Logfile of random's system information tool 1.10 (written by random/random) Run by Catlyne Nix at 2015-10-03 13:51:08 Microsoft Windows 10 Home System drive C: has 20 GB (4%) free of 463 GB Total RAM: 3818 MB (30% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 13:51:34, on 3/10/2015 Platform: Unknown Windows (WinNT 6.02.1008) MSIE: Internet Explorer v11.0 (11.00.10240.16412) Boot mode: Normal Running processes: C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe C:\Users\Catlyne Nix\AppData\Roaming\Spotify\SpotifyWebHelper.exe C:\Program Files (x86)\Skype\Phone\Skype.exe C:\Windows\SysWOW64\rundll32.exe C:\Users\Catlyne Nix\AppData\Local\Microsoft\OneDrive\OneDrive.exe C:\ProgramData\Avg_Update_0915tb\AVG-Secure-Search-Update_0915tb.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe C:\Users\Catlyne Nix\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe C:\Program Files (x86)\Launch Manager\LManager.exe C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe C:\Program Files (x86)\PowerISO\PWRISOVM.EXE C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe C:\Program Files (x86)\Launch Manager\LMworker.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe C:\Program Files (x86)\iTunes\iTunesHelper.exe C:\Program Files (x86)\AVG\AVG2015\avgui.exe C:\Program Files (x86)\Dropbox\Client\Dropbox.exe C:\Program Files (x86)\AVG Web TuneUp\vprot.exe C:\WINDOWS\SysWOW64\ctfmon.exe C:\Program Files (x86)\Common Files\AVG Secure Search\ScriptHelperInstaller\40.1.6\ScriptHelper.exe C:\WINDOWS\SysWOW64\WerFault.exe C:\Program Files (x86)\AVG Web TuneUp\avgcefrend.exe C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe C:\Users\Catlyne Nix\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Catlyne Nix\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Catlyne Nix\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Catlyne Nix\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Catlyne Nix\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Catlyne Nix\AppData\Local\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe C:\Users\CATLYN~1\AppData\Local\Temp\clear.fiClient\cabarc.exe C:\Program Files\trend micro\Catlyne Nix.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/?type=hp&ts=1400793315&from=slbnew&uid=WDCXWD5000BPVT-22HXZT3_WD-WXN1A81U0012U0012 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://mysearch.avg.com/?cid={9DA6692B-139D-4BC0-A72C-CCF8DB4F3B89}&mid=624a76a86cd547cdb87ee929313bc905-0f3fa075aa198932f13973a6bd998ebc4101a7c4&lang=nl&ds=AVG&coid=avgtbavg&cmpid=0915av&pr=fr&d=2015-09-11 11:51:11&v=4.1.6.294&pid=wtu&sg=&sap=hp R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: uTorrentBar_NL Toolbar - {87775fdb-6972-41f9-ae51-8326e38cb206} - C:\Users\Catlyne Nix\AppData\LocalLow\uTorrentBar_NL\prxtbuTo2.dll (file missing) F2 - REG:system.ini: UserInit= O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: CrossriderApp0003491 - {11111111-1111-1111-1111-110011341191} - C:\Program Files (x86)\Vid-Saver\Vid-Saver.dll (file missing) O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Zebar - {26e67fb2-111e-417f-966e-547ac43968cf} - C:\Program Files (x86)\Zebar\Zebarbho.dll (file missing) O2 - BHO: Babylon toolbar helper - {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.6.4.6\bh\BabylonToolbar.dll O2 - BHO: Increase performance and video formats for your HTML5