Jump to content

app data\ local\blekkotb\data


Recommended Posts

Hello kaetyuki and :welcome:! My name is Borislav and I will be glad to help you solve your malware problem.

Please note:

  • If you are a paying customer, you have the privilege to contact the help desk at Consumer Support. If you choose this option to get help, please let me know.
  • I recommend you to keep the instructions I will be giving you so that they are available to you at any time. You can save them in a text file or print them.
  • Make sure you read all of the instructions and fixes thoroughly before continuing with them.
  • Follow my instructions strictly and don’t hesitate to stop and ask me if you have any questions.
  • Post your log files, don't attach them. Every log file should be copy/pasted in your next reply.
  • Do not perform any kind of scanning and fixing without my instructions. If you want to proceed on your own, please let me know.
Please follow the instructions here and then post your log files in a new reply in this thread:

http://forums.malwarebytes.org/index.php?showtopic=9573

Link to post
Share on other sites

DDS (Ver_2012-11-20.01) - NTFS_AMD64 

Internet Explorer: 11.0.9600.16428  BrowserJavaVersion: 10.45.2

Run by celine at 0:41:04 on 2013-12-28

Microsoft Windows 7 Home Premium   6.1.7601.1.1252.61.1033.18.3998.1148 [GMT 8:00]

.

AV: Bitdefender Antivirus *Enabled/Updated* {9B5F5313-CAF9-DD97-C460-E778420237B4}

SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

SP: Bitdefender Antispyware *Enabled/Updated* {203EB2F7-ECC3-D219-FED0-DC0A39857D09}

FW: Bitdefender Firewall *Enabled* {A364D236-8096-DCCF-EF3F-4E4DBCD170CF}

.

============== Running Processes ===============

.

C:\Windows\system32\lsm.exe

C:\Windows\system32\svchost.exe -k DcomLaunch

C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe

C:\Windows\system32\nvvsvc.exe

C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

C:\Windows\system32\svchost.exe -k RPCSS

C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

C:\Windows\system32\svchost.exe -k LocalService

C:\Windows\system32\svchost.exe -k netsvcs

C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe

C:\Program Files\Tablet\Wacom\Wacom_TouchService.exe

C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe

C:\Windows\system32\svchost.exe -k NetworkService

C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe

C:\Windows\system32\nvvsvc.exe

C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

C:\Windows\system32\WLANExt.exe

C:\Windows\System32\spoolsv.exe

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe

C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe

C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe

C:\Windows\system32\taskhost.exe

C:\Windows\system32\taskeng.exe

C:\Program Files\Bonjour\mDNSResponder.exe

C:\Windows\system32\svchost.exe -k bthsvcs

C:\Program Files\Intel\WiFi\bin\EvtEng.exe

C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\Program Files (x86)\Giraffic\Veoh_GirafficWatchdog.exe

C:\Program Files (x86)\Uniblue\DriverScanner\dsmonitor.exe

C:\ProgramData\DatacardService\HWDeviceService64.exe

c:\Program Files\Intel\iCLS Client\HeciServer.exe

C:\ProgramData\DatacardService\DCSHelper.exe

C:\Windows\SysWOW64\irstrtsv.exe

C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe

C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe

C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE

C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe

C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe

C:\Program Files (x86)\Giraffic\Veoh_Giraffic.exe

C:\Windows\system32\svchost.exe -k imgsvc

C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe

C:\Program Files\Bitdefender\Bitdefender 2013\updatesrv.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe

C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe

C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe

C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe

C:\Program Files (x86)\Dell DataSafe Local Backup\TOASTER.EXE

C:\Program Files (x86)\Dell DataSafe Local Backup\COMPONENTS\SCHEDULER\STSERVICE.EXE

C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpd.exe

C:\Windows\system32\wbem\unsecapp.exe

C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe

C:\Windows\system32\wbem\wmiprvse.exe

C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE

C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

C:\Windows\system32\SearchIndexer.exe

C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe

C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe

C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

C:\Windows\System32\igfxtray.exe

C:\Windows\System32\hkcmd.exe

C:\Windows\System32\igfxpers.exe

C:\Program Files\Dell\QuickSet\quickset.exe

C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe

C:\Windows\System32\rundll32.exe

C:\Program Files\Bitdefender\Bitdefender 2013\bdagent.exe

C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe

C:\Program Files\Logitech Gaming Software\LCore.exe

C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE

C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe

C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe

C:\Program Files\NVIDIA Corporation\Display\nvtray.exe

C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe

C:\Program Files (x86)\Skype\Phone\Skype.exe

C:\Program Files (x86)\Overwolf\Overwolf.exe

C:\Users\celine\AppData\Local\Google\Update\1.3.22.3\GoogleCrashHandler.exe

C:\Program Files (x86)\McAfee Security Scan\3.0.287\SSScheduler.exe

C:\Users\celine\AppData\Local\Google\Update\1.3.22.3\GoogleCrashHandler64.exe

C:\Users\celine\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe

C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe

C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe

C:\Program Files (x86)\iTunes\iTunesHelper.exe

C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe

C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

C:\Program Files\iPod\bin\iPodService.exe

C:\Windows\System32\svchost.exe -k LocalServicePeerNet

C:\Program Files\Windows Media Player\wmpnetwk.exe

C:\Program Files (x86)\Common Files\Overwolf\OverwolfHelper.exe

C:\Program Files (x86)\Common Files\Overwolf\OverwolfHelper64.exe

C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe

C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe

c:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe

C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe

C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

C:\Windows\system32\sppsvc.exe

C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

C:\Windows\system32\wbem\wmiprvse.exe

C:\Windows\servicing\TrustedInstaller.exe

C:\Windows\System32\cscript.exe

.

============== Pseudo HJT Report ===============

.

uStart Page = about:blank


mStart Page = about:blank


mWinlogon: Userinit = userinit.exe,

BHO: Babylon toolbar helper: {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.8.4.9\bh\BabylonToolbar.dll

BHO: Java Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll

BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

BHO: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll

BHO: Yontoo: {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll

TB: Babylon Toolbar: {98889811-442D-49dd-99D7-DC866BE87DBC} - C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.8.4.9\BabylonToolbarTlbr.dll

uRun: [Google Update] "C:\Users\celine\AppData\Local\Google\Update\GoogleUpdate.exe" /c

uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background

uRun: [VeohPlugin] "C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe"

uRun: [DriverScanner] "C:\Program Files (x86)\Uniblue\DriverScanner\launcher.exe" delay 20000 

uRun: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun

uRun: [Facebook Update] "C:\Users\celine\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver

uRun: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent

uRun: [Overwolf] C:\Program Files (x86)\Overwolf\Overwolf.exe -silent

mRun: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

mRun: [Dell DataSafe Online] C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuClient.exe

mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"

mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

mRun: [Anti-phishing Domain Advisor] "C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe"

mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"

mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"

mRun: [Dell Webcam Central] "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2

mRun: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

StartupFolder: C:\Users\celine\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\FACEBO~1.LNK - C:\Users\celine\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe

StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\MCAFEE~1.LNK - C:\Program Files (x86)\McAfee Security Scan\3.0.287\SSScheduler.exe

mPolicies-Explorer: NoActiveDesktop = dword:1

mPolicies-Explorer: NoActiveDesktopChanges = dword:1

mPolicies-System: ConsentPromptBehaviorAdmin = dword:5

mPolicies-System: ConsentPromptBehaviorUser = dword:3

mPolicies-System: EnableUIADesktopToggle = dword:0

mPolicies-System: PromptOnSecureDesktop = dword:0

IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

LSP: %SystemRoot%\system32\WTFastDrv.dll




TCP: NameServer = 192.168.1.1

TCP: Interfaces\{B1AA15DB-971C-45A3-A509-22E20A175BB6} : DHCPNameServer = 192.168.1.1

TCP: Interfaces\{B1AA15DB-971C-45A3-A509-22E20A175BB6}\44271676F6E6 : DHCPNameServer = 192.168.0.1

TCP: Interfaces\{B1AA15DB-971C-45A3-A509-22E20A175BB6}\5453833323D256165383 : DHCPNameServer = 192.168.1.1 192.168.1.1

TCP: Interfaces\{B1AA15DB-971C-45A3-A509-22E20A175BB6}\8445340205F627471626C6560284F6473707F647 : DHCPNameServer = 192.168.1.1

TCP: Interfaces\{EC8FC5E2-879D-42BC-BD16-E8DFFDC479B6} : DHCPNameServer = 192.168.1.1 192.168.1.1

Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll

Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

AppInit_DLLs= c:\windows\syswow64\nvinit.dll

SSODL: WebCheck - <orphaned>

x64-mStart Page = about:blank

x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

x64-BHO: Skype add-on for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll

x64-Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s

x64-Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /MAXX4 

x64-Run: [synTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe

x64-Run: [igfxTray] C:\Windows\System32\igfxtray.exe

x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe

x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe

x64-Run: [QuickSet] c:\Program Files\Dell\QuickSet\QuickSet.exe

x64-Run: [bLEServicesCtrl] C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe

x64-Run: [bTMTrayAgent] rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp

x64-Run: [bdagent] "C:\Program Files\Bitdefender\Bitdefender 2013\bdagent.exe"

x64-Run: [Launch LCore] C:\Program Files\Logitech Gaming Software\LCore.exe /minimized

x64-IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll

x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll

x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>

x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>

x64-Notify: igfxcui - igfxdev.dll

x64-SSODL: WebCheck - <orphaned>

.

============= SERVICES / DRIVERS ===============

.

R0 avc3;avc3;C:\Windows\System32\drivers\avc3.sys [2013-6-17 727592]

R0 gzflt;gzflt;C:\Windows\System32\drivers\gzflt.sys [2013-10-2 150256]

R0 iusb3hcs;Intel® USB 3.0 Host Controller Switch Driver;C:\Windows\System32\drivers\iusb3hcs.sys [2012-6-21 16152]

R0 nvpciflt;nvpciflt;C:\Windows\System32\drivers\nvpciflt.sys [2012-6-21 28992]

R0 stdcfltn;Disk Class Filter Driver for Accelerometer;C:\Windows\System32\drivers\stdcfltn.sys [2012-6-21 22128]

R1 BdfNdisf;BitDefender Firewall NDIS 6 Filter Driver;C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfndisf6.sys [2013-6-17 93600]

R1 bdfwfpf;bdfwfpf;C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [2013-6-17 103504]

R1 BDVEDISK;BDVEDISK;C:\Windows\System32\drivers\bdvedisk.sys [2013-6-17 76944]

R1 nvkflt;nvkflt;C:\Windows\System32\drivers\nvkflt.sys [2012-6-21 249152]

R2 AERTFilters;Andrea RT Filters Service;C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2012-6-21 98208]

R2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service;C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2012-1-10 659968]

R2 Bluetooth Device Monitor;Bluetooth Device Monitor;C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2012-3-27 1014096]

R2 Bluetooth OBEX Service;Bluetooth OBEX Service;C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2012-3-27 1104208]

R2 BTHSSecurityMgr;Intel® Centrino® Wireless Bluetooth® + High Speed Security Service;C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2012-1-18 135952]

R2 cvhsvc;Client Virtualization Handler;C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE [2013-4-22 822504]

R2 DellDigitalDelivery;Dell Digital Delivery Service;C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe [2013-11-12 196616]

R2 Giraffic;Veoh Giraffic Video Accelerator;C:\Program Files (x86)\Giraffic\Veoh_GirafficWatchdog.exe --service --> C:\Program Files (x86)\Giraffic\Veoh_GirafficWatchdog.exe --service [?]

R2 HWDeviceService64.exe;HWDeviceService64.exe;C:\ProgramData\DatacardService\HWDeviceService64.exe [2011-3-14 346976]

R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-6-21 13592]

R2 IconMan_R;IconMan_R;C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2012-6-21 2439272]

R2 Intel® Capability Licensing Service Interface;Intel® Capability Licensing Service Interface;C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-1-11 627936]

R2 irstrtsv;Intel® Rapid Start Technology Service;C:\Windows\SysWOW64\irstrtsv.exe [2012-6-21 193536]

R2 jhi_service;Intel® Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe [2012-6-21 161560]

R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-12-28 418376]

R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-12-28 701512]

R2 NOBU;Dell DataSafe Online;C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe [2010-8-26 2823000]

R2 RtkAudioService;Realtek Audio Service;C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2012-6-21 199272]

R2 SafeBox;SafeBox;C:\Program Files\Bitdefender\Bitdefender Safebox\safeboxservice.exe [2013-6-17 95184]

R2 sftlist;Application Virtualization Client;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2013-6-26 523944]

R2 SftService;SoftThinks Agent Service;C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe [2012-6-21 1695040]

R2 Skype C2C Service;Skype C2C Service;C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-10-9 3275136]

R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-2-25 382272]

R2 TabletServiceWacom;TabletServiceWacom;C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe [2012-8-21 8786848]

R2 TouchServiceWacom;Wacom Professional Touch Service;C:\Program Files\Tablet\Wacom\Wacom_TouchService.exe [2012-8-21 565152]

R2 UNS;Intel® Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2012-6-21 363800]

R2 UPDATESRV;Bitdefender Desktop Update Service;C:\Program Files\Bitdefender\Bitdefender 2013\updatesrv.exe [2013-8-27 67320]

R2 ZeroConfigService;Intel® PROSet/Wireless Zero Configuration Service;C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2012-3-29 2669840]

R3 AMPPAL;Intel® Centrino® Wireless Bluetooth® + High Speed Virtual Adapter;C:\Windows\System32\drivers\AmpPal.sys [2012-1-10 195584]

R3 Apowersoft_AudioDevice;Apowersoft_AudioDevice;C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [2013-7-16 31920]

R3 avchv;avchv Function Driver;C:\Windows\System32\drivers\avchv.sys [2013-6-17 261056]

R3 avckf;avckf;C:\Windows\System32\drivers\avckf.sys [2013-7-15 601360]

R3 Bluetooth Media Service;Bluetooth Media Service;C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [2012-3-27 1304912]

R3 btmaux;Intel Bluetooth Auxiliary Service;C:\Windows\System32\drivers\btmaux.sys [2012-2-13 95232]

R3 btmhsf;btmhsf;C:\Windows\System32\drivers\btmhsf.sys [2012-2-13 747008]

R3 CtClsFlt;Creative Camera Class Upper Filter Driver;C:\Windows\System32\drivers\CtClsFlt.sys [2013-10-9 176000]

R3 hswpan;WPAN Driver;C:\Windows\System32\drivers\hswpan.sys [2012-1-27 109056]

R3 huawei_enumerator;huawei_enumerator;C:\Windows\System32\drivers\ew_jubusenum.sys [2013-3-31 86016]

R3 ibtfltcoex;ibtfltcoex;C:\Windows\System32\drivers\iBtFltCoex.sys [2012-3-22 60928]

R3 IntcDAud;Intel® Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2012-6-21 331264]

R3 irstrtdv;Intel® Rapid Start Technology Driver;C:\Windows\System32\drivers\irstrtdv.sys [2012-6-21 26504]

R3 iusb3hub;Intel® USB 3.0 Hub Driver;C:\Windows\System32\drivers\iusb3hub.sys [2012-6-21 356120]

R3 iusb3xhc;Intel® USB 3.0 eXtensible Host Controller Driver;C:\Windows\System32\drivers\iusb3xhc.sys [2012-6-21 788760]

R3 iwdbus;IWD Bus Enumerator;C:\Windows\System32\drivers\iwdbus.sys [2012-2-29 25496]

R3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver;C:\Windows\System32\drivers\LGBusEnum.sys [2009-11-24 22408]

R3 LGSHidFilt;Logitech Gaming KMDF HID Filter Driver;C:\Windows\System32\drivers\LGSHidFilt.Sys [2013-5-31 64280]

R3 LGVirHid;Logitech Gamepanel Virtual HID Device Driver;C:\Windows\System32\drivers\LGVirHid.sys [2009-11-24 16008]

R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2013-12-28 25928]

R3 RSPCIESTOR;Realtek PCIE CardReader Driver;C:\Windows\System32\drivers\RtsPStor.sys [2012-6-21 340584]

