Jump to content

youradexchange.com malware


kaysi

Recommended Posts

HI! I have youradexchange.com tabs popping up on my computer (HP pavilion laptop running Windows7 64bit).  Would really love the help getting rid of it.

 

Simon

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 04-02-2015 01
Ran by simon at 2015-02-05 11:35:14 Run:1
Running from C:\Users\simon\Desktop
Loaded Profiles: simon (Available profiles: simon)
Boot Mode: Normal
==============================================
 
Content of fixlist:
*****************
start
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-21-1215538356-964020389-330391961-1000\...\Run: [MediaGet2] => C:\Users\Owner\AppData\Local\MediaGet2\mediaget.exe --minimized
HKU\S-1-5-21-1215538356-964020389-330391961-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Owner\AppData\Local\Akamai\netsession_win.exe
[4673432 2014-10-29] (Akamai Technologies, Inc.)
HKU\S-1-5-21-1215538356-964020389-330391961-1000\...\Run: [Dashlane] => C:\Users\Owner\AppData\Roaming\Dashlane\Dashlane.exe [227000 2015-01-16] ()
HKU\S-1-5-21-1215538356-964020389-330391961-1000\...\Run: [FileTypeAssistant] => rundll32 ",DllRegisterServer
HKU\S-1-5-21-1215538356-964020389-330391961-1000\...\Run: [CyberLink] => rundll32.exe xKqDiSdSRUXdxTARgqDAswbRiWB
HKU\S-1-5-21-1215538356-964020389-330391961-1000\...\MountPoints2: {01335ade-04e4-11e3-a61a-001e8cb7469d} - F:\VZW_Software_upgrade_assistant.exe
HKU\S-1-5-21-1215538356-964020389-330391961-1000\...\MountPoints2: {0d9e6512-5f1d-11e1-a11d-001e8cb7469d} - F:\HPLauncher.exe
HKU\S-1-5-21-1215538356-964020389-330391961-1000\...\MountPoints2: {41c76722-6f07-11e3-bad2-001e8cb7469d} - F:\VZW_Software_upgrade_assistant.exe
HKU\S-1-5-21-1215538356-964020389-330391961-1000\...\MountPoints2: {8ac50b47-2c50-11e1-8a14-001e8cb7469d} - F:\LaunchU3.exe -a
HKU\S-1-5-21-1215538356-964020389-330391961-1000\...\MountPoints2: {9b2d6792-d9b5-11e2-a467-001e8cb7469d} - F:\TL-Bootstrap.exe
HKU\S-1-5-21-1215538356-964020389-330391961-1000\...\MountPoints2: {d0a93f3f-8f25-11e1-b20c-001e8cb7469d} - F:\TL-Bootstrap.exe
HKU\S-1-5-21-1215538356-964020389-330391961-1001\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-21-1215538356-964020389-330391961-1001\...\Run: [MediaGet2] => C:\Users\UpdatusUser\AppData\Local\MediaGet2\mediaget.exe --minimized
HKU\S-1-5-21-1215538356-964020389-330391961-1001\...\Run: [Akamai NetSession Interface] => C:\Users\Owner\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-29] (Akamai Technologies, Inc.)
HKU\S-1-5-21-1215538356-964020389-330391961-1001\...\Run: [Dashlane] => C:\Users\Owner\AppData\Roaming\Dashlane\Dashlane.exe [227000 2015-01-16] ()
HKU\S-1-5-21-1215538356-964020389-330391961-1001\...\Run: [FileTypeAssistant] => rundll32 ",DllRegisterServer
HKU\S-1-5-21-1215538356-964020389-330391961-1001\...\Run: [CyberLink] => rundll32.exe xKqDiSdSRUXdxTARgqDAswbRiWB
HKU\S-1-5-21-1215538356-964020389-330391961-1001\...\MountPoints2: {0d9e6512-5f1d-11e1-a11d-001e8cb7469d} - F:\HPLauncher.exe
HKU\S-1-5-21-1215538356-964020389-330391961-1001\...\MountPoints2: {8ac50b47-2c50-11e1-8a14-001e8cb7469d} - F:\LaunchU3.exe -a
HKU\S-1-5-21-1215538356-964020389-330391961-1001\...\MountPoints2: {9b2d6792-d9b5-11e2-a467-001e8cb7469d} - K:\TL-Bootstrap.exe
HKU\S-1-5-21-1215538356-964020389-330391961-1001\...\MountPoints2: {d0a93f3f-8f25-11e1-b20c-001e8cb7469d} - F:\TL-Bootstrap.exe
SearchScopes: HKLM -> DefaultScope value is missing.
FF HKU\S-1-5-21-1215538356-964020389-330391961-1000\...\Firefox\Extensions: [{442718d9-475e-452a-b3e1-fb1ee16b8e9f}] - C:\Users\Owner\AppData\Roaming\Dashlane\3.2.2.76978\bin\Firefox_Extension\{442718d9-475e-452a-b3e1-fb1ee16b8e9f}
FF Extension: Dashlane - C:\Users\Owner\AppData\Roaming\Dashlane\3.2.2.76978\bin\Firefox_Extension\{442718d9-475e-452a-b3e1-fb1ee16b8e9f} [2015-01-20]
CHR Extension: (Dashlane) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdjamakpfbbddfjaooikfcpapjohcfmg [2015-01-22]
CHR Extension: (ADDICT-THING) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kekbhipagmbchkoknkekhmhamcfjggaj [2015-01-22]
CHR Extension: (Highlight Keywords for Google Search) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\nhahncknpppipmgjchbbhehkfglelepf [2015-01-22]
CHR HKLM\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\Web Assistant\source.crx [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [kekbhipagmbchkoknkekhmhamcfjggaj] - C:\ProgramData\ADDICT-THING\kekbhipagmbchkoknkekhmhamcfjggaj.crx [2012-06-09]
CHR HKLM-x32\...\Chrome\Extension: [ojpijjmpahflnipadmlpgbjmagmjchkk] - C:\Users\Owner\AppData\Local\Temp\ccex.crx [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [pmlghpafmmnmmkjdhacccolfgnkiboco] - C:\Program Files (x86)\1ClickDownload\oneclickdownloader10.crx [Not Found]
C:\Program Files (x86)\1ClickDownload
S3 SymIM; system32\DRIVERS\SymIM.sys [X]
S3 SymIMMP; system32\DRIVERS\SymIM.sys [X]
C:\Users\Owner\AppData\Local\Temp\7.2.20.2-EasyShrx.Dll
C:\Users\Owner\AppData\Local\Temp\AskSLib.dll
C:\Users\Owner\AppData\Local\Temp\avgnt.exe
C:\Users\Owner\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp5qew49.dll
C:\Users\Owner\AppData\Local\Temp\ffexkywt.dll
C:\Users\Owner\AppData\Local\Temp\Quarantine.exe
C:\Users\Owner\AppData\Local\Temp\SpotifyUninstall.exe
C:\Users\Owner\AppData\Local\Temp\sqlite3.dll
C:\Users\Owner\AppData\Local\Temp\vlc-2.1.3-win32.exe
C:\Users\Owner\AppData\Local\Temp\vlc-2.1.5-win32.exe
C:\Users\Owner\AppData\Local\Temp\vyu3nbjz.dll
Reboot:
end
*****************
 
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully.
HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run\\WindowsWelcomeCenter => Value not found.
HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run\\WindowsWelcomeCenter => Value not found.
HKU\S-1-5-21-1215538356-964020389-330391961-1000\Software\Microsoft\Windows\CurrentVersion\Run\\MediaGet2 => Value not found.
HKU\S-1-5-21-1215538356-964020389-330391961-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Akamai NetSession Interface => Value not found.
[4673432 2014-10-29] (Akamai Technologies, Inc.) => Error: No automatic fix found for this entry.
HKU\S-1-5-21-1215538356-964020389-330391961-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Dashlane => Value not found.
HKU\S-1-5-21-1215538356-964020389-330391961-1000\Software\Microsoft\Windows\CurrentVersion\Run\\FileTypeAssistant => Value not found.
HKU\S-1-5-21-1215538356-964020389-330391961-1000\Software\Microsoft\Windows\CurrentVersion\Run\\CyberLink => Value not found.
HKU\S-1-5-21-1215538356-964020389-330391961-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{01335ade-04e4-11e3-a61a-001e8cb7469d} => Key not found. 
HKCR\CLSID\{01335ade-04e4-11e3-a61a-001e8cb7469d} => Key not found. 
HKU\S-1-5-21-1215538356-964020389-330391961-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{0d9e6512-5f1d-11e1-a11d-001e8cb7469d} => Key not found. 
HKCR\CLSID\{0d9e6512-5f1d-11e1-a11d-001e8cb7469d} => Key not found. 
HKU\S-1-5-21-1215538356-964020389-330391961-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{41c76722-6f07-11e3-bad2-001e8cb7469d} => Key not found. 
HKCR\CLSID\{41c76722-6f07-11e3-bad2-001e8cb7469d} => Key not found. 
HKU\S-1-5-21-1215538356-964020389-330391961-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8ac50b47-2c50-11e1-8a14-001e8cb7469d} => Key not found. 
HKCR\CLSID\{8ac50b47-2c50-11e1-8a14-001e8cb7469d} => Key not found. 
HKU\S-1-5-21-1215538356-964020389-330391961-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9b2d6792-d9b5-11e2-a467-001e8cb7469d} => Key not found. 
HKCR\CLSID\{9b2d6792-d9b5-11e2-a467-001e8cb7469d} => Key not found. 
HKU\S-1-5-21-1215538356-964020389-330391961-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d0a93f3f-8f25-11e1-b20c-001e8cb7469d} => Key not found. 
HKCR\CLSID\{d0a93f3f-8f25-11e1-b20c-001e8cb7469d} => Key not found. 
HKU\S-1-5-21-1215538356-964020389-330391961-1001\Software\Microsoft\Windows\CurrentVersion\Run\\WindowsWelcomeCenter => Value not found.
HKU\S-1-5-21-1215538356-964020389-330391961-1001\Software\Microsoft\Windows\CurrentVersion\Run\\MediaGet2 => Value not found.
HKU\S-1-5-21-1215538356-964020389-330391961-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Akamai NetSession Interface => Value not found.
HKU\S-1-5-21-1215538356-964020389-330391961-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Dashlane => Value not found.
HKU\S-1-5-21-1215538356-964020389-330391961-1001\Software\Microsoft\Windows\CurrentVersion\Run\\FileTypeAssistant => Value not found.
HKU\S-1-5-21-1215538356-964020389-330391961-1001\Software\Microsoft\Windows\CurrentVersion\Run\\CyberLink => Value not found.
HKU\S-1-5-21-1215538356-964020389-330391961-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{0d9e6512-5f1d-11e1-a11d-001e8cb7469d} => Key not found. 
HKCR\CLSID\{0d9e6512-5f1d-11e1-a11d-001e8cb7469d} => Key not found. 
HKU\S-1-5-21-1215538356-964020389-330391961-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8ac50b47-2c50-11e1-8a14-001e8cb7469d} => Key not found. 
HKCR\CLSID\{8ac50b47-2c50-11e1-8a14-001e8cb7469d} => Key not found. 
HKU\S-1-5-21-1215538356-964020389-330391961-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9b2d6792-d9b5-11e2-a467-001e8cb7469d} => Key not found. 
HKCR\CLSID\{9b2d6792-d9b5-11e2-a467-001e8cb7469d} => Key not found. 
HKU\S-1-5-21-1215538356-964020389-330391961-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d0a93f3f-8f25-11e1-b20c-001e8cb7469d} => Key not found. 
HKCR\CLSID\{d0a93f3f-8f25-11e1-b20c-001e8cb7469d} => Key not found. 
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKU\S-1-5-21-1215538356-964020389-330391961-1000\Software\Mozilla\Firefox\Extensions\\{442718d9-475e-452a-b3e1-fb1ee16b8e9f} => Value not found.
C:\Users\Owner\AppData\Roaming\Dashlane\3.2.2.76978\bin\Firefox_Extension\{442718d9-475e-452a-b3e1-fb1ee16b8e9f} not found.
C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdjamakpfbbddfjaooikfcpapjohcfmg directory not found.
C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kekbhipagmbchkoknkekhmhamcfjggaj directory not found.
C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\nhahncknpppipmgjchbbhehkfglelepf directory not found.
HKLM\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd => Key not found. 
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\kekbhipagmbchkoknkekhmhamcfjggaj => Key not found. 
"C:\ProgramData\ADDICT-THING\kekbhipagmbchkoknkekhmhamcfjggaj.crx" => File/Directory not found.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ojpijjmpahflnipadmlpgbjmagmjchkk => Key not found. 
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\pmlghpafmmnmmkjdhacccolfgnkiboco => Key not found. 
"C:\Program Files (x86)\1ClickDownload" => File/Directory not found.
SymIM => Service not found.
SymIMMP => Service not found.
"C:\Users\Owner\AppData\Local\Temp\7.2.20.2-EasyShrx.Dll" => File/Directory not found.
"C:\Users\Owner\AppData\Local\Temp\AskSLib.dll" => File/Directory not found.
"C:\Users\Owner\AppData\Local\Temp\avgnt.exe" => File/Directory not found.
"C:\Users\Owner\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp5qew49.dll" => File/Directory not found.
"C:\Users\Owner\AppData\Local\Temp\ffexkywt.dll" => File/Directory not found.
"C:\Users\Owner\AppData\Local\Temp\Quarantine.exe" => File/Directory not found.
"C:\Users\Owner\AppData\Local\Temp\SpotifyUninstall.exe" => File/Directory not found.
"C:\Users\Owner\AppData\Local\Temp\sqlite3.dll" => File/Directory not found.
"C:\Users\Owner\AppData\Local\Temp\vlc-2.1.3-win32.exe" => File/Directory not found.
"C:\Users\Owner\AppData\Local\Temp\vlc-2.1.5-win32.exe" => File/Directory not found.
"C:\Users\Owner\AppData\Local\Temp\vyu3nbjz.dll" => File/Directory not found.
 
 
The system needed a reboot. 
 
==== End of Fixlog 11:35:14 ====
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-02-2015 01
Ran by simon at 2015-02-09 11:27:34
Running from C:\Users\simon\Desktop
Boot Mode: Normal
==========================================================
 
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Avira Desktop (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.3.9130 - Adobe Systems Inc.)
Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Photoshop Elements 5.0 (HKLM-x32\...\Adobe Photoshop Elements 5) (Version: 5.0 - Adobe Systems Inc.)
Adobe Reader XI (11.0.06) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.5 (HKLM-x32\...\{9ECF7817-DB11-4FBA-9DF1-296A578D513A}) (Version: 11.5.7.609 - Adobe Systems, Inc)
Alcor Micro USB Card Reader (HKLM-x32\...\InstallShield_{33C7BB7A-4C65-4605-A0CD-76C38F59B0A3}) (Version: 1.2.517.35221 - Alcor Micro Corp.)
Alcor Micro USB Card Reader (x32 Version: 1.2.517.35221 - Alcor Micro Corp.) Hidden
Antivirus Pro (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.7.468 - Avira)
Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
BioExcess (Version: 7.0.33.0 - Egis Technology Inc.) Hidden
Blackhawk Striker 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Broadcom 2070 Bluetooth 3.0 (HKLM\...\{436E0B79-2CFB-4E5F-9380-E17C1B25D0C5}) (Version: 6.3.0.5600 - Broadcom Corporation)
Build-a-lot 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Dashlane (HKU\S-1-5-21-3293559571-505399125-2879011658-1001\...\Dashlane) (Version: 3.2.2.76978 - Dashlane SAS)
Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95 - WildTangent) Hidden
Dora's Carnival Adventure (x32 Version: 2.2.0.95 - WildTangent) Hidden
DVD Menu Pack for HP MediaSmart Video (HKLM-x32\...\InstallShield_{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}) (Version: 4.1.4121 - Hewlett-Packard)
DVD Menu Pack for HP MediaSmart Video (x32 Version: 4.1.4121 - Hewlett-Packard) Hidden
Energy Star Digital Logo (HKLM-x32\...\{BD1A34C9-4764-4F79-AE1F-112F8C89D3D4}) (Version: 1.0.1 - Hewlett-Packard)
Escape Rosecliff Island (x32 Version: 2.2.0.95 - WildTangent) Hidden
ESU for Microsoft Windows 7 (HKLM-x32\...\{3877C901-7B90-4727-A639-B6ED2DD59D43}) (Version: 1.0.0 - Hewlett-Packard)
FATE (x32 Version: 2.2.0.95 - WildTangent) Hidden
Final Drive Nitro (x32 Version: 2.2.0.95 - WildTangent) Hidden
Free Audio Editor (HKLM-x32\...\Free Audio Editor) (Version:  - FAE Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 40.0.2214.111 - Google Inc.)
Google Drive (HKLM-x32\...\{65EACBB4-B0B8-4A5B-AE46-22DBE15C70B5}) (Version: 1.19.8406.6504 - Google, Inc.)
Google Talk Plugin (HKLM-x32\...\{C77CC230-7417-3F01-B70D-52583DC9FEC9}) (Version: 5.40.2.0 - Google)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
Heroes of Hellas 2 - Olympia (x32 Version: 2.2.0.95 - WildTangent) Hidden
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP 3D DriveGuard (HKLM\...\{299625B9-6C69-462C-9CEA-8E06D878B1C5}) (Version: 4.0.5.1 - Hewlett-Packard Company)
HP Advisor (HKLM-x32\...\{40FB8D7C-6FF8-4AF2-BC8B-0B1DB32AF04B}) (Version: 3.4.10262.3295 - Hewlett-Packard)
HP Documentation (HKLM-x32\...\{F3DE25BA-16EA-42A5-BC92-786BECBE5CE4}) (Version: 1.1.1.0 - Hewlett-Packard)
HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.1.3 - WildTangent)
HP LaserJet Professional P1100-P1560-P1600 Series (HKLM\...\HP LaserJet Professional P1100-P1560-P1600 Series) (Version:  - )
HP MediaSmart CinemaNow 2.0 (HKLM-x32\...\{9008D736-35CA-40DB-A2BE-5F32D954E5AA}) (Version: 2.0 - Hewlett-Packard)
HP MediaSmart DVD (HKLM-x32\...\InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}) (Version: 4.1.4229 - Hewlett-Packard)
HP MediaSmart Movies and TV (HKLM\...\{4B4E2FA2-3B1E-4147-99DB-5033981D8C2F}) (Version: 1.0.0.10 - Hewlett-Packard)
HP MediaSmart Music (HKLM-x32\...\InstallShield_{91A34181-9FAD-43AB-A35F-E7A8945B7E1C}) (Version: 4.1.4215 - Hewlett-Packard)
HP MediaSmart Photo (HKLM-x32\...\InstallShield_{6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF}) (Version: 4.1.4211 - Hewlett-Packard)
HP MediaSmart SmartMenu (HKLM\...\{731A1D36-BF17-4C76-B7E7-CC055AF8C54E}) (Version: 3.1.1.12 - Hewlett-Packard)
HP MediaSmart Video (HKLM-x32\...\InstallShield_{D12E3E7F-1B13-4933-A915-16C7DD37A095}) (Version: 4.1.4214 - Hewlett-Packard)
HP MediaSmart Webcam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 4.1.3024 - Hewlett-Packard)
HP MediaSmart/TouchSmart Netflix (HKLM-x32\...\{BDDA1E1E-204E-4368-B0C2-737F16B76307}) (Version: 1.0.3.0 - Hewlett-Packard)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.3611 - HP Photo Creations Powered by RocketLife)
HP Power Manager (HKLM-x32\...\{872B1C80-38EC-4A31-A25C-980820593900}) (Version: 1.2.3 - Hewlett-Packard Company)
HP Quick Launch (HKLM-x32\...\{BB1C717E-376C-4AA1-8940-81BFC38D9778}) (Version: 2.4.4 - Hewlett-Packard Company)
HP QuickWeb Installer (HKLM-x32\...\{394FA67A-FF0A-4356-BB77-D85E5A300BDE}) (Version: 1.3.11.0 - DeviceVM Inc.)
HP Setup (HKLM-x32\...\{72D90DB3-A16A-4545-B555-868471101833}) (Version: 8.1.4186.3400 - Hewlett-Packard)
HP SimplePass Identity Protection (HKLM-x32\...\InstallShield_{E6CB67CC-71D2-46b9-8D43-A4641A9EECB2}) (Version: 7.0.33.0 - Egis Technology Inc.)
HP Software Framework (HKLM-x32\...\{6C302296-6129-4125-9FD6-2188ECD8814E}) (Version: 4.1.6.1 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}) (Version: 7.4.45.4 - Hewlett-Packard Company)
