Still getting the iTunes error but now it keeps trying to run every 2 mins. Still getting the redirect here is the latest
ads.pubmatic.com/AdServer/js/showad.js Startup is still taking 20-30 mins to fully boot up. I did notice that iexplore.exe*32 is always at the top of process running even at startup.
Fix result of Farbar Recovery Scan Tool (x64) Version:28-06-2015 01
Ran by Don at 2015-07-01 14:41:34 Run:1
Running from C:\Users\Don\Desktop
Loaded Profiles: Don (Available Profiles: Don & DefaultAppPool)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CreateRestorePoint:
CloseProcesses:
HKLM-x32\...\Run: [] => [X]
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
IFEO\bitguard.exe: [Debugger] tasklist.exe
IFEO\bprotect.exe: [Debugger] tasklist.exe
IFEO\bpsvc.exe: [Debugger] tasklist.exe
IFEO\browsemngr.exe: [Debugger] tasklist.exe
IFEO\browserdefender.exe: [Debugger] tasklist.exe
IFEO\browsermngr.exe: [Debugger] tasklist.exe
IFEO\browserprotect.exe: [Debugger] tasklist.exe
IFEO\browsersafeguard.exe: [Debugger] tasklist.exe
IFEO\bundlesweetimsetup.exe: [Debugger] tasklist.exe
IFEO\cltmngsvc.exe: [Debugger] tasklist.exe
IFEO\delta babylon.exe: [Debugger] tasklist.exe
IFEO\delta tb.exe: [Debugger] tasklist.exe
IFEO\delta2.exe: [Debugger] tasklist.exe
IFEO\deltainstaller.exe: [Debugger] tasklist.exe
IFEO\deltasetup.exe: [Debugger] tasklist.exe
IFEO\deltatb.exe: [Debugger] tasklist.exe
IFEO\deltatb_2501-c733154b.exe: [Debugger] tasklist.exe
IFEO\dprotectsvc.exe: [Debugger] tasklist.exe
IFEO\iminentsetup.exe: [Debugger] tasklist.exe
IFEO\jumpflip: [Debugger] tasklist.exe
IFEO\protectedsearch.exe: [Debugger] tasklist.exe
IFEO\rjatydimofu.exe: [Debugger] tasklist.exe
IFEO\searchinstaller.exe: [Debugger] tasklist.exe
IFEO\searchprotection.exe: [Debugger] tasklist.exe
IFEO\searchprotector.exe: [Debugger] tasklist.exe
IFEO\searchsettings.exe: [Debugger] tasklist.exe
IFEO\searchsettings64.exe: [Debugger] tasklist.exe
IFEO\snapdo.exe: [Debugger] tasklist.exe
IFEO\stinst32.exe: [Debugger] tasklist.exe
IFEO\stinst64.exe: [Debugger] tasklist.exe
IFEO\sweetimsetup.exe: [Debugger] tasklist.exe
IFEO\tbdelta.exetoolbar783881609.exe: [Debugger] tasklist.exe
IFEO\umbrella.exe: [Debugger] tasklist.exe
IFEO\utiljumpflip.exe: [Debugger] tasklist.exe
IFEO\volaro: [Debugger] tasklist.exe
IFEO\vonteera: [Debugger] tasklist.exe
IFEO\websteroids.exe: [Debugger] tasklist.exe
IFEO\websteroidsservice.exe: [Debugger] tasklist.exe
HKU\S-1-5-21-3840967050-1990347923-15132294-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_US&c=94&bd=Pavilion&pf=cndt
URLSearchHook: HKU\S-1-5-21-3840967050-1990347923-15132294-1001 - (No Name) - {4d687bc7-7f1a-472c-bf8e-9af6d7b17ac8} - C:\Program Files (x86)\PremierDownloadManager_ag\bar\1.bin\agSrcAs.dll No File
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {1460E521-AD8A-4407-87F0-2874AC6828E0} URL =
www.ask.com/web?q={searchterms}&l=dis&o=ushpdSearchScopes: HKLM -> {4BBCFCA1-472C-4997-993B-25955433715C} URL =
www.bing.com/search?q={searchTerms}&FORM=HPDTDF&pc=HPDTDF&src=IE-SearchBoxSearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = Vosteran.com/results.php?f=4&q={searchTerms}&a=vst_dnldstr_14_50_ie&cd=2XzuyEtN2Y1L1QzutCzz0AzytDyD0B0B0DtCtD0B0C0F0C0BtN0D0Tzu0StCtDyBtAtN1L2XzutAtFyCtFtCtDtFtCtDtN1L1CzutCyEtBzytDyD1V1BtN1L1G1B1V1N2Y1L1Qzu2SyCtA0A0E0B0ByBzytGyByD0DtCtG0E0DyCyBtGyCtCyEtBtGyEzzyDtA0E0AyD0FtD0BtDtB2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyDyDyByD0E0BtD0BtGyCyDtDyCtGyE0A0AzztG0B0F0F0BtGyCyEtDzy0F0FtDtCzyzztDzy2Q&cr=2041051186&ir=
SearchScopes: HKLM -> {CC865B26-C31D-4D23-B17B-96548EEF03F6} URL = dts.search.ask.com/sr?src=ieb&gct=ds&appid=394&systemid=406&v=a13203-153&apn_uid=7144345362554719&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms}
SearchScopes: HKLM -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL = groovorio.com/results.php?f=4&q={searchTerms}&a=grv_keyd4_14_24&cd=2XzuyEtN2Y1L1QzutCzz0AzytDyD0B0B0DtCtD0B0C0F0C0BtN0D0Tzu0StCtDtAyEtN1L2XzutAtFyDtFtCtFtCtN1L1Czu1N1C2X1V1J1P2U1QyE1VtCyE1VtByEtN1L1G1B1V1N2Y1L1Qzu2SyE0DzzyCyE0AyB0DtGtCtA0FzytGyC0FyD0BtGtDyDyCtBtGtB0A0C0FyDtAtByE0AyBtAyC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyCtAzy0C0DyEyEyEtGyB0AzzzytGyEyEzy0AtG0B0E0A0BtGyDzytDtB0F0F0BtA0AyBtAyC2Q&cr=109317979&ir=
