Jump to content

Help required please - Malware removal


jd251

Recommended Posts

Hi, 

 

Thanks in advance for any help.

IF you need any other info please ask.

 

Many thanks John

 

Please see following DDS files;

 

DDS (Ver_2012-11-20.01) - NTFS_AMD64 NETWORK
Internet Explorer: 11.0.9600.16428
Run by John at 13:59:53 on 2013-12-24
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.44.1033.18.6058.4464 [GMT 0:00]
.
AV: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {ADA629C7-7F48-5689-624A-3B76997E0892}
SP: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {16C7C823-5972-5907-58FA-0004E2F9422F}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: McAfee Firewall *Disabled* {959DA8E2-3527-57D1-4915-924367AD4FE9}
.
============== Running Processes ===============
.
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\system32\mfevtps.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\windows\Explorer.EXE
C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\ctfmon.exe
C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe
C:\windows\SysWOW64\DllHost.exe
C:\Users\John\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\John\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\John\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\John\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\John\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\John\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\John\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\John\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\John\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\John\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\John\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\John\AppData\Local\Google\Chrome\Application\chrome.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
BHO: Canon Easy-WebPrint EX BHO: {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Samsung BHO Class: {AA609D72-8482-4076-8991-8CDAE5B93BCB} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
BHO: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
BHO: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - 
TB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} - 
TB: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
TB: Canon Easy-WebPrint EX: {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
EB: Canon Easy-WebPrint EX: {21347690-EC41-4F9A-8887-1F4AEE672439} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
uRun: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
uRun: [GoogleChromeAutoLaunch_DC7C249942899F83C1747FF3FB5BD5F3] "C:\Users\John\AppData\Local\Google\Chrome\Application\chrome.exe" --no-startup-window
uRun: [Google Update] "C:\Users\John\AppData\Local\Google\Update\GoogleUpdate.exe" /c
uRun: [MusicManager] "C:\Users\John\AppData\Local\Programs\Google\MusicManager\MusicManager.exe"
mRun: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
mRun: [F-Secure Hoster (47188)] "C:\Program Files (x86)\BT Cloud\fshoster32.exe" -app -hosterid:1
mRun: [mcpltui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [YouCam Mirage] "C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
mRun: [YouCam Tray] "C:\Program Files (x86)\CyberLink\YouCam\YouCam.exe" /s
dRun: [backblaze] "C:\Program Files (x86)\Backblaze\bzbui.exe" -quiet
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\CRASHP~1.LNK - C:\Program Files\CrashPlan\CrashPlanTray.exe
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDrives = dword:0
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: Add to Evernote 4.0 - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204
IE: Add to Google Photos Screensa&ver - C:\windows\System32\GPhotos.scr/200
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {328ECD19-C167-40eb-A0C7-16FE7634105E} - {94BB0C4C-B957-479A-85E4-42F53B89F681} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
IE: {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204
TCP: NameServer = 192.168.1.254
TCP: Interfaces\{FCB1FF75-FC7B-4114-8DE7-B045354365E3} : DHCPNameServer = 192.168.1.254
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
AppInit_DLLs= C:\Windows\SysWOW64\nvinit.dll
SSODL: WebCheck - <orphaned>
x64-BHO: VshareComplete: {08337871-0e50-4031-9110-3bd21ca3c065} - 
x64-BHO: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - <orphaned>
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-BHO: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - 
x64-TB: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-RunOnce: [GrpConv] grpconv -o
x64-Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl64.dll
x64-Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
.
============= SERVICES / DRIVERS ===============
.
R0 mfehidk;McAfee Inc. mfehidk;C:\windows\System32\drivers\mfehidk.sys [2012-7-17 782360]
R0 mfewfpk;McAfee Inc. mfewfpk;C:\windows\System32\drivers\mfewfpk.sys [2012-7-17 343696]
R0 nvpciflt;nvpciflt;C:\windows\System32\drivers\nvpciflt.sys [2011-8-26 25960]
R2 McMPFSvc;McAfee Personal Firewall Service;C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-11-5 328928]
R2 mcpltsvc;McAfee Platform Services;C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-11-5 328928]
R2 mfefire;McAfee Firewall Core Service;C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [2012-10-23 219272]
R2 mfevtp;McAfee Validation Trust Protection Service;C:\windows\System32\mfevtps.exe [2012-10-23 182752]
R2 SGDrv;SGDrv;C:\windows\System32\drivers\SGDrv64.sys [2011-8-26 7680]
R3 cfwids;McAfee Inc. cfwids;C:\windows\System32\drivers\cfwids.sys [2012-10-23 70112]
R3 ETD;ELAN PS/2 Port Input Device;C:\windows\System32\drivers\ETD.sys [2012-5-9 280912]
R3 mfefirek;McAfee Inc. mfefirek;C:\windows\System32\drivers\mfefirek.sys [2012-10-23 519576]
R3 RTL8167;Realtek 8167 NT Driver;C:\windows\System32\drivers\Rt64win7.sys [2011-8-26 471144]
S1 SABI;SAMSUNG Kernel Driver For Windows 7;C:\windows\System32\drivers\SABI.sys [2011-8-26 13824]
S2 aksdf;aksdf;C:\windows\System32\drivers\aksdf.sys [2012-10-11 78208]
S2 bzserv;Backblaze Service;C:\Program Files (x86)\Backblaze\bzserv.exe [2013-10-13 219240]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 CrashPlanService;CrashPlan Backup Service;C:\Program Files\CrashPlan\CrashPlanService.exe [2013-4-8 222720]
S2 cvhsvc;Client Virtualization Handler;C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE [2013-4-22 822504]
S2 fshoster;F-Secure Dll Hoster;C:\Program Files (x86)\BT Cloud\fshoster32.exe [2013-4-2 191424]
S2 HomeNetSvc;McAfee Home Network;C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-11-5 328928]
S2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-10-26 418376]
S2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-10-26 701512]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-10-23 201304]
S2 McAPExe;McAfee AP Service;C:\Program Files\McAfee\MSC\McAPExe.exe [2013-11-5 178048]
S2 McNaiAnn;McAfee VirusScan Announcer;C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-11-5 328928]
S2 McProxy;McAfee Proxy Service;C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-11-5 328928]
S2 mfecore;McAfee Anti-Malware Core;C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [2013-11-5 1017016]
S2 NIHardwareService;NIHardwareService;C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe [2010-2-26 5017600]
S2 SamsungDeviceConfigurationWinService;SamsungDeviceConfiguration;C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe [2012-6-23 31624]
S2 sftlist;Application Virtualization Client;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2013-6-26 523944]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-9-5 171680]
S2 UNS;Intel® Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2011-8-26 2656536]
S2 ZeroConfigService;Intel® PROSet/Wireless Zero Configuration Service;C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2012-8-23 3342640]
S3 AMPPAL;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Virtual Adapter;C:\windows\System32\drivers\AmpPal.sys [2011-9-15 299008]
S3 BBSvc;Bing Bar Update Service;C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-3-1 183560]
S3 btmaudio;Intel Bluetooth Audio Service;C:\windows\System32\drivers\btmaud.sys [2011-5-19 51712]
S3 btmaux;Intel Bluetooth Auxiliary Service;C:\windows\System32\drivers\btmaux.sys [2011-8-29 53760]
S3 btmhsf;btmhsf;C:\windows\System32\drivers\btmhsf.sys [2011-10-10 288768]
S3 clwvd;CyberLink WebCam Virtual Driver;C:\windows\System32\drivers\clwvd.sys [2013-6-7 31216]
S3 HipShieldK;McAfee Inc. HipShieldK;C:\windows\System32\drivers\HipShieldK.sys [2013-11-5 197704]
S3 iBtFltCoex;iBtFltCoex;C:\windows\System32\drivers\iBtFltCoex.sys [2011-10-11 59904]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\windows\System32\ieetwcollector.exe [2013-12-11 111616]
S3 IntcDAud;Intel® Display Audio;C:\windows\System32\drivers\IntcDAud.sys [2011-8-23 317440]
S3 MADFULEGACYKEYBOARD;Service for M-Audio Legacy Keyboard DFU;C:\windows\System32\drivers\MAudioLegacyKeyboard_DFU.sys [2010-2-9 28680]
S3 MAUSBLEGACYKEYBOARD;Service for M-Audio Legacy Keyboard;C:\windows\System32\drivers\MAudioLegacyKeyboard.sys [2010-2-9 196616]
S3 MBAMProtector;MBAMProtector;C:\windows\System32\drivers\mbam.sys [2012-10-26 25928]
S3 mfeavfk;McAfee Inc. mfeavfk;C:\windows\System32\drivers\mfeavfk.sys [2012-10-23 311120]
S3 mfencbdc;McAfee Inc. mfencbdc;C:\windows\System32\drivers\mfencbdc.sys [2013-9-20 390552]
S3 mfencrk;McAfee Inc. mfencrk;C:\windows\System32\drivers\mfencrk.sys [2013-9-20 95984]
S3 PSSDK42;PSSDK42;C:\windows\System32\drivers\pssdk42.sys [2012-7-20 53312]
S3 PSSDKLBF;PSSDKLBF;C:\windows\System32\drivers\pssdklbf.sys [2012-7-20 65600]
S3 Samsung UPD Service2;Samsung UPD Service2;C:\windows\System32\SUPDSvc2.exe [2011-12-2 165456]
S3 Sftfs;Sftfs;C:\windows\System32\drivers\Sftfslh.sys [2013-6-26 767144]
S3 Sftplay;Sftplay;C:\windows\System32\drivers\Sftplaylh.sys [2013-6-26 273576]
S3 Sftredir;Sftredir;C:\windows\System32\drivers\Sftredirlh.sys [2013-6-26 28840]
S3 Sftvol;Sftvol;C:\windows\System32\drivers\Sftvollh.sys [2013-6-26 23208]
S3 sftvsa;Application Virtualization Service Agent;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2013-6-26 207528]
S3 TsUsbFlt;TsUsbFlt;C:\windows\System32\drivers\TsUsbFlt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\windows\System32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 VBoxUSB;VirtualBox USB;C:\windows\System32\drivers\VBoxUSB.sys [2011-12-19 117040]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\windows\System32\Wat\WatAdminSvc.exe [2011-11-23 1255736]
S3 WDC_SAM;WD SCSI Pass Thru driver;C:\windows\System32\drivers\wdcsam64.sys [2008-5-6 14464]
S3 WSDScan;WSD Scan Support via UMB;C:\windows\System32\drivers\WSDScan.sys [2009-7-14 25088]
S3 ysusb64;Yamaha Steinberg USB Audio;C:\windows\System32\drivers\ysusb64.sys [2012-9-27 110952]
S4 Bluetooth Device Monitor;Bluetooth Device Monitor;C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2011-10-18 936272]
S4 Bluetooth Media Service;Bluetooth Media Service;C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [2011-10-18 1354064]
S4 Bluetooth OBEX Service;Bluetooth OBEX Service;C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2011-10-18 1001808]
S4 hasplms;Sentinel Local License Manager;C:\windows\System32\hasplms.exe  -run --> C:\windows\System32\hasplms.exe  -run [?]
S4 NOBU;Norton Online Backup;C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2010-6-1 2804568]
S4 SamsungAllShareV2.0;Samsung AllShare PC;C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe [2012-3-2 25504]
S4 SimpleSlideShowServer;SimpleSlideShowServer;C:\Program Files (x86)\Samsung\AllShare\AllShareSlideShowService.exe [2012-3-2 27584]
S4 SWUpdateService;SW Update Service;C:\ProgramData\SAMSUNG\SW Update Service\SWMAgent.exe [2013-7-12 3017776]
S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]
.
=============== File Associations ===============
.
ShellExec: Opera.exe: open="C:\Program Files (x86)\Opera\Launcher.exe" "%1"
.
=============== Created Last 30 ================
.
2013-12-22 15:17:57 -------- d-----w- C:\Users\John\AppData\Local\{35BCEC3D-3D98-46C5-97DD-B2D4444024B8}
2013-12-18 10:01:09 -------- d-----w- C:\Program Files (x86)\sweetpacks bundle uninstaller
2013-12-16 22:29:04 -------- d-----w- C:\Users\John\AppData\Local\{81ACDBD0-FDBB-417B-A881-A187DA54DDF1}
2013-12-11 11:08:47 167424 ----a-w- C:\Program Files\Windows Media Player\wmplayer.exe
2013-12-11 11:08:47 164864 ----a-w- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
2013-12-11 11:08:45 12625920 ----a-w- C:\windows\System32\wmploc.DLL
2013-12-11 11:08:45 12625408 ----a-w- C:\windows\SysWow64\wmploc.DLL
2013-12-11 11:06:59 1995264 ----a-w- C:\windows\System32\inetcpl.cpl
2013-12-11 11:06:59 1928192 ----a-w- C:\windows\SysWow64\inetcpl.cpl
2013-12-11 11:06:56 4243968 ----a-w- C:\windows\SysWow64\jscript9.dll
2013-12-11 11:06:55 5769216 ----a-w- C:\windows\System32\jscript9.dll
2013-12-11 10:57:27 2048 ----a-w- C:\windows\SysWow64\tzres.dll
2013-12-11 10:57:27 2048 ----a-w- C:\windows\System32\tzres.dll
2013-12-11 10:55:46 335360 ----a-w- C:\windows\System32\msieftp.dll
2013-12-11 10:55:40 301568 ----a-w- C:\windows\SysWow64\msieftp.dll
2013-12-11 10:55:32 3155968 ----a-w- C:\windows\System32\win32k.sys
2013-12-11 10:55:27 465920 ----a-w- C:\windows\System32\WMPhoto.dll
2013-12-11 10:55:27 417792 ----a-w- C:\windows\SysWow64\WMPhoto.dll
2013-12-11 10:55:23 81408 ----a-w- C:\windows\System32\imagehlp.dll
2013-12-11 10:55:22 159232 ----a-w- C:\windows\SysWow64\imagehlp.dll
2013-12-11 10:49:31 230400 ----a-w- C:\windows\System32\drivers\portcls.sys
2013-12-11 10:49:28 116736 ----a-w- C:\windows\System32\drivers\drmk.sys
2013-12-11 10:49:02 150016 ----a-w- C:\windows\System32\wshom.ocx
2013-12-11 10:49:00 121856 ----a-w- C:\windows\SysWow64\wshom.ocx
2013-12-11 10:48:56 156160 ----a-w- C:\windows\System32\cscript.exe
2013-12-11 10:48:54 202752 ----a-w- C:\windows\System32\scrrun.dll
2013-12-11 10:48:52 141824 ----a-w- C:\windows\SysWow64\wscript.exe
2013-12-11 10:48:47 168960 ----a-w- C:\windows\System32\wscript.exe
2013-12-11 10:48:44 163840 ----a-w- C:\windows\SysWow64\scrrun.dll
2013-12-11 10:48:25 126976 ----a-w- C:\windows\SysWow64\cscript.exe
2013-12-01 17:21:42 -------- d-----w- C:\Program Files (x86)\Microsoft Analysis Services
.
==================== Find3M  ====================
.
2013-11-26 10:19:07 2724864 ----a-w- C:\windows\System32\mshtml.tlb
2013-11-26 10:18:23 4096 ----a-w- C:\windows\System32\ieetwcollectorres.dll
2013-11-26 09:48:07 66048 ----a-w- C:\windows\System32\iesetup.dll
2013-11-26 09:46:25 48640 ----a-w- C:\windows\System32\ieetwproxystub.dll
2013-11-26 09:23:02 2724864 ----a-w- C:\windows\SysWow64\mshtml.tlb
2013-11-26 09:18:39 139264 ----a-w- C:\windows\System32\ieUnatt.exe
2013-11-26 09:18:09 111616 ----a-w- C:\windows\System32\ieetwcollector.exe
2013-11-26 09:16:57 708608 ----a-w- C:\windows\System32\jscript9diag.dll
2013-11-26 08:28:16 553472 ----a-w- C:\windows\SysWow64\jscript9diag.dll
2013-11-26 07:07:57 2334208 ----a-w- C:\windows\System32\wininet.dll
2013-11-26 06:33:33 1820160 ----a-w- C:\windows\SysWow64\wininet.dll
2013-11-12 16:33:02 940032 ----a-w- C:\windows\System32\MsSpellCheckingFacility.exe
2013-11-12 16:33:02 194048 ----a-w- C:\windows\SysWow64\elshyph.dll
2013-11-04 16:51:44 70112 ----a-w- C:\windows\System32\drivers\cfwids.sys
2013-11-04 16:46:34 343696 ----a-w- C:\windows\System32\drivers\mfewfpk.sys
2013-11-04 16:46:16 182752 ----a-w- C:\windows\System32\mfevtps.exe
2013-11-04 16:43:04 782360 ----a-w- C:\windows\System32\drivers\mfehidk.sys
2013-11-04 16:41:22 519576 ----a-w- C:\windows\System32\drivers\mfefirek.sys
2013-11-04 16:40:00 311120 ----a-w- C:\windows\System32\drivers\mfeavfk.sys
2013-11-04 16:39:20 179792 ----a-w- C:\windows\System32\drivers\mfeapfk.sys
2013-10-12 02:30:42 830464 ----a-w- C:\windows\System32\nshwfp.dll
2013-10-12 02:29:21 859648 ----a-w- C:\windows\System32\IKEEXT.DLL
2013-10-12 02:29:08 324096 ----a-w- C:\windows\System32\FWPUCLNT.DLL
2013-10-12 02:03:08 656896 ----a-w- C:\windows\SysWow64\nshwfp.dll
2013-10-12 02:01:25 216576 ----a-w- C:\windows\SysWow64\FWPUCLNT.DLL
2013-10-05 20:25:35 1474048 ----a-w- C:\windows\System32\crypt32.dll
2013-10-05 19:57:25 1168384 ----a-w- C:\windows\SysWow64\crypt32.dll
2013-10-04 02:28:31 190464 ----a-w- C:\windows\System32\SmartcardCredentialProvider.dll
2013-10-04 02:25:17 197120 ----a-w- C:\windows\System32\credui.dll
2013-10-04 02:24:49 1930752 ----a-w- C:\windows\System32\authui.dll
2013-10-04 01:58:50 152576 ----a-w- C:\windows\SysWow64\SmartcardCredentialProvider.dll
2013-10-04 01:56:25 168960 ----a-w- C:\windows\SysWow64\credui.dll
2013-10-04 01:56:00 1796096 ----a-w- C:\windows\SysWow64\authui.dll
2013-10-03 02:23:48 404480 ----a-w- C:\windows\System32\gdi32.dll
2013-10-03 02:00:44 311808 ----a-w- C:\windows\SysWow64\gdi32.dll
2013-09-28 01:09:10 497152 ----a-w- C:\windows\System32\drivers\afd.sys
.
============= FINISH: 14:00:45.90 ===============
 