HP Support Solutions Framework (HKLM-x32\...\{E35601C0-BA8E-4F32-919A-C7EF4CA81F67}) (Version: 11.51.0048 - Hewlett-Packard Company)
HP Wireless Assistant (HKLM\...\{B5FC1E1B-E70D-45F1-8E40-A3C30698B323}) (Version: 4.0.9.0 - Hewlett-Packard Company)
hppLaserJetService (x32 Version: 001.001.0.0 - Hewlett-Packard) Hidden
hppP1100P1560P1600SeriesLaserJetService (x32 Version: 001.001.0.0 - Hewlett-Packard) Hidden
hppusgP1100P1560P1600Series (x32 Version: 1.0.0.1 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{7902E313-FF0F-4493-ACB1-A8147B78DCD0}) (Version: 2.1.1.0000 - Hewlett Packard Development Company L.P.)
Hulu Desktop (HKU\S-1-5-21-3293559571-505399125-2879011658-1001\...\HuluDesktop) (Version: 0.9.13 - Hulu LLC)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6289.0 - IDT)
Intel® Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel® Graphics Media Accelerator Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2141 - Intel Corporation)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
Intel® PROSet/Wireless WiFi Software (HKLM\...\{1A8BA6CE-822D-4888-89E2-ACBF4308F271}) (Version: 13.02.0000 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.0.1014 - Intel Corporation)
Intel® Wireless Display (HKLM\...\{0D9917CE-1C77-4B58-A153-DCB5A854ED82}) (Version: 1.2.15.0 - Intel Corporation)
Java 7 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217071FF}) (Version: 7.0.710 - Oracle)
Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
Jewel Quest 3 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Jewel Quest Solitaire 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Junk Mail filter update (x32 Version: 14.0.8117.416 - Microsoft Corporation) Hidden
Keeper Password & Data Vault (HKLM-x32\...\Keeper Password & Data Vault) (Version: 6 - Keeper Security, Inc.)
LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.2907 - CyberLink Corp.)
LabelPrint (x32 Version: 2.5.2907 - CyberLink Corp.) Hidden
Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Home and Student 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{820B6609-4C97-3A2B-B644-573B06A0F0CC}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Movie Theme Pack for HP MediaSmart Video (HKLM-x32\...\InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E}) (Version: 4.1.4030 - Hewlett-Packard)
Movie Theme Pack for HP MediaSmart Video (x32 Version: 4.1.4030 - Hewlett-Packard) Hidden
Mozilla Firefox 22.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 22.0 (x86 en-US)) (Version: 22.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 22.0 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden
PhotoNow! (HKLM-x32\...\InstallShield_{D36DD326-7280-11D8-97C8-000129760CBE}) (Version: 1.1.6904 - CyberLink Corp.)
PhotoNow! (x32 Version: 1.1.6904 - CyberLink Corp.) Hidden
Plants vs. Zombies (x32 Version: 2.2.0.95 - WildTangent) Hidden
Poker Superstars III (x32 Version: 2.2.0.95 - WildTangent) Hidden
Polar Bowler (x32 Version: 2.2.0.95 - WildTangent) Hidden
Polar Golfer (x32 Version: 2.2.0.95 - WildTangent) Hidden
Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.4204 - CyberLink Corp.)
Power2Go (x32 Version: 6.1.4204 - CyberLink Corp.) Hidden
PowerDirector (HKLM-x32\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 8.0.3003 - CyberLink Corp.)
PowerDirector (x32 Version: 8.0.3003 - CyberLink Corp.) Hidden
Quicken 2010 (HKLM-x32\...\{CCF6F57B-F6B4-4508-BF45-63AAC9DE416A}) (Version: 19.1.3.19 - Intuit)
Quicken 2013 (HKLM-x32\...\{034DD4BB-F0D6-4ECF-B064-8E39E3EF7076}) (Version: 22.1.12.7 - Intuit)
Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.17.304.2010 - Realtek)
Recovery Manager (x32 Version: 5.5.3023 - CyberLink Corp.) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Skype™ 6.11 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.3.29.0 - Synaptics Incorporated)
Times Reader (HKLM-x32\...\com.nyt.timesreader.78C54164786ADE80CB31E1C5D95607D0938C987A.1) (Version: 2.061 - The New York Times Company)
Times Reader (x32 Version: 2.061 - The New York Times Company) Hidden
TurboTax 2011 (HKLM-x32\...\TurboTax 2011) (Version:  - Intuit, Inc)
TurboTax 2012 (HKLM-x32\...\TurboTax 2012) (Version: 2012.0 - Intuit, Inc)
TurboTax 2013 (HKLM-x32\...\TurboTax 2013) (Version: 2013.0 - Intuit, Inc)
TurboTax 2014 (HKLM-x32\...\TurboTax 2014) (Version: 2014.0 - Intuit, Inc)
Update Installer for WildTangent Games App (x32 Version:  - WildTangent) Hidden
Validity Sensors DDK (HKLM\...\{426FAE9F-7373-496E-A215-9DB7EF4398CF}) (Version: 4.1.139.0 - Validity Sensors, Inc.)
Virtual Families (x32 Version: 2.2.0.95 - WildTangent) Hidden
Virtual Villagers - The Secret City (x32 Version: 2.2.0.95 - WildTangent) Hidden
VMware Horizon View Client (HKLM\...\{F8405E6D-9795-4DB7-8052-B39498A61384}) (Version: 2.3.0.16109 - VMware, Inc.)
Wheel of Fortune 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
WildTangent Games App for HP (HKLM-x32\...\{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp) (Version: 4.0.11.2 - WildTangent)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
Windows Live Sync (HKLM-x32\...\{B10914FD-8812-47A4-85A1-50FCDE7F1F33}) (Version: 14.0.8117.416 - Microsoft Corporation)
Windows Live Upload Tool (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
WModem Driver Installer (HKLM-x32\...\HTC_WModemDriver) (Version: 2.0.6.14 - HTC)
Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
 
