Forums

    1. Welcome

      Thank you for joining our board

      47
      posts
    2. 1,072
      posts
    3. Introductions

      Introduce yourself, let use know how you got here, and where you're from...

      335
      posts
    4. Our Board

      Birthdays, Board Statistics, Congratulations, Holiday Cheer, and Your Suggestions...

      575
      posts
    1. 184
      posts
    2. 979
      posts
    3. 2,492
      posts
    4. 1,412
      posts
    5. 3,414
      posts
    6. 842
      posts
    7. 1,488
      posts
    8. Mobile Devices

      Tablets, smartphones etc.

      482
      posts
    1. 1,352
      posts
    2. Virus, Spyware and Malware Removal

      Malware problems ONLY, please! Replying in this forum is by permission only.

      19,750
      posts
    3. 58
      posts
    1. 1,566
      posts
    2. 2,599
      posts
    3. 1,818
      posts
    4. 1,918
      posts
    1. 1,062
      posts
    2. 4,795
      posts
    3. 548
      posts
    4. 3,843
      posts
    1. 361
      posts
    2. Our culture

      Music, Movies, Art, Books, and anything what feeds your mind

      2,137
      posts
    3. Pictures

      Post pictures that you would like to share with the forum here...

      551
      posts
    4. Fun Stuff

      Post your Cartoons, Jokes, and Weird stuff here

      233
      posts
    5. 4,098
      posts
    6. Boiling point

      Whatever bothers you...ENTER AT OWN RISK...

      Don't complain, if you don't like it.

      If you don't like, what you see, avoid this category.

      147
      posts
    7. 162
      posts
    1. Practice here

      Test anything...

      39
      posts
  • Member Statistics

    2,574
    Total Members
    597
    Most Online
    Newest Member
    Thomas James Tobin
    Joined
  • Forum Statistics

    11,006
    Total Topics
    72,710
    Total Posts
  • Who's Online (See full list)

  • The Best of YouTube

  • Topics

  • Posts

    • Virus Removal Help
      By tuna1000 · Posted
      Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-07-2015
      Ran by Dottie Byrne (administrator) on DOTTIEBYRNE on 07-07-2015 13:00:03
      Running from C:\Users\Dottie Byrne\Downloads
      Loaded Profiles: Dottie Byrne (Available Profiles: Dottie Byrne)
      Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
      Internet Explorer Version 11 (Default browser: FF)
      Boot Mode: Normal
      Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

      ==================== Processes (Whitelisted) =================

      (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

      (Microsoft Corporation) C:\Windows\System32\wlanext.exe
      (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
      (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
      (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
      (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
      (Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
      (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
      (Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\20.5.0.28\ccsvchst.exe
      (Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
      (NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
      (NTI, Inc.) C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
      (Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
      () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
      (RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe
      () C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe
      (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
      (Acer Group) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
      (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
      (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
      (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
      (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
      (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler.exe
      (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler64.exe
      (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
      (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe
      (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
      (RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin64\rpsystray.exe
      (NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
      (Egis Technology Inc.) C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
      (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
      (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
      (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe
      (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
      (RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
      () C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe
      (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
      (Egis Technology Inc.) C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
      (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
      (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe
      (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Hidfind.exe
      (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe
      (Intel Corporation) C:\Windows\System32\igfxext.exe
      (Intel Corporation) C:\Windows\System32\igfxsrvc.exe
      (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
      (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
      (Microsoft Corporation) C:\Windows\System32\dllhost.exe
      (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
      (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_18_0_0_194.exe
      (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_18_0_0_194.exe
      (Farbar) C:\Users\Dottie Byrne\Downloads\FRST64(1).exe


      ==================== Registry (Whitelisted) ==================

      (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

      HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11101800 2010-07-28] (Realtek Semiconductor)
      HKLM\...\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [325120 2009-10-22] (Alps Electric Co., Ltd.)
      HKLM\...\Run: [Acer ePower Management] => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [861216 2010-06-11] (Acer Incorporated)
      HKLM-x32\...\Run: [BackupManagerTray] => C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [265984 2010-06-28] (NewTech Infosystems, Inc.)
      HKLM-x32\...\Run: [Norton Online Backup] => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1155928 2010-06-01] (Symantec Corporation)
      HKLM-x32\...\Run: [SuiteTray] => C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [337264 2010-05-26] (Egis Technology Inc.)
      HKLM-x32\...\Run: [EgisUpdate] => C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe [201584 2010-03-11] (Egis Technology Inc.)
      HKLM-x32\...\Run: [EgisTecPMMUpdate] => C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [407920 2010-03-11] (Egis Technology Inc.)
      HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [975952 2010-08-10] (Dritek System Inc.)
      HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-02-12] (Apple Inc.)
      HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QTTask.exe [421888 2014-01-17] (Apple Inc.)
      HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-21] (Apple Inc.)
      HKLM-x32\...\Run: [TkBellExe] => c:\program files (x86)\real\realplayer\Update\realsched.exe [296520 2015-02-22] (RealNetworks, Inc.)
      HKLM-x32\...\Run: [RealDownloader] => C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe [560192 2014-10-29] ()
      HKLM-x32\...\Run: [klfmscan.exe] => C:\ProgramData\AppData\Local\Temp\klfmscan_8A6094A246554C9197DAF964C81D9001\klfmscan.exe [114784 2015-06-15] (Kaspersky Lab ZAO) <===== ATTENTION
      Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
      HKU\S-1-5-21-2944208223-1119237557-1928499589-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> none
      Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RealPlayer Cloud Service UI.lnk [2014-04-24]
      ShortcutTarget: RealPlayer Cloud Service UI.lnk -> C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin64\rpsystray.exe (RealNetworks, Inc.)
      ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  No File
      ShellIconOverlayIdentifiers: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:\Program Files (x86)\EgisTec MyWinLocker\x64\psdprotect.dll [2010-05-26] (Egis Technology Inc.)
      ShellIconOverlayIdentifiers: [OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files (x86)\Norton 360\Engine64\20.5.0.28\buShell.dll [2013-05-28] (Symantec Corporation)
      ShellIconOverlayIdentifiers: [OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files (x86)\Norton 360\Engine64\20.5.0.28\buShell.dll [2013-05-28] (Symantec Corporation)
      ShellIconOverlayIdentifiers: [OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files (x86)\Norton 360\Engine64\20.5.0.28\buShell.dll [2013-05-28] (Symantec Corporation)
      ShellIconOverlayIdentifiers-x32: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:\Program Files (x86)\EgisTec MyWinLocker\x86\psdprotect.dll [2010-05-26] (Egis Technology Inc.)
      BootExecute: autocheck autochk * sdnclean64.exe

      ==================== Internet (Whitelisted) ====================

      (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

      HKU\S-1-5-21-2944208223-1119237557-1928499589-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
      HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
      HKU\S-1-5-21-2944208223-1119237557-1928499589-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
      SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
      SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
      SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
      BHO: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin64.dll [2014-10-27] (RealDownloader)
      BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
      BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2014-10-27] (RealDownloader)
      BHO-x32: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton 360\Engine\20.5.0.28\coIEPlg.dll [2014-04-29] (Symantec Corporation)
      BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Norton 360\Engine\20.5.0.28\IPS\IPSBHO.DLL [2013-04-08] (Symantec Corporation)
      BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
      Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\20.5.0.28\coIEPlg.dll [2014-04-29] (Symantec Corporation)
      Handler-x32: http - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [1999-12-02] (Microsoft Corporation)
      Handler-x32: http - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [1999-12-02] (Microsoft Corporation)
      Handler-x32: https - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [1999-12-02] (Microsoft Corporation)
      Handler-x32: https - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [1999-12-02] (Microsoft Corporation)
      Handler-x32: ipp - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [1999-12-02] (Microsoft Corporation)
      Handler-x32: msdaipp - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [1999-12-02] (Microsoft Corporation)
      Handler-x32: msdaipp - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [1999-12-02] (Microsoft Corporation)
      Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
      Tcpip\..\Interfaces\{10781849-401E-44D4-A4E5-F6C492864EA5}: [DhcpNameServer] 192.168.1.254
      Tcpip\..\Interfaces\{C4A5476A-DA78-4D28-91B3-38FE6E92BB85}: [DhcpNameServer] 192.168.1.1

      FireFox:
      ========
      FF ProfilePath: C:\Users\Dottie Byrne\AppData\Roaming\Mozilla\Firefox\Profiles\pw4ije5c.default
      FF Homepage: https://www.google.ca/?gws_rd=ssl
      FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_194.dll [2015-06-25] ()
      FF Plugin: @microsoft.com/GENUINE -> disabled No File
      FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
      FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_194.dll [2015-06-25] ()
      FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-02-20] ()
      FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google)
      FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
      FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
      FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
      FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-09-23] (Microsoft Corporation)
      FF Plugin-x32: @real.com/nppl3260;version=17.0.15.10 -> c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll [2015-02-22] (RealNetworks, Inc.)
      FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=17.0.15 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll [2014-10-27] (RealNetworks, Inc.)
      FF Plugin-x32: @real.com/nprpplugin;version=17.0.15.10 -> c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll [2015-02-22] (RealPlayer Cloud)
      FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-20] (Google Inc.)
      FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-20] (Google Inc.)
      FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-03-17] (Adobe Systems Inc.)
      FF Plugin HKU\S-1-5-21-2944208223-1119237557-1928499589-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Dottie Byrne\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-20] (Unity Technologies ApS)
      FF Plugin HKU\S-1-5-21-2944208223-1119237557-1928499589-1000: iMeshPlugin -> C:\Program Files (x86)\iMesh Applications\iMesh\npiMeshPlugin.dll No File
      FF Extension: WOT - C:\Users\Dottie Byrne\AppData\Roaming\Mozilla\Firefox\Profiles\pw4ije5c.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2015-06-11]
      FF Extension: Auto Timer - C:\Users\Dottie Byrne\AppData\Roaming\Mozilla\Firefox\Profiles\pw4ije5c.default\Extensions\autoTimer@autoTimer.com.xpi [2013-03-03]
      FF Extension: Flash Player - C:\Users\Dottie Byrne\AppData\Roaming\Mozilla\Firefox\Profiles\pw4ije5c.default\Extensions\d2dsds2@wdwef232d.com.xpi [2015-04-13]
      FF Extension: Simple Timer - C:\Users\Dottie Byrne\AppData\Roaming\Mozilla\Firefox\Profiles\pw4ije5c.default\Extensions\simpletimer@grbradt.org.xpi [2013-03-03]
      FF Extension: CrushArcade - C:\Users\Dottie Byrne\AppData\Roaming\Mozilla\Firefox\Profiles\pw4ije5c.default\Extensions\{cf8452e1-0ddb-44d2-95eb-4cb8e7a35707}.xpi [2015-02-06]
      FF HKLM-x32\...\Firefox\Extensions: [{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}] - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DMExtension
      FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.4.0.40\IPSFF
      FF Extension: No Name - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.4.0.40\IPSFF [2013-10-09]
      FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.4.0.40\coFFPlgn
      FF Extension: No Name - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.4.0.40\coFFPlgn [2014-05-24]
      FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
      FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2015-02-22]
      FF HKLM-x32\...\Firefox\Extensions: [{338950EA-82DB-44C1-930D-0C28E023C9F0}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext

      Chrome:
      =======
      CHR HKLM-x32\...\Chrome\Extension: [bejnhdlplbjhffionohbdnpcbobfejcc] - C:\Program Files (x86)\Norton 360\Engine\20.5.0.28\Exts\Chrome.crx [Not Found]

      ==================== Services (Whitelisted) =================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
      S3 MWLService; C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe [305520 2010-05-26] (Egis Technology Inc.)
      R2 N360; C:\Program Files (x86)\Norton 360\Engine\20.5.0.28\ccSvcHst.exe [144368 2013-05-21] (Symantec Corporation)
      R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation)
      R2 NTISchedulerSvc; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [144640 2010-04-16] (NTI, Inc.)
      R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [483864 2013-04-24] (Sony Corporation)
      R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39568 2014-10-27] ()
      R2 RealPlayer Cloud Service; c:\program files (x86)\real\realplayer\RPDS\Bin\rpdsvc.exe [1141848 2015-02-22] (RealNetworks, Inc.)
      R2 RealPlayerUpdateSvc; C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe [31856 2014-10-30] ()
      R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

      ==================== Drivers (Whitelisted) ====================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-13] (Microsoft Corporation)
      S1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.4.0.40\Definitions\BASHDefs\20140510.001\BHDrvx64.sys [1530160 2014-05-09] (Symantec Corporation)
      S1 ccSet_N360; C:\Windows\system32\drivers\N360x64\1405000.01C\ccSetx64.sys [169048 2013-04-15] (Symantec Corporation)
      R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484952 2014-03-02] (Symantec Corporation)
      S3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [137648 2013-11-22] (Symantec Corporation) [File not signed]
      S1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.4.0.40\Definitions\IPSDefs\20140520.001\IDSvia64.sys [525016 2014-03-25] (Symantec Corporation)
      S3 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [107736 2015-04-14] (Malwarebytes Corporation)
      R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
      S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-04-14] (Malwarebytes Corporation)
      S3 NAVENG; C:\Program Files (x86)\Common Files\Symantec Shared\VirusDefs\20020829.003\NAVENG.SYS [66816 2002-08-28] (Symantec Corporation) [File not signed]
      S3 NAVEX15; C:\Program Files (x86)\Common Files\Symantec Shared\VirusDefs\20020829.003\NAVEX15.SYS [590944 2002-08-28] (Symantec Corporation) [File not signed]
      S1 SRTSP; C:\Windows\System32\Drivers\N360x64\1405000.01C\SRTSP64.SYS [796760 2013-05-16] (Symantec Corporation)
      R1 SRTSPX; C:\Windows\system32\drivers\N360x64\1405000.01C\SRTSPX64.SYS [36952 2013-03-04] (Symantec Corporation)
      R0 SymDS; C:\Windows\System32\drivers\N360x64\1405000.01C\SYMDS64.SYS [493656 2013-05-21] (Symantec Corporation)
      R0 SymEFA; C:\Windows\System32\drivers\N360x64\1405000.01C\SYMEFA64.SYS [1139800 2013-05-23] (Symantec Corporation)
      S3 SymEvent; C:\Program Files (x86)\Symantec\SYMEVENT.SYS [73224 2002-08-15] (Symantec Corporation)
      S1 SymIRON; C:\Windows\system32\drivers\N360x64\1405000.01C\Ironx64.SYS [224416 2013-03-04] (Symantec Corporation)
      S1 SymNetS; C:\Windows\System32\Drivers\N360x64\1405000.01C\SYMNETS.SYS [433752 2013-04-24] (Symantec Corporation)
      U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [35064 2015-06-16] ()
      S3 catchme; \??\C:\ComboFix\catchme.sys [X]
      S3 SAVRT; \??\C:\Windows\system32\Drivers\SAVRT.SYS [X]
      S2 SAVRTPEL; \??\C:\Windows\system32\Drivers\SAVRTPEL.SYS [X]

      ==================== NetSvcs (Whitelisted) ===================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


      ==================== One Month Created files and folders ========

      (If an entry is included in the fixlist, the file/folder will be moved.)

      2015-07-07 12:50 - 2015-07-07 12:50 - 00250711 _____ C:\Users\Dottie Byrne\Downloads\Shortcut.txt
      2015-07-07 12:47 - 2015-07-07 12:47 - 02112512 _____ (Farbar) C:\Users\Dottie Byrne\Downloads\FRST64(1).exe
      2015-07-07 12:00 - 2015-07-07 12:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
      2015-07-04 17:03 - 2015-07-04 17:03 - 03617312 _____ (Facebook Inc.) C:\Users\Dottie Byrne\Downloads\Trendmicro_T1424115311249779T_.exe
      2015-07-04 17:03 - 2015-07-04 17:03 - 00000036 _____ C:\Users\Dottie Byrne\AppData\Local\housecall.guid.cache
      2015-06-30 15:00 - 2015-06-30 15:00 - 00080630 _____ C:\Users\Dottie Byrne\Desktop\Mileage Distance Chart for New Brunswick.htm
      2015-06-30 15:00 - 2015-06-30 15:00 - 00000000 ____D C:\Users\Dottie Byrne\Desktop\Mileage Distance Chart for New Brunswick_files
      2015-06-28 11:32 - 2015-06-28 11:32 - 00592970 _____ C:\Users\Dottie Byrne\Desktop\10673800_10152702015721374_1161632657_n.mp4
      2015-06-25 21:02 - 2015-06-25 21:02 - 00001932 _____ C:\Users\Public\Desktop\Play Gummy Drop!.lnk
      2015-06-25 21:02 - 2015-06-25 21:02 - 00001252 _____ C:\Users\Public\Desktop\More Great Games.lnk
      2015-06-25 21:01 - 2015-06-25 21:20 - 00000000 ____D C:\Program Files (x86)\Gummy Drop!
      2015-06-25 21:01 - 2015-06-25 21:01 - 00000000 ____D C:\Users\Dottie Byrne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gummy Drop!
      2015-06-25 21:01 - 2015-06-25 21:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gummy Drop!
      2015-06-25 20:59 - 2015-06-25 21:01 - 00000000 ____D C:\Program Files (x86)\Wanderland
      2015-06-25 20:59 - 2015-06-25 20:59 - 00000000 ____D C:\Users\Dottie Byrne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wanderland
      2015-06-25 20:59 - 2015-06-25 20:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wanderland
      2015-06-22 19:04 - 2015-06-22 19:04 - 00161315 _____ C:\Users\Dottie Byrne\Desktop\watch.htm
      2015-06-22 14:57 - 2015-06-22 14:57 - 03617312 _____ (Facebook Inc.) C:\Users\Dottie Byrne\Downloads\Trendmicro_T10155795610555565T_.exe
      2015-06-22 13:26 - 2015-06-22 13:26 - 02307658 _____ C:\Users\Dottie Byrne\Desktop\1181205_10153173334495565_21526_n.mp4
      2015-06-21 12:36 - 2015-06-21 12:37 - 124232488 _____ (Sophos Limited) C:\Users\Dottie Byrne\Downloads\Sophos Virus Removal Tool(2).exe
      2015-06-21 11:37 - 2015-06-21 12:29 - 00000000 ____D C:\Users\Dottie Byrne\AppData\Local\NPE
      2015-06-21 11:37 - 2015-06-21 11:37 - 03088296 _____ (Symantec Corporation) C:\Users\Dottie Byrne\Downloads\NPE.exe
      2015-06-19 16:28 - 2015-06-19 16:28 - 03081438 _____ C:\Users\Dottie Byrne\Downloads\1303571_10153205584015565_42681_n.flv
      2015-06-19 16:27 - 2015-06-19 16:27 - 01700854 _____ C:\Users\Dottie Byrne\Downloads\1357705_10153171553660565_6214_n.flv
      2015-06-19 16:26 - 2015-06-19 16:26 - 15671431 _____ C:\Users\Dottie Byrne\Downloads\1303490_10153205729525565_5981_n.flv
      2015-06-19 16:25 - 2015-06-19 16:25 - 09372570 _____ C:\Users\Dottie Byrne\Downloads\1128443_10153167365725565_35683_n.flv
      2015-06-19 16:24 - 2015-06-19 16:24 - 10137540 _____ C:\Users\Dottie Byrne\Downloads\1126990_10153108629020565_51314_n.flv
      2015-06-19 16:23 - 2015-06-19 16:23 - 00781541 _____ C:\Users\Dottie Byrne\Downloads\1128112_10153170102185565_54929_n.flv
      2015-06-19 16:22 - 2015-06-19 16:22 - 00748074 _____ C:\Users\Dottie Byrne\Downloads\1303372_10153205639685565_33763_n.flv
      2015-06-19 16:20 - 2015-06-19 16:20 - 00723719 _____ C:\Users\Dottie Byrne\Downloads\1301370_10153205130480565_56817_n.flv
      2015-06-19 16:18 - 2015-06-19 16:18 - 00453325 _____ C:\Users\Dottie Byrne\Downloads\1303605_10153205760060565_30524_n.flv
      2015-06-19 16:14 - 2015-06-19 16:14 - 00788846 _____ C:\Users\Dottie Byrne\Downloads\1122537_10153117617030565_22526_n(1).flv
      2015-06-19 16:09 - 2015-06-19 16:10 - 00788846 _____ C:\Users\Dottie Byrne\Downloads\1122537_10153117617030565_22526_n.flv
      2015-06-17 17:51 - 2015-06-17 17:51 - 00000000 ____D C:\RegBackup
      2015-06-17 17:50 - 2015-06-17 17:50 - 02949914 _____ (Thisisu) C:\Users\Dottie Byrne\Downloads\JRT.exe
      2015-06-17 15:59 - 2015-06-17 16:39 - 00000000 ____D C:\AdwCleaner
      2015-06-17 15:58 - 2015-06-17 15:59 - 02231296 _____ C:\Users\Dottie Byrne\Downloads\AdwCleaner.exe
      2015-06-17 14:32 - 2015-06-17 14:32 - 00001110 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
      2015-06-17 14:32 - 2015-06-17 14:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
      2015-06-17 14:32 - 2015-06-17 14:32 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
      2015-06-17 14:32 - 2015-04-14 09:47 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
      2015-06-17 14:32 - 2015-04-14 09:46 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
      2015-06-17 14:29 - 2015-06-17 14:29 - 21547816 _____ (Malwarebytes Corporation ) C:\Users\Dottie Byrne\Downloads\mbam-setup.exe
      2015-06-16 17:21 - 2015-06-16 17:21 - 00000000 ____D C:\Users\Dottie Byrne\AppData\Roaming\Elephant Games
      2015-06-16 17:12 - 2015-06-16 17:12 - 00000000 ____D C:\Users\Dottie Byrne\AppData\Roaming\BBB
      2015-06-16 16:57 - 2015-06-16 16:57 - 00000000 ____D C:\Users\Dottie Byrne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Found - A Hidden Object Adventure
      2015-06-16 16:57 - 2015-06-16 16:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Found - A Hidden Object Adventure
      2015-06-16 16:57 - 2015-06-16 16:57 - 00000000 ____D C:\Program Files (x86)\Found - A Hidden Object Adventure
      2015-06-16 16:56 - 2015-06-16 16:56 - 00000000 ____D C:\Users\Dottie Byrne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dark Manor - A Hidden Object Mystery
      2015-06-16 16:56 - 2015-06-16 16:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dark Manor - A Hidden Object Mystery
      2015-06-16 16:56 - 2015-06-16 16:56 - 00000000 ____D C:\Program Files (x86)\Dark Manor - A Hidden Object Mystery
      2015-06-16 16:29 - 2015-06-20 22:05 - 00000000 ____D C:\Program Files (x86)\Midnight Castle
      2015-06-16 16:29 - 2015-06-16 16:29 - 00000000 ____D C:\Users\Dottie Byrne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Midnight Castle
      2015-06-16 16:29 - 2015-06-16 16:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Midnight Castle
      2015-06-16 13:54 - 2015-06-16 13:55 - 17659640 _____ C:\Users\Dottie Byrne\Downloads\RogueKiller.exe
      2015-06-15 10:03 - 2015-06-15 10:03 - 00052320 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\32712285.sys
      2015-06-14 17:48 - 2015-06-14 17:48 - 00000000 ____D C:\Users\Dottie Byrne\Desktop\(53) Dottie Marie Byrne_files
      2015-06-14 00:57 - 2015-06-20 21:32 - 00000000 ____D C:\Users\Dottie Byrne\Desktop\Facebook Pics
      2015-06-13 11:04 - 2015-07-07 12:50 - 00049804 _____ C:\Users\Dottie Byrne\Downloads\Addition.txt
      2015-06-13 11:03 - 2015-07-07 13:00 - 00021287 _____ C:\Users\Dottie Byrne\Downloads\FRST.txt
      2015-06-13 11:03 - 2015-07-07 13:00 - 00000000 ____D C:\FRST
      2015-06-13 11:03 - 2015-06-13 11:03 - 02108928 _____ (Farbar) C:\Users\Dottie Byrne\Downloads\FRST64.exe
      2015-06-13 11:02 - 2015-06-13 11:02 - 01147904 _____ (Farbar) C:\Users\Dottie Byrne\Downloads\FRST.exe
      2015-06-11 21:19 - 2015-06-11 21:19 - 00169915 _____ C:\Users\Dottie Byrne\Desktop\Bleeping Computer - Technical Support and Computer Help.htm
      2015-06-11 21:19 - 2015-06-11 21:19 - 00000000 ____D C:\Users\Dottie Byrne\Desktop\Bleeping Computer - Technical Support and Computer Help_files
      2015-06-11 21:13 - 2015-06-11 21:13 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
      2015-06-11 21:13 - 2015-06-11 21:13 - 00002051 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
      2015-06-11 21:08 - 2015-06-11 21:08 - 01125056 _____ (Adobe Systems Incorporated) C:\Users\Dottie Byrne\Downloads\flashplayer18_ha_install.exe
      2015-06-11 19:30 - 2015-06-11 19:30 - 00000000 ____D C:\Windows\ERUNT
      2015-06-11 19:29 - 2015-06-11 19:31 - 00002343 _____ C:\DelFix.txt
      2015-06-11 17:12 - 2015-06-11 17:13 - 123136968 _____ (Sophos Limited) C:\Users\Dottie Byrne\Downloads\Sophos Virus Removal Tool(1).exe
      2015-06-11 16:19 - 2015-06-11 16:19 - 00000000 ____D C:\Users\Dottie Byrne\AppData\Roaming\Hot Lava Games
      2015-06-11 16:19 - 2015-06-11 16:19 - 00000000 ____D C:\Users\Dottie Byrne\AppData\Roaming\Game Forest
      2015-06-11 16:08 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
      2015-06-11 16:08 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
      2015-06-11 16:08 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
      2015-06-11 16:08 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
      2015-06-11 16:08 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
      2015-06-11 16:08 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
      2015-06-11 16:08 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
      2015-06-11 16:08 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
      2015-06-11 16:08 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
      2015-06-11 16:08 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
      2015-06-11 16:08 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
      2015-06-11 16:08 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
      2015-06-11 16:08 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
      2015-06-11 16:08 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
      2015-06-11 16:08 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
      2015-06-11 16:07 - 2015-06-11 16:08 - 00000000 ____D C:\Program Files (x86)\Emerland Solitaire - Endless Journey
      2015-06-11 16:07 - 2015-06-11 16:07 - 00000000 ____D C:\Users\Dottie Byrne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Emerland Solitaire - Endless Journey
      2015-06-11 16:07 - 2015-06-11 16:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Emerland Solitaire - Endless Journey
      2015-06-11 14:03 - 2015-06-11 14:03 - 00000000 ____D C:\ProgramData\Sophos
      2015-06-11 14:02 - 2015-06-11 14:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sophos
      2015-06-11 14:02 - 2015-06-11 14:02 - 00000000 ____D C:\Program Files (x86)\Sophos
      2015-06-11 13:58 - 2015-06-11 13:59 - 123088256 _____ (Sophos Limited) C:\Users\Dottie Byrne\Downloads\Sophos Virus Removal Tool.exe
      2015-06-11 13:14 - 2015-06-11 13:14 - 00000207 _____ C:\Windows\tweaking.com-regbackup-DOTTIEBYRNE-Windows-7-Home-Premium-(64-bit).dat
      2015-06-11 10:20 - 2015-07-07 12:44 - 00000000 ___RD C:\Users\Dottie Byrne\Desktop\Log Folder
      2015-06-10 22:04 - 2015-06-10 23:00 - 00000000 ____D C:\Windows\erdnt
      2015-06-10 18:03 - 2015-06-21 11:32 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
      2015-06-10 18:03 - 2015-06-17 15:14 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
      2015-06-10 18:03 - 2015-06-17 14:32 - 00000000 ____D C:\ProgramData\Malwarebytes
      2015-06-10 18:02 - 2015-04-14 09:46 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
      2015-06-10 18:01 - 2015-06-10 18:01 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Dottie Byrne\Downloads\mbar-1.09.1.1004.exe
      2015-06-10 17:21 - 2015-06-16 13:55 - 00035064 _____ C:\Windows\system32\Drivers\TrueSight.sys
      2015-06-10 17:21 - 2015-06-10 18:37 - 00000000 ____D C:\ProgramData\RogueKiller
      2015-06-10 14:59 - 2015-06-10 22:15 - 00000000 ____D C:\ProgramData\AVAST Software
      2015-06-10 14:59 - 2015-06-10 14:59 - 00353664 _____ (AVAST Software s. r. o.) C:\Windows\AswCheck.exe
      2015-06-10 14:59 - 2015-06-10 14:59 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
      2015-06-10 12:35 - 2015-06-10 12:35 - 00000000 ____D C:\ProgramData\F-Secure
      2015-06-10 12:34 - 2015-06-10 12:34 - 03612760 _____ (Facebook Inc.) C:\Users\Dottie Byrne\Downloads\Fsecure_T10155728035860565T_(3).exe
      2015-06-10 12:33 - 2015-06-10 12:33 - 03612760 _____ (Facebook Inc.) C:\Users\Dottie Byrne\Downloads\Fsecure_T10155728035860565T_(2).exe
      2015-06-10 12:14 - 2015-06-10 12:14 - 03612760 _____ (Facebook Inc.) C:\Users\Dottie Byrne\Downloads\Fsecure_T10155728035860565T_(1).exe
      2015-06-10 11:44 - 2015-06-10 11:44 - 03612760 _____ (Facebook Inc.) C:\Users\Dottie Byrne\Downloads\Fsecure_T10155728035860565T_.exe
      2015-06-10 11:26 - 2015-05-25 15:24 - 05569984 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
      2015-06-10 11:26 - 2015-05-25 15:23 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
      2015-06-10 11:26 - 2015-05-25 15:23 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
      2015-06-10 11:26 - 2015-05-25 15:21 - 01728960 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 01255424 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 01162752 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00728576 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
      2015-06-10 11:26 - 2015-05-25 15:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
      2015-06-10 11:26 - 2015-05-25 15:18 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
      2015-06-10 11:26 - 2015-05-25 15:18 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
      2015-06-10 11:26 - 2015-05-25 15:18 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
      2015-06-10 11:26 - 2015-05-25 15:18 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
      2015-06-10 11:26 - 2015-05-25 15:18 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
      2015-06-10 11:26 - 2015-05-25 15:18 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
      2015-06-10 11:26 - 2015-05-25 15:18 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
      2015-06-10 11:26 - 2015-05-25 15:18 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
      2015-06-10 11:26 - 2015-05-25 15:18 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
      2015-06-10 11:26 - 2015-05-25 15:18 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
      2015-06-10 11:26 - 2015-05-25 15:18 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
      2015-06-10 11:26 - 2015-05-25 15:18 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
      2015-06-10 11:26 - 2015-05-25 15:18 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
      2015-06-10 11:26 - 2015-05-25 15:14 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
      2015-06-10 11:26 - 2015-05-25 15:14 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 15:07 - 03989440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
      2015-06-10 11:26 - 2015-05-25 15:07 - 03934144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
      2015-06-10 11:26 - 2015-05-25 15:04 - 01310744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
      2015-06-10 11:26 - 2015-05-25 15:01 - 00641536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
      2015-06-10 11:26 - 2015-05-25 15:01 - 00635392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
      2015-06-10 11:26 - 2015-05-25 15:01 - 00551424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
      2015-06-10 11:26 - 2015-05-25 15:01 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
      2015-06-10 11:26 - 2015-05-25 15:01 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
      2015-06-10 11:26 - 2015-05-25 15:01 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
      2015-06-10 11:26 - 2015-05-25 15:01 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
      2015-06-10 11:26 - 2015-05-25 15:01 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
      2015-06-10 11:26 - 2015-05-25 15:01 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
      2015-06-10 11:26 - 2015-05-25 15:01 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
      2015-06-10 11:26 - 2015-05-25 15:01 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
      2015-06-10 11:26 - 2015-05-25 15:01 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
      2015-06-10 11:26 - 2015-05-25 15:01 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
      2015-06-10 11:26 - 2015-05-25 15:00 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tracerpt.exe
      2015-06-10 11:26 - 2015-05-25 15:00 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logman.exe
      2015-06-10 11:26 - 2015-05-25 15:00 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
      2015-06-10 11:26 - 2015-05-25 15:00 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\typeperf.exe
      2015-06-10 11:26 - 2015-05-25 15:00 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\relog.exe
      2015-06-10 11:26 - 2015-05-25 15:00 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
      2015-06-10 11:26 - 2015-05-25 15:00 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskperf.exe
      2015-06-10 11:26 - 2015-05-25 14:59 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
      2015-06-10 11:26 - 2015-05-25 14:59 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
      2015-06-10 11:26 - 2015-05-25 14:59 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
      2015-06-10 11:26 - 2015-05-25 14:59 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
      2015-06-10 11:26 - 2015-05-25 14:57 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
      2015-06-10 11:26 - 2015-05-25 14:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 14:00 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
      2015-06-10 11:26 - 2015-05-25 13:50 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
      2015-06-10 11:26 - 2015-05-25 13:50 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
      2015-06-10 11:26 - 2015-05-25 13:48 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 13:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 13:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-25 13:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
      2015-06-10 11:26 - 2015-05-22 15:18 - 01021440 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
      2015-06-10 11:26 - 2015-05-22 15:18 - 00757248 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
      2015-06-10 11:26 - 2015-05-22 15:18 - 00700416 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
      2015-06-10 11:26 - 2015-05-22 15:18 - 00423424 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
      2015-06-10 11:26 - 2015-05-22 15:18 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
      2015-06-10 11:26 - 2015-05-22 15:18 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
      2015-06-10 11:26 - 2015-05-22 15:13 - 01119232 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
      2015-06-10 11:26 - 2015-05-21 10:19 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
      2015-06-10 11:26 - 2015-04-29 15:22 - 14635008 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
      2015-06-10 11:26 - 2015-04-29 15:21 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
      2015-06-10 11:26 - 2015-04-29 15:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
      2015-06-10 11:26 - 2015-04-29 15:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
      2015-06-10 11:26 - 2015-04-29 15:19 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
      2015-06-10 11:26 - 2015-04-29 15:07 - 11411456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
      2015-06-10 11:26 - 2015-04-29 15:07 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
      2015-06-10 11:26 - 2015-04-29 15:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
      2015-06-10 11:26 - 2015-04-29 15:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
      2015-06-10 11:26 - 2015-04-29 15:05 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
      2015-06-10 11:26 - 2015-04-24 15:17 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
      2015-06-10 11:26 - 2015-04-24 14:56 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
      2015-06-10 11:25 - 2015-06-01 16:16 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
      2015-06-10 11:25 - 2015-06-01 15:07 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
      2015-06-10 11:25 - 2015-05-27 11:35 - 24917504 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
      2015-06-10 11:25 - 2015-05-27 11:08 - 19607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
      2015-06-10 11:25 - 2015-05-25 14:08 - 03206144 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
      2015-06-10 11:25 - 2015-05-23 00:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
      2015-06-10 11:25 - 2015-05-23 00:15 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
      2015-06-10 11:25 - 2015-05-23 00:15 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
      2015-06-10 11:25 - 2015-05-23 00:15 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
      2015-06-10 11:25 - 2015-05-23 00:14 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
      2015-06-10 11:25 - 2015-05-23 00:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
      2015-06-10 11:25 - 2015-05-23 00:10 - 02278912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
      2015-06-10 11:25 - 2015-05-23 00:09 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
      2015-06-10 11:25 - 2015-05-23 00:08 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
      2015-06-10 11:25 - 2015-05-23 00:06 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
      2015-06-10 11:25 - 2015-05-23 00:05 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
      2015-06-10 11:25 - 2015-05-23 00:05 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
      2015-06-10 11:25 - 2015-05-23 00:04 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
      2015-06-10 11:25 - 2015-05-22 23:57 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
      2015-06-10 11:25 - 2015-05-22 23:52 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
      2015-06-10 11:25 - 2015-05-22 23:49 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
      2015-06-10 11:25 - 2015-05-22 23:48 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
      2015-06-10 11:25 - 2015-05-22 23:47 - 04305920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
      2015-06-10 11:25 - 2015-05-22 23:47 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
      2015-06-10 11:25 - 2015-05-22 23:38 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
      2015-06-10 11:25 - 2015-05-22 23:37 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
      2015-06-10 11:25 - 2015-05-22 23:37 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
      2015-06-10 11:25 - 2015-05-22 23:28 - 12829696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
      2015-06-10 11:25 - 2015-05-22 23:20 - 01950720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
      2015-06-10 11:25 - 2015-05-22 23:16 - 01309696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
      2015-06-10 11:25 - 2015-05-22 23:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
      2015-06-10 11:25 - 2015-05-22 16:16 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
      2015-06-10 11:25 - 2015-05-22 16:16 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
      2015-06-10 11:25 - 2015-05-22 16:01 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
      2015-06-10 11:25 - 2015-05-22 16:00 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
      2015-06-10 11:25 - 2015-05-22 16:00 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
      2015-06-10 11:25 - 2015-05-22 16:00 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
      2015-06-10 11:25 - 2015-05-22 16:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
      2015-06-10 11:25 - 2015-05-22 15:59 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
      2015-06-10 11:25 - 2015-05-22 15:53 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
      2015-06-10 11:25 - 2015-05-22 15:52 - 06026240 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
      2015-06-10 11:25 - 2015-05-22 15:52 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
      2015-06-10 11:25 - 2015-05-22 15:48 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
      2015-06-10 11:25 - 2015-05-22 15:47 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
      2015-06-10 11:25 - 2015-05-22 15:47 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
      2015-06-10 11:25 - 2015-05-22 15:47 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
      2015-06-10 11:25 - 2015-05-22 15:47 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
      2015-06-10 11:25 - 2015-05-22 15:40 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
      2015-06-10 11:25 - 2015-05-22 15:36 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
      2015-06-10 11:25 - 2015-05-22 15:29 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
      2015-06-10 11:25 - 2015-05-22 15:25 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
      2015-06-10 11:25 - 2015-05-22 15:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
      2015-06-10 11:25 - 2015-05-22 15:21 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
      2015-06-10 11:25 - 2015-05-22 15:07 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
      2015-06-10 11:25 - 2015-05-22 15:06 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
      2015-06-10 11:25 - 2015-05-22 15:05 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
      2015-06-10 11:25 - 2015-05-22 15:05 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
      2015-06-10 11:25 - 2015-05-22 14:57 - 14404096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
      2015-06-10 11:25 - 2015-05-22 14:50 - 02426880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
      2015-06-10 11:25 - 2015-05-22 14:38 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
      2015-06-10 11:25 - 2015-05-22 14:26 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
      2015-06-09 22:30 - 2015-06-21 12:29 - 00000000 __SHD C:\Users\Dottie Byrne\AppData\Local\EmieUserList
      2015-06-09 22:30 - 2015-06-21 12:29 - 00000000 __SHD C:\Users\Dottie Byrne\AppData\Local\EmieSiteList
      2015-06-09 22:30 - 2015-06-21 12:29 - 00000000 __SHD C:\Users\Dottie Byrne\AppData\Local\EmieBrowserModeList
      2015-06-09 21:45 - 2015-06-10 22:26 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
      2015-06-09 21:45 - 2015-06-10 22:24 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
      2015-06-09 21:45 - 2015-06-09 21:45 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
      2015-06-09 21:41 - 2015-06-09 21:41 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Dottie Byrne\Downloads\spybot-2.4.exe

      ==================== One Month Modified files and folders ========

      (If an entry is included in the fixlist, the file/folder will be moved.)

      2015-07-07 12:59 - 2014-08-30 12:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
      2015-07-07 12:19 - 2013-03-02 16:33 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
      2015-07-07 12:01 - 2013-03-01 02:44 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
      2015-07-07 10:35 - 2009-07-14 01:45 - 00022896 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
      2015-07-07 10:35 - 2009-07-14 01:45 - 00022896 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
      2015-07-07 10:30 - 2013-02-28 21:18 - 02082726 _____ C:\Windows\WindowsUpdate.log
      2015-07-07 10:27 - 2013-03-02 16:33 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
      2015-07-07 10:25 - 2014-10-14 20:11 - 00022410 _____ C:\Windows\setupact.log
      2015-07-07 10:25 - 2009-07-14 02:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
      2015-07-07 10:10 - 2015-04-23 16:47 - 00003360 _____ C:\Windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2944208223-1119237557-1928499589-1000
      2015-07-07 10:10 - 2015-04-15 15:34 - 00003240 _____ C:\Windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2944208223-1119237557-1928499589-1000
      2015-07-06 02:53 - 2013-02-28 21:21 - 00000000 ____D C:\ProgramData\Temp
      2015-07-06 00:55 - 2013-04-25 12:25 - 00000000 ____D C:\Users\Dottie Byrne\AppData\Local\CrashDumps
      2015-07-05 15:10 - 2015-04-05 22:44 - 00000000 ___SD C:\Windows\system32\GWX
      2015-07-05 15:10 - 2013-03-11 18:34 - 00000000 ____D C:\ProgramData\Real
      2015-07-05 15:10 - 2013-02-28 23:45 - 00000000 ____D C:\Users\Dottie Byrne
      2015-07-05 15:10 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\system32\NDF
      2015-07-05 15:10 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\registration
      2015-06-25 22:01 - 2013-03-01 02:44 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
      2015-06-25 22:01 - 2013-03-01 02:44 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
      2015-06-25 22:01 - 2013-03-01 02:44 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
      2015-06-25 21:06 - 2014-12-23 19:19 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
      2015-06-25 21:01 - 2009-07-14 02:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
      2015-06-21 11:37 - 2013-03-01 00:11 - 00000000 ____D C:\ProgramData\Norton
      2015-06-21 01:09 - 2013-05-08 22:09 - 00000000 ____D C:\Users\Dottie Byrne\AppData\Roaming\SoftGrid Client
      2015-06-20 10:28 - 2009-07-14 02:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
      2015-06-19 16:14 - 2013-12-11 00:42 - 00000000 ____D C:\Users\Dottie Byrne\Desktop\Folders
      2015-06-17 16:40 - 2013-02-28 23:59 - 00979742 _____ C:\Windows\PFRO.log
      2015-06-17 15:13 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\schemas
      2015-06-16 19:37 - 2013-07-01 02:17 - 00000000 ____D C:\Users\Dottie Byrne\AppData\Roaming\Artogon
      2015-06-16 17:12 - 2013-08-02 00:17 - 00000000 ____D C:\Users\Dottie Byrne\AppData\Local\Big Fish
      2015-06-15 10:06 - 2014-05-16 22:07 - 00000000 ____D C:\Program Files (x86)\InstallConverter bundle uninstaller_Installer Converter new - sync_1154524
      2015-06-14 10:10 - 2009-07-14 02:13 - 00783424 _____ C:\Windows\system32\PerfStringBackup.INI
      2015-06-13 00:03 - 2013-04-17 18:10 - 00000000 ____D C:\Users\Dottie Byrne\AppData\Local\Apps\2.0
      2015-06-11 21:13 - 2013-04-03 19:12 - 00000000 ____D C:\Users\Dottie Byrne\AppData\Local\Adobe
      2015-06-11 21:13 - 2010-09-27 11:30 - 00000000 ____D C:\Program Files (x86)\Adobe
      2015-06-11 21:12 - 2010-09-27 11:30 - 00000000 ____D C:\ProgramData\Adobe
      2015-06-11 20:34 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\rescache
      2015-06-11 17:21 - 2013-07-01 01:28 - 00000000 ____D C:\Users\Dottie Byrne\AppData\Roaming\Rainbow
      2015-06-11 10:16 - 2015-02-04 00:10 - 00000000 ____D C:\Users\Dottie Byrne\Desktop\WORKOUT FOODS
      2015-06-11 09:25 - 2009-07-14 01:45 - 00343776 _____ C:\Windows\system32\FNTCACHE.DAT
      2015-06-11 09:23 - 2014-12-10 02:43 - 00000000 ____D C:\Windows\system32\appraiser
      2015-06-11 09:23 - 2014-07-09 03:48 - 00000000 ___SD C:\Windows\system32\CompatTel
      2015-06-11 09:23 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\PolicyDefinitions
      2015-06-11 09:15 - 2013-08-10 00:18 - 00000000 ____D C:\Windows\system32\MRT
      2015-06-11 02:05 - 2013-03-02 14:06 - 140135120 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
      2015-06-11 00:51 - 2014-06-08 03:38 - 00000000 ____D C:\ProgramData\SugarGames
      2015-06-10 23:04 - 2009-07-14 00:20 - 00000000 __RHD C:\Users\Default
      2015-06-10 22:51 - 2009-07-13 23:34 - 00000215 _____ C:\Windows\system.ini

      ==================== Files in the root of some directories =======

      2014-01-17 20:11 - 2014-01-17 20:11 - 0895304 _____ (Apple Inc.) C:\Program Files (x86)\QTOControl.dll
      2014-01-17 20:11 - 2014-01-17 20:11 - 0821576 _____ (Apple Inc.) C:\Program Files (x86)\QTOLibrary.dll
      2014-02-07 00:20 - 2014-02-07 00:20 - 0797000 _____ (Apple Inc.) C:\Program Files (x86)\QTPlugin.ocx
      2014-01-17 19:24 - 2014-01-17 19:24 - 0421888 _____ (Apple Inc.) C:\Program Files (x86)\QTTask.exe
      2014-01-17 20:12 - 2014-01-17 20:12 - 0371016 _____ (Apple Inc.) C:\Program Files (x86)\QTUIPanelControl.dll
      2014-02-07 00:18 - 2014-02-07 00:18 - 0006276 _____ () C:\Program Files (x86)\QuickTime Read Me.htm
      2014-01-17 20:12 - 2014-01-17 20:12 - 9288008 _____ (Apple Inc.) C:\Program Files (x86)\QuickTimePlayer.dll
      2014-02-07 00:20 - 2014-02-07 00:20 - 1248232 _____ (Apple Inc.) C:\Program Files (x86)\QuickTimePlayer.exe
      2014-01-17 19:24 - 2014-01-17 19:24 - 0055622 _____ () C:\Program Files (x86)\Sample.mov
      2013-11-07 23:04 - 2013-11-07 23:04 - 0003584 _____ () C:\Users\Dottie Byrne\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      2015-07-04 17:03 - 2015-07-04 17:03 - 0000036 _____ () C:\Users\Dottie Byrne\AppData\Local\housecall.guid.cache

      Files to move or delete:
      ====================
      C:\ProgramData\AppData\Local\Temp\klfmscan_8A6094A246554C9197DAF964C81D9001\klfmscan.exe


      Some files in TEMP:
      ====================
      C:\Users\Dottie Byrne\AppData\Local\Temp\dllnt_dump.dll
      C:\Users\Dottie Byrne\AppData\Local\Temp\lowproc.exe
      C:\Users\Dottie Byrne\AppData\Local\Temp\Quarantine.exe
      C:\Users\Dottie Byrne\AppData\Local\Temp\rnsetup0.exe
      C:\Users\Dottie Byrne\AppData\Local\Temp\sqlite3.dll
      C:\Users\Dottie Byrne\AppData\Local\Temp\stubhelper.dll


      ==================== Bamital & volsnap Check =================

      (There is no automatic fix for files that do not pass verification.)

      C:\Windows\System32\winlogon.exe => File is digitally signed
      C:\Windows\System32\wininit.exe => File is digitally signed
      C:\Windows\SysWOW64\wininit.exe => File is digitally signed
      C:\Windows\explorer.exe => File is digitally signed
      C:\Windows\SysWOW64\explorer.exe => File is digitally signed
      C:\Windows\System32\svchost.exe => File is digitally signed
      C:\Windows\SysWOW64\svchost.exe => File is digitally signed
      C:\Windows\System32\services.exe => File is digitally signed
      C:\Windows\System32\User32.dll => File is digitally signed
      C:\Windows\SysWOW64\User32.dll => File is digitally signed
      C:\Windows\System32\userinit.exe => File is digitally signed
      C:\Windows\SysWOW64\userinit.exe => File is digitally signed
      C:\Windows\System32\rpcss.dll => File is digitally signed
      C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


      LastRegBack: 2015-07-05 14:34
        ==================== End of log ============================          ADDITION  .txt  Additional scan result of Farbar Recovery Scan Tool (x64) Version:05-07-2015
      Ran by Dottie Byrne at 2015-07-07 12:49:35
      Running from C:\Users\Dottie Byrne\Downloads
      Boot Mode: Normal
      ==========================================================


      ==================== Accounts: =============================

      Administrator (S-1-5-21-2944208223-1119237557-1928499589-500 - Administrator - Disabled)
      Dottie Byrne (S-1-5-21-2944208223-1119237557-1928499589-1000 - Administrator - Enabled) => C:\Users\Dottie Byrne
      Guest (S-1-5-21-2944208223-1119237557-1928499589-501 - Limited - Disabled)
      HomeGroupUser$ (S-1-5-21-2944208223-1119237557-1928499589-1002 - Limited - Enabled)

      ==================== Security Center ========================

      (If an entry is included in the fixlist, it will be removed.)

      AV: Norton 360 (Disabled - Up to date) {D87FA2C0-F526-77B1-D6EC-0EDF3936CEDB}
      AS: Norton 360 (Disabled - Up to date) {631E4324-D31C-783F-EC5C-35AD42B18466}
      AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
      FW: Norton 360 (Disabled) {E04423E5-BF49-76E9-FDB3-A7EAC7E589A0}

      ==================== Installed Programs ======================

      (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

      18 Wheels of Steel - American Long Haul (x32 Version: 2.2.0.95 - WildTangent) Hidden
      Acer Backup Manager (HKLM-x32\...\InstallShield_{72B776E5-4530-4C4B-9453-751DF87D9D93}) (Version: 2.0.0.68 - NewTech Infosystems)
      Acer Crystal Eye webcam (HKLM-x32\...\{51F026FA-5146-4232-A8BA-1364740BD053}) (Version: 1.0.3.5 - liteon)
      Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 5.00.3005 - Acer Incorporated)
      Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 4.05.3013 - Acer Incorporated)
      Acer Game Console (x32 Version:  - WildTangent) Hidden
      Acer Games (HKLM-x32\...\WildTangent acer Master Uninstall) (Version: 1.0.1.3 - WildTangent)
      Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.03.3003 - Acer Incorporated)
      Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0423.2010 - Acer Incorporated)
      Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
      Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.007.20033 - Adobe Systems Incorporated)
      Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.0.7220 - Adobe Systems Inc.)
      Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.190 - Adobe Systems Incorporated)
      Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.194 - Adobe Systems Incorporated)
      Agatha Christie - Death on the Nile (x32 Version: 2.2.0.95 - WildTangent) Hidden
      Alcor Micro USB Card Reader (HKLM-x32\...\InstallShield_{DD89CE29-BC88-40C6-A845-E2548682C5D6}) (Version: 1.9.17.06019 - Alcor Micro Corp.)
      Alcor Micro USB Card Reader (x32 Version: 1.9.17.06019 - Alcor Micro Corp.) Hidden
      ALPS Touch Pad Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.105.2015.1107 - Alps Electric)
      American Pickers: The Road Less Traveled (HKLM-x32\...\BFG-American Pickers - The Road Less Traveled) (Version:  - )
      Apple Application Support (HKLM-x32\...\{AAC5D43E-816D-4C2D-8E51-55FFF35BE301}) (Version: 3.0.1 - Apple Inc.)
      Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.)
      Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
      Aquascapes (HKLM-x32\...\BFG-Aquascapes) (Version:  - )
      ArcadeFrontier (HKU\S-1-5-21-2944208223-1119237557-1928499589-1000\...\{4AFCAFDC-D870-41FA-B9FB-1442B9DAFE76}) (Version:  - ArcadeFrontier)
      Avalon Legends Solitaire (HKLM-x32\...\BFG-Avalon Legends Solitaire) (Version:  - )
      AVIConverter CHN-EN Package (HKLM-x32\...\AVIConverter) (Version: CHN-EN Package - )
      Backup Manager Basic (x32 Version: 2.0.0.68 - NewTech Infosystems) Hidden
      Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
      Big Fish: Game Manager (HKLM-x32\...\BFGC) (Version: 3.3.0.2 - )
      Black Rainbow (HKLM-x32\...\BFG-Black Rainbow) (Version:  - )
      Blackhawk Striker 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
      Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
      Brain Games: Chess (HKLM-x32\...\BFG-Brain Games - Chess) (Version:  - )
      Broadcom Gigabit NetLink Controller (HKLM\...\{A84DB02B-9C2B-4272-9D2D-A80E00A56513}) (Version: 14.2.4.2 - Broadcom Corporation)
      Build-a-lot 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
      Call of Atlantis: Treasures of Poseidon (HKLM-x32\...\BFG-Call of Atlantis - Treasures of Poseidon) (Version:  - )
      Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
      Cursed House 2 (HKLM-x32\...\BFG-Cursed House 2) (Version:  - )
      CyberLink PowerDVD 9 (HKLM-x32\...\InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}) (Version: 9.0.3216.50 - CyberLink Corp.)
      D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
      Dark Manor: A Hidden Object Mystery (HKLM-x32\...\BFG-Dark Manor - A Hidden Object Mystery) (Version:  - )
      Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95 - WildTangent) Hidden
      Dora's Carnival Adventure (x32 Version: 2.2.0.95 - WildTangent) Hidden
      download-free-soft bundle uninstaller (HKLM-x32\...\download-free-soft bundle uninstaller) (Version: 2.0.0.5 - download-free-soft)
      eBay Worldwide (HKLM-x32\...\{E0B19DF7-B1C7-4937-82C4-0E4B1E346965}) (Version: 2.1.0901 - OEM)
      Emerland Solitaire: Endless Journey (HKLM-x32\...\BFG-Emerland Solitaire - Endless Journey) (Version:  - )
      FATE (x32 Version: 2.2.0.95 - WildTangent) Hidden
      Feeding Frenzy (HKLM-x32\...\BFG-Feeding Frenzy) (Version:  - )
      Feeding Frenzy 2 Shipwreck Showdown (HKLM-x32\...\BFG-Feeding Frenzy 2 Shipwreck Showdown) (Version:  - )
      Fishdom 3 Collector's Edition (HKLM-x32\...\BFG-Fishdom 3 Collector's Edition) (Version:  - )
      Found: A Hidden Object Adventure (HKLM-x32\...\BFG-Found - A Hidden Object Adventure) (Version:  - )
      FrostWire 5.7.1 (HKLM-x32\...\FrostWire 5) (Version: 5.7.1.8 - FrostWire LLC)
      Google Earth (HKLM-x32\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google)
      Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
      Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden
      Grim Tales: The Vengeance Collector's Edition (HKLM-x32\...\BFG-Grim Tales - The Vengeance Collectors Edition) (Version:  - )
      Gummy Drop! (HKLM-x32\...\BFG-Gummy Drop!) (Version:  - )
      Haunted Hotel: Lonely Dream (HKLM-x32\...\BFG-Haunted Hotel - Lonely Dream) (Version:  - )
      Hidden Mysteries&reg;: The Fateful Voyage - Titanic (HKLM-x32\...\BFG-Hidden Mysteries - The Fateful Voyage - Titanic) (Version:  - )
      Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3003 - Acer Incorporated)
      InstallConverter bundle uninstaller (HKLM-x32\...\InstallConverter bundle uninstaller) (Version: 2.0.0.5 - InstallConverter)
      Intel(R) Graphics Media Accelerator Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2119 - Intel Corporation)
      Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
      Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.0.1014 - Intel Corporation)
      iTunes (HKLM\...\{B8BA155B-1E75-405F-9CB4-8A99615D09DC}) (Version: 11.1.5.5 - Apple Inc.)
      Jewel Quest - Heritage (x32 Version: 2.2.0.95 - WildTangent) Hidden
      Jewel Quest Solitaire 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
      John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden
      Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
      Launch Manager (HKLM-x32\...\LManager) (Version: 4.0.14 - Acer Inc.)
      LiveReg (Symantec Corporation) (HKLM-x32\...\LiveReg) (Version: 2.2.0.1621 - Symantec Corporation)
      LiveUpdate 1.80 (Symantec Corporation) (HKLM-x32\...\LiveUpdate) (Version: 1.80.19.0 - Symantec Corporation)
      Lost Realms: The Curse of Babylon (HKLM-x32\...\BFG-Lost Realms - The Curse of Babylon) (Version:  - )
      Magic Heroes: Save Our Park (HKLM-x32\...\BFG-Magic Heroes - Save Our Park) (Version:  - )
      Malwarebytes Anti-Malware version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
      Mayan Prophecies: Ship of Spirits Collector's Edition (HKLM-x32\...\BFG-Mayan Prophecies - Ship of Spirits Collector's Edition) (Version:  - )
      Media Player Utilities 4.36 (HKLM-x32\...\{8B9852AF-B0B0-47B7-9BC5-89A95D77B6C9}) (Version: 4.36 -  )
      Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
      Microsoft Office 2000 SR-1 Small Business (HKLM-x32\...\{00030409-78E1-11D2-B60F-006097C998E7}) (Version: 9.00.3821 - Microsoft Corporation)
      Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
      Microsoft Office Click-to-Run 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
      Microsoft Office Starter 2010 - English (HKLM-x32\...\{90140011-0066-0409-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
      Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
      Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
      Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
      Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
      Midnight Castle (HKLM-x32\...\BFG-Midnight Castle) (Version:  - )
      Mozilla Firefox 38.0.5 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 38.0.5 (x86 en-US)) (Version: 38.0.5 - Mozilla)
      Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.0 - Mozilla)
      MyHeritage Family Tree Builder (HKLM-x32\...\Family Tree Builder) (Version: 7.0.0.7118 - MyHeritage.com)
      Mystery Trackers: The Void (HKLM-x32\...\BFG-Mystery Trackers - The Void) (Version:  - )
      Mystika 2: The Sanctuary (HKLM-x32\...\BFG-Mystika 2 - The Sanctuary) (Version:  - )
      MyWinLocker (x32 Version: 3.1.212.0 - Egis Technology Inc.) Hidden
      MyWinLocker Suite (HKLM-x32\...\InstallShield_{738BF5C3-AF7B-4BB0-B7EF-E505EFC756BE}) (Version: 3.1.212.0 - Egis Technology Inc.)
      MyWinLocker Suite (x32 Version: 3.1.212.0 - Egis Technology Inc.) Hidden
      Norton 360 (HKLM-x32\...\N360) (Version: 20.5.0.28 - Symantec Corporation)
      Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.1.17869 - Symantec Corporation)
      NTI Backup Now 5 (HKLM-x32\...\InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}) (Version: 5.1.2.630 - NewTech Infosystems)
      NTI Backup Now Standard (x32 Version: 5.1.2.630 - NewTech Infosystems) Hidden
      NTI Media Maker 8 (HKLM-x32\...\InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}) (Version: 8.0.12.6636 - NewTech Infosystems)
      NTI Media Maker 8 (x32 Version: 8.0.12.6636 - NewTech Infosystems) Hidden
      Patchworkz™ (HKLM-x32\...\BFG-Patchworkz) (Version:  - )
      Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden
      Photobie -- photo editing software from Photobie Design (HKLM-x32\...\Photobie) (Version:  - )
      Plants vs. Zombies (x32 Version: 2.2.0.95 - WildTangent) Hidden
      PlayMemories Home (HKLM-x32\...\{0657DE52-8F5C-4073-B70C-ED4F3F7FA076}) (Version: 7.0.03.04240 - Sony Corporation)
      Polar Bowler (x32 Version: 2.2.0.95 - WildTangent) Hidden
      Polar Golfer (x32 Version: 2.2.0.95 - WildTangent) Hidden
      ProductTools_ND (HKLM-x32\...\{09A772CC-FB06-4C8E-9455-55F4A9381412}) (Version: 3.01.0002 - Your Company Name)
      QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)
      RabbitTV (HKU\S-1-5-21-2944208223-1119237557-1928499589-1000\...\6c2290d276fa0f0d) (Version: 1.0.0.8 - RabbitTV.com)
      Rainbow Web 3 (HKLM-x32\...\BFG-Rainbow Web 3) (Version:  - )
      Rainbow Web II (HKLM-x32\...\BFG-Rainbow Web II) (Version:  - )
      RealDownloader (x32 Version: 17.0.15.4 - RealNetworks, Inc.) Hidden
      RealDownloader (x32 Version: 17.0.15.7 - RealNetworks) Hidden
      RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden
      RealNetworks - Microsoft Visual C++ 2010 Runtime (Version: 10.0 - RealNetworks, Inc) Hidden
      RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden
      RealPlayer Cloud (HKLM-x32\...\RealPlayer 17.0) (Version: 17.0.15 - RealNetworks)
      Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6167 - Realtek Semiconductor Corp.)
      RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden
      Roads of Rome III (HKLM-x32\...\BFG-Roads of Rome III) (Version:  - )
      Rush for Gold: Alaska (HKLM-x32\...\BFG-Rush for Gold - Alaska) (Version:  - )
      Rush for Gold: California (HKLM-x32\...\BFG-Rush for Gold - California) (Version:  - )
      Shredder (Version: 2.0.8.3 - Egis Technology Inc.) Hidden
      Shredder (x32 Version: 2.0.8.3 - Egis Technology Inc.) Hidden
      Sophos Virus Removal Tool (HKLM-x32\...\{B829E117-D072-41EA-9606-9826A38D34C1}) (Version: 2.5.4 - Sophos Limited)
      Spirit Seasons: Little Ghost Story (HKLM-x32\...\BFG-Spirit Seasons - Little Ghost Story) (Version:  - )
      Surface: Mystery of Another World Collector's Edition (HKLM-x32\...\BFG-Surface - Mystery of Another World Collector's Edition) (Version:  - )
      Tales of the Orient: The Rising Sun (HKLM-x32\...\BFG-Tales of the Orient - The Rising Sun) (Version:  - )
      The Chronicles of Emerland Solitaire (HKLM-x32\...\BFG-The Chronicles of Emerland Solitaire) (Version:  - )
      The Timebuilders: Caveman's Prophecy (HKLM-x32\...\BFG-The Timebuilders - Caveman's Prophecy) (Version:  - )
      TimeLeft (HKLM-x32\...\TIMELEFT3_is1) (Version: 3.62 - NesterSoft Inc.)
      Treasure Seekers: The Time Has Come (HKLM-x32\...\BFG-Treasure Seekers - The Time Has Come) (Version:  - )
      Ulead Photo Express 3.0 SE (HKLM-x32\...\Ulead Photo Express 3.0 SE) (Version:  - )
      Unity Web Player (HKU\S-1-5-21-2944208223-1119237557-1928499589-1000\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
      UpdateService (x32 Version: 1.0.0 - RealNetworks, Inc.) Hidden
      Video Downloader (x32 Version: 1.0.0 - RealNetworks) Hidden
      Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.95 - WildTangent) Hidden
      Wanderland (HKLM-x32\...\BFG-Wanderland) (Version:  - )
      Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3004 - Acer Incorporated)
      Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation)
      Windows Live Sync (HKLM-x32\...\{B10914FD-8812-47A4-85A1-50FCDE7F1F33}) (Version: 14.0.8117.416 - Microsoft Corporation)
      Zuma's Revenge (x32 Version: 2.2.0.95 - WildTangent) Hidden

      ==================== Custom CLSID (Whitelisted): ==========================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


      ==================== Restore Points =========================

      17-06-2015 12:13:12 Quitado VAFPlayer
      19-06-2015 16:05:47 Windows Update
      21-06-2015 12:24:07 Norton_Power_Eraser_20150621122400793
      25-06-2015 21:06:06 Windows Update
      30-06-2015 11:57:43 Windows Update
      03-07-2015 12:37:34 Windows Update
      05-07-2015 15:06:49 Restore Operation
      06-07-2015 16:02:21 Windows Update

      ==================== Hosts content: ===============================

      (If needed Hosts: directive could be included in the fixlist to reset Hosts.)

      2009-07-13 23:34 - 2015-06-10 22:51 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
      127.0.0.1       localhost

      ==================== Scheduled Tasks (Whitelisted) =============

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      Task: {05E2DB0D-69B9-4C12-B369-7E3C37189E4C} - System32\Tasks\AVAST Software\Avast Integrity Check => C:\Windows\AswCheck.exe [2015-06-10] (AVAST Software s. r. o.)
      Task: {15ED3041-C5F3-40F0-A0B6-0B7FFD8E5257} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-03-02] (Google Inc.)
      Task: {2581E768-473C-4BC3-8696-17C87DA51863} - System32\Tasks\{342BA494-9214-407A-8024-9554BAD03A9D} => Firefox.exe
      Task: {3577F72F-03E4-48F7-8B59-179CA6A9CE17} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton 360\Engine\20.5.0.28\WSCStub.exe [2014-04-29] (Symantec Corporation)
      Task: {58F157BD-670C-4BFA-81A5-7C70B8A0147C} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2944208223-1119237557-1928499589-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2014-10-30] (RealNetworks, Inc.)
      Task: {6372D239-AA37-4294-B89D-3A55EC7EA727} - System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-2944208223-1119237557-1928499589-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe [2014-10-27] (RealNetworks, Inc.)
      Task: {65E433B0-9071-47B1-BF62-111378C2CDB3} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-2944208223-1119237557-1928499589-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe [2014-10-27] (RealNetworks, Inc.)
      Task: {69CFAB87-EB43-4B8D-805D-3FFBD879E483} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-25] (Adobe Systems Incorporated)
      Task: {76E4CDA7-D71E-478A-A3D4-77C4B27391C5} - System32\Tasks\{A43C693E-2BFC-4A67-9168-D339524202B6} => C:\Users\Dottie Byrne\Desktop\Downloads\Photobie\Photobie.exe
      Task: {8F6841D9-8933-42E2-B694-F49DB77E6B9D} - System32\Tasks\{04A8123A-6D95-4738-957A-C64A39FE9F5C} => Firefox.exe
      Task: {9A527B0E-79F6-46CB-9EC6-B83A5835D527} - System32\Tasks\Norton 360\Norton Error Processor => C:\Program Files (x86)\Norton 360\Engine\20.5.0.28\SymErr.exe [2013-06-03] (Symantec Corporation)
      Task: {9E7AC94E-6870-42B6-BD8D-3116E159C11F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-03-02] (Google Inc.)
      Task: {A12C56BF-4430-41A4-A9E0-763C8834D272} - System32\Tasks\{B8BF4995-49A6-4353-826F-9FBBE378E6CD} => pcalua.exe -a "D:\U Disk Driver Win98\U98Setup.exe" -d "D:\U Disk Driver Win98"
      Task: {A319B347-C61E-4FB1-94D6-868E166F3B1A} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-2944208223-1119237557-1928499589-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe [2014-10-27] (RealNetworks, Inc.)
      Task: {B58AA406-263D-488E-8C6A-FD43CBF0E88C} - System32\Tasks\{D238A730-3EA0-4109-82E4-6958B9AE8388} => Firefox.exe
      Task: {CB808E79-E859-4574-A8F1-44B071A4F1A1} - System32\Tasks\{38634957-DC51-4F7A-8506-B593F3E2FC2B} => pcalua.exe -a D:\setup.exe -d D:\
      Task: {D390E8BC-CFCA-49F5-ADD0-17AA5C138AE1} - System32\Tasks\Norton 360\Norton Error Analyzer => C:\Program Files (x86)\Norton 360\Engine\20.5.0.28\SymErr.exe [2013-06-03] (Symantec Corporation)
      Task: {DD24D029-9955-4DA3-AD4B-9EB4F271A01A} - System32\Tasks\{EEBB9873-AD69-49D4-8F8A-0A7CCBA148B6} => pcalua.exe -a "C:\Users\Dottie Byrne\Downloads\QuickTimeInstaller(2).exe" -d "C:\Users\Dottie Byrne\Downloads"
      Task: {EBDBB01F-FB75-463C-8929-C28BF0DBFA74} - System32\Tasks\RealDownloader Update Check => C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe [2014-10-29] ()
      Task: {EDCD2BA7-BD1D-41AB-9E9A-D0CA60EDE171} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-06-12] (Adobe Systems Incorporated)
      Task: {FA0CAB83-8FD7-4216-95C5-2624C2DBE3C8} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2944208223-1119237557-1928499589-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2014-10-30] (RealNetworks, Inc.)
      Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
      Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
      Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

      ==================== Loaded Modules (Whitelisted) ==============

      2014-10-27 02:59 - 2014-10-27 02:59 - 00039568 _____ () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
      2014-10-30 09:41 - 2014-10-30 09:41 - 00031856 _____ () C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe
      2014-10-29 23:06 - 2014-10-29 23:06 - 00560192 _____ () C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe
      2014-01-20 17:17 - 2014-01-20 17:17 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
      2014-01-20 17:16 - 2014-01-20 17:16 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
      2010-06-28 19:20 - 2010-06-28 19:20 - 00465576 _____ () C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\sqlite3.dll
      2010-06-28 19:12 - 2010-06-28 19:12 - 01081600 _____ () C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\ACE.dll
      2014-04-24 22:33 - 2015-02-22 19:26 - 00865880 _____ () c:\program files (x86)\real\realplayer\RPDS\Plugins\cldplin.dll
      2014-10-30 09:41 - 2014-10-30 09:41 - 00035976 _____ () C:\Program Files (x86)\Real\UpdateService\DL2UpdatePlugin.dll
      2014-10-30 09:41 - 2014-10-30 09:41 - 00039560 _____ () C:\Program Files (x86)\Real\UpdateService\RealDownloaderUpdatePlugin.dll
      2014-10-30 09:41 - 2014-10-30 09:41 - 00032888 _____ () C:\Program Files (x86)\Real\UpdateService\RPDSUpdatePlugin.dll
      2013-03-01 00:06 - 2009-05-20 19:02 - 00072200 _____ () C:\Program Files (x86)\Launch Manager\CdDirIo.dll
      2014-10-29 23:01 - 2014-10-29 23:01 - 01382048 _____ () C:\Program Files (x86)\RealNetworks\RealDownloader\cpprest100_1_2.dll
      2015-06-25 22:01 - 2015-06-25 22:01 - 17321648 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_194.dll

      ==================== Alternate Data Streams (Whitelisted) =========

      (If an entry is included in the fixlist, only the ADS will be removed.)

      AlternateDataStreams: C:\ProgramData\Temp:036B81D9
      AlternateDataStreams: C:\ProgramData\Temp:16ADBA30
      AlternateDataStreams: C:\ProgramData\Temp:1FA4C06F
      AlternateDataStreams: C:\ProgramData\Temp:236FF5C6
      AlternateDataStreams: C:\ProgramData\Temp:2433F876
      AlternateDataStreams: C:\ProgramData\Temp:2495D97A
      AlternateDataStreams: C:\ProgramData\Temp:24C072FF
      AlternateDataStreams: C:\ProgramData\Temp:24C89EFC
      AlternateDataStreams: C:\ProgramData\Temp:28DB0DC4
      AlternateDataStreams: C:\ProgramData\Temp:2CB9631F
      AlternateDataStreams: C:\ProgramData\Temp:39CB2031
      AlternateDataStreams: C:\ProgramData\Temp:3BCA993F
      AlternateDataStreams: C:\ProgramData\Temp:3C0F646D
      AlternateDataStreams: C:\ProgramData\Temp:4018444F
      AlternateDataStreams: C:\ProgramData\Temp:40640B7D
      AlternateDataStreams: C:\ProgramData\Temp:426D1496
      AlternateDataStreams: C:\ProgramData\Temp:4B6A9FDA
      AlternateDataStreams: C:\ProgramData\Temp:512E1728
      AlternateDataStreams: C:\ProgramData\Temp:57173DB4
      AlternateDataStreams: C:\ProgramData\Temp:59465B40
      AlternateDataStreams: C:\ProgramData\Temp:5E209A50
      AlternateDataStreams: C:\ProgramData\Temp:6AD65294
      AlternateDataStreams: C:\ProgramData\Temp:6CF828C2
      AlternateDataStreams: C:\ProgramData\Temp:6E6A4F42
      AlternateDataStreams: C:\ProgramData\Temp:7687A3E3
      AlternateDataStreams: C:\ProgramData\Temp:7FA0D639
      AlternateDataStreams: C:\ProgramData\Temp:82756AB7
      AlternateDataStreams: C:\ProgramData\Temp:85376176
      AlternateDataStreams: C:\ProgramData\Temp:9D0A16E4
      AlternateDataStreams: C:\ProgramData\Temp:9DA44E6B
      AlternateDataStreams: C:\ProgramData\Temp:A384652A
      AlternateDataStreams: C:\ProgramData\Temp:A43B789A
      AlternateDataStreams: C:\ProgramData\Temp:A6D6E537
      AlternateDataStreams: C:\ProgramData\Temp:A9ABA3FF
      AlternateDataStreams: C:\ProgramData\Temp:AE75CCC8
      AlternateDataStreams: C:\ProgramData\Temp:B65E763D
      AlternateDataStreams: C:\ProgramData\Temp:C46848E8
      AlternateDataStreams: C:\ProgramData\Temp:C605E0E1
      AlternateDataStreams: C:\ProgramData\Temp:DDA730F9
      AlternateDataStreams: C:\ProgramData\Temp:E1ABC2C7
      AlternateDataStreams: C:\ProgramData\Temp:E33D8F51
      AlternateDataStreams: C:\ProgramData\Temp:F5FC5DCE
      AlternateDataStreams: C:\Users\Dottie Byrne\Downloads\Facebook(1).eml:OECustomProperty
      AlternateDataStreams: C:\Users\Dottie Byrne\Downloads\Facebook.eml:OECustomProperty

      ==================== Safe Mode (Whitelisted) ===================

      (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\25705026.sys => ""="Driver"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\25705026.sys => ""="Driver"

      ==================== EXE Association (Whitelisted) ===============

      (If an entry is included in the fixlist, the registry item will be restored to default or removed.)


      ==================== Internet Explorer trusted/restricted ===============

      (If an entry is included in the fixlist, it will be removed from the registry.)


      ==================== Other Areas ============================

      (Currently there is no automatic fix for this section.)

      HKU\S-1-5-21-2944208223-1119237557-1928499589-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Dottie Byrne\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
      DNS Servers: 192.168.1.1

      ==================== MSCONFIG/TASK MANAGER disabled items ==

      (Currently there is no automatic fix for this section.)


      ==================== FirewallRules (Whitelisted) ===============

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      FirewallRules: [{38E872C0-8EFE-4A67-9C6C-0022D708666F}] => (Allow) C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
      FirewallRules: [{A5013262-15D7-4934-9246-2727003EB7D6}] => (Allow) C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
      FirewallRules: [{EFCD7449-013C-492D-A4C5-6D2879C230D2}] => (Allow) C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
      FirewallRules: [{256D3D30-4AE8-4AAC-8817-8940E0CA0824}] => (Allow) C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
      FirewallRules: [{29F6AB0B-ABC2-4D4B-9766-244EFADFCE46}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
      FirewallRules: [{A3D59C8A-A78E-4C84-8A20-DD98D8B72B42}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
      FirewallRules: [{8A7E4795-6C7B-44A2-8C3C-9C8064269685}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD9\PowerDVD9.EXE
      FirewallRules: [{641626EA-40B9-4B2D-A803-3CB51AF74D66}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
      FirewallRules: [{1B969851-9289-48F7-AD5C-8BAEDDF574B3}] => (Allow) svchost.exe
      FirewallRules: [{DBF750B1-18BC-41E0-A9E6-289CA4160B5D}] => (Allow) C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe
      FirewallRules: [{4715D4C5-ED1F-4561-A549-0146492E1474}] => (Allow) C:\Users\Dottie Byrne\Desktop\Downloads\FrostWire 5\FrostWire.exe
      FirewallRules: [{7FC3D9EE-081E-4D46-9F31-E60826E2D90F}] => (Allow) C:\Users\Dottie Byrne\Desktop\Downloads\FrostWire 5\FrostWire.exe
      FirewallRules: [{C6C75CE4-AD90-49C6-AB58-E5E6BB746048}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
      FirewallRules: [{E398A03E-4B1A-4F4B-BA30-1B8946FCBF98}] => (Allow) LPort=2869
      FirewallRules: [{51D6CDEE-176D-4C7A-8981-275F7FE04505}] => (Allow) LPort=1900
      FirewallRules: [{7863CA93-9C10-4C55-8E83-13C14B5694F8}] => (Allow) C:\Users\Dottie Byrne\AppData\Roaming\BitTorrent\BitTorrent.exe
      FirewallRules: [{28B3E17B-8F56-4C58-A03E-E1147B9EF6F1}] => (Allow) C:\Users\Dottie Byrne\AppData\Roaming\BitTorrent\BitTorrent.exe
      FirewallRules: [{7C09A930-E475-4CEB-9EDF-40B2BABFCB9B}] => (Allow) C:\Program Files (x86)\BearShare Applications\BearShare\BearShare.exe
      FirewallRules: [{A65E7123-9EC9-4B2A-8EAC-C6C07F95C714}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
      FirewallRules: [{48DBB2BB-1DD8-40CD-A503-F9466926CAD7}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
      FirewallRules: [{B0E310CF-5152-4B39-9D39-34488CA05E9B}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
      FirewallRules: [{58C1D0B0-5FF5-4DEE-94DE-D69F484DDB87}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
      FirewallRules: [{0CCCB75D-2057-4B52-8165-1522D90B6F91}] => (Allow) C:\Program Files (x86)\iMesh Applications\iMesh\iMesh.exe
      FirewallRules: [{D71E2676-BCD7-419B-9D04-97485429AD13}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe
      FirewallRules: [TCP Query User{6286F696-6830-443D-A465-F14658E687EB}C:\users\dottie byrne\appdata\local\logmein rescue applet\lmir0001.tmp\lmi_rescue.exe] => (Block) C:\users\dottie byrne\appdata\local\logmein rescue applet\lmir0001.tmp\lmi_rescue.exe
      FirewallRules: [UDP Query User{9F412810-7E9B-4948-8012-B9AB949188DC}C:\users\dottie byrne\appdata\local\logmein rescue applet\lmir0001.tmp\lmi_rescue.exe] => (Block) C:\users\dottie byrne\appdata\local\logmein rescue applet\lmir0001.tmp\lmi_rescue.exe
      FirewallRules: [{9F3AA7F6-D48D-4368-A638-93CA2753A1FC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
      FirewallRules: [{32418BD1-251F-47BC-89FE-7B7893526462}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
      FirewallRules: [{60020B79-C926-4CAA-9084-8B5E0E106602}] => (Allow) c:\program files (x86)\real\realplayer\RPDS\Bin\rpdsvc.exe

      ==================== Faulty Device Manager Devices =============

      Name: Norton 360 Settings Manager
      Description: Norton 360 Settings Manager
      Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
      Manufacturer:
      Service: ccSet_N360
      Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
      Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
      Devices stay in this state if they have been prepared for removal.
      After you remove the device, this error disappears.Remove the device, and this error should be resolved.

      Name: Unknown Device
      Description: Unknown Device
      Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
      Manufacturer: (Standard USB Host Controller)
      Service:
      Problem: : Windows has stopped this device because it has reported problems. (Code 43)
      Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation.

      Name: IDSVia64
      Description: IDSVia64
      Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
      Manufacturer:
      Service: IDSVia64
      Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
      Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
      Devices stay in this state if they have been prepared for removal.
      After you remove the device, this error disappears.Remove the device, and this error should be resolved.

      Name: Symantec Iron Driver
      Description: Symantec Iron Driver
      Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
      Manufacturer:
      Service: SymIRON
      Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
      Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
      Devices stay in this state if they have been prepared for removal.
      After you remove the device, this error disappears.Remove the device, and this error should be resolved.

      Name: Symantec Network Security WFP Driver
      Description: Symantec Network Security WFP Driver
      Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
      Manufacturer:
      Service: SymNetS
      Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
      Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
      Devices stay in this state if they have been prepared for removal.
      After you remove the device, this error disappears.Remove the device, and this error should be resolved.

      Name: BHDrvx64
      Description: BHDrvx64
      Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
      Manufacturer:
      Service: BHDrvx64
      Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
      Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
      Devices stay in this state if they have been prepared for removal.
      After you remove the device, this error disappears.Remove the device, and this error should be resolved.


      ==================== Event log errors: =========================

      Application errors:
      ==================
      Error: (07/06/2015 00:28:56 PM) (Source: Application Hang) (EventID: 1002) (User: )
      Description: The program IEXPLORE.EXE version 11.0.9600.17840 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

      Process ID: 9e8

      Start Time: 01d0b7f8506a7544

      Termination Time: 98

      Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE

      Report Id:

      Error: (07/06/2015 11:13:40 AM) (Source: SideBySide) (EventID: 80) (User: )
      Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest3.
      A component version required by the application conflicts with another component version already active.
      Conflicting components are:.
      Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest.
      Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest.

      Error: (07/06/2015 11:03:28 AM) (Source: CVHSVC) (EventID: 100) (User: )
      Description: Information only.
      (Patch task for {90140011-0066-0409-0000-0000000FF1CE}): DownloadLatest Failed:

      Error: (07/06/2015 02:54:12 AM) (Source: Application Error) (EventID: 1000) (User: )
      Description: Faulting application name: bfgclient.exe, version: 3.3.0.2, time stamp: 0x53179a91
      Faulting module name: ntdll.dll, version: 6.1.7601.18869, time stamp: 0x55636317
      Exception code: 0xc0000005
      Fault offset: 0x00022322
      Faulting process id: 0x1be4
      Faulting application start time: 0xbfgclient.exe0
      Faulting application path: bfgclient.exe1
      Faulting module path: bfgclient.exe2
      Report Id: bfgclient.exe3

      Error: (07/06/2015 02:54:12 AM) (Source: Application Hang) (EventID: 1002) (User: )
      Description: The program bfgclient.exe version 3.3.0.2 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

      Process ID: 19b4

      Start Time: 01d0b7a4505198a4

      Termination Time: 13

      Application Path: C:\Program Files (x86)\bfgclient\bfgclient.exe

      Report Id: 6229513f-23a3-11e5-a57d-206a8a1b6f9f

      Error: (07/06/2015 00:54:45 AM) (Source: Application Error) (EventID: 1000) (User: )
      Description: Faulting application name: bfgclient.exe, version: 3.3.0.2, time stamp: 0x53179a91
      Faulting module name: ntdll.dll, version: 6.1.7601.18869, time stamp: 0x55636317
      Exception code: 0xc0000005
      Fault offset: 0x00022322
      Faulting process id: 0xf90
      Faulting application start time: 0xbfgclient.exe0
      Faulting application path: bfgclient.exe1
      Faulting module path: bfgclient.exe2
      Report Id: bfgclient.exe3

      Error: (07/06/2015 00:54:45 AM) (Source: Application Hang) (EventID: 1002) (User: )
      Description: The program bfgclient.exe version 3.3.0.2 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

      Process ID: e28

      Start Time: 01d0b750a8e69b39

      Termination Time: 5

      Application Path: C:\Program Files (x86)\bfgclient\bfgclient.exe

      Report Id: a996e7ea-2392-11e5-a57d-206a8a1b6f9f

      Error: (07/05/2015 03:22:35 PM) (Source: CVHSVC) (EventID: 100) (User: )
      Description: Information only.
      (Patch task for {90140011-0066-0409-0000-0000000FF1CE}): DownloadLatest Failed:

      Error: (07/05/2015 02:13:26 PM) (Source: Application Hang) (EventID: 1002) (User: )
      Description: The program ARA.exe version 1.0.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

      Process ID: 161c

      Start Time: 01d0b72b3793c553

      Termination Time: 17

      Application Path: C:\Program Files (x86)\Symantec\Norton Online Backup\ARA.exe

      Report Id: 155f4be7-2339-11e5-9009-206a8a1b6f9f

      Error: (07/04/2015 11:17:33 AM) (Source: SideBySide) (EventID: 80) (User: )
      Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest3.
      A component version required by the application conflicts with another component version already active.
      Conflicting components are:.
      Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest.
      Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest.


      System errors:
      =============
      Error: (07/07/2015 10:25:30 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
      Description: The following boot-start or system-start driver(s) failed to load:
      BHDrvx64
      ccSet_N360
      IDSVia64
      SRTSP
      SymIRON
      SymNetS

      Error: (07/07/2015 10:25:25 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
      Description: The SAVRTPEL service failed to start due to the following error:
      %%2

      Error: (07/07/2015 10:25:16 AM) (Source: Application Popup) (EventID: 1060) (User: )
      Description: \??\C:\Program Files (x86)\Symantec\SYMEVENT.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

      Error: (07/07/2015 10:25:16 AM) (Source: Application Popup) (EventID: 1060) (User: )
      Description: \??\C:\Program Files (x86)\Symantec\SYMEVENT.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

      Error: (07/07/2015 10:25:15 AM) (Source: Application Popup) (EventID: 1060) (User: )
      Description: \??\C:\Program Files (x86)\Symantec\SYMEVENT.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

      Error: (07/07/2015 10:25:14 AM) (Source: Application Popup) (EventID: 1060) (User: )
      Description: \??\C:\Program Files (x86)\Symantec\SYMEVENT.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

      Error: (07/07/2015 10:25:13 AM) (Source: Application Popup) (EventID: 1060) (User: )
      Description: \??\C:\Program Files (x86)\Symantec\SYMEVENT.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

      Error: (07/07/2015 10:25:12 AM) (Source: SRTSP) (EventID: 4) (User: )
      Description: Error loading virus definitions.

      Error: (07/07/2015 10:25:12 AM) (Source: Application Popup) (EventID: 1060) (User: )
      Description: \??\C:\Program Files (x86)\Symantec\SYMEVENT.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

      Error: (07/07/2015 10:10:16 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
      Description: The following boot-start or system-start driver(s) failed to load:
      BHDrvx64
      ccSet_N360
      IDSVia64
      SRTSP
      SymIRON
      SymNetS


      Microsoft Office:
      =========================
      Error: (07/06/2015 00:28:56 PM) (Source: Application Hang) (EventID: 1002) (User: )
      Description: IEXPLORE.EXE11.0.9600.178409e801d0b7f8506a754498C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE

      Error: (07/06/2015 11:13:40 AM) (Source: SideBySide) (EventID: 80) (User: )
      Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifestc:\users\dottie byrne\appdata\local\temp\rninst~4\ui_data\ask\askinstaller.exe

      Error: (07/06/2015 11:03:28 AM) (Source: CVHSVC) (EventID: 100) (User: )
      Description: (Patch task for {90140011-0066-0409-0000-0000000FF1CE}): DownloadLatest Failed:

      Error: (07/06/2015 02:54:12 AM) (Source: Application Error) (EventID: 1000) (User: )
      Description: bfgclient.exe3.3.0.253179a91ntdll.dll6.1.7601.1886955636317c0000005000223221be401d0b7a45064365fC:\Program Files (x86)\bfgclient\bfgclient.exeC:\Windows\SysWOW64\ntdll.dll6ca30ce3-23a3-11e5-a57d-206a8a1b6f9f

      Error: (07/06/2015 02:54:12 AM) (Source: Application Hang) (EventID: 1002) (User: )
      Description: bfgclient.exe3.3.0.219b401d0b7a4505198a413C:\Program Files (x86)\bfgclient\bfgclient.exe6229513f-23a3-11e5-a57d-206a8a1b6f9f

      Error: (07/06/2015 00:54:45 AM) (Source: Application Error) (EventID: 1000) (User: )
      Description: bfgclient.exe3.3.0.253179a91ntdll.dll6.1.7601.1886955636317c000000500022322f9001d0b750a8f6a0daC:\Program Files (x86)\bfgclient\bfgclient.exeC:\Windows\SysWOW64\ntdll.dllbcb45fd0-2392-11e5-a57d-206a8a1b6f9f

      Error: (07/06/2015 00:54:45 AM) (Source: Application Hang) (EventID: 1002) (User: )
      Description: bfgclient.exe3.3.0.2e2801d0b750a8e69b395C:\Program Files (x86)\bfgclient\bfgclient.exea996e7ea-2392-11e5-a57d-206a8a1b6f9f

      Error: (07/05/2015 03:22:35 PM) (Source: CVHSVC) (EventID: 100) (User: )
      Description: (Patch task for {90140011-0066-0409-0000-0000000FF1CE}): DownloadLatest Failed:

      Error: (07/05/2015 02:13:26 PM) (Source: Application Hang) (EventID: 1002) (User: )
      Description: ARA.exe1.0.0.0161c01d0b72b3793c55317C:\Program Files (x86)\Symantec\Norton Online Backup\ARA.exe155f4be7-2339-11e5-9009-206a8a1b6f9f

      Error: (07/04/2015 11:17:33 AM) (Source: SideBySide) (EventID: 80) (User: )
      Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifestc:\users\dottie byrne\appdata\local\temp\rninst~4\ui_data\ask\askinstaller.exe


      CodeIntegrity Errors:
      ===================================
        Date: 2015-07-07 10:25:16.672
        Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Symantec\SYMEVENT.SYS because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

        Date: 2015-07-07 10:25:16.610
        Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Symantec\SYMEVENT.SYS because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

        Date: 2015-07-07 10:25:16.454
        Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Symantec\SYMEVENT.SYS because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

        Date: 2015-07-07 10:25:16.391
        Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Symantec\SYMEVENT.SYS because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

        Date: 2015-07-07 10:25:15.299
        Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Symantec\SYMEVENT.SYS because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

        Date: 2015-07-07 10:25:15.237
        Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Symantec\SYMEVENT.SYS because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

        Date: 2015-07-07 10:25:14.160
        Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Symantec\SYMEVENT.SYS because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

        Date: 2015-07-07 10:25:14.098
        Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Symantec\SYMEVENT.SYS because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

        Date: 2015-07-07 10:25:13.022
        Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Symantec\SYMEVENT.SYS because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

        Date: 2015-07-07 10:25:12.959
        Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Symantec\SYMEVENT.SYS because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


      ==================== Memory info ===========================

      Processor: Intel(R) Core(TM) i3 CPU M 370 @ 2.40GHz
      Percentage of memory in use: 51%
      Total physical RAM: 3764.5 MB
      Available physical RAM: 1831.91 MB
      Total Virtual: 7527.2 MB
      Available Virtual: 5489.04 MB

      ==================== Drives ================================

      Drive c: (ACER) (Fixed) (Total:452.48 GB) (Free:196.45 GB) NTFS

      ==================== MBR & Partition Table ==================

      ========================================================
      Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 465.8 GB) (Disk ID: 5D055D05)
      Partition 1: (Not Active) - (Size=13.2 GB) - (Type=27)
      Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
      Partition 3: (Not Active) - (Size=452.5 GB) - (Type=07 NTFS)

      ==================== End of log ============================
    • What skins do you want?
      By Broken Club · Posted
      Elegant Blue. Was easy on the eyes .
    • Aunty Acid
      By JAN · Posted
    • Maxine
      By JAN · Posted
    • Inspiration
      By JAN · Posted
  • Honor Roll of Contest Winners

    RankUsernamePoints
    1Broken Club15
    2-3frazzm737*13
    2-3Shay13
    4rokytnji*7
    5PeggyB*6
    6-8NKTower4
    6-8MichaelJ*4
    6-8Mrs. Bond4
    9Lewis3
    10-11JohnT*2
    10-11r.a.d.2
    12-14ProblemsRBad1
    12-14Audrey1
    12-14cntrywolf1

    * Staff members, NOT eligible for yearly awards.
    Details HERE

  • [ July 2015 ] Do You Use A Webcam?   11 votes

    1. 1. Do You Use A Webcam?

      • Yes
        5
      • No
        6

    Please sign in or register to vote in this poll.

  • Today's Birthdays

    No users celebrating today
  • Upcoming Events

    No upcoming events found