Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Error code 0x80070424 when trying to turn on Windows Firewall


  • This topic is locked This topic is locked
32 replies to this topic

#1 calebmhartmann

calebmhartmann

  • Members
  • 17 posts
  • OFFLINE
  •  
  • Local time:01:18 PM

Posted 16 October 2013 - 12:57 PM

A friend downloaded an untrusted file and now my computer seems to have a virus that is doing various things.  I uninstalled McAfee as it cound't see the bug and installed avira and they isolated one instance of something.  I then went to try to turn my firewall back on and received the error code 0x80070424.  I don't know how to fix this and I need help please.

 

Attached Files



BC AdBot (Login to Remove)

 


#2 B-boy/StyLe/

B-boy/StyLe/

    Bleepin' Freestyler


  • Malware Response Team
  • 8,307 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Bulgaria
  • Local time:10:18 PM

Posted 16 October 2013 - 01:08 PM

Hello! Welcome to BleepingComputer Forums! :welcome:
My name is Georgi and and I will be helping you with your computer problems.

Before we begin, please note the following:

  • I will working be on your Malware issues, this may or may not, solve other issues you have with your machine.
  • The logs can take some time to research, so please be patient with me.
  • Stay with the topic until I tell you that your system is clean. Missing symptoms does not mean that everything is okay.
  • Instructions that I give are for your system only!
  • Please do not run any tools until requested ! The reason for this is so I know what is going on with the machine at any time. Some programs can interfere with others and hamper the recovery process.
  • Please perform all steps in the order received. If you can't understand something don't hesitate to ask.
  • Again I would like to remind you to make no further changes to your computer unless I direct you to do so. I will not help you if you do not follow my instructions.

 

 

Please download Farbar Recovery Scan Tool and save it to your desktop.

Note: You need to run the version compatibale with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.

  • Double-click to run it. When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
  • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.

cXfZ4wS.png


#3 calebmhartmann

calebmhartmann
  • Topic Starter

  • Members
  • 17 posts
  • OFFLINE
  •  
  • Local time:01:18 PM

Posted 16 October 2013 - 01:14 PM

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-10-2013
Ran by Caleb's Computer (administrator) on CALEBSCOMPUTER on 16-10-2013 13:10:46
Running from C:\Users\Caleb's Computer\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
() C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\EPU\EPUHelp.exe
() C:\Program Files (x86)\ASUS\AAHM\1.00.11\aaHMSvc.exe
() C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.10\AsSysCtrlService.exe
() C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe
(ASUSTeK Computer Inc.) C:\Windows\SysWOW64\AsHookDevice.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(Sendori) C:\Program Files (x86)\Sendori\sndappv2.exe
() C:\Program Files (x86)\Belkin\F7D4101\V1\wlansrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Sendori, Inc.) C:\Program Files (x86)\Sendori\SendoriSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Sendori, Inc.) C:\Program Files (x86)\Sendori\SendoriUp.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe
(Valve Corporation) C:\New Folder\Steam.exe
(BitTorrent Inc.) C:\Users\Caleb's Computer\AppData\Roaming\uTorrent\uTorrent.exe
(Spigot, Inc.) C:\Users\Caleb's Computer\AppData\Roaming\Search Protection\SearchProtection.exe
() C:\Program Files (x86)\HandyUpdater\HandyUpdater.exe
() C:\Program Files (x86)\Belkin\F7D4101\V1\PBN.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Manager\AsShellApplication.exe
() C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
(Sendori, Inc.) C:\Program Files (x86)\Sendori\SendoriTray.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) c:\program files (x86)\avira\antivir desktop\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
(sendori) C:\Program Files (x86)\Sendori\Sendori.Service.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11545192 2010-11-02] (Realtek Semiconductor)
HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM\...\Run: [Start WingMan Profiler] - C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech Inc.)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKCU\...\Run: [Steam] - C:\New Folder\Steam.exe [1813928 2013-10-08] (Valve Corporation)
HKCU\...\Run: [EADM] - C:\Program Files (x86)\Origin\Origin.exe [3549528 2013-09-03] (Electronic Arts)
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673728 2012-11-06] (DT Soft Ltd)
HKCU\...\Run: [uTorrent] - C:\Users\Caleb's Computer\AppData\Roaming\uTorrent\uTorrent.exe [1130576 2013-08-15] (BitTorrent Inc.)
HKCU\...\Run: [SearchProtection] - C:\Users\Caleb's Computer\AppData\Roaming\Search Protection\SearchProtection.EXE [832360 2013-09-03] (Spigot, Inc.)
HKCU\...\Run: [NTRedirect] - C:\Windows\SysWOW64\rundll32.exe "C:\Users\Caleb's Computer\AppData\Roaming\BabSolution\Shared\enhancedNT.dll",Run
HKCU\...\Run: [Handy Updater] - C:\Program Files (x86)\HandyUpdater\HandyUpdater.exe [370176 2013-07-04] ()
HKCU\...\Winlogon: [Shell] C:\Users\Caleb's Computer\AppData\Roaming\dlc.xmm,explorer.exe <==== ATTENTION
HKLM-x32\...\Run: [RunAIShell] - C:\Program Files (x86)\ASUS\AI Manager\AsShellApplication.exe [232064 2009-12-23] (ASUSTeK Computer Inc.)
HKLM-x32\...\Run: [BCSSync] - C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKLM-x32\...\Run: [DivXMediaServer] - C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2012-11-13] ()
HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1263512 2012-11-29] ()
HKLM-x32\...\Run: [Sendori Tray] - C:\Program Files (x86)\Sendori\SendoriTray.exe [83232 2013-07-01] (Sendori, Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-09-17] (Apple Inc.)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [681032 2013-10-10] (Avira Operations GmbH & Co. KG)
AppInit_DLLs-x32: c:\progra~3\bitguard\261694~1.246\{c16c1~1\bitguard.dll  [2704352 2013-10-08] ()
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Best Buy pc app.lnk
ShortcutTarget: Best Buy pc app.lnk -> C:\ProgramData\Best Buy pc app\ClickOnceSetup.exe (Microsoft)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Best Buy pc app.lnk
ShortcutTarget: Best Buy pc app.lnk -> C:\ProgramData\Best Buy pc app\ClickOnceSetup.exe (Microsoft)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www2.delta-search.com/?babsrc=HP_ss&mntrId=9CCC14DAE958DC76&affID=121705&tsp=4994
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com/
HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = http://www2.delta-search.com/?babsrc=HP_ss&mntrId=9CCC14DAE958DC76&affID=121705&tsp=4994
URLSearchHook: (No Name) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} -  No File
URLSearchHook: (No Name) - {32b29df0-2237-4370-9a29-37cebb730e9b} -  No File
SearchScopes: HKLM-x32 - DefaultScope {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2704262
SearchScopes: HKLM-x32 - {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2704262
SearchScopes: HKCU - DefaultScope {A8DD4AF3-ACA7-4144-98DE-0C88A87E0760} URL = http://search.yahoo.com/search?fr=mcafee&p={SearchTerms}
SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www2.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=9CCC14DAE958DC76&affID=121705&tsp=4994
SearchScopes: HKCU - {88C5CF9F-0C10-4682-8309-DAB20EFD2E97} URL = http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=714647&p={searchTerms}
SearchScopes: HKCU - {A4580BA1-20C8-4511-B1B6-01C478CA958C} URL = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=TV&apn_dtid=OSJ000YYUS&apn_uid=93285309-80F5-45DA-9043-AED68A701B4A&apn_sauid=5F6CA372-134B-4FB8-A1FC-A95833B3B8A6
SearchScopes: HKCU - {A8DD4AF3-ACA7-4144-98DE-0C88A87E0760} URL = http://search.yahoo.com/search?fr=mcafee&p={SearchTerms}
SearchScopes: HKCU - {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2704262
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files (x86)\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll No File
BHO-x32: hosts - {11111111-1111-1111-1111-110311531182} - C:\Program Files (x86)\hosts\hosts-bho.dll No File
BHO-x32: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO-x32: FreeSoundRecorder Toolbar - {32b29df0-2237-4370-9a29-37cebb730e9b} - C:\Program Files (x86)\FreeSoundRecorder\prxtbFree.dll (Conduit Ltd.)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\prxtbuTor.dll (Conduit Ltd.)
BHO-x32: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.24.6\bh\delta.dll (Delta-search.com)
BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO-x32: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\prxtbuTor.dll (Conduit Ltd.)
Toolbar: HKLM-x32 - FreeSoundRecorder Toolbar - {32b29df0-2237-4370-9a29-37cebb730e9b} - C:\Program Files (x86)\FreeSoundRecorder\prxtbFree.dll (Conduit Ltd.)
Toolbar: HKLM-x32 - Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
Toolbar: HKLM-x32 - Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.24.6\deltaTlbr.dll (Delta-search.com)
Toolbar: HKCU -  No Name - {BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} -  No File
DPF: HKLM-x32 {37A273C2-5129-11D5-BF37-00A0CCE8754B} http://www.mathxl.com/BrowserCheck/wiz/wizmodules/testgen/installers/TestGenXInstall.cab
DPF: HKLM-x32 {F27237D7-93C8-44C2-AC6E-D6057B9A918F} https://vpn.navistar.com/dana-cached/sc/JuniperSetupClient.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} -  No File
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog9 01 C:\Windows\system32\Sendori.dll File Not found ()
Winsock: Catalog9 02 C:\Windows\system32\Sendori.dll File Not found ()
Winsock: Catalog9 03 C:\Windows\system32\Sendori.dll File Not found ()
Winsock: Catalog9 04 C:\Windows\system32\Sendori.dll File Not found ()
Winsock: Catalog9 15 C:\Windows\system32\Sendori.dll File Not found ()
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Caleb's Computer\AppData\Roaming\Mozilla\Firefox\Profiles\oxl65idy.default
FF user.js: detected! => C:\Users\Caleb's Computer\AppData\Roaming\Mozilla\Firefox\Profiles\oxl65idy.default\user.js
FF NewTab: user_pref("browser.newtab.url", "");
FF DefaultSearchEngine: Yahoo
FF SearchEngineOrder.1: Secure Search
FF SelectedSearchEngine: Yahoo
FF Homepage: hxxp://www2.delta-search.com/?babsrc=HP_ss&mntrId=9CCC14DAE958DC76&affID=121705&tsp=4994
FF Keyword.URL: hxxp://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=714647&p=
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ()
FF Plugin: @bestbuy.com/npBestBuyPcAppDetector,version=1.0 - C:\ProgramData\Best Buy pc app\npBestBuyPcAppDetector.dll (Best Buy)
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @bestbuy.com/npBestBuyPcAppDetector,version=1.0 - C:\ProgramData\Best Buy pc app\npBestBuyPcAppDetector.dll (Best Buy)
FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll No File
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Caleb's Computer\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml
FF Extension: Delta Toolbar - C:\Users\Caleb's Computer\AppData\Roaming\Mozilla\Firefox\Profiles\oxl65idy.default\Extensions\ffxtlbr@delta.com
FF Extension: No Name - C:\Users\Caleb's Computer\AppData\Roaming\Mozilla\Firefox\Profiles\oxl65idy.default\Extensions\staged
FF Extension: All-in-One Sidebar - C:\Users\Caleb's Computer\AppData\Roaming\Mozilla\Firefox\Profiles\oxl65idy.default\Extensions\{097d3191-e6fa-4728-9826-b533d755359d}
FF Extension: All-in-One Gestures - C:\Users\Caleb's Computer\AppData\Roaming\Mozilla\Firefox\Profiles\oxl65idy.default\Extensions\{8b86149f-01fb-4842-9dd8-4d7eb02fd055}
FF Extension: No Name - C:\Users\Caleb's Computer\AppData\Roaming\Mozilla\Firefox\Profiles\oxl65idy.default\Extensions\{097d3191-e6fa-4728-9826-b533d755359d}.xpi
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: DivX Plus Web Player HTML5 &lt;video&gt; - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK

Chrome:
=======
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION
CHR Extension: (SiteAdvisor) - C:\Users\CALEB'~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.6.2.1341
CHR Extension: (hosts) - C:\Users\CALEB'~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnlomafmkpiclmaaekkhpoecnclldmaa\1.23.3_0
CHR HKLM-x32\...\Chrome\Extension: [bejbohlohkkgompgecdcbbglkpjfjgdj] - C:\Users\CALEB'~1\AppData\Local\Temp\crxAFA6.tmp
CHR HKLM-x32\...\Chrome\Extension: [eooncjejnppfjjklapaamhcdmjbilmde] - C:\Users\Caleb's Computer\AppData\Roaming\BabSolution\CR\Delta.crx
CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440392 2013-10-10] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440392 2013-10-10] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1164360 2013-10-10] (Avira Operations GmbH & Co. KG)
R2 Application Sendori; C:\Program Files (x86)\Sendori\SendoriSvc.exe [119072 2013-07-01] (Sendori, Inc.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe [918144 2010-11-03] ()
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.11\aaHMSvc.exe [915072 2010-11-19] ()
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.10\AsSysCtrlService.exe [586880 2010-10-21] ()
R2 BitGuard; C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe [3032032 2013-10-08] ()
R2 Service Sendori; C:\Program Files (x86)\Sendori\Sendori.Service.exe [22304 2013-05-21] (sendori)
R2 sndappv2; C:\Program Files (x86)\Sendori\sndappv2.exe [3623200 2013-07-01] (Sendori)
R2 WLANBelkinService; C:\Program Files (x86)\Belkin\F7D4101\V1\wlansrv.exe [36864 2009-12-28] ()
S3 McComponentHostService; "C:\Program Files (x86)\McAfee Security Scan\3.0.318\McCHSvc.exe" [x]
S4 McMPFSvc; "C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [x]
U2 *etadpug; "C:\Program Files (x86)\Google\Desktop\Install\{510e5f06-3f78-7a78-850f-f1ce9435bd1e}\   \...\???\{510e5f06-3f78-7a78-850f-f1ce9435bd1e}\GoogleUpdate.exe" < <==== ATTENTION (ZeroAccess)

==================== Drivers (Whitelisted) ====================

R2 ASInsHelp; C:\Windows\SysWow64\drivers\AsInsHelp64.sys [11832 2008-01-04] ()
R2 ASInsHelp; C:\Windows\SysWow64\drivers\AsInsHelp64.sys [11832 2008-01-04] ()
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2010-08-24] ()
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2010-08-24] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] ()
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2011-12-28] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105856 2013-10-10] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132600 2013-10-10] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-10-10] (Avira Operations GmbH & Co. KG)
S2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [83160 2013-10-10] (Avira Operations GmbH & Co. KG)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-12-08] (DT Soft Ltd)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2011-12-28] ()

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-10-16 13:10 - 2013-10-16 13:10 - 00000000 ____D C:\FRST
2013-10-16 13:09 - 2013-10-16 13:10 - 01954124 _____ (Farbar) C:\Users\Caleb's Computer\Downloads\FRST64.exe
2013-10-16 13:09 - 2013-10-16 13:09 - 01087213 _____ (Farbar) C:\Users\Caleb's Computer\Downloads\FRST.exe
2013-10-16 12:45 - 2013-10-16 12:48 - 00015996 _____ C:\Users\Caleb's Computer\Desktop\attach.txt
2013-10-16 12:45 - 2013-10-16 12:47 - 00029189 _____ C:\Users\Caleb's Computer\Desktop\dds.txt
2013-10-16 12:44 - 2013-10-16 12:44 - 00688992 ____R (Swearware) C:\Users\Caleb's Computer\Downloads\dds.com
2013-10-16 08:04 - 2013-10-16 08:08 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Marvels.Agents.of.S.H.I.E.L.D.S01E04.720p.HDTV.X264-DIMENSION
2013-10-15 18:52 - 2013-10-15 18:52 - 00000000 ____D C:\Users\Caleb's Computer\AppData\Roaming\Avira
2013-10-15 18:42 - 2013-10-15 18:42 - 00002074 _____ C:\Users\Public\Desktop\Avira Control Center.lnk
2013-10-15 18:42 - 2013-10-15 18:42 - 00000000 ____D C:\ProgramData\Avira
2013-10-15 18:42 - 2013-10-15 18:42 - 00000000 ____D C:\Program Files (x86)\Avira
2013-10-15 18:42 - 2013-10-10 19:14 - 00132600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-10-15 18:42 - 2013-10-10 19:14 - 00105856 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-10-15 18:42 - 2013-10-10 19:14 - 00083160 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-10-15 18:42 - 2013-10-10 19:14 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2013-10-15 18:16 - 2013-10-15 18:31 - 123650800 _____ C:\Users\Caleb's Computer\Downloads\avira_free_antivirus_en(2).exe
2013-10-15 17:57 - 2013-10-15 18:05 - 123650800 _____ C:\Users\Caleb's Computer\Downloads\avira_free_antivirus_en(1).exe
2013-10-15 17:53 - 2013-10-15 17:55 - 00003420 _____ C:\Windows\System32\Tasks\BitGuard
2013-10-15 17:40 - 2013-10-15 17:53 - 91617075 _____ C:\Users\Caleb's Computer\Downloads\avira_free_antivirus_en.exe.part
2013-10-15 17:40 - 2013-10-15 17:40 - 00000000 _____ C:\Users\Caleb's Computer\Downloads\avira_free_antivirus_en.exe
2013-10-15 17:38 - 2013-10-15 17:59 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Man.Of.Steel.2013.720p.BluRay.x264-Felony
2013-10-13 22:22 - 2013-10-13 22:41 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Boardwalk.Empire.S04E06.720p.HDTV.x264-KILLERS
2013-10-13 18:42 - 2013-10-13 18:43 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\American Horror Story 2011 S01 720p x264 DTS BDRip-STHD
2013-10-13 18:36 - 2013-10-13 18:47 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\American.Horror.Story.S02.720p.BluRay.X264-REWARD
2013-10-10 03:12 - 2013-09-22 18:27 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-10-10 03:12 - 2013-09-22 18:27 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-10-10 03:12 - 2013-09-22 18:27 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-10-10 03:12 - 2013-09-22 18:27 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-10-10 03:12 - 2013-09-22 18:27 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-10-10 03:12 - 2013-09-22 18:27 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-10-10 03:12 - 2013-09-22 18:27 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-10-10 03:12 - 2013-09-22 18:27 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-10-10 03:12 - 2013-09-22 17:55 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-10-10 03:12 - 2013-09-22 17:54 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-10 03:12 - 2013-09-22 17:54 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-10 03:12 - 2013-09-22 17:54 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-10 03:12 - 2013-09-22 17:54 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-10 03:12 - 2013-09-22 17:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-10-10 03:12 - 2013-09-22 17:54 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-10-10 03:12 - 2013-09-22 17:54 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-10-10 03:12 - 2013-09-22 17:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-10-10 03:12 - 2013-09-20 22:38 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-10 03:12 - 2013-09-20 22:30 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-10-10 03:12 - 2013-09-20 21:48 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-10-10 03:12 - 2013-09-20 21:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-10-10 03:11 - 2013-09-22 18:28 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-10-10 03:11 - 2013-09-22 18:28 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-10-10 03:11 - 2013-09-22 18:27 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-10-10 03:11 - 2013-09-22 18:27 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-10-10 03:11 - 2013-09-22 18:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-10-10 03:11 - 2013-09-22 17:55 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-10 03:11 - 2013-09-22 17:55 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-10 03:11 - 2013-09-22 17:54 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-10 03:11 - 2013-09-22 17:54 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-10 03:11 - 2013-09-22 17:54 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-09 12:48 - 2013-09-13 20:10 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2013-10-09 12:48 - 2013-09-07 21:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-10-09 12:48 - 2013-09-07 21:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2013-10-09 12:48 - 2013-09-07 21:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2013-10-09 12:48 - 2013-09-04 07:12 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2013-10-09 12:48 - 2013-09-04 07:11 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2013-10-09 12:48 - 2013-09-04 07:11 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-10-09 12:48 - 2013-09-04 07:11 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2013-10-09 12:48 - 2013-09-04 07:11 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2013-10-09 12:48 - 2013-09-04 07:11 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2013-10-09 12:48 - 2013-09-04 07:11 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2013-10-09 12:48 - 2013-08-28 21:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-10-09 12:48 - 2013-08-28 21:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-10-09 12:48 - 2013-08-28 21:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2013-10-09 12:48 - 2013-08-28 21:16 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-10-09 12:48 - 2013-08-28 21:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2013-10-09 12:48 - 2013-08-28 20:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-10-09 12:48 - 2013-08-28 20:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-10-09 12:48 - 2013-08-28 20:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-10-09 12:48 - 2013-08-28 20:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2013-10-09 12:48 - 2013-08-28 20:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-10-09 12:48 - 2013-08-28 20:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2013-10-09 12:48 - 2013-08-28 19:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-10-09 12:48 - 2013-08-28 19:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-10-09 12:48 - 2013-08-28 19:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-10-09 12:48 - 2013-08-28 19:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-10-09 12:48 - 2013-08-27 20:21 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-09 12:48 - 2013-08-27 20:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2013-10-09 12:48 - 2013-08-01 07:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-10-09 12:48 - 2013-07-20 05:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 12:48 - 2013-07-20 05:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 12:48 - 2013-07-12 05:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2013-10-09 12:48 - 2013-07-12 05:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2013-10-09 12:48 - 2013-07-12 05:40 - 00109824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys
2013-10-09 12:48 - 2013-07-04 07:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2013-10-09 12:48 - 2013-07-04 07:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-10-09 12:48 - 2013-07-04 07:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2013-10-09 12:48 - 2013-07-04 06:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2013-10-09 12:48 - 2013-07-04 06:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2013-10-09 12:48 - 2013-07-04 06:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2013-10-09 12:48 - 2013-07-04 05:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2013-10-09 12:48 - 2013-07-02 23:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2013-10-09 12:48 - 2013-07-02 23:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2013-10-09 12:48 - 2013-06-25 17:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-09 12:48 - 2013-06-06 00:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2013-10-09 12:48 - 2013-06-06 00:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2013-10-09 12:48 - 2013-06-06 00:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2013-10-09 12:48 - 2013-06-06 00:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-09 12:48 - 2013-06-05 23:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2013-10-09 12:48 - 2013-06-05 23:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2013-10-09 12:48 - 2013-06-05 23:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2013-10-09 12:48 - 2013-06-05 22:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-09 12:48 - 2013-06-05 22:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2013-10-09 12:48 - 2013-06-05 22:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2013-10-08 20:21 - 2013-10-08 20:30 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Marvels.Agents.of.S.H.I.E.L.D.S01E03.720p.HDTV.X264-DIMENSION
2013-10-08 18:02 - 2013-10-08 18:02 - 00000000 ____D C:\Users\Caleb's Computer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard
2013-10-07 19:42 - 2013-10-07 19:47 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Season 2
2013-10-07 18:39 - 2013-10-07 18:39 - 00321927 _____ C:\Users\Caleb's Computer\Downloads\V_7cUFDUG+Y=
2013-10-07 07:52 - 2013-10-07 11:30 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Boardwalk.Empire.S04E05.720p.HDTV.x264-2HD
2013-10-05 10:52 - 2013-10-05 11:22 - 3219527963 ____R C:\Users\Caleb's Computer\Downloads\Elysium 2013 720p Webrip x264 AC3 UNiQUE.mkv
2013-10-02 11:39 - 2013-10-02 11:41 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Pacific.Rim.2013.720P.WEBRIP.XVID.AC3-MAJESTIC
2013-10-02 07:19 - 2013-10-07 20:54 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Marvels.Agents.of.S.H.I.E.L.D.S01E02.720p.HDTV.X264-DIMENSION
2013-10-01 08:41 - 2013-10-07 08:12 - 00000000 _____ C:\Users\Public\Desktop\Myth III
2013-09-30 16:04 - 2013-09-30 16:42 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\The.Purge.2013.720p.WEBRip.AC3.x264-BladeBDP
2013-09-30 13:01 - 2013-09-30 13:34 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Breaking Bad COMPLETE S01-S05 1080p WEB-DL DD5 1 H 264 CARBoN
2013-09-30 08:31 - 2013-10-07 11:30 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Boardwalk.Empire.S04E04.720p.HDTV.x264-EVOLVE
2013-09-29 21:27 - 2013-09-29 21:32 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Breaking.Bad.S05E16.720p.HDTV.x264-IMMERSE
2013-09-29 15:48 - 2013-09-29 15:48 - 00490808 _____ () C:\Users\Caleb's Computer\Downloads\setup(3).exe
2013-09-25 16:53 - 2013-09-25 17:50 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\House.of.Cards.2013.S01.720p.BluRay.x264-Green
2013-09-25 16:52 - 2013-09-25 20:06 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Nip.Tuck.COMPLETE.DVDRip.XviD-iPT
2013-09-25 16:51 - 2013-10-07 20:54 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Marvels.Agents.of.S.H.I.E.L.D.S01E01.720p.HDTV.X264-DIMENSION
2013-09-25 16:51 - 2013-09-25 17:28 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Sons.of.Anarchy.S06E03.720p.HDTV.x264-IMMERSE
2013-09-23 16:25 - 2013-09-23 16:25 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\+1.2013 WEBRip XViD juggs
2013-09-23 16:24 - 2013-10-07 11:30 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Boardwalk.Empire.S04E03.720p.HDTV.x264-EVOLVE
2013-09-23 16:24 - 2013-09-24 20:41 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Dexter.S08E12.720p.HDTV.x264-EVOLVE
2013-09-23 16:24 - 2013-09-23 17:08 - 1763008590 ____R C:\Users\Caleb's Computer\Downloads\UFC.165.Jones.vs.Gustafsson.21st.Sept.2013.HDTV.x264-Sir.Paul.mp4
2013-09-22 12:10 - 2013-09-22 12:10 - 00001787 _____ C:\Users\Public\Desktop\iTunes.lnk
2013-09-22 12:05 - 2013-09-22 12:05 - 00001849 _____ C:\Users\Public\Desktop\QuickTime Player.lnk
2013-09-22 03:24 - 2013-09-22 03:24 - 00000000 ____D C:\Users\Caleb's Computer\AppData\Roaming\File Scout
2013-09-20 22:29 - 2013-09-20 22:33 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\World.War.Z.2013.UNRATED.1080p.BluRay.DTS-HD.MA.7.1.x264-LEGi0N
2013-09-18 19:24 - 2013-09-20 22:59 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Sons.of.Anarchy.S06E02.720p.HDTV.x264-2HD
2013-09-16 18:38 - 2013-09-16 18:38 - 00490808 _____ () C:\Users\Caleb's Computer\Downloads\setup(2).exe
2013-09-16 17:03 - 2013-09-16 17:03 - 00490808 _____ () C:\Users\Caleb's Computer\Downloads\setup(1).exe
2013-09-16 17:02 - 2013-09-16 17:15 - 1420453888 _____ C:\Users\Caleb's Computer\Downloads\After.Earth.2013.WEB-DLRip.XviD-TST.avi

==================== One Month Modified Files and Folders =======

2013-10-16 13:10 - 2013-10-16 13:10 - 00000000 ____D C:\FRST
2013-10-16 13:10 - 2013-10-16 13:09 - 01954124 _____ (Farbar) C:\Users\Caleb's Computer\Downloads\FRST64.exe
2013-10-16 13:10 - 2011-10-12 21:03 - 00000000 ____D C:\Users\Caleb's Computer\AppData\Roaming\uTorrent
2013-10-16 13:09 - 2013-10-16 13:09 - 01087213 _____ (Farbar) C:\Users\Caleb's Computer\Downloads\FRST.exe
2013-10-16 12:48 - 2013-10-16 12:45 - 00015996 _____ C:\Users\Caleb's Computer\Desktop\attach.txt
2013-10-16 12:47 - 2013-10-16 12:45 - 00029189 _____ C:\Users\Caleb's Computer\Desktop\dds.txt
2013-10-16 12:44 - 2013-10-16 12:44 - 00688992 ____R (Swearware) C:\Users\Caleb's Computer\Downloads\dds.com
2013-10-16 12:31 - 2013-06-11 19:06 - 00000918 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-16 12:30 - 2012-10-24 20:21 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-10-16 12:05 - 2011-10-04 19:35 - 01682432 _____ C:\Windows\WindowsUpdate.log
2013-10-16 09:14 - 2013-09-03 13:58 - 00000400 _____ C:\Windows\Tasks\AmiUpdXp.job
2013-10-16 08:08 - 2013-10-16 08:04 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Marvels.Agents.of.S.H.I.E.L.D.S01E04.720p.HDTV.X264-DIMENSION
2013-10-15 22:31 - 2013-06-11 19:06 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-15 18:52 - 2013-10-15 18:52 - 00000000 ____D C:\Users\Caleb's Computer\AppData\Roaming\Avira
2013-10-15 18:42 - 2013-10-15 18:42 - 00002074 _____ C:\Users\Public\Desktop\Avira Control Center.lnk
2013-10-15 18:42 - 2013-10-15 18:42 - 00000000 ____D C:\ProgramData\Avira
2013-10-15 18:42 - 2013-10-15 18:42 - 00000000 ____D C:\Program Files (x86)\Avira
2013-10-15 18:31 - 2013-10-15 18:16 - 123650800 _____ C:\Users\Caleb's Computer\Downloads\avira_free_antivirus_en(2).exe
2013-10-15 18:10 - 2013-03-08 08:47 - 00000000 ____D C:\Program Files (x86)\Ask.com
2013-10-15 18:09 - 2011-10-05 16:19 - 00000000 ____D C:\ProgramData\McAfee
2013-10-15 18:05 - 2013-10-15 17:57 - 123650800 _____ C:\Users\Caleb's Computer\Downloads\avira_free_antivirus_en(1).exe
2013-10-15 18:04 - 2009-07-13 23:45 - 00016976 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-15 18:04 - 2009-07-13 23:45 - 00016976 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-15 17:59 - 2013-10-15 17:38 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Man.Of.Steel.2013.720p.BluRay.x264-Felony
2013-10-15 17:55 - 2013-10-15 17:53 - 00003420 _____ C:\Windows\System32\Tasks\BitGuard
2013-10-15 17:55 - 2011-10-05 16:41 - 00000000 ____D C:\New Folder
2013-10-15 17:54 - 2010-11-20 22:47 - 00402876 _____ C:\Windows\PFRO.log
2013-10-15 17:54 - 2009-07-14 00:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-15 17:54 - 2009-07-13 23:51 - 00066347 _____ C:\Windows\setupact.log
2013-10-15 17:53 - 2013-10-15 17:40 - 91617075 _____ C:\Users\Caleb's Computer\Downloads\avira_free_antivirus_en.exe.part
2013-10-15 17:40 - 2013-10-15 17:40 - 00000000 _____ C:\Users\Caleb's Computer\Downloads\avira_free_antivirus_en.exe
2013-10-14 23:50 - 2011-10-04 20:20 - 00000000 ____D C:\Users\Caleb's Computer\Desktop\Calebs school
2013-10-13 22:41 - 2013-10-13 22:22 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Boardwalk.Empire.S04E06.720p.HDTV.x264-KILLERS
2013-10-13 18:47 - 2013-10-13 18:36 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\American.Horror.Story.S02.720p.BluRay.X264-REWARD
2013-10-13 18:43 - 2013-10-13 18:42 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\American Horror Story 2011 S01 720p x264 DTS BDRip-STHD
2013-10-12 16:11 - 2013-09-15 13:47 - 00000314 _____ C:\Windows\Tasks\DLL-Files.Com Fixer_Updates.job
2013-10-10 19:14 - 2013-10-15 18:42 - 00132600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-10-10 19:14 - 2013-10-15 18:42 - 00105856 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-10-10 19:14 - 2013-10-15 18:42 - 00083160 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-10-10 19:14 - 2013-10-15 18:42 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2013-10-10 03:59 - 2013-08-15 04:02 - 00000000 ____D C:\Windows\rescache
2013-10-10 03:39 - 2009-07-14 00:13 - 00794024 _____ C:\Windows\system32\PerfStringBackup.INI
2013-10-10 03:32 - 2009-07-13 23:45 - 00418160 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-10 03:31 - 2013-09-13 22:38 - 00000000 ____D C:\ProgramData\BitGuard
2013-10-10 03:31 - 2013-02-02 14:39 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-10-10 03:31 - 2013-02-02 14:39 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-10-10 03:31 - 2012-05-03 18:35 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-10-10 03:13 - 2011-10-04 21:20 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-10-10 03:10 - 2011-11-15 10:02 - 00787748 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-10-10 03:07 - 2013-07-27 03:00 - 00000000 ____D C:\Windows\system32\MRT
2013-10-10 03:04 - 2012-05-29 17:01 - 80541720 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-10-09 12:30 - 2013-05-15 09:30 - 17813896 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2013-10-09 12:30 - 2012-10-24 20:21 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-10-09 12:30 - 2012-10-24 20:20 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-10-09 12:30 - 2011-10-05 16:20 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-08 22:26 - 2013-06-11 19:06 - 00003914 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-10-08 22:26 - 2013-06-11 19:06 - 00003662 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-10-08 20:30 - 2013-10-08 20:21 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Marvels.Agents.of.S.H.I.E.L.D.S01E03.720p.HDTV.X264-DIMENSION
2013-10-08 18:02 - 2013-10-08 18:02 - 00000000 ____D C:\Users\Caleb's Computer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard
2013-10-07 20:54 - 2013-10-02 07:19 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Marvels.Agents.of.S.H.I.E.L.D.S01E02.720p.HDTV.X264-DIMENSION
2013-10-07 20:54 - 2013-09-25 16:51 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Marvels.Agents.of.S.H.I.E.L.D.S01E01.720p.HDTV.X264-DIMENSION
2013-10-07 19:47 - 2013-10-07 19:42 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Season 2
2013-10-07 18:39 - 2013-10-07 18:39 - 00321927 _____ C:\Users\Caleb's Computer\Downloads\V_7cUFDUG+Y=
2013-10-07 11:30 - 2013-10-07 07:52 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Boardwalk.Empire.S04E05.720p.HDTV.x264-2HD
2013-10-07 11:30 - 2013-09-30 08:31 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Boardwalk.Empire.S04E04.720p.HDTV.x264-EVOLVE
2013-10-07 11:30 - 2013-09-23 16:24 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Boardwalk.Empire.S04E03.720p.HDTV.x264-EVOLVE
2013-10-07 11:30 - 2013-09-15 21:38 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Boardwalk.Empire.S04E02.720p.HDTV.x264-EVOLVE
2013-10-07 08:12 - 2013-10-01 08:41 - 00000000 _____ C:\Users\Public\Desktop\Myth III
2013-10-07 08:12 - 2013-09-03 15:55 - 00000000 ____D C:\Program Files (x86)\Myth III
2013-10-07 08:11 - 2011-10-04 19:48 - 00000000 ____D C:\Users\Caleb's Computer\AppData\Local\Mozilla
2013-10-07 08:10 - 2013-05-20 23:33 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-10-05 11:22 - 2013-10-05 10:52 - 3219527963 ____R C:\Users\Caleb's Computer\Downloads\Elysium 2013 720p Webrip x264 AC3 UNiQUE.mkv
2013-10-02 16:12 - 2013-09-15 13:47 - 00000298 _____ C:\Windows\Tasks\DLL-Files.Com Fixer_MONTHLY.job
2013-10-02 11:41 - 2013-10-02 11:39 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Pacific.Rim.2013.720P.WEBRIP.XVID.AC3-MAJESTIC
2013-09-30 16:42 - 2013-09-30 16:04 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\The.Purge.2013.720p.WEBRip.AC3.x264-BladeBDP
2013-09-30 13:34 - 2013-09-30 13:01 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Breaking Bad COMPLETE S01-S05 1080p WEB-DL DD5 1 H 264 CARBoN
2013-09-29 21:32 - 2013-09-29 21:27 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Breaking.Bad.S05E16.720p.HDTV.x264-IMMERSE
2013-09-29 15:49 - 2011-10-04 19:37 - 00000000 ____D C:\Users\Caleb's Computer\AppData\Local\Deployment
2013-09-29 15:48 - 2013-09-29 15:48 - 00490808 _____ () C:\Users\Caleb's Computer\Downloads\setup(3).exe
2013-09-25 20:06 - 2013-09-25 16:52 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Nip.Tuck.COMPLETE.DVDRip.XviD-iPT
2013-09-25 17:50 - 2013-09-25 16:53 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\House.of.Cards.2013.S01.720p.BluRay.x264-Green
2013-09-25 17:28 - 2013-09-25 16:51 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Sons.of.Anarchy.S06E03.720p.HDTV.x264-IMMERSE
2013-09-24 20:41 - 2013-09-23 16:24 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Dexter.S08E12.720p.HDTV.x264-EVOLVE
2013-09-23 17:08 - 2013-09-23 16:24 - 1763008590 ____R C:\Users\Caleb's Computer\Downloads\UFC.165.Jones.vs.Gustafsson.21st.Sept.2013.HDTV.x264-Sir.Paul.mp4
2013-09-23 16:25 - 2013-09-23 16:25 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\+1.2013 WEBRip XViD juggs
2013-09-22 18:28 - 2013-10-10 03:11 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-09-22 18:28 - 2013-10-10 03:11 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-09-22 18:27 - 2013-10-10 03:12 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-09-22 18:27 - 2013-10-10 03:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-09-22 18:27 - 2013-10-10 03:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-09-22 18:27 - 2013-10-10 03:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-09-22 18:27 - 2013-10-10 03:12 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-09-22 18:27 - 2013-10-10 03:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-09-22 18:27 - 2013-10-10 03:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-09-22 18:27 - 2013-10-10 03:12 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-09-22 18:27 - 2013-10-10 03:11 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-09-22 18:27 - 2013-10-10 03:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-09-22 18:27 - 2013-10-10 03:11 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-09-22 17:55 - 2013-10-10 03:12 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-09-22 17:55 - 2013-10-10 03:11 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-09-22 17:55 - 2013-10-10 03:11 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-09-22 17:54 - 2013-10-10 03:12 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-09-22 17:54 - 2013-10-10 03:12 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-09-22 17:54 - 2013-10-10 03:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-09-22 17:54 - 2013-10-10 03:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-09-22 17:54 - 2013-10-10 03:12 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-09-22 17:54 - 2013-10-10 03:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-09-22 17:54 - 2013-10-10 03:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-09-22 17:54 - 2013-10-10 03:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-09-22 17:54 - 2013-10-10 03:11 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-09-22 17:54 - 2013-10-10 03:11 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-09-22 17:54 - 2013-10-10 03:11 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-09-22 12:28 - 2011-10-04 19:35 - 00000000 ____D C:\Users\Caleb's Computer
2013-09-22 12:27 - 2013-09-15 21:51 - 00001704 _____ C:\Windows\system32\ASOROSet.bin
2013-09-22 12:27 - 2009-07-13 21:34 - 84410368 _____ C:\Windows\system32\config\SOFTWARE.bak
2013-09-22 12:27 - 2009-07-13 21:34 - 26738688 _____ C:\Windows\system32\config\SYSTEM.bak
2013-09-22 12:27 - 2009-07-13 21:34 - 00262144 _____ C:\Windows\system32\config\SECURITY.bak
2013-09-22 12:24 - 2009-07-13 21:34 - 00262144 _____ C:\Windows\system32\config\SAM.bak
2013-09-22 12:10 - 2013-09-22 12:10 - 00001787 _____ C:\Users\Public\Desktop\iTunes.lnk
2013-09-22 12:10 - 2012-12-31 13:28 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-09-22 12:10 - 2012-12-31 13:28 - 00000000 ____D C:\Program Files\iTunes
2013-09-22 12:10 - 2012-12-31 13:28 - 00000000 ____D C:\Program Files\iPod
2013-09-22 12:10 - 2012-12-31 13:28 - 00000000 ____D C:\Program Files (x86)\iTunes
2013-09-22 12:05 - 2013-09-22 12:05 - 00001849 _____ C:\Users\Public\Desktop\QuickTime Player.lnk
2013-09-22 12:05 - 2012-11-11 23:32 - 00000000 ____D C:\Program Files (x86)\QuickTime
2013-09-22 03:24 - 2013-09-22 03:24 - 00000000 ____D C:\Users\Caleb's Computer\AppData\Roaming\File Scout
2013-09-20 22:59 - 2013-09-18 19:24 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Sons.of.Anarchy.S06E02.720p.HDTV.x264-2HD
2013-09-20 22:38 - 2013-10-10 03:12 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-09-20 22:33 - 2013-09-20 22:29 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\World.War.Z.2013.UNRATED.1080p.BluRay.DTS-HD.MA.7.1.x264-LEGi0N
2013-09-20 22:30 - 2013-10-10 03:12 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-09-20 21:48 - 2013-10-10 03:12 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-20 21:39 - 2013-10-10 03:12 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-09-17 19:31 - 2013-09-15 21:38 - 00000000 ____D C:\Users\Caleb's Computer\Downloads\Dexter.S08E11.720p.HDTV.x264-IMMERSE
2013-09-16 18:38 - 2013-09-16 18:38 - 00490808 _____ () C:\Users\Caleb's Computer\Downloads\setup(2).exe
2013-09-16 17:15 - 2013-09-16 17:02 - 1420453888 _____ C:\Users\Caleb's Computer\Downloads\After.Earth.2013.WEB-DLRip.XviD-TST.avi
2013-09-16 17:03 - 2013-09-16 17:03 - 00490808 _____ () C:\Users\Caleb's Computer\Downloads\setup(1).exe

Files to move or delete:
====================
ZeroAccess:
C:\Program Files (x86)\Google\Desktop\Install


Some content of TEMP:
====================
C:\Users\Caleb's Computer\AppData\Local\Temp\0177771381877389mcinst.exe
C:\Users\Caleb's Computer\AppData\Local\Temp\avgnt.exe
C:\Users\Caleb's Computer\AppData\Local\Temp\drm_dialogs.dll
C:\Users\Caleb's Computer\AppData\Local\Temp\MozyUninstaller.exe
C:\Users\Caleb's Computer\AppData\Local\Temp\rootsupd.exe
C:\Users\Caleb's Computer\AppData\Local\Temp\SearchProtectionSetup.exe
C:\Users\Caleb's Computer\AppData\Local\Temp\setup_fsu_cid.exe
C:\Users\Caleb's Computer\AppData\Local\Temp\SoundCloudDownloader_Setup.exe
C:\Users\Caleb's Computer\AppData\Local\Temp\_is95CA.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
C:\Program Files\Windows Defender\mpsvc.dll => ATTENTION: ZeroAccess. Use DeleteJunctionsIndirectory: C:\Program Files\Windows Defender


LastRegBack: 2013-10-11 00:33

==================== End Of Log ============================

Attached Files



#4 B-boy/StyLe/

B-boy/StyLe/

    Bleepin' Freestyler


  • Malware Response Team
  • 8,307 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Bulgaria
  • Local time:10:18 PM

Posted 16 October 2013 - 01:34 PM

Hi,

 

Thank you for the logs...I'll reply back later today since I am at work right now. Stay Tuned. ;)

 

 

Regards,

Georgi


cXfZ4wS.png


#5 calebmhartmann

calebmhartmann
  • Topic Starter

  • Members
  • 17 posts
  • OFFLINE
  •  
  • Local time:01:18 PM

Posted 16 October 2013 - 01:36 PM

Thank you for your assistance on this.

 

Caleb.



#6 B-boy/StyLe/

B-boy/StyLe/

    Bleepin' Freestyler


  • Malware Response Team
  • 8,307 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Bulgaria
  • Local time:10:18 PM

Posted 17 October 2013 - 06:15 AM

Hi,

 

 

Next please download the following file => and save it to the Desktop.
NOTE. It's important that both files, FRST and fixlist.txt are in the same location or the fix will not work.

Run FRST and press the Fix button just once and wait.
The tool will make a log on the Desktop (Fixlog.txt). Please post it to your reply.

 

 

Regards,

Georgi


cXfZ4wS.png


#7 calebmhartmann

calebmhartmann
  • Topic Starter

  • Members
  • 17 posts
  • OFFLINE
  •  
  • Local time:01:18 PM

Posted 17 October 2013 - 06:16 PM

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 02-10-2013
Ran by Caleb's Computer at 2013-10-17 18:09:55 Run:1
Running from C:\Users\Caleb's Computer\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
start
() C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe
() C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe
(Spigot, Inc.) C:\Users\Caleb's Computer\AppData\Roaming\Search Protection\SearchProtection.exe
HKCU\...\Run: [SearchProtection] - C:\Users\Caleb's Computer\AppData\Roaming\Search Protection\SearchProtection.EXE [832360 2013-09-03] (Spigot, Inc.)
C:\Users\Caleb's Computer\AppData\Roaming\Search Protection
HKCU\...\Run: [NTRedirect] - C:\Windows\SysWOW64\rundll32.exe "C:\Users\Caleb's Computer\AppData\Roaming\BabSolution\Shared\enhancedNT.dll",Run
C:\Users\Caleb's Computer\AppData\Roaming\BabSolution
HKCU\...\Winlogon: [Shell] C:\Users\Caleb's Computer\AppData\Roaming\dlc.xmm,explorer.exe <==== ATTENTION
C:\Users\Caleb's Computer\AppData\Roaming\dlc.xmm
AppInit_DLLs-x32: c:\progra~3\bitguard\261694~1.246\{c16c1~1\bitguard.dll  [2704352 2013-10-08] ()
c:\progra~3\bitguard
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Best Buy pc app.lnk
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Best Buy pc app.lnk
C:\ProgramData\Best Buy pc app
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www2.delta-search.com/?babsrc=HP_ss&mntrId=9CCC14DAE958DC76&affID=121705&tsp=4994
HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = http://www2.delta-search.com/?babsrc=HP_ss&mntrId=9CCC14DAE958DC76&affID=121705&tsp=4994
URLSearchHook: (No Name) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} -  No File
URLSearchHook: (No Name) - {32b29df0-2237-4370-9a29-37cebb730e9b} -  No File
SearchScopes: HKLM-x32 - DefaultScope {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2704262
SearchScopes: HKLM-x32 - {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2704262
SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www2.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=9CCC14DAE958DC76&affID=121705&tsp=4994
SearchScopes: HKCU - {A4580BA1-20C8-4511-B1B6-01C478CA958C} URL = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=TV&apn_dtid=OSJ000YYUS&apn_uid=93285309-80F5-45DA-9043-AED68A701B4A&apn_sauid=5F6CA372-134B-4FB8-A1FC-A95833B3B8A6
SearchScopes: HKCU - {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2704262
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files (x86)\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll No File
C:\Program Files (x86)\McAfee Security Scan
BHO-x32: hosts - {11111111-1111-1111-1111-110311531182} - C:\Program Files (x86)\hosts\hosts-bho.dll No File
C:\Program Files (x86)\hosts
BHO-x32: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
C:\Program Files (x86)\ConduitEngine
BHO-x32: FreeSoundRecorder Toolbar - {32b29df0-2237-4370-9a29-37cebb730e9b} - C:\Program Files (x86)\FreeSoundRecorder\prxtbFree.dll (Conduit Ltd.)
BHO-x32: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\prxtbuTor.dll (Conduit Ltd.)
C:\Program Files (x86)\uTorrentBar
BHO-x32: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.24.6\bh\delta.dll (Delta-search.com)
C:\Program Files (x86)\Delta
Toolbar: HKLM-x32 - uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\prxtbuTor.dll (Conduit Ltd.)
Toolbar: HKLM-x32 - FreeSoundRecorder Toolbar - {32b29df0-2237-4370-9a29-37cebb730e9b} - C:\Program Files (x86)\FreeSoundRecorder\prxtbFree.dll (Conduit Ltd.)
Toolbar: HKLM-x32 - Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
Toolbar: HKLM-x32 - Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.24.6\deltaTlbr.dll (Delta-search.com)
Toolbar: HKCU -  No Name - {BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} -  No File
cmd: netsh winsock reset
FF Homepage: hxxp://www2.delta-search.com/?babsrc=HP_ss&mntrId=9CCC14DAE958DC76&affID=121705&tsp=4994
FF Plugin: @bestbuy.com/npBestBuyPcAppDetector,version=1.0 - C:\ProgramData\Best Buy pc app\npBestBuyPcAppDetector.dll (Best Buy)
FF Plugin-x32: @bestbuy.com/npBestBuyPcAppDetector,version=1.0 - C:\ProgramData\Best Buy pc app\npBestBuyPcAppDetector.dll (Best Buy)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll No File
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml
FF Extension: Delta Toolbar - C:\Users\Caleb's Computer\AppData\Roaming\Mozilla\Firefox\Profiles\oxl65idy.default\Extensions\ffxtlbr@delta.com
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
CHR Extension: (SiteAdvisor) - C:\Users\CALEB'~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.6.2.1341
CHR Extension: (hosts) - C:\Users\CALEB'~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnlomafmkpiclmaaekkhpoecnclldmaa\1.23.3_0
CHR HKLM-x32\...\Chrome\Extension: [bejbohlohkkgompgecdcbbglkpjfjgdj] - C:\Users\CALEB'~1\AppData\Local\Temp\crxAFA6.tmp
CHR HKLM-x32\...\Chrome\Extension: [eooncjejnppfjjklapaamhcdmjbilmde] - C:\Users\Caleb's Computer\AppData\Roaming\BabSolution\CR\Delta.crx
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
R2 BitGuard; C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe [3032032 2013-10-08] ()
S3 McComponentHostService; "C:\Program Files (x86)\McAfee Security Scan\3.0.318\McCHSvc.exe" [x]
S4 McMPFSvc; "C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [x]
U2 *etadpug; "C:\Program Files (x86)\Google\Desktop\Install\{510e5f06-3f78-7a78-850f-f1ce9435bd1e}\   \...\???\{510e5f06-3f78-7a78-850f-f1ce9435bd1e}\GoogleUpdate.exe" < <==== ATTENTION (ZeroAccess)
2013-10-15 17:53 - 2013-10-15 17:55 - 00003420 _____ C:\Windows\System32\Tasks\BitGuard
2013-10-08 18:02 - 2013-10-08 18:02 - 00000000 ____D C:\Users\Caleb's Computer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard
2013-10-15 18:10 - 2013-03-08 08:47 - 00000000 ____D C:\Program Files (x86)\Ask.com
2013-10-15 18:09 - 2011-10-05 16:19 - 00000000 ____D C:\ProgramData\McAfee
2013-10-12 16:11 - 2013-09-15 13:47 - 00000314 _____ C:\Windows\Tasks\DLL-Files.Com Fixer_Updates.job
C:\Program Files (x86)\Google\Desktop\Install
DeleteJunctionsIndirectory: C:\Program Files\Windows Defender
Task: {549BD94A-341E-4168-AA64-18551AC30E63} - System32\Tasks\DLL-Files.Com Fixer_Updates => C:\Program Files (x86)\Dll-Files.com
Task: {5966BC27-FEE1-426C-91FF-C78CB8617F47} - System32\Tasks\DLL-Files.Com Fixer_MONTHLY => C:\Program Files (x86)\Dll-Files.com
Task: {FBC45341-07CD-488F-B8EF-D6AC3A0A4ECB} - System32\Tasks\BitGuard => Sc.exe start BitGuard
Task: C:\Windows\Tasks\DLL-Files.Com Fixer_MONTHLY.job => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
Task: C:\Windows\Tasks\DLL-Files.Com Fixer_Updates.job => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
C:\Users\Caleb's Computer\AppData\Local\Temp
end
*****************

[2096] C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe => Process closed successfully.
[2196] C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe => Process closed successfully.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe => No running process found
[3712] C:\Users\Caleb's Computer\AppData\Roaming\Search Protection\SearchProtection.exe => Process closed successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\SearchProtection => Value deleted successfully.
C:\Users\Caleb's Computer\AppData\Roaming\Search Protection => Moved successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\NTRedirect => Value deleted successfully.
C:\Users\Caleb's Computer\AppData\Roaming\BabSolution => Moved successfully.
HKCU\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell => Value deleted successfully.
"C:\Users\Caleb's Computer\AppData\Roaming\dlc.xmm" => File/Directory not found.
HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs => Value was restored successfully.

"c:\progra~3\bitguard" directory move:

Could not move "c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.dll" => Scheduled to move on reboot.
Could not move "c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe" => Scheduled to move on reboot.
Could not move "c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.settings" => Scheduled to move on reboot.
Could not move "c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\bl" => Scheduled to move on reboot.
Could not move "c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\dm" => Scheduled to move on reboot.
Could not move "c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\uninstall.exe" => Scheduled to move on reboot.
Could not move "c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\00" => Scheduled to move on reboot.
Could not move "c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\01" => Scheduled to move on reboot.
Could not move "c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\02" => Scheduled to move on reboot.
Could not move "c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\03" => Scheduled to move on reboot.
Could not move "c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\10" => Scheduled to move on reboot.
Could not move "c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\11" => Scheduled to move on reboot.
Could not move "c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\12" => Scheduled to move on reboot.
Could not move "c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\13" => Scheduled to move on reboot.
Could not move "c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\20" => Scheduled to move on reboot.
Could not move "c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\21" => Scheduled to move on reboot.
Could not move "c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\22" => Scheduled to move on reboot.
Could not move "c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\23" => Scheduled to move on reboot.
Could not move "c:\progra~3\bitguard" directory. => Scheduled to move on reboot.

C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Best Buy pc app.lnk => Moved successfully.
C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Best Buy pc app.lnk not found.
C:\ProgramData\Best Buy pc app => Moved successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\bProtector Start Page => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} => Value deleted successfully.
HKCR\CLSID\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\\{32b29df0-2237-4370-9a29-37cebb730e9b} => Value deleted successfully.
HKCR\CLSID\{32b29df0-2237-4370-9a29-37cebb730e9b} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\bProtectorDefaultScope => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key deleted successfully.
HKCR\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{A4580BA1-20C8-4511-B1B6-01C478CA958C} => Key deleted successfully.
HKCR\CLSID\{A4580BA1-20C8-4511-B1B6-01C478CA958C} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} => Key deleted successfully.
HKCR\CLSID\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01} => Key deleted successfully.
"C:\Program Files (x86)\McAfee Security Scan" => File/Directory not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311531182} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{11111111-1111-1111-1111-110311531182} => Key deleted successfully.
C:\Program Files (x86)\hosts => Moved successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D} => Key deleted successfully.
C:\Program Files (x86)\ConduitEngine => Moved successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{32b29df0-2237-4370-9a29-37cebb730e9b} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{32b29df0-2237-4370-9a29-37cebb730e9b} => Key deleted successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} => Key deleted successfully.
C:\Program Files (x86)\uTorrentBar => Moved successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} => Key deleted successfully.
C:\Program Files (x86)\Delta => Moved successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} => Value deleted successfully.
HKCR\Wow6432Node\CLSID\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{32b29df0-2237-4370-9a29-37cebb730e9b} => Value deleted successfully.
HKCR\Wow6432Node\CLSID\{32b29df0-2237-4370-9a29-37cebb730e9b} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{30F9B915-B755-4826-820B-08FBA6BD249D} => Value deleted successfully.
HKCR\Wow6432Node\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{82E1477C-B154-48D3-9891-33D83C26BCD3} => Value deleted successfully.
HKCR\Wow6432Node\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3} => Key deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} => Value deleted successfully.
HKCR\CLSID\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} => Key not found.

=========  netsh winsock reset =========


Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.


========= End of CMD: =========

Firefox homepage deleted successfully.
HKLM\Software\MozillaPlugins\@bestbuy.com/npBestBuyPcAppDetector,version=1.0 => Key deleted successfully.
"C:\ProgramData\Best Buy pc app\npBestBuyPcAppDetector.dll" => not found.
HKLM\Software\Wow6432Node\MozillaPlugins\@bestbuy.com/npBestBuyPcAppDetector,version=1.0 => Key deleted successfully.
C:\ProgramData\Best Buy pc app\npBestBuyPcAppDetector.dll not found.
HKLM\Software\Wow6432Node\MozillaPlugins\@mcafee.com/McAfeeMssPlugin => Key deleted successfully.
C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll not found.
C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Roaming\Mozilla\Firefox\Profiles\oxl65idy.default\Extensions\ffxtlbr@delta.com => Moved successfully.
HKLM\Software\Wow6432Node\Mozilla\Thunderbird\Extensions\\msktbird@mcafee.com => Value deleted successfully.
C:\Users\CALEB'~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho => Moved successfully.
C:\Users\CALEB'~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnlomafmkpiclmaaekkhpoecnclldmaa => Moved successfully.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\bejbohlohkkgompgecdcbbglkpjfjgdj => Key deleted successfully.
"C:\Users\CALEB'~1\AppData\Local\Temp\crxAFA6.tmp" => File/Directory not found.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde => Key deleted successfully.
"C:\Users\Caleb's Computer\AppData\Roaming\BabSolution\CR\Delta.crx" => File/Directory not found.
HKLM\SOFTWARE\Policies\Google => Key deleted successfully.
BitGuard => Service deleted successfully.
McComponentHostService => Service deleted successfully.
McMPFSvc => Service deleted successfully.
*etadpug => Service deleted successfully.
"C:\Windows\System32\Tasks\BitGuard" => File/Directory not found.
C:\Users\Caleb's Computer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard => Moved successfully.
C:\Program Files (x86)\Ask.com => Moved successfully.
C:\ProgramData\McAfee => Moved successfully.
C:\Windows\Tasks\DLL-Files.Com Fixer_Updates.job => Moved successfully.
C:\Program Files (x86)\Google\Desktop\Install => Moved successfully.
"C:\Program Files\Windows Defender" => Deleting reparse point and unlocking started.
"C:\Program Files\Windows Defender\en-US" => Deleting reparse point and unlocking done.
"C:\Program Files\Windows Defender\MpAsDesc.dll" => Deleting reparse point and unlocking done.
"C:\Program Files\Windows Defender\MpClient.dll" => Deleting reparse point and unlocking done.
"C:\Program Files\Windows Defender\MpCmdRun.exe" => Deleting reparse point and unlocking done.
"C:\Program Files\Windows Defender\MpCommu.dll" => Deleting reparse point and unlocking done.
"C:\Program Files\Windows Defender\MpEvMsg.dll" => Deleting reparse point and unlocking done.
"C:\Program Files\Windows Defender\MpOAV.dll" => Deleting reparse point and unlocking done.
"C:\Program Files\Windows Defender\MpRTP.dll" => Deleting reparse point and unlocking done.
"C:\Program Files\Windows Defender\MpSvc.dll" => Deleting reparse point and unlocking done.
"C:\Program Files\Windows Defender\MSASCui.exe" => Deleting reparse point and unlocking done.
"C:\Program Files\Windows Defender\MsMpCom.dll" => Deleting reparse point and unlocking done.
"C:\Program Files\Windows Defender\MsMpLics.dll" => Deleting reparse point and unlocking done.
"C:\Program Files\Windows Defender\MsMpRes.dll" => Deleting reparse point and unlocking done.
"C:\Program Files\Windows Defender" => Deleting reparse point and unlocking completed.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{549BD94A-341E-4168-AA64-18551AC30E63} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{549BD94A-341E-4168-AA64-18551AC30E63} => Key deleted successfully.
C:\Windows\System32\Tasks\DLL-Files.Com Fixer_Updates => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DLL-Files.Com Fixer_Updates => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5966BC27-FEE1-426C-91FF-C78CB8617F47} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5966BC27-FEE1-426C-91FF-C78CB8617F47} => Key deleted successfully.
C:\Windows\System32\Tasks\DLL-Files.Com Fixer_MONTHLY => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DLL-Files.Com Fixer_MONTHLY => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FBC45341-07CD-488F-B8EF-D6AC3A0A4ECB} => Key not found.
C:\Windows\System32\Tasks\BitGuard not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BitGuard => Key not found.
C:\Windows\Tasks\DLL-Files.Com Fixer_MONTHLY.job => Moved successfully.
C:\Windows\Tasks\DLL-Files.Com Fixer_Updates.job not found.
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => Key deleted successfully.

"C:\Users\Caleb's Computer\AppData\Local\Temp" directory move:

C:\Users\Caleb's Computer\AppData\Local\Temp\+1.2013 WEBRip XViD juggs.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\0177771381877389mcinst.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\064.JPG => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\072.JPG => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\079.JPG => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\10.jpg => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\101.jpg => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\110.JPG => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\11_training_greenstone_looney.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\1357233776956_3.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\1357233776956_4.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\1447.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\176.JPG => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\179.JPG => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\18F7.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\194.JPG => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\1hartman_1003.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\2013-wellness in the workplace.ppt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\20130322978045.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\233.JPG => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\2451.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\2893.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\38C1.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\3C09.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\407B.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\4560.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\49C5.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\4D85.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\53D.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\5761.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\6 Degrees Of Hell 2012 DVDRip Xvid AC3 UnKnOwN.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\62F1.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\640E.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\6700.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\6771.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\703C.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\708F.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\7F0F.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\7F4E.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\7m_hb2Au.docx.part => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8316.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8B9B.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8EFB.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\A++Giangrosso+Resume-1.doc => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\A++Giangrosso+Resume.doc => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\A870.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\A9FC.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\ADC1.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\adimLink.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\AdobeARM.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\AdobeARM_NotLocked.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\AEF0.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\After.Earth.2013.WEB-DLRip.XviD-TST.avi.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Alien.Infiltration.2010.BDRiP.XViD-TASTE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\American Horror Story 2011 S01 720p x264 DTS BDRip-STHD.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\American Maniacs UNRATED LIMITED DVDRip Xvid UnKnOwN.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\American.Horror.Story.S02.720p.BluRay.X264-REWARD.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Anna.Karenina.2012.DVDSCR.XviD-NYDIC.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\AppRemover_Log.txt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\ASPNETSetup_00000.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\ASPNETSetup_00001.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\ASPNETSetup_00002.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\ASPNETSetup_00003.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\ASPNETSetup_00004.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\ASPNETSetup_00005.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Assessment_Number_3_nr101.docx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Attach.txt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\B368.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\BACH_rubric_75.xls => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\BattleShip.2012.REPACK.TS.XViD.AC3-ADTRG2.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Battleship.DVDRip.XviD-DoNE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\bchDC50.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Bernie.2011.LIMITED.DVDRip.XviD-NeDiVx.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Boardwalk.Empire.S03E12.HDTV.XviD-AFG.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Boardwalk.Empire.S04E01.720p.HDTV.x264-EVOLVE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Boardwalk.Empire.S04E02.720p.HDTV.x264-EVOLVE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Boardwalk.Empire.S04E03.720p.HDTV.x264-EVOLVE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Boardwalk.Empire.S04E04.720p.HDTV.x264-EVOLVE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Boardwalk.Empire.S04E06.720p.HDTV.x264-KILLERS.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Breaking Bad COMPLETE S01-S05 1080p WEB-DL DD5 1 H 264 CARBoN.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Breaking.Bad.S05E16.720p.HDTV.x264-IMMERSE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\BruceTuckman_Team_Development_Model.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\C8F7.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CAH_MainGame-1.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CAH_MainGame.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Captain America-Dvdrip-Xvid-MRFIXIT.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CCIS_working_paper_no._5.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CDAA.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\che65C5.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\cheE667.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\cheEF46.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\cheF58C.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Chicago-Participant-Waiver-2013.zip => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\compdata.js => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Conducting_a_Needs_Assessment_Final.ppt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVR23B4.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVR2F09.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVR3454.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVR3AA6.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVR59E8.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVR5A21.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVR6A04.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVR7F52.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVR8074.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVR84E1.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVR880C.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVR903F.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVR9418.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVR9972.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVR9D22.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVRA00F.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVRAF84.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVRBBD9.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVRC085.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVRC490.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVRCD24.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVRCE3F.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVRD75C.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVRE1A7.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVRE33C.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVRF530.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVRF753.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\CVRFE8E.tmp.cvr => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\D950.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Dataflex Letters-132009301116.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Dataflex Letters-132069300173.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\DC87.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\DDS.txt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\dd_dotNetFx40_Full_setup_decompression_log.txt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\dd_wcf_CA_smci_20130915_224123_887.txt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\dd_wcf_CA_smci_20130915_224125_902.txt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\dd_wcf_CA_smci_20130915_230556_570.txt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\dd_wcf_CA_smci_20130915_230600_767.txt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\dd_wcf_CA_smci_20130916_021835_529.txt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\dd_wcf_CA_smci_20130916_021847_130.txt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Death Race 3 Inferno (2013) UNRATED WEB-DL XviD-LTRG.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Defiance.S01E03.720p.HDTV.x264-EVOLVE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Defiance.S01E04.HDTV.XviD-AFG.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Defiance.S01E06.HDTV.XviD-AFG.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Defiance.S01E07.HDTV.XviD-AFG.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Defiance.S01E08.HDTV.XVID-Snake.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Defiance.S01E10.HDTV.XviD-AFG.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Defiance.S01E11.HDTV.XviD-AFG.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Dexter S07E10 HDRip XviD-SANTi.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Dexter.S07E11.HDTV.XviD-AFG.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Dexter.S07E12.720p.HDTV.x264-IMMERSE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Dexter.S08E01.720p.HDTV.x264-EVOLVE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Dexter.S08E02.HDTV.XviD-AFG.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Dexter.S08E04.720p.HDTV.x264-EVOLVE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Dexter.S08E05.HDTV.XviD-AFG.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Dexter.S08E10.720p.HDTV.x264-EVOLVE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Dexter.S08E10.HDTV.x264-EVOLVE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Dexter.S08E11.720p.HDTV.x264-IMMERSE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Dexter.S08E12.720p.HDTV.x264-EVOLVE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Direct_Deposit_Form.docx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Django.Unchained.2012.DVDSCR.XVID-NYDIC.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Doomsday.2008.Unrated.BRRIP.XVID.AC3.MAJESTIC.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\download-1.csv => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\download-2.csv => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\download.csv => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\drm_dialogs.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\error-.gif => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\etilqs_2B2a8Nhka56sFNh => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\etilqs_B67eYF34ZWPDxFe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\etilqs_BPgUe8brZwdESXB => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\etilqs_CeMUfObh8rxNW2e => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\etilqs_dhcmWMIST2kpZ25 => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\etilqs_JSS2sxSw4O02TxN => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\etilqs_KovuaQqCJjDy0CI => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\etilqs_oFaPk1XlOVtboM4 => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\etilqs_ZzhRHImG0hREID3 => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Evil.Dead.2013.DVDRip.X264-AMIABLE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\F428DAF6.TMP => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\F616.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\F8AA.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\F9FA.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\fixlist.txt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\fmy.wng => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\fw4.pdf => Moved successfully.
Could not move "C:\Users\Caleb's Computer\AppData\Local\Temp\FXSAPIDebugLogFile.txt" => Scheduled to move on reboot.
C:\Users\Caleb's Computer\AppData\Local\Temp\G.I.Joe.Retaliation.2013.DvDRip.XviD.AC3-BTRG.avi.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Game.of.Thrones.S03E01.720p.HDTV.x264-EVOLVE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Game.of.Thrones.S03E01.HDTV.x264-2HD.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Game.of.Thrones.S03E06.720p.HDTV.x264.DUAL-ANGELiC.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Game.of.Thrones.S03E06.HDTV.XviD-AFG.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Game.of.Thrones.S03E08.1080p.HDTV.x264-QCF.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Game.of.Thrones.S03E08.720p.HDTV.x264-EVOLVE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Game.of.Thrones.S03E09.HDTV.XviD-AFG.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Gangster.Squad.2013.WEBRip.XviD-ViP3R.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Ghost Rider Spirit of Vengeance 2011 BRRiP XViD-SAM.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\gsi2FAC.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\gsi6033.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Hansel.and.Gretel.Witch.Hunters.2013.DVDRip.X264.AC3-NYDIC.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Hansel.and.Gretel.Witch.Hunters.2013.DVDRip.XviD-3LT0N.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Hartmann-HRM350-1303B-01 - PIVDB - 9-11-13.docx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Hartmann-HRM355-1303B-01 - PIII IP - 9-9-13.docx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Hartmann-HRM355-1303B-01 - PIVDB - 9-11-13.docx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Hartmann-MGM355-1302B-03 - PII IP - 6-3-13.docx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\hartman_wire.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\hastef0172.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\head.gif => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\heotote.atm => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Here is a template started for you for the DB 4.docx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\hhdme.fqe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Hitchcock.2012.DVDSCR.x264.AAC-FooKaS.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\House.of.Cards.2013.S01.720p.BluRay.x264-Green.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\HRM345_4.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\HRM345_6.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\HRM350 IP 5 template.docx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\HUDReport_3-25-2013_13-2.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\i-9-1.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\i-9.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\il-w-4-1.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\il-w-4.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\img11.jpg => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Iron.Man.3.2013.R6.HDScr.LINE.NoSUBS.NoBLURS.XViD.AC3.HQ.Hive-CM8(1).torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Iron.Sky.2012.DVDRip.XviD-4PlayHD.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Jack.Reacher.2012.R6.WEBRip.XVID.AC3.HQ.Hive-CM8.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Jack.the.Giant.Slayer.2013.INTERNAL.DVDRip.XviD-iND.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\JavaDeployReg.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\JETF1EC.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\John Carter(2012)-DVDRIp Xvid-THC.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\jusched.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\KEY ASSIGNMENT DRAFT HRM 35501303B-01 Debra Harvey Phase 4 DB September 11 2013.docx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Kick Ass 2 2013 READNFO WEBRiP UNiQUE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\laccpxc.mqo => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Lakisha+Terry+Resume+-+Updated.doc => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Live Chat 4.ppt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Live Chat 6.ppt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Live Chat 8.ppt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\logger.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\main.htm => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Marvels.Agents.of.S.H.I.E.L.D.S01E01.720p.HDTV.X264-DIMENSION.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Marvels.Agents.of.S.H.I.E.L.D.S01E02.720p.HDTV.X264-DIMENSION.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Marvels.Agents.of.S.H.I.E.L.D.S01E04.720p.HDTV.X264-DIMENSION.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\matthews..doc => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_20130915_173814977-MSI_netfx_Core_x64.msi.txt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_20130915_173814977-MSI_netfx_Extended_x64.msi.txt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_20130915_173814977.html => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_20130915_180325744-MSI_netfx_Core_x64.msi.txt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_20130915_180325744-MSI_netfx_Extended_x64.msi.txt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_20130915_180325744.html => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_20130915_210958107-MSI_netfx_Core_x64.msi.txt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_20130915_210958107-MSI_netfx_Extended_x64.msi.txt => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_20130915_210958107.html => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Mission Impossible - Ghost Protocol (2011)-DVDRIp Xvid-THC.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\movie11.gif => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\MozyUninstaller.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\mp2.png => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\MSI2b7dc.LOG => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\MSIe71f4.LOG => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\MyAccount_logOn.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\myth_ii__pc__v132.zip => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\MyZq788z.exe.part => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Nicole+Florey+resume..pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Nip.Tuck.COMPLETE.DVDRip.XviD-iPT.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\notice-.gif => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\NR101 Professional Behavior Self-Assessment.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Oblivion.2013.HDRip.XviD-THGF.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Only.God.Forgives.2013.HDRip.XviD-AQOS.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Oz.the.Great.and.Powerful.2013.720p.BluRay.x264-SPARKS.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Oz.The.Great.And.Powerful.2013.DVDRip.XViD-eXceSs.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Pacific.Rim.2013.720P.WEBRIP.XVID.AC3-MAJESTIC.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Pain & Gain 2013 TS XviD MP3 MiLLENiUM.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Parker DVDR 2013 BRDVD5 NTSC NLtoppers.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\PDFRequestRouter-1.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\PDFRequestRouter.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\performance management process.pptx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Permission_To_Deliver_Paystubs_Electronically.docx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\pnum.ljm => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\PrintApplication.aspx-1.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\PrintApplication.aspx.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Project.X.2012.DVDRip.XviD-AMIABLE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\QTInstallCode.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\qtplugin.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Redemption 2013 HDRiP XViD UNiQUE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\RGI6A5.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\RGI6A5.tmp-tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\RGI825C.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\RGI825C.tmp-tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\RGIAA61.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\RGIAA61.tmp-tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\rmdcadp.erd => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\rnFNf1eb.ppt.part => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\rootsupd.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Safe 2012.BDRip.XviD-WDR.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Safe.House.2012.BDrip.Xvid-eXceSs.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\scan-1.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\scan-2.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\scan-3.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\scan.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\SearchProtectionSetup.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\securedoc_20130325T130746.html => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\set2E6D.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\set36FA.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\set662F.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\set7F0C.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\set9709.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\setB08C.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\setC4D1.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\setF3B9.tmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\SetupAdmin22D0.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\SetupAdmin2CE4.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\setup_fsu_cid.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Seven Psychopaths.2012.DVDSCR XVID AC3 BHRG.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Seven.Psychopaths.2012.DVDRip.R5.XViD-TiCKLE.TiME.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Shameless.US.S03E10.720p.HDTV.x264-IMMERSE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Sons.of.Anarchy.S06E01.720p.HDTV.x264-EVOLVE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Sons.of.Anarchy.S06E02.720p.HDTV.x264-2HD.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Sons.of.Anarchy.S06E03.720p.HDTV.x264-IMMERSE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\SoundCloudDownloader_Setup.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Spartacus.S03E06.720p.HDTV.x264-IMMERSE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Spartacus.S03E08.720p.HDTV.x264-IMMERSE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\specialty_paper_nr_101.docx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Speech_class_outline.doc => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Stoker 2013 HDRip XviD-AQOS.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Strippers.Vs.Werewolves.2012.BRRip.XviD-ViP3R(1).torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\StructuredQuery.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\style.css => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Ted.2012.DVDRip.XViD.iNTERNAL-LiGHT.