R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2012-6-21 646248]

R3 Sftfs;Sftfs;C:\Windows\System32\drivers\Sftfswin7.sys [2013-6-26 768680]

R3 Sftplay;Sftplay;C:\Windows\System32\drivers\Sftplaywin7.sys [2013-6-26 273576]

R3 Sftredir;Sftredir;C:\Windows\System32\drivers\Sftredirwin7.sys [2013-6-26 29352]

R3 Sftvol;Sftvol;C:\Windows\System32\drivers\Sftvolwin7.sys [2013-6-26 23208]

R3 sftvsa;Application Virtualization Service Agent;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2013-6-26 207528]

R3 SmbDrvIntel;SmbDrvIntel;C:\Windows\System32\drivers\Smb_driver_Intel.sys [2012-6-21 24848]

R3 ST_ACCEL;STMicroelectronics Accelerometer Service;C:\Windows\System32\drivers\ST_ACCEL.sys [2012-6-21 67184]

S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-19 130384]

S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-19 138576]

S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-9-5 171680]

S3 AMPPALP;Intel® Centrino® Wireless Bluetooth® + High Speed Protocol;C:\Windows\System32\drivers\AmpPal.sys [2012-1-10 195584]

S3 BDSandBox;BDSandBox;C:\Windows\System32\drivers\bdsandbox.sys [2013-6-17 82824]

S3 CoordinatorServiceHost;SW Distributed TS Coordinator Service;C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe [2012-1-20 89160]

S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;C:\Windows\System32\drivers\ew_hwusbdev.sys [2013-3-31 117248]

S3 ewusbmbb;HUAWEI USB-WWAN miniport;C:\Windows\System32\drivers\ewusbwwan.sys [2013-3-31 421376]

S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2013-8-25 1431888]

S3 hidkmdf;KMDF Driver;C:\Windows\System32\drivers\hidkmdf.sys [2012-8-21 13728]

S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2013-12-13 111616]

S3 intaud_WaveExtensible;Intel WiDi Audio Device;C:\Windows\System32\drivers\intelaud.sys [2012-2-29 34232]

S3 McComponentHostService;McAfee Security Scan Component Host Service;C:\Program Files (x86)\McAfee Security Scan\3.0.287\McCHSvc.exe [2012-9-12 234776]

S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2012-3-29 273168]

S3 NvStUSB;NVIDIA Stereoscopic 3D USB driver;C:\Windows\System32\drivers\nvstusb.sys [2012-6-21 398144]

S3 OverwolfUpdaterService;Overwolf Updater Service;C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2013-10-2 96184]

S3 Remote Solver for Flow Simulation 2012;Remote Solver for Flow Simulation 2012;C:\Program Files\SolidWorks Corp\SolidWorks Flow Simulation\binCFW\StandAloneSlv.exe [2011-12-9 113800]

S3 SmbDrvAMDASF;SmbDrvAMDASF;C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [2012-6-21 24848]

S3 tepsrv;Tracks Eraser Service;E:\CEL1NE'5 F0LD3R\Tracks Eraser Pro\tepsrv.exe --> E:\CEL1NE'5 F0LD3R\Tracks Eraser Pro\tepsrv.exe [?]

S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2010-11-21 59392]

S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2010-11-21 31232]

S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2012-7-9 52736]

S3 WacHidRouter;Wacom Hid Router;C:\Windows\System32\drivers\wachidrouter.sys [2012-8-21 68512]

S3 wacomrouterfilter;Wacom Router Filter Driver;C:\Windows\System32\drivers\wacomrouterfilter.sys [2012-8-21 15736]

S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2012-8-23 1255736]

S4 BdDesktopParental;Bitdefender Desktop Parental Control;C:\Program Files\Bitdefender\Bitdefender 2013\bdparentalservice.exe [2013-11-21 69392]

S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-23 57184]

.

=============== Created Last 30 ================

.

2013-12-27 16:21:38 -------- d-----w- C:\Users\celine\AppData\Roaming\Malwarebytes

2013-12-27 16:21:28 -------- d-----w- C:\ProgramData\Malwarebytes

2013-12-27 16:21:26 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys

2013-12-27 16:21:26 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware

2013-12-27 05:25:43 -------- d-----w- C:\Users\celine\AppData\Local\{DC782CB3-AAD9-49CF-BE05-03661C0FD24D}

2013-12-26 10:57:58 -------- d-----w- C:\Users\celine\AppData\Local\Logitech

2013-12-26 10:57:21 18960 ----a-w- C:\Windows\System32\drivers\LNonPnP.sys

2013-12-26 10:57:01 -------- d-----w- C:\Program Files\Logitech Gaming Software

2013-12-26 10:56:27 -------- d-----w- C:\Users\celine\AppData\Roaming\Logishrd

2013-12-26 05:34:18 -------- d-----w- C:\Users\celine\AppData\Local\{B33885BA-C468-4B7A-B77C-D83BA89FB7EA}

2013-12-25 05:02:36 -------- d-----w- C:\Users\celine\AppData\Local\{76FB62E6-521B-4F24-9D99-97B636672E66}

2013-12-24 03:20:06 -------- d-----w- C:\Users\celine\AppData\Local\{AB2C3ADC-1974-4AB8-A4FC-A2D91AA41BB2}

2013-12-24 03:07:28 -------- d-----w- C:\Users\celine\AppData\Local\{7C154E00-F095-4F91-8B66-2C8542D03EE2}

2013-12-23 05:25:00 -------- d-----w- C:\Users\celine\AppData\Local\{B8F75B0A-54F9-4189-81BC-DB235DDE5907}

2013-12-22 07:48:08 -------- d-----w- C:\Users\celine\AppData\Local\{6E3FB45E-6D66-49F3-A1CD-7538AB92A367}

2013-12-21 02:17:52 -------- d-----w- C:\Users\celine\AppData\Local\{03F04EAC-A1DF-46A7-A21E-468E695F37BD}

2013-12-20 13:48:55 -------- d-----w- C:\Users\celine\AppData\Local\{BD7376A7-EC00-4B8A-A565-CD3952C5BFA1}

2013-12-19 05:32:58 -------- d-----w- C:\Users\celine\AppData\Local\{1877220B-B588-4C01-B586-181C702039CB}

2013-12-18 10:58:27 -------- d-----w- C:\Users\celine\AppData\Local\{E13EB462-E6E6-4CA9-B3E8-9EF6E9422DE6}

2013-12-17 08:01:17 -------- d-----w- C:\Users\celine\AppData\Local\{29AE6B28-C00A-4205-9472-C7639049F0E1}

2013-12-16 02:57:42 -------- d-----w- C:\Users\celine\AppData\Local\{301D4DF0-A6AB-4730-B8F6-0068707A0183}

2013-12-15 02:25:16 -------- d-----w- C:\Users\celine\AppData\Local\{3CABA718-CFCE-4841-B39C-E387C56FA24F}

2013-12-14 04:51:07 -------- d-----w- C:\Users\celine\AppData\Local\{04252EC1-5647-4609-8A06-1D146268E3BB}

2013-12-13 11:21:40 -------- d-----w- C:\Users\celine\AppData\Local\{B416ABCB-A12B-4D2C-B610-B48560108A7E}

2013-12-12 19:02:00 167424 ----a-w- C:\Program Files\Windows Media Player\wmplayer.exe

2013-12-12 19:02:00 164864 ----a-w- C:\Program Files (x86)\Windows Media Player\wmplayer.exe

2013-12-12 19:01:59 12625920 ----a-w- C:\Windows\System32\wmploc.DLL

2013-12-12 19:01:59 12625408 ----a-w- C:\Windows\SysWow64\wmploc.DLL

2013-12-12 19:01:00 2724864 ----a-w- C:\Windows\System32\mshtml.tlb

2013-12-12 02:00:16 335360 ----a-w- C:\Windows\System32\msieftp.dll

2013-12-12 02:00:16 301568 ----a-w- C:\Windows\SysWow64\msieftp.dll

2013-12-12 02:00:11 3155968 ----a-w- C:\Windows\System32\win32k.sys

2013-12-12 01:59:44 465920 ----a-w- C:\Windows\System32\WMPhoto.dll

2013-12-12 01:59:44 417792 ----a-w- C:\Windows\SysWow64\WMPhoto.dll

2013-12-12 01:59:19 81408 ----a-w- C:\Windows\System32\imagehlp.dll

2013-12-12 01:59:19 159232 ----a-w- C:\Windows\SysWow64\imagehlp.dll

2013-12-12 01:54:17 2048 ----a-w- C:\Windows\SysWow64\tzres.dll

2013-12-12 01:54:17 2048 ----a-w- C:\Windows\System32\tzres.dll

2013-12-12 01:54:03 230400 ----a-w- C:\Windows\System32\drivers\portcls.sys

2013-12-12 01:54:03 202752 ----a-w- C:\Windows\System32\scrrun.dll

2013-12-12 01:54:03 156160 ----a-w- C:\Windows\System32\cscript.exe

2013-12-12 01:54:03 150016 ----a-w- C:\Windows\System32\wshom.ocx

2013-12-12 01:54:03 121856 ----a-w- C:\Windows\SysWow64\wshom.ocx

2013-12-12 01:54:03 116736 ----a-w- C:\Windows\System32\drivers\drmk.sys

2013-12-12 01:54:02 168960 ----a-w- C:\Windows\System32\wscript.exe

2013-12-12 01:54:02 163840 ----a-w- C:\Windows\SysWow64\scrrun.dll

2013-12-12 01:54:02 141824 ----a-w- C:\Windows\SysWow64\wscript.exe

2013-12-12 01:54:02 126976 ----a-w- C:\Windows\SysWow64\cscript.exe

2013-12-12 01:40:21 -------- d-----w- C:\Users\celine\AppData\Local\{0D0AA6B8-0E2E-4DB7-A386-CC16CAC1F09F}

2013-12-10 11:50:28 -------- d-----w- C:\Users\celine\AppData\Local\{4375FB7B-6324-4948-9B79-88C0142BB337}

2013-12-09 10:56:25 -------- d-----w- C:\Users\celine\AppData\Local\{51C4E9F3-A623-49CA-8366-C1552CE009DB}

2013-12-08 13:41:40 -------- d-----w- C:\Users\celine\AppData\Local\{9431C05D-38D1-402F-8BB7-1034628480AB}

2013-12-04 07:23:36 -------- d-----w- C:\Users\celine\AppData\Local\{EBBD6081-AF51-445E-A102-56C761AD101F}

2013-12-01 10:14:59 -------- d-----w- C:\Users\celine\AppData\Local\{DED5184B-B3DB-4AE7-BC94-E3959362CCCA}

2013-11-30 10:03:45 -------- d-----w- C:\Users\celine\AppData\Local\{E050B8A1-063D-44C9-9D6E-42DCFA012DD0}

2013-11-29 04:47:28 -------- d-----w- C:\Users\celine\AppData\Local\{5D89F137-E955-4E87-8E5B-3DC141755DA4}

.

==================== Find3M  ====================

.

2013-11-26 10:18:23 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll

2013-11-26 09:48:07 66048 ----a-w- C:\Windows\System32\iesetup.dll

2013-11-26 09:46:25 48640 ----a-w- C:\Windows\System32\ieetwproxystub.dll

2013-11-26 09:23:02 2724864 ----a-w- C:\Windows\SysWow64\mshtml.tlb

2013-11-26 09:18:39 139264 ----a-w- C:\Windows\System32\ieUnatt.exe

2013-11-26 09:18:09 111616 ----a-w- C:\Windows\System32\ieetwcollector.exe

2013-11-26 09:16:57 708608 ----a-w- C:\Windows\System32\jscript9diag.dll

2013-11-26 08:35:02 5769216 ----a-w- C:\Windows\System32\jscript9.dll

2013-11-26 08:28:16 553472 ----a-w- C:\Windows\SysWow64\jscript9diag.dll

2013-11-26 08:16:12 4243968 ----a-w- C:\Windows\SysWow64\jscript9.dll

2013-11-26 08:02:16 1995264 ----a-w- C:\Windows\System32\inetcpl.cpl

2013-11-26 07:32:06 1928192 ----a-w- C:\Windows\SysWow64\inetcpl.cpl

2013-11-26 07:07:57 2334208 ----a-w- C:\Windows\System32\wininet.dll

2013-11-26 06:33:33 1820160 ----a-w- C:\Windows\SysWow64\wininet.dll

2013-11-20 18:09:42 74512 ----a-w- C:\Windows\SysWow64\bdsandboxuiskin32.dll

2013-11-20 18:09:42 74512 ----a-w- C:\Windows\System32\bdsandboxuiskin32.dll

2013-11-20 18:09:37 82824 ----a-w- C:\Windows\System32\drivers\bdsandbox.sys

2013-11-20 18:08:34 34384 ----a-w- C:\Windows\System32\bdsandboxuh.dll

2013-11-20 18:08:03 84848 ----a-w- C:\Windows\System32\bdsandboxuiskin.dll

2013-10-15 09:05:30 1754928 ----a-w- C:\Windows\System32\dmwu.exe

2013-10-15 08:59:58 33792 ----a-w- C:\Windows\System32\ImHttpComm.dll

2013-10-12 02:30:42 830464 ----a-w- C:\Windows\System32\nshwfp.dll

2013-10-12 02:29:21 859648 ----a-w- C:\Windows\System32\IKEEXT.DLL

2013-10-12 02:29:08 324096 ----a-w- C:\Windows\System32\FWPUCLNT.DLL

2013-10-12 02:03:08 656896 ----a-w- C:\Windows\SysWow64\nshwfp.dll

2013-10-12 02:01:25 216576 ----a-w- C:\Windows\SysWow64\FWPUCLNT.DLL

2013-10-07 23:50:37 96168 ----a-w- C:\Windows\SysWow64\WindowsAccessBridge-32.dll

2013-10-05 20:25:35 1474048 ----a-w- C:\Windows\System32\crypt32.dll

2013-10-05 19:57:25 1168384 ----a-w- C:\Windows\SysWow64\crypt32.dll

2013-10-04 02:28:31 190464 ----a-w- C:\Windows\System32\SmartcardCredentialProvider.dll

2013-10-04 02:25:17 197120 ----a-w- C:\Windows\System32\credui.dll

2013-10-04 02:24:49 1930752 ----a-w- C:\Windows\System32\authui.dll

2013-10-04 01:58:50 152576 ----a-w- C:\Windows\SysWow64\SmartcardCredentialProvider.dll

2013-10-04 01:56:25 168960 ----a-w- C:\Windows\SysWow64\credui.dll

2013-10-04 01:56:00 1796096 ----a-w- C:\Windows\SysWow64\authui.dll

2013-10-03 02:23:48 404480 ----a-w- C:\Windows\System32\gdi32.dll

2013-10-03 02:00:44 311808 ----a-w- C:\Windows\SysWow64\gdi32.dll

2013-10-02 13:16:26 150256 ----a-w- C:\Windows\System32\drivers\gzflt.sys

2013-10-02 13:14:46 389240 ----a-w- C:\Windows\System32\drivers\trufos.sys

.

============= FINISH:  0:41:31.58 ===============
Link to post
Share on other sites

.

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.

IF REQUESTED, ZIP IT UP & ATTACH IT

.

DDS (Ver_2012-11-20.01)

.

Microsoft Windows 7 Home Premium 

Boot Device: \Device\HarddiskVolume2

Install Date: 21/08/2012 9:13:40 PM

System Uptime: 28/12/2013 12:37:03 AM (0 hours ago)

.

Motherboard: Dell Inc. |  | 0880F2

Processor: Intel® Core i7-3612QM CPU @ 2.10GHz | U3E1 | 1197/100mhz

.

==== Disk Partitions =========================

.

C: is FIXED (NTFS) - 913 GiB total, 765.556 GiB free.

D: is CDROM ()

.

==== Disabled Device Manager Items =============

.

==== System Restore Points ===================

.

RP112: 27/12/2013 4:33:22 PM - Scheduled Checkpoint

.

==== Installed Programs ======================

.

