Computer Support Forum

Amazon Assistant Removal

Question: Amazon Assistant Removal

Hi,

I have looked through a few forums on removing the Amazon Assistant virus but I still have not removed it from my machine. I'm continuously getting the blank, white pop-up. When I went to remove the program, the "uninstall" option is greyed out and I am unable to get into the actual file to delete it because it keeps saying that the file is open. I haven't been able to close the pop-up for long enough to remove the file. As I type this, the pop-up is coming up every 10-15 seconds. I just need this gone, it's getting to be too much and my machine is slowing down exponentially.

Here are the specifications of my machine.

Tech Support Guy System Info Utility version 1.0.0.4
OS Version: Microsoft Windows 10 Home, 64 bit
Processor: Intel(R) Core(TM) i5-6200U CPU @ 2.30GHz, Intel64 Family 6 Model 78 Stepping 3
Processor Count: 4
RAM: 3969 Mb
Graphics Card: Intel(R) HD Graphics 520, 1024 Mb
Hard Drives: C: 930 GB (812 GB Free);
Motherboard: Acer, Ironman_SK
Antivirus: Avast Antivirus, Enabled and Updated

I also went ahead and ran a scan on my computer with the FRST (x64) program I saw in many other replies. I will include both scans below.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-12-2017
Ran by Ethan Hughes (administrator) on HUGHES (06-12-2017 13:24:46)
Running from C:\Users\Ethan Hughes\Downloads
Loaded Profiles: Ethan Hughes (Available Profiles: Ethan Hughes)
Platform: Windows 10 Home Version 1709 16299.64 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxCUIService.exe
(Intel Corporation) C:\Windows\System32\IntelSSTAPO\ParameterService\ParameterService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Windows (R) Win 7 DDK provider) C:\Windows\System32\AdminService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
() C:\Program Files (x86)\Amazon\Amazon Assistant\amazonAssistantService.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(SweetLabs, Inc) C:\Users\Ethan Hughes\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\ePowerButton_NB.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALSvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxEM.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAgent.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
(Acer) C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALockHandler.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAdminAgent.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxext.exe
(Spotify Ltd) C:\Users\Ethan Hughes\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
() C:\Program Files (x86)\Acer\Care Center\ACCStd.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.9.604.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Spotify Ltd) C:\Users\Ethan Hughes\AppData\Roaming\Spotify\Spotify.exe
(Spotify Ltd) C:\Users\Ethan Hughes\AppData\Roaming\Spotify\Spotify.exe
(Spotify Ltd) C:\Users\Ethan Hughes\AppData\Roaming\Spotify\Spotify.exe
(Spotify Ltd) C:\Users\Ethan Hughes\AppData\Roaming\Spotify\Spotify.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVE.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSYNC.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16481560 2016-03-22] (Realtek Semiconductor)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [303928 2017-05-09] (Apple Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [253344 2017-11-15] (AVAST Software)
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKU\S-1-5-21-2008701448-1604200778-1345039759-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3102496 2017-10-30] (Valve Corporation)
HKU\S-1-5-21-2008701448-1604200778-1345039759-1001\...\Run: [Spotify] => C:\Users\Ethan Hughes\AppData\Roaming\Spotify\Spotify.exe [21076080 2017-11-25] (Spotify Ltd)
HKU\S-1-5-21-2008701448-1604200778-1345039759-1001\...\Run: [Spotify Web Helper] => C:\Users\Ethan Hughes\AppData\Roaming\Spotify\SpotifyWebHelper.exe [777840 2017-11-25] (Spotify Ltd)
Startup: C:\Users\Ethan Hughes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneDrive for Business.lnk [2016-11-02]
ShortcutTarget: OneDrive for Business.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVE.EXE (Microsoft Corporation)
Startup: C:\Users\Ethan Hughes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk [2017-03-15]
ShortcutTarget: Send to OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 136.227.1.10 136.227.1.11
Tcpip\..\Interfaces\{1ccf3959-5383-45dd-9959-899061e3c417}: [DhcpNameServer] 209.18.47.62 209.18.47.61
Tcpip\..\Interfaces\{a29e69c1-d24a-49c1-bea3-31d85ef81b05}: [DhcpNameServer] 136.227.1.10 136.227.1.11

