CloseProcesses: HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [AvgUi] => "C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe" /lps=fmw Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-2794434498-725242176-3457425843-1001\...A8F59079A8D5}\localserver32: <==== ATTENTION Startup: C:\Users\Craig DiPiano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Epson scanner Registration.lnk [2013-02-02] ShortcutTarget: Epson scanner Registration.lnk -> E:\Common\EpsonReg\v33\EpsonReg.exe (No File) SearchScopes: HKLM -> {5F7433B8-9CB1-45E8-95A9-65BB044ACC20} URL = hxxp://www.ask.com/web?q={searchterms}&l=dis&o=ushpd SearchScopes: HKLM-x32 -> {5F7433B8-9CB1-45E8-95A9-65BB044ACC20} URL = hxxp://www.ask.com/web?q={searchterms}&l=dis&o=ushpd SearchScopes: HKU\S-1-5-21-2794434498-725242176-3457425843-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2794434498-725242176-3457425843-1001 -> {5F7433B8-9CB1-45E8-95A9-65BB044ACC20} URL = SearchScopes: HKU\S-1-5-21-2794434498-725242176-3457425843-1001 -> {ACF86F11-B2C2-421B-94B3-B7EAFAC8BB2A} URL = BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll => No File BHO-x32: No Name -> {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} -> No File BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll => No File Toolbar: HKU\S-1-5-21-2794434498-725242176-3457425843-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll No File FF HKLM-x32\...\Firefox\Extensions: [{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}] - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DMExtension => not found FF HKLM-x32\...\Firefox\Extensions: [avg@toolbar] - C:\ProgramData\AVG Secure Search\FireFoxExt\15.5.0.2 => not found FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\avg-secure-search.xml [2014-08-26] U3 idsvc; no ImagePath S3 MREMP50; \??\C:\Program Files (x86)\Common Files\Motive\MREMP50.sys [X] S3 MRESP50; \??\C:\Program Files (x86)\Common Files\Motive\MRESP50.sys [X] 2017-11-14 18:39 - 2017-11-14 18:41 - 000000000 ____D C:\Users\Craig DiPiano\AppData\Local\AvgSetupLog 2017-11-14 18:43 - 2016-11-11 04:08 - 000000000 ____D C:\Users\Craig DiPiano\AppData\Roaming\AVG 2017-11-14 18:43 - 2016-11-11 03:39 - 000000000 ____D C:\ProgramData\Avg 2017-11-14 18:43 - 2010-06-20 13:19 - 000000000 ____D C:\Program Files (x86)\AVG C:\Users\Craig DiPiano\lametritonus_en.dll C:\Users\Craig DiPiano\lame_enc_en.dll 2011-07-23 18:58 - 2011-07-23 18:58 - 000000000 _____ () C:\Users\Craig DiPiano\AppData\Local\{A5A7E4C1-9043-4FD1-8D28-C74B15880741} CustomCLSID: HKU\S-1-5-21-2794434498-725242176-3457425843-1001_Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\localserver32 -> no filepath ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> No File Task: {5F522CEB-EAA3-4E97-96FF-BF8425DF56F6} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION Task: {77CDE8FA-743E-4BC5-8128-8886F7D50B1D} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION Task: {8451AEC7-438A-47ED-AAF8-43DA021933CF} - System32\Tasks\iMeshNAG => C:\Users\CRAIGD~1\AppData\Local\Temp\iMesh_setup.exe <==== ATTENTION Task: {88B0061E-71BD-4E62-B1BA-8AD9866A077C} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION Task: {8CEC57CE-9D89-4DAC-B4A6-7A110184F37A} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION Task: {A2637C3B-1E40-44BD-AB8C-4383AC6C1F7C} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION Task: {A7F13F2E-7E40-4342-A3EF-A78884CC1813} - \Microsoft\Windows\Setup\gwx\rundetector -> No File <==== ATTENTION Task: {AA665A59-A688-419E-B83D-465C6651FBB7} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION Task: {AC825DFB-BBC0-430E-9DBA-4A946ACA8B53} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION Task: {B081616E-0B12-4425-9E08-A245118C7CCE} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION Task: {B0FAD8D3-529C-4402-94D7-4D44F8DB6D78} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION Task: {B564AB98-F1CF-4EF4-B044-F7492A523700} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION Task: {BB119898-E216-4E4D-93DB-E693B6921D84} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION Task: {CE4316C6-3AE3-4120-ACFF-FB8A88428B1A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION Task: {D34FC6E8-B440-4E73-A3B7-7D93D9CF0DC2} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION Task: C:\WINDOWS\Tasks\iMeshNAG.job => C:\Users\CRAIGD~1\AppData\Local\Temp\iMesh_setup.exe <==== ATTENTION FirewallRules: [{84F0FFF7-3488-4ABC-9164-87540A4450AD}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe FirewallRules: [{E21A872A-C4F0-414F-A48E-43B01FEA01D3}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe FirewallRules: [{F1534492-FFC7-44FA-A3FD-3002899CDCE1}] => (Allow) C:\Program Files (x86)\AVG\AVG10\avgmfapx.exe FirewallRules: [{1ECD3752-A781-41B9-906B-2CEC23495D8B}] => (Allow) C:\Program Files (x86)\AVG\AVG10\avgmfapx.exe FirewallRules: [{44EA520B-6459-44DE-BB91-052225AFB5C8}] => (Allow) C:\Program Files (x86)\AVG\AVG10\avgdiagex.exe FirewallRules: [{61A8A447-6D0A-4A34-8F44-46F35231DC42}] => (Allow) C:\Program Files (x86)\AVG\AVG10\avgdiagex.exe FirewallRules: [{82F48685-F443-43F4-A62F-46F02843C857}] => (Allow) C:\Program Files (x86)\AVG\AVG10\avgnsa.exe FirewallRules: [{4650292E-F11B-41AF-BAF0-928FA75891DD}] => (Allow) C:\Program Files (x86)\AVG\AVG10\avgnsa.exe FirewallRules: [{D2AE60FD-EE99-475C-BC88-9818B4AE6F21}] => (Allow) C:\Program Files (x86)\AVG\AVG10\avgemca.exe FirewallRules: [{D6420937-ED58-486A-B363-7D432BF18108}] => (Allow) C:\Program Files (x86)\AVG\AVG10\avgemca.exe FirewallRules: [{424B25CA-A9BE-4111-9EC7-6B916BA059A6}] => (Allow) C:\Program Files (x86)\AVG\AVG10\avgmfapx.exe FirewallRules: [{1D41B792-B8C3-4BEC-AF53-618D22E102B9}] => (Allow) C:\Program Files (x86)\AVG\AVG10\avgmfapx.exe FirewallRules: [{B4AB2586-BAEF-4C9C-9772-A26C7533716F}] => (Allow) C:\Program Files (x86)\AVG\AVG2012\avgmfapx.exe FirewallRules: [{DB969FDF-B805-4825-8380-132D25BEB736}] => (Allow) C:\Program Files (x86)\AVG\AVG2012\avgmfapx.exe FirewallRules: [{8ABF4E99-0728-4DD7-9049-E35EC71CB8F1}] => (Allow) C:\Program Files (x86)\AVG\AVG2013\avgmfapx.exe FirewallRules: [{6FDD09DF-2AA8-4C27-912D-F884522B89D2}] => (Allow) C:\Program Files (x86)\AVG\AVG2013\avgmfapx.exe FirewallRules: [{5CF5B394-5F4A-4A96-9E62-05C1E63BE4E1}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgmfapx.exe FirewallRules: [{BEB6D0F4-69C3-4A83-9AF0-54A1AEE83814}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgmfapx.exe FirewallRules: [{F8883C2F-171C-4FFD-9422-E58486D41221}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe FirewallRules: [{3B25487C-EB7E-4C60-98FC-3324F9848BE1}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe FirewallRules: [{CCF8AC7A-0119-42D7-A67E-1A6CA0656801}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe FirewallRules: [{5F082340-5123-462D-869B-D518AB85D892}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe CMD: ipconfig /flushdns Hosts: EmptyTemp: