Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

SDDelFile.exe and brokenopen command issues


  • This topic is locked This topic is locked
12 replies to this topic

#1 suzbinky

suzbinky

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:11:53 PM

Posted 04 August 2011 - 09:14 AM

We have tried several removal tools including: Spybot S&D, SuperAnivirus, Avast, Malware by anti malware. Nothing is solving this issue. Started noticing when I was unable to upload certain files, then the browsers started to close for no reason, computer would restart randomly, unable to open certain Adobe programs. Tried System restore going back to what I thought was a safe day, but I was only given four options: 3 from yesterday and 1 from 7/29. No way to check other options. Feels like a bunch of false alerts and panic notifications.

I went through ALL steps in the preparation guide, except Step 8 because I'm 64-Bit
There is a recurring window I cannot get rid of: SDDelFile.exe - No Disk
There is no disk in the drive. Pelase insert a disk into the drive \Device\Harddisk2\DR2
with options to cancel, try again or continue. None of them work and just keep adding new items to the list of services running in the task manager.

I'm also being told to ininstall and reinstall Adobe products such a Bridge and Fireworks.
Same with my back up. 7/28 is the last good back up. Interesting that the last good back up is the day before the available system restore. Guessing this got into my computer 7/29.

DSS.txt:

.
DDS (Ver_2011-06-23.01) - NTFSAMD64
Internet Explorer: 8.0.7601.17514 BrowserJavaVersion: 1.6.0_24
Run by Susan at 7:01:48 on 2011-08-04
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.12247.9117 [GMT -7:00]
.
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Spybot - Search & Destroy *Enabled/Outdated* {1EAF1D03-5480-F3B2-EB14-11F0F5EE2699}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Program Files\Dell\DellDock\DockLogin.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
C:\Program Files (x86)\APC\APC PowerChute Personal Edition\mainserv.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\Bonjour\mDNSResponder.exe
C:\Program Files\Prevx\prevx.exe
C:\Program Files (x86)\iolo\Common\Lib\ioloServiceManager.exe
C:\Program Files (x86)\WD\WD Anywhere Backup\MemeoBackgroundService.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDHookSvc.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrSvc.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Prevx\prevx.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Windows\system32\taskmgr.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrUI.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Multimedia Card Reader(9106)\ShwiconXP9106.exe
C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDDelFile.exe
C:\Program Files (x86)\APC\APC PowerChute Personal Edition\apcsystray.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe
C:\Windows\system32\svchost.exe -k SDRSVC
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Cobian Backup 10\cbVSCService.exe
C:\Windows\system32\taskmgr.exe
C:\Program Files (x86)\Cobian Backup 10\Cobian.exe
C:\Program Files (x86)\Cobian Backup 10\cbInterface.exe
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\taskhost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uSearch Page = hxxp://www.google.com
uStart Page = about:blank
uSearch Bar = hxxp://www.google.com/ie
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}

&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/keyword/%s
mWinlogon: Userinit=userinit.exe,
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files

(x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Canon Easy-WebPrint EX BHO: {3785d0ad-bfff-47f6-bf5b-a587c162fed9} - C:\Program

Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - C:\Program

Files (x86)\Spybot - Search & Destroy 2\SDHelper.dll
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - C:\Program Files

(x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
BHO: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - C:\Program Files\AVAST

Software\Avast\aswWebRepIE.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:

\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: {9D425283-D487-4337-BAB6-AB8354A81457} - No File
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:\Program Files

(x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO: Adobe PDF Conversion Toolbar Helper: {ae7cd045-e861-484f-8273-0445ee161910} - C:

\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
BHO: Skype Plug-In: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype

\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - C:\Program

Files (x86)\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program

Files (x86)\Java\jre6\bin\jp2ssv.dll
BHO: SmartSelect Class: {f4971ee7-daa0-4053-9964-665d8ee6a077} - C:\Program Files

(x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
BHO: {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - No File
TB: Canon Easy-WebPrint EX: {759d9886-0c6f-4498-bab6-4a5f47c6c72f} - C:\Program Files

(x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:\Program Files

(x86)\Google\Google Toolbar\GoogleToolbar_32.dll
TB: {9D425283-D487-4337-BAB6-AB8354A81457} - No File
TB: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - C:\Program Files\AVAST

Software\Avast\aswWebRepIE.dll
TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - C:\Program Files (x86)\Common

Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
TB: {43989788-13D1-4BE7-8404-DB58166E06CD} - No File
TB: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
EB: Canon Easy-WebPrint EX: {21347690-ec41-4f9a-8887-1f4aee672439} - C:\Program Files

(x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
uRun: [AdobeBridge]
uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
uRun: [Google Update] "C:\Users\Susan\AppData\Local\Google\Update\GoogleUpdate.exe" /c
uRun: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
mRun: [WD Drive Manager] C:\Program Files\Western Digital\WD Drive Manager

\WDBtnMgrUI.exe
mRun: [WD Anywhere Backup] C:\Program Files (x86)\WD\WD Anywhere Backup

\MemeoLauncher2.exe --silent
mRun: [THX Audio Control Panel] "C:\Program Files (x86)\Creative\THX TruStudio PC

\THXAudioCP\THXAudio.exe" /r
mRun: [ShwiconXP9106] C:\Program Files (x86)\Multimedia Card Reader

(9106)\ShwiconXP9106.exe
mRun: [IAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
mRun: [Display] C:\Program Files (x86)\APC\APC PowerChute Personal Edition

\DataCollectionLauncher.exe
mRun: [Dell Webcam Central] "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central

\WebcamDell2.exe" /mode2
mRun: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
mRun: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
mRun: [<NO NAME>]
mRun: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe"
mRun: [iolo Startup] "C:\Program Files (x86)\iolo\Common\Lib\ioloLManager.exe"
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware

\mbamgui.exe" /starttray
mRun: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
mRunOnce: [SpybotDeletingE4046] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\a.blip.tv\com.quantserve.sol"
mRunOnce: [SpybotDeletingE8924] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\a.dolimg.com\s_br.sol"
mRunOnce: [SpybotDeletingE3775] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\a.dolimg.com\UserPreferences.sol"
mRunOnce: [SpybotDeletingE8706] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\aimg.dsi.go.com\s7_storage_init.sol"
mRunOnce: [SpybotDeletingE1099] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\aimg.dsi.go.com\s7_storage_tracker.sol"
mRunOnce: [SpybotDeletingE1531] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\aka.zero.jibjab.com\com.quantserve.sol"
mRunOnce: [SpybotDeletingE9770] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\aka.zero.jibjab.com\jj_player.sol"
mRunOnce: [SpybotDeletingE8882] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\as1.suitesmart.com\6thElement.sol"
mRunOnce: [SpybotDeletingE7517] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\assets.espn.go.com\mpfGeoLocation.sol"
mRunOnce: [SpybotDeletingE9869] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\blogtalkradio.com\sid.sol"
mRunOnce: [SpybotDeletingE9696] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\blogtalkradio.com\TOPCMM_flashChat_preMsg_Guest19372.sol"
mRunOnce: [SpybotDeletingE8097] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\blogtalkradio.com\TOPCMM_flashChat_preMsg_Guest19680.sol"
mRunOnce: [SpybotDeletingE2529] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\blueriver.acrobat.com\BreezeLive.sol"
mRunOnce: [SpybotDeletingE7981] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\buzzvoice.com\analytics.sol"
mRunOnce: [SpybotDeletingE900] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\c3metrics.com\345-SM.sol"
mRunOnce: [SpybotDeletingE3381] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\c3metrics.com\345-VT.sol"
mRunOnce: [SpybotDeletingE7990] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\c3metrics.com\480-SM.sol"
mRunOnce: [SpybotDeletingE9700] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\c3metrics.com\480-VT.sol"
mRunOnce: [SpybotDeletingE1447] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cache.reverbnation.com\com.quantserve.sol"
mRunOnce: [SpybotDeletingE9689] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.net-mine.com\RMM_PVP.sol"
mRunOnce: [SpybotDeletingE1508] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.smugmug.com\smfsss.sol"
mRunOnce: [SpybotDeletingE4427] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.staticsfly.com\0AaNXDJwzatWNA.sol"
mRunOnce: [SpybotDeletingE8046] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.visiblemeasures.com\configData.sol"
mRunOnce: [SpybotDeletingE2852] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.visiblemeasures.com\sessionData.sol"
mRunOnce: [SpybotDeletingE402] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.visiblemeasures.com\userData.sol"
mRunOnce: [SpybotDeletingE3128] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.widgetserver.com\com.quantserve.sol"
mRunOnce: [SpybotDeletingE2645] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.widgetserver.com\wbx_cookie.sol"
mRunOnce: [SpybotDeletingE1867] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn1.telemetryverification.net\dbg.sol"
mRunOnce: [SpybotDeletingE7970] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn1.telemetryverification.net\mb.sol"
mRunOnce: [SpybotDeletingE6500] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn1.ustream.tv\com.conviva.livePass.sol"
mRunOnce: [SpybotDeletingE9041] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn1.ustream.tv\com.quantserve.sol"
mRunOnce: [SpybotDeletingE6424] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn1.ustream.tv\flash.viewer.sol"
mRunOnce: [SpybotDeletingE769] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cf.komonews.com\analytics.sol"
mRunOnce: [SpybotDeletingE131] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\chase.com\DataStore.sol"
mRunOnce: [SpybotDeletingE1647] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\content.oddcast.com\oddcast_so.sol"
mRunOnce: [SpybotDeletingE350] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\convoad.technoratimedia.net\analytics.sol"
mRunOnce: [SpybotDeletingE1848] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d.yimg.com\VolumePrefs.sol"
mRunOnce: [SpybotDeletingE2167] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d.yimg.com\YEPBWPrefs.sol"
mRunOnce: [SpybotDeletingE2069] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d.yimg.com\YEPVitalitySharedObject.sol"
mRunOnce: [SpybotDeletingE757] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d1ivexoxmp59q7.cloudfront.net\data.sol"
mRunOnce: [SpybotDeletingE1808] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d261sv3xac0f7i.cloudfront.net\helpData.sol"
mRunOnce: [SpybotDeletingE5842] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\digital.dentalproductsreport.com\s_br.sol"
mRunOnce: [SpybotDeletingE5162] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\doug1izaerwt3.cloudfront.net\27c4b0782124ae918b7363f8c9fa6a2f1db98890.sol"
mRunOnce: [SpybotDeletingE206] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\doug1izaerwt3.cloudfront.net\427a39c94419fc8e42e05ef561a71a62e5a539d1.sol"
mRunOnce: [SpybotDeletingE3560] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\doug1izaerwt3.cloudfront.net\504aca0b8cca62725ee914db264db43cccfe3bda.sol"
mRunOnce: [SpybotDeletingE5371] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\doug1izaerwt3.cloudfront.net\9b3ad2c8597e1e1cba277956695ba2e6c6476ff0.sol"
mRunOnce: [SpybotDeletingE8521] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\doug1izaerwt3.cloudfront.net\ea08161d59e6f5c9da1815ff8640efa97220318a.sol"
mRunOnce: [SpybotDeletingE5799] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\dsc.discovery.com\s_br.sol"
mRunOnce: [SpybotDeletingE5047] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\family.go.com\s_br.sol"
mRunOnce: [SpybotDeletingE4184] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\farm.sproutbuilder.com\analytics.sol"
mRunOnce: [SpybotDeletingE8045] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\farm.sproutbuilder.com\sproutp.sol"
mRunOnce: [SpybotDeletingE9996] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\folkloremedia.com\com.jeroenwijering.sol"
mRunOnce: [SpybotDeletingE7683] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\g-ecx.images-amazon.com\AlbumSampler.sol"
mRunOnce: [SpybotDeletingE4557] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\g-ecx.images-amazon.com\_amazon_id_745.sol"
mRunOnce: [SpybotDeletingE8474] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\games.mtvnservices.com\com.quantserve.sol"
mRunOnce: [SpybotDeletingE3313] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\i.d.com.com\com.conviva.livePass.sol"
mRunOnce: [SpybotDeletingE5624] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\ia.media-imdb.com\IMDBTEST.sol"
mRunOnce: [SpybotDeletingE218] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\icingtips.com\8.sol"
mRunOnce: [SpybotDeletingE3530] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\images-na.ssl-images-amazon.com\mercury.sol"
mRunOnce: [SpybotDeletingE5754] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\inplay.tubemogul.com\InPlayInfo.sol"
mRunOnce: [SpybotDeletingE7357] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\ireport.cnn.com\s_br.sol"
mRunOnce: [SpybotDeletingE8034] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\is1.j.tv2n.net\dbg.sol"
mRunOnce: [SpybotDeletingE1142] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\is1.j.tv2n.net\mb.sol"
mRunOnce: [SpybotDeletingE2171] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\localhost\adepermissions.sol"
mRunOnce: [SpybotDeletingE444] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\localhost\adept.sol"
mRunOnce: [SpybotDeletingE4758] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\login.yahoo.com\loginCache.sol"
mRunOnce: [SpybotDeletingE1601] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\mail.google.com\wakeup.sol"
mRunOnce: [SpybotDeletingE728] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\maniacworld.com\com.jeroenwijering.sol"
mRunOnce: [SpybotDeletingE4389] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\mochibot.com\com.mochibot.sol"
mRunOnce: [SpybotDeletingE6041] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\mpsnare.iesnare.com\stm.sol"
mRunOnce: [SpybotDeletingE109] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\tqj1f08wYqJ7Ga3YnGyCkD4zW946wzS6Session_SO.sol"
mRunOnce: [SpybotDeletingE3630] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\pandora.com\v3_Machine.sol"
mRunOnce: [SpybotDeletingE5501] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\pandora.com\v3_PerfComp.sol"
mRunOnce: [SpybotDeletingE5562] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\pandora.com\v4_UserCredentials.sol"
mRunOnce: [SpybotDeletingE6088] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\pfiles.5min.com\analytics.sol"
mRunOnce: [SpybotDeletingE9994] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\picscatter.com\analytics.sol"
mRunOnce: [SpybotDeletingE4921] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\player.cdn.targetspot.com\ts_CBSRadio.sol"
mRunOnce: [SpybotDeletingE7401] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\player.longtailvideo.com\analytics.sol"
mRunOnce: [SpybotDeletingE6630] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\player.longtailvideo.com\com.jeroenwijering.sol"
mRunOnce: [SpybotDeletingE6142] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\player.ooyala.com\auth.sol"
mRunOnce: [SpybotDeletingE9500] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\player.ooyala.com\auth2.sol"
mRunOnce: [SpybotDeletingE4714] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.un.org\analytics.sol"
mRunOnce: [SpybotDeletingE4662] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\player.ooyala.com\rdaMigrationComplete.sol"
mRunOnce: [SpybotDeletingE6696] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\pub.widgetbox.com\wbx_cookie.sol"
mRunOnce: [SpybotDeletingE9891] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\reverbnation.com\com.quantserve.sol"
mRunOnce: [SpybotDeletingE9793] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\reverbnation.com\com.reverbnation.prowidgets.player.sol"
mRunOnce: [SpybotDeletingE3378] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\reverbnation.com\ReverbNationAllowSpace.sol"
mRunOnce: [SpybotDeletingE8051] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\s.mcstatic.com\analytics.sol"
mRunOnce: [SpybotDeletingE7828] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\s.mcstatic.com\UUID.sol"
mRunOnce: [SpybotDeletingE7046] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\s.ytimg.com\hdTooltipClue2.sol"
mRunOnce: [SpybotDeletingE3111] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\s.ytimg.com\soundData.sol"
mRunOnce: [SpybotDeletingE1436] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\s.ytimg.com\videostats.sol"
mRunOnce: [SpybotDeletingE1906] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\s0.2mdn.net\TestAndTargetmarriottinternationa.sol"
mRunOnce: [SpybotDeletingE2356] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\s7d5.scene7.com\s7_storage_init.sol"
mRunOnce: [SpybotDeletingE1691] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\s7d5.scene7.com\s7_storage_tracker.sol"
mRunOnce: [SpybotDeletingE897] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\secondlife.com\analytics.sol"
mRunOnce: [SpybotDeletingE7169] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\secure.hulu.com\BeaconService.sol"
mRunOnce: [SpybotDeletingE9775] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\secureinclude.ebaystatic.com\ebayLSO.sol"
mRunOnce: [SpybotDeletingE2830] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\secureinclude.ebaystatic.com\ebayT.sol"
mRunOnce: [SpybotDeletingE8331] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\slide.com\slideshow.sol"
mRunOnce: [SpybotDeletingE5613] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\spe.atdmt.com\analytics.sol"
mRunOnce: [SpybotDeletingE2229] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\static.delvenetworks.com\cachedPlayerConfiguration.sol"
mRunOnce: [SpybotDeletingE6970] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\static.delvenetworks.com\player.sol"
mRunOnce: [SpybotDeletingE676] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\static.issuu.com\com.quantserve.sol"
mRunOnce: [SpybotDeletingE680] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\static.slidesharecdn.com\com.quantserve.sol"
mRunOnce: [SpybotDeletingE4955] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\static.wix.com\WixComputerID.sol"
mRunOnce: [SpybotDeletingE4131] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\us.mg1.mail.yahoo.com\cookies.sol"
mRunOnce: [SpybotDeletingE3209] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\video-static.clipsyndicate.com\analytics.sol"
mRunOnce: [SpybotDeletingE3980] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\video.fastcompany.com\analytics.sol"
mRunOnce: [SpybotDeletingE7746] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\vizu.com\acUserData.sol"
mRunOnce: [SpybotDeletingE6412] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\widget.meebo.com\com.quantserve.sol"
mRunOnce: [SpybotDeletingE1815] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\widget.meebo.com\mm.sol"
mRunOnce: [SpybotDeletingE4809] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.blogtalkradio.com\com.quantserve.sol"
mRunOnce: [SpybotDeletingE9210] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.converse.com\Converse_PDP.sol"
mRunOnce: [SpybotDeletingE8269] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.converse.com\s_br.sol"
mRunOnce: [SpybotDeletingE9290] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.elexioinfinity.com\com.jeroenwijering.sol"
mRunOnce: [SpybotDeletingE5700] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.girlscouts.org\analytics.sol"
mRunOnce: [SpybotDeletingE2279] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.growvideos.com\com.nuevolab.players.sol"
mRunOnce: [SpybotDeletingE7965] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.hulu.com\BeaconService.sol"
mRunOnce: [SpybotDeletingE7863] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.icarly.com\com.quantserve.sol"
mRunOnce: [SpybotDeletingE6166] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.laspilitas.com\com.jeroenwijering.sol"
mRunOnce: [SpybotDeletingE8911] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.neutralexistence.com\pap20.sol"
mRunOnce: [SpybotDeletingE1512] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.note-2-self.com\playerData.sol"
mRunOnce: [SpybotDeletingE1668] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.ooyala.com\auth.sol"
mRunOnce: [SpybotDeletingE9059] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.ooyala.com\auth2.sol"
mRunOnce: [SpybotDeletingE7245] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.ooyala.com\perf.sol"
mRunOnce: [SpybotDeletingE8232] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.oracle.com\s_br.sol"
mRunOnce: [SpybotDeletingE950] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.pattersondental.com\analytics.sol"
mRunOnce: [SpybotDeletingE7068] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.paypalobjects.com\paypalLSO.sol"
mRunOnce: [SpybotDeletingE6127] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.paypalobjects.com\ppLsoTest.sol"
mRunOnce: [SpybotDeletingE1079] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.pigeonpresents.com\flashcookie.sol"
mRunOnce: [SpybotDeletingE456] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.playlist.com\ppl6.sol"
mRunOnce: [SpybotDeletingE3658] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.plimus.com\plimus_user_data.sol"
mRunOnce: [SpybotDeletingE1292] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.pollypocket.com\PollyPocketCutantsSite.sol"
mRunOnce: [SpybotDeletingE982] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.refresheverything.com\analytics.sol"
mRunOnce: [SpybotDeletingE2997] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.spotify.com\cookies.sol"
mRunOnce: [SpybotDeletingE2903] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.techsoup.org\com.jeroenwijering.sol"
mRunOnce: [SpybotDeletingE4136] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.tripadvisor.com\TA.sol"
mRunOnce: [SpybotDeletingE1191] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.un.org\com.jeroenwijering.sol"
mRunOnce: [SpybotDeletingE7248] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.usa.philips.com\s_br.sol"
mRunOnce: [SpybotDeletingE9582] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.vistaprint.com\dataStorage.sol"
mRunOnce: [SpybotDeletingE4289] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.youtube.com\soundData.sol"
mRunOnce: [SpybotDeletingE735] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.youtube.com\videostats.sol"
mRunOnce: [SpybotDeletingE3351] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www8.agame.com\analytics.sol"
mRunOnce: [SpybotDeletingE1431] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\x.myspacecdn.com\SpaceMusic.sol"
mRunOnce: [SpybotDeletingE1624] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\iiuu6cCpIMwcNTvxIsVBANBPPrsrXRwCSession_SO.sol"
mRunOnce: [SpybotDeletingE5874] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\iiuu6cCpIMwcNTvxIsVBANBPPrsrXRwCVolatile_SO.sol"
mRunOnce: [SpybotDeletingE1814] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\mL74cUmbN4Li4T3YEg9RFHvg0ah6QNg8Session_SO.sol"
mRunOnce: [SpybotDeletingE8888] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\mL74cUmbN4Li4T3YEg9RFHvg0ah6QNg8Volatile_SO.sol"
mRunOnce: [SpybotDeletingE8952] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\R0P2h5dPoFeTTxiVrsjS5552iy4B8R2zSession_SO.sol"
mRunOnce: [SpybotDeletingE5278] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\R0P2h5dPoFeTTxiVrsjS5552iy4B8R2zVolatile_SO.sol"
mRunOnce: [SpybotDeletingE870] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\tqj1f08wYqJ7Ga3YnGyCkD4zW946wzS6Volatile_SO.sol"
mRunOnce: [SpybotDeletingE6492] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\Y9lqnaJokKg48h9cMyxjOsIg8ZlI4Rh6Session_SO.sol"
mRunOnce: [SpybotDeletingE8564] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\Y9lqnaJokKg48h9cMyxjOsIg8ZlI4Rh6Volatile_SO.sol"
mRunOnce: [SpybotDeletingE9381] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\aa.online-metrix.net\fpc.swf\session.sol"
mRunOnce: [SpybotDeletingE9339] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\app.quickblogcast.com\dev.swf\savedColors.sol"
mRunOnce: [SpybotDeletingE443] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\blogtalkradio.com\lib_123flashchat.swf\123flashchat_user.sol"
mRunOnce: [SpybotDeletingE9105] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\core.videoegg.com\#ve\admanager.sol"
mRunOnce: [SpybotDeletingE2405] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d.scribd.com\ScribdViewer.swf\instance_identifier.sol"
mRunOnce: [SpybotDeletingE1362] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d.scribd.com\ScribdViewer.swf\quantcast.sol"
mRunOnce: [SpybotDeletingE8168] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d.scribd.com\ScribdViewer.swf\scribdSettings.sol"
mRunOnce: [SpybotDeletingE9408] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d1.scribdassets.com\ScribdViewer.swf\instance_identifier.sol"
mRunOnce: [SpybotDeletingE9933] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d1.scribdassets.com\ScribdViewer.swf\quantcast.sol"
mRunOnce: [SpybotDeletingE8511] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d1.scribdassets.com\ScribdViewer.swf\scribdSettings.sol"
mRunOnce: [SpybotDeletingE4190] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\edit.yahoo.com\tmp.swf\DataStore_.sol"
mRunOnce: [SpybotDeletingE2084] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\na.edit.yahoo.com\tmp.swf\DataStore_.sol"
mRunOnce: [SpybotDeletingE2159] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\p1.soundcloud.com\player.swf\SCPlayer.sol"
mRunOnce: [SpybotDeletingE379] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\picscatter.com\picscatter.swf\FacebookOauthGraph125212377543359.sol"
mRunOnce: [SpybotDeletingE420] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\rmncdn.com\versionDetect3.swf\user.sol"
mRunOnce: [SpybotDeletingE6874] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\skype.com\#ui\preferences.sol"
mRunOnce: [SpybotDeletingE6243] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\skype.com\#user\segment.sol"
mRunOnce: [SpybotDeletingE6526] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.cucinaalessa.com\xspf_player_slim.swf\xspf_player_data.sol"
mRunOnce: [SpybotDeletingE3509] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.jantzen.com\index.swf.swf\CirclecubeVideoPlayer4.sol"
mRunOnce: [SpybotDeletingE9135] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\api.yelp.com\at\at2.swf\ad_targeting.sol"
mRunOnce: [SpybotDeletingE6636] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.static.viddler.com\flash\player750.swf\undefined.sol"
mRunOnce: [SpybotDeletingE5267] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.static.viddler.com\flash\simple_player_217.swf\undefined.sol"
mRunOnce: [SpybotDeletingE7097] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\core.videoegg.com\#com\videoegg\Demo.sol"
mRunOnce: [SpybotDeletingE6632] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\core.videoegg.com\#com\videoegg\OptOut.sol"
mRunOnce: [SpybotDeletingE8862] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\core.videoegg.com\#com\videoegg\Retargeting.sol"
mRunOnce: [SpybotDeletingE3297] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\core.videoegg.com\#com\videoegg\Tearsheet.sol"
mRunOnce: [SpybotDeletingE7361] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\core.videoegg.com\#com\videoegg\Twig.sol"
mRunOnce: [SpybotDeletingE7210] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\core.videoegg.com\#com\videoegg\UserProvider.sol"
mRunOnce: [SpybotDeletingE745] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\creativity-online.com\video\player.swf\adage-creativity.sol"
mRunOnce: [SpybotDeletingE1384] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\embed.wistia.com\flash\embed_player_v1.1.swf\settings.sol"
mRunOnce: [SpybotDeletingE2057] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\flickr.com\slideShow\slideShow.swf\slideShowMS.sol"
mRunOnce: [SpybotDeletingE6904] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\lads.myspacecdn.com\videos\MSMusicPlayer.swf\MSMediaPlayerClosedClients.sol"
mRunOnce: [SpybotDeletingE9396] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\lads.myspacecdn.com\videos\MSMusicPlayer.swf

\MSMediaPlayerCurrentlyPlaying.sol"
mRunOnce: [SpybotDeletingE5040] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\lads.myspacecdn.com\videos\MSMusicPlayer.swf\preferences.sol"
mRunOnce: [SpybotDeletingE6523] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\lads.myspacecdn.com\videos\MSVideoPlayer.swf\preferences.sol"
mRunOnce: [SpybotDeletingE7041] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\myvidoop.com\swf\vidsec_token.swf

\vidsec_token_899b789128c0e8d841aaeeaa78f175c53d6ccc2f.sol"
mRunOnce: [SpybotDeletingE8371] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\resources.infolinks.com\flash\ic.swf\infolinksData.sol"
mRunOnce: [SpybotDeletingE4916] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\static.trialpay.com\swf\logo.swf\helpData.sol"
mRunOnce: [SpybotDeletingE7109] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\twitter.com\flash\twitter_badge.swf\OdeoPodcastPlayerColors.sol"
mRunOnce: [SpybotDeletingE2326] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.carecredit.com\flash\carecredit_intro_6.swf\skipIntro.sol"
mRunOnce: [SpybotDeletingE8749] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.carestreamhealth.com\flash\carestream.swf\savedText.sol"
mRunOnce: [SpybotDeletingE7467] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.flickr.com\apps\video\video_player_prefs2.sol"
mRunOnce: [SpybotDeletingE4431] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.icarly.com\xml\loader.swf\loaderLogging.sol"
mRunOnce: [SpybotDeletingE1603] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.icarly.com\xml\release.swf\MetadataHistory.sol"
mRunOnce: [SpybotDeletingE49] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.icarly.com\xml\release.swf\playerCounter.sol"
mRunOnce: [SpybotDeletingE6609] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.icarly.com\xml\release.swf\qcDemoVal.sol"
mRunOnce: [SpybotDeletingE4991] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.icarly.com\xml\release.swf\skytide.sol"
mRunOnce: [SpybotDeletingE6726] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.icarly.com\xml\release.swf\userPrefs4.sol"
mRunOnce: [SpybotDeletingE3599] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.myfoxla.com\video\videoplayer.swf\savedBitRate.sol"
mRunOnce: [SpybotDeletingE7864] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\swf\ZClientController.swf\ZopConfig.sol"
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup

\APCUPS~1.LNK - C:\Program Files (x86)\APC\APC PowerChute Personal Edition\Display.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat

\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MIF5BA~1\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - C:\Program Files (x86)\Google\Google Toolbar\Component

\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-

E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {43989788-13D1-4BE7-8404-DB58166E06CD} - {43989788-13D1-4BE7-8404-

DB58166E06CD}
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-

AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-

96E929D65503} - C:\PROGRA~2\MIF5BA~1\Office12\REFIEBAR.DLL
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-

206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDHelper.dll
Trusted Zone: linkedin.com
DPF: {49312E18-AA92-4CC2-BB97-55DEA7BCADD6} -

hxxp://support.dell.com/systemprofiler/SysProExe.CAB
DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} -

hxxp://ccfiles.creative.com/Web/softwareupdate/su/ocx/15101/CTSUEng.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} -

hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} -

hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} -

hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} -

hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} -

hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} -

hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15116/CTPID.cab
TCP: DhcpNameServer = 192.168.1.1
TCP: Interfaces\{1690EB6B-8848-4541-B4A3-0CC78E102605} : DhcpNameServer =

192.168.1.1
Handler: intu-help-qb2 - {84D77A00-41B5-4b8b-8ADF-86486D72E749} - C:\Program Files

(x86)\Intuit\QuickBooks 2009\HelpAsyncPluggableProtocol.dll
Handler: qbwc - {FC598A64-626C-4447-85B8-53150405FD57} - C:\Windows

\System32\mscoree.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program

Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:

\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files

(x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
Notify: SDWinLogon - SDWinLogon.dll
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:

\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: Canon Easy-WebPrint EX BHO: {3785D0AD-BFFF-47F6-BF5B-A587C162FED9}

- C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
BHO-X64: Canon Easy-WebPrint EX BHO - No File
BHO-X64: Spybot-S&D IE Protection: {53707962-6F74-2D53-2644-206D7942484F} - C:

\Program Files (x86)\Spybot - Search & Destroy 2\SDHelper.dll
BHO-X64: Search Helper: {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files

(x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
BHO-X64: Search Helper - No File
BHO-X64: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files

\AVAST Software\Avast\aswWebRepIE.dll
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} -

C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: {9D425283-D487-4337-BAB6-AB8354A81457} - No File
BHO-X64: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:

\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO-X64: Adobe PDF Conversion Toolbar Helper: {AE7CD045-E861-484f-8273-

0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX

\AcroIEFavClient.dll
BHO-X64: Skype Plug-In: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files

(x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO-X64: SkypeIEPluginBHO - No File
BHO-X64: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -

C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll
BHO-X64: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} -

C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
BHO-X64: SmartSelect Class: {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program

Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
BHO-X64: SmartSelect - No File
BHO-X64: {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - No File
BHO-X64: TBSB03657 - No File
TB-X64: Canon Easy-WebPrint EX: {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:

\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
TB-X64: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files

(x86)\Google\Google Toolbar\GoogleToolbar_32.dll
TB-X64: {9D425283-D487-4337-BAB6-AB8354A81457} - No File
TB-X64: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files

\AVAST Software\Avast\aswWebRepIE.dll
TB-X64: Adobe PDF: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files

(x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
TB-X64: {43989788-13D1-4BE7-8404-DB58166E06CD} - No File
TB-X64: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
EB-X64: {21347690-EC41-4F9A-8887-1F4AEE672439} - No File
mRun-x64: [WD Drive Manager] C:\Program Files\Western Digital\WD Drive Manager

\WDBtnMgrUI.exe
mRun-x64: [WD Anywhere Backup] C:\Program Files (x86)\WD\WD Anywhere Backup