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {1460E521-AD8A-4407-87F0-2874AC6828E0} URL =
www.ask.com/web?q={searchterms}&l=dis&o=ushpdSearchScopes: HKLM-x32 -> {1ea689d5-61f5-4654-9a46-2ef703429b48} URL = search.tb.ask.com/search/GGmain.jhtml?p2=^BE4^xdm003^YYA^us&ptb=249DC2D8-408E-4922-9AF5-A65780225405&ind=2015020310&n=781ac516&psa=&st=sb&searchfor={searchTerms}
SearchScopes: HKLM-x32 -> {4BBCFCA1-472C-4997-993B-25955433715C} URL =
www.bing.com/search?q={searchTerms}&FORM=HPDTDF&pc=HPDTDF&src=IE-SearchBoxSearchScopes: HKLM-x32 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = dts.search.ask.com/sr?src=ieb&gct=ds&appid=394&systemid=406&v=a13203-153&apn_uid=7144345362554719&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3840967050-1990347923-15132294-1001 -> DefaultScope {3B3517E7-B60B-48F0-83C7-6F2084677E87} URL = search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=937811&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3840967050-1990347923-15132294-1001 -> {1460E521-AD8A-4407-87F0-2874AC6828E0} URL =
www.ask.com/web?q={searchterms}&l=dis&o=ushpdSearchScopes: HKU\S-1-5-21-3840967050-1990347923-15132294-1001 -> {1ea689d5-61f5-4654-9a46-2ef703429b48} URL = search.tb.ask.com/search/GGmain.jhtml?p2=^BE4^xdm003^YYA^us&ptb=249DC2D8-408E-4922-9AF5-A65780225405&ind=2015020310&n=781ac516&psa=&st=sb&searchfor={searchTerms}
SearchScopes: HKU\S-1-5-21-3840967050-1990347923-15132294-1001 -> {3B3517E7-B60B-48F0-83C7-6F2084677E87} URL = search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=937811&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3840967050-1990347923-15132294-1001 -> {4BBCFCA1-472C-4997-993B-25955433715C} URL =
SearchScopes: HKU\S-1-5-21-3840967050-1990347923-15132294-1001 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = mysearch.avg.com/search?cid={8C3C0E9D-695E-424F-89EB-CDB191CC482A}&mid=e5f66f5efece47d29df0c9e0435f38f8-223fd7edca2ab13b388bf387bc44ea2994ab76e8&lang=en&ds=ts019&pr=sa&d=2014-04-20 12:48:38&v=15.3.0.10&pid=safeguard&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3840967050-1990347923-15132294-1001 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = Vosteran.com/results.php?f=4&q={searchTerms}&a=vst_dnldstr_14_50_ie&cd=2XzuyEtN2Y1L1QzutCzz0AzytDyD0B0B0DtCtD0B0C0F0C0BtN0D0Tzu0StCtDyBtAtN1L2XzutAtFyCtFtCtDtFtCtDtN1L1CzutCyEtBzytDyD1V1BtN1L1G1B1V1N2Y1L1Qzu2SyCtA0A0E0B0ByBzytGyByD0DtCtG0E0DyCyBtGyCtCyEtBtGyEzzyDtA0E0AyD0FtD0BtDtB2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyDyDyByD0E0BtD0BtGyCyDtDyCtGyE0A0AzztG0B0F0F0BtGyCyEtDzy0F0FtDtCzyzztDzy2Q&cr=2041051186&ir=
SearchScopes: HKU\S-1-5-21-3840967050-1990347923-15132294-1001 -> {CC865B26-C31D-4D23-B17B-96548EEF03F6} URL = dts.search.ask.com/sr?src=ieb&gct=ds&appid=394&systemid=406&v=a13203-153&apn_uid=7144345362554719&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3840967050-1990347923-15132294-1001 -> {D0882AB7-FF6E-48D6-ADC6-59528834069B} URL = search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=937811_yserp3tst&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3840967050-1990347923-15132294-1001 -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL = groovorio.com/results.php?f=4&q={searchTerms}&a=grv_keyd4_14_24&cd=2XzuyEtN2Y1L1QzutCzz0AzytDyD0B0B0DtCtD0B0C0F0C0BtN0D0Tzu0StCtDtAyEtN1L2XzutAtFyDtFtCtFtCtN1L1Czu1N1C2X1V1J1P2U1QyE1VtCyE1VtByEtN1L1G1B1V1N2Y1L1Qzu2SyE0DzzyCyE0AyB0DtGtCtA0FzytGyC0FyD0BtGtDyDyCtBtGtB0A0C0FyDtAtByE0AyBtAyC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyCtAzy0C0DyEyEyEtGyB0AzzzytGyEyEzy0AtG0B0E0A0BtGyDzytDtB0F0F0BtA0AyBtAyC2Q&cr=109317979&ir=
BHO-x32: No Name -> {3d86a75b-cb6b-4764-885d-ca6336f04ba2} -> No File
BHO-x32: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> No File
BHO-x32: Search Assistant BHO -> {da104fa1-3714-4056-8f42-d7fb74fd43dc} -> C:\Program Files (x86)\PremierDownloadManager_ag\bar\1.bin\agSrcAs.dll No File
C:\Program Files (x86)\PremierDownloadManager_ag
Toolbar: HKLM-x32 - No Name - {3d86a75b-cb6b-4764-885d-ca6336f04ba2} - No File
