Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

PC Support Popups


  • Please log in to reply
10 replies to this topic

#1 AnStrahan

AnStrahan

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:01:56 AM

Posted 28 April 2015 - 07:11 PM

Been reading and following an array of tutorials lately to fix my parents' computer. The computer was unable to connect to the internet using internet browsers. I did a clean boot and regained access to the internet, discovering more issues.

Constantly while browsing, a new tab opens up with a chat room for me to speak to a PC Support tech. Obviously a fake but I cant seem to get rid of it. Also, I just got a new website reimagerepair.com popping up. Im convinced my 6 year old has been on the computer while visiting and clicking any ad that pops up so who knows whats on this thing.

Please assist!

-Drew

BC AdBot (Login to Remove)

 


m

#2 AnStrahan

AnStrahan
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:01:56 AM

Posted 28 April 2015 - 07:13 PM

Just realized this is in the wrong forum...sorry.

#3 hamluis

hamluis

    Moderator


  • Moderator
  • 54,857 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Killeen, TX
  • Local time:06:56 PM

Posted 28 April 2015 - 07:22 PM

I moved topic to the correct forum.

 

Louis



#4 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,214 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:07:56 PM

Posted 28 April 2015 - 08:31 PM

Hello, let's clean it out.

3Al62Pm.pngMiniToolBox
  • Please download MiniToolBox, save it to your desktop and run it.
  • Checkmark the following checkboxes:
    • Flush DNS
    • Report IE Proxy Settings
    • Reset IE Proxy Settings
    • Report FF Proxy Settings
    • Reset FF Proxy Settings
    • List content of Hosts
    • List IP configuration
    • List Winsock Entries
    • List last 10 Event Viewer log
    • List Installed Programs
    • List Users, Partitions and Memory size.
  • Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run. Note: When using "Reset FF Proxy Settings" option Firefox should be closed.
zcMPezJ.pngAdwCleaner
  • Please download AdwCleaner by Xplode and save to your Desktop.
  • Double click on AdwCleaner.exe to run the tool. Vista/Windows 7/8 users right-click and select Run As Administrator
  • Click on the Scan button.
  • AdwCleaner will begin...be patient as the scan may take some time to complete.
  • After the scan has finished, click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review.
  • The contents of the log file may be confusing. Unless you see a program name that you know should not be removed, don't worry about it. If you see an entry you want to keep, let me know about it.
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of all logfiles are saved in the C:\AdwCleaner folder which was created when running the tool.
lv0mVRW.pngJunkware Removal Tool
  • Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
51a46ae42d560-malwarebytes_anti_malware.Malwarebytes Anti-Malware
  • Download MalwareBytes Anti-Malware to your desktop.
  • Double-click mbam-setup-2.0.exe to start the installation of Malwarebytes Anti-Malware.
  • Follow the instructions on your screen to complete the installation. You can find the complete installation procedure here.
  • Click the Scan Now button, a threat scan will start automatically.
  • MalwareBytes Anti-Malware will now check for the latest updates. Click Update Now if new updates are available.
  • Your computer is now being scanned, please do not use your computer during the scan.
    • If no threats were found, click View detailed log.
      • Click Export and save the log as a .txt file on your Desktop or another location.
    • If the scan detected any threats, click Apply Actions.
      • To complete any actions taken you will be prompted to restart your computer...click on Yes.
      • After reboot, start Malwarebytes Anti-Malware again and click the History Tab at the top and select Application Logs.
      • Check the box next to Scan Log. Choose the most current scan and click View.
      • Click Export and save the log as a .txt file on your Desktop or another location.
  • Providing the MalwareBytes' Anti-Malware log file
    • Attach the log file you just saved to your next reply for further review.
cvMlKv6.pngESET Online Scanner
  • Hold down Control and click on this link to open ESET Online Scanner in a new window.
  • Click the esetonlinebtn.png button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
  • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
  • Double click on the esetsmartinstaller_enu.png icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.
  • NOTE: Sometimes if ESET finds no infections it will not create a log.
>>>
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#5 AnStrahan

AnStrahan
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:01:56 AM

Posted 30 April 2015 - 10:34 AM

MINI TOOL BOX RESULTS:

MiniToolBox by Farbar  Version: 14-04-2015

Ran by Kim (administrator) on 30-04-2015 at 09:26:05
Running from "C:\Users\Kim\Desktop"
Microsoft Windows 7 Home Premium  Service Pack 1 (X64)
Model: p7-1003w Manufacturer: Hewlett-Packard
Boot Mode: Normal
***************************************************************************
 
========================= Flush DNS: ===================================
 
Windows IP Configuration
 
Successfully flushed the DNS Resolver Cache.
 
========================= IE Proxy Settings: ============================== 
 
Proxy is not enabled.
No Proxy Server is set.
 
"Reset IE Proxy Settings": IE Proxy Settings were reset.
 
========================= FF Proxy Settings: ============================== 
 
 
"Reset FF Proxy Settings": Firefox Proxy settings were reset.
 
========================= Hosts content: =================================
 
 
 
 
========================= IP Configuration: ================================
 
Realtek PCIe FE Family Controller = Local Area Connection (Connected)
 
 
# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4
 
reset
set global icmpredirects=enabled
add route prefix=169.254.0.0/16 interface="iftype0_0" nexthop=192.168.1.6 metric=1 publish=Yes
set interface interface="Local Area Connection" forwarding=disabled advertise=disabled metric=1 siteprefixlength=0 nud=disabled routerdiscovery=disabled managedaddress=disabled otherstateful=disabled weakhostsend=disabled weakhostreceive=disabled ignoredefaultroutes=disabled advertisedrouterlifetime=0 advertisedefaultroute=disabled currenthoplimit=0 forcearpndwolpattern=disabled enabledirectedmacwolpattern=disabled
 
 
popd
# End of IPv4 configuration
 
 
 
Windows IP Configuration
 
   Host Name . . . . . . . . . . . . : Kim-HP
   Primary Dns Suffix  . . . . . . . : 
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
 
Ethernet adapter Local Area Connection:
 
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Realtek PCIe FE Family Controller
   Physical Address. . . . . . . . . : 2C-27-D7-2D-36-DF
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   Link-local IPv6 Address . . . . . : fe80::89b3:647a:6da7:1845%13(Preferred) 
   IPv4 Address. . . . . . . . . . . : 192.168.1.21(Preferred) 
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Tuesday, April 28, 2015 8:30:54 PM
   Lease Expires . . . . . . . . . . : Friday, May 01, 2015 8:30:54 AM
   Default Gateway . . . . . . . . . : 192.168.1.1
   DHCP Server . . . . . . . . . . . : 192.168.1.1
   DHCPv6 IAID . . . . . . . . . . . : 276344000
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-15-3E-B1-9E-2C-27-D7-2D-36-DF
   DNS Servers . . . . . . . . . . . : 75.126.206.18
                                       184.173.169.186
   NetBIOS over Tcpip. . . . . . . . : Enabled
 
Tunnel adapter isatap.{F1B27B2C-2520-4CB2-A8FA-40E913DD4A82}:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Local Area Connection* 9:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft 6to4 Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Local Area Connection* 12:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft Teredo Tunneling Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Server:  75.126.206.18-static.reverse.softlayer.com
Address:  75.126.206.18
 
Name:    google.com
Addresses:  2607:f8b0:4000:809::100e
 173.194.115.70
 173.194.115.66
 173.194.115.73
 173.194.115.65
 173.194.115.68
 173.194.115.78
 173.194.115.69
 173.194.115.71
 173.194.115.67
 173.194.115.72
 173.194.115.64
 
 
Pinging google.com [173.194.115.69] with 32 bytes of data:
Reply from 173.194.115.69: bytes=32 time=44ms TTL=50
Reply from 173.194.115.69: bytes=32 time=44ms TTL=50
 
Ping statistics for 173.194.115.69:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 44ms, Maximum = 44ms, Average = 44ms
Server:  75.126.206.18-static.reverse.softlayer.com
Address:  75.126.206.18
 
Name:    yahoo.com
Addresses:  206.190.36.45
 98.138.253.109
 98.139.183.24
 
 
Pinging yahoo.com [98.139.183.24] with 32 bytes of data:
Reply from 98.139.183.24: bytes=32 time=32ms TTL=50
Reply from 98.139.183.24: bytes=32 time=32ms TTL=50
 
Ping statistics for 98.139.183.24:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 32ms, Maximum = 32ms, Average = 32ms
 
Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
 
Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
 13...2c 27 d7 2d 36 df ......Realtek PCIe FE Family Controller
  1...........................Software Loopback Interface 1
 14...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
 11...00 00 00 00 00 00 00 e0 Microsoft 6to4 Adapter
 12...00 00 00 00 00 00 00 e0 Microsoft Teredo Tunneling Adapter
===========================================================================
 
IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0      192.168.1.1     192.168.1.21      2
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
      169.254.0.0      255.255.0.0      192.168.1.6     192.168.1.21      2
      192.168.1.0    255.255.255.0         On-link      192.168.1.21    257
     192.168.1.21  255.255.255.255         On-link      192.168.1.21    257
    192.168.1.255  255.255.255.255         On-link      192.168.1.21    257
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link      192.168.1.21    257
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link      192.168.1.21    257
===========================================================================
Persistent Routes:
  Network Address          Netmask  Gateway Address  Metric
      169.254.0.0      255.255.0.0      192.168.1.6       1
===========================================================================
 
IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
  1    306 ::1/128                  On-link
 13    276 fe80::/64                On-link
 13    276 fe80::89b3:647a:6da7:1845/128
                                    On-link
  1    306 ff00::/8                 On-link
 13    276 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================
 
Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 09 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog5 07 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171392] (Microsoft Corp.)
x64-Catalog5 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171392] (Microsoft Corp.)
x64-Catalog5 09 C:\Program Files\Bonjour\mdnsNSP.dll [132968] (Apple Inc.)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
 
========================= Event log errors: ===============================
 
Application errors:
==================
Error: (04/30/2015 00:29:55 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0"1".
Dependent Assembly rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (04/30/2015 00:29:47 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.
 
Error: (04/29/2015 06:40:23 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0"1".
Dependent Assembly rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (04/29/2015 06:40:22 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.
 
Error: (04/29/2015 06:38:25 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0"1".
Dependent Assembly rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (04/29/2015 06:37:58 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.
 
Error: (04/28/2015 08:41:07 PM) (Source: CVHSVC) (User: )
Description: Information only.
(Patch task for {90140011-0066-0409-0000-0000000FF1CE}): DownloadLatest Failed: A connection with the server could not be established
 
Error: (04/28/2015 08:32:38 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (04/28/2015 07:57:58 PM) (Source: CVHSVC) (User: )
Description: Information only.
(Patch task for {90140011-0066-0409-0000-0000000FF1CE}): DownloadLatest Failed: A connection with the server could not be established
 
Error: (04/28/2015 07:49:23 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
 
System errors:
=============
Error: (04/28/2015 08:31:19 PM) (Source: Service Control Manager) (User: )
Description: The HomeGroup Provider service depends on the Function Discovery Resource Publication service which failed to start because of the following error: 
%%-2147024891
 
Error: (04/28/2015 08:31:19 PM) (Source: Service Control Manager) (User: )
Description: The Function Discovery Resource Publication service terminated with the following error: 
%%-2147024891
 
Error: (04/28/2015 08:31:10 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error: 
%%1060
 
Error: (04/28/2015 08:31:08 PM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load: 
BHDrvx64
SRTSP
 
Error: (04/28/2015 08:31:01 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error: 
%%1060
 
Error: (04/28/2015 08:31:00 PM) (Source: Service Control Manager) (User: )
Description: The X5XSEx_Pr143 service failed to start due to the following error: 
%%3
 
Error: (04/28/2015 08:30:47 PM) (Source: SRTSP) (User: )
Description: Error loading virus definitions.
 
Error: (04/28/2015 08:30:21 PM) (Source: Service Control Manager) (User: )
Description: The Windows Media Player Network Sharing Service service failed to start due to the following error: 
%%1069
 
Error: (04/28/2015 08:30:21 PM) (Source: Service Control Manager) (User: )
Description: The WMPNetworkSvc service was unable to log on as NT AUTHORITY\NetworkService with the currently configured password due to the following error: 
%%50
 
To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
 
Error: (04/28/2015 08:30:21 PM) (Source: Service Control Manager) (User: )
Description: The Windows Search service failed to start due to the following error: 
%%1069
 
 
Microsoft Office Sessions:
=========================
Error: (04/30/2015 00:29:55 AM) (Source: SideBySide)(User: )
Description: rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0"C:\Windows\Installer\{AF7EBCA4-9FAF-4DC8-8D09-67854BB84D34}\recordingmanager.exe
 
Error: (04/30/2015 00:29:47 AM) (Source: SideBySide)(User: )
Description: assemblyIdentityversionMAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINORC:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dllC:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll3
 
Error: (04/29/2015 06:40:23 AM) (Source: SideBySide)(User: )
Description: rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0"C:\Windows\Installer\{AF7EBCA4-9FAF-4DC8-8D09-67854BB84D34}\recordingmanager.exe
 
Error: (04/29/2015 06:40:22 AM) (Source: SideBySide)(User: )
Description: assemblyIdentityversionMAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINORC:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dllC:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll3
 
Error: (04/29/2015 06:38:25 AM) (Source: SideBySide)(User: )
Description: rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0"C:\Windows\Installer\{AF7EBCA4-9FAF-4DC8-8D09-67854BB84D34}\recordingmanager.exe
 
Error: (04/29/2015 06:37:58 AM) (Source: SideBySide)(User: )
Description: assemblyIdentityversionMAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINORC:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dllC:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll3
 
Error: (04/28/2015 08:41:07 PM) (Source: CVHSVC)(User: )
Description: (Patch task for {90140011-0066-0409-0000-0000000FF1CE}): DownloadLatest Failed: A connection with the server could not be established
 
Error: (04/28/2015 08:32:38 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (04/28/2015 07:57:58 PM) (Source: CVHSVC)(User: )
Description: (Patch task for {90140011-0066-0409-0000-0000000FF1CE}): DownloadLatest Failed: A connection with the server could not be established
 
Error: (04/28/2015 07:49:23 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
 