==================== Custom CLSID (selected items): ==========================
 
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
 
CustomCLSID: HKU\S-1-5-21-3293559571-505399125-2879011658-1001_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\simon\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-3293559571-505399125-2879011658-1001_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\simon\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-3293559571-505399125-2879011658-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\simon\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-3293559571-505399125-2879011658-1001_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\simon\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-3293559571-505399125-2879011658-1001_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\simon\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-3293559571-505399125-2879011658-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\simon\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-3293559571-505399125-2879011658-1001_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\simon\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll No File
 
==================== Restore Points  =========================
 
05-01-2015 15:31:10 Installed TurboTax 2014 wrapper
05-01-2015 15:40:17 Installed TurboTax 2014 wcaiper
16-01-2015 07:50:59 Windows Update
18-01-2015 10:26:13 Removed iSEEK AnswerWorks English Runtime
18-01-2015 17:20:20 Windows Update
26-01-2015 10:48:32 Scheduled Checkpoint
04-02-2015 17:46:01 Scheduled Checkpoint
 
==================== Hosts content: ==========================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-13 18:34 - 2009-06-10 13:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
 
==================== Scheduled Tasks (whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
 
Task: {01ED0764-28AD-4DC0-819E-79AC48E20B9D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_JPBCD4L01H => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard)
Task: {04FE7810-6928-4EA3-94DF-4D598ACDFA26} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_CNBCD3Q1X0 => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard)
Task: {07886163-434E-43B3-99C1-A597DA574C07} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_CNF99CST6Q => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard)
Task: {14C051E6-FA0B-46CD-A137-159C4549C9B8} - System32\Tasks\RecoveryCDWin7 => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2010-05-23] ()
Task: {1A28A13F-2485-4037-9A03-17B64E8B2D58} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard)
Task: {2FB965E2-4A7C-45FF-BBF1-2512B8C10918} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_JPBCD4Y08K => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard)
Task: {3A819552-3950-4759-9785-086D73521FA8} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_CNCCDBS1RL => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard)
Task: {5E3E1C54-3027-406F-8CF7-D209F307352F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_CNCCF2Q00X => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard)
Task: {6393E26F-C89F-4AED-9E18-8515A64082A9} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {67AB08DB-D6A3-46E9-96EF-543449D0D9D5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-13] (Google Inc.)
Task: {69064282-A55A-448B-9707-8856FB17E622} - System32\Tasks\Registration => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2010-05-23] ()
Task: {704E0A7C-2791-4609-A735-FF55705E5B5D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {72AF725D-2885-478B-8B60-0A2724304336} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3293559571-505399125-2879011658-1001UA => C:\Users\simon\AppData\Local\Google\Update\GoogleUpdate.exe [2013-09-08] (Google Inc.)
Task: {8780D6CB-41BE-4C86-BA2A-7111AC9C65C2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_JPBCD4L01D => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard)
Task: {91F73DDA-0E78-437D-9A0D-6A9E39230041} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company)
Task: {922A9D9B-1FFB-4034-9E48-A8782DBCD6B4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPSAObjUtilTask => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe [2015-02-03] (Microsoft)
Task: {9FC275E4-ECA7-4806-8EB5-2295AFBA5EFD} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_JPBCD4L019 => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard)
Task: {9FCC99A9-7977-437F-8B26-A221D32CD731} - System32\Tasks\MirageAgent => C:\Program Files (x86)\Hewlett-Packard\Media\Webcam\YCMMirage.exe [2010-06-24] (CyberLink)
Task: {A010326C-2CD7-4E41-AF3F-E7E4B18BAEEA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_CN1BN412F1 => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard)
Task: {C510AE6F-3472-42F0-8D28-64F31EF24148} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_CNCCDBS1RD => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard)
Task: {C6ED722D-0A43-423C-9213-A177C8760271} - System32\Tasks\HPCeeScheduleForsimon => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15] (Hewlett-Packard)
Task: {CB4D5F85-091C-4555-A259-19D4BBD9180D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-13] (Google Inc.)
Task: {CB599798-D9B9-4919-BBA2-9F640755AB50} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3293559571-505399125-2879011658-1001Core => C:\Users\simon\AppData\Local\Google\Update\GoogleUpdate.exe [2013-09-08] (Google Inc.)
Task: {D2F5CB66-D1DC-4B54-8452-2D1B9F5248AF} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_CNBCD122LD => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard)
Task: {D9358DF2-430A-46E0-9528-14DEE5D425DD} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {DA36D9F5-96FE-409B-B2AC-EBA47E480812} - System32\Tasks\ServicePlan => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2010-05-23] ()
Task: {E10F96CA-7D36-4B11-816B-10C17533C3E1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {F0D851A5-2F67-48A3-AF72-02798F88A4C0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_CN18T1F11X057W => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard)
Task: {FC88AB56-3DEB-4BD1-875B-C9589000F732} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-07] (Adobe Systems Incorporated)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3293559571-505399125-2879011658-1001Core.job => C:\Users\simon\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3293559571-505399125-2879011658-1001UA.job => C:\Users\simon\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForsimon.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
 
==================== Loaded Modules (whitelisted) ==============
 
2010-03-05 08:21 - 2010-03-05 08:21 - 01501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\LIBEAY32.dll
2010-03-05 08:21 - 2010-03-05 08:21 - 01501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\Libeay32.dll
2014-08-27 12:03 - 2011-04-02 15:05 - 00290304 _____ () C:\Windows\System32\HP1100LM.DLL
2014-08-27 12:03 - 2011-04-02 15:04 - 00074240 _____ () C:\Windows\system32\spool\PRTPROCS\x64\HP1100PP.DLL
2006-09-14 07:56 - 2006-09-14 07:56 - 00102400 _____ () C:\Program Files (x86)\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
2010-01-20 15:20 - 2010-01-20 15:20 - 00611896 _____ () C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
2013-10-28 08:13 - 2015-01-16 11:16 - 00227000 _____ () C:\Users\simon\AppData\Roaming\Dashlane\Dashlane.exe
2010-06-08 22:55 - 2010-06-08 22:55 - 00173856 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll
2014-02-18 12:52 - 2015-01-16 11:16 - 00232632 _____ () C:\Users\simon\AppData\Roaming\Dashlane\DashlanePlugin.exe
2010-06-18 15:26 - 2010-06-18 15:26 - 00030264 _____ () C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_LogicLayer.dll
2010-06-18 15:26 - 2010-06-18 15:26 - 00052280 _____ () C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HardwareAccess.dll
2010-06-18 15:26 - 2010-06-18 15:26 - 00267832 _____ () C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPCommon.XmlSerializers.dll
2015-01-16 11:15 - 2015-01-16 11:15 - 00307384 _____ () C:\Users\simon\AppData\Roaming\Dashlane\3.2.2.76978\bin\Firefox_Extension\{442718d9-475e-452a-b3e1-fb1ee16b8e9f}\components\KWDebugDll_win32.3.2.2.76978.dll
2015-01-16 11:15 - 2015-01-16 11:15 - 00417976 _____ () C:\Users\simon\AppData\Roaming\Dashlane\3.2.2.76978\bin\Firefox_Extension\{442718d9-475e-452a-b3e1-fb1ee16b8e9f}\components\KWDebug.3.2.2.76978.dll
2015-01-16 11:15 - 2015-01-16 11:15 - 00442040 _____ () C:\Users\simon\AppData\Roaming\Dashlane\3.2.2.76978\bin\Firefox_Extension\{442718d9-475e-452a-b3e1-fb1ee16b8e9f}\components\KWUtils.3.2.2.76978.dll
2015-01-16 11:15 - 2015-01-16 11:15 - 30912184 _____ () C:\Users\simon\AppData\Roaming\Dashlane\3.2.2.76978\bin\Firefox_Extension\{442718d9-475e-452a-b3e1-fb1ee16b8e9f}\components\KWExternLib.3.2.2.76978.dll
2015-01-16 11:15 - 2015-01-16 11:15 - 00266936 _____ () C:\Users\simon\AppData\Roaming\Dashlane\3.2.2.76978\bin\Firefox_Extension\{442718d9-475e-452a-b3e1-fb1ee16b8e9f}\components\KWMainLib_win.3.2.2.76978.dll
2015-01-16 11:15 - 2015-01-16 11:15 - 05805240 _____ () C:\Users\simon\AppData\Roaming\Dashlane\3.2.2.76978\bin\Firefox_Extension\{442718d9-475e-452a-b3e1-fb1ee16b8e9f}\components\KWData.3.2.2.76978.dll
2015-01-16 11:15 - 2015-01-16 11:15 - 06593720 _____ () C:\Users\simon\AppData\Roaming\Dashlane\3.2.2.76978\bin\Firefox_Extension\{442718d9-475e-452a-b3e1-fb1ee16b8e9f}\components\KWApplication.3.2.2.76978.dll
2009-08-04 16:23 - 2009-08-04 16:23 - 00063032 _____ () C:\Program Files (x86)\HP\HP UT LEDM\bin\HPTools.dll
2009-08-04 16:23 - 2009-08-04 16:23 - 00075320 _____ () C:\Program Files (x86)\HP\HP UT LEDM\bin\HPToolkit.dll
2009-08-04 16:22 - 2009-08-04 16:22 - 00136248 _____ () C:\Program Files (x86)\HP\HP UT LEDM\bin\DMBaseObjects.dll
2009-08-04 16:22 - 2009-08-04 16:22 - 00678968 _____ () C:\Program Files (x86)\HP\HP UT LEDM\bin\LEDMXMLObjects.dll
2015-02-07 19:38 - 2015-02-04 01:02 - 01117512 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\libglesv2.dll
2015-02-07 19:38 - 2015-02-04 01:02 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\libegl.dll
2015-02-07 19:38 - 2015-02-04 01:02 - 09170760 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\pdf.dll
2015-01-16 11:15 - 2015-01-16 11:15 - 12216504 _____ () C:\Users\simon\AppData\Roaming\Dashlane\3.2.2.76978\bin\Firefox_Extension\{442718d9-475e-452a-b3e1-fb1ee16b8e9f}\components\KWMainLib.3.2.2.76978.dll
2015-01-16 11:15 - 2015-01-16 11:15 - 02047672 _____ () C:\Users\simon\AppData\Roaming\Dashlane\3.2.2.76978\bin\Firefox_Extension\{442718d9-475e-452a-b3e1-fb1ee16b8e9f}\components\KWMainLibData.3.2.2.76978.dll
2015-01-16 11:15 - 2015-01-16 11:15 - 00183992 _____ () C:\Users\simon\AppData\Roaming\Dashlane\3.2.2.76978\bin\Firefox_Extension\{442718d9-475e-452a-b3e1-fb1ee16b8e9f}\components\Kwift_DP.3.2.2.76978.dll
2014-10-19 20:57 - 2014-10-19 20:57 - 00170496 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\3d576cbc4ffc5ad06fd61510c5d8f326\IsdiInterop.ni.dll
2012-10-25 21:07 - 2010-03-03 19:08 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IsdiInterop.dll
 
==================== Alternate Data Streams (whitelisted) =========
 
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
 
 
==================== Safe Mode (whitelisted) ===================
 
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
 
==================== EXE Association (whitelisted) ===============
 
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
 
 
==================== Other Registry Areas =====================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-3293559571-505399125-2879011658-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\simon\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(Currently there is no automatic fix for this section.)
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-3293559571-505399125-2879011658-500 - Administrator - Disabled)
Guest (S-1-5-21-3293559571-505399125-2879011658-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-3293559571-505399125-2879011658-1002 - Limited - Enabled)
simon (S-1-5-21-3293559571-505399125-2879011658-1001 - Administrator - Enabled) => C:\Users\simon
 
==================== Faulty Device Manager Devices =============
 
Name: Validity Sensor
Description: Validity Sensor (VFS301)
Class Guid: {53d29ef7-377c-4d14-864b-eb3a85769359}
Manufacturer: Validity Sensors, Inc.
Service: WinUSB
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (02/09/2015 11:15:07 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: EgisService.exe, version: 7.0.32.0, time stamp: 0x4c0e2eec
Faulting module name: EgisFinger.dll, version: 7.0.37.0, time stamp: 0x4c0e2ee1
Exception code: 0xc0000005
Fault offset: 0x00025261
Faulting process id: 0x478
Faulting application start time: 0xEgisService.exe0
Faulting application path: EgisService.exe1
Faulting module path: EgisService.exe2
Report Id: EgisService.exe3
 
