:processes explorer.exe iexplore.exe firefox.exe msnmsgr.exe Teatimer.exe :OTL IE - HKLM\..\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC}: "URL" = http://rover.ebay.com/rover/1/709-29563-11896-9/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} IE - HKLM\..\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC}: "URL" = http://rover.ebay.com/rover/1/709-29563-11896-9/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} O3 - HKU\S-1-5-21-1590837356-3285633776-344450663-1002\..\Toolbar\WebBrowser: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No CLSID value found. O4 - HKLM\..\Run: [VNT] C:\Program Files (x86)\VNT\vntldr.exe (APN LLC.) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O20 - AppInit_DLLs: (c:\progra~3\bitguard\271769~1.27\{c16c1~1\loader.dll) - File not found [17 C:\WINDOWS\SysWow64\*.tmp files -> C:\WINDOWS\SysWow64\*.tmp -> ] [2013/04/02 18:55:12 | 000,000,000 | -HSD | M] -- C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} [2013/09/13 18:50:55 | 000,000,000 | ---D | M] -- C:\Users\HP1\AppData\Local\avgchrome [2013/01/15 20:30:05 | 000,000,000 | ---D | M] -- C:\Users\HP1\AppData\Local\CRE [2013/01/20 13:56:21 | 000,000,000 | ---D | M] -- C:\Users\HP1\AppData\Local\Updater21810 [2013/11/09 10:47:08 | 000,000,000 | ---D | M] -- C:\Users\HP1\AppData\Local\VNT [2013/09/30 18:04:49 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\IlemiTVApp.com [2013/11/09 10:46:53 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\VNT [2013/04/02 18:54:46 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{118D6CE9-5F18-42F9-958A-14676A629FDE} :reg [-HKEY_CURRENT_USER\Software\(null)] [-HKEY_CURRENT_USER\Software\VNT] [-HKEY_LOCAL_MACHINE\Software\SweetIM] [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\unknown] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall"=DWORD:0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall"=DWORD:0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall"=DWORD:0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{1125A5B8-20F7-4195-9E21-D05EFA2C05F3}"=- "{172D918F-19D3-443C-93CE-7248A08A91F0}"=- "{56E340C6-E24C-43BC-8A18-F10706067240}"=- "{B687DA8C-C150-4BBE-AEEC-E83DBE221FFA}"=- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{434D452D-5637-006A-76A7-A758B70C0700}] :Files C:\Windows\Temp\* :commands [emptytemp]