Internet Explorer:
==================
HKU\S-1-5-21-2008701448-1604200778-1345039759-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer15.msn.com/?pc=ACTE
HKU\S-1-5-21-2008701448-1604200778-1345039759-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer15.msn.com/?pc=ACTE
SearchScopes: HKU\S-1-5-21-2008701448-1604200778-1345039759-1001 -> DefaultScope {B93593E2-3285-473F-8716-E7549854596E} URL =
SearchScopes: HKU\S-1-5-21-2008701448-1604200778-1345039759-1001 -> {B93593E2-3285-473F-8716-E7549854596E} URL =
BHO: Amazon Assistant -> {0ddcea2a-7b00-4349-8acb-af7ba6da251f} -> C:\WINDOWS\system32\mscoree.dll [2017-09-29] (Microsoft Corporation)
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2017-11-16] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2017-11-07] (Microsoft Corporation)
BHO-x32: Amazon Assistant -> {0ddcea2a-7b00-4349-8acb-af7ba6da251f} -> C:\WINDOWS\system32\mscoree.dll [2017-09-29] (Microsoft Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2017-11-06] (Microsoft Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2017-11-07] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-12-01] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-12-01] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-12-01] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-12-01] (Microsoft Corporation)

FireFox:
========
FF DefaultProfile: hbaf53of.default
FF ProfilePath: C:\Users\Ethan Hughes\AppData\Roaming\Mozilla\Firefox\Profiles\hbaf53of.default [2017-07-14]
FF Extension: (Amazon Assistant for Firefox) - C:\Users\Ethan Hughes\AppData\Roaming\Mozilla\Firefox\Profiles\hbaf53of.default\Extensions\[email protected] [2016-10-02] [Lagacy]
FF Extension: (Dashlane) - C:\Users\Ethan Hughes\AppData\Roaming\Mozilla\Firefox\Profiles\hbaf53of.default\Extensions\[email protected] [2016-10-17] [Lagacy]
FF Extension: (English (US) Language Pack) - C:\Users\Ethan Hughes\AppData\Roaming\Mozilla\Firefox\Profiles\hbaf53of.default\Extensions\[email protected] [2016-10-02] [Lagacy]
FF Extension: (Mozilla Partner Defaults) - C:\Users\Ethan Hughes\AppData\Roaming\Mozilla\Firefox\Profiles\hbaf53of.default\Extensions\[email protected] [2016-10-02] [Lagacy]
FF Extension: (Avast Online Security) - C:\Users\Ethan Hughes\AppData\Roaming\Mozilla\Firefox\Profiles\hbaf53of.default\Extensions\[email protected] [2017-11-15]
FF Extension: (No Name) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [not found]
FF Extension: (Amazon Assistant for Firefox) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\[email protected] [2016-05-04] [Lagacy]
FF Extension: (English (US) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\[email protected] [2016-05-04] [Lagacy]
FF Extension: (Mozilla Partner Defaults) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\[email protected] [2016-05-04] [Lagacy]
FF Plugin-x32: @Intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-08-24] (Intel Corporation)
FF Plugin-x32: @Intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-08-24] (Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2017-11-06] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2017-11-06] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.)

Chrome:
=======
CHR HomePage: Default -> hxxps://search-startpage.com/?s=acer&m=home&brw=ch
CHR StartupUrls: Default -> "hxxps://search-startpage.com/?s=acer&m=start&brw=ch","hxxps://webstart-page.com/?s=acer&m=start&brw=ch"
CHR Profile: C:\Users\Ethan Hughes\AppData\Local\Google\Chrome\User Data\Default [2017-12-06]
CHR Extension: (Slides) - C:\Users\Ethan Hughes\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-12]
CHR Extension: (Docs) - C:\Users\Ethan Hughes\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-12]
CHR Extension: (Google Drive) - C:\Users\Ethan Hughes\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-10-02]
CHR Extension: (YouTube) - C:\Users\Ethan Hughes\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-10-02]
CHR Extension: (Sheets) - C:\Users\Ethan Hughes\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-16]
CHR Extension: (Google Docs Offline) - C:\Users\Ethan Hughes\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-10-03]
CHR Extension: (AdBlock) - C:\Users\Ethan Hughes\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-12-06]
CHR Extension: (Cut the Rope) - C:\Users\Ethan Hughes\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkddaofiamhgfjmaccfcfpfolpgbeomj [2016-10-02]
CHR Extension: (Avast Online Security) - C:\Users\Ethan Hughes\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-10-09]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Ethan Hughes\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-21]
CHR Extension: (Gmail) - C:\Users\Ethan Hughes\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-10-02]
CHR Extension: (Chrome Media Router) - C:\Users\Ethan Hughes\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-11-15]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [pbjikboenpfhbbejgkoklgkhjpfogcam] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Amazon Assistant Service; C:\Program Files (x86)\Amazon\Amazon Assistant\amazonAssistantService.exe [105136 2017-10-04] ()
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-04-03] (Apple Inc.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7549928 2017-11-15] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [281416 2017-11-15] (AVAST Software)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2278616 2017-03-20] (Acer Incorporated)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8063664 2017-11-22] (Microsoft Corporation)
S2 Dashlane Upgrade Service; C:\Program Files (x86)\Dashlane\Upgrade\DashlaneUpgradeService.exe [83992 2017-08-23] (Dashlane, Inc.)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [976848 2016-01-14] (Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2016-02-05] (Intel Corporation) [File not signed]
R2 IntelSSTSvc; C:\WINDOWS\system32\IntelSSTAPO\ParameterService\ParameterService.exe [25928 2015-12-02] (Intel Corporation)
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-02-05] (Intel Corporation) [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [209184 2016-02-11] (Intel Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2123104 2017-11-16] (Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3002728 2017-11-16] (Electronic Arts)
R3 QALSvc; C:\Program Files\Acer\Acer Quick Access\QALSvc.exe [440224 2016-03-10] (Acer Incorporated)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [481696 2016-03-10] (Acer Incorporated)
R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [291232 2016-02-01] (acer)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [355304 2017-09-29] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [105944 2017-09-29] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [183584 2017-11-15] (AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdrivera.sys [321032 2017-11-15] (AVAST Software s.r.o.)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsha.sys [198968 2017-11-15] (AVAST Software s.r.o.)
R0 aswblog; C:\WINDOWS\System32\drivers\aswbloga.sys [343288 2017-11-15] (AVAST Software s.r.o.)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniva.sys [57728 2017-11-15] (AVAST Software s.r.o.)
S3 aswHwid; C:\WINDOWS\System32\drivers\aswHwid.sys [47008 2017-11-15] (AVAST Software)
R1 aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [32088 2017-02-07] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [148288 2017-11-15] (AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110376 2017-11-15] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [84416 2017-11-15] (AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [1026232 2017-11-15] (AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [455376 2017-11-15] (AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [203976 2017-11-15] (AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [364464 2017-11-15] (AVAST Software)
R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [21408 2016-03-10] (Acer Incorporated)
R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [14752 2016-03-10] (Acer Incorporated)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [935168 2015-11-18] (Realtek )
R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [769752 2015-12-17] (Realsil Semiconductor Corporation)
R3 SynRMIHID; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [57448 2015-10-22] (Synaptics Incorporated)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44608 2017-09-29] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [309144 2017-09-29] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [119192 2017-09-29] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-12-06 13:24 - 2017-12-06 13:24 - 000000000 ____D C:\Users\Ethan Hughes\Downloads\FRST-OlderVersion
2017-12-06 13:21 - 2017-12-06 13:21 - 000748192 _____ (TechGuy, Inc.) C:\Users\Ethan Hughes\Downloads\SysInfo.