 
=========================== Installed Programs ============================
7 Wonders (HKLM-x32\...\7 Wonders) (Version:  - )
7 Wonders II (HKLM-x32\...\exent_586350) (Version:  - )
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.3.9130 - Adobe Systems Inc.)
Adobe AIR (x32 Version: 1.5.3.9130 - Adobe Systems Inc.) Hidden
Adobe Flash Player 13 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated)
Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated)
Agatha Christie - Peril at End House (x32 Version: 2.2.0.95 - WildTangent) Hidden
Angry Birds (HKLM-x32\...\{370CA4B0-A1D8-4863-A3C5-6879AEE1663A}) (Version: 3.0.0 - Rovio)
Angry Birds Rio (HKLM-x32\...\{0D637670-BC00-4FAC-8E00-518EB7F65091}) (Version: 1.4.4 - Rovio)
Apple Application Support (HKLM-x32\...\{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}) (Version: 2.1.7 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{B8AD779A-82DA-4365-A7D0-AD3DCFC55CFF}) (Version: 5.1.1.4 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
ATI Catalyst Install Manager (HKLM\...\{7C7A5A92-046C-A38C-AE0F-8F9CCA0F67A8}) (Version: 3.0.774.0 - ATI Technologies, Inc.)
Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Bejeweled 3 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Big Fish Games: Game Manager (HKLM-x32\...\BFGC) (Version: 3.0.1.60 - )
Bing Rewards Client Installer (x32 Version: 16.0.345.0 - Microsoft Corporation) Hidden
Blackhawk Striker 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Blasterball 3 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Blio (HKLM-x32\...\{9368DDD5-CE7F-4BD7-A83A-F00FABE338EC}) (Version: 2.2.6699 - K-NFB Reading Technology, Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Bounce Symphony (x32 Version: 2.2.0.95 - WildTangent) Hidden
Build-a-lot 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Cake Mania (x32 Version: 2.2.0.95 - WildTangent) Hidden
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version:  - )
Canon IJ Network Scan Utility (HKLM-x32\...\Canon_IJ_Network_Scan_UTILITY) (Version:  - )
Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version:  - )
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version:  - )
Canon MP Navigator EX 3.1 (HKLM-x32\...\MP Navigator EX 3.1) (Version:  - )
Canon MX340 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX340_series) (Version:  - )
Canon MX340 series User Registration (HKLM-x32\...\Canon MX340 series User Registration) (Version:  - )
Canon Speed Dial Utility (HKLM-x32\...\Speed Dial Utility) (Version:  - )
Canon Utilities Easy-PhotoPrint EX (HKLM-x32\...\Easy-PhotoPrint EX) (Version:  - )
Canon Utilities My Printer (HKLM-x32\...\CanonMyPrinter) (Version:  - )
Canon Utilities Solution Menu (HKLM-x32\...\CanonSolutionMenu) (Version:  - )
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - ATI) Hidden
Catalyst Control Center Core Implementation (x32 Version: 2010.0511.2153.37435 - ATI) Hidden
Catalyst Control Center Graphics Full Existing (x32 Version: 2010.0511.2153.37435 - ATI) Hidden
Catalyst Control Center Graphics Full New (x32 Version: 2010.0511.2153.37435 - ATI) Hidden
Catalyst Control Center Graphics Light (x32 Version: 2010.0511.2153.37435 - ATI) Hidden
Catalyst Control Center Graphics Previews Vista (x32 Version: 2010.0511.2153.37435 - ATI) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2010.0511.2153.37435 - ATI Technologies, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2010.0511.2153.37435 - ATI) Hidden
CCC Help Chinese Standard (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Chinese Traditional (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Czech (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Danish (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Dutch (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help English (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Finnish (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help French (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help German (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Greek (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Hungarian (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Italian (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Japanese (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Korean (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Norwegian (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Polish (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Portuguese (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Russian (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Spanish (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Swedish (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Thai (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Turkish (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
ccc-core-static (x32 Version: 2010.0511.2153.37435 - ATI) Hidden
ccc-utility64 (Version: 2010.0511.2153.37435 - ATI) Hidden
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Cradle of Rome (HKLM-x32\...\exent_554750) (Version:  - )
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DealCabby (HKLM-x32\...\DealCabby) (Version: 1.0921.1509 - DealCabby)
Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95 - WildTangent) Hidden
Dora's World Adventure (x32 Version: 2.2.0.95 - WildTangent) Hidden
Farm Frenzy (x32 Version: 2.2.0.95 - WildTangent) Hidden
Farming Simulator 2011 (HKLM-x32\...\FarmingSimulator2011EN_is1) (Version: 1.0 - GIANTS Software)
FATE - The Traitor Soul (x32 Version: 2.2.0.95 - WildTangent) Hidden
Garmin Communicator Plugin x64 (HKLM\...\{550331CC-C34B-494F-BCDA-37CE4EF6E924}) (Version: 4.0.3 - Garmin Ltd or its subsidiaries)
Garmin Lifetime Updater (HKLM-x32\...\{9AAD03E8-4F65-4DE2-8F6C-1B079C0C8521}) (Version: 2.1.11 - Garmin)
Ghost Whisperer - Forgotten Toys (HKLM-x32\...\Ghost Whisperer - Forgotten Toys) (Version:  - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 42.0.2311.135 - Google Inc.)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.6227.252 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.26.7 - Google Inc.) Hidden
Heartwild Solitaire - Book Two (HKLM-x32\...\exent_676150) (Version:  - )
Heroes of Hellas (HKLM-x32\...\exent_532150) (Version:  - )
Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP Auto (Version: 1.0.12935.3667 - Hewlett-Packard Company) Hidden
HP Client Services (Version: 1.1.12938.3539 - Hewlett-Packard) Hidden
HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hidden
HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.2.4 - WildTangent)
HP LinkUp (HKLM-x32\...\{DB3147AB-4024-4773-8EC0-A1FE5B44933D}) (Version: 2.01.028 - Hewlett-Packard)
HP MediaSmart/TouchSmart Netflix (HKLM-x32\...\{BB760C1D-98F4-4E38-8CC4-3B67329AA981}) (Version: 1.0.6.0 - Hewlett-Packard)
HP MovieStore (HKLM-x32\...\{9008D736-35CA-40DB-A2BE-5F32D954E5AA}) (Version: 2.0 - Hewlett-Packard)
HP MovieStore (x32 Version: 1.0.045 - Hewlett-Packard) Hidden
HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard)
HP Power Assistant (HKLM\...\{6888C635-E550-4FA4-958E-CE2880B0443B}) (Version: 1.1.1.6 - Hewlett-Packard)
HP Setup (HKLM-x32\...\{210A03F5-B2ED-4947-B27E-516F50CBB292}) (Version: 8.6.4530.3651 - Hewlett-Packard Company)
HP Setup Manager (HKLM-x32\...\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.1.13253.3682 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{EE202411-2C26-49E8-9784-1BC1DBF7DE96}) (Version: 7.0.39.15 - Hewlett-Packard Company)
HP Support Information (HKLM-x32\...\{7F2A11F4-EAE8-4325-83EC-E3E99F85169E}) (Version: 10.1.1000 - Hewlett-Packard)
HP Update (HKLM-x32\...\{DE77FE3F-A33D-499A-87AD-5FC406617B40}) (Version: 5.002.003.003 - Hewlett-Packard)
HP Vision Hardware Diagnostics (HKLM\...\{D79A02E9-6713-4335-9668-AAC7474C0C0E}) (Version: 2.5.0.0 - Hewlett-Packard)
Hulu Desktop (HKCU\...\HuluDesktop) (Version: 0.9.13 - Hulu LLC)
Image Plugin (HKLM-x32\...\{FDC8065B-80DE-4466-B90B-2581F6D77DFF}) (Version: 3.04.0226 - Snap-on Business Solutions)
iTunes (HKLM\...\{4BDE7544-0A08-4AD9-8A8F-4B7944471C36}) (Version: 10.6.0.40 - Apple Inc.)
Jewel Quest 3 (HKLM-x32\...\exent_642550) (Version:  - )
Jewel Quest Mysteries (x32 Version: 2.2.0.95 - WildTangent) Hidden
Jewel Quest Solitaire (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111771833}) (Version:  - Oberon Media)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Kobo (HKLM-x32\...\Kobo) (Version: 1.6 - Kobo Inc.)
LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.3609 - CyberLink Corp.)
LabelPrint (x32 Version: 2.5.3609 - CyberLink Corp.) Hidden
Mah Jong Medley (x32 Version: 2.2.0.95 - WildTangent) Hidden
Malwarebytes Anti-Malware version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Starter 2010 - English (HKLM-x32\...\{90140011-0066-0409-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (HKLM-x32\...\{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}) (Version: 9.0.30411 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0 - Microsoft Corp.) Hidden
Mozilla Firefox 30.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 30.0 (x86 en-US)) (Version: 30.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Mystery P.I. - Stolen in San Francisco (x32 Version: 2.2.0.95 - WildTangent) Hidden
Namco All-Stars PAC-MAN (x32 Version: 2.2.0.95 - WildTangent) Hidden
Norton 360 (HKLM-x32\...\N360) (Version: 21.3.0.12 - Symantec Corporation)
Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.1.17869 - Symantec Corporation)
OpenOffice 4.0.1 (HKLM-x32\...\{47F460DA-D1BE-4D85-8DF2-AA1F31D3445F}) (Version: 4.01.9714 - Apache Software Foundation)
PDF Complete Special Edition (HKLM-x32\...\PDF Complete) (Version: 4.0.35 - PDF Complete, Inc)
Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95 - WildTangent) Hidden
Play Pickle (HKLM-x32\...\Play Pickle) (Version:  - )
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
PlayReady PC Runtime x86 (HKLM-x32\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation)
Poker Superstars III (x32 Version: 2.2.0.95 - WildTangent) Hidden
Polar Bowler (x32 Version: 2.2.0.95 - WildTangent) Hidden
Polar Golfer (x32 Version: 2.2.0.95 - WildTangent) Hidden
Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.4817 - CyberLink Corp.)
Power2Go (x32 Version: 6.1.4817 - CyberLink Corp.) Hidden
PressReader (HKLM-x32\...\{912CED74-88D3-4C5B-ACB0-132318649765}) (Version: 5.10.1217.0 -  NewspaperDirect Inc.)
Radialpoint Security Advisor 2.5.15 (x32 Version: 2.5.15 - Radialpoint SafeCare Inc.) Hidden
Radialpoint Servicepoint Dashboard Extensions version 12.11.12.59890 (HKLM-x32\...\RadialpointServicepointDashboardExtensions_is1) (Version: 12.11.12.59890 - )
RealDownloader (x32 Version: 1.3.0 - RealNetworks, Inc.) Hidden
RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden
RealPlayer (HKLM-x32\...\RealPlayer 16.0) (Version: 16.0.0 - RealNetworks)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6251 - Realtek Semiconductor Corp.)
RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden
Recovery Manager (x32 Version: 5.5.3621 - CyberLink Corp.) Hidden
Remote Graphics Receiver (HKLM-x32\...\{16FC3056-90C0-4757-8A68-64D8DA846ADA}) (Version: 5.4.5 - Hewlett-Packard)
RoxioNow Player (HKLM-x32\...\{0EDEB615-1A60-425E-8306-0E10519C7B55}) (Version: 1.9.5.103 - RoxioNow)
SelectionLinks (HKLM-x32\...\sl-pmi) (Version: 1.0 - SelectionLinks)
Sendori (HKLM-x32\...\Sendori) (Version: 2.0.18 - Sendori, Inc.)
Slingo Supreme (x32 Version: 2.2.0.95 - WildTangent) Hidden
Social Privacy (HKLM-x32\...\sp@sp.com) (Version:  - )
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
The Weather Channel App (HKLM-x32\...\{167158CE-1637-4167-8A1C-C2549EEA966A}) (Version: 1.00.0000 - The Weather Channel)
Tumblebugs 1.0.4 (HKLM-x32\...\Tumblebugs) (Version: 1.0.4 - Play At Joes, Inc)
Update Installer for WildTangent Games App (x32 Version:  - WildTangent) Hidden
Updater (HKLM-x32\...\{D54E3D9F-FEB8-4D2D-A138-B69A5C80080B}) (Version: 2.6.47 - Creative Island Media, LLC)
Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.95 - WildTangent) Hidden
Warhammer® 40,000™: Dawn of War® II (HKLM-x32\...\Steam App 15620) (Version:  - Relic)
Waterscape Solitaire: American Falls (HKLM-x32\...\BFG-Waterscape Solitaire - American Falls) (Version:  - )
Wheel of Fortune 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 - WildTangent)
WildTangent Games App for HP (x32 Version: 4.0.11.2 - WildTangent) Hidden
Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Family Safety (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Language Selector (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Messenger (x32 Version: 15.4.3538.0513 - Microsoft Corporation) Hidden
Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windstream Broadband Check-up Center (HKLM-x32\...\Windstream_BCUC) (Version:  - )
Windstream Diagnostic Tools 3.0.21 (x32 Version: 3.0.21 - Windstream) Hidden
Windstream Service Agent 4.1.15 (HKLM-x32\...\RadialpointClientGateway_is1) (Version: 4.1.15 - Windstream)
Zinio Reader 4 (HKLM-x32\...\ZinioReader4.9310D8F796442B71068C511E15D70529A702D19D.1) (Version: 4.0.3184 - Zinio LLC)
Zinio Reader 4 (x32 Version: 4.0.3184 - Zinio LLC) Hidden
Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Zuma's Revenge! (HKLM-x32\...\Zuma's Revenge!) (Version:  - PopCap Games)
 
========================= Memory info: ===================================
 
Percentage of memory in use: 29%
Total physical RAM: 7935.29 MB
Available physical RAM: 5615.41 MB
Total Pagefile: 15868.75 MB
Available Pagefile: 13187.07 MB
Total Virtual: 4095.88 MB
Available Virtual: 3978.47 MB
 
========================= Partitions: =====================================
 
1 Drive c: (OS) (Fixed) (Total:920.27 GB) (Free:848.04 GB) NTFS
2 Drive d: (HP_RECOVERY) (Fixed) (Total:11.15 GB) (Free:1.35 GB) NTFS
3 Drive e: (ESD-ISO) (CDROM) (Total:2.55 GB) (Free:0 GB) UDF
 
========================= Users: ========================================
 
User accounts for \\KIM-HP
 
Administrator            Guest                    Kim                      
Sean                     
 
 
**** End of log ****
 
MiniToolBox by Farbar  Version: 14-04-2015
Ran by Kim (administrator) on 30-04-2015 at 09:26:05
Running from "C:\Users\Kim\Desktop"
Microsoft Windows 7 Home Premium  Service Pack 1 (X64)
Model: p7-1003w Manufacturer: Hewlett-Packard
Boot Mode: Normal
***************************************************************************
 
========================= Flush DNS: ===================================
 
Windows IP Configuration
 
Successfully flushed the DNS Resolver Cache.
 
========================= IE Proxy Settings: ============================== 
 
Proxy is not enabled.
No Proxy Server is set.
 
"Reset IE Proxy Settings": IE Proxy Settings were reset.
 
========================= FF Proxy Settings: ============================== 
 
 
"Reset FF Proxy Settings": Firefox Proxy settings were reset.
 
========================= Hosts content: =================================
 
 
 
 
========================= IP Configuration: ================================
 
Realtek PCIe FE Family Controller = Local Area Connection (Connected)
 
 
# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4
 
reset
set global icmpredirects=enabled
add route prefix=169.254.0.0/16 interface="iftype0_0" nexthop=192.168.1.6 metric=1 publish=Yes
set interface interface="Local Area Connection" forwarding=disabled advertise=disabled metric=1 siteprefixlength=0 nud=disabled routerdiscovery=disabled managedaddress=disabled otherstateful=disabled weakhostsend=disabled weakhostreceive=disabled ignoredefaultroutes=disabled advertisedrouterlifetime=0 advertisedefaultroute=disabled currenthoplimit=0 forcearpndwolpattern=disabled enabledirectedmacwolpattern=disabled
 
 
popd
# End of IPv4 configuration
 
 
 
Windows IP Configuration
 
   Host Name . . . . . . . . . . . . : Kim-HP
   Primary Dns Suffix  . . . . . . . : 
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
 
Ethernet adapter Local Area Connection:
 
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Realtek PCIe FE Family Controller
   Physical Address. . . . . . . . . : 2C-27-D7-2D-36-DF
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   Link-local IPv6 Address . . . . . : fe80::89b3:647a:6da7:1845%13(Preferred) 
   IPv4 Address. . . . . . . . . . . : 192.168.1.21(Preferred) 
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Tuesday, April 28, 2015 8:30:54 PM
   Lease Expires . . . . . . . . . . : Friday, May 01, 2015 8:30:54 AM
   Default Gateway . . . . . . . . . : 192.168.1.1
   DHCP Server . . . . . . . . . . . : 192.168.1.1
   DHCPv6 IAID . . . . . . . . . . . : 276344000
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-15-3E-B1-9E-2C-27-D7-2D-36-DF
   DNS Servers . . . . . . . . . . . : 75.126.206.18
                                       184.173.169.186
   NetBIOS over Tcpip. . . . . . . . : Enabled
 
Tunnel adapter isatap.{F1B27B2C-2520-4CB2-A8FA-40E913DD4A82}:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Local Area Connection* 9:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft 6to4 Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Local Area Connection* 12:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft Teredo Tunneling Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Server:  75.126.206.18-static.reverse.softlayer.com
Address:  75.126.206.18
 
Name:    google.com
Addresses:  2607:f8b0:4000:809::100e
 173.194.115.70
 173.194.115.66
 173.194.115.73
 173.194.115.65
 173.194.115.68
 173.194.115.78
 173.194.115.69
 173.194.115.71
 173.194.115.67
 173.194.115.72
 173.194.115.64
 
 
Pinging google.com [173.194.115.69] with 32 bytes of data:
Reply from 173.194.115.69: bytes=32 time=44ms TTL=50
Reply from 173.194.115.69: bytes=32 time=44ms TTL=50
 
Ping statistics for 173.194.115.69:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 44ms, Maximum = 44ms, Average = 44ms
Server:  75.126.206.18-static.reverse.softlayer.com
Address:  75.126.206.18
 
Name:    yahoo.com
Addresses:  206.190.36.45
 98.138.253.109
 98.139.183.24
 
 
Pinging yahoo.com [98.139.183.24] with 32 bytes of data:
Reply from 98.139.183.24: bytes=32 time=32ms TTL=50
Reply from 98.139.183.24: bytes=32 time=32ms TTL=50
 
Ping statistics for 98.139.183.24:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 32ms, Maximum = 32ms, Average = 32ms
 
Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
 
Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
 13...2c 27 d7 2d 36 df ......Realtek PCIe FE Family Controller
  1...........................Software Loopback Interface 1
 14...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
 11...00 00 00 00 00 00 00 e0 Microsoft 6to4 Adapter
 12...00 00 00 00 00 00 00 e0 Microsoft Teredo Tunneling Adapter
===========================================================================
 
IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0      192.168.1.1     192.168.1.21      2
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
      169.254.0.0      255.255.0.0      192.168.1.6     192.168.1.21      2
      192.168.1.0    255.255.255.0         On-link      192.168.1.21    257
     192.168.1.21  255.255.255.255         On-link      192.168.1.21    257
    192.168.1.255  255.255.255.255         On-link      192.168.1.21    257
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link      192.168.1.21    257
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link      192.168.1.21    257
===========================================================================
Persistent Routes:
  Network Address          Netmask  Gateway Address  Metric
      169.254.0.0      255.255.0.0      192.168.1.6       1
===========================================================================
 
IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
  1    306 ::1/128                  On-link
 13    276 fe80::/64                On-link
 13    276 fe80::89b3:647a:6da7:1845/128
                                    On-link
  1    306 ff00::/8                 On-link
 13    276 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================
 
Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 09 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog5 07 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171392] (Microsoft Corp.)
x64-Catalog5 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171392] (Microsoft Corp.)
x64-Catalog5 09 C:\Program Files\Bonjour\mdnsNSP.dll [132968] (Apple Inc.)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
 
========================= Event log errors: ===============================
 
Application errors:
==================
Error: (04/30/2015 00:29:55 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0"1".
Dependent Assembly rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (04/30/2015 00:29:47 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.
 
