Solved Downloads will not work on any browser

When I try to download any file of any size, it either stops in the middle or takes 2+ hours. On Google Chrome, the download will do about a quarter of the way and then will be interrupted. IE just attempts to start the download and says could not download file, or it just stays at 0%. I need help with this because it has been happening for a long time and I need to download Microsoft Office for school. Please help.
 

My Computer

Hello RockyRaccoon and welcome to the forums :party:

I have attached a script that will reset your internet connection, restore the HOSTS file and flush your DNS. Please download the attached script and save it to your desktop. Right click on it and select Run as administrator. Accept any UAC prompt that comes up. This will reboot your computer, please post the results once it has :)

Tom
 

Attachments

  • Flush DNS and restore HOSTS file.bat
    259 bytes · Views: 41

My Computer

System One

  • Manufacturer/Model
    Build #1
    CPU
    Intel Core i7 3770K @4.4GHz
    Motherboard
    ASUS P8Z77-V PRO
    Memory
    Corsair Vengeance 2x4GB DDR3 1600MHz Low Profile (White)
    Graphics Card(s)
    Gigabyte Radeon HD 7850 (2GB GDDR5)
    Sound Card
    Integrated on motherboard
    Monitor(s) Displays
    23" LG LCD/LED IPS
    Screen Resolution
    1920*1080
    Hard Drives
    Samsung EVO 128GB SSD
    Seagate Barracuda 2TB 7200rpm
    2x500GB Seagate FreeAgent 5400rpm
    PSU
    Corsair TX650W V2 (80+ Bronze)
    Case
    NZXT Phantom 410
    Cooling
    Corsair H100 Water Cooler, 1x140mm and 1x120mm stock fans
    Keyboard
    Microsoft Desktop 2000 Wireless Keyboard
    Mouse
    Microsoft Desktop 2000 Wireless Mouse
    Internet Speed
    95 Mb/s Download 70 Mb/s Upload
tom982,

Thank you for the reply. I ran this file on the desktop and it restarted my computer. Unfortunately I am still getting this download problem. I tried to download with Safari after doing this and it did the same thing. It was going great at first, (downloading steadily at about 80 KB/sec) and then it gradually went slower and slower (70.9, 70.8, 70.7, etc.). I don't know what else to do as I have already ran Malwarebytes on my computer (which found some adware) and I'm still having this problem. I also tried clearing the browsing history in all browsers but it didn't help. Thank you for trying to help.
 

My Computer

No problem :) Would you mind posting the MBAM log for me please? I'm currently doing a malware removal degree so I won't be able to help you personally, but I will seek expert advice depending on the severity of the adware. I would also like you to run another tool for me, this will generate a large log which can be used to identify malware infections and might even show the cause of your downloads problem.

OTLI.gif
OTL

  • Download OTL to your Desktop
  • Double click on the OTL icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
  • Click the Quick Scan button. Do not change any settings unless otherwise told to do so. The scan won't take long.
When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
Please copy (Edit->Select All, Edit->Copy) the contents of these files, one at a time, and paste them into your reply.
 

My Computer

System One

  • Manufacturer/Model
    Build #1
    CPU
    Intel Core i7 3770K @4.4GHz
    Motherboard
    ASUS P8Z77-V PRO
    Memory
    Corsair Vengeance 2x4GB DDR3 1600MHz Low Profile (White)
    Graphics Card(s)
    Gigabyte Radeon HD 7850 (2GB GDDR5)
    Sound Card
    Integrated on motherboard
    Monitor(s) Displays
    23" LG LCD/LED IPS
    Screen Resolution
    1920*1080
    Hard Drives
    Samsung EVO 128GB SSD
    Seagate Barracuda 2TB 7200rpm
    2x500GB Seagate FreeAgent 5400rpm
    PSU
    Corsair TX650W V2 (80+ Bronze)
    Case
    NZXT Phantom 410
    Cooling
    Corsair H100 Water Cooler, 1x140mm and 1x120mm stock fans
    Keyboard
    Microsoft Desktop 2000 Wireless Keyboard
    Mouse
    Microsoft Desktop 2000 Wireless Mouse
    Internet Speed
    95 Mb/s Download 70 Mb/s Upload
Sure, here is the MBAM log.



Malwarebytes Anti-Malware 1.61.0.1400
Malwarebytes : Free anti-malware, anti-virus and spyware removal download

Database version: v2012.04.18.05

Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 9.0.8112.16421
Rickey :: RICKEY-PC [administrator]

4/18/2012 11:37:29 AM
mbam-log-2012-04-18 (11-37-29).txt

Scan type: Full scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 253148
Time elapsed: 12 hour(s), 8 minute(s), 20 second(s) [aborted]

Memory Processes Detected: 2
C:\Program Files\RelevantKnowledge\rlservice.exe (PUP.Adware.RelevantKnowledge) -> 1292 -> Delete on reboot.
C:\Program Files\RelevantKnowledge\rlvknlg.exe (PUP.Adware.RelevantKnowledge) -> 3768 -> Delete on reboot.

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 2
HKLM\SYSTEM\CurrentControlSet\Services\RelevantKnowledge (PUP.Adware.RelevantKnowledge) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{d08d9f98-1c78-4704-87e6-368b0023d831} (PUP.Adware.RelevantKnowledge) -> Quarantined and deleted successfully.

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 20
C:\Program Files\RelevantKnowledge\rlservice.exe (PUP.Adware.RelevantKnowledge) -> Delete on reboot.
C:\Program Files\RelevantKnowledge\rlvknlg.exe (PUP.Adware.RelevantKnowledge) -> Delete on reboot.
C:\Program Files\RelevantKnowledge\rlls.dll (PUP.Adware.RelevantKnowledge) -> Quarantined and deleted successfully.
C:\Program Files\RelevantKnowledge\rlls64.dll (PUP.Adware.RelevantKnowledge) -> Quarantined and deleted successfully.
C:\Program Files\RelevantKnowledge\rlph.dll (PUP.Adware.RelevantKnowledge) -> Quarantined and deleted successfully.
C:\Program Files\RelevantKnowledge\rlvknlg64.exe (PUP.Adware.RelevantKnowledge) -> Quarantined and deleted successfully.
C:\Program Files\RelevantKnowledge\rlxf.dll (PUP.Adware.RelevantKnowledge) -> Quarantined and deleted successfully.
C:\Program Files\RelevantKnowledge\components\rlxg.dll (PUP.Adware.RelevantKnowledge) -> Quarantined and deleted successfully.
C:\Program Files\RelevantKnowledge\components\rlxh.dll (PUP.Adware.RelevantKnowledge) -> Quarantined and deleted successfully.
C:\Program Files\RelevantKnowledge\components\rlxi.dll (PUP.Adware.RelevantKnowledge) -> Quarantined and deleted successfully.
C:\Program Files\RelevantKnowledge\components\rlxj.dll (PUP.Adware.RelevantKnowledge) -> Quarantined and deleted successfully.
C:\Program Files\RelevantKnowledge\components\rlxk.dll (PUP.Adware.RelevantKnowledge) -> Quarantined and deleted successfully.
C:\Users\Andrew.Rickey-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.331.4_0\plugins\rlcm.dll (PUP.Adware.RelevantKnowledge) -> Quarantined and deleted successfully.
C:\Users\Andrew.Rickey-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.332.1_0\plugins\rlcm.dll (PUP.Adware.RelevantKnowledge) -> Quarantined and deleted successfully.
C:\Users\Andrew.Rickey-PC\AppData\Local\Temp\zg9v23tt.tmp\CoolMOVToWMVConverterSetup.exe (PUP.Adware.RKN) -> Quarantined and deleted successfully.
C:\Users\Andrew.Rickey-PC\AppData\Local\Temp\85y3z4ra.tmp\VideoConverterSetup.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\Users\Andrew.Rickey-PC\AppData\Local\Temp\ip03qims.tmp\SoftonicDownloader_for_windows-live-messenger.exe (PUP.ToolbarDownloader) -> Quarantined and deleted successfully.
C:\Users\Andrew.Rickey-PC\AppData\Local\Temp\6fswspqt.tmp\VideoConverterSetup.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\Users\Andrew.Rickey-PC\FoxTabVideoConverter\Uninstall\Uninstall.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\Users\Rickey\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.331.4_0\plugins\rlcm.dll (PUP.Adware.RelevantKnowledge) -> Quarantined and deleted successfully.

