========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google

riginalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google

mniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:currentPageUrl}{google

ageClassification}sugkey={google:suggestAPIKeyParameter},
CHR - plugin: Error reading preferences file
CHR - Extension: Google Docs = C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\
CHR - Extension: Google Drive = C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: YouTube = C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Google Search = C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Google Wallet = C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_1\
CHR - Extension: Gmail = C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
O1 HOSTS File: ([2014/03/31 17:51:14 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adblock Plus for IE Browser Helper Object) - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll (Adblock Plus)
O4 - HKLM..\Run: [AVG_UI] C:\Program Files\AVG\AVG2014\avgui.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
O4 - HKLM..\Run: [CanonSolutionMenuEx] C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE (CANON INC.)
O4 - HKLM..\Run: [LifeCam] C:\Program Files\Microsoft LifeCam\LifeExp.exe (Microsoft Corporation)
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe ()
O4 - HKLM..\Run: [VX1000] C:\WINDOWS\vVX1000.exe (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\AdFender.lnk = C:\Program Files\AdFender\AdFender.exe (AdFender, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1123561945-1614895754-725345543-500\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1123561945-1614895754-725345543-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-1123561945-1614895754-725345543-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1123561945-1614895754-725345543-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A1CDF7B5-E571-4E93-90E0-B0C1D963B4A9}: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop Components:0 () -
http://www.thepeerage.com/186837_001.jpg
O24 - Desktop Components:1 (My Current Home Page) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2013/08/15 19:04:02 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG2014\avgrsx.exe /sync /restart)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
========== Files/Folders - Created Within 30 Days ==========
[2014/03/31 19:39:21 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERUNT
[2014/03/31 19:34:03 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014/03/31 18:04:28 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2014/03/31 17:46:50 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2014/03/31 17:45:18 | 005,192,353 | R--- | C] (Swearware) -- C:\Documents and Settings\Administrator\Desktop\ComboFi.exe
[2014/03/31 17:38:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Template
[2014/03/31 17:28:58 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2014/03/31 17:28:58 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2014/03/31 17:28:58 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2014/03/31 17:28:58 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2014/03/31 17:28:49 | 000,000,000 | ---D | C] -- C:\Qoobox
[2014/03/31 17:28:38 | 000,000,000 | ---D | C] -- C:\WINDOWS\erdnt
[2014/03/31 17:04:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes' Anti-Malware (portable)
[2014/03/31 17:03:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop\mbar
[2014/03/31 16:49:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop\RK_Quarantine
[2014/03/31 11:07:45 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\My Documents\My Videos
[2014/03/31 10:52:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\AVG
[2014/03/30 11:49:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop\LOGS
[2014/03/30 11:46:03 | 000,107,736 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys
[2014/03/30 11:43:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes Anti-Malware
[2014/03/30 11:43:05 | 000,052,312 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys
[2014/03/30 11:43:05 | 000,023,256 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2014/03/30 11:43:05 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes Anti-Malware
[2014/03/30 11:43:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2014/03/27 15:45:13 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\Start Menu\Programs\Administrative Tools
[2014/03/27 15:04:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Vuze Remote
[2014/03/25 17:52:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\.swt
[2014/03/25 17:51:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Azureus
[2014/03/25 17:51:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\My Documents\Vuze Downloads