Error: (04/29/2015 06:40:23 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0"1".
Dependent Assembly rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (04/29/2015 06:40:22 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.
 
Error: (04/29/2015 06:38:25 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0"1".
Dependent Assembly rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (04/29/2015 06:37:58 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.
 
Error: (04/28/2015 08:41:07 PM) (Source: CVHSVC) (User: )
Description: Information only.
(Patch task for {90140011-0066-0409-0000-0000000FF1CE}): DownloadLatest Failed: A connection with the server could not be established
 
Error: (04/28/2015 08:32:38 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (04/28/2015 07:57:58 PM) (Source: CVHSVC) (User: )
Description: Information only.
(Patch task for {90140011-0066-0409-0000-0000000FF1CE}): DownloadLatest Failed: A connection with the server could not be established
 
Error: (04/28/2015 07:49:23 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
 
System errors:
=============
Error: (04/28/2015 08:31:19 PM) (Source: Service Control Manager) (User: )
Description: The HomeGroup Provider service depends on the Function Discovery Resource Publication service which failed to start because of the following error: 
%%-2147024891
 
Error: (04/28/2015 08:31:19 PM) (Source: Service Control Manager) (User: )
Description: The Function Discovery Resource Publication service terminated with the following error: 
%%-2147024891
 
Error: (04/28/2015 08:31:10 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error: 
%%1060
 
Error: (04/28/2015 08:31:08 PM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load: 
BHDrvx64
SRTSP
 
Error: (04/28/2015 08:31:01 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error: 
%%1060
 
Error: (04/28/2015 08:31:00 PM) (Source: Service Control Manager) (User: )
Description: The X5XSEx_Pr143 service failed to start due to the following error: 
%%3
 
Error: (04/28/2015 08:30:47 PM) (Source: SRTSP) (User: )
Description: Error loading virus definitions.
 
Error: (04/28/2015 08:30:21 PM) (Source: Service Control Manager) (User: )
Description: The Windows Media Player Network Sharing Service service failed to start due to the following error: 
%%1069
 
Error: (04/28/2015 08:30:21 PM) (Source: Service Control Manager) (User: )
Description: The WMPNetworkSvc service was unable to log on as NT AUTHORITY\NetworkService with the currently configured password due to the following error: 
%%50
 
To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
 
Error: (04/28/2015 08:30:21 PM) (Source: Service Control Manager) (User: )
Description: The Windows Search service failed to start due to the following error: 
%%1069
 
 
Microsoft Office Sessions:
=========================
Error: (04/30/2015 00:29:55 AM) (Source: SideBySide)(User: )
Description: rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0"C:\Windows\Installer\{AF7EBCA4-9FAF-4DC8-8D09-67854BB84D34}\recordingmanager.exe
 
Error: (04/30/2015 00:29:47 AM) (Source: SideBySide)(User: )
Description: assemblyIdentityversionMAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINORC:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dllC:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll3
 
Error: (04/29/2015 06:40:23 AM) (Source: SideBySide)(User: )
Description: rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0"C:\Windows\Installer\{AF7EBCA4-9FAF-4DC8-8D09-67854BB84D34}\recordingmanager.exe
 
Error: (04/29/2015 06:40:22 AM) (Source: SideBySide)(User: )
Description: assemblyIdentityversionMAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINORC:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dllC:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll3
 
Error: (04/29/2015 06:38:25 AM) (Source: SideBySide)(User: )
Description: rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0"C:\Windows\Installer\{AF7EBCA4-9FAF-4DC8-8D09-67854BB84D34}\recordingmanager.exe
 
Error: (04/29/2015 06:37:58 AM) (Source: SideBySide)(User: )
Description: assemblyIdentityversionMAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINORC:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dllC:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll3
 
Error: (04/28/2015 08:41:07 PM) (Source: CVHSVC)(User: )
Description: (Patch task for {90140011-0066-0409-0000-0000000FF1CE}): DownloadLatest Failed: A connection with the server could not be established
 
Error: (04/28/2015 08:32:38 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (04/28/2015 07:57:58 PM) (Source: CVHSVC)(User: )
Description: (Patch task for {90140011-0066-0409-0000-0000000FF1CE}): DownloadLatest Failed: A connection with the server could not be established
 
Error: (04/28/2015 07:49:23 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
 
 
=========================== Installed Programs ============================
7 Wonders (HKLM-x32\...\7 Wonders) (Version:  - )
7 Wonders II (HKLM-x32\...\exent_586350) (Version:  - )
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.3.9130 - Adobe Systems Inc.)
Adobe AIR (x32 Version: 1.5.3.9130 - Adobe Systems Inc.) Hidden
Adobe Flash Player 13 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated)
Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated)
Agatha Christie - Peril at End House (x32 Version: 2.2.0.95 - WildTangent) Hidden
Angry Birds (HKLM-x32\...\{370CA4B0-A1D8-4863-A3C5-6879AEE1663A}) (Version: 3.0.0 - Rovio)
Angry Birds Rio (HKLM-x32\...\{0D637670-BC00-4FAC-8E00-518EB7F65091}) (Version: 1.4.4 - Rovio)
Apple Application Support (HKLM-x32\...\{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}) (Version: 2.1.7 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{B8AD779A-82DA-4365-A7D0-AD3DCFC55CFF}) (Version: 5.1.1.4 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
ATI Catalyst Install Manager (HKLM\...\{7C7A5A92-046C-A38C-AE0F-8F9CCA0F67A8}) (Version: 3.0.774.0 - ATI Technologies, Inc.)
Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Bejeweled 3 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Big Fish Games: Game Manager (HKLM-x32\...\BFGC) (Version: 3.0.1.60 - )
Bing Rewards Client Installer (x32 Version: 16.0.345.0 - Microsoft Corporation) Hidden
Blackhawk Striker 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Blasterball 3 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Blio (HKLM-x32\...\{9368DDD5-CE7F-4BD7-A83A-F00FABE338EC}) (Version: 2.2.6699 - K-NFB Reading Technology, Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Bounce Symphony (x32 Version: 2.2.0.95 - WildTangent) Hidden
Build-a-lot 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Cake Mania (x32 Version: 2.2.0.95 - WildTangent) Hidden
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version:  - )
Canon IJ Network Scan Utility (HKLM-x32\...\Canon_IJ_Network_Scan_UTILITY) (Version:  - )
Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version:  - )
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version:  - )
Canon MP Navigator EX 3.1 (HKLM-x32\...\MP Navigator EX 3.1) (Version:  - )
Canon MX340 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX340_series) (Version:  - )
Canon MX340 series User Registration (HKLM-x32\...\Canon MX340 series User Registration) (Version:  - )
Canon Speed Dial Utility (HKLM-x32\...\Speed Dial Utility) (Version:  - )
Canon Utilities Easy-PhotoPrint EX (HKLM-x32\...\Easy-PhotoPrint EX) (Version:  - )
Canon Utilities My Printer (HKLM-x32\...\CanonMyPrinter) (Version:  - )
Canon Utilities Solution Menu (HKLM-x32\...\CanonSolutionMenu) (Version:  - )
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - ATI) Hidden
Catalyst Control Center Core Implementation (x32 Version: 2010.0511.2153.37435 - ATI) Hidden
Catalyst Control Center Graphics Full Existing (x32 Version: 2010.0511.2153.37435 - ATI) Hidden
Catalyst Control Center Graphics Full New (x32 Version: 2010.0511.2153.37435 - ATI) Hidden
Catalyst Control Center Graphics Light (x32 Version: 2010.0511.2153.37435 - ATI) Hidden
Catalyst Control Center Graphics Previews Vista (x32 Version: 2010.0511.2153.37435 - ATI) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2010.0511.2153.37435 - ATI Technologies, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2010.0511.2153.37435 - ATI) Hidden
CCC Help Chinese Standard (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Chinese Traditional (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Czech (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Danish (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Dutch (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help English (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Finnish (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help French (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help German (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Greek (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Hungarian (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Italian (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Japanese (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Korean (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Norwegian (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Polish (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Portuguese (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Russian (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Spanish (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Swedish (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Thai (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
CCC Help Turkish (x32 Version: 2010.0511.2152.37435 - ATI) Hidden
ccc-core-static (x32 Version: 2010.0511.2153.37435 - ATI) Hidden
ccc-utility64 (Version: 2010.0511.2153.37435 - ATI) Hidden
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Cradle of Rome (HKLM-x32\...\exent_554750) (Version:  - )
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DealCabby (HKLM-x32\...\DealCabby) (Version: 1.0921.1509 - DealCabby)
Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95 - WildTangent) Hidden
Dora's World Adventure (x32 Version: 2.2.0.95 - WildTangent) Hidden
Farm Frenzy (x32 Version: 2.2.0.95 - WildTangent) Hidden
Farming Simulator 2011 (HKLM-x32\...\FarmingSimulator2011EN_is1) (Version: 1.0 - GIANTS Software)
FATE - The Traitor Soul (x32 Version: 2.2.0.95 - WildTangent) Hidden
Garmin Communicator Plugin x64 (HKLM\...\{550331CC-C34B-494F-BCDA-37CE4EF6E924}) (Version: 4.0.3 - Garmin Ltd or its subsidiaries)
Garmin Lifetime Updater (HKLM-x32\...\{9AAD03E8-4F65-4DE2-8F6C-1B079C0C8521}) (Version: 2.1.11 - Garmin)
Ghost Whisperer - Forgotten Toys (HKLM-x32\...\Ghost Whisperer - Forgotten Toys) (Version:  - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 42.0.2311.135 - Google Inc.)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.6227.252 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.26.7 - Google Inc.) Hidden
Heartwild Solitaire - Book Two (HKLM-x32\...\exent_676150) (Version:  - )
Heroes of Hellas (HKLM-x32\...\exent_532150) (Version:  - )
Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP Auto (Version: 1.0.12935.3667 - Hewlett-Packard Company) Hidden
HP Client Services (Version: 1.1.12938.3539 - Hewlett-Packard) Hidden
HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hidden
HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.2.4 - WildTangent)
HP LinkUp (HKLM-x32\...\{DB3147AB-4024-4773-8EC0-A1FE5B44933D}) (Version: 2.01.028 - Hewlett-Packard)
HP MediaSmart/TouchSmart Netflix (HKLM-x32\...\{BB760C1D-98F4-4E38-8CC4-3B67329AA981}) (Version: 1.0.6.0 - Hewlett-Packard)
HP MovieStore (HKLM-x32\...\{9008D736-35CA-40DB-A2BE-5F32D954E5AA}) (Version: 2.0 - Hewlett-Packard)
HP MovieStore (x32 Version: 1.0.045 - Hewlett-Packard) Hidden
HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard)
HP Power Assistant (HKLM\...\{6888C635-E550-4FA4-958E-CE2880B0443B}) (Version: 1.1.1.6 - Hewlett-Packard)
HP Setup (HKLM-x32\...\{210A03F5-B2ED-4947-B27E-516F50CBB292}) (Version: 8.6.4530.3651 - Hewlett-Packard Company)
HP Setup Manager (HKLM-x32\...\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.1.13253.3682 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{EE202411-2C26-49E8-9784-1BC1DBF7DE96}) (Version: 7.0.39.15 - Hewlett-Packard Company)
HP Support Information (HKLM-x32\...\{7F2A11F4-EAE8-4325-83EC-E3E99F85169E}) (Version: 10.1.1000 - Hewlett-Packard)
HP Update (HKLM-x32\...\{DE77FE3F-A33D-499A-87AD-5FC406617B40}) (Version: 5.002.003.003 - Hewlett-Packard)
HP Vision Hardware Diagnostics (HKLM\...\{D79A02E9-6713-4335-9668-AAC7474C0C0E}) (Version: 2.5.0.0 - Hewlett-Packard)
Hulu Desktop (HKCU\...\HuluDesktop) (Version: 0.9.13 - Hulu LLC)
Image Plugin (HKLM-x32\...\{FDC8065B-80DE-4466-B90B-2581F6D77DFF}) (Version: 3.04.0226 - Snap-on Business Solutions)
iTunes (HKLM\...\{4BDE7544-0A08-4AD9-8A8F-4B7944471C36}) (Version: 10.6.0.40 - Apple Inc.)
Jewel Quest 3 (HKLM-x32\...\exent_642550) (Version:  - )
Jewel Quest Mysteries (x32 Version: 2.2.0.95 - WildTangent) Hidden
Jewel Quest Solitaire (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111771833}) (Version:  - Oberon Media)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Kobo (HKLM-x32\...\Kobo) (Version: 1.6 - Kobo Inc.)
LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.3609 - CyberLink Corp.)
LabelPrint (x32 Version: 2.5.3609 - CyberLink Corp.) Hidden
Mah Jong Medley (x32 Version: 2.2.0.95 - WildTangent) Hidden
Malwarebytes Anti-Malware version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Starter 2010 - English (HKLM-x32\...\{90140011-0066-0409-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (HKLM-x32\...\{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}) (Version: 9.0.30411 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0 - Microsoft Corp.) Hidden
Mozilla Firefox 30.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 30.0 (x86 en-US)) (Version: 30.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Mystery P.I. - Stolen in San Francisco (x32 Version: 2.2.0.95 - WildTangent) Hidden
Namco All-Stars PAC-MAN (x32 Version: 2.2.0.95 - WildTangent) Hidden
Norton 360 (HKLM-x32\...\N360) (Version: 21.3.0.12 - Symantec Corporation)
Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.1.17869 - Symantec Corporation)
OpenOffice 4.0.1 (HKLM-x32\...\{47F460DA-D1BE-4D85-8DF2-AA1F31D3445F}) (Version: 4.01.9714 - Apache Software Foundation)
PDF Complete Special Edition (HKLM-x32\...\PDF Complete) (Version: 4.0.35 - PDF Complete, Inc)
Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95 - WildTangent) Hidden
Play Pickle (HKLM-x32\...\Play Pickle) (Version:  - )
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
PlayReady PC Runtime x86 (HKLM-x32\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation)
Poker Superstars III (x32 Version: 2.2.0.95 - WildTangent) Hidden
Polar Bowler (x32 Version: 2.2.0.95 - WildTangent) Hidden
Polar Golfer (x32 Version: 2.2.0.95 - WildTangent) Hidden
Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.4817 - CyberLink Corp.)
Power2Go (x32 Version: 6.1.4817 - CyberLink Corp.) Hidden
PressReader (HKLM-x32\...\{912CED74-88D3-4C5B-ACB0-132318649765}) (Version: 5.10.1217.0 -  NewspaperDirect Inc.)
Radialpoint Security Advisor 2.5.15 (x32 Version: 2.5.15 - Radialpoint SafeCare Inc.) Hidden
Radialpoint Servicepoint Dashboard Extensions version 12.11.12.59890 (HKLM-x32\...\RadialpointServicepointDashboardExtensions_is1) (Version: 12.11.12.59890 - )
RealDownloader (x32 Version: 1.3.0 - RealNetworks, Inc.) Hidden
RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden
RealPlayer (HKLM-x32\...\RealPlayer 16.0) (Version: 16.0.0 - RealNetworks)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6251 - Realtek Semiconductor Corp.)
RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden
Recovery Manager (x32 Version: 5.5.3621 - CyberLink Corp.) Hidden
Remote Graphics Receiver (HKLM-x32\...\{16FC3056-90C0-4757-8A68-64D8DA846ADA}) (Version: 5.4.5 - Hewlett-Packard)
RoxioNow Player (HKLM-x32\...\{0EDEB615-1A60-425E-8306-0E10519C7B55}) (Version: 1.9.5.103 - RoxioNow)
SelectionLinks (HKLM-x32\...\sl-pmi) (Version: 1.0 - SelectionLinks)
Sendori (HKLM-x32\...\Sendori) (Version: 2.0.18 - Sendori, Inc.)
Slingo Supreme (x32 Version: 2.2.0.95 - WildTangent) Hidden
Social Privacy (HKLM-x32\...\sp@sp.com) (Version:  - )
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
The Weather Channel App (HKLM-x32\...\{167158CE-1637-4167-8A1C-C2549EEA966A}) (Version: 1.00.0000 - The Weather Channel)
Tumblebugs 1.0.4 (HKLM-x32\...\Tumblebugs) (Version: 1.0.4 - Play At Joes, Inc)
Update Installer for WildTangent Games App (x32 Version:  - WildTangent) Hidden
Updater (HKLM-x32\...\{D54E3D9F-FEB8-4D2D-A138-B69A5C80080B}) (Version: 2.6.47 - Creative Island Media, LLC)
Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.95 - WildTangent) Hidden
Warhammer® 40,000™: Dawn of War® II (HKLM-x32\...\Steam App 15620) (Version:  - Relic)
Waterscape Solitaire: American Falls (HKLM-x32\...\BFG-Waterscape Solitaire - American Falls) (Version:  - )
Wheel of Fortune 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 - WildTangent)
WildTangent Games App for HP (x32 Version: 4.0.11.2 - WildTangent) Hidden
Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Family Safety (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Language Selector (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Messenger (x32 Version: 15.4.3538.0513 - Microsoft Corporation) Hidden
Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windstream Broadband Check-up Center (HKLM-x32\...\Windstream_BCUC) (Version:  - )
Windstream Diagnostic Tools 3.0.21 (x32 Version: 3.0.21 - Windstream) Hidden
Windstream Service Agent 4.1.15 (HKLM-x32\...\RadialpointClientGateway_is1) (Version: 4.1.15 - Windstream)
Zinio Reader 4 (HKLM-x32\...\ZinioReader4.9310D8F796442B71068C511E15D70529A702D19D.1) (Version: 4.0.3184 - Zinio LLC)
Zinio Reader 4 (x32 Version: 4.0.3184 - Zinio LLC) Hidden
Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Zuma's Revenge! (HKLM-x32\...\Zuma's Revenge!) (Version:  - PopCap Games)
 
