Cannot remove MUVIC SMART BAR software

Status
Not open for further replies.

Pantera231

New Member
Thread author
Aug 10, 2014
2
I have tried several programs and nothing will remove this damn thing.

I get these messages when trying to remove with the regular windows program uninstall:

"the feature you are trying to use is on a network resource that is unavailable. Click OK to try again, or enter an alternate path to a folder containing the installation package 'installer.msi' in the box below.

So then I hit cancel and get this message: "the installation source for this product is not available. Verify that the source exists and that you can access it"

Here's the results from ZOEK:


Zoek.exe v5.0.0.0 Updated 09-August-2014
Tool run by Adrian on Sun 08/10/2014 at 11:51:53.73.
Microsoft Windows 8 6.2.9200 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Adrian\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\395UGEIZ\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
8/10/2014 11:54:40 AM Zoek.exe System Restore Point Created Succesfully.
==== Installed Programs ======================
Adobe Reader X (10.1.10)
AMD Accelerated Video Transcoding
AMD APP SDK Runtime
AMD Catalyst Install Manager
AMD Quick Stream
AMD VISION Engine Control Center
Bejeweled 3
BioShock
BitTorrent
Catalyst Control Center - Branding
Catalyst Control Center Graphics Previews Common
Catalyst Control Center Localization All
ccc-utility64
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
CCleaner
Cisco WebEx Meetings
Citrix Online Launcher
Classic Shell
D3DX10
Dead SpaceT
Farmscapes
FATE
Google Earth
Google Update Helper
GoToMeeting 6.3.0.1468
HitmanPro 3.7
HP FWUpdateEDO2
HP Officejet Pro 8600 Basic Device Software
HP Officejet Pro 8600 Help
HP Officejet Pro 8600 Product Improvement Study
HP Update
I.R.I.S. OCR
Java 7 Update 65
Java Auto Updater
Juniper Networks Network Connect 7.4.0
Juniper Networks Network Connect 8.0
Juniper Networks Setup Client
Juniper Networks, Inc. Setup Client 64-bit Activex Control
Juniper Networks, Inc. Setup Client Activex Control
Malwarebytes Anti-Malware version 2.0.2.1012
Microsoft App Update for microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe (x64)
Microsoft Application Error Reporting
Microsoft Office Professional Plus 2013 - en-us
Microsoft Silverlight
Microsoft SkyDrive
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
More Games - WildTangent
Movie Maker
MSVCRT
MSVCRT110
MSVCRT110_amd64
Muvic Smartbar
Need For SpeedT World
Nitro Reader 3
Norton Online Backup
Norton Online Backup ARA
Norton PC Checkup
Norton Security Dashboard
Office 15 Click-to-Run Extensibility Component
Office 15 Click-to-Run Licensing Component
Office 15 Click-to-Run Localization Component
Origin
PdaNet+ for Android 4.15
Penguins
Photo Common
Photo Gallery
Pioneer XDJ_R1 Driver
Plants vs. Zombies - Game of the Year
PlayReady PC Runtime amd64
Polar Bowler
Premium Sound HD
PrimoPDF -- brought to you by Nitro PDF Software
Realtek Ethernet Controller Driver
Realtek High Definition Audio Driver
Realtek USB 2.0 Card Reader
Realtek WLAN Driver
rekordbox 2.2.3
Serious Sam: The Second Encounter
Steam
Synaptics Pointing Device Driver
TeamViewer 9
Toshiba App Place
TOSHIBA Application Installer
Toshiba Book Place
TOSHIBA Desktop Assist
TOSHIBA eco Utility
TOSHIBA Function Key
Toshiba Password Utility
TOSHIBA PC Health Monitor
TOSHIBA Quality Application
TOSHIBA Recovery Media Creator
TOSHIBA Resolution+ Plug-in for Windows Media Player
TOSHIBA Service Station
TOSHIBA System Driver
TOSHIBA System Settings
TOSHIBA User's Guide
TOSHIBA VIDEO PLAYER
TOSHIBARegistration
Update Installer for WildTangent Games App
US-322/US-366 drivers
Virtual Villagers 4 - The Tree of Life
VLC media player 2.1.3
Widevine Media Optimizer Chrome 6.0.0
WildTangent Games
WildTangent Games App (Toshiba Games)
Winamp
Windows Live Communications Platform
Windows Live Essentials
Windows Live Installer
Windows Live Photo Common
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live UX Platform
Windows Live UX Platform Language Pack
Wondershare PDF Editor(Build 3.6.3)
==== Running Processes ======================
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Juniper Networks\Common Files\dsNcService.exe
C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.15\ccSvcHst.exe
C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.15\ccSvcHst.exe
C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe
C:\Users\Adrian\AppData\Roaming\BitTorrent\BitTorrent.exe
C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.15\SymcPCCULaunchSvc.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Users\Adrian\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\395UGEIZ\zoek.exe
C:\windows\SysWOW64\cmd.exe
C:\windows\SysWOW64\cmd.exe
C:\windows\SysWOW64\cmd.exe
==== Services (whitelist) ======================
Powered by E Dev
R2 - [AdobeARMservice] - Adobe Acrobat Update Service - "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
R2 - [AMD External Events Utility] - AMD External Events Utility - C:\windows\system32\atiesrxx.exe
R2 - [ClickToRunSvc] - Microsoft Office ClickToRun Service - "C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
R2 - [dsNcService] - Juniper Network Connect Service - "C:\Program Files (x86)\Juniper Networks\Common Files\dsNcService.exe"
R2 - [GamesAppIntegrationService] - GamesAppIntegrationService - "C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe"
R2 - [GFNEXSrv] - GFNEX Service - C:\Program Files (x86)\Toshiba\Password Utility\GFNEXSrv.exe
R2 - [HitmanProScheduler] - HitmanPro Scheduler - C:\Program Files\HitmanPro\hmpsched.exe
R2 - [NOBU] - Norton Online Backup - "C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe" SERVICE
R2 - [Norton PC Checkup Application Launcher] - Norton PC Checkup Application Launcher - C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.15\SymcPCCULaunchSvc.exe /s
R2 - [PCCUJobMgr] - Common Client Job Manager Service - "C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.15\ccSvcHst.exe" /s "PCCUJobMgr" /m "C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.15\diMaster.dll" /prefetch:1
R2 - [TeamViewer9] - TeamViewer 9 - "C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
R2 - [TODDSrv] - TOSHIBA Optical Disc Drive Service - C:\Windows\system32\TODDSrv.exe
R2 - [TOSHIBA eco Utility Service] - TOSHIBA eco Utility Service - "C:\Program Files\Toshiba\Teco\TecoService.exe"
R2 - [WinDefend] - Windows Defender Service - "C:\Program Files\Windows Defender\MsMpEng.exe"
R2 - [WMPNetworkSvc] - Windows Media Player Network Sharing Service - "C:\Program Files\Windows Media Player\wmpnetwk.exe"
R2 - [WSearch] - Windows Search - C:\windows\system32\SearchIndexer.exe /Embedding
R3 - [TMachInfo] - TMachInfo - "C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe"
R3 - [TPCHSrv] - TPCH Service - "C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe"
R3 - [VSS] - Volume Shadow Copy - C:\windows\system32\vssvc.exe
S2 - [gupdate] - Google Update Service (gupdate) - "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc
S2 - [sppsvc] - Software Protection - C:\windows\system32\sppsvc.exe
S3 - [ALG] - Application Layer Gateway Service - C:\windows\System32\alg.exe
S3 - [COMSysApp] - COM+ System Application - C:\windows\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
S3 - [Fax] - Fax - C:\windows\system32\fxssvc.exe
S3 - [FontCache3.0.0.0] - Windows Presentation Foundation Font Cache 3.0.0.0 - C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
S3 - [GamesAppService] - GamesAppService - "C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe"
S3 - [gupdatem] - Google Update Service (gupdatem) - "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc
S3 - [MSDTC] - Distributed Transaction Coordinator - C:\windows\System32\msdtc.exe
S3 - [msiserver] - Windows Installer - C:\windows\system32\msiexec.exe /V
S3 - [ose] - Office Source Engine - "C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE"
S3 - [PerfHost] - Performance Counter DLL Host - C:\windows\SysWow64\perfhost.exe
S3 - [RpcLocator] - Remote Procedure Call (RPC) Locator - C:\windows\system32\locator.exe
S3 - [SNMPTRAP] - SNMP Trap - C:\windows\System32\snmptrap.exe
S3 - [Steam Client Service] - Steam Client Service - "C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
S3 - [TrustedInstaller] - Windows Modules Installer - C:\windows\servicing\TrustedInstaller.exe
S3 - [vds] - Virtual Disk - C:\windows\System32\vds.exe
S3 - [wbengine] - Block Level Backup Engine Service - "C:\windows\system32\wbengine.exe"
S3 - [wmiApSrv] - WMI Performance Adapter - C:\windows\system32\wbem\WmiApSrv.exe
==== Folders Found ======================