 
 
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Premium 
Boot Device: \Device\HarddiskVolume1
Install Date: 20/11/2011 11:26:40
System Uptime: 24/12/2013 12:04:57 (2 hours ago)
.
Motherboard: SAMSUNG ELECTRONICS CO., LTD. |  | 300E4A/300E5A/300E7A/3430EA/3530EA
Processor: Intel® Core i5-2430M CPU @ 2.40GHz | CPU | 2394/100mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 272 GiB total, 57.858 GiB free.
D: is FIXED (NTFS) - 407 GiB total, 304.887 GiB free.
E: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Description: Security Processor Loader Driver
Device ID: ROOT\LEGACY_SPLDR\0000
Manufacturer: 
Name: Security Processor Loader Driver
PNP Device ID: ROOT\LEGACY_SPLDR\0000
Service: spldr
.
==== System Restore Points ===================
.
RP234: 24/11/2013 15:06:42 - Scheduled Checkpoint
RP235: 28/11/2013 15:17:49 - Installed YouCam
RP236: 06/12/2013 19:50:16 - Scheduled Checkpoint
RP237: 11/12/2013 11:05:16 - Windows Update
RP238: 15/12/2013 12:57:27 - Windows Update
RP239: 20/12/2013 13:11:54 - McAfee Vulnerability Scanner
RP240: 20/12/2013 13:13:47 - Windows Update
.
==== Installed Programs ======================
.
 Leawo AVI Converter version  5.0.0.0
?? ??? ?? Windows Live Mesh ActiveX ???
??? ActiveX ?? Windows Live Mesh ???? ??????? ???????
???? ??? Windows Live
???? ???? ActiveX ????? ?? Windows Live Mesh ????????? ???????
???? Windows Live
????? Windows Live
?????? ??????? ?? Windows Live
??????? ?????????? Windows Live Mesh ActiveX ??? ????????? ???????????
??????? Windows Live Mesh ActiveX ??(????)
??????? Windows Live Mesh ActiveX ???
???????? ?????????? Windows Live
????????? ActiveX ?? Windows Live Mesh ????????????????????????? (???)
?????????? Windows Live
??????????? ?? Windows Live
ActiveX-kontroll för fjärranslutningar för Windows Live Mesh
ActiveX ???????? ?? Windows Live Mesh ?? ?????????? ??????
Adobe AIR
Agatha Christie - Death on the Nile
Amazon Cloud Drive
AmpliTube 3 version 3.10.0
Apple Application Support
Apple Software Update
ASIO4ALL
Audacity 1.3.14 (Unicode)
„Windows Live Essentials“
„Windows Live Mail“
„Windows Live Mesh ActiveX“ nuotoliniu ryšiu valdiklis
„Windows Live Messenger“
„Windows Live“ fotogalerija
Backblaze
BBC iPlayer Desktop
Bejeweled 2 Deluxe
Bing Bar
BT Cloud
BT NetProtect Plus
Build-a-lot
calibre
Canon Easy-WebPrint EX
Canon IJ Network Scanner Selector EX
Canon IJ Network Tool
Canon IJ Scan Utility
Canon Inkjet Printer/Scanner/Fax Extended Survey Program
Canon MG4200 series MP Drivers
Canon MG4200 series On-screen Manual
Canon MG4200 series User Registration
Canon My Image Garden
Canon My Image Garden Design Files
Canon My Printer
Canon Quick Menu
CCF Authentication 1.00.211.0 (release)
Chuzzle Deluxe
Cisco Systems VPN Client 5.0.07.0290
Contrôle ActiveX Windows Live Mesh pour connexions à distance
Control ActiveX de Windows Live Mesh para conexiones remotas
Control ActiveX Windows Live Mesh pentru conexiuni la distan?a
Controle ActiveX do Windows Live Mesh para Conexões Remotas
Controlo ActiveX do Windows Live Mesh para Ligações Remotas
CrashPlan
Custom Shop version 1.1.0
CyberLink Media Suite
CyberLink Media+ Player10
CyberLink MediaShow
CyberLink Power2Go
CyberLink PowerDirector
CyberLink YouCam
D3DX10
Diner Dash 2 Restaurant Rescue
DriveColin Pupil Manager
Dropbox
DVD Flick 1.3.0.7
Easy File Share
Easy Migration
Easy Settings
Easy Support Center
eLicenser Control
ETDWare PS/2-X64 10.7.16.1_WHQL
Evernote v. 4.5.10
Farm Frenzy
Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsluge polaczen zdalnych
FormatFactory 2.90
Fotogalerija Windows Live
Free Video Converter V 3.1
Galeria de Fotografias do Windows Live
Galeria fotografii uslugi Windows Live
Galerie de photos Windows Live
Galerie foto Windows Live
Galería fotográfica de Windows Live
Google Chrome
Google Drive
Google Update Helper
Helium Audio Converter (build 290)
Hotfix for Microsoft .NET Framework 4 Client Profile (KB2461678)
IK Multimedia Authorization Manager version 1.0.9
ImgBurn
Insaniquarium Deluxe
Intel PROSet Wireless
Intel® Control Center
Intel® Management Engine Components
Intel® Processor Graphics
Intel® PROSet/Wireless Software for Bluetooth® Technology
Intel® Rapid Storage Technology
Intel® PROSet/Wireless WiFi Software
Jaangle music management
John Deere Drive Green
Junk Mail filter update
K-Lite Mega Codec Pack 8.2.0
Keeper Password & Data Vault
KNOWHOW APP CENTRE
Kontrola Windows Live Mesh ActiveX za daljinske veze
Kontrolnik Windows Live Mesh ActiveX za oddaljene povezave
LeapFrog Connect
LeapFrog MyOwnLeaptop Plugin
Lidl-Photos
Logitech Harmony Remote Software
M-Audio Legacy Keyboard Driver 5.0.0 (x64)
Malwarebytes Anti-Malware version 1.75.0.1300
Matrox VFW Software Codecs, build 1.0.0.31 
Mesh Runtime
Microsoft .NET Framework 4 Client Profile
Microsoft Application Error Reporting
Microsoft Office 2010
Microsoft Office Access Runtime (English) 2007
Microsoft Office Click-to-Run 2010
Microsoft Office Starter 2010 - English
Microsoft PowerPoint Viewer
Microsoft Silverlight
Microsoft SkyDrive
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable (x64)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319
MSVCRT
MSVCRT Redists
MSVCRT_amd64
Multimedia POP
MusEdit
Music Manager
Native Instruments Controller Editor
Native Instruments Guitar Rig 4
Native Instruments Guitar Rig Session IO Driver
Native Instruments Service Center
Norton Online Backup
NVIDIA Display Control Panel
NVIDIA Graphics Driver 268.83
NVIDIA Install Application
NVIDIA Optimus 1.0.23
NVIDIA Update Components
Opera 12.15
Opera Stable 18.0.1284.49
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená pripojení
Ovládací prvok ActiveX programu Windows Live Mesh pre vzdialené pripojenia
PDF-Viewer
Pdf995
Peggle
Penguins!
Picasa 3
Plants vs. Zombies
Playlist Creator 3.6.2
Poczta uslugi Windows Live
Podstawowe programy Windows Live
Polar Golfer
Pošta Windows Live
Power Tab Editor 1.7
Quick Starter
QuickTime
Raccolta foto di Windows Live
Realtek Ethernet Controller Driver
Realtek High Definition Audio Driver
REAPER
Reason Adapted for M-Audio 2.5
S Agent
S Service
S?????? f?t???af??? t?? Windows Live
SABnzbd 0.7.4
Samsung AllShare
Samsung AnyWeb Print
Samsung Recovery Solution 5
Samsung Universal Print Driver
Samsung Universal Scan Driver
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2858302v2)
Shared C Run-time for x64
SISShortcut
Skype™ 6.11
Software Launcher
SPB Backup 2.1.0
Spotify
SpywareBlaster 5.0
St???e?? e?????? ActiveX t?? Windows Live Mesh ??a ap?µa???sµ??e? s??d?se??
Steinberg Cubase LE AI Elements 6 64bit
Steinberg Cubase SE
Steinberg Groove Agent ONE Content
Steinberg Groove Agent ONE Vintage Beatboxes
Steinberg HALion Sonic SE 64bit
Steinberg HALion Sonic SE Content for Cubase LE AI Elements
Steinberg VSTi Collection
SumatraPDF
SW Update
Sync Client 1.40.633.0 (release)
SysTools Outlook PST Viewer 3.0
TablEdit 2.71
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3)
USB Keyboard Device 1.0.1.0
Use the entry named LeapFrog Connect to uninstall (LeapFrog MyOwnLeaptop Plugin)
User Guide
Uzak Baglantilar Için Windows Live Mesh ActiveX Denetimi
Vegas Movie Studio HD 11.0
VLC media player 2.1.2
vShare.tv plugin 1.3
VshareComplete
WD Link
WildTangent Games
WildTangent ORB Game Console
Windows Driver Package - Leapfrog (Leapfrog-USBLAN) Net  (09/10/2009 02.03.05.012)
Windows Live
Windows Live ??
Windows Live ?? ???
Windows Live ???
Windows Live ????
Windows Live Communications Platform
Windows Live Essentials
Windows Live Fotótár
Windows Live Foto-galerija
Windows Live fotoattelu galerija
Windows Live Fotogalerie
Windows Live Fotogalleri
Windows Live Fotogaléria
Windows Live Fotograf Galerisi
Windows Live Galeria de Fotos
Windows Live Galerija fotografija
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Language Selector
Windows Live Mail
Windows Live Mesh
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen
Windows Live Mesh ActiveX-kontroll for eksterne tilkoblinger
Windows Live Mesh ActiveX-objekt til fjernforbindelser
Windows Live Mesh ActiveX-vezérlo távoli kapcsolatokhoz
Windows Live Mesh ActiveX Control for Remote Connections
Windows Live Mesh ActiveX kontrola za daljinske veze
Windows Live Mesh ActiveX vadikla attalajiem savienojumiem
Windows Live Meshin etäyhteyksien ActiveX-komponentti
Windows Live Messenger
Windows Live MIME IFilter
Windows Live Movie Maker
Windows Live Photo Common
Windows Live Photo Gallery
Windows Live PIMT Platform
Windows Live Pošta
Windows Live Remote Client
Windows Live Remote Client Resources
Windows Live Remote Service
Windows Live Remote Service Resources
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live Temel Parçalar
Windows Live UX Platform
Windows Live UX Platform Language Pack
Windows Live Writer
Windows Live Writer Resources
Windows Liven asennustyökalu
Windows Liven sähköposti
Windows Liven valokuvavalikoima
WinRAR 4.01 (32-bit)
WinRAR 5.01 (64-bit)
WinX DVD Ripper 5.5.9
Yamaha Steinberg USB Driver
Zuma Deluxe
.
==== Event Viewer Messages From Past Week ========
.
24/12/2013 12:17:09, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service McAfee SiteAdvisor Service with arguments "" in order to run the server: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}
24/12/2013 12:16:48, Error: Service Control Manager [7001]  - The Computer Browser service depends on the Server service which failed to start because of the following error:  The dependency service or group failed to start.
24/12/2013 12:08:35, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service McNaiAnn with arguments "" in order to run the server: {DC7EF8E1-824F-4110-AB43-1604DA9B4F40}
24/12/2013 12:08:35, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service McNaiAnn with arguments "" in order to run the server: {C90134D2-4AE9-407A-919A-4A2EF09C6C51}
24/12/2013 12:08:02, Error: Service Control Manager [7001]  - The PnP-X IP Bus Enumerator service depends on the Function Discovery Provider Host service which failed to start because of the following error:  The dependency service or group failed to start.
24/12/2013 12:06:41, Error: Service Control Manager [7001]  - The HomeGroup Provider service depends on the Function Discovery Provider Host service which failed to start because of the following error:  The dependency service or group failed to start.
24/12/2013 12:06:41, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
24/12/2013 12:06:40, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
24/12/2013 12:06:23, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
24/12/2013 12:06:14, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC}
24/12/2013 12:06:10, Error: Microsoft-Windows-WLAN-AutoConfig [10000]  - WLAN Extensibility Module has failed to start. Module Path: C:\windows\System32\IWMSSvc.dll Error Code: 21
24/12/2013 12:06:02, Error: Service Control Manager [7026]  - The following boot-start or system-start driver(s) failed to load:  discache SABI spldr Wanarpv6
24/12/2013 12:05:51, Error: Service Control Manager [7001]  - The Client Virtualization Handler service depends on the Application Virtualization Client service which failed to start because of the following error:  The dependency service or group failed to start.
24/12/2013 11:57:09, Error: Microsoft-Windows-DistributedCOM [10016]  - The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID  {C97FCC79-E628-407D-AE68-A06AD6D8B4D1}  and APPID  {344ED43D-D086-4961-86A6-1106F4ACAD9B}  to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC). This security permission can be modified using the Component Services administrative tool.
24/12/2013 11:42:45, Error: Service Control Manager [7009]  - A timeout was reached (30000 milliseconds) while waiting for the Intel® PROSet/Wireless Event Log service to connect.
24/12/2013 11:42:45, Error: Service Control Manager [7000]  - The Intel® PROSet/Wireless Event Log service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.
23/12/2013 20:25:59, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service McNaiAnn with arguments "" in order to run the server: {395633B1-EED9-4DFC-B67F-9788B51C9F06}
22/12/2013 22:08:19, Error: Service Control Manager [7022]  - The NVIDIA Update Service Daemon service hung on starting.
22/12/2013 22:01:27, Error: Service Control Manager [7031]  - The WLAN AutoConfig service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.
22/12/2013 22:01:27, Error: Service Control Manager [7031]  - The Windows Audio Endpoint Builder service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Restart the service.
22/12/2013 22:01:27, Error: Service Control Manager [7031]  - The Superfetch service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Restart the service.
22/12/2013 22:01:27, Error: Service Control Manager [7031]  - The Program Compatibility Assistant Service service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Restart the service.
22/12/2013 22:01:27, Error: Service Control Manager [7031]  - The Network Connections service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 100 milliseconds: Restart the service.
22/12/2013 22:01:27, Error: Service Control Manager [7031]  - The Distributed Link Tracking Client service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.