========================= Memory info: ===================================
 
Percentage of memory in use: 29%
Total physical RAM: 7935.29 MB
Available physical RAM: 5615.41 MB
Total Pagefile: 15868.75 MB
Available Pagefile: 13187.07 MB
Total Virtual: 4095.88 MB
Available Virtual: 3978.47 MB
 
========================= Partitions: =====================================
 
1 Drive c: (OS) (Fixed) (Total:920.27 GB) (Free:848.04 GB) NTFS
2 Drive d: (HP_RECOVERY) (Fixed) (Total:11.15 GB) (Free:1.35 GB) NTFS
3 Drive e: (ESD-ISO) (CDROM) (Total:2.55 GB) (Free:0 GB) UDF
 
========================= Users: ========================================
 
User accounts for \\KIM-HP
 
Administrator            Guest                    Kim                      
Sean                     
 
 
**** End of log ****
ADW CLEANER RESULTS:
 
# AdwCleaner v4.202 - Logfile created 30/04/2015 at 09:44:22
# Updated 23/04/2015 by Xplode
# Database : 2015-04-27.1 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Kim - KIM-HP
# Running from : C:\Users\Kim\Desktop\adwcleaner_4.202 (1).exe
# Option : Scan
 
***** [ Services ] *****
 
 
***** [ Files / Folders ] *****
 
 
***** [ Scheduled tasks ] *****
 
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
Data Found : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyEnable] - 1
Data Found : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <-loopback>
Data Found : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyServer] - hxxp=127.0.0.1:13081
Value Found : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [DefaultConnectionSettings]
Value Found : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [SavedLegacySettings]
 
***** [ Web browsers ] *****
 
-\\ Internet Explorer v11.0.9600.16428
 
 
-\\ Mozilla Firefox v30.0 (en-US)
 
 
-\\ Google Chrome v42.0.2311.135
 
 
*************************
 
AdwCleaner[R0].txt - [64071 bytes] - [28/04/2015 20:28:03]
AdwCleaner[R1].txt - [1483 bytes] - [30/04/2015 09:31:58]
AdwCleaner[R2].txt - [1344 bytes] - [30/04/2015 09:44:22]
AdwCleaner[S0].txt - [62563 bytes] - [28/04/2015 20:29:13]
 
########## EOF - C:\AdwCleaner\AdwCleaner[R2].txt - [1463 bytes] ##########
 
JRT Results:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.6.7 (04.30.2015:1)
OS: Windows 7 Home Premium x64
Ran by Kim on Thu 04/30/2015 at  9:50:09.17
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
~~~ Services
 
 
 
~~~ Tasks
 
Successfully deleted: [Task] C:\Windows\system32\tasks\CandyUpdater
Successfully deleted: [Task] C:\Windows\tasks\CandyUpdater.job
 
 
 
~~~ Registry Values
 
Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2D7432C9-A3FD-4ED1-AEA9-FBDB12DBA4A7}
Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2E9331D0-B42B-42B7-9824-A6545D0CEAA6}
 
 
 
~~~ Registry Keys
 
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TotalRecipeSearch_14.SkinLauncher
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TotalRecipeSearch_14.SkinLauncherSettings
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
 
 
 
~~~ Files
 
Successfully deleted: [File] C:\Users\Kim\appdata\local\google\chrome\user data\default\local storage\http_service.pricegong.com_0.localstorage-journal
Successfully deleted: [File] C:\Users\Kim\appdata\local\google\chrome\user data\default\local storage\http_service.pricegong.com_0.localstorage
Successfully deleted: [File] C:\Windows\wininit.ini
 
 
 
~~~ Folders
 
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{0F028E74-A4C5-4010-802A-EED39F51E240}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{2271EDB8-A666-45EE-AAEE-0374D6843BBB}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{278352D7-1473-4947-A713-67DC2AE4D7A6}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{2823EAF9-CA46-4C7F-BFA1-9F27909F03C9}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{288CFBD8-1312-42BA-B58B-C80D9A3D8D7F}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{2C746E49-B72F-47F4-B327-4AA65D9A09F0}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{4545528B-6818-4C64-AF7C-C654BE202B67}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{46C89F33-EAF6-491C-AEFE-C86AA2B07108}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{50C1B401-49FA-4654-9EB9-15F6580AA5DC}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{674C1C47-1EE5-4F89-8E38-DC48A4D20012}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{69CB927E-438C-460A-835C-92AE8B6B1214}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{865FA031-DDCA-47A5-9513-C759D5099F8C}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{89206997-D145-4A31-ABDD-DE29E8E07B53}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{8FC7395F-D396-4044-A7C6-1040C1D02391}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{92286DEE-5CCA-4625-873D-EC3CFF4B1DBB}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{A49C8265-3A14-442C-8D5C-6080524B7883}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{B3E4212F-BC13-40F1-8896-249962387166}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{D45F56B5-99F6-4DF7-9A35-F3DA94738691}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{D6937CDB-56C4-4987-BB01-4F3474D5BACD}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{DAE2B001-BED8-4D19-8193-4D55804C5007}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{FA8A4E55-DCF1-4707-BEC3-59343718FCC3}
Successfully deleted: [Empty Folder] C:\Users\Kim\appdata\local\{FD0AD366-52BF-4495-8430-A7ABA57F55FE}
Successfully deleted: [Folder] C:\Program Files (x86)\radiorage_4jei
Successfully deleted: [Folder] C:\Program Files (x86)\recipehub_2jei
Successfully deleted: [Folder] C:\ProgramData\ammyy
Successfully deleted: [Folder] C:\ProgramData\microsoft\windows\start menu\programs\optimizer pro v3.2
Successfully deleted: [Folder] C:\Users\Kim\appdata\local\cre
Successfully deleted: [Folder] C:\Users\Kim\appdata\local\dealcabby
Successfully deleted: [Folder] C:\Users\Kim\appdata\locallow\radiorage_4jei
Successfully deleted: [Folder] C:\Users\Kim\appdata\locallow\recipehub_2jei
Successfully deleted: [Folder] C:\ProgramData\deal4Me
Successfully deleted: [Folder] C:\ProgramData\QueenCoupon
Successfully deleted: [Folder] C:\ProgramData\ShopperMaster
 
 
 
~~~ FireFox
 
Successfully deleted: [File] C:\user.js
Successfully deleted: [Folder] C:\Users\Kim\AppData\Roaming\mozilla\firefox\profiles\q99yi838.default\smartbar
Successfully deleted the following from C:\Users\Kim\AppData\Roaming\mozilla\firefox\profiles\q99yi838.default\prefs.js
 
user_pref(CT3287811.1000082.isPlayDisplay, true);
user_pref(CT3287811.1000082.state, {\state\:\stopped\,\text\:\Californi...\,\description\:\California Rock - Rock\,\url\:\hxxp://www.feedlive.net/california.
user_pref(CT3287811.ENABALE_HISTORY, {\dataType\:\string\,\data\:\true\});
user_pref(CT3287811.FF19Solved, true);
user_pref(CT3287811.Facebbok_user_cuid_100000124764430.enc, MDEwZTAwMDEtMTdlYS01YWYzLTAwMDAtMDAwMDAwMDAwMDAw);
user_pref(CT3287811.Facebbok_user_id.enc, MTAwMDAwMTI0NzY0NDMw);
user_pref(CT3287811.FacebookNotifications.enc, MQ==);
user_pref(CT3287811.Facebook_First_Visit.enc, bm90Rmlyc3Q=);
user_pref(CT3287811.Facebook_Last_Message_Choice.enc, );
user_pref(CT3287811.Facebook_Last_Visit_Tab.enc, bmV3c0ZlZWRMaQ==);
user_pref(CT3287811.Facebook_LoggedIn.enc, eWVz);
user_pref(CT3287811.Facebook_Login_Refresh.enc, MC4wNDI1NTczOTMyODk5MjQ0Nw==);
user_pref(CT3287811.Facebook_Login_Status.enc, Mw==);
user_pref(CT3287811.Facebook_Lust_Recieve.enc, NTg0NTMyNzAsNTg0NDQ1NTQsNTgzNzEyMDIsNTg0MjQ3MzcsNTg0MDU1NDcsNTgzMDk3MDYsNTgzNTEwNTgsNTgyNjg2OTMsNTgzMDI2MDgsNTgxOTE4NDgsNTgyN
user_pref(CT3287811.Facebook_Lust_RecieveGadet.enc, NTkzNDkyNzksNTkzNDc3MTYsNTkwOTU2NjQs);
user_pref(CT3287811.Facebook_Mode.enc, Mg==);
user_pref(CT3287811.Facebook_User_Locale.enc, ZW4=);
user_pref(CT3287811.Facebook_User_token.enc, Q0FBQUFNTnU5SVNnQkFGTDU2cjFaQmNxeFV3YnhXYU5XQ1VCSEt4SU5scDJyNWpuelpBWU9zQnp4d2M1TEJkSVc2WkIzdXJaQTVtNTJ3VEkwWkFNcEhGZFRVVWkySnh
user_pref(CT3287811.Facebook_ctid_Connect_send_n.enc, c2VuZGVk);
user_pref(CT3287811.Facebook_ctid_Connect_send_new.enc, c2VuZGVk);
user_pref(CT3287811.Facebook_user_name.enc, MHgwMDRCLDB4MDA2OSwweDAwNkQsMHgwMDIwLDB4MDA1MCwweDAwNjEsMHgwMDZDLDB4MDA2MywweDAwNkIsMHgwMDZGLDB4MDAyMCwweDAwNTMsMHgwMDc0LDB4MDA3
user_pref(CT3287811.FirstTime, true);
user_pref(CT3287811.FirstTimeFF3, true);
user_pref(CT3287811.NoProblem, %B7);
user_pref(CT3287811.NoProblem.enc, MQ==);
user_pref(CT3287811.PG_ENABLE, dHJ1ZQ==);
user_pref(CT3287811.SF_JUST_INSTALLED, %CC%C7%D2%D9%CB);
user_pref(CT3287811.SF_JUST_INSTALLED.enc, RkFMU0U=);
user_pref(CT3287811.SF_STATUS, %CB%D4%C7%C8%D2%CB%CA);
user_pref(CT3287811.SF_STATUS.enc, RU5BQkxFRA==);
user_pref(CT3287811.SF_USER_ID, %E9%EF%EA%E5%B7%BC%B7%B7%B8%B6%B7%B9%B7%BD%BB%BB%BD%BD%BB%BE%BE%B6%BA%BC);
user_pref(CT3287811.SF_USER_ID.enc, Y2lkXzE2MTEyMDEzMTc1NTc3NTg4MDQ2);
user_pref(CT3287811.UserID, UN29338853406109241);
user_pref(CT3287811._key_cl_active, %B9%E9%E7%B9%EB%BF%BF%B9%B3%B6%B6%BE%E7%B3%BA%B7%BF%BB%B3%E7%E7%E7%BB%B3%BE%B8%E7%BC%BD%B7%E8%E8%B7%BE%E9%E7);
user_pref(CT3287811._key_cl_active.enc, M2NhM2U5OTMtMDA4YS00MTk1LWFhYTUtODJhNjcxYmIxOGNh);
user_pref(CT3287811.addressBarTakeOverEnabledInHidden, true);
user_pref(CT3287811.browser.search.defaultthis.engineName, true);
user_pref(CT3287811.cb_experience_000, %B7%BB);
user_pref(CT3287811.cb_experience_000.enc, MTU=);
user_pref(CT3287811.cb_firstuse0100, %B7);
user_pref(CT3287811.cb_firstuse0100.enc, MQ==);
user_pref(CT3287811.cb_user_id_000, %C9%C8%B8%BC%BC%B7%B9%BF%BF%BE%BC%BB%B6%BD%E5%B7%B9%BE%BB%BC%BE%B9%B8%BE%B8%B8%B6%BC%E5%CC%EF%F8%EB%EC%F5%FE);
user_pref(CT3287811.cb_user_id_000.enc, Q0IyNjYxMzk5ODY1MDdfMTM4NTY4MzI4MjIwNl9GaXJlZm94);
user_pref(CT3287811.cbfirsttime, %D9%E7%FA%A6%D4%F5%FC%A6%B7%BC%A6%B8%B6%B7%B9%A6%B7%BD%C0%B6%BC%C0%B6%B8%A6%CD%D3%DA%B3%B6%BB%B6%B6%A6%AE%CB%E7%F9%FA%EB%F8%F4%A6%D9%FA%E7%
user_pref(CT3287811.cbfirsttime.enc, U2F0IE5vdiAxNiAyMDEzIDE3OjA2OjAyIEdNVC0wNTAwIChFYXN0ZXJuIFN0YW5kYXJkIFRpbWUp);
user_pref(CT3287811.countryCode, US);
user_pref(CT3287811.defaultSearch, true);
user_pref(CT3287811.discover-experiments-photopop, ā%A8%F4%E7%F3%EB%A8%C0%A8%F6%EE%F5%FA%F5%F6%F5%F6%E5%F4%E7%A8%B2%A8%FC%EB%F8%F9%EF%F5%F4%A8%C0%B7%B6ă);
user_pref(CT3287811.discover-experiments-photopop.enc, eyJuYW1lIjoicGhvdG9wb3BfbmEiLCJ2ZXJzaW9uIjoxMH0=);
user_pref(CT3287811.discover-periodic-reports, ā%A8%F6%EF%F4%ED%E5%B6%A8%C0%E1%B7%B9%BE%BB%BC%BE%B9%B8%BF%B6%BA%B7%BB%B2%B7%BA%BA%B6%B6%B6%B6%B6%E3ă);
user_pref(CT3287811.discover-periodic-reports.enc, eyJwaW5nXzAiOlsxMzg1NjgzMjkwNDE1LDE0NDAwMDAwXX0=);
user_pref(CT3287811.discover-user-id, %A8%BB%E9%BB%B6%BE%BB%EC%B7%B3%B8%BD%B9%BB%B3%BA%E8%EB%E8%B3%BE%BE%BC%BB%B3%E7%BE%BD%B9%E7%BA%E7%E8%B8%EC%BD%E9%A8);
user_pref(CT3287811.discover-user-id.enc, IjVjNTA4NWYxLTI3MzUtNGJlYi04ODY1LWE4NzNhNGFiMmY3YyI=);
user_pref(CT3287811.enableAlerts, true);
user_pref(CT3287811.enableSearchFromAddressBar, true);
user_pref(CT3287811.facebook_toolbar_Not_Numer.enc, Mjc=);
user_pref(CT3287811.firstTimeDialogOpened, true);
user_pref(CT3287811.fixPageNotFoundError, true);
user_pref(CT3287811.fixPageNotFoundErrorByUser, true);
user_pref(CT3287811.fixPageNotFoundErrorInHidden, true);
user_pref(CT3287811.fullUserID, UN29338853406109241.IN.20131116165155);
user_pref(CT3287811.ground-country-code, %A8%DB%D9%A8);
user_pref(CT3287811.ground-country-code.enc, IlVTIg==);
user_pref(CT3287811.impression_session_counter, %B7);
user_pref(CT3287811.impression_session_counter.enc, MQ==);
user_pref(CT3287811.impression_session_id, %A8%E8%BC%E7%BB%B9%BE%BF%BE%B3%E9%EB%BD%BB%B3%BA%E8%B9%BF%B3%BE%E9%BB%B7%B3%EA%BB%B9%B7%EA%EA%BD%E7%E7%B9%EB%EA%A8);
user_pref(CT3287811.impression_session_id.enc, ImI2YTUzODk4LWNlNzUtNGIzOS04YzUxLWQ1MzFkZDdhYTNlZCI=);
user_pref(CT3287811.impression_session_last_active, %B7%B9%BE%BB%BC%BE%BA%BB%BF%BC%BC%B8%B9);
user_pref(CT3287811.impression_session_last_active.enc, MTM4NTY4NDU5NjYyMw==);
user_pref(CT3287811.installDate, 16/11/2013 16:52:01);
user_pref(CT3287811.installId, stub.exe);
user_pref(CT3287811.installSessionId, {19666B03-DFB9-4D36-9E7A-8C46B773DBD8});
user_pref(CT3287811.installSp, TRUE);
user_pref(CT3287811.installUsage, 2013-11-17T01:04:27.052797+03:00);
user_pref(CT3287811.installUsageEarly, 2013-11-17T01:04:23.4433758+03:00);
user_pref(CT3287811.installerVersion, 1.8.1.4);
user_pref(CT3287811.isCheckedStartAsHidden, true);
user_pref(CT3287811.isEnableAllDialogs, {\dataType\:\string\,\data\:\true\});
user_pref(CT3287811.isFirstTimeToolbarLoading, false);
user_pref(CT3287811.isToolbarShrinked, {\dataType\:\string\,\data\:\false\});
user_pref(CT3287811.keyword, true);
user_pref(CT3287811.lastVersion, 10.23.0.822);
user_pref(CT3287811.mam_gk_appStateReportTime, %B7%B9%BE%BC%BC%B8%B6%BC%BD%B8%BD%B6%BF);
user_pref(CT3287811.mam_gk_appStateReportTime.enc, MTM4NjYyMDY3MjcwOQ==);
user_pref(CT3287811.mam_gk_appState_Clarity_Active, %F5%F4);
user_pref(CT3287811.mam_gk_appState_Clarity_Active.enc, b24=);
user_pref(CT3287811.mam_gk_appState_CouponBuddy, %F5%F4);
user_pref(CT3287811.mam_gk_appState_CouponBuddy.enc, b24=);
user_pref(CT3287811.mam_gk_appState_Discover, %F5%F4);
user_pref(CT3287811.mam_gk_appState_Discover.enc, b24=);
user_pref(CT3287811.mam_gk_appState_Easytobook, %F5%F4);
user_pref(CT3287811.mam_gk_appState_Easytobook.enc, b24=);
user_pref(CT3287811.mam_gk_appState_Easytobook_targeted, %F5%F4);
user_pref(CT3287811.mam_gk_appState_Easytobook_targeted.enc, b24=);
user_pref(CT3287811.mam_gk_appState_Easytobookcars, %F5%F4);
user_pref(CT3287811.mam_gk_appState_Easytobookcars.enc, b24=);
user_pref(CT3287811.mam_gk_appState_Find-a-Pro, %F5%F4);
user_pref(CT3287811.mam_gk_appState_Find-a-Pro.enc, b24=);
user_pref(CT3287811.mam_gk_appState_JobsMiner, %F5%F4);
user_pref(CT3287811.mam_gk_appState_JobsMiner.enc, b24=);
user_pref(CT3287811.mam_gk_appState_PriceGong, %F5%F4);
user_pref(CT3287811.mam_gk_appState_PriceGong.enc, b24=);
user_pref(CT3287811.mam_gk_appState_WindowShopper, %F5%F4);
user_pref(CT3287811.mam_gk_appState_WindowShopper.enc, b24=);
user_pref(CT3287811.mam_gk_appsConfig.enc, eyJBcHBzQ29uZmlndXJhdGlvbiI6W3siaWQiOiJDbGFyaXR5X0FjdGl2ZSIsInVybCI6Imh0dHA6Ly9zdG9yYWdlLmNvbmR1aXQuY29tL21hbS8zcmRwYXJ0eWFwcHMvY
user_pref(CT3287811.mam_gk_appsDefaultEnabled, %F4%FB%F2%F2);
user_pref(CT3287811.mam_gk_appsDefaultEnabled.enc, bnVsbA==);
user_pref(CT3287811.mam_gk_calledSetupService, %B7);
user_pref(CT3287811.mam_gk_calledSetupService.enc, MQ==);
user_pref(CT3287811.mam_gk_currentVersion, %B7%B4%B7%B8%B4%B6%B4%BB);
user_pref(CT3287811.mam_gk_currentVersion.enc, MS4xMi4wLjU=);
user_pref(CT3287811.mam_gk_existingUsersRecoveryDone, %B7);
user_pref(CT3287811.mam_gk_existingUsersRecoveryDone.enc, MQ==);
user_pref(CT3287811.mam_gk_first_time, %B7);
user_pref(CT3287811.mam_gk_first_time.enc, MQ==);
user_pref(CT3287811.mam_gk_globalKeysMigratedToLocalStorage, %B7);
user_pref(CT3287811.mam_gk_globalKeysMigratedToLocalStorage.enc, MQ==);
user_pref(CT3287811.mam_gk_installer_preapproved.enc, ZmFsc2U=);
user_pref(CT3287811.mam_gk_lastLoginTime, %B7%B9%BE%BC%BC%B8%B6%BC%BD%BA%B9%B9%BC);
user_pref(CT3287811.mam_gk_lastLoginTime.enc, MTM4NjYyMDY3NDMzNg==);
user_pref(CT3287811.mam_gk_localization.enc, eyJkaWFsb2dPSyI6eyJUZXh0IjoiT0sifSwiZG1ib3gxIjp7IlRleHQiOiJEZWFsXHJcbm9mIHRoZSBkYXkifSwiZG1ib3gyIjp7IlRleHQiOiJGcmVlXHJcblNoaXB
user_pref(CT3287811.mam_gk_mamEnabled, %FA%F8%FB%EB);
user_pref(CT3287811.mam_gk_mamEnabled.enc, dHJ1ZQ==);
user_pref(CT3287811.mam_gk_migrated_from_ls, %B7);
user_pref(CT3287811.mam_gk_migrated_from_ls.enc, MQ==);
user_pref(CT3287811.mam_gk_new_welcome_experience, %B7);
user_pref(CT3287811.mam_gk_new_welcome_experience.enc, MQ==);
user_pref(CT3287811.mam_gk_pgUnloadedOnce, %FA%F8%FB%EB);
user_pref(CT3287811.mam_gk_pgUnloadedOnce.enc, dHJ1ZQ==);
user_pref(CT3287811.mam_gk_settings1.11.4.2, ā%A8%D9%FA%E7%FA%FB%F9%A8%C0%A8%F9%FB%E9%E9%EB%EB%EA%EB%EA%A8%B2%A8%CA%E7%FA%E7%A8%C0ā%A8%E9%FB%F8%F8%EB%F4%FA%CA%E7%
user_pref(CT3287811.mam_gk_settings1.11.4.2.enc, eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImN1cnJlbnREYXRlIjoiMjAxMzExMjciLCJpbnRlcnZhbCI6MjQwLCJzdGFtcCI6IjEwNDNfMCIsImlzVGV
user_pref(CT3287811.mam_gk_settings1.11.5.1, ā%A8%D9%FA%E7%FA%FB%F9%A8%C0%A8%F9%FB%E9%E9%EB%EB%EA%EB%EA%A8%B2%A8%CA%E7%FA%E7%A8%C0ā%A8%E9%FB%F8%F8%EB%F4%FA%CA%E7%
user_pref(CT3287811.mam_gk_settings1.11.5.1.enc, eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImN1cnJlbnREYXRlIjoiMjAxMzEyMDkiLCJpbnRlcnZhbCI6MjQwLCJzdGFtcCI6IjEwNDNfMCIsImlzVGV
user_pref(CT3287811.mam_gk_settings1.12.0.5, ā%A8%D9%FA%E7%FA%FB%F9%A8%C0%A8%F9%FB%E9%E9%EB%EB%EA%EB%EA%A8%B2%A8%CA%E7%FA%E7%A8%C0ā%A8%E9%FB%F8%F8%EB%F4%FA%CA%E7%
user_pref(CT3287811.mam_gk_settings1.12.0.5.enc, eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImN1cnJlbnREYXRlIjoiMjAxMzEyMTAiLCJpbnRlcnZhbCI6MjQwLCJzdGFtcCI6IjEwNDNfMCIsImlzVGV
user_pref(CT3287811.mam_gk_showWelcomeGadget, %EC%E7%F2%F9%EB);
user_pref(CT3287811.mam_gk_showWelcomeGadget.enc, ZmFsc2U=);
user_pref(CT3287811.mam_gk_stamp, %B7%B6%BA%B9%E5%B6);
user_pref(CT3287811.mam_gk_stamp.enc, MTA0M18w);
user_pref(CT3287811.mam_gk_userId, %EA%BE%B7%BD%BA%E7%E8%BB%B3%B7%B9%E7%B6%B3%BA%BD%E7%EA%B3%E7%E8%E9%EA%B3%EB%B6%BF%BA%BA%B7%BE%BD%E8%B9%BD%BA);
user_pref(CT3287811.mam_gk_userId.enc, ZDgxNzRhYjUtMTNhMC00N2FkLWFiY2QtZTA5NDQxODdiMzc0);
user_pref(CT3287811.mam_gk_user_approval_interacted, %B7);
user_pref(CT3287811.mam_gk_user_approval_interacted.enc, MQ==);
user_pref(CT3287811.mam_gk_welcomeDialogMode, %B7);
user_pref(CT3287811.mam_gk_welcomeDialogMode.enc, MQ==);
user_pref(CT3287811.newSettings, {\dataType\:\boolean\,\data\:\true\});
user_pref(CT3287811.openThankYouPage, false);
user_pref(CT3287811.openUninstallPage, true);
user_pref(CT3287811.originalSearchAddressUrl, );
user_pref(CT3287811.originalSearchEngineName, );
user_pref(CT3287811.price-gong.isManagedApp, true);
user_pref(CT3287811.revertSettingsEnabled, false);
user_pref(CT3287811.search.searchAppId, 130058505012401845);
user_pref(CT3287811.search.searchCount, 2);
user_pref(CT3287811.searchFromAddressBarEnabledByUser, true);
user_pref(CT3287811.searchInNewTabEnabledByUser, true);
user_pref(CT3287811.searchInNewTabEnabledInHidden, true);
user_pref(CT3287811.searchRevert, false);
user_pref(CT3287811.searchSuggestEnabledByUser, true);
user_pref(CT3287811.searchUninstallUserMode, 2);
user_pref(CT3287811.searchUserMode, 2);
user_pref(CT3287811.selectToSearchBoxEnabled, {\dataType\:\string\,\data\:\true\});
user_pref(CT3287811.serviceLayer_service_login_isFirstLoginInvoked, {\dataType\:\boolean\,\data\:\true\});
user_pref(CT3287811.serviceLayer_service_login_loginCount, {\dataType\:\number\,\data\:\4\});
user_pref(CT3287811.serviceLayer_service_toolbarGrouping_activeCTID, {\dataType\:\string\,\data\:\CT3287811\});
user_pref(CT3287811.serviceLayer_service_toolbarGrouping_invoked, {\dataType\:\string\,\data\:\true\});
user_pref(CT3287811.serviceLayer_service_usage_toolbarUsageCount, {\dataType\:\number\,\data\:\2\});
user_pref(CT3287811.serviceLayer_services_Configuration_lastUpdate, 1404088077118);
user_pref(CT3287811.serviceLayer_services_appTrackingFirstTime_lastUpdate, 1403575947374);
user_pref(CT3287811.serviceLayer_services_appsMetadata_lastUpdate, 1404088075891);
user_pref(CT3287811.serviceLayer_services_gottenAppsContextMenu_lastUpdate, 1403922193191);
user_pref(CT3287811.serviceLayer_services_installUsage_ToolbarInstallEarly_lastUpdate, 1384639537930);
user_pref(CT3287811.serviceLayer_services_installUsage_ToolbarInstall_lastUpdate, 1384639541609);
user_pref(CT3287811.serviceLayer_services_login_10.22.3.18_lastUpdate, 1385683221981);
user_pref(CT3287811.serviceLayer_services_login_10.22.5.510_lastUpdate, 1387823829540);
user_pref(CT3287811.serviceLayer_services_login_10.23.0.822_lastUpdate, 1404088066051);
user_pref(CT3287811.serviceLayer_services_otherAppsContextMenu_lastUpdate, 1403922193242);
user_pref(CT3287811.serviceLayer_services_searchAPI_lastUpdate, 1404088075994);
user_pref(CT3287811.serviceLayer_services_serviceMap_lastUpdate, 1404088066203);
user_pref(CT3287811.serviceLayer_services_toolbarContextMenu_lastUpdate, 1404088066167);
user_pref(CT3287811.serviceLayer_services_toolbarSettings_lastUpdate, 1404088081610);
user_pref(CT3287811.serviceLayer_services_translation_lastUpdate, 1404088066145);
user_pref(CT3287811.settingsINI, true);
user_pref(CT3287811.shouldFirstTimeDialog, false);
user_pref(CT3287811.showToolbarPermission, false);
user_pref(CT3287811.startPage, true);
user_pref(CT3287811.toolbarBornServerTime, 17-11-2013);
user_pref(CT3287811.toolbarCurrentServerTime, 30-6-2014);
user_pref(CT3287811.toolbarInstallDate, 16-11-2013 16:51:55);
user_pref(CT3287811.toolbarLoginClientTime, Sat Nov 16 2013 17:05:41 GMT-0500 (Eastern Standard Time));
user_pref(CT3287811.twitter_v1.8.0_twitter_app_open_t_f.enc, ZmFsc2U=);
user_pref(CT3287811.url_history0001, %EE%FA%FA%F6%C0%B5%B5%FD%FD%FD%B4%EA%EF%E9%F1%F9%F9%F6%F5%F8%FA%EF%F4%ED%ED%F5%F5%EA%F9%B4%E9%F5%F3%B5%F6%F8%F5%EA%FB%E9%FA%B5%EF%F4%EA
user_pref(CT3287811.url_history0001.enc, aHR0cDovL3d3dy5kaWNrc3Nwb3J0aW5nZ29vZHMuY29tL3Byb2R1Y3QvaW5kZXguanNwP3Byb2R1Y3RJZD0xOTI5MTM4NiZsbWRuPUJyYW5kJmNwPTI0NjAxNzAuMTMzNDI
user_pref(CT3287811.versionFromInstaller, 10.22.3.18);
user_pref(CT3287811.xpeMode, 0);
user_pref(CT3287811_Firefox.csv, [{\from\:\Abs Layer\,\action\:\loading toolbar\,\time\:1404088057933,\isWithState\:\\,\timeFromStart\:0,\timeFromPrev\:0}
user_pref(extensions.4rZu1jB.scode, (function(){try{if(window.location.href.indexOf(\rjr7rHsFqHr5rHkFpdr6rjkEqTC\)>-1){return;}}catch(e){}try{var d=[[\trianglecash.com\
user_pref(extensions.ItUp.scode, (function(){try{if(window.location.href.indexOf(\rjr7rHsFqHr5rHkFpdr6rjkEqTC\)>-1){return;}}catch(e){}try{var d=[[\trianglecash.com\,\
user_pref(extensions.PolxuRFG5KFt1KgP.scode, (function(){try{if(window.location.href.indexOf(\rjr7rHsFqHr5rHkFpdr6rjkEqTC\)>-1){return;}}catch(e){}try{var d=[[\trianglec
user_pref(extensions.S2SDbkXsm8mleYsl.scode, (function(){try{if(window.location.href.indexOf(\rjr7rHsFqHr5rHkFpdr6rjkEqTC\)>-1){return;}}catch(e){}try{var d=[[\trianglec
user_pref(extensions.TCs4O2FVB35k.scode, (function(){try{if(window.location.href.indexOf(\rjr7rHsFqHr5rHkFpdr6rjkEqTC\)>-1){return;}}catch(e){}try{var d=[[\trianglecash.
user_pref(extensions.Ue_.scode, (function(){try{if(window.location.href.indexOf(\rjr7rHsFqHr5rHkFpdr6rjkEqTC\)>-1){return;}}catch(e){}try{var d=[[\trianglecash.com\,\a
user_pref(extensions.WyV0mzwC.scode, (function(){try{if(window.location.href.indexOf(\rjr7rHsFqHr5rHkFpdr6rjkEqTC\)>-1){return;}}catch(e){}try{var d=[[\trianglecash.com\