Adobe AIR

Adobe Download Assistant

Adobe Flash Player 11 ActiveX 64-bit

Adobe Reader X (10.1.7) MUI

Advanced Audio FX Engine

Anti-phishing Domain Advisor

Apple Application Support

Apple Mobile Device Support

Apple Software Update

Audacity 2.0.2

Babylon toolbar 

Bandicam

Bandisoft MPEG-1 Decoder

Bitdefender Total Security 2013

Bonjour

CamStudio version 2.7

CCleaner

Citrix Online Launcher

ContinueToSave 1.74

D3DX10

Dell DataSafe Local Backup

Dell DataSafe Local Backup - Support Software

Dell DataSafe Online

Dell Digital Delivery

Dell Edoc Viewer

Dell Support Center

Dell Touchpad

Dell Webcam Central

Facebook Messenger 2.1.4814.0

FINAL FANTASY XIV - A Realm Reborn

Google Chrome

GoToMeeting 5.9.0.1207

Graboid Video 3.89 Setup

Guild Wars

Guild Wars 2

Intel® Control Center

Intel® Management Engine Components

Intel® Processor Graphics

Intel® PROSet/Wireless for Bluetooth® + High Speed

Intel® PROSet/Wireless Software for Bluetooth® Technology

Intel® Rapid Start Technology

Intel® Rapid Storage Technology

Intel® WiDi

Intel® Wireless Display

Intel® Wireless Music device driver

Intel® PROSet/Wireless WiFi Software

Intel® Trusted Connect Service Client

Internet Explorer Toolbar 4.6 by SweetPacks

iTunes

Java 7 Update 45

Java Auto Updater

Junk Mail filter update

LAME v3.99.3 (for Windows)

Left 4 Dead 2

Logitech Gaming Software

Logitech Gaming Software 8.51

Malwarebytes Anti-Malware version 1.75.0.1300

McAfee Security Scan Plus

Mesh Runtime

Microsoft .NET Framework 4 Client Profile

Microsoft .NET Framework 4 Extended

Microsoft Application Error Reporting

Microsoft Office 2003 Web Components

Microsoft Office 2010

Microsoft Office Click-to-Run 2010

Microsoft Office Home and Student 2010 - English

Microsoft Office Starter 2010 - English

Microsoft Silverlight

Microsoft SQL Server 2005 Compact Edition [ENU]

Microsoft Visual C++ 2005 Redistributable

Microsoft Visual C++ 2005 Redistributable (x64)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161

Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219

Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219

Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU

Microsoft Visual Studio 2005 Tools for Applications - ENU

Mo Siang Online 1.0

MSVCRT

MSVCRT_amd64

MSXML 4.0 SP2 (KB954430)

MSXML 4.0 SP2 (KB973688)

Mumble 1.2.4

NVIDIA 3D Vision Driver 296.01

NVIDIA Control Panel 296.01

NVIDIA Graphics Driver 296.01

NVIDIA Install Application

NVIDIA Optimus 1.7.12

NVIDIA PhysX

NVIDIA PhysX System Software 9.12.0213

NVIDIA Stereoscopic 3D Driver

NVIDIA Update 1.7.12

NVIDIA Update Components

Overwolf

Quickset64

QuickTime

Realtek High Definition Audio Driver

Realtek PCIE Card Reader

Rusty Hearts PWE

Security Update for CAPICOM (KB931906)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2736428)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628v2)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2858302v2)

Security Update for Microsoft .NET Framework 4 Extended (KB2487367)

Security Update for Microsoft .NET Framework 4 Extended (KB2656351)

Security Update for Microsoft .NET Framework 4 Extended (KB2736428)

Security Update for Microsoft .NET Framework 4 Extended (KB2742595)

Security Update for Microsoft .NET Framework 4 Extended (KB2858302v2)

Skype Click to Call

Skype™ 6.11

SolidWorks 2012 x64 Edition SP02

SolidWorks eDrawings 2012 x64 Edition SP02

SolidWorks Flow Simulation 2012 SP02 x64 Edition 

Sony Vegas Pro Pre-Cracked By Exµs 11.0

ST Microelectronics 3 Axis Digital Accelerometer Solution

Steam

Team Fortress 2

TeamSpeak 3 Client

Uniblue DriverScanner

Update for Microsoft .NET Framework 4 Client Profile (KB2468871)

Update for Microsoft .NET Framework 4 Client Profile (KB2533523)

Update for Microsoft .NET Framework 4 Client Profile (KB2600217)

Update for Microsoft .NET Framework 4 Client Profile (KB2836939)

Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3)

Update for Microsoft .NET Framework 4 Extended (KB2468871)

Update for Microsoft .NET Framework 4 Extended (KB2533523)

Update for Microsoft .NET Framework 4 Extended (KB2600217)

Update for Microsoft .NET Framework 4 Extended (KB2836939)

Update for Microsoft .NET Framework 4 Extended (KB2836939v3)

Update Manager for SweetPacks 1.1

Veoh Giraffic Video Accelerator

Veoh Web Player

VLC media player 1.0.1

Wacom Tablet

WEB Partner

WebTablet FB Plugin 32 bit

WebTablet FB Plugin 64 bit

Windows Live Communications Platform

Windows Live Essentials

Windows Live ID Sign-in Assistant

Windows Live Installer

Windows Live Language Selector

Windows Live Mail

Windows Live Mesh

Windows Live Mesh ActiveX Control for Remote Connections

Windows Live Messenger

Windows Live MIME IFilter

Windows Live Movie Maker

Windows Live Photo Common

Windows Live Photo Gallery

Windows Live PIMT Platform

Windows Live Remote Client

Windows Live Remote Client Resources

Windows Live Remote Service

Windows Live Remote Service Resources

Windows Live SOXE

Windows Live SOXE Definitions

Windows Live UX Platform

Windows Live UX Platform Language Pack

Windows Live Writer

Windows Live Writer Resources

WinZip 17.0

WTFast 2.11

Yontoo 1.10.02

.

==== Event Viewer Messages From Past Week ========

.

28/12/2013 12:39:42 AM, Error: Service Control Manager [7038]  - The nvUpdatusService service was unable to log on as .\UpdatusUser with the currently configured password due to the following error:  Logon failure: the specified account password has expired. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).

28/12/2013 12:39:42 AM, Error: Service Control Manager [7000]  - The NVIDIA Update Service Daemon service failed to start due to the following error:  The service did not start due to a logon failure.

28/12/2013 12:36:30 AM, Error: Service Control Manager [7034]  - The IBUpdaterService service terminated unexpectedly.  It has done this 1 time(s).

27/12/2013 2:30:06 PM, Error: bowser [8003]  - The master browser has received a server announcement from the computer ALICEALLINONE that believes that it is the master browser for the domain on transport NetBT_Tcpip_{B1AA15DB-971C-45A3-A509-22E20A175BB6}. The master browser is stopping or an election is being forced.

25/12/2013 1:02:56 PM, Error: Service Control Manager [7034]  - The Intel® PROSet/Wireless Zero Configuration Service service terminated unexpectedly.  It has done this 1 time(s).

24/12/2013 11:19:17 AM, Error: Service Control Manager [7023]  - The Intel® PROSet/Wireless Zero Configuration Service service terminated with the following error:  %%-2147196306

24/12/2013 11:18:50 AM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001]  - The computer has rebooted from a bugcheck.  The bugcheck was: 0x0000007e (0xffffffffc0000005, 0xfffff88001297865, 0xfffff88003f165d8, 0xfffff88003f15e30). A dump was saved in: C:\Windows\MEMORY.DMP. Report Id: 122413-33462-01.

23/12/2013 1:36:19 PM, Error: bowser [8003]  - The master browser has received a server announcement from the computer JEREMY-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{B1AA15DB-971C-45A3-A509-22E20A175BB6}. The master browser is stopping or an election is being forced.

22/12/2013 3:48:03 PM, Error: Service Control Manager [7034]  - The Bitdefender Virus Shield service terminated unexpectedly.  It has done this 1 time(s).

.

==== End Of File ===========================
Link to post
Share on other sites

DDS (Ver_2012-11-20.01) - NTFS_AMD64 

Internet Explorer: 11.0.9600.16428  BrowserJavaVersion: 10.45.2

Run by celine at 3:16:24 on 2013-12-31

Microsoft Windows 7 Home Premium   6.1.7601.1.1252.61.1033.18.3998.2377 [GMT 8:00]

.

AV: Bitdefender Antivirus *Enabled/Updated* {9B5F5313-CAF9-DD97-C460-E778420237B4}

SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

SP: Bitdefender Antispyware *Enabled/Updated* {203EB2F7-ECC3-D219-FED0-DC0A39857D09}

FW: Bitdefender Firewall *Disabled* {A364D236-8096-DCCF-EF3F-4E4DBCD170CF}

.

============== Running Processes ===============

.

C:\Windows\system32\lsm.exe

C:\Windows\system32\svchost.exe -k DcomLaunch

C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe

C:\Windows\system32\nvvsvc.exe

C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

C:\Windows\system32\svchost.exe -k RPCSS

C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

C:\Windows\system32\svchost.exe -k LocalService

C:\Windows\system32\svchost.exe -k netsvcs

C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe

C:\Program Files\Tablet\Wacom\Wacom_TouchService.exe

C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe

C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe

C:\Windows\system32\nvvsvc.exe

C:\Windows\system32\svchost.exe -k NetworkService

C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

C:\Windows\Explorer.EXE

C:\Windows\system32\Dwm.exe

C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe

C:\Windows\system32\WLANExt.exe

C:\Windows\System32\spoolsv.exe

C:\Windows\system32\taskhost.exe

C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe

C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe

C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

C:\Windows\System32\igfxtray.exe

C:\Windows\System32\hkcmd.exe

C:\Windows\System32\igfxpers.exe

C:\Program Files\Dell\QuickSet\quickset.exe

C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe

C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe

C:\Windows\System32\rundll32.exe

C:\Program Files\Bitdefender\Bitdefender 2013\bdagent.exe

C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe

C:\Program Files\Bonjour\mDNSResponder.exe

C:\Windows\system32\svchost.exe -k bthsvcs

C:\Program Files\Intel\WiFi\bin\EvtEng.exe

C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\Program Files (x86)\Giraffic\Veoh_GirafficWatchdog.exe

C:\Windows\system32\taskeng.exe

C:\ProgramData\DatacardService\HWDeviceService64.exe

c:\Program Files\Intel\iCLS Client\HeciServer.exe

C:\ProgramData\DatacardService\DCSHelper.exe

C:\Program Files (x86)\Uniblue\DriverScanner\dsmonitor.exe

C:\Windows\SysWOW64\irstrtsv.exe

C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe

C:\Program Files (x86)\Giraffic\Veoh_Giraffic.exe

C:\Program Files\NVIDIA Corporation\Display\nvtray.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe

C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe

C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE

C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe

C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe

C:\Program Files (x86)\Dell DataSafe Local Backup\TOASTER.EXE

C:\Windows\system32\svchost.exe -k imgsvc

C:\Program Files (x86)\Dell DataSafe Local Backup\COMPONENTS\SCHEDULER\STSERVICE.EXE

C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpd.exe

C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe

C:\Program Files\Bitdefender\Bitdefender 2013\updatesrv.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe

C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe

C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe

C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe

C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe

C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE

C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe

C:\Windows\system32\SearchIndexer.exe

C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe

C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE

C:\Program Files\Logitech Gaming Software\LCore.exe

C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe

C:\Program Files (x86)\Skype\Phone\Skype.exe

C:\Program Files (x86)\Steam\Steam.exe

C:\Program Files (x86)\Overwolf\Overwolf.exe

C:\Program Files (x86)\McAfee Security Scan\3.0.287\SSScheduler.exe

C:\Users\celine\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe

C:\Windows\system32\wbem\unsecapp.exe

C:\Windows\system32\wbem\wmiprvse.exe

C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

C:\Users\celine\AppData\Local\Google\Update\1.3.22.3\GoogleCrashHandler.exe

C:\Users\celine\AppData\Local\Google\Update\1.3.22.3\GoogleCrashHandler64.exe

C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe

C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe

C:\Program Files (x86)\iTunes\iTunesHelper.exe

C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe

C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

C:\Program Files\iPod\bin\iPodService.exe

C:\Program Files\Windows Media Player\wmpnetwk.exe

C:\Windows\System32\svchost.exe -k LocalServicePeerNet

C:\Program Files (x86)\Common Files\Steam\SteamService.exe

C:\Program Files (x86)\Common Files\Overwolf\OverwolfHelper.exe

C:\Program Files (x86)\Common Files\Overwolf\OverwolfHelper64.exe

C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe

C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe

c:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe

C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe

C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe

C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe

C:\Windows\system32\taskhost.exe

C:\Windows\system32\wbem\wmiprvse.exe

C:\Program Files\Bitdefender\Bitdefender 2013\seccenter.exe

C:\Windows\System32\cscript.exe

.

============== Pseudo HJT Report ===============

.

uStart Page = about:blank


mStart Page = about:blank


mWinlogon: Userinit = userinit.exe,

BHO: Babylon toolbar helper: {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.8.4.9\bh\BabylonToolbar.dll

BHO: Java Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll

BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

BHO: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll

BHO: Yontoo: {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll

TB: Babylon Toolbar: {98889811-442D-49dd-99D7-DC866BE87DBC} - C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.8.4.9\BabylonToolbarTlbr.dll

uRun: [Google Update] "C:\Users\celine\AppData\Local\Google\Update\GoogleUpdate.exe" /c

uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background

uRun: [VeohPlugin] "C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe"

uRun: [DriverScanner] "C:\Program Files (x86)\Uniblue\DriverScanner\launcher.exe" delay 20000 

uRun: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun

uRun: [Facebook Update] "C:\Users\celine\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver

uRun: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent

uRun: [Overwolf] C:\Program Files (x86)\Overwolf\Overwolf.exe -silent

mRun: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

mRun: [Dell DataSafe Online] C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuClient.exe

mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"

mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

mRun: [Anti-phishing Domain Advisor] "C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe"

mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"

mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"

mRun: [Dell Webcam Central] "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2

mRun: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

StartupFolder: C:\Users\celine\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\FACEBO~1.LNK - C:\Users\celine\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe

StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\MCAFEE~1.LNK - C:\Program Files (x86)\McAfee Security Scan\3.0.287\SSScheduler.exe

mPolicies-Explorer: NoActiveDesktop = dword:1

mPolicies-Explorer: NoActiveDesktopChanges = dword:1

mPolicies-System: ConsentPromptBehaviorAdmin = dword:5

mPolicies-System: ConsentPromptBehaviorUser = dword:3

mPolicies-System: EnableUIADesktopToggle = dword:0

mPolicies-System: PromptOnSecureDesktop = dword:0

IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

LSP: %SystemRoot%\system32\WTFastDrv.dll




TCP: NameServer = 192.168.1.1

TCP: Interfaces\{B1AA15DB-971C-45A3-A509-22E20A175BB6} : DHCPNameServer = 192.168.1.1

TCP: Interfaces\{B1AA15DB-971C-45A3-A509-22E20A175BB6}\44271676F6E6 : DHCPNameServer = 192.168.0.1

TCP: Interfaces\{B1AA15DB-971C-45A3-A509-22E20A175BB6}\5453833323D256165383 : DHCPNameServer = 192.168.1.1 192.168.1.1

TCP: Interfaces\{B1AA15DB-971C-45A3-A509-22E20A175BB6}\8445340205F627471626C6560284F6473707F647 : DHCPNameServer = 192.168.1.1

TCP: Interfaces\{EC8FC5E2-879D-42BC-BD16-E8DFFDC479B6} : DHCPNameServer = 192.168.1.1 192.168.1.1

Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll

Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

AppInit_DLLs= c:\windows\syswow64\nvinit.dll

SSODL: WebCheck - <orphaned>

x64-mStart Page = about:blank

x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

x64-BHO: Skype add-on for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll

x64-Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s

x64-Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /MAXX4 

x64-Run: [synTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe

x64-Run: [igfxTray] C:\Windows\System32\igfxtray.exe

x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe

x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe

x64-Run: [QuickSet] c:\Program Files\Dell\QuickSet\QuickSet.exe

x64-Run: [bLEServicesCtrl] C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe

x64-Run: [bTMTrayAgent] rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp

x64-Run: [bdagent] "C:\Program Files\Bitdefender\Bitdefender 2013\bdagent.exe"

x64-Run: [Launch LCore] C:\Program Files\Logitech Gaming Software\LCore.exe /minimized

x64-IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll

x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll

x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>

x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>

x64-Notify: igfxcui - igfxdev.dll

x64-SSODL: WebCheck - <orphaned>

.

