0 Members and 1 Guest are viewing this topic.
CreateRestorePoint: Startup: C:\Users\Stellina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Portrait Professional 10.9.5 crack.lnk [2015-05-11]ShortcutTarget: Portrait Professional 10.9.5 crack.lnk -> C:\ProgramData\{7f5d14fd-f5f3-e667-7f5d-d14fdf5f53f7}\Portrait Professional 10.9.5 crack.exe (No File)ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No FileShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No FileShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No FileShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No FileShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No FileShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No FileCHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION2015-05-29 22:42 - 2015-05-29 22:43 - 00000000 ____D C:\Users\Stellina\AppData\Local\ChromiumRemoveProxy:EmptyTemp: CMD: bitsadmin /reset /allusers
CreateRestorePoint: HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hppp&ts=1433232880&z=ccfa30af39ea385343b1050g5z2cac4occ6o1beq8t&from=smt&uid=ST1000LM024XHN-M101MBB_S32XJ9FF304470HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=ds&ts=1433232862&z=d9b5087e542823e99a1f69fgez6c5c0obcao2b5w4o&from=smt&uid=ST1000LM024XHN-M101MBB_S32XJ9FF304470&q={searchTerms}SearchScopes: HKU\S-1-5-21-3696484345-1428165893-2251099865-1001 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = http://www.istartsurf.com/web/?utm_source=b&utm_medium=smt&utm_campaign=install_ie&utm_content=ds&from=smt&uid=ST1000LM024XHN-M101MBB_S32XJ9FF304470&ts=1433232893&type=default&q={searchTerms}BHO-x32: No Name -> {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} -> No FileStartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.istartsurf.com/?type=sc&ts=1433232862&z=d9b5087e542823e99a1f69fgez6c5c0obcao2b5w4o&from=smt&uid=ST1000LM024XHN-M101MBB_S32XJ9FF3044702015-06-03 20:00 - 2015-06-03 20:00 - 00000000 ____D C:\ProgramData\d91282a100002be72015-05-30 12:08 - 2015-06-25 15:55 - 00000000 __SHD C:\Users\PC\AppData\Local\EmieBrowserModeList2015-06-25 15:55 - 2014-09-04 02:21 - 00000000 __SHD C:\Users\PC\AppData\Local\EmieUserList2015-06-25 15:55 - 2014-09-04 02:21 - 00000000 __SHD C:\Users\PC\AppData\Local\EmieSiteListReg: reg delete HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /fReg: reg add HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /fRemoveProxy:EmptyTemp: CMD: bitsadmin /reset /allusers