(end)


And here are the OTL logs


OTL logfile created on: 4/19/2012 11:57:11 AM - Run 1
OTL by OldTimer - Version 3.2.40.0 Folder = C:\Users\Rickey\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

957.76 Mb Total Physical Memory | 298.79 Mb Available Physical Memory | 31.20% Memory free
2.13 Gb Paging File | 0.78 Gb Available in Paging File | 36.86% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 222.79 Gb Total Space | 30.71 Gb Free Space | 13.79% Space Free | Partition Type: NTFS
Drive D: | 10.00 Gb Total Space | 3.76 Gb Free Space | 37.55% Space Free | Partition Type: NTFS

Computer Name: RICKEY-PC | User Name: Rickey | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012/04/19 11:56:17 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Users\Rickey\Desktop\OTL.exe
PRC - [2012/04/17 01:18:04 | 005,709,168 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files\BitTorrent\BitTorrent.exe
PRC - [2012/03/20 18:42:00 | 013,324,288 | ---- | M] (Google Inc.) -- C:\Users\Rickey\AppData\Local\Programs\Google\MusicManager\MusicManager.exe
PRC - [2012/02/23 13:30:40 | 000,059,240 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Internet Services\ubd.exe
PRC - [2012/02/23 04:36:44 | 001,269,600 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgnsx.exe
PRC - [2012/02/16 04:57:46 | 002,575,712 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgtray.exe
PRC - [2012/02/14 04:53:38 | 000,193,288 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgwdsvc.exe
PRC - [2012/02/14 04:53:14 | 000,758,112 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgrsx.exe
PRC - [2012/02/14 04:52:54 | 005,104,992 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgidsagent.exe
PRC - [2012/02/14 04:52:44 | 000,976,736 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgemcx.exe
PRC - [2012/02/14 04:52:38 | 000,338,784 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgcsrvx.exe
PRC - [2012/02/09 23:13:00 | 002,348,352 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
PRC - [2012/02/09 22:02:27 | 001,820,480 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
PRC - [2012/02/09 22:02:07 | 000,857,408 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
PRC - [2012/01/13 12:21:10 | 000,095,200 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
PRC - [2012/01/06 14:41:06 | 000,681,656 | ---- | M] (iolo technologies, LLC) -- C:\Program Files\iolo\Common\Lib\ioloServiceManager.exe
PRC - [2011/12/28 13:40:48 | 006,148,096 | ---- | M] (FreeDownloadManager.ORG) -- C:\Program Files\Free Download Manager\fdm.exe
PRC - [2011/11/22 18:18:26 | 001,318,816 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee.com\Agent\mcagent.exe
PRC - [2011/10/18 15:32:30 | 000,150,856 | ---- | M] (McAfee, Inc.) -- C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
PRC - [2011/10/18 15:28:34 | 000,160,608 | ---- | M] (McAfee, Inc.) -- C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
PRC - [2011/10/18 15:28:18 | 000,166,288 | ---- | M] (McAfee, Inc.) -- C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
PRC - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
PRC - [2010/12/14 09:49:23 | 001,169,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sdclt.exe
PRC - [2010/11/03 19:11:24 | 002,388,264 | ---- | M] (Apple Inc.) -- C:\Program Files\Safari\Safari.exe
PRC - [2009/04/11 01:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2008/01/19 02:33:23 | 000,020,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\RacAgent.exe
PRC - [2006/12/08 00:17:44 | 000,537,480 | ---- | M] ( ) -- C:\Windows\System32\dlcicoms.exe
PRC - [2006/12/08 00:16:30 | 000,435,080 | ---- | M] (Dell) -- C:\Program Files\Dell AIO Printer 946\DLCImon.exe


========== Modules (No Company Name) ==========

MOD - [2012/03/20 18:32:14 | 000,344,064 | ---- | M] () -- C:\Users\Rickey\AppData\Local\Programs\Google\MusicManager\libaudioenc.dll
MOD - [2012/03/20 18:32:02 | 000,346,624 | ---- | M] () -- C:\Users\Rickey\AppData\Local\Programs\Google\MusicManager\libmpgdec.dll
MOD - [2012/03/20 18:31:26 | 000,363,520 | ---- | M] () -- C:\Users\Rickey\AppData\Local\Programs\Google\MusicManager\libid3tag.dll
MOD - [2012/03/20 18:31:18 | 000,198,656 | ---- | M] () -- C:\Users\Rickey\AppData\Local\Programs\Google\MusicManager\libaacdec.dll
MOD - [2011/12/28 14:13:24 | 003,522,048 | ---- | M] () -- C:\Program Files\Free Download Manager\fdmbtsupp.dll
MOD - [2011/12/28 12:49:14 | 000,086,528 | ---- | M] () -- C:\Program Files\Free Download Manager\fdmumsp.dll
MOD - [2011/12/28 12:48:54 | 000,230,400 | ---- | M] () -- C:\Program Files\Free Download Manager\iefdm2.dll
MOD - [2011/06/24 22:56:36 | 000,087,328 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2011/06/24 22:56:14 | 001,241,888 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2006/09/06 04:26:48 | 000,069,632 | ---- | M] () -- C:\Program Files\Dell AIO Printer 946\DLCIcfg.dll
MOD - [2005/12/20 13:26:00 | 000,118,784 | ---- | M] () -- C:\Program Files\Dell AIO Printer 946\dlcidrec.dll


========== Win32 Services (SafeList) ==========

SRV - [2012/04/13 14:05:33 | 000,253,088 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/02/14 04:53:38 | 000,193,288 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2012\avgwdsvc.exe -- (avgwd)
SRV - [2012/02/14 04:52:54 | 005,104,992 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2012\avgidsagent.exe -- (AVGIDSAgent)
SRV - [2012/02/09 23:13:00 | 002,348,352 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2012/01/13 12:21:10 | 000,095,200 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service)
SRV - [2012/01/06 14:41:06 | 000,681,656 | ---- | M] (iolo technologies, LLC) [Auto | Running] -- C:\Program Files\iolo\Common\Lib\ioloServiceManager.exe -- (ioloSystemService)
SRV - [2011/10/18 15:32:30 | 000,150,856 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe -- (mfevtp)
SRV - [2011/10/18 15:28:34 | 000,160,608 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe -- (mfefire)
SRV - [2011/10/18 15:28:18 | 000,166,288 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe -- (McShield)
SRV - [2011/06/23 15:22:58 | 000,361,712 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee\VirusScan\mcods.exe -- (McODS)
SRV - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe -- (MSK80Service)
SRV - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McProxy)
SRV - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McNASvc)
SRV - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McNaiAnn)
SRV - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (mcmscsvc)
SRV - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe -- (McMPFSvc)
SRV - [2008/01/19 02:38:24 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2006/12/08 00:17:44 | 000,537,480 | ---- | M] ( ) [Auto | Running] -- C:\Windows\System32\dlcicoms.exe -- (dlci_device)
SRV - [2004/10/22 03:24:18 | 000,073,728 | ---- | M] (Macrovision Corporation) [On_Demand | Stopped] -- C:\Program Files\Roxio\Roxio MyDVD DE\InstallShield\Driver\1050\Intel 32\IDriverT.exe -- (IDriverT)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
DRV - File not found [Kernel | On_Demand | Unknown] -- -- (mfeavfk01)
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\jl2005c.sys -- (JL2005C)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ipinip.sys -- (IpInIp)
DRV - File not found [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\blbdrive.sys -- (blbdrive)
DRV - [2012/02/22 05:25:52 | 000,299,472 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgtdix.sys -- (Avgtdix)
DRV - [2012/02/22 05:25:32 | 000,235,216 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgldx86.sys -- (Avgldx86)
DRV - [2012/02/09 23:13:00 | 010,816,832 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2012/01/31 04:46:50 | 000,031,952 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\System32\drivers\avgrkx86.sys -- (Avgrkx86)
DRV - [2011/12/23 13:32:14 | 000,041,040 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\System32\drivers\avgmfx86.sys -- (Avgmfx86)
DRV - [2011/12/23 13:32:08 | 000,017,232 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\avgidsshimx.sys -- (AVGIDSShim)
DRV - [2011/12/23 13:32:06 | 000,024,144 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\avgidsfilterx.sys -- (AVGIDSFilter)
DRV - [2011/12/23 13:32:04 | 000,022,992 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\avgidsehx.sys -- (AVGIDSEH)
DRV - [2011/12/23 13:32:00 | 000,139,856 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\avgidsdriverx.sys -- (AVGIDSDriver)
DRV - [2011/10/15 14:16:16 | 000,464,176 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\mfehidk.sys -- (mfehidk)
DRV - [2011/10/15 14:16:16 | 000,338,176 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\mfefirek.sys -- (mfefirek)
DRV - [2011/10/15 14:16:16 | 000,180,816 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\mfeavfk.sys -- (mfeavfk)
DRV - [2011/10/15 14:16:16 | 000,165,680 | ---- | M] (McAfee, Inc.) [Kernel | System | Running] -- C:\Windows\System32\drivers\mfewfpk.sys -- (mfewfpk)
DRV - [2011/10/15 14:16:16 | 000,121,256 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\mfeapfk.sys -- (mfeapfk)
DRV - [2011/10/15 14:16:16 | 000,064,880 | ---- | M] (McAfee, Inc.) [Kernel | System | Running] -- C:\Windows\System32\drivers\mfenlfk.sys -- (mfenlfk)
DRV - [2011/10/15 14:16:16 | 000,059,456 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\mfebopk.sys -- (mfebopk)
DRV - [2011/10/15 14:16:16 | 000,057,600 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\cfwids.sys -- (cfwids)
DRV - [2009/09/16 10:22:48 | 000,040,552 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\mfesmfk.sys -- (mfesmfk)
DRV - [2009/09/16 10:22:14 | 000,034,248 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\mferkdk.sys -- (mferkdk)
DRV - [2009/04/10 23:42:52 | 000,031,616 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUSB)
DRV - [2008/12/09 10:59:30 | 000,020,392 | ---- | M] (EldoS Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\ElRawDsk.sys -- (ElRawDisk)
DRV - [2008/08/22 00:49:58 | 000,008,320 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\motccgpfl.sys -- (motccgpfl)
DRV - [2008/08/22 00:49:22 | 000,018,688 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\motccgp.sys -- (motccgp)
DRV - [2007/08/09 18:12:30 | 000,110,624 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\nvstor32.sys -- (nvstor32)
DRV - [2007/06/18 21:18:26 | 000,023,680 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\motport.sys -- (motport)
DRV - [2007/06/18 21:18:26 | 000,023,680 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\motmodem.sys -- (motmodem)
DRV - [2006/11/02 02:41:53 | 000,251,904 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\VSTBS23.SYS -- (VSTHWBS2)
DRV - [2006/11/02 02:30:53 | 000,045,056 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\bcm4sbxp.sys -- (bcm4sbxp)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Preserve
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_11_2_202_233.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\progra~1\mcafee\msc\npmcsn~1.dll ()
FF - HKLM\Software\MozillaPlugins\@mcafee.com/SAFFPlugin: C:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.0.61118.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Rickey\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Rickey\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{4ED1F68A-5463-4931-9384-8FFF5ED91D92}: C:\Program Files\McAfee\SiteAdvisor [2012/02/23 02:41:17 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{D19CA586-DD6C-4a0a-96F8-14644F340D60}: C:\Program Files\Common Files\McAfee\SystemCore [2012/04/19 11:55:27 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{3C5F0F00-683D-4847-89C8-E7AF64FD1CFB}: C:\Program Files\RelevantKnowledge [2012/04/18 23:52:30 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files\AVG\AVG2012\Firefox4\ [2012/04/15 01:49:53 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{F53C93F1-07D5-430c-86D4-C9531B27DFAF}: C:\Program Files\AVG\AVG2012\Firefox\DoNotTrack\ [2012/04/15 01:46:46 | 000,000,000 | ---D | M]

[2010/07/08 14:21:24 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Rickey\AppData\Roaming\Mozilla\Extensions
[2010/07/08 14:21:24 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Rickey\AppData\Roaming\Mozilla\Extensions\[email protected]
[2012/04/17 23:23:24 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Rickey\AppData\Roaming\Mozilla\Firefox\Profiles\astta1qj.default\extensions