============= SERVICES / DRIVERS ===============

.

R0 avc3;avc3;C:\Windows\System32\drivers\avc3.sys [2013-6-17 727592]

R0 gzflt;gzflt;C:\Windows\System32\drivers\gzflt.sys [2013-10-2 150256]

R0 iusb3hcs;Intel® USB 3.0 Host Controller Switch Driver;C:\Windows\System32\drivers\iusb3hcs.sys [2012-6-21 16152]

R0 nvpciflt;nvpciflt;C:\Windows\System32\drivers\nvpciflt.sys [2012-6-21 28992]

R0 stdcfltn;Disk Class Filter Driver for Accelerometer;C:\Windows\System32\drivers\stdcfltn.sys [2012-6-21 22128]

R1 BdfNdisf;BitDefender Firewall NDIS 6 Filter Driver;C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfndisf6.sys [2013-6-17 93600]

R1 bdfwfpf;bdfwfpf;C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [2013-6-17 103504]

R1 BDVEDISK;BDVEDISK;C:\Windows\System32\drivers\bdvedisk.sys [2013-6-17 76944]

R1 nvkflt;nvkflt;C:\Windows\System32\drivers\nvkflt.sys [2012-6-21 249152]

R2 AERTFilters;Andrea RT Filters Service;C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2012-6-21 98208]

R2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service;C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2012-1-10 659968]

R2 Bluetooth Device Monitor;Bluetooth Device Monitor;C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2012-3-27 1014096]

R2 Bluetooth OBEX Service;Bluetooth OBEX Service;C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2012-3-27 1104208]

R2 BTHSSecurityMgr;Intel® Centrino® Wireless Bluetooth® + High Speed Security Service;C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2012-1-18 135952]

R2 cvhsvc;Client Virtualization Handler;C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE [2013-4-22 822504]

R2 DellDigitalDelivery;Dell Digital Delivery Service;C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe [2013-11-12 196616]

R2 Giraffic;Veoh Giraffic Video Accelerator;C:\Program Files (x86)\Giraffic\Veoh_GirafficWatchdog.exe --service --> C:\Program Files (x86)\Giraffic\Veoh_GirafficWatchdog.exe --service [?]

R2 HWDeviceService64.exe;HWDeviceService64.exe;C:\ProgramData\DatacardService\HWDeviceService64.exe [2011-3-14 346976]

R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-6-21 13592]

R2 IconMan_R;IconMan_R;C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2012-6-21 2439272]

R2 Intel® Capability Licensing Service Interface;Intel® Capability Licensing Service Interface;C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-1-11 627936]

R2 irstrtsv;Intel® Rapid Start Technology Service;C:\Windows\SysWOW64\irstrtsv.exe [2012-6-21 193536]

R2 jhi_service;Intel® Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe [2012-6-21 161560]

R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-12-28 418376]

R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-12-28 701512]

R2 NOBU;Dell DataSafe Online;C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe [2010-8-26 2823000]

R2 RtkAudioService;Realtek Audio Service;C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2012-6-21 199272]

R2 SafeBox;SafeBox;C:\Program Files\Bitdefender\Bitdefender Safebox\safeboxservice.exe [2013-6-17 95184]

R2 sftlist;Application Virtualization Client;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2013-6-26 523944]

R2 SftService;SoftThinks Agent Service;C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe [2012-6-21 1695040]

R2 Skype C2C Service;Skype C2C Service;C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-10-9 3275136]

R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-2-25 382272]

R2 TabletServiceWacom;TabletServiceWacom;C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe [2012-8-21 8786848]

R2 TouchServiceWacom;Wacom Professional Touch Service;C:\Program Files\Tablet\Wacom\Wacom_TouchService.exe [2012-8-21 565152]

R2 UNS;Intel® Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2012-6-21 363800]

R2 UPDATESRV;Bitdefender Desktop Update Service;C:\Program Files\Bitdefender\Bitdefender 2013\updatesrv.exe [2013-8-27 67320]

R2 ZeroConfigService;Intel® PROSet/Wireless Zero Configuration Service;C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2012-3-29 2669840]

R3 AMPPAL;Intel® Centrino® Wireless Bluetooth® + High Speed Virtual Adapter;C:\Windows\System32\drivers\AmpPal.sys [2012-1-10 195584]

R3 Apowersoft_AudioDevice;Apowersoft_AudioDevice;C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [2013-7-16 31920]

R3 avchv;avchv Function Driver;C:\Windows\System32\drivers\avchv.sys [2013-6-17 261056]

R3 avckf;avckf;C:\Windows\System32\drivers\avckf.sys [2013-7-15 601360]

R3 Bluetooth Media Service;Bluetooth Media Service;C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [2012-3-27 1304912]

R3 btmaux;Intel Bluetooth Auxiliary Service;C:\Windows\System32\drivers\btmaux.sys [2012-2-13 95232]

R3 btmhsf;btmhsf;C:\Windows\System32\drivers\btmhsf.sys [2012-2-13 747008]

R3 CtClsFlt;Creative Camera Class Upper Filter Driver;C:\Windows\System32\drivers\CtClsFlt.sys [2013-10-9 176000]

R3 hswpan;WPAN Driver;C:\Windows\System32\drivers\hswpan.sys [2012-1-27 109056]

R3 huawei_enumerator;huawei_enumerator;C:\Windows\System32\drivers\ew_jubusenum.sys [2013-3-31 86016]

R3 ibtfltcoex;ibtfltcoex;C:\Windows\System32\drivers\iBtFltCoex.sys [2012-3-22 60928]

R3 IntcDAud;Intel® Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2012-6-21 331264]

R3 irstrtdv;Intel® Rapid Start Technology Driver;C:\Windows\System32\drivers\irstrtdv.sys [2012-6-21 26504]

R3 iusb3hub;Intel® USB 3.0 Hub Driver;C:\Windows\System32\drivers\iusb3hub.sys [2012-6-21 356120]

R3 iusb3xhc;Intel® USB 3.0 eXtensible Host Controller Driver;C:\Windows\System32\drivers\iusb3xhc.sys [2012-6-21 788760]

R3 iwdbus;IWD Bus Enumerator;C:\Windows\System32\drivers\iwdbus.sys [2012-2-29 25496]

R3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver;C:\Windows\System32\drivers\LGBusEnum.sys [2009-11-24 22408]

R3 LGSHidFilt;Logitech Gaming KMDF HID Filter Driver;C:\Windows\System32\drivers\LGSHidFilt.Sys [2013-5-31 64280]

R3 LGVirHid;Logitech Gamepanel Virtual HID Device Driver;C:\Windows\System32\drivers\LGVirHid.sys [2009-11-24 16008]

R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2013-12-28 25928]

R3 RSPCIESTOR;Realtek PCIE CardReader Driver;C:\Windows\System32\drivers\RtsPStor.sys [2012-6-21 340584]

R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2012-6-21 646248]

R3 Sftfs;Sftfs;C:\Windows\System32\drivers\Sftfswin7.sys [2013-6-26 768680]

R3 Sftplay;Sftplay;C:\Windows\System32\drivers\Sftplaywin7.sys [2013-6-26 273576]

R3 Sftredir;Sftredir;C:\Windows\System32\drivers\Sftredirwin7.sys [2013-6-26 29352]

R3 Sftvol;Sftvol;C:\Windows\System32\drivers\Sftvolwin7.sys [2013-6-26 23208]

R3 sftvsa;Application Virtualization Service Agent;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2013-6-26 207528]

R3 SmbDrvIntel;SmbDrvIntel;C:\Windows\System32\drivers\Smb_driver_Intel.sys [2012-6-21 24848]

R3 ST_ACCEL;STMicroelectronics Accelerometer Service;C:\Windows\System32\drivers\ST_ACCEL.sys [2012-6-21 67184]

S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-19 130384]

S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-19 138576]

S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-9-5 171680]

S3 AMPPALP;Intel® Centrino® Wireless Bluetooth® + High Speed Protocol;C:\Windows\System32\drivers\AmpPal.sys [2012-1-10 195584]

S3 BDSandBox;BDSandBox;C:\Windows\System32\drivers\bdsandbox.sys [2013-6-17 82824]

S3 CoordinatorServiceHost;SW Distributed TS Coordinator Service;C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe [2012-1-20 89160]

S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;C:\Windows\System32\drivers\ew_hwusbdev.sys [2013-3-31 117248]

S3 ewusbmbb;HUAWEI USB-WWAN miniport;C:\Windows\System32\drivers\ewusbwwan.sys [2013-3-31 421376]

S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2013-8-25 1431888]

S3 hidkmdf;KMDF Driver;C:\Windows\System32\drivers\hidkmdf.sys [2012-8-21 13728]

S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2013-12-13 111616]

S3 intaud_WaveExtensible;Intel WiDi Audio Device;C:\Windows\System32\drivers\intelaud.sys [2012-2-29 34232]

S3 McComponentHostService;McAfee Security Scan Component Host Service;C:\Program Files (x86)\McAfee Security Scan\3.0.287\McCHSvc.exe [2012-9-12 234776]

S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2012-3-29 273168]

S3 NvStUSB;NVIDIA Stereoscopic 3D USB driver;C:\Windows\System32\drivers\nvstusb.sys [2012-6-21 398144]

S3 OverwolfUpdaterService;Overwolf Updater Service;C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2013-10-2 96184]

S3 Remote Solver for Flow Simulation 2012;Remote Solver for Flow Simulation 2012;C:\Program Files\SolidWorks Corp\SolidWorks Flow Simulation\binCFW\StandAloneSlv.exe [2011-12-9 113800]

S3 SmbDrvAMDASF;SmbDrvAMDASF;C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [2012-6-21 24848]

S3 tepsrv;Tracks Eraser Service;E:\CEL1NE'5 F0LD3R\Tracks Eraser Pro\tepsrv.exe --> E:\CEL1NE'5 F0LD3R\Tracks Eraser Pro\tepsrv.exe [?]

S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2010-11-21 59392]

S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2010-11-21 31232]

S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2012-7-9 52736]

S3 WacHidRouter;Wacom Hid Router;C:\Windows\System32\drivers\wachidrouter.sys [2012-8-21 68512]

S3 wacomrouterfilter;Wacom Router Filter Driver;C:\Windows\System32\drivers\wacomrouterfilter.sys [2012-8-21 15736]

S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2012-8-23 1255736]

S4 BdDesktopParental;Bitdefender Desktop Parental Control;C:\Program Files\Bitdefender\Bitdefender 2013\bdparentalservice.exe [2013-11-21 69392]

S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-23 57184]

.

=============== Created Last 30 ================

.

2013-12-30 02:26:51 -------- d-----w- C:\Users\celine\AppData\Local\bdch

2013-12-30 02:15:06 -------- d-----w- C:\Users\celine\AppData\Local\{47DE1CA8-0D0E-4121-B7A3-C37BA05FC69D}

2013-12-29 05:58:10 -------- d-----w- C:\Users\celine\AppData\Local\{E46A0907-6DDA-4E93-8E55-8472979BFCC2}

2013-12-28 05:26:32 -------- d-----w- C:\Users\celine\AppData\Local\{F350652E-89BE-4FCE-8E1E-801F4BA70BFE}

2013-12-27 17:26:07 -------- d-----w- C:\Users\celine\AppData\Local\{9EB83729-50C3-4C31-8FEA-2F8BC9D53F2B}

2013-12-27 16:21:38 -------- d-----w- C:\Users\celine\AppData\Roaming\Malwarebytes

2013-12-27 16:21:28 -------- d-----w- C:\ProgramData\Malwarebytes

2013-12-27 16:21:26 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys

2013-12-27 16:21:26 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware

2013-12-27 05:25:43 -------- d-----w- C:\Users\celine\AppData\Local\{DC782CB3-AAD9-49CF-BE05-03661C0FD24D}

2013-12-26 10:57:58 -------- d-----w- C:\Users\celine\AppData\Local\Logitech

2013-12-26 10:57:21 18960 ----a-w- C:\Windows\System32\drivers\LNonPnP.sys

2013-12-26 10:57:01 -------- d-----w- C:\Program Files\Logitech Gaming Software

2013-12-26 10:56:27 -------- d-----w- C:\Users\celine\AppData\Roaming\Logishrd

2013-12-26 05:34:18 -------- d-----w- C:\Users\celine\AppData\Local\{B33885BA-C468-4B7A-B77C-D83BA89FB7EA}

2013-12-25 05:02:36 -------- d-----w- C:\Users\celine\AppData\Local\{76FB62E6-521B-4F24-9D99-97B636672E66}

2013-12-24 03:20:06 -------- d-----w- C:\Users\celine\AppData\Local\{AB2C3ADC-1974-4AB8-A4FC-A2D91AA41BB2}

2013-12-24 03:07:28 -------- d-----w- C:\Users\celine\AppData\Local\{7C154E00-F095-4F91-8B66-2C8542D03EE2}

2013-12-23 05:25:00 -------- d-----w- C:\Users\celine\AppData\Local\{B8F75B0A-54F9-4189-81BC-DB235DDE5907}

2013-12-22 07:48:08 -------- d-----w- C:\Users\celine\AppData\Local\{6E3FB45E-6D66-49F3-A1CD-7538AB92A367}

2013-12-21 02:17:52 -------- d-----w- C:\Users\celine\AppData\Local\{03F04EAC-A1DF-46A7-A21E-468E695F37BD}

2013-12-20 13:48:55 -------- d-----w- C:\Users\celine\AppData\Local\{BD7376A7-EC00-4B8A-A565-CD3952C5BFA1}

2013-12-19 05:32:58 -------- d-----w- C:\Users\celine\AppData\Local\{1877220B-B588-4C01-B586-181C702039CB}

2013-12-18 10:58:27 -------- d-----w- C:\Users\celine\AppData\Local\{E13EB462-E6E6-4CA9-B3E8-9EF6E9422DE6}

2013-12-17 08:01:17 -------- d-----w- C:\Users\celine\AppData\Local\{29AE6B28-C00A-4205-9472-C7639049F0E1}

2013-12-16 02:57:42 -------- d-----w- C:\Users\celine\AppData\Local\{301D4DF0-A6AB-4730-B8F6-0068707A0183}

2013-12-15 02:25:16 -------- d-----w- C:\Users\celine\AppData\Local\{3CABA718-CFCE-4841-B39C-E387C56FA24F}

2013-12-14 04:51:07 -------- d-----w- C:\Users\celine\AppData\Local\{04252EC1-5647-4609-8A06-1D146268E3BB}

2013-12-13 11:21:40 -------- d-----w- C:\Users\celine\AppData\Local\{B416ABCB-A12B-4D2C-B610-B48560108A7E}

2013-12-12 19:02:00 167424 ----a-w- C:\Program Files\Windows Media Player\wmplayer.exe

2013-12-12 19:02:00 164864 ----a-w- C:\Program Files (x86)\Windows Media Player\wmplayer.exe

2013-12-12 19:01:59 12625920 ----a-w- C:\Windows\System32\wmploc.DLL

2013-12-12 19:01:59 12625408 ----a-w- C:\Windows\SysWow64\wmploc.DLL

2013-12-12 19:01:00 2724864 ----a-w- C:\Windows\System32\mshtml.tlb

2013-12-12 02:00:16 335360 ----a-w- C:\Windows\System32\msieftp.dll

2013-12-12 02:00:16 301568 ----a-w- C:\Windows\SysWow64\msieftp.dll

2013-12-12 02:00:11 3155968 ----a-w- C:\Windows\System32\win32k.sys

2013-12-12 01:59:44 465920 ----a-w- C:\Windows\System32\WMPhoto.dll

2013-12-12 01:59:44 417792 ----a-w- C:\Windows\SysWow64\WMPhoto.dll

2013-12-12 01:59:19 81408 ----a-w- C:\Windows\System32\imagehlp.dll

2013-12-12 01:59:19 159232 ----a-w- C:\Windows\SysWow64\imagehlp.dll

2013-12-12 01:54:17 2048 ----a-w- C:\Windows\SysWow64\tzres.dll

2013-12-12 01:54:17 2048 ----a-w- C:\Windows\System32\tzres.dll

2013-12-12 01:54:03 230400 ----a-w- C:\Windows\System32\drivers\portcls.sys

2013-12-12 01:54:03 202752 ----a-w- C:\Windows\System32\scrrun.dll

2013-12-12 01:54:03 156160 ----a-w- C:\Windows\System32\cscript.exe

2013-12-12 01:54:03 150016 ----a-w- C:\Windows\System32\wshom.ocx

2013-12-12 01:54:03 121856 ----a-w- C:\Windows\SysWow64\wshom.ocx

2013-12-12 01:54:03 116736 ----a-w- C:\Windows\System32\drivers\drmk.sys

2013-12-12 01:54:02 168960 ----a-w- C:\Windows\System32\wscript.exe

2013-12-12 01:54:02 163840 ----a-w- C:\Windows\SysWow64\scrrun.dll

2013-12-12 01:54:02 141824 ----a-w- C:\Windows\SysWow64\wscript.exe

2013-12-12 01:54:02 126976 ----a-w- C:\Windows\SysWow64\cscript.exe

2013-12-12 01:40:21 -------- d-----w- C:\Users\celine\AppData\Local\{0D0AA6B8-0E2E-4DB7-A386-CC16CAC1F09F}

2013-12-10 11:50:28 -------- d-----w- C:\Users\celine\AppData\Local\{4375FB7B-6324-4948-9B79-88C0142BB337}

2013-12-09 10:56:25 -------- d-----w- C:\Users\celine\AppData\Local\{51C4E9F3-A623-49CA-8366-C1552CE009DB}

2013-12-08 13:41:40 -------- d-----w- C:\Users\celine\AppData\Local\{9431C05D-38D1-402F-8BB7-1034628480AB}

2013-12-04 07:23:36 -------- d-----w- C:\Users\celine\AppData\Local\{EBBD6081-AF51-445E-A102-56C761AD101F}

2013-12-01 10:14:59 -------- d-----w- C:\Users\celine\AppData\Local\{DED5184B-B3DB-4AE7-BC94-E3959362CCCA}

.

