FreeFixer v1.09 log http://www.freefixer.com/ Operating system: Windows Vista Service Pack 2 Log dated 2014-03-02 07:22 Browser Helper Objects (11 whitelisted) ======================================= 32-bit, {02478D38-C3F9-4efb-9B51-7695ECA05670}, , (no file specified) 32-bit, {3E7C8B5A-96AB-438F-BF9B-782400655440}, Qwiklinx, C:\Users\Monany\AppData\Roaming\Qwiklinx\Qwiklinx.dll Internet Explorer toolbars (1 whitelisted) ========================================== HKCU\..\Toolbar\WebBrowser\{604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - - (no file specified) Internet Explorer extensions ============================ HKLM\..\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5} - Skype Click to Call HKLM\..\Extensions\{CCA281CA-C863-46ef-9331-5C8D4460577F} - @btrez.dll,-4015 HKLM\..Wow6432Node..\Extensions\{0000036B-C524-4050-81A0-243669A86B9F} - @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 HKLM\..Wow6432Node..\Extensions\{219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 HKLM\..Wow6432Node..\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49} - Send to OneNote HKLM\..Wow6432Node..\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5} - Skype Click to Call HKLM\..Wow6432Node..\Extensions\{92780B25-18CC-41C8-B9BE-3C9C571A8263} - Research HKLM\..Wow6432Node..\Extensions\{CCA281CA-C863-46ef-9331-5C8D4460577F} - Send To Bluetooth HKLM\..Wow6432Node..\Extensions\{DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - Basic Internet Explorer settings ================================ HKCU\..\Main, Start Page = http://www.google.com/ HKLM\..\Main, Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb HKLM\..\Main, Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb HKCU\..\Main, Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb HKCU\..\Desktop\General, Wallpaper = C:\Users\Monany\AppData\Roaming\Mozilla\Firefox\Desktop Background.bmp HKLM\..Wow6432Node..\Main, Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb HKLM\..Wow6432Node..\Main, Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb HKLM\..Wow6432Node..\Search, SearchAssistant = Internet Explorer Search Providers ================================== HKLM\..\SearchScopes\{3CF2481F-854A-41B7-9CDF-7113C60591B3} - Ask.com - http://www.ask.com/web?q={searchterms}&l=dis&o=ushpl HKLM\..Wow6432Node..\SearchScopes\{3CF2481F-854A-41B7-9CDF-7113C60591B3} - Ask.com - http://www.ask.com/web?q={searchterms}&l=dis&o=ushpl HKCU\..\SearchScopes\{3CF2481F-854A-41B7-9CDF-7113C60591B3} - - Registry Startups (9 whitelisted) ================================= HKLM\..Wow6432Node..\Run, QuickTime Task = "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime HKCU\..\Run, Desktop Software = "C:\Program Files (x86)\Common Files\SupportSoft\bin\bcont.exe" /ini "C:\Program Files (x86)\ComcastUI\Desktop Software\uinstaller.ini" /fromrun /starthidden (file is missing) HKCU\..\Run, WMPNSCFG = C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe (file is missing) Scheduled tasks (31 whitelisted) ================================ RealPlayerRealUpgradeLogonTaskS-1-5-21-3140191626-1248171864-2108448009-1000, C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe /logoncheck (file is missing) RealPlayerRealUpgradeScheduledTaskS-1-5-21-3140191626-1248171864-2108448009-1000, C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe /scheduledcheck (file is missing) {5F924A57-DE96-42F8-A16F-A6EC37C0BF1A}, C:\Program Files (x86)\Skype\Phone\Skype.exe LogRotator, "C:\Program Files (x86)\BlueStacks\HD-LogRotator.exe" Autostart shortcuts (1 whitelisted) =================================== CurseClientStartup.ccip, , C:\Users\Monany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip Shared schedulers (2 whitelisted) ================================= 64-bit, Windows DreamScene, {E31004D1-A431-41B8-826F-E902F9D95C81}, C:\Windows\System32\DreamScene.dll Processes (77 whitelisted) ========================== C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe C:\Program Files (x86)\Flip Video\FlipShare\FlipShareService.exe C:\Program Files (x86)\SMINST\BLService.exe C:\Program Files (x86)\QuickTime\QTTask.exe C:\Users\Monany\AppData\Local\Apps\2.0\N1JOMNR9.CKO\GYHXTWN7.KGC\curs..tion_9e9e83ddf3ed3ead_0005.0001_181b5e0542e9eb6c\CurseClient.exe C:\Program Files\FreeFixer\freefixer.exe Services (77 whitelisted) ========================= BstHdAndroidSvc, BlueStacks Android Service, c:\program files (x86)\bluestacks\hd-service.exe clr_optimization_v4.0.30319_32, Microsoft .NET Framework NGEN v4.0.30319_X86, c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe clr_optimization_v4.0.30319_64, Microsoft .NET Framework NGEN v4.0.30319_X64, c:\windows\microsoft.net\framework64\v4.0.30319\mscorsvw.exe FlipShare Service, FlipShare Service, c:\program files (x86)\flip video\flipshare\flipshareservice.exe Recovery Service for Windows, Recovery Service for Windows, c:\program files (x86)\sminst\blservice.exe SkypeUpdate, Skype Updater, c:\program files (x86)\skype\updater\updater.exe UMVPFSrv, , c:\program files (x86)\common files\logishrd\lvmvfm\umvpfsrv.exe Svchost.exe Modules (263 whitelisted) ===================================== c:\windows\system32\hpzipm12.dll Explorer.exe Modules (141 whitelisted) ====================================== C:\Windows\System32\DreamScene.dll C:\Windows\system32\btncopy.dll Drivers (94 whitelisted) ======================== avgntflt, avgntflt, C:\Windows\SysWOW64\drivers\avgntflt.sys (file is missing) avipbb, avipbb, C:\Windows\SysWOW64\drivers\avipbb.sys (file is missing) avkmgr, avkmgr, C:\Windows\SysWOW64\drivers\avkmgr.sys (file is missing) BstHdDrv, BlueStacks Hypervisor, c:\program files (x86)\bluestacks\hd-hypervisor-amd64.sys Firefox Extensions ================== Skype Click to Call, c:\program files (x86)\mozilla firefox\extensions\{82af8dca-6de9-405d-bd5e-43525bdad38a}\install.rdf Personas Plus, c:\users\monany\appdata\roaming\mozilla\firefox\profiles\cnkxkzos.default\extensions\personas@christopher.beard.xpi NoScript, c:\users\monany\appdata\roaming\mozilla\firefox\profiles\cnkxkzos.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi Adblock Plus, c:\users\monany\appdata\roaming\mozilla\firefox\profiles\cnkxkzos.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi Firefox Search Engines ====================== Amazon.com, http://www.amazon.com/exec/obidos/external-search/, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazondotcom.xml, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazondotcom.xml Bing, http://www.bing.com/search, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml eBay, http://rover.ebay.com/rover/1/711-47294-18009-3/4, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay.xml, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay.xml Google, https://www.google.com/search, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml Twitter, https://twitter.com/search, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\twitter.xml, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\twitter.xml Wikipedia (en), http://en.wikipedia.org/wiki/Special:Search, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia.xml, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia.xml Yahoo, http://search.yahoo.com/search, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo.xml, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo.xml Recently created/modified files (14 whitelisted) ================================================ 1 hour, c:\Program Files (x86)\Secunia\PSI\SUA\6dce93fbe9f39da24114d4c69e1ecccc4bf6785d\JavaJRE_7u51_64-bit_PSIonlySPS.exe 1 hour, c:\Program Files (x86)\Secunia\PSI\SUA\f8659932ffa99b44542b14cbd05bdc63a26d9930\ShockwavePlayer_12.0.9.149_SPS.exe 1 hour, c:\Program Files (x86)\Secunia\PSI\SUA\c6c50d171fc42beabd52bd2937bc6907fec1f396\VLC_2.1.2_32-bit_SPS.exe 1 hour, c:\Program Files (x86)\Secunia\PSI\SUA\68d2b284c4010857fde66c83af3c82be0e2fdd2a\JavaJRE_7u51_32-bit_PSIonlySPS.exe 1 hour, c:\Program Files (x86)\Secunia\PSI\SUA\691428191a0140ee7a3c6513c1cc93f3cd292168\AdobeAir_4.0.0.1390_SPS.exe 11 hours, c:\Program Files\FreeFixer\Uninstall.exe 11 hours, c:\Users\Monany\Downloads\freefixersetup.exe 1 day, c:\Program Files (x86)\Avira\AntiVir Desktop\aeexp.dll 1 day, c:\Program Files (x86)\Avira\AntiVir Desktop\FAILSAFE\aeexp.dll 1 day, c:\Program Files (x86)\Avira\AntiVir Desktop\aescript.dll 1 day, c:\Program Files (x86)\Avira\AntiVir Desktop\FAILSAFE\aescript.dll 1 day, c:\Program Files (x86)\Avira\AntiVir Desktop\FAILSAFE\aepack.dll 1 day, c:\Program Files (x86)\Avira\AntiVir Desktop\aepack.dll 1 day, c:\Program Files (x86)\Avira\AntiVir Desktop\aeheur.dll 1 day, c:\Program Files (x86)\Avira\AntiVir Desktop\FAILSAFE\aeheur.dll 6 days, c:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe Csrss.exe virtual memory files (270 whitelisted) ================================================ C:\Program Files (x86)\SMINST\BLService.exe C:\Program Files (x86)\SMINST\STWmiM.dll C:\Program Files\FreeFixer\freefixer.exe C:\Program Files (x86)\Avira\AntiVir Desktop\libdb44.dll C:\Program Files (x86)\Flip Video\FlipShare\Core.dll C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe C:\Program Files (x86)\Flip Video\FlipShare\QtGui4.dll C:\Program Files (x86)\Flip Video\FlipShare\QtCore4.dll C:\Program Files (x86)\Flip Video\FlipShare\qca2.dll C:\Program Files (x86)\Flip Video\FlipShare\QtXml4.dll C:\Program Files (x86)\Flip Video\FlipShare\QtNetwork4.dll C:\Program Files (x86)\Flip Video\FlipShare\QtSql4.dll C:\Program Files (x86)\Avira\AntiVir Desktop\libapr-1.dll C:\Windows\system32\spool\DRIVERS\x64\3\hpzui4v2.dll C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe C:\Program Files (x86)\Avira\AntiVir Desktop\libapriconv-1.dll C:\Program Files (x86)\Flip Video\FlipShare\FlipShareService.exe C:\Program Files (x86)\Avira\AntiVir Desktop\libaprutil-1.dll C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe C:\Program Files (x86)\Skype\Updater\Updater.exe C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe C:\Program Files (x86)\QuickTime\QTTask.exe C:\Users\Monany\Downloads\freefixersetup.exe C:\Windows\system32\btncopy.dll Errors ====== Problems opening folder 'c:\Windows\System32\LogFiles\WMI\RtBackup' to enumerate files. FindFirstFile failed. System error message: Access is denied. Error code: 5. End of FreeFixer log