Originally posted by Malnutrition
Malware or Possible Trogen Issue
Collapse
X
-
-
Hopefully this is what you requested;
CreateRestorePoint:
Task: {0DAC725D-0371-4133-8AF6-D148198B0D4A} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [2016-04-08] ()
Task: {105CBCC4-5BD4-47EC-919F-698174BE6C5E} - System32\Tasks\SBWUpdateTask_Logon_d4e02148-1C659D0430C4 => C:\Program Files (x86)\Common Files\Speedbit\SbUpdate\SBUpdate.exe [2013-01-19] (Speedbit Ltd.) <==== ATTENTION
C:\Program Files (x86)\Common Files\Speedbit
C:\ProgramData\Premium\VaudiX\VaudiX.exe
C:\ProgramData\Premium
HKLM...\Run: [hola] => C:\Program Files\Hola\app\hola.exe [2166376 2016-11-02] (Hola Networks Ltd.) <===== ATTENTION
C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll
C:\Program Files (x86)\Kaspersky Lab
C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_CEP_ Local_440
C:\WINDOWS\Tasks\Uninstaller_SkipUac_CEP_Local_440 .job
C:\ProgramData{FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
C:\WINDOWS\System32\Tasks\ASC9_SkipUac_CEP Local 440
C:\WINDOWS\Tasks\ASC9_SkipUac_CEP Local 440.job
C:\WINDOWS\Tasks\VaudiXUpdaterTask{8641A371-5391-4413-ADCA-0BED20AE0CE5}.job
C:\ProgramData{d36dd326-7280-11d8-97c8-000129760cbe}.log
C:\ProgramData{CB099890-1D5F-11D5-9EA9-0050BAE317E1}.log
C:\ProgramData{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
C:\ProgramData{9867824A-C86D-4A83-8F3C-E7A86BE0AFD3}.log
C:\ProgramData{4FC670EB-5F02-4B07-90DB-022B86BFEFD0}.log
C:\ProgramData{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
C:\ProgramData{23F3DA62-2D9E-4A69-B8D5-BE8E9E148092}.log
C:\ProgramData{051B9612-4D82-42AC-8C63-CD2DCEDC1CB3}.log
C:\ProgramData{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}.log
FirewallRules: [{1F11BD5D-9CDA-4136-BB17-11759FEB6D09}] => (Allow) C:\Users\CEP Local 440\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{DA625BC8-20DA-4F96-B47A-3616BB97937C}] => (Allow) C:\Users\CEP Local 440\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{8C644734-5475-4DA6-B672-08496CD515EA}] => (Allow) C:\Users\CEP Local 440\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{6C306E7E-FA6E-4246-91D6-00F5ED2544EC}] => (Allow) C:\Users\CEP Local 440\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{7593305D-BBBF-4CCE-926B-B048B7563B94}] => (Allow) C:\Users\CEP Local 440\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{2D6CE001-C5BD-4ED4-9DD1-E5AE42D4EFB3}] => (Allow) C:\Users\CEP Local 440\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{CF80B1C2-A556-4548-981C-06CBE3BB5EAF}] => (Allow) C:\Program Files (x86)\Vuze\Azureus.exe
FirewallRules: [{4860E4E0-5D78-4517-A910-FAB62566D6FA}] => (Allow) C:\Program Files (x86)\Vuze\Azureus.exe
FirewallRules: [{CBDE96F0-6E14-4BF7-AFC6-241703E7FC90}] => (Allow) C:\Program Files (x86)\Vuze\Azureus.exe
FirewallRules: [{E8F72EA0-BA09-4CBA-9F61-538AA9DBD4B9}] => (Allow) C:\Program Files (x86)\Vuze\Azureus.exe
HKLM-x32...\Run: [TkBellExe] => C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe [293768 2016-07-16] (RealNetworks, Inc.)
Task: {1BC14874-2285-41BC-9C22-9381D778C8C7} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2016-05-13] (RealNetworks, Inc.)
Task: {24FF0670-A2EE-4FE7-9ADC-55ECDCC4A9E1} - System32\Tasks\SBWUpdateTask_Time_d4e02148-1C659D0430C4 => C:\Program Files (x86)\Common Files\Speedbit\SbUpdate\SBUpdate.exe [2013-01-19] (Speedbit Ltd.) <==== ATTENTION
Task: {25554AD1-5548-49F0-8550-EC465DD19366} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent → No File <==== ATTENTION
Task: {27A76811-8CAB-4FB0-8E58-AE2F14D3523B} - System32\Tasks\RealDownloaderRealUpgradeScheduledT askS-1-5-21-1124643268-3595298339-4084894015-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe [2016-05-13] (RealNetworks, Inc.)
Task: {2D23301A-268D-4133-A615-B5D3B6436506} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe [2016-05-13] (RealNetworks, Inc.)
Task: {350B0464-18D2-43E5-98C5-C3267B33837D} - \Microsoft\Windows\Setup\gwx\launchtrayprocess → No File <==== ATTENTION
Task: {3E67C9DA-3818-4D54-937E-0B0166CD4C2A} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2016-05-13] (RealNetworks, Inc.)
Task: {4295A246-F1FA-4C92-B703-C98313A8B679} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {45EACAAD-C12E-45DB-A0B7-C6968C44E73B} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandco ntent → No File <==== ATTENTION
Task: {462BC8C7-51E1-48D0-A779-3A14AC6127C0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {48ACB946-9171-45B5-875C-A86E243BEEC3} - System32\Tasks\Uninstaller_SkipUac_CEP_Local_440 => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: {56F97E84-3191-45C9-A635-67E8EB4B5A12} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd → No File <==== ATTENTION
Task: {689603CA-2D8F-42B1-8DFB-CEC176524B4B} - System32\Tasks\VaudiXUpdaterTask{8641A371-5391-4413-ADCA-0BED20AE0CE5} => C:\ProgramData\Premium\VaudiX\VaudiX.exe [2012-09-19] () <==== ATTENTION
Task: {6A1D0173-5E64-47B4-ABF4-B0905C3E7446} - System32\Tasks\SmartDefrag3_Update => C:\Program Files (x86)\IObit\Smart Defrag 3\AutoUpdate.exe [2014-07-23] (IObit)
Task: {6A547488-E31C-4C6E-8EED-B98D6A8EE4DE} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d → No File <==== ATTENTION
Task: {78E36EFE-EDDE-417C-8CD5-5338C87D4A89} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d → No File <==== ATTENTION
Task: {881641BF-0BE6-43B4-8EC8-60F5117C11FA} - System32\Tasks\WRCSkipUAC => C:\Program Files (x86)\Wise\Wise Registry Cleaner\WiseRegCleaner.exe [2015-10-27] (WiseCleaner.com)
Task: {8B2BDB30-21E5-4EAB-876D-714AA59072D2} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d → No File <==== ATTENTION
Task: {8F63C092-CD98-4DEF-91B5-ABF2B708ECD7} - System32\Tasks\WinZipBackGroundToolsTask => C:\Program Files\WinZip\WzBGTools.exe [2016-04-28] (WinZip Computing, S.L.)
Task: {9F98CCE2-E3BC-4C34-89FD-890FD85D2403} - System32\Tasks\Wise Turbo Checker => C:\Program Files (x86)\Wise\Wise Care 365\WiseTurbo.exe [2016-01-19] (WiseCleaner.COM)
Task: {A2829269-0700-45E1-BF90-7C8200090DB8} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpda teService.exe [2015-10-17] (Adobe Systems Incorporated)
Task: {C2311C6E-8DAA-4CBA-A2A9-C3D2DF6BE404} - System32\Tasks\Wise Turbo Checker.job => C:\Program Files (x86)\Wise\Wise Care 365\WiseTurbo.exe [2016-01-19] (WiseCleaner.COM)
Task: {E9CEC2AE-59CB-4E77-9459-C3A97851374F} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ HB => C:\WINDOWS\system32\MRT.exe [2016-05-23] (Microsoft Corporation)
Task: {EFF885BD-E49F-4288-B019-FFDE6C4A683F} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d → No File <==== ATTENTION
Task: {F6F549D5-4559-4DED-AFAB-9D5782549FD7} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d → No File <==== ATTENTION
Task: {F8E99B3B-8FF9-44C4-AE06-046AAAD78217} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2016-05-13] (RealNetworks, Inc.)
Task: {F91C1C31-1776-45E9-8818-F155E0BB2786} - System32\Tasks\ASC9_SkipUac_CEP Local 440 => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe
Task: {FA184C91-C5EF-4764-BAF0-F6D3FBE5E08A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig → No File <==== ATTENTION
Task: {FF901301-441E-45AC-BDA9-F12D966A5533} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2016-05-13] (RealNetworks, Inc.)
Task: {FF9ACA87-4767-430C-861B-1D1765C88317} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxcon fig-B → No File <==== ATTENTION
Task: C:\WINDOWS\Tasks\ASC9_SkipUac_CEP Local 440.job => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe
Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_CEP_Local_440 .job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: C:\WINDOWS\Tasks\VaudiXUpdaterTask{8641A371-5391-4413-ADCA-0BED20AE0CE5}.job => C:\ProgramData\Premium\VaudiX\VaudiX.exeC/schedule /profilepath C:\ProgramData\Premium\VaudiX\profile.ini <==== ATTENTION
Task: C:\WINDOWS\Tasks\Wise Turbo Checker.job => C:\Program Files (x86)\Wise\Wise Care 365\WiseTurbo.exe
ShortcutWithArgument: C:\Users\CEP Local 440\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\217f6a27d9c55787\Chrom ium.lnk → C:\Program Files\Hola\app\chromium\hola_cr.exe (The Chromium Authors) → --profile-directory=Default
AlternateDataStreams: C:\ProgramData\Temp:373E1720 [134]
AlternateDataStreams: C:\ProgramData\Temp:553CA6CA [110]
AlternateDataStreams: C:\ProgramData\Temp:56E2E879 [128]
HKU\S-1-5-18...\Run: [KSS] => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan\kss.exe [1556448 2015-12-15] (AO Kaspersky Lab)
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64 Loader.dll => No File
ShellIconOverlayIdentifiers: [ OneDrive1] → {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers: [ OneDrive2] → {5AB7172C-9C11-405C-8DD5-AF20F3606282} => No File
ShellIconOverlayIdentifiers: [ OneDrive3] → {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => No File
ShellIconOverlayIdentifiers: [ OneDrive4] → {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: [ OneDrive5] → {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] → {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] → {5AB7172C-9C11-405C-8DD5-AF20F3606282} => No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] → {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] → {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] → {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
Winsock: Catalog9 01 C:\Program Files (x86)\SpeedBit Video Accelerator\LSP3.3.6.3\SBLSP.dll [174832 2013-01-19] (SPEEDbit)
Winsock: Catalog9 02 C:\Program Files (x86)\SpeedBit Video Accelerator\LSP3.3.6.3\SBLSP.dll [174832 2013-01-19] (SPEEDbit)
Winsock: Catalog9 03 C:\Program Files (x86)\SpeedBit Video Accelerator\LSP3.3.6.3\SBLSP.dll [174832 2013-01-19] (SPEEDbit)
Winsock: Catalog9 04 C:\Program Files (x86)\SpeedBit Video Accelerator\LSP3.3.6.3\SBLSP.dll [174832 2013-01-19] (SPEEDbit)
Winsock: Catalog9 05 C:\Program Files (x86)\SpeedBit Video Accelerator\LSP3.3.6.3\SBLSP.dll [174832 2013-01-19] (SPEEDbit)
Winsock: Catalog9 06 C:\Program Files (x86)\SpeedBit Video Accelerator\LSP3.3.6.3\SBLSP.dll [174832 2013-01-19] (SPEEDbit)
Winsock: Catalog9 07 C:\Program Files (x86)\SpeedBit Video Accelerator\LSP3.3.6.3\SBLSP.dll [174832 2013-01-19] (SPEEDbit)
Winsock: Catalog9 08 C:\Program Files (x86)\SpeedBit Video Accelerator\LSP3.3.6.3\SBLSP.dll [174832 2013-01-19] (SPEEDbit)
Winsock: Catalog9 09 C:\Program Files (x86)\SpeedBit Video Accelerator\LSP3.3.6.3\SBLSP.dll [174832 2013-01-19] (SPEEDbit)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 192.168.2.1
Tcpip..\Interfaces{7aacf0c7-f777-451d-935f-0dff73e93a81}: [DhcpNameServer] 192.168.2.1 192.168.2.1
ManualProxies:
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1124643268-3595298339-4084894015-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1124643268-3595298339-4084894015-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPCON/4
SearchScopes: HKLM → DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL =
SearchScopes: HKLM → {2D9F3B71-F660-4605-9BC3-6EDF3782FA70} URL = hxxp://www.ask.com/web?q={searchTerms}&l=dis&o=cahpl
SearchScopes: HKLM → {2D9F3B71-F660-4605-9BC3-6EDF3782FA70} URL = hxxp://www.ask.com/web?q={searchTerms}&l=dis&o=cahpl
SearchScopes: HKLM → {4AF4DA01-B858-4617-AC1C-0E06F377629C} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox
SearchScopes: HKLM-x32 → DefaultScope {7F4EFF06-7032-458e-AE16-1C1D8255C28A} URL =
SearchScopes: HKLM-x32 → {0BC6E3FA-78EF-4886-842C-5A1258C4455A} URL = hxxp://search.imgag.com/?appid=wsdt&component=&c=GNWDO59900&sbs=2&sc=2&f=w eb&vernum=3.1.5.7620&uid=0&did=%7b35a80c04-0e82-4769-ab2e-d57b98cb7e3a%7d&q={searchTerms}
SearchScopes: HKLM-x32 → {2D9F3B71-F660-4605-9BC3-6EDF3782FA70} URL = hxxp://www.ask.com/web?q={searchTerms}&l=dis&o=cahpl
SearchScopes: HKLM-x32 → {4AF4DA01-B858-4617-AC1C-0E06F377629C} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox
SearchScopes: HKU.DEFAULT → DefaultScope {0BC6E3FA-78EF-4886-842C-5A1258C4455A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE
SearchScopes: HKU.DEFAULT → {0BC6E3FA-78EF-4886-842C-5A1258C4455A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE
SearchScopes: HKU.DEFAULT → {2D9F3B71-F660-4605-9BC3-6EDF3782FA70} URL =
SearchScopes: HKU\S-1-5-21-1124643268-3595298339-4084894015-1000 → {0BC6E3FA-78EF-4886-842C-5A1258C4455A} URL = hxxp://search.imgag.com/?appid=wsdt&component=&c=GNWDO59900&sbs=2&sc=2&f=w eb&vernum=3.1.5.7620&uid=0&did=%7b35a80c04-0e82-4769-ab2e-d57b98cb7e3a%7d&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1124643268-3595298339-4084894015-1000 → {2D9F3B71-F660-4605-9BC3-6EDF3782FA70} URL = hxxp://www.ask.com/web?q={searchTerms}&l=dis&o=cahpl
SearchScopes: HKU\S-1-5-21-1124643268-3595298339-4084894015-1000 → {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Download Accelerator Plus Integration → {FF6C3CF0-4B15-11D1-ABED-709549C10000} → C:\Program Files (x86)\DAP\DAPIELoader64.dll [2011-03-24] (SpeedBit Ltd.)
BHO-x32: No Name → {02478D38-C3F9-4efb-9B51-7695ECA05670} → No File
BHO-x32: No Name → {669E08DA-2172-5F0B-4DEE-CFA670E3BC84} → No File
BHO-x32: SpeedBit Link Verification Helper → {D5974A72-C81C-4DC3-BE77-A8A7BBC8864E} → C:\Program Files (x86)\DAP\LinkVerifier.dll [2012-12-10] (Speedbit Ltd.)
Toolbar: HKU.DEFAULT → No Name - {414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} - No File
Toolbar: HKU.DEFAULT → No Name - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File
Toolbar: HKU.DEFAULT → No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKU\S-1-5-21-1124643268-3595298339-4084894015-1000 → No Name - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File
Toolbar: HKU\S-1-5-21-1124643268-3595298339-4084894015-1000 → No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKU\S-1-5-21-1124643268-3595298339-4084894015-1000 → No Name - {414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} - No File
DPF: HKLM-x32 {0E5F0222-96B9-11D3-8997-00104BD12D94} hxxp://www.pcpitstop.com/betapit/PCPitStop.CAB
FF Plugin-x32: @tools.google.com/Google Update;version=3 → C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-31] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 → C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-31] (Google Inc.)
FF Plugin HKU\S-1-5-21-1124643268-3595298339-4084894015-1000: @hola.org/vlc → C:\Users\CEP Local 440\AppData\Local\Hola\firefox_hola\app\vlc\npvlc. dll [2016-04-09] (Hola)
CHR HomePage: Default → hxxp://search.conduit.com/?ctid=CT3319613&octid=EB_ORIGINAL_CTID&SearchSourc e=55&CUI=&UM=4&UP=SP8759D25A-7352-4FC4-8764-92A112E26A02&SSPV=
CHR StartupUrls: Default → “hxxp://search.conduit.com/?ctid=CT3319613&octid=EB_ORIGINAL_CTID&SearchSourc e=55&CUI=&UM=4&UP=SP8759D25A-7352-4FC4-8764-92A112E26A02&SSPV=”
CHR DefaultSearchURL: Default → hxxps://search.yahoo.com/search?fr=chr-yo_gc&ei=utf-8&ilc=12&type=994519&p={searchTerms}
CHR DefaultSearchKeyword: Default → yahoo.com search
CHR DefaultSuggestURL: Default → hxxps://ff.search.yahoo.com/gossip?output=fxjson&command={searchTerms}
CHR Extension: (Download Accelerator Plus (DAP)) - C:\Users\CEP Local 440\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffdcfjdljhbehggjdkdioajnkn jcpbjb [2013-10-15] [UpdateUrl: hxxps://secure.speedbit.com/chrome/DAP/DAPChromeUpdate6.xml] <==== ATTENTION
CHR Extension: (Unlimited Free VPN - Hola) - C:\Users\CEP Local 440\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfb nlmeio [2016-11-17]
R2 hola_svc; C:\Program Files\Hola\app\hola_svc.exe [5622376 2016-11-02] (Hola Networks Ltd.) <==== ATTENTION
R2 hola_updater; C:\Program Files\Hola\app\hola_updater.exe [8104576 2015-11-01] (Hola Networks Ltd.) <==== ATTENTION
R2 kss; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan\kss.exe [1556448 2015-12-15] (AO Kaspersky Lab)
S3 VideoAcceleratorService; C:\Program Files (x86)\SpeedBit Video Accelerator\VideoAcceleratorService.exe [277744 2013-01-19] (SpeedBit Ltd.)
U3 idsvc; no ImagePath
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys
U3 wpcsvc; no ImagePath
DisableService: Garmin Device Interaction Service
DisableService: HP Support Assistant Service
DisableService: LightScribeService
DisableService: LiveUpdateSvc
DisableService: REALPLAYERUPDATESVC
DisableService: RealTimes Desktop Service
DisableService: VideoAcceleratorService
2016-11-18 15:56 - 2016-11-18 15:56 - 00127637 _____ C:\Users\CEP Local 440\Desktop\how to remove Heur_Exploit.Script.Generic - Yahoo Search Results.html
2016-11-18 15:56 - 2016-11-18 15:56 - 00000000 ____D C:\Users\CEP Local 440\Desktop\how to remove Heur_Exploit.Script.Generic - Yahoo Search Results_files
Reg: reg delete HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Pol icy\Local /f
Reg: reg add HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Pol icy\Local /f
RemoveProxy:
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: ipconfig /flushdns
CMD: netsh winsock reset catalog
CMD: netsh int ip reset c:\resetlog.txt
CMD: ipconfig /release
CMD: ipconfig /renew
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
EmptyTemp:
CMD: bitsadmin /reset /allusersComment
-
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.9 (09.30.2016)
Operating System: Windows 10 Home x64
Ran by CEP Local 440 (Administrator) on Fri 11/25/2016 at 18:39:02.35
Code:File System: 460 Successfully deleted: C:\ProgramData\productdata (Folder) Successfully deleted: C:\ProgramData\summersoft (Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{006360D4-7B30-4302-8A64-689114360E74} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{00995F39-F467-45E0-8C0C-ABFCC318E6DE} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{00D6A896-A5AA-491B-9261-37D6069F8222} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{014F4466-9B42-439C-AA37-05F4380C99CC} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{02978269-3B78-4680-B3A2-A0ADAEFF6FC3} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{02D32D34-65D8-46D0-B433-EC27D0D09413} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{0330DDC3-55FB-4201-BAE6-1E8C7E9254E3} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{038F3B82-39D4-42DC-BAE0-D4E2AF3BDBF8} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{03FFC050-1CFD-4066-9C88-461DFE700C2A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{0416E773-9DF0-4A24-8785-4E2537341815} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{04F0FBE4-7106-485D-B378-26AFF7CF8E94} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{0509440F-C440-4972-90B3-AB50532D2977} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{05555802-8A6A-4C0F-BC4B-045B7BA960CE} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{0746FCD5-AF7B-46B4-8C8F-67084DB774AB} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{07587072-3CD2-46A3-8603-C4E0F1C3B5D3} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{0782B8CB-081F-425F-8785-D376AC00BE81} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{078340B0-DB41-4543-B3DA-C5DBFF6A165E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{07F11872-F79C-481B-8461-2775B9D88D15} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{08410433-1D94-4D83-8902-2B76377C069F} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{08CBA682-DD37-4B34-8B9F-B984C467324F} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{0A21E535-0A2E-4CB3-98F9-A7BFF44CA58E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{0A6149F0-53C0-4F5C-8843-E83526DBF8BB} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{0AAC338B-2B02-46BC-AD8B-C18F362C0483} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{0B7BECDB-D24C-46BA-BDDF-BD8811ED6CD4} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{0BF4BCC7-5B6C-4A0F-857D-5DF70D464932} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{0C51FD10-5FFF-4EBD-A211-2F7EBDD3AED3} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{0CB91138-BF64-4DF4-BD96-9B292899A5D3} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{0DBEC32C-697C-4141-9D63-477883B7E02D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{0E9AE59A-2B26-43FC-AE62-A0F640AB8181} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{0EA6CD45-6D64-40E5-AC05-EDFBC2FC053D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{0F7075AF-8581-4217-B31B-21BEBDC4FA5E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{0FA8C64D-DF7C-4C3E-A7D7-C5B2C1F0FF0C} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{0FF44157-2F89-4595-BDE6-4D700E0302E5} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{11D889C6-14EF-4D7B-9872-FECDAD631AFE} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{124E60ED-DA10-467A-BA8D-D6F5D23E9726} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{12CDEF89-4C14-4547-BBC8-8DE28AFD9C3E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{13B94732-40B3-496C-B115-995F97BE2D57} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{144C4E1E-81DE-4300-8138-E01DD6137B0C} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{159249B3-2D91-4B33-B5A5-20CEDC680A87} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{159CA7B3-E209-49CF-9C27-6D1ED4EECC25} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{1618560E-119F-4642-9B92-6149DA321469} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{16370CE0-521B-4598-BFBA-9A82A0DF2E42} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{1637CA33-155C-452C-943F-304DE34825D8} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{16550FEA-D489-4BA4-9CBE-78D3F46367BF} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{16841D87-00DB-4876-AB88-DA5553197202} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{18321F73-F897-4BB9-B81D-B45D69C3F2F1} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{19CCAF12-F786-49EB-9E37-199562F0E5D8} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{1D0755FE-4F49-4C40-B7A2-585BF1F8F288} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{1D30764B-5F5D-4433-BDA2-C310FA79F773} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{1D585BF9-D901-4F6F-B5D4-3DB1B42DBC15} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{1DBBA1D0-0D27-4FDE-A21B-F9611DB91266} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{1E01DC25-CA68-4902-9FB7-B13E680A194B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{1F0A1726-36E8-4580-A883-42DDCD58F9CD} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{1FDBCF5E-C84A-4953-9D4D-B2BDBDC5C41F} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{22983AE9-FF23-4C59-B8A7-DDDD1AF5B059} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{22AF39F4-8729-4732-8426-3EA82767B596} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{231A1086-8113-4BF8-AAC9-27E0C62A671A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{23B40845-2DAD-49FC-9EBE-398885963579} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{243D156B-6C9C-44DC-8961-28D9A6D3E2B6} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{245484DF-F112-4051-B353-0F4EE6F57EB0} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{24B819AE-9D37-4AD0-8674-81DAF22CA396} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{24E16FC6-136F-4B52-816F-2B4F96DAEAA0} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{2534971A-B4CE-4D9A-83F5-9F81D88F25E2} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{25AB633D-66D1-4553-B92F-EA67D1B0435E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{2662CFF6-FD63-4497-AF1E-3B80453B3792} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{274483F7-CE91-4772-B3A5-0A9132F4476E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{2782D002-6332-4A81-9C31-C7DDBCB31666} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{29A52CFE-63AA-4270-BB47-8DD002F33AB3} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{2A279832-7BE9-4434-9DBC-A2B8B8335F8C} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{2A2F2BDB-0937-4F45-8762-2CAABFFFEAAD} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{2A595CCB-8555-41EA-BE27-8A2267E725A6} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{2BE9E58D-2F39-43BB-83C5-D30831A0CB17} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{2C7F5FD9-1941-468A-BAA8-94A105EFC6F1} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{2D89333C-2587-4EC4-BAA4-01E9F73B1C78} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{2DB48D68-340D-414C-A71A-D0CA46C70B1E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{2E0175E6-1F83-4DAB-A379-F5BC4B453993} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{2E740583-D36F-42BF-A63E-E9C4775DBFB4} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{3148FD90-26B3-4F4B-B9BD-8BB6460C36CF} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{3196BD77-D784-4173-A1DD-ABA6BD031F68} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{3461B5A0-C074-4F84-A701-005C160780DD} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{34C09614-18C4-4CB0-979F-DA366B2588CC} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{34DCFA88-A9EB-4F4D-A154-559F24CC08B2} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{37D5731B-0695-4F38-B06D-281AF864039F} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{382CF111-BE8D-4279-AAD9-E9BD8EBAD672} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{3882FA35-9B74-42AB-899F-098D528638E1} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{393D4D9F-4F57-4B01-8898-8F424BCF9C63} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{396F862E-E762-4586-B211-31528C6A30CC} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{3998C138-FA68-4DA1-A8F4-04F1B8CE950B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{3A447AB0-B99A-4726-81FF-0C15E5949F50} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{3A839B51-826D-4FF4-B671-9646D7FEB017} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{3AECF1F3-14B2-419C-8630-8B57540B1F4E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{3BF7C1FB-0386-4BD0-B37B-339069A8ECB1} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{3CD00AA1-D746-4F57-AB5E-6294BC7F4F84} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{3D6C47B5-9E07-4F33-8CFF-84BEF750342A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{3FD5C692-EE9B-4130-A3A8-3D7CF15B6D2A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{3FFD0927-D80B-4D90-B8F3-48558CD141EE} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{407BC6F0-2417-4288-A1EE-74CE20FBEDA2} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{40E6CD72-3DAC-4334-9AAA-5C604BA0F815} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{40FAE198-26E5-4E10-9F18-7A6CB34F9BCA} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{4302C915-2A9A-438B-8A35-7D2B0D8F9F06} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{43629EF0-DB28-49E3-8D9A-96B5E5811743} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{44391A83-BB4C-4C0F-B7F1-284C68E6D2FC} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{44B2FA27-6A78-4703-A285-4BE75E05C6DC} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{44CD924B-5C2B-4DC2-A5D6-297877C2A7E7} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{459D3557-FD48-413B-B3EA-98AF75679431} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{46124187-9F45-47AF-B7FC-865B266A75B0} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{46486314-C6D4-4C6A-8FD8-C25B67451A14} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{46716085-60C2-4AAD-94E3-8A773266322E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{4750A061-858F-4A9F-9C42-3697E43A76F6} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{475C7784-7B98-4CA8-9713-1391A9496D9D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{4813C494-F2B0-418E-BE58-88F0A065FDB1} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{4958562C-8F44-4B91-AEC7-DB18771B49EE} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{4AA5E3F8-08F9-4F49-AA12-E06FC2A4EF45} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{4B925652-BD35-4D51-BA9F-0CF9A0F6AD65} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{4CECD901-403A-4623-A40C-71FE52C7A355} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{4D54B9CF-1621-4871-921B-360F39CA64AA} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{4D5F12DA-39F3-4A99-9FC6-7D45CE418792} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{4D7C6703-818D-4305-A07D-B8D51603535A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{4EC09B43-2078-4C26-8448-D5F0D7B2BE47} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{4F16ED89-49CD-40CA-98F8-42AA3B53107B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{4FF99861-4084-463D-A3DC-812CB238DE14} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{50734E75-4BD8-4529-955F-0BD009973EE5} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{50C949CD-19E8-4B9A-AD16-B551B9322008} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{513C0CEE-5DA0-4FE4-A672-603ABE8F712C} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{51EA5D8E-E299-43AB-9B81-D66480B9310F} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{52254924-31DA-4712-A2EC-82776A7516F8} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{52D3ED70-5989-4DE4-AB9E-150AE3119293} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{5307879E-92C8-4DD4-892A-53F1A57084FC} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{533113A1-186D-4B8C-8278-66BB81923154} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{53646E6A-566C-4EA1-A523-FC421FD509E1} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{5390FAA9-6916-42EE-B684-2210BCCAF3F6} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{53F8558A-F16C-4533-B640-16ACA227D2C1} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{53F8B303-39C4-4FA1-B8A4-E7E35EF7CAA0} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{54063299-87E0-487A-8021-5572A7356A45} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{54358441-58E2-4731-A70C-661010910568} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{55024FD2-E7EA-4843-9E3D-E4BDABD745C3} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{5504FE2A-DCCE-45F2-8311-3F91406A765D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{5551C541-AF1F-4AB3-B939-46739A76116D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{55A832C5-1734-452E-A6B7-8A259A9C619F} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{55B43508-FE5B-4117-8DD6-5234F3F41191} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{56178712-7B65-40D7-9B3E-88B8EBAA339B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{573832CB-406C-4672-A39D-539385CD478F} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{57448A8C-632D-44D5-99BB-868A6E55AB21} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{57EFD6AE-EADE-49B1-8E92-89EFC24D1D3E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{581447FE-96C5-48CD-8815-240AB1E07AE4} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{589B8AE0-A6D0-491F-A60C-8AEBDB9A4645} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{5922F4AB-6D99-47F9-AB40-43B24850E160} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{59D47A37-3102-421F-91D7-B1654FF1C9D8} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{5AD3F259-89F2-4C30-B669-0A69FFCE764B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{5D2307D3-C753-4DA1-8845-2063E8791899} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{5D349FA1-7463-4950-92BA-7BAC7BB9FD6D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{5D512D1B-F7BC-49D2-8AF4-F1C508E8E9BD} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{5D70BD21-7DFF-4B6A-BCDE-FC5522ED3AF8} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{5DE45B73-24C0-45B2-A5C0-BBDD8E877626} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{5E94D057-B28C-4671-8F1F-C3194976390D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{5ED21EF2-B371-4D6A-A5EB-94863602A81F} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{5EEB9978-6239-495F-979B-4A1CBF9A73D2} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{60627DE6-9014-4E14-928E-8F1C42E00211} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{61AEA703-B41A-4DBA-B008-A9A025C17C7D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{61D7170E-5B33-4DA1-9F3B-B03409E1770A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{637D1E2B-2622-494B-8406-C4D0172BAF6B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{64146F70-BEA8-4CC2-A4FF-C27409F5DA0B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{6443AA5C-9FFF-4C6A-9FFD-91955411173F} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{64BFCD64-3D46-4696-8552-160B0539BC24} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{64EFAE2A-BF74-4A91-B558-5107A39FB024} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{6628061B-7267-41F5-B68C-8F04B0C18374} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{66712F7C-3D67-4E5B-84CD-CFE438796513} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{66C79AC5-E4B5-4A52-81C1-A643EE7FC946} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{6704F5E3-48C2-49F2-AB9E-35C8D1D21C43} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{67489355-2B87-43F4-94CF-40F2A7704956} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{677D970A-F11D-4301-BADB-1D5E35807FB8} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{67E25ACA-8A7B-45BC-BCC2-1D7677056704} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{69376B34-F4E3-4E03-9798-5441579F5D13} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{69B4A426-6043-4BE3-88E4-2BAD65F35A01} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{69B4E11F-3DEE-4BF8-BECA-EBDF238500D7} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{6A152016-15C6-49AF-B694-96320FBD68EF} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{6B4642E3-AB98-457A-A0E6-7AC7A8EB8CE8} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{6DDB55A4-B755-483D-86FC-A87141F6FE97} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{6ED0D4BF-9D32-4829-BDFB-E31B153992D2} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{6ED8FCBB-A025-4E8C-AE62-E3828572CE5F} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{7025D54D-3F6F-490A-A2DA-289D99F56028} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{706698A9-AD42-403A-B5A9-DC0922BE4F66} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{71D9F3C4-F7A9-4B52-A27C-E42D00B58828} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{720BC64B-FAC2-4270-A599-C5481E791740} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{7234DE6F-6CBF-4488-A182-351EEA25C16A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{7279AD57-FC95-41DD-8A24-906584D867B1} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{7319FDF5-FCE3-4094-AA9B-0738697BE26D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{73AB0C4B-F6DE-4C31-87E1-5BD7EEEF5836} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{73B502D5-752B-481D-BA2A-D6D739A2453E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{75716E5B-2DAB-445D-83F4-5E4B9AE7CF2B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{763CF964-F72E-4AE4-9285-FE8C1AAF994A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{76AEC21D-F5AD-4ABC-B2FA-30810D648B47} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{771D6BBF-4FFA-47E0-A352-16B0A1CA1EB3} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{77463438-9094-467E-AF17-8ED37A5DAEA3} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{777C0371-7FF8-489D-BD85-BC79B6494283} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{7783320A-2769-44FD-A41F-2D37FEA5A919} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{7899DFFC-0FF6-4035-85B8-9808738D2A81} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{797DC908-E740-4FBD-9B0A-6928E449A368} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{79DAF267-65E8-4765-BB54-E39F8EE614DF} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{7A209667-35A3-43DA-8155-F3B75A605968} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{7A8B9D54-AF9A-4D94-B06F-025CD8553938} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{7AE7F9AA-B54D-4453-BCB2-1E0800B9B0EC} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{7B138763-D55B-4857-9EAB-1D1EF18B46AE} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{7C779BC4-A9E3-4FAE-B82A-F726318BC23A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{7C8D1470-10A6-448B-9F44-B819359E5010} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{7CF2782B-18AD-4C19-8707-752B6CDFC1B4} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{7D6DCADD-3FF6-4960-B449-90A9722300AC} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{7DB6DB79-38B4-4FDF-AB55-E3A4B24B6083} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{7E0B23BD-9936-488C-B790-28A23CE0B4AD} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{7E25EE8E-91A0-4CEF-9251-59FCF92A96AF} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{7FBF2D36-0E6D-46E1-AD0B-7BF05717C80D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{802487DB-0945-4B95-BBE1-82708B759AD5} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{80CF9572-2924-4E17-BBB9-F56A698D002C} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{816D04A7-A5F6-49B2-986F-F711FFEB0DAD} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{822E82B3-6C18-4521-B0C5-6C9040A476B2} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{8231C398-7DE8-4515-9825-A1EE69FC8E2D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{830B6B6D-C0F6-41B5-910F-1E14E3ECBE08} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{8326BA73-5868-4766-9CEE-445EC846E02C} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{832DAC67-8404-4503-B66C-7002E632974D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{837C1684-8F25-4562-B5E7-8ED257D4C279} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{84C26124-B8F9-4773-B39C-5A13F5FB39E0} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{855BD5F0-E3D2-4E76-BAB1-D47678B22C4B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{86DDA5A3-8084-4852-BAE5-FBB0746F418C} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{87345E93-0C82-4572-8B93-ACFF7BA0138A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{879FC8D3-D84F-4639-8ECF-2436C90FB571} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{87CCE483-8FBF-42D0-B8BE-2961F6748C06} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{87DBBB51-1DED-41E1-894E-8FD226A98FE8} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{885DF63D-D8FD-4E17-A62F-9430C19F70E6} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{8897A02E-AA28-4715-A2AC-2590886741E4} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{88FA6934-BB01-4DC9-91CD-F79E16A95C17} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{893715AC-2EBB-40D9-BC17-3BC93E2E341F} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{897B8089-208D-4FA1-A20A-D7F3FA7117F1} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{899B2511-CACD-4BBD-856C-181940648116} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{89C71063-5CED-4BF8-BF4F-1DEBA597F1A2} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{8BE8B401-6ABF-4FF9-8C70-4B9455D330FF} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{8D7716F5-8A1B-4ADD-863C-2C98D7158419} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{8DD5EB24-7AAD-4E78-983D-CE21547BF80B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{8DF9314C-AE95-4505-A0C4-2E5F81974ADB} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{8E745FAC-0B23-4C27-B996-B71EEE94401F} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{8F3579FB-C6E0-4FE9-9E83-78018CC3D9D1} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{8F3FFB4A-F937-46D4-A71F-98CBD980E945} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{8F9B478D-1395-46B0-889E-72319AC4D7A4} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{8FA43657-2479-4BC9-AD07-15C82D8FA577} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{8FBC18DE-CEAA-48EF-9F0F-7EB26F4F456A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{90667773-69E1-42EB-BDBD-7C1103591575} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{90A5C3C3-C150-421F-BD18-6098679401BB} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{911CD826-9A15-4732-9709-6DD8193A7B70} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{914AB4D8-42BD-4986-B314-E8D8E2A84DDD} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{91BD90E1-28AC-4030-BF14-BC31695D4D3A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{91E2C2FE-490B-4D07-BF4B-FACB8B2C24CC} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{92026B7E-02B0-4F4C-AF18-E09EDD9BAE79} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{92CA6C88-1D72-46CD-82AF-76725CB179A4} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{92DD5198-0CE8-4259-9B84-8858D304DB70} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{95EC3FAA-F176-4A6B-ACBE-0EC5412D43B1} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{9661A886-7DDF-476C-B37A-12272A704C45} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{96E50753-C132-4172-AD0C-D7D3A3A9D541} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{97106DEC-E982-4A75-993C-A1EF81AB9AAF} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{971B9F94-4FDD-4BFE-B812-D643E370D41C} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{97C5A9BD-869C-4F3B-A700-C4D83A13EB33} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{98375469-37C2-4562-A402-ADCAB8A0F215} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{983EFCAE-9AAE-4FDC-9240-E108B65998D6} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{99A99929-867C-400A-AA5A-286CB8E35642} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{9B791B02-9ED3-4830-B4CB-573B1760D89C} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{9CB78753-22D8-4317-8EF2-4A5DDC6188E4} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{9D0C189C-3EB5-4CD0-8C11-0CE6C7664E1E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{9D9E94E9-C3AF-4AEB-B75A-2FE49D54077D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{9E64D884-DAC0-4199-ACB4-34464525731B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{9E798800-E4AA-4E7B-9B3A-F25397183F4B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{9ECC7D67-CAB8-4AC9-B303-E7D202B39B00} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{9ED9A8EF-5CAA-4824-A8AE-9CCC36D877DD} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{9F2FDA99-4D6B-4168-9ADE-06CDC7DFA229} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{9F5C0240-A336-4A26-81A9-B80E0BE88F3C} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{A011AC87-394E-45C9-8274-645407C47164} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{A06C38E5-5B15-4264-9173-2032E918625B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{A0B6461F-1606-400F-94F6-2A46AED3ED31} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{A1D53A74-D596-426A-94E2-57B6D782BFFB} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{A2621842-D52D-4B58-AE83-EAFDCD7ED0A0} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{A28509DA-1EA1-4405-8B0A-46C03ACB5649} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{A32A3356-DA3B-4D85-967A-1B6DA660F86B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{A3303814-8E4E-4BE0-92DC-F1A54F3260CF} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{A40E10F3-E6DF-4A01-8415-A303A2AFEC28} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{A4889032-2ADD-4328-9F1C-F790814331AE} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{A4C8B1DD-0FD4-451E-9CC9-8C9306A5615D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{A540FE0C-B037-45DF-BF58-52B0F5682410} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{A5922A06-4E9C-48CC-861B-8D23B6F33C69} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{A5B7CE77-5CA0-436B-BA2F-DB58A78D8E86} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{A6F76D61-1FED-49E7-8104-10C49EB42665} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{A7B9C09B-C01C-4663-BB21-D8ED6598DB88} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{A8281C98-6CF9-4418-B513-856F2F4D0822} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{A8931E94-5B0F-464F-B443-B77473FD924A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{AA73B903-97C7-4A6D-BC25-2E4BE11FF510} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{AC381A1C-BF6B-40A5-BD8A-D8BFBB9D3D17} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{ACAE53C7-CF07-4700-ADCA-281DC4432612} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{ACF55EB6-710B-4CC9-B347-2FCA8DCF1B6D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{AD3F4C32-9E40-43C7-97E8-B67BF83AAFCB} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{AE17F391-7CE9-41AD-95A2-69A34D59ADF7} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{AED96AE8-64CD-4618-BA7D-50C0B5BA8C27} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{AEFFB96F-A733-47E8-8487-1CC358C33462} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{AF75DB4F-C917-4859-A454-D5B6BBF1C76B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{B04B43BE-5118-4E29-ABB8-FA1224DA3450} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{B08D7DB4-1F04-485B-B59D-E53CBAA81D41} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{B0BE5CBD-06FA-4AC9-AFAB-7F71A5546A16} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{B1BB4F9F-93A3-400E-986D-989CDF659B69} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{B2B6558C-486B-44D7-AE00-B7CC02637AED} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{B399BB2A-8AE3-472D-9DB3-C76CAB8E8A13} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{B3C4C8FF-90DA-4E9E-8324-27C5B504213D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{B4CC056A-35A9-4556-80BD-C14DDDCD9479} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{B510A51A-544E-4A1B-B54B-674609F5C311} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{B6037E27-2E83-4C84-9EF6-33A5057158D3} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{B640FBA4-D577-47FB-B8C6-9AABB9CD5744} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{B8174162-81D9-43CD-8AD8-70FA69AC1AC6} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{B891FAF0-3BE5-4250-B5FD-45B3FB4E619B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{B89B03EE-3842-44CF-B6E1-D4D37AE01FE4} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{B94000FF-0FFC-4184-AD39-ED640E628D8E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{B9516AAB-6DEF-48C0-A4C6-AD41FFE68A75} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{BA320FA2-E56C-4C1F-B0B4-5D6E5EE08C71} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{BA4CFE28-B4D7-40EB-81F2-2B221EC527D5} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{BAF52611-2F98-4C55-98A4-79ED399858FD} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{BB0ADD91-3CD8-451E-9519-49D581CA12BC} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{BB17D2F3-C1EC-4611-9C84-F48152DF9A04} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{BB232760-7E16-4BB8-B8CC-86A062411F3B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{BC0A69B7-2998-455A-910B-DC3B6B56A24A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{BC724D9A-4AB1-4801-A8EA-7080DD29C38A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{BDE67D36-CB2B-4435-B328-D68ED7B47B0C} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{BE4735E3-B7DB-42BB-93F6-FE481149DDDB} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{BE476DC7-EEBC-4611-B5E8-767E94A40124} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{BEABD265-06AF-42BC-9C7D-AB6251455818} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{BFA9C784-FDF0-45F7-9593-9C9AB0165B70} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{C011C334-F796-4A2A-9C6D-8B9F2BD221F8} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{C0A6908B-0D4A-40A6-BF05-DDBFC0297903} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{C173780A-A2D4-4454-A788-B57AE1D754F4} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{C2E610CF-D4A8-4E95-95BC-6F32613BB66A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{C38C0512-A7DD-4C6D-AB5D-B7F7E3567D51} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{C49FA41F-86B3-4B61-981B-A946A72D0BA5} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{C5844DBB-5557-4F13-A424-F0C7414F79C7} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{C5C9A193-D069-4B15-93D7-FCC068D57B3D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{C6DA44F6-3009-41BA-942D-E23C3BD91606} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{C7CA3A21-C1A7-4A2D-A52B-3D1ECC10976F} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{C7FF1686-EFD6-49DA-9595-B28B0FD6DE95} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{C8A5CFAB-C2B9-49C7-9A7A-4094ADFEE3A4} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{C92E7EC0-7322-40F0-8830-2A248776C76D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{C970E2AC-0A89-4075-BC0E-33F5ED20BDA9} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{CAA1E52A-2A7C-4635-8771-260AA4273550} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{CC2F26C6-8573-4410-AF0D-93717FB527B1} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{CC6361F0-8FD0-4F82-9E5E-1B6530631619} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{CCE73E2C-1D0D-41DB-A1E9-E97D96DBBBA4} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{CD156AA2-3028-44C6-8B74-6075203B1992} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{CE700470-4503-4690-AAAE-AA86B6A0E30F} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{CE971598-DE78-430D-AB79-4DB83412282D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{CEC69190-2224-4834-AB40-8EA5375E787E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D01C099E-587E-4B7E-8400-1364BA9AD021} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D0B34398-CA79-47AB-BD08-18B59F6D6418} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D11B9659-80F6-4DC6-BDF4-F8D9CE08D6C1} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D17D0456-8882-4DFF-A22E-3C04CB7EF49E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D196E3A9-C58A-42C7-8447-B8D49EE5CE2C} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D200808F-C22B-4A70-91CE-DB0A47B6C28E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D2CD7F0D-0B40-4CCE-ACCC-BA588170E453} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D3FCA6A1-658C-4D06-AB66-A6CA79ED4DB6} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D4023C39-2D17-4ADD-9238-A1C307AC803F} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D518D2B1-CCC5-406F-A3A2-36CF13CB34B7} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D551917F-5F18-4EB1-9B89-7B0258D4EF61} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D58772AB-AF54-4178-857C-3C454BAFA263} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D5D5097C-6976-476C-864B-C3DF624E2A7E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D601C4FF-B354-420F-9BE4-B9464F5BBA9E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D7883362-1157-4658-BF25-6D5F9EDD1F8A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D7E136E7-D4CA-41C6-84C4-617FAB2945AA} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D87118C5-E249-4311-9AB6-135B2F95ECC9} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D8D49B5B-6E0A-4EB7-B10F-A6723737996D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D91D7A8C-1A45-4A5A-AE3C-99950D15E616} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{D9B1D95F-4716-4B8A-93A1-1529FD7580BC} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{DA19BF8D-0692-42F9-BECE-F46337310F31} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{DA3A870D-55D4-4829-A2DC-D2BCE9C61CBB} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{DAD6F5A3-2B88-4E8D-8C83-FD71D8854E35} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{DB80A995-9105-47BD-A3A5-4B15A5E26C57} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{DC3458A4-6331-4F97-B84E-01DD89ABF249} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{DD09624B-842F-4675-952E-7473B6D6AF89} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{DE17D974-3E13-45CE-9B86-7F29D24D7FFC} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{DE499C0F-5792-46B0-97B1-E1DAF645F970} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{DEC4C7FC-959B-4EF8-847E-EB874404B5C5} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{DEF0B53E-5DF1-404A-B867-B9AED9624ECB} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{DF365347-22F9-42F4-A73D-88B3BA7F54DB} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{DF912A0D-8E66-41D0-9EE2-67B545366380} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{DFC6DFD1-764F-4D9C-A199-3C3085048F5A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{DFF406CD-913B-4A77-85B9-8EE7A83C2389} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E03DA7DB-F1B6-43CD-9A04-8B6BF5063F1F} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E0DF07C0-A779-49D0-82E3-4CF9FFFA4C27} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E0F967BE-A858-4018-A3CC-BBD614DD86D1} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E139C50A-D11E-4316-9D64-2B16AB09B13C} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E14F9A6A-A72A-465A-9A39-37777442D137} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E1B18075-2E67-43FD-AB09-433E5A42DC8B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E1CC812F-B0EB-45ED-9C28-B272E7260634} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E263E70F-95B2-4EAB-9903-535D9970E9F5} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E291C469-F1A4-41B0-A8E2-257B02849521} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E37AB519-EA39-4A38-B35C-D1FDCCE9CD81} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E3FCED5E-D602-4F41-A965-35355A005031} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E448815E-38C4-4F19-879C-D533D870EE81} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E4B853ED-FA9A-4FCD-A111-0A039908F4F6} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E54BBF4D-9076-4993-9C94-3A7943DA08C0} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E59F8B7D-4AE3-49A7-B910-A65738B58D23} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E66524C7-9BF6-41D4-8704-F8BC14A9487D} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E718C30B-C34A-4305-BA02-B0D576B36A31} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E774319A-0FFA-486C-902A-07EE04EF26CC} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E80BC386-62EE-4848-A270-ED1B52144893} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E8671B1D-EAE6-4CCD-8F43-94F22288CE4E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E8A6386B-8DF8-44F7-AB9B-8F3E8B6BE5C0} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E8BFD33C-A2FC-4025-BBFE-ADD04A519EBE} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E9210A86-FE34-448C-AB22-B6679ED2223A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{E9CB0749-67B0-4C10-A71F-968836882070} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{EA32670C-4514-48D7-91E8-7EB1100C8E13} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{EA7BED6F-8A0A-458C-9CC3-4DD7A0DCF523} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{EA824177-39B3-4635-BC44-9729C58D0D02} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{EA83F1FE-D89C-4272-BA0C-77C0CE63998A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{EA92F64B-F152-4A90-BAB9-79083A911AC3} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{EAEE8A74-0AA1-42A0-A6EB-40595228FFA7} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{EAF4D9EE-0236-4A1B-A2CF-C3E5529D44BF} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{EB71E776-4042-4FB8-AB81-9BEDFA388980} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{EB8A9DEC-7C14-4097-8178-605F0EE35BB2} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{EC3F090F-38B2-4D4D-81B9-97A3FB25FE56} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{EC42A61E-B5F8-4AE4-B4EF-599F53841086} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{EC9390ED-168E-4462-A17B-09419F1B8F1E} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{ECA23401-C41E-4342-82E9-E6DDEC6F77E9} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{ED7DCBAC-9B76-4D30-9E14-F8BD935F68B2} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{EDBD3FD0-8300-42FD-97F7-2B9661AFEB5A} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{EEF3643A-56C2-43EC-B9CD-3333C2235A69} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{EF239F58-20D7-41A2-BFDF-6C31F87473D3} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{F014B8B7-13C8-490C-ACEA-AE2B5B5921CE} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{F0382C5F-F5BC-41AB-AFDB-1E8351CE3CAD} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{F067A042-6ED8-4B55-BC35-26F899C40677} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{F172B2F9-810F-42BA-90A3-215284458243} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{F2916A98-4CA2-486B-89C9-E92ABEFDAC14} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{F29F8D0B-F8E7-4826-BF79-F3A29D3AC8E9} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{F30457CA-5761-46DA-9758-B1B81F6B4BEA} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{F41043DE-EFB4-47AE-AF39-F25B1FCD1588} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{F41504CD-71AA-4ED4-B3B1-9FF843833E25} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{F417820C-7F5F-4367-B7F3-C8D5A41B1EDC} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{F46017D7-7AD9-47DF-96F8-BF80344EA5ED} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{F494421D-8AE6-4192-96C4-41B448B924BA} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{F7DF9809-72A8-45BE-980B-C7E11F398E16} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{F7F6E87F-2924-4439-97DB-7266D703E71B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{FA37D053-F13D-42AD-8735-4F95E2B862BB} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{FA56B72C-CB2A-405C-B6A9-304B482328BB} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{FC3322F9-5025-470E-BFF7-13E0CCB1689F} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{FC568E9A-C7D0-4BDE-B034-5FB33B840CF6} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{FC770BFE-9BA5-4CD7-8910-960D566F0BEF} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{FC94EB38-97E3-4244-B8BA-B805C5783209} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{FD280336-9A92-4C45-8141-8534C1900A5B} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{FDB7A654-4F67-4E6E-8392-437EAA0E7497} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{FEB52D7C-5610-49C8-A1D4-D7CA17BA0F51} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{FED1D460-4B9A-4837-ACC7-61557F14D353} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{FF944DFF-E3C7-48B7-A07E-9277BA5500F6} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{FFA5F919-8937-411C-ADD5-7D4A2064AD36} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\{FFF6F1D4-48C4-4FB4-900C-C78B2B1F6486} (Empty Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\cre (Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio (Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\gkojfkhlekighikafcpjkiklfbnlmeio (Folder) Successfully deleted: C:\Users\CEP Local 440\Appdata\LocalLow\televisionfanaticei (Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Roaming\nico mak computing (Folder) Successfully deleted: C:\Users\CEP Local 440\AppData\Roaming\productdata (Folder) Registry: 0
End of JRT logComment
-
I still have an issue with a site poping up trying to direct me to a repair site.
I will continue with your suggestions.
ThanksComment
-
Originally posted by Chicken BreederHopefully this is what you requested;
The FRST file and fixlist need to be on your desktop.
Comment
-
9-Lab Scan.
[ul]
[li]Download 9-Lab Removal Tool. [/li][li]CLICK HERE to determine whether you’re running 32-bit or 64-bit for Windows.[/li][li]Install the program onto your computer, then right click the icon run as administrator.[/li][li]Update the program and then run a full scan![/li][li]Make sure the program updates, might be better to install it update reboot and check for updates again.[/li][li]You need to make sure the database updates!!![/li][li]Upon Scan Completion Click on Show Results.[/li][li]Then Click On Clean [/li][li]Then Click on Save Log.[/li][li]Save it to your desktop, copy and paste the contents of the log here in your next reply.[/li][/ul]Comment
-
[HEADING=1]Fix result of Farbar Recovery Scan Toolhttps://cdncache-a.akamaihd.net/items/it/img/arrow-10x10.png (x64) Version: 23-11-2016
Ran by CEP Local 440 (25-11-2016 20:00:35) Run:3
Running from C:\Users\CEP Local 440\Desktop
Loaded Profiles: CEP Local 440 (Available Profiles: CEP Local 440 & DefaultAppPool)
Boot Mode: Normal[/HEADING]
fixlist content:
CreateRestorePoint:
Task: {0DAC725D-0371-4133-8AF6-D148198B0D4A} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [2016-04-08] ()
Task: {105CBCC4-5BD4-47EC-919F-698174BE6C5E} - System32\Tasks\SBWUpdateTask_Logon_d4e02148-1C659D0430C4 => C:\Program Files (x86)\Common Files\Speedbit\SbUpdate\SBUpdate.exe [2013-01-19] (Speedbit Ltd.) <==== ATTENTION
C:\Program Files (x86)\Common Files\Speedbit
C:\ProgramData\Premium\VaudiX\VaudiX.exe
C:\ProgramData\Premium
HKLM...\Run: [hola] => C:\Program Files\Hola\app\hola.exe [2166376 2016-11-02] (Hola Networks Ltd.) <===== ATTENTION
C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll
C:\Program Files (x86)\Kaspersky Lab
C: WINDOWShttps://cdncache-a.akamaihd.net/items/it/img/arrow-10x10.png\System32\Tasks\Uninstaller_SkipUac_CEP_L ocal_440
C:\WINDOWS\Tasks\Uninstaller_SkipUac_CEP_Local_440 .job
C:\ProgramData{FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
C:\WINDOWS\System32\Tasks\ASC9_SkipUac_CEP Local 440
C:\WINDOWS\Tasks\ASC9_SkipUac_CEP Local 440.job
C:\WINDOWS\Tasks\VaudiXUpdaterTask{8641A371-5391-4413-ADCA-0BED20AE0CE5}.job
C:\ProgramData{d36dd326-7280-11d8-97c8-000129760cbe}.log
C:\ProgramData{CB099890-1D5F-11D5-9EA9-0050BAE317E1}.log
C:\ProgramData{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
C:\ProgramData{9867824A-C86D-4A83-8F3C-E7A86BE0AFD3}.log
C:\ProgramData{4FC670EB-5F02-4B07-90DB-022B86BFEFD0}.log
C:\ProgramData{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
C:\ProgramData{23F3DA62-2D9E-4A69-B8D5-BE8E9E148092}.log
C:\ProgramData{051B9612-4D82-42AC-8C63-CD2DCEDC1CB3}.log
C:\ProgramData{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}.log
FirewallRules: [{1F11BD5D-9CDA-4136-BB17-11759FEB6D09}] => (Allow) C:\Users\CEP Local 440\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{DA625BC8-20DA-4F96-B47A-3616BB97937C}] => (Allow) C:\Users\CEP Local 440\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{8C644734-5475-4DA6-B672-08496CD515EA}] => (Allow) C:\Users\CEP Local 440\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{6C306E7E-FA6E-4246-91D6-00F5ED2544EC}] => (Allow) C:\Users\CEP Local 440\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{7593305D-BBBF-4CCE-926B-B048B7563B94}] => (Allow) C:\Users\CEP Local 440\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{2D6CE001-C5BD-4ED4-9DD1-E5AE42D4EFB3}] => (Allow) C:\Users\CEP Local 440\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{CF80B1C2-A556-4548-981C-06CBE3BB5EAF}] => (Allow) C:\Program Files (x86)\Vuze\Azureus.exe
FirewallRules: [{4860E4E0-5D78-4517-A910-FAB62566D6FA}] => (Allow) C:\Program Files (x86)\Vuze\Azureus.exe
FirewallRules: [{CBDE96F0-6E14-4BF7-AFC6-241703E7FC90}] => (Allow) C:\Program Files (x86)\Vuze\Azureus.exe
FirewallRules: [{E8F72EA0-BA09-4CBA-9F61-538AA9DBD4B9}] => (Allow) C:\Program Files (x86)\Vuze\Azureus.exe
HKLM-x32...\Run: [TkBellExe] => C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe [293768 2016-07-16] (RealNetworks, Inc.)
Task: {1BC14874-2285-41BC-9C22-9381D778C8C7} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2016-05-13] (RealNetworks, Inc.)
