DDS (Ver_2012-11-20.01) - NTFS_AMD64 Internet Explorer: 11.0.9600.17496 BrowserJavaVersion: 10.71.2 Run by [removed] at 17:28:33 on 2015-02-03 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.1979.473 [GMT -5:00] . AV: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {ADA629C7-7F48-5689-624A-3B76997E0892} SP: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {16C7C823-5972-5907-58FA-0004E2F9422F} SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: McAfee Firewall *Enabled* {959DA8E2-3527-57D1-4915-924367AD4FE9} . ============== Running Processes =============== . C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\system32\rundll32.exe C:\Windows\SysWOW64\rundll32.exe C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe C:\Program Files (x86)\MyPC Backup\BackupStack.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt C:\Program Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe C:\Windows\system32\mfevtps.exe C:\Windows\System32\svchost.exe -k HPZ12 C:\Windows\System32\svchost.exe -k HPZ12 C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe C:\Program Files (x86)\Spyware Clear\SC_svc64.exe C:\Windows\system32\svchost.exe -k imgsvc C:\Program Files (x86)\Windows Network Accelerater\v3\winvxm.exe C:\Program Files (x86)\YouTube Downloader Services\A1\youtubeserv.exe C:\Windows\system32\taskhost.exe C:\Windows\system32\taskeng.exe C:\Program Files\McAfee\MSC\McAPExe.exe C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\system32\svchost.exe -k HPService C:\Users\Norman Imperati\AppData\Local\gmsd_us_48\upgmsd_us_48.exe C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe C:\Program Files (x86)\Realtek\Audio\OSD\RtVOsd64.exe C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe C:\Program Files (x86)\Spyware Clear\SpywareClearUpdate.exe C:\Windows\system32\SearchIndexer.exe C:\Windows\system32\taskeng.exe C:\Program Files (x86)\SmartSaver+ 21\23d5de20-36c6-4367-8a46-11089e079b6b-6.exe C:\Program Files (x86)\Kodak\KODAK Share Button App\Listener.exe C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe C:\Program Files\McAfee\MAT\McPvTray.exe C:\Program Files (x86)\WordProser_1.10.0.1\Service\wpsvc.exe C:\Program Files\Common Files\Goobzo\GBUpdate\smu.exe C:\Program Files (x86)\Ge-Force\ebe2f2ab-ec9d-4de1-9cab-17c324c60b8f-1-6.exe C:\Windows\system32\taskeng.exe C:\Program Files (x86)\YTDownloader\YTDownloader.exe C:\Windows\system32\taskhost.exe C:\Program Files\Common Files\ShopperPro\spbiu.exe C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe C:\Program Files\Reimage\Reimage Protector\ReiSystem.