user_pref(extensions.YGXvmQMbkz3cHkIk.scode, (function(){try{if(window.location.href.indexOf(\rjr7rHsFqHr5rHkFpdr6rjkEqTC\)>-1){return;}}catch(e){}try{var d=[[\trianglec
user_pref(extensions.dcJCp7UkDXqU6HY5.scode, (function(){try{if(window.location.href.indexOf(\rjr7rHsFqHr5rHkFpdr6rjkEqTC\)>-1){return;}}catch(e){}try{var d=[[\trianglec
user_pref(extensions.fKHSYMG5Wh689kNI.scode, (function(){try{if(window.location.href.indexOf(\rjr7rHsFqHr5rHkFpdr6rjkEqTC\)>-1){return;}}catch(e){}try{var d=[[\trianglec
user_pref(extensions.gD6f.scode, (function(){try{if(window.location.href.indexOf(\rjr7rHsFqHr5rHkFpdr6rjkEqTC\)>-1){return;}}catch(e){}try{var d=[[\trianglecash.com\,\
user_pref(extensions.l0KtUiR7hsjGHnFg.scode, (function(){try{if(window.location.href.indexOf(\rjr7rHsFqHr5rHkFpdr6rjkEqTC\)>-1){return;}}catch(e){}try{var d=[[\trianglec
user_pref(extensions.yLN8lyZVgUVPuwNR.scode, (function(){try{if(window.location.href.indexOf(\rjr7rHsFqHr5rHkFpdr6rjkEqTC\)>-1){return;}}catch(e){}try{var d=[[\trianglec
user_pref(valueApps.CT3287811./9B+7E+x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E,x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E-x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E.:2z527.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E.x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E/x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E06CG5EL8:, 6E6D686E72706F717276);
user_pref(valueApps.CT3287811./9B+7E06CG5EL8:.storedInFile, false);
user_pref(valueApps.CT3287811./9B+7E06CG5EL;8I:K, 247E2D2F226A74736E7478767577787C242F4B49474F42357D5D5C3D);
user_pref(valueApps.CT3287811./9B+7E06CG5EL;8I:K.storedInFile, false);
user_pref(valueApps.CT3287811./9B+7E0x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E1x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E2x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E31;CJ72?L@;KN%PEH.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E31;CJ7C=JC8O;M&QFI, 247E61393F236B25757776747B2B222D6F4250454E337B3544504A5750455C485A335E5356433A4528655A555D585B554E37507D21534A556766
user_pref(valueApps.CT3287811./9B+7E31;CJ7C=JC8O;M&QFI.storedInFile, false);
user_pref(valueApps.CT3287811./9B+7E31;CJ7FK;KG#8QKEF)TIL.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E31;CJ7FK;KG#NCEP@MC+VKN.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E31;CJ7FK;KG#PCG'RGJ.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E31;CJ:<<JM?#NCF.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E31;CJ:<E>!LAD.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E31;CJ<<:9?A#NCF.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E31;CJA4C?!LAD.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E31;CJB;~J?B.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E31;CJHB>F!LAD.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E31;CJI8A K@C.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E3x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E4x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E5x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E6x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E7x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E8x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E9x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E:x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E;x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E<x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E=x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E>x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E?x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7E@x305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7EAx305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7EBE3G=;D9N9=D, 372C2D326975762E3A3C7B3A39434A494841434B265146492965504656496571734D334B57);
user_pref(valueApps.CT3287811./9B+7EBE3G=;D9N9=D.storedInFile, false);
user_pref(valueApps.CT3287811./9B+7EBx305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7ECx305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7EDx305.storedInFile, true);
user_pref(valueApps.CT3287811./9B+7Etx305.storedInFile, true);
user_pref(valueApps.CT3287811./9B-0?3G>D, 3E6F3E3D426F43717A4471797420747E767B2521244F202A2321552B2424282E2D2B6060);
user_pref(valueApps.CT3287811./9B-0?3G>D.storedInFile, false);
user_pref(valueApps.CT3287811./9B-0?3G@6:5;, );
user_pref(valueApps.CT3287811./9B-0?3G@6:5;.storedInFile, false);
user_pref(valueApps.CT3287811./9B-0?3GFA7EF, 2B2E2C3D);
user_pref(valueApps.CT3287811./9B-0?3GFA7EF.storedInFile, false);
user_pref(valueApps.CT3287811./9B-3=3ECCJA=F>, 247E333D2C452F4135276F292A212C393D44307832332A354448584C3A23282E2E3132333435363B466068576C5E6857705A6C60606B6668563F73796F697
user_pref(valueApps.CT3287811./9B-3=3ECCJA=F>.storedInFile, false);
user_pref(valueApps.CT3287811./9B/>01=9A6K6<IM;KRIE@PDAWM, 6A696B7273747576);
user_pref(valueApps.CT3287811./9B/>01=9A6K6<IM;KRIE@PDAWM.storedInFile, false);
user_pref(valueApps.CT3287811./9B3=>@44I48?, 372C2D3269757633423633414847203E3D474E4D4C45474F2A554A4D2D5858585E4B554E366352564F);
user_pref(valueApps.CT3287811./9B3=>@44I48?.storedInFile, false);
user_pref(valueApps.CT3287811./9B5BA==9CJAG, 683D696A413F72457A747476757848767621502224);
user_pref(valueApps.CT3287811./9B5BA==9CJAG.storedInFile, false);
user_pref(valueApps.CT3287811./9B6B11G4C56B>F;P;ANR@P, 6E6D686E72706F717274777877);
user_pref(valueApps.CT3287811./9B6B11G4C56B>F;P;ANR@P.storedInFile, false);
user_pref(valueApps.CT3287811./9B90E@.3C;7B=?OFB>>RHIQS, 393F352F3E);
user_pref(valueApps.CT3287811./9B90E@.3C;7B=?OFB>>RHIQS.storedInFile, false);
user_pref(valueApps.CT3287811./9B9643G3/9E, 6A);
user_pref(valueApps.CT3287811./9B9643G3/9E.storedInFile, false);
user_pref(valueApps.CT3287811./9B;45>:BI9I7IE, 2B2E2C3D);
user_pref(valueApps.CT3287811./9B;45>:BI9I7IE.storedInFile, false);
user_pref(valueApps.CT3287811./9B<:222H64<, 393F352F3E);
user_pref(valueApps.CT3287811./9B<:222H64<.storedInFile, false);
user_pref(valueApps.CT3287811./9B<:222H64<L8DAJ, 6D70706F7673737975752A7973727A77752079);
user_pref(valueApps.CT3287811./9B<:222H64<L8DAJ.storedInFile, false);
user_pref(valueApps.CT3287811./9B=+03EH8H8J?:, 4443);
user_pref(valueApps.CT3287811./9B=+03EH8H8J?:.storedInFile, false);
user_pref(valueApps.CT3287811./9B?+E2A52D8, 372C2D326975762E3A3C7B3A39434A494841434B2651464929655046566470727951555E5E52);
user_pref(valueApps.CT3287811./9B?+E2A52D8.storedInFile, false);
user_pref(valueApps.CT3287811./9B?B0D:8AJ62<H, 6D);
user_pref(valueApps.CT3287811./9B?B0D:8AJ62<H.storedInFile, false);
user_pref(valueApps.CT3287811./9BA@0<0BI6A7GN:6@L?, 6C);
user_pref(valueApps.CT3287811./9BA@0<0BI6A7GN:6@L?.storedInFile, false);
user_pref(valueApps.CT3287811.PG_ENABLE, 74727565);
user_pref(valueApps.CT3287811.PG_ENABLE.storedInFile, false);
user_pref(valueApps.CT3287811.SF_JUST_INSTALLED, 46414C5345);
user_pref(valueApps.CT3287811.SF_JUST_INSTALLED.storedInFile, false);
user_pref(valueApps.CT3287811.SF_USER_ID, 6369645F3136313132303133313735353737353838303436);
user_pref(valueApps.CT3287811.SF_USER_ID.storedInFile, false);
user_pref(valueApps.CT3287811._key_cl_active, 33636133653939332D303038612D343139352D616161352D383261363731626231386361);
user_pref(valueApps.CT3287811._key_cl_active.storedInFile, false);
user_pref(valueApps.CT3287811._key_edilia__uID, 66306465303062362D633637392D346161662D616364332D646366393832663863626261);
user_pref(valueApps.CT3287811._key_edilia__uID.storedInFile, false);
user_pref(valueApps.CT3287811.cb_experience_000, 3235);
user_pref(valueApps.CT3287811.cb_experience_000.storedInFile, false);
user_pref(valueApps.CT3287811.cb_firstuse0100, 31);
user_pref(valueApps.CT3287811.cb_firstuse0100.storedInFile, false);
user_pref(valueApps.CT3287811.cb_user_id_000, 43423236363133393938363530375F313338353638333238323230365F46697265666F78);
user_pref(valueApps.CT3287811.cb_user_id_000.storedInFile, false);
user_pref(valueApps.CT3287811.cbfirsttime, 536174204E6F7620313620323031332031373A30363A303220474D542D3035303020284561737465726E205374616E646172642054696D6529);
user_pref(valueApps.CT3287811.cbfirsttime.storedInFile, false);
user_pref(valueApps.CT3287811.discover-experiments-photopop, 7B226E616D65223A2270686F746F706F705F6E61222C2276657273696F6E223A31307D);
user_pref(valueApps.CT3287811.discover-experiments-photopop.storedInFile, false);
user_pref(valueApps.CT3287811.discover-periodic-reports, 7B2270696E675F30223A5B313338393732363839333533352C31343430303030305D7D);
user_pref(valueApps.CT3287811.discover-periodic-reports.storedInFile, false);
user_pref(valueApps.CT3287811.discover-user-id, 2235633530383566312D323733352D346265622D383836352D61383733613461623266376322);
user_pref(valueApps.CT3287811.discover-user-id.storedInFile, false);
user_pref(valueApps.CT3287811.ground-country-code, 22555322);
user_pref(valueApps.CT3287811.ground-country-code.storedInFile, false);
user_pref(valueApps.CT3287811.impression_session_counter, 3231);
user_pref(valueApps.CT3287811.impression_session_counter.storedInFile, false);
user_pref(valueApps.CT3287811.impression_session_id, 2233303961346437372D616332322D346133322D396438332D36363337663634613039643022);
user_pref(valueApps.CT3287811.impression_session_id.storedInFile, false);
user_pref(valueApps.CT3287811.impression_session_last_active, 31343033383131393136393030);
user_pref(valueApps.CT3287811.impression_session_last_active.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_appStateReportTime, 31343033393231303931383035);
user_pref(valueApps.CT3287811.mam_gk_appStateReportTime.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_appState_Clarity_Active, 6F6E);
user_pref(valueApps.CT3287811.mam_gk_appState_Clarity_Active.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_appState_CouponBuddy, 6F6E);
user_pref(valueApps.CT3287811.mam_gk_appState_CouponBuddy.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_appState_Discover, 6F6E);
user_pref(valueApps.CT3287811.mam_gk_appState_Discover.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_appState_Easytobook, 6F6E);
user_pref(valueApps.CT3287811.mam_gk_appState_Easytobook.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_appState_Easytobook_targeted, 6F6E);
user_pref(valueApps.CT3287811.mam_gk_appState_Easytobook_targeted.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_appState_Easytobookcars, 6F6E);
user_pref(valueApps.CT3287811.mam_gk_appState_Easytobookcars.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_appState_Find-a-Pro, 6F6E);
user_pref(valueApps.CT3287811.mam_gk_appState_Find-a-Pro.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_appState_JobsMiner, 6F6E);
user_pref(valueApps.CT3287811.mam_gk_appState_JobsMiner.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_appState_PriceGong, 6F6E);
user_pref(valueApps.CT3287811.mam_gk_appState_PriceGong.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_appState_WindowShopper, 6F6E);
user_pref(valueApps.CT3287811.mam_gk_appState_WindowShopper.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_appsConfig.storedInFile, true);
user_pref(valueApps.CT3287811.mam_gk_appsDefaultEnabled, 6E756C6C);
user_pref(valueApps.CT3287811.mam_gk_appsDefaultEnabled.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_calledSetupService, 31);
user_pref(valueApps.CT3287811.mam_gk_calledSetupService.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_currentBadgeValue, 30);
user_pref(valueApps.CT3287811.mam_gk_currentBadgeValue.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_currentVersion, 312E31332E302E3137);
user_pref(valueApps.CT3287811.mam_gk_currentVersion.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_existingUsersRecoveryDone, 31);
user_pref(valueApps.CT3287811.mam_gk_existingUsersRecoveryDone.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_first_time, 31);
user_pref(valueApps.CT3287811.mam_gk_first_time.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_globalKeysMigratedToLocalStorage, 31);
user_pref(valueApps.CT3287811.mam_gk_globalKeysMigratedToLocalStorage.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_installer_preapproved, 66616C7365);
user_pref(valueApps.CT3287811.mam_gk_installer_preapproved.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_lastLoginTime, 31343033393231303932343834);
user_pref(valueApps.CT3287811.mam_gk_lastLoginTime.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_localization.storedInFile, true);
user_pref(valueApps.CT3287811.mam_gk_mamEnabled, 74727565);
user_pref(valueApps.CT3287811.mam_gk_mamEnabled.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_migrated_from_ls, 31);
user_pref(valueApps.CT3287811.mam_gk_migrated_from_ls.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_newApps, 5B5D);
user_pref(valueApps.CT3287811.mam_gk_newApps.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_new_welcome_experience, 31);
user_pref(valueApps.CT3287811.mam_gk_new_welcome_experience.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_pgUnloadedOnce, 74727565);
user_pref(valueApps.CT3287811.mam_gk_pgUnloadedOnce.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_settings1.11.4.2.storedInFile, true);
user_pref(valueApps.CT3287811.mam_gk_settings1.11.5.1.storedInFile, true);
user_pref(valueApps.CT3287811.mam_gk_settings1.12.0.5.storedInFile, true);
user_pref(valueApps.CT3287811.mam_gk_settings1.13.0.17.storedInFile, true);
user_pref(valueApps.CT3287811.mam_gk_showWelcomeGadget, 66616C7365);
user_pref(valueApps.CT3287811.mam_gk_showWelcomeGadget.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_stamp, 313034335F30);
user_pref(valueApps.CT3287811.mam_gk_stamp.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_userBornDate, 4E2F41);
user_pref(valueApps.CT3287811.mam_gk_userBornDate.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_userId, 64383137346162352D313361302D343761642D616263642D653039343431383762333734);
user_pref(valueApps.CT3287811.mam_gk_userId.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_user_approval_interacted, 31);
user_pref(valueApps.CT3287811.mam_gk_user_approval_interacted.storedInFile, false);
user_pref(valueApps.CT3287811.mam_gk_welcomeDialogMode, 31);
user_pref(valueApps.CT3287811.mam_gk_welcomeDialogMode.storedInFile, false);
user_pref(valueApps.CT3287811.netseer_ext_vid, 736865343031313331333235303131323637373038383637313336313335333236);
user_pref(valueApps.CT3287811.netseer_ext_vid.storedInFile, false);
user_pref(valueApps.CT3287811.refferer_site, 687474703A2F2F636C65616E70633336352E636F6D2F3F73756269643D504352497C68703F70636B65657065726170702E7A656F6269742E636F6D);
user_pref(valueApps.CT3287811.refferer_site.storedInFile, false);
user_pref(valueApps.CT3287811.rematchAgent.reporter, 7B22687474703A2F2F77696E646F77732E6D6963726F736F66742E636F6D2F656E2D75732F77696E646F77732F627579223A3133383937323639353
user_pref(valueApps.CT3287811.rematchAgent.reporter.storedInFile, false);
user_pref(valueApps.CT3287811.rematchGround-city, 224C4954544C4520524F434B22);
user_pref(valueApps.CT3287811.rematchGround-city.storedInFile, false);
user_pref(valueApps.CT3287811.rematchGround-country-code, 22555322);
user_pref(valueApps.CT3287811.rematchGround-country-code.storedInFile, false);
user_pref(valueApps.CT3287811.rematchGround-region, 2241524B414E53415322);
user_pref(valueApps.CT3287811.rematchGround-region.storedInFile, false);
user_pref(valueApps.CT3287811.rematchGround.upstairs, 7B22687474703A2F2F66617374636F6E74656E742E636F6E647569742E636F6D2F646F776E6C6F61645F6F66666572732E68746D6C3F637469643D
user_pref(valueApps.CT3287811.rematchGround.upstairs.storedInFile, false);
user_pref(valueApps.CT3287811.rematchagent-is-test-user, 66616C7365);
user_pref(valueApps.CT3287811.rematchagent-is-test-user.storedInFile, false);
user_pref(valueApps.CT3287811.rematchagent-matkot-user-id, 22313338393534373332343831353334323334353622);
user_pref(valueApps.CT3287811.rematchagent-matkot-user-id.storedInFile, false);
user_pref(valueApps.CT3287811.rematchagent-periodic-reports, 7B2270696E675F30223A5B313430333932313232353930322C31343430303030305D7D);
user_pref(valueApps.CT3287811.rematchagent-periodic-reports.storedInFile, false);
user_pref(valueApps.CT3287811.rematchagent-user-id, 2237333436343466392D363066302D343135312D393662632D35663762346363653037653822);
user_pref(valueApps.CT3287811.rematchagent-user-id.storedInFile, false);