Toolbar: HKU\S-1-5-21-3840967050-1990347923-15132294-1001 -> No Name - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File
FF Homepage: hxxp://groovorio.com/?f=1&a=grv_keyd4_14_24&cd=2XzuyEtN2Y1L1QzutCzz0AzytDyD0B0B0DtCtD0B0C0F0C0BtN0D0Tzu0StCtDtAyEtN1L2XzutAtFyDtFtCtFtCtN1L1Czu1N1C2X1V1J1P2U1QyE1VtCyE1VtByEtN1L1G1B1V1N2Y1L1Qzu2SyE0DzzyCyE0AyB0DtGtCtA0FzytGyC0FyD0BtGtDyDyCtBtGtB0A0C0FyDtAtByE0AyBtAyC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyCtAzy0C0DyEyEyEtGyB0AzzzytGyEyEzy0AtG0B0E0A0BtGyDzytDtB0F0F0BtA0AyBtAyC2Q&cr=109317979&ir=
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @microsoft.com/VirtualEarth3D,version=4.0 -> C:\Program Files (x86)\Virtual Earth 3D\ No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin HKU\S-1-5-21-3840967050-1990347923-15132294-1001: anvisoft.com/AdblockPlugin -> C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll No File
FF user.js: detected! => C:\Users\Don\AppData\Roaming\Mozilla\Firefox\Profiles\kjny3sm1.default\user.js [2014-10-30]
FF SearchPlugin: C:\Users\Don\AppData\Roaming\Mozilla\Firefox\Profiles\kjny3sm1.default\searchplugins\bing-.xml [2014-07-30]
FF SearchPlugin: C:\Users\Don\AppData\Roaming\Mozilla\Firefox\Profiles\kjny3sm1.default\searchplugins\Groovorio.xml [2014-10-30]
FF Extension: Groovorio - C:\Users\Don\AppData\Roaming\Mozilla\Firefox\Profiles\kjny3sm1.default\Extensions\{73843edf-1075-4a55-947c-e13e0dc9349e} [2014-10-30]
C:\ProgramData\Anvisoft
C:\Users\Don\AppData\Roaming\Mozilla\Firefox\Profiles\kjny3sm1.default\searchplugins\bing-.xml
C:\Users\Don\AppData\Roaming\Mozilla\Firefox\Profiles\kjny3sm1.default\searchplugins\Groovorio.xml
C:\Users\Don\AppData\Roaming\Mozilla\Firefox\Profiles\kjny3sm1.default\Extensions\{73843edf-1075-4a55-947c-e13e0dc9349e}
CHR HKLM\...\Chrome\Extension: [blmchfpimpbbdmgpcieclabeafkljbhm] - clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [oilkkkefbalmbfppgjmgjoefbclebkce] - clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [Äÿ] - No Path Or update_url value
CHR HKU\S-1-5-21-3840967050-1990347923-15132294-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [blmchfpimpbbdmgpcieclabeafkljbhm] - clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3840967050-1990347923-15132294-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [oilkkkefbalmbfppgjmgjoefbclebkce] - clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3840967050-1990347923-15132294-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [Äÿ] - No Path Or update_url value
CHR HKLM-x32\...\Chrome\Extension: [blmchfpimpbbdmgpcieclabeafkljbhm] - clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - No Path Or update_url value
CHR HKLM-x32\...\Chrome\Extension: [lhmiofmipcpmhgihiecmpiekcacigpgb] - C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\chrome.crx [Not Found]
C:\ProgramData\Anvisoft
CHR HKLM-x32\...\Chrome\Extension: [oilkkkefbalmbfppgjmgjoefbclebkce] - clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [Äÿ] - No Path Or update_url value
S2 PremierDownloadManager_agService; C:\PROGRA~2\PREMIE~2\bar\1.bin\agbarsvc.exe [X]
C:\PROGRA~2\PREMIE~2\bar\1.bin\agbarsvc.exe
C:\PROGRA~2\PREMIE~2
S4 Moucdds; No ImagePath
S3 ATIXPGAA; \??\C:\Program Files\PC-Doctor for Windows\ATIXPGAA.SYS [X]
S3 cpuz132; \??\C:\Users\Don\AppData\Local\Temp\cpuz132\cpuz132_x64.sys [X]
S3 PcdrNdisuio; syswow64\drivers\pcdrndisuio.sys [X]
C:\Program Files\PC-Doctor for Windows\ATIXPGAA.SYS
C:\Users\Don\AppData\Local\Temp\cpuz132\cpuz132_x64.sys
C:\Windows\syswow64\drivers\pcdrndisuio.sys
2015-06-30 14:36 - 2014-10-30 15:24 - 00000284 _____ C:\Windows\Tasks\Groovorio.job
2015-06-30 14:36 - 2012-06-01 01:59 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-06-30 10:58 - 2010-01-23 01:26 - 00000552 _____ C:\Windows\Tasks\PCDRScheduledMaintenance.job
C:\ProgramData\SDPlatformMgr.dll
C:\ProgramData\SplashID%20Safe.exe
C:\ProgramData\sqlite3.dll
C:\Users\Don\PhotoshopElements_8_MUL.exe
C:\Users\Don\AppData\Local\Temp\AMPing.exe
C:\Users\Don\AppData\Local\Temp\InstallManager_BAB_BAB.exe
CustomCLSID: HKU\S-1-5-21-3840967050-1990347923-15132294-1001_Classes\CLSID\{F6BF8414-962C-40FE-90F1-B80A7E72DB9A}\InprocServer32 -> C:\ProgramData\{9A88E103-A20A-4EA5-8636-C73B709A5BF8}\neth.dll No File <==== ATTENTION
C:\ProgramData\{9A88E103-A20A-4EA5-8636-C73B709A5BF8}
Task: {035B4562-6CFF-44DA-A887-5BB77411B844} - System32\Tasks\Groovorio => C:\Users\Don\AppData\Roaming\GROOVO~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: {1B5C81C6-082F-4292-8153-22FC020C9FF6} - \ProPCCleaner_Popup No Task File <==== ATTENTION
Task: {27305B76-AF3D-4F61-9646-1DF2AADBDFAE} - \ProPCCleaner_Start No Task File <==== ATTENTION
Task: {48B31637-1547-43A3-8CFD-929B34F6923C} - System32\Tasks\LaunchApp => C:\Program Files (x86)\JustCloud\JustCloud.exe
C:\Program Files (x86)\JustCloud
Task: {6FCD21B2-D753-4A13-9854-615E906D4593} - System32\Tasks\{77ACADE9-5991-4873-939C-BD35A0D0648E} => pcalua.exe -a "C:\Users\Don\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIZRRQM2\setup_basic_G4000_3[1].exe" -d C:\Users\Don\Desktop
Task: {75F5ED36-A6C7-4F51-9BF1-1DE872814DDF} - System32\Tasks\{880135B9-4E84-497F-93B8-3EBEDEF84B23} => pcalua.exe -a "C:\Users\Don\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SQ0ATW7W\6_Color-Scratch_Dust_Removal.exe" -d C:\Users\Don\Desktop
Task: {A40D10DF-2A3A-488B-8E78-96CB7D8452B7} - System32\Tasks\SuperFastPC_AutorunOnStartup => C:\Program Files (x86)\System Optimizer Pro\SystemOptimizerPro.exe <==== ATTENTION
C:\Program Files (x86)\System Optimizer Pro
Task: {C3D16584-F218-40B8-99B3-D7A9AF71615D} - System32\Tasks\{5F7C876F-5D5E-46CE-A88A-9B81DA1AAC17} => pcalua.exe -a J:\SplashData\SplashID2.59Installer.exe -d J:\SplashData
Task: C:\Windows\Tasks\Groovorio.job => C:\Users\Don\AppData\Roaming\GROOVO~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
C:\Users\Don\AppData\Roaming\GROOVO~1
AlternateDataStreams: C:\ProgramData\Temp:373E1720
AlternateDataStreams: C:\Users\Don\from Shelly.jpg:SummaryInformation
AlternateDataStreams: C:\Users\Don\from Shelly.jpg:Updt_SummaryInformation
AlternateDataStreams: C:\Users\Don\from Shelly.jpg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}
AlternateDataStreams: C:\Users\Don\Desktop\6-30-2015, rainbow.JPG:SummaryInformation
AlternateDataStreams: C:\Users\Don\Desktop\6-30-2015, rainbow.JPG:Updt_SummaryInformation
AlternateDataStreams: C:\Users\Don\Desktop\6-30-2015, rainbow.JPG:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}
AlternateDataStreams: C:\Users\Don\Desktop\File Jun 15, 6 27 00 AM.mov:com.dropbox.attributes
AlternateDataStreams: C:\Users\Don\Desktop\NASCAR.png:SummaryInformation
AlternateDataStreams: C:\Users\Don\Desktop\NASCAR.png:Updt_SummaryInformation
AlternateDataStreams: C:\Users\Don\Desktop\NASCAR.png:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}
Reg: reg delete HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f
Reg: reg add HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f
Reg: Reg Delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg" /F
Reg: Reg Add "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg" /F
RemoveProxy:
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: ipconfig /flushdns
CMD: netsh winsock reset catalog
CMD: netsh int ip reset c:\resetlog.txt
CMD: ipconfig /release
CMD: ipconfig /renew
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
EmptyTemp:
CMD: bitsadmin /reset /allusers
end
*****************
Restore point was successfully created.
Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
"HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SDWinLogon" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\bitguard.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\bprotect.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\bpsvc.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\browsemngr.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\browserdefender.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\browsermngr.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\browserprotect.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\browsersafeguard.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\bundlesweetimsetup.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\cltmngsvc.