==================== Find3M  ====================

.

2013-11-26 10:18:23 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll

2013-11-26 09:48:07 66048 ----a-w- C:\Windows\System32\iesetup.dll

2013-11-26 09:46:25 48640 ----a-w- C:\Windows\System32\ieetwproxystub.dll

2013-11-26 09:23:02 2724864 ----a-w- C:\Windows\SysWow64\mshtml.tlb

2013-11-26 09:18:39 139264 ----a-w- C:\Windows\System32\ieUnatt.exe

2013-11-26 09:18:09 111616 ----a-w- C:\Windows\System32\ieetwcollector.exe

2013-11-26 09:16:57 708608 ----a-w- C:\Windows\System32\jscript9diag.dll

2013-11-26 08:35:02 5769216 ----a-w- C:\Windows\System32\jscript9.dll

2013-11-26 08:28:16 553472 ----a-w- C:\Windows\SysWow64\jscript9diag.dll

2013-11-26 08:16:12 4243968 ----a-w- C:\Windows\SysWow64\jscript9.dll

2013-11-26 08:02:16 1995264 ----a-w- C:\Windows\System32\inetcpl.cpl

2013-11-26 07:32:06 1928192 ----a-w- C:\Windows\SysWow64\inetcpl.cpl

2013-11-26 07:07:57 2334208 ----a-w- C:\Windows\System32\wininet.dll

2013-11-26 06:33:33 1820160 ----a-w- C:\Windows\SysWow64\wininet.dll

2013-11-20 18:09:42 74512 ----a-w- C:\Windows\SysWow64\bdsandboxuiskin32.dll

2013-11-20 18:09:42 74512 ----a-w- C:\Windows\System32\bdsandboxuiskin32.dll

2013-11-20 18:09:37 82824 ----a-w- C:\Windows\System32\drivers\bdsandbox.sys

2013-11-20 18:08:34 34384 ----a-w- C:\Windows\System32\bdsandboxuh.dll

2013-11-20 18:08:03 84848 ----a-w- C:\Windows\System32\bdsandboxuiskin.dll

2013-10-15 09:05:30 1754928 ----a-w- C:\Windows\System32\dmwu.exe

2013-10-15 08:59:58 33792 ----a-w- C:\Windows\System32\ImHttpComm.dll

2013-10-12 02:30:42 830464 ----a-w- C:\Windows\System32\nshwfp.dll

2013-10-12 02:29:21 859648 ----a-w- C:\Windows\System32\IKEEXT.DLL

2013-10-12 02:29:08 324096 ----a-w- C:\Windows\System32\FWPUCLNT.DLL

2013-10-12 02:03:08 656896 ----a-w- C:\Windows\SysWow64\nshwfp.dll

2013-10-12 02:01:25 216576 ----a-w- C:\Windows\SysWow64\FWPUCLNT.DLL

2013-10-07 23:50:37 96168 ----a-w- C:\Windows\SysWow64\WindowsAccessBridge-32.dll

2013-10-05 20:25:35 1474048 ----a-w- C:\Windows\System32\crypt32.dll

2013-10-05 19:57:25 1168384 ----a-w- C:\Windows\SysWow64\crypt32.dll

2013-10-04 02:28:31 190464 ----a-w- C:\Windows\System32\SmartcardCredentialProvider.dll

2013-10-04 02:25:17 197120 ----a-w- C:\Windows\System32\credui.dll

2013-10-04 02:24:49 1930752 ----a-w- C:\Windows\System32\authui.dll

2013-10-04 01:58:50 152576 ----a-w- C:\Windows\SysWow64\SmartcardCredentialProvider.dll

2013-10-04 01:56:25 168960 ----a-w- C:\Windows\SysWow64\credui.dll

2013-10-04 01:56:00 1796096 ----a-w- C:\Windows\SysWow64\authui.dll

2013-10-03 02:23:48 404480 ----a-w- C:\Windows\System32\gdi32.dll

2013-10-03 02:00:44 311808 ----a-w- C:\Windows\SysWow64\gdi32.dll

2013-10-02 13:16:26 150256 ----a-w- C:\Windows\System32\drivers\gzflt.sys

2013-10-02 13:14:46 389240 ----a-w- C:\Windows\System32\drivers\trufos.sys

.

============= FINISH:  3:16:48.27 ===============

 

 

 


.

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.

IF REQUESTED, ZIP IT UP & ATTACH IT

.

DDS (Ver_2012-11-20.01)

.

Microsoft Windows 7 Home Premium 

Boot Device: \Device\HarddiskVolume2

Install Date: 21/08/2012 9:13:40 PM

System Uptime: 30/12/2013 4:15:59 PM (11 hours ago)

.

Motherboard: Dell Inc. |  | 0880F2

Processor: Intel® Core i7-3612QM CPU @ 2.10GHz | U3E1 | 2101/100mhz

.

==== Disk Partitions =========================

.

C: is FIXED (NTFS) - 913 GiB total, 763.775 GiB free.

D: is CDROM ()

.

==== Disabled Device Manager Items =============

.

==== System Restore Points ===================

.

RP112: 27/12/2013 4:33:22 PM - Scheduled Checkpoint

.

==== Installed Programs ======================

.

Adobe AIR

Adobe Download Assistant

Adobe Flash Player 11 ActiveX 64-bit

Adobe Reader X (10.1.7) MUI

Advanced Audio FX Engine

Anti-phishing Domain Advisor

Apple Application Support

Apple Mobile Device Support

Apple Software Update

Audacity 2.0.2

Babylon toolbar 

Bandicam

Bandisoft MPEG-1 Decoder

Bitdefender Total Security 2013

Bonjour

CamStudio version 2.7

CCleaner

Citrix Online Launcher

ContinueToSave 1.74

D3DX10

Dell DataSafe Local Backup

Dell DataSafe Local Backup - Support Software

Dell DataSafe Online

Dell Digital Delivery

Dell Edoc Viewer

Dell Support Center

Dell Touchpad

Dell Webcam Central

Facebook Messenger 2.1.4814.0

FINAL FANTASY XIV - A Realm Reborn

Google Chrome

GoToMeeting 5.9.0.1207

Graboid Video 3.89 Setup

Guild Wars

Guild Wars 2

Intel® Control Center

Intel® Management Engine Components

Intel® Processor Graphics

Intel® PROSet/Wireless for Bluetooth® + High Speed

Intel® PROSet/Wireless Software for Bluetooth® Technology

Intel® Rapid Start Technology

Intel® Rapid Storage Technology

Intel® WiDi

Intel® Wireless Display

Intel® Wireless Music device driver

Intel® PROSet/Wireless WiFi Software

Intel® Trusted Connect Service Client

Internet Explorer Toolbar 4.6 by SweetPacks

iTunes

Java 7 Update 45

Java Auto Updater

Junk Mail filter update

LAME v3.99.3 (for Windows)

Left 4 Dead 2

Logitech Gaming Software

Logitech Gaming Software 8.51

Malwarebytes Anti-Malware version 1.75.0.1300

McAfee Security Scan Plus

Mesh Runtime

Microsoft .NET Framework 4 Client Profile

Microsoft .NET Framework 4 Extended

Microsoft Application Error Reporting

Microsoft Office 2003 Web Components

Microsoft Office 2010

Microsoft Office Click-to-Run 2010

Microsoft Office Home and Student 2010 - English

Microsoft Office Starter 2010 - English

Microsoft Silverlight

Microsoft SQL Server 2005 Compact Edition [ENU]

Microsoft Visual C++ 2005 Redistributable

Microsoft Visual C++ 2005 Redistributable (x64)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161

Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219

Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219

Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU

Microsoft Visual Studio 2005 Tools for Applications - ENU

Mo Siang Online 1.0

MSVCRT

MSVCRT_amd64

MSXML 4.0 SP2 (KB954430)

MSXML 4.0 SP2 (KB973688)

Mumble 1.2.4

NVIDIA 3D Vision Driver 296.01

NVIDIA Control Panel 296.01

NVIDIA Graphics Driver 296.01

NVIDIA Install Application

NVIDIA Optimus 1.7.12

NVIDIA PhysX

NVIDIA PhysX System Software 9.12.0213

NVIDIA Stereoscopic 3D Driver

NVIDIA Update 1.7.12

NVIDIA Update Components

Overwolf

Quickset64

QuickTime

Realtek High Definition Audio Driver

Realtek PCIE Card Reader

Rusty Hearts PWE

Security Update for CAPICOM (KB931906)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2736428)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628v2)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2858302v2)

Security Update for Microsoft .NET Framework 4 Extended (KB2487367)

Security Update for Microsoft .NET Framework 4 Extended (KB2656351)

Security Update for Microsoft .NET Framework 4 Extended (KB2736428)

Security Update for Microsoft .NET Framework 4 Extended (KB2742595)

Security Update for Microsoft .NET Framework 4 Extended (KB2858302v2)

Skype Click to Call

Skype™ 6.11

SolidWorks 2012 x64 Edition SP02

SolidWorks eDrawings 2012 x64 Edition SP02

SolidWorks Flow Simulation 2012 SP02 x64 Edition 

Sony Vegas Pro Pre-Cracked By Exµs 11.0

ST Microelectronics 3 Axis Digital Accelerometer Solution

Steam

Team Fortress 2

TeamSpeak 3 Client

Uniblue DriverScanner

Update for Microsoft .NET Framework 4 Client Profile (KB2468871)

Update for Microsoft .NET Framework 4 Client Profile (KB2533523)

Update for Microsoft .NET Framework 4 Client Profile (KB2600217)

Update for Microsoft .NET Framework 4 Client Profile (KB2836939)

Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3)

Update for Microsoft .NET Framework 4 Extended (KB2468871)

Update for Microsoft .NET Framework 4 Extended (KB2533523)

Update for Microsoft .NET Framework 4 Extended (KB2600217)

Update for Microsoft .NET Framework 4 Extended (KB2836939)

Update for Microsoft .NET Framework 4 Extended (KB2836939v3)

Update Manager for SweetPacks 1.1

Veoh Giraffic Video Accelerator

Veoh Web Player

VLC media player 1.0.1

Wacom Tablet

WEB Partner

WebTablet FB Plugin 32 bit

WebTablet FB Plugin 64 bit

Windows Live Communications Platform

Windows Live Essentials

Windows Live ID Sign-in Assistant

Windows Live Installer

Windows Live Language Selector

Windows Live Mail

Windows Live Mesh

Windows Live Mesh ActiveX Control for Remote Connections

Windows Live Messenger

Windows Live MIME IFilter

Windows Live Movie Maker

Windows Live Photo Common

Windows Live Photo Gallery

Windows Live PIMT Platform

Windows Live Remote Client

Windows Live Remote Client Resources

Windows Live Remote Service

Windows Live Remote Service Resources

Windows Live SOXE

Windows Live SOXE Definitions

Windows Live UX Platform

Windows Live UX Platform Language Pack

Windows Live Writer

Windows Live Writer Resources

WinZip 17.0

WTFast 2.11

Yontoo 1.10.02

.

==== Event Viewer Messages From Past Week ========

.

30/12/2013 4:19:18 PM, Error: Service Control Manager [7038]  - The nvUpdatusService service was unable to log on as .\UpdatusUser with the currently configured password due to the following error:  Logon failure: the specified account password has expired. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).

30/12/2013 4:19:18 PM, Error: Service Control Manager [7000]  - The NVIDIA Update Service Daemon service failed to start due to the following error:  The service did not start due to a logon failure.

28/12/2013 7:37:42 PM, Error: bowser [8003]  - The master browser has received a server announcement from the computer ALICEALLINONE that believes that it is the master browser for the domain on transport NetBT_Tcpip_{B1AA15DB-971C-45A3-A509-22E20A175BB6}. The master browser is stopping or an election is being forced.

28/12/2013 12:36:30 AM, Error: Service Control Manager [7034]  - The IBUpdaterService service terminated unexpectedly.  It has done this 1 time(s).

25/12/2013 1:02:56 PM, Error: Service Control Manager [7034]  - The Intel® PROSet/Wireless Zero Configuration Service service terminated unexpectedly.  It has done this 1 time(s).

24/12/2013 11:19:17 AM, Error: Service Control Manager [7023]  - The Intel® PROSet/Wireless Zero Configuration Service service terminated with the following error:  %%-2147196306

24/12/2013 11:18:50 AM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001]  - The computer has rebooted from a bugcheck.  The bugcheck was: 0x0000007e (0xffffffffc0000005, 0xfffff88001297865, 0xfffff88003f165d8, 0xfffff88003f15e30). A dump was saved in: C:\Windows\MEMORY.DMP. Report Id: 122413-33462-01.

.

==== End Of File ===========================

 

Link to post
Share on other sites

Step 1

Please uninstall the following applications:

Babylon toolbar

ContinueToSave 1.74

Yontoo 1.10.02

Step 2

Please download Junkware Removal Tool to your desktop.

  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista or Seven, right-mouse click it and select Run as Administrator.
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
Step 3

Please download AdwCleaner by Xplode onto your desktop.

  • Close all open programs and internet browsers.
  • Double click on AdwCleaner.exe to run the tool.
  • Click on Clean.
  • Confirm each time with Ok.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the content of that logfile with your next answer.
  • You can find the logfile at C:\AdwCleaner\AdwCleaner[s0].txt as well.
Step 4
  • Launch Malwarebytes' Anti-Malware
  • Go to Update tab and select Check for Updates. If an update is found, it will download and install the latest version.
  • Go to Scanner tab and select Perform Quick Scan, then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply.
Extra Note: If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts, click OK to either and let MBAM proceed with the disinfection process, if asked to restart the computer,please do so immediately.