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Rickey\AppData\Local\Google\Chrome\Application\18.0.1025.151\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin7.dll
CHR - plugin: Java Deployment Toolkit 6.0.260.3 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U26 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
CHR - plugin: Microsoft Office Live Plug-in for Firefox (Enabled) = C:\Program Files\Microsoft\Office Live\npOLW.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Rickey\AppData\Local\Google\Chrome\Application\18.0.1025.151\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Rickey\AppData\Local\Google\Chrome\Application\18.0.1025.151\pdf.dll
CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Users\Rickey\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.31.137.7_0\McChPlg.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Google Updater (Enabled) = C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.69\npGoogleUpdate3.dll
CHR - plugin: Veetle TV Player (Enabled) = C:\Program Files\Veetle\Player\npvlc.dll
CHR - plugin: Veetle TV Core (Enabled) = C:\Program Files\Veetle\plugins\npVeetle.dll
CHR - plugin: Windows Live\x99 Photo Gallery (Enabled) = C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: McAfee SecurityCenter (Enabled) = c:\progra~1\mcafee\msc\npmcsn~1.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: YouTube = C:\Users\Rickey\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Google Search = C:\Users\Rickey\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: SiteAdvisor = C:\Users\Rickey\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.123.2_0\
CHR - Extension: RelevantKnowledge = C:\Users\Rickey\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.331.4_0\
CHR - Extension: Gmail = C:\Users\Rickey\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2012/04/19 00:33:18 | 000,000,021 | RHS- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (AVG Do-Not-Track) - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - C:\Program Files\AVG\AVG2012\avgdtiex.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG2012\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Free Download Manager) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll ()
O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (no name) - {9D425283-D487-4337-BAB6-AB8354A81457} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {9D425283-D487-4337-BAB6-AB8354A81457} - No CLSID value found.
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG2012\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [DLCICATS] C:\Windows\System32\spool\DRIVERS\W32X86\3\DLCItime.DLL ()
O4 - HKLM..\Run: [dlcimon.exe] c:\Program Files\Dell AIO Printer 946\DLCImon.exe (Dell)
O4 - HKLM..\Run: [iolo Startup] C:\Program Files\iolo\Common\Lib\ioloLManager.exe (iolo technologies, LLC)
O4 - HKLM..\Run: [mcui_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Wondershare Helper Compact.exe] C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe (Wondershare)
O4 - HKCU..\Run: [BitTorrent] C:\Program Files\BitTorrent\BitTorrent.exe (BitTorrent, Inc.)
O4 - HKCU..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe (FreeDownloadManager.ORG)
O4 - HKCU..\Run: [MobileDocuments] C:\Program Files\Common Files\Apple\Internet Services\ubd.exe (Apple Inc.)
O4 - HKCU..\Run: [MusicManager] C:\Users\Rickey\AppData\Local\Programs\Google\MusicManager\MusicManager.exe (Google Inc.)
O4 - HKCU..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Main present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0
O8 - Extra context menu item: Download all with Free Download Manager - C:\Program Files\Free Download Manager\dlall.htm ()
O8 - Extra context menu item: Download selected with Free Download Manager - C:\Program Files\Free Download Manager\dlselected.htm ()
O8 - Extra context menu item: Download video with Free Download Manager - C:\Program Files\Free Download Manager\dlfvideo.htm ()
O8 - Extra context menu item: Download with Free Download Manager - C:\Program Files\Free Download Manager\dllink.htm ()
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - Reg Error: Value error. File not found
O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - Reg Error: Value error. File not found
O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - Reg Error: Value error. File not found
O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - Reg Error: Value error. File not found
O9 - Extra Button: AVG Do-Not-Track - {DA58ACA7-18A6-403A-93DA-6E4172D43709} - C:\Program Files\AVG\AVG2012\avgdtiex.dll (AVG Technologies CZ, s.r.o.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} http://www.musicnotes.com/download/mnviewer.cab (Musicnotes Viewer)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/downl...-48D9-9B0E-1719D1177202/LegitCheckControl.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab (System Requirements Lab Class)
O16 - DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} http://catalog.update.microsoft.com.../en/x86/MuCatalogWebControl.cab?1254955314766 (MUCatalogWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {9C23D886-43CB-43DE-B2DB-112A68D7E10A} http://lads.myspace.com/upload/MySpaceUploader2.cab (MySpace Uploader Control)
O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} http://www.sibelius.com/download/software/win/ActiveXPlugin.cab (ScorchPlugin Class)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {F8FC1530-0608-11DF-2008-0800200C9A66} https://myhr.abbott.com/CACHE/sdesktop/install/binaries/instweb.cab (CSD ActiveX Installer)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FEA69CA1-85CA-4035-A40D-0EC0FC48663C}: DhcpNameServer = 192.168.1.254
O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl.dll (McAfee, Inc.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\img29.jpg
O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\img29.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 16:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{b275df91-444f-11e1-a6f8-00188b63023a}\Shell - "" = AutoRun
O33 - MountPoints2\{b275df91-444f-11e1-a6f8-00188b63023a}\Shell\AutoRun\command - "" = K:\LaunchU3.exe -a
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG2012\avgrsx.exe /sync /restart)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2012/04/19 11:53:19 | 000,595,968 | ---- | C] (OldTimer Tools) -- C:\Users\Rickey\Desktop\OTL.exe
[2012/04/19 11:49:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
[2012/04/19 04:29:45 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Analysis Services
[2012/04/19 01:35:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2012/04/19 01:30:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2012/04/19 01:27:34 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2012/04/18 01:17:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012/04/18 01:14:34 | 000,022,344 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2012/04/18 01:14:23 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2012/04/17 23:40:10 | 000,000,000 | ---D | C] -- C:\Downloads
[2012/04/17 23:23:12 | 000,000,000 | ---D | C] -- C:\Users\Rickey\AppData\Roaming\Free Download Manager
[2012/04/17 23:21:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Download Manager
[2012/04/17 23:21:25 | 000,000,000 | ---D | C] -- C:\Program Files\Free Download Manager
[2012/04/17 03:02:56 | 000,000,000 | ---D | C] -- C:\!KillBox
[2012/04/17 01:17:39 | 000,000,000 | ---D | C] -- C:\Program Files\BitTorrent
[2012/04/17 01:04:05 | 000,000,000 | ---D | C] -- C:\Users\Rickey\AppData\Roaming\BitTorrent
[2012/04/17 01:01:30 | 000,000,000 | ---D | C] -- C:\Program Files\fbphotozoom
[2012/04/15 01:54:08 | 000,000,000 | ---D | C] -- C:\Users\Rickey\AppData\Roaming\AVG2012
[2012/04/15 01:50:57 | 000,000,000 | -H-D | C] -- C:\ProgramData\Common Files
[2012/04/15 01:50:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
[2012/04/15 01:45:38 | 000,000,000 | -H-D | C] -- C:\$AVG
[2012/04/15 01:45:38 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG2012
[2012/04/15 01:45:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\AVG
[2012/04/15 01:31:51 | 000,000,000 | ---D | C] -- C:\Program Files\AVG
[2012/04/15 00:43:06 | 000,000,000 | ---D | C] -- C:\ProgramData\MFAData
[2012/04/07 22:18:34 | 000,000,000 | ---D | C] -- C:\Users\Rickey\AppData\Local\Opera
[2012/04/07 22:18:33 | 000,000,000 | ---D | C] -- C:\Users\Rickey\AppData\Roaming\Opera
[2012/04/07 22:17:01 | 000,000,000 | ---D | C] -- C:\Program Files\Opera
[2012/04/07 18:54:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RelevantKnowledge
[2012/04/06 18:29:26 | 000,000,000 | ---D | C] -- C:\Users\Rickey\AppData\Local\Mozilla
[2012/04/06 17:57:03 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2012/04/05 01:16:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
[2012/04/05 01:16:38 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2012/04/05 00:44:53 | 000,000,000 | ---D | C] -- C:\Users\Rickey\AppData\Roaming\Media Player Classic
[2012/04/02 01:40:23 | 000,000,000 | ---D | C] -- C:\Users\Rickey\Documents\Downloads
[2012/03/30 02:46:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2012/03/30 02:41:43 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2012/03/30 02:18:21 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2012/03/29 01:22:31 | 000,000,000 | ---D | C] -- C:\Users\Rickey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Music Manager
[2012/03/29 01:22:10 | 000,000,000 | ---D | C] -- C:\Users\Rickey\AppData\Local\Programs
[2012/03/22 03:40:36 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2012/03/22 03:40:36 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2012/04/19 12:25:00 | 000,000,424 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{9901EABB-A52A-4D17-8866-D73DCC9FAF39}.job
[2012/04/19 12:20:22 | 000,000,912 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2181126604-655730898-593714101-1000UA.job
[2012/04/19 12:05:54 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/04/19 12:00:17 | 000,000,886 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/04/19 11:58:11 | 000,000,882 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore1cd080b5658dbeb.job
[2012/04/19 11:56:17 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Users\Rickey\Desktop\OTL.exe
[2012/04/19 11:52:56 | 095,582,017 | ---- | M] () -- C:\Windows\System32\drivers\AVG\incavi.avm
[2012/04/19 11:50:58 | 000,000,932 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2181126604-655730898-593714101-1005UA.job
[2012/04/19 11:49:31 | 000,001,737 | ---- | M] () -- C:\Users\Public\Desktop\McAfee Security Center.lnk
[2012/04/19 11:42:12 | 000,429,432 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2012/04/19 11:40:53 | 000,003,696 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2012/04/19 11:40:52 | 000,003,696 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2012/04/19 11:40:32 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/04/19 01:51:39 | 000,000,754 | ---- | M] () -- C:\Users\Rickey\Documents\cc_20120419_015134.reg
[2012/04/19 01:44:52 | 000,033,696 | ---- | M] () -- C:\Users\Rickey\Documents\cc_20120419_014429.reg
[2012/04/19 01:35:53 | 000,001,973 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2012/04/19 01:35:53 | 000,001,957 | ---- | M] () -- C:\Users\Rickey\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2012/04/19 01:30:07 | 000,000,806 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2012/04/19 00:20:03 | 000,000,860 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2181126604-655730898-593714101-1000Core.job
[2012/04/18 19:50:01 | 000,000,880 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2181126604-655730898-593714101-1005Core.job
[2012/04/18 01:18:05 | 000,000,908 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/04/17 23:22:36 | 000,000,866 | ---- | M] () -- C:\Users\Rickey\Desktop\Free Download Manager.lnk
[2012/04/17 22:21:17 | 000,002,305 | ---- | M] () -- C:\Users\Rickey\Application Data\Microsoft\Internet Explorer\Quick Launch\Apple Safari.lnk
[2012/04/17 20:05:57 | 000,007,620 | ---- | M] () -- C:\Users\Rickey\AppData\Local\d3d9caps.dat
[2012/04/17 17:22:22 | 000,039,305 | ---- | M] () -- C:\Windows\System32\drivers\AVG\iavichjg.avm
[2012/04/17 01:18:15 | 000,000,798 | ---- | M] () -- C:\Users\Rickey\Application Data\Microsoft\Internet Explorer\Quick Launch\BitTorrent.lnk
[2012/04/17 01:18:15 | 000,000,774 | ---- | M] () -- C:\Users\Public\Desktop\BitTorrent.lnk
[2012/04/15 13:48:51 | 000,642,906 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2012/04/15 13:48:50 | 000,120,096 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2012/04/15 01:50:00 | 000,000,844 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2012.lnk
[2012/04/14 01:18:04 | 000,098,278 | ---- | M] () -- C:\Users\Rickey\Documents\Voice016.amr
[2012/04/07 22:17:46 | 000,001,640 | ---- | M] () -- C:\Users\Rickey\Application Data\Microsoft\Internet Explorer\Quick Launch\Opera.lnk
[2012/04/07 22:17:45 | 000,001,616 | ---- | M] () -- C:\Users\Public\Desktop\Opera.lnk
[2012/04/07 01:05:23 | 000,002,463 | ---- | M] () -- C:\Users\Public\Desktop\Safari.lnk
[2012/04/04 15:56:40 | 000,022,344 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2012/04/02 04:51:57 | 000,024,558 | ---- | M] () -- C:\Users\Rickey\Documents\Perry_the_Platypus.png
[2012/03/30 02:46:36 | 000,001,666 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2012/03/23 16:30:36 | 000,305,152 | ---- | M] () -- C:\Users\Rickey\Documents\windiag.iso
[2012/03/22 15:38:37 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2012/04/19 11:52:56 | 095,582,017 | ---- | C] () -- C:\Windows\System32\drivers\AVG\incavi.avm
[2012/04/19 01:51:36 | 000,000,754 | ---- | C] () -- C:\Users\Rickey\Documents\cc_20120419_015134.reg
[2012/04/19 01:44:33 | 000,033,696 | ---- | C] () -- C:\Users\Rickey\Documents\cc_20120419_014429.reg
[2012/04/19 01:35:53 | 000,001,973 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2012/04/19 01:35:53 | 000,001,957 | ---- | C] () -- C:\Users\Rickey\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2012/04/19 01:30:06 | 000,000,806 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2012/04/18 01:18:05 | 000,000,908 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/04/17 23:22:36 | 000,000,866 | ---- | C] () -- C:\Users\Rickey\Desktop\Free Download Manager.lnk
[2012/04/17 22:51:08 | 000,001,737 | ---- | C] () -- C:\Users\Public\Desktop\McAfee Security Center.lnk
[2012/04/17 17:22:22 | 000,039,305 | ---- | C] () -- C:\Windows\System32\drivers\AVG\iavichjg.avm
[2012/04/17 01:18:15 | 000,000,798 | ---- | C] () -- C:\Users\Rickey\Application Data\Microsoft\Internet Explorer\Quick Launch\BitTorrent.lnk
[2012/04/17 01:18:15 | 000,000,774 | ---- | C] () -- C:\Users\Public\Desktop\BitTorrent.lnk
[2012/04/15 01:49:59 | 000,000,844 | ---- | C] () -- C:\Users\Public\Desktop\AVG 2012.lnk
[2012/04/14 01:18:03 | 000,098,278 | ---- | C] () -- C:\Users\Rickey\Documents\Voice016.amr
[2012/04/07 22:17:46 | 000,001,640 | ---- | C] () -- C:\Users\Rickey\Application Data\Microsoft\Internet Explorer\Quick Launch\Opera.lnk
[2012/04/07 22:17:45 | 000,001,628 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
[2012/04/07 22:17:45 | 000,001,616 | ---- | C] () -- C:\Users\Public\Desktop\Opera.lnk
[2012/04/07 01:05:24 | 000,002,305 | ---- | C] () -- C:\Users\Rickey\Application Data\Microsoft\Internet Explorer\Quick Launch\Apple Safari.lnk
[2012/04/07 01:05:23 | 000,002,475 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Safari.lnk
[2012/04/07 01:05:23 | 000,002,463 | ---- | C] () -- C:\Users\Public\Desktop\Safari.lnk
[2012/04/07 00:12:12 | 000,000,830 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/04/02 04:51:57 | 000,024,558 | ---- | C] () -- C:\Users\Rickey\Documents\Perry_the_Platypus.png
[2012/03/30 02:46:36 | 000,001,666 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2012/03/23 16:30:36 | 000,305,152 | ---- | C] () -- C:\Users\Rickey\Documents\windiag.iso
[2012/03/22 04:08:25 | 000,000,882 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore1cd080b5658dbeb.job
[2012/03/22 03:49:19 | 000,000,886 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/03/07 23:18:10 | 000,005,081 | ---- | C] () -- C:\ProgramData\hnbdehzc.pfe
[2012/03/07 21:55:26 | 000,000,034 | -H-- | C] () -- C:\Windows\System32\Converter_sysquict.dat
[2012/03/07 21:53:59 | 000,164,352 | ---- | C] () -- C:\Windows\System32\unrar.dll
[2012/03/07 21:53:46 | 000,755,027 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2012/03/07 21:53:45 | 003,596,288 | ---- | C] () -- C:\Windows\System32\qt-dx331.dll
[2012/03/07 21:53:45 | 000,159,839 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2012/03/07 21:53:39 | 000,007,680 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
[2012/02/16 02:16:54 | 000,074,703 | ---- | C] () -- C:\Windows\System32\mfc45.dll
[2012/01/14 19:04:14 | 000,005,104 | ---- | C] () -- C:\ProgramData\qjaxlkio.dss
[2011/11/18 18:24:22 | 000,020,312 | ---- | C] () -- C:\Windows\System32\RegistryDefragBootTime.exe
[2011/11/02 20:28:21 | 000,221,564 | -H-- | C] () -- C:\Windows\System32\mlfcache.dat
[2011/05/29 02:34:46 | 000,000,012 | ---- | C] () -- C:\Windows\acmmzx.dll
[2011/04/04 13:32:48 | 000,000,258 | RHS- | C] () -- C:\ProgramData\ntuser.pol

========== LOP Check ==========

[2010/07/13 21:37:01 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\acccore
[2012/04/15 01:54:08 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\AVG2012
[2012/04/19 12:24:45 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\BitTorrent
[2010/09/20 18:55:24 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\Catalina Marketing Corp
[2009/10/20 17:09:50 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\DataCast
[2010/12/20 03:38:45 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\DVDVideoSoft
[2010/11/17 21:47:38 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\DVDVideoSoftIEHelpers
[2012/04/19 12:24:30 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\Free Download Manager
[2012/02/17 01:52:02 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\FrostWire
[2009/11/08 01:19:51 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\GetRightToGo
[2012/01/15 20:30:55 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\IObit
[2012/02/16 02:26:28 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\iolo
[2012/01/14 19:04:51 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\MOVAVI
[2012/04/10 20:39:28 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\Mp3tag
[2009/09/06 02:56:37 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\MusicNet
[2012/04/07 22:18:33 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\Opera
[2011/04/25 15:31:31 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\Skinux
[2012/02/16 14:51:43 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\SoftGrid Client
[2012/01/15 20:17:53 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\Sony
[2012/01/25 02:10:44 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\TP
[2012/02/21 03:05:21 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\TuneUpMedia
[2012/02/17 01:52:02 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\uTorrent
[2010/07/08 14:24:49 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\Vivox
[2012/03/07 21:49:12 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\Wondershare Video Converter Ultimate
[2012/01/15 22:11:29 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\Xilisoft
[2009/07/01 17:29:54 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\Xilisoft Corporation
[2012/04/19 05:06:28 | 000,032,596 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2012/04/19 12:25:00 | 000,000,424 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{9901EABB-A52A-4D17-8866-D73DCC9FAF39}.job

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 76 bytes -> C:\Users\Rickey\Documents\Xilisoft Corporation:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Rickey\Documents\Start Learning Guitar_files:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Rickey\Documents\My Games:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Rickey\Documents\FFOutput:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Rickey\Documents\DVDVideoSoft:Roxio EMC Stream

< End of report >





OTL Extras logfile created on: 4/19/2012 11:57:11 AM - Run 1
OTL by OldTimer - Version 3.2.40.0 Folder = C:\Users\Rickey\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

957.76 Mb Total Physical Memory | 298.79 Mb Available Physical Memory | 31.20% Memory free
2.13 Gb Paging File | 0.78 Gb Available in Paging File | 36.86% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 222.79 Gb Total Space | 30.71 Gb Free Space | 13.79% Space Free | Partition Type: NTFS
Drive D: | 10.00 Gb Total Space | 3.76 Gb Free Space | 37.55% Space Free | Partition Type: NTFS