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Windows\system32\Macromed\Flash\FlashUtil64_16_0_0_296_ActiveX.exe C:\Program Files (x86)\YTDownloader\DownloadHelper.exe C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\System32\cscript.exe . ============== Pseudo HJT Report =============== . uStart Page = about:blank mStart Page = about:blank uProxyOverride = <-loopback> mWinlogon: Userinit = userinit.exe BHO: HP Print Enhancer: {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll BHO: SmartSaver+ 21: {11111111-1111-1111-1111-110611171194} - C:\Program Files (x86)\SmartSaver+ 21\SmartSaver+ 21-bho.dll BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - BHO: dollliarsuAver: {70bc002f-d57c-4e65-af7e-4a33f4b88f53} - C:\Program Files (x86)\dollliarsuAver\FN7htKFNM9HWbr.dll BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll BHO: {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - BHO: Windows Live Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll BHO: IMinent WebBooster (BHO): {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - C:\Program Files (x86)\Iminent\Minibar.InternetExplorer.BHOx86.dll BHO: Coupon Marvel: {b3e3f753-ef08-4a62-9fb9-43a83cb0818b} - C:\Program Files (x86)\Coupon Marvel\coupon-marvel.dll BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL BHO: daIilyprizee: {cfedb914-4ff9-4a68-97b7-917073323ccf} - C:\Program Files (x86)\daIilyprizee\aiKvzu9LBLGtn8.dll BHO: Microsoft Live Search Toolbar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files (x86)\MSN\Toolbar\3.0.0566.0\msneshellx.dll BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll BHO: WordProser: {F6F484C9-29B9-43EC-A924-DCBAAA86B31D} - C:\Program Files (x86)\WordProser_1.10.0.1\IE\WordProserClientIE.dll BHO: HP Smart BHO Class: {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll TB: Microsoft Live Search Toolbar: {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files (x86)\MSN\Toolbar\3.0.0566.0\msneshellx.dll TB: Yahoo Toolbar: {5ED3CCC4-5970-46A4-8C72-3B46F4F18A98} - C:\Program Files (x86)\TNT2\Profiles\11191\passport.dll EB: HP Smart Web Printing: {555D4D79-4BD2-4094-A395-CFC534424A05} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_bho.dll uRun: [Itibiti.exe] C:\Program Files (x86)\Itibiti Soft Phone\Itibiti.exe uRun: [YTDownloader] "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot mRun: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey mRun: [mcpltui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey mRun: [YTDownloader] "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot mRunOnce: [upgmsd_us_48.exe] C:\Users\Norman Imperati\AppData\Local\gmsd_us_48\upgmsd_us_48.exe -runonce dRunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 StartupFolder: C:\Users\NORMAN~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\MYPCBA~1.LNK - C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe mPolicies-Explorer: NoActiveDesktop = dword:1 mPolicies-System: ConsentPromptBehaviorAdmin = dword:5 mPolicies-System: ConsentPromptBehaviorUser = dword:3 mPolicies-System: EnableUIADesktopToggle = dword:0 mPolicies-System: PromptOnSecureDesktop = dword:0 IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll TCP: NameServer = 192.168.1.1 TCP: Interfaces\{9A9B4BD1-E176-4515-A759-BE9E9113F815} : DHCPNameServer = 192.168.1.1 TCP: Interfaces\{9A9B4BD1-E176-4515-A759-BE9E9113F815}\45543545D2E45445 : DHCPNameServer = 192.168.0.1 TCP: Interfaces\{9A9B4BD1-E176-4515-A759-BE9E9113F815}\463636 : DHCPNameServer = 10.1.1.115 10.1.1.116 10.16.16.8 Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL AppInit_DLLs= _c:\progra~2\search~1\search~1\bin\vc32lo~1.dll SSODL: WebCheck - IFEO: bitguard.exe - tasklist.exe IFEO: bprotect.exe - tasklist.exe IFEO: bpsvc.exe - tasklist.exe IFEO: browserdefender.exe - tasklist.exe IFEO: browserprotect.exe - tasklist.exe x64-mStart Page = about:blank x64-BHO: SmartSaver+ 21: {11111111-1111-1111-1111-110611171194} - C:\Program Files (x86)\SmartSaver+ 21\SmartSaver+ 21-bho64.dll x64-BHO: dollliarsuAver: {70bc002f-d57c-4e65-af7e-4a33f4b88f53} - C:\Program Files (x86)\dollliarsuAver\FN7htKFNM9HWbr.x64.dll x64-BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll x64-BHO: IMinent WebBooster (BHO): {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - C:\Program Files (x86)\Iminent\Minibar.InternetExplorer.BHOx64.dll x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL x64-BHO: daIilyprizee: {cfedb914-4ff9-4a68-97b7-917073323ccf} - C:\Program Files (x86)\daIilyprizee\aiKvzu9LBLGtn8.x64.dll x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll x64-BHO: WordProser: {F6F484C9-29B9-43EC-A924-DCBAAA86B31D} - C:\Program Files\WordProser_1.10.0.1\IE\WordProserClientIE.dll x64-TB: Yahoo Toolbar: {5ED3CCC4-5970-46A4-8C72-3B46F4F18A98} - C:\Program Files (x86)\TNT2\Profiles\11191\passport64.dll x64-Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s x64-Run: [RtkOSD] C:\Program Files (x86)\Realtek\Audio\OSD\RtVOsd64.exe x64-Run: [SpywareClearUpdater] C:\Program Files (x86)\Spyware Clear\SpywareClearUpdate.exe x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll x64-DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab x64-DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab x64-DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab x64-Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl64.dll x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL x64-Notify: igfxcui - igfxdev.dll x64-SSODL: WebCheck - x64-IFEO: bitguard.exe - tasklist.exe x64-IFEO: bprotect.exe - tasklist.exe x64-IFEO: bpsvc.exe - tasklist.exe x64-IFEO: browserdefender.exe - tasklist.exe x64-IFEO: browserprotect.exe - tasklist.exe . Note: multiple IFEO entries found. Please refer to Attach.txt . ============= SERVICES / DRIVERS =============== . R0 mfehidk;McAfee Inc. mfehidk;C:\Windows\System32\drivers\mfehidk.sys [2014-6-20 786296] R0 mfewfpk;McAfee Inc. mfewfpk;C:\Windows\System32\drivers\mfewfpk.sys [2014-6-20 348552] R1 MOBKFilter;MOBKFilter;C:\Windows\System32\drivers\MOBK.sys [2012-4-2 66040] R1 wpnfd_1_10_0_1;wpnfd_1_10_0_1;C:\Windows\System32\drivers\wpnfd_1_10_0_1.sys [2014-10-14 58240] R2 06c60260;TrimInstance;C:\Windows\System32\rundll32.exe [2009-7-13 45568] R2 AERTFilters;Andrea RT Filters Service;C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2010-4-27 98208] R2 BackupStack;Computer Backup (MyPC Backup);C:\Program Files (x86)\MyPC Backup\BackupStack.exe [2015-1-22 53832] R2 HomeNetSvc;McAfee Home Network;C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2014-12-5 