\MemeoLauncher2.exe --silent
mRun-x64: [THX Audio Control Panel] "C:\Program Files (x86)\Creative\THX TruStudio PC

\THXAudioCP\THXAudio.exe" /r
mRun-x64: [ShwiconXP9106] C:\Program Files (x86)\Multimedia Card Reader

(9106)\ShwiconXP9106.exe
mRun-x64: [IAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology

\IAStorIcon.exe
mRun-x64: [Display] C:\Program Files (x86)\APC\APC PowerChute Personal Edition

\DataCollectionLauncher.exe
mRun-x64: [Dell Webcam Central] "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central

\WebcamDell2.exe" /mode2
mRun-x64: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
mRun-x64: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard

\SwitchBoard.exe
mRun-x64: [(Default)]
mRun-x64: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat

\Acrotray.exe"
mRun-x64: [iolo Startup] "C:\Program Files (x86)\iolo\Common\Lib\ioloLManager.exe"
mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun-x64: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware

\mbamgui.exe" /starttray
mRun-x64: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
mRunOnce-x64: [SpybotDeletingE4046] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\a.blip.tv\com.quantserve.sol"
mRunOnce-x64: [SpybotDeletingE8924] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\a.dolimg.com\s_br.sol"
mRunOnce-x64: [SpybotDeletingE3775] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\a.dolimg.com\UserPreferences.sol"
mRunOnce-x64: [SpybotDeletingE8706] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\aimg.dsi.go.com\s7_storage_init.sol"
mRunOnce-x64: [SpybotDeletingE1099] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\aimg.dsi.go.com\s7_storage_tracker.sol"
mRunOnce-x64: [SpybotDeletingE1531] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\aka.zero.jibjab.com\com.quantserve.sol"
mRunOnce-x64: [SpybotDeletingE9770] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\aka.zero.jibjab.com\jj_player.sol"
mRunOnce-x64: [SpybotDeletingE8882] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\as1.suitesmart.com\6thElement.sol"
mRunOnce-x64: [SpybotDeletingE7517] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\assets.espn.go.com\mpfGeoLocation.sol"
mRunOnce-x64: [SpybotDeletingE9869] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\blogtalkradio.com\sid.sol"
mRunOnce-x64: [SpybotDeletingE9696] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\blogtalkradio.com\TOPCMM_flashChat_preMsg_Guest19372.sol"
mRunOnce-x64: [SpybotDeletingE8097] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\blogtalkradio.com\TOPCMM_flashChat_preMsg_Guest19680.sol"
mRunOnce-x64: [SpybotDeletingE2529] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\blueriver.acrobat.com\BreezeLive.sol"
mRunOnce-x64: [SpybotDeletingE7981] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\buzzvoice.com\analytics.sol"
mRunOnce-x64: [SpybotDeletingE900] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\c3metrics.com\345-SM.sol"
mRunOnce-x64: [SpybotDeletingE3381] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\c3metrics.com\345-VT.sol"
mRunOnce-x64: [SpybotDeletingE7990] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\c3metrics.com\480-SM.sol"
mRunOnce-x64: [SpybotDeletingE9700] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\c3metrics.com\480-VT.sol"
mRunOnce-x64: [SpybotDeletingE1447] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cache.reverbnation.com\com.quantserve.sol"
mRunOnce-x64: [SpybotDeletingE9689] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.net-mine.com\RMM_PVP.sol"
mRunOnce-x64: [SpybotDeletingE1508] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.smugmug.com\smfsss.sol"
mRunOnce-x64: [SpybotDeletingE4427] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.staticsfly.com\0AaNXDJwzatWNA.sol"
mRunOnce-x64: [SpybotDeletingE8046] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.visiblemeasures.com\configData.sol"
mRunOnce-x64: [SpybotDeletingE2852] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.visiblemeasures.com\sessionData.sol"
mRunOnce-x64: [SpybotDeletingE402] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.visiblemeasures.com\userData.sol"
mRunOnce-x64: [SpybotDeletingE3128] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.widgetserver.com\com.quantserve.sol"
mRunOnce-x64: [SpybotDeletingE2645] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.widgetserver.com\wbx_cookie.sol"
mRunOnce-x64: [SpybotDeletingE1867] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn1.telemetryverification.net\dbg.sol"
mRunOnce-x64: [SpybotDeletingE7970] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn1.telemetryverification.net\mb.sol"
mRunOnce-x64: [SpybotDeletingE6500] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn1.ustream.tv\com.conviva.livePass.sol"
mRunOnce-x64: [SpybotDeletingE9041] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn1.ustream.tv\com.quantserve.sol"
mRunOnce-x64: [SpybotDeletingE6424] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn1.ustream.tv\flash.viewer.sol"
mRunOnce-x64: [SpybotDeletingE769] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cf.komonews.com\analytics.sol"
mRunOnce-x64: [SpybotDeletingE131] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\chase.com\DataStore.sol"
mRunOnce-x64: [SpybotDeletingE1647] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\content.oddcast.com\oddcast_so.sol"
mRunOnce-x64: [SpybotDeletingE350] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\convoad.technoratimedia.net\analytics.sol"
mRunOnce-x64: [SpybotDeletingE1848] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d.yimg.com\VolumePrefs.sol"
mRunOnce-x64: [SpybotDeletingE2167] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d.yimg.com\YEPBWPrefs.sol"
mRunOnce-x64: [SpybotDeletingE2069] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d.yimg.com\YEPVitalitySharedObject.sol"
mRunOnce-x64: [SpybotDeletingE757] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d1ivexoxmp59q7.cloudfront.net\data.sol"
mRunOnce-x64: [SpybotDeletingE1808] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d261sv3xac0f7i.cloudfront.net\helpData.sol"
mRunOnce-x64: [SpybotDeletingE5842] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\digital.dentalproductsreport.com\s_br.sol"
mRunOnce-x64: [SpybotDeletingE5162] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\doug1izaerwt3.cloudfront.net\27c4b0782124ae918b7363f8c9fa6a2f1db98890.sol"
mRunOnce-x64: [SpybotDeletingE206] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\doug1izaerwt3.cloudfront.net\427a39c94419fc8e42e05ef561a71a62e5a539d1.sol"
mRunOnce-x64: [SpybotDeletingE3560] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\doug1izaerwt3.cloudfront.net\504aca0b8cca62725ee914db264db43cccfe3bda.sol"
mRunOnce-x64: [SpybotDeletingE5371] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\doug1izaerwt3.cloudfront.net\9b3ad2c8597e1e1cba277956695ba2e6c6476ff0.sol"
mRunOnce-x64: [SpybotDeletingE8521] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\doug1izaerwt3.cloudfront.net\ea08161d59e6f5c9da1815ff8640efa97220318a.sol"
mRunOnce-x64: [SpybotDeletingE5799] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\dsc.discovery.com\s_br.sol"
mRunOnce-x64: [SpybotDeletingE5047] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\family.go.com\s_br.sol"
mRunOnce-x64: [SpybotDeletingE4184] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\farm.sproutbuilder.com\analytics.sol"
mRunOnce-x64: [SpybotDeletingE8045] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\farm.sproutbuilder.com\sproutp.sol"
mRunOnce-x64: [SpybotDeletingE9996] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\folkloremedia.com\com.jeroenwijering.sol"
mRunOnce-x64: [SpybotDeletingE7683] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\g-ecx.images-amazon.com\AlbumSampler.sol"
mRunOnce-x64: [SpybotDeletingE4557] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\g-ecx.images-amazon.com\_amazon_id_745.sol"
mRunOnce-x64: [SpybotDeletingE8474] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\games.mtvnservices.com\com.quantserve.sol"
mRunOnce-x64: [SpybotDeletingE3313] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\i.d.com.com\com.conviva.livePass.sol"
mRunOnce-x64: [SpybotDeletingE5624] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\ia.media-imdb.com\IMDBTEST.sol"
mRunOnce-x64: [SpybotDeletingE218] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\icingtips.com\8.sol"
mRunOnce-x64: [SpybotDeletingE3530] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\images-na.ssl-images-amazon.com\mercury.sol"
mRunOnce-x64: [SpybotDeletingE5754] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\inplay.tubemogul.com\InPlayInfo.sol"
mRunOnce-x64: [SpybotDeletingE7357] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\ireport.cnn.com\s_br.sol"
mRunOnce-x64: [SpybotDeletingE8034] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\is1.j.tv2n.net\dbg.sol"
mRunOnce-x64: [SpybotDeletingE1142] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\is1.j.tv2n.net\mb.sol"
mRunOnce-x64: [SpybotDeletingE2171] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\localhost\adepermissions.sol"
mRunOnce-x64: [SpybotDeletingE444] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\localhost\adept.sol"
mRunOnce-x64: [SpybotDeletingE4758] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\login.yahoo.com\loginCache.sol"
mRunOnce-x64: [SpybotDeletingE1601] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\mail.google.com\wakeup.sol"
mRunOnce-x64: [SpybotDeletingE728] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\maniacworld.com\com.jeroenwijering.sol"
mRunOnce-x64: [SpybotDeletingE4389] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\mochibot.com\com.mochibot.sol"
mRunOnce-x64: [SpybotDeletingE6041] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\mpsnare.iesnare.com\stm.sol"
mRunOnce-x64: [SpybotDeletingE109] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\tqj1f08wYqJ7Ga3YnGyCkD4zW946wzS6Session_SO.sol"
mRunOnce-x64: [SpybotDeletingE3630] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\pandora.com\v3_Machine.sol"
mRunOnce-x64: [SpybotDeletingE5501] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\pandora.com\v3_PerfComp.sol"
mRunOnce-x64: [SpybotDeletingE5562] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\pandora.com\v4_UserCredentials.sol"
mRunOnce-x64: [SpybotDeletingE6088] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\pfiles.5min.com\analytics.sol"
mRunOnce-x64: [SpybotDeletingE9994] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\picscatter.com\analytics.sol"
mRunOnce-x64: [SpybotDeletingE4921] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\player.cdn.targetspot.com\ts_CBSRadio.sol"
mRunOnce-x64: [SpybotDeletingE7401] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\player.longtailvideo.com\analytics.sol"
mRunOnce-x64: [SpybotDeletingE6630] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\player.longtailvideo.com\com.jeroenwijering.sol"
mRunOnce-x64: [SpybotDeletingE6142] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\player.ooyala.com\auth.sol"
mRunOnce-x64: [SpybotDeletingE9500] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\player.ooyala.com\auth2.sol"
mRunOnce-x64: [SpybotDeletingE4714] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.un.org\analytics.sol"
mRunOnce-x64: [SpybotDeletingE4662] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\player.ooyala.com\rdaMigrationComplete.sol"
mRunOnce-x64: [SpybotDeletingE6696] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\pub.widgetbox.com\wbx_cookie.sol"
mRunOnce-x64: [SpybotDeletingE9891] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\reverbnation.com\com.quantserve.sol"
mRunOnce-x64: [SpybotDeletingE9793] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\reverbnation.com\com.reverbnation.prowidgets.player.sol"
mRunOnce-x64: [SpybotDeletingE3378] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\reverbnation.com\ReverbNationAllowSpace.sol"
mRunOnce-x64: [SpybotDeletingE8051] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\s.mcstatic.com\analytics.sol"
mRunOnce-x64: [SpybotDeletingE7828] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\s.mcstatic.com\UUID.sol"
mRunOnce-x64: [SpybotDeletingE7046] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\s.ytimg.com\hdTooltipClue2.sol"
mRunOnce-x64: [SpybotDeletingE3111] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\s.ytimg.com\soundData.sol"
mRunOnce-x64: [SpybotDeletingE1436] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\s.ytimg.com\videostats.sol"
mRunOnce-x64: [SpybotDeletingE1906] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\s0.2mdn.net\TestAndTargetmarriottinternationa.sol"
mRunOnce-x64: [SpybotDeletingE2356] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\s7d5.scene7.com\s7_storage_init.sol"
mRunOnce-x64: [SpybotDeletingE1691] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\s7d5.scene7.com\s7_storage_tracker.sol"
mRunOnce-x64: [SpybotDeletingE897] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\secondlife.com\analytics.sol"
mRunOnce-x64: [SpybotDeletingE7169] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\secure.hulu.com\BeaconService.sol"
mRunOnce-x64: [SpybotDeletingE9775] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\secureinclude.ebaystatic.com\ebayLSO.sol"
mRunOnce-x64: [SpybotDeletingE2830] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\secureinclude.ebaystatic.com\ebayT.sol"
mRunOnce-x64: [SpybotDeletingE8331] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\slide.com\slideshow.sol"
mRunOnce-x64: [SpybotDeletingE5613] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\spe.atdmt.com\analytics.sol"
mRunOnce-x64: [SpybotDeletingE2229] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\static.delvenetworks.com\cachedPlayerConfiguration.sol"
mRunOnce-x64: [SpybotDeletingE6970] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\static.delvenetworks.com\player.sol"
mRunOnce-x64: [SpybotDeletingE676] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\static.issuu.com\com.quantserve.sol"
mRunOnce-x64: [SpybotDeletingE680] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\static.slidesharecdn.com\com.quantserve.sol"
mRunOnce-x64: [SpybotDeletingE4955] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\static.wix.com\WixComputerID.sol"
mRunOnce-x64: [SpybotDeletingE4131] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\us.mg1.mail.yahoo.com\cookies.sol"
mRunOnce-x64: [SpybotDeletingE3209] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\video-static.clipsyndicate.com\analytics.sol"
mRunOnce-x64: [SpybotDeletingE3980] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\video.fastcompany.com\analytics.sol"
mRunOnce-x64: [SpybotDeletingE7746] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\vizu.com\acUserData.sol"
mRunOnce-x64: [SpybotDeletingE6412] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\widget.meebo.com\com.quantserve.sol"
mRunOnce-x64: [SpybotDeletingE1815] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\widget.meebo.com\mm.sol"
mRunOnce-x64: [SpybotDeletingE4809] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.blogtalkradio.com\com.quantserve.sol"
mRunOnce-x64: [SpybotDeletingE9210] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.converse.com\Converse_PDP.sol"
mRunOnce-x64: [SpybotDeletingE8269] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.converse.com\s_br.sol"
mRunOnce-x64: [SpybotDeletingE9290] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.elexioinfinity.com\com.jeroenwijering.sol"
mRunOnce-x64: [SpybotDeletingE5700] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.girlscouts.org\analytics.sol"
mRunOnce-x64: [SpybotDeletingE2279] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.growvideos.com\com.nuevolab.players.sol"
mRunOnce-x64: [SpybotDeletingE7965] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.hulu.com\BeaconService.sol"
mRunOnce-x64: [SpybotDeletingE7863] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.icarly.com\com.quantserve.sol"
mRunOnce-x64: [SpybotDeletingE6166] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.laspilitas.com\com.jeroenwijering.sol"
mRunOnce-x64: [SpybotDeletingE8911] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.neutralexistence.com\pap20.sol"
mRunOnce-x64: [SpybotDeletingE1512] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.note-2-self.com\playerData.sol"
mRunOnce-x64: [SpybotDeletingE1668] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.ooyala.com\auth.sol"
mRunOnce-x64: [SpybotDeletingE9059] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.ooyala.com\auth2.sol"
mRunOnce-x64: [SpybotDeletingE7245] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.ooyala.com\perf.sol"
mRunOnce-x64: [SpybotDeletingE8232] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.oracle.com\s_br.sol"
mRunOnce-x64: [SpybotDeletingE950] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.pattersondental.com\analytics.sol"
mRunOnce-x64: [SpybotDeletingE7068] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.paypalobjects.com\paypalLSO.sol"
mRunOnce-x64: [SpybotDeletingE6127] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.paypalobjects.com\ppLsoTest.sol"
mRunOnce-x64: [SpybotDeletingE1079] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.pigeonpresents.com\flashcookie.sol"
mRunOnce-x64: [SpybotDeletingE456] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.playlist.com\ppl6.sol"
mRunOnce-x64: [SpybotDeletingE3658] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.plimus.com\plimus_user_data.sol"
mRunOnce-x64: [SpybotDeletingE1292] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.pollypocket.com\PollyPocketCutantsSite.sol"
mRunOnce-x64: [SpybotDeletingE982] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.refresheverything.com\analytics.sol"
mRunOnce-x64: [SpybotDeletingE2997] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.spotify.com\cookies.sol"
mRunOnce-x64: [SpybotDeletingE2903] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.techsoup.org\com.jeroenwijering.sol"
mRunOnce-x64: [SpybotDeletingE4136] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.tripadvisor.com\TA.sol"
mRunOnce-x64: [SpybotDeletingE1191] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.un.org\com.jeroenwijering.sol"
mRunOnce-x64: [SpybotDeletingE7248] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.usa.philips.com\s_br.sol"
mRunOnce-x64: [SpybotDeletingE9582] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.vistaprint.com\dataStorage.sol"
mRunOnce-x64: [SpybotDeletingE4289] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.youtube.com\soundData.sol"
mRunOnce-x64: [SpybotDeletingE735] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.youtube.com\videostats.sol"
mRunOnce-x64: [SpybotDeletingE3351] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www8.agame.com\analytics.sol"
mRunOnce-x64: [SpybotDeletingE1431] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\x.myspacecdn.com\SpaceMusic.sol"
mRunOnce-x64: [SpybotDeletingE1624] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\iiuu6cCpIMwcNTvxIsVBANBPPrsrXRwCSession_SO.sol"
mRunOnce-x64: [SpybotDeletingE5874] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\iiuu6cCpIMwcNTvxIsVBANBPPrsrXRwCVolatile_SO.sol"
mRunOnce-x64: [SpybotDeletingE1814] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\mL74cUmbN4Li4T3YEg9RFHvg0ah6QNg8Session_SO.sol"
mRunOnce-x64: [SpybotDeletingE8888] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\mL74cUmbN4Li4T3YEg9RFHvg0ah6QNg8Volatile_SO.sol"
mRunOnce-x64: [SpybotDeletingE8952] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\R0P2h5dPoFeTTxiVrsjS5552iy4B8R2zSession_SO.sol"
mRunOnce-x64: [SpybotDeletingE5278] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\R0P2h5dPoFeTTxiVrsjS5552iy4B8R2zVolatile_SO.sol"
mRunOnce-x64: [SpybotDeletingE870] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\tqj1f08wYqJ7Ga3YnGyCkD4zW946wzS6Volatile_SO.sol"
mRunOnce-x64: [SpybotDeletingE6492] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\Y9lqnaJokKg48h9cMyxjOsIg8ZlI4Rh6Session_SO.sol"
mRunOnce-x64: [SpybotDeletingE8564] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\Y9lqnaJokKg48h9cMyxjOsIg8ZlI4Rh6Volatile_SO.sol"
mRunOnce-x64: [SpybotDeletingE9381] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\aa.online-metrix.net\fpc.swf\session.sol"
mRunOnce-x64: [SpybotDeletingE9339] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\app.quickblogcast.com\dev.swf\savedColors.sol"
mRunOnce-x64: [SpybotDeletingE443] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\blogtalkradio.com\lib_123flashchat.swf\123flashchat_user.sol"
mRunOnce-x64: [SpybotDeletingE9105] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\core.videoegg.com\#ve\admanager.sol"
mRunOnce-x64: [SpybotDeletingE2405] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d.scribd.com\ScribdViewer.swf\instance_identifier.sol"
mRunOnce-x64: [SpybotDeletingE1362] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d.scribd.com\ScribdViewer.swf\quantcast.sol"
mRunOnce-x64: [SpybotDeletingE8168] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d.scribd.com\ScribdViewer.swf\scribdSettings.sol"
mRunOnce-x64: [SpybotDeletingE9408] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d1.scribdassets.com\ScribdViewer.swf\instance_identifier.sol"
mRunOnce-x64: [SpybotDeletingE9933] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d1.scribdassets.com\ScribdViewer.swf\quantcast.sol"
mRunOnce-x64: [SpybotDeletingE8511] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\d1.scribdassets.com\ScribdViewer.swf\scribdSettings.sol"
mRunOnce-x64: [SpybotDeletingE4190] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\edit.yahoo.com\tmp.swf\DataStore_.sol"
mRunOnce-x64: [SpybotDeletingE2084] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\na.edit.yahoo.com\tmp.swf\DataStore_.sol"
mRunOnce-x64: [SpybotDeletingE2159] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\p1.soundcloud.com\player.swf\SCPlayer.sol"
mRunOnce-x64: [SpybotDeletingE379] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\picscatter.com\picscatter.swf\FacebookOauthGraph125212377543359.sol"
mRunOnce-x64: [SpybotDeletingE420] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\rmncdn.com\versionDetect3.swf\user.sol"
mRunOnce-x64: [SpybotDeletingE6874] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\skype.com\#ui\preferences.sol"
mRunOnce-x64: [SpybotDeletingE6243] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\skype.com\#user\segment.sol"
mRunOnce-x64: [SpybotDeletingE6526] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.cucinaalessa.com\xspf_player_slim.swf\xspf_player_data.sol"
mRunOnce-x64: [SpybotDeletingE3509] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.jantzen.com\index.swf.swf\CirclecubeVideoPlayer4.sol"
mRunOnce-x64: [SpybotDeletingE9135] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\api.yelp.com\at\at2.swf\ad_targeting.sol"
mRunOnce-x64: [SpybotDeletingE6636] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.static.viddler.com\flash\player750.swf\undefined.sol"
mRunOnce-x64: [SpybotDeletingE5267] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\cdn.static.viddler.com\flash\simple_player_217.swf\undefined.sol"
mRunOnce-x64: [SpybotDeletingE7097] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\core.videoegg.com\#com\videoegg\Demo.sol"
mRunOnce-x64: [SpybotDeletingE6632] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\core.videoegg.com\#com\videoegg\OptOut.sol"
mRunOnce-x64: [SpybotDeletingE8862] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\core.videoegg.com\#com\videoegg\Retargeting.sol"
mRunOnce-x64: [SpybotDeletingE3297] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\core.videoegg.com\#com\videoegg\Tearsheet.sol"
mRunOnce-x64: [SpybotDeletingE7361] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\core.videoegg.com\#com\videoegg\Twig.sol"
mRunOnce-x64: [SpybotDeletingE7210] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\core.videoegg.com\#com\videoegg\UserProvider.sol"
mRunOnce-x64: [SpybotDeletingE745] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\creativity-online.com\video\player.swf\adage-creativity.sol"
mRunOnce-x64: [SpybotDeletingE1384] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\embed.wistia.com\flash\embed_player_v1.1.swf\settings.sol"
mRunOnce-x64: [SpybotDeletingE2057] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\flickr.com\slideShow\slideShow.swf\slideShowMS.sol"
mRunOnce-x64: [SpybotDeletingE6904] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\lads.myspacecdn.com\videos\MSMusicPlayer.swf\MSMediaPlayerClosedClients.sol"
mRunOnce-x64: [SpybotDeletingE9396] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\lads.myspacecdn.com\videos\MSMusicPlayer.swf

\MSMediaPlayerCurrentlyPlaying.sol"
mRunOnce-x64: [SpybotDeletingE5040] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\lads.myspacecdn.com\videos\MSMusicPlayer.swf\preferences.sol"
mRunOnce-x64: [SpybotDeletingE6523] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\lads.myspacecdn.com\videos\MSVideoPlayer.swf\preferences.sol"
mRunOnce-x64: [SpybotDeletingE7041] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\myvidoop.com\swf\vidsec_token.swf

\vidsec_token_899b789128c0e8d841aaeeaa78f175c53d6ccc2f.sol"
mRunOnce-x64: [SpybotDeletingE8371] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\resources.infolinks.com\flash\ic.swf\infolinksData.sol"
mRunOnce-x64: [SpybotDeletingE4916] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\static.trialpay.com\swf\logo.swf\helpData.sol"
mRunOnce-x64: [SpybotDeletingE7109] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\twitter.com\flash\twitter_badge.swf\OdeoPodcastPlayerColors.sol"
mRunOnce-x64: [SpybotDeletingE2326] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.carecredit.com\flash\carecredit_intro_6.swf\skipIntro.sol"
mRunOnce-x64: [SpybotDeletingE8749] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.carestreamhealth.com\flash\carestream.swf\savedText.sol"
mRunOnce-x64: [SpybotDeletingE7467] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.flickr.com\apps\video\video_player_prefs2.sol"
mRunOnce-x64: [SpybotDeletingE4431] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.icarly.com\xml\loader.swf\loaderLogging.sol"
mRunOnce-x64: [SpybotDeletingE1603] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.icarly.com\xml\release.swf\MetadataHistory.sol"
mRunOnce-x64: [SpybotDeletingE49] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.icarly.com\xml\release.swf\playerCounter.sol"
mRunOnce-x64: [SpybotDeletingE6609] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.icarly.com\xml\release.swf\qcDemoVal.sol"
mRunOnce-x64: [SpybotDeletingE4991] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.icarly.com\xml\release.swf\skytide.sol"
mRunOnce-x64: [SpybotDeletingE6726] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.icarly.com\xml\release.swf\userPrefs4.sol"
mRunOnce-x64: [SpybotDeletingE3599] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\www.myfoxla.com\video\videoplayer.swf\savedBitRate.sol"
mRunOnce-x64: [SpybotDeletingE7864] "C:\Program Files (x86)\Spybot - Search & Destroy

2\SDDelFile.exe" "C:\Users\Susan\AppData\Roaming\Macromedia\Flash Player\#SharedObjects

\A87PSM4C\zopim.com\swf\ZClientController.swf\ZopConfig.sol"
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Susan\AppData\Roaming\Mozilla\Firefox\Profiles\ucu8f3zf.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-

8&q=
FF - prefs.js: browser.search.selectedEngine - Google Search
FF - prefs.js: browser.startup.homepage - about:blank
FF - prefs.js: keyword.URL - hxxp://www.google.com/search?ie=UTF-8&oe=UTF-8&q=
FF - component: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn

\components\WCFirefoxExtn.dll
FF - plugin: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.57\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.65\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\nphssb.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Users\Susan\AppData\Local\Google\Update\1.3.21.57\npGoogleUpdate3.dll
FF - plugin: C:\Users\Susan\AppData\Roaming\Mozilla\Firefox\Profiles\ucu8f3zf.default

\extensions\LogMeInClient@logmein.com\plugins\npRACtrl.dll
FF - plugin: C:\Users\Susan\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll
FF - plugin: C:\Users\Susan\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
.
---- FIREFOX POLICIES ----
FF - user.js: yahoo.homepage.dontask - true
============= SERVICES / DRIVERS ===============
.
R0 PxHlpa64;PxHlpa64;C:\Windows\system32\Drivers\PxHlpa64.sys --> C:\Windows

\system32\Drivers\PxHlpa64.sys [?]
R0 pxscan;pxscan;C:\Windows\system32\drivers\pxscan.sys --> C:\Windows\system32\drivers

\pxscan.sys [?]
R1 aswSnx;aswSnx;C:\Windows\system32\drivers\aswSnx.sys --> C:\Windows\system32\drivers

\aswSnx.sys [?]
R1 aswSP;aswSP;C:\Windows\system32\drivers\aswSP.sys --> C:\Windows\system32\drivers

\aswSP.sys [?]
R1 ElRawDisk;ElRawDisk;\??\C:\Windows\system32\drivers\ElRawDsk.sys --> C:\Windows

\system32\drivers\ElRawDsk.sys [?]
R1 pxrts;pxrts;C:\Windows\system32\drivers\pxrts.sys --> C:\Windows\system32\drivers\pxrts.sys

[?]
R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys [2011-7-22

14928]
R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\saskutil64.sys [2011-7-12

12368]
R1 SDHookDriver;Spybot-S&D 2 Hook Driver;C:\Program Files (x86)\Spybot - Search & Destroy

2\SDHookDrv64.sys [2011-8-3 48888]
R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCore64.exe [2011-7-

18 146816]
R2 aswFsBlk;aswFsBlk;C:\Windows\system32\drivers\aswFsBlk.sys --> C:\Windows

\system32\drivers\aswFsBlk.sys [?]
R2 aswMonFlt;aswMonFlt;\??\C:\Windows\system32\drivers\aswMonFlt.sys --> C:\Windows

\system32\drivers\aswMonFlt.sys [?]
R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2011-8-3

42184]
R2 cbVSCService;Cobian Backup 10 Volume Shadow Copy service;C:\Program Files (x86)\Cobian

Backup 10\cbVSCService.exe [2011-8-4 67584]
R2 CSIScanner;CSIScanner;C:\Program Files\Prevx\prevx.exe [2011-5-9 6746280]
R2 DockLoginService;Dock Login Service;C:\Program Files\Dell\DellDock\DockLogin.exe [2009-6

-9 155648]
R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel®

Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-9-1 13336]
R2 ioloSystemService;iolo System Service;C:\Program Files (x86)\iolo\Common\Lib

\ioloServiceManager.exe [2011-7-22 722616]
R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware

\mbamservice.exe [2011-5-1 366640]
R2 MemeoBackgroundService;MemeoBackgroundService;C:\Program Files (x86)\WD\WD

Anywhere Backup\MemeoBackgroundService.exe [2009-11-12 25824]
R2 SDHookService;Spybot-S&D 2 Hooks Service;C:\Program Files (x86)\Spybot - Search &

Destroy 2\SDHookSvc.exe [2011-8-3 130976]
R2 SDScannerService;Spybot-S&D 2 Scanner Service;C:\Program Files (x86)\Spybot - Search &

Destroy 2\SDFSSvc.exe [2011-8-3 1060272]
R2 SDUpdateService;Spybot-S&D 2 Updating Service;C:\Program Files (x86)\Spybot - Search &

Destroy 2\SDUpdSvc.exe [2011-8-3 909224]
R2 WDBtnMgrSvc.exe;WD Drive Manager Service;C:\Program Files\Western Digital\WD Drive

Manager\WDBtnMgrSvc.exe [2008-7-24 118272]
R3 CtClsFlt;Creative Camera Class Upper Filter Driver;C:\Windows\system32\DRIVERS

\CtClsFlt.sys --> C:\Windows\system32\DRIVERS\CtClsFlt.sys [?]
R3 HECIx64;Intel® Management Engine Interface;C:\Windows\system32\DRIVERS

\HECIx64.sys --> C:\Windows\system32\DRIVERS\HECIx64.sys [?]
R3 IntcDAud;Intel® Display Audio;C:\Windows\system32\DRIVERS\IntcDAud.sys --> C:

\Windows\system32\DRIVERS\IntcDAud.sys [?]
R3 k57nd60a;Broadcom NetLink ™ Gigabit Ethernet - NDIS 6.0;C:\Windows

\system32\DRIVERS\k57nd60a.sys --> C:\Windows\system32\DRIVERS\k57nd60a.sys [?]
R3 MBAMProtector;MBAMProtector;\??\C:\Windows\system32\drivers\mbam.sys --> C:

\Windows\system32\drivers\mbam.sys [?]
R3 OA002Afx;Provides a software interface to control audio effects of OA002 camera.;\??\C:

\Windows\system32\Drivers\OA002Afx.sys --> C:\Windows\system32\Drivers\OA002Afx.sys [?]
R3 OA002Ufd;Creative Camera OA002 Upper Filter Driver;C:\Windows\system32\DRIVERS

\OA002Ufd.sys --> C:\Windows\system32\DRIVERS\OA002Ufd.sys [?]
R3 OA002Vid;Creative Camera OA002 Function Driver;C:\Windows\system32\DRIVERS

\OA002Vid.sys --> C:\Windows\system32\DRIVERS\OA002Vid.sys [?]
R3 pxkbf;pxkbf;C:\Windows\system32\drivers\pxkbf.sys --> C:\Windows\system32\drivers

\pxkbf.sys [?]
S1 vflt;Shrew Soft Lightweight Filter;C:\Windows\system32\DRIVERS\vfilter.sys --> C:\Windows

\system32\DRIVERS\vfilter.sys [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:

\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:

\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update

\GoogleUpdate.exe [2010-9-7 135664]
S2 SDWSCService;Spybot-S&D 2 Security Center Service;C:\Program Files (x86)\Spybot - Search

& Destroy 2\SDWSCSvc.exe [2011-8-3 169624]
S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update

\GoogleUpdate.exe [2010-9-7 135664]
S3 ioloFileInfoList;iolo FileInfoList Service;C:\Program Files (x86)\iolo\Common\Lib

\ioloServiceManager.exe [2011-7-22 722616]
S3 PMBDeviceInfoProvider;PMBDeviceInfoProvider;C:\Program Files (x86)\Sony\PMB

\PMBDeviceInfoProvider.exe [2009-10-24 360224]
S3 RoxMediaDB10;RoxMediaDB10;C:\Program Files (x86)\Common Files\Roxio Shared

\10.0\SharedCom\RoxMediaDB10.exe [2009-6-26 1124848]
S3 StorSvc;Storage Service;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

[2009-7-13 20992]
S3 SwitchBoard;Adobe SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard

\SwitchBoard.exe [2010-2-19 517096]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers

\tsusbflt.sys [?]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys --> C:

\Windows\system32\Drivers\usbaapl64.sys [?]
S3 vna_ap;Check Point Virtual Network Adapter - Apollo;C:\Windows\system32\DRIVERS

\vnaap.sys --> C:\Windows\system32\DRIVERS\vnaap.sys [?]
S3 vnet;Shrew Soft Virtual Adapter;C:\Windows\system32\DRIVERS\virtualnet.sys --> C:

\Windows\system32\DRIVERS\virtualnet.sys [?]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat

\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
S3 WSDPrintDevice;WSD Print Support via UMB;C:\Windows\system32\DRIVERS

\WSDPrint.sys --> C:\Windows\system32\DRIVERS\WSDPrint.sys [?]
S3 WSDScan;WSD Scan Support via UMB;C:\Windows\system32\DRIVERS\WSDScan.sys -->

C:\Windows\system32\DRIVERS\WSDScan.sys [?]
.
=============== File Associations ===============
.
JSEFile=NOTEPAD.EXE %1
VBEFile=NOTEPAD.EXE %1
VBSFile=NOTEPAD.EXE %1
.
=============== Created Last 30 ================
.
2011-08-04 13:33:12 -------- d-----w- C:\Users\Susan\AppData\Local\Safe mirror
2011-08-04 13:32:36 -------- d-----w- C:\Program Files (x86)\Cobian Backup 10
2011-08-04 10:14:08 -------- d-----w- C:\Program Files (x86)\Common Files\Intel

Corporation
2011-08-04 05:57:24 17272 ----a-w- C:\Windows\System32\sdnclean64.exe
2011-08-04 05:57:22 -------- d-----w- C:\Program Files (x86)\Spybot - Search & Destroy 2
2011-08-04 05:51:54 42147760 ----a-w- C:\Users\Susan\spybotsd-2.0.4-beta2.exe
2011-08-04 05:16:23 8578896 ----a-w- C:\ProgramData\Microsoft\Windows Defender

\Definition Updates\{72CE9451-F1B5-4DCC-872E-1400E3C5B74A}\mpengine.dll
2011-08-04 05:16:22 -------- d-----w- C:\8630833696beaed299eabbaa9502ec
2011-08-04 04:51:18 -------- d-----w- C:\Users\Susan\AppData\Roaming

\SUPERAntiSpyware.com
2011-08-04 04:50:37 -------- d-----w- C:\ProgramData\!SASCORE
2011-08-03 20:26:33 -------- d-----w- C:\Program Files (x86)\ShoppingCartElite
2011-07-22 18:45:13 -------- d-----w- C:\Program Files\iPod
2011-07-22 18:45:12 -------- d-----w- C:\Program Files\iTunes
2011-07-22 18:45:12 -------- d-----w- C:\Program Files (x86)\iTunes
2011-07-22 18:43:43 -------- d-----w- C:\Program Files\Bonjour
2011-07-22 18:43:43 -------- d-----w- C:\Program Files (x86)\Bonjour
2011-07-22 14:33:21 2141832 ----a-w- C:\Windows\System32\Incinerator64.dll
2011-07-21 19:23:56 -------- d-----w- C:\Users\Susan\AppData\Roaming\Spotify
2011-07-21 19:23:56 -------- d-----w- C:\Users\Susan\AppData\Local\Spotify
2011-07-21 19:23:36 -------- d-----w- C:\Program Files (x86)\Spotify
2011-07-21 19:23:05 5340600 ----a-w- C:\Users\Susan\Spotify Installer.exe
2011-07-21 16:06:04 -------- d-----w- C:\Users\Susan\Sample
2011-07-21 16:06:04 -------- d-----w- C:\Users\Susan\MultimediaSample
2011-07-13 16:19:41 -------- d-----w- C:\Users\Susan\AppData\Roaming

\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2011-07-12 18:34:00 96104 ----a-w- C:\Windows\System32\dns-sd.exe
2011-07-12 18:34:00 85864 ----a-w- C:\Windows\System32\dnssd.dll
2011-07-12 18:34:00 61288 ----a-w- C:\Windows\System32\jdns_sd.dll
2011-07-12 18:34:00 212840 ----a-w- C:\Windows\System32\dnssdX.dll
2011-07-12 18:20:54 83816 ----a-w- C:\Windows\SysWow64\dns-sd.exe
2011-07-12 18:20:54 73064 ----a-w- C:\Windows\SysWow64\dnssd.dll
2011-07-12 18:20:54 50536 ----a-w- C:\Windows\SysWow64\jdns_sd.dll
2011-07-12 18:20:54 178536 ----a-w- C:\Windows\SysWow64\dnssdX.dll
2011-07-12 17:41:02 -------- d-----w- C:\Users\Susan\AppData\Local\LogMeIn
2011-07-12 17:41:02 -------- d-----w- C:\ProgramData\LogMeIn
.
==================== Find3M ====================
.
2011-07-20 17:58:17 72080 ----a-w- C:\Users\Susan\g2mdlhlpx.exe
2011-07-19 23:25:34 14848 ----a-w- C:\Windows\System32\smrgdf.exe
2011-07-19 23:25:28 45568 ----a-w- C:\Windows\System32\iolobtdfg.exe
2011-07-19 22:42:44 2083464 ----a-w- C:\Windows\SysWow64\Incinerator32.dll
2011-07-07 02:52:42 41272 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
2011-07-07 02:52:42 25912 ----a-w- C:\Windows\System32\drivers\mbam.sys
2011-07-04 11:43:53 40112 ----a-w- C:\Windows\avastSS.scr
2011-07-04 11:36:56 600920 ----a-w- C:\Windows\System32\drivers\aswSnx.sys
2011-07-04 11:32:24 64856 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys
2011-06-30 12:32:13 404640 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2011-06-11 03:07:25 3137536 ----a-w- C:\Windows\System32\win32k.sys
2011-06-06 19:55:34 53656 ----a-w- C:\Windows\System32\AdobePDF.dll
2011-06-06 19:55:32 24984 ----a-w- C:\Windows\System32\AdobePDFUI.dll
2011-06-03 06:57:45 362496 ----a-w- C:\Windows\System32\wow64win.dll
2011-06-03 06:57:45 243200 ----a-w- C:\Windows\System32\wow64.dll
2011-06-03 06:57:45 13312 ----a-w- C:\Windows\System32\wow64cpu.dll
2011-06-03 06:57:44 214528 ----a-w- C:\Windows\System32\winsrv.dll
2011-06-03 06:57:38 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
2011-06-03 06:56:38 421888 ----a-w- C:\Windows\System32\KernelBase.dll
2011-06-03 06:53:33 338944 ----a-w- C:\Windows\System32\conhost.exe
2011-06-03 06:00:53 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2011-06-03 05:57:52 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2011-06-03 05:57:33 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2011-06-03 05:56:12 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2011-06-03 05:56:11 272384 ----a-w- C:\Windows\SysWow64\KernelBase.dll
2011-06-03 03:53:31 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2011-06-03 03:53:31 2048 ----a-w- C:\Windows\SysWow64\user.exe
2011-06-03 03:48:32 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-

1-0.dll
2011-06-03 03:48:31 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-

l1-1-0.dll
2011-06-03 03:48:31 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-

threadpool-l1-1-0.dll
2011-06-03 03:48:31 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1

-0.dll
2011-05-28 03:30:09 1638912 ----a-w- C:\Windows\System32\mshtml.tlb
2011-05-28 02:53:58 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2011-05-24 11:42:55 404480 ----a-w- C:\Windows\System32\umpnpmgr.dll
2011-05-24 10:40:05 64512 ----a-w- C:\Windows\SysWow64\devobj.dll
2011-05-24 10:40:05 44544 ----a-w- C:\Windows\SysWow64\devrtl.dll
2011-05-24 10:39:38 145920 ----a-w- C:\Windows\SysWow64\cfgmgr32.dll
2011-05-24 10:37:54 252928 ----a-w- C:\Windows\SysWow64\drvinst.exe
2011-05-19 22:41:31 36864 ----a-w- C:\nphssb.dll
2011-05-19 22:41:26 45056 ----a-w- C:\Windows\SysWow64\HSSICore.dll
2011-05-19 22:41:26 40960 ----a-w- C:\Windows\SysWow64\HS_live.ocx
2011-05-19 22:41:26 184320 ----a-w- C:\Windows\SysWow64\OESICore.dll
2011-05-19 22:41:16 98136 ----a-w- C:\Windows\gzip.exe
2011-05-10 15:06:08 51712 ----a-w- C:\Windows\System32\drivers\usbaapl64.sys
2011-05-10 15:06:08 4517664 ----a-w- C:\Windows\System32\usbaaplrc.dll
2011-05-10 03:54:25 65736 ----a-w- C:\Windows\System32\drivers\pxrts.sys
2011-05-10 03:54:25 62976 ----a-w- C:\Windows\SysWow64\PxSecure.dll
2011-05-10 03:54:25 36384 ----a-w- C:\Windows\System32\drivers\pxscan.sys
2011-05-10 03:54:25 24024 ----a-w- C:\Windows\System32\drivers\pxkbf.sys
2010-09-14 20:41:42 98304 ----a-w- C:\Program Files (x86)\nssdbm3.dll
2010-09-14 20:41:42 249856 ----a-w- C:\Program Files (x86)\freebl3.dll
2010-09-14 20:41:42 155648 ----a-w- C:\Program Files (x86)\softokn3.dll
.
============= FINISH: 7:04:39.81 ===============

Edited by suzbinky, 04 August 2011 - 09:17 AM.


BC AdBot (Login to Remove)

 


#2 suzbinky

suzbinky
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:11:53 PM

Posted 07 August 2011 - 09:59 PM

We're back from the weekend if you wanted to help us tackle this. We're figuring that due to lack of response, we may be spending Monday Tuesday stripping the machine down. We're open to a do-over, but concerned that if we rely on the back ups that seemed to stop the day before this problem started that we may be bringing it back into our new clean computer. To avoid that, should we just avoid bringing in the system files and only bring over, photos, my documents, videos, fonts and the like? Anxiously awaiting your advice. Thank you.

Susan

#3 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:02:53 AM

Posted 10 August 2011 - 10:26 PM

Hello and Welcome to the forums!

My name is Gringo and I'll be glad to help you with your computer problems.

Somethings to remember while we are working together.

  • Do not run any other tool untill instructed to do so!
  • Please Do not Attach logs or put in code boxes.
  • Tell me about any problems that have occurred during the fix.
  • Tell me of any other symptoms you may be having as these can help also.
  • Do not run anything while running a fix.

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

Click on the Watch Topic Button and select Immediate Notification and click on proceed, this will help you to get notified faster when I have replied and make the cleaning process faster.

In order for me to see the status of the infection I will need a new set of logs to start with.

Please print out or make a copy in notpad of any instructions given, as sometimes it is necessary to go offline and you will lose access to them.

DeFogger:

  • Please download DeFogger to your desktop.

    Double click DeFogger to run the tool.
  • The application window will appear
  • Click the Disable button to disable your CD Emulation drivers
  • Click Yes to continue
  • A 'Finished!' message will appear
  • Click OK
  • DeFogger may ask you to reboot the machine, if it does - click OK
Do not re-enable these drivers until otherwise instructed.

Download DDS:

  • Please download DDS by sUBs from one of the links below and save it to your desktop:

    Posted Image
    Download DDS and save it to your desktop

    Link1
    Link2
    Link3

    Please disable any anti-malware program that will block scripts from running before running DDS.

    • Double-Click on dds.scr and a command window will appear. This is normal.
    • Shortly after two logs will appear:
    • DDS.txt
    • Attach.txt
  • A window will open instructing you save & post the logs
  • Save the logs to a convenient place such as your desktop
  • Copy the contents of both logs & post in your next reply

information and logs:

  • In your next post I need the following

  • .logs from DDS
  • let me know of any problems you may have had

Gringo

I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University

#4 suzbinky

suzbinky
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:11:53 PM

Posted 10 August 2011 - 11:50 PM

Hello Gringo,

Thank you for your note. We realize you all volunteer, but since this is my livelihood, we had to keep trying. I'm glad you asked for a current log. We have attempted to remove/uninstall Spotbot and were unable to do so. We are also unable to update or uninstall Kaspersky Pure. We downloaded that yesterday in an attempt to have the latest detectives on the case to find this nasty thing.

The popup alerts we continue to get have to do wit: SDdelFile.exe *32, SDTray.exe *32, On-Access Hooks: working.
2 instances of runonce - one is three times the size of the other and seems to lock up the entire computer. Have to shut off through task manager > services.

All Adobe products will NOT open and I'm given what seems to be a bogus alert for each one that I need to uninstall and reinstall.
Again, when this got really bad last week, it was when I right clicked on some link on a typical website and then some installer started to run for Adobe Acrobat and languages. It was acting a bit odd before then, but that REALLY did it.