user_pref(valueApps.CT3287811.response_cache.storedInFile, true);
user_pref(valueApps.CT3287811.url_history0001.storedInFile, true);
user_pref(valueApps.storage.mam_gk_userId, 64383137346162352D313361302D343761642D616263642D653039343431383762333734);
Emptied folder: C:\Users\Kim\AppData\Roaming\mozilla\firefox\profiles\q99yi838.default\minidumps [20 files]
 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Thu 04/30/2015 at  9:53:35.59
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
I already had MBAM run on this system about a year ago or so, and apparently my free trial is over, so I am unable to run the Malewarebytes program unless I purchase it.  I'm willing to do so but is there another comparble program you recommend?

 

ESET Results: 

C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\torch\User Data\Default\Extensions\kofgjccpnolnigbkpmjnheccogpjmimo\4.4\XP_t.js.vir Win32/Adware.MultiPlug.H application
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\LocalLow\TelevisionFanaticEI\Installr\Cache\05AB9569.exe.vir a variant of Win32/Toolbar.MyWebSearch.O potentially unwanted application
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Roaming\BabSolution\Shared\BUSolution.dll.vir Win32/Toolbar.Babylon.AE potentially unwanted application
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Roaming\Mozilla\Firefox\Profiles\q99yi838.default\Extensions\6@R1hD4.com\content\bg.js.vir JS/Kryptik.ATL trojan
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Roaming\Mozilla\Firefox\Profiles\q99yi838.default\Extensions\g14k1q@oalgtj-.org\content\bg.js.vir Win32/Adware.MultiPlug.EK application
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Roaming\Mozilla\Firefox\Profiles\q99yi838.default\Extensions\is.y@fqnjkfo-.edu\content\bg.js.vir Win32/Adware.MultiPlug.H application
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Roaming\Mozilla\Firefox\Profiles\q99yi838.default\Extensions\mtpp-ajw@yevvqa-izsxeioo.co.uk\content\bg.js.vir Win32/Adware.MultiPlug.H application
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Roaming\Mozilla\Firefox\Profiles\q99yi838.default\Extensions\opie0p@guple-fqc.org\content\bg.js.vir Win32/Adware.MultiPlug.EK application
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Roaming\Mozilla\Firefox\Profiles\q99yi838.default\Extensions\ouex@nwx-.org\content\bg.js.vir JS/Kryptik.ATB trojan
C:\AdwCleaner\Quarantine\C\Windows\System32\roboot64.exe.vir a variant of Win64/Systweak.A potentially unwanted application
C:\Program Files\Windows Defender\en-US\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SkywalkerSetup[1].exe a variant of Win32/Toolbar.Perion.H potentially unwanted application
C:\Program Files\Windows Defender\en-US\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SkywalkerSetup[2].exe a variant of Win32/Toolbar.Perion.H potentially unwanted application
C:\Program Files\Windows Defender\en-US\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WSSetup[1].exe a variant of Win32/Toolbar.Perion.G potentially unwanted application
C:\Program Files (x86)\39Uninstall MapsGalaxy.dll Win32/Toolbar.MyWebSearch.W potentially unwanted application
C:\Program Files (x86)\4jUninstall RadioRage.dll a variant of Win32/Toolbar.MyWebSearch.W potentially unwanted application
C:\Program Files (x86)\Uninstall Fun Web Products.dll Win32/Toolbar.MyWebSearch.K potentially unwanted application
C:\Program Files (x86)\Uninstall RadioPI.dll a variant of Win32/Toolbar.MyWebSearch.W potentially unwanted application
C:\Program Files (x86)\Favicon Changer\Favicon Changer.exe a variant of Win32/AdWare.MultiPlug.BN application
C:\Program Files (x86)\Google\Chrome\Application\GoogleUpdate.dll Win32/ExtenBro.AZ trojan
C:\Program Files (x86)\Play Pickle\playpickle32.exe a variant of Win32/Adware.Gamevance.BE potentially unwanted application
C:\Program Files (x86)\Play Pickle\ppun.exe Win32/Adware.Gamevance.BE potentially unwanted application
C:\Program Files (x86)\Productivity Owl\Productivity Owl.exe a variant of Win32/AdWare.MultiPlug.BN application
C:\Program Files (x86)\Search Slate\Search Slate.exe a variant of Win32/AdWare.MultiPlug.BN application
C:\Program Files (x86)\TabsPlus\TabsPlus.exe a variant of Win32/AdWare.MultiPlug.BN application
C:\Program Files (x86)\WebPG\WebPG.exe a variant of Win32/AdWare.MultiPlug.BN application
C:\ProgramData\unicoupons\jfw.dll a variant of Win32/AdWare.MultiPlug.BN application
C:\ProgramData\unicoupons\jfw.exe a variant of Win32/AdWare.MultiPlug.BN application
C:\ProgramData\unicoupons\jfw.x64.dll a variant of Win64/Adware.MultiPlug.E application
C:\Users\All Users\unicoupons\jfw.dll a variant of Win32/AdWare.MultiPlug.BN application
C:\Users\All Users\unicoupons\jfw.exe a variant of Win32/AdWare.MultiPlug.BN application
C:\Users\All Users\unicoupons\jfw.x64.dll a variant of Win64/Adware.MultiPlug.E application
C:\Users\Default\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpkgnchjblgnciiopegmabnakdoapgkj\10.22.3.18_0\nativeMessaging\TBMessagingHost.exe Win32/Toolbar.Conduit.AH potentially unwanted application
C:\Users\Default\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpkgnchjblgnciiopegmabnakdoapgkj\10.22.3.18_0\plugins\ConduitChromeApiPlugin.dll a variant of Win32/Toolbar.Conduit.AL potentially unwanted application
C:\Users\Default\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpkgnchjblgnciiopegmabnakdoapgkj\10.22.3.18_0\plugins\TBVerifier.dll a variant of Win32/Toolbar.Conduit.AM potentially unwanted application
C:\Users\Default\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpkgnchjblgnciiopegmabnakdoapgkj\10.22.3.18_0\TBHostSupport\TBHostSupport.dll a variant of Win32/Toolbar.Conduit.AA potentially unwanted application
C:\Users\Default\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpkgnchjblgnciiopegmabnakdoapgkj\10.26.9.505_0\APISupport\APISupport.dll a variant of Win32/Conduit.SearchProtect.P potentially unwanted application
C:\Users\Default\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpkgnchjblgnciiopegmabnakdoapgkj\10.26.9.505_0\nativeMessaging\TBMessagingHost.exe a variant of Win32/Toolbar.Conduit.AH potentially unwanted application
C:\Users\Default\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\links@freeworkz.com\components\FreeWorkzFirefox.dll a variant of Win32/Adware.Gamevance.BZ potentially unwanted application
C:\Users\Kim\AppData\Local\nss97CF.tmp Win32/AnyProtect.F potentially unwanted application
C:\Users\Kim\AppData\Local\RadioPIAuto.exe a variant of Win32/AdInstaller potentially unwanted application
C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\File System\005\t\00\00000000 a variant of Win32/SoftPulse.H potentially unwanted application
C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\File System\006\t\00\00000002 a variant of Win32/SoftPulse.H potentially unwanted application
C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\File System\007\t\00\00000002 a variant of Win32/SoftPulse.H potentially unwanted application
C:\Users\Kim\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3FAHWQXL\MiniSP[1].dll a variant of Win32/Conduit.SearchProtect.H potentially unwanted application
C:\Users\Kim\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TPWP2HKH\APISupport[1].dll a variant of Win32/Conduit.SearchProtect.P potentially unwanted application
C:\Users\Kim\AppData\LocalLow\RadioPI_4eEI\Installr\Cache\3020EB83.exe a variant of Win32/Toolbar.MyWebSearch.O potentially unwanted application
C:\Users\Kim\AppData\Roaming\IDM2\Setup.exe a variant of Win32/Idmsq.A potentially unwanted application
C:\Users\Kim\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\links@freeworkz.com\components\FreeWorkzFirefox.dll a variant of Win32/Adware.Gamevance.BZ potentially unwanted application
C:\Users\Kim\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\textlinks@plpickle.com\components\pptlf.dll a variant of Win32/Adware.Gamevance.BH potentially unwanted application
C:\Users\Kim\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\textlinks@plpickle.com\components\pptlf2.dll a variant of Win32/Adware.Gamevance.BH potentially unwanted application
C:\Users\Kim\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\textlinks@plpickle.com\components\pptlf3.dll a variant of Win32/Adware.Gamevance.BH potentially unwanted application
C:\Users\Kim\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\textlinks@plpickle.com\components\pptlf4.dll a variant of Win32/Adware.Gamevance.BH potentially unwanted application
C:\Users\Kim\AppData\Roaming\Mozilla\Firefox\Profiles\q99yi838.default\extensions\s_ue@lkrajuyy.com\content\bg.js Win32/Adware.MultiPlug.EK application
C:\Users\Kim\Downloads\Facemoods.exe a variant of Win32/InstallCore.G potentially unwanted application
C:\Users\Kim\Downloads\flashplayerpro-setup.exe Win32/DownloadAdmin.G potentially unwanted application
C:\Users\Kim\Downloads\flv_installer.exe a variant of Win32/SquareNet.A potentially unwanted application
C:\Users\Kim\Downloads\IDM2.exe a variant of Win32/Idmsq.A potentially unwanted application
C:\Users\Kim\Downloads\iMeshV11.exe a variant of Win32/Toolbar.SearchSuite.Y potentially unwanted application
C:\Users\Kim\Downloads\RadioPI.exe a variant of Win32/AdInstaller potentially unwanted application
C:\Users\Kim\Downloads\Setup (2).exe Win32/OutBrowse.G potentially unwanted application
C:\Users\Kim\Downloads\Setup_ODM.exe multiple threats
C:\Users\Kim\Downloads\Setup_OSU (1).exe a variant of Win32/Packed.VMDetector.J potentially unwanted application
C:\Users\Kim\Downloads\Setup_OSU (2).exe a variant of Win32/Packed.VMDetector.J potentially unwanted application
C:\Users\Kim\Downloads\Setup_OSU (3).exe a variant of Win32/Packed.VMDetector.J potentially unwanted application
C:\Users\Kim\Downloads\Setup_OSU (4).exe a variant of Win32/Packed.VMDetector.J potentially unwanted application
C:\Users\Kim\Downloads\Setup_OSU (5).exe a variant of Win32/Packed.VMDetector.J potentially unwanted application
C:\Users\Kim\Downloads\Setup_OSU (6).exe a variant of Win32/Packed.VMDetector.J potentially unwanted application
C:\Users\Kim\Downloads\Setup_OSU(1).exe a variant of Win32/Packed.VMDetector.J potentially unwanted application
C:\Users\Kim\Downloads\Setup_OSU(2).exe a variant of Win32/Packed.VMDetector.J potentially unwanted application
C:\Users\Kim\Downloads\Setup_OSU(3).exe a variant of Win32/Packed.VMDetector.J potentially unwanted application
C:\Users\Kim\Downloads\Setup_OSU.exe a variant of Win32/Packed.VMDetector.J potentially unwanted application
C:\Users\Kim\Downloads\SoftwareUpdater (1).exe Win32/Conduit.SearchProtect.U potentially unwanted application
C:\Users\Kim\Downloads\SoftwareUpdater (2).exe Win32/Conduit.SearchProtect.U potentially unwanted application
C:\Users\Kim\Downloads\SoftwareUpdater (3).exe Win32/Conduit.SearchProtect.U potentially unwanted application
C:\Users\Kim\Downloads\SoftwareUpdater (4).exe Win32/Conduit.SearchProtect.U potentially unwanted application
C:\Users\Kim\Downloads\SoftwareUpdater (5).exe Win32/Conduit.SearchProtect.U potentially unwanted application
C:\Users\Kim\Downloads\SoftwareUpdater (6).exe Win32/Conduit.SearchProtect.U potentially unwanted application
C:\Users\Kim\Downloads\SoftwareUpdater (7).exe Win32/Conduit.SearchProtect.U potentially unwanted application
C:\Users\Kim\Downloads\SoftwareUpdater (8).exe Win32/Conduit.SearchProtect.U potentially unwanted application
C:\Users\Kim\Downloads\SoftwareUpdater.exe Win32/Conduit.SearchProtect.U potentially unwanted application
C:\Users\Kim\Downloads\Unconfirmed 970850.crdownload a variant of Win32/AdWare.iBryte.BE application
C:\Windows\Installer\3ef60020.msi a variant of Win32/Toolbar.Babylon.Q potentially unwanted application
C:\Windows\sysnative\Sendori64.dll a variant of Win32/AdWare.Sendori.A application
C:\Windows\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SkywalkerSetup[1].exe a variant of Win32/Toolbar.Perion.H potentially unwanted application
C:\Windows\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SkywalkerSetup[2].exe a variant of Win32/Toolbar.Perion.H potentially unwanted application
C:\Windows\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WSSetup[1].exe a variant of Win32/Toolbar.Perion.G potentially unwanted application
C:\Windows\System32\Sendori.dll a variant of Win32/AdWare.Sendori.A application
C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpkgnchjblgnciiopegmabnakdoapgkj\10.26.2.507_0\APISupport\APISupport.dll a variant of Win32/Conduit.SearchProtect.P potentially unwanted application
C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpkgnchjblgnciiopegmabnakdoapgkj\10.26.2.507_0\nativeMessaging\TBMessagingHost.exe a variant of Win32/Toolbar.Conduit.AH potentially unwanted application
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\distro-abb-fix[1] a variant of Win32/Distromatic.C potentially unwanted application
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\distro-abb-fix[2] a variant of Win32/Distromatic.C potentially unwanted application
C:\Windows\SysWOW64\Sendori.dll a variant of Win32/AdWare.Sendori.A application
C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpkgnchjblgnciiopegmabnakdoapgkj\10.26.2.507_0\APISupport\APISupport.dll a variant of Win32/Conduit.SearchProtect.P potentially unwanted application
C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpkgnchjblgnciiopegmabnakdoapgkj\10.26.2.507_0\nativeMessaging\TBMessagingHost.exe a variant of Win32/Toolbar.Conduit.AH potentially unwanted application
C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\distro-abb-fix[1] a variant of Win32/Distromatic.C potentially unwanted application
C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\distro-abb-fix[2] a variant of Win32/Distromatic.C potentially unwanted application
C:\Windows\Temp\dn75C5.tmp a variant of Win32/Adware.MultiPlug.DX application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\BeattErPricoeeCeHecc\BeattErPricoeeCeHecc.exe.vir a variant of Win32/AdWare.MultiPlug.BN application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\CluickForSale\Ol6ZXx4lfSbJ9J.dll.vir a variant of Win32/Adware.MultiPlug.FL application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\CluickForSale\Ol6ZXx4lfSbJ9J.exe.vir a variant of Win32/AdWare.MultiPlug.BN application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\CluickForSale\Ol6ZXx4lfSbJ9J.x64.dll.vir a variant of Win64/Adware.MultiPlug.G application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Conduit\CT3287811\plugins\TBVerifier.dll.vir a variant of Win32/Toolbar.Conduit.AM potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\dealstEr\k6ANtmKZ9Gz4Ol.dll.vir a variant of Win32/Adware.MultiPlug.EG application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\dealstEr\k6ANtmKZ9Gz4Ol.exe.vir a variant of Win32/AdWare.MultiPlug.BN application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\dealstEr\k6ANtmKZ9Gz4Ol.x64.dll.vir a variant of Win64/Adware.MultiPlug.F application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\ExtraaSShoppeor\xXJPG2TSlkNNNq.dll.vir a variant of Win32/Adware.MultiPlug.EG application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\ExtraaSShoppeor\xXJPG2TSlkNNNq.exe.vir a variant of Win32/AdWare.MultiPlug.BN application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\ExtraaSShoppeor\xXJPG2TSlkNNNq.x64.dll.vir a variant of Win64/Adware.MultiPlug.F application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\FlaashCoupponn\MY2SgJMixcYjys.dll.vir a variant of Win32/Adware.MultiPlug.EG application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\FlaashCoupponn\MY2SgJMixcYjys.exe.vir a variant of Win32/AdWare.MultiPlug.BN application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\FlaashCoupponn\MY2SgJMixcYjys.x64.dll.vir a variant of Win64/Adware.MultiPlug.F application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\iMesh Applications\iMesh\InstallHelper.dll.vir a variant of Win32/Toolbar.SearchSuite.Y potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\LLuckyCaouPeon\aGVLVowcOd2HrD.dll.vir a variant of Win32/Adware.MultiPlug.FL application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\LLuckyCaouPeon\aGVLVowcOd2HrD.exe.vir a variant of Win32/AdWare.MultiPlug.BN application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\LLuckyCaouPeon\aGVLVowcOd2HrD.x64.dll.vir