Task: {24FF0670-A2EE-4FE7-9ADC-55ECDCC4A9E1} - System32\Tasks\SBWUpdateTask_Time_d4e02148-1C659D0430C4 => C:\Program Files (x86)\Common Files\Speedbit\SbUpdate\SBUpdate.exe [2013-01-19] (Speedbit Ltd.) <==== ATTENTION
Task: {25554AD1-5548-49F0-8550-EC465DD19366} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent → No File <==== ATTENTION
Task: {27A76811-8CAB-4FB0-8E58-AE2F14D3523B} - System32\Tasks\RealDownloaderRealUpgradeScheduledT askS-1-5-21-1124643268-3595298339-4084894015-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe [2016-05-13] (RealNetworks, Inc.)
Task: {2D23301A-268D-4133-A615-B5D3B6436506} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe [2016-05-13] (RealNetworks, Inc.)
Task: {350B0464-18D2-43E5-98C5-C3267B33837D} - \Microsoft\Windows\Setup\gwx\launchtrayprocess → No File <==== ATTENTION
Task: {3E67C9DA-3818-4D54-937E-0B0166CD4C2A} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2016-05-13] (RealNetworks, Inc.)
Task: {4295A246-F1FA-4C92-B703-C98313A8B679} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {45EACAAD-C12E-45DB-A0B7-C6968C44E73B} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandco ntent → No File <==== ATTENTION
Task: {462BC8C7-51E1-48D0-A779-3A14AC6127C0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {48ACB946-9171-45B5-875C-A86E243BEEC3} - System32\Tasks\Uninstaller_SkipUac_CEP_Local_440 => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: {56F97E84-3191-45C9-A635-67E8EB4B5A12} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd → No File <==== ATTENTION
Task: {689603CA-2D8F-42B1-8DFB-CEC176524B4B} - System32\Tasks\VaudiXUpdaterTask{8641A371-5391-4413-ADCA-0BED20AE0CE5} => C:\ProgramData\Premium\VaudiX\VaudiX.exe [2012-09-19] () <==== ATTENTION
Task: {6A1D0173-5E64-47B4-ABF4-B0905C3E7446} - System32\Tasks\SmartDefrag3_Update => C:\Program Files (x86)\IObit\Smart Defrag 3\AutoUpdate.exe [2014-07-23] (IObit)
Task: {6A547488-E31C-4C6E-8EED-B98D6A8EE4DE} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d → No File <==== ATTENTION
Task: {78E36EFE-EDDE-417C-8CD5-5338C87D4A89} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d → No File <==== ATTENTION
Task: {881641BF-0BE6-43B4-8EC8-60F5117C11FA} - System32\Tasks\WRCSkipUAC => C:\Program Files (x86)\Wise\Wise Registry Cleaner\WiseRegCleaner.exe [2015-10-27] (WiseCleaner.com)
Task: {8B2BDB30-21E5-4EAB-876D-714AA59072D2} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d → No File <==== ATTENTION
Task: {8F63C092-CD98-4DEF-91B5-ABF2B708ECD7} - System32\Tasks\WinZipBackGroundToolsTask => C:\Program Files\WinZip\WzBGTools.exe [2016-04-28] (WinZip Computing, S.L.)
Task: {9F98CCE2-E3BC-4C34-89FD-890FD85D2403} - System32\Tasks\Wise Turbo Checker => C:\Program Files (x86)\Wise\Wise Care 365\WiseTurbo.exe [2016-01-19] (WiseCleaner.COM)
Task: {A2829269-0700-45E1-BF90-7C8200090DB8} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpda teService.exe [2015-10-17] (Adobe Systems Incorporated)
Task: {C2311C6E-8DAA-4CBA-A2A9-C3D2DF6BE404} - System32\Tasks\Wise Turbo Checker.job => C:\Program Files (x86)\Wise\Wise Care 365\WiseTurbo.exe [2016-01-19] (WiseCleaner.COM)
Task: {E9CEC2AE-59CB-4E77-9459-C3A97851374F} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ HB => C:\WINDOWS\system32\MRT.exe [2016-05-23] (Microsoft Corporation)
Task: {EFF885BD-E49F-4288-B019-FFDE6C4A683F} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d → No File <==== ATTENTION
Task: {F6F549D5-4559-4DED-AFAB-9D5782549FD7} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d → No File <==== ATTENTION
Task: {F8E99B3B-8FF9-44C4-AE06-046AAAD78217} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2016-05-13] (RealNetworks, Inc.)
Task: {F91C1C31-1776-45E9-8818-F155E0BB2786} - System32\Tasks\ASC9_SkipUac_CEP Local 440 => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe
Task: {FA184C91-C5EF-4764-BAF0-F6D3FBE5E08A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig → No File <==== ATTENTION
Task: {FF901301-441E-45AC-BDA9-F12D966A5533} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2016-05-13] (RealNetworks, Inc.)
Task: {FF9ACA87-4767-430C-861B-1D1765C88317} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxcon fig-B → No File <==== ATTENTION
Task: C:\WINDOWS\Tasks\ASC9_SkipUac_CEP Local 440.job => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe
Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_CEP_Local_440 .job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: C:\WINDOWS\Tasks\VaudiXUpdaterTask{8641A371-5391-4413-ADCA-0BED20AE0CE5}.job => C:\ProgramData\Premium\VaudiX\VaudiX.exeC/schedule /profilepath C:\ProgramData\Premium\VaudiX\profile.ini <==== ATTENTION
Task: C:\WINDOWS\Tasks\Wise Turbo Checker.job => C:\Program Files (x86)\Wise\Wise Care 365\WiseTurbo.exe
ShortcutWithArgument: C:\Users\CEP Local 440\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\217f6a27d9c55787\Chrom ium.lnk → C:\Program Files\Hola\app\chromium\hola_cr.exe (The Chromium Authors) → --profile-directory=Default
AlternateDataStreams: C:\ProgramData\Temp:373E1720 [134]
AlternateDataStreams: C:\ProgramData\Temp:553CA6CA [110]
AlternateDataStreams: C:\ProgramData\Temp:56E2E879 [128]
HKU\S-1-5-18...\Run: [KSS] => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan\kss.exe [1556448 2015-12-15] (AO Kaspersky Lab)
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64 Loader.dll => No File
ShellIconOverlayIdentifiers: [ OneDrive1] → {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers: [ OneDrive2] → {5AB7172C-9C11-405C-8DD5-AF20F3606282} => No File
ShellIconOverlayIdentifiers: [ OneDrive3] → {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => No File
ShellIconOverlayIdentifiers: [ OneDrive4] → {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: [ OneDrive5] → {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] → {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] → {5AB7172C-9C11-405C-8DD5-AF20F3606282} => No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] → {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] → {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] → {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
Winsock: Catalog9 01 C:\Program Files (x86)\SpeedBit Video Accelerator\LSP3.3.6.3\SBLSP.dll [174832 2013-01-19] (SPEEDbit)
Winsock: Catalog9 02 C:\Program Files (x86)\SpeedBit Video Accelerator\LSP3.3.6.3\SBLSP.dll [174832 2013-01-19] (SPEEDbit)
Winsock: Catalog9 03 C:\Program Files (x86)\SpeedBit Video Accelerator\LSP3.3.6.3\SBLSP.dll [174832 2013-01-19] (SPEEDbit)
Winsock: Catalog9 04 C:\Program Files (x86)\SpeedBit Video Accelerator\LSP3.3.6.3\SBLSP.dll [174832 2013-01-19] (SPEEDbit)
Winsock: Catalog9 05 C:\Program Files (x86)\SpeedBit Video Accelerator\LSP3.3.6.3\SBLSP.dll [174832 2013-01-19] (SPEEDbit)
Winsock: Catalog9 06 C:\Program Files (x86)\SpeedBit Video Accelerator\LSP3.3.6.3\SBLSP.dll [174832 2013-01-19] (SPEEDbit)
Winsock: Catalog9 07 C:\Program Files (x86)\SpeedBit Video Accelerator\LSP3.3.6.3\SBLSP.dll [174832 2013-01-19] (SPEEDbit)
Winsock: Catalog9 08 C:\Program Files (x86)\SpeedBit Video Accelerator\LSP3.3.6.3\SBLSP.dll [174832 2013-01-19] (SPEEDbit)
Winsock: Catalog9 09 C:\Program Files (x86)\SpeedBit Video Accelerator\LSP3.3.6.3\SBLSP.dll [174832 2013-01-19] (SPEEDbit)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 192.168.2.1
Tcpip..\Interfaces{7aacf0c7-f777-451d-935f-0dff73e93a81}: [DhcpNameServer] 192.168.2.1 192.168.2.1
ManualProxies:
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1124643268-3595298339-4084894015-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1124643268-3595298339-4084894015-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPCON/4
SearchScopes: HKLM → DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL =
SearchScopes: HKLM → {2D9F3B71-F660-4605-9BC3-6EDF3782FA70} URL = hxxp://www.ask.com/web?q={searchTerms}&l=dis&o=cahpl
SearchScopes: HKLM → {2D9F3B71-F660-4605-9BC3-6EDF3782FA70} URL = hxxp://www.ask.com/web?q={searchTerms}&l=dis&o=cahpl
SearchScopes: HKLM → {4AF4DA01-B858-4617-AC1C-0E06F377629C} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox
SearchScopes: HKLM-x32 → DefaultScope {7F4EFF06-7032-458e-AE16-1C1D8255C28A} URL =
SearchScopes: HKLM-x32 → {0BC6E3FA-78EF-4886-842C-5A1258C4455A} URL = hxxp://search.imgag.com/?appid=wsdt&component=&c=GNWDO59900&sbs=2&sc=2&f=w eb&vernum=3.1.5.7620&uid=0&did=%7b35a80c04-0e82-4769-ab2e-d57b98cb7e3a%7d&q={searchTerms}
SearchScopes: HKLM-x32 → {2D9F3B71-F660-4605-9BC3-6EDF3782FA70} URL = hxxp://www.ask.com/web?q={searchTerms}&l=dis&o=cahpl
SearchScopes: HKLM-x32 → {4AF4DA01-B858-4617-AC1C-0E06F377629C} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox
SearchScopes: HKU.DEFAULT → DefaultScope {0BC6E3FA-78EF-4886-842C-5A1258C4455A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE
SearchScopes: HKU.DEFAULT → {0BC6E3FA-78EF-4886-842C-5A1258C4455A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE
SearchScopes: HKU.DEFAULT → {2D9F3B71-F660-4605-9BC3-6EDF3782FA70} URL =
SearchScopes: HKU\S-1-5-21-1124643268-3595298339-4084894015-1000 → {0BC6E3FA-78EF-4886-842C-5A1258C4455A} URL = hxxp://search.imgag.com/?appid=wsdt&component=&c=GNWDO59900&sbs=2&sc=2&f=w eb&vernum=3.1.5.7620&uid=0&did=%7b35a80c04-0e82-4769-ab2e-d57b98cb7e3a%7d&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1124643268-3595298339-4084894015-1000 → {2D9F3B71-F660-4605-9BC3-6EDF3782FA70} URL = hxxp://www.ask.com/web?q={searchTerms}&l=dis&o=cahpl
SearchScopes: HKU\S-1-5-21-1124643268-3595298339-4084894015-1000 → {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Download Accelerator Plus Integration → {FF6C3CF0-4B15-11D1-ABED-709549C10000} → C:\Program Files (x86)\DAP\DAPIELoader64.dll [2011-03-24] (SpeedBit Ltd.)
BHO-x32: No Name → {02478D38-C3F9-4efb-9B51-7695ECA05670} → No File
BHO-x32: No Name → {669E08DA-2172-5F0B-4DEE-CFA670E3BC84} → No File
BHO-x32: SpeedBit Link Verification Helper → {D5974A72-C81C-4DC3-BE77-A8A7BBC8864E} → C:\Program Files (x86)\DAP\LinkVerifier.dll [2012-12-10] (Speedbit Ltd.)
Toolbar: HKU.DEFAULT → No Name - {414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} - No File
Toolbar: HKU.DEFAULT → No Name - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File
Toolbar: HKU.DEFAULT → No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKU\S-1-5-21-1124643268-3595298339-4084894015-1000 → No Name - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File
Toolbar: HKU\S-1-5-21-1124643268-3595298339-4084894015-1000 → No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKU\S-1-5-21-1124643268-3595298339-4084894015-1000 → No Name - {414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} - No File
DPF: HKLM-x32 {0E5F0222-96B9-11D3-8997-00104BD12D94} hxxp://www.pcpitstop.com/betapit/PCPitStop.CAB
FF Plugin-x32: @tools.google.com/Google Update;version=3 → C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-31] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 → C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-31] (Google Inc.)
FF Plugin HKU\S-1-5-21-1124643268-3595298339-4084894015-1000: @hola.org/vlc → C:\Users\CEP Local 440\AppData\Local\Hola\firefox_hola\app\vlc\npvlc. dll [2016-04-09] (Hola)
CHR HomePage: Default → hxxp://search.conduit.com/?ctid=CT3319613&octid=EB_ORIGINAL_CTID&SearchSourc e=55&CUI=&UM=4&UP=SP8759D25A-7352-4FC4-8764-92A112E26A02&SSPV=
CHR StartupUrls: Default → “hxxp://search.conduit.com/?ctid=CT3319613&octid=EB_ORIGINAL_CTID&SearchSourc e=55&CUI=&UM=4&UP=SP8759D25A-7352-4FC4-8764-92A112E26A02&SSPV=”
CHR DefaultSearchURL: Default → hxxps://search.yahoo.com/search?fr=chr-yo_gc&ei=utf-8&ilc=12&type=994519&p={searchTerms}
CHR DefaultSearchKeyword: Default → yahoo.com search
CHR DefaultSuggestURL: Default → hxxps://ff.search.yahoo.com/gossip?output=fxjson&command={searchTerms}
CHR Extension: (Download Accelerator Plus (DAP)) - C:\Users\CEP Local 440\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffdcfjdljhbehggjdkdioajnkn jcpbjb [2013-10-15] [UpdateUrl: hxxps://secure.speedbit.com/chrome/DAP/DAPChromeUpdate6.xml] <==== ATTENTION
CHR Extension: (Unlimited Free VPN - Hola) - C:\Users\CEP Local 440\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfb nlmeio [2016-11-17]
R2 hola_svc; C:\Program Files\Hola\app\hola_svc.exe [5622376 2016-11-02] (Hola Networks Ltd.) <==== ATTENTION
R2 hola_updater; C:\Program Files\Hola\app\hola_updater.exe [8104576 2015-11-01] (Hola Networks Ltd.) <==== ATTENTION
R2 kss; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan\kss.exe [1556448 2015-12-15] (AO Kaspersky Lab)
S3 VideoAcceleratorService; C:\Program Files (x86)\SpeedBit Video Accelerator\VideoAcceleratorService.exe [277744 2013-01-19] (SpeedBit Ltd.)
U3 idsvc; no ImagePath
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys
U3 wpcsvc; no ImagePath
DisableService: Garmin Device Interaction Service
DisableService: HP Support Assistant Service
DisableService: LightScribeService
DisableService: LiveUpdateSvc
DisableService: REALPLAYERUPDATESVC
DisableService: RealTimes Desktop Service
DisableService: VideoAcceleratorService
2016-11-18 15:56 - 2016-11-18 15:56 - 00127637 _____ C:\Users\CEP Local 440\Desktop\how to remove Heur_Exploit.Script.Generic - Yahoo Search Results.html
2016-11-18 15:56 - 2016-11-18 15:56 - 00000000 ____D C:\Users\CEP Local 440\Desktop\how to remove Heur_Exploit.Script.Generic - Yahoo Search Results_files
Reg: reg delete HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Pol icy\Local /f
Reg: reg add HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Pol icy\Local /f
RemoveProxy:
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: ipconfig /flushdns
CMD: netsh winsock reset catalog
CMD: netsh int ip reset c:\resetlog.txt
CMD: ipconfig /release
CMD: ipconfig /renew
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
EmptyTemp:
CMD: bitsadmin /reset /allusers
Restore point was successfully created.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{0DAC725 D-0371-4133-8AF6-D148198B0D4A} => key not found.
C:\WINDOWS\System32\Tasks\GarminUpdaterTask => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GarminUp daterTask => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{105CBCC 4-5BD4-47EC-919F-698174BE6C5E} => key not found.
C:\WINDOWS\System32\Tasks\SBWUpdateTask_Logon_d4e0 2148-1C659D0430C4 => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SBWUpdat eTask_Logon_d4e02148-1C659D0430C4 => key not found.
“C:\Program Files (x86)\Common Files\Speedbit” => not found.
“C:\ProgramData\Premium\VaudiX\VaudiX.exe” => not found.
“C:\ProgramData\Premium” => not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run \hola => value not found.
“C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll” => not found.
“C:\Program Files (x86)\Kaspersky Lab” => not found.
“C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_CEP _Local_440” => not found.
“C:\WINDOWS\Tasks\Uninstaller_SkipUac_CEP_Local_44 0.job” => not found.
“C:\ProgramData{FD6F83C0-EC70-4581-8361-C70CD1AA4B98}” => not found.
“C:\WINDOWS\System32\Tasks\ASC9_SkipUac_CEP Local 440” => not found.
“C:\WINDOWS\Tasks\ASC9_SkipUac_CEP Local 440.job” => not found.
“C:\WINDOWS\Tasks\VaudiXUpdaterTask{8641A371-5391-4413-ADCA-0BED20AE0CE5}.job” => not found.
“C:\ProgramData{d36dd326-7280-11d8-97c8-000129760cbe}.log” => not found.
“C:\ProgramData{CB099890-1D5F-11D5-9EA9-0050BAE317E1}.log” => not found.
“C:\ProgramData{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log” => not found.
“C:\ProgramData{9867824A-C86D-4A83-8F3C-E7A86BE0AFD3}.log” => not found.
“C:\ProgramData{4FC670EB-5F02-4B07-90DB-022B86BFEFD0}.log” => not found.
“C:\ProgramData{40BF1E83-20EB-11D8-97C5-0009C5020658}.log” => not found.
“C:\ProgramData{23F3DA62-2D9E-4A69-B8D5-BE8E9E148092}.log” => not found.
“C:\ProgramData{051B9612-4D82-42AC-8C63-CD2DCEDC1CB3}.log” => not found.
“C:\ProgramData{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}.log” => not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAcces s\Parameters\FirewallPolicy\FirewallRules\{1F11BD5 D-9CDA-4136-BB17-11759FEB6D09} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAcces s\Parameters\FirewallPolicy\FirewallRules\{DA625BC 8-20DA-4F96-B47A-3616BB97937C} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAcces s\Parameters\FirewallPolicy\FirewallRules\{8C64473 4-5475-4DA6-B672-08496CD515EA} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAcces s\Parameters\FirewallPolicy\FirewallRules\{6C306E7 E-FA6E-4246-91D6-00F5ED2544EC} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAcces s\Parameters\FirewallPolicy\FirewallRules\{7593305 D-BBBF-4CCE-926B-B048B7563B94} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAcces s\Parameters\FirewallPolicy\FirewallRules\{2D6CE00 1-C5BD-4ED4-9DD1-E5AE42D4EFB3} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAcces s\Parameters\FirewallPolicy\FirewallRules\{CF80B1C 2-A556-4548-981C-06CBE3BB5EAF} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAcces s\Parameters\FirewallPolicy\FirewallRules\{4860E4E 0-5D78-4517-A910-FAB62566D6FA} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAcces s\Parameters\FirewallPolicy\FirewallRules\{CBDE96F 0-6E14-4BF7-AFC6-241703E7FC90} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAcces s\Parameters\FirewallPolicy\FirewallRules\{E8F72EA 0-BA09-4CBA-9F61-538AA9DBD4B9} => value not found.
HKLM\Software\WOW6432Node\Microsoft\Windows\Curren tVersion\Run\TkBellExe => value not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{1BC1487 4-2285-41BC-9C22-9381D778C8C7} => key not found.
C:\WINDOWS\System32\Tasks\RealUpgradeLogonTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RealUpgr adeLogonTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{24FF067 0-A2EE-4FE7-9ADC-55ECDCC4A9E1} => key not found.
C:\WINDOWS\System32\Tasks\SBWUpdateTask_Time_d4e02 148-1C659D0430C4 => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SBWUpdat eTask_Time_d4e02148-1C659D0430C4 => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{25554AD 1-5548-49F0-8550-EC465DD19366} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsof t\Windows\Setup\gwx\refreshgwxcontent => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{27A7681 1-8CAB-4FB0-8E58-AE2F14D3523B} => key not found.
C:\WINDOWS\System32\Tasks\RealDownloaderRealUpgrad eScheduledTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RealDown loaderRealUpgradeScheduledTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{2D23301 A-268D-4133-A615-B5D3B6436506} => key not found.
C:\WINDOWS\System32\Tasks\RealDownloaderRealUpgrad eLogonTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RealDown loaderRealUpgradeLogonTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{350B046 4-18D2-43E5-98C5-C3267B33837D} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsof t\Windows\Setup\gwx\launchtrayprocess => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{3E67C9D A-3818-4D54-937E-0B0166CD4C2A} => key not found.
C:\WINDOWS\System32\Tasks\RealUpgradeScheduledTask S-1-5-21-1124643268-3595298339-4084894015-1000 => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RealUpgr adeScheduledTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{4295A24 6-F1FA-4C92-B703-C98313A8B679} => key not found.
C:\WINDOWS\System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{45EACAA D-C12E-45DB-A0B7-C6968C44E73B} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsof t\Windows\Setup\gwx\refreshgwxconfigandcontent => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{462BC8C 7-51E1-48D0-A779-3A14AC6127C0} => key not found.
C:\WINDOWS\System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Hewlett-Packard\HP Support Assistant\PC Health Analysis => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{48ACB94 6-9171-45B5-875C-A86E243BEEC3} => key not found.
C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_CEP_ Local_440 => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Uninstal ler_SkipUac_CEP_Local_440 => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{56F97E8 4-3191-45C9-A635-67E8EB4B5A12} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsof t\Windows\Setup\GWXTriggers\Telemetry-4xd => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{689603C A-2D8F-42B1-8DFB-CEC176524B4B} => key not found.
C:\WINDOWS\System32\Tasks\VaudiXUpdaterTask{8641A3 71-5391-4413-ADCA-0BED20AE0CE5} => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\VaudiXUp daterTask{8641A371-5391-4413-ADCA-0BED20AE0CE5} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{6A1D017 3-5E64-47B4-ABF4-B0905C3E7446} => key not found.
C:\WINDOWS\System32\Tasks\SmartDefrag3_Update => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SmartDef rag3_Update => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{6A54748 8-E31C-4C6E-8EED-B98D6A8EE4DE} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsof t\Windows\Setup\GWXTriggers\Logon-5d => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{78E36EF E-EDDE-417C-8CD5-5338C87D4A89} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsof t\Windows\Setup\GWXTriggers\Time-5d => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{881641B F-0BE6-43B4-8EC8-60F5117C11FA} => key not found.
C:\WINDOWS\System32\Tasks\WRCSkipUAC => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WRCSkipU AC => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{8B2BDB3 0-21E5-4EAB-876D-714AA59072D2} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsof t\Windows\Setup\GWXTriggers\OutOfIdle-5d => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{8F63C09 2-CD98-4DEF-91B5-ABF2B708ECD7} => key not found.
C:\WINDOWS\System32\Tasks\WinZipBackGroundToolsTas k => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WinZipBa ckGroundToolsTask => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{9F98CCE 2-E3BC-4C34-89FD-890FD85D2403} => key not found.
C:\WINDOWS\System32\Tasks\Wise Turbo Checker => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Wise Turbo Checker => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{A282926 9-0700-45E1-BF90-7C8200090DB8} => key not found.
C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash Player Updater => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{C2311C6 E-8DAA-4CBA-A2A9-C3D2DF6BE404} => key not found.
C:\WINDOWS\System32\Tasks\Wise Turbo Checker.job => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Wise Turbo Checker.job => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{E9CEC2A E-59CB-4E77-9459-C3A97851374F} => key not found.
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Remova lTools\MRT_HB => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsof t\Windows\RemovalTools\MRT_HB => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{EFF885B D-E49F-4288-B019-FFDE6C4A683F} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsof t\Windows\Setup\GWXTriggers\MachineUnlock-5d => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{F6F549D 5-4559-4DED-AFAB-9D5782549FD7} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsof t\Windows\Setup\GWXTriggers\OutOfSleep-5d => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{F8E99B3 B-8FF9-44C4-AE06-046AAAD78217} => key not found.
C:\WINDOWS\System32\Tasks\RealPlayerRealUpgradeSch eduledTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RealPlay erRealUpgradeScheduledTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{F91C1C3 1-1776-45E9-8818-F155E0BB2786} => key not found.
C:\WINDOWS\System32\Tasks\ASC9_SkipUac_CEP Local 440 => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASC9_Ski pUac_CEP Local 440 => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{FA184C9 1-C5EF-4764-BAF0-F6D3FBE5E08A} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsof t\Windows\Setup\gwx\refreshgwxconfig => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{FF90130 1-441E-45AC-BDA9-F12D966A5533} => key not found.
C:\WINDOWS\System32\Tasks\RealPlayerRealUpgradeLog onTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RealPlay erRealUpgradeLogonTaskS-1-5-21-1124643268-3595298339-4084894015-1000 => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{FF9ACA8 7-4767-430C-861B-1D1765C88317} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsof t\Windows\Setup\GWXTriggers\refreshgwxconfig-B => key not found.
C:\WINDOWS\Tasks\ASC9_SkipUac_CEP Local 440.job => not found.
C:\WINDOWS\Tasks\Uninstaller_SkipUac_CEP_Local_440 .job => not found.
C:\WINDOWS\Tasks\VaudiXUpdaterTask{8641A371-5391-4413-ADCA-0BED20AE0CE5}.job => not found.
C:\WINDOWS\Tasks\Wise Turbo Checker.job => not found.
C:\Users\CEP Local 440\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\217f6a27d9c55787\Chrom ium.lnk => Shortcut argument removed successfully.
“C:\ProgramData\Temp” => “:373E1720” ADS not found.
“C:\ProgramData\Temp” => “:553CA6CA” ADS not found.
“C:\ProgramData\Temp” => “:56E2E879” ADS not found.
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run\K SS => value not found.
“C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC6 4Loader.dll” => Value data not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Exp lorer\ShellIconOverlayIdentifiers\ OneDrive1 => key not found.
HKCR\CLSID{BBACC218-34EA-4666-9D7A-C78F2274A524} => key not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Exp lorer\ShellIconOverlayIdentifiers\ OneDrive2 => key not found.
HKCR\CLSID{5AB7172C-9C11-405C-8DD5-AF20F3606282} => key not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Exp lorer\ShellIconOverlayIdentifiers\ OneDrive3 => key not found.
HKCR\CLSID{A78ED123-AB77-406B-9962-2A5D9D2F7F30} => key not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Exp lorer\ShellIconOverlayIdentifiers\ OneDrive4 => key not found.
HKCR\CLSID{F241C880-6982-4CE5-8CF7-7085BA96DA5A} => key not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Exp lorer\ShellIconOverlayIdentifiers\ OneDrive5 => key not found.
HKCR\CLSID{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => key not found.
HKLM\Software\Wow6432Node\Microsoft\Windows\Curren tVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => key not found.
HKCR\Wow6432Node\CLSID{BBACC218-34EA-4666-9D7A-C78F2274A524} => key not found.
HKLM\Software\Wow6432Node\Microsoft\Windows\Curren tVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => key not found.
HKCR\Wow6432Node\CLSID{5AB7172C-9C11-405C-8DD5-AF20F3606282} => key not found.
HKLM\Software\Wow6432Node\Microsoft\Windows\Curren tVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => key not found.
HKCR\Wow6432Node\CLSID{A78ED123-AB77-406B-9962-2A5D9D2F7F30} => key not found.
HKLM\Software\Wow6432Node\Microsoft\Windows\Curren tVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => key not found.
HKCR\Wow6432Node\CLSID{F241C880-6982-4CE5-8CF7-7085BA96DA5A} => key not found.
HKLM\Software\Wow6432Node\Microsoft\Windows\Curren tVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => key not found.
HKCR\Wow6432Node\CLSID{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => key not found.
HKLM\SOFTWARE\Policies\Google => key not found.
“HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\P arameters\Protocol_Catalog9\Catalog_Entries\000000 000001” => key removed successfully
“HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\P arameters\Protocol_Catalog9\Catalog_Entries\000000 000002” => key removed successfully
“HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\P arameters\Protocol_Catalog9\Catalog_Entries\000000 000003” => key removed successfully
“HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\P arameters\Protocol_Catalog9\Catalog_Entries\000000 000004” => key removed successfully
“HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\P arameters\Protocol_Catalog9\Catalog_Entries\000000 000005” => key removed successfully
“HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\P arameters\Protocol_Catalog9\Catalog_Entries\000000 000006” => key removed successfully
“HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\P arameters\Protocol_Catalog9\Catalog_Entries\000000 000007” => key removed successfully
“HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\P arameters\Protocol_Catalog9\Catalog_Entries\000000 000008” => key removed successfully
“HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\P arameters\Protocol_Catalog9\Catalog_Entries\000000 000009” => key removed successfully
HKLM\System\CurrentControlSet\Services\Tcpip\Param eters\DhcpNameServer => value removed successfully
HKLM\System\CurrentControlSet\Services\Tcpip\Param eters\Interfaces{7aacf0c7-f777-451d-935f-0dff73e93a81}\DhcpNameServer => value removed successfully
HKLM\Software\Microsoft\Internet Explorer\Main\Start Page => value restored successfully
HKU\S-1-5-21-1124643268-3595298339-4084894015-1000\Software\Microsoft\Internet Explorer\Main\Start Page => value restored successfully
HKU\S-1-5-21-1124643268-3595298339-4084894015-1000\Software\Microsoft\Internet Explorer\Main\Default_Page_URL => value restored successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\DefaultScope => value restored successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes{2D9F3B71-F660-4605-9BC3-6EDF3782FA70} => key not found.
HKCR\CLSID{2D9F3B71-F660-4605-9BC3-6EDF3782FA70} => key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes{2D9F3B71-F660-4605-9BC3-6EDF3782FA70} => key not found.
HKCR\CLSID{2D9F3B71-F660-4605-9BC3-6EDF3782FA70} => key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes{4AF4DA01-B858-4617-AC1C-0E06F377629C} => key not found.
HKCR\CLSID{4AF4DA01-B858-4617-AC1C-0E06F377629C} => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\DefaultScope => value restored successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes{0BC6E3FA-78EF-4886-842C-5A1258C4455A} => key not found.
HKCR\Wow6432Node\CLSID{0BC6E3FA-78EF-4886-842C-5A1258C4455A} => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes{2D9F3B71-F660-4605-9BC3-6EDF3782FA70} => key not found.
HKCR\Wow6432Node\CLSID{2D9F3B71-F660-4605-9BC3-6EDF3782FA70} => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes{4AF4DA01-B858-4617-AC1C-0E06F377629C} => key not found.
HKCR\Wow6432Node\CLSID{4AF4DA01-B858-4617-AC1C-0E06F377629C} => key not found.
HKU.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\DefaultScope => value not found.
HKU.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes{0BC6E3FA-78EF-4886-842C-5A1258C4455A} => key not found.
HKCR\CLSID{0BC6E3FA-78EF-4886-842C-5A1258C4455A} => key not found.
HKU.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes{2D9F3B71-F660-4605-9BC3-6EDF3782FA70} => key not found.
HKCR\CLSID{2D9F3B71-F660-4605-9BC3-6EDF3782FA70} => key not found.
HKU\S-1-5-21-1124643268-3595298339-4084894015-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes{0BC6E3FA-78EF-4886-842C-5A1258C4455A} => key not found.
HKCR\CLSID{0BC6E3FA-78EF-4886-842C-5A1258C4455A} => key not found.
HKU\S-1-5-21-1124643268-3595298339-4084894015-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes{2D9F3B71-F660-4605-9BC3-6EDF3782FA70} => key not found.
HKCR\CLSID{2D9F3B71-F660-4605-9BC3-6EDF3782FA70} => key not found.
HKU\S-1-5-21-1124643268-3595298339-4084894015-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes{6A1806CD-94D4-4689-BA73-E35EA1EA9990} => key not found.
HKCR\CLSID{6A1806CD-94D4-4689-BA73-E35EA1EA9990} => key not found.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\Browser Helper Objects{FF6C3CF0-4B15-11D1-ABED-709549C10000} => key not found.
HKCR\CLSID{FF6C3CF0-4B15-11D1-ABED-709549C10000} => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\Curren tVersion\Explorer\Browser Helper Objects{02478D38-C3F9-4efb-9B51-7695ECA05670} => key not found.
HKCR\Wow6432Node\CLSID{02478D38-C3F9-4efb-9B51-7695ECA05670} => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\Curren tVersion\Explorer\Browser Helper Objects{669E08DA-2172-5F0B-4DEE-CFA670E3BC84} => key not found.
HKCR\Wow6432Node\CLSID{669E08DA-2172-5F0B-4DEE-CFA670E3BC84} => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\Curren tVersion\Explorer\Browser Helper Objects{D5974A72-C81C-4DC3-BE77-A8A7BBC8864E} => key not found.
HKCR\Wow6432Node\CLSID{D5974A72-C81C-4DC3-BE77-A8A7BBC8864E} => key not found.
HKU.DEFAULT\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} => value not found.
HKCR\CLSID{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} => key not found.
HKU.DEFAULT\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{604BC32A-9680-40D1-9AC6-E06B23A1BA4C} => value not found.
HKCR\CLSID{604BC32A-9680-40D1-9AC6-E06B23A1BA4C} => key not found.
HKU.DEFAULT\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => value not found.
HKCR\CLSID{2318C2B1-4965-11D4-9B18-009027A5CD4F} => key not found.
HKU\S-1-5-21-1124643268-3595298339-4084894015-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{604BC32A-9680-40D1-9AC6-E06B23A1BA4C} => value not found.
HKCR\CLSID{604BC32A-9680-40D1-9AC6-E06B23A1BA4C} => key not found.
HKU\S-1-5-21-1124643268-3595298339-4084894015-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => value not found.
HKCR\CLSID{2318C2B1-4965-11D4-9B18-009027A5CD4F} => key not found.
HKU\S-1-5-21-1124643268-3595298339-4084894015-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} => value not found.
HKCR\CLSID{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Code Store Database\Distribution Units{0E5F0222-96B9-11D3-8997-00104BD12D94} => key not found.
HKCR\Wow6432Node\CLSID{0E5F0222-96B9-11D3-8997-00104BD12D94} => key not found.
HKLM\Software\Wow6432Node\MozillaPlugins@tools.google.com/Google Update;version=3 => key not found.
C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll => not found.
HKLM\Software\Wow6432Node\MozillaPlugins@tools.google.com/Google Update;version=9 => key not found.
C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll => not found.
HKU\S-1-5-21-1124643268-3595298339-4084894015-1000\Software\MozillaPlugins@hola.org/vlc => key not found.
C:\Users\CEP Local 440\AppData\Local\Hola\firefox_hola\app\vlc\npvlc. dll => not found.
Chrome HomePage => not found.
Chrome StartupUrls => not found.
Chrome DefaultSearchURL => not found.
Chrome DefaultSearchKeyword => not found.
Chrome DefaultSuggestURL => not found.
C:\Users\CEP Local 440\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffdcfjdljhbehggjdkdioajnkn jcpbjb <==== ATTENTION => not found
C:\Users\CEP Local 440\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfb nlmeio => moved successfully
hola_svc => service not found.
hola_updater => service not found.
kss => service not found.
VideoAcceleratorService => service not found.
idsvc => service not found.
wfpcapture => service not found.
wpcsvc => service not found.
Garmin Device Interaction Service => service was disabled
HP Support Assistant Service => service was disabled
LightScribeService => not found.
LiveUpdateSvc => service was disabled
REALPLAYERUPDATESVC => service was disabled
RealTimes Desktop Service => service was disabled
VideoAcceleratorService => not found.
“C:\Users\CEP Local 440\Desktop\how to remove Heur_Exploit.Script.Generic - Yahoo Search Results.html” => not found.
“C:\Users\CEP Local 440\Desktop\how to remove Heur_Exploit.Script.Generic - Yahoo Search Results_files” => not found.
========= reg delete HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Pol icy\Local /f =========
The operation completed successfully.
========= End of Reg: =========
========= reg add HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Pol icy\Local /f =========
The operation completed successfully.
========= End of Reg: =========
========= RemoveProxy: =========
HKU.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVers ion\Internet Settings\Connections\DefaultConnectionSettings => value removed successfully
HKU\S-1-5-21-1124643268-3595298339-4084894015-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings\Connections\DefaultConnectionSettings => value removed successfully
HKU\S-1-5-21-1124643268-3595298339-4084894015-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings\Connections\SavedLegacySettings => value removed successfully
========= End of RemoveProxy: =========
========= netsh advfirewall reset =========
Ok.
========= End of CMD: =========
========= netsh advfirewall set allprofiles state ON =========
Ok.
========= End of CMD: =========
========= ipconfig /flushdns =========
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
========= End of CMD: =========
========= netsh winsock reset catalog =========
Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.
========= End of CMD: =========
========= netsh int ip reset c:\resetlog.txt =========
Resetting Interface, OK!
Resetting Neighbor, OK!
Resetting Path, OK!
Resetting , failed.
Access is denied.
Resetting , OK!
Restart the computer to complete this action.
========= End of CMD: =========
========= ipconfig /release =========
Windows IP Configuration
No operation can be performed on Local Area Connection while it has its media disconnected.
No operation can be performed on Local Area Connection* 2 while it has its media disconnected.
Ethernet adapter Local Area Connection:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Local Area Connection* 2:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Wireless Network Connection:
Connection-specific DNS Suffix . :
Link-local IPv6 Address . . . . . : fe80::bc01:ae8d:c3e0:9276%5
Default Gateway . . . . . . . . . :
Tunnel adapter Teredo Tunneling Pseudo-Interface:
Connection-specific DNS Suffix . :
IPv6 Address. . . . . . . . . . . : 2001:0:5ef5:79fd:3889:1309:9c3f:e205
Link-local IPv6 Address . . . . . : fe80::3889:1309:9c3f:e205%7
Default Gateway . . . . . . . . . : ::
========= End of CMD: =========
========= ipconfig /renew =========
Windows IP Configuration
No operation can be performed on Local Area Connection while it has its media disconnected.
No operation can be performed on Local Area Connection* 2 while it has its media disconnected.
Ethernet adapter Local Area Connection:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Local Area Connection* 2:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Wireless Network Connection:
Connection-specific DNS Suffix . :
Link-local IPv6 Address . . . . . : fe80::bc01:ae8d:c3e0:9276%5
IPv4 Address. . . . . . . . . . . : 192.168.2.10
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.2.1
Tunnel adapter isatap.{7AACF0C7-F777-451D-935F-0DFF73E93A81}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Tunnel adapter Teredo Tunneling Pseudo-Interface:
Connection-specific DNS Suffix . :
IPv6 Address. . . . . . . . . . . : 2001:0:9d38:6abd:204d:fdb:9c3f:e205
Link-local IPv6 Address . . . . . : fe80::204d:fdb:9c3f:e205%7
Default Gateway . . . . . . . . . : ::
========= End of CMD: =========
========= netsh int ipv4 reset =========
Resetting Interface, OK!
Resetting , failed.
Access is denied.
Restart the computer to complete this action.
========= End of CMD: =========
========= netsh int ipv6 reset =========
Resetting Interface, OK!
Resetting Neighbor, OK!
Resetting Path, OK!
Resetting , failed.
Access is denied.
Resetting , OK!
Restart the computer to complete this action.
========= End of CMD: =========
========= bitsadmin /reset /allusers =========
BITSADMIN version 3.0 [ 7.8.10240 ]
BITS administration utility.
(C) Copyright 2000-2006 Microsoft Corp.
BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.
0 out of 0 jobs canceled.
========= End of CMD: =========
=========== EmptyTemp: ==========
BITS transfer queue => 32768 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 7524729 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => -112219 B
Edge => 0 B
Chrome => 46714901 B
Firefox => 0 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 0 B
CEP Local 440 => 3402440 B
DefaultAppPool => 0 B
RecycleBin => 130120922 B
EmptyTemp: => 179 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 20:04:11 ====Comment
-
Originally posted by Malnutrition[ul]
[li]Please post the Junkware Removal Tool Log… [/li]
[li]Uninstall the software below.[/li][/ul]
VaudiX (HKLM...{6C7F523F-A2A9-AE9E-4C75-EA8BB79C70C9}) (Version: 1.0 - )
McAfee Agent (HKLM-x32...{2AAB21C2-4CDA-4189-A0EC-5ED666113F84}) (Version: 4.5.0.1810 - McAfee, Inc.)
Update your software with Patch My PC
Run the Mcafee Removal Tool : Then Reboot computer.
Security Check Scan.
[ul]
[li]Download Security Check to your desktop.[/li][li]Right click it run as administrator.[/li][li]When the program completes, the tool will automatically open a log file.[/li][li]Please post that log here in your next post.[/li][/ul]
What issues remain the machine at this point?Comment
-
Originally posted by Malnutrition[ul]
[li]Please post the Junkware Removal Tool Log… [/li]
[li]Uninstall the software below.[/li][/ul]
VaudiX (HKLM...{6C7F523F-A2A9-AE9E-4C75-EA8BB79C70C9}) (Version: 1.0 - )
McAfee Agent (HKLM-x32...{2AAB21C2-4CDA-4189-A0EC-5ED666113F84}) (Version: 4.5.0.1810 - McAfee, Inc.)
Update your software with Patch My PC
Run the Mcafee Removal Tool : Then Reboot computer.
Security Check Scan.
[ul]
[li]Download Security Check to your desktop.[/li][li]Right click it run as administrator.[/li][li]When the program completes, the tool will automatically open a log file.[/li][li]Please post that log here in your next post.[/li][/ul]
What issues remain the machine at this point?
WebSite: www.safezone.cc
DateLog: 25.11.2016 21:45:42
Path starting: C:\Users\CEP Local 440\AppData\Local\Temp\SecurityCheck\SecurityCheck .exe
Log directory: C:\SecurityCheck
IsAdmin: True
User: CEP Local 440
VersionXML: 3.54is-25.11.2016
Windows 10(6.3.10240) (x64) Core Lang: English(0409)
Installation date OS: 25.10.2015 14:38:35
LicenseStatus: Windows(R), Core edition The machine is permanently activated.
Boot Mode: Normal
Default Browser: C:\Program Files\Internet Explorer\IEXPLORE.EXE
SystemDrive: C: FS: [NTFS] Capacity: [450.9 Gb] Used: [125.6 Gb] Free: [325.3 Gb]
------------------------------- [ Windows ] -------------------------------
Internet Explorer 11.0.10240.16841 Warning! Download Update
Online installation. Last version available when Windows update is enabled throught the Internet.
User Account Control enabled
Automatically download and schedule installation
Windows Update (wuauserv) - The service has stopped
Security Center (wscsvc) - The service is running
Remote Registry (RemoteRegistry) - The service has stopped
SSDP Discovery (SSDPSRV) - The service is running
Remote Desktop Services (TermService) - The service has stopped
World Wide Web Publishing Service (W3SVC) - The service is running
Windows Remote Management (WS-Management) (WinRM) - The service has stopped
------------------------------ [ MS Office ] ------------------------------
Microsoft Office XP v.10.0.6626.0
Microsoft Office 2003 v.11.0.8173.0
---------------------------- [ Antivirus_WMI ] ----------------------------
Windows Defender (enabled and up to date)
--------------------------- [ FirewallWindows ] ---------------------------
Windows Firewall (MpsSvc) - The service is running
--------------------------- [ AntiSpyware_WMI ] ---------------------------
Windows Defender (enabled and up to date)
-------------------------- [ SecurityUtilities ] --------------------------
Malwarebytes Anti-Malware version 2.2.1.1043 v.2.2.1.1043
Zemana AntiMalware v.2.60.1
--------------------------- [ OtherUtilities ] ----------------------------
7-Zip 16.04 (x64 edition) v.16.04.00.0
Microsoft Silverlight v.5.1.50901.0
7-Zip 16.02 v.16.02 Warning! Download Update
Uninstall old version and install new one.
DivX Setup v.2.6.1.90
--------------------------- [ AppleProduction ] ---------------------------
iTunes v.12.5.3.16 Warning! Download Update
^Please use Apple Software Update tool.[1]
Bonjour v.3.1.0.1
Bonjour Service (Bonjour Service) - The service is running
--------------------------- [ AdobeProduction ] ---------------------------
Adobe AIR v.23.0.0.257
Adobe Shockwave Player 12.2 v.12.2.5.195
Adobe Acrobat Reader DC v.15.020.20042
Adobe Shockwave Player v.11.5.1.601 Warning! Download Update
------------------------------- [ Browser ] -------------------------------
Google Chrome v.54.0.2840.99
----------------------------- [ EmailClient ] -----------------------------
Windows Live Mail v.15.4.3502.0922
--------------------------- [ RunningProcess ] ----------------------------
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe v.54.0.2840.99
------------------ [ AntivirusFirewallProcessServices ] -------------------
MBAMService (MBAMService) - The service has stopped
McAfee Validation Trust Protection Service (mfevtp) - The service is running
C:\WINDOWS\System32\mfevtps.exe v.0.0.0.0
C:\Program Files\Windows Defender\MsMpEng.exe v.4.8.10240.16384
C:\Program Files\Windows Defender\MpCmdRun.exe v.4.8.10240.16384
C:\Program Files\Windows Defender\NisSrv.exe v.4.8.10240.16384
Windows Defender Service (WinDefend) - The service is running
Windows Defender Network Inspection Service (WdNisSvc) - The service is running
ZAM Controller Service (ZAMSvc) - The service is running
C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe v.0.0.0.0
---------------------------- [ UnwantedApps ] -----------------------------
FATE v.2.2.0.82 << Hidden Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.
----------------------------- [ End of Log ] ------------------------------
- /b ↩︎
Comment
-
Adware Removal Tool Scan.
Download Adware removal tool to your desktop, right click the icon and select Run as Administrator.
[MEDIA=imgur]LOr0Gd7[/MEDIA]
Hit Ok.
[MEDIA=imgur]sYFsqHx[/MEDIA]
Hit next make sure to leave all items checked, for removal.
[MEDIA=imgur]8NcZjGc[/MEDIA]
The Program will close all open programs to complete the removal, so save any work and hit OK. Then hit OK after the removal process is complete, thenOK again to finish up. Post log generated by tool.
ZHP Scan.
Please download Zhp Cleaner to your desktop. Right Click the icon and select run as administrator.- Once you have started the program, you will need to click the scanner button.
[IMG alt="EgsT69u" width="602px" height="129px"]https://windowsinstructed.com/wp-content/uploads/2015/06/EgsT69u.png[/IMG]
The program will close all open browsers!
3. Once the scan is completed, the you will want to click the Repair button.
[URL unfurl="true"]http://windowsinstructed.com/wp-content/uploads/2015/06/6QJjV50.png[/URL]
At the end of the process you may be asked to reboot your machine. After you reboot a report will open on your desktop.
Copy and paste the report here in your next reply.Comment
-
Here is the file again.
The first time I don’t think it was ran as administrator.
Thanks again.
SecurityCheck by glax24 & Severnyj v.1.4.0.46 [22.09.16]
WebSite: www.safezone.cc
DateLog: 25.11.2016 21:54:34
Path starting: C:\Users\CEP Local 440\AppData\Local\Temp\SecurityCheck\SecurityCheck .exe
Log directory: C:\SecurityCheck
IsAdmin: True
User: CEP Local 440
VersionXML: 3.54is-25.11.2016
Windows 10(6.3.10240) (x64) Core Lang: English(0409)
Installation date OS: 25.10.2015 14:38:35
LicenseStatus: Windows(R), Core edition The machine is permanently activated.
Boot Mode: Normal
Default Browser: C:\Program Files\Internet Explorer\IEXPLORE.EXE
SystemDrive: C: FS: [NTFS] Capacity: [450.9 Gb] Used: [125.6 Gb] Free: [325.3 Gb]
------------------------------- [ Windows ] -------------------------------
Internet Explorer 11.0.10240.16841 Warning! Download Update
Online installation. Last version available when Windows update is enabled throught the Internet.
User Account Control enabled
Automatically download and schedule installation
Windows Update (wuauserv) - The service has stopped
Security Center (wscsvc) - The service is running
Remote Registry (RemoteRegistry) - The service has stopped
SSDP Discovery (SSDPSRV) - The service is running
Remote Desktop Services (TermService) - The service has stopped
World Wide Web Publishing Service (W3SVC) - The service is running
Windows Remote Management (WS-Management) (WinRM) - The service has stopped
------------------------------ [ MS Office ] ------------------------------
Microsoft Office XP v.10.0.6626.0
Microsoft Office 2003 v.11.0.8173.0
---------------------------- [ Antivirus_WMI ] ----------------------------
Windows Defender (enabled and up to date)
--------------------------- [ FirewallWindows ] ---------------------------
Windows Firewall (MpsSvc) - The service is running
--------------------------- [ AntiSpyware_WMI ] ---------------------------
Windows Defender (enabled and up to date)
-------------------------- [ SecurityUtilities ] --------------------------
Malwarebytes Anti-Malware version 2.2.1.1043 v.2.2.1.1043
Zemana AntiMalware v.2.60.1
--------------------------- [ OtherUtilities ] ----------------------------
7-Zip 16.04 (x64 edition) v.16.04.00.0
Microsoft Silverlight v.5.1.50901.0
7-Zip 16.02 v.16.02 Warning! Download Update
Uninstall old version and install new one.
DivX Setup v.2.6.1.90
--------------------------- [ AppleProduction ] ---------------------------
iTunes v.12.5.3.16 Warning! Download Update
^Please use Apple Software Update tool.[1]
Bonjour v.3.1.0.1
Bonjour Service (Bonjour Service) - The service is running
--------------------------- [ AdobeProduction ] ---------------------------
Adobe AIR v.23.0.0.257
Adobe Shockwave Player 12.2 v.12.2.5.195
Adobe Acrobat Reader DC v.15.020.20042
Adobe Shockwave Player v.11.5.1.601 Warning! Download Update
------------------------------- [ Browser ] -------------------------------
Google Chrome v.54.0.2840.99
----------------------------- [ EmailClient ] -----------------------------
Windows Live Mail v.15.4.3502.0922
--------------------------- [ RunningProcess ] ----------------------------
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe v.54.0.2840.99
------------------ [ AntivirusFirewallProcessServices ] -------------------
MBAMService (MBAMService) - The service has stopped
McAfee Validation Trust Protection Service (mfevtp) - The service is running
C:\WINDOWS\System32\mfevtps.exe v.0.0.0.0
C:\Program Files\Windows Defender\MsMpEng.exe v.4.8.10240.16384
C:\Program Files\Windows Defender\MpCmdRun.exe v.4.8.10240.16384
C:\Program Files\Windows Defender\NisSrv.exe v.4.8.10240.16384
Windows Defender Service (WinDefend) - The service is running
Windows Defender Network Inspection Service (WdNisSvc) - The service is running
ZAM Controller Service (ZAMSvc) - The service is running
C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe v.0.0.0.0
---------------------------- [ UnwantedApps ] -----------------------------
FATE v.2.2.0.82 << Hidden Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.
----------------------------- [ End of Log ] ------------------------------
- /b ↩︎
Comment
-
Also, it seems you did not run the McAfee removal tool. Please do so when you have completed all other task.Comment
-
-
Adware Removal Tool Scan.
Download Adware removal tool to your desktop, right click the icon and select Run as Administrator.
[MEDIA=imgur]LOr0Gd7[/MEDIA]
Hit Ok.
[MEDIA=imgur]sYFsqHx[/MEDIA]
Hit next make sure to leave all items checked, for removal.
[MEDIA=imgur]8NcZjGc[/MEDIA]
The Program will close all open programs to complete the removal, so save any work and hit OK. Then hit OK after the removal process is complete, thenOK again to finish up. Post log generated by tool.
ZHP Scan.
Please download Zhp Cleaner to your desktop. Right Click the icon and select run as administrator.- Once you have started the program, you will need to click the scanner button.
[IMG alt="EgsT69u" width="602px" height="129px"]https://windowsinstructed.com/wp-content/uploads/2015/06/EgsT69u.png[/IMG]
The program will close all open browsers!
3. Once the scan is completed, the you will want to click the Repair button.
[URL unfurl="true"]http://windowsinstructed.com/wp-content/uploads/2015/06/6QJjV50.png[/URL]
At the end of the process you may be asked to reboot your machine. After you reboot a report will open on your desktop.
Copy and paste the report here in your next reply.Comment
-
Adaware Log;
[-] Deleted ->> File ->> C:\Program Files (x86)\Common Files\L&H\SpeechEngines\1033\TTS\TTS3000\ENUTEMPP. DLL
[-] Deleted ->> File ->> C:\Users\CEP Local 440\Appdata\LocalLow\Microsoft\Internet Explorer\Services\search_{7F4EFF06-7032-458e-AE16-1C1D8255C28A}.ico
[-] Deleted ->> Registry Value Data ->> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy{628F3201-34D0-49C0-BB9A-82A26AEFB291}\ RegValue: AppName RegData: TbHelper2.exe : TbHelper2.exe
[-] Deleted ->> Registry Value Data ->> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy{AD9CE514-081C-4EB1-B6A6-9BEA2B97B512}\ RegValue: AppPath RegData: C:\Program Files (x86)\ConduitEngine : C:\Program Files (x86)\ConduitEngine
[-] Deleted ->> Registry Value Data ->> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy{AD9CE514-081C-4EB1-B6A6-9BEA2B97B512}\ RegValue: AppName RegData: ConduitEngineHelper.exe : ConduitEngineHelper.exe
[-] Deleted ->> Registry Value Data ->> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy{AD9CE514-081C-4EB1-B6A6-9BEA2B97B512}\ RegValue: AppPath RegData: C:\Program Files (x86)\ConduitEngine : C:\Program Files (x86)\ConduitEngine
[-] Deleted ->> Registry Value Data ->> HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\ Internet Explorer\Low Rights\ElevationPolicy{628F3201-34D0-49C0-BB9A-82A26AEFB291}\ RegValue: AppName RegData: TbHelper2.exe : TbHelper2.exe
[-] Deleted ->> Registry Value Data ->> HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\ Internet Explorer\Low Rights\ElevationPolicy{AD9CE514-081C-4EB1-B6A6-9BEA2B97B512}\ RegValue: AppPath RegData: C:\Program Files (x86)\ConduitEngine : C:\Program Files (x86)\ConduitEngine
[-] Deleted ->> Registry Value Data ->> HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\ Internet Explorer\Low Rights\ElevationPolicy{AD9CE514-081C-4EB1-B6A6-9BEA2B97B512}\ RegValue: AppName RegData: ConduitEngineHelper.exe : ConduitEngineHelper.exe
[-] Deleted ->> Registry Value Data ->> HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\ Internet Explorer\Low Rights\ElevationPolicy{AD9CE514-081C-4EB1-B6A6-9BEA2B97B512}\ RegValue: AppPath RegData: C:\Program Files (x86)\ConduitEngine : C:\Program Files (x86)\ConduitEngine
[-] Deleted ->> Registry Value Data ->> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy{628F3201-34D0-49C0-BB9A-82A26AEFB291}\ RegValue: AppName RegData: TbHelper2.exe : TbHelper2.exe
[-] Deleted ->> Registry Value Data ->> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy{AD9CE514-081C-4EB1-B6A6-9BEA2B97B512}\ RegValue: AppPath RegData: C:\Program Files (x86)\ConduitEngine : C:\Program Files (x86)\ConduitEngine
[-] Deleted ->> Registry Value Data ->> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy{AD9CE514-081C-4EB1-B6A6-9BEA2B97B512}\ RegValue: AppName RegData: ConduitEngineHelper.exe : ConduitEngineHelper.exe
[-] Deleted ->> Registry Value Data ->> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy{AD9CE514-081C-4EB1-B6A6-9BEA2B97B512}\ RegValue: AppPath RegData: C:\Program Files (x86)\ConduitEngine : C:\Program Files (x86)\ConduitEngine
[-] Deleted ->> Registry Value Data ->> HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\ Internet Explorer\Low Rights\ElevationPolicy{628F3201-34D0-49C0-BB9A-82A26AEFB291}\ RegValue: AppName RegData: TbHelper2.exe : TbHelper2.exe
[-] Deleted ->> Registry Value Data ->> HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\ Internet Explorer\Low Rights\ElevationPolicy{AD9CE514-081C-4EB1-B6A6-9BEA2B97B512}\ RegValue: AppPath RegData: C:\Program Files (x86)\ConduitEngine : C:\Program Files (x86)\ConduitEngine
[-] Deleted ->> Registry Value Data ->> HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\ Internet Explorer\Low Rights\ElevationPolicy{AD9CE514-081C-4EB1-B6A6-9BEA2B97B512}\ RegValue: AppName RegData: ConduitEngineHelper.exe : ConduitEngineHelper.exe
[-] Deleted ->> Registry Value Data ->> HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\ Internet Explorer\Low Rights\ElevationPolicy{AD9CE514-081C-4EB1-B6A6-9BEA2B97B512}\ RegValue: AppPath RegData: C:\Program Files (x86)\ConduitEngine : C:\Program Files (x86)\ConduitEngine
[-] Repaired ->> File ->> C:\Users\CEP Local 440\AppData\Local\Google\Chrome\User Data\Default\Preferences
[-] Deleted ->> Registry Key ->> HKEY_CURRENT_USER\Software\AppDataLow\Software\Sma rtbar
[-] Deleted ->> Registry Key ->> HKEY_CURRENT_USER\Software\AppDataLow\Software\Tel evisionFanaticEI
[-] Deleted ->> Registry Key ->> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\mypcbackup.com
[-] Deleted ->> Registry Key ->> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\televisionfanatic. com
[-] Deleted ->> Registry Key ->> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\weatherblink.com
[-] Deleted ->> Registry Key ->> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\taphss
[-] Deleted ->> Registry Key ->> HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\t aphss
ThanksComment
Comment