Computer Name: RICKEY-PC | User Name: Rickey | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\WinHlp32.exe (Microsoft Corporation)
.html [@ = ChromeHTML] -- C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\WinHlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiSpyware]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{08D05D8F-9B82-451C-8710-1CC230F5E509}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgdiagex.exe |
"{0BA01347-3DC7-497E-892A-36CAE938993B}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe |
"{0E3F4F47-2F36-4669-9E7D-6649C7B670D2}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe |
"{0F0F5A08-7CA1-42E6-A877-86A2C496E89B}" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe |
"{1138CB69-0F55-4439-91A5-92BCEC9CE1EA}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgmfapx.exe |
"{22FC52BF-3EE2-4247-8595-6905CD487B9B}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgemcx.exe |
"{2C7E0609-9026-4A7B-B852-5FABA8D629AF}" = protocol=17 | dir=in | app=c:\program files\dell aio printer 946\dlcimon.exe |
"{3208454B-CB0A-4BF9-A0B1-27653B8E6D1D}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgmfapx.exe |
"{3624A67F-9C32-492C-86C9-56F85EC75431}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgnsx.exe |
"{3962DE1B-BE9D-463D-AD27-C699503193F8}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{5148C7C9-0CC6-429B-AFAE-66E8B273D10C}" = protocol=6 | dir=in | app=c:\windows\system32\dlcicoms.exe |
"{583BB43D-BF41-432A-8F39-A95E1F1E76D5}" = protocol=6 | dir=in | app=c:\program files\bittorrent\bittorrent.exe |
"{63EA62D6-AC20-4FED-AB56-4129C3D44F78}" = protocol=17 | dir=in | app=c:\windows\system32\dlcicoms.exe |
"{6B0EEA11-9340-40CF-8016-7F54FCB9F04F}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{7467B610-4E9D-4EE2-BBF8-786D6DD58A63}" = protocol=6 | dir=in | app=c:\program files\bittorrent\bittorrent.exe |
"{7ABA3BF0-440C-4390-A7CE-61DE26DC5FE5}" = protocol=6 | dir=in | app=c:\program files\dell aio printer 946\dlcimon.exe |
"{8134CC3F-5199-419D-8793-D7732EBF90DD}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{8AAFBC45-37B5-43A1-BB41-E2E9B3B52328}" = protocol=17 | dir=in | app=c:\program files\dell aio printer 946\dlciaiox.exe |
"{9C634E06-4FDA-4CCB-8A50-C3B0C2D3F59B}" = protocol=6 | dir=in | app=c:\program files\dell aio printer 946\dlciaiox.exe |
"{A7DFD33C-74D3-4AE6-91CF-18B31B45EC01}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgemcx.exe |
"{B41513F3-3D55-41B3-906A-D4C9D2B29A19}" = protocol=17 | dir=in | app=c:\program files\bittorrent\bittorrent.exe |
"{BF5FC979-943A-4614-A770-F06CF5E95009}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe |
"{C48F8AF4-9839-47EB-B9DE-53AE6D0A2BE2}" = protocol=17 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\dlcipswx.exe |
"{C7933113-C195-41F2-9BD4-0A9B165743C2}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgnsx.exe |
"{CE7CC884-0333-45C1-B329-9D7EB9CF94DF}" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe |
"{DC1467AD-BEBC-4D1B-80EA-EE85EE6BBF0F}" = dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe |
"{E3089CA1-ED60-4510-B579-0CB237F4C269}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgdiagex.exe |
"{E74AB511-AE46-48D1-8C56-6D1BA959FDFC}" = protocol=17 | dir=in | app=c:\program files\bittorrent\bittorrent.exe |
"{F287B580-6652-45B8-8C1E-DF669DEB6480}" = dir=in | app=c:\program files\itunes\itunes.exe |
"{F4788084-B56D-4F88-9CAD-25AFE6F2E3C1}" = protocol=6 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\dlcipswx.exe |
"{FA56EBBB-3E5D-4FF8-97BC-2CB4C2A5DBB5}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{069C1AD7-AC72-40E0-A156-7442EA6A48D7}" = AVG 2012
"{0B973521-269F-11E1-8ED3-F04DA23A5C58}" = MSVCRT Redists
"{17E3A651-12B9-4149-BAE8-E6FB9A5ADC4F}" = Microsoft Works Suite Add-in for Microsoft Word
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{23B8A91D-680B-462B-87AD-3D70F7341731}" = iTunes
"{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{30465B6C-B53F-49A1-9EBA-A3F187AD502E}" = Roxio Update Manager
"{35E1EC43-D4FC-4E4A-AAB3-20DDA27E8BB0}" = Sonic Activation Module
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3D3E663D-4E7E-4577-A560-7ECDDD45548A}" = PVSonyDll
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4AC7B4E7-59B7-4E48-A60D-263C486FC33A}_is1" = System Checkup 3.1
"{55FD1D5A-7AEF-4DA3-8FAF-A71B2A52FFC7}_is1" = iolo technologies' System Mechanic
"{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler
"{6B3CA80E-6AC0-4725-BABF-9B0FEF880CB3}" = Power Tab Editor 1.7
"{6B9B0C6F-E5FA-4633-A640-AB98A272ECCA}" = Safari
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour
"{7BE15435-2D3E-4B58-867F-9C75BED0208C}" = QuickTime
"{889DF117-14D1-44EE-9F31-C5FB5D47F68B}" = Yontoo Layers Runtime 1.10.01
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90140000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2010
"{90140000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2010
"{90140000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2010
"{90140000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2010
"{90140000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2010
"{90140000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2010
"{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010
"{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010
"{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010
"{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010
"{90140000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2010
"{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010
"{90140000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2010
"{911B0409-6000-11D3-8CFE-0050048383C9}" = Microsoft Word 2002
"{926BD0E8-24A3-41D2-AF9B-340F1A37ED12}" = MobileMe Control Panel
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AB5DFE94-C17D-4514-B772-1F700142F6D4}" = Sibelius Scorch (ActiveX Only)
"{AC76BA86-7AD7-1033-7B44-A95000000001}" = Adobe Reader 9.5.0
"{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0
"{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Control Panel 295.73
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Graphics Driver 295.73
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 1.7.11
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{C19BE821-89B1-4A96-AC7C-873810C0CB5F}" = ContentSAFER for Wizmax
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{DA7DF8E2-4B8F-4286-97FE-DE3FFFE9B728}" = iCloud
"{DE1AF137-C455-494A-A817-EFE44BCCFDEE}" = Works Upgrade
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}" = Apple Application Support
"{EFC04D3F-A152-47E7-8517-EE0F6201AFEF}" = Apple Mobile Device Support
"{FA54AFB1-5745-4389-B8C1-9F7509672ED1}" = iPhone Configuration Utility
"{FB0391C7-BB09-4403-BA3B-A232F9A4B109}" = AVG 2012
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"AVG" = AVG 2012
"AVS Update Manager_is1" = AVS Update Manager 1.0
"AVS Video Editor_is1" = AVS Video Editor 6
"BitTorrent" = BitTorrent
"CCleaner" = CCleaner
"Coupon Printer for Windows5.0.0.0" = Coupon Printer for Windows
"Dell AIO Printer 946" = Dell AIO Printer 946
"FormatFactory" = FormatFactory 2.70
"Free Download Manager_is1" = Free Download Manager 3.8
"Free YouTube Download_is1" = Free YouTube Download 2.3
"Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.9
"Google Chrome" = Google Chrome
"Guitar Pro 5_is1" = Guitar Pro 5.0
"KLiteCodecPack_is1" = K-Lite Codec Pack 4.0.0 (Full)
"LastFM_is1" = Last.fm 1.5.4.27091
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.61.0.1400
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Mp3tag" = Mp3tag v2.49b
"MSC" = McAfee SecurityCenter
"Opera 11.62.1347" = Opera 11.62
"SoftwareUpdUtility" = Download Updater (AOL LLC)
"SystemRequirementsLab" = System Requirements Lab
"Uninstall_is1" = Uninstall 1.0.0.1
"WinRAR archiver" = WinRAR archiver
"Works2006Setup" = Microsoft Works Suite 2006 Setup Launcher

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"309a46b1dc89b774" = Dell Driver Download Manager
"MusicManager" = Music Manager
"Octoshape add-in for Adobe Flash Player" = Octoshape add-in for Adobe Flash Player

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 4/17/2012 11:51:29 PM | Computer Name = Rickey-PC | Source = Windows Search Service | ID = 3013
Description =

Error - 4/17/2012 11:51:29 PM | Computer Name = Rickey-PC | Source = Windows Search Service | ID = 3013
Description =

Error - 4/18/2012 12:21:52 PM | Computer Name = Rickey-PC | Source = Windows Search Service | ID = 3038
Description =

Error - 4/18/2012 12:29:09 PM | Computer Name = Rickey-PC | Source = Windows Search Service | ID = 3028
Description =

Error - 4/18/2012 12:29:11 PM | Computer Name = Rickey-PC | Source = Windows Search Service | ID = 3058
Description =

Error - 4/19/2012 2:05:33 AM | Computer Name = Rickey-PC | Source = Windows Search Service | ID = 3013
Description =

Error - 4/19/2012 2:05:33 AM | Computer Name = Rickey-PC | Source = Windows Search Service | ID = 3013
Description =

Error - 4/19/2012 4:14:21 AM | Computer Name = Rickey-PC | Source = Office Software Protection Platform Service | ID = 1017
Description =

Error - 4/19/2012 4:14:33 AM | Computer Name = Rickey-PC | Source = Office Software Protection Platform Service | ID = 1017
Description =

Error - 4/19/2012 4:14:44 AM | Computer Name = Rickey-PC | Source = MsiInstaller | ID = 10005
Description =

[ System Events ]
Error - 4/19/2012 12:41:33 PM | Computer Name = Rickey-PC | Source = Print | ID = 72
Description = Windows could not initialize printer Fax Dell AIO Printer 946 because
the print processor PrintFax2000 could not be found. Please obtain and install
a new version of the driver from the manufacturer (if available), or choose an alternate
driver that works with this print device.