[2014/03/24 17:42:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\AdFender
[2014/03/24 17:40:58 | 000,000,000 | ---D | C] -- C:\Program Files\AdFender
[2014/03/24 17:40:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\AdFender
[2014/03/24 17:40:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\AdFender
[2014/03/23 13:26:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\COMODO
[2014/03/16 16:16:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\Adblock Plus for IE
[2014/03/16 16:16:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Adblock Plus for IE
[2014/03/16 16:16:05 | 000,000,000 | ---D | C] -- C:\Program Files\Adblock Plus for IE
[2014/03/16 16:16:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Package Cache
[2014/03/16 16:12:10 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Administrator\IECompatCache
[2014/03/16 16:10:28 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Administrator\IETldCache
[2014/03/16 16:08:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\WBEM
[2014/03/16 16:07:31 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8
[2014/03/16 16:05:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\AppData
[2014/03/16 12:59:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Game Booster Pro
[2014/03/16 12:59:35 | 000,000,000 | ---D | C] -- C:\Program Files\Game Booster Pro
[2014/03/14 16:21:50 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Administrator\Recent
[2014/03/14 16:21:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\CCleaner
[2014/03/14 16:21:02 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2014/03/10 16:24:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Apple
[2014/03/02 13:20:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Comodo
[2014/03/02 13:20:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\COMODO
[2014/03/02 13:20:50 | 000,048,392 | ---- | C] (COMODO CA Limited) -- C:\WINDOWS\System32\certsentry.dll
[2014/03/02 13:20:42 | 000,000,000 | ---D | C] -- C:\Program Files\Comodo
[2014/03/02 13:15:19 | 000,000,000 | ---D | C] -- C:\Program Files\Maxthon
[2014/03/02 13:12:18 | 000,000,000 | ---D | C] -- C:\WINDOWS\SxsCaPendDel
[2014/03/02 12:51:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\FlashPeak
[2014/03/02 12:51:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\FlashPeak SlimBoat
[2014/03/02 12:51:24 | 000,000,000 | ---D | C] -- C:\Program Files\SlimBoat
[2014/03/02 12:43:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\SeaMonkey
[2014/03/02 12:43:30 | 000,000,000 | ---D | C] -- C:\Program Files\SeaMonkey
[2014/03/01 21:03:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\OfferMosquito
[2014/03/01 21:03:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Common
[2014/03/01 21:01:53 | 000,000,000 | ---D | C] -- C:\Program Files\Linkey
[2014/03/01 21:01:17 | 000,000,000 | ---D | C] -- C:\Program Files\Settings Manager
[2014/03/01 21:01:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\systemk
[2014/03/01 20:14:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\Apple Computer
[2014/03/01 20:14:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Apple Computer
[2014/03/01 20:13:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\Apple
[2014/03/01 20:13:29 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update
[2014/03/01 20:13:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Apple
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2014/03/31 19:36:44 | 000,000,896 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2014/03/31 19:36:43 | 000,000,362 | ---- | M] () -- C:\WINDOWS\tasks\Games Booster.job
[2014/03/31 19:36:40 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2014/03/31 19:23:00 | 000,000,900 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2014/03/31 18:56:00 | 000,000,830 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2014/03/31 17:51:14 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2014/03/31 17:46:54 | 000,000,327 | RHS- | M] () -- C:\boot.ini
[2014/03/31 17:45:04 | 005,192,353 | R--- | M] (Swearware) -- C:\Documents and Settings\Administrator\Desktop\ComboFi.exe
[2014/03/31 17:27:37 | 000,107,736 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys
[2014/03/31 17:03:51 | 000,052,312 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys
[2014/03/31 15:24:01 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2014/03/31 10:52:37 | 000,000,702 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\AVG 2014.lnk
[2014/03/30 11:43:11 | 000,000,777 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes Anti-Malware.lnk
[2014/03/30 11:26:10 | 000,433,130 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2014/03/30 11:26:10 | 000,067,768 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2014/03/29 20:33:26 | 000,041,037 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\trojan.gif
[2014/03/28 16:24:06 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2014/03/25 17:52:13 | 000,001,505 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Vuze.lnk
[2014/03/25 17:52:13 | 000,001,505 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\Vuze.lnk
[2014/03/24 17:42:39 | 000,000,840 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\AdFender.lnk
[2014/03/24 17:39:22 | 000,724,521 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\adblock.crx
[2014/03/23 13:27:13 | 000,003,745 | ---- | M] () -- C:\Program Files\Mozilla Firefoxsafeguard-secure-search.xml
[2014/03/23 13:26:57 | 000,042,272 | ---- | M] (AVG Technologies) -- C:\WINDOWS\System32\drivers\avgtpx86.sys
[2014/03/20 17:22:16 | 000,199,515 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\8.jpg
[2014/03/16 16:11:11 | 000,000,803 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\Internet Explorer.lnk
[2014/03/16 16:10:34 | 000,000,815 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2014/03/16 12:59:37 | 000,000,771 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\Games Box.lnk
[2014/03/16 12:59:36 | 000,000,791 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\Game Booster.lnk
[2014/03/16 12:59:27 | 002,653,760 | ---- | M] ( ) -- C:\Documents and Settings\Administrator\Desktop\GameBoosterSetup.exe
[2014/03/15 12:20:38 | 000,001,813 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Google Chrome.lnk
[2014/03/14 16:21:03 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\CCleaner.lnk
[2014/03/05 10:02:24 | 000,023,256 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2014/03/02 13:20:57 | 000,000,769 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Comodo Dragon.lnk
[2014/03/02 13:20:50 | 000,048,392 | ---- | M] (COMODO CA Limited) -- C:\WINDOWS\System32\certsentry.dll
[2014/03/02 13:15:51 | 000,000,734 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Maxthon Cloud Browser.lnk
[2014/03/02 12:51:27 | 000,000,700 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\FlashPeak SlimBoat.lnk
[2014/03/02 12:51:27 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\FlashPeak SlimBoat.lnk
[2014/03/02 12:43:33 | 000,001,582 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\SeaMonkey.lnk
[2014/03/02 12:43:33 | 000,001,564 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\SeaMonkey.lnk
[2014/03/01 20:14:28 | 000,034,344 | -H-- | M] () -- C:\WINDOWS\System32\mlfcache.dat
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2014/03/31 17:46:54 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2014/03/31 17:46:52 | 000,260,272 | RHS- | C] () -- C:\cmldr
[2014/03/31 17:28:58 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2014/03/31 17:28:58 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2014/03/31 17:28:58 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2014/03/31 17:28:58 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2014/03/31 17:28:58 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2014/03/30 11:43:11 | 000,000,777 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes Anti-Malware.lnk
[2014/03/29 20:33:26 | 000,041,037 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\trojan.gif
[2014/03/25 17:52:13 | 000,001,505 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Vuze.lnk
[2014/03/25 17:52:13 | 000,001,505 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Vuze.lnk
[2014/03/25 17:52:13 | 000,001,505 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\Vuze.lnk
[2014/03/24 17:40:59 | 000,000,840 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\AdFender.lnk
[2014/03/24 17:39:20 | 000,724,521 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\adblock.crx
[2014/03/20 17:22:15 | 000,199,515 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\8.jpg
[2014/03/16 16:11:11 | 000,000,803 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\Internet Explorer.lnk
[2014/03/16 13:06:05 | 000,000,426 | ---- | C] () -- C:\AVScanner.ini
[2014/03/16 12:59:50 | 000,000,362 | ---- | C] () -- C:\WINDOWS\tasks\Games Booster.job
[2014/03/16 12:59:37 | 000,000,771 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\Games Box.lnk
[2014/03/16 12:59:36 | 000,000,791 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\Game Booster.lnk
[2014/03/16 12:59:26 | 002,653,760 | ---- | C] ( ) -- C:\Documents and Settings\Administrator\Desktop\GameBoosterSetup.exe
[2014/03/14 16:21:03 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\CCleaner.lnk
[2014/03/02 13:20:57 | 000,000,769 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Comodo Dragon.lnk
[2014/03/02 13:15:51 | 000,000,734 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Maxthon Cloud Browser.lnk
[2014/03/02 12:51:27 | 000,000,700 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\FlashPeak SlimBoat.lnk
[2014/03/02 12:51:27 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\FlashPeak SlimBoat.lnk