Here is the DDS.txt Log:


.
DDS (Ver_2011-06-23.01) - NTFSAMD64
Internet Explorer: 8.0.7601.17514 BrowserJavaVersion: 1.6.0_24
Run by Susan at 21:42:46 on 2011-08-10
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.12247.8985 [GMT -7:00]
.
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Program Files\Dell\DellDock\DockLogin.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\nvvsvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\APC\APC PowerChute Personal Edition\mainserv.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\Bonjour\mDNSResponder.exe
C:\Program Files (x86)\Cobian Backup 10\cbVSCService.exe
C:\Program Files (x86)\iolo\Common\Lib\ioloServiceManager.exe
C:\Program Files (x86)\WD\WD Anywhere Backup\MemeoBackgroundService.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrSvc.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\WUDFHost.exe
C:\Windows\System32\rundll32.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrUI.exe
C:\Program Files (x86)\Multimedia Card Reader(9106)\ShwiconXP9106.exe
C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe
C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files (x86)\APC\APC PowerChute Personal Edition\apcsystray.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe
C:\Windows\SysWOW64\msiexec.exe
C:\Windows\system32\msiexec.exe
C:\Windows\syswow64\MsiExec.exe
C:\Windows\syswow64\MsiExec.exe
C:\Windows\syswow64\MsiExec.exe
C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\Drivers\DrvInstaller.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\svchost.exe -k SDRSVC
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\system32\notepad.exe
C:\Windows\SysWOW64\ctfmon.exe
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\SysWOW64\NOTEPAD.EXE
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uSearch Page = hxxp://www.google.com
uStart Page = about:blank
uSearch Bar = hxxp://www.google.com/ie
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/keyword/%s
mWinlogon: Userinit=userinit.exe,
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Canon Easy-WebPrint EX BHO: {3785d0ad-bfff-47f6-bf5b-a587c162fed9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
BHO: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: {9D425283-D487-4337-BAB6-AB8354A81457} - No File
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO: Adobe PDF Conversion Toolbar Helper: {ae7cd045-e861-484f-8273-0445ee161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
BHO: Skype Plug-In: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
BHO: SmartSelect Class: {f4971ee7-daa0-4053-9964-665d8ee6a077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
BHO: {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - No File
TB: Canon Easy-WebPrint EX: {759d9886-0c6f-4498-bab6-4a5f47c6c72f} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
TB: {9D425283-D487-4337-BAB6-AB8354A81457} - No File
TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
TB: {43989788-13D1-4BE7-8404-DB58166E06CD} - No File
TB: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
TB: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
EB: Canon Easy-WebPrint EX: {21347690-ec41-4f9a-8887-1f4aee672439} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
uRun: [AdobeBridge]
uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
uRun: [Google Update] "C:\Users\Susan\AppData\Local\Google\Update\GoogleUpdate.exe" /c
mRun: [WD Drive Manager] C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrUI.exe
mRun: [WD Anywhere Backup] C:\Program Files (x86)\WD\WD Anywhere Backup\MemeoLauncher2.exe --silent
mRun: [THX Audio Control Panel] "C:\Program Files (x86)\Creative\THX TruStudio PC\THXAudioCP\THXAudio.exe" /r
mRun: [ShwiconXP9106] C:\Program Files (x86)\Multimedia Card Reader(9106)\ShwiconXP9106.exe
mRun: [IAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
mRun: [Display] C:\Program Files (x86)\APC\APC PowerChute Personal Edition\DataCollectionLauncher.exe
mRun: [Dell Webcam Central] "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2
mRun: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
mRun: [<NO NAME>]
mRun: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe"
mRun: [iolo Startup] "C:\Program Files (x86)\iolo\Common\Lib\ioloLManager.exe"
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE\avp.exe"
mRun: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
mRunOnce: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\APCUPS~1.LNK - C:\Program Files (x86)\APC\APC PowerChute Personal Edition\Display.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MIF5BA~1\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {43989788-13D1-4BE7-8404-DB58166E06CD} - {43989788-13D1-4BE7-8404-DB58166E06CD}
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MIF5BA~1\Office12\REFIEBAR.DLL
Trusted Zone: linkedin.com
DPF: {49312E18-AA92-4CC2-BB97-55DEA7BCADD6} - hxxp://support.dell.com/systemprofiler/SysProExe.CAB
DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} - hxxp://ccfiles.creative.com/Web/softwareupdate/su/ocx/15101/CTSUEng.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} - hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15116/CTPID.cab
TCP: DhcpNameServer = 192.168.1.1
TCP: Interfaces\{1690EB6B-8848-4541-B4A3-0CC78E102605} : DhcpNameServer = 192.168.1.1
Handler: intu-help-qb2 - {84D77A00-41B5-4b8b-8ADF-86486D72E749} - C:\Program Files (x86)\Intuit\QuickBooks 2009\HelpAsyncPluggableProtocol.dll
Handler: qbwc - {FC598A64-626C-4447-85B8-53150405FD57} - C:\Windows\System32\mscoree.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: Canon Easy-WebPrint EX BHO: {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
BHO-X64: Canon Easy-WebPrint EX BHO - No File
BHO-X64: Search Helper: {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
BHO-X64: Search Helper - No File
BHO-X64: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: {9D425283-D487-4337-BAB6-AB8354A81457} - No File
BHO-X64: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO-X64: Adobe PDF Conversion Toolbar Helper: {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
BHO-X64: Skype Plug-In: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO-X64: SkypeIEPluginBHO - No File
BHO-X64: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll
BHO-X64: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
BHO-X64: SmartSelect Class: {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
BHO-X64: SmartSelect - No File
BHO-X64: {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - No File
BHO-X64: TBSB03657 - No File
TB-X64: Canon Easy-WebPrint EX: {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
TB-X64: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
TB-X64: {9D425283-D487-4337-BAB6-AB8354A81457} - No File
TB-X64: Adobe PDF: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
TB-X64: {43989788-13D1-4BE7-8404-DB58166E06CD} - No File
TB-X64: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
TB-X64: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
EB-X64: {21347690-EC41-4F9A-8887-1F4AEE672439} - No File
mRun-x64: [WD Drive Manager] C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrUI.exe
mRun-x64: [WD Anywhere Backup] C:\Program Files (x86)\WD\WD Anywhere Backup\MemeoLauncher2.exe --silent
mRun-x64: [THX Audio Control Panel] "C:\Program Files (x86)\Creative\THX TruStudio PC\THXAudioCP\THXAudio.exe" /r
mRun-x64: [ShwiconXP9106] C:\Program Files (x86)\Multimedia Card Reader(9106)\ShwiconXP9106.exe
mRun-x64: [IAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
mRun-x64: [Display] C:\Program Files (x86)\APC\APC PowerChute Personal Edition\DataCollectionLauncher.exe
mRun-x64: [Dell Webcam Central] "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2
mRun-x64: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
mRun-x64: [(Default)]
mRun-x64: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe"
mRun-x64: [iolo Startup] "C:\Program Files (x86)\iolo\Common\Lib\ioloLManager.exe"
mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun-x64: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE\avp.exe"
mRun-x64: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
mRunOnce-x64: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
Hosts: 127.0.0.1 www.spywareinfo.com
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Susan\AppData\Roaming\Mozilla\Firefox\Profiles\ucu8f3zf.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
FF - prefs.js: browser.search.selectedEngine - Google Search
FF - prefs.js: browser.startup.homepage - about:blank
FF - prefs.js: keyword.URL - hxxp://www.google.com/search?ie=UTF-8&oe=UTF-8&q=
FF - component: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn\components\WCFirefoxExtn.dll
FF - plugin: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.57\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.65\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\nphssb.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Users\Susan\AppData\Local\Google\Update\1.3.21.65\npGoogleUpdate3.dll
FF - plugin: C:\Users\Susan\AppData\Roaming\Mozilla\Firefox\Profiles\ucu8f3zf.default\extensions\LogMeInClient@logmein.com\plugins\npRACtrl.dll
FF - plugin: C:\Users\Susan\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll
FF - plugin: C:\Users\Susan\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
.
---- FIREFOX POLICIES ----
FF - user.js: yahoo.homepage.dontask - true
============= SERVICES / DRIVERS ===============
.
R0 PxHlpa64;PxHlpa64;C:\Windows\system32\Drivers\PxHlpa64.sys --> C:\Windows\system32\Drivers\PxHlpa64.sys [?]
R1 aswSP;aswSP;C:\Windows\system32\drivers\aswSP.sys --> C:\Windows\system32\drivers\aswSP.sys [?]
R1 ElRawDisk;ElRawDisk;\??\C:\Windows\system32\drivers\ElRawDsk.sys --> C:\Windows\system32\drivers\ElRawDsk.sys [?]
R2 aswFsBlk;aswFsBlk;C:\Windows\system32\drivers\aswFsBlk.sys --> C:\Windows\system32\drivers\aswFsBlk.sys [?]
R2 aswMonFlt;aswMonFlt;\??\C:\Windows\system32\drivers\aswMonFlt.sys --> C:\Windows\system32\drivers\aswMonFlt.sys [?]
R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2011-8-10 42184]
R2 cbVSCService;Cobian Backup 10 Volume Shadow Copy service;C:\Program Files (x86)\Cobian Backup 10\cbVSCService.exe [2011-8-4 67584]
R2 DockLoginService;Dock Login Service;C:\Program Files\Dell\DellDock\DockLogin.exe [2009-6-9 155648]
R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-9-1 13336]
R2 ioloSystemService;iolo System Service;C:\Program Files (x86)\iolo\Common\Lib\ioloServiceManager.exe [2011-7-22 722616]
R2 MemeoBackgroundService;MemeoBackgroundService;C:\Program Files (x86)\WD\WD Anywhere Backup\MemeoBackgroundService.exe [2009-11-12 25824]
R2 WDBtnMgrSvc.exe;WD Drive Manager Service;C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrSvc.exe [2008-7-24 118272]
R3 CtClsFlt;Creative Camera Class Upper Filter Driver;C:\Windows\system32\DRIVERS\CtClsFlt.sys --> C:\Windows\system32\DRIVERS\CtClsFlt.sys [?]
R3 HECIx64;Intel® Management Engine Interface;C:\Windows\system32\DRIVERS\HECIx64.sys --> C:\Windows\system32\DRIVERS\HECIx64.sys [?]
R3 IntcDAud;Intel® Display Audio;C:\Windows\system32\DRIVERS\IntcDAud.sys --> C:\Windows\system32\DRIVERS\IntcDAud.sys [?]
R3 k57nd60a;Broadcom NetLink ™ Gigabit Ethernet - NDIS 6.0;C:\Windows\system32\DRIVERS\k57nd60a.sys --> C:\Windows\system32\DRIVERS\k57nd60a.sys [?]
R3 OA002Afx;Provides a software interface to control audio effects of OA002 camera.;\??\C:\Windows\system32\Drivers\OA002Afx.sys --> C:\Windows\system32\Drivers\OA002Afx.sys [?]
R3 OA002Ufd;Creative Camera OA002 Upper Filter Driver;C:\Windows\system32\DRIVERS\OA002Ufd.sys --> C:\Windows\system32\DRIVERS\OA002Ufd.sys [?]
R3 OA002Vid;Creative Camera OA002 Function Driver;C:\Windows\system32\DRIVERS\OA002Vid.sys --> C:\Windows\system32\DRIVERS\OA002Vid.sys [?]
S1 aswSnx;aswSnx;C:\Windows\system32\drivers\aswSnx.sys --> C:\Windows\system32\drivers\aswSnx.sys [?]
S1 vflt;Shrew Soft Lightweight Filter;C:\Windows\system32\DRIVERS\vfilter.sys --> C:\Windows\system32\DRIVERS\vfilter.sys [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-9-7 135664]
S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-9-7 135664]
S3 ioloFileInfoList;iolo FileInfoList Service;C:\Program Files (x86)\iolo\Common\Lib\ioloServiceManager.exe [2011-7-22 722616]
S3 PMBDeviceInfoProvider;PMBDeviceInfoProvider;C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe [2009-10-24 360224]
S3 RoxMediaDB10;RoxMediaDB10;C:\Program Files (x86)\Common Files\Roxio Shared\10.0\SharedCom\RoxMediaDB10.exe [2009-6-26 1124848]
S3 StorSvc;Storage Service;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 20992]
S3 SwitchBoard;Adobe SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys --> C:\Windows\system32\Drivers\usbaapl64.sys [?]
S3 vna_ap;Check Point Virtual Network Adapter - Apollo;C:\Windows\system32\DRIVERS\vnaap.sys --> C:\Windows\system32\DRIVERS\vnaap.sys [?]
S3 vnet;Shrew Soft Virtual Adapter;C:\Windows\system32\DRIVERS\virtualnet.sys --> C:\Windows\system32\DRIVERS\virtualnet.sys [?]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
S3 WSDPrintDevice;WSD Print Support via UMB;C:\Windows\system32\DRIVERS\WSDPrint.sys --> C:\Windows\system32\DRIVERS\WSDPrint.sys [?]
S3 WSDScan;WSD Scan Support via UMB;C:\Windows\system32\DRIVERS\WSDScan.sys --> C:\Windows\system32\DRIVERS\WSDScan.sys [?]
.
=============== File Associations ===============
.
JSEFile=NOTEPAD.EXE %1
VBEFile=NOTEPAD.EXE %1
VBSFile=NOTEPAD.EXE %1
.
=============== Created Last 30 ================
.
2011-08-10 22:05:09 64856 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys
2011-08-10 22:05:09 600920 ----a-w- C:\Windows\System32\drivers\aswSnx.sys
2011-08-10 22:04:50 40112 ----a-w- C:\Windows\avastSS.scr
2011-08-10 18:11:45 41272 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
2011-08-10 04:40:20 -------- d-sh--w- C:\Windows\SysWow64\%APPDATA%
2011-08-10 04:31:31 -------- d-sh--w- C:\Windows\System32\%APPDATA%
2011-08-10 04:16:29 8578896 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{92131B8F-942C-4647-9DE0-76305C5B724F}\mpengine.dll
2011-08-09 04:55:34 66104 ----a-w- C:\Windows\System32\drivers\CSVirtualDiskDrv.sys
2011-08-09 04:55:33 85048 ----a-w- C:\Windows\System32\drivers\CSCrySec.sys
2011-08-09 04:55:01 -------- d-----w- C:\Program Files (x86)\Common Files\InfoWatch
2011-08-09 04:55:00 -------- d-----w- C:\ProgramData\Kaspersky Lab
2011-08-09 04:55:00 -------- d-----w- C:\Program Files (x86)\Kaspersky Lab
2011-08-09 04:53:43 -------- d-----w- C:\ProgramData\Kaspersky Lab Setup Files
2011-08-04 13:33:12 -------- d-----w- C:\Users\Susan\AppData\Local\Safe mirror
2011-08-04 13:32:36 -------- d-----w- C:\Program Files (x86)\Cobian Backup 10
2011-08-04 10:14:08 -------- d-----w- C:\Program Files (x86)\Common Files\Intel Corporation
2011-08-04 05:57:22 -------- d-----w- C:\Program Files (x86)\Spybot - Search & Destroy 2
2011-08-04 05:51:54 42147760 ----a-w- C:\Users\Susan\spybotsd-2.0.4-beta2.exe
2011-08-04 05:16:22 -------- d-----w- C:\8630833696beaed299eabbaa9502ec
2011-08-03 20:26:33 -------- d-----w- C:\Program Files (x86)\ShoppingCartElite
2011-07-22 18:45:13 -------- d-----w- C:\Program Files\iPod
2011-07-22 18:45:12 -------- d-----w- C:\Program Files\iTunes
2011-07-22 18:45:12 -------- d-----w- C:\Program Files (x86)\iTunes
2011-07-22 18:43:43 -------- d-----w- C:\Program Files\Bonjour
2011-07-22 18:43:43 -------- d-----w- C:\Program Files (x86)\Bonjour
2011-07-22 14:33:21 2141832 ----a-w- C:\Windows\System32\Incinerator64.dll
2011-07-22 05:04:37 98816 ----a-w- C:\Windows\System32\drivers\usbccgp.sys
2011-07-22 05:04:37 7936 ----a-w- C:\Windows\System32\drivers\usbd.sys
2011-07-22 05:04:37 52736 ----a-w- C:\Windows\System32\drivers\usbehci.sys
2011-07-22 05:04:37 343040 ----a-w- C:\Windows\System32\drivers\usbhub.sys
2011-07-22 05:04:37 325120 ----a-w- C:\Windows\System32\drivers\usbport.sys
2011-07-22 05:04:37 30720 ----a-w- C:\Windows\System32\drivers\usbuhci.sys
2011-07-22 05:04:37 25600 ----a-w- C:\Windows\System32\drivers\usbohci.sys
2011-07-22 05:04:24 3137536 ----a-w- C:\Windows\System32\win32k.sys
2011-07-21 19:23:56 -------- d-----w- C:\Users\Susan\AppData\Roaming\Spotify
2011-07-21 19:23:56 -------- d-----w- C:\Users\Susan\AppData\Local\Spotify
2011-07-21 19:23:36 -------- d-----w- C:\Program Files (x86)\Spotify
2011-07-21 19:23:05 5340600 ----a-w- C:\Users\Susan\Spotify Installer.exe
2011-07-21 16:06:04 -------- d-----w- C:\Users\Susan\Sample
2011-07-21 16:06:04 -------- d-----w- C:\Users\Susan\MultimediaSample
2011-07-13 16:19:41 -------- d-----w- C:\Users\Susan\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2011-07-12 18:34:00 96104 ----a-w- C:\Windows\System32\dns-sd.exe
2011-07-12 18:34:00 85864 ----a-w- C:\Windows\System32\dnssd.dll
2011-07-12 18:34:00 61288 ----a-w- C:\Windows\System32\jdns_sd.dll
2011-07-12 18:34:00 212840 ----a-w- C:\Windows\System32\dnssdX.dll
2011-07-12 18:20:54 83816 ----a-w- C:\Windows\SysWow64\dns-sd.exe
2011-07-12 18:20:54 73064 ----a-w- C:\Windows\SysWow64\dnssd.dll
2011-07-12 18:20:54 50536 ----a-w- C:\Windows\SysWow64\jdns_sd.dll
2011-07-12 18:20:54 178536 ----a-w- C:\Windows\SysWow64\dnssdX.dll
2011-07-12 17:41:02 -------- d-----w- C:\Users\Susan\AppData\Local\LogMeIn
2011-07-12 17:41:02 -------- d-----w- C:\ProgramData\LogMeIn
.
==================== Find3M ====================
.
2011-07-22 05:22:26 1638912 ----a-w- C:\Windows\System32\mshtml.tlb
2011-07-22 04:54:18 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2011-07-20 17:58:17 72080 ----a-w- C:\Users\Susan\g2mdlhlpx.exe
2011-07-19 23:25:34 14848 ----a-w- C:\Windows\System32\smrgdf.exe
2011-07-19 23:25:28 45568 ----a-w- C:\Windows\System32\iolobtdfg.exe
2011-07-19 22:42:44 2083464 ----a-w- C:\Windows\SysWow64\Incinerator32.dll
2011-07-16 05:41:50 362496 ----a-w- C:\Windows\System32\wow64win.dll
2011-07-16 05:41:49 243200 ----a-w- C:\Windows\System32\wow64.dll
2011-07-16 05:41:49 13312 ----a-w- C:\Windows\System32\wow64cpu.dll
2011-07-16 05:39:10 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
2011-07-16 05:37:12 421888 ----a-w- C:\Windows\System32\KernelBase.dll
2011-07-16 04:29:19 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2011-07-16 04:26:00 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2011-07-16 04:25:37 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2011-07-16 04:24:23 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2011-07-16 04:24:22 272384 ----a-w- C:\Windows\SysWow64\KernelBase.dll
2011-07-16 02:21:44 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2011-07-16 02:21:41 2048 ----a-w- C:\Windows\SysWow64\user.exe
2011-07-16 02:17:19 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2011-07-16 02:17:19 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-16 02:17:19 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2011-07-16 02:17:19 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
2011-07-09 02:46:28 288768 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys
2011-07-07 02:52:42 25912 ----a-w- C:\Windows\System32\drivers\mbam.sys
2011-06-30 12:32:13 404640 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2011-06-24 05:34:53 214528 ----a-w- C:\Windows\System32\winsrv.dll
2011-06-24 05:25:49 338432 ----a-w- C:\Windows\System32\conhost.exe
2011-06-23 05:43:12 5561216 ----a-w- C:\Windows\System32\ntoskrnl.exe
2011-06-23 04:33:57 3967872 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2011-06-23 04:33:57 3912576 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2011-06-21 06:34:00 1923968 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2011-06-21 06:20:53 1188864 ----a-w- C:\Windows\System32\wininet.dll
2011-06-21 05:28:33 981504 ----a-w- C:\Windows\SysWow64\wininet.dll
2011-06-15 10:02:23 212992 ----a-w- C:\Windows\System32\odbctrac.dll
2011-06-15 10:02:23 163840 ----a-w- C:\Windows\System32\odbccp32.dll
2011-06-15 10:02:23 106496 ----a-w- C:\Windows\System32\odbccu32.dll
2011-06-15 10:02:23 106496 ----a-w- C:\Windows\System32\odbccr32.dll
2011-06-15 08:55:19 86016 ----a-w- C:\Windows\SysWow64\odbccu32.dll
2011-06-15 08:55:19 81920 ----a-w- C:\Windows\SysWow64\odbccr32.dll
2011-06-15 08:55:19 319488 ----a-w- C:\Windows\SysWow64\odbcjt32.dll
2011-06-15 08:55:19 163840 ----a-w- C:\Windows\SysWow64\odbctrac.dll
2011-06-15 08:55:19 122880 ----a-w- C:\Windows\SysWow64\odbccp32.dll
2011-06-06 19:55:34 53656 ----a-w- C:\Windows\System32\AdobePDF.dll
2011-06-06 19:55:32 24984 ----a-w- C:\Windows\System32\AdobePDFUI.dll
2011-05-25 02:14:10 270720 ------w- C:\Windows\System32\MpSigStub.exe
2011-05-24 11:42:55 404480 ----a-w- C:\Windows\System32\umpnpmgr.dll
2011-05-24 10:40:05 64512 ----a-w- C:\Windows\SysWow64\devobj.dll
2011-05-24 10:40:05 44544 ----a-w- C:\Windows\SysWow64\devrtl.dll
2011-05-24 10:39:38 145920 ----a-w- C:\Windows\SysWow64\cfgmgr32.dll
2011-05-24 10:37:54 252928 ----a-w- C:\Windows\SysWow64\drvinst.exe
2011-05-19 22:41:31 36864 ----a-w- C:\nphssb.dll
2011-05-19 22:41:26 45056 ----a-w- C:\Windows\SysWow64\HSSICore.dll
2011-05-19 22:41:26 40960 ----a-w- C:\Windows\SysWow64\HS_live.ocx
2011-05-19 22:41:26 184320 ----a-w- C:\Windows\SysWow64\OESICore.dll
2011-05-19 22:41:16 98136 ----a-w- C:\Windows\gzip.exe
2010-09-14 20:41:42 98304 ----a-w- C:\Program Files (x86)\nssdbm3.dll
2010-09-14 20:41:42 249856 ----a-w- C:\Program Files (x86)\freebl3.dll
2010-09-14 20:41:42 155648 ----a-w- C:\Program Files (x86)\softokn3.dll
.
============= FINISH: 21:43:07.05 ===============