22/12/2013 22:01:27, Error: Service Control Manager [7031]  - The Desktop Window Manager Session Manager service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.
22/12/2013 18:53:39, Error: Service Control Manager [7022]  - The McAfee Home Network service hung on starting.
22/12/2013 18:41:01, Error: Service Control Manager [7001]  - The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error:  The dependency service or group failed to start.
22/12/2013 18:34:13, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1068" attempting to start the service netprofm with arguments "" in order to run the server: {A47979D2-C419-11D9-A5B4-001185AD2B89}
22/12/2013 18:34:13, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1068" attempting to start the service netman with arguments "" in order to run the server: {BA126AD1-2166-11D1-B1D0-00805FC1270E}
22/12/2013 18:33:43, Error: Service Control Manager [7026]  - The following boot-start or system-start driver(s) failed to load:  AFD DfsC discache mfehidk NetBIOS NetBT nsiproxy Psched rdbss SABI spldr tdx vwififlt Wanarpv6 WfpLwf ws2ifsl
22/12/2013 18:33:43, Error: Service Control Manager [7001]  - The McAfee Proxy Service service depends on the McAfee Firewall Core Service service which failed to start because of the following error:  The dependency service or group failed to start.
22/12/2013 18:33:42, Error: Service Control Manager [7001]  - The Workstation service depends on the Network Store Interface Service service which failed to start because of the following error:  The dependency service or group failed to start.
22/12/2013 18:33:42, Error: Service Control Manager [7001]  - The TCP/IP NetBIOS Helper service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error:  A device attached to the system is not functioning.
22/12/2013 18:33:42, Error: Service Control Manager [7001]  - The SMB MiniRedirector Wrapper and Engine service depends on the Redirected Buffering Sub Sysytem service which failed to start because of the following error:  A device attached to the system is not functioning.
22/12/2013 18:33:42, Error: Service Control Manager [7001]  - The SMB 2.0 MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error:  The dependency service or group failed to start.
22/12/2013 18:33:42, Error: Service Control Manager [7001]  - The SMB 1.x MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error:  The dependency service or group failed to start.
22/12/2013 18:33:42, Error: Service Control Manager [7001]  - The Network Store Interface Service service depends on the NSI proxy service driver. service which failed to start because of the following error:  A device attached to the system is not functioning.
22/12/2013 18:33:42, Error: Service Control Manager [7001]  - The Network Location Awareness service depends on the Network Store Interface Service service which failed to start because of the following error:  The dependency service or group failed to start.
22/12/2013 18:33:42, Error: Service Control Manager [7001]  - The Network Connections service depends on the Network Store Interface Service service which failed to start because of the following error:  The dependency service or group failed to start.
22/12/2013 18:33:42, Error: Service Control Manager [7001]  - The McAfee Validation Trust Protection Service service depends on the McAfee Inc. mfehidk service which failed to start because of the following error:  A device attached to the system is not functioning.
22/12/2013 18:33:42, Error: Service Control Manager [7001]  - The McAfee Personal Firewall Service service depends on the Windows Firewall service which failed to start because of the following error:  The dependency service or group failed to start.
22/12/2013 18:33:42, Error: Service Control Manager [7001]  - The McAfee Firewall Core Service service depends on the McAfee Validation Trust Protection Service service which failed to start because of the following error:  The dependency service or group failed to start.
22/12/2013 18:33:42, Error: Service Control Manager [7001]  - The McAfee Anti-Malware Core service depends on the McAfee Validation Trust Protection Service service which failed to start because of the following error:  The dependency service or group failed to start.
22/12/2013 18:33:42, Error: Service Control Manager [7001]  - The IP Helper service depends on the Network Store Interface Service service which failed to start because of the following error:  The dependency service or group failed to start.
22/12/2013 18:33:42, Error: Service Control Manager [7001]  - The DNS Client service depends on the NetIO Legacy TDI Support Driver service which failed to start because of the following error:  A device attached to the system is not functioning.
22/12/2013 18:33:42, Error: Service Control Manager [7001]  - The DHCP Client service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error:  A device attached to the system is not functioning.
22/12/2013 18:33:28, Error: Microsoft-Windows-Kernel-General [5]  - {Registry Hive Recovered} Registry hive (file): '\SystemRoot\System32\Config\SOFTWARE' was corrupted and it has been recovered. Some data might have been lost.
22/12/2013 17:37:55, Error: Service Control Manager [7011]  - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ShellHWDetection service.
22/12/2013 16:57:07, Error: Service Control Manager [7009]  - A timeout was reached (30000 milliseconds) while waiting for the McAfee Anti-Malware Core service to connect.
22/12/2013 16:57:07, Error: Service Control Manager [7000]  - The McAfee Anti-Malware Core service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.
22/12/2013 16:34:06, Error: Service Control Manager [7009]  - A timeout was reached (30000 milliseconds) while waiting for the Windows Live ID Sign-in Assistant service to connect.
22/12/2013 16:34:06, Error: Service Control Manager [7000]  - The Windows Live ID Sign-in Assistant service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.
22/12/2013 16:32:06, Error: Microsoft-Windows-WLAN-AutoConfig [10000]  - WLAN Extensibility Module has failed to start. Module Path: C:\windows\System32\IWMSSvc.dll Error Code: 258
22/12/2013 15:22:52, Error: Service Control Manager [7022]  - The Intel® Management and Security Application User Notification Service service hung on starting.
22/12/2013 15:14:13, Error: Service Control Manager [7011]  - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Schedule service.
21/12/2013 22:58:16, Error: volsnap [27]  - The shadow copies of volume F: were aborted during detection because a critical control file could not be opened.
21/12/2013 15:06:29, Error: bowser [8003]  - The master browser has received a server announcement from the computer JOLITA-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{FCB1FF75-FC7B-4114-8DE7-B045354365E3}. The master browser is stopping or an election is being forced.
21/12/2013 13:30:06, Error: Service Control Manager [7034]  - The Intel® PROSet/Wireless Zero Configuration Service service terminated unexpectedly.  It has done this 1 time(s).
21/12/2013 13:27:48, Error: Service Control Manager [7001]  - The Application Virtualization Client service depends on the Application Virtualization Service Agent service which failed to start because of the following error:  The service did not respond to the start or control request in a timely fashion.
21/12/2013 13:26:48, Error: Service Control Manager [7009]  - A timeout was reached (30000 milliseconds) while waiting for the Application Virtualization Service Agent service to connect.
21/12/2013 13:26:48, Error: Service Control Manager [7000]  - The Application Virtualization Service Agent service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.
20/12/2013 12:46:32, Error: Service Control Manager [7022]  - The Windows Image Acquisition (WIA) service hung on starting.
19/12/2013 13:33:54, Error: Service Control Manager [7032]  - The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Windows Management Instrumentation service, but this action failed with the following error:  An instance of the service is already running.
19/12/2013 13:33:54, Error: Service Control Manager [7032]  - The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Multimedia Class Scheduler service, but this action failed with the following error:  An instance of the service is already running.
19/12/2013 13:33:54, Error: Service Control Manager [7032]  - The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the IKE and AuthIP IPsec Keying Modules service, but this action failed with the following error:  An instance of the service is already running.
19/12/2013 13:32:54, Error: Service Control Manager [7032]  - The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Server service, but this action failed with the following error:  An instance of the service is already running.
19/12/2013 13:31:54, Error: Service Control Manager [7031]  - The Windows Management Instrumentation service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.
19/12/2013 13:31:54, Error: Service Control Manager [7031]  - The User Profile Service service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.
19/12/2013 13:31:54, Error: Service Control Manager [7031]  - The Themes service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Restart the service.
19/12/2013 13:31:54, Error: Service Control Manager [7031]  - The Task Scheduler service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Restart the service.
19/12/2013 13:31:54, Error: Service Control Manager [7031]  - The System Event Notification Service service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.
19/12/2013 13:31:54, Error: Service Control Manager [7031]  - The Shell Hardware Detection service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Restart the service.
19/12/2013 13:31:54, Error: Service Control Manager [7031]  - The Server service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Restart the service.
19/12/2013 13:31:54, Error: Service Control Manager [7031]  - The Secondary Logon service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.
19/12/2013 13:31:54, Error: Service Control Manager [7031]  - The Remote Access Connection Manager service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.
19/12/2013 13:31:54, Error: Service Control Manager [7031]  - The Multimedia Class Scheduler service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.
19/12/2013 13:31:54, Error: Service Control Manager [7031]  - The IP Helper service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.
19/12/2013 13:31:54, Error: Service Control Manager [7031]  - The IKE and AuthIP IPsec Keying Modules service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.
19/12/2013 13:31:54, Error: Service Control Manager [7031]  - The Group Policy Client service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.
19/12/2013 13:31:54, Error: Service Control Manager [7031]  - The Extensible Authentication Protocol service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.
17/12/2013 18:17:42, Error: Service Control Manager [7009]  - A timeout was reached (30000 milliseconds) while waiting for the SamsungDeviceConfiguration service to connect.
17/12/2013 18:10:32, Error: Service Control Manager [7009]  - A timeout was reached (30000 milliseconds) while waiting for the Application Virtualization Client service to connect.
17/12/2013 18:10:32, Error: Service Control Manager [7001]  - The Client Virtualization Handler service depends on the Application Virtualization Client service which failed to start because of the following error:  The service did not respond to the start or control request in a timely fashion.
17/12/2013 18:10:32, Error: Service Control Manager [7000]  - The Application Virtualization Client service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.
17/12/2013 10:06:27, Error: Disk [11]  - The driver detected a controller error on \Device\Harddisk1\DR1.
.
==== End Of File ===========================
 

 

Link to post
Share on other sites

Hello John! My name is Borislav and I will be glad to help you solve your malware problem.

Please note:

  • If you are a paying customer, you have the privilege to contact the help desk at Consumer Support. If you choose this option to get help, please let me know.
  • I recommend you to keep the instructions I will be giving you so that they are available to you at any time. You can save them in a text file or print them.
  • Make sure you read all of the instructions and fixes thoroughly before continuing with them.
  • Follow my instructions strictly and don’t hesitate to stop and ask me if you have any questions.
  • Post your log files, don't attach them. Every log file should be copy/pasted in your next reply.
  • Do not perform any kind of scanning and fixing without my instructions. If you want to proceed on your own, please let me know.
What kind of problems do you have?
Link to post
Share on other sites

Hi Borislav,

Thanks very much for your reply, I would very much appreciate your help. I had a virus that malware bytes removed but my internet has slowed on laptop almost to a standstill. I've scanned in safe mode but it doesn't show any malware.

Any thing else you need?

Thanks John

Link to post
Share on other sites

Step 1

Please uninstall the following applications:

vShare.tv plugin 1.3

VshareComplete

Step 2

Please download Junkware Removal Tool to your desktop.

  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista or Seven, right-mouse click it and select Run as Administrator.
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
  • Step 3

    Please download AdwCleaner by Xplode onto your desktop.

    • Close all open programs and internet browsers.
    • Double click on AdwCleaner.exe to run the tool.
    • Click on Clean.
    • Confirm each time with Ok.
    • Your computer will be rebooted automatically. A text file will open after the restart.
    • Please post the content of that logfile with your next answer.
    • You can find the logfile at C:\AdwCleaner\AdwCleaner[s0].txt as well.
    Step 4
    • Launch Malwarebytes' Anti-Malware
    • Go to Update tab and select Check for Updates. If an update is found, it will download and install the latest version.
    • Go to Scanner tab and select Perform Quick Scan, then click Scan.
    • The scan may take some time to finish,so please be patient.
    • When the scan is complete, click OK, then Show Results to view the results.
    • Make sure that everything is checked, and click Remove Selected.
    • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Extra Note)
    • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
    • Copy&Paste the entire report in your next reply.
    Extra Note: If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts, click OK to either and let MBAM proceed with the disinfection process, if asked to restart the computer,please do so immediately.

    In your next reply, post the following log files:

    • Junkware Removal Tool log
    • AdwCleaner log
    • Malwarebytes' Anti-Malware log
Link to post
Share on other sites

Hi, 

 

Here are JRT and Malware logs (adw not included as I mentioned)

 

Thanks

John

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Home Premium x64
Ran by John on 25/12/2013 at 20:31:14.60
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
~~~ Services
 
 
 
~~~ Registry Values
 
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL
 
 
 
~~~ Registry Keys
 
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\conduit
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\im
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\conduit
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\smartbar
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\conduit
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\au__rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\au__rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\TaskScheduler_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\TaskScheduler_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_format-factory_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_format-factory_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\TaskScheduler_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\TaskScheduler_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_format-factory_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_format-factory_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{3E7B084B-961C-1A9F-FD08-7B572DD93650}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{7AA14B2F-5658-4C33-A2D0-F91A3B75F31E}
 
 
 
~~~ Files
 
Successfully deleted: [File] C:\windows\syswow64\sho1090.tmp
Successfully deleted: [File] C:\windows\syswow64\sho2739.tmp
Successfully deleted: [File] C:\windows\syswow64\sho4BB3.tmp
Successfully deleted: [File] C:\windows\syswow64\sho7B76.tmp
Successfully deleted: [File] C:\windows\syswow64\sho98A6.tmp
Successfully deleted: [File] C:\windows\syswow64\sho99C1.tmp
Successfully deleted: [File] C:\windows\syswow64\sho9DB7.tmp
 
 
 
~~~ Folders
 
Successfully deleted: [Folder] "C:\Users\John\appdata\local\cre"
Failed to delete: [Folder] "C:\Users\John\appdata\locallow\conduit"
Successfully deleted: [Folder] "C:\Program Files (x86)\free video converter"
Successfully deleted: [Folder] "C:\Program Files (x86)\sweetpacks bundle uninstaller"
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{01B21D91-C923-4DE5-B999-607AB8783336}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{0240CCA6-196D-48E9-B632-9735D907EF9A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{02C7C7F5-8219-40B4-9673-B1D5D88AF15F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{03354CEF-8FB5-42C7-BD8F-1E2BCF6E123B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{04D86B59-0EDA-42CC-A497-DEC3E939A4F9}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{06B88C57-30B2-49AD-9E81-8CBBCB655856}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{0772FB99-5017-4945-AF4E-7590EB9F1BD2}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{07BFE5D8-F50A-4C94-9EEE-E2D81D14046A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{0832F688-4DC9-4F58-A960-80437C799CBC}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{097CAC53-7D18-4AE3-8D09-FA6D72C39168}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{0A52DF45-4245-4BF1-8CEF-BE43246176D0}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{0A6CE07D-7FBA-4D78-8C98-3D22C8822035}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{0A9D3A24-BBEA-4B33-8F9F-308E89CABCD6}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{0B0F9E15-EB11-4AFE-85D1-0BF202FE61CE}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{0B388DDA-1501-4CD5-8D30-A0A5656FCBDA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{0CA2DE35-3D57-4205-9E5E-850AA4D91EAE}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{0CE1FA5A-91B3-4EBD-9355-786D83635549}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{0D428DA1-2601-41E7-A76B-30DE910C5B3B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{0E73636E-4D2F-47C1-A022-B8123BCC4358}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{0F0F9339-8027-4989-ABB6-2744207DFF0D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{0F295477-DC75-4CD9-B63A-321AC347B26A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{0F56F718-FF98-41AD-80BA-6A9E1ED7904F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{0F900635-5B01-4196-A912-1577A3F0724F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{106FEDFE-5984-4345-8010-2D8C6BE936C0}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{11565A93-21DF-4F6D-9D58-235A74A00C00}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{11E42D0D-DE3A-40D2-8622-0A746A1DEBF4}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{11E490B1-83A8-4B3B-955D-84A7CCF9EBC5}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{12B2178D-45AB-459E-930A-6818A5FBDBAB}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{12B7A7C8-9DAE-474E-B502-DE0A08B7A320}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{12E10D3E-1D37-43A1-AEE3-9057F60784F9}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{13BAE912-2529-4D6E-9A5B-493EF2728728}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{14D628A8-B9DE-4822-8962-20F5FB2C3734}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{14F8EAEC-A5FD-4A39-881D-CB17A7C063B8}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{15ED50FA-55FE-4B3E-B93B-7EC657DCEF6C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{163A24BF-6402-400E-8B75-4BABC0C1EA85}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1750DDBB-8E4A-433E-873B-BBDE286DD32E}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1779E7EE-C2B0-4435-80BE-14765688344F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1836A2F5-3075-4B48-AA3A-9287C5387E97}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1839E3A6-C7B5-4D39-B03A-E69A3635D497}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{18993AF9-4BBF-49B5-8E9C-1485A425F2C6}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{18A82C41-DA29-481D-8D84-EB64B0303B1F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1A3417C4-01B1-4F40-98F3-ADAF5091FBE8}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1A55E8CB-00D9-495D-BDA8-C4112C2D3A86}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1AFA1416-0206-4910-BC8B-35A400316302}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1BCC8827-48BA-4594-AAAE-4F1BF7E97706}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1BFA41AD-990A-46C9-BBDB-1A690421F26D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1C9B151F-8927-43F2-B0F5-27B9A4768B34}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1D8B03C8-C184-4278-BB61-7320519FE10E}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1D8E8BD0-50A0-4C20-982E-982A5D75F74C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1DEC785E-7092-4CF9-A7A0-543AEB8C75F8}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1E4547A7-D7BC-4931-AFBF-6CB5C505D5FB}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1E54AD8B-9CCA-455E-BFF3-2DEC92515128}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1ECC6B55-FAC2-437B-9022-369332343468}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1EE37A37-F5BE-4979-80C2-4CDE1369ACDF}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1F174D06-809D-44A4-B2A2-979C6A1D9D96}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1F8A00F5-C968-43C0-A9E6-AD97EE6312AD}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1FA2A6F1-92D3-42A5-A8EC-6D395D53F277}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{1FC81EBC-6982-437A-BF93-10D58728F7D4}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{20F17664-06F7-4D02-AEE5-1BDD5A68CDA8}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{22882336-266B-47D6-82D2-73ABC7A22B3A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{22AC18D3-97F9-4DB1-BAE5-56DF988A328F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{22F28BD0-4CBA-45EA-961B-E4C16713D155}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{23774CDA-D463-407A-B16A-5669F61521DA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{24065A50-65B3-4C0C-863E-5DFEFAC66C68}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{243A16CB-8220-4100-884C-01C6F09300A0}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{24EE7A9C-2589-4DC3-87F3-A042FC9B29BD}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{253AEB08-8932-43D3-9A94-6740D362CCD3}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{25B916A1-7BFC-474E-BDCB-2D63CE5D6531}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{2645E915-43CF-4434-BF6E-3EAFE6997F82}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{276A23BE-6D47-4647-A851-AD81C50F4703}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{289A599F-3AB6-4B05-8000-543ABBD44C97}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{28A157FB-41EC-43CD-994A-42F0D687CDD0}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{296FEBD3-6C97-40E5-8832-03BA14C784FD}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{29B16F1F-C4FB-41DC-9CFB-A40BCAD4B125}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{29D830A7-59B7-4F81-84CA-9277D2EDEE32}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{29E61B1C-36AF-4CEB-A708-7BADDF4675E9}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{2A28DB62-B64F-4326-8AD2-FDD78950F6A7}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{2B525C13-06B0-45C9-A69A-77B2A0424278}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{2BBF5E99-C249-4B87-9035-C0E0648494D4}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{2BD1AC5C-B4C5-45C6-9B51-430E4C9E3554}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{2C616B84-915F-4EA6-9926-B81DC7D030AB}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{2C674F35-4AA9-4A0D-AE89-34C120E7626C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{2CB41CDF-9D86-47DB-B8DD-934F88D3915A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{2D449A4E-2F8F-4439-B7F9-6CBEDC4A009A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{2DC2D52D-FF0B-4F34-87D1-30A0D7A4C5FD}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{2DC7F310-74DA-4541-A36F-DBFE4EB7C10D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{2EEE6D5A-7908-462B-8611-09FBDCE75FFF}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{2F382DDA-D63C-4E2E-881C-C254BF84165C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{30C4CB3E-44D8-4418-80CF-1CE7E546C731}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{30E65220-1A24-4046-B7FC-049F714DADB2}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{30E9B6F8-1BE2-4C11-98F5-1D06202B6FE9}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{3169439E-D726-4068-B3E3-7CD3232BA7E6}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{31B6AE29-B0B4-4EED-A783-01802E5B9B56}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{330359C0-22B0-4B4B-B0D0-B898B75A64CA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{333395B1-F685-48EA-9B83-48F9131644F9}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{339ED662-9916-45CD-9704-12517E993098}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{339FE59D-EF55-4E56-AFB2-2B0086F03C95}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{35075F11-3367-4C74-A1AB-6FEB51D22853}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{3540EFDB-097C-4A78-809F-21B99C22A84E}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{35BCEC3D-3D98-46C5-97DD-B2D4444024B8}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{36311654-97EE-4153-951B-EDA9C86827CA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{364E1087-ABEA-4E45-994B-2650BF46F592}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{36E34068-8530-4F2B-B6F2-428718F696F8}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{36FAEB4C-0CC1-4378-BC4F-B9FBC668B62A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{370E1C07-ED80-4C2A-9F9F-DB7299C66143}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{3791A9F9-0577-4116-9500-7E9DF6A1DD52}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{37BBF2F2-D740-4CC3-AFDA-09A945838306}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{3802B337-CA6D-4308-95B1-B8BECE8F1BFA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{391B1FFD-1528-4D7C-9762-7192445D289F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{3BFBE2FB-2D9C-4A26-8910-A75541E0DA45}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{3BFCC56C-A2A0-4DFE-8DE7-048C605B2C55}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{3CFA47AB-5397-4301-B4CE-FDF5092056CF}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{3D41E5ED-C16D-45ED-8912-9F52CDFDBF6C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{3F172AA6-04B3-41E1-A4D6-73F540DDD6A0}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{3F6524C7-654C-4B5F-AEAB-88BE34359375}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{400BBD6E-9FB4-4B82-8976-469F5DA4CCD6}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{40AC312C-97A6-4FD9-BD65-0AD8E501B708}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{40CEC545-2B26-4890-82E0-663A98899BCA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{40F59022-74AC-4962-8B0C-0B70D7616F62}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{41034B64-027F-4DB3-B81F-9C4BADD5C70D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{414DFD75-8933-447D-A89A-F05345B6EFEC}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{41D0D115-A4EC-4981-B856-E651BBF77FC1}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{428FC007-B6B7-4BE0-8DAA-4CE4A5D923C3}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{42DB0BF7-3726-4F32-98C2-43E3C2A0A869}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{430A1416-241D-4A8B-8CAE-79620A43CB81}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{440F1528-6605-442D-BF8D-FEB0B3F3D938}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{44B99E8A-E4E3-4381-98AC-91EEDA6E2CDB}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{4519EFA4-1B87-423C-9DA9-875BE7788097}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{45DBEE4F-F2DD-4825-9D40-2E3508F9E839}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{45EA3649-5228-4C25-AC06-723C72EDA396}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{47A4D031-E041-4D05-9DCC-4E47A27BB367}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{480AAD40-B345-4149-B8E1-1509FB5B7E49}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{48527F60-E442-4B68-9056-41F0E6027F37}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{486025C2-DFC4-4BD5-A21E-09E4476A9497}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{48926250-738C-44E0-A861-D8C460F3503E}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{48A96326-F7C0-48C7-B246-7CDDFEEFC506}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{4947F2E4-3FB9-4908-8622-D9E990053DFB}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{4A0B1DA2-708F-49D4-B2D2-CD0031091A6B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{4A5F2A49-527A-4D58-9D46-7731B530F7A2}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{4C7C1FE6-DDAF-400F-BE3B-CD33C2D100FB}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{4CA6527B-6334-4E9E-8B6E-D08A654558F9}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{4DFC9010-4935-421D-876C-02A60FAABF9E}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{4E6426A0-52B9-4F1F-BAF1-B17F92CE43F6}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{4E6AB401-7BCC-45F3-8E05-ECF748A7D511}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{4E9DAD2C-954A-4440-A8E6-56194EAEDB83}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{4EAEF916-B074-407A-A46E-9B175A28AEC0}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5040EB9E-EB08-48A7-8316-3852898FC291}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{514C6021-8E33-44FB-9F76-7D1232C2F19D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5164A563-6B18-4115-991D-69733A196B9B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{51806F0E-E816-480D-8D64-AAD3B7C4D0D9}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{51C8E990-7CBD-4037-B1E2-A7505BC94386}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{52593E5A-AED2-49AD-BE4B-764F2CE3EDEC}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{529FA160-624F-478E-9E51-167342E69AA5}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{52D06E1F-B20C-4DB1-9692-EBAAC28A77AA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{52F49446-AE51-48C1-B3BD-7B2012892FBB}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5343BB5A-3C0E-4554-A35F-4A33A4BF54FD}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5376B125-6CB8-4A07-9397-C8A57321CD20}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5378D65E-E857-40B9-85F7-BADFCC5F050E}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{54C1BDE7-EB03-47DC-8D8B-32F9FBEA83F1}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{54CB1F1B-A6BA-4CB8-BD9A-172C5DD63F04}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{54E7D6EE-D3AE-4F7D-8F9E-C9A945DAB67D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5560C6F0-5169-40C7-8339-6B5765A97DD3}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{556A0CB5-AA41-4EA3-8F43-14CDF0A7B41F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{55C9319F-B265-44CA-841B-B68AA7C08C90}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{56AB18AA-ED7B-4BD0-9D55-644788AAA75B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{56EC27F0-892E-4466-B00B-8754EB4AE320}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5993F2AD-7142-435C-8CB4-753904FD721F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5ADDCEBE-11DD-4A8E-9A1C-C73B7C4FEC59}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5B0DAC06-64B8-4239-AC88-61308C2616F0}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5BB28625-C436-452C-8109-E5ABA3F1F1D0}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5BB8FC0E-3D4F-4A1E-8054-7284DC3A3124}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5BBB6CA6-EE07-45B7-852F-5BCDCCAA860D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5C5ECD08-BE3E-484F-8551-4C15D5231D49}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5C7EAC12-FCA5-4D29-AC51-7994D31E0E18}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5CFC1C31-84BE-40CF-BA0D-F33A2E7CB151}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5D9D41D1-2070-4077-9C3F-85D0890A6704}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5DCE051F-2AB8-4461-AF7F-3650C09DEFEA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5F202CFD-34CA-448A-A8D1-109B13089E60}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5FBF9216-1F5E-4412-B2C2-0C3FB7365679}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5FC7772C-556E-430A-9537-130E5061A157}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{5FDAFB6B-3B46-4B6A-A9E3-539FFF8C1471}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{600D3BC6-CD54-4EA0-AC93-53A8394C4499}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{60C373E3-180A-40AB-9CE1-2BFF08BD99EE}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6167E70E-4D4A-4E18-A63D-838C96B4B8A1}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{62A6052F-9921-49BE-B20E-A6CC9F24E302}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{62C1C30F-E049-45C3-B888-7BF84DA48C0B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{63AC2E1A-674C-46FA-80B3-7EB9F93B184A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{64353C1B-731F-4C84-935A-875C51740263}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6447995B-4ACD-4099-BE78-796C9B12D8E6}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{64C7A308-1F83-404E-9E14-3906B4E8FFC2}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{64D6F2EA-CE28-4B72-9E28-3392AD904476}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{650DEFE8-8FB7-47FD-B2F4-D1AA72190E38}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{656C25CC-7B5A-4B54-8E32-E5B8FE373F5C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6574A4FA-52DF-4B96-B833-3EB4C7259F42}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6585A1CE-A7E6-45B6-A72E-185FBF4B6CF4}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{66051766-F87B-4B40-BC4B-43AEC8895B13}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6667E109-0B49-40A8-BA6E-06F9093A5BBB}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6683AC57-F732-4428-B515-293D8A543276}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6736A704-A321-40D2-804E-7875D7252DDB}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{67F4DC48-C56D-43CD-BA14-3713BC59E48A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6894AD41-92B8-4704-AEE0-8C4CEDB1E0A3}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{69B7E9AB-EC7C-45C1-BDF7-15B3565A247A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{69CC1AEA-D115-4867-BDDE-C44D4E0EC434}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6AA1E766-8A6A-4660-898B-8F9BFFDD9856}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6AC50250-377A-4909-960A-D3C39F88EFB3}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6BE6C2EE-6F45-40A6-81BA-49FBCC1D09B5}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6C3442A6-636E-4B72-A2E9-26A87F07C5F6}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6D1CE2A0-1311-444C-A3B9-CC1710158147}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6D58639D-1B67-43B9-BE89-2F529C91857C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6DE22936-4FA2-4234-873B-447B6648D75A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6EE0B319-5B9F-4F37-99B1-C9E4EEE0B2FA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6EE7267E-69F9-4855-B63D-318CD8215856}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6F798265-1615-4803-8CEC-F3D1F465BECD}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{6F8E4805-EAB2-4FA9-973F-3DA77F40A2B9}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{70664AC3-FAAF-4633-83BB-D9F2606C0FE0}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{71A71F60-7E3B-4EB0-94E7-57A01BF56FCF}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{71C2836A-08EC-4A2C-9A2F-9F07F3971B8B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{720083CB-9418-4CB6-A25B-97FA14CA886D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{726584A4-E8E1-42B2-A4FA-6F4972946549}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{7281A65A-F526-4339-8133-AB4AA96CC286}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{72CC80FD-9851-4198-8B90-A4E210C02FEE}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{72F957A3-B9DD-42B6-853B-0CE048EA321B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{73BC27E7-F6D7-4566-9383-B5BAF96E425E}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{74618FB2-BDD0-4F3D-9713-C0EF08280614}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{7517EC68-DA00-47CB-844C-13AEEA2AC48F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{75ADF32A-C9A3-4658-8B62-29D1015ACD83}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{770508EC-D38D-4A46-A4CA-0AD1943B39F4}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{7797B556-E76B-4C33-82A1-E3B1B6CC83B4}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{7864C21A-CA48-4F81-A49B-730AFC3BF4D2}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{7886B758-121F-46F3-BB6F-3A44A7B883EA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{797D467F-A83E-490B-9130-04502ADA9ED7}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{79F41EB9-A3C8-4182-9615-2D4DF5163576}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{7A03B5DC-7F82-4FC8-A835-71C5AE1C6F91}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{7A1D9E66-2C1C-4DB7-A1C3-E597E729D4E3}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{7A6B55ED-362E-4617-A33D-A9D647003EC9}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{7A7B56AB-B086-4988-AF18-EF6B666AC3F4}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{7A7F4E92-3D48-48A5-90FA-C2B246FEDF81}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{7A985F9E-4F3E-471E-880C-8FEDC3CB1415}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{7AA972D3-D4A6-