In your next reply, post the following log files:

  • Junkware Removal Tool log
  • AdwCleaner log
  • Malwarebytes' Anti-Malware log
Link to post
Share on other sites

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Junkware Removal Tool (JRT) by Thisisu

Version: 6.0.8 (11.05.2013:1)

OS: Windows 7 Home Premium x64

Ran by celine on Wed 01/01/2014 at  2:37:57.30

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 

 

 

 

~~~ Services

 

 

 

~~~ Registry Values

 

 

 

 

~~~ Registry Keys

 

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{6536801B-F50C-449B-9476-093DFD3789E3}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\babylonhelper.exe

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\yontooieclient.dll

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{706D4A4B-184A-4434-B331-296B07493D2D}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{FD8F79A0-D2E2-4FA2-AEAF-393EAC8064F7}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{5C927B89-5D80-4017-889F-93294895BC5F}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{706D4A4B-184A-4434-B331-296B07493D2D}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997}

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{FD8F79A0-D2E2-4FA2-AEAF-393EAC8064F7}

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\conduit

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\cr_installer

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\im

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\iminstaller

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\privitizevpninstalldates

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\softonic

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\startsearch

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\conduit

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\crossrider

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\smartbar

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4A99-B4B6-146BF802613B}

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC}

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B}

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{98889811-442D-49DD-99D7-DC866BE87DBC}

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-728602370-3501918367-1261635014-1002\Software\sweetim

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-728602370-3501918367-1261635014-1002\Software\wajam

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\tarma installer

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\wnlt

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\driverscanner

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\prod.cap

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\yontooieclient.api

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\yontooieclient.api.1

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\yontooieclient.layers

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\yontooieclient.layers.1

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\babylontoolbar

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\optimizer pro_is1

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\anti-phishing domain advisor

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{c2f8ca82-2bd9-4513-b2d1-08a47914c1da}_is1

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{c3e85ee9-5892-4142-b537-bceb3dac4c3d}

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{ea8fa6be-29be-4af2-9352-841f83215eb0}

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\babylon

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\sp global

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\sprotector

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\au__rasapi32

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\au__rasmancs

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\babylon_rasapi32

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\babylon_rasmancs

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\babylontc_rasapi32

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\babylontc_rasmancs

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\driverscanner_rasapi32

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\driverscanner_rasmancs

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\mybabylontb_rasapi32

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\mybabylontb_rasmancs

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\privitizevpn_1_rasapi32

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\privitizevpn_1_rasmancs

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\privitizevpn_rasapi32

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\privitizevpn_rasmancs

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\sweetim_rasapi32

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\sweetim_rasmancs

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\sweetpacksupdatemanager_rasapi32

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\sweetpacksupdatemanager_rasmancs

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\wajamupdater_rasapi32

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\wajamupdater_rasmancs

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_windows-live-messenger_RASAPI32

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_windows-live-messenger_RASMANCS

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{7237E39B-EEA9-4CD1-B628-2D8C638306A1}

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}

 

 

 

~~~ Files

 

Successfully deleted: [File] C:\Windows\Tasks\Dealply.job

Successfully deleted: [File] C:\Windows\Tasks\driverscanner.job

Successfully deleted: [File] "C:\Users\celine\appdata\locallow\SkwConfig.bin"

Successfully deleted: [File] "C:\Users\celine\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\driverscanner.lnk"

Successfully deleted: [File] "C:\end"

Successfully deleted: [File] "C:\Windows\system32\dmwu.exe"

Successfully deleted: [File] "C:\Windows\system32\ImHttpComm.dll"

 

 