328928] R2 HPWMISVC;HPWMISVC;C:\Program Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2010-1-18 20480] R2 McAPExe;McAfee AP Service;C:\Program Files\McAfee\MSC\McAPExe.exe [2014-12-5 178528] R2 McMPFSvc;McAfee Personal Firewall Service;C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2014-12-5 328928] R2 McNaiAnn;McAfee VirusScan Announcer;C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2014-12-5 328928] R2 mcpltsvc;McAfee Platform Services;C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2014-12-5 328928] R2 McProxy;McAfee Proxy Service;C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2014-12-5 328928] R2 McPvDrv;McPvDrv Driver;C:\Windows\System32\drivers\McPvDrv.sys [2014-12-5 74560] R2 mfecore;McAfee Anti-Malware Core;C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [2014-12-5 1041192] R2 mfefire;McAfee Firewall Core Service;C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [2014-12-5 219752] R2 mfevtp;McAfee Validation Trust Protection Service;C:\Windows\System32\mfevtps.exe [2014-12-5 189912] R2 MOBKbackup;McAfee Online Backup;C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe [2010-4-13 231224] R2 sbmntr;sbmntr;C:\PROGRA~2\YTDOWN~1\sbmntr.sys [2015-1-8 58728] R2 sp_rsdrv2;Spyware Terminator Driver Filter;C:\Windows\System32\drivers\stflt.sys [2015-1-9 51496] R3 cfwids;McAfee Inc. cfwids;C:\Windows\System32\drivers\cfwids.sys [2014-6-20 72128] R3 mfeavfk;McAfee Inc. mfeavfk;C:\Windows\System32\drivers\mfeavfk.sys [2014-6-20 313544] R3 mfefirek;McAfee Inc. mfefirek;C:\Windows\System32\drivers\mfefirek.sys [2014-6-20 523792] R3 mfencbdc;McAfee Inc. mfencbdc;C:\Windows\System32\drivers\mfencbdc.sys [2014-8-20 445512] R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2009-11-27 295424] R3 rtl8192se;Realtek Wireless LAN 802.11n PCI-E NIC NT Driver;C:\Windows\System32\drivers\rtl8192se.sys [2011-9-8 1088544] R3 SMUpdd;Search Module UpdateD;C:\Program Files\Common Files\Goobzo\GBUpdate\smw.sys [2015-2-2 42856] R3 SPBIUpdd;ShopperPro UpdateD;C:\Program Files\Common Files\ShopperPro\spbiw.sys [2015-2-2 41856] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-9-11 124088] S2 globalUpdate;globalUpdate Update Service (globalUpdate);C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-1-19 68608] S3 DrvAgent64;DrvAgent64;C:\Windows\SysWOW64\drivers\DrvAgent64.SYS [2015-1-2 20872] S3 GamesAppIntegrationService;GamesAppIntegrationService;C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2013-10-7 240736] S3 GamesAppService;GamesAppService;C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072] S3 globalUpdatem;globalUpdate Update Service (globalUpdatem);C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-1-19 68608] S3 HipShieldK;McAfee Inc. HipShieldK;C:\Windows\System32\drivers\HipShieldK.sys [2014-12-5 197704] S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2014-12-12 114688] S3 mfencrk;McAfee Inc. mfencrk;C:\Windows\System32\drivers\mfencrk.sys [2014-8-20 