Error: (02/09/2015 07:50:32 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: EgisService.exe, version: 7.0.32.0, time stamp: 0x4c0e2eec
Faulting module name: EgisFinger.dll, version: 7.0.37.0, time stamp: 0x4c0e2ee1
Exception code: 0xc0000005
Fault offset: 0x00025261
Faulting process id: 0x448
Faulting application start time: 0xEgisService.exe0
Faulting application path: EgisService.exe1
Faulting module path: EgisService.exe2
Report Id: EgisService.exe3
 
Error: (02/07/2015 07:20:07 PM) (Source: MsiInstaller) (EventID: 1024) (User: laptop)
Description: Product: Adobe Reader XI (11.0.10) - Update 'Adobe Reader XI (11.0.10)' could not be installed. Error code 1603. Windows Installer can create logs to help troubleshoot issues with installing software packages. Use the following link for instructions on turning on logging support: http://go.microsoft.com/fwlink/?LinkId=23127
 
Error: (02/07/2015 07:20:07 PM) (Source: MsiInstaller) (EventID: 10005) (User: laptop)
Description: Product: Adobe Reader XI (11.0.10) -- Error 2753.The File 'acrosup64.dll' is not marked for installation.
 
Error: (02/07/2015 07:19:52 PM) (Source: MsiInstaller) (EventID: 1024) (User: laptop)
Description: Product: Adobe Reader XI - Update '{AC76BA86-7AD7-0000-2550-7A8C40011010}' could not be installed. Error code 1625. Windows Installer can create logs to help troubleshoot issues with installing software packages. Use the following link for instructions on turning on logging support: http://go.microsoft.com/fwlink/?LinkId=23127
 
Error: (02/07/2015 07:07:35 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: EgisService.exe, version: 7.0.32.0, time stamp: 0x4c0e2eec
Faulting module name: EgisFinger.dll, version: 7.0.37.0, time stamp: 0x4c0e2ee1
Exception code: 0xc0000005
Fault offset: 0x00025261
Faulting process id: 0x448
Faulting application start time: 0xEgisService.exe0
Faulting application path: EgisService.exe1
Faulting module path: EgisService.exe2
Report Id: EgisService.exe3
 
Error: (02/06/2015 07:46:23 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: EgisService.exe, version: 7.0.32.0, time stamp: 0x4c0e2eec
Faulting module name: EgisFinger.dll, version: 7.0.37.0, time stamp: 0x4c0e2ee1
Exception code: 0xc0000005
Fault offset: 0x00025261
Faulting process id: 0x504
Faulting application start time: 0xEgisService.exe0
Faulting application path: EgisService.exe1
Faulting module path: EgisService.exe2
Report Id: EgisService.exe3
 
Error: (02/06/2015 07:30:14 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: EgisService.exe, version: 7.0.32.0, time stamp: 0x4c0e2eec
Faulting module name: EgisFinger.dll, version: 7.0.37.0, time stamp: 0x4c0e2ee1
Exception code: 0xc0000005
Fault offset: 0x00025261
Faulting process id: 0x448
Faulting application start time: 0xEgisService.exe0
Faulting application path: EgisService.exe1
Faulting module path: EgisService.exe2
Report Id: EgisService.exe3
 
Error: (02/05/2015 11:37:49 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: EgisService.exe, version: 7.0.32.0, time stamp: 0x4c0e2eec
Faulting module name: EgisFinger.dll, version: 7.0.37.0, time stamp: 0x4c0e2ee1
Exception code: 0xc0000005
Fault offset: 0x00025261
Faulting process id: 0x528
Faulting application start time: 0xEgisService.exe0
Faulting application path: EgisService.exe1
Faulting module path: EgisService.exe2
Report Id: EgisService.exe3
 
Error: (02/05/2015 08:46:23 AM) (Source: SideBySide) (EventID: 63) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.
 
 
System errors:
=============
Error: (02/09/2015 11:16:12 AM) (Source: bowser) (EventID: 8003) (User: )
Description: The master browser has received a server announcement from the computer MYCOMPUTER
that believes that it is the master browser for the domain on transport NetBT_Tcpip_{63A1BA4F-F98E-4834-B536-E1533999CFE5}.
The master browser is stopping or an election is being forced.
 
Error: (02/09/2015 11:16:09 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)
 
Error: (02/09/2015 11:15:23 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The EgisTec Service service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (02/09/2015 10:26:56 AM) (Source: bowser) (EventID: 8003) (User: )
Description: The master browser has received a server announcement from the computer MYCOMPUTER
that believes that it is the master browser for the domain on transport NetBT_Tcpip_{63A1BA4F-F98E-4834-B536-E1533999CFE5}.
The master browser is stopping or an election is being forced.
 
Error: (02/09/2015 08:31:49 AM) (Source: bowser) (EventID: 8003) (User: )
Description: The master browser has received a server announcement from the computer MYCOMPUTER
that believes that it is the master browser for the domain on transport NetBT_Tcpip_{63A1BA4F-F98E-4834-B536-E1533999CFE5}.
The master browser is stopping or an election is being forced.
 
Error: (02/09/2015 07:51:34 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)
 
Error: (02/09/2015 07:50:51 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The EgisTec Service service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (02/07/2015 07:08:37 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)
 
Error: (02/07/2015 07:08:19 PM) (Source: iaStor) (EventID: 9) (User: )
Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period.
 
Error: (02/07/2015 07:07:52 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The EgisTec Service service terminated unexpectedly.  It has done this 1 time(s).
 
