Just nu i M3-nätverket
Gå till innehåll

Datorn startar så långsamt och stängs av långsamt :-(


MariaE

Rekommendera Poster

Microsoft Security Essentials, som du har, tillhör inte de bästa antivirusprogrammen. Men du bör inte byta antivirusprogram nu utan vänta tills allt är klart med datorn.

 

Har du börjat med Esets online-skanner än?

Länk till kommentar
Dela på andra webbplatser

  • Svars 97
  • Skapad
  • Senaste svar

Du har en skadlig fil i papperskorgen så töm den.

 

DövBlind & Glad Tillbaka till Vintertid.webarchive

Vad är det för fil?

Den ser ut att innehålla skadlig kod.

 

I mapparna C:\utils och C:\utils\Downloads finns det många installationsprogram som vill installera annonsprogram i datorn, typ det som vi håller på och rensar bort. Om du ska installera sådana program är det väldigt viktigt att läsa noga under installationen och alltid välja bort onödiga tillägg/program/inställningar. Vill du ha kvar de installationsprogram som är av den typen?

Länk till kommentar
Dela på andra webbplatser

Nej jag vill nog inte ha kvar alla dessa program. Men om man laddar ner ett program som man vill ha kommer det alltid något extra som man inte har bett om. De program som jag vill ha installerar jag ofta direkt. I kväll har jag bränt en äkta skiva med mapparna undeleted files, Maria och nån mer kommer inte ihåg nu. De ska jag markera för borttagning i morgon. Att bränna filer och  radera filer är jobbigt för datorn. Den kraschar om den blir för varm. Min andra dator stängs av. Just nu är det för sent att göra andra avancerade saker med datorn. När jag råkade flytta de dolda sys-filerna en gång då var det nog också för sent på kvällen. Dessutom använde jag Norton Commander då för att flytta filer då går det för fort :-( Jag fick hjälp efter detta missöde. Far manager ska man inte heller använda för att flytta eller kopiera filer. Jag har fortfarande störmoment hemma så jag kan inte göra alla saker som du har skrivit ännu bl.a. detta med registret. Om jag råkar göra något fel t.e.x.  om det är en bruten rad då kan det bli väldigt mycket fel. :-( Det får jag göra när jag är ensam.

/Maria

Länk till kommentar
Dela på andra webbplatser

Jag har fortfarande störmoment hemma så jag kan inte göra alla saker som du har skrivit ännu bl.a. detta med registret.

1. Vad har jag skrivit som har med registret att göra?

 

2. När man hämtar program gäller det att hämta dem från rätt ställe också. Ett exempel:

C:\utils\Downloads\SoftonicDownloader_for_seamonkey.exe

SeaMonkey i sig innehåller inga olämpliga tillägg men webbplatsen Softonic paketerar om installationsfilen och lägger till sitt eget olämpliga tillägg. Det bästa är att hämta det från tillverkarens egen webbplats och när det gäller SeaMonkey är det http://www.seamonkey-project.org/

 

3. Här kommer nu en instruktion som tar bort det mesta av det som Esets skanner hittade.

 

Starta Anteckningar.

Kopiera alla rader i rutan:

C:\Program Files (x86)\Free Games 115
C:\Program Files (x86)\Speed Test 125
C:\SWSETUP\APP\Applications\Corel\WinZipTrial\16.0\src\winzip160.exe
C:\Users\Maria\Desktop\4353.exe
C:\Users\Maria\Documents\VideoDownloadConvert.exe
C:\Users\Maria\Downloads\ccsetup411.exe
C:\Users\Public\Documents\rcsetup145.exe
C:\utils\advancedfileoptimizersetup_DriveInfo2.exe
C:\utils\advancedfileoptimizersetup_PSD.exe
C:\utils\WinZipRegistryOptimizer.exe
C:\utils\Downloads\cbsidlm-cbsi145-PC_Health_Optimizer_Free_Edition-SEO-10714910.exe
C:\utils\Downloads\cdbxp_setup_4.5.2.4291.exe
C:\utils\Downloads\cdbxp_setup_4.5.2.4478.exe
C:\utils\Downloads\CuteWriter.exe
C:\utils\Downloads\hijackthis-1.exe
C:\utils\Downloads\InternetExplorer.exe
C:\utils\Downloads\pdf-download_setup.exe
C:\utils\Downloads\PSDPlugin.exe
C:\utils\Downloads\Setup.exe
C:\utils\Downloads\SoftonicDownloader_for_seamonkey.exe
C:\utils\Downloads\VideoDownloadConvertSetup2.5.14.33.^HJ^man000^YYA^.exe
C:\utils2\cbsidlm-cbsi188-Bad_CDDVD_Recovery-ORG-10697118.exe
C:\utils2\cbsidlm-cbsi188-Data_Doctor_Recovery_Pen_Drive-ORG-10700114.exe
C:\utils2\cbsidlm-cbsi188-Roadkils_Unstoppable_Copier-SEO-10580640.exe
C:\utils2\DVD Data Recovery.exe
C:\utils2\iMeshSetup-r1491-n-bi.exe
C:\utils2\isobuster_install.exe
C:\utils2\rcsetup151.exe
C:\utils2\SoftonicDownloader_for_safari.exe
BHO-x32: No Name -> {D7A09A0B-D2E6-413F-9EBF-F8AD66839544} ->  No File
CHR DefaultSearchKeyword: Default -> astromenda.com
CHR DefaultSearchProvider: Default -> buenosearch
CHR DefaultSearchURL: Default -> http://www.buenosear...q={searchTerms}
EmptyTemp:
och klistra in i Anteckningar. Kontrollera att inga filer har delats upp på två rader.

Spara filen på skrivbordet med namnet fixlist.txt.

 

Starta FRST som finns på skrivbordet.

Klicka på knappen Fix.

Vänta tills programmet är klart.

 

Programmet skapar en logg Fixlog.txt på skrivbordet.

Klistra in innehållet i den i ditt svar.

Länk till kommentar
Dela på andra webbplatser

  • 2 veckor senare...

Köp en SSD... ;)

Jag köper en ny hårddisk när denna hårddisk har gått sönder. Hårddisken går sönder när den snurrar tillräckligt långsamt. När den blir för varm går moderkortet sönder. Det hände med min förra dator. Hårddisken var det inget fel på.  Nu stängs den datorn av när den blir för varm. Vissa datatekniker påstår att hårddisken kan gå sönder om den blir för varm men det är sällsynt påstår de ?? Men jag ska nog köpa en USB-DVD-Bännare så jag kan använda den till mina äldre datorer. När brännarfuntionen slutar att fungera funkar den fortfarande som DVD-R-spelare. När moderkortet eller brännaren går sönder igen kan man fortfarande få ut skivan. Jag har troligtvis Nationalencyklopedin i en av mina äldre datorer :-( En Pentium 400 128 MB Ram. I den datorn har det flyttats en kabel så att den nya spelaren funkar. Om jag hittar nåt gem nånstans ska jag försöka att få ut skivan genom att peta in gemet i det lilla hålet. Förra gången jag försökte funkade det inte :-(

/Maria

Länk till kommentar
Dela på andra webbplatser

Filen kom visst inte med. :-( Jag får försöka igen trots att jag använde fullständig editor. Men man kanske måste bifoga den i ett helt nytt inlägg inte som en kommentar ??

/Maria

Här kommer filen . Jag har gett upp med att försöka bifoga den som fil...

 

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 26-09-2014
Ran by Maria at 2014-09-27 09:50:04 Run:2
Running from C:\Users\Maria\Desktop
Loaded Profile: Maria (Available profiles: Maria)
Boot Mode: Normal
==============================================
 
Content of fixlist:
*****************
C:\Program Files (x86)\Free Games 115
C:\Program Files (x86)\Speed Test 125
C:\SWSETUP\APP\Applications\Corel\WinZipTrial\16.0\src\winzip160.exe
C:\Users\Maria\Desktop\4353.exe
C:\Users\Maria\Documents\VideoDownloadConvert.exe
C:\Users\Maria\Downloads\ccsetup411.exe
C:\Users\Public\Documents\rcsetup145.exe
C:\utils\advancedfileoptimizersetup_DriveInfo2.exe
C:\utils\advancedfileoptimizersetup_PSD.exe
C:\utils\WinZipRegistryOptimizer.exe
C:\utils\Downloads\cbsidlm-cbsi145-PC_Health_Optimizer_Free_Edition-SEO-10714910.exe
C:\utils\Downloads\cdbxp_setup_4.5.2.4291.exe
C:\utils\Downloads\cdbxp_setup_4.5.2.4478.exe
C:\utils\Downloads\CuteWriter.exe
C:\utils\Downloads\hijackthis-1.exe
C:\utils\Downloads\InternetExplorer.exe
C:\utils\Downloads\pdf-download_setup.exe
C:\utils\Downloads\PSDPlugin.exe
C:\utils\Downloads\Setup.exe
C:\utils\Downloads\SoftonicDownloader_for_seamonkey.exe
C:\utils\Downloads\VideoDownloadConvertSetup2.5.14.33.^HJ^man000^YYA^.exe
C:\utils2\cbsidlm-cbsi188-Bad_CDDVD_Recovery-ORG-10697118.exe
C:\utils2\cbsidlm-cbsi188-Data_Doctor_Recovery_Pen_Drive-ORG-10700114.exe
C:\utils2\cbsidlm-cbsi188-Roadkils_Unstoppable_Copier-SEO-10580640.exe
C:\utils2\DVD Data Recovery.exe
C:\utils2\iMeshSetup-r1491-n-bi.exe
C:\utils2\isobuster_install.exe
C:\utils2\rcsetup151.exe
C:\utils2\SoftonicDownloader_for_safari.exe
BHO-x32: No Name -> {D7A09A0B-D2E6-413F-9EBF-F8AD66839544} ->  No File
CHR DefaultSearchKeyword: Default -> astromenda.com
CHR DefaultSearchProvider: Default -> buenosearch
CHR DefaultSearchURL: Default -> http://www.buenosear...q={searchTerms}
EmptyTemp:
*****************
 
C:\Program Files (x86)\Free Games 115 => Moved successfully.
C:\Program Files (x86)\Speed Test 125 => Moved successfully.
C:\SWSETUP\APP\Applications\Corel\WinZipTrial\16.0\src\winzip160.exe => Moved successfully.
C:\Users\Maria\Desktop\4353.exe => Moved successfully.
C:\Users\Maria\Documents\VideoDownloadConvert.exe => Moved successfully.
C:\Users\Maria\Downloads\ccsetup411.exe => Moved successfully.
C:\Users\Public\Documents\rcsetup145.exe => Moved successfully.
"C:\utils\advancedfileoptimizersetup_DriveInfo2.exe" => File/Directory not found.
"C:\utils\advancedfileoptimizersetup_PSD.exe" => File/Directory not found.
"C:\utils\WinZipRegistryOptimizer.exe" => File/Directory not found.
"C:\utils\Downloads\cbsidlm-cbsi145-PC_Health_Optimizer_Free_Edition-SEO-10714910.exe" => File/Directory not found.
"C:\utils\Downloads\cdbxp_setup_4.5.2.4291.exe" => File/Directory not found.
"C:\utils\Downloads\cdbxp_setup_4.5.2.4478.exe" => File/Directory not found.
"C:\utils\Downloads\CuteWriter.exe" => File/Directory not found.
"C:\utils\Downloads\hijackthis-1.exe" => File/Directory not found.
"C:\utils\Downloads\InternetExplorer.exe" => File/Directory not found.
"C:\utils\Downloads\pdf-download_setup.exe" => File/Directory not found.
"C:\utils\Downloads\PSDPlugin.exe" => File/Directory not found.
"C:\utils\Downloads\Setup.exe" => File/Directory not found.
"C:\utils\Downloads\SoftonicDownloader_for_seamonkey.exe" => File/Directory not found.
"C:\utils\Downloads\VideoDownloadConvertSetup2.5.14.33.^HJ^man000^YYA^.exe" => File/Directory not found.
"C:\utils2\cbsidlm-cbsi188-Bad_CDDVD_Recovery-ORG-10697118.exe" => File/Directory not found.
"C:\utils2\cbsidlm-cbsi188-Data_Doctor_Recovery_Pen_Drive-ORG-10700114.exe" => File/Directory not found.
"C:\utils2\cbsidlm-cbsi188-Roadkils_Unstoppable_Copier-SEO-10580640.exe" => File/Directory not found.
"C:\utils2\DVD Data Recovery.exe" => File/Directory not found.
"C:\utils2\iMeshSetup-r1491-n-bi.exe" => File/Directory not found.
"C:\utils2\isobuster_install.exe" => File/Directory not found.
"C:\utils2\rcsetup151.exe" => File/Directory not found.
"C:\utils2\SoftonicDownloader_for_safari.exe" => File/Directory not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D7A09A0B-D2E6-413F-9EBF-F8AD66839544}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{D7A09A0B-D2E6-413F-9EBF-F8AD66839544}" => Key not found.
Chrome DefaultSearchKeyword deleted successfully.
CHR DefaultSearchProvider: Default -> buenosearch ==> The Chrome "Settings" can be used to fix the entry.
Chrome DefaultSearchURL deleted successfully.
EmptyTemp: => Removed 14.5 GB temporary data.
 
 
The system needed a reboot. 
 
==== End of Fixlog ====
Länk till kommentar
Dela på andra webbplatser

Jag har flyttat mappen utils till usb-minne. Och tömt papperskorgen.... Programmet Frst påstår att jag har dessa filer kvar... Jag skulle nog ha utplånat filerna med hardwipe...

/Maria

Länk till kommentar
Dela på andra webbplatser

1.

Den enda gång det finns någon anledning att använda hardwipe eller liknande program är när man ska sälja hårddisken/datorn eller låna ut den.

 

FRST påstår inte alls att filerna finns utan tvärtom:

"C:\utils\Downloads\Setup.exe" => File/Directory not found.

Den säger att mappen inte finns.

 

2.

Anledningen till att FRST ville ta bort filer från C:\utils\Downloads var ditt svar i inlägg 62:

Nej jag vill nog inte ha kvar alla dessa program.

Om du hade ändrat dig så kunde du ha sagt det i stället för att lägga en massa tid på att flytta mappen.

 

3.

Starta FRST som du ska ha på skrivbordet.

Se till att det är en bock framför Addition.txt.

Klicka på Scan.

Bifoga eller klistra in innehållet i loggarna FRST.txt och Addition.txt.

Länk till kommentar
Dela på andra webbplatser

Det verkar vara en massa fel kvar ...

Här kommer nästa fil tror jag eller så är det samma... Jag hade vist 2 filer med samma namn och datum... Bara tiden som skiljer...