4329-8A2B-9A42C7AEA585}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{7AB0B890-87D5-425E-8C7B-A6274FC59122}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{7B376142-5801-4F12-BDCC-E5F0C9D99D7F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{7CE70E6B-8244-4C94-9B94-E63B9C7E0333}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{7D171EC0-DC62-429F-B191-0F988A6FBC0B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{7EDB7925-DD0B-4C46-AAA1-BDBC09C74870}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{7F31822E-A0C1-4F8D-8674-F3A951DA057C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{816CE95D-2952-4622-8978-0840FDD5FFB9}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{81ACDBD0-FDBB-417B-A881-A187DA54DDF1}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{823F7ED1-3577-4428-9143-29B70316611B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{8243F30B-F835-4BB9-AF99-7E1D3BBDC7CA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{8250E65D-6E34-4E67-A58B-CC66FFA79C9A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{8292E4E8-CBA7-4989-A760-B6E57C7A4C4C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{831888EC-115A-402D-BA6E-36AF8728C6AF}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{83C417B6-C1B2-43CB-9B1C-C1A922A38EC7}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{83C89B82-C607-4844-A52B-5B7371DC1A4C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{84065CF1-8A7A-4711-8177-33771190563D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{8416F6ED-8446-44F4-81E3-92B27401DD15}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{84A95C69-8465-429A-97B7-D04FA0F3251A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{84B10FF4-1205-4EAD-9A49-57947897EBC0}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{84F04249-9AB3-4F43-A910-AE34FAF8E101}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{85093BB9-2155-4874-8092-D23A72432095}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{857F3DD0-94F4-4AA4-82CD-68FA1D09BEEF}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{859D5990-DD2B-41A7-A322-52615D8BD32A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{85BFD8CE-ACC8-420C-83EC-3DC3A9DB1B5C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{876EE0D4-1448-49E8-ACF8-EB98411FE4B9}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{87F6B29B-150F-4B0B-A295-37905F185E6A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{8885D5A3-F3A2-4B5F-B8D8-C04D07819F28}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{88A0B86D-CD62-42FE-935B-7CDAD6699AC0}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{890C7D5A-6039-42DA-BB38-8F2BC0EB94FA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{899B2914-D627-4065-A490-78C22B09FD1F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{89F47486-81A5-4FF2-9006-E9E56A50E301}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{8B3BBB84-8703-4DC7-A84E-09C019A3D416}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{8BC72167-8419-4CFC-9ACD-0AD400BFF050}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{8C2284FB-E918-4C16-BB49-7CA62648DB2C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{8D87FF75-998E-476C-9E81-74D4740E4405}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{8DADBC8D-938D-4910-BD0D-4A96CB63D391}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{8F26FC83-70CF-4F65-9E16-650EC19DED47}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{8F58D4CA-5EAA-4837-9370-51DE5FF9A155}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{8FE1E438-6B86-474D-BDD3-5A5D80BE76BC}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{90E90DA1-E249-49BF-89BE-169859FB375D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{90EAD954-1224-400F-AE76-7C97D2D4063F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{9225B6C6-0DBF-4019-AF76-C79D82837808}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{92384915-205D-4A9C-9583-0E440948D99A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{936D7B37-F971-437E-9981-B1C7BEC0E354}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{93E89ACA-6B59-45C0-97B1-DBCAEB92CACD}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{945E8845-CD2D-46A8-87AA-486EFB2383B3}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{94D26CDA-3440-4570-BBB7-19480A75EF5D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{9514F656-2A5B-4348-9C9C-0F0F843CE553}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{955E4666-CED2-4060-B20D-C2287D320C11}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{95718768-A53D-42BA-AFFB-B19F27C2662C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{95AE06C0-CC3D-4FD3-ACDF-B89687B6B506}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{961B79E5-C3FB-4300-B7DF-C6C1379FCA2A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{97CBF5F0-DE89-4E9A-BA62-56AD8742930B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{983BA68E-FE63-48DF-BD71-E0BB489BC95C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{9A927365-2A83-4974-A14A-E8615B378EB9}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{9A9A86A6-200F-4833-8FFF-9183A498355B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{9ABD47AC-6B59-4CD8-B42C-1C472E67BE62}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{9AE3CF6D-30AF-412B-8FDD-4AF0A980FEE0}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{9B69D2D9-055C-43F0-9DD9-DCB31D5D5C01}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{9CA50116-6E75-433F-9F41-FFFB796E363C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{9CC12116-BB02-43DC-BC5A-443BDD21B99E}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{9CF077D1-A7D0-4A9D-964E-D05079D80F85}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{9D44B1FD-9945-4BAF-B77B-41033CA68CB5}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{9E100DD4-3B0B-4D75-ACF9-5E66DE565800}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{9F94D136-3E30-4587-B12C-10BB7C712A8D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{A0A3E3FA-B6F5-485A-853D-A7B7B66CFA66}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{A1245531-5225-498E-A948-471E3DF40B92}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{A2121C89-A1AB-4072-8000-CE97A7130B4D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{A21595D2-3D63-44A8-9058-BEA81FAD87C7}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{A393DBFD-8B43-4209-974B-2E53E87C19C0}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{A408A07C-8FE7-4734-BD31-5E821047F6E8}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{A5836FC3-E109-437E-A8C3-578D8B9E029A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{A68B9906-1D1C-4CE4-94F4-F87039093EB6}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{A69BEC21-4BFE-4799-83F6-B9C2238E5F7F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{A6D7299F-8B50-43DE-8107-8EDD9EF49B2A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{A745A91D-FE57-423C-A4BD-E4DEADBECEE7}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{A7BB578E-D554-405A-BF05-9CA660294D91}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{A87CA769-05BB-4686-A7B7-31CCAF1B3D1B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{A8E2907F-A484-4841-AE82-C947E0561711}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{A903A786-7F68-4578-BFB5-DAB554E63FC8}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{A992A86A-CA64-4C5E-B70C-B91D8C34E8B5}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{A9F203EC-2111-4383-AE8D-4A21FD8BD725}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{AAF3AA95-BC7F-4042-ACE3-423E5CF70EBE}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{ABC940B2-D845-4B41-BCA3-4E76CF54F38C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{ABED336B-3EEA-442E-99F7-01A1FAC70089}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{AC14A387-C13D-4AC7-BE58-4FFC2C2BACC1}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{ACE16A85-5A42-4796-99E9-F4EB851C0DCA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{AD46B0BE-8FEA-4B6A-B9F6-D0C195C2BE00}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{ADB2F992-7137-4E5A-8CA4-2DAB36BB2D08}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{AE11C8BA-B61A-4098-86EF-825DEDBEBC0F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{AEF82DB0-C892-493F-AEAB-FC258334EE83}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{AF3714DF-ADBF-4EEB-AF2E-4264EDC0E329}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{AF75E6E4-2764-41D3-8E49-AEA382BEB4BA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{AFB5F644-72E5-414E-AD0F-9376D84C0E97}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{AFDCFACB-F866-4CA4-822D-78F3D008B1A7}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{B02DED9A-337A-4348-A9DE-152716E27037}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{B1802375-CE88-467C-B5B9-6FA4768857BD}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{B25E878F-0C90-4935-9283-C51ABFF2769B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{B26522BF-86AE-4D5A-99D8-F2480F932D55}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{B2869181-73A9-4EEA-BBBB-40FC4D597D19}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{B2F2DC9B-776A-44DB-B814-3212280CF80E}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{B36EB658-FDBF-4ED7-B0EB-640CBB841796}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{B40DA551-5C49-49AA-835E-8D271BFBACC0}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{B58D78E9-2DEC-4BDE-8B4E-FB4CD757E678}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{B5A7EC31-A8C2-43D7-9993-9224C08E0415}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{B5A81551-388C-417F-8B5F-597920B2A006}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{B5F5DB62-929E-4967-9FAD-6EE07B29FE4A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{B8551C0C-0BFF-4C00-BE26-4A283992B598}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{B913198B-E86E-4A98-94A5-897FCD926AAA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{B913799A-552D-49BF-A188-BC80FA34863E}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{BA7AAAE0-09AD-4B0E-9B60-E6C0D6A2FF8A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{BABA2A22-AB0F-4BB5-BBED-8B9FA03A51EE}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{BB7564D3-328A-4C3B-8708-571ABAFEE006}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{BBF74A31-1DF3-44AE-9E3C-765A51EC098C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{BCCB6734-9E12-4E57-9AE2-976743B7FBD1}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{BD6111C7-F72E-4B43-B2A1-D6DF4371E3E4}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{BD68019C-24A5-4684-8C15-6B229B22289C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{BE901121-38FD-4BD5-91A9-9F13401D7F6F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{BEE58AC5-3E4D-4E8C-81CE-D12D5476FF2C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{BEE6219F-3E7E-4FF6-9320-5699425CEF8D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{BF04BBA7-BCC4-42BE-B692-777291B31A4D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{BF31FE87-2501-487B-AD14-3C7BDF9B70A7}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{C016F930-13A8-47A9-B850-97ABC487153A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{C126F0A7-120F-4D7C-B545-C982F8CE86B2}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{C1FDDE16-6AA0-4929-BC33-BCD7B487F8BA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{C28C4198-F36E-4261-8D13-D4C8EE3C1C79}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{C3110ED9-E0E2-4C23-BA79-874C9323A295}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{C32E61EF-788F-4D6B-ACB7-56A19ABAB0BB}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{C4595D29-86AF-4268-A9FD-F69D01EB23A8}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{C474DF25-DDF6-49C7-9841-2C08B9C4FE10}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{C4CD8536-A5EB-4234-86F1-1AA6B33711C3}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{C5071AA2-1FE1-4040-9E82-2F02102DD10B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{C6D1FE8E-82F0-46CE-888D-0925A8BAFF8A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{C7E5CD01-2B18-475C-8575-6793F5044760}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{C81822B2-999C-437E-8268-FDAFAD19CA40}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{C87DD92C-DAEF-4294-97C8-E18AB0CA9AEE}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{C950439D-8E47-404B-BEC2-4F06FD47450B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CAE142E0-B7FD-44BA-B257-D2C3448851E3}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CAFC8A0C-85C9-4442-939A-CAA62EC1EBB5}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CB867011-E695-48D6-A8BD-4EB0116A5F21}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CBC3AEFF-A706-4F3A-A81E-3C0DACC80CC7}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CC5BB1B8-A76F-4460-B591-2E7A5DD9DAA2}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CD62A1DB-4174-47BC-844E-D04530CC5ACE}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CD6BD719-8E82-4143-B36E-3F175E55FE21}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CDA591C6-8ACD-4286-B299-1175A10378CA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CDE4572C-766A-4F4A-963C-2F15E5592973}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CE0FD549-DCA2-47BA-9D8D-5D5CBE262EAB}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CE2475E1-64B5-451F-B03F-D225BBF7612A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CE46F171-6610-4C9F-9B57-54E954AA07FA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CEAB9145-E685-42F2-9E5B-B7F54A7CFD8C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CEFC7AFC-8C75-48E8-B115-3796AAB67832}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CF0E42F1-6199-48F5-8E93-62DEEDF03C2F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CF39CFC2-DA69-4420-994E-441AE14F177F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CF423175-8517-4057-879A-318034AA384F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CF45AF1E-4C66-4995-89D7-F289F71AAC9C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CF939216-FCFB-4901-8890-2AC095BE8F83}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{CFC35F7E-2452-40CB-8D54-FA1702BCC811}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D07D97E6-1954-4919-97DE-035A65B2908B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D07E84F1-D21E-410F-A2EF-CE5CD7A998E9}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D11021EB-47C7-4E55-BF56-5B3EFAF218ED}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D23A3611-8074-477F-AF3A-8AC7F4B74E6D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D2F2B0F3-D9CE-48A0-9648-EB3C3B684590}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D319AEAC-6141-4BD4-B01B-7F842D720B82}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D38902EA-A3F6-4EAD-8F5C-6941DB2C6095}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D3E05B33-B05F-4E82-8F4A-81FE23F395BB}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D41144A8-59C3-49ED-9000-6CFC2E450398}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D4385A80-C836-47FE-B872-4405E67AAC5E}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D444DDCA-FBFB-4646-99BA-5A8F89C598CF}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D46E94DB-50BD-458D-B3B8-37DC8808B272}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D4BF98BD-ACC8-4942-91E2-6A3A16C051B5}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D5730393-566C-4EED-9D34-FCC5AB659B80}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D5F3C55C-98A0-43A1-8A7F-BAF3C8198C56}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D60A6F63-83B5-47B6-A4F8-FA56D0CFD9C0}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D623EC0C-4EAA-4917-82B6-52D29E804A2A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D659A8E8-FBFF-4069-B94A-77C08772CD2C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D667FAF4-5610-40D8-ADF3-22CF0F13D12A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D6981E7E-7569-4B6D-A72A-48CD1BDB9964}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D7045BEA-C3AD-4D46-A35F-F6FCCAF3C95C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D8F867C4-6A30-463A-AF15-8C974E173F35}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D9398BC2-E53E-4F74-AFD7-68B9F3498D67}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{D9580ED5-D637-487F-B10B-B8E0A32A63AA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{DB9B2EFB-DBD9-457B-AB01-44CC55275A98}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{DD2552B7-5EB1-4B97-847D-23D6F9D711EB}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{DD5FDFD9-1D21-4458-9700-40A65AF31FB4}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{DDACE89F-14FD-42EB-8560-808F2FEBA142}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{DFB23D1D-3AD8-4D10-A6F5-8E73E0644823}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{DFFEF3F3-3584-458E-ABC9-D850AEEDBC20}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{E0776926-9447-48FE-A106-93CE97347F7C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{E0966485-5073-4EEF-9B70-A1BB5C3BE517}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{E18DC045-BC31-4EA2-AED0-726577EE787A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{E1D56030-AB5F-4A3D-805C-7FB3BE3BC510}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{E363B28C-02EA-4916-AE7E-52D80811D4C9}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{E46D3C1E-83FD-4F87-817C-AFA7C71D6760}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{E4EFF73F-31F8-4DAA-8FDE-D08B8BF7BCC9}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{E55CFC07-273B-4A5B-8D2F-31EEA73CB5F8}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{E6AC5E8F-14C5-4CFA-8605-B705D8B90402}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{E6F5B12E-C1E8-423A-A111-894DD8BAE012}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{E7019A7A-8A07-461A-AA08-2D777617A741}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{E7186149-2871-4657-BAD1-0D789C35631B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{E81B1CC7-0B14-4D4E-96AB-6F10C1A522C5}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{E8B996DF-A107-4684-B6E4-791F2A2BB821}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{E9796C72-255E-4FD2-B80C-DF9F95109B9D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{EA109579-3DFC-4848-860F-490FED3F2844}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{EA25B8DB-824E-4823-882A-54C606B0ACC2}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{EA827CE8-B054-4057-8EF1-50A81F14C21A}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{EB46CCEB-DC09-4213-B3F9-63F781FBCC8F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{EBA4658F-AD94-4B21-801C-12AAA045BE0F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{EBCAFF12-6623-42D3-AAEB-5DED751B5411}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{ECEDCF89-0524-4F13-9232-16D22D668A7D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{ED78A608-EEE0-4ED6-A337-E8A6E1DC9593}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{EE1C6BD5-4C16-46D9-8F32-97996754D88E}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{EF025C5B-0A4A-4305-9022-D0224C03852B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{EF189D09-FEA4-4C66-B1C8-1512DC3811CB}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{EF85844B-AE1B-4E10-A934-F70CFE1DEECB}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F19CE171-9B4E-498C-8A4F-AF42306205D6}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F3C77B00-CCC5-44AC-AB79-23F159E2DAB0}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F4BBAB64-7B96-4AAC-B318-161A9D9DED47}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F4F88913-49AF-40FE-B454-6139CD7BEF17}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F4FFDEFC-F0CA-42C2-9BA4-D9FAAFD4D11B}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F53717E3-98DE-4C53-A9CD-45268430552F}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F635D306-CA2C-4D10-8D1B-8D6CF914776D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F64B8C44-6EDF-4851-B6EB-11BC1B97CC91}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F66F1A80-57F5-47C3-BF3D-BDFDDFF8E441}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F6BE8B6F-7F12-457C-96A2-E76A9A47C420}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F6DD02FD-9E8E-44AB-90D6-3D3CC4D8035C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F6E7F533-9085-4623-8A3E-CCFC0526AF34}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F6EDAC77-9684-44CC-BE40-03F297A3C1BE}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F723B3BD-FECD-406A-B6C1-4051EE634078}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F7392C5E-7AFC-46E8-A5A6-2A623C24523C}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F7FD3AE7-4995-4411-BCE8-1F81A04F15EA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F8A32E6E-3FBE-49C1-AFB6-37EE3C3D56B4}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F9B88207-020B-4CF4-9FFA-B5E262AEB5B8}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{F9E769D2-9BE8-4AAE-9F80-34C4427BA4EA}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{FA2B89BC-B08E-41B5-8527-510778C4FCB2}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{FAACAF28-5350-4A2A-BAD5-B11C34F8C2FF}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{FCB8063E-2601-4615-9806-8895CEB3B43D}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{FD6A8553-99C8-4E9A-90A1-E4DC28D69E75}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{FDDBD22E-50F2-4396-8A65-EA526A1106BD}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{FE77B0DD-C539-4349-8E3E-E7F6B8093152}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{FEBD286B-6DF1-48E6-816F-1CBC410DD7E3}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{FEFB1D5E-66FB-4044-B620-0E6F6DD34568}
Successfully deleted: [Empty Folder] C:\Users\John\appdata\local\{FFE27392-49ED-4886-A86F-9D9909270C3C}
 
 
 