 
Microsoft Office Sessions:
=========================
Error: (02/09/2015 11:15:07 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: EgisService.exe7.0.32.04c0e2eecEgisFinger.dll7.0.37.04c0e2ee1c00000050002526147801d0449cae51cfaaC:\Program Files (x86)\Hewlett-Packard\HP SimplePass Identity Protection\EgisService.exeC:\Program Files (x86)\Hewlett-Packard\HP SimplePass Identity Protection\EgisFinger.dllf51b74fb-b08f-11e4-a97a-0026c7b295cc
 
Error: (02/09/2015 07:50:32 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: EgisService.exe7.0.32.04c0e2eecEgisFinger.dll7.0.37.04c0e2ee1c00000050002526144801d0448019de36ebC:\Program Files (x86)\Hewlett-Packard\HP SimplePass Identity Protection\EgisService.exeC:\Program Files (x86)\Hewlett-Packard\HP SimplePass Identity Protection\EgisFinger.dll60bae73e-b073-11e4-b7ed-0026c7b295cc
 
Error: (02/07/2015 07:20:07 PM) (Source: MsiInstaller) (EventID: 1024) (User: laptop)
Description: Adobe Reader XI (11.0.10)Adobe Reader XI (11.0.10)1603(NULL)(NULL)(NULL)
 
Error: (02/07/2015 07:20:07 PM) (Source: MsiInstaller) (EventID: 10005) (User: laptop)
Description: Product: Adobe Reader XI (11.0.10) -- Error 2753.The File 'acrosup64.dll' is not marked for installation.(NULL)(NULL)(NULL)(NULL)(NULL)
 
Error: (02/07/2015 07:19:52 PM) (Source: MsiInstaller) (EventID: 1024) (User: laptop)
Description: Adobe Reader XI{AC76BA86-7AD7-0000-2550-7A8C40011010}1625(NULL)(NULL)(NULL)
 
Error: (02/07/2015 07:07:35 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: EgisService.exe7.0.32.04c0e2eecEgisFinger.dll7.0.37.04c0e2ee1c00000050002526144801d0434c59f52f23C:\Program Files (x86)\Hewlett-Packard\HP SimplePass Identity Protection\EgisService.exeC:\Program Files (x86)\Hewlett-Packard\HP SimplePass Identity Protection\EgisFinger.dlla0d90397-af3f-11e4-b2c2-0026c7b295cc
 
Error: (02/06/2015 07:46:23 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: EgisService.exe7.0.32.04c0e2eecEgisFinger.dll7.0.37.04c0e2ee1c00000050002526150401d042240659cc32C:\Program Files (x86)\Hewlett-Packard\HP SimplePass Identity Protection\EgisService.exeC:\Program Files (x86)\Hewlett-Packard\HP SimplePass Identity Protection\EgisFinger.dll4d275984-ae17-11e4-b3b1-0026c7b295cc
 
Error: (02/06/2015 07:30:14 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: EgisService.exe7.0.32.04c0e2eecEgisFinger.dll7.0.37.04c0e2ee1c00000050002526144801d04221c4754e65C:\Program Files (x86)\Hewlett-Packard\HP SimplePass Identity Protection\EgisService.exeC:\Program Files (x86)\Hewlett-Packard\HP SimplePass Identity Protection\EgisFinger.dll0b676b1b-ae15-11e4-8801-0026c7b295cc
 
Error: (02/05/2015 11:37:49 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: EgisService.exe7.0.32.04c0e2eecEgisFinger.dll7.0.37.04c0e2ee1c00000050002526152801d0417b2f221417C:\Program Files (x86)\Hewlett-Packard\HP SimplePass Identity Protection\EgisService.exeC:\Program Files (x86)\Hewlett-Packard\HP SimplePass Identity Protection\EgisFinger.dll77092fb5-ad6e-11e4-82fb-0026c7b295cc
 
Error: (02/05/2015 08:46:23 AM) (Source: SideBySide) (EventID: 63) (User: )
Description: assemblyIdentityversionMAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINORc:\program files (x86)\common files\adobe air\Versions\1.0\Adobe AIR.dllc:\program files (x86)\common files\adobe air\Versions\1.0\Adobe AIR.dll3
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core i5 CPU M 450 @ 2.40GHz
Percentage of memory in use: 55%
Total physical RAM: 3893.86 MB
Available physical RAM: 1720.12 MB
Total Pagefile: 7785.9 MB
Available Pagefile: 4977.35 MB
Total Virtual: 8192 MB
Available Virtual: 8191.85 MB
 
==================== Drives ================================
 
Drive c: () (Fixed) (Total:441.23 GB) (Free:223.61 GB) NTFS ==>[system with boot components (obtained from reading drive)]
Drive d: (RECOVERY) (Fixed) (Total:24.23 GB) (Free:3.54 GB) NTFS ==>[system with boot components (obtained from reading drive)]
Drive f: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.09 GB) FAT32
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 48CC75D5)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=441.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=24.2 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=103 MB) - (Type=0C)
 
==================== End Of Log ============================

 

Link to post
Share on other sites

Hello,
    
 
They call me TwinHeadedEagle around here, and I'll try to help your with your issue.
 
     
    
Before we start please read and note the following:

  • We're primarily oriented on malware removal here, so you must know that some issues just cannot be solved and you must be prepared for this. Some tools we use here will remove your browser search history, so backup your important links and all the files whose loss is unacceptable.
  • Limit your internet access to posting here, some infections just wait to steal typed-in passwords.
  • Please be patient. I know it is frustrating when your PC isn't working properly, but malware removal takes time. Keep in mind that private life gets in the way too. Note that we may live in totally different time zones, what may cause some delays between answers.
  • Don't run any scripts or tools on your own, unsupervised usage may cause more harm than good.
  • Do not paste the logs in your posts, attachments make my work easier. There is a More reply options button, that gives you Upload Files option below which you can use to attach your reports. Always attach reports from all tools.
  • Always execute my instructions in given order. If for some reason you cannot completely follow one instruction, inform me about that.
  • Do not ask for help for your business PC. Companies are making revenue via computers, so it is good thing to pay someone to repair it.
  • If I don't hear from you within 3 days from this initial or any subsequent post, then this thread will be closed.

:excl: I can't foresee everything, so if anything not covered in my instructions happens, please stop and inform me!
:excl: There are no silly questions. Never be afraid to ask if in doubt!
 
 
 
  warning.gif Rules and policies
 
We won't support any piracy.
That being told, if any evidence of illegal OS, software, cracks/keygens or any other will be revealed, any further assistance will be suspended. If you are aware that there is this kind of stuff on your machine, remove it before proceeding!
The same applies to any use of P2P software: uTorrent, BitTorrent, Vuze, Kazaa, Ares... We don't provide any help for P2P, except for their removal. All P2P software has to be uninstalled or at least fully disabled before proceeding!
 
Failure to follow these guidelines will result with closing your topic and withdrawning any assistance.
 
 



 

Please download Farbar Recovery Scan Tool and save it to your desktop.
 
Note: You need to run the version compatibale with your system. If you are not sure which version applies to your system download both of them and try to run them.
Only one of them will run on your system, that will be the right version.
  • Double-click to run it. When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please attach it to your reply.
  • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.
Link to post
Share on other sites

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.