96592] S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;C:\Windows\System32\drivers\netw5v64.sys [2009-6-10 5434368] S3 SrvHsfHDA;SrvHsfHDA;C:\Windows\System32\drivers\VSTAZL6.SYS [2009-7-13 292864] S3 SrvHsfV92;SrvHsfV92;C:\Windows\System32\drivers\VSTDPV6.SYS [2009-7-13 1485312] S3 SrvHsfWinac;SrvHsfWinac;C:\Windows\System32\drivers\VSTCNXT6.SYS [2009-7-13 740864] S3 SWDUMon;SWDUMon;C:\Windows\System32\drivers\SWDUMon.sys [2015-1-2 16152] S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2012-4-6 59392] S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2012-12-13 54784] S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\System32\drivers\yk62x64.sys [2009-6-10 389120] S4 CltMngSvc;Search Protect Service;C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe [2015-1-5 3342608] S4 GlobalUpdater;GlobalUpdater;C:\Program Files (x86)\Common Files\IMGUpdater\IMGUpdater.exe [2015-1-7 378152] . =============== Created Last 30 ================ . 2015-02-03 21:49:10 -------- d-----w- C:\ProgramData\Reimage Protector 2015-02-03 21:48:51 -------- d-----w- C:\Program Files\Reimage 2015-02-03 21:48:37 -------- d-----w- C:\rei 2015-02-03 20:56:06 -------- d-----w- C:\ProgramData\ShopperPro 2015-02-03 20:55:57 -------- d-----w- C:\Program Files\Common Files\ShopperPro 2015-02-03 20:55:36 -------- d-----w- C:\Program Files (x86)\ShopperPro 2015-02-03 20:55:31 -------- d-----w- C:\Program Files (x86)\YTDownloader 2015-02-03 20:55:31 -------- d-----w- C:\Program Files (x86)\Ge-Force 2015-02-03 20:51:47 -------- d-----w- C:\Program Files\WordProser_1.10.0.1 2015-02-03 20:51:24 -------- d-----w- C:\Program Files (x86)\WordProser_1.10.0.1 2015-01-28 13:47:33 -------- d-----w- C:\Program Files (x86)\Image Viewer 2015-01-28 13:46:08 -------- d-----w- C:\Program Files (x86)\appsaveu 2015-01-28 13:45:52 -------- d-----w- C:\ProgramData\fafhmnnjddnfijmbgonhhipmcgdljbhm 2015-01-28 13:43:49 -------- d-----w- C:\Program Files (x86)\dollliarsuAver 2015-01-28 13:42:30 -------- d-----w- C:\Program Files (x86)\daIilyprizee 2015-01-28 13:41:40 -------- d-----w- C:\Program Files (x86)\rOcketdEal 2015-01-28 13:41:04 -------- d-----w- C:\ProgramData\16498114796044921343 2015-01-28 13:40:58 -------- d-----w- C:\Program Files (x86)\prIzeucouponn 2015-01-27 19:14:21 -------- d-----w- C:\Program Files (x86)\TrimInstance 2015-01-27 18:34:33 -------- d-----w- C:\Program Files (x86)\buyfastt 2015-01-27 18:34:27 -------- d-----w- C:\Program Files (x86)\offersalle 2015-01-27 16:23:35 613057 ----a-w- C:\Users\Norman Imperati\AppData\Local\nspB94F.tmp 2015-01-27 01:52:37 7360512 ----a-w- C:\Windows\System32\RTSUSTORicon.dll 2015-01-22 18:32:49 0 ----a-w- C:\LIL784C.tmp 2015-01-22 18:32:49 0 ----a-w- C:\LIL7704.tmp 2015-01-22 18:32:49 0 ----a-w- C:\LIL76B6.tmp 2015-01-22 18:32:49 0 ----a-w- C:\LIL756E.tmp 2015-01-22 18:32:49 0 ----a-w- C:\LIL755F.tmp 2015-01-22 18:32:24 -------- d-----w- C:\Program Files (x86)\Media Downloader 2015-01-22 18:32:02 0 ----a-w- C:\LILBFD6.tmp 2015-01-22 18:32:02 0 ----a-w- C:\LILBEDD.tmp 2015-01-22 18:32:02 0 ----a-w- C:\LILBECD.tmp 