 

~~~ Folders

 

Successfully deleted: [Folder] "C:\ProgramData\anti-phishing domain advisor"

Successfully deleted: [Folder] "C:\ProgramData\babylon"

Successfully deleted: [Folder] "C:\ProgramData\blekko toolbars"

Successfully deleted: [Folder] "C:\ProgramData\softsafe"

Successfully deleted: [Folder] "C:\ProgramData\starapp"

Successfully deleted: [Folder] "C:\ProgramData\sweetim"

Successfully deleted: [Folder] "C:\ProgramData\tarma installer"

Successfully deleted: [Folder] "C:\Users\celine\appdata\local\blekkotb_031"

Successfully deleted: [Folder] "C:\Users\celine\appdata\local\cre"

Successfully deleted: [Folder] "C:\Users\celine\appdata\local\wajam"

Successfully deleted: [Folder] "C:\Users\celine\appdata\locallow\babylontoolbar"

Successfully deleted: [Folder] "C:\Users\celine\appdata\locallow\conduit"

Successfully deleted: [Folder] "C:\Users\celine\appdata\locallow\industriya"

Successfully deleted: [Folder] "C:\Users\celine\appdata\locallow\sweetim"

Successfully deleted: [Folder] "C:\Program Files (x86)\sweetim"

Successfully deleted: [Folder] "C:\Program Files (x86)\websearch"

Successfully deleted: [Folder] "C:\Program Files (x86)\yontoo"

Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\uniblue"

Successfully deleted: [Folder] "C:\Users\celine\AppData\Roaming\microsoft\windows\start menu\programs\browserprotect"

Successfully deleted: [Folder] "C:\Users\celine\AppData\Roaming\microsoft\windows\start menu\programs\torntv.com"

Successfully deleted: [Folder] "C:\Windows\syswow64\arfc"

Successfully deleted: [Folder] "C:\Windows\syswow64\jmdp"

Successfully deleted: [Folder] "C:\Windows\syswow64\wnlt"

Successfully deleted: [Folder] "C:\Windows\system32\ljkb"

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{00A4840C-7C3F-4F0B-99DB-05457D7EF79F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{00FBE01A-DE66-4C46-B545-EDC34F0F8299}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{014AC566-7B1A-4014-9601-91812CB26EFC}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{02127E47-EE8B-42E3-ACE9-DEA1D328C71A}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{035BF860-B773-4D38-A785-2F2C8930BB65}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{038EADB0-FDE4-4CB1-979F-D688EE18FFB3}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{03F04EAC-A1DF-46A7-A21E-468E695F37BD}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{04053446-3810-428C-9523-623A893FF7C1}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{041A6F25-85D4-4722-A7E5-4CC1392A1CE3}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{04252EC1-5647-4609-8A06-1D146268E3BB}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{042A5A6B-37E5-48EC-82D6-2A8043EF3590}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{05251319-18D8-4FBB-ABC0-ADFF99F22D8E}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{061C67B0-7D24-4E3C-93A8-705A6DAB871D}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{068CC2EF-4AFC-4940-9FDA-212D602864CC}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{0691839E-4812-42F9-927D-9E6BD3B92C27}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{073391BE-0B76-48D7-A744-87DDCC88263B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{07592BC5-5CC4-40B7-B90D-496CBC54853A}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{0803F9E5-D4BF-4CEF-AD13-55AB7F1CD61A}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{0894177B-1CCE-4FC9-B58E-BAEFB16714FD}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{09492353-3DA1-4364-926B-E822CCD8B585}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{09C65AEF-E18A-4576-89B2-0A6DC1EF0817}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{0C402A26-3B8C-4CFA-BE84-DFC549AEE6A1}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{0C4FB8C5-6787-46D2-88CE-9810DBEDF588}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{0CFAF946-D54D-4F2F-BA7C-3595B100E0B9}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{0D0AA6B8-0E2E-4DB7-A386-CC16CAC1F09F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{0D65B80D-7422-4A5A-9009-6D274B40F86F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{0E96A198-B8CD-4E69-A872-04F234A7BD70}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{0F125F94-1DFA-4446-8735-15FDFE441B50}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{0F152050-5A6B-4519-AD3A-407B886C1B00}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{104A8680-4898-4D72-859A-2105DE13876E}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{1084FFBF-DFD6-4B2C-A57E-384E61EADD07}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{113A7C71-5E2E-4AAF-9CBB-80847B362190}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{11E1FBE3-EC11-431E-B1E2-7C53C0DBF434}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{129ECDD6-162C-415C-AF80-FF6F68DC5801}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{13B2FBA6-FE97-4ED3-9C85-1233FC7E8608}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{13D5D0A6-1AFC-4145-9A73-E4F7AFBB6729}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{1574FAC6-C912-417D-800C-4481B0AEF2A4}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{15EA6026-6114-48A2-ADED-F446E7E07716}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{16ACA24A-A7C8-4106-954C-7871AFD7F265}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{16E3912E-B9F6-47D4-A056-4386C7EBB357}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{176D7E94-42F7-4995-A213-A3738DAD9C6F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{17AACCC8-38F7-40DA-8DB4-902D1A87A634}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{1877220B-B588-4C01-B586-181C702039CB}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{191DFF3A-DC01-41E9-861A-B792D5C0D3F7}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{1952BF70-8D3C-41EB-AD76-3A96507A703B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{199FAC0E-86AD-4D7D-A16A-4A461DDA8001}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{19F7A204-4501-4897-8CE2-9291DBD4931E}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{1A18318F-8D20-4371-9B02-E13BEF95AF69}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{1A817D39-AB83-40FB-B172-D074384171A5}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{1AAD6183-DAD7-4E99-871F-1040D86E893D}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{1B48167A-7E79-4CF6-8917-295F8A1AA7C9}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{1B736140-9184-474E-89C4-9C2209AE8BFC}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{1C3BDEDC-3D7B-4103-B764-386E3D1B5936}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{1C71FDEB-0943-447E-B5F0-D514B90548E7}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{1C7786FA-FBA3-4409-A14F-7B778795EC62}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{1C89B63C-C236-46CF-BCD5-0EAF6CC2E397}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{1CD32287-E489-4F7F-B2BF-D18E05AD5881}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{1DCE2DAC-ECB9-4824-867F-122498DB7B11}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{1E4D60C2-D375-46A5-B72F-997E03DEA017}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{1EDF1194-DF69-4AC1-870D-B4F8360E9DA8}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{1F7A3924-DF42-40E6-BFBD-783C9A541E7D}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{202B9347-EBCC-4028-9CEA-859F0B1053AF}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{203CA6B5-4F0F-4A6A-BF25-F8258D7CECF9}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{20710B36-B901-49A9-921D-1B0EBE7DEC6F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{2158FBE9-4BF5-475E-AD18-B2CF6AC14012}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{21B39EE2-67E1-429F-BE76-D44344C7EA13}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{225F3F02-2E6C-41DC-93BA-E77AB892C080}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{22653E76-414C-4347-B6F8-3E168280F2FA}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{22708FCE-0375-4B91-BD21-B8DF730DBF08}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{22D90DA3-AC86-43CB-BADF-074116C420DF}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{22EF3BDF-2C54-4869-BFDB-A67CC0BE51A2}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{22FF6890-F659-4DCB-B7C4-8CE7B14AFB36}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{2337BBE7-5C40-471C-A8A5-87E8E79B6144}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{23AF2E79-1E58-4138-9DA4-52952ECAA020}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{23D20781-5457-43C1-8BF2-345FC9F06185}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{23EDBF03-A90A-45E9-B414-21E9D1356F57}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{240A62A1-1902-446F-8CEC-FE806D800F07}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{245FB1D2-1D07-448F-A4B3-E275021CFA8A}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{25F6C6FB-19AC-4F86-BEB4-D6F67DAF3B04}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{26FCA1AD-3875-4E5B-ABE0-AC9F600E340B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{27D56030-0253-4095-94D9-E1A129642BA0}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{2846DE32-6489-46D3-ACD0-0873AC44BA99}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{28675DF1-4D91-40FA-855C-A59C7D0F9CB0}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{297A4D7B-89F8-4738-9D46-03191E29485B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{29AE6B28-C00A-4205-9472-C7639049F0E1}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{29CAA92C-0682-4E5C-8BA6-B2489249CD5F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{2A3B8E3C-1B23-4A43-BCE7-7E1A167149D3}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{2A40B32C-D343-47D1-B597-495AE639F6AF}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{2C26A9B3-D434-4783-BC4B-A81983E74B20}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{2C855BFD-F8F2-4FA0-A567-5B02C90ED55E}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{2D7FEE1A-9C90-4F6D-96E9-38A03706A468}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{2DD6DE48-4DF2-4790-819B-3976FDE7B227}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{2ED32FF2-486F-4AEC-8632-3F1CD1747E23}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{301D4DF0-A6AB-4730-B8F6-0068707A0183}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{30767454-EB81-4E93-A9FC-E22A94F2662D}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{31CAB69A-5369-4F28-A016-BA95B07BD849}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{31E38AAB-B254-424D-89EA-BF4E1E696F2B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{333917A8-F2AD-4A10-8DAB-CDED98DC56C8}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{3346160B-4D78-449C-93FD-25009C443C62}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{3348A810-D512-4644-AD11-B895E9FFC0F2}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{338375D1-9909-4E61-AEF2-25AFD691259C}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{33C2B126-C080-4C59-BF63-B94EA9EF9031}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{3429E816-FF99-4E06-B092-185E24E12F8E}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{34958199-1986-4483-B955-888FF1A144F9}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{351C3CE9-1141-41CE-BEF4-0E0295362FCD}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{35544A5F-BFBD-4368-93FC-0F2A57FB3B6C}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{3563059F-AAD5-46B6-A0F8-72EF78C19FBF}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{3653C100-F005-4B77-812C-50BE77027DFC}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{38673D16-8D05-483E-BFB4-18CB55C084D9}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{3877BD53-7E2A-46DC-97E2-41D40D12F6D8}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{38CF1872-7016-4BF0-9741-E8E96FE30D7D}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{39110896-D1D4-4C05-B154-F44189DEFD81}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{3A230259-6981-43CF-BA57-843F2599F6D8}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{3ABA1C50-129B-4264-BBC6-8FA96A8874B9}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{3BC587D9-DC86-4A5D-911B-995BFBCD5FC6}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{3C616AAC-0B5A-42EA-BDF8-3C34F9DA46CA}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{3C82BC8E-053A-4252-8B37-8F9B50187896}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{3C9B16D0-49ED-4262-95EE-1541365CA5A8}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{3CABA718-CFCE-4841-B39C-E387C56FA24F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{3D0009C6-DD05-4A13-B2EE-06D94F2AF88B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{3E5E4B10-2703-48FE-85C1-E8C1AF67F295}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{40B58067-2BBE-4C48-8770-5218BD3AA332}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{42B60302-A9E2-4FC4-9253-09EC8050051F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{42D8A904-FB32-4AE1-ACC2-52D4A3C83502}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{435EE0DB-D503-4152-8C80-602293B5FDEE}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{4375FB7B-6324-4948-9B79-88C0142BB337}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{43C76C02-9DB2-4F55-A101-2606BBCA28B0}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{43D32134-B07A-4A13-BA37-0A6EB095D40F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{442BC1C4-AEC6-453B-901D-35B445D820E2}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{44A62188-EA3C-455C-8AAE-4B339A1A9307}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{44DF4A50-9CCD-4DDA-A8F4-F7467A175F08}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{44EF3401-3382-4409-9406-D86EDF87FEF0}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{46197CEF-D695-490E-88C4-42EE7D885721}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{4659CF1E-E08D-4C9A-8252-C05B6BA57C0A}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{465DE6D8-E2D9-4D01-9737-5925E422A7E1}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{47163B71-9E37-4C0D-B726-F1E69CEEB145}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{47DB68B1-A95F-4094-90F5-1438144B93C4}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{47DE1CA8-0D0E-4121-B7A3-C37BA05FC69D}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{480BB61F-E918-4D31-8C08-64BCFDF2D058}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{48A1B6CF-9282-4242-BC48-2CA2EBF0F50A}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{49458CFA-F0AB-4990-9FEF-1206741CB6EE}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{494F971D-569D-48F0-A1C9-99A44C5B6E8F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{4A330F01-02F9-429A-92EC-B3E98432B44A}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{4A716C94-BBC2-4833-8849-C0A20882E3F7}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{4B5ADC21-8968-47F5-B8ED-99D3D2108BB4}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{4DA9F77A-2E30-4111-887E-670A55972B89}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{4DF59DE2-6898-4B0A-908A-D6C5EDF4F160}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{4E195425-7832-4ABB-BF0F-C6B73703E694}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{4E569865-C854-4ED5-8B55-1674D341738F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{4E7B8585-D6C8-41EA-AFBC-E88E30CE3D55}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{4E9B8E8A-D31A-4C1A-919B-AA03D5DD0033}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{4EAB4C8B-759C-4FEF-8F05-7384A0294159}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{4F9EB0F2-4EC6-4726-8CEF-09A95CA2994C}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{4FE31DC4-561D-465B-AB90-3D9B62F142A4}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{505AA86E-6832-44E6-9B54-701E8C61522B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{51210693-B8E0-4F9C-95B8-6AACA898B77B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{51C4E9F3-A623-49CA-8366-C1552CE009DB}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{5287985E-E1E9-43F7-B12F-629179D9FE71}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{52A1EDD6-32B5-4B13-8B4F-B75EC5CD3869}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{52A28ADB-7000-4E5A-98BB-1DAE8BDBBEAF}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{54DD5BC4-FD76-4FE3-970C-F9972D82BCA5}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{5543D81C-438A-48BE-A20A-3B67B232A3A2}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{5574CE9C-BF34-42AA-BA2F-E761B0A62CDE}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{55D0150B-4063-4F15-B46F-DBBCA509BC13}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{56345D92-FB99-4201-825F-3131906E29D2}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{56899E87-A362-4C83-821E-1A5622284214}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{56DF312C-26D9-473D-AF9D-AE4836C77578}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{5722AE5C-0902-40DC-A1AA-5E622A9E7387}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{5736F5A5-8C43-4A80-8EBF-3925B2F9ACA4}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{57504CC8-5C74-4C30-A286-D20E68761F39}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{5750A297-4480-4CEF-8F2F-24DD091317AD}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{5800F014-ACE1-431B-8D43-CDFEA163B130}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{580B5279-7A88-4D95-BADF-D9E6EFE493DA}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{58C6DDE8-087D-4ABE-ACF4-19ECC790BB8C}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{59B1705B-89FC-4935-90A9-AE18E0031DD8}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{5B8C3ECD-9C2C-4C78-8C4E-4DD4C713E4D4}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{5BF5563C-9E0C-4E4E-80CF-E4D4B308EA7E}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{5D89F137-E955-4E87-8E5B-3DC141755DA4}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{5F907A1A-71B5-4F16-A168-283D6CA0CBE3}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{60C38C4B-D11B-4CDA-B91D-5A150A2D0917}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{610B8E79-0700-40D5-82D4-BC974A18B680}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{61198FFD-B77B-4838-8DD0-A05637AACCEF}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{61B5DE3C-A130-40A7-BAE3-F007D13B4A05}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{63206E72-0F97-451B-8D71-0CA6A121BFFA}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{63CEC525-1D05-4C1A-8998-4F17B502FAA3}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{647620D7-B12E-4AA3-B9BB-738FED98E6E5}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{65814619-160C-49DA-8165-53EC30502F73}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{65932826-25D4-452E-B122-A42F7FED0071}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{65BA94C5-84F3-4DAF-85AC-8FF65823114F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{665E887A-619B-4086-AFAA-BDEAD68ABB62}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{66659951-6AF2-4847-910D-8FBE16C6D1D8}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{66F69905-A1D7-4A4F-A532-43CB31CCADDD}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{671CD54D-899D-4DFC-97A1-76B78C959D57}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{67BE947B-E88E-48E1-B8B6-FD9CF4573E91}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{682BEFDB-2C71-4988-8364-6EC169CD3C8B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{685A8210-B958-45BF-BF83-79D4B98653BA}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{6A1C24D1-E356-4CA3-9F27-EF9A43CAD818}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{6A2C533C-CEBF-4393-8C3F-DA4BAFCEF3B0}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{6BA4654F-2ADB-4658-BA31-A47DE0AB7F80}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{6C105B51-9B8F-40B5-BD5C-8D081A542F32}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{6C2DAE44-FA00-45E5-925F-E10060641A16}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{6C5CDF3F-3429-4269-9F8E-7307A98D4C0B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{6DA46194-925A-4439-895C-50FD3192C2B5}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{6E32AA88-E877-444E-BB3E-F4102EF9D3F8}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{6E3FB45E-6D66-49F3-A1CD-7538AB92A367}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{6EEC9A2C-3862-4696-B551-269C3EA7AA73}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{6F1332C9-7A10-4249-A9FB-EB2EA0C0C221}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{6F7AD9A4-D4E4-44B2-9664-98E336856F58}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{72619508-430F-48E7-B4BA-E76C0F8E7AD4}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{72BB73EA-5319-4FC4-83EC-47A12EDD1779}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{7331E3D9-10D6-4BA9-AFCB-126155B69905}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{73B4AFBE-590E-4BD3-B10C-23CCB43D1D27}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{741D0053-254F-42E1-9082-D2B3F320EC95}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{749D6D1F-C691-4978-B65A-A55C55A8A27C}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{75C98E24-F34A-48DB-9E46-5F551D5A08B3}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{7658A108-EF93-4605-87E9-330BB995F424}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{76FB62E6-521B-4F24-9D99-97B636672E66}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{7712A72B-D893-4668-97B7-F6BD1563E321}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{77220B41-7CE4-4FE5-975D-069CAC5DC873}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{780A0E7B-FE9D-4316-8C8E-6644E84D6322}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{782FA6A3-56E1-47B5-A32D-ADEF34EE0B54}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{78499414-9588-4629-B017-54E3FABA586C}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{78BAC8FA-4087-4A21-89B0-766CBF667A0F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{7B916F25-FFD8-4D78-AA07-BF161800EB09}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{7C154E00-F095-4F91-8B66-2C8542D03EE2}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{7D6F9535-7CDD-4A95-B6AD-37BCCFC23369}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{7DF042EA-58AE-449D-AB7D-A172E635CA32}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{7E549235-9495-4815-AF02-ABFC4C1A24CD}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{7F0F8153-9F22-494A-A25E-144209CD5A6A}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{7F1E42AE-95EA-4B31-A1D2-86D66558B5D7}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{7FDCBC4D-D5DD-4438-BBF3-18551BB42B0A}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{800E28FA-D1A6-4DE1-9992-82A7669C2B52}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{819329D5-AB7A-41BC-B57A-7BA25FA38335}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{81C60B27-4EE9-4A0B-B5C9-7EC0E5B1C74D}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{82C229BE-E286-47AA-983B-61A76CB10A74}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{82CAA981-8DF4-43E3-8485-E1BC44D2581E}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{84176155-3A56-4DB4-A414-8BD570BF8342}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{84E49399-42A5-467B-AB5A-F063385A040F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{85B923C6-E259-465F-946A-6BC732753266}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{85BE847E-E733-4B4C-983E-33432ABC2CB2}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{8616C1C6-729D-4B97-835C-E9469650F469}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{8691C3FE-2936-4F88-B6AA-F1A578429161}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{873067BC-D326-4FEE-BC17-1F51261C0C5C}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{87843E93-EDCD-47C0-BFFE-B2E92AA5B61D}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{88DE5314-0632-4D93-8230-068642DD5D89}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{88F0E22D-55C8-4D67-9C3A-BAA71B5CD44E}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{8953CAE1-01E5-4664-A6DE-163F8FD0AFBD}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{896B6697-3BDD-4D95-A137-BEE6367A8BF2}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{8B31B2AB-5F15-43C8-819D-C764BE270129}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{8B995570-E3F4-4C3F-BAF3-0F11FB483245}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{8C59BD71-46B7-45F4-85ED-89FE1A81E683}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{8D002A18-9ABC-49FB-9E11-2512FD2EC3C0}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{8D87909D-3071-4DAE-820E-F5E7B9139E77}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{8DB5C2BE-B968-4085-BEC9-7473E98A6531}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{8DDD9E9A-7158-46D1-ACEC-D99A78C00E72}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{8F314795-30FB-450E-B500-90B8EF60F9BD}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9009FCAB-B4DD-4E24-A349-62EB5213D80E}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{906EFC94-7E66-4BC6-A70E-FAE3B5EF19F8}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{909DA3A6-E68E-4543-939C-E76C994D3BA8}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{91158B76-D2DF-439B-B577-3602937E5D97}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{92477107-7BC3-48A1-A254-D475AA263158}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{93348CB6-8EC5-479B-B991-1A3C6BE6A88E}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{939AD07E-9852-41CB-8C11-708C0C5739D9}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9431C05D-38D1-402F-8BB7-1034628480AB}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9524B284-17B5-4DA3-9B62-2D695EF4BD8F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{953CBAA6-2BC1-4C2C-B170-650014FD9719}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{955A4335-65E4-4974-BBB3-3C521CBBB440}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{960104AE-919A-43F5-8A8A-48A54E9BE6F2}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{96329111-DCC9-4775-8304-D971228D8024}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{967B2D97-708E-4FD4-A896-5E228AE46DC3}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{96D2F59B-1BB8-4D5D-BB61-047AE4559EBF}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9937DFE7-4FB8-4BC3-B8DC-9160A7194EB1}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{99BEFEAA-31B0-4591-8B52-50614B0A68AD}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9A078588-5A8B-44AA-93AA-9577401D423E}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9A29018D-5DAE-4C3E-A8BC-6AAD24A3C424}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9AAF9C16-472B-42CA-838E-5E13938DD6C3}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9B23CB6C-7CC4-47FD-A8E5-EADD968E79CF}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9B376AFB-217F-4C74-A0FC-DF42FEFE1209}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9B520660-8EE9-44CA-A3DA-477C88E10A9A}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9B89C8DF-32A1-4136-B748-0D2017192218}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9C134F12-E248-4636-93D1-173C9C4C6BB0}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9C1AF934-4B5A-4A48-8CC2-5E5B888ECA23}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9D45F46E-DC20-497F-9D74-751C5ED213AC}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9D526DFC-31D6-4C37-99B0-91CB896C8B21}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9E0F716F-AD87-4BD3-8B68-E0302E6E6BB1}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9E4A57B9-DE33-44B9-82B1-A1BE64B71FF8}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9EB83729-50C3-4C31-8FEA-2F8BC9D53F2B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{9FF6B9BB-642C-4F50-AE2D-5E98C40B3142}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{A387E4DF-41A5-4FB8-A5E1-E6C915C59839}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{A45877C9-D1A9-4F53-BB23-DDBC72E64042}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{A6899C53-71C9-4140-B3F3-93A59F64636A}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{A779E025-CB2E-4FC6-A580-6713A016DBEE}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{A81D3A16-20B2-44E2-B129-C1E583EB8D3B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{A863CCF6-5F52-47EB-9BC6-45CB57D7B343}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{A8BF4040-D400-446C-A713-D1DB6FC504A1}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{A9A71BC8-4A83-4FD3-AC20-D35BA55315C8}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{AA09B223-307A-4B8C-BE4B-45511B1CFF4C}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{AA318DCE-45F3-4E67-BBCC-CE73591B1CAF}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{AB2C3ADC-1974-4AB8-A4FC-A2D91AA41BB2}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{AB32AF38-6B69-4EAD-A7E6-9592E2A3EBC7}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{AB6FE154-5444-4FD3-83B9-B99C5EE11A49}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{AC02B729-BA23-4CA5-85D8-68D544DB6E13}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{AC10974A-AB94-4461-9AF3-0DF77D59D0A3}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{ACCCFEE8-50D3-4BE1-9E2A-D2717B9250FB}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{ACDD5DD1-457C-4C16-9258-748BAA6C5A35}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{AF72B385-841D-49E9-BA46-E631C2C14120}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{AFA3C0DC-B471-4061-894C-480A29F45F9C}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B14B9017-505E-4AE9-AAB8-61FF8E3754BA}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B2BABC42-A053-42D2-811F-008F79B12957}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B3257669-7FDF-44EE-AFFD-BA68B543B1B4}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B33885BA-C468-4B7A-B77C-D83BA89FB7EA}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B3641F96-AFA3-4CAD-ADAA-AC287BF32292}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B392BEE0-B1B1-4D56-9157-BDA1993846B5}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B416ABCB-A12B-4D2C-B610-B48560108A7E}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B4BDA5F3-CE05-4A82-AE81-549AC9833382}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B4DB4259-C2C1-43A1-87B5-00A42F7DFC10}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B547C21C-C4A4-4E53-B9FF-E67C6E68A9FE}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B5E20BC6-C417-4C62-BA51-132FBAE7E989}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B682A7B9-9A71-4888-97C8-75B8E9DD6E65}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B6DA0B8D-21F1-4311-B16A-17AEA84AA99D}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B74C0D3F-1E42-476E-81DE-FF86E81BC029}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B784A72A-EAAD-426B-9B01-754FBF86E932}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B7AEE724-16F9-4363-A290-9DD279081BEA}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B8228AC1-BDE6-4D64-B837-5A804A10B7FA}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B82BEE45-C2F0-48F8-ACB1-64BE3B5472B6}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B8555CEB-DD7A-4FC9-83C8-6EE51221245E}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B89851BE-2EED-42D6-A90D-BDCFFF126BD9}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B8F75B0A-54F9-4189-81BC-DB235DDE5907}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{B972EB46-6376-45B4-853F-6475DAF49C57}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{BA94051A-5C82-4B50-957F-66884274B722}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{BC0C7083-033E-46CC-AECF-F87A1A2DBF95}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{BD6777CB-99F5-4596-97E6-CB787449A22C}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{BD7376A7-EC00-4B8A-A565-CD3952C5BFA1}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{BDE7DDDB-48E6-4E33-9F6E-7251E69CD563}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{BF36D74A-4A31-422A-86DC-B3FB8399A36B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{BF601920-8428-4ECC-9625-1FC7B6817661}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{C165EA8E-D3A1-4036-B406-7C3234C230D2}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{C18C56BA-83E2-4592-AC7A-51DD8E1C0342}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{C299B9DD-CF07-46D0-B6FE-8CD5106AED75}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{C455EBAC-F6F8-4693-8C32-A882BE391982}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{C4DA33A5-1AB6-473C-9F86-DE2400BFFCA5}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{C4FA6A7A-1EA0-4B54-9F9C-2699E059158D}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{C5452761-14A6-4161-B933-69855B8655B4}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{C729F967-F333-4046-ACAD-DD5E0F2D9469}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{C96BF68B-AEF5-4E05-84CB-20CEDDB223B8}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{CC48358D-E90B-4E4F-A0FA-BC069644CBE6}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{CC744763-EA6D-4EAE-A254-7B7DD22D4FB3}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{CD54FB6B-BF1F-4702-A00B-23F935646696}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{CE1E59A7-A4C8-4AAF-8223-430633AC4899}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{CE31F7CF-54E5-48EA-9367-43290B7F75D1}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{CE8710DB-2677-4381-A1C8-07458163D633}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{CF444B8B-E113-4F7F-91BB-E0598C55DEB8}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{CF72A5C7-14E1-4102-AEA6-98447E70DEDF}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{D0EA7B9C-9E82-40F8-952A-15568F000A13}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{D19D12B4-1758-4B21-AB20-91EAEC8F6B08}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{D1EA162A-A8AB-4389-BC2F-272E5AD80451}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{D29BA1C3-4241-437D-891C-41FEC6C36CE7}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{D2A56F6C-FD65-40BF-A604-9312F20866BB}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{D3605360-38BD-4589-AC45-22A418E150ED}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{D45A24DB-B869-4FBD-A202-C3806973F26C}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{D85BCB7B-A37C-49CB-BE0E-825F4C662AC3}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{D8E5C5B6-E604-4409-B2AB-CE57E7CDD34B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{D8ECCA80-6A5B-4544-B619-7813244B2FAC}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{DC44F755-A185-4F28-A225-81BEBD00D5B5}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{DC782CB3-AAD9-49CF-BE05-03661C0FD24D}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{DD2FF885-BAF4-45FD-8DA5-DD116405160C}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{DE47392B-EAF5-47B1-B53F-B16A28094A7C}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{DEB1A99C-0C08-4F4E-A4FA-C13BC9DC9CB1}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{DED0A682-FB62-42FC-8C25-3BFFFE79A4B0}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{DED5184B-B3DB-4AE7-BC94-E3959362CCCA}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{DF4075B6-42AC-4FD8-AFE3-5E150E664B62}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{DF5386B3-153A-407C-9BAE-4B9E2505B8AC}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E050B8A1-063D-44C9-9D6E-42DCFA012DD0}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E08B2EF5-AE13-4CF5-9744-B6F80290810B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E09EA1D1-498B-4D16-9D52-0C5019E2712F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E12C1F30-7C71-4DF8-9A43-CAE61B6C1C61}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E13EB462-E6E6-4CA9-B3E8-9EF6E9422DE6}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E149BA1F-0EBF-48FC-B6F2-359E91E1B2B4}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E17BD9D8-EA41-431F-B11A-CDEC68B32BBB}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E1D04497-1098-4E4A-A6C9-A0C24AD6A345}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E2728466-141F-40AE-B5E8-3CA2D39230D6}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E2B1854F-380F-48EB-8632-796FE3009388}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E2DAAD01-D647-47FC-8656-1B3D300A2713}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E2E60B1D-A88F-4588-B7BF-763E55351945}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E2F14505-3049-47F0-950F-7E8A32C3966C}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E460686A-C072-4775-912D-AAF132EDAB55}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E46A0907-6DDA-4E93-8E55-8472979BFCC2}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E47F0916-B07A-45A9-B3BB-504399F2762B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E597F0C3-89A9-4B55-B351-541A6D8CF4F7}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E6F6E62C-33BE-4BBF-9A71-FF4B6825F0E6}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E7BC3039-D495-4645-BC80-F3E6B1111AD3}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E8094C5F-3490-41B4-8AA9-22F5C378BCA9}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{E92CA870-CA02-4F2C-BCFA-727A97A5A98B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{EA97CBB6-19BA-44E0-B042-F077ADFEAE40}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{EAC69551-C7E4-4C8B-B7E6-ECE526543ACD}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{EB348733-96FA-4315-B067-D191DBEF5F94}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{EB4F6ECD-C9B0-4B1D-8B37-E984A3CBAFF8}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{EB6DE533-895A-4291-AE7B-C7CDF3B0BE51}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{EBBD6081-AF51-445E-A102-56C761AD101F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{ED52609D-D3DB-4A6F-9575-6B14D4C75F5A}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{ED67DB45-EF6C-4A0E-AF70-9DF3201FA67B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{EDF2B880-3BF2-473D-B6C2-7B9D52F19EF1}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{EE557672-FCAB-411B-B946-FFFB9B664BA6}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F0137D6F-5EA3-445B-AD1E-04B280DDC213}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F0587046-CD59-45E4-94A0-3CCCA3111ACF}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F09A1CC2-1447-4B87-83B6-C117ECB7BA31}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F0BC9F14-5B23-4D94-9304-FA0907044D99}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F0BE206E-A014-4EE9-8EDB-8BE33BDEFC9A}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F119D69E-A700-4427-82E8-B803F17622CA}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F189EF69-B66C-4495-BEF5-1D2540D7D08B}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F1CFDD09-D60D-4D8D-BEBA-1206ECC35D93}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F28C55F3-D11A-4D3E-A8BA-A77D794B6F84}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F2C8313A-58EE-4CE3-A37A-81CCD32B7487}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F30BC751-52B7-4181-99AB-C1A1CD632E7E}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F350652E-89BE-4FCE-8E1E-801F4BA70BFE}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F492A526-C29D-4941-BB23-44BE96E70698}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F4A958C1-B987-4966-8C5D-7E596BA9AFF0}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F556ECBA-F4B3-4D67-8B56-C5E4871F8BE4}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F5E93B66-1453-4DC4-9652-5BE28F8B5C92}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F6004A5B-BF1C-4FF8-8E91-24F08282CC9C}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F6B76FCD-3208-4BE6-8073-AD4A31E0C77F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F6EE2826-DD0D-41B3-8365-DE6B7F30BF3E}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F6FE7437-372C-4DD3-A6B9-F564293D03DD}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F7051F4C-C870-4473-BEA5-0AB5265A93DB}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F71493FA-CB0D-473F-89CF-94A076FEF407}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F8BC520A-2429-4030-9880-D05899ADF2E9}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F8E4BCC0-2892-479F-B547-B8077F505D85}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F9486B82-8C0B-4EB5-B3BD-E9C0893223B3}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F9BE7AC2-C2B9-447F-B498-3D84D1BC0469}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{F9D01E26-D218-42DC-B9E3-9CF405EC712F}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{FA2AD3F7-BF0F-4FD2-972D-503AF21F1448}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{FAED3198-4184-4179-BC3D-51673FB915CB}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{FBCB90A4-9882-4AA4-833D-1366E53449B4}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{FC2CA6F7-5122-4C28-9EBA-4BC2DF06341E}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{FC9176AF-1A09-4132-9B92-DFFEC2A057C4}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{FDFAAC13-600D-4E4A-BAF4-82A72783D3B9}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{FE0503A9-22B0-400F-8C1B-F1A6A27B00AB}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{FE2763F4-5422-4F99-A120-97DC4697BF09}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{FEB967C2-3673-4CD0-B5E9-B9F6D48D9CC6}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{FF8E77D3-2E26-4777-8B99-F7A2CB13EE4E}

Successfully deleted: [Empty Folder] C:\Users\celine\appdata\local\{FFDEFE51-38CF-425F-A87C-A355F9480BED}

 

 

 