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\templateHRM350Phase 4 IP - Wellness Programs-1.docx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\templateHRM350Phase 4 IP - Wellness Programs.docx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\The Call 2013 R5 LiNE XviD MP3 MiLLENiUM.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\The Wonder Years Complete TV Series (1998-1993) PDTV THC YumYum.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\The World's End 2013 READNFO WEBRiP XViD UNiQUE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\The.Amazing.SpiderMan.2012.DVDRip.XVID.AC3.HQ.Hive-CM8.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\The.Devil.Inside.2012.BRRip.XviD-MeRCuRY.avi.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\The.Girl.With.The.Dragon.Tattoo.2011.REAL.DVDSCR.XVID.AC3.HQ.Hive-CM8.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\The.Gods.Must.Be.Crazy.1980.PROPER.DVDRip.XviD-FRAGMENT.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\The.Grey.2011.DVDRip.XviD.AC3-Voltage.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\The.Impossible.2012.DVDSCR.x264.AAC-FooKaS.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\The.Incredible.Burt.Wonderstone.2013.HDRip.XviD.READNFO-playXD.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\The.Purge.2013.720p.WEBRip.AC3.x264-BladeBDP.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\The.Serpent.And.The.Rainbow.1988.DVDRip.XViD-MULTiPLY.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Tips for your final paper-1.docx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Tips for your final paper.docx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\True.Blood.S06E02.720p.HDTV.x264-EVOLVE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\True.Blood.S06E03.720p.HDTV.x264-EVOLVE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\True.Blood.S06E04.720p.HDTV.x264-EVOLVE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\True.Blood.S06E06.720p.HDTV.x264-EVOLVE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\True.Blood.S06E07.In.the.Evening.720p.WEB-DL.DD5.1.H.264-YFN.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\UFC.160.Preliminary.Fights.HDTV.x264-EVOLVE.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\UFC.160.Velasquez.vs.Bigfoot.II.25th.May.2013.HDTV.x264-Sir.Paul.mp4(1).torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\UFC.162.Silva.vs.Weidman.6th.July.2013.HDTV.x264-Sir.Paul.mp4.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\UFC.164.Henderson.vs.Pettis.HDTV.x264-WBS.mp4.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\UFC.165.Jones.vs.Gustafsson.21st.Sept.2013.HDTV.x264-Sir.Paul.mp4(1).torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\UnclaimedLotteryPrizes.pdf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Underworld.Awakening.2012.BRRip.XviD-Lolz0r.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\users00 => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\vendors4.jpg => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\veronica%2520mejorado%2520resume%5b1%5d.docx.doc => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Why Net Promoter.docx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\win.png => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\wmplog00.sqm => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\wmsetup.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\World.War.Z.2013.UNRATED.1080p.BluRay.DTS-HD.MA.7.1.x264-LEGi0N.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\World.War.Z.2013.Unrated.Cut.720p.BluRay.x264.DTS-WiKi.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\wrapper-7720-20131015-175200.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\z2IA_nIV.exe.part => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\zdjew.gay => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Zero.Dark.Thirty.2012.DVDSCR Xvid Ac3-ADTRG.torrent => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\_is95CA.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\~nsu.tmp\Au_.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{CE9A02C2-DB9B-4604-A527-5EE133FA8D51}\ISSetup.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{CE9A02C2-DB9B-4604-A527-5EE133FA8D51}\_Setup.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{C8AC4E57-426C-4ACF-81C6-D77DB0655385}\{CFBCE791-2D53-4FCE-B3FB-D6E01F4112E8}\Civ4PakSplit.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{C8AC4E57-426C-4ACF-81C6-D77DB0655385}\{CFBCE791-2D53-4FCE-B3FB-D6E01F4112E8}\License.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{C8AC4E57-426C-4ACF-81C6-D77DB0655385}\{CFBCE791-2D53-4FCE-B3FB-D6E01F4112E8}\LicenseUK.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{C8AC4E57-426C-4ACF-81C6-D77DB0655385}\{CFBCE791-2D53-4FCE-B3FB-D6E01F4112E8}\Readme.htm => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{C8AC4E57-426C-4ACF-81C6-D77DB0655385}\{CFBCE791-2D53-4FCE-B3FB-D6E01F4112E8}\WinFWExcept.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{C8AC4E57-426C-4ACF-81C6-D77DB0655385}\{CFBCE791-2D53-4FCE-B3FB-D6E01F4112E8}\xfire_installer_15776.civ4.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{40EA9F79-6C16-4950-BE9D-4B30E2E038FD}\corecomp.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{40EA9F79-6C16-4950-BE9D-4B30E2E038FD}\{3D374523-CFDE-461A-827E-2A102E2AB365}\ArcadeInstallSWBFRONT2PC202.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{40EA9F79-6C16-4950-BE9D-4B30E2E038FD}\{3D374523-CFDE-461A-827E-2A102E2AB365}\FontData.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{40EA9F79-6C16-4950-BE9D-4B30E2E038FD}\{3D374523-CFDE-461A-827E-2A102E2AB365}\isrt.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{40EA9F79-6C16-4950-BE9D-4B30E2E038FD}\{3D374523-CFDE-461A-827E-2A102E2AB365}\KeyEntry.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{40EA9F79-6C16-4950-BE9D-4B30E2E038FD}\{3D374523-CFDE-461A-827E-2A102E2AB365}\LecSetup2.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{40EA9F79-6C16-4950-BE9D-4B30E2E038FD}\{3D374523-CFDE-461A-827E-2A102E2AB365}\RegDll.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{40EA9F79-6C16-4950-BE9D-4B30E2E038FD}\{3D374523-CFDE-461A-827E-2A102E2AB365}\setup.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{40EA9F79-6C16-4950-BE9D-4B30E2E038FD}\{3D374523-CFDE-461A-827E-2A102E2AB365}\xfire_installer_15338.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{40EA9F79-6C16-4950-BE9D-4B30E2E038FD}\{3D374523-CFDE-461A-827E-2A102E2AB365}\_IsRes.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{40EA9F79-6C16-4950-BE9D-4B30E2E038FD}\{3D374523-CFDE-461A-827E-2A102E2AB365}\_ISUser.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{302F0433-D69B-451B-BF68-2BB1A30C36AD}\{DF315348-721C-40B8-BAE2-58C6C7D935A2}\setup.bmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\{104FFECA-E865-40F5-80F6-C5286A691599}\setup.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Word8.0\MSForms.exd => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSDF1B.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSDE6A5.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSDE195.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSDC08E.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSDBB22.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSDBB.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSDB867.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSDB336.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSDB114.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSDA83E.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSD9E6E.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSD9AD6.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSD9185.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSD8FED.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSD774F.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSD755D.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSD36C8.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSD2811.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\VSD2653.tmp\install.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Temporary Internet Files\Content.IE5\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Temporary Internet Files\Content.IE5\index.dat => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Temporary Internet Files\Content.IE5\S96VNY0Z\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Temporary Internet Files\Content.IE5\PNLIJ3Y7\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Temporary Internet Files\Content.IE5\NW06W5BK\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Temporary Internet Files\Content.IE5\HN40XB1R\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Temporary Internet Files\Content.IE5\GGXWS003\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Temporary Internet Files\Content.IE5\CEIJJHSK\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Temporary Internet Files\Content.IE5\76DRBR9Z\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Temporary Internet Files\Content.IE5\0CMTCQ9D\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\TCDE302.tmp\CleanGradient.thmx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\TCD9D5F.tmp\CleanGradient.thmx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\TCD8529.tmp\CleanGradient.thmx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\outlook logging\firstrun.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\OICE_D54C7E4F-D0A0-4DD2-BEC9-9339D8427038.0\E73C4F82.xls => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\OICE_CDFF4605-936E-49DF-BD54-57C9DA1FDE4E.0\E6D23194.docx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\OICE_91DE274E-6BE6-4CD4-80B5-2EE805388F8B.0\D6AB0520.xls => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\OICE_191577A3-5A4B-4B16-B8F7-FDFE2D72D962.0\6CF42D6A.docx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\OICE_01D2BC72-97DE-48BE-A215-6176D8F216F8.0\E9B5A8B9.xls => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\nscF684.tmp\BaseConvert.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\nscF684.tmp\dummy.htm => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\nscF684.tmp\dummyres => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\nscF684.tmp\GetVersion.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\nscF684.tmp\inetc.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\nscF684.tmp\inetc.dll.out0 => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\nscF684.tmp\inetc.dll.out1 => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\nscF684.tmp\main.ico => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\nscF684.tmp\Math.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\nscF684.tmp\nsExec.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\nscF684.tmp\SimpleInstaller.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\nscF684.tmp\System.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\nscF684.tmp\icons\no_toolbar.ico => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\MSS\3.0.318.3\ftconfig.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\MSS\3.0.318.3\mcbrwsr2.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\MSS\3.0.318.3\McInstallerRes.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\MSS\3.0.318.3\McInstallerRes_LD.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\MSS\3.0.318.3\McInstallerStartup.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\MSS\3.0.318.3\McUICnt.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\MSS\3.0.318.3\SecurityScanner.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\MSS\3.0.318.3\uninstaller.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\msohtmlclip1\01\clip_colorschememapping.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\msohtmlclip1\01\clip_themedata.thmx => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\DHtmlHeader.html => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\DisplayIcon.ico => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\header.bmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\ParameterInfo.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Setup.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\SetupEngine.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\SetupUi.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\SetupUi.xsd => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\SetupUtility.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\SplashScreen.bmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\sqmapi.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Strings.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\UiInfo.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\watermark.bmp => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Windows6.1-KB958488-v6001-x64.msu => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Graphics\Print.ico => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Graphics\Rotate1.ico => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Graphics\Rotate2.ico => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Graphics\Rotate3.ico => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Graphics\Rotate4.ico => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Graphics\Rotate5.ico => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Graphics\Rotate6.ico => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Graphics\Rotate7.ico => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Graphics\Rotate8.ico => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Graphics\Save.ico => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Graphics\Setup.ico => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Graphics\stop.ico => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Graphics\SysReqMet.ico => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Graphics\SysReqNotMet.ico => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Graphics\warn.ico => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Extended\Parameterinfo.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Extended\UiInfo.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Client\Parameterinfo.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\Client\UiInfo.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\3082\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\3082\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\3082\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\3076\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\3076\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\3076\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\2070\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\2070\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\2070\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\2052\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\2052\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\2052\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1055\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1055\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1055\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1053\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1053\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1053\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1049\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1049\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1049\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1046\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1046\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1046\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1045\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1045\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1045\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1044\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1044\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1044\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1043\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1043\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1043\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1042\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1042\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1042\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1041\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1041\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1041\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1040\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1040\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1040\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1038\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1038\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1038\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1037\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1037\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1037\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1036\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1036\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1036\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1035\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1035\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1035\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1033\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1033\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1033\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1032\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1032\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1032\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1031\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1031\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1031\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1030\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1030\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1030\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1029\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1029\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1029\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1028\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1028\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1028\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1025\eula.rtf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1025\LocalizedData.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Microsoft .NET Framework 4 Setup_4.0.30319\1025\SetupResources.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\MATS-Temp\Results\Printer_result.cab => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Low\JavaDeployReg.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Low\McSiteAdvisor.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Low\Temporary Internet Files\Content.IE5\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Low\Temporary Internet Files\Content.IE5\index.dat => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Low\Temporary Internet Files\Content.IE5\FD2JSGG8\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Low\Temporary Internet Files\Content.IE5\CN49YZMD\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Low\Temporary Internet Files\Content.IE5\6OFZ9B4E\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Low\Temporary Internet Files\Content.IE5\587XENBE\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Low\History\History.IE5\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Low\History\History.IE5\index.dat => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Low\Cookies\index.dat => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\iss6729.tmp\setup.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\ispF5AF.tmp\_Setup.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\isp9C69.tmp\_Setup.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\isp82D6.tmp\_Setup.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\isp6778.tmp\_setup.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\History\History.IE5\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\History\History.IE5\index.dat => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Epic-235bcedc-bf84-41ef-b45a-fa1ddf33af14\Binaries\UnSetup.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Epic-235bcedc-bf84-41ef-b45a-fa1ddf33af14\Binaries\UnSetup.exe.config => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Epic-235bcedc-bf84-41ef-b45a-fa1ddf33af14\Binaries\UnSetup.Game.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Epic-235bcedc-bf84-41ef-b45a-fa1ddf33af14\Binaries\UnSetup.Manifests.xml => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Epic-235bcedc-bf84-41ef-b45a-fa1ddf33af14\Binaries\InstallData\Interop.IWshRuntimeLibrary.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\Cookies\index.dat => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\APNLogs\iw.log => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acro_rd_dir\fmy.wng => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\index.dat => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\UY6VW9L4\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\UIDZBI9V\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\R53Q8BLU\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\1JE8SVUN\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acro_rd_dir\History\History.IE5\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acro_rd_dir\History\History.IE5\index.dat => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acro_rd_dir\Cookies\index.dat => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5\index.dat => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5\MPXULQPC\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5\HXAGW36E\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5\G7L4YX5D\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5\CCWEI7FZ\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acrord32_sbx\History\History.IE5\desktop.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acrord32_sbx\History\History.IE5\index.dat => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\acrord32_sbx\Cookies\index.dat => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\bab091.norecovericon.dat => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\bab098.claroico.zpb => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\bab138.deltatb_dmn.zpb => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\bab149.spreg.zpb => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\bab307.sp_pop0.dat => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\bab456.TB_OldWay.dat => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\bab457.TB_NewWay.dat => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\Babylon.dat => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\BExternal.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\BUSolution.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\BUsolution_vt.zpb => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\ccp_AV.zpb => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\CrxInstaller.inf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\DeltaChromeTB.zpb => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\DeltaTB.zpb => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\enhancedNT.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\enhancedNT.inf => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\GUninstaller.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\GUninstaller_cat.zpb => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\IEHelper.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\latest.zpb => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\Setup.exe => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\SetupParams.ini => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\SetupStrings.dat => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\sqlite3.dll => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\HtmlScreens\loading.html => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\HtmlScreens\navError.html => Moved successfully.
C:\Users\Caleb's Computer\AppData\Local\Temp\8D835490-BAB0-7891-A56D-E9D651B7DAFA\Latest\HtmlScreens\pBar.gif => Moved successfully.
Could not move "C:\Users\Caleb's Computer\AppData\Local\Temp" directory. => Scheduled to move on reboot.