Error - 4/19/2012 12:44:26 PM | Computer Name = Rickey-PC | Source = Service Control Manager | ID = 7009
Description =

Error - 4/19/2012 12:44:26 PM | Computer Name = Rickey-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 4/19/2012 12:45:09 PM | Computer Name = Rickey-PC | Source = DCOM | ID = 10010
Description =

Error - 4/19/2012 12:48:09 PM | Computer Name = Rickey-PC | Source = Service Control Manager | ID = 7022
Description =

Error - 4/19/2012 12:50:45 PM | Computer Name = Rickey-PC | Source = Service Control Manager | ID = 7022
Description =

Error - 4/19/2012 12:52:45 PM | Computer Name = Rickey-PC | Source = Service Control Manager | ID = 7022
Description =

Error - 4/19/2012 12:55:19 PM | Computer Name = Rickey-PC | Source = Service Control Manager | ID = 7011
Description =

Error - 4/19/2012 12:56:08 PM | Computer Name = Rickey-PC | Source = Service Control Manager | ID = 7022
Description =

Error - 4/19/2012 12:57:17 PM | Computer Name = Rickey-PC | Source = Service Control Manager | ID = 7022
Description =


< End of report >
 

My Computer

I have to mention that I haven't finished my training, and what I say about malware may be inaccurate, but from what I can see, that looks fine to me.

Just a few pointers before we move on:

1) I see you have had IOBit software installed in the past, please read this article:

IOBit Steals Malwarebytes' Intellectual Property - Malwarebytes Forum

As you can see, what they have done is plain theft. So I can't recommend the use of software from such moral-less people.

2) P2P File sharing programs (uTorrent, Bittorrent, Vuze, Limewire, Kazaa etc.) need to be avoided to reduce the risk of infection. When visiting file sharing sites you usually get more than you intended to, these downloads are commonly laced with infections with varying effects - allowing remote access to your computer and stealing passwords being the most common.

Many underground websites, that host cracks or keygens, can be equally bad. Not only can the downloads be infected, but innocent looking banners can contain malicious flash code that installs malware on your system. These files are also illegal.

Should you continue to use these websites/software after my assistance then there is a very high chance you will get infected again - putting your files and passwords at stake. So just ask yourself: is it really worth the risk?

The choice is all yours, but I would recommend that you uninstall this software. If you decide to remove this software, you can do so via Control Panel > Programs and Features.

3) I see you've had a few AV software installed in the past, what AV are you currently using? It appears to be AVG, but you also have McAfee running and you have traces of Avast.

==========================================

Right, now back to your problem. Are there any other computers on your network? Do they also have this problem? It may be something to do with your ISP.

Try disabling all security software and firewalls, then do the following:

  1. Open the start menu
  2. In the search box, type cmd
  3. Right click on cmd and select Run as administrator
  4. In command prompt, type:

    ping google.com

  5. When it finishes, right click on the black part of the window and click Select All. Then press Enter.

    This will copy the results, please paste them into your next post for me :)

Tom
 

My Computer

System One

  • Manufacturer/Model
    Build #1
    CPU
    Intel Core i7 3770K @4.4GHz
    Motherboard
    ASUS P8Z77-V PRO
    Memory
    Corsair Vengeance 2x4GB DDR3 1600MHz Low Profile (White)
    Graphics Card(s)
    Gigabyte Radeon HD 7850 (2GB GDDR5)
    Sound Card
    Integrated on motherboard
    Monitor(s) Displays
    23" LG LCD/LED IPS
    Screen Resolution
    1920*1080
    Hard Drives
    Samsung EVO 128GB SSD
    Seagate Barracuda 2TB 7200rpm
    2x500GB Seagate FreeAgent 5400rpm
    PSU
    Corsair TX650W V2 (80+ Bronze)
    Case
    NZXT Phantom 410
    Cooling
    Corsair H100 Water Cooler, 1x140mm and 1x120mm stock fans
    Keyboard
    Microsoft Desktop 2000 Wireless Keyboard
    Mouse
    Microsoft Desktop 2000 Wireless Mouse
    Internet Speed
    95 Mb/s Download 70 Mb/s Upload
I don't know what IOBit software I may have had. I sometimes try downloading programs just to fix things on this computer.

I've always tried to stay away from P2P programs. I only downloaded BitTorrent in a desperate attempt to get some sort of Microsoft Office program because I need it for school. I've been meaning to uninstall it, but I haven't got around to it.

I am currently using AVG software for Anti-Virus. I used McAfee for a while, but my subscription has run out, and now I just use AVG. I tried Avast for a little while and I didn't like it too much.

I do not have any other computers on the network.


Here are the ping results.


Microsoft Windows [Version 6.0.6002]
Copyright (c) 2006 Microsoft Corporation. All rights reserved.

C:\Windows\system32>ping google.com

Pinging google.com [74.125.227.102] with 32 bytes of data:
Reply from 74.125.227.102: bytes=32 time=2129ms TTL=52
Reply from 74.125.227.102: bytes=32 time=23ms TTL=52
Reply from 74.125.227.102: bytes=32 time=23ms TTL=52
Reply from 74.125.227.102: bytes=32 time=24ms TTL=51

Ping statistics for 74.125.227.102:
Packets: Sent = 4, Received = 4, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 23ms, Maximum = 2129ms, Average = 549ms

C:\Windows\system32>
 

My Computer

I don't know what IOBit software I may have had. I sometimes try downloading programs just to fix things on this computer.

Not to worry, I thought I might as well mention it :) The folder is quite old anyway:

[2012/01/15 20:30:55 | 000,000,000 | ---D | M] -- C:\Users\Rickey\AppData\Roaming\IObit

I've always tried to stay away from P2P programs. I only downloaded BitTorrent in a desperate attempt to get some sort of Microsoft Office program because I need it for school. I've been meaning to uninstall it, but I haven't got around to it.

It's not my choice whether you use them or not, all I can do is suggest that you remove them :) Keep them if you want. I use uTorrent - although this is for downloading Linux distros.

I am currently using AVG software for Anti-Virus. I used McAfee for a while, but my subscription has run out, and now I just use AVG. I tried Avast for a little while and I didn't like it too much.

Try following the steps outlined here to remove McAfee:

|MG| McAfee Consumer Product Removal Tool 5.0.285.0 Download

You've still got it installed and it might be clashing with AVG.

I do not have any other computers on the network.

No other devices at all? I want to know whether this occurs on all devices on your network or not :)

Here are the ping results.


Microsoft Windows [Version 6.0.6002]
Copyright (c) 2006 Microsoft Corporation. All rights reserved.