We won't TOUCH the computer until we hear from you, Gringo.
Thank you.

#5 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:02:53 AM

Posted 10 August 2011 - 11:57 PM

Hello

I Would like you to do the following.

Please print out or make a copy in notpad of any instructions given, as sometimes it is necessary to go offline and you will lose access to them.

Run Combofix:

You may be asked to install or update the Recovery Console (Win XP Only) if this happens please allow it to do so (you will need to be connected to the internet for this)

Before you run Combofix I will need you to turn off any security software you have running, If you do not know how to do this you can find out >here< or >here<

Combofix may need to reboot your computer more than once to do its job this is normal.

You can download Combofix from one of these links. I want you to save it to the desktop and run it from there.
Link 1
Link 2
Link 3
1. Close any open browsers or any other programs that are open.
2. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

Double click on combofix.exe & follow the prompts.
When finished, it will produce a report for you.

Note 1: Do not mouseclick combofix's window while it's running. That may cause it to stall

Note 2: If you recieve an error "Illegal operation attempted on a registery key that has been marked for deletion." Please restart the computer

"information and logs"

  • In your next post I need the following
  • Log from Combofix
  • let me know of any problems you may have had
  • How is the computer doing now?

Gringo
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University

#6 suzbinky

suzbinky
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:11:53 PM

Posted 11 August 2011 - 08:44 AM

Good morning, Gringo,

Thank you for the prompt reply to my reply. We seem a bit better. Here's what's happened:
When running combofix.exe, I had a popup askign me to set network locations for "Network 3" - never heard of it, so I closed the window. Seemed like a desperate attempt by one of the nasties. Also had a prompt, "There is a newer version of Combofix, would you like to install it?" I didn't trust that either, so I closed that window.

Had to restart a couple of times - once it happened automatically and started running combofix.exe again, then I was prompted to restart after I saved the log and attempted to go to Chrome to reply to you.

Tested programs. Adobe is still a big issue. All programs will NOT run. Dreamweaver from CS5.5 gives me an error 1 - "pleasew uninstall and reinstall the product"
Photoshop gives me a 131:4 - licensing of this product error, restart computer and relaunch.
Illustrator: Error 1, like Dreamweaver.
Acrobat X Pro (didn't know I had Pro - this is where the problems seemed to have started) stopped working popup, do you want to restart or cancel?) and another window from Acrobat X Pro about a license agreement.
All Microsoft is working.

A few questions and then I'll post the log:
For "defogger" I disabled something. Do I need to turn it back on? If so, how?
Did this clean my connected external back up hard drive that runs Memeo? I'd had for it to come back from a back up.
What malware program do you recommend since NONE of the 7 I tried caught this stuff?