=========== Result of Scheduled Files to move ===========

c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.dll => Moved successfully.
c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe => Moved successfully.
c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.settings => Moved successfully.
c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\bl => Moved successfully.
c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\dm => Moved successfully.
c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\uninstall.exe => Moved successfully.
c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\00 => Moved successfully.
c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\01 => Moved successfully.
c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\02 => Moved successfully.
c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\03 => Moved successfully.
c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\10 => Moved successfully.
c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\11 => Moved successfully.
c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\12 => Moved successfully.
c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\13 => Moved successfully.
c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\20 => Moved successfully.
c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\21 => Moved successfully.
c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\22 => Moved successfully.
c:\progra~3\bitguard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\23 => Moved successfully.
c:\progra~3\bitguard => Moved successfully.
"C:\Users\Caleb's Computer\AppData\Local\Temp\FXSAPIDebugLogFile.txt" => File could not move.
"C:\Users\Caleb's Computer\AppData\Local\Temp" => Directory could not move.

==== End of Fixlog ====



#8 B-boy/StyLe/

B-boy/StyLe/

    Bleepin' Freestyler


  • Malware Response Team
  • 8,307 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Bulgaria
  • Local time:10:18 PM

Posted 17 October 2013 - 07:16 PM

Hi,

 

 

Nice work! :)
Let's check for leftovers.

The most of them should take no more than 5 minutes each.

 

 

 

STEP 1

 

  • Please download RKill by Grinler from the link below and save it to your desktop.

    Rkill
     
  • Before we begin, you should disable your anti-malware softwares you have installed so they do not interfere RKill running as some anti-malware softwares detect RKill as malicious. Please refer to this page if you are not sure how.
  • Double-click on Rkill on your desktop to run it. (If you are using Windows Vista, please right-click on it and select Run As Administrator)
  • A black screen will appear and then disappear. Please do not worry, that is normal. This means that the tool has been successfully executed.
  • If nothing happens or if the tool does not run, please let me know in your next reply.
  • A log pops up at the end of the run. This log file is located at C:\rkill.log.
  • Please copy and past the results at pastebin.com and post the link to the log in your next reply.



STEP 2




  • Please download RogueKiller.exe and save to the desktop.
  • Close all windows and browsers
  • Right-click the program and select 'Run as Administrator'
  • Press the scan button.
  • A report opens on the desktop named - RKreport.txt
  • Please copy and past the results at pastebin.com and post the link to the log in your next reply.

 

 

STEP 3



Please download the latest version of TDSSKiller from here and save it to your Desktop.

  • Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.
    image000q.png
  • Put a checkmark beside loaded modules.
    Sbf88.png
  • A reboot will be needed to apply the changes. Do it.
  • TDSSKiller will launch automatically after the reboot. Also your computer may seem very slow and unusable. This is normal. Give it enough time to load your background programs.
  • Then click on Change parameters in TDSSKiller.
  • Check all boxes then click OK.
    JtwHB.png
  • Click the Start Scan button.
    19695967.jpg
  • The scan should take no longer than 2 minutes.
  • If a suspicious object is detected, the default action will be Skip, click on Continue.
    67776163.jpg
  • If malicious objects are found, they will show in the Scan results - Select action for found objects and offer three options.
    Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process.
    62117367.jpg
    Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.
  • A report will be created in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and past the results at pastebin.com and post the link to the log in your next reply.



STEP 4




  • Please download the newest version of Malwarebytes' Anti-Malware and install it.
  • Please start the application by double-click on it's icon.
  • Once the program has loaded go to the UPDATE tab and check for updates.
  • When the update is complete, select the Scanner tab
  • Select Perform quick scan, then click Scan.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Be sure that everything is checked, and click Remove Selected.
  • When completed, a log will open in Notepad.
  • Please save it to a convenient location and copy and past the results at pastebin.com and post the link to the log in your next reply.




STEP 5



Please download Farbar Service Scanner and run it on the computer with the issue.


  • Make sure that all options are checked.
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and past the results at pastebin.com and post the link to the log in your next reply.



STEP 6



Please download AdwCleaner by Xplode and save to your Desktop.


  • Double click on AdwCleaner.exe to run the tool.
    Vista/Windows 7/8 users right-click and select Run As Administrator.
  • Click on the Scan button.
  • AdwCleaner will begin...be patient as the scan may take some time to complete.
  • After the scan has finished, click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review.
  • The contents of the log file may be confusing. Unless you see a program name that you know should not be removed, don't worry about it. If you see an entry you want to keep, let me know about it.
  • Please copy and past the results at pastebin.com and post the link to the log in your next reply.
  • A copy of all logfiles are saved in the C:\AdwCleaner folder which was created when running the tool.

 

 

 

Regards,

Georgi


cXfZ4wS.png


#9 calebmhartmann

calebmhartmann
  • Topic Starter

  • Members
  • 17 posts
  • OFFLINE
  •  
  • Local time:01:18 PM

Posted 17 October 2013 - 09:03 PM

http://pastebin.com/RtYYnpmJ

http://pastebin.com/PM35AwDX

http://pastebin.com/UzYyb5qW

http://pastebin.com/MGHAfKEf

http://pastebin.com/Z7KGxavA

http://pastebin.com/W5baybhX

 

I think that's all of them.  When I did the TDSSKiller, it actually created 4 files.  I put the largest one (769 kb) into pastebin.  Let me know if you need the other 3 (they were each only 4 kb).

 

Thanks again for all your help.



#10 B-boy/StyLe/

B-boy/StyLe/

    Bleepin' Freestyler


  • Malware Response Team
  • 8,307 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Bulgaria
  • Local time:10:18 PM

Posted 18 October 2013 - 06:23 AM

Hi,

 

 

Please re-run RogueKiller.
Wait until Prescan has finished.
Click on Scan.
Now click the Registry tab and place a checkbox beside the following entries if they still exist:
 

 
[RUN][ZeroAccess] HKUS\.DEFAULT\[...]\Run : Google Update ("C:\Windows\system32\config\systemprofile\AppData\Local\Google\Desktop \Install\{510e5f06-3f78-7a78-850f-f1ce9435bd1e}\?��?��?��\?��?��?�� \???ﯹ๛\{510e5f06-3f78-7a78-850f-f1ce9435bd1e}\GoogleUpdate.exe" >) -> FOUND
 
[RUN][ZeroAccess] HKUS\S-1-5-18\[...]\Run : Google Update ("C:\Windows\system32\config\systemprofile\AppData\Local\Google\Desktop \Install\{510e5f06-3f78-7a78-850f-f1ce9435bd1e}\?��?��?��\?��?��?�� \???ﯹ๛\{510e5f06-3f78-7a78-850f-f1ce9435bd1e}\GoogleUpdate.exe" >) -> FOUND
 
[SHELL][SUSP PATH] HKCU\[...]\Winlogon : shell (C:\Users\Caleb's Computer\AppData\Roaming\dlc.xmm,explorer.exe [x][x][x]) -> FOUND
 
[SHELL][SUSP PATH] HKUS\[...]\Winlogon : shell (C:\Users\Caleb's Computer\AppData\Roaming\dlc.xmm,explorer.exe [x][x][x]) -> FOUND
 
Now press the Delete button.

If asked to restart the computer, please do so immediately.
When it is finished, there will be a new log on your desktop. Post that log in your next reply.

 

 

 

Next please download the following file => and save it to the Desktop.
NOTE. It's important that both files, FRST and fixlist.txt are in the same location or the fix will not work.

Run FRST and press the Fix button just once and wait.
The tool will make a log on the Desktop (Fixlog.txt). Please post it to your reply.

 

 

 

Next let's try to fix the broken services.


Backup Your Registry

 


 

Now download the following files and save them to your desktop:

mpsdrv.reg

 

BFE.reg

 

iphlpsvc.reg

 

MpsSvc.reg

 

PcaSvc.reg

 

PolicyAgent.reg

 

RemoteAccess.reg

 

WinDefend.reg

 

wscsvc.reg

 

SharedAccess.reg

Now double click on each of them one by one. An information box will pop up asking if you want to merge the information in the file into the registry, click YES.

 

  • Next please download the ESET ServicesRepair utility and save it to your Desktop.
  • Double-click ServicesRepair.exe to run the ESET ServicesRepair utility.
  • If you are using User Access Control, click Run when prompted and then click Yes when asked to allow changes.
  • Reboot the computer and then please attach fresh logs from the following 2 tools - RKILL and Farbar Service Scanner.

 

 

Also I didn't say to click the Clean button in adwcleaner (but only to Scan instead)...because sometimes there are a few fase positives like the entries below:

 

These belongs to Adobe Reader:

 

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}

 

These belongs to Skype:
 

 

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}

Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}

Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}

Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}

Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}

Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}

 

When AdwCleaner is first run to clean adware, it will create a new folder located at C:\AdwCleaner. The AdwCleaner folder contains sub-folders for Backup and Quarantine. Each of these folders contain sub-folders of the exact location (full path) an entry was removed from. In the event you want to restore an item, simply run AdwCleaner again.

  • Click Quarantine manager.
  • A log file of what was removed will open in a new window.
  • Scroll through the list and find the entry you want to restore.
  • Place a check mark in the box next to the entry(s).
  • Click the Restore button.

 

 

Regards,

Georgi

 


cXfZ4wS.png


#11 calebmhartmann

calebmhartmann
  • Topic Starter

  • Members
  • 17 posts
  • OFFLINE
  •  
  • Local time:01:18 PM

Posted 18 October 2013 - 09:13 AM

Georgi,

 

Thanks for your help.  The final 4 logs are attached.

 

Caleb

Attached Files



#12 B-boy/StyLe/

B-boy/StyLe/

    Bleepin' Freestyler


  • Malware Response Team
  • 8,307 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Bulgaria
  • Local time:10:18 PM

Posted 19 October 2013 - 03:29 AM

Hi,

 

Great work. Can you please re-run Rkill, RogueKiller and MBAM (don't forget to update the definitions first) one more time and post the logs?

 

Also please run these as well:

 

 

STEP 1

 

 

thisisujrt.gif  Please download Junkware Removal Tool to your desktop.

  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.

 

 

STEP 2

 

 

1.Please download HitmanPro.

  • For 32-bit Operating System - dEMD6.gif.
  • This is the mirror - dEMD6.gif
  • For 64-bit Operating System - dEMD6.gif
  • This is the mirror - dEMD6.gif

2.Launch the program by double clicking on the 5vo5F.jpg icon. (Windows Vista/7 users right click on the HitmanPro icon and select run as administrator).

Note: If the program won't run please then open the program while holding down the left CTRL key until the program is loaded.

3.Click on the next button. You must agree with the terms of EULA. (if asked)

4.Check the box beside "No, I only want to perform a one-time scan to check this computer".

5.Click on the next button.

6.The program will start to scan the computer. The scan will typically take no more than 2-3 minutes.

7.When the scan is done click on drop-down menu of the found entries (if any) and choose - Apply to all => Ignore <= IMPORTANT!!!

 

8.Click on the next button.

9.Click on the "Save Log" button.

10.Save that file to your desktop and post the content of that file in your next reply.

 

Note: if there isn't a dropdown menu when the scan is done then please don't delete anything and close HitmanPro

Navigate to C:\ProgramData\HitmanPro\Logs open the report and copy and paste it to your next reply.

 

STEP 3

 

 

Download Security Check by screen317 from here.

  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.

 

 

 

Regards,

Georgi


cXfZ4wS.png


#13 calebmhartmann

calebmhartmann
  • Topic Starter

  • Members
  • 17 posts
  • OFFLINE
  •  
  • Local time:01:18 PM

Posted 20 October 2013 - 05:47 PM

Attached are the logs you asked for.

Attached Files



#14 B-boy/StyLe/

B-boy/StyLe/

    Bleepin' Freestyler


  • Malware Response Team
  • 8,307 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Bulgaria
  • Local time:10:18 PM

Posted 20 October 2013 - 06:45 PM

Hi,

 

  • Create a Restore Point
  • Please download a fresh copy of Combofix from here.
  • Save it to your Desktop.
  • Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools.  Please refer to this link for instructions.
  • Double click it & follow the prompts.
  • If you receive a UAC prompt asking if you want to continue running the program, you should press the Continue button.
  • Click on Yes, to continue scanning for malware.
  • When finished, it will produce a log for you.
  • Please include the C:\ComboFix.txt in your next reply.
  • Note: After running Combofix, you may receive an error about "illegal operation on a registry key that has been marked for deletion." If you receive this error, please reboot and it should disappear.


Do not touch your mouse/keyboard until the ComboFix scan has completed, as this may cause the process to stall or the computer to lock.
 

 

Regards,

Georgi


cXfZ4wS.png


#15 calebmhartmann

calebmhartmann
  • Topic Starter

  • Members
  • 17 posts
  • OFFLINE
  •  
  • Local time:01:18 PM

Posted 20 October 2013 - 09:12 PM

It's attached.

Attached Files






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users