~~~ Chrome
 
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Google\Chrome\Extensions\dknkjnkhedbanphkkpbpcgoblmkbfhlf
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\dknkjnkhedbanphkkpbpcgoblmkbfhlf
 
 
 
~~~ Event Viewer Logs were cleared
 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 25/12/2013 at 20:40:06.56
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
 
Database version: v2013.12.23.07
 
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.16476
John :: JOHN-PC [administrator]
 
27/12/2013 09:56:20
mbam-log-2013-12-27 (09-56-20).txt
 
Scan type: Full scan (C:\|D:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 502846
Time elapsed: 2 hour(s), 33 minute(s), 44 second(s)
 
Memory Processes Detected: 0
(No malicious items detected)
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 0
(No malicious items detected)
 
Registry Values Detected: 0
(No malicious items detected)
 
Registry Data Items Detected: 0
(No malicious items detected)
 
Folders Detected: 0
(No malicious items detected)
 
Files Detected: 0
(No malicious items detected)
 
(end)
 
Link to post
Share on other sites

Please scan your machine with ESET OnlineScan

  • Hold down Control and click on the following link to open ESET OnlineScan in a new window.

    ESET OnlineScan

  • Click the esetonlinebtn.png button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer.

      Save it to your Desktop.

    • Double click on the esetsmartinstaller_enu.png to download the ESET Smart Installer. icon on your Desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under Scan Settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.
Link to post
Share on other sites

Hi

 

Eset scan follows

Many thanks

John

 

 

C:\Users\John\Downloads\ccsetup328.exe Win32/Bundled.Toolbar.Google.D application cleaned by deleting - quarantined
C:\Users\John\Downloads\cnet2_DDM_Setup_v1_3_exe.exe a variant of Win32/InstallCore.D application cleaned by deleting - quarantined
Link to post
Share on other sites

Note: Please do not run this tool without special supervision and instructions of someone authorized to do so. Otherwise, you could end up with serious problems. For more details, read this article: ComboFix usage, Questions, Help? - Look here

Please visit this webpage and read the ComboFix User's Guide:

  • Once you've read the article and are ready to use the program you can download it directly from the link below.
  • Important! - Please make sure you save combofix to your desktop and do not run it from your browser
  • Direct download link for: ComboFix.exe
  • Please make sure you disable your security applications before running ComboFix.
  • Once Combofix has completed it will produce and open a log file. Please be patient as it can take some time to load.
  • Please copy/paste the contents or attach that log file to your next reply.
  • If needed the file can be located here: C:\combofix.txt
  • NOTE: If you receive the message "illegal operation has been attempted on a registry key that has been marked for deletion", just reboot the computer.
Link to post
Share on other sites

Hi, 

Combofix log follows.

Thanks John

 

ComboFix 13-12-29.01 - John 30/12/2013  17:20:00.2.4 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.44.1033.18.6058.4087 [GMT 0:00]
Running from: c:\users\John\Desktop\ComboFix.exe
AV: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {ADA629C7-7F48-5689-624A-3B76997E0892}
FW: McAfee Firewall *Disabled* {959DA8E2-3527-57D1-4915-924367AD4FE9}
SP: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {16C7C823-5972-5907-58FA-0004E2F9422F}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 * Created a new restore point
.
.
(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\msvcr71.dll
.
.
(((((((((((((((((((((((((   Files Created from 2013-11-28 to 2013-12-30  )))))))))))))))))))))))))))))))
.
.
2013-12-30 17:32 . 2013-12-30 17:32 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-12-30 17:32 . 2013-12-30 17:32 -------- d-----w- c:\users\Public\AppData\Local\temp
2013-12-30 17:32 . 2013-12-30 17:32 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-12-27 15:48 . 2013-12-27 15:48 -------- d-----w- c:\program files (x86)\ESET
2013-12-25 20:43 . 2013-12-25 20:43 -------- d-----w- C:\AdwCleaner
2013-12-25 20:31 . 2013-12-25 20:31 -------- d-----w- c:\windows\ERUNT
2013-12-23 19:32 . 2013-12-23 19:32 4558848 ----a-w- c:\windows\SysWow64\GPhotos.scr
2013-12-11 11:08 . 2013-05-10 04:30 167424 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
2013-12-11 11:08 . 2013-05-10 03:48 164864 ----a-w- c:\program files (x86)\Windows Media Player\wmplayer.exe
2013-12-11 11:08 . 2013-05-10 05:56 12625920 ----a-w- c:\windows\system32\wmploc.DLL
2013-12-11 11:08 . 2013-05-10 04:56 12625408 ----a-w- c:\windows\SysWow64\wmploc.DLL
2013-12-11 11:08 . 2013-05-10 05:56 14631424 ----a-w- c:\windows\system32\wmp.dll
2013-12-11 11:06 . 2013-11-26 08:02 1995264 ----a-w- c:\windows\system32\inetcpl.cpl
2013-12-11 11:06 . 2013-11-26 07:32 1928192 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2013-12-11 11:06 . 2013-11-26 07:48 12996608 ----a-w- c:\windows\system32\ieframe.dll
2013-12-11 11:06 . 2013-11-26 08:16 4243968 ----a-w- c:\windows\SysWow64\jscript9.dll
2013-12-11 11:06 . 2013-11-26 08:35 5769216 ----a-w- c:\windows\system32\jscript9.dll
2013-12-11 10:57 . 2013-11-12 02:23 2048 ----a-w- c:\windows\system32\tzres.dll
2013-12-11 10:57 . 2013-11-12 02:07 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2013-12-11 10:55 . 2013-10-30 02:32 335360 ----a-w- c:\windows\system32\msieftp.dll
2013-12-11 10:55 . 2013-10-30 02:19 301568 ----a-w- c:\windows\SysWow64\msieftp.dll
2013-12-11 10:55 . 2013-10-30 01:24 3155968 ----a-w- c:\windows\system32\win32k.sys
2013-12-11 10:55 . 2013-11-23 18:26 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll
2013-12-11 10:55 . 2013-11-23 17:47 465920 ----a-w- c:\windows\system32\WMPhoto.dll
2013-12-11 10:55 . 2013-10-19 02:18 81408 ----a-w- c:\windows\system32\imagehlp.dll
2013-12-11 10:55 . 2013-10-19 01:36 159232 ----a-w- c:\windows\SysWow64\imagehlp.dll
2013-12-11 10:49 . 2013-10-04 01:36 230400 ----a-w- c:\windows\system32\drivers\portcls.sys
2013-12-11 10:49 . 2013-10-04 02:16 116736 ----a-w- c:\windows\system32\drivers\drmk.sys
2013-12-11 10:49 . 2013-10-12 02:32 150016 ----a-w- c:\windows\system32\wshom.ocx
2013-12-11 10:49 . 2013-10-12 02:04 121856 ----a-w- c:\windows\SysWow64\wshom.ocx
2013-12-11 10:48 . 2013-10-12 01:33 156160 ----a-w- c:\windows\system32\cscript.exe
2013-12-11 10:48 . 2013-10-12 02:31 202752 ----a-w- c:\windows\system32\scrrun.dll
2013-12-11 10:48 . 2013-10-12 01:15 141824 ----a-w- c:\windows\SysWow64\wscript.exe
2013-12-11 10:48 . 2013-10-12 01:33 168960 ----a-w- c:\windows\system32\wscript.exe
2013-12-11 10:48 . 2013-10-12 02:03 163840 ----a-w- c:\windows\SysWow64\scrrun.dll
2013-12-11 10:48 . 2013-10-12 01:15 126976 ----a-w- c:\windows\SysWow64\cscript.exe
2013-12-01 17:21 . 2013-12-01 17:21 -------- d-----w- c:\program files (x86)\Microsoft Analysis Services
.
.
.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-12-15 12:57 . 2011-11-25 12:40 90708896 ----a-w- c:\windows\system32\MRT.exe
2013-11-26 22:07 . 2013-11-26 22:07 10856 ----a-w- c:\windows\system32\drivers\mfeclnrk.sys
2013-11-26 22:07 . 2013-11-26 22:07 96112 ----a-w- c:\windows\system32\drivers\mfencrk.sys
2013-11-26 22:07 . 2013-11-26 22:07 411944 ----a-w- c:\windows\system32\drivers\mfencbdc.sys
2013-11-12 16:33 . 2013-11-12 16:33 940032 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2013-11-12 16:33 . 2013-11-12 16:33 194048 ----a-w- c:\windows\SysWow64\elshyph.dll
2013-11-12 16:32 . 2013-11-12 16:32 942592 ----a-w- c:\windows\system32\jsIntl.dll
2013-11-12 16:32 . 2013-11-12 16:32 90112 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2013-11-12 16:32 . 2013-11-12 16:32 86016 ----a-w- c:\windows\SysWow64\iesysprep.dll
2013-11-12 16:32 . 2013-11-12 16:32 86016 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2013-11-12 16:32 . 2013-11-12 16:32 84992 ----a-w- c:\windows\system32\mshtmled.dll
2013-11-12 16:32 . 2013-11-12 16:32 83968 ----a-w- c:\windows\system32\MshtmlDac.dll
2013-11-12 16:32 . 2013-11-12 16:32 81408 ----a-w- c:\windows\system32\icardie.dll
2013-11-12 16:32 . 2013-11-12 16:32 774144 ----a-w- c:\windows\system32\jscript.dll
2013-11-12 16:32 . 2013-11-12 16:32 77312 ----a-w- c:\windows\system32\tdc.ocx
2013-11-12 16:32 . 2013-11-12 16:32 74240 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2013-11-12 16:32 . 2013-11-12 16:32 71680 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2013-11-12 16:32 . 2013-11-12 16:32 645120 ----a-w- c:\windows\SysWow64\jsIntl.dll
2013-11-12 16:32 . 2013-11-12 16:32 626176 ----a-w- c:\windows\system32\msfeeds.dll
2013-11-12 16:32 . 2013-11-12 16:32 62464 ----a-w- c:\windows\SysWow64\tdc.ocx
2013-11-12 16:32 . 2013-11-12 16:32 62464 ----a-w- c:\windows\system32\pngfilt.dll
2013-11-12 16:32 . 2013-11-12 16:32 61952 ----a-w- c:\windows\SysWow64\MshtmlDac.dll
2013-11-12 16:32 . 2013-11-12 16:32 61952 ----a-w- c:\windows\SysWow64\iesetup.dll
2013-11-12 16:32 . 2013-11-12 16:32 616104 ----a-w- c:\windows\system32\ieapfltr.dat
2013-11-12 16:32 . 2013-11-12 16:32 548352 ----a-w- c:\windows\system32\vbscript.dll
2013-11-12 16:32 . 2013-11-12 16:32 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2013-11-12 16:32 . 2013-11-12 16:32 51200 ----a-w- c:\windows\SysWow64\ieetwproxystub.dll
2013-11-12 16:32 . 2013-11-12 16:32 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2013-11-12 16:32 . 2013-11-12 16:32 48640 ----a-w- c:\windows\system32\mshtmler.dll
2013-11-12 16:32 . 2013-11-12 16:32 48128 ----a-w- c:\windows\system32\imgutil.dll
2013-11-12 16:32 . 2013-11-12 16:32 454656 ----a-w- c:\windows\SysWow64\vbscript.dll
2013-11-12 16:32 . 2013-11-12 16:32 453120 ----a-w- c:\windows\system32\dxtmsft.dll
2013-11-12 16:32 . 2013-11-12 16:32 413696 ----a-w- c:\windows\system32\html.iec
2013-11-12 16:32 . 2013-11-12 16:32 40448 ----a-w- c:\windows\system32\JavaScriptCollectionAgent.dll
2013-11-12 16:32 . 2013-11-12 16:32 36352 ----a-w- c:\windows\SysWow64\imgutil.dll
2013-11-12 16:32 . 2013-11-12 16:32 34816 ----a-w- c:\windows\SysWow64\JavaScriptCollectionAgent.dll
2013-11-12 16:32 . 2013-11-12 16:32 337408 ----a-w- c:\windows\SysWow64\html.iec
2013-11-12 16:32 . 2013-11-12 16:32 30208 ----a-w- c:\windows\system32\licmgr10.dll
2013-11-12 16:32 . 2013-11-12 16:32 296960 ----a-w- c:\windows\system32\dxtrans.dll
2013-11-12 16:32 . 2013-11-12 16:32 263376 ----a-w- c:\windows\system32\iedkcs32.dll
2013-11-12 16:32 . 2013-11-12 16:32 247808 ----a-w- c:\windows\system32\msls31.dll
2013-11-12 16:32 . 2013-11-12 16:32 24576 ----a-w- c:\windows\SysWow64\licmgr10.dll
2013-11-12 16:32 . 2013-11-12 16:32 243200 ----a-w- c:\windows\system32\webcheck.dll
2013-11-12 16:32 . 2013-11-12 16:32 235520 ----a-w- c:\windows\system32\url.dll
2013-11-12 16:32 . 2013-11-12 16:32 235008 ----a-w- c:\windows\system32\elshyph.dll
2013-11-12 16:32 . 2013-11-12 16:32 195584 ----a-w- c:\windows\system32\msrating.dll
2013-11-12 16:32 . 2013-11-12 16:32 182272 ----a-w- c:\windows\SysWow64\msls31.dll
2013-11-12 16:32 . 2013-11-12 16:32 167424 ----a-w- c:\windows\system32\iexpress.exe
2013-11-12 16:32 . 2013-11-12 16:32 151552 ----a-w- c:\windows\SysWow64\iexpress.exe
2013-11-12 16:32 . 2013-11-12 16:32 147968 ----a-w- c:\windows\system32\occache.dll
2013-11-12 16:32 . 2013-11-12 16:32 143872 ----a-w- c:\windows\system32\wextract.exe
2013-11-12 16:32 . 2013-11-12 16:32 139264 ----a-w- c:\windows\SysWow64\wextract.exe
2013-11-12 16:32 . 2013-11-12 16:32 13824 ----a-w- c:\windows\system32\mshta.exe
2013-11-12 16:32 . 2013-11-12 16:32 135680 ----a-w- c:\windows\system32\iepeers.dll
2013-11-12 16:32 . 2013-11-12 16:32 13312 ----a-w- c:\windows\SysWow64\mshta.exe
2013-11-12 16:32 . 2013-11-12 16:32 13312 ----a-w- c:\windows\system32\msfeedssync.exe
2013-11-12 16:32 . 2013-11-12 16:32 131072 ----a-w- c:\windows\system32\IEAdvpack.dll
2013-11-12 16:32 . 2013-11-12 16:32 1228800 ----a-w- c:\windows\system32\mshtmlmedia.dll
2013-11-12 16:32 . 2013-11-12 16:32 112128 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2013-11-12 16:32 . 2013-11-12 16:32 111616 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2013-11-12 16:32 . 2013-11-12 16:32 105984 ----a-w- c:\windows\system32\iesysprep.dll
2013-11-12 16:32 . 2013-11-12 16:32 1051136 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll
2013-11-12 16:32 . 2013-11-12 16:32 101376 ----a-w- c:\windows\system32\inseng.dll
2013-11-04 16:51 . 2012-10-23 11:45 70112 ----a-w- c:\windows\system32\drivers\cfwids.sys
2013-11-04 16:46 . 2012-07-17 13:52 343696 ----a-w- c:\windows\system32\drivers\mfewfpk.sys
2013-11-04 16:46 . 2012-10-23 11:24 182752 ----a-w- c:\windows\system32\mfevtps.exe
2013-11-04 16:43 . 2012-07-17 13:50 782360 ----a-w- c:\windows\system32\drivers\mfehidk.sys
2013-11-04 16:41 . 2012-10-23 11:45 519576 ----a-w- c:\windows\system32\drivers\mfefirek.sys
2013-11-04 16:40 . 2012-10-23 11:45 311120 ----a-w- c:\windows\system32\drivers\mfeavfk.sys
2013-11-04 16:39 . 2012-07-17 13:48 179792 ----a-w- c:\windows\system32\drivers\mfeapfk.sys
2013-10-14 18:00 . 2013-11-12 16:35 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE
2013-10-12 02:30 . 2013-11-13 07:59 830464 ----a-w- c:\windows\system32\nshwfp.dll
2013-10-12 02:29 . 2013-11-13 07:59 859648 ----a-w- c:\windows\system32\IKEEXT.DLL
2013-10-12 02:29 . 2013-11-13 07:59 324096 ----a-w- c:\windows\system32\FWPUCLNT.DLL
2013-10-12 02:03 . 2013-11-13 07:59 656896 ----a-w- c:\windows\SysWow64\nshwfp.dll
2013-10-12 02:01 . 2013-11-13 07:59 216576 ----a-w- c:\windows\SysWow64\FWPUCLNT.DLL
2013-10-05 20:25 . 2013-11-13 08:00 1474048 ----a-w- c:\windows\system32\crypt32.dll
2013-10-05 19:57 . 2013-11-13 08:00 1168384 ----a-w- c:\windows\SysWow64\crypt32.dll
2013-10-04 02:28 . 2013-11-13 08:00 190464 ----a-w- c:\windows\system32\SmartcardCredentialProvider.dll
2013-10-04 02:25 . 2013-11-13 08:00 197120 ----a-w- c:\windows\system32\credui.dll
2013-10-04 02:24 . 2013-11-13 08:00 1930752 ----a-w- c:\windows\system32\authui.dll
2013-10-04 01:58 . 2013-11-13 08:00 152576 ----a-w- c:\windows\SysWow64\SmartcardCredentialProvider.dll
2013-10-04 01:56 . 2013-11-13 08:00 168960 ----a-w- c:\windows\SysWow64\credui.dll
2013-10-04 01:56 . 2013-11-13 08:00 1796096 ----a-w- c:\windows\SysWow64\authui.dll
2013-10-03 02:23 . 2013-11-13 07:59 404480 ----a-w- c:\windows\system32\gdi32.dll
2013-10-03 02:00 . 2013-11-13 07:59 311808 ----a-w- c:\windows\SysWow64\gdi32.dll
.
.
(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown 