2015-01-22 18:32:02 0 ----a-w- C:\LILBD66.tmp 2015-01-22 18:32:01 0 ----a-w- C:\LILBBFF.tmp 2015-01-22 18:31:24 -------- d-----w- C:\d0e9adfc-e7f2-45e9-b2f3-4bd02e7ed1e3 2015-01-22 18:30:54 -------- d-----w- C:\b55c0f3c-a5a5-4d27-a3f6-2951835b2d3e 2015-01-22 17:57:21 0 ----a-w- C:\LILFDA0.tmp 2015-01-22 17:57:21 0 ----a-w- C:\LILFC97.tmp 2015-01-22 17:57:20 0 ----a-w- C:\LILFB8E.tmp 2015-01-22 17:57:20 0 ----a-w- C:\LILFB7F.tmp 2015-01-22 17:57:20 0 ----a-w- C:\LILFB7E.tmp 2015-01-22 17:57:20 0 ----a-w- C:\LILFB40.tmp 2015-01-22 17:56:31 -------- d-----w- C:\f5dbeb10-42b1-4d54-b944-b28fafc0d181 2015-01-22 02:44:42 -------- d-----w- C:\Program Files (x86)\78e56fc5-ca4b-40b1-867f-3ee5995c0b6c 2015-01-22 02:43:24 -------- d-----w- C:\Program Files (x86)\SmartSaver+ 21 2015-01-22 02:43:01 -------- d-----w- C:\ProgramData\jganlgjnkdgpkiaiemknbeobpikdkmgk 2015-01-22 02:39:17 -------- d-----w- C:\ProgramData\offersalle 2015-01-22 02:38:05 -------- d-----w- C:\ProgramData\buyfastt 2015-01-22 02:37:30 -------- d-----w- C:\ProgramData\e4f513ff09dfa9ff 2015-01-22 02:30:04 0 ----a-w- C:\LILE7EE.tmp 2015-01-22 02:30:04 0 ----a-w- C:\LILE6C6.tmp 2015-01-22 02:30:04 0 ----a-w- C:\LILE5EB.tmp 2015-01-22 02:30:04 0 ----a-w- C:\LILE4C3.tmp 2015-01-22 02:30:03 0 ----a-w- C:\LILE31F.tmp 2015-01-22 02:30:03 0 ----a-w- C:\LILE31E.tmp 2015-01-22 02:30:03 0 ----a-w- C:\LILE30E.tmp 2015-01-22 02:30:03 0 ----a-w- C:\LILE2EF.tmp 2015-01-22 02:29:17 -------- d-----w- C:\a8191335-7524-405c-bec5-4f722401b291 2015-01-22 01:25:20 613057 ----a-w- C:\Users\Norman Imperati\AppData\Local\nsi6E7A.tmp 2015-01-21 23:01:34 -------- d-----w- C:\Users\Norman Imperati\AppData\Local\Desktop_Dock 2015-01-21 22:25:15 -------- d-----w- C:\ProgramData\COMODO 2015-01-21 22:24:47 -------- d-----w- C:\Program Files\COMODO 2015-01-21 22:23:39 0 ----a-w- C:\LIL5245.tmp 2015-01-21 22:23:38 0 ----a-w- C:\LIL4FF4.tmp 2015-01-21 22:23:38 0 ----a-w- C:\LIL4E8D.tmp 2015-01-21 22:23:37 0 ----a-w- C:\LIL4C8A.tmp 2015-01-21 22:23:37 0 ----a-w- C:\LIL4C0D.tmp 2015-01-21 22:23:37 0 ----a-w- C:\LIL4B44.tmp 2015-01-21 22:23:37 0 ----a-w- C:\LIL4B43.tmp 2015-01-21 22:23:37 0 ----a-w- C:\LIL4B23.tmp 2015-01-21 22:23:37 0 ----a-w- C:\LIL4AF5.tmp 2015-01-21 22:23:02 -------- d-----w- C:\b9df1a34-93ac-4037-9aa8-57e28a67e0ee 2015-01-21 22:02:31 -------- d-----w- C:\Users\Norman Imperati\AppData\Local\Installer 2015-01-21 21:56:15 -------- d-----w- C:\ProgramData\SearchModule 2015-01-21 21:55:59 -------- d-----w- C:\Program Files\Common Files\Goobzo 2015-01-21 21:55:06 -------- d-----w- C:\Users\Norman Imperati\AppData\Local\CrashRpt 2015-01-21 01:28:51 -------- d-----w- C:\Users\Norman Imperati\AppData\Roaming\EurekaLog 2015-01-19 18:33:46 -------- d-----w- C:\Users\Norman Imperati\AppData\Local\SmartWeb 2015-01-19 15:26:01 -------- d-----w- C:\Users\Norman Imperati\AppData\Local\IsolatedStorage 2015-01-19 15:09:09 301608 ----a-w- C:\Users\Norman Imperati\AppData\Local\nscA839.tmp 2015-01-19 14:58:39 -------- d-----w- C:\Users\Norman Imperati\AppData\Local\globalUpdate 2015-01-19 14:58:39 -------- d-----w- C:\Program Files (x86)\globalUpdate 2015-01-19 13:47:25 -------- d-----w- C:\Users\Norman Imperati\AppData\Local\ArcadeGiant 2015-01-15 19:51:50 -------- d-----w- C:\Program Files (x86)\WinZip Driver Updater 2015-01-13 23:42:49 5553592 ----a-w- C:\Windows\System32\ntoskrnl.exe 2015-01-13 23:42:47 3971512 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe 2015-01-13 23:42:46 3916728 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe 2015-01-13 23:42:42 503808 ----a-w- C:\Windows\System32\srcore.dll 2015-01-13 23:42:41 50176 ----a-w- C:\Windows\System32\srclient.dll 2015-01-13 23:42:41 296960 ----a-w- C:\Windows\System32\rstrui.exe 2015-01-13 23:42:40 43008 ----a-w- C:\Windows\SysWow64\srclient.dll 2015-01-13 23:19:57 52736 ----a-w- C:\Windows\System32\TSWbPrxy.exe 2015-01-13 23:19:56 210432 ----a-w- C:\Windows\System32\profsvc.dll 2015-01-13 23:19:55 303616 ----a-w- C:\Windows\System32\nlasvc.dll 2015-01-13 23:19:54 52224 ----a-w- C:\Windows\SysWow64\nlaapi.dll 2015-01-13 23:19:54 156672 ----a-w- C:\Windows\SysWow64\ncsi.dll 2015-01-13 23:19:53 141312 ----a-w- C:\Windows\System32\drivers\mrxdav.sys 2015-01-10 07:20:04 -------- d-----w- C:\Program Files (x86)\Super Updater 2015-01-09 15:49:44 51496 ----a-w- C:\Windows\System32\drivers\stflt.sys 2015-01-09 15:49:43 -------- d-----w- C:\Users\Norman Imperati\AppData\Roaming\Spyware Clear 2015-01-09 15:49:43 -------- d-----w- C:\ProgramData\Spyware Clear 2015-01-09 15:49:27 -------- d-----w- C:\Program Files (x86)\Spyware Clear 2015-01-08 14:08:14 822632 ----a-w- C:\Program Files\Common Files\System\SysMenu64.dll 2015-01-08 14:08:12 651624 ----a-w- C:\Program Files\Common Files\System\SysMenu.dll 2015-01-07 21:56:57 -------- d---a-w- C:\Program Files (x86)\Iminent 2015-01-07 21:56:57 -------- d-----w- C:\Program Files (x86)\Common Files\Umbrella 2015-01-07 21:56:57 -------- d-----w- C:\Program Files (x86)\Common Files\IMGUpdater . ==================== Find3M ==================== . 2015-01-27 21:31:02 71344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl 2015-01-27 21:31:02 701616 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe 2015-01-27 15:45:02 2228 ----a-w- C:\Windows\patsearch.bin 2015-01-05 08:40:28 245008 ----a-w- C:\Windows\apppatch\AppPatch64\VCLdr64.dll 2015-01-05 08:40:26 215312 ----a-w- C:\Windows\apppatch\nbin\VC32Loader.dll 2015-01-03 13:43:30 16152 ----a-w- C:\Windows\System32\drivers\SWDUMon.sys 2014-12-30 19:33:00 1483072 ----a-w- C:\ProgramData\Setup.exe 2014-12-30 19:30:44 45896 ----a-w- C:\ProgramData\bprompt.exe 2014-12-29 14:37:25 111016 ----a-w- C:\Windows\System32\WindowsAccessBridge-64.dll 2014-12-13 05:09:01 144384 ----a-w- C:\Windows\System32\ieUnatt.exe 2014-12-13 03:33:44 115712 ----a-w- C:\Windows\SysWow64\ieUnatt.exe 2014-12-06 02:59:51 32372200 ----a-w- C:\Program Files (x86)\Common Files\lpuninstall.exe 2014-12-04 02:50:55 413184 ----a-w- C:\Windows\System32\generaltel.dll 2014-12-04 02:50:45 741376 ----a-w- C:\Windows\System32\invagent.dll 2014-12-04 02:50:40 396800 ----a-w- C:\Windows\System32\devinv.dll 2014-12-04 02:50:38 830976 ----a-w- C:\Windows\System32\appraiser.dll 2014-12-04 02:50:37 227328 ----a-w- C:\Windows\System32\aepdu.dll 2014-12-04 02:50:37 192000 ----a-w- C:\Windows\System32\aepic.dll 2014-12-04 02:44:48 1083392 ----a-w- C:\Windows\System32\aeinv.dll 2014-12-01 23:28:44 1232040 ----a-w- C:\Windows\System32\aitstatic.exe 2014-11-24 21:09:08 20872 ----a-w- C:\Windows\SysWow64\drivers\DrvAgent64.SYS 2014-11-22 03:06:23 2724864 ----a-w- C:\Windows\System32\mshtml.tlb 2014-11-22 03:06:11 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll 2014-11-22 02:50:39 66560 ----a-w- C:\Windows\System32\iesetup.dll 2014-11-22 02:50:10 580096 ----a-w- C:\Windows\System32\vbscript.dll 2014-11-22 02:49:54 48640 ----a-w- C:\Windows\System32\ieetwproxystub.dll 2014-11-22 02:48:20 88064 ----a-w- C:\Windows\System32\MshtmlDac.dll 2014-11-22 02:35:29 114688 ----a-w- C:\Windows\System32\ieetwcollector.exe 2014-11-22 02:34:51 814080 ----a-w- C:\Windows\System32\jscript9diag.dll 2014-11-22 02:34:07 6039552 ----a-w- C:\Windows\System32\jscript9.dll 2014-11-22 02:26:31 968704 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe 2014-11-22 02:20:44 2724864 ----a-w- C:\Windows\SysWow64\mshtml.tlb 2014-11-22 02:14:16 77824 ----a-w- C:\Windows\System32\JavaScriptCollectionAgent.dll 2014-11-22 02:07:43 501248 ----a-w- C:\Windows\SysWow64\vbscript.dll 2014-11-22 02:07:17 62464 ----a-w- C:\Windows\SysWow64\iesetup.dll 2014-11-22 02:06:32 47616 ----a-w- C:\Windows\SysWow64\ieetwproxystub.dll 2014-11-22 02:05:02 64000 ----a-w- C:\Windows\SysWow64\MshtmlDac.dll 2014-11-22 01:54:30 620032 ----a-w- C:\Windows\SysWow64\jscript9diag.dll 2014-11-22 01:47:10 1359360 ----a-w- C:\Windows\System32\mshtmlmedia.dll 2014-11-22 01:46:58 2125312 ----a-w- C:\Windows\System32\inetcpl.cpl 2014-11-22 01:40:04 60416 ----a-w- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll 2014-11-22 01:29:26 4299264 ----a-w- C:\Windows\SysWow64\jscript9.dll 2014-11-22 01:28:21 2358272 ----a-w- C:\Windows\System32\wininet.dll 2014-11-22 01:22:49 2052096 ----a-w- C:\Windows\SysWow64\inetcpl.cpl 2014-11-22 01:21:57 1155072 ----a-w- C:\Windows\SysWow64\mshtmlmedia.dll 2014-11-22 01:00:20 1888256 ----a-w- C:\Windows\SysWow64\wininet.dll 2014-11-19 09:31:16 1217192 ----a-w- C:\Windows\SysWow64\FM20.DLL 2014-11-11 03:09:06 1424384 ----a-w- C:\Windows\System32\WindowsCodecs.dll 2014-11-11 03:08:52 241152 ----a-w- C:\Windows\System32\pku2u.dll 2014-11-11 03:08:48 728064 ----a-w- C:\Windows\System32\kerberos.dll 2014-11-11 02:44:45 1230336 ----a-w- C:\Windows\SysWow64\WindowsCodecs.dll 2014-11-11 02:44:32 186880 ----a-w- C:\Windows\SysWow64\pku2u.dll 2014-11-11 02:44:25 550912 ----a-w- C:\Windows\SysWow64\kerberos.dll 2014-11-11 01:46:26 119296 ----a-w- C:\Windows\System32\drivers\tdx.sys 2014-11-08 03:16:08 2048 ----a-w- C:\Windows\System32\tzres.dll 2014-11-08 02:45:09 2048 ----a-w- C:\Windows\SysWow64\tzres.dll . ============= FINISH: 17:32:20.53 ===============