~~~ Chrome

 

Successfully deleted: [Folder] C:\Users\celine\appdata\local\Google\Chrome\User Data\Default\Extensions\jmhhdaimhfblnamlcdijbaakkifakade

Successfully deleted: [Folder] C:\Users\celine\appdata\local\Google\Chrome\User Data\Default\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Google\Chrome\Extensions\hggpkhijoeadmdfmlbdepfbngmhaldci

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Google\Chrome\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Google\Chrome\Extensions\jmhhdaimhfblnamlcdijbaakkifakade

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Google\Chrome\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Google\Chrome\Extensions\pgafcinpmmpklohkojmllohdhomoefph

 

 

 

~~~ Event Viewer Logs were cleared

 

 

 

 

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Scan was completed on Wed 01/01/2014 at  2:44:26.13

Computer was rebooted

End of JRT log

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Link to post
Share on other sites

# AdwCleaner v3.016 - Report created 01/01/2014 at 03:10:49

# Updated 23/12/2013 by Xplode

# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)

# Username : celine - CELINE-PC

# Running from : C:\Users\celine\Desktop\AdwCleaner.exe

# Option : Clean

 

***** [ Services ] *****

 

 

***** [ Files / Folders ] *****

 

Folder Deleted : C:\ProgramData\Uniblue\DriverScanner

Folder Deleted : C:\ProgramData\BrouwsEe2save

Folder Deleted : C:\ProgramData\conotiNuetosave

Folder Deleted : C:\ProgramData\Searcohy-NewTaeb

Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\conotiNuetosave

Folder Deleted : C:\Program Files (x86)\BrowseToSave

Folder Deleted : C:\Program Files (x86)\FindLyrics

Folder Deleted : C:\Program Files (x86)\Uniblue\DriverScanner

Folder Deleted : C:\Users\celine\AppData\Roaming\Uniblue\DriverScanner

File Deleted : C:\Users\celine\AppData\Roaming\Mozilla\Firefox\Profiles\0\searchplugins\WebSearch.xml

File Deleted : C:\Users\celine\AppData\Roaming\Mozilla\Firefox\Profiles\0\user.js

File Deleted : C:\Users\celine\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\user.js

File Deleted : C:\Windows\System32\Tasks\DealPlyUpdate

 

***** [ Shortcuts ] *****

 

 

***** [ Registry ] *****

 

Value Deleted : HKCU\Software\Mozilla\Firefox\Extensions [{58BD07EB-0EE0-4DF0-8121-DC9B693373DF}]

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jbpkiefagocgkmemidfngdkamloieekf

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj

Key Deleted : HKCU\Software\Classes\VirtualStore\MACHINE\SOFTWARE\Wow6432Node\BabylonToolbar

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS

Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WajamUpdater

Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MS_MY_Client_090416

Key Deleted : HKCU\Software\522db8cbc34be41

Key Deleted : HKLM\SOFTWARE\522db8cbc34be41

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4C836512-BB70-11D2-A5A7-00105A9C91C6}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8769ADCE-DBA5-48E9-AFB5-67B12CDF2E61}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{99066096-8989-4612-841F-621A01D54AD7}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DB797690-40E0-11D2-9BD5-0060082AE372}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0BF91075-F457-4A8B-99EF-140B52D2F22A}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{37425600-CB21-49A0-8659-476FBAB0F8E8}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{431FB0E5-2CBB-4602-9FE6-F1D64488ADD7}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{5C9A230D-70A5-11D5-AFB0-0050DAC67890}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8911483C-C00A-4183-9FBC-6C9C00946C15}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C3F058A9-407D-4CD1-8F66-B75605B54B69}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EFDCAF05-D29C-4D4D-9836-8CDCD606A6B2}

Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{DB797681-40E0-11D2-9BD5-0060082AE372}

Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}

Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{44C9CC91-6A4A-4579-B4B5-899ECDC18DC6}

Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8769ADCE-DBA5-48E9-AFB5-67B12CDF2E61}

Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}

Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{44C9CC91-6A4A-4579-B4B5-899ECDC18DC6}

Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8769ADCE-DBA5-48E9-AFB5-67B12CDF2E61}

Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}

Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}

Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}

Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}

Key Deleted : HKCU\Software\AppDataLow\Software\findlyrics

Key Deleted : HKLM\Software\Uniblue

Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}

Key Deleted : HKLM\Software\Classes\Installer\Features\9EE58E3C298524145B73CBBED3CAC4D3

Key Deleted : HKLM\Software\Classes\Installer\Features\EB6AF8AEEB922FA4392548F13812E50B

Key Deleted : HKLM\Software\Classes\Installer\Products\9EE58E3C298524145B73CBBED3CAC4D3

Key Deleted : HKLM\Software\Classes\Installer\Products\EB6AF8AEEB922FA4392548F13812E50B

 

***** [ Browsers ] *****

 

-\\ Internet Explorer v11.0.9600.16428

 

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default]

 

-\\ Mozilla Firefox v

 

[ File : C:\Users\celine\AppData\Roaming\Mozilla\Firefox\Profiles\0\prefs.js ]

 


Line Deleted : user_pref("browser.search.order.1", "WebSearch");

Line Deleted : user_pref("browser.search.defaultenginename", "WebSearch");

Line Deleted : user_pref("browser.search.selectedEngine", "WebSearch");


Line Deleted : user_pref("browser.search.order.1,S", "WebSearch");

Line Deleted : user_pref("browser.search.defaultenginename,S", "WebSearch");

Line Deleted : user_pref("browser.search.selectedEngine,S", "WebSearch");


 

-\\ Google Chrome v

 

[ File : C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\preferences ]

 

Deleted : urls_to_restore_on_startup

 

*************************

 

AdwCleaner[R0].txt - [7534 octets] - [01/01/2014 03:10:00]

AdwCleaner[s0].txt - [7131 octets] - [01/01/2014 03:10:49]

 

########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [7191 octets] ##########
Link to post
Share on other sites

Malwarebytes Anti-Malware (Trial) 1.75.0.1300

www.malwarebytes.org

 

Database version: v2013.12.31.06

 

Windows 7 Service Pack 1 x64 NTFS

Internet Explorer 11.0.9600.16476

celine :: CELINE-PC [administrator]

 

Protection: Enabled

 

1/01/2014 3:16:50 AM

mbam-log-2014-01-01 (03-16-50).txt

 

Scan type: Quick scan

Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM

Scan options disabled: P2P

Objects scanned: 234325

Time elapsed: 2 minute(s), 44 second(s)

 

Memory Processes Detected: 0

(No malicious items detected)

 

Memory Modules Detected: 0

(No malicious items detected)

 

Registry Keys Detected: 0

(No malicious items detected)

 

Registry Values Detected: 0

(No malicious items detected)

 

Registry Data Items Detected: 0

(No malicious items detected)

 

Folders Detected: 0

(No malicious items detected)

 

Files Detected: 0

(No malicious items detected)

 

(end)
Link to post
Share on other sites

Please scan your machine with ESET OnlineScan

  • Hold down Control and click on the following link to open ESET OnlineScan in a new window.

    ESET OnlineScan

  • Click the esetonlinebtn.png button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer.

      Save it to your Desktop.

    • Double click on the esetsmartinstaller_enu.png to download the ESET Smart Installer. icon on your Desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under Scan Settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.
Link to post
Share on other sites

C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\niapdbllcanepiiimjjndipklodoedlc\1.0.2_0\background.html JS/Adware.Yontoo.B application

C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\niapdbllcanepiiimjjndipklodoedlc\1.0.2_0\yl.js JS/Adware.Yontoo.A application

C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgafcinpmmpklohkojmllohdhomoefph\1.0_0\spext.dll Win32/bProtector.D application

C:\AdwCleaner\Quarantine\C\Program Files (x86)\FindLyrics\chrome.crx.vir Win32/Adware.AddLyrics.F application deleted - quarantined

C:\AdwCleaner\Quarantine\C\Program Files (x86)\FindLyrics\FF\chrome\content\main.js.vir Win32/Adware.AddLyrics.F application cleaned by deleting - quarantined

C:\Program Files (x86)\Dell DataSafe Local Backup\hstart.exe a variant of Win32/HiddenStart.A application cleaned by deleting - quarantined

C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\hstart.exe a variant of Win32/HiddenStart.A application cleaned by deleting - quarantined

C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\OCSetupHlp.dll Win32/OpenCandy application cleaned by deleting - quarantined

C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\qlps-qlipso-sntb.exe multiple threats cleaned by deleting - quarantined

C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Cache\f_002b68 HTML/ScrInject.B.Gen virus deleted - quarantined

C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Extensions\ciakegmngihkajnlgghefoeolifdipnd\1\51a0b5d0c58847.26019465.js Win32/Adware.MultiPlug.H application cleaned by deleting - quarantined

C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Extensions\khbkmnalhamiddhihjhcoadblmlpbepp\1\51a0b603197f38.90876557.js Win32/Adware.MultiPlug.H application cleaned by deleting - quarantined

C:\Users\celine\AppData\Local\Updater4352\Updater4352.exe a variant of Win32/Toolbar.CrossRider.C application cleaned by deleting - quarantined

C:\Users\celine\Downloads\ccsetup326.exe Win32/Bundled.Toolbar.Google.D application cleaned by deleting - quarantined

C:\Users\celine\Downloads\uTorrent-3.3.exe a variant of Win32/Bunndle application cleaned by deleting - quarantined

C:\Users\celine\Videos\Veoh\VeohWebPlayerSetup_other_upgrade.exe multiple threats cleaned by deleting - quarantined

C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\niapdbllcanepiiimjjndipklodoedlc\1.0.2_0\background.html JS/Adware.Yontoo.B application cleaned by deleting - quarantined

C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\niapdbllcanepiiimjjndipklodoedlc\1.0.2_0\yl.js JS/Adware.Yontoo.A application cleaned by deleting - quarantined

C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgafcinpmmpklohkojmllohdhomoefph\1.0_0\spext.dll Win32/bProtector.D application cleaned by deleting - quarantined
Link to post
Share on other sites

Okay, one last additional scan:

Please download the Kaspersky Virus Removal Tool from here to your Desktop.

Double-click the Removal Tool.

Click the cog in the upper right corner:

AVPfront.gif

Select down to and including your main drive.

Once done please select the Automatic Scan tab and press Start Scan.

avpsettings.gif

Allow AVP to delete all infections found.

Once it has finished select the Report tab.

Select the Detected threats report from the left and press the Save button.

Save it to your Desktop and post the contents in your next reply.

Link to post
Share on other sites

Yes, if everything is fine, last steps for you:

Step 1

  • Download OTL to your desktop and run it.
  • Click on CleanUp button.
  • You will be asked to reboot the machine to finish the Cleanup process. Choose Yes.
Step 2
  • Double click on AdwCleaner.exe to run the tool.
  • Click on Uninstall
  • Confirm with Yes
Step 3

Please uninstall ESET Online Scanner and manually delete Kaspersky AVP .

Step 4

Some malware preventions:

users.telenet.be/bluepatchy/miekiemoes/prevention.html

Safe surfing! :)

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.