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2012-07-20 14:09 220624 ----a-w- c:\users\John\AppData\Local\Microsoft\SkyDrive\16.4.6006.0718\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2012-07-20 14:09 220624 ----a-w- c:\users\John\AppData\Local\Microsoft\SkyDrive\16.4.6006.0718\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2012-07-20 14:09 220624 ----a-w- c:\users\John\AppData\Local\Microsoft\SkyDrive\16.4.6006.0718\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 130736 ----a-w- c:\users\John\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 130736 ----a-w- c:\users\John\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 130736 ----a-w- c:\users\John\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 130736 ----a-w- c:\users\John\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]
"GoogleChromeAutoLaunch_DC7C249942899F83C1747FF3FB5BD5F3"="c:\users\John\AppData\Local\Google\Chrome\Application\chrome.exe" [2013-12-04 863184]
"MusicManager"="c:\users\John\AppData\Local\Programs\Google\MusicManager\MusicManager.exe" [2013-11-12 7380992]
"Google+ Auto Backup"="c:\users\John\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe" [2013-12-23 3622864]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"mcui_exe"="c:\program files\McAfee.com\Agent\mcagent.exe" [2013-09-24 537512]
"F-Secure Hoster (47188)"="c:\program files (x86)\BT Cloud\fshoster32.exe" [2013-04-02 191424]
"mcpltui_exe"="c:\program files\McAfee.com\Agent\mcagent.exe" [2013-09-24 537512]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2013-05-01 421888]
"YouCam Mirage"="c:\program files (x86)\CyberLink\YouCam\YCMMirage.exe" [2013-06-07 136488]
"YouCam Tray"="c:\program files (x86)\CyberLink\YouCam\YouCam.exe" [2013-06-07 234456]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"Backblaze"="c:\program files (x86)\Backblaze\bzbui.exe" [2013-12-21 495208]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
CrashPlan Tray.lnk - c:\program files\CrashPlan\CrashPlanTray.exe [2013-4-8 209920]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]
@=""
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SamsungDeviceConfigurationWinService;SamsungDeviceConfiguration;c:\program files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe;c:\program files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 AMPPAL;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Virtual Adapter;c:\windows\system32\DRIVERS\AMPPAL.sys;c:\windows\SYSNATIVE\DRIVERS\AMPPAL.sys [x]
R3 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [x]
R3 HipShieldK;McAfee Inc. HipShieldK;c:\windows\system32\drivers\HipShieldK.sys;c:\windows\SYSNATIVE\drivers\HipShieldK.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 MADFULEGACYKEYBOARD;Service for M-Audio Legacy Keyboard DFU;c:\windows\system32\DRIVERS\MAudioLegacyKeyboard_DFU.sys;c:\windows\SYSNATIVE\DRIVERS\MAudioLegacyKeyboard_DFU.sys [x]
R3 MAUSBLEGACYKEYBOARD;Service for M-Audio Legacy Keyboard;c:\windows\system32\DRIVERS\MAudioLegacyKeyboard.sys;c:\windows\SYSNATIVE\DRIVERS\MAudioLegacyKeyboard.sys [x]
R3 mfencrk;McAfee Inc. mfencrk;c:\windows\system32\DRIVERS\mfencrk.sys;c:\windows\SYSNATIVE\DRIVERS\mfencrk.sys [x]
R3 PSSDK42;PSSDK42;c:\windows\system32\Drivers\pssdk42.sys;c:\windows\SYSNATIVE\Drivers\pssdk42.sys [x]
R3 PSSDKLBF;PSSDKLBF;c:\windows\system32\Drivers\pssdklbf.sys;c:\windows\SYSNATIVE\Drivers\pssdklbf.sys [x]
R3 Samsung UPD Service2;Samsung UPD Service2;c:\windows\System32\SUPDSvc2.exe;c:\windows\SYSNATIVE\SUPDSvc2.exe [x]
R3 SBIOSIO;SBIOSIO;c:\users\John\AppData\Local\Temp\__Samsung_Update\SBIOSIO64.sys;c:\users\John\AppData\Local\Temp\__Samsung_Update\SBIOSIO64.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\VBoxNetAdp.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxNetAdp.sys [x]
R3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxNetFlt.sys [x]
R3 VBoxUSB;VirtualBox USB;c:\windows\system32\Drivers\VBoxUSB.sys;c:\windows\SYSNATIVE\Drivers\VBoxUSB.sys [x]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam64.sys;c:\windows\SYSNATIVE\DRIVERS\wdcsam64.sys [x]
R3 WSDScan;WSD Scan Support via UMB;c:\windows\system32\DRIVERS\WSDScan.sys;c:\windows\SYSNATIVE\DRIVERS\WSDScan.sys [x]
R3 ysusb64;Yamaha Steinberg USB Audio;c:\windows\system32\drivers\ysusb64.sys;c:\windows\SYSNATIVE\drivers\ysusb64.sys [x]
R4 Bluetooth Device Monitor;Bluetooth Device Monitor;c:\program files (x86)\Intel\Bluetooth\devmonsrv.exe;c:\program files (x86)\Intel\Bluetooth\devmonsrv.exe [x]
R4 Bluetooth Media Service;Bluetooth Media Service;c:\program files (x86)\Intel\Bluetooth\mediasrv.exe;c:\program files (x86)\Intel\Bluetooth\mediasrv.exe [x]
R4 Bluetooth OBEX Service;Bluetooth OBEX Service;c:\program files (x86)\Intel\Bluetooth\obexsrv.exe;c:\program files (x86)\Intel\Bluetooth\obexsrv.exe [x]
R4 hasplms;Sentinel Local License Manager;c:\windows\system32\hasplms.exe  -run;c:\windows\SYSNATIVE\hasplms.exe  -run [x]
R4 NOBU;Norton Online Backup;c:\program files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe SERVICE;c:\program files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe SERVICE [x]
R4 SamsungAllShareV2.0;Samsung AllShare PC;c:\program files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe;c:\program files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe [x]
R4 SimpleSlideShowServer;SimpleSlideShowServer;c:\program files (x86)\Samsung\AllShare\AllShareSlideShowService.exe;c:\program files (x86)\Samsung\AllShare\AllShareSlideShowService.exe [x]
R4 SWUpdateService;SW Update Service;c:\programdata\Samsung\SW Update Service\SWMAgent.exe;c:\programdata\Samsung\SW Update Service\SWMAgent.exe [x]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe;c:\program files\Windows Live\Mesh\wlcrasvc.exe [x]
S0 mfewfpk;McAfee Inc. mfewfpk;c:\windows\system32\drivers\mfewfpk.sys;c:\windows\SYSNATIVE\drivers\mfewfpk.sys [x]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys;c:\windows\SYSNATIVE\DRIVERS\nvpciflt.sys [x]
S1 SABI;SAMSUNG Kernel Driver For Windows 7;c:\windows\system32\Drivers\SABI.sys;c:\windows\SYSNATIVE\Drivers\SABI.sys [x]
S2 aksdf;aksdf;c:\windows\system32\drivers\aksdf.sys;c:\windows\SYSNATIVE\drivers\aksdf.sys [x]
S2 bzserv;Backblaze Service;c:\program files (x86)\Backblaze\bzserv.exe;c:\program files (x86)\Backblaze\bzserv.exe [x]
S2 CrashPlanService;CrashPlan Backup Service;c:\program files\CrashPlan\CrashPlanService.exe;c:\program files\CrashPlan\CrashPlanService.exe [x]
S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [x]
S2 fshoster;F-Secure Dll Hoster;c:\program files (x86)\BT Cloud\fshoster32.exe;c:\program files (x86)\BT Cloud\fshoster32.exe [x]
S2 HomeNetSvc;McAfee Home Network;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [x]
S2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [x]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [x]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe [x]
S2 McAPExe;McAfee AP Service;c:\program files\McAfee\MSC\McAPExe.exe;c:\program files\McAfee\MSC\McAPExe.exe [x]
S2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [x]
S2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [x]
S2 mcpltsvc;McAfee Platform Services;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [x]
S2 mfecore;McAfee Anti-Malware Core;c:\program files\Common Files\McAfee\AMCore\mcshield.exe;c:\program files\Common Files\McAfee\AMCore\mcshield.exe [x]
S2 mfefire;McAfee Firewall Core Service;c:\program files\Common Files\McAfee\SystemCore\\mfefire.exe;c:\program files\Common Files\McAfee\SystemCore\\mfefire.exe [x]
S2 mfevtp;McAfee Validation Trust Protection Service;c:\windows\system32\mfevtps.exe;c:\windows\SYSNATIVE\mfevtps.exe [x]
S2 NIHardwareService;NIHardwareService;c:\program files\Common Files\Native Instruments\Hardware\NIHardwareService.exe;c:\program files\Common Files\Native Instruments\Hardware\NIHardwareService.exe [x]
S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [x]
S2 SGDrv;SGDrv;c:\windows\system32\DRIVERS\SGdrv64.sys;c:\windows\SYSNATIVE\DRIVERS\SGdrv64.sys [x]
S2 UNS;Intel® Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [x]
S2 ZeroConfigService;Intel® PROSet/Wireless Zero Configuration Service;c:\program files\Intel\WiFi\bin\ZeroConfigService.exe;c:\program files\Intel\WiFi\bin\ZeroConfigService.exe [x]
S3 btmaudio;Intel Bluetooth Audio Service;c:\windows\system32\drivers\btmaud.sys;c:\windows\SYSNATIVE\drivers\btmaud.sys [x]
S3 btmaux;Intel Bluetooth Auxiliary Service;c:\windows\system32\DRIVERS\btmaux.sys;c:\windows\SYSNATIVE\DRIVERS\btmaux.sys [x]
S3 btmhsf;btmhsf;c:\windows\system32\DRIVERS\btmhsf.sys;c:\windows\SYSNATIVE\DRIVERS\btmhsf.sys [x]
S3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys;c:\windows\SYSNATIVE\drivers\cfwids.sys [x]
S3 clwvd;CyberLink WebCam Virtual Driver;c:\windows\system32\DRIVERS\clwvd.sys;c:\windows\SYSNATIVE\DRIVERS\clwvd.sys [x]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys;c:\windows\SYSNATIVE\DRIVERS\ETD.sys [x]
S3 iBtFltCoex;iBtFltCoex;c:\windows\system32\DRIVERS\iBtFltCoex.sys;c:\windows\SYSNATIVE\DRIVERS\iBtFltCoex.sys [x]
S3 IntcDAud;Intel® Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys;c:\windows\SYSNATIVE\drivers\mfefirek.sys [x]
S3 mfencbdc;McAfee Inc. mfencbdc;c:\windows\system32\DRIVERS\mfencbdc.sys;c:\windows\SYSNATIVE\DRIVERS\mfencbdc.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftfslh.sys [x]
S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftplaylh.sys [x]
S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftredirlh.sys [x]
S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftvollh.sys [x]
S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [x]
.
.
Contents of the 'Scheduled Tasks' folder
.
2013-12-30 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-09-05 19:43]
.
2013-12-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-09-05 19:43]
.
2013-12-30 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3697776081-4079981704-496958710-1001Core.job
- c:\users\John\AppData\Local\Google\Update\GoogleUpdate.exe [2012-02-05 19:40]
.
2013-12-30 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3697776081-4079981704-496958710-1001UA.job
- c:\users\John\AppData\Local\Google\Update\GoogleUpdate.exe [2012-02-05 19:40]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2012-07-20 14:09 244688 ----a-w- c:\users\John\AppData\Local\Microsoft\SkyDrive\16.4.6006.0718\amd64\SkyDriveShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2012-07-20 14:09 244688 ----a-w- c:\users\John\AppData\Local\Microsoft\SkyDrive\16.4.6006.0718\amd64\SkyDriveShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2012-07-20 14:09 244688 ----a-w- c:\users\John\AppData\Local\Microsoft\SkyDrive\16.4.6006.0718\amd64\SkyDriveShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 164016 ----a-w- c:\users\John\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 164016 ----a-w- c:\users\John\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 164016 ----a-w- c:\users\John\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 164016 ----a-w- c:\users\John\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\FSSyncErrorIcon]
@="{1F872D95-A1C0-452C-9662-08739211EC04}"
[HKEY_CLASSES_ROOT\CLSID\{1F872D95-A1C0-452C-9662-08739211EC04}]
2013-08-23 13:07 942016 ----a-w- c:\program files (x86)\BT Cloud\apps\ContentAnywhere\FSSyncShellExtension64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\FSSyncOkIcon]
@="{164AD5E4-2B93-4FB0-8AE3-8F922BAA186B}"
[HKEY_CLASSES_ROOT\CLSID\{164AD5E4-2B93-4FB0-8AE3-8F922BAA186B}]
2013-08-23 13:07 942016 ----a-w- c:\program files (x86)\BT Cloud\apps\ContentAnywhere\FSSyncShellExtension64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\FSSyncProgressingConnectingIcon]
@="{935591D8-7EF8-4147-80D8-C80AB6E964DF}"
[HKEY_CLASSES_ROOT\CLSID\{935591D8-7EF8-4147-80D8-C80AB6E964DF}]
2013-08-23 13:07 942016 ----a-w- c:\program files (x86)\BT Cloud\apps\ContentAnywhere\FSSyncShellExtension64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2013-12-06 15:47 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2013-12-06 15:47 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2013-12-06 15:47 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}]
2013-12-06 15:47 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2013-12-06 15:47 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2013-12-06 15:47 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Add to Evernote 4.0 - c:\program files (x86)\Evernote\Evernote\EvernoteIE.dll/204
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
TCP: DhcpNameServer = 192.168.1.254
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-Locked - (no file)
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
BHO-{08337871-0e50-4031-9110-3bd21ca3c065} - c:\users\John\AppData\Roaming\VshareComplete\64\VshareComplete64.dll
AddRemove-Free Video Converter_is1 - c:\program files (x86)\Free Video Converter\unins000.exe
AddRemove-KeyStation1x1 - c:\windows\iun6002.exe
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\fshoster]
"ImagePath"="\"c:\program files (x86)\BT Cloud\fshoster32.exe\" -hosterid:0"
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
   00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\F-Secure\My Services Agent\Protected]
@Denied: ) (Everyone)
"AgentIdentifier"="33a55ae1-27d7-42c0-a622-5815ca318c13"
"AuthorizationCode"=""
"47188_AgentIdentifier"="33a55ae1-27d7-42c0-a622-5815ca318c13"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2013-12-30  17:50:00
ComboFix-quarantined-files.txt  2013-12-30 17:49
.
Pre-Run: 62,596,456,448 bytes free
Post-Run: 61,778,591,744 bytes free
.
- - End Of File - - 3DAE276EE5B728C25FC1B43EA8572A49
Link to post
Share on other sites

One additional scan, please:

Please scan your machine with ESET OnlineScan

  • Hold down Control and click on the following link to open ESET OnlineScan in a new window.

    ESET OnlineScan

  • Click the esetonlinebtn.png button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer.

      Save it to your Desktop.

    • Double click on the esetsmartinstaller_enu.png to download the ESET Smart Installer. icon on your Desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under Scan Settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.
Link to post
Share on other sites

Glad I could help, John! :)

Some recommendations from me. About your system perfomance:

https://forums.malwarebytes.org/index.php?showtopic=81990

About your malware preventions:

users.telenet.be/bluepatchy/miekiemoes/prevention.html

Step 1

  • Download OTL to your desktop and run it.
  • Click on CleanUp button.
  • You will be asked to reboot the machine to finish the Cleanup process. Choose Yes.
Step 2
  • Double click on AdwCleaner.exe to run the tool.
  • Click on Uninstall
  • Confirm with Yes
Step 3

Please uninstall ESET Online Scanner .

Safe surfing! :)

Link to post
Share on other sites

  • Root Admin

Glad we could help. :)

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.