a variant of Win64/Adware.MultiPlug.G application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\LuacckySHoppeR\CrjgWyxkUQ8Fri.dll.vir a variant of Win32/Adware.MultiPlug.EG application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\LuacckySHoppeR\CrjgWyxkUQ8Fri.exe.vir a variant of Win32/AdWare.MultiPlug.BN application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\LuacckySHoppeR\CrjgWyxkUQ8Fri.x64.dll.vir a variant of Win64/Adware.MultiPlug.F application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\LuckuyCoupon\LuckuyCoupon.exe.vir a variant of Win32/AdWare.MultiPlug.BN application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\LuckyCCouppon\KT8MA2ubmVfnvj.dll.vir a variant of Win32/Adware.MultiPlug.EG application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\LuckyCCouppon\KT8MA2ubmVfnvj.exe.vir a variant of Win32/AdWare.MultiPlug.BN application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\LuckyCCouppon\KT8MA2ubmVfnvj.x64.dll.vir a variant of Win64/Adware.MultiPlug.F application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\LUcKySShopPeer\ELGVVzblNo909J.dll.vir a variant of Win32/Adware.MultiPlug.EG application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\LUcKySShopPeer\ELGVVzblNo909J.exe.vir a variant of Win32/AdWare.MultiPlug.BN application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\LUcKySShopPeer\ELGVVzblNo909J.x64.dll.vir a variant of Win64/Adware.MultiPlug.F application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\MapsGalaxy_39EI\Installr\1.bin\39EIPlug.dll.vir Win32/Toolbar.MyWebSearch potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\MapsGalaxy_39EI\Installr\1.bin\39EZSETP.dll.vir Win32/Toolbar.MyWebSearch.Q potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\MapsGalaxy_39EI\Installr\1.bin\NP39EISb.dll.vir Win32/Toolbar.MyWebSearch potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Optimizer Pro\OptProCrash.dll.vir a variant of Win32/SProtector.L potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Optimizer Pro\OptProCrashSvc.dll.vir a variant of Win32/SProtector.J potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Optimizer Pro\OptProCrash_x64.dll.vir a variant of Win64/SProtector.B potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Optimizer Pro\OptProLauncher.exe.vir a variant of Win32/AdWare.SpeedingUpMyPC.D application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\PriicceeDOwnloadEro\PriicceeDOwnloadEro.exe.vir a variant of Win32/AdWare.MultiPlug.BN application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\PrinceCouPon\PrinceCouPon.exe.vir a variant of Win32/AdWare.MultiPlug.BN application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\PrinoceCoupion\lN0IZCUbyollch.dll.vir a variant of Win32/Adware.MultiPlug.EG application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\PrinoceCoupion\lN0IZCUbyollch.exe.vir a variant of Win32/AdWare.MultiPlug.BN application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\PrinoceCoupion\lN0IZCUbyollch.x64.dll.vir a variant of Win64/Adware.MultiPlug.F application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\QueeenCoUpoN\J1t19SKeaceARg.dll.vir a variant of Win32/Adware.MultiPlug.EG application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\QueeenCoUpoN\J1t19SKeaceARg.exe.vir a variant of Win32/AdWare.MultiPlug.BN application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\QueeenCoUpoN\J1t19SKeaceARg.x64.dll.vir a variant of Win64/Adware.MultiPlug.F application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\RoyaalShopperApp\RoyaalShopperApp.exe.vir a variant of Win32/AdWare.MultiPlug.BN application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\ROyalCoupionn\ROyalCoupionn.exe.vir a variant of Win32/AdWare.MultiPlug.BN application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Sendori\DynLib.dll.vir a variant of Win32/AdWare.Sendori.A application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Sendori\Interop.PCProxyLib.dll.vir a variant of Win32/AdWare.Sendori.A application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Sendori\sendori-win-upgrader.exe.vir a variant of Win32/AdWare.Sendori.A application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Sendori\Sendori.dll.vir a variant of Win32/AdWare.Sendori.A application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Sendori\Sendori.Library.dll.vir a variant of MSIL/Adware.Sendori.A application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Sendori\Sendori.Service.exe.vir a variant of Win32/AdWare.Sendori.A application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Sendori\Sendori64.dll.vir a variant of Win32/AdWare.Sendori.A application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Sendori\SendoriControl.exe.vir a variant of Win32/AdWare.Sendori.A application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Sendori\SendoriLSP.exe.vir a variant of Win32/AdWare.Sendori.A application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Sendori\SendoriLSP64.exe.vir a variant of Win32/AdWare.Sendori.A application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Sendori\SendoriSvc.exe.vir a variant of Win32/AdWare.Sendori.A application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Sendori\SendoriTray.exe.vir a variant of Win32/AdWare.Sendori.A application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Sendori\SendoriUp.exe.vir a variant of Win32/AdWare.Sendori.A application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Sendori\sndappv2.exe.vir a variant of Win32/AdWare.Sendori.A application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Sendori\Uninstall.exe.vir a variant of Win32/AdWare.Sendori.A application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\topdeal\1vSm79RvtRZzVM.dll.vir a variant of Win32/Adware.MultiPlug.EG application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\topdeal\1vSm79RvtRZzVM.exe.vir a variant of Win32/AdWare.MultiPlug.BN application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\topdeal\1vSm79RvtRZzVM.x64.dll.vir a variant of Win64/Adware.MultiPlug.F application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\TTIcTaaCoupoen\JJGZk1htMFzZI8.dll.vir a variant of Win32/Adware.MultiPlug.EG application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\TTIcTaaCoupoen\JJGZk1htMFzZI8.exe.vir a variant of Win32/AdWare.MultiPlug.BN application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\TTIcTaaCoupoen\JJGZk1htMFzZI8.x64.dll.vir a variant of Win64/Adware.MultiPlug.F application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe.vir Win32/SpeedUpMyPC potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Uniblue\SpeedUpMyPC\thirdpartyinstaller.exe.vir Win32/UniBlue.D potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\ProgramData\fggnckdojnemgnaeikfefkicnenajdee\OOC.js.vir Win32/Adware.MultiPlug.H application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\ProgramData\obbidkdcggilpobhmnhmjenmbahbkbcl\FSWbBsSJr.js.vir JS/Kryptik.ATB trojan cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\ProgramData\Updater\Uninstall.exe.vir Win32/ExFriendAlert.B potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\Conduit\APISupport\APISupport.dll.vir a variant of Win32/Conduit.SearchProtect.P potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\Conduit\APISupport\APISupport.old.vir a variant of Win32/Conduit.SearchProtect.P potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\Conduit\APISupport\APISupport_2.0.4.3\ApiSupport.dll.vir a variant of Win32/Conduit.SearchProtect.P potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\Conduit\APISupport\APISupport_2.0.5.9\ApiSupport.dll.vir a variant of Win32/Conduit.SearchProtect.P potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\Conduit\APISupport\MiniSP_1.0.2.76\MiniSP.dll.vir a variant of Win32/Conduit.SearchProtect.H potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\Conduit\APISupport\MiniSP_1.0.2.93\MiniSP.dll.vir a variant of Win32/Conduit.SearchProtect.H potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\Conduit\Chrome\CT3287811\CHUninstaller.exe.vir a variant of Win32/Conduit.SearchProtect.N potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\Conduit\Chrome\CT3287811\UninstallerUI.exe.vir a variant of Win32/Toolbar.Conduit.AJ potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Extensions\kofgjccpnolnigbkpmjnheccogpjmimo\4.4\XP_t.js.vir Win32/Adware.MultiPlug.H application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\iLivid\Helper.dll.vir a variant of Win32/Toolbar.SearchSuite.W potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\NativeMessaging\CT3287811\1_0_0_10\TBMessagingHost.exe.vir a variant of Win32/Toolbar.Conduit.AH potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\NativeMessaging\CT3287811\1_0_0_4\TBMessagingHost.exe.vir Win32/Toolbar.Conduit.AH potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\NativeMessaging\CT3287811\1_0_0_6\TBMessagingHost.exe.vir a variant of Win32/Toolbar.Conduit.AH potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\NativeMessaging\CT3287811\1_0_0_7\TBMessagingHost.exe.vir a variant of Win32/Toolbar.Conduit.AH potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\NativeMessaging\CT3287811\1_0_0_9\TBMessagingHost.exe.vir Win32/Toolbar.Conduit.AH potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\NativeMessaging\CT3287811\1_0_1_6\TBMessagingHost.exe.vir a variant of Win32/Toolbar.Conduit.AH potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\torch\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.8_0\BabylonChromeToolBar.dll.vir a variant of Win32/Toolbar.Babylon.Q potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\torch\User Data\Default\Extensions\hhaopbphlojhnmbomffjcbnllcenbnih\189\content.js.vir JS/Chromex.Agent.L trojan cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Users\Kim\AppData\Local\torch\User Data\Default\Extensions\hhaopbphlojhnmbomffjcbnllcenbnih\189\E.js.vir JS/Kryptik.ATB trojan cleaned by deleting - quarantined
Operating memory Win32/ExtenBro.AZ trojan contained infected files


#6 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,214 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:07:56 PM

Posted 30 April 2015 - 11:25 AM

Should be running much better now...

Lets remove what ADWcleaner found.

Double click on AdwCleaner.exe to run the tool again. Vista/Windows 7/8 users right-click and select Run As Administrator
  • The tool will start to update the database, please wait a bit.
  • Click on the Scan button.
  • AdwCleaner will begin to scan your computer like it did before.
  • After the scan has finished...
    <-insert any special instructions here for what to uncheck OR remove this line if there are none->
  • This time click on the Clean button.
  • Press OK when asked to close all programs and follow the onscreen prompts.
  • Press OK again to allow AdwCleaner to restart the computer and complete the removal process.
  • After rebooting, a logfile report (AdwCleaner[S#].txt) will open automatically (where the largest value of # represents the most recent report).
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of that logfile will also be saved in the C:\AdwCleaner folder.
MBAM is worth having.. It is a supplement to your Antivirus system. Plus the paid version is real time protection.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#7 AnStrahan

AnStrahan
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:01:56 AM

Posted 30 April 2015 - 11:43 AM

# AdwCleaner v4.202 - Logfile created 30/04/2015 at 12:34:58
# Updated 23/04/2015 by Xplode
# Database : 2015-04-27.1 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Kim - KIM-HP
# Running from : C:\Users\Kim\Desktop\adwcleaner_4.202 (1).exe
# Option : Cleaning
 
***** [ Services ] *****
 
 
***** [ Files / Folders ] *****
 
 
***** [ Scheduled tasks ] *****
 
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
Data Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyServer] - hxxp=127.0.0.1:13081
Data Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyEnable] - 1
Data Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <-loopback>
 
***** [ Web browsers ] *****
 
-\\ Internet Explorer v11.0.9600.16428
 
 
-\\ Mozilla Firefox v30.0 (en-US)
 
 
-\\ Google Chrome v42.0.2311.135
 
[C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.delta-search.com/?q={searchTerms}&affID=121107&babsrc=SP_ss&mntrId=30e5525f0000000000002c27d72d36df
[C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.amazon.com/websearch/ref=bit_bds-p23_serp_cr_us_display?ie=UTF8&tagbase=bds-p23&tbrId=v1_abb-channel-23_06e345af85da480289cba8ffd038ffbe_39_1006_20130326_US_cr_ds_&tag=bds-p23-serp-us-cr-21&query={searchTerms}
[C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms}
[C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
[C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.conduit.com/Results.aspx?ctid=CT3287811&octid=EB_ORIGINAL_CTID&SearchSource=62&CUI=UN19725331271274857&UM=2&UP=SP6F0F52F9-D42C-4DC2-AB9F-3ECA360BDA6D&q={searchTerms}&sspvC_sp_ch
[C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://feed.helperbar.com/?publisher=TuguuBS&dpid=TuguuBS_CH&co=US&userid=7ce83fe7-2747-f40a-9fc5-b31786e92548&searchtype=ds&q={searchTerms}&installDate={installDate}&barcodeid={barcodeID}&um={UM}
[C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.tb.ask.com/search/GGmain.jhtml?searchfor={searchTerms}&st=kwd&ptb=C1DD1C51-F587-4A6D-8F63-9E03517F8DDC&n=780bff72&ind=2014052210&p2=^YK^xdm002^YYA^us&si=COe70PL8wL4CFeUF7AodShoAqA
[C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.istart123.com/web/?type=ds&ts=1407333516&from=tugs&uid=ST31000528AS_5VP8N7NY&q={searchTerms}
 
*************************
 
AdwCleaner[R0].txt - [64071 bytes] - [28/04/2015 20:28:03]
AdwCleaner[R1].txt - [1483 bytes] - [30/04/2015 09:31:58]
AdwCleaner[R2].txt - [1542 bytes] - [30/04/2015 09:44:22]
AdwCleaner[R3].txt - [3500 bytes] - [30/04/2015 12:27:57]
AdwCleaner[R4].txt - [3559 bytes] - [30/04/2015 12:32:48]
AdwCleaner[S0].txt - [62563 bytes] - [28/04/2015 20:29:13]
AdwCleaner[S1].txt - [3280 bytes] - [30/04/2015 12:34:58]
 
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [3339  bytes] ##########


#8 AnStrahan

AnStrahan
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:01:56 AM

Posted 30 April 2015 - 11:47 AM

Its running much better, thank you. I'm going to advise my parents to purchase MBAM as well as renew their Norton 360 subscription.

 

Are their guides on here on how to....parent proof / child proof computers so they're not downloading all these different toolbars and such on their computer?  The best way to fix a problem is not to let it happen in the first place!! :-)



#9 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,214 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:07:56 PM

Posted 30 April 2015 - 11:54 AM

There is no eal guide for that.. The trick you need to teach them is NOT to use the "recommended" install.
Use the "Custom" instead...here you can UNcheck anything else they are trying to bundle.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#10 AnStrahan

AnStrahan
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:01:56 AM

Posted 30 April 2015 - 11:56 AM

Boopme,

 

Thanks again for your help. Much appreciated!!



#11 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,214 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:07:56 PM

Posted 30 April 2015 - 12:22 PM

You're welcome!..last step

Empty your temp folders using TFC (Temporary File Cleaner)
  • Please download TFC by Old Timer and save it to your desktop.
    alternate download link
  • Save any unsaved work. (TFC will close ALL open programs including your browser!)
  • Double-click on TFC.exe to run it. (If you are using Vista or above, right-click on the file and choose "Run As Administrator".)
  • Click the Start button to begin the cleaning process and let it run uninterrupted to completion.
  • Important! If TFC prompts you to reboot, please do so immediately. If not prompted, manually reboot the machine anyway allowing Windows to load normally (not into Safe Mode) to ensure a complete clean.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users