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-09-2014
Ran by Maria at 2014-09-27 13:04:27
Running from C:\Users\Maria\Desktop
Boot Mode: Normal
==========================================================
 
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
 
==================== Installed Programs ======================
 
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
4 Elements II (x32 Version: 2.2.0.98 - WildTangent) Hidden
7-Zip 9.21 (HKLM-x32\...\{23170F69-40C1-2701-0921-000001000000}) (Version: 9.21.00.0 - Igor Pavlov)
A Ruler for Windows (HKLM\...\{DCF4C336-18DB-449B-9238-821B7F28B614}_is1) (Version: 2.7 - Latour)
ActiveX-kontroll för fjärranslutningar för Windows Live Mesh (HKLM-x32\...\{376D59B1-42D9-4FA2-B6CC-E346B6BE14F5}) (Version: 15.4.5722.2 - Microsoft Corporation)
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.167 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.04) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.04 - Adobe Systems Incorporated)
Apple Mobile Device Support (HKLM\...\{6AF2AC2A-3532-43FD-9F4D-BDC9C0D724C7}) (Version: 7.1.2.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Apple-programstöd (HKLM-x32\...\{21ECABC3-40B2-42DF-8E21-ACF3A4D0D95A}) (Version: 3.0.5 - Apple Inc.)
BadCdDvdRecovery 4.4 (HKLM-x32\...\{978BF12B-8C44-4E26-93B8-3A0D4E1F7E49}}_is1) (Version: 4.4 - JuiceSoft)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CardRecoveryPro 2.5.5 (HKLM-x32\...\{D4F48A8F-8E81-43E0-847F-04318383476F}_is1) (Version: 2.5.5 - LionSea SoftWare)
CCScore (x32 Version: 8.02.0000.0001 - EASTMAN KODAK Company) Hidden
CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.2.4478 - CDBurnerXP)
CDCheck (HKLM-x32\...\CDCheck) (Version:  - )
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Clock 2 (HKLM-x32\...\{01157E4A-B9AE-45E8-BAAD-FA3A93D24C52}) (Version: 2.0.0 - Alasdair King)
CPUID HWMonitor 1.24 (HKLM\...\CPUID HWMonitor_is1) (Version:  - )
CutePDF Writer 3.0 (HKLM\...\CutePDF Writer Installation) (Version:  3.0 - CutePDF.com)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DirectX for Managed Code Update (Summer 2004) (x32 Version: 9.02.2904 - Microsoft) Hidden
DiskCheckup v3.1 (HKLM-x32\...\DiskCheckup_is1) (Version: 3.1.1005 - PassMark Software)
EaseUS Data Recovery Wizard 7.5 (HKLM-x32\...\EaseUS Data Recovery Wizard 7.5_is1) (Version:  - EaseUS)
EditPad Lite 7.3.0 (HKLM\...\EditPad Lite) (Version: 7.3.0 - Just Great Software)
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version:  - )
ESSBrwr (x32 Version: 8.02.0000.0001 - EASTMAN KODAK Company) Hidden
ESSCDBK (x32 Version: 8.03.0000.0001 - EASTMAN KODAK Company) Hidden
ESScore (x32 Version: 8.03.0000.0001 - EASTMAN KODAK Company) Hidden
ESSgui (x32 Version: 8.03.0000.0001 - EASTMAN KODAK Company) Hidden
ESSini (x32 Version: 8.02.0000.0001 - EASTMAN KODAK Company) Hidden
ESSPCD (x32 Version: 8.02.0000.0001 - EASTMAN KODAK Company) Hidden
ESSPDock (x32 Version: 6.03.0001.0004 - EASTMAN KODAK Company) Hidden
ESSTOOLS (x32 Version: 5.00.0000.0004 - EASTMAN KODAK Company) Hidden
essvatgt (x32 Version: 8.00.0000.0001 - EASTMAN KODAK Company) Hidden
Far Manager 3 (HKLM-x32\...\{D6949F8F-16AD-4DC7-BB91-AE924CCC204F}) (Version: 3.0.3344 - Eugene Roshal & Far Group)
Farm Frenzy (x32 Version: 2.2.0.98 - WildTangent) Hidden
Farmscapes (x32 Version: 2.2.0.97 - WildTangent) Hidden
FATE (x32 Version: 2.2.0.97 - WildTangent) Hidden
fflink (x32 Version: 6.02.1001.0001 - EASTMAN KODAK Company) Hidden
File Repair (HKLM-x32\...\File Repair_is1) (Version:  - File Repair)
File Scavenger 3.2 (se) (HKLM-x32\...\QueTek File Scavenger 3.2 (se)) (Version: 3.2.24.0 - QueTek Consulting Corporation)
Final Drive Fury (x32 Version: 2.2.0.95 - WildTangent) Hidden
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 6.0.3.524 - Foxit Corporation)
Freemake Video Converter version 3.2.1 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 3.2.1 - Ellora Assets Corporation)
GIMP 2.8.4 (HKLM\...\GIMP-2_is1) (Version: 2.8.4 - The GIMP Team)
Golden Trails 2: The Lost Legacy Collector's Edition (x32 Version: 2.2.0.98 - WildTangent) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 37.0.2062.124 - Google Inc.)
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
Handalfabetet fri version (HKLM-x32\...\Handalfabetet fri version) (Version:  - )
Hardwipe 2.1.0 (HKLM-x32\...\{A7D63D6F-B6DC-40B8-BBE9-E46D6C637777}) (Version: 2.1.0 - Big Angry Dog)
HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version:  - EFD Software)
HDD Health v4.2 (HKLM-x32\...\HDD Health_is1) (Version:  - )
HiJackThis (HKLM-x32\...\{45A66726-69BC-466B-A7A4-12FCBA4883D7}) (Version: 1.0.0 - Trend Micro)
HP Auto (Version: 1.0.12935.3667 - Hewlett-Packard Company) Hidden
HP Calendar (HKLM-x32\...\{2B38E0FA-D8A5-4EBF-A018-E3C1C8E7A2E2}) (Version: 5.1.4245.23508 - Hewlett-Packard)
HP Clock (HKLM-x32\...\{750E9D0F-B188-4A7E-ADD2-84B7ED7D32F6}) (Version: 5.1.4281.27332 - Hewlett-Packard)
HP Customer Experience Enhancements (x32 Version: 6.0.1.8 - Hewlett-Packard) Hidden
HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.2.5 - WildTangent)
HP LinkUp (HKLM-x32\...\{7E750542-55BC-4300-8B7B-AC2A762FB435}) (Version: 2.01.029 - Hewlett-Packard)
HP Magic Canvas (HKLM-x32\...\{DDFDC9D6-4220-41F8-BF9A-8E7512C4EF52}) (Version: 5.1.15.0 - Hewlett-Packard)
HP Magic Canvas Tutorials (HKLM-x32\...\{858FCB65-7C6D-4BA4-AD80-A3CB3744CE09}_is1) (Version: 6.0.0.0 - Hewlett-Packard)
HP Notes (HKLM-x32\...\{86BAB08A-5E66-4C53-82E3-C1E91673C7CA}) (Version: 5.1.4274.30382 - Hewlett-Packard)
HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard)
HP RSS (HKLM-x32\...\{A35E58D6-2A0F-4051-983B-79342081338E}) (Version: 5.1.4301.21494 - Hewlett-Packard)
HP Setup (HKLM-x32\...\{438363A8-F486-4C37-834C-4955773CB3D3}) (Version: 9.1.15430.4033 - Hewlett-Packard Company)
HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 11.00.0001 - Hewlett-Packard)
HP TouchSmart RecipeBox (HKLM-x32\...\{20714B53-FC73-4F9C-9687-49EB237D6FD7}) (Version: 3.0.3830.27730 - Hewlett-Packard)
HP Update (HKLM-x32\...\{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}) (Version: 5.003.001.001 - Hewlett-Packard)
iCloud (HKLM\...\{81E20D41-C277-4526-934D-F2380AF91B78}) (Version: 3.1.0.40 - Apple Inc.)
Imagine (HKLM-x32\...\Imagine) (Version:  - )
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.7.0 - LIGHTNING UK!)
Intel® Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.2.1410 - Intel Corporation)
Intel® OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version:  - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2696 - Intel Corporation)
IsoBuster 3.3 (HKLM-x32\...\IsoBuster_is1) (Version: 3.3 - Smart Projects)
iTunes (HKLM\...\{33E28B58-7BA0-47B7-AA01-9225ABA2B8A9}) (Version: 11.3.0.54 - Apple Inc.)
Jewel Match 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Jewel Quest Mysteries: The Seventh Gate Collector's Edition (x32 Version: 2.2.0.98 - WildTangent) Hidden
John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
kgcbaby (x32 Version: 5.03.0000.0002 - EASTMAN KODAK Company) Hidden
kgchday (x32 Version: 5.03.0000.0002 - EASTMAN KODAK Company) Hidden
kgchlwn (x32 Version: 5.03.0000.0002 - EASTMAN KODAK Company) Hidden
kgcinvt (x32 Version: 5.03.0000.0003 - EASTMAN KODAK Company) Hidden
kgckids (x32 Version: 6.03.0001.0001 - EASTMAN KODAK Company) Hidden
kgcmove (x32 Version: 6.03.0001.0001 - EASTMAN KODAK Company) Hidden
kgcvday (x32 Version: 5.03.0000.0002 - EASTMAN KODAK Company) Hidden
Kodak EasyShare software (HKLM-x32\...\{D32470A1-B10C-4059-BA53-CF0486F68EBC}) (Version:  - Eastman Kodak Company)
LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.4507 - CyberLink Corp.)
LabelPrint (x32 Version: 2.5.4507 - CyberLink Corp.) Hidden
Lemmings (HKLM-x32\...\Lemmings_is1) (Version:  - GameFabrique)
Letters from Nowhere 2 (x32 Version: 2.2.0.97 - WildTangent) Hidden
Luxor HD (x32 Version: 2.2.0.98 - WildTangent) Hidden
Magic Desktop (HKLM-x32\...\EasyBits Magic Desktop) (Version: 3.0 - EasyBits Software AS)
Mah Jong Medley (x32 Version: 2.2.0.95 - WildTangent) Hidden
Malwarebytes Anti-Malware version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
MaxiGet Download Manager (HKCU\...\MaxiGet Download Manager_is1) (Version: 1.1.1.0 - Maxiget Ltd.)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Mathematics (HKLM-x32\...\{4D090F70-6F08-4B60-9357-A1DFD4458F09}) (Version: 4.0 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Starter 2010 - English (HKLM-x32\...\{90140011-0066-0409-0000-0000000FF1CE}) (Version: 14.0.5139.5005 - Microsoft Corporation)
Microsoft PowerPoint Viewer (HKLM-x32\...\{95140000-00AF-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Security Client (Version: 4.5.0216.0 - Microsoft Corporation) Hidden
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.5.216.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
MiniTool Power Data Recovery (HKLM-x32\...\MiniTool Power Data Recovery_is1) (Version:  - MiniTool Solution Ltd.)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
My Farm Life 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden
netbrdg (x32 Version: 7.01.0000.0001 - EASTMAN KODAK Company) Hidden
OfotoXMI (x32 Version: 8.03.0000.0001 - EASTMAN KODAK Company) Hidden
opensource (x32 Version: 1.0.14960.3876 - Your Company Name) Hidden
PDF Complete Corporate Edition (HKLM-x32\...\PDF Complete) (Version: 4.0.95 - PDF Complete, Inc)
PDF Reader 3 (HKLM-x32\...\{7EC40EE4-8605-4F47-987A-88CD241CF91D}) (Version: 3.0.7 - Alasdair King)
Penguins! (x32 Version: 2.2.0.98 - WildTangent) Hidden
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden
Polar Golfer (x32 Version: 2.2.0.98 - WildTangent) Hidden
Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.6207 - CyberLink Corp.)
Power2Go (x32 Version: 6.1.6207 - CyberLink Corp.) Hidden
Prism Video File Converter (HKLM-x32\...\Prism) (Version: 2.10 - NCH Software)
Pure Motion EditStudio 2.1.5 (HKLM-x32\...\{A3B44E91-6383-4881-9B23-8CDC4462A6FE}) (Version: 2.1.5.0 - Pure Motion)
QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)
RealDownloader (x32 Version: 1.3.2 - RealNetworks, Inc.) Hidden
RealNetworks - Microsoft Visual C++ 2005 Runtime (x32 Version: 8.0 - RealNetworks) Hidden
RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden
RealPlayer (HKLM-x32\...\RealPlayer 16.0) (Version: 16.0.2 - RealNetworks)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6531 - Realtek Semiconductor Corp.)
RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden
Recovery Manager (x32 Version: 5.5.0.5119 - CyberLink Corp.) Hidden
Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform)
Remote Graphics Receiver (HKLM-x32\...\{16FC3056-90C0-4757-8A68-64D8DA846ADA}) (Version: 5.4.5 - Hewlett-Packard)
Renee Undeleter 2013.4.11.0 (HKLM-x32\...\{BECFEA3A-6E81-436B-9D2B-6B01185004A5}}_is1) (Version: 2013.4.11.0 - Rene.e Laboratory)
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Revo Uninstaller Pro 2.5.9 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 2.5.9 - VS Revo Group, Ltd.)
Roadkil's Unstoppable Copier Version 5.2 (HKLM-x32\...\{A306FD29-7D3A-4287-91AC-9A0180931395}_is1) (Version:  - Roadkil.Net)
Roads of Rome 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
RSS News Reader 3 (HKLM-x32\...\{BBF96177-48E3-4FA8-BEB2-AC287807028F}) (Version: 3.0.5 - Alasdair King)
S.M.A.R.T. vision (HKLM-x32\...\S.M.A.R.T. vision) (Version:  - )
Safari (HKLM-x32\...\{C779648B-410E-4BBA-B75B-5815BCEFE71D}) (Version: 5.34.57.2 - Apple Inc.)
SeaMonkey 2.26.1 (x86 en-GB) (HKLM-x32\...\SeaMonkey 2.26.1 (x86 en-GB)) (Version: 2.26.1 - Mozilla)
SFR (x32 Version: 8.01.0000.0001 - Eastman Kodak Company) Hidden
SHASTA (x32 Version: 7.01.0000.0001 - EASTMAN KODAK Company) Hidden
skin0001 (x32 Version: 8.02.0000.0001 - EASTMAN KODAK Company) Hidden
SKINXSDK (x32 Version: 8.02.0000.0001 - EASTMAN KODAK Company) Hidden
Skype™ 6.11 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.)
Smileys We Love Toolbar for IE (HKLM-x32\...\{3F88EB8A-98B0-4A22-A65C-2E3B695199F7}) (Version: 3.0.26 - SqueekyChocolate, LLC) <==== ATTENTION
Speed Test 125 (HKLM-x32\...\Speed Test 125) (Version: 3.1.0.0 - BestOffers) <==== ATTENTION
staticcr (x32 Version: 8.02.0000.0001 - EASTMAN KODAK Company) Hidden
Stellar Phoenix CD DVD Data Recovery (HKLM-x32\...\Stellar Phoenix CD DVD Data Recovery_is1) (Version: 4.1.0.0 - Stellar Information Systems Ltd)
Stellar Phoenix Windows Data Recovery - Professional (HKLM-x32\...\Stellar Phoenix Windows Data Recovery - Professional_is1) (Version: 6.0.0.1 - Stellar Information Technology Pvt Ltd.)
Subtitle Edit 3.3.7 (HKLM-x32\...\SubtitleEdit_is1) (Version: 3.3.7.1971 - Nikse)
Torchlight (x32 Version: 2.2.0.98 - WildTangent) Hidden
TSHostedAppLauncher (x32 Version: 5.1.15.0 - Hewlett-Packard) Hidden
UltraCompare (HKLM-x32\...\InstallShield_{11EF223E-CCCB-4BCC-918D-EA4E59FD05EF}) (Version: 8.50.1025 - IDM Computer Solutions, Inc.)
UltraCompare (x32 Version: 8.50.1025 - IDM Computer Solutions, Inc.) Hidden
Update Installer for WildTangent Games App (x32 Version:  - WildTangent) Hidden
WavePad Sound Editor (HKLM-x32\...\WavePad) (Version: 5.67 - NCH Software)
WebbIE 4 (HKLM-x32\...\{9DC377FB-D7B7-421D-A6E0-2C87580BDE46}) (Version: 4.3.5 - Alasdair King)
WebbIE Accessible Program Pack (HKLM-x32\...\{86502D1A-ACD9-41EF-8385-2D67E2D5222F}) (Version: 3.203.0.0 - Alasdair King)
VideoPad Video Editor (HKLM-x32\...\VideoPad) (Version: 3.29 - NCH Software)
WildTangent Games App (HP Games) (x32 Version: 4.0.10.5 - WildTangent) Hidden
Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3538.0513 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Fotogalleri (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Language Selector (Version: 15.4.3538.0513 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX-kontroll for eksterne tilkoblinger (HKLM-x32\...\{09B7C7EB-3140-4B5E-842F-9C79A7137139}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX-objekt til fjernforbindelser (HKLM-x32\...\{57220148-3B2B-412A-A2E0-82B9DF423696}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Meshin etäyhteyksien ActiveX-komponentti (HKLM-x32\...\{4CF6F287-5121-483C-A5A2-07BDE19D8B4E}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Messenger (x32 Version: 15.4.3538.0513 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Liven asennustyökalu (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Liven sähköposti (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Liven valokuvavalikoima (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
WinRAR 5.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH)
WinX Free VOB to AVI Converter 2.0.9 (HKLM-x32\...\WinX Free VOB to AVI Converter_is1) (Version:  - Digiarty Software,Inc.)
WinZip 16.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240CD}) (Version: 16.0.9715 - WinZip Computing, S.L. )
WIRELESS (x32 Version: 8.02.0000.0001 - EASTMAN KODAK Company) Hidden
Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98 - WildTangent) Hidden
VLC media player 2.0.0 (HKLM-x32\...\VLC media player) (Version: 2.0.0 - VideoLAN)
VPRINTOL (x32 Version: 8.02.0000.0001 - EASTMAN KODAK Company) Hidden
Yahoo Toolbar (HKLM-x32\...\Yahoo! Companion) (Version:  - Yahoo Inc.)
Youda Fisherman (x32 Version: 2.2.0.98 - WildTangent) Hidden
Zuma's Revenge (x32 Version: 2.2.0.98 - WildTangent) Hidden
Åhléns engelska ordböcker (HKLM-x32\...\Åhléns engelska ordböcker) (Version:  - )
 
==================== Custom CLSID (selected items): ==========================
 
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
 
CustomCLSID: HKU\S-1-5-21-1643772304-1289773838-862653175-1000_Classes\CLSID\{A75BE48D-BF58-4A8B-B96C-F9A09DFB9844}\InprocServer32 -> C:\Users\Maria\AppData\Local\Pokki\ocdeskband_0.dll No File
CustomCLSID: HKU\S-1-5-21-1643772304-1289773838-862653175-1000_Classes\CLSID\{BDA99C43-A768-455D-9E0E-DC42485189FA}\InprocServer32 -> C:\utils2\hwshell64.dll No File
CustomCLSID: HKU\S-1-5-21-1643772304-1289773838-862653175-1000_Classes\CLSID\{C3B42C03-C1B7-4c1a-B384-BBAE19646333}\InprocServer32 -> C:\Program Files (x86)\IDM Computer Solutions\UltraCompare\UC_ShellExt64.dll ()
CustomCLSID: HKU\S-1-5-21-1643772304-1289773838-862653175-1000_Classes\CLSID\{C73663ED-B7DD-4B6D-A7B7-D00ABF81281A}\InprocServer32 -> C:\utils2\hwshell64.dll No File
CustomCLSID: HKU\S-1-5-21-1643772304-1289773838-862653175-1000_Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\InprocServer32 -> C:\Windows\system32\webcheck.dll (Microsoft Corporation)
 
==================== Restore Points  =========================
 
15-09-2014 09:50:46 Removed Smileys We Love Toolbar for IE
16-09-2014 17:20:54 Restore Operation
16-09-2014 17:32:21 Windows Update
16-09-2014 17:38:48 Restore Operation
16-09-2014 17:50:54 Windows Update
17-09-2014 02:24:54 Removed Charity Engine.
20-09-2014 12:26:15 Windows Update
24-09-2014 08:10:48 Windows Update
 
==================== Hosts content: ==========================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts
 
==================== Scheduled Tasks (whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
 
Task: {269CDFC2-33C3-4574-8013-7D7D7FA0FA92} - System32\Tasks\HPCeeScheduleForMaria => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15] (Hewlett-Packard)
Task: {27BFEFA2-4E77-4E3C-8BD7-B6DAAEDAD23D} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-24] (Adobe Systems Incorporated)
Task: {3B3A1BCC-87AE-45D0-9D39-10B4A1822E88} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1643772304-1289773838-862653175-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-04-16] (RealNetworks, Inc.)
Task: {498F7773-0610-43A9-A4DE-1876D053EDFE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe
Task: {4C0901A5-251C-4F88-BE8E-35B44E1DA935} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-27] (Google Inc.)
Task: {753B1CF1-2388-48EB-8CEC-33241FBCB510} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe
Task: {791E3B74-355E-484F-8036-94B60B2B8355} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1643772304-1289773838-862653175-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-04-16] (RealNetworks, Inc.)
Task: {801088A4-851F-4CD8-BCAF-FB53D92352D4} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1643772304-1289773838-862653175-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [2013-04-16] (RealNetworks, Inc.)
Task: {95A3CEC7-256B-4840-8595-7BC3E99271CB} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {E0832237-F70B-4611-BC75-4A5AA4927D62} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1643772304-1289773838-862653175-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [2013-04-16] (RealNetworks, Inc.)
Task: {E776BF12-BED9-41BC-9A4B-21CB664031E5} - System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-1643772304-1289773838-862653175-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe [2013-04-16] (RealNetworks, Inc.)
Task: {E8A39F7A-EDFF-49E2-964B-9E3464B93468} - System32\Tasks\RunAsStdUser Task => C:\Program Files (x86)\Moo0\Magnifier 1.16\Magnifier.exe
Task: {F14DF5C7-D5E6-48CE-AF53-B425E01148E8} - System32\Tasks\4671 => Wscript.exe C:\Users\Maria\AppData\Local\Temp\launchie.vbs //B <==== ATTENTION
Task: {F2CBF61D-796B-4DAF-A98C-57A23B426985} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-27] (Google Inc.)
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForMaria.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
 
==================== Loaded Modules (whitelisted) =============
 
2014-01-22 22:19 - 2013-10-23 16:24 - 00087600 _____ () C:\windows\System32\cpwmon64.dll
2012-03-29 05:34 - 2012-03-29 05:34 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2013-10-02 12:46 - 2013-03-08 09:54 - 00017760 _____ () C:\Program Files (x86)\HDD Health\HDDHealthService.exe
2013-04-16 03:07 - 2013-04-16 03:07 - 00039056 _____ () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
2014-01-20 14:17 - 2014-01-20 14:17 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-01-20 14:16 - 2014-01-20 14:16 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2011-02-23 17:24 - 2013-05-17 10:25 - 00406016 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\Kfx.dll
2011-02-23 17:23 - 2013-05-17 10:25 - 00264192 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\AppCore.dll
2011-02-23 17:21 - 2013-05-17 10:25 - 00356352 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\Atlas.dll
2011-02-23 17:19 - 2013-05-17 10:25 - 00237568 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\SpiffyExt.dll
2011-02-23 17:38 - 2013-05-17 10:25 - 00234496 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\VistaControls.esx
2011-02-23 17:15 - 2013-05-17 10:25 - 00090112 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\LocAcqMod.dll
2011-02-23 17:39 - 2013-05-17 10:25 - 00078848 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\DXRawFormatHandler.esx
2011-02-23 17:11 - 2013-05-17 10:25 - 00062464 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\DibLibIP.dll
2006-03-07 10:05 - 2013-05-17 10:25 - 01564672 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\AreaIFDLL.dll
2011-02-23 17:37 - 2013-05-17 10:25 - 00761856 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\ESCliWicMDRW.esx
2011-02-23 17:17 - 2013-05-17 10:25 - 00152576 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\IStorageMediaStore.esx
2011-02-23 18:00 - 2013-05-17 10:25 - 00684032 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\ESEmail.esx
2011-02-23 17:24 - 2013-05-17 10:25 - 00084480 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\keml40.dll
2011-02-23 17:15 - 2013-05-17 10:25 - 00129536 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\kpries40.dll
2011-02-23 18:55 - 2013-05-17 10:25 - 11503616 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\ESSkin.esx
2009-09-28 21:19 - 2013-05-17 10:25 - 00782336 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\SkinuxImV.dll
2009-09-28 21:19 - 2013-05-17 10:25 - 00868352 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\SkinuxBaseV.dll
2009-09-28 21:20 - 2013-05-17 10:25 - 00462848 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\SkinuxFFV.dll
2009-09-28 21:19 - 2013-05-17 10:25 - 00155648 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\SkinuxZipV.dll
2009-09-28 21:21 - 2013-05-17 10:25 - 00528384 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\SkinuxProcV.dll
2009-09-28 21:20 - 2013-05-17 10:25 - 02236416 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\SkinuxCmpV.dll
2009-09-28 21:21 - 2013-05-17 10:25 - 00847872 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\SkinuxXML2V.dll
2009-09-28 21:21 - 2013-05-17 10:25 - 01396736 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\SkinuxCommonV.dll
2011-02-23 18:04 - 2013-05-17 10:25 - 00171520 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\Pcd.esx
2011-02-23 17:38 - 2013-05-17 10:25 - 00052224 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\KPCDInterface.dll
2011-02-23 17:36 - 2013-05-17 10:25 - 00143360 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\VPrintOnlineHelper40.dll
2011-02-23 17:15 - 2013-05-17 10:25 - 00084480 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\UpdateChecker.esx
2011-02-23 15:25 - 2013-05-17 10:25 - 00010240 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\LocUpdateCheck.dll
2011-02-23 19:02 - 2013-05-17 10:25 - 00339968 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\VistaAdapter.esx
2011-02-23 18:01 - 2013-05-17 10:25 - 00098304 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\VistaCDBackup.esx
2011-02-23 18:05 - 2013-05-17 10:25 - 00315392 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\VistaPrintOnline.esx
2011-02-23 17:55 - 2013-05-17 10:25 - 00688128 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\VPrintOnline.dll
2011-02-23 19:00 - 2013-05-17 10:25 - 00471040 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\Escom.dll
2011-02-23 17:16 - 2013-05-17 10:25 - 00044544 _____ () C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\LocCamBack.dll
 
==================== Alternate Data Streams (whitelisted) =========
 
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
 
AlternateDataStreams: C:\ProgramData\Temp:373E1720
AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1
AlternateDataStreams: C:\ProgramData\Temp:D5FBE8F9
 
==================== Safe Mode (whitelisted) ===================
 
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
 
==================== EXE Association (whitelisted) =============
 
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
 
 
==================== MSCONFIG/TASK MANAGER disabled items =========
 
(Currently there is no automatic fix for this section.)
 
MSCONFIG\Services: BackupStack => 2
 
========================= Accounts: ==========================
 
Administrator (S-1-5-21-1643772304-1289773838-862653175-500 -> Administrator - Disabled - Status: Degraded)
Guest (S-1-5-21-1643772304-1289773838-862653175-501 -> Limited - Disabled - Status: Degraded)
HomeGroupUser$ (S-1-5-21-1643772304-1289773838-862653175-1002 -> Limited - Enabled - Status: OK)
Maria (S-1-5-21-1643772304-1289773838-862653175-1000 -> Administrator - Enabled - Status: OK) => C:\Users\Maria
 
==================== Faulty Device Manager Devices =============
 
Name: Microsoft Teredo Tunneling Adapter
Description: Microsoft Teredo Tunneling Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (09/27/2014 09:35:53 AM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
The action cannot be completed. Try the action again. If the problem continues, contact Microsoft Product Support.
 
Error: (09/27/2014 05:57:21 AM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
The action cannot be completed. Try the action again. If the problem continues, contact Microsoft Product Support.
 
Error: (09/25/2014 08:57:47 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
 
Error: (09/22/2014 04:48:16 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "rpshellextension.1.0,language="*",type="win32",version="1.0.0.0"1".
Dependent Assembly rpshellextension.1.0,language="*",type="win32",version="1.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (09/22/2014 04:46:48 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
 
Error: (09/21/2014 05:09:26 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "rpshellextension.1.0,language="*",type="win32",version="1.0.0.0"1".
Dependent Assembly rpshellextension.1.0,language="*",type="win32",version="1.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (09/21/2014 05:07:16 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
 
Error: (09/21/2014 03:03:52 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
 
Error: (09/21/2014 03:03:52 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
 
Error: (09/20/2014 02:18:55 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program Explorer.EXE version 6.1.7601.17567 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
 
Process ID: 6dc
 
Start Time: 01cfd4cc3ca1ff87
 
Termination Time: 16
 
Application Path: C:\windows\Explorer.EXE
 
Report Id: 253fcde6-40c0-11e4-9f10-4c72b9027c36
 
 
System errors:
=============
Error: (09/27/2014 10:57:41 AM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR3.
 
Error: (09/27/2014 09:59:33 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The HP Support Assistant Service service failed to start due to the following error: 
%%3
 
Error: (09/27/2014 09:41:05 AM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk2\DR2.
 
Error: (09/27/2014 09:41:01 AM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk2\DR2.
 
Error: (09/27/2014 09:37:56 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The HP Support Assistant Service service failed to start due to the following error: 
%%3
 
Error: (09/27/2014 06:10:43 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
%%1068
 
Error: (09/27/2014 06:10:43 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
%%1068
 
Error: (09/27/2014 06:10:43 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
%%1068
 
Error: (09/27/2014 06:10:43 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
%%1068
 
Error: (09/27/2014 06:10:43 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
%%1068
 
 
Microsoft Office Sessions:
=========================
Error: (09/27/2014 09:35:53 AM) (Source: CVHSVC) (EventID: 100) (User: )
Description: The action cannot be completed. Try the action again. If the problem continues, contact Microsoft Product Support.
 
Error: (09/27/2014 05:57:21 AM) (Source: CVHSVC) (EventID: 100) (User: )
Description: The action cannot be completed. Try the action again. If the problem continues, contact Microsoft Product Support.
 
Error: (09/25/2014 08:57:47 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe
 
Error: (09/22/2014 04:48:16 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: rpshellextension.1.0,language="*",type="win32",version="1.0.0.0"C:\Windows\Installer\{3DC873BB-FFE3-46BF-9701-26B9AE371F9F}\recordingmanager.exe
 
Error: (09/22/2014 04:46:48 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe
 
Error: (09/21/2014 05:09:26 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: rpshellextension.1.0,language="*",type="win32",version="1.0.0.0"C:\Windows\Installer\{3DC873BB-FFE3-46BF-9701-26B9AE371F9F}\recordingmanager.exe
 
Error: (09/21/2014 05:07:16 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe
 
Error: (09/21/2014 03:03:52 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\$RECYCLE.BIN\S-1-5-21-1643772304-1289773838-862653175-1000\$RQSM8IV.exe
 
Error: (09/21/2014 03:03:52 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\$RECYCLE.BIN\S-1-5-21-1643772304-1289773838-862653175-1000\$RE81Y7Y.exe
 
Error: (09/20/2014 02:18:55 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Explorer.EXE6.1.7601.175676dc01cfd4cc3ca1ff8716C:\windows\Explorer.EXE253fcde6-40c0-11e4-9f10-4c72b9027c36
 

/Maria 

Länk till kommentar
Dela på andra webbplatser

1.

Den enda gång det finns någon anledning att använda hardwipe eller liknande program är när man ska sälja hårddisken/datorn eller låna ut den.

 

FRST påstår inte alls att filerna finns utan tvärtom:

Den säger att mappen inte finns.

 

2.

Anledningen till att FRST ville ta bort filer från C:\utils\Downloads var ditt svar i inlägg 62:

Om du hade ändrat dig så kunde du ha sagt det i stället för att lägga en massa tid på att flytta mappen.

 

3.

Starta FRST som du ska ha på skrivbordet.

Se till att det är en bock framför Addition.txt.

Klicka på Scan.

Bifoga eller klistra in innehållet i loggarna FRST.txt och Addition.txt.

Om man använder oraderingsprogram ibland så har man också behov av att använda hardwipe när man vill utplåna filer som bara innehåller skrot. Men filer som innehåller en massa konstiga tecken och bokstäverna PDF kan vara en omdöpt PDF-fil. Jag flyttar så många filer som möjligt nu när jag är hundfri och bränner skrivor i min andra dator. 

/Maria

Länk till kommentar
Dela på andra webbplatser

Du har klistrat in samma fil Addition.txt 3 gånger men inte FRST.txt alls. Försök klistra in FRST.txt också.

 

Jag har tagit bort 2 av de 3 gångerna för att inte göra tråden onödigt lång.

Länk till kommentar
Dela på andra webbplatser

Oj då...  :-) 

 

Här kommer den filen. Den heter ialla fall frst.txt och är inte omdöpt 

Jag tänkte nog på annat när jag klistrade in texten...

Här är den senaste versionen 

 

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-09-2014
Ran by Maria (administrator) on MELVIN on 27-09-2014 13:02:46
Running from C:\Users\Maria\Desktop
Loaded Profile: Maria (Available profiles: Maria)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(CrypKey (Canada) Ltd.) C:\Windows\System32\Crypserv.exe
(EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe
(Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
(PANTERASoft) C:\Program Files (x86)\HDD Health\hddhealth.exe
(Eastman Kodak Company) C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\EasyShare.exe
(RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
() C:\Program Files (x86)\HDD Health\HDDHealthService.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
() C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Yahoo! Inc.) C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\GCalService.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\HPTouchSmartSyncCalReminderApp.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
 
 
==================== Registry (Whitelisted) ==================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1271072 2014-03-11] (Microsoft Corporation)
HKLM\...\Run: [HPSYSDRV] => C:\Program Files (x86)\Hewlett-Packard\HP Odometer\HPSYSDRV.EXE [62768 2008-11-20] (Hewlett-Packard)
HKLM-x32\...\Run: [TkBellExe] => c:\program files (x86)\real\realplayer\Update\realsched.exe [295512 2013-06-20] (RealNetworks, Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [684024 2012-04-04] (PDF Complete Inc)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-07-08] (Apple Inc.)
HKLM-x32\...\Run: [Easybits Recovery] => C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2012-02-21] (EasyBits Software AS)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43816 2014-07-03] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1643772304-1289773838-862653175-1000\...\Policies\system: [DisableLockWorkstation] 0
HKU\S-1-5-21-1643772304-1289773838-862653175-1000\...\Policies\system: [DisableChangePassword] 0
HKU\S-1-5-21-1643772304-1289773838-862653175-1000\...\Policies\Explorer: [NoInstrumentation] 1
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HDDHealth.lnk
ShortcutTarget: HDDHealth.lnk -> C:\Program Files (x86)\HDD Health\hddhealth.exe (PANTERASoft)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Kodak EasyShare software.lnk
ShortcutTarget: Kodak EasyShare software.lnk -> C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\EasyShare.exe (Eastman Kodak Company)
Startup: C:\Users\Maria\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SmartVision.lnk
ShortcutTarget: SmartVision.lnk -> C:\Program Files (x86)\ACE Lab\SMART vision\SMART.exe ()
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKCU - {5BB7D03F-E35A-4203-B887-B438C34824D7} URL = https://www.flickr.com/search/?q={searchTerms}
SearchScopes: HKCU - {6B598B8D-C4B4-4258-8038-54D86195BCF4} URL = https://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=chr-yie11
SearchScopes: HKCU - {DAF1CD64-1E74-4802-8EAC-DC684D2A1C5E} URL = https://delicious.com/search?p={searchTerms}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll [52920 2012-07-11] (EasyBits Software Corp.)
Tcpip\Parameters: [DhcpNameServer] 193.150.193.150 83.255.245.11
 
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @real.com/nppl3260;version=16.0.2.32 -> c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.2 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.2 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.2 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpplugin;version=16.0.2.32 -> c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [fmconverter@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox
FF Extension: Freemake Video Converter Plugin - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox [2013-03-07]
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-06-20]
FF HKLM-x32\...\Firefox\Extensions: [{FCE04E1F-9378-4f39-96F6-5689A9159E45}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
 
Chrome: 
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR DefaultSearchKeyword: Default -> astromenda.com
CHR DefaultSearchProvider: Default -> buenosearch
CHR DefaultSuggestURL: Default -> 
CHR Profile: C:\Users\Maria\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Maria\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-07-10]
CHR Extension: (RealDownloader) - C:\Users\Maria\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2013-05-14]
CHR Extension: (Google Wallet) - C:\Users\Maria\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-25]
CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-04-16]
 
==================== Services (Whitelisted) =================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 CalendarSynchService; C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\GCalService.exe [16384 2011-08-16] (Hewlett-Packard) [File not signed]
R2 Crypkey License; C:\windows\system32\crypserv.exe [122880 2008-05-08] (CrypKey (Canada) Ltd.) [File not signed]
R2 ezSharedSvc; C:\windows\SysWOW64\ezSharedSvcHost.exe [514232 2010-04-23] (EasyBits Software AS) [File not signed]
R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [101888 2013-03-07] (Freemake) [File not signed]
R2 HDDHealth; C:\Program Files (x86)\HDD Health\HDDHealthService.exe [17760 2013-03-08] () [File not signed]
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2014-03-11] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [347872 2014-03-11] (Microsoft Corporation)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1134584 2012-04-04] (PDF Complete Inc)
R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-04-16] ()
S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [X]
S2 HP Support Assistant Service; No ImagePath
S3 WinDefend; %ProgramFiles(x86)%\Windows Defender\mpsvc.dll [X]
 
==================== Drivers (Whitelisted) ====================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
S3 MBAMSwissArmy; C:\Windows\System32\Drivers\MBAMSwissArmy.sys [122584 2014-08-06] (Malwarebytes Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [268512 2014-01-25] (Microsoft Corporation)
R1 NetworkX; C:\Windows\system32\ckldrv.sys [28664 2008-03-17] ()
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [133928 2014-03-11] (Microsoft Corporation)
 
========================== Drivers MD5 =======================
 
C:\Windows\system32\drivers\1394ohci.sys ==> MD5 is legit
C:\Windows\System32\drivers\ACPI.sys ==> MD5 is legit
C:\Windows\system32\drivers\acpipmi.sys ==> MD5 is legit
C:\Windows\system32\drivers\adp94xx.sys ==> MD5 is legit
C:\Windows\system32\drivers\adpahci.sys ==> MD5 is legit
C:\Windows\system32\drivers\adpu320.sys ==> MD5 is legit
C:\Windows\system32\drivers\afd.sys FA886682CFC5D36718D3E436AACF10B9
C:\Windows\system32\drivers\agp440.sys ==> MD5 is legit
C:\Windows\system32\drivers\aliide.sys ==> MD5 is legit
C:\Windows\system32\drivers\amdide.sys ==> MD5 is legit
C:\Windows\system32\drivers\amdk8.sys ==> MD5 is legit
C:\Windows\system32\drivers\amdppm.sys ==> MD5 is legit
C:\Windows\system32\drivers\amdsata.sys D4121AE6D0C0E7E13AA221AA57EF2D49
C:\Windows\system32\drivers\amdsbs.sys ==> MD5 is legit
C:\Windows\System32\drivers\amdxata.sys 540DAF1CEA6094886D72126FD7C33048
C:\Windows\system32\drivers\appid.sys ==> MD5 is legit
C:\Windows\system32\drivers\arc.sys ==> MD5 is legit
C:\Windows\system32\drivers\arcsas.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\asyncmac.sys ==> MD5 is legit
C:\Windows\system32\drivers\atapi.sys ==> MD5 is legit
C:\Windows\system32\drivers\bxvbda.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\b57nd60a.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Beep.sys ==> MD5 is legit
C:\Windows\system32\drivers\blbdrive.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\bowser.sys ==> MD5 is legit
C:\Windows\system32\drivers\BrFiltLo.sys ==> MD5 is legit
C:\Windows\system32\drivers\BrFiltUp.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Brserid.sys ==> MD5 is legit
C:\Windows\System32\Drivers\BrSerWdm.sys ==> MD5 is legit
C:\Windows\System32\Drivers\BrUsbMdm.sys ==> MD5 is legit
C:\Windows\System32\Drivers\BrUsbSer.sys ==> MD5 is legit
C:\Windows\system32\drivers\bthmodem.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\cdfs.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\cdrom.sys ==> MD5 is legit
C:\Windows\system32\drivers\circlass.sys ==> MD5 is legit
C:\Windows\System32\CLFS.sys ==> MD5 is legit
C:\Windows\system32\drivers\CmBatt.sys ==> MD5 is legit
C:\Windows\system32\drivers\cmdide.sys ==> MD5 is legit
C:\Windows\System32\Drivers\cng.sys EBF28856F69CF094A902F884CF989706
C:\Windows\system32\drivers\compbatt.sys ==> MD5 is legit
C:\Windows\system32\drivers\CompositeBus.sys ==> MD5 is legit
C:\Windows\system32\drivers\crcdisk.sys ==> MD5 is legit
C:\Windows\System32\Drivers\dfsc.sys ==> MD5 is legit
C:\Windows\System32\drivers\discache.sys ==> MD5 is legit
C:\Windows\System32\drivers\disk.sys ==> MD5 is legit
C:\Windows\system32\drivers\drmkaud.sys ==> MD5 is legit
C:\Windows\System32\drivers\dxgkrnl.sys 87CE5C8965E101CCCED1F4675557E868
C:\Windows\system32\drivers\evbda.sys ==> MD5 is legit
C:\Windows\system32\drivers\elxstor.sys ==> MD5 is legit
C:\Windows\system32\drivers\errdev.sys ==> MD5 is legit
C:\Windows\System32\Drivers\exfat.sys ==> MD5 is legit
C:\Windows\System32\Drivers\fastfat.sys ==> MD5 is legit
C:\Windows\system32\drivers\fdc.sys ==> MD5 is legit
C:\Windows\System32\drivers\fileinfo.sys ==> MD5 is legit
C:\Windows\System32\drivers\filetrace.sys ==> MD5 is legit
C:\Windows\system32\drivers\flpydisk.sys ==> MD5 is legit
C:\Windows\System32\drivers\fltmgr.sys ==> MD5 is legit
C:\Windows\System32\drivers\FsDepends.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Fs_Rec.sys 6BD9295CC032DD3077C671FCCF579A7B
C:\Windows\System32\DRIVERS\fvevol.sys 8F6322049018354F45F05A2FD2D4E5E0
C:\Windows\system32\drivers\gagp30kx.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\GEARAspiWDM.sys 8E98D21EE06192492A5671A6144D092F
C:\Windows\system32\drivers\hcw85cir.sys ==> MD5 is legit
C:\Windows\System32\drivers\HdAudio.sys 975761C778E33CD22498059B91E7373A
C:\Windows\system32\drivers\HDAudBus.sys ==> MD5 is legit
C:\Windows\system32\drivers\HidBatt.sys ==> MD5 is legit
C:\Windows\system32\drivers\hidbth.sys ==> MD5 is legit
C:\Windows\system32\drivers\hidir.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\hidusb.sys ==> MD5 is legit
C:\Windows\system32\drivers\HpSAMD.sys ==> MD5 is legit
C:\Windows\System32\drivers\HTTP.sys ==> MD5 is legit
C:\Windows\System32\drivers\hwpolicy.sys ==> MD5 is legit
C:\Windows\system32\drivers\i8042prt.sys ==> MD5 is legit
C:\Windows\System32\drivers\iaStor.sys C224331A54571C8C9162F7714400BBBD
C:\Windows\system32\drivers\iaStorV.sys AAAF44DB3BD0B9D1FB6969B23ECC8366
C:\Windows\System32\DRIVERS\igdkmd64.sys 371D7F91C0D2314EB984A4A6CBEABC92
C:\Windows\system32\drivers\iirsp.sys ==> MD5 is legit
C:\Windows\system32\drivers\Impcd.sys DD587A55390ED2295BCE6D36AD567DA9
C:\Windows\System32\drivers\RTKVHD64.sys 91ED47813243B455E2D81115A8255F0E
C:\Windows\system32\drivers\intelide.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\intelppm.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ipfltdrv.sys ==> MD5 is legit
C:\Windows\system32\drivers\IPMIDrv.sys ==> MD5 is legit
C:\Windows\System32\drivers\ipnat.sys ==> MD5 is legit
C:\Windows\System32\drivers\irenum.sys ==> MD5 is legit
C:\Windows\system32\drivers\isapnp.sys ==> MD5 is legit
C:\Windows\system32\drivers\msiscsi.sys 96BB922A0981BC7432C8CF52B5410FE6
C:\Windows\System32\DRIVERS\kbdclass.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\kbdhid.sys ==> MD5 is legit
C:\Windows\System32\Drivers\ksecdd.sys 353009DEDF918B2A51414F330CF72DEC
C:\Windows\System32\Drivers\ksecpkg.sys 1C2D8E18AA8FD50CD04C15CC27F7F5AB
C:\Windows\system32\drivers\ksthunk.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\L1C62x64.sys BD56BAE4403497E31727096CEBC42956
C:\Windows\System32\DRIVERS\lltdio.sys ==> MD5 is legit
C:\Windows\system32\drivers\lsi_fc.sys ==> MD5 is legit
C:\Windows\system32\drivers\lsi_sas.sys ==> MD5 is legit
C:\Windows\system32\drivers\lsi_sas2.sys ==> MD5 is legit
C:\Windows\system32\drivers\lsi_scsi.sys ==> MD5 is legit
C:\Windows\system32\drivers\luafv.sys ==> MD5 is legit
C:\Windows\System32\Drivers\MBAMSwissArmy.sys 8A50D5304E6AE48664CF5838EC32F647
C:\Windows\system32\drivers\megasas.sys ==> MD5 is legit
C:\Windows\system32\drivers\MegaSR.sys ==> MD5 is legit
C:\Windows\system32\drivers\HECIx64.sys 6B01B7414A105B9E51652089A03027CF
C:\Windows\System32\drivers\modem.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\monitor.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\mouclass.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\mouhid.sys ==> MD5 is legit
C:\Windows\System32\drivers\mountmgr.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\MpFilter.sys 9EB89625A82AC961F25E7C865947BF9A
C:\Windows\system32\drivers\mpio.sys ==> MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys ==> MD5 is legit
C:\Windows\system32\drivers\mrxdav.sys 1A4F75E63C9FB84B85DFFC6B63FD5404
C:\Windows\System32\DRIVERS\mrxsmb.sys A5D9106A73DC88564C825D317CAC68AC
C:\Windows\System32\DRIVERS\mrxsmb10.sys D711B3C1D5F42C0C2415687BE09FC163
C:\Windows\System32\DRIVERS\mrxsmb20.sys 9423E9D355C8D303E76B8CFBD8A5C30C
C:\Windows\system32\drivers\msahci.sys ==> MD5 is legit
C:\Windows\system32\drivers\msdsm.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Msfs.sys ==> MD5 is legit
C:\Windows\System32\drivers\mshidkmdf.sys ==> MD5 is legit
C:\Windows\System32\drivers\msisadrv.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSKSSRV.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSPCLOCK.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSPQM.sys ==> MD5 is legit
C:\Windows\System32\Drivers\MsRPC.sys ==> MD5 is legit
C:\Windows\system32\drivers\mssmbios.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSTEE.sys ==> MD5 is legit
C:\Windows\system32\drivers\MTConfig.sys ==> MD5 is legit
C:\Windows\System32\Drivers\mup.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\nwifi.sys ==> MD5 is legit
C:\Windows\System32\drivers\ndis.sys 760E38053BF56E501D562B70AD796B88
C:\Windows\System32\DRIVERS\ndiscap.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndistapi.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndisuio.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndiswan.sys ==> MD5 is legit
C:\Windows\System32\Drivers\NDProxy.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\netbios.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\netbt.sys ==> MD5 is legit
C:\Windows\system32\ckldrv.sys 2263727032E9B19231A706046B8C82D3
C:\Windows\system32\drivers\nfrd960.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\NisDrvWFP.sys C3E0696C3B42F694C5822776AA6FFFDF
C:\Windows\System32\Drivers\Npfs.sys ==> MD5 is legit
C:\Windows\System32\drivers\nsiproxy.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Ntfs.sys 1A29A59A4C5BA6F8C85062A613B7E2B2
C:\Windows\System32\Drivers\Null.sys ==> MD5 is legit
C:\Windows\system32\drivers\nvraid.sys 0A92CB65770442ED0DC44834632F66AD
C:\Windows\system32\drivers\nvstor.sys DAB0E87525C10052BF65F06152F37E4A
C:\Windows\system32\drivers\nv_agp.sys ==> MD5 is legit
C:\Windows\system32\drivers\ohci1394.sys ==> MD5 is legit
C:\Windows\system32\drivers\parport.sys ==> MD5 is legit
C:\Windows\System32\drivers\partmgr.sys E9766131EEADE40A27DC27D2D68FBA9C
C:\Windows\System32\drivers\pci.sys ==> MD5 is legit
C:\Windows\system32\drivers\pciide.sys ==> MD5 is legit
C:\Windows\system32\drivers\pcmcia.sys ==> MD5 is legit
C:\Windows\System32\drivers\pcw.sys ==> MD5 is legit
C:\Windows\System32\drivers\peauth.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\raspptp.sys ==> MD5 is legit
C:\Windows\system32\drivers\processr.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\pacer.sys ==> MD5 is legit
C:\Windows\system32\drivers\ql2300.sys ==> MD5 is legit
C:\Windows\system32\drivers\ql40xx.sys ==> MD5 is legit
C:\Windows\system32\drivers\qwavedrv.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rasacd.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\AgileVpn.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rasl2tp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\raspppoe.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rassstp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rdbss.sys ==> MD5 is legit
C:\Windows\system32\drivers\rdpbus.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\RDPCDD.sys ==> MD5 is legit
C:\Windows\System32\drivers\rdpencdd.sys ==> MD5 is legit
C:\Windows\System32\drivers\rdprefmp.sys ==> MD5 is legit
C:\Windows\System32\Drivers\RDPWD.sys E61608AA35E98999AF9AAEEEA6114B0A
C:\Windows\System32\drivers\rdyboost.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\revoflt.sys 9C3AC71A9934B884FAC567A8807E9C4D
C:\Windows\System32\DRIVERS\rspndr.sys ==> MD5 is legit
C:\Windows\system32\drivers\sbp2port.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\scfilter.sys ==> MD5 is legit
C:\Windows\System32\Drivers\secdrv.sys ==> MD5 is legit
C:\Windows\system32\drivers\serenum.sys ==> MD5 is legit
C:\Windows\system32\drivers\serial.sys ==> MD5 is legit
C:\Windows\system32\drivers\sermouse.sys ==> MD5 is legit
C:\Windows\system32\drivers\sffdisk.sys ==> MD5 is legit
C:\Windows\system32\drivers\sffp_mmc.sys ==> MD5 is legit
C:\Windows\system32\drivers\sffp_sd.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\sfloppy.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\Sftfslh.sys 2046AA7491DE7EFA4D70E615D9BC9D09
C:\Windows\System32\DRIVERS\Sftplaylh.sys 0E0446BC4D51BE4263ACB7E33491191C
C:\Windows\System32\DRIVERS\Sftredirlh.sys C5FB982CD266E604ED3142102C26D62C
C:\Windows\System32\DRIVERS\Sftvollh.sys 2575511AF67AA1FA068CCC4918E2C2A3
C:\Windows\system32\drivers\SiSRaid2.sys ==> MD5 is legit
C:\Windows\system32\drivers\sisraid4.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\smb.sys ==> MD5 is legit
C:\Windows\System32\Drivers\spldr.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\srv.sys 441FBA48BFF01FDB9D5969EBC1838F0B
C:\Windows\System32\DRIVERS\srv2.sys B4ADEBBF5E3677CCE9651E0F01F7CC28
C:\Windows\System32\DRIVERS\srvnet.sys 27E461F0BE5BFF5FC737328F749538C3
C:\Windows\system32\drivers\stexstor.sys ==> MD5 is legit
C:\Windows\system32\drivers\swenum.sys ==> MD5 is legit
C:\Windows\System32\drivers\tcpip.sys 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E
C:\Windows\System32\DRIVERS\tcpip.sys 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E
C:\Windows\System32\drivers\tcpipreg.sys 1B16D0BD9841794A6E0CDE0CEF744ABC
C:\Windows\System32\drivers\tdpipe.sys ==> MD5 is legit
C:\Windows\System32\drivers\tdtcp.sys 51C5ECEB1CDEE2468A1748BE550CFBC8
C:\Windows\System32\DRIVERS\tdx.sys ==> MD5 is legit
C:\Windows\system32\drivers\termdd.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\tssecsrv.sys 4CE278FC9671BA81A138D70823FCAA09
C:\Windows\System32\drivers\tsusbflt.sys ==> MD5 is legit
C:\Windows\system32\drivers\TsUsbGD.sys 9CC2CCAE8A84820EAECB886D477CBCB8
C:\Windows\System32\DRIVERS\tunnel.sys ==> MD5 is legit
C:\Windows\system32\drivers\uagp35.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\udfs.sys ==> MD5 is legit
C:\Windows\system32\drivers\uliagpkx.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\umbus.sys ==> MD5 is legit
C:\Windows\system32\drivers\umpass.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\usbccgp.sys DCA68B0943D6FA415F0C56C92158A83A
C:\Windows\system32\drivers\usbcir.sys 80B0F7D5CCF86CEB5D402EAAF61FEC31
C:\Windows\system32\drivers\usbehci.sys 18A85013A3E0F7E1755365D287443965
C:\Windows\System32\DRIVERS\usbhub.sys 8D1196CFBB223621F2C67D45710F25BA
C:\Windows\system32\drivers\usbohci.sys 765A92D428A8DB88B960DA5A8D6089DC
C:\Windows\System32\DRIVERS\usbprint.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\usbscan.sys 9661DA76B4531B2DA272ECCE25A8AF24
C:\Windows\System32\DRIVERS\USBSTOR.SYS FED648B01349A3C8395A5169DB5FB7D6
C:\Windows\system32\drivers\usbuhci.sys DD253AFC3BC6CBA412342DE60C3647F3
C:\Windows\System32\drivers\vdrvroot.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\vgapnp.sys ==> MD5 is legit
C:\Windows\System32\drivers\vga.sys ==> MD5 is legit
C:\Windows\system32\drivers\vhdmp.sys ==> MD5 is legit
C:\Windows\system32\drivers\viaide.sys ==> MD5 is legit
C:\Windows\System32\drivers\volmgr.sys ==> MD5 is legit
C:\Windows\System32\drivers\volmgrx.sys ==> MD5 is legit
C:\Windows\System32\drivers\volsnap.sys DF8126BD41180351A093A3AD2FC8903B
C:\Windows\system32\drivers\vsmraid.sys ==> MD5 is legit
C:\Windows\System32\drivers\vwifibus.sys ==> MD5 is legit
C:\Windows\system32\drivers\wacompen.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\wanarp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\wanarp.sys ==> MD5 is legit
C:\Windows\system32\drivers\wd.sys ==> MD5 is legit
C:\Windows\System32\drivers\Wdf01000.sys E2C933EDBC389386EBE6D2BA953F43D8
C:\Windows\System32\DRIVERS\wfplwf.sys ==> MD5 is legit
C:\Windows\System32\drivers\wimmount.sys ==> MD5 is legit
C:\Windows\SysWOW64\drivers\wimmount.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\WinUsb.sys FE88B288356E7B47B74B13372ADD906D
C:\Windows\system32\drivers\wmiacpi.sys ==> MD5 is legit
C:\Windows\system32\drivers\ws2ifsl.sys ==> MD5 is legit
C:\Windows\System32\drivers\WudfPf.sys AB886378EEB55C6C75B4F2D14B6C869F
C:\Windows\System32\DRIVERS\WUDFRd.sys DDA4CAF29D8C0A297F886BFE561E6659
 
==================== NetSvcs (Whitelisted) ===================
 
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
 
 
==================== One Month Created Files and Folders ========
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2014-09-27 09:49 - 2014-09-27 09:49 - 00000000 ____D () C:\Users\Maria\Desktop\FRST-OlderVersion
2014-09-19 13:52 - 2014-09-27 11:25 - 00000000 ____D () C:\Computer messages
2014-09-17 20:01 - 2014-09-25 16:14 - 00000000 ____D () C:\Lagra på DVD
2014-09-17 18:01 - 2014-09-17 18:01 - 00010492 _____ () C:\Users\Maria\Desktop\Viruslista2.txt
2014-09-17 17:09 - 2014-09-17 17:09 - 00010492 _____ () C:\Users\Maria\Desktop\viruslista.txt
2014-09-17 14:39 - 2014-09-17 14:39 - 00265700 _____ () C:\Users\Maria\Documents\Några ord som förändrade mitt liv — THƯ VIỆN TRỰC TUYẾN Tháp Canh.webarchive
2014-09-17 13:05 - 2014-09-17 13:05 - 00000000 ____D () C:\Program Files (x86)\ESET
2014-09-17 04:18 - 2014-09-17 04:18 - 03526714 _____ () C:\Users\Maria\Documents\Gammal dator - Sida 2 - Grafikkort - Eforum.webarchive
2014-09-16 19:29 - 2014-09-16 19:29 - 00000000 ____D () C:\ProgramData\UAB
2014-09-16 19:28 - 2014-09-16 19:39 - 00000210 _____ () C:\Users\Maria\daemonprocess.txt
2014-09-16 19:28 - 2014-09-16 19:28 - 00000000 ____D () C:\ProgramData\PC Drivers HeadQuarters
2014-09-16 19:26 - 2014-09-16 19:26 - 00000000 ____D () C:\Users\Maria\AppData\Roaming\PC Speed Maximizer
2014-09-16 11:33 - 2014-09-16 11:33 - 00015827 _____ () C:\Users\Maria\Documents\My account has been locked - Gmail Help.webarchive
2014-09-16 11:31 - 2014-09-16 11:31 - 00004509 _____ () C:\Users\Maria\Documents\Unusual Usage - Account Temporarily Locked Down2.htm
2014-09-16 11:30 - 2014-09-16 11:30 - 00009394 _____ () C:\Users\Maria\Documents\Unusual Usage - Account Temporarily Locked Down.webarchive
2014-09-16 11:22 - 2014-09-16 11:22 - 00004509 _____ () C:\Users\Maria\Documents\Unusual Usage - Account Temporarily Locked Down.htm
2014-09-16 11:10 - 2014-09-16 11:10 - 00014028 _____ () C:\Users\Maria\Documents\Yahoo! Password Helper Check your email.htm
2014-09-16 11:09 - 2014-09-16 11:09 - 00036960 _____ () C:\Users\Maria\Documents\Yahoo!.htm
2014-09-16 11:07 - 2014-09-16 11:07 - 00028205 _____ () C:\Users\Maria\Documents\Yahoo! Lösenordshjälp Vet du vad ditt Yahoo!-ID är.htm
2014-09-16 11:02 - 2014-09-16 11:02 - 00131585 _____ () C:\Users\Maria\Documents\Sign in to Yahoo!.htm
2014-09-16 11:02 - 2014-09-16 11:02 - 00010656 _____ () C:\Users\Maria\Documents\Yahoo! OpenID Identity Page3.htm
2014-09-16 10:21 - 2014-09-16 10:21 - 00174473 _____ () C:\Users\Maria\Documents\Polis avslöjade assistansfusk - Malmö - Sydsvenskan-Nyheter Dygnet Runt.htm
2014-09-16 10:13 - 2014-09-16 10:13 - 00171839 _____ () C:\Users\Maria\Documents\Oro för MS bland narkossjuksköterskor - Arkiv - Sydsvenskan-Nyheter Dygnet Runt.htm
2014-09-16 09:55 - 2014-09-16 09:55 - 00050812 _____ () C:\Users\Maria\Documents\Narkosgas farlig för personalen - Nyheter P4 Kalmar  Sveriges Radio.htm
2014-09-16 06:48 - 2014-09-16 06:48 - 00274877 _____ () C:\Users\Maria\Documents\Vårdfokus - Billig upphandling gav läckande narkosgas.htm
2014-09-16 06:44 - 2014-09-16 06:44 - 00270698 _____ () C:\Users\Maria\Documents\Vårdfokus - Slut med läckande narkosgas i Linköping.htm
2014-09-16 06:40 - 2014-09-16 06:40 - 00199318 _____ () C:\Users\Maria\Documents\Larm för Narkosgas - HOMEWATCH  Clas Ohlson.htm
2014-09-15 21:01 - 2014-09-15 21:01 - 00010656 _____ () C:\Users\Maria\Documents\Yahoo! OpenID Identity Page2.htm
2014-09-15 17:12 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\windows\SysWOW64\sqlite3.dll
2014-09-15 17:11 - 2014-09-15 17:22 - 00000000 ____D () C:\AdwCleaner
2014-09-15 17:07 - 2014-09-15 17:07 - 01373475 _____ () C:\Users\Maria\Desktop\adwcleaner_3.310.exe
2014-09-15 10:35 - 2014-09-15 15:41 - 00048267 _____ () C:\Users\Maria\Desktop\Addition.txt
2014-09-15 10:30 - 2014-09-27 13:03 - 00029883 _____ () C:\Users\Maria\Desktop\FRST.txt
2014-09-15 10:29 - 2014-09-27 13:02 - 00000000 ____D () C:\FRST
2014-09-14 21:15 - 2014-09-26 15:31 - 00003186 _____ () C:\windows\System32\Tasks\HPCeeScheduleForMaria
2014-09-14 21:15 - 2014-09-26 15:31 - 00000332 _____ () C:\windows\Tasks\HPCeeScheduleForMaria.job
2014-09-14 19:43 - 2014-09-27 09:49 - 02108928 _____ (Farbar) C:\Users\Maria\Desktop\FRST64.exe
2014-09-14 12:13 - 2014-09-15 15:41 - 00100681 _____ () C:\Users\Maria\Desktop\Shortcut.txt
2014-09-09 10:36 - 2014-09-09 10:36 - 00000020 ___SH () C:\Users\Maria\ntuser.ini
2014-09-05 13:30 - 2014-09-06 19:47 - 00000000 ____D () C:\Users\Maria\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
2014-09-05 13:30 - 2014-09-06 19:47 - 00000000 ____D () C:\Program Files (x86)\Trend Micro
2014-09-05 13:30 - 2014-09-05 13:30 - 00003007 _____ () C:\Users\Maria\Desktop\HiJackThis.lnk
2014-09-03 20:59 - 2014-09-03 20:59 - 00001266 _____ () C:\windows\IE9_main.log
2014-09-03 20:55 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\windows\system32\icardres.dll
2014-09-03 20:55 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardres.dll
2014-09-03 20:55 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\windows\SysWOW64\TsWpfWrp.exe
2014-09-03 20:55 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\windows\system32\TsWpfWrp.exe
2014-09-03 20:55 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\windows\system32\icardagt.exe
2014-09-03 20:55 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\windows\system32\infocardapi.dll
2014-09-03 20:55 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardagt.exe
2014-09-03 20:55 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\windows\SysWOW64\infocardapi.dll
2014-09-03 20:54 - 2014-07-16 05:23 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2014-09-03 20:54 - 2014-07-16 04:46 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2014-09-03 20:54 - 2014-06-16 04:10 - 00985536 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2014-09-03 20:54 - 2014-06-03 12:02 - 03241984 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2014-09-03 20:54 - 2014-06-03 12:02 - 01941504 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2014-09-03 20:54 - 2014-06-03 12:02 - 00504320 _____ (Microsoft Corporation) C:\windows\system32\msihnd.dll
2014-09-03 20:54 - 2014-06-03 12:02 - 00112064 _____ (Microsoft Corporation) C:\windows\system32\consent.exe
2014-09-03 20:54 - 2014-06-03 11:29 - 02363392 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2014-09-03 20:54 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2014-09-03 20:54 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\msihnd.dll
2014-09-03 20:53 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2014-09-03 20:53 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2014-09-03 20:53 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-09-03 20:53 - 2014-08-01 01:41 - 00348856 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-09-03 20:53 - 2014-08-01 01:16 - 00307384 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-09-03 20:53 - 2014-07-25 16:52 - 23645696 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-09-03 20:53 - 2014-07-25 16:02 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-09-03 20:53 - 2014-07-25 16:01 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-09-03 20:53 - 2014-07-25 15:51 - 17524224 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-09-03 20:53 - 2014-07-25 15:30 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-09-03 20:53 - 2014-07-25 15:28 - 00548352 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-09-03 20:53 - 2014-07-25 15:28 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-09-03 20:53 - 2014-07-25 15:25 - 02774528 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-09-03 20:53 - 2014-07-25 15:25 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-09-03 20:53 - 2014-07-25 15:11 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-09-03 20:53 - 2014-07-25 15:10 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-09-03 20:53 - 2014-07-25 15:04 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-09-03 20:53 - 2014-07-25 15:03 - 00598016 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-09-03 20:53 - 2014-07-25 15:00 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-09-03 20:53 - 2014-07-25 15:00 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-09-03 20:53 - 2014-07-25 14:59 - 00758272 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-09-03 20:53 - 2014-07-25 14:47 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-09-03 20:53 - 2014-07-25 14:40 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-09-03 20:53 - 2014-07-25 14:34 - 00455168 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-09-03 20:53 - 2014-07-25 14:34 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-09-03 20:53 - 2014-07-25 14:33 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-09-03 20:53 - 2014-07-25 14:30 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-09-03 20:53 - 2014-07-25 14:28 - 05824512 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-09-03 20:53 - 2014-07-25 14:28 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-09-03 20:53 - 2014-07-25 14:21 - 02184704 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-09-03 20:53 - 2014-07-25 14:19 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-09-03 20:53 - 2014-07-25 14:18 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-09-03 20:53 - 2014-07-25 14:17 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-09-03 20:53 - 2014-07-25 14:17 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-09-03 20:53 - 2014-07-25 14:12 - 00438784 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-09-03 20:53 - 2014-07-25 14:10 - 00292864 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-09-03 20:53 - 2014-07-25 14:10 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-09-03 20:53 - 2014-07-25 14:08 - 00597504 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-09-03 20:53 - 2014-07-25 14:06 - 04204032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-09-03 20:53 - 2014-07-25 13:52 - 00367104 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-09-03 20:53 - 2014-07-25 13:47 - 00631808 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-09-03 20:53 - 2014-07-25 13:43 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-03 20:53 - 2014-07-25 13:42 - 00692736 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-09-03 20:53 - 2014-07-25 13:39 - 02087936 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-09-03 20:53 - 2014-07-25 13:39 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-09-03 20:53 - 2014-07-25 13:36 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-09-03 20:53 - 2014-07-25 13:34 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-09-03 20:53 - 2014-07-25 13:29 - 00239616 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-09-03 20:53 - 2014-07-25 13:23 - 13547008 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-09-03 20:53 - 2014-07-25 13:13 - 00526336 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-09-03 20:53 - 2014-07-25 13:07 - 02001920 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-09-03 20:53 - 2014-07-25 13:07 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-09-03 20:53 - 2014-07-25 13:03 - 11772928 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-09-03 20:53 - 2014-07-25 12:52 - 02266624 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-09-03 20:53 - 2014-07-25 12:26 - 01431040 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-09-03 20:53 - 2014-07-25 12:17 - 00846336 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-09-03 20:53 - 2014-07-25 12:09 - 00704512 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-09-03 20:53 - 2014-07-25 12:05 - 01792512 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-09-03 20:53 - 2014-07-25 12:00 - 01169920 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-09-03 20:53 - 2014-06-25 04:05 - 14175744 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2014-09-03 20:53 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2014-09-03 20:51 - 2014-07-14 04:02 - 01216000 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2014-09-03 20:51 - 2014-07-14 03:40 - 00664064 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2014-09-01 20:51 - 2014-09-01 20:51 - 00000000 ____D () C:\Users\Maria\AppData\Local\{11E8C231-5DAC-44B7-83DF-5E04C9B42F49}
2014-09-01 10:53 - 2014-09-06 19:47 - 00000000 ____D () C:\ProgramData\Yahoo! Companion
2014-09-01 10:53 - 2014-09-06 19:47 - 00000000 ____D () C:\Program Files (x86)\Yahoo!
2014-09-01 10:53 - 2014-09-01 10:53 - 00000000 ____D () C:\Users\Maria\AppData\Roaming\Yahoo!
2014-09-01 10:53 - 2014-09-01 10:53 - 00000000 ____D () C:\ProgramData\Yahoo!
2014-08-31 18:51 - 2014-09-27 09:56 - 00015158 _____ () C:\windows\setupact.log
2014-08-31 18:51 - 2014-08-31 18:51 - 00000000 _____ () C:\windows\setuperr.log
 
==================== One Month Modified Files and Folders =======
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2014-09-27 12:51 - 2012-07-11 22:53 - 00000830 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-09-27 12:19 - 2013-02-27 11:15 - 00000992 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-27 12:04 - 2013-02-24 20:01 - 01542178 _____ () C:\windows\WindowsUpdate.log
2014-09-27 12:00 - 2013-09-20 14:13 - 00000000 ____D () C:\Iso files
2014-09-27 11:11 - 2014-07-03 19:25 - 00000000 ____D () C:\Maria
2014-09-27 10:04 - 2009-07-14 06:45 - 00024608 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-27 10:04 - 2009-07-14 06:45 - 00024608 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-27 09:57 - 2013-02-27 11:15 - 00000988 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-27 09:57 - 2012-07-11 23:00 - 00000000 ____D () C:\ProgramData\PDFC
2014-09-27 09:56 - 2014-07-31 06:07 - 00035340 _____ () C:\windows\error.log
2014-09-27 09:56 - 2014-07-31 06:06 - 00014328 _____ () C:\windows\PFRO.log
2014-09-27 09:56 - 2014-07-31 06:06 - 00008036 _____ () C:\windows\errord.log
2014-09-27 09:56 - 2009-07-14 07:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-09-27 09:43 - 2009-07-14 07:13 - 00783424 _____ () C:\windows\system32\PerfStringBackup.INI
2014-09-26 15:41 - 2013-02-24 20:18 - 00003918 _____ () C:\windows\System32\Tasks\User_Feed_Synchronization-{7E17E5F4-052D-40FB-945F-64A5013E08C5}
2014-09-26 15:35 - 2013-06-30 13:43 - 00003358 _____ () C:\windows\System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1643772304-1289773838-862653175-1000
2014-09-26 15:35 - 2013-06-30 13:43 - 00003224 _____ () C:\windows\System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1643772304-1289773838-862653175-1000
2014-09-25 01:23 - 2014-06-14 06:10 - 00002147 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-09-24 10:51 - 2012-07-11 22:53 - 00701104 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2014-09-24 10:51 - 2012-07-11 22:53 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-24 10:51 - 2012-07-11 22:53 - 00003768 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater
2014-09-24 10:05 - 2013-04-18 20:26 - 00000000 ____D () C:\Program Files\Recuva
2014-09-22 17:15 - 2013-08-14 20:44 - 00000000 ____D () C:\Isobuster
2014-09-22 08:42 - 2010-11-21 05:27 - 00278152 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
2014-09-18 13:05 - 2013-07-07 13:37 - 00000000 ____D () C:\Users\Maria\AppData\Roaming\vlc
2014-09-17 04:23 - 2014-07-30 14:29 - 00000000 ____D () C:\ProgramData\BOINC
2014-09-16 19:42 - 2014-06-14 06:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-09-16 19:42 - 2013-12-10 10:19 - 00000000 ____D () C:\Users\Maria\AppData\Roaming\JGsoft
2014-09-16 19:42 - 2013-02-24 20:07 - 00000000 ____D () C:\Users\Maria
2014-09-16 19:42 - 2012-07-11 22:53 - 00000000 ____D () C:\windows\system32\Macromed
2014-09-16 19:42 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\rescache
2014-09-16 19:42 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\AppCompat
2014-09-16 19:41 - 2014-01-07 12:20 - 00000000 ____D () C:\Users\Maria\AppData\Local\Mobogenie
2014-09-16 19:41 - 2013-05-17 10:23 - 00000000 ____D () C:\Program Files (x86)\ArcSoft
2014-09-16 19:41 - 2013-03-07 17:46 - 00000000 ____D () C:\ProgramData\Real
2014-09-16 19:41 - 2009-07-14 05:20 - 00000000 ___HD () C:\windows\system32\GroupPolicy
2014-09-16 19:41 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\registration
2014-09-16 19:28 - 2014-05-06 14:40 - 00000003 _____ () C:\Users\Maria\AppData\Local\proxy.log
2014-09-16 19:24 - 2013-05-29 11:33 - 00000000 ____D () C:\Program Files\Java
2014-09-16 19:23 - 2013-04-12 20:59 - 00000000 ____D () C:\Program Files (x86)\Java
2014-09-15 19:45 - 2013-02-25 22:59 - 00000000 ____D () C:\Users\Maria\AppData\Local\CrashDumps
2014-09-15 14:32 - 2014-02-18 12:04 - 00000008 _____ () C:\ProgramData\ntuser.pol
2014-09-15 11:43 - 2014-01-07 12:04 - 00000000 ____D () C:\ProgramData\Informer Technologies, Inc
2014-09-15 11:33 - 2014-07-30 14:29 - 00000000 ____D () C:\Program Files (x86)\SeaMonkey
2014-09-15 10:39 - 2013-12-21 13:23 - 00000144 _____ () C:\Users\Maria\AppData\Roaming\WB.CFG
2014-09-14 11:16 - 2012-07-11 22:43 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-09-12 16:31 - 2014-04-22 12:49 - 00091352 ____H () C:\windows\SysWOW64\mlfcache.dat
2014-09-12 15:42 - 2013-05-07 10:50 - 00000000 ____D () C:\Users\Maria\AppData\Local\Microsoft Games
2014-09-11 15:19 - 2009-07-14 07:08 - 00032608 _____ () C:\windows\Tasks\SCHEDLGU.TXT
2014-09-06 19:47 - 2013-03-23 06:48 - 00000000 ____D () C:\windows\pss
2014-09-06 19:47 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\servicing
2014-09-06 19:47 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\PolicyDefinitions
2014-09-06 19:47 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-09-05 15:20 - 2014-07-25 14:19 - 00003336 _____ () C:\windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1643772304-1289773838-862653175-1000
2014-09-05 15:20 - 2014-07-25 14:19 - 00003202 _____ () C:\windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1643772304-1289773838-862653175-1000
2014-09-03 21:19 - 2009-07-14 06:45 - 00271736 _____ () C:\windows\system32\FNTCACHE.DAT
2014-09-03 21:03 - 2013-08-15 06:26 - 00000000 ____D () C:\windows\system32\MRT
2014-09-03 21:00 - 2013-05-10 20:04 - 99218768 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-09-01 20:46 - 2013-08-13 11:46 - 48359424 ____R () C:\Users\Public\Documents\ESBK.mb
2014-09-01 10:56 - 2013-02-24 21:15 - 00059080 _____ () C:\Users\Maria\AppData\Local\GDIPFONTCACHEV1.DAT
2014-09-01 10:54 - 2014-07-30 13:29 - 00013953 _____ () C:\windows\IE11_main.log
2014-09-01 10:53 - 2014-07-27 13:01 - 00000000 ___HD () C:\windows\msdownld.tmp
2014-08-31 18:52 - 2009-07-14 04:34 - 00000505 _____ () C:\windows\win.ini
2014-08-28 19:26 - 2013-02-24 20:18 - 00001405 _____ () C:\Users\Maria\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-08-28 19:19 - 2014-07-30 17:31 - 00001552 _____ () C:\windows\IE10_main.log
 
==================== Bamital & volsnap Check =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
 
==================== BCD ================================
 
Firmware Boot Manager
---------------------
identifier              {fwbootmgr}
displayorder            {bootmgr}
                        {9fa7c7d8-cb97-11e1-81c6-e840f273b46e}
                        {9fa7c7d9-cb97-11e1-81c6-e840f273b46e}
                        {9fa7c7db-cb97-11e1-81c6-e840f273b46e}
                        {9fa7c7dc-cb97-11e1-81c6-e840f273b46e}
                        {9fa7c7dd-cb97-11e1-81c6-e840f273b46e}
                        {9fa7c7de-cb97-11e1-81c6-e840f273b46e}
                        {9fa7c7df-cb97-11e1-81c6-e840f273b46e}
timeout                 2
 
Windows Boot Manager
--------------------
identifier              {bootmgr}
device                  partition=\Device\HarddiskVolume1
path                    \EFI\Microsoft\Boot\bootmgfw.efi
description             Windows Boot Manager
locale                  en-US
inherit                 {globalsettings}
extendedinput           Yes
default                 {current}
resumeobject            {9fa7c7e0-cb97-11e1-81c6-e840f273b46e}
displayorder            {current}
toolsdisplayorder       {memdiag}
timeout                 30
customactions           0x1000085000001
                        0x5400000f
custom:5400000f         {5ca22998-7ef2-11e2-b852-4c72b9027c36}
 
Firmware Application (101fffff)
-------------------------------
identifier              {9fa7c7d8-cb97-11e1-81c6-e840f273b46e}
description             USB Floppy/CD
 
Firmware Application (101fffff)
-------------------------------
identifier              {9fa7c7d9-cb97-11e1-81c6-e840f273b46e}
description             USB Hard Drive
 
Firmware Application (101fffff)
-------------------------------
identifier              {9fa7c7db-cb97-11e1-81c6-e840f273b46e}
description             ATAPI CD-ROM Drive
 
Firmware Application (101fffff)
-------------------------------
identifier              {9fa7c7dc-cb97-11e1-81c6-e840f273b46e}
description             CD/DVD Drive 
 
Firmware Application (101fffff)
-------------------------------
identifier              {9fa7c7dd-cb97-11e1-81c6-e840f273b46e}
description             USB Floppy/CD
 
Firmware Application (101fffff)
-------------------------------
identifier              {9fa7c7de-cb97-11e1-81c6-e840f273b46e}
description             Hard Drive
 
Firmware Application (101fffff)
-------------------------------
identifier              {9fa7c7df-cb97-11e1-81c6-e840f273b46e}
description             Atheros Boot Agent
 
Windows Boot Loader
-------------------
identifier              {5ca22996-7ef2-11e2-b852-4c72b9027c36}
device                  ramdisk=[D:]\Recovery\WindowsRE\Winre.wim,{5ca22997-7ef2-11e2-b852-4c72b9027c36}
path                    \windows\system32\winload.efi
description             Windows Recovery Environment
inherit                 {bootloadersettings}
osdevice                ramdisk=[D:]\Recovery\WindowsRE\Winre.wim,{5ca22997-7ef2-11e2-b852-4c72b9027c36}
systemroot              \windows
nx                      OptIn
winpe                   Yes
 
Windows Boot Loader
-------------------
identifier              {5ca22998-7ef2-11e2-b852-4c72b9027c36}
device                  ramdisk=[D:]\Recovery\WindowsRE\Winre.wim,{5ca22999-7ef2-11e2-b852-4c72b9027c36}
path                    \windows\system32\winload.efi
description             Windows Recovery Environment
inherit                 {bootloadersettings}
osdevice                ramdisk=[D:]\Recovery\WindowsRE\Winre.wim,{5ca22999-7ef2-11e2-b852-4c72b9027c36}
systemroot              \windows
nx                      OptIn
winpe                   Yes
 
Windows Boot Loader
-------------------
identifier              {current}
device                  partition=C:
path                    \windows\system32\winload.efi
description             Windows 7
locale                  en-US
inherit                 {bootloadersettings}
recoverysequence        {5ca22998-7ef2-11e2-b852-4c72b9027c36}
recoveryenabled         Yes
osdevice                partition=C:
systemroot              \windows
resumeobject            {9fa7c7e0-cb97-11e1-81c6-e840f273b46e}
nx                      OptIn
 
Resume from Hibernate
---------------------
identifier              {9fa7c7e0-cb97-11e1-81c6-e840f273b46e}
device                  partition=C:
path                    \windows\system32\winresume.efi
description             Windows Resume Application
locale                  en-US
inherit                 {resumeloadersettings}
filedevice              partition=C:
filepath                \hiberfil.sys
debugoptionenabled      No
 
Windows Memory Tester
---------------------
identifier              {memdiag}
device                  partition=\Device\HarddiskVolume1
path                    \EFI\Microsoft\Boot\memtest.efi
description             Windows Memory Diagnostic
locale                  en-US
inherit                 {globalsettings}
badmemoryaccess         Yes
 
EMS Settings
------------
identifier              {emssettings}
bootems                 Yes
 
Debugger Settings
-----------------
identifier              {dbgsettings}
debugtype               Serial
debugport               1
baudrate                115200
 
RAM Defects
-----------
identifier              {badmemory}
 
Global Settings
---------------
identifier              {globalsettings}
inherit                 {dbgsettings}
                        {emssettings}
                        {badmemory}
 
Boot Loader Settings
--------------------
identifier              {bootloadersettings}
inherit                 {globalsettings}
                        {hypervisorsettings}
 
Hypervisor Settings
-------------------
identifier              {hypervisorsettings}
hypervisordebugtype     Serial
hypervisordebugport     1
hypervisorbaudrate      115200
 
Resume Loader Settings
----------------------
identifier              {resumeloadersettings}
inherit                 {globalsettings}
 
Device options
--------------
identifier              {5ca22997-7ef2-11e2-b852-4c72b9027c36}
description             Ramdisk Options
ramdisksdidevice        partition=D:
ramdisksdipath          \Recovery\WindowsRE\boot.sdi
 
Device options
--------------
identifier              {5ca22999-7ef2-11e2-b852-4c72b9027c36}
description             Ramdisk Options
ramdisksdidevice        partition=D:
ramdisksdipath          \Recovery\WindowsRE\boot.sdi
 
 
 
LastRegBack: 2014-09-27 12:42
 
==================== End Of Log ============================
Länk till kommentar
Dela på andra webbplatser

Det handlar inte om att tro eller inte tro på vad du skriver, men detta har blivit en väldigt lång tråd och därmed svårt för mig att hitta den väsentliga informationen bland en väldig massa inlägg som inte har att göra med att få bort de skadliga och olämplig program och tillägg som du har i datorn. Trevligt för dig att du har en hund men jag är faktiskt inte så intresserad av att veta när hunden är hos dig resp. någon annan och annat liknande.

 

Så till saken.

 

Var vänlig och installera inte program i datorn medan vi håller på och rensar den. Sedan föregående FRST.txt (inlägg 55) har du installerat program (PC Speed Maximizer, PC Drivers Headquarters, ArcSoft) och fått in nya olämpliga filer som måste bort. Det blir rätt hopplöst att rensa datorn om du stoppar in nytt olämpligt under tiden.

 

1.

Avinstallera HiJackThis eftersom den inte är kompatibel med Windows-versionen som finns i datorn.

 

2.

Starta Anteckningar.

Kopiera alla rader i rutan:

FF HKLM-x32\...\Firefox\Extensions: [fmconverter@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox
FF Extension: Freemake Video Converter Plugin - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox [2013-03-07]
CHR DefaultSearchKeyword: Default -> astromenda.com
CHR DefaultSearchProvider: Default -> buenosearch
CHR DefaultSearchURL: Default -> http://www.buenosear...q={searchTerms}
2014-09-16 19:29 - 2014-09-16 19:29 - 00000000 ____D () C:\ProgramData\UAB
2014-09-16 19:28 - 2014-09-16 19:39 - 00000210 _____ () C:\Users\Maria\daemonprocess.txt
2014-09-16 19:28 - 2014-09-16 19:39 - 00000210 _____ () C:\Users\Maria\daemonprocess.txt
2014-09-16 19:28 - 2014-09-16 19:28 - 00000000 ____D () C:\ProgramData\PC Drivers HeadQuarters
2014-09-16 19:26 - 2014-09-16 19:26 - 00000000 ____D () C:\Users\Maria\AppData\Roaming\PC Speed Maximizer
2014-09-16 19:41 - 2014-01-07 12:20 - 00000000 ____D () C:\Users\Maria\AppData\Local\Mobogenie
CustomCLSID: HKU\S-1-5-21-1643772304-1289773838-862653175-1000_Classes\CLSID\{A75BE48D-BF58-4A8B-B96C-F9A09DFB9844}\InprocServer32 -> C:\Users\Maria\AppData\Local\Pokki\ocdeskband_0.dll No File
Task: {F14DF5C7-D5E6-48CE-AF53-B425E01148E8} - System32\Tasks\4671 => Wscript.exe C:\Users\Maria\AppData\Local\Temp\launchie.vbs //B <==== ATTENTION
C:\Users\Maria\AppData\Local\Temp\launchie.vbs
AlternateDataStreams: C:\ProgramData\Temp:373E1720
AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1
AlternateDataStreams: C:\ProgramData\Temp:D5FBE8F9
S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [X]
2014-09-16 19:41 - 2013-05-17 10:23 - 00000000 ____D () C:\Program Files (x86)\ArcSoft
och klistra in i Anteckningar. Kontrollera att inga filer har delats upp på två rader.

Spara filen på skrivbordet med namnet fixlist.txt.

 

Starta FRST som finns på skrivbordet.

Klicka på knappen Fix.

Vänta tills programmet är klart.

 

Programmet skapar en logg Fixlog.txt på skrivbordet.

Klistra in innehållet i den i ditt svar.

 

3.

Stäng alla program, inklusive webbläsare.

Dubbelklicka på AdwCleaner för att starta programmet.

(Du har använt AdwCleaner tidigare i tråden, inlägg 40.)

 

Klicka på Scan-knappen.

Vänta tills sökningen är klar.

Klicka på Report-knappen.

En rapport kommer upp, kopiera innehållet och klistra in i ditt svar.

Om rapporten inte kommer upp, så finns den även som C:\AdwCleaner[Rn].txt där n är ett löpnummer så välj den med högst nummer.

Länk till kommentar
Dela på andra webbplatser

Det handlar inte om att tro eller inte tro på vad du skriver, men detta har blivit en väldigt lång tråd och därmed svårt för mig att hitta den väsentliga informationen bland en väldig massa inlägg som inte har att göra med att få bort de skadliga och olämplig program och tillägg som du har i datorn. Trevligt för dig att du har en hund men jag är faktiskt inte så intresserad av att veta när hunden är hos dig resp. någon annan och annat liknande.

 

Så till saken.

 

Var vänlig och installera inte program i datorn medan vi håller på och rensar den. Sedan föregående FRST.txt (inlägg 55) har du installerat program (PC Speed Maximizer, PC Drivers Headquarters, ArcSoft) och fått in nya olämpliga filer som måste bort. Det blir rätt hopplöst att rensa datorn om du stoppar in nytt olämpligt under tiden.

 

1.

Avinstallera HiJackThis eftersom den inte är kompatibel med Windows-versionen som finns i datorn.

 

2.

Starta Anteckningar.

Kopiera alla rader i rutan:och klistra in i Anteckningar. Kontrollera att inga filer har delats upp på två rader.

Spara filen på skrivbordet med namnet fixlist.txt.

 

Starta FRST som finns på skrivbordet.

Klicka på knappen Fix.

Vänta tills programmet är klart.

 

Programmet skapar en logg Fixlog.txt på skrivbordet.

Klistra in innehållet i den i ditt svar.

 

3.

Stäng alla program, inklusive webbläsare.

Dubbelklicka på AdwCleaner för att starta programmet.

(Du har använt AdwCleaner tidigare i tråden, inlägg 40.)

 

Klicka på Scan-knappen.

Vänta tills sökningen är klar.

Klicka på Report-knappen.

En rapport kommer upp, kopiera innehållet och klistra in i ditt svar.

Om rapporten inte kommer upp, så finns den även som C:\AdwCleaner[Rn].txt där n är ett löpnummer så välj den med högst nummer.

 

Jag installerar inte program. Det är datorn som gör :-( Jag har valt bort att hämta automatiska uppdateringar. Om jag surfar till nån sida så lagrar jag detta på USB-minne och tar till min andra dator. Dock inte till den blåa. Den ska jag installera Windows 98 på. Jag har kopierat alla kort tror jag och markerat dem för borttagning på denna dator. Jag trodde först att jag hade alla kort på den andra datorn. Den är svart och vit och heter Fujitsu.

 

Du är uppe sent ser jag. Om klockan i din dator stämmer. Så sent gör inte jag avancerade saker med datorn. Det blev visst fel fil. fixlog.txt ska den heta. . Jag måste äta först. 

/Maria

Länk till kommentar
Dela på andra webbplatser

Utan att dyka in i exakta problemen i denna låååånga tråd kommer jag med följande lösryckta råd

1: Gör en backup, eller två, av allt du vill rädda från din dator.

2: Kör en felkoll av hårddisken/hårddiskarna

Om denna okej fortsätta till punkt tre direkt, annars köp ny hårddisk

3: Format C:, installera om Windows

(4: Överkurs: när klar, skapa en avbild, klona ditt nyinstallerade system. Att ha och återanvända när/om du behöver installera om igen)

 

Går troligen snabbare, är enklare, än att lösa problemen med denna installation av Windows.

 

Överväg det ivartfall

 

Imho lägger man alltför ofta för mycket kraft på att reparera Windows när det kan gå snabbare, enklare att helt enkelt installera om.

Länk till kommentar
Dela på andra webbplatser

Jag har en återställningspartiion på denna dator. Men jag vill inte ringa till HP support och fråga hur man gör med den. Nu har jag stängt av automatiska uppdateringar trots detta installerade datorn PC Maximeter som jag just hade avinstallerat :-( Det har aldrig blivit så mycket problem med de andra datorerna som har har haft. De problem som har uppstått har gått att lösa snabbt. Utom problemen med mina scsi-enheter som jag hade en gång till min 386.

 

Datateknikerna som hjälpte mej förstod inte att det behövdes nya drivrutiner. Så fort datorn kom hem till mej igen från databutiken så blev det fel.

/Maria

Länk till kommentar
Dela på andra webbplatser

Här kommer adaware.txt

 

 

# AdwCleaner v3.310 - Report created 28/09/2014 at 10:02:51

# Updated 12/09/2014 by Xplode

# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)

# Username : Maria - MELVIN

# Running from : C:\utils\adwcleaner_3.310.exe

# Option : Clean

 

***** [ Services ] *****

 

[x] Not Deleted : Update AdvanceElite

[x] Not Deleted : Util AdvanceElite

[x] Not Deleted : {bb7b7a60-f574-47c2-8a0b-4c56f2da9802}Gw64

 

***** [ Files / Folders ] *****

 

Folder Deleted : C:\Program Files (x86)\PC Speed Maximizer

[!] Folder Deleted : C:\Program Files (x86)\AdvanceElite

Folder Deleted : C:\Users\Maria\AppData\Local\Mobogenie

Folder Deleted : C:\Users\Maria\AppData\Local\Temp\AdvanceElite

Folder Deleted : C:\Users\Maria\Documents\PC Speed Maximizer

File Deleted : C:\windows\System32\drivers\{bb7b7a60-f574-47c2-8a0b-4c56f2da9802}Gw64.sys

File Deleted : C:\Users\Maria\daemonprocess.txt

 

***** [ Scheduled Tasks ] *****

 

 

***** [ Shortcuts ] *****

 

 

***** [ Registry ] *****

 

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AdvanceElite_RASAPI32

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AdvanceElite_RASMANCS

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updateAdvanceElite_RASAPI32

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updateAdvanceElite_RASMANCS

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\utilAdvanceElite_RASAPI32

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\utilAdvanceElite_RASMANCS

Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Update AdvanceElite

Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Util AdvanceElite

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3b2cb4c8-72ab-4b25-8fa1-219b36a60bed}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D6625FAD-EF8D-465C-B9D3-81BB22C40253}

Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}

Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9303da31-7a21-45fd-bd61-03ea56853012}

Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3b2cb4c8-72ab-4b25-8fa1-219b36a60bed}

Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3b2cb4c8-72ab-4b25-8fa1-219b36a60bed}

Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3b2cb4c8-72ab-4b25-8fa1-219b36a60bed}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D6625FAD-EF8D-465C-B9D3-81BB22C40253}

Key Deleted : HKCU\Software\ClickConnect

Key Deleted : HKCU\Software\InstallCore

Key Deleted : HKCU\Software\AdvanceElite

Key Deleted : HKLM\SOFTWARE\AdvanceElite

Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AdvanceElite

 

***** [ Browsers ] *****

 

-\\ Internet Explorer v11.0.9600.17239

 

 

-\\ Google Chrome v37.0.2062.124

 

[ File : C:\Users\Maria\AppData\Local\Google\Chrome\User Data\Default\preferences ]

 

 

*************************

 

AdwCleaner[R0].txt - [36966 octets] - [15/09/2014 17:11:21]

AdwCleaner[R1].txt - [4237 octets] - [28/09/2014 09:54:09]

AdwCleaner[s0].txt - [33720 octets] - [15/09/2014 17:22:03]

AdwCleaner[s1].txt - [3833 octets] - [28/09/2014 10:02:51]

 

########## EOF - C:\AdwCleaner\AdwCleaner[s1].txt - [3893 octets] ##########

Länk till kommentar
Dela på andra webbplatser

Jag har valt bort att hämta automatiska uppdateringar.

Det är mycket viktigt att installera Windows-uppdateringar för annars har man kända säkerhetshål i datorn som en webbsida kan använda för att infektera datorn med skadliga program.

 

1.

Här kommer filen fixlist.txt

Det var inte fixlist.txt jag behöver se utan fixlog.txt.

 

 

2.

Stäng alla program, inklusive webbläsare.

Dubbelklicka på AdwCleaner för att starta programmet.

 

Klicka på Scan-knappen.

Vänta tills sökningen är klar.

 

Klicka på Clean-knappen.

Tryck på OK.

Tryck på OK fler gånger om det kommer upp meddelanden.

 

Datorn kommer att startas om.

En rapport kommer upp, kopiera innehållet och klistra in i ditt svar.

Om rapporten inte kommer upp, så finns den även som C:\AdwCleaner[s2].txt

Länk till kommentar
Dela på andra webbplatser

Jag har en återställningspartiion på denna dator. Men jag vill inte ringa till HP support och fråga hur man gör med den....

Fråga oss då!!

Finns oftast ett menyval för att starta denna i Windows annars en snabbknapp vid uppstart av datorn. F1, f2 eller liknande.

Som sagt, skapa en backup först.

 

Eller så får vi se om Cecilia och övriga här får ordning på datorn din utan ominstallation.

Länk till kommentar
Dela på andra webbplatser

 

Jag har en återställningspartiion på denna dator. Men jag vill inte ringa till HP support och fråga hur man gör med den....

Här är vad du behöver för att skapa en installationsskiva för w7 utan Bloatware:

http://pcforalla.idg.se/2.1054/1.432425

http://lifehacker.com/5438005/eicfg-removal-utility-lets-you-use-any-product-key-with-your-windows-7-disc

 

Ladda ner den isofil som stämmer överens med din variant av W7 och ladda även ner Windows 7 USB/DVD download tool från första länken. Vill du plocka fram serienr så ladda även ner Magical Jelly Bean Keyfinder.

 

Den sista länken är till för att man ska kunna installera samtliga varianter på w7 från samma skiva.

Länk till kommentar
Dela på andra webbplatser

Det är mycket viktigt att installera Windows-uppdateringar för annars har man kända säkerhetshål i datorn som en webbsida kan använda för att infektera datorn med skadliga program.

 

1.Det var inte fixlist.txt jag behöver se utan fixlog.txt.

 

 

2.

Stäng alla program, inklusive webbläsare.

Dubbelklicka på AdwCleaner för att starta programmet.

 

Klicka på Scan-knappen.

Vänta tills sökningen är klar.

 

Klicka på Clean-knappen.

Tryck på OK.

Tryck på OK fler gånger om det kommer upp meddelanden.

 

Datorn kommer att startas om.

En rapport kommer upp, kopiera innehållet och klistra in i ditt svar.

Om rapporten inte kommer upp, så finns den även som C:\AdwCleaner[s2].txt

Orsaken till att jag valde bort att hämta automatiska uppdateringar var att datorn hela tiden vill installera program som du säger inte är bra. Dessutom installerar den en del program som inte jag gillar heller t.e.x "My PC Backup" och Reg Cleaner. Dessa program har jag avinstallerat några gånger. 

 

Duger denna fil . Jag har optimerat min lägenhet idag också. :-) 

 

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 26-09-2014
Ran by Maria at 2014-09-27 09:50:04 Run:2
Running from C:\Users\Maria\Desktop
Loaded Profile: Maria (Available profiles: Maria)
Boot Mode: Normal
==============================================
 
Content of fixlist:
*****************
C:\Program Files (x86)\Free Games 115
C:\Program Files (x86)\Speed Test 125
C:\SWSETUP\APP\Applications\Corel\WinZipTrial\16.0\src\winzip160.exe
C:\Users\Maria\Desktop\4353.exe
C:\Users\Maria\Documents\VideoDownloadConvert.exe
C:\Users\Maria\Downloads\ccsetup411.exe
C:\Users\Public\Documents\rcsetup145.exe
C:\utils\advancedfileoptimizersetup_DriveInfo2.exe
C:\utils\advancedfileoptimizersetup_PSD.exe
C:\utils\WinZipRegistryOptimizer.exe
C:\utils\Downloads\cbsidlm-cbsi145-PC_Health_Optimizer_Free_Edition-SEO-10714910.exe
C:\utils\Downloads\cdbxp_setup_4.5.2.4291.exe
C:\utils\Downloads\cdbxp_setup_4.5.2.4478.exe
C:\utils\Downloads\CuteWriter.exe
C:\utils\Downloads\hijackthis-1.exe
C:\utils\Downloads\InternetExplorer.exe
C:\utils\Downloads\pdf-download_setup.exe
C:\utils\Downloads\PSDPlugin.exe
C:\utils\Downloads\Setup.exe
C:\utils\Downloads\SoftonicDownloader_for_seamonkey.exe
C:\utils\Downloads\VideoDownloadConvertSetup2.5.14.33.^HJ^man000^YYA^.exe
C:\utils2\cbsidlm-cbsi188-Bad_CDDVD_Recovery-ORG-10697118.exe
C:\utils2\cbsidlm-cbsi188-Data_Doctor_Recovery_Pen_Drive-ORG-10700114.exe
C:\utils2\cbsidlm-cbsi188-Roadkils_Unstoppable_Copier-SEO-10580640.exe
C:\utils2\DVD Data Recovery.exe
C:\utils2\iMeshSetup-r1491-n-bi.exe
C:\utils2\isobuster_install.exe
C:\utils2\rcsetup151.exe
C:\utils2\SoftonicDownloader_for_safari.exe
BHO-x32: No Name -> {D7A09A0B-D2E6-413F-9EBF-F8AD66839544} ->  No File
CHR DefaultSearchKeyword: Default -> astromenda.com
CHR DefaultSearchProvider: Default -> buenosearch
CHR DefaultSearchURL: Default -> http://www.buenosear...q={searchTerms}
EmptyTemp:
*****************
 
C:\Program Files (x86)\Free Games 115 => Moved successfully.
C:\Program Files (x86)\Speed Test 125 => Moved successfully.
C:\SWSETUP\APP\Applications\Corel\WinZipTrial\16.0\src\winzip160.exe => Moved successfully.
C:\Users\Maria\Desktop\4353.exe => Moved successfully.
C:\Users\Maria\Documents\VideoDownloadConvert.exe => Moved successfully.
C:\Users\Maria\Downloads\ccsetup411.exe => Moved successfully.
C:\Users\Public\Documents\rcsetup145.exe => Moved successfully.
"C:\utils\advancedfileoptimizersetup_DriveInfo2.exe" => File/Directory not found.
"C:\utils\advancedfileoptimizersetup_PSD.exe" => File/Directory not found.
"C:\utils\WinZipRegistryOptimizer.exe" => File/Directory not found.
"C:\utils\Downloads\cbsidlm-cbsi145-PC_Health_Optimizer_Free_Edition-SEO-10714910.exe" => File/Directory not found.
"C:\utils\Downloads\cdbxp_setup_4.5.2.4291.exe" => File/Directory not found.
"C:\utils\Downloads\cdbxp_setup_4.5.2.4478.exe" => File/Directory not found.
"C:\utils\Downloads\CuteWriter.exe" => File/Directory not found.
"C:\utils\Downloads\hijackthis-1.exe" => File/Directory not found.
"C:\utils\Downloads\InternetExplorer.exe" => File/Directory not found.
"C:\utils\Downloads\pdf-download_setup.exe" => File/Directory not found.
"C:\utils\Downloads\PSDPlugin.exe" => File/Directory not found.
"C:\utils\Downloads\Setup.exe" => File/Directory not found.
"C:\utils\Downloads\SoftonicDownloader_for_seamonkey.exe" => File/Directory not found.
"C:\utils\Downloads\VideoDownloadConvertSetup2.5.14.33.^HJ^man000^YYA^.exe" => File/Directory not found.
"C:\utils2\cbsidlm-cbsi188-Bad_CDDVD_Recovery-ORG-10697118.exe" => File/Directory not found.
"C:\utils2\cbsidlm-cbsi188-Data_Doctor_Recovery_Pen_Drive-ORG-10700114.exe" => File/Directory not found.
"C:\utils2\cbsidlm-cbsi188-Roadkils_Unstoppable_Copier-SEO-10580640.exe" => File/Directory not found.
"C:\utils2\DVD Data Recovery.exe" => File/Directory not found.
"C:\utils2\iMeshSetup-r1491-n-bi.exe" => File/Directory not found.
"C:\utils2\isobuster_install.exe" => File/Directory not found.
"C:\utils2\rcsetup151.exe" => File/Directory not found.
"C:\utils2\SoftonicDownloader_for_safari.exe" => File/Directory not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D7A09A0B-D2E6-413F-9EBF-F8AD66839544}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{D7A09A0B-D2E6-413F-9EBF-F8AD66839544}" => Key not found.
Chrome DefaultSearchKeyword deleted successfully.
CHR DefaultSearchProvider: Default -> buenosearch ==> The Chrome "Settings" can be used to fix the entry.
Chrome DefaultSearchURL deleted successfully.
EmptyTemp: => Removed 14.5 GB temporary data.
 
 
The system needed a reboot. 
 
==== End of Fixlog ====

/Maria

Länk till kommentar
Dela på andra webbplatser

Det är mycket viktigt att installera Windows-uppdateringar för annars har man kända säkerhetshål i datorn som en webbsida kan använda för att infektera datorn med skadliga program.

 

1.Det var inte fixlist.txt jag behöver se utan fixlog.txt.

 

 

2.

Stäng alla program, inklusive webbläsare.

Dubbelklicka på AdwCleaner för att starta programmet.

 

Klicka på Scan-knappen.

Vänta tills sökningen är klar.

 

Klicka på Clean-knappen.

Tryck på OK.

Tryck på OK fler gånger om det kommer upp meddelanden.

 

Datorn kommer att startas om.

En rapport kommer upp, kopiera innehållet och klistra in i ditt svar.

Om rapporten inte kommer upp, så finns den även som C:\AdwCleaner[s2].txt

Jag har aktiverat att hämta nya uppdateringar nu. Då får jag väl också med några skräpprogram som vi har rensat bort ? :-( 

/Maria

Länk till kommentar
Dela på andra webbplatser

Som sagt, att installera om kan lösa alla dessa problem på kanske två, tre timmar. Och därtill en tid då du efterhand installera de program du vill ha på datorn.

 

Rekommenderas.

 

Dator som blir för varm... Starta ny tråd om den om du vill ha hjälp med den. Den tar vi inte upp här.

Länk till kommentar
Dela på andra webbplatser

Jag trodde att den sista fixlog.txt var en ny fil? 

Nej jag har inget emot att du kortar ner denna tråd.  

Jag hoppas att denna fil är den senaste 

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 26-09-2014
Ran by Maria at 2014-09-28 18:12:36 Run:3
Running from C:\Users\Maria\Desktop
Loaded Profile: Maria (Available profiles: Maria)
Boot Mode: Normal
==============================================
 
Content of fixlist:
*****************
FF HKLM-x32\...\Firefox\Extensions: [fmconverter@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox
FF Extension: Freemake Video Converter Plugin - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox [2013-03-07]
CHR DefaultSearchKeyword: Default -> astromenda.com
CHR DefaultSearchProvider: Default -> buenosearch
CHR DefaultSearchURL: Default -> http://www.buenosear...q={searchTerms}
2014-09-16 19:29 - 2014-09-16 19:29 - 00000000 ____D () C:\ProgramData\UAB
2014-09-16 19:28 - 2014-09-16 19:39 - 00000210 _____ () C:\Users\Maria\daemonprocess.txt
2014-09-16 19:28 - 2014-09-16 19:39 - 00000210 _____ () C:\Users\Maria\daemonprocess.txt
2014-09-16 19:28 - 2014-09-16 19:28 - 00000000 ____D () C:\ProgramData\PC Drivers HeadQuarters
2014-09-16 19:26 - 2014-09-16 19:26 - 00000000 ____D () C:\Users\Maria\AppData\Roaming\PC Speed Maximizer
2014-09-16 19:41 - 2014-01-07 12:20 - 00000000 ____D () C:\Users\Maria\AppData\Local\Mobogenie
CustomCLSID: HKU\S-1-5-21-1643772304-1289773838-862653175-1000_Classes\CLSID\{A75BE48D-BF58-4A8B-B96C-F9A09DFB9844}\InprocServer32 -> C:\Users\Maria\AppData\Local\Pokki\ocdeskband_0.dll No File
Task: {F14DF5C7-D5E6-48CE-AF53-B425E01148E8} - System32\Tasks\4671 => Wscript.exe C:\Users\Maria\AppData\Local\Temp\launchie.vbs //B <==== ATTENTION
C:\Users\Maria\AppData\Local\Temp\launchie.vbs
AlternateDataStreams: C:\ProgramData\Temp:373E1720
AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1
AlternateDataStreams: C:\ProgramData\Temp:D5FBE8F9
S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [X]
2014-09-16 19:41 - 2013-05-17 10:23 - 00000000 ____D () C:\Program Files (x86)\ArcSoft
*****************
 
HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\fmconverter@gmail.com => value deleted successfully.
C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox => Moved successfully.
Chrome DefaultSearchKeyword deleted successfully.
CHR DefaultSearchProvider: Default -> buenosearch ==> The Chrome "Settings" can be used to fix the entry.
Chrome DefaultSearchURL deleted successfully.
C:\ProgramData\UAB => Moved successfully.
"C:\Users\Maria\daemonprocess.txt" => File/Directory not found.
"C:\Users\Maria\daemonprocess.txt" => File/Directory not found.
C:\ProgramData\PC Drivers HeadQuarters => Moved successfully.
"C:\Users\Maria\AppData\Roaming\PC Speed Maximizer" => File/Directory not found.
"C:\Users\Maria\AppData\Local\Mobogenie" => File/Directory not found.
"HKU\S-1-5-21-1643772304-1289773838-862653175-1000_Classes\CLSID\{A75BE48D-BF58-4A8B-B96C-F9A09DFB9844}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F14DF5C7-D5E6-48CE-AF53-B425E01148E8}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F14DF5C7-D5E6-48CE-AF53-B425E01148E8}" => Key deleted successfully.
C:\Windows\System32\Tasks\4671 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\4671" => Key deleted successfully.
"C:\Users\Maria\AppData\Local\Temp\launchie.vbs" => File/Directory not found.
C:\ProgramData\Temp => ":373E1720" ADS removed successfully.
C:\ProgramData\Temp => ":D1B5B4F1" ADS removed successfully.
C:\ProgramData\Temp => ":D5FBE8F9" ADS removed successfully.
ACDaemon => Service deleted successfully.
C:\Program Files (x86)\ArcSoft => Moved successfully.
 
==== End of Fixlog ====
Länk till kommentar
Dela på andra webbplatser

Arkiverat

Det här ämnet är nu arkiverat och är stängt för ytterligare svar.

×
×
  • Skapa nytt...