==== Files Found ======================

--- C:\Windows\System32\GroupPolicy\GPT.INI ---
Company: ------
File Description: ------
File Version: ------
Product Name: ------
Copyright: ------
Original Filename: ------
File type: ----a-w-
File size: 11
Created time: 2014-08-09 01:24:16
Modified time: 2014-08-09 01:26:00
MD5: EC3584F3DB838942EC3669DB02DC908E
SHA1: 8DCEB96874D5C6425EBB81BFEE587244C89416DA

--- C:\Windows\SysWOW64\GroupPolicy\gpt.ini ---
Company: ------
File Description: ------
File Version: ------
Product Name: ------
Copyright: ------
Original Filename: ------
File type: ----a-w-
File size: 11
Created time: 2014-08-09 01:24:16
Modified time: 2014-08-09 01:26:00
MD5: EC3584F3DB838942EC3669DB02DC908E
SHA1: 8DCEB96874D5C6425EBB81BFEE587244C89416DA

==== Folders Found In C:\Windows\System32\GroupPolicy ======================
2014-08-09 01:24:16 d-----w- C:\Windows\System32\GroupPolicy\Machine
2014-08-09 01:24:16 d-----w- C:\Windows\System32\GroupPolicy\User
==== Files Found In C:\Windows\System32\GroupPolicy ======================
2014-08-09 01:26:00 165 ----a-w- BF233D3F32875CFCD621F531A00AA558 C:\Windows\System32\GroupPolicy\GPT.INI
==== Files Found In C:\Windows\SysWOW64\GroupPolicy ======================
2014-08-09 01:26:00 11 ----a-w- EC3584F3DB838942EC3669DB02DC908E C:\Windows\SysWOW64\GroupPolicy\gpt.ini
==== System Specs ======================
Windows: Windows Version 6.2 (Build 9200)
Memory (RAM): 5597 MB
CPU Info: AMD A8-4500M APU with Radeon(tm) HD Graphics
CPU Speed: 1900.2 MHz
Sound Card: Speakers (Realtek High Definiti |
Display Adapters: AMD Radeon HD 7640G | AMD Radeon HD 7640G | AMD Radeon HD 7640G | AMD Radeon HD 7640G
Monitors: 1x; Generic PnP Monitor |
Screen Resolution: 1600 X 900 - 32 bit
Network: Network Present
Network Adapters: Juniper Network Connect Virtual Adapter | PdaNet Broadband Adapter | Microsoft Wi-Fi Direct Virtual Adapter | Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC | Realtek PCIe FE Family Controller
CD / DVD Drives: 1x (D: | ) D: TSSTcorpCDDVDW SN-208AB
Ports: COM Ports NOT Present. LPT Port NOT Present.
Mouse: 16 Button Wheel Mouse Present
Hard Disks: C: 586.0GB
Hard Disks - Free: C: 394.4GB
Manufacturer *: Insyde Corp.
BIOS Info: AT/AT COMPATIBLE | | TOSASU - 1
Time Zone: Central Standard Time
Motherboard *: AMD PLCSC8
Country: United States
Language: ENU
==== System Specs (Software) ======================
Anti-Virus: Windows Defender On-access scanning disabled (Outdated)
Anti-Spyware: Windows Defender disabled (Outdated)
Internet Explorer Version: 10.0.9200.17028
Adobe Reader version: 10.1.10.18
Sun Java version: 1.7.0_65 (32-bit)
==== Files Recently Created / Modified ======================
====== C:\windows ====
====== C:\Users\Adrian\AppData\Local\Temp ====
2014-08-10 15:39:07 2E0323A94915FAAB10A25F3BABF82584 157696 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\erunt\ERUNT.EXE
2014-08-09 01:55:43 8B89890B917D8DFDBD63B43F732C7EC0 488448 ----a-w- C:\Users\Adrian\AppData\Local\Temp\TMP53E57F9F\Newtonsoft.Json.dll
2014-08-09 01:55:43 035A814AE8C845A5226BDBFDE52C28F7 648160 ----a-w- C:\Users\Adrian\AppData\Local\Temp\TMP53E57F9F\SI.exe
2014-08-09 01:24:09 19BB43ED8DE49004742EF96B43AA626B 6629376 ----a-w- C:\Users\Adrian\AppData\Local\Temp\fazxywto.eo4.exe
2014-08-09 01:24:08 90C6169A28F40C8B31AF44DDFC31F338 1175128 ----a-w- C:\Users\Adrian\AppData\Local\Temp\ojcu22rw.4es.exe
2014-08-09 01:24:03 C081E917502519318C2258E8DC6B4DE9 2630344 ----a-w- C:\Users\Adrian\AppData\Local\Temp\kmce5uch.x3a.exe
2014-08-09 01:23:50 8B89890B917D8DFDBD63B43F732C7EC0 488448 ----a-w- C:\Users\Adrian\AppData\Local\Temp\TMP53E57826\Newtonsoft.Json.dll
2014-08-09 01:23:50 035A814AE8C845A5226BDBFDE52C28F7 648160 ----a-w- C:\Users\Adrian\AppData\Local\Temp\TMP53E57826\SI.exe
2014-08-05 03:07:22 FB5621842FDABF9F8359775573498FBC 605064 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\npGoogleUpdate3.dll
2014-08-05 03:07:22 C95CDDF65F9F8C9433AFF8F0A811375A 189320 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\psmachine_64.dll
2014-08-05 03:07:22 84180917AAB55EE4392C54E0E0BD4022 166792 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\psmachine.dll
2014-08-05 03:07:22 715CCB3F5EDA626198CCADC7AB8CE9A2 189320 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\psuser_64.dll
2014-08-05 03:07:22 3D58798BD1D1F96381C0B47CA859739D 166792 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\psuser.dll
2014-08-05 03:07:20 DEC1A40D0210FAD3BB67028B97F155A4 26112 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\GoogleUpdateHelper.msi
2014-08-05 03:07:20 AC6998D92A311E7CF0B4DAEC3566F444 51080 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\GoogleUpdateBroker.exe
2014-08-05 03:07:20 AA0E4F73727BFC8BA404884B1C1DB719 285064 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\GoogleCrashHandler64.exe
2014-08-05 03:07:20 956672375AF066D958E4D07F5ABAFC1A 51080 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\GoogleUpdateOnDemand.exe
2014-08-05 03:07:20 901AC7A94B75648F4084A37640473271 895120 ----a-w- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\GoogleUpdateSetup.exe
2014-08-05 03:07:20 80E350E0AA963B2125896B13E60A4D68 114568 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\GoogleUpdateComRegisterShell64.exe
2014-08-05 03:07:20 77E585EDD4C7EB7AB2ACC36BC1DC32A5 1696648 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\goopdate.dll
2014-08-05 03:07:20 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\GoogleUpdate.exe
2014-08-05 03:07:20 397D14958D6C9C2B365469A857B2AC4E 230792 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\GoogleCrashHandler.exe
2014-08-04 20:49:56 0B1095D6FB36ACE9C3FB8D6AD6ACB83F 113230 ----a-w- C:\Users\Adrian\AppData\Local\Temp\nsb98B9.tmp.exe
2014-08-04 20:34:49 33B41261C1E2FF76A89A8EF153D4B9FB 11454000 ----a-w- C:\Users\Adrian\AppData\Local\Temp\Installer.exe
2014-08-04 20:34:48 D2175A5865544B69B6CD51672AACA57C 5619760 ----a-w- C:\Users\Adrian\AppData\Local\Temp\pcspeedup.exe
2014-08-04 20:04:13 B51697F330E3B5095E03C7603E963723 49152 ----a-w- C:\Users\Adrian\AppData\Local\Temp\tenus.exe
2014-07-29 16:01:58 FB5621842FDABF9F8359775573498FBC 605064 ----atw- C:\Users\Adrian\AppData\Local\Temp\{F7F1DA78-40E8-4C89-A0BC-3EF8ADFA765C}\npGoogleUpdate3.dll
2014-07-29 16:01:58 C95CDDF65F9F8C9433AFF8F0A811375A 189320 ----atw- C:\Users\Adrian\AppData\Local\Temp\{F7F1DA78-40E8-4C89-A0BC-3EF8ADFA765C}\psmachine_64.dll
2014-07-29 16:01:58 84180917AAB55EE4392C54E0E0BD4022 166792 ----atw- C:\Users\Adrian\AppData\Local\Temp\{F7F1DA78-40E8-4C89-A0BC-3EF8ADFA765C}\psmachine.dll
2014-07-29 16:01:58 715CCB3F5EDA626198CCADC7AB8CE9A2 189320 ----atw- C:\Users\Adrian\AppData\Local\Temp\{F7F1DA78-40E8-4C89-A0BC-3EF8ADFA765C}\psuser_64.dll
2014-07-29 16:01:58 3D58798BD1D1F96381C0B47CA859739D 166792 ----atw- C:\Users\Adrian\AppData\Local\Temp\{F7F1DA78-40E8-4C89-A0BC-3EF8ADFA765C}\psuser.dll
2014-07-29 16:01:57 901AC7A94B75648F4084A37640473271 895120 ----a-w- C:\Users\Adrian\AppData\Local\Temp\{F7F1DA78-40E8-4C89-A0BC-3EF8ADFA765C}\GoogleUpdateSetup.exe
2014-07-29 16:01:57 77E585EDD4C7EB7AB2ACC36BC1DC32A5 1696648 ----atw- C:\Users\Adrian\AppData\Local\Temp\{F7F1DA78-40E8-4C89-A0BC-3EF8ADFA765C}\goopdate.dll
2014-07-29 16:01:56 DEC1A40D0210FAD3BB67028B97F155A4 26112 ----atw- C:\Users\Adrian\AppData\Local\Temp\{F7F1DA78-40E8-4C89-A0BC-3EF8ADFA765C}\GoogleUpdateHelper.msi
2014-07-29 16:01:56 AC6998D92A311E7CF0B4DAEC3566F444 51080 ----atw- C:\Users\Adrian\AppData\Local\Temp\{F7F1DA78-40E8-4C89-A0BC-3EF8ADFA765C}\GoogleUpdateBroker.exe
2014-07-29 16:01:56 AA0E4F73727BFC8BA404884B1C1DB719 285064 ----atw- C:\Users\Adrian\AppData\Local\Temp\{F7F1DA78-40E8-4C89-A0BC-3EF8ADFA765C}\GoogleCrashHandler64.exe
2014-07-29 16:01:56 956672375AF066D958E4D07F5ABAFC1A 51080 ----atw- C:\Users\Adrian\AppData\Local\Temp\{F7F1DA78-40E8-4C89-A0BC-3EF8ADFA765C}\GoogleUpdateOnDemand.exe
2014-07-29 16:01:56 80E350E0AA963B2125896B13E60A4D68 114568 ----atw- C:\Users\Adrian\AppData\Local\Temp\{F7F1DA78-40E8-4C89-A0BC-3EF8ADFA765C}\GoogleUpdateComRegisterShell64.exe
2014-07-29 16:01:56 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\Users\Adrian\AppData\Local\Temp\{F7F1DA78-40E8-4C89-A0BC-3EF8ADFA765C}\GoogleUpdate.exe
2014-07-29 16:01:56 397D14958D6C9C2B365469A857B2AC4E 230792 ----atw- C:\Users\Adrian\AppData\Local\Temp\{F7F1DA78-40E8-4C89-A0BC-3EF8ADFA765C}\GoogleCrashHandler.exe
====== Java Cache =====
2014-07-29 16:22:20 46A8DB48AA339C7171E7A9C12268EBEF 157 ----a-w- C:\Users\Adrian\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\51\4b0d333-e52d8a9faf7181be6a54bb0132343afcdd9463d2df28cc50e1ecfab7f30853d3-6.0.lap
2014-07-29 16:22:26 C75E72642119AF8A93C98CF32C011220 228658 ----a-w- C:\Users\Adrian\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\9\1fcebd09-5dbbebf6
2014-08-05 01:41:04 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\Adrian\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-4a3c0b1d
====== C:\windows\SysWOW64 =====
2014-08-10 14:42:58 8EAC546FEC31D53235B0589F86B18139 70144 ----a-w- C:\windows\SysWOW64\tasks.dll
2014-08-06 18:29:21 0DC5AF80D059DEC792B665ED598C6567 536576 ----a-w- C:\windows\SysWOW64\sqlite3.dll
2014-07-29 16:20:14 7F26D694BC7E78958BE38D1D9AAFC2B9 272808 ----a-w- C:\windows\SysWOW64\javaws.exe
2014-07-29 16:20:05 FFAECE8AEC1D9CCDCEC1C55C2CA450BA 175528 ----a-w- C:\windows\SysWOW64\java.exe
2014-07-29 16:20:05 67BE34FBF29E783691C713517102E67E 175528 ----a-w- C:\windows\SysWOW64\javaw.exe
2014-07-29 16:20:05 419094DF76A32252ECD70730382029ED 98216 ----a-w- C:\windows\SysWOW64\WindowsAccessBridge-32.dll
====== C:\windows\SysWOW64\drivers =====
====== C:\windows\Sysnative =====
2014-08-10 16:41:21 074FD1910BBF7CD5E2876A1FEFD9B371 5252 ----a-w- C:\windows\Sysnative\.crusader
====== C:\windows\Sysnative\drivers =====
2014-08-09 01:24:19 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\windows\Sysnative\drivers\Msft_Kernel_webinstr_01009.Wdf
2014-08-05 02:54:54 8A50D5304E6AE48664CF5838EC32F647 122584 ----a-w- C:\windows\Sysnative\drivers\MBAMSwissArmy.sys
2014-08-05 02:54:30 F92B0E478C0FAA6D6661E6E977247E60 25816 ----a-w- C:\windows\Sysnative\drivers\mbam.sys
2014-08-05 02:54:30 9D9ED48F841EA37AA5310D54B9E5D3C7 91352 ----a-w- C:\windows\Sysnative\drivers\mbamchameleon.sys
2014-08-05 02:54:30 0664F6335F108F38FE08C3CA747311EE 64216 ----a-w- C:\windows\Sysnative\drivers\mwac.sys
2014-07-22 05:41:03 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\windows\Sysnative\drivers\Msft_Kernel_WinUsb_01007.Wdf
2014-07-22 05:30:51 A010F13D27C1033A8BE09D5FA9BF348B 15360 ----a-w- C:\windows\Sysnative\drivers\pneteth.sys
====== C:\windows\Tasks ======
2014-08-09 01:23:57 1D1C185258DC16975B4E8AEEFAFD359D 3250 ----a-w- C:\windows\Sysnative\Tasks\GPUP
====== C:\windows\Temp ======
======= C:\Program Files =====
2014-08-10 16:34:44 -------- d-----w- C:\Program Files\HitmanPro
2014-08-10 16:30:31 -------- d-----w- C:\Program Files\Classic Shell
2014-08-04 20:35:20 -------- d-----w- C:\Program Files\005
======= C:\PROGRA~2 =====
2014-08-05 21:29:11 -------- d-----w- C:\PROGRA~2\TeamViewer
2014-08-04 23:59:04 -------- d-----w- C:\PROGRA~2\0979EC39-B1D4-47D3-9D25-1305B55C64DF
2014-07-29 16:20:18 -------- d-----w- C:\PROGRA~2\COMMON~1\Java
2014-07-29 16:19:49 -------- d-----w- C:\PROGRA~2\Java
2014-07-22 05:30:49 -------- d-----w- C:\PROGRA~2\PdaNet for Android
======= C: =====
====== C:\Users\Adrian\AppData\Roaming ======
2014-08-09 01:24:18 -------- d-----w- C:\Users\Adrian\AppData\Locallow\{EE89FB41-5211-9FF6-6D1A-B52C901EC9C1}
2014-08-09 01:24:15 -------- d-----w- C:\Users\HomeGroupUser$\AppData\Local\Comodo
2014-08-09 01:24:15 -------- d-----w- C:\Users\Guest\AppData\Local\Comodo
2014-08-09 01:24:15 -------- d-----w- C:\Users\Adrian\AppData\Local\Comodo
2014-08-09 01:24:15 -------- d-----w- C:\Users\Administrator\AppData\Local\Comodo
2014-08-09 01:24:14 -------- d-----w- C:\Users\HomeGroupUser$\AppData\Local\Google
2014-08-09 01:24:14 -------- d-----w- C:\Users\Guest\AppData\Local\Google
2014-08-09 01:24:14 -------- d-----w- C:\Users\Administrator\AppData\Local\Google
2014-08-05 21:29:19 -------- d-----w- C:\Users\Adrian\AppData\Roaming\TeamViewer
2014-07-29 16:19:02 -------- d-----w- C:\Users\Adrian\AppData\Locallow\Sun
====== C:\Users\Adrian ======
2014-08-10 16:34:44 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro
2014-08-10 16:33:38 -------- d-----w- C:\ProgramData\HitmanPro
2014-08-10 16:30:31 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell
2014-08-10 16:29:21 1DD357157605C3462752FFB0B8B38EB8 6791360 ----a-w- C:\Users\Adrian\Downloads\ClassicShellSetup_4_1_0.exe
2014-08-10 15:38:01 CA630DBADEB5B6101531F986ADFE46C9 1016261 ----a-w- C:\Users\Adrian\Downloads\JRT.exe
2014-08-10 15:33:33 9D46D72131D0E36A79D4819F08EA0E0B 1366203 ----a-w- C:\Users\Adrian\Downloads\adwcleaner_3.304.exe
2014-08-09 01:55:32 FEDEA1F9F2B920AE88F83F0A799DEA81 1283072 ----a-w- C:\Users\Adrian\Downloads\Muppets.Most.Wanted.2014.1080p.BluRay.x264-ALLiANCE (1).exe
2014-08-09 01:24:23 -------- d-----w- C:\ProgramData\d1c9a5f97cfcc192
2014-08-09 01:24:19 075B0DA82E23780FA2DD7F2EA0464FD4 258 --sha-r- C:\ProgramData\ntuser.pol
2014-08-09 01:24:14 -------- d-----w- C:\Users\HomeGroupUser$\AppData
2014-08-09 01:24:14 -------- d-----w- C:\Users\Guest\AppData
2014-08-09 01:24:14 -------- d-----w- C:\Users\Administrator\AppData
2014-08-09 01:23:31 FEDEA1F9F2B920AE88F83F0A799DEA81 1283072 ----a-w- C:\Users\Adrian\Downloads\Muppets.Most.Wanted.2014.1080p.BluRay.x264-ALLiANCE.exe
2014-08-09 01:22:13 FEDEA1F9F2B920AE88F83F0A799DEA81 1283072 ----a-w- C:\Users\Adrian\Downloads\Muppets Most Wanted 2014 BRRip XVID Audio Latino-JcGoku21.exe
2014-08-08 00:00:18 -------- d-----r- C:\windows\sysWoW64\config\systemprofile\Desktop
2014-08-06 20:33:32 556D52DDAF9A87F8CD7EC363DA587545 98 ----a-w- C:\Users\Adrian\Desktop\Excel2013.bat
2014-08-06 18:28:01 065B9F528580B2C8A54E9A14C6890685 1361309 ----a-w- C:\Users\Adrian\Downloads\adwcleaner_3.302.exe
2014-08-05 21:28:07 99A91FC70D95F6D6ED34A379B3582BCA 6226040 ----a-w- C:\Users\Adrian\Downloads\TeamViewer_Setup_en (1).exe
2014-08-05 21:27:48 99A91FC70D95F6D6ED34A379B3582BCA 6226040 ----a-w- C:\Users\Adrian\Downloads\TeamViewer_Setup_en.exe
2014-08-05 03:23:52 -------- d-----w- C:\ProgramData\IDM
2014-08-05 03:23:31 F6A009D00EED4697878547F61B9EE767 4221480 ----a-w- C:\Users\Adrian\Downloads\WidevineMediaOptimizerChrome.exe
2014-07-29 16:22:12 -------- d-----w- C:\ProgramData\Oracle
2014-07-29 16:20:21 -------- d-----w- C:\ProgramData\Sun
2014-07-29 16:20:05 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-07-29 16:19:51 7C58B746997572AE9A4C5840927270EA 1810360 ----a-w- C:\Users\Adrian\Downloads\JuniperSetupClientInstaller.exe
2014-07-29 16:18:56 C9D490D6D602309F182DFE7304100930 918952 ----a-w- C:\Users\Adrian\Downloads\chromeinstall-7u65.exe
2014-07-22 05:30:51 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PdaNet for Android
====== C: exe-files ==
2014-08-10 16:58:28 2C01CC1BF01D03745E4B05E4317AF450 1976344 ----a-w- C:\Users\Adrian\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4LQYMFAU\dl-7Zip-base.exe
2014-08-10 16:34:45 EA100E56171D4BBA8E4D0B37745E985F 127752 ----a-w- C:\Program Files\HitmanPro\hmpsched.exe
2014-08-10 16:34:44 0C20503483D6FBAF0DF97D7043BB5583 11188736 ----a-w- C:\Program Files\HitmanPro\HitmanPro.exe
2014-08-10 16:29:21 1DD357157605C3462752FFB0B8B38EB8 6791360 ----a-w- C:\Users\Adrian\Downloads\ClassicShellSetup_4_1_0.exe
2014-08-10 15:39:07 2E0323A94915FAAB10A25F3BABF82584 157696 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\erunt\ERUNT.EXE
2014-08-10 15:38:01 CA630DBADEB5B6101531F986ADFE46C9 1016261 ----a-w- C:\Users\Adrian\Downloads\JRT.exe
2014-08-10 15:33:33 9D46D72131D0E36A79D4819F08EA0E0B 1366203 ----a-w- C:\Users\Adrian\Downloads\adwcleaner_3.304.exe
2014-08-09 17:11:38 A90FAA6449A4BECA4466564510991BB1 177352 ----a-w- C:\Users\Adrian\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I45SK0X0\spstub[1].exe
2014-08-09 17:11:37 0B813086A3400AAFA1639D08823FBD46 145928 ----a-w- C:\Users\Adrian\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\N9K89BTI\sp-downloader[1].exe
2014-08-09 01:55:43 035A814AE8C845A5226BDBFDE52C28F7 648160 ----a-w- C:\Users\Adrian\AppData\Local\Temp\TMP53E57F9F\SI.exe
2014-08-09 01:55:32 FEDEA1F9F2B920AE88F83F0A799DEA81 1283072 ----a-w- C:\Users\Adrian\Downloads\Muppets.Most.Wanted.2014.1080p.BluRay.x264-ALLiANCE (1).exe
2014-08-09 01:24:09 19BB43ED8DE49004742EF96B43AA626B 6629376 ----a-w- C:\Users\Adrian\AppData\Local\Temp\fazxywto.eo4.exe
2014-08-09 01:24:08 90C6169A28F40C8B31AF44DDFC31F338 1175128 ----a-w- C:\Users\Adrian\AppData\Local\Temp\ojcu22rw.4es.exe
2014-08-09 01:24:03 C081E917502519318C2258E8DC6B4DE9 2630344 ----a-w- C:\Users\Adrian\AppData\Local\Temp\kmce5uch.x3a.exe
2014-08-09 01:23:50 035A814AE8C845A5226BDBFDE52C28F7 648160 ----a-w- C:\Users\Adrian\AppData\Local\Temp\TMP53E57826\SI.exe
2014-08-09 01:23:31 FEDEA1F9F2B920AE88F83F0A799DEA81 1283072 ----a-w- C:\Users\Adrian\Downloads\Muppets.Most.Wanted.2014.1080p.BluRay.x264-ALLiANCE.exe
2014-08-09 01:22:13 FEDEA1F9F2B920AE88F83F0A799DEA81 1283072 ----a-w- C:\Users\Adrian\Downloads\Muppets Most Wanted 2014 BRRip XVID Audio Latino-JcGoku21.exe
2014-08-09 01:15:56 91F60C0FDBE049847E4778059ECB2EF7 1274456 ----a-w- C:\Users\Adrian\AppData\Roaming\BitTorrent\updates\7.9.2_32241.exe
2014-08-06 18:50:22 C139E98EDC5770025B87AF478F43DCDB 705184 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\DCF\SPREADSHEETCOMPARE.EXE
2014-08-06 18:50:22 5B8B68C1B048F5C257AE649122CBF8FA 569584 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\orgchart.exe
2014-08-06 18:28:01 065B9F528580B2C8A54E9A14C6890685 1361309 ----a-w- C:\Users\Adrian\Downloads\adwcleaner_3.302.exe
2014-08-06 08:02:02 0EA33D6A4F4B6B1750B2CB84B9184DB9 3898368 ----a-w- C:\Users\Adrian\AppData\Local\Packages\sMedioforToshiba.TOSHIBAMediaPlayerbysMedioTrueLin_679ekb9hp1h62\AC\Microsoft\CLR_v4.0\NativeImages\TrueLink+\e7c51209ab5aa5e689bcb22f817d4120\TrueLink+.ni.exe
2014-08-06 02:25:37 0EC7BB1D88220A9B47AD83AE0284F3BE 942608 ----a-w- C:\Users\Adrian\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FYBXK39P\mediaplayer_setup[1].exe
2014-08-06 02:23:22 7AADC7C0B8C6848A81037742D6E4861C 8192 ----a-w- C:\Users\Adrian\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\BWHO63HN\java_installer[1].exe
2014-08-05 21:29:15 ECA05D52056B7BB69BA4488510EB0D2E 585288 ----a-w- C:\Program Files (x86)\TeamViewer\Version9\uninstall.exe
2014-08-05 21:29:15 ACEE9158976F3B9C32198CCD62D3513B 264512 ----a-w- C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe
2014-08-05 21:29:15 74E25070B7D39D01D4C9C8A5760C73BE 229696 ----a-w- C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe
2014-08-05 21:29:14 5CEF407E235885DB5421DF79C843F2DF 5052224 ----a-w- C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
2014-08-05 21:29:13 3CA262114956EC95780A25850FF0E413 4623680 ----a-w- C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Desktop.exe
2014-08-05 21:29:11 208270C9AD3E82F6ABAC870F950E5F0D 13246272 ----a-w- C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
2014-08-05 21:28:07 99A91FC70D95F6D6ED34A379B3582BCA 6226040 ----a-w- C:\Users\Adrian\Downloads\TeamViewer_Setup_en (1).exe
2014-08-05 21:27:48 99A91FC70D95F6D6ED34A379B3582BCA 6226040 ----a-w- C:\Users\Adrian\Downloads\TeamViewer_Setup_en.exe
2014-08-05 03:23:52 B1E8A63FC3F09CBB808F67FF788AC0F6 39297 ----a-w- C:\ProgramData\IDM\bin\chrome_uninstaller_admin.exe
2014-08-05 03:23:31 F6A009D00EED4697878547F61B9EE767 4221480 ----a-w- C:\Users\Adrian\Downloads\WidevineMediaOptimizerChrome.exe
2014-08-05 03:07:20 AC6998D92A311E7CF0B4DAEC3566F444 51080 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\GoogleUpdateBroker.exe
2014-08-05 03:07:20 AA0E4F73727BFC8BA404884B1C1DB719 285064 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\GoogleCrashHandler64.exe
2014-08-05 03:07:20 956672375AF066D958E4D07F5ABAFC1A 51080 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\GoogleUpdateOnDemand.exe
2014-08-05 03:07:20 901AC7A94B75648F4084A37640473271 895120 ----a-w- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\GoogleUpdateSetup.exe
2014-08-05 03:07:20 80E350E0AA963B2125896B13E60A4D68 114568 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\GoogleUpdateComRegisterShell64.exe
2014-08-05 03:07:20 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\GoogleUpdate.exe
2014-08-05 03:07:20 397D14958D6C9C2B365469A857B2AC4E 230792 ----atw- C:\Users\Adrian\AppData\Local\Temp\{242047D7-BF9A-4D57-B926-F65BEEE07CE4}\GoogleCrashHandler.exe
2014-08-05 03:00:06 042422EF830363F184CD036D2A0F6C4A 9212060 ----a-w- C:\Users\Adrian\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\CZEH261D\mbam-setup-2.0.2.1012[1].exe
2014-08-04 20:49:56 0B1095D6FB36ACE9C3FB8D6AD6ACB83F 113230 ----a-w- C:\Users\Adrian\AppData\Local\Temp\nsb98B9.tmp.exe
2014-08-04 20:49:20 F3214DF0FB8AE25FFFD9A92FF93FD222 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-2002906881-1285896862-3876618339-1001\$ITCPES5.exe
2014-08-04 20:34:49 33B41261C1E2FF76A89A8EF153D4B9FB 11454000 ----a-w- C:\Users\Adrian\AppData\Local\Temp\Installer.exe
2014-08-04 20:34:48 D2175A5865544B69B6CD51672AACA57C 5619760 ----a-w- C:\Users\Adrian\AppData\Local\Temp\pcspeedup.exe
2014-08-04 20:04:13 B51697F330E3B5095E03C7603E963723 49152 ----a-w- C:\Users\Adrian\AppData\Local\Temp\tenus.exe
2014-08-04 20:03:48 0E605584E798A3B97886DE4814AF9DA3 2012566 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-2002906881-1285896862-3876618339-1001\$RTCPES5.exe
=== C: other files ==
2014-08-10 15:39:04 DD1E4D974B1672ABD09EFFB225791C4A 1230 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\TDL4.bat
2014-08-10 15:39:04 AD2F52DC72B10AF331692E4A4DD80DFC 18670 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\medfos.bat
2014-08-10 15:39:04 A87CD1BAC46CAC0EEEDB571F07077032 8104 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\modules.bat
2014-08-10 15:39:04 8E6020C14F982CF11B3FE7DBB0CB8EDE 24738 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\searchlnk.bat
2014-08-10 15:39:04 86707BCE5CBB65D9B1C41E249B4423BA 152733 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\firefox.bat
2014-08-10 15:39:04 83F691D8398F0E37E71E9355BF730DB9 719 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\ev_clear.bat
2014-08-10 15:39:04 7D8282EB94B5D639B7378811C1924A8F 9516 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\runvalues.bat
2014-08-10 15:39:04 654E9FE74B930A454EE5BDE165794B65 85 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\delorphans.bat
2014-08-10 15:39:04 5B92615B0CEA08D6BA1217C08CBB1443 15919 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\get.bat
2014-08-10 15:39:04 5B71358F97544D9DE58A9A0893079506 39458 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\prelim.bat
2014-08-10 15:39:04 53B191266B30D57F2F835ABBF54C68C5 13963 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\chrome.bat
2014-08-10 15:39:04 3BC04DEBBE9027060D51901133F60101 154678 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\misc.bat
2014-08-10 15:39:04 38A0BDF322ACCC968B0A824C38D50157 29635 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\ask.bat
2014-08-10 15:39:04 335DFF8F23E5EC02B5426362F0F8509B 31401 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\iexplore.bat
2014-08-10 15:39:04 2F80D807DB405C8F6E0F3706B9FED710 10161 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\JRT.bat
2014-08-10 15:39:04 0D08FBD2E6F6C6AC6A504712C4CE6CE3 1226 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\FWPolicy.bat
2014-08-10 15:39:04 0C4649A62845AB5D5DBCC4998477FF6D 1813 ----a-w- C:\Users\Adrian\AppData\Local\Temp\jrt\delfolders.bat
2014-08-06 20:33:32 556D52DDAF9A87F8CD7EC363DA587545 98 ----a-w- C:\Users\Adrian\Desktop\Excel2013.bat
2014-08-06 19:37:49 A81E9D886FCBF054E4B79D3CA7742B3E 232 ----a-w- C:\Users\Adrian\Desktop\Salesport2014.zip
2014-08-06 19:36:17 550509E53B9DB519BAEFCF409074C1B5 216 ----a-w- C:\Users\Adrian\Desktop\Excel2013.zip
2014-08-05 02:54:54 8A50D5304E6AE48664CF5838EC32F647 122584 ----a-w- C:\Windows\System32\Drivers\MBAMSwissArmy.sys
2014-08-05 02:54:30 F92B0E478C0FAA6D6661E6E977247E60 25816 ----a-w- C:\Windows\System32\Drivers\mbam.sys
2014-08-05 02:54:30 9D9ED48F841EA37AA5310D54B9E5D3C7 91352 ----a-w- C:\Windows\System32\Drivers\mbamchameleon.sys
2014-08-05 02:54:30 0664F6335F108F38FE08C3CA747311EE 64216 ----a-w- C:\Windows\System32\Drivers\mwac.sys
==== Startup Registry Enabled ======================
[HKEY_USERS\S-1-5-21-2002906881-1285896862-3876618339-1001\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"="C:\Program Files (x86)\Steam\Steam.exe -silent"
"HP Officejet Pro 8600 (NET)"="C:\Program Files\HP\HP Officejet Pro 8600\Bin\ScanToPCActivationApp.exe -deviceID CN23FBR17Z05KF:NW -scfn HP Officejet Pro 8600 (NET) -AutoStart 1"
"BitTorrent"="C:\Users\Adrian\AppData\Roaming\BitTorrent\BitTorrent.exe /MINIMIZED"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Norton Online Backup"="C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe"
"ToshibaAppPlace"="C:\Program Files (x86)\Toshiba\Toshiba App Place\ToshibaAppPlace.exe"
"StartCCC"="C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun"
"TPUReg"="C:\Program Files (x86)\TOSHIBA\Password Utility\Reg.exe"
"Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"HP Software Update"="C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe"
"Wondershare Helper Compact.exe"="C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe"
"SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"BlockAndSurf"="C:\Program Files (x86)\ver0BlockAndSurf\BlockAndSurf.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"="C:\Program Files (x86)\Steam\Steam.exe -silent"
"HP Officejet Pro 8600 (NET)"="C:\Program Files\HP\HP Officejet Pro 8600\Bin\ScanToPCActivationApp.exe -deviceID CN23FBR17Z05KF:NW -scfn HP Officejet Pro 8600 (NET) -AutoStart 1"
"BitTorrent"="C:\Users\Adrian\AppData\Roaming\BitTorrent\BitTorrent.exe /MINIMIZED"
==== Startup Registry Enabled x64 ======================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s"
"SRS Premium Sound HD"="C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe /f=C:\Program Files\SRS Labs\SRS Control Panel\SRS_Premium_Sound_HD.zip /h"
"TecoResident"="C:\Program Files\TOSHIBA\Teco\TecoResident.exe"
"TSleepSrv"="C:\Program Files (x86)\TOSHIBA\System Setting\TSleepSrv.exe"
"TODDMain"="C:\Program Files (x86)\TOSHIBA\System Setting\TODDMain.exe"
"Classic Start Menu"="C:\Program Files\Classic Shell\ClassicStartMenu.exe -autorun"
"TCrdMain"="%ProgramFiles%\TOSHIBA\Hotkey\TCrdMain_Win8.exe "
"TosWaitSrv"="%ProgramFiles%\TOSHIBA\TPHM\TosWaitSrv.exe "
==== Startup Folders ======================
2014-03-10 20:14:03 1930 ----a-w- C:\Users\Adrian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitor Ink Alerts - HP Officejet Pro 8600 (Network).lnk
2014-07-22 05:30:53 1128 ----a-w- C:\Users\Adrian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PdaNet Desktop.lnk
2014-02-26 22:23:21 1682 ----a-w- C:\Users\Adrian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\US-322 US-366 Control Panel.lnk
==== Task Scheduler Jobs ======================
C:\windows\tasks\G2MUpdateTask-S-1-5-21-2002906881-1285896862-3876618339-1001.job --a-------- C:\Users\Adrian\AppData\Local\Citrix\GoToMeeting\1468\g2mupdate.exe [07/18/2014 07:10 PM]
C:\windows\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe []
C:\windows\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe []
==== Other Scheduled Tasks ======================
"C:\windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]
"C:\windows\SysNative\tasks\G2MUpdateTask-S-1-5-21-2002906881-1285896862-3876618339-1001" [C:\Users\Adrian\AppData\Local\Citrix\GoToMeeting\1468\g2mupdate.exe]
"C:\windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]
"C:\windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]
"C:\windows\SysNative\tasks\GPUP" [C:\Program Files (x86)\GetPrivate\gpup.exe]
"C:\windows\SysNative\tasks\HPCustParticipation HP Officejet Pro 8600" ["C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPCustPartic.exe"]
"C:\windows\SysNative\tasks\Synaptics TouchPad Enhancements" ["C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"]
"C:\windows\SysNative\tasks\Norton Anti-Theft\Norton Error Analyzer" [C:\Program Files (x86)\Norton Anti-Theft\Engine\1.10.0.9\SymErr.exe]
"C:\windows\SysNative\tasks\Norton Anti-Theft\Norton Error Processor" [C:\Program Files (x86)\Norton Anti-Theft\Engine\1.10.0.9\SymErr.exe]
"C:\windows\SysNative\tasks\TOSHIBA\Service Station" ["C:\Program Files\TOSHIBA\Toshiba Service Station\ToshibaServiceStation.exe"]
==== Chrome Look ======================
cosstminn - Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clfjffijpfjijmapgbibedophnmkkfbg
cosstminn - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\clfjffijpfjijmapgbibedophnmkkfbg
cosstminn - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clfjffijpfjijmapgbibedophnmkkfbg
cosstminn - Adrian\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clfjffijpfjijmapgbibedophnmkkfbg
cosstminn - Adrian\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clfjffijpfjijmapgbibedophnmkkfbg
cosstminn - Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clfjffijpfjijmapgbibedophnmkkfbg
cosstminn - Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\clfjffijpfjijmapgbibedophnmkkfbg
cosstminn - Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clfjffijpfjijmapgbibedophnmkkfbg
cosstminn - HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clfjffijpfjijmapgbibedophnmkkfbg
cosstminn - HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\clfjffijpfjijmapgbibedophnmkkfbg
cosstminn - HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clfjffijpfjijmapgbibedophnmkkfbg
==== IE Start and Search Settings ======================
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://www.google.com"
"Default_Secondary_Page_URL"="http://www.google.com"
"Use Search Asst"="yes"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Secondary_Page_URL"="http://www.google.com"
"Secondary Start Pages"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Secondary_Page_URL"="http://www.google.com"
"Secondary Start Pages"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]
"Default"="www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl]
"Default"="www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"Default"="www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] not found
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{174981F6-9D9B-4C41-85E8-C54380CB9D25} Yahoo Url="https://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=586383&p={searchTerms}"
==== C:\zoek_backup content ======================
C:\zoek_backup (files=0 folders=0 0 bytes)
==== EOF on Sun 08/10/2014 at 12:00:41.69 ======================
 

TwinHeadedEagle

Level 41
Verified
Mar 8, 2013
22,627
Hello,



They call me TwinHeadedEagle around here, and I'll be working with you.



Before we start please read and note the following:
  • At the top of your post, please click on the "Watch thread" button and make sure to check Watch this thread...and receive email notifications. This will send an email to you as soon as I reply to your topic, allowing me to solve your problem faster.
  • Please do not install any new software during the cleaning process other than the tools I provide for you. This can hinder the cleaning process. Please do not perform System Restore or any other restore.
  • Instructions I give to you are very simple and made for complete beginner to follow. That's why you need to read through my instructions carefully and completely before executing them.
  • Please do not run any tools other than the ones I ask you to, when I ask you to. Some of these tools can be very dangerous if used improperly. Also, if you use a tool that I have not requested you use, it can cause false positives, thereby delaying the complete cleaning of your machine.
  • All tools we use here are completely clean and do not contain any malware. If your antivirus detects them as malicious, please disable your antivirus and then continue.
  • If during the process you run across anything that is not in my instructions, please stop and ask. If any tool is running too much time (few hours), please stop and inform me.
  • I visit forum several times at day, making sure to respond to everyone's topic as fast as possible. But bear in mind that I have private life like everyone and I cannot be here 24/7. So please be patient with me. Also, some infections require less, and some more time to be removed completely, so bear this in mind and be patient.
  • Please stay with me until the end of all steps and procedures and I declare your system clean. Just because there is a lack of symptoms does not indicate a clean machine. If you solved your problem yourself, set aside two minutes to let me know.
  • Please attach all report using
    fjqb1h.png
    button below. Doing this, you make it easier for me to analyze and fix your problem.

  • If I don't hear from you within 3 days from this initial or any subsequent post, then this thread will be closed.




51a612a8b27e2-Zoek.png
Fix with ZOEK

icon_exclaim.gif
This fix was created for this user for use on that particular machine.
icon_exclaim.gif

icon_exclaim.gif
Running it on another one may cause damage and render the system unstable.
icon_exclaim.gif

Temporary disable your AntiVirus and AntiSpyware protection - instructions here.

  • Right-click on
    51a612a8b27e2-Zoek.png
    icon and select
    RunAsAdmin.jpg
    Run as Administrator to start the tool.
  • Wait patiently until the main console will appear, it may take a minute or two.
  • In the main box please paste in the following script:
    Code:
    createsrpoint;
    Muvic Smartbar;u
    C:\Windows\System32\GroupPolicy\Machine;fs
    C:\Windows\System32\GroupPolicy\User;fs
    C:\Windows\System32\GroupPolicy\GPT.INI;f
    C:\Windows\SysWOW64\GroupPolicy\gpt.ini;f
    clfjffijpfjijmapgbibedophnmkkfbg;chr
    autoclean;
    emptyalltemp;
    ipconfig /flushdns;b
    chrdefaults;
  • Make sure that Scan All Users option is checked.
  • Push Run Script and wait patiently. The scan may take a couple of minutes.
  • When the scan completes, a zoek-results logfile should open in notepad.
  • If a reboot is needed, it will be opened after it. You may also find it at your main drive (usually C:\ drive)

Post its content into your next reply.
 

Pantera231

New Member
Thread author
Aug 10, 2014
2
Ok, I ran through everything. Log attached.
 

Attachments

  • zoek-results81114.txt
    11.2 KB · Views: 107

TwinHeadedEagle

Level 41
Verified
Mar 8, 2013
22,627
Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to me or any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!
 
Status
Not open for further replies.

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top