[2014/03/02 12:43:33 | 000,001,582 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\SeaMonkey.lnk
[2014/03/02 12:43:33 | 000,001,564 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\SeaMonkey.lnk
[2014/03/01 21:01:58 | 000,000,535 | ---- | C] () -- C:\Documents and Settings\Administrator\Start Menu\Programs\Linkey.lnk
[2014/03/01 20:14:28 | 000,034,344 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2014/03/01 20:13:32 | 000,000,284 | ---- | C] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2014/03/01 20:13:29 | 000,001,830 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Apple Software Update.lnk
[2014/01/24 13:30:53 | 000,015,498 | ---- | C] () -- C:\WINDOWS\VX1000.ini
[2014/01/24 13:25:00 | 000,114,024 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2013/12/09 11:56:47 | 000,003,745 | ---- | C] () -- C:\Program Files\Mozilla Firefoxsafeguard-secure-search.xml
[2013/11/26 18:54:44 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\wklnhst.dat
[2013/08/17 15:41:51 | 000,016,384 | ---- | C] () -- C:\WINDOWS\System32\FileOps.exe
[2013/08/17 12:29:24 | 000,014,051 | ---- | C] () -- C:\WINDOWS\System32\RaCoInst.dat
[2013/08/16 01:08:59 | 000,217,176 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2013/08/15 20:27:42 | 000,593,920 | ---- | C] () -- C:\WINDOWS\System32\ati2sgag.exe
[2013/08/15 20:27:37 | 000,972,072 | R--- | C] () -- C:\WINDOWS\System32\ativva6x.dat
[2013/08/15 20:27:36 | 003,107,788 | R--- | C] () -- C:\WINDOWS\System32\ativva5x.dat
[2013/08/15 20:27:35 | 003,107,788 | R--- | C] () -- C:\WINDOWS\System32\ativvaxx.dat
[2013/08/15 20:27:35 | 000,151,367 | R--- | C] () -- C:\WINDOWS\System32\atiicdxx.dat
[2013/08/15 20:18:17 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2013/08/15 19:52:44 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2013/08/15 19:51:42 | 000,190,592 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2013/08/15 19:19:19 | 000,004,405 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2013/08/15 19:19:18 | 000,010,288 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2013/08/15 19:05:52 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2013/08/15 19:01:36 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
========== ZeroAccess Check ==========
[2013/08/15 20:28:38 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2009/01/07 19:20:52 | 001,497,088 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2007/07/27 13:00:00 | 000,472,064 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2007/07/27 13:00:00 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
========== LOP Check ==========
[2014/03/16 16:16:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Adblock Plus for IE
[2013/10/14 19:26:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\AVG2014
[2014/03/28 18:44:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Azureus
[2013/08/17 11:17:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Canon
[2014/03/31 19:35:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Common
[2014/03/01 19:27:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Maxthon3
[2014/03/01 21:03:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\OfferMosquito
[2014/03/31 17:38:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Template
[2013/08/16 01:06:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\TuneUp Software
[2014/03/27 15:04:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Vuze Remote
[2014/03/24 17:42:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AdFender
[2013/10/14 19:25:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG2014
[2013/08/17 11:08:42 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonBJ
[2013/08/17 11:17:19 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonEPP
[2013/08/17 11:17:19 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJEPPEX2
[2013/08/17 11:17:18 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJMyPrinter
[2014/03/15 12:54:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJPLM
[2013/08/17 11:17:20 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJSolutionMenuEX
[2013/08/17 11:10:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJWSpt
[2013/08/16 01:04:51 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2013/12/22 12:33:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Elcomsoft Password Recovery
[2014/03/31 17:07:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2014/03/16 16:16:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Package Cache
[2013/08/17 12:29:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ralink Driver
[2014/03/31 19:52:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\systemk
[2013/09/20 10:03:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Default User\Application Data\TuneUp Software
========== Purity Check ==========
< End of report >