ComboFix 11-08-09.02 - Susan 08/11/2011 6:12.1.8 - x64
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.12247.10248 [GMT -7:00]
Running from: c:\users\Susan\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Susan\g2mdlhlpx.exe
c:\users\Susan\kindlegen.exe
c:\users\Susan\Spotify Installer.exe
c:\users\Susan\spybotsd-2.0.4-beta2.exe
c:\windows\jestertb.dll
.
.
((((((((((((((((((((((((( Files Created from 2011-07-11 to 2011-08-11 )))))))))))))))))))))))))))))))
.
.
2011-08-10 22:05 . 2011-07-04 11:36 288088 ----a-w- c:\windows\system32\drivers\aswSP.sys
2011-08-10 22:05 . 2011-07-04 11:32 22360 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2011-08-10 22:05 . 2011-07-04 11:35 45400 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2011-08-10 22:05 . 2011-07-04 11:32 31064 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2011-08-10 22:05 . 2011-07-04 11:36 600920 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2011-08-10 22:05 . 2011-07-04 11:32 64856 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2011-08-10 22:04 . 2011-07-04 11:43 40112 ----a-w- c:\windows\avastSS.scr
2011-08-10 22:04 . 2011-07-04 11:43 199304 ----a-w- c:\windows\SysWow64\aswBoot.exe
2011-08-10 18:11 . 2011-07-07 02:52 41272 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys
2011-08-10 04:40 . 2011-08-10 04:40 -------- d-sh--w- c:\windows\SysWow64\%APPDATA%
2011-08-10 04:31 . 2011-08-10 04:31 -------- d-sh--w- c:\windows\system32\%APPDATA%
2011-08-10 04:16 . 2011-07-13 04:53 8578896 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{92131B8F-942C-4647-9DE0-76305C5B724F}\mpengine.dll
2011-08-09 04:55 . 2009-12-14 19:44 66104 ----a-w- c:\windows\system32\drivers\CSVirtualDiskDrv.sys
2011-08-09 04:55 . 2009-12-14 19:44 85048 ----a-w- c:\windows\system32\drivers\CSCrySec.sys
2011-08-09 04:55 . 2011-08-09 04:55 -------- d-----w- c:\program files (x86)\Common Files\InfoWatch
2011-08-09 04:55 . 2011-08-09 15:44 -------- d-----w- c:\programdata\Kaspersky Lab
2011-08-09 04:55 . 2011-08-09 04:55 -------- d-----w- c:\program files (x86)\Kaspersky Lab
2011-08-09 04:53 . 2011-08-09 04:53 -------- d-----w- c:\programdata\Kaspersky Lab Setup Files
2011-08-04 13:33 . 2011-08-04 13:33 -------- d-----w- c:\users\Susan\AppData\Local\Safe mirror
2011-08-04 13:32 . 2011-08-04 13:32 -------- d-----w- c:\program files (x86)\Cobian Backup 10
2011-08-04 10:14 . 2011-08-04 10:14 -------- d-----w- c:\program files (x86)\Common Files\Intel Corporation
2011-08-04 05:57 . 2011-08-10 17:56 -------- d-----w- c:\program files (x86)\Spybot - Search & Destroy 2
2011-08-04 05:16 . 2011-08-04 05:17 -------- d-----w- C:\8630833696beaed299eabbaa9502ec
2011-08-03 20:26 . 2011-08-03 19:41 -------- d-----w- c:\program files (x86)\ShoppingCartElite
2011-07-22 18:45 . 2011-07-22 18:45 -------- d-----w- c:\program files\iPod
2011-07-22 18:45 . 2011-08-03 22:47 -------- d-----w- c:\program files (x86)\iTunes
2011-07-22 18:45 . 2011-07-22 18:45 -------- d-----w- c:\program files\iTunes
2011-07-22 18:43 . 2011-08-03 22:47 -------- d-----w- c:\program files (x86)\Bonjour
2011-07-22 18:43 . 2011-07-22 18:43 -------- d-----w- c:\program files\Bonjour
2011-07-22 18:42 . 2011-08-03 22:47 -------- d-----w- c:\program files (x86)\Apple Software Update
2011-07-22 14:33 . 2011-07-19 22:42 2141832 ----a-w- c:\windows\system32\Incinerator64.dll
2011-07-22 05:04 . 2011-03-25 03:29 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys
2011-07-22 05:04 . 2011-03-25 03:29 98816 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2011-07-22 05:04 . 2011-03-25 03:29 325120 ----a-w- c:\windows\system32\drivers\usbport.sys
2011-07-22 05:04 . 2011-03-25 03:29 52736 ----a-w- c:\windows\system32\drivers\usbehci.sys
2011-07-22 05:04 . 2011-03-25 03:29 25600 ----a-w- c:\windows\system32\drivers\usbohci.sys
2011-07-22 05:04 . 2011-03-25 03:29 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2011-07-22 05:04 . 2011-03-25 03:28 7936 ----a-w- c:\windows\system32\drivers\usbd.sys
2011-07-22 05:04 . 2011-06-11 03:07 3137536 ----a-w- c:\windows\system32\win32k.sys
2011-07-21 19:23 . 2011-07-21 21:11 -------- d-----w- c:\users\Susan\AppData\Roaming\Spotify
2011-07-21 19:23 . 2011-07-21 21:08 -------- d-----w- c:\users\Susan\AppData\Local\Spotify
2011-07-21 19:23 . 2011-08-03 22:48 -------- d-----w- c:\program files (x86)\Spotify
2011-07-21 16:06 . 2011-07-21 16:06 -------- d-----w- c:\users\Susan\Sample
2011-07-21 16:06 . 2011-07-21 16:06 -------- d-----w- c:\users\Susan\MultimediaSample
2011-07-13 16:19 . 2011-07-13 16:19 -------- d-----w- c:\users\Susan\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2011-07-12 18:34 . 2011-07-12 18:34 96104 ----a-w- c:\windows\system32\dns-sd.exe
2011-07-12 18:34 . 2011-07-12 18:34 85864 ----a-w- c:\windows\system32\dnssd.dll
2011-07-12 18:34 . 2011-07-12 18:34 61288 ----a-w- c:\windows\system32\jdns_sd.dll
2011-07-12 18:34 . 2011-07-12 18:34 212840 ----a-w- c:\windows\system32\dnssdX.dll
2011-07-12 18:20 . 2011-07-12 18:20 83816 ----a-w- c:\windows\SysWow64\dns-sd.exe
2011-07-12 18:20 . 2011-07-12 18:20 73064 ----a-w- c:\windows\SysWow64\dnssd.dll
2011-07-12 18:20 . 2011-07-12 18:20 50536 ----a-w- c:\windows\SysWow64\jdns_sd.dll
2011-07-12 18:20 . 2011-07-12 18:20 178536 ----a-w- c:\windows\SysWow64\dnssdX.dll
2011-07-12 17:41 . 2011-07-12 17:41 -------- d-----w- c:\users\Susan\AppData\Local\LogMeIn
2011-07-12 17:41 . 2011-07-12 17:41 -------- d-----w- c:\programdata\LogMeIn
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-07-19 23:25 . 2011-05-03 01:57 14848 ----a-w- c:\windows\system32\smrgdf.exe
2011-07-19 23:25 . 2011-05-03 01:57 45568 ----a-w- c:\windows\system32\iolobtdfg.exe
2011-07-19 22:42 . 2011-06-29 15:45 2083464 ----a-w- c:\windows\SysWow64\Incinerator32.dll
2011-07-16 04:26 . 2011-08-10 04:14 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2011-07-07 02:52 . 2011-05-01 14:56 25912 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-07-04 11:43 . 2011-02-04 01:53 253888 ----a-w- c:\windows\system32\aswBoot.exe
2011-06-30 12:32 . 2011-05-26 12:40 404640 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2011-06-06 19:55 . 2011-06-06 19:55 53656 ----a-w- c:\windows\system32\AdobePDF.dll
2011-06-06 19:55 . 2011-06-06 19:55 24984 ----a-w- c:\windows\system32\AdobePDFUI.dll
2011-05-25 02:14 . 2010-09-07 22:19 270720 ------w- c:\windows\system32\MpSigStub.exe
2011-05-24 11:42 . 2011-06-29 13:18 404480 ----a-w- c:\windows\system32\umpnpmgr.dll
2011-05-24 10:40 . 2011-06-29 13:18 64512 ----a-w- c:\windows\SysWow64\devobj.dll
2011-05-24 10:40 . 2011-06-29 13:18 44544 ----a-w- c:\windows\SysWow64\devrtl.dll
2011-05-24 10:39 . 2011-06-29 13:18 145920 ----a-w- c:\windows\SysWow64\cfgmgr32.dll
2011-05-24 10:37 . 2011-06-29 13:18 252928 ----a-w- c:\windows\SysWow64\drvinst.exe
2011-05-19 22:41 . 2011-05-19 22:51 36864 ----a-w- C:\nphssb.dll
2011-05-19 22:41 . 2011-05-19 22:51 45056 ----a-w- c:\windows\SysWow64\HSSICore.dll
2011-05-19 22:41 . 2011-05-19 22:51 40960 ----a-w- c:\windows\SysWow64\HS_live.ocx
2011-05-19 22:41 . 2011-05-19 22:51 184320 ----a-w- c:\windows\SysWow64\OESICore.dll
2011-05-19 22:41 . 2011-05-19 22:41 98136 ----a-w- c:\windows\gzip.exe
2010-09-14 22:59 . 2010-10-07 16:32 11663832 ----a-w- c:\program files (x86)\xul.dll
2010-09-14 22:59 . 2010-10-07 16:32 17880 ----a-w- c:\program files (x86)\xpcom.dll
2010-09-14 22:59 . 2010-10-07 16:32 243672 ----a-w- c:\program files (x86)\updater.exe
2010-09-14 22:59 . 2010-10-07 16:32 140760 ----a-w- c:\program files (x86)\ssl3.dll
2010-09-14 22:59 . 2010-10-07 16:32 467928 ----a-w- c:\program files (x86)\sqlite3.dll
2010-09-14 22:59 . 2010-10-07 16:32 103896 ----a-w- c:\program files (x86)\smime3.dll
2010-09-14 22:59 . 2010-10-07 16:32 17368 ----a-w- c:\program files (x86)\plds4.dll
2010-09-14 22:59 . 2010-10-07 16:32 14808 ----a-w- c:\program files (x86)\plugin-container.exe
2010-09-14 22:59 . 2010-10-07 16:32 20440 ----a-w- c:\program files (x86)\plc4.dll
2010-09-14 22:59 . 2010-10-07 16:32 87512 ----a-w- c:\program files (x86)\nssutil3.dll
2010-09-14 22:59 . 2010-10-07 16:32 333272 ----a-w- c:\program files (x86)\nssckbi.dll
2010-09-14 22:59 . 2010-10-07 16:32 644568 ----a-w- c:\program files (x86)\nss3.dll
2010-09-14 22:59 . 2010-10-07 16:32 202200 ----a-w- c:\program files (x86)\nspr4.dll
2010-09-14 22:59 . 2010-10-07 16:32 718296 ----a-w- c:\program files (x86)\mozcrt19.dll
2010-09-14 22:59 . 2010-10-07 16:32 718296 ----a-w- c:\program files (x86)\mozcpp19.dll
2010-09-14 22:59 . 2010-10-07 16:32 1016280 ----a-w- c:\program files (x86)\js3250.dll
2010-09-14 22:59 . 2010-10-07 16:32 910296 ----a-w- c:\program files (x86)\firefox.exe
2010-09-14 22:59 . 2010-10-07 16:32 105432 ----a-w- c:\program files (x86)\crashreporter.exe
2010-09-14 22:59 . 2010-10-07 16:32 17880 ----a-w- c:\program files (x86)\AccessibleMarshal.dll
2010-09-14 20:41 . 2010-10-07 16:32 98304 ----a-w- c:\program files (x86)\nssdbm3.dll
2010-09-14 20:41 . 2010-10-07 16:32 249856 ----a-w- c:\program files (x86)\freebl3.dll
2010-09-14 20:41 . 2010-10-07 16:32 155648 ----a-w- c:\program files (x86)\softokn3.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-09-08 39408]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"WD Drive Manager"="c:\program files\Western Digital\WD Drive Manager\WDBtnMgrUI.exe" [2008-07-24 479744]
"WD Anywhere Backup"="c:\program files (x86)\WD\WD Anywhere Backup\MemeoLauncher2.exe" [2009-11-13 222432]
"THX Audio Control Panel"="c:\program files (x86)\Creative\THX TruStudio PC\THXAudioCP\THXAudio.exe" [2009-12-01 963584]
"ShwiconXP9106"="c:\program files (x86)\Multimedia Card Reader(9106)\ShwiconXP9106.exe" [2009-07-17 237568]
"IAStorIcon"="c:\program files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" [2009-10-02 284696]
"Dell Webcam Central"="c:\program files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" [2010-06-18 462991]
"SwitchBoard"="c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"Acrobat Assistant 8.0"="c:\program files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe" [2011-06-06 2903448]
"iolo Startup"="c:\program files (x86)\iolo\Common\Lib\ioloLManager.exe" [2011-07-19 606392]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2011-07-20 421736]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-07-04 3493720]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2011-07-07 449584]
.
c:\users\Savannah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dell Dock First Run.lnk - c:\program files\Dell\DellDock\DellDock.exe [2009-12-15 1324384]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
APC UPS Status.lnk - c:\program files (x86)\APC\APC PowerChute Personal Edition\Display.exe [2009-1-6 267576]
.
c:\users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dell Dock First Run.lnk - c:\program files\Dell\DellDock\DellDock.exe [2009-12-15 1324384]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean64.exe
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ioloSystemService]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
R1 vflt;Shrew Soft Lightweight Filter;c:\windows\system32\DRIVERS\vfilter.sys [x]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-09-08 135664]
R3 gupdatem;Google Update Service (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-09-08 135664]
R3 ioloFileInfoList;iolo FileInfoList Service;c:\program files (x86)\iolo\Common\Lib\ioloServiceManager.exe [2011-07-19 722616]
R3 PMBDeviceInfoProvider;PMBDeviceInfoProvider;c:\program files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe [2009-10-24 360224]
R3 RoxMediaDB10;RoxMediaDB10;c:\program files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe [2009-06-26 1124848]
R3 SwitchBoard;Adobe SwitchBoard;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [x]
R3 vna_ap;Check Point Virtual Network Adapter - Apollo;c:\windows\system32\DRIVERS\vnaap.sys [x]
R3 vnet;Shrew Soft Virtual Adapter;c:\windows\system32\DRIVERS\virtualnet.sys [x]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [x]
R3 WSDPrintDevice;WSD Print Support via UMB;c:\windows\system32\DRIVERS\WSDPrint.sys [x]
R3 WSDScan;WSD Scan Support via UMB;c:\windows\system32\DRIVERS\WSDScan.sys [x]
S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 ElRawDisk;ElRawDisk;c:\windows\system32\drivers\ElRawDsk.sys [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 cbVSCService;Cobian Backup 10 Volume Shadow Copy service;c:\program files (x86)\Cobian Backup 10\cbVSCService.exe [2010-09-23 67584]
S2 DockLoginService;Dock Login Service;c:\program files\Dell\DellDock\DockLogin.exe [2009-06-09 155648]
S2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;c:\program files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2009-10-02 13336]
S2 ioloSystemService;iolo System Service;c:\program files (x86)\iolo\Common\Lib\ioloServiceManager.exe [2011-07-19 722616]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2011-07-07 366640]
S2 MemeoBackgroundService;MemeoBackgroundService;c:\program files (x86)\WD\WD Anywhere Backup\MemeoBackgroundService.exe [2009-11-13 25824]
S2 WDBtnMgrSvc.exe;WD Drive Manager Service;c:\program files\Western Digital\WD Drive Manager\WDBtnMgrSvc.exe [2008-07-24 118272]
S3 CtClsFlt;Creative Camera Class Upper Filter Driver;c:\windows\system32\DRIVERS\CtClsFlt.sys [x]
S3 HECIx64;Intel® Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [x]
S3 IntcDAud;Intel® Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [x]
S3 k57nd60a;Broadcom NetLink ™ Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]
S3 OA002Afx;Provides a software interface to control audio effects of OA002 camera.;c:\windows\system32\Drivers\OA002Afx.sys [x]
S3 OA002Ufd;Creative Camera OA002 Upper Filter Driver;c:\windows\system32\DRIVERS\OA002Ufd.sys [x]
S3 OA002Vid;Creative Camera OA002 Function Driver;c:\windows\system32\DRIVERS\OA002Vid.sys [x]
.
.
Contents of the 'Scheduled Tasks' folder
.
2011-08-11 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-09-08 00:31]
.
2011-08-11 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-09-08 00:31]
.
2011-08-09 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3997012853-2061436171-3438593777-1000Core.job
- c:\users\Susan\AppData\Local\Google\Update\GoogleUpdate.exe [2011-07-19 18:10]
.
2011-08-11 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3997012853-2061436171-3438593777-1000UA.job
- c:\users\Susan\AppData\Local\Google\Update\GoogleUpdate.exe [2011-07-19 18:10]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-07-04 11:43 134384 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RunDLLEntry_THXCfg"="c:\windows\system32\RunDLL32.exe" [2009-07-14 45568]
"RunDLLEntry_EptMon"="c:\windows\system32\RunDLL32.exe" [2009-07-14 45568]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2009-10-07 8158240]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = about:blank
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/keyword/%s
IE: Append Link Target to Existing PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: E&xport to Microsoft Excel - c:\progra~2\MIF5BA~1\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
IE: {{43989788-13D1-4BE7-8404-DB58166E06CD} - {43989788-13D1-4BE7-8404-DB58166E06CD} -
Trusted Zone: linkedin.com
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\users\Susan\AppData\Roaming\Mozilla\Firefox\Profiles\ucu8f3zf.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
FF - prefs.js: browser.search.selectedEngine - Google Search
FF - prefs.js: browser.startup.homepage - about:blank
FF - prefs.js: keyword.URL - hxxp://www.google.com/search?ie=UTF-8&oe=UTF-8&q=
FF - user.js: yahoo.homepage.dontask - true
.
.
------- File Associations -------
.
JSEFile=NOTEPAD.EXE %1
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-Locked - (no file)
Toolbar-{43989788-13D1-4BE7-8404-DB58166E06CD} - (no file)
Wow6432Node-HKCU-Run-AdobeBridge - (no file)
Toolbar-Locked - (no file)
WebBrowser-{43989788-13D1-4BE7-8404-DB58166E06CD} - (no file)
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10t_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10t_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10t.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10t.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10t.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10t.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B9A09F18-45AB-4F09-A117-A4ADDA8FA8C8}]
@Denied: (A) (Everyone)
"Solution"="{36eb6792-3a29-43b3-8cd0-f67d266fb426}"
.
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane\0]
"Key"="ActionsPane"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\8.0\\ActionsPane.xsd"
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files (x86)\APC\APC PowerChute Personal Edition\mainserv.exe
c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files (x86)\Bonjour\mDNSResponder.exe
c:\program files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
.
**************************************************************************
.
Completion time: 2011-08-11 06:24:56 - machine was rebooted
ComboFix-quarantined-files.txt 2011-08-11 13:24
.
Pre-Run: 265,117,446,144 bytes free
Post-Run: 265,064,919,040 bytes free
.
- - End Of File - - 7B92BCDBBE4AF52C471A92306DA46AB1


Thank you again, Gringo.
Susan

#7 suzbinky

suzbinky
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:11:53 PM

Posted 11 August 2011 - 09:20 PM

All is not well. Thought we were done with it, but all Adobe products had to be uninstalled, according to Adobe. They "drove" - always a bad idea and no one was able to uninstall the programs, even with their uninstaller program tools. FF is the only browser that works, all are giving messages of unable to start. Iolo's System Mechanic was unable to load. Computer back to taking about 10 minutes to reboot. Starting the back up process to save all files before stripping down and starting over. Not a fun journey. Appreciate your help in getting rid of a chunk of it, but I think I need to move foward a bit quicker and get back to working on a big machine. Laptop is maddening.

Any advice for malware protection moving forward as we'll have a clean slate?

#8 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:02:53 AM

Posted 11 August 2011 - 09:37 PM

:Make Firefox more secure:

please visit this page to explain how to make Firefox more secure - How to Secure Firefox


Make sure your applications have all of their updates

It is also possible for other programs on your computer to have security vulnerability that can allow malware to infect you. Therefore, it is also a good idea to check for the latest versions of commonly installed applications that are regularly patched to fix vulnerabilities. You can check these by visiting Secunia Software Inspector


:Turn On Automatic Updates:

Turn On Automatic Updates
1. Click Start, click Run, type sysdm.cpl, and then press ENTER.
2. Click the Automatic Updates tab, and then click to select one of the following options. We recommend that you select the Automatic (recommended) Automatically download recommended updates for my computer and install them

If you click this setting, click to select the day and time for scheduled updates to occur. You can schedule Automatic Updates for any time of day. Remember, your computer must be on at the scheduled time for updates to be installed. After you set this option, Windows recognizes when you are online and uses your Internet connection to find updates on the Windows Update Web site or on the Microsoft Update Web site that apply to your computer. Updates are downloaded automatically in the background, and you are not notified or interrupted during this process. An icon appears in the notification area of your taskbar when the updates are being downloaded. You can point to the icon to view the download status. To pause or to resume the download, right-click the icon, and then click Pause or Resume. When the download is completed, another message appears in the notification area so that you can review the updates that are scheduled for installation. If you choose not to install at that time, Windows starts the installation on your set schedule.

or visit http://www.windowsupdate.com regularly. This will ensure your computer has always the latest security updates available installed on your computer. If there are new updates to install, install them immediately, reboot your computer, and revisit the site until there are no more critical updates.

:antispyware programs:

I would reccomend the download and installation of some or all of the following programs (all free), and the updating of them regularly:

  • WinPatrol As a robust security monitor, WinPatrol will alert you to hijackings, malware attacks and critical changes made to your computer without your permission. WinPatrol takes snapshot of your critical system resources and alerts you to any changes that may occur without your knowledge.
  • Spyware Blaster - By altering your registry, this program stops harmful sites from installing things like ActiveX Controls on your machines.
  • Malwarebytes' Anti-Malware Malwarebytes' Anti-Malware is a new and powerful anti-malware tool. It is
    totally free but for real-time protection you will have to pay a small one-time fee. We used this to help clean your computer and recomend keeping it and using often.

Here is some great reading about how to be safer online:

PC Safety and Security - What Do I Need? from my friends at Tech Support Forum
and
COMPUTER SECURITY - a short guide to staying safer online from my friends at Malware Removal

I'd be grateful if you could reply to this post so that I know you have read it and, if you've no other questions, the thread can then be closed.

I Will Keep This Open For About Three Days, If Anything Comes Up - Just Come Back And Let Me Know, after that time you will have to send me a PM
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University

#9 suzbinky

suzbinky
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:11:53 PM

Posted 11 August 2011 - 10:52 PM

Thank you for the recommendations, Gringo. We'll work on it after we rebuild.

#10 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:02:53 AM

Posted 11 August 2011 - 11:10 PM

:thumbup2:
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University

#11 suzbinky

suzbinky
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:11:53 PM

Posted 12 August 2011 - 07:54 AM

Interesting about AntiMalware bites - we had it installed on infected computer and ran it often and tried to use that.
I'll try it again. Should I have ALL of the options you suggested, or just pick one?

We have Avast - sounds like that should be uninstalled?
Thank you again for the guidance. We've also signed up for a cloud back up service. Disc back ups are so 2009. ;)

#12 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:02:53 AM

Posted 12 August 2011 - 08:18 AM

all of them will work fine together and keep avast also


avast is the antiVIRUS and the others are antiSPYWARE


Gringo
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University

#13 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:02:53 AM

Posted 14 August 2011 - 11:32 PM

It appears that this issue is resolved, therefore I am closing the topic. If that is not the case and you need or wish to continue with this topic, please send me or any Moderator a Personal Message (PM) that you would like this topic re-opened.
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users