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\delta babylon.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\delta tb.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\delta2.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\deltainstaller.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\deltasetup.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\deltatb.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\deltatb_2501-c733154b.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\dprotectsvc.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\iminentsetup.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\jumpflip" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\protectedsearch.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\rjatydimofu.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\searchinstaller.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\searchprotection.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\searchprotector.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\searchsettings.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\searchsettings64.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\snapdo.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\stinst32.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\stinst64.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\sweetimsetup.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\tbdelta.exetoolbar783881609.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\umbrella.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\utiljumpflip.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\volaro" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\vonteera" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\websteroids.exe" => key removed successfully
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\websteroidsservice.exe" => key removed successfully
HKU\S-1-5-21-3840967050-1990347923-15132294-1001\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKU\S-1-5-21-3840967050-1990347923-15132294-1001\Software\Microsoft\Internet Explorer\URLSearchHooks\\{4d687bc7-7f1a-472c-bf8e-9af6d7b17ac8} => value removed successfully
"HKCR\Wow6432Node\CLSID\{4d687bc7-7f1a-472c-bf8e-9af6d7b17ac8}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1460E521-AD8A-4407-87F0-2874AC6828E0}" => key removed successfully
HKCR\CLSID\{1460E521-AD8A-4407-87F0-2874AC6828E0} => key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{4BBCFCA1-472C-4997-993B-25955433715C}" => key removed successfully
HKCR\CLSID\{4BBCFCA1-472C-4997-993B-25955433715C} => key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}" => key removed successfully
HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} => key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CC865B26-C31D-4D23-B17B-96548EEF03F6}" => key removed successfully
HKCR\CLSID\{CC865B26-C31D-4D23-B17B-96548EEF03F6} => key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77}" => key removed successfully
HKCR\CLSID\{DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully
HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{1460E521-AD8A-4407-87F0-2874AC6828E0}" => key removed successfully
HKCR\Wow6432Node\CLSID\{1460E521-AD8A-4407-87F0-2874AC6828E0} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{1ea689d5-61f5-4654-9a46-2ef703429b48}" => key removed successfully
HKCR\Wow6432Node\CLSID\{1ea689d5-61f5-4654-9a46-2ef703429b48} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{4BBCFCA1-472C-4997-993B-25955433715C}" => key removed successfully
HKCR\Wow6432Node\CLSID\{4BBCFCA1-472C-4997-993B-25955433715C} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}" => key removed successfully
HKCR\Wow6432Node\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} => key not found.
HKU\S-1-5-21-3840967050-1990347923-15132294-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKU\S-1-5-21-3840967050-1990347923-15132294-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1460E521-AD8A-4407-87F0-2874AC6828E0}" => key removed successfully
HKCR\CLSID\{1460E521-AD8A-4407-87F0-2874AC6828E0} => key not found.
