HKLM Group Policy restriction on software: %AppData%\*\{*}.exe <====== ATTENTION HKLM Group Policy restriction on software: %AppData%\{*}.exe <====== ATTENTION HKLM Group Policy restriction on software: %Temp%\wz*\{*}.exe <====== ATTENTION HKLM Group Policy restriction on software: %Temp%\*.zip\{*}.exe <====== ATTENTION HKLM Group Policy restriction on software: %Temp%\7z*\{*}.exe <====== ATTENTION HKLM Group Policy restriction on software: %Temp%\Rar*\{*}.exe <====== ATTENTION HKLM Group Policy restriction on software: %localappdata%\{*}.exe <====== ATTENTION HKLM Group Policy restriction on software: %localappdata%\*\{*}.exe <====== ATTENTION Winlogon\Notify\GoToAssist: C:\Program Files (x86)\Citrix\GoToAssist\514\G2AWinLogon_x64.dll [X] HKU\S-1-5-21-791955194-1637552953-539721985-1001\...\Run: [ooVoo.exe] => C:\Program Files (x86)\ooVoo\oovoo.exe /minimized ProxyServer: [S-1-5-21-791955194-1637552953-539721985-1001] => http=127.0.0.1:49168;https=127.0.0.1:49168 BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll => No File BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll => No File 2016-09-19 12:06 - 2014-04-01 01:30 - 00000000 ____D C:\Program Files (x86)\SaveDailyDeals Updater 2016-09-18 17:58 - 2011-09-13 12:43 - 00000000 ____D C:\ProgramData\McAfee C:\ProgramData\fontcacheev1.dat C:\Users\Quintin\AppData\Local\Temp\libeay32.dll C:\Users\Quintin\AppData\Local\Temp\msvcr120.dll C:\Users\Quintin\AppData\Local\Temp\ose00000.exe C:\Users\Quintin\AppData\Local\Temp\setup.exe C:\Users\Quintin\AppData\Local\Temp\sqlite3.dll Task: {5BFEFFD9-D474-4A94-90BE-C0CBDF553F17} - \SaveDailyDeals\Updater\SaveDailyDeals updater -> No File <==== ATTENTION Task: {06F7A120-109A-4D05-9156-6B98322E00EA} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\Dell\SupportAssist\uaclauncher.exe [2016-08-02] (PC-Doctor, Inc.) Task: {1031EF6E-4F63-4949-BFB1-72B73FEF8D0C} - System32\Tasks\PCDDataUploadTask => uaclauncher.exe Task: {A986A591-C19F-430E-98D9-A5CB7E13EFE9} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\Dell\SupportAssist\sessionchecker.exe [2016-08-02] (PC-Doctor, Inc.) Task: {F963BC21-0FE7-4439-964B-DF85B6BA90A4} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe FirewallRules: [TCP Query User{696EDEA4-B659-4E29-B747-1AA92684E9E1}C:\program files (x86)\oovoo\oovoo.exe] => (Block) C:\program files (x86)\oovoo\oovoo.exe FirewallRules: [UDP Query User{B2AEE95A-2F6D-4657-82B6-46A67A5D35AB}C:\program files (x86)\oovoo\oovoo.exe] => (Block) C:\program files (x86)\oovoo\oovoo.exe CMD: ipconfig /flushdns RemoveProxy: EmptyTemp: Hosts: