i memeber the last time some one got mad. lols virus on my - TopicsExpress



          

i memeber the last time some one got mad. lols virus on my computer I need some help, there is virus on my computer. My computer is very slow, and there are a lot of advertisement. I have tried to restore the computer, but it couldnt. here is the hijackthis filelog: O4 - HKCU\..\Run: [NextLive] C:\Windows\SysWOW64\rundll32.exe C:\Users\Maryam\AppData\Roaming\newnext.me\nengine.dll,EntryPoint -m l O4 - HKCU\..\Run: [MyDefragReminder] C:\Program Files (x86)\FixCleanRepair\DefragReminder.exe O4 - Startup: MyPC Backup.lnk = C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe O4 - Startup: OpenOffice.org 3.4.1.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra Tools menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O20 - AppInit_DLLs: c:\progra~2\searchprotect\searchprotect\bin\spvc32loader.dll c:\progra~2\sw30e4~1.boo O23 - Service: Adobe Active File Monitor V9 (AdobeActiveFileMonitor9.0) - Adobe Systems Incorporated - C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bonjour tjeneste (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: GamesAppIntegrationService - WildTangent - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe O23 - Service: GREGService - Acer Incorporated - C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: iPod-tjeneste (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: PirritDesktop - Unknown owner - C:\Users\Maryam\AppData\Local\PirritSuggestor\PirritService.exe O23 - Service: PirritUpdater - Unknown owner - C:\Program Files (x86)\Pirrit\AutoUpdater.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Re-markit - Unknown owner - C:\Program Files (x86)\Re-markit-soft\Re-markitfQL158.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: Update lucky leap - Unknown owner - C:\Program Files (x86)\lucky leap\updateluckyleap.exe O23 - Service: Util lucky leap - Unknown owner - C:\Program Files (x86)\lucky leap\bin\utilluckyleap.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: WinRST - Unknown owner - C:\Program Files (x86)\WinRST\WinRST.exe O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 18581 bytes dds.txt: DDS (Ver_2012-11-20.01) - NTFS_AMD64 Internet Explorer: 11.0.9600.17041 BrowserJavaVersion: 10.55.2 Run by Maryam at 21:12:14 on 2014-05-08 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.45.1030.18.5996.3318 [GMT 2:00] . AV: Microsoft Security Essentials *Enabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} SP: Microsoft Security Essentials *Enabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2} . ============== Running Processes =============== . C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Program Files\Microsoft Security Client\MsMpEng.exe C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\System32\spoolsv.exe C:\Windows\system32\taskeng.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\system32\rundll32.exe C:\Windows\SysWOW64\rundll32.exe C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files (x86)\Launch Manager\dsiwmis.exe C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe C:\Program Files (x86)\Launch Manager\LMutilps32.exe C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe C:\Users\Maryam\AppData\Local\PirritSuggestor\PirritService.exe C:\Program Files (x86)\Pirrit\AutoUpdater.exe C:\Program Files (x86)\Re-markit-soft\Re-markitfQL158.exe C:\Windows\system32\svchost.exe -k imgsvc C:\Program Files (x86)\lucky leap\updateluckyleap.exe C:\Program Files (x86)\lucky leap\bin\utilluckyleap.exe C:\Program Files (x86)\WinRST\WinRST.exe C:\Windows\system32\taskhost.exe C:\Windows\system32\taskeng.exe C:\Windows\system32\Dwm.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\Explorer.EXE C:\Program Files (x86)\Re-markit-soft\Re-markitfQLOWw.exe C:\Program Files (x86)\Advanced System Protector\AdvancedSystemProtector.exe c:\programdata\house of soft\gs-enabler\GS-Enabler.exe c:\programdata\superbapp\sw.booster\SW.Booster.exe C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe C:\Windows\system32\taskeng.exe C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe C:\Program Files\Microsoft Security Client\NisSrv.exe C:\Users\Maryam\AppData\Local\PirritSuggestor\PirritDesktop.exe C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\servicing\TrustedInstaller.exe C:\Users\Maryam\AppData\Local\fst_dk_49\upfst_dk_49.exe C:\Program Files\Elantech\ETDCtrl.exe C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe C:\Program Files\Microsoft Security Client\msseces.exe C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe C:\Program Files (x86)\Launch Manager\LManager.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\fst_dk_49\fst_dk_49.exe C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe C:\Program Files (x86)\iTunes\iTunesHelper.exe C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe C:\Program Files (x86)\Launch Manager\LMworker.exe C:\Windows\system32\wbem\unsecapp.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Program Files\Elantech\ETDCtrlHelper.exe C:\Program Files\iPod\bin\iPodService.exe C:\Windows\system32\SearchIndexer.exe C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Program Files (x86)\Nero\Update\NASvc.exe C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_206.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_206.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Windows\system32\taskhost.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\System32\cscript.exe . ============== Pseudo HJT Report =============== . uStart Page = hxxp://feed.snapdo/?p=mKO_AwFzXIpYRbPAMW02fQbYPFkTjj8jzRyB0rQvzyej3yvtCjyXXnQme9RxXdd5mP3l-luelypzM0_joR-ntvhnDXSQ8SOmY16t2rA7tsrB6LRP1m45cN6w4JK2ziAg7x0RuJ94fxa-OFnMGXyAInuQ_8HPzJW33m1rwISEk8L2EzyV-Vje3_JVL8i1Fg8AKdfY uSearch Bar = hxxp://feed.snapdo/?p=mKO_AwFzXIpYRbPAMW02fQbYPFkTjj8jzRyB0rQvzyej3yvtCjyXXnQme9RxXdd5mP3l-luelypzM0_joR-ntvhnDXSQ8SOmY16t2rA7tsrB6LRP1m45cN6w4JK2ziAg7x0RuJPTGuzl0NbEE7fTQWisNUa4c5 NqdkP-Uz6ok1M5f_9Tms6qnEDo-i5nprvw3GXm&q={searchTerms} uSearch Page = hxxp://feed.snapdo/?p=mKO_AwFzXIpYRbPAMW02fQbYPFkTjj8jzRyB0rQvzyej3yvtCjyXXnQme9RxXdd5mP3l-luelypzM0_joR-ntvhnDXSQ8SOmY16t2rA7tsrB6LRP1m45cN6w4JK2ziAg7x0RuJPTGuzl0NbEE7fTQWisNUa4c5 NqdkP-Uz6ok1M5f_9Tms6qnEDo-i5nprvw3GXm&q={searchTerms} uDefault_Page_URL = hxxp://sweet-page/?type=hp&ts=1389893231&from=wpc&uid=WDCXWD5000BPVT-22HXZT3_WD-WXC1EC2X1799X1799 mStart Page = hxxp://start.mysearchdial/?f=1&a=ir_14_16_ff&cd=2XzuyEtN2Y1L1Qzu0D0CtD0E0AtC0AzzzztAyCyByEyC0EyBtN0D0 Tzu0SzztAyDtN1L2XzutBtFtBtDtFtCtFtDtN1L1CzutCyEtDtAtDyD1V1TtN1L1G1B1V1N2Y1L 1Qzu2StCyCyC0F0D0Dzz0EtGtDyD0C0AtGtDzy0FyEtG0BtDyEyBtGtAtDzy0DyEyCyC0CyE0Dz yyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyCtAyCtBtB0A0AyBtGyEzzyDtBtGtDyBtCzytG0A0B0F0C tGyBzy0Ezz0DtDyByDyEtCyBtC2Q&cr=1490686716&ir= mSearch Page = hxxp://sweet-page/web/?type=ds&ts=1389893231&from=wpc&uid=WDCXWD5000BPVT-22HXZT3_WD-WXC1EC2X1799X1799&q={searchTerms} mDefault_Page_URL = hxxp://sweet-page/?type=hp&ts=1389893231&from=wpc&uid=WDCXWD5000BPVT-22HXZT3_WD-WXC1EC2X1799X1799 mDefault_Search_URL = hxxp://sweet-page/web/?type=ds&ts=1389893231&from=wpc&uid=WDCXWD5000BPVT-22HXZT3_WD-WXC1EC2X1799X1799&q={searchTerms} uProxyServer = hxxp=127.0.0.1:9880 uProxyOverride = uSearchAssistant = hxxp://feed.snapdo/?p=mKO_AwFzXIpYRbPAMW02fQbYPFkTjj8jzRyB0rQvzyej3yvtCjyXXnQme9RxXdd5mP3l-luelypzM0_joR-ntvhnDXSQ8SOmY16t2rA7tsrB6LRP1m45cN6w4JK2ziAg7x0RuJPTGuzl0NbEE7fTQWisNUa4c5 NqdkP-Uz6ok1M5f_9Tms6qnEDo-i5nprvw3GXm&q={searchTerms} mWinlogon: Userinit = userinit.exe BHO: MSS+ Identifier: {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.141\McAfeeMSS_IE.dll BHO: GrEaaTsuaVer: {7068E60F-A22F-AE35-7A52-D21D69809DF4} - C:\Program Files (x86)\GrEaaTsuaVer\5Kk0_.dll BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll BHO: safeweeb: {81A8266C-F4A0-5B56-326D-87CAC03A7BB5} - C:\Program Files (x86)\safeweeb\u.dll BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll BHO: IEExtension.Extension: {d40c654d-7c51-4eb3-95b2-1e23905c2a2d} - BHO: lucky leap: {d77aa852-def3-43cb-a3f5-bd679de72f32} - C:\Program Files (x86)\lucky leap\luckyleapBHO.dll BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll BHO: mysearchdial Helper Object: {EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD} - C:\Program Files (x86)\Mysearchdial\1.8.29.0\bh\mysearchdial.dll TB: mysearchdial Toolbar: {3004627E-F8E9-4E8B-909D-316753CBA923} - C:\Program Files (x86)\Mysearchdial\1.8.29.0\mysearchdialTlbr.dll TB: : {ae07101b-46d4-4a98-af68-0333ea26e113} - LocalServer32 - uRun: [NextLive] C:\Windows\SysWOW64\rundll32.exe C:\Users\Maryam\AppData\Roaming\newnext.me\nengine.dll,EntryPoint -m l uRun: [MyDefragReminder] C:\Program Files (x86)\FixCleanRepair\DefragReminder.exe mRun: [OOTag] C:\Program Files (x86)\Packard Bell\OOBEOffer\OOTag.exe mRun: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe mRun: [SunJavaUpdateSched] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe mRun: [Adobe ARM] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe mRun: [fst_dk_49] C:\Program Files (x86)\fst_dk_49\fst_dk_49.exe mRun: [iTunesHelper] C:\Program Files (x86)\iTunes\iTunesHelper.exe mRunOnce: [upfst_dk_49.exe] C:\Users\Maryam\AppData\Local\fst_dk_49\upfst_dk_49.exe -runonce StartupFolder: C:\Users\Maryam\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\ MYPCBA~1.LNK - C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe StartupFolder: C:\Users\Maryam\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\ OPENOF~1.LNK - C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\MCAFEE~1.LNK - C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe mPolicies-Explorer: NoActiveDesktop = dword:1 mPolicies-Explorer: NoActiveDesktopChanges = dword:1 mPolicies-System: ConsentPromptBehaviorAdmin = dword:5 mPolicies-System: ConsentPromptBehaviorUser = dword:3 mPolicies-System: EnableUIADesktopToggle = dword:0 IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll TCP: NameServer = 192.168.1.1 TCP: Interfaces\{93698763-832E-44CA-B9A8-49608BEF23B0} : DHCPNameServer = 192.168.1.1 TCP: Interfaces\{93698763-832E-44CA-B9A8-49608BEF23B0}\553716D616 : DHCPNameServer = 172.20.10.1 TCP: Interfaces\{93698763-832E-44CA-B9A8-49608BEF23B0}\56465727F616D6 : DHCPNameServer = 192.38.112.18 192.38.112.5 TCP: Interfaces\{FCD0D726-330B-4130-AA9E-6BAA594ED9F1} : DHCPNameServer = 10.0.0.10 Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll AppInit_DLLs= c:\progra~2\searchprotect\searchprotect\bin\spvc32loader.dll c:\progra~2\sw30e4~1.boo SSODL: WebCheck - x64-mStart Page = hxxp://start.mysearchdial/?f=1&a=ir_14_16_ff&cd=2XzuyEtN2Y1L1Qzu0D0CtD0E0AtC0AzzzztAyCyByEyC0EyBtN0D0 Tzu0SzztAyDtN1L2XzutBtFtBtDtFtCtFtDtN1L1CzutCyEtDtAtDyD1V1TtN1L1G1B1V1N2Y1L 1Qzu2StCyCyC0F0D0Dzz0EtGtDyD0C0AtGtDzy0FyEtG0BtDyEyBtGtAtDzy0DyEyCyC0CyE0Dz yyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyCtAyCtBtB0A0AyBtGyEzzyDtBtGtDyBtCzytG0A0B0F0C tGyBzy0Ezz0DtDyByDyEtCyBtC2Q&cr=1490686716&ir= x64-mSearch Page = hxxp://sweet-page/web/?type=ds&ts=1389893231&from=wpc&uid=WDCXWD5000BPVT-22HXZT3_WD-WXC1EC2X1799X1799&q={searchTerms} x64-mDefault_Page_URL = hxxp://sweet-page/?type=hp&ts=1389893231&from=wpc&uid=WDCXWD5000BPVT-22HXZT3_WD-WXC1EC2X1799X1799 x64-mDefault_Search_URL = hxxp://sweet-page/web/?type=ds&ts=1389893231&from=wpc&uid=WDCXWD5000BPVT-22HXZT3_WD-WXC1EC2X1799X1799&q={searchTerms} x64-BHO: GrEaaTsuaVer: {7068E60F-A22F-AE35-7A52-D21D69809DF4} - C:\Program Files (x86)\GrEaaTsuaVer\5Kk0_.x64.dll x64-BHO: safeweeb: {81A8266C-F4A0-5B56-326D-87CAC03A7BB5} - C:\Program Files (x86)\safeweeb\u.x64.dll x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll x64-Run: [ETDCtrl] C:\Program Files (x86)\Elantech\ETDCtrl.exe x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s x64-Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe x64-Run: [Power Management] C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe x64-Run: [OOTag] C:\Program Files (x86)\Packard Bell\OOBEOffer\ootag.exe x64-Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - x64-Notify: igfxcui - igfxdev.dll x64-SSODL: WebCheck - Hosts: 216.239.32.20 google Hosts: 216.239.32.20 google google.ad Hosts: 216.239.32.20 google google.ae Hosts: 216.239.32.20 google google.af Hosts: 216.239.32.20 google google.ag . Note: multiple HOSTS entries found. Please refer to Attach.txt . ================= FIREFOX =================== . FF - ProfilePath - C:\Users\Maryam\AppData\Roaming\Mozilla\Firefox\Profiles\6le72vy2.default-1399393502902\ FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll FF - plugin: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npdeployJava1.dll FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll FF - plugin: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll FF - plugin: C:\Program Files\McAfee Security Scan\3.8.141\npMcAfeeMSS.dll FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_206.dll . ============= SERVICES / DRIVERS =============== . R?2 PirritDesktop;PirritDesktop;C:\Users\Maryam\AppData\Local\PirritSuggestor\P irritService.exe [2014-4-20 52568] R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2014-1-25 268512] R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2012-12-20 55856] R1 {3b232d24-d5de-4194-b4d7-d53b41a09748}Gw64;{3b232d24-d5de-4194-b4d7-d53b41a09748}Gw64;C:\Windows\System32\drivers\{3b232d24-d5de-4194-b4d7-d53b41a09748}Gw64.sys [2014-5-4 61120] R2 1a34a8e0;SW.Sustainer;C:\Windows\System32\rundll32.exe [2009-7-14 45568] R2 AdobeActiveFileMonitor9.0;Adobe Active File Monitor V9;C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe [2010-9-30 169408] R2 DsiWMIService;Dritek WMI Service;C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2011-9-14 353360] R2 ePowerSvc;Acer ePower Service;C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [2012-12-20 872552] R2 GREGService;GREGService;C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe [2011-1-18 39528] R2 Live Updater Service;Live Updater Service;C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [2011-9-14 244624] R2 NAUpdate;Nero Update;C:\Program Files (x86)\Nero\Update\NASvc.exe [2011-3-30 598312] R2 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2013-6-18 133928] R2 PirritUpdater;PirritUpdater;C:\Program Files (x86)\Pirrit\AutoUpdater.exe [2014-4-20 59904] R2 Update lucky leap;Update lucky leap;C:\Program Files (x86)\lucky leap\updateluckyleap.exe [2013-10-3 316704] R2 Util lucky leap;Util lucky leap;C:\Program Files (x86)\lucky leap\bin\utilluckyleap.exe [2013-11-6 316704] R2 WinRST;WinRST;C:\Program Files (x86)\WinRST\WinRST.exe [2014-4-20 59904] R3 b57xdbd;Broadcom xD Picture Bus Driver Service;C:\Windows\System32\drivers\b57xdbd.sys [2011-1-21 67624] R3 b57xdmp;Broadcom xD Picture vstorp client drv;C:\Windows\System32\drivers\b57xdmp.sys [2011-1-21 19496] R3 bScsiMSa;bScsiMSa;C:\Windows\System32\drivers\bScsiMSa.sys [2011-5-17 51240] R3 bScsiSDa;bScsiSDa;C:\Windows\System32\drivers\bScsiSDa.sys [2011-5-6 86056] R3 ETD;ELAN PS/2 Port Input Device;C:\Windows\System32\drivers\ETD.sys [2011-9-14 142632] R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;C:\Windows\System32\drivers\k57nd60a.sys [2011-5-10 425000] R3 NisSrv;Microsoft Netværksinspektion;C:\Program Files\Microsoft Security Client\NisSrv.exe [2014-3-11 347872] S?2 Re-markit;Re-markit;C:\Program Files (x86)\Re-markit-soft\Re-markitfQL158.exe [2014-4-19 142848] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576] S3 GamesAppIntegrationService;GamesAppIntegrationService;C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2014-3-12 227904] S3 GamesAppService;GamesAppService;C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072] S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2014-4-10 111616] S3 IntcDAud;Intel(R) lyd for skærm;C:\Windows\System32\drivers\IntcDAud.sys [2011-9-14 317440] S3 McComponentHostService;McAfee Security Scan Component Host Service;C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe [2014-1-16 289256] S3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver;C:\Windows\System32\drivers\rtl8192Ce.sys [2011-9-14 1142376] S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2010-11-21 59392] S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2010-11-21 31232] S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2012-12-13 54784] S3 WatAdminSvc;Tjenesten Windows Aktivering;C:\Windows\System32\Wat\WatAdminSvc.exe [2013-9-5 1255736] S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-23 57184] . =============== Created Last 30 ================ . 2014-05-08 19:05:43 75888 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{ED4FF4EF-60DD-41BE-928C-A90C211F026F}\offreg.dll 2014-05-08 19:05:12 1031560 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8DF07446-0BC0-47C0-99C2-65CEF10E26E4}\gapaengine.dll 2014-05-08 19:04:22 10651704 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{ED4FF4EF-60DD-41BE-928C-A90C211F026F}\mpengine.dll 2014-05-07 17:24:16 1031560 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{EA45BB74-E4E6-46B1-BF5E-01C5DEA5DC1A}\gapaengine.dll 2014-05-07 17:23:54 10651704 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll 2014-05-04 19:39:04 61120 ----a-w- C:\Windows\System32\drivers\{3b232d24-d5de-4194-b4d7-d53b41a09748}Gw64.sys 2014-05-04 18:56:10 2724864 ----a-w- C:\Windows\SysWow64\mshtml.tlb 2014-05-04 18:56:10 2724864 ----a-w- C:\Windows\System32\mshtml.tlb 2014-04-24 19:37:45 33240 ----a-w- C:\Windows\System32\drivers\GEARAspiWDM.sys 2014-04-24 19:36:34 -------- d-----w- C:\Program Files\iPod 2014-04-24 19:36:33 -------- d-----w- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-04-24 19:36:33 -------- d-----w- C:\Program Files\iTunes 2014-04-24 19:36:33 -------- d-----w- C:\Program Files (x86)\iTunes 2014-04-24 19:34:49 -------- d-----w- C:\Program Files\Bonjour 2014-04-24 19:34:49 -------- d-----w- C:\Program Files (x86)\Bonjour 2014-04-22 20:18:54 96168 ----a-w- C:\Windows\SysWow64\WindowsAccessBridge-32.dll 2014-04-20 21:20:02 -------- d-----w- C:\Users\Maryam\AppData\Roaming\cloudbkp 2014-04-20 20:36:46 -------- d-----w- C:\Program Files\Common Files\FixCleanRepair 2014-04-20 20:36:06 -------- d-----w- C:\Users\Maryam\AppData\Local\Howard_Media 2014-04-20 20:32:58 -------- d-----w- C:\Users\Maryam\AppData\Local\WinRST 2014-04-20 20:32:57 -------- d-----w- C:\Program Files (x86)\WinRST 2014-04-20 20:32:47 -------- d-----w- C:\Users\Maryam\AppData\Local\PirritSuggestor 2014-04-20 20:32:42 -------- d-----w- C:\Users\Maryam\AppData\Roaming\Pirrit 2014-04-20 20:32:40 -------- d-----w- C:\Program Files (x86)\Pirrit 2014-04-20 20:28:42 -------- d-----w- C:\Program Files (x86)\SearchProtect 2014-04-19 18:52:11 -------- d-----w- C:\ProgramData\Systweak 2014-04-19 18:52:03 16896 ----a-w- C:\Windows\System32\sasnative64.exe 2014-04-19 18:52:03 -------- d-----w- C:\Program Files (x86)\Advanced System Protector 2014-04-19 18:51:33 20312 ----a-w- C:\Windows\System32\roboot64.exe 2014-04-19 18:51:29 -------- d-----w- C:\Users\Maryam\AppData\Roaming\systweak 2014-04-19 18:51:14 -------- d-----w- C:\Program Files (x86)\RegClean Pro 2014-04-19 16:24:20 -------- d-----w- C:\Program Files (x86)\Uninstaller 2014-04-19 16:22:52 -------- d-----w- C:\Users\Maryam\AppData\Roaming\VOPackage 2014-04-19 16:22:17 -------- d-----w- C:\Users\Maryam\AppData\Roaming\Activeris 2014-04-19 16:22:07 -------- d-----w- C:\Users\Maryam\AppData\Local\fst_dk_49 2014-04-19 16:22:06 -------- d-----w- C:\Program Files (x86)\fst_dk_49 2014-04-19 16:21:55 -------- d-----w- C:\Users\Maryam\AppData\Roaming\Uniblue 2014-04-19 16:21:55 -------- d-----w- C:\Program Files (x86)\Uniblue 2014-04-19 16:21:06 -------- d-----w- C:\Program Files (x86)\Re-markit-soft 2014-04-15 14:35:27 -------- d-----w- C:\Program Files\McAfee Security Scan 2014-04-15 14:28:10 -------- d-----w- C:\Users\Maryam\AppData\Roaming\WildTangent 2014-04-14 22:09:32 -------- d-----w- C:\Users\Maryam\AppData\Roaming\rmi 2014-04-14 22:08:20 -------- d-----w- C:\Users\Maryam\AppData\Local\SearchProtect 2014-04-14 22:06:03 -------- d-----w- C:\Users\Maryam\AppData\Roaming\OpenCandy 2014-04-14 16:23:29 -------- d-----w- C:\Program Files (x86)\SiteFinder 2014-04-14 16:23:28 -------- d-----w- C:\Users\Maryam\AppData\Roaming\mysearchdial 2014-04-14 16:23:28 -------- d-----w- C:\Program Files (x86)\Mysearchdial 2014-04-14 16:23:21 -------- d-----w- C:\Users\Maryam\AppData\Roaming\SimilarSites 2014-04-14 16:18:41 -------- d-----w- C:\ProgramData\McAfee Security Scan 2014-04-11 22:42:37 -------- d-----w- C:\Program Files (x86)\Mozilla Maintenance Service 2014-04-11 22:42:21 46704 ----a-w- C:\Program Files (x86)\Mozilla Firefox\browser\components\browsercomps.dll 2014-04-11 16:30:06 -------- d-sh--w- C:\Users\Maryam\AppData\Local\EmieUserList 2014-04-11 16:30:06 -------- d-sh--w- C:\Users\Maryam\AppData\Local\EmieSiteList 2014-04-10 10:46:58 752640 ----a-w- C:\Windows\System32\jscript9diag.dll 2014-04-09 13:23:14 362496 ----a-w- C:\Windows\System32\wow64win.dll 2014-04-09 13:23:14 243712 ----a-w- C:\Windows\System32\wow64.dll 2014-04-09 13:23:13 25600 ----a-w- C:\Windows\SysWow64\setup16.exe 2014-04-09 13:23:13 16384 ----a-w- C:\Windows\System32\ntvdm64.dll 2014-04-09 13:23:13 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll 2014-04-09 13:23:13 13312 ----a-w- C:\Windows\System32\wow64cpu.dll 2014-04-09 13:23:12 7680 ----a-w- C:\Windows\SysWow64\instnm.exe 2014-04-09 13:23:12 5120 ----a-w- C:\Windows\SysWow64\wow32.dll 2014-04-09 13:23:12 2048 ----a-w- C:\Windows\SysWow64\user.exe . ==================== Find3M ==================== . 2014-05-03 20:06:17 692400 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe 2014-05-03 20:06:16 70832 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl 2014-04-08 19:06:00 4210176 ----a-w- C:\Program Files (x86)\SW_x64.Booster 2014-04-08 19:06:00 174928 ----a-w- C:\Program Files (x86)\SWSvc.dll 2014-04-08 19:05:59 4296192 ----a-w- C:\Program Files (x86)\SW.Booster 2014-03-11 07:52:30 133928 ----a-w- C:\Windows\System32\drivers\NisDrvWFP.sys 2014-03-06 09:31:33 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll 2014-03-06 08:59:04 66048 ----a-w- C:\Windows\System32\iesetup.dll 2014-03-06 08:57:34 548352 ----a-w- C:\Windows\System32\vbscript.dll 2014-03-06 08:57:20 48640 ----a-w- C:\Windows\System32\ieetwproxystub.dll 2014-03-06 08:29:40 139264 ----a-w- C:\Windows\System32\ieUnatt.exe 2014-03-06 08:29:14 111616 ----a-w- C:\Windows\System32\ieetwcollector.exe 2014-03-06 08:15:54 940032 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe 2014-03-06 08:11:41 5784064 ----a-w- C:\Windows\System32\jscript9.dll 2014-03-06 08:02:34 61952 ----a-w- C:\Windows\SysWow64\iesetup.dll 2014-03-06 08:02:33 455168 ----a-w- C:\Windows\SysWow64\vbscript.dll 2014-03-06 08:01:01 51200 ----a-w- C:\Windows\SysWow64\ieetwproxystub.dll 2014-03-06 07:56:43 38400 ----a-w- C:\Windows\System32\JavaScriptCollectionAgent.dll 2014-03-06 07:46:36 4254720 ----a-w- C:\Windows\SysWow64\jscript9.dll 2014-03-06 07:38:13 112128 ----a-w- C:\Windows\SysWow64\ieUnatt.exe 2014-03-06 07:36:40 592896 ----a-w- C:\Windows\SysWow64\jscript9diag.dll 2014-03-06 07:13:43 32256 ----a-w- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll 2014-03-06 07:11:15 2043904 ----a-w- C:\Windows\System32\inetcpl.cpl 2014-03-06 06:40:39 1967104 ----a-w- C:\Windows\SysWow64\inetcpl.cpl 2014-03-06 06:22:40 2260480 ----a-w- C:\Windows\System32\wininet.dll 2014-03-06 05:41:49 1789440 ----a-w- C:\Windows\SysWow64\wininet.dll 2014-03-04 09:17:05 44032 ----a-w- C:\Windows\apppatch\acwow64.dll . ============= FINISH: 21:13:47,40 =============== attach.txt: . UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG. IF REQUESTED, ZIP IT UP & ATTACH IT . DDS (Ver_2012-11-20.01) . Microsoft Windows 7 Home Premium Boot Device: \Device\HarddiskVolume2 Install Date: 09-08-2013 19:27:54 System Uptime: 08-05-2014 20:51:04 (1 hours ago) . Motherboard: Packard Bell | | SJV50_HR Processor: Intel(R) Celeron(R) CPU B815 @ 1.60GHz | CPU1 | 1600/1333mhz . ==== Disk Partitions ========================= . C: is FIXED (NTFS) - 220 GiB total, 159,454 GiB free. D: is FIXED (NTFS) - 220 GiB total, 220,172 GiB free. E: is CDROM () . ==== Disabled Device Manager Items ============= . Class GUID: {4d36e972-e325-11ce-bfc1-08002be10318} Description: Microsoft Teredo Tunneling-adapter Device ID: ROOT\*TEREDO\0000 Manufacturer: Microsoft Name: Teredo Tunneling Pseudo-Interface PNP Device ID: ROOT\*TEREDO\0000 Service: tunnel . Class GUID: Description: Device ID: PCI\VEN_8086&DEV_1C3A&SUBSYS_05111025&REV_04\3&11583659&0&B0 Manufacturer: Name: PNP Device ID: PCI\VEN_8086&DEV_1C3A&SUBSYS_05111025&REV_04\3&11583659&0&B0 Service: . ==== System Restore Points =================== . RP117: 13-04-2014 21:08:30 - Windows Update RP118: 15-04-2014 00:18:36 - Removed Adobe Community Help RP119: 15-04-2014 17:51:30 - Removed Adobe Community Help RP120: 16-04-2014 14:43:36 - Gendan handling RP121: 19-04-2014 18:21:14 - Uniblue SpeedUpMyPC installation RP122: 19-04-2014 18:26:02 - Windows Update RP123: 19-04-2014 20:41:46 - Gendan handling RP124: 19-04-2014 21:02:50 - Windows Update RP126: 20-04-2014 22:36:24 - Before FixCleanRepair Registry Cleaner Registry Fix RP128: 20-04-2014 22:37:27 - Before FixCleanRepair Registry Cleaner Registry Fix RP129: 22-04-2014 21:52:07 - Windows Update RP130: 22-04-2014 22:17:49 - Installed Java 7 Update 55 RP131: 24-04-2014 21:35:38 - Installed iTunes RP132: 03-05-2014 22:08:49 - Windows Update RP133: 04-05-2014 20:55:05 - Windows Update RP134: 08-05-2014 21:03:36 - Windows Update . ==== Hosts File Hijack ====================== . Hosts: 216.239.32.20 google Hosts: 216.239.32.20 google google.ad Hosts: 216.239.32.20 google google.ae Hosts: 216.239.32.20 google google.af Hosts: 216.239.32.20 google google.ag Hosts: 216.239.32.20 google google.ai Hosts: 216.239.32.20 google google.al Hosts: 216.239.32.20 google google.am Hosts: 216.239.32.20 google google.co.ao Hosts: 216.239.32.20 google google.ar Hosts: 216.239.32.20 google google.as Hosts: 216.239.32.20 google google.at Hosts: 216.239.32.20 google google.au Hosts: 216.239.32.20 google google.az Hosts: 216.239.32.20 google google.ba Hosts: 216.239.32.20 google google.bd Hosts: 216.239.32.20 google google.be Hosts: 216.239.32.20 google google.bf Hosts: 216.239.32.20 google google.bg Hosts: 216.239.32.20 google google.bh Hosts: 216.239.32.20 google google.bi Hosts: 216.239.32.20 google google.bj Hosts: 216.239.32.20 google google.bn Hosts: 216.239.32.20 google google.bo Hosts: 216.239.32.20 google google.br Hosts: 216.239.32.20 google google.bs Hosts: 216.239.32.20 google google.bt Hosts: 216.239.32.20 google google.co.bw Hosts: 216.239.32.20 google google.by Hosts: 216.239.32.20 google google.bz Hosts: 216.239.32.20 google google.ca Hosts: 216.239.32.20 google google.cd Hosts: 216.239.32.20 google google. cf Hosts: 216.239.32.20 google google.cg Hosts: 216.239.32.20 google google.ch Hosts: 216.239.32.20 google google.ci Hosts: 216.239.32.20 google google.co.ck Hosts: 216.239.32.20 google google.cl Hosts: 216.239.32.20 google google.cm Hosts: 216.239.32.20 google google.cn Hosts: 216.239.32.20 google google.co Hosts: 216.239.32.20 google google.co.cr Hosts: 216.239.32.20 google google.cu Hosts: 216.239.32.20 google google.cv Hosts: 216.239.32.20 google google.cy Hosts: 216.239.32.20 google google.cz Hosts: 216.239.32.20 google google.de Hosts: 216.239.32.20 google google.dj Hosts: 216.239.32.20 google google.dk Hosts: 216.239.32.20 google google.dm Hosts: 216.239.32.20 google google.do Hosts: 216.239.32.20 google google.dz Hosts: 216.239.32.20 google google.ec Hosts: 216.239.32.20 google google.ee Hosts: 216.239.32.20 google google.eg Hosts: 216.239.32.20 google google.es Hosts: 216.239.32.20 google google.et Hosts: 216.239.32.20 google google.fi Hosts: 216.239.32.20 google google.fj Hosts: 216.239.32.20 google google.fm Hosts: 216.239.32.20 google google.fr Hosts: 216.239.32.20 google google.ga Hosts: 216.239.32.20 google google.ge Hosts: 216.239.32.20 google google.gg Hosts: 216.239.32.20 google google.gh Hosts: 216.239.32.20 google google.gi Hosts: 216.239.32.20 google google.gl Hosts: 216.239.32.20 google google.gm Hosts: 216.239.32.20 google google.gp Hosts: 216.239.32.20 google google.gr Hosts: 216.239.32.20 google google.gt Hosts: 216.239.32.20 google google.gy Hosts: 216.239.32.20 google google.hk Hosts: 216.239.32.20 google google.hn Hosts: 216.239.32.20 google google.hr Hosts: 216.239.32.20 google google.ht Hosts: 216.239.32.20 google google.hu Hosts: 216.239.32.20 google google.co.id Hosts: 216.239.32.20 google google.ie Hosts: 216.239.32.20 google google.co.il Hosts: 216.239.32.20 google google.im Hosts: 216.239.32.20 google google.co.in Hosts: 216.239.32.20 google google.iq Hosts: 216.239.32.20 google google.is Hosts: 216.239.32.20 google google.it Hosts: 216.239.32.20 google google.je Hosts: 216.239.32.20 google google.jm Hosts: 216.239.32.20 google google.jo Hosts: 216.239.32.20 google google.co.jp Hosts: 216.239.32.20 google google.co.ke Hosts: 216.239.32.20 google google.kh Hosts: 216.239.32.20 google google.ki Hosts: 216.239.32.20 google google.kg Hosts: 216.239.32.20 google google.co.kr Hosts: 216.239.32.20 google google.kw Hosts: 216.239.32.20 google google.kz Hosts: 216.239.32.20 google google.la Hosts: 216.239.32.20 google google.lb Hosts: 216.239.32.20 google google.li Hosts: 216.239.32.20 google google.lk Hosts: 216.239.32.20 google google.co.ls Hosts: 216.239.32.20 google google.lt Hosts: 216.239.32.20 google google.lu Hosts: 216.239.32.20 google google.lv Hosts: 216.239.32.20 google google.ly Hosts: 216.239.32.20 google google.co.ma Hosts: 216.239.32.20 google google.md Hosts: 216.239.32.20 google google.me Hosts: 216.239.32.20 google google.mg Hosts: 216.239.32.20 google google.mk Hosts: 216.239.32.20 google google.ml Hosts: 216.239.32.20 google google.mm Hosts: 216.239.32.20 google google.mn Hosts: 216.239.32.20 google google.ms Hosts: 216.239.32.20 google google.mt Hosts: 216.239.32.20 google google.mu Hosts: 216.239.32.20 google google.mv Hosts: 216.239.32.20 google google.mw Hosts: 216.239.32.20 google google.mx Hosts: 216.239.32.20 google google.my Hosts: 216.239.32.20 google google.co.mz Hosts: 216.239.32.20 google google.na Hosts: 216.239.32.20 google google.nf Hosts: 216.239.32.20 google google.ng Hosts: 216.239.32.20 google google.ni Hosts: 216.239.32.20 google google.ne Hosts: 216.239.32.20 google google.nl Hosts: 216.239.32.20 google google.no Hosts: 216.239.32.20 google google.np Hosts: 216.239.32.20 google google.nr Hosts: 216.239.32.20 google google.nu Hosts: 216.239.32.20 google google.co.nz Hosts: 216.239.32.20 google google.om Hosts: 216.239.32.20 google google.pa Hosts: 216.239.32.20 google google.pe Hosts: 216.239.32.20 google google.pg Hosts: 216.239.32.20 google google.ph Hosts: 216.239.32.20 google google.pk Hosts: 216.239.32.20 google google.pl Hosts: 216.239.32.20 google google.pn Hosts: 216.239.32.20 google google.pr Hosts: 216.239.32.20 google google.ps Hosts: 216.239.32.20 google google.pt Hosts: 216.239.32.20 google google.py Hosts: 216.239.32.20 google google.qa Hosts: 216.239.32.20 google google.ro Hosts: 216.239.32.20 google Hosts: 216.239.32.20 google google.rw Hosts: 216.239.32.20 google google.sa Hosts: 216.239.32.20 google google.sb Hosts: 216.239.32.20 google google.sc Hosts: 216.239.32.20 google google.se Hosts: 216.239.32.20 google google.sg Hosts: 216.239.32.20 google google.sh Hosts: 216.239.32.20 google google.si Hosts: 216.239.32.20 google google.sk Hosts: 216.239.32.20 google google.sl Hosts: 216.239.32.20 google google.sn Hosts: 216.239.32.20 google google.so Hosts: 216.239.32.20 google google.sm Hosts: 216.239.32.20 google google.st Hosts: 216.239.32.20 google google.sv Hosts: 216.239.32.20 google google.td Hosts: 216.239.32.20 google google.tg Hosts: 216.239.32.20 google google.co.th Hosts: 216.239.32.20 google google.tj Hosts: 216.239.32.20 google google.tk Hosts: 216.239.32.20 google google.tl Hosts: 216.239.32.20 google google.tm Hosts: 216.239.32.20 google google.tn Hosts: 216.239.32.20 google google.to Hosts: 216.239.32.20 google google.tr Hosts: 216.239.32.20 google google.tt Hosts: 216.239.32.20 google google.tw Hosts: 216.239.32.20 google google.co.tz Hosts: 216.239.32.20 google google.ua Hosts: 216.239.32.20 google google.co.ug Hosts: 216.239.32.20 google Hosts: 216.239.32.20 google google.uy Hosts: 216.239.32.20 google google.co.uz Hosts: 216.239.32.20 google google.vc Hosts: 216.239.32.20 google google.co.ve Hosts: 216.239.32.20 google google.vg Hosts: 216.239.32.20 google google.co.vi Hosts: 216.239.32.20 google google.vn Hosts: 216.239.32.20 google google.vu Hosts: 216.239.32.20 google google.ws Hosts: 216.239.32.20 google google.rs Hosts: 216.239.32.20 google google.co.za Hosts: 216.239.32.20 google google.co.zm Hosts: 216.239.32.20 google google.co.zw Hosts: 216.239.32.20 google google.cat . ==== Installed Programs ====================== . ???? ??? Windows