"HKU\S-1-5-21-3840967050-1990347923-15132294-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1ea689d5-61f5-4654-9a46-2ef703429b48}" => key removed successfully
HKCR\CLSID\{1ea689d5-61f5-4654-9a46-2ef703429b48} => key not found.
"HKU\S-1-5-21-3840967050-1990347923-15132294-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{3B3517E7-B60B-48F0-83C7-6F2084677E87}" => key removed successfully
HKCR\CLSID\{3B3517E7-B60B-48F0-83C7-6F2084677E87} => key not found.
"HKU\S-1-5-21-3840967050-1990347923-15132294-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{4BBCFCA1-472C-4997-993B-25955433715C}" => key removed successfully
HKCR\CLSID\{4BBCFCA1-472C-4997-993B-25955433715C} => key not found.
"HKU\S-1-5-21-3840967050-1990347923-15132294-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}" => key removed successfully
HKCR\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} => key not found.
"HKU\S-1-5-21-3840967050-1990347923-15132294-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}" => key removed successfully
HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} => key not found.
"HKU\S-1-5-21-3840967050-1990347923-15132294-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CC865B26-C31D-4D23-B17B-96548EEF03F6}" => key removed successfully
HKCR\CLSID\{CC865B26-C31D-4D23-B17B-96548EEF03F6} => key not found.
"HKU\S-1-5-21-3840967050-1990347923-15132294-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D0882AB7-FF6E-48D6-ADC6-59528834069B}" => key removed successfully
HKCR\CLSID\{D0882AB7-FF6E-48D6-ADC6-59528834069B} => key not found.
"HKU\S-1-5-21-3840967050-1990347923-15132294-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77}" => key removed successfully
HKCR\CLSID\{DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3d86a75b-cb6b-4764-885d-ca6336f04ba2}" => key removed successfully
HKCR\Wow6432Node\CLSID\{3d86a75b-cb6b-4764-885d-ca6336f04ba2} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}" => key removed successfully
HKCR\Wow6432Node\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{da104fa1-3714-4056-8f42-d7fb74fd43dc}" => key removed successfully
"HKCR\Wow6432Node\CLSID\{da104fa1-3714-4056-8f42-d7fb74fd43dc}" => key removed successfully
C:\Program Files (x86)\PremierDownloadManager_ag => moved successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{3d86a75b-cb6b-4764-885d-ca6336f04ba2} => value removed successfully
HKCR\Wow6432Node\CLSID\{3d86a75b-cb6b-4764-885d-ca6336f04ba2} => key not found.
HKU\S-1-5-21-3840967050-1990347923-15132294-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{604BC32A-9680-40D1-9AC6-E06B23A1BA4C} => value removed successfully
HKCR\CLSID\{604BC32A-9680-40D1-9AC6-E06B23A1BA4C} => key not found.
Firefox homepage removed successfully
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => key removed successfully
"HKLM\Software\MozillaPlugins\@microsoft.com/VirtualEarth3D,version=4.0" => key removed successfully
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => key removed successfully
"HKU\S-1-5-21-3840967050-1990347923-15132294-1001\Software\MozillaPlugins\anvisoft.com/AdblockPlugin" => key removed successfully
C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll not found.
C:\Users\Don\AppData\Roaming\Mozilla\Firefox\Profiles\kjny3sm1.default\user.js => moved successfully.
C:\Users\Don\AppData\Roaming\Mozilla\Firefox\Profiles\kjny3sm1.default\searchplugins\bing-.xml => moved successfully.
C:\Users\Don\AppData\Roaming\Mozilla\Firefox\Profiles\kjny3sm1.default\searchplugins\Groovorio.xml => moved successfully.
C:\Users\Don\AppData\Roaming\Mozilla\Firefox\Profiles\kjny3sm1.default\Extensions\{73843edf-1075-4a55-947c-e13e0dc9349e} => moved successfully.
C:\ProgramData\Anvisoft => moved successfully.
"C:\Users\Don\AppData\Roaming\Mozilla\Firefox\Profiles\kjny3sm1.default\searchplugins\bing-.xml" => File/Folder not found.
"C:\Users\Don\AppData\Roaming\Mozilla\Firefox\Profiles\kjny3sm1.default\searchplugins\Groovorio.xml" => File/Folder not found.
"C:\Users\Don\AppData\Roaming\Mozilla\Firefox\Profiles\kjny3sm1.default\Extensions\{73843edf-1075-4a55-947c-e13e0dc9349e}" => File/Folder not found.
"HKLM\SOFTWARE\Google\Chrome\Extensions\blmchfpimpbbdmgpcieclabeafkljbhm" => key removed successfully
"HKLM\SOFTWARE\Google\Chrome\Extensions\oilkkkefbalmbfppgjmgjoefbclebkce" => key removed successfully
"HKLM\SOFTWARE\Google\Chrome\Extensions\Äÿ" => key removed successfully
"HKU\S-1-5-21-3840967050-1990347923-15132294-1001\SOFTWARE\Google\Chrome\Extensions\blmchfpimpbbdmgpcieclabeafkljbhm" => key removed successfully
"HKU\S-1-5-21-3840967050-1990347923-15132294-1001\SOFTWARE\Google\Chrome\Extensions\oilkkkefbalmbfppgjmgjoefbclebkce" => key removed successfully
"HKU\S-1-5-21-3840967050-1990347923-15132294-1001\SOFTWARE\Google\Chrome\Extensions\Äÿ" => key removed successfully
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\blmchfpimpbbdmgpcieclabeafkljbhm" => key removed successfully
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk" => key removed successfully
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\lhmiofmipcpmhgihiecmpiekcacigpgb" => key removed successfully
"C:\ProgramData\Anvisoft" => File/Folder not found.
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\oilkkkefbalmbfppgjmgjoefbclebkce" => key removed successfully
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\Äÿ" => key removed successfully
PremierDownloadManager_agService => Service removed successfully
"C:\PROGRA~2\PREMIE~2\bar\1.bin\agbarsvc.exe" => File/Folder not found.
"C:\PROGRA~2\PREMIE~2" => File/Folder not found.
Moucdds => Service removed successfully
ATIXPGAA => Service removed successfully
cpuz132 => Service removed successfully
PcdrNdisuio => Service removed successfully
"C:\Program Files\PC-Doctor for Windows\ATIXPGAA.SYS" => File/Folder not found.
"C:\Users\Don\AppData\Local\Temp\cpuz132\cpuz132_x64.sys" => File/Folder not found.
"C:\Windows\syswow64\drivers\pcdrndisuio.sys" => File/Folder not found.
C:\Windows\Tasks\Groovorio.job => moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully.
C:\Windows\Tasks\PCDRScheduledMaintenance.job => moved successfully.
C:\ProgramData\SDPlatformMgr.dll => moved successfully.
C:\ProgramData\SplashID%20Safe.exe => moved successfully.
C:\ProgramData\sqlite3.dll => moved successfully.
C:\Users\Don\PhotoshopElements_8_MUL.exe => moved successfully.
C:\Users\Don\AppData\Local\Temp\AMPing.exe => moved successfully.
C:\Users\Don\AppData\Local\Temp\InstallManager_BAB_BAB.exe => moved successfully.
"HKU\S-1-5-21-3840967050-1990347923-15132294-1001_Classes\CLSID\{F6BF8414-962C-40FE-90F1-B80A7E72DB9A}" => key removed successfully
C:\ProgramData\{9A88E103-A20A-4EA5-8636-C73B709A5BF8} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{035B4562-6CFF-44DA-A887-5BB77411B844}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{035B4562-6CFF-44DA-A887-5BB77411B844}" => key removed successfully
C:\Windows\System32\Tasks\Groovorio => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Groovorio" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1B5C81C6-082F-4292-8153-22FC020C9FF6}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1B5C81C6-082F-4292-8153-22FC020C9FF6}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ProPCCleaner_Popup" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{27305B76-AF3D-4F61-9646-1DF2AADBDFAE}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{27305B76-AF3D-4F61-9646-1DF2AADBDFAE}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ProPCCleaner_Start" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{48B31637-1547-43A3-8CFD-929B34F6923C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{48B31637-1547-43A3-8CFD-929B34F6923C}" => key removed successfully
C:\Windows\System32\Tasks\LaunchApp => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\LaunchApp" => key removed successfully
"C:\Program Files (x86)\JustCloud" => File/Folder not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6FCD21B2-D753-4A13-9854-615E906D4593}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6FCD21B2-D753-4A13-9854-615E906D4593}" => key removed successfully
C:\Windows\System32\Tasks\{77ACADE9-5991-4873-939C-BD35A0D0648E} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{77ACADE9-5991-4873-939C-BD35A0D0648E}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{75F5ED36-A6C7-4F51-9BF1-1DE872814DDF}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{75F5ED36-A6C7-4F51-9BF1-1DE872814DDF}" => key removed successfully
C:\Windows\System32\Tasks\{880135B9-4E84-497F-93B8-3EBEDEF84B23} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{880135B9-4E84-497F-93B8-3EBEDEF84B23}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A40D10DF-2A3A-488B-8E78-96CB7D8452B7}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A40D10DF-2A3A-488B-8E78-96CB7D8452B7}" => key removed successfully
C:\Windows\System32\Tasks\SuperFastPC_AutorunOnStartup => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SuperFastPC_AutorunOnStartup" => key removed successfully
"C:\Program Files (x86)\System Optimizer Pro" => File/Folder not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C3D16584-F218-40B8-99B3-D7A9AF71615D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C3D16584-F218-40B8-99B3-D7A9AF71615D}" => key removed successfully
C:\Windows\System32\Tasks\{5F7C876F-5D5E-46CE-A88A-9B81DA1AAC17} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{5F7C876F-5D5E-46CE-A88A-9B81DA1AAC17}" => key removed successfully
C:\Windows\Tasks\Groovorio.job not found.
"C:\Users\Don\AppData\Roaming\GROOVO~1" => File/Folder not found.
C:\ProgramData\Temp => ":373E1720" ADS removed successfully.
C:\Users\Don\from Shelly.jpg => ":SummaryInformation" ADS removed successfully.
C:\Users\Don\from Shelly.jpg => ":Updt_SummaryInformation" ADS removed successfully.
C:\Users\Don\from Shelly.jpg => ":{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}" ADS removed successfully.
C:\Users\Don\Desktop\6-30-2015, rainbow.JPG => ":SummaryInformation" ADS removed successfully.
C:\Users\Don\Desktop\6-30-2015, rainbow.JPG => ":Updt_SummaryInformation" ADS removed successfully.
C:\Users\Don\Desktop\6-30-2015, rainbow.JPG => ":{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}" ADS removed successfully.
C:\Users\Don\Desktop\File Jun 15, 6 27 00 AM.mov => ":com.dropbox.attributes" ADS removed successfully.
C:\Users\Don\Desktop\NASCAR.png => ":SummaryInformation" ADS removed successfully.
C:\Users\Don\Desktop\NASCAR.png => ":Updt_SummaryInformation" ADS removed successfully.
C:\Users\Don\Desktop\NASCAR.png => ":{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}" ADS removed successfully.
========= reg delete HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f =========
The operation completed successfully.
========= End of Reg: =========
========= reg add HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f =========
The operation completed successfully.
========= End of Reg: =========
========= Reg Delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg" /F =========
The operation completed successfully.
========= End of Reg: =========
========= Reg Add "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg" /F =========
The operation completed successfully.
========= End of Reg: =========
========= RemoveProxy: =========
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully
HKU\S-1-5-21-3840967050-1990347923-15132294-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
HKU\S-1-5-21-3840967050-1990347923-15132294-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully
========= End of RemoveProxy: =========
========= netsh advfirewall reset =========
Ok.
========= End of CMD: =========
========= netsh advfirewall set allprofiles state ON =========
Ok.
========= End of CMD: =========
========= ipconfig /flushdns =========
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
========= End of CMD: =========
========= netsh winsock reset catalog =========
Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.
========= End of CMD: =========
========= netsh int ip reset c:\resetlog.txt =========
Reseting Global, OK!
Reseting Interface, OK!
Restart the computer to complete this action.
========= End of CMD: =========
========= ipconfig /release =========
Windows IP Configuration
No operation can be performed on Local Area Connection while it has its media disconnected.
Wireless LAN adapter Wireless Network Connection:
Connection-specific DNS Suffix . :
Link-local IPv6 Address . . . . . : fe80::3422:fe8c:b8d5:7be4%11
Default Gateway . . . . . . . . . :
Ethernet adapter Local Area Connection:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Tunnel adapter Local Area Connection* 46:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Tunnel adapter isatap.{543B9BC3-204C-4F3F-B1C0-9EDDA3F5C038}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Tunnel adapter isatap.{500B80E1-7F7F-4183-B492-EF62D32660E6}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
========= End of CMD: =========
========= ipconfig /renew =========
Windows IP Configuration
No operation can be performed on Local Area Connection while it has its media disconnected.
Wireless LAN adapter Wireless Network Connection:
Connection-specific DNS Suffix . :
Link-local IPv6 Address . . . . . : fe80::3422:fe8c:b8d5:7be4%11
IPv4 Address. . . . . . . . . . . : 192.168.1.113
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.1.1
Ethernet adapter Local Area Connection:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Tunnel adapter Local Area Connection* 46:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Tunnel adapter isatap.{543B9BC3-204C-4F3F-B1C0-9EDDA3F5C038}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Tunnel adapter isatap.{500B80E1-7F7F-4183-B492-EF62D32660E6}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
========= End of CMD: =========
========= netsh int ipv4 reset =========
Reseting Interface, OK!
Restart the computer to complete this action.
========= End of CMD: =========
========= netsh int ipv6 reset =========
Reseting Interface, OK!
Restart the computer to complete this action.
========= End of CMD: =========
========= bitsadmin /reset /allusers =========
BITSADMIN version 3.0 [ 7.5.7601 ]
BITS administration utility.
(C) Copyright 2000-2006 Microsoft Corp.
BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.
0 out of 0 jobs canceled.
========= End of CMD: =========
EmptyTemp: => 47 GB temporary data Removed.
The system needed a reboot..
==== End of Fixlog 14:46:29 ====