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
FirewallRules: [{BB80D171-261F-40C0-94C1-2AC1DFF0CB5D}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
FirewallRules: [{F3BFEF8B-9C9E-4B2E-AC64-14FBF7517537}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot-S&D; 2 Tray Icon
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D; 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D; 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D; 2 Background update service
==================== Restore Points =========================
11-05-2016 19:48:44 Windows Update
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (05/29/2016 06:04:31 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: )
Description: Subscription licensing service failed: -1073418231
Error: (05/29/2016 05:51:33 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 257) (User: )
Description: The Cryptographic Services service failed to initialize the Catalog Database. The ESENT error was: -550.
Error: (05/11/2016 07:49:13 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: )
Description: Subscription licensing service failed: -1073418231
Error: (05/11/2016 07:47:50 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: pcdrsysinfocsmi.p5x, version: 6.0.6032.39, time stamp: 0x4ffe56d2
Faulting module name: MSVCR90.dll, version: 9.0.30729.8387, time stamp: 0x51ea1bbd
Exception code: 0x40000015
Fault offset: 0x000000000004267f
Faulting process id: 0x1a40
Faulting application start time: 0xpcdrsysinfocsmi.p5x0
Faulting application path: pcdrsysinfocsmi.p5x1
Faulting module path: pcdrsysinfocsmi.p5x2
Report Id: pcdrsysinfocsmi.p5x3
Faulting package full name: pcdrsysinfocsmi.p5x4
Faulting package-relative application ID: pcdrsysinfocsmi.p5x5
Error: (04/22/2016 08:30:25 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1062
Error: (04/22/2016 08:30:25 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1062
Error: (04/22/2016 08:30:25 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (04/22/2016 08:30:11 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1110
Error: (04/22/2016 08:30:11 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1110
Error: (04/22/2016 08:30:11 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
System errors:
=============
Error: (05/29/2016 06:08:22 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x80246013: ACMEAtronOmaticLLC.MyRadar.
Error: (05/29/2016 05:52:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The WinHTTP Web Proxy Auto-Discovery Service service failed to start due to the following error:
%%1069
Error: (05/29/2016 05:52:38 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: The WinHttpAutoProxySvc service was unable to log on as NT AUTHORITY\LocalService with the currently configured password due to the following error:
%%50
To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
Error: (05/29/2016 05:52:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Bluetooth Support Service service failed to start due to the following error:
%%1069
Error: (05/29/2016 05:52:38 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: The bthserv service was unable to log on as NT AUTHORITY\LocalService with the currently configured password due to the following error:
%%50
To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
Error: (05/29/2016 05:52:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Application Experience service failed to start due to the following error:
%%1115
Error: (05/29/2016 05:52:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The SSDP Discovery service failed to start due to the following error:
%%1069
Error: (05/29/2016 05:52:38 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: The SSDPSRV service was unable to log on as NT AUTHORITY\LocalService with the currently configured password due to the following error:
%%50
To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
Error: (05/29/2016 05:52:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Windows Driver Foundation - User-mode Driver Framework service failed to start due to the following error:
%%1115
Error: (05/29/2016 05:52:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Portable Device Enumerator Service service failed to start due to the following error:
%%1115
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5-3317U CPU @ 1.70GHz
Percentage of memory in use: 64%
Total physical RAM: 3975.27 MB
Available physical RAM: 1414.83 MB
Total Virtual: 5767.27 MB
Available Virtual: 2733.27 MB
==================== Drives ================================
Drive c: (Windows) (Fixed) (Total:102.34 GB) (Free:11.71 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: D8EA4C22)
Partition: GPT.
==================== End of Addition.txt ============================