Live ???? Windows Live ????? Windows Live ?????? ??????? ?? Windows Live ???????? ?????????? Windows Live ?????????? Windows Live ??????????? ?? Windows Live Adobe Community Help Adobe Flash Player 13 Plugin Adobe Photoshop Elements 9 Adobe Premiere Elements 9 Adobe Reader X (10.1.9) MUI Advanced System Protector Agatha Christie - Death on the Nile Apple-programunderstøttelse Apple Mobile Device Support Apple Software Update Bejeweled 2 Deluxe Bonjour Broadcom Card Reader Driver Installer Broadcom NetLink Controller Chuzzle Deluxe Crazy Chicken Kart 2 CyberLink MediaEspresso D3DX10 DMUninstaller Elements 9 Organizer Elements STI Installer ETDWare PS/2-X64 8.0.6.3_WHQL FATE Final Drive: Nitro Fotogalerija Windows Live fst_dk_49 Galeria de Fotografias do Windows Live Galeria fotografii uslugi Windows Live Galeria fotogràfica del Windows Live Galerie de photos Windows Live Galerie foto Windows Live Galería fotográfica de Windows Live Game Channels GS-Enabler HomeMedia Identity Card Insaniquarium Deluxe iTunes Java 7 Update 55 Java Auto Updater Jewel Match 3 Jewel Quest Solitaire John Deere Drive Green Junk Mail filter update Launch Manager lucky leap 1.0.0 McAfee Security Scan Plus Mesh Runtime Microsoft .NET Framework 4 Client Profile Microsoft Application Error Reporting Microsoft Security Client Microsoft Security Essentials Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft_VC80_CRT_x86 Microsoft_VC80_MFC_x86 Microsoft_VC80_MFCLOC_x86 Microsoft_VC90_CRT_x86 Mozilla Firefox 28.0 (x86 da) Mozilla Maintenance Service MSVCRT MSVCRT_amd64 MSXML 4.0 SP2 (KB954430) MSXML 4.0 SP2 (KB973688) MyPC Backup Mysearchdial Mystery of Mortlake Mansion Nero BackItUp 10 Nero BackItUp 10 Help (CHM) Nero Control Center 10 Nero ControlCenter 10 Help (CHM) Nero Core Components 10 Nero DiscSpeed 10 Nero DiscSpeed 10 Help (CHM) Nero Express 10 Nero Express 10 Help (CHM) Nero Multimedia Suite 10 Essentials Nero RescueAgent 10 Nero RescueAgent 10 Help (CHM) Nero StartSmart 10 Nero StartSmart 10 Help (CHM) Nero Update OpenOffice.org 3.4.1 Packard Bell Games Packard Bell Power Management Packard Bell Recovery Management Packard Bell Registration Packard Bell ScreenSaver Packard Bell Social Networks Packard Bell Updater Penguins! Plants vs. Zombies - Game of the Year Poczta uslugi Windows Live Podstawowe programy Windows Live Polar Bowler Pošta Windows Live Raccolta foto di Windows Live Re-markit Realtek High Definition Audio Driver RegClean-Pro S?????? f?t???af??? t?? Windows Live safeweeb Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121) Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351) Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449) Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019) Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595) Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642) Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576) Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393) Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628v2) Security Update for Microsoft .NET Framework 4 Client Profile (KB2858302v2) Security Update for Microsoft .NET Framework 4 Client Profile (KB2898855v2) Security Update for Microsoft .NET Framework 4 Client Profile (KB2901110v2) Slingo Deluxe SpeedUpMyPC SW.Booster SW.Sustainer 1.80 Torchlight Update Installer for WildTangent Games App Video Web Camera Virtual Villagers 4 - The Tree of Life VO Package Wedding Dash Welcome Center WildTangent Games App (Packard Bell Games) Windows Live Windows Live ??? Windows Live ???? Windows Live Argazki Galeria Windows Live Communications Platform Windows Live Essentials Windows Live Fotótár Windows Live Fotogalerie Windows Live Fotogalleri Windows Live Fotogaléria Windows Live Fotograf Galerisi Windows Live Galeria de Fotos Windows Live Galerija fotografija Windows Live ID Sign-in Assistant Windows Live Installer Windows Live Language Selector Windows Live Mail Windows Live Mesh Windows Live MIME IFilter Windows Live Movie Maker Windows Live Photo Common Windows Live Photo Gallery Windows Live PIMT Platform Windows Live Remote Client Windows Live Remote Client Resources Windows Live Remote Service Windows Live Remote Service Resources Windows Live SOXE Windows Live SOXE Definitions Windows Live Temel Parçalar Windows Live UX Platform Windows Live UX Platform Language Pack Windows Live Writer Windows Live Writer Resources Windows Liven asennustyökalu Windows Liven sähköposti Windows Liven valokuvavalikoima Zuma Deluxe . ==== End Of File =========================== forums.techguy.org/virus-other-malware-removal/1125653-virus-my-computer.html
Posted on: Sun, 14 Dec 2014 12:28:20 +0000

Trending Topics



Recently Viewed Topics




© 2015