C:\Windows\system32>ping google.com

Pinging google.com [74.125.227.102] with 32 bytes of data:
Reply from 74.125.227.102: bytes=32 time=2129ms TTL=52
Reply from 74.125.227.102: bytes=32 time=23ms TTL=52
Reply from 74.125.227.102: bytes=32 time=23ms TTL=52
Reply from 74.125.227.102: bytes=32 time=24ms TTL=51

Ping statistics for 74.125.227.102:
Packets: Sent = 4, Received = 4, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 23ms, Maximum = 2129ms, Average = 549ms

C:\Windows\system32>

Looks good to me :)

Tom
 

My Computer

System One

  • Manufacturer/Model
    Build #1
    CPU
    Intel Core i7 3770K @4.4GHz
    Motherboard
    ASUS P8Z77-V PRO
    Memory
    Corsair Vengeance 2x4GB DDR3 1600MHz Low Profile (White)
    Graphics Card(s)
    Gigabyte Radeon HD 7850 (2GB GDDR5)
    Sound Card
    Integrated on motherboard
    Monitor(s) Displays
    23" LG LCD/LED IPS
    Screen Resolution
    1920*1080
    Hard Drives
    Samsung EVO 128GB SSD
    Seagate Barracuda 2TB 7200rpm
    2x500GB Seagate FreeAgent 5400rpm
    PSU
    Corsair TX650W V2 (80+ Bronze)
    Case
    NZXT Phantom 410
    Cooling
    Corsair H100 Water Cooler, 1x140mm and 1x120mm stock fans
    Keyboard
    Microsoft Desktop 2000 Wireless Keyboard
    Mouse
    Microsoft Desktop 2000 Wireless Mouse
    Internet Speed
    95 Mb/s Download 70 Mb/s Upload
I will be removing BitTorrent soon. I really do think McAfee may be clashing with AVG. Sometimes when i run AVG it freezes up about halfway through and I am forced to stop the scan. I will definitely run the removal tool as soon as possible. I don't think there is any other devices on the network, then again I do not know of a way of determining this. :o
 

My Computer

My Computer

System One

  • Manufacturer/Model
    Build #1
    CPU
    Intel Core i7 3770K @4.4GHz
    Motherboard
    ASUS P8Z77-V PRO
    Memory
    Corsair Vengeance 2x4GB DDR3 1600MHz Low Profile (White)
    Graphics Card(s)
    Gigabyte Radeon HD 7850 (2GB GDDR5)
    Sound Card
    Integrated on motherboard
    Monitor(s) Displays
    23" LG LCD/LED IPS
    Screen Resolution
    1920*1080
    Hard Drives
    Samsung EVO 128GB SSD
    Seagate Barracuda 2TB 7200rpm
    2x500GB Seagate FreeAgent 5400rpm
    PSU
    Corsair TX650W V2 (80+ Bronze)
    Case
    NZXT Phantom 410
    Cooling
    Corsair H100 Water Cooler, 1x140mm and 1x120mm stock fans
    Keyboard
    Microsoft Desktop 2000 Wireless Keyboard
    Mouse
    Microsoft Desktop 2000 Wireless Mouse
    Internet Speed
    95 Mb/s Download 70 Mb/s Upload
I believe that removing McAfee Security Center from my computer has solved this problem. I am now able to download files again. Big files download slow as all hell, but at least they work now. Maybe it was a security issue with McAfee, or AVG and McAfee being installed together. I'm pretty certain that this issue started a little while before I even knew about AVG though. Either way, I can download again. Tom, thank you very much for all of your help. I really appreciate it.
 

My Computer

You're most welcome Rickey :) I'm glad you managed to get your problem sorted. Thanks for taking the time to post back and share the results, I'm sure others experiencing this problem will appreciate your efforts.
 

My Computer

System One

  • Manufacturer/Model
    Build #1
    CPU
    Intel Core i7 3770K @4.4GHz
    Motherboard
    ASUS P8Z77-V PRO
    Memory
    Corsair Vengeance 2x4GB DDR3 1600MHz Low Profile (White)
    Graphics Card(s)
    Gigabyte Radeon HD 7850 (2GB GDDR5)
    Sound Card
    Integrated on motherboard
    Monitor(s) Displays
    23" LG LCD/LED IPS
    Screen Resolution
    1920*1080
    Hard Drives
    Samsung EVO 128GB SSD
    Seagate Barracuda 2TB 7200rpm
    2x500GB Seagate FreeAgent 5400rpm
    PSU
    Corsair TX650W V2 (80+ Bronze)
    Case
    NZXT Phantom 410
    Cooling
    Corsair H100 Water Cooler, 1x140mm and 1x120mm stock fans
    Keyboard
    Microsoft Desktop 2000 Wireless Keyboard
    Mouse
    Microsoft Desktop 2000 Wireless Mouse
    Internet Speed
    95 Mb/s Download 70 Mb/s Upload
Friendly maybe, but knowledgeable I'm not so sure about!

It makes it all worth it when I'm helping such a courteous person :) Thanks, you too!
 

My Computer

System One

  • Manufacturer/Model
    Build #1
    CPU
    Intel Core i7 3770K @4.4GHz
    Motherboard
    ASUS P8Z77-V PRO
    Memory
    Corsair Vengeance 2x4GB DDR3 1600MHz Low Profile (White)
    Graphics Card(s)
    Gigabyte Radeon HD 7850 (2GB GDDR5)
    Sound Card
    Integrated on motherboard
    Monitor(s) Displays
    23" LG LCD/LED IPS
    Screen Resolution
    1920*1080
    Hard Drives
    Samsung EVO 128GB SSD
    Seagate Barracuda 2TB 7200rpm
    2x500GB Seagate FreeAgent 5400rpm
    PSU
    Corsair TX650W V2 (80+ Bronze)
    Case
    NZXT Phantom 410
    Cooling
    Corsair H100 Water Cooler, 1x140mm and 1x120mm stock fans
    Keyboard
    Microsoft Desktop 2000 Wireless Keyboard
    Mouse
    Microsoft Desktop 2000 Wireless Mouse
    Internet Speed
    95 Mb/s Download 70 Mb/s Upload
RelevantKnowledge is research software installed with the user's permission. RelevantKnowledge is part of an online market research community with over 2 million members worldwide. By participating in periodic surveys, users can receive free select software sponsored by RelevantKnowledge. If a user decides to uninstall the program for any reason, they can do so through control panel. We provide instruction for uninstalling RelevantKnoweldge in the FAQ section of our website: RelevantKnowledge: FAQs. If you have any questions, feel free to contact us at https://www.relevantknowledge.com/supportform.aspx
Thank you,
Relevant Knowledge Support Team

Thank you for your input, but I'm not sure I agree with you on this one. When a program crosses path with Malwarebytes' detections, I think it's safe to say that there's something dodgy going on there.

Tell me, out of those 2 million users, how many actually want this software on their computers? And how many users can't work out how to remove it from their computers? Out of all of the information that your [DEL]adware/spyware[/DEL] software collects, you must be able to tell me this.

Your site ranks "Very poor" in every category in the WOT report:
relevantknowledge.com | WOT Reputation Scorecard | WOT (Web of Trust)

Simply Googling RelevantKnowledge returns results of which 70% are spyware/adware related.

Here is a quote from the founder of ghacks.net, about your EULA:

Looking at the agreement it is obvious that Relevant Knowledge is collecting and monitoring information about the user, the computer system and usage. It is also clear that the collected information are combined with information from various other sources to create an extensive profile. Relevant Knowledge may also display surveys from time to time on the computer system. It is therefor clear that most anti-spyware applications and other programs that protect a computer system against malicious software consider Relevant Knowledge to be spyware.

Relevant Knowledge can be uninstalled from the Windows Control Panel. It has its own entry there. Uninstallation will not affect the software program it was installed with. Some developers, like those that develop SUMO, provide access to a lite version of their application which will install the program without the Relevant Knowledge addition.

Users who usually click-through installations should begin to pay better attentions to the dialogs presented to them to avoid installing programs like Relevant Knowledge on their computer system.

Quite interesting revelations, if I may say so :)

About Relevant Knowledge

This is just my opinion; although I share this opinion with, what seems like, the majority of people on the internet, I may be wrong - and trust me, I would love to be wrong, it would mean there's one less nasty program out there on the net.

Tom
 

My Computer

System One

  • Manufacturer/Model
    Build #1
    CPU
    Intel Core i7 3770K @4.4GHz
    Motherboard
    ASUS P8Z77-V PRO
    Memory
    Corsair Vengeance 2x4GB DDR3 1600MHz Low Profile (White)
    Graphics Card(s)
    Gigabyte Radeon HD 7850 (2GB GDDR5)
    Sound Card
    Integrated on motherboard
    Monitor(s) Displays
    23" LG LCD/LED IPS
    Screen Resolution
    1920*1080
    Hard Drives
    Samsung EVO 128GB SSD
    Seagate Barracuda 2TB 7200rpm
    2x500GB Seagate FreeAgent 5400rpm
    PSU
    Corsair TX650W V2 (80+ Bronze)
    Case
    NZXT Phantom 410
    Cooling
    Corsair H100 Water Cooler, 1x140mm and 1x120mm stock fans
    Keyboard
    Microsoft Desktop 2000 Wireless Keyboard
    Mouse
    Microsoft Desktop 2000 Wireless Mouse
    Internet Speed
    95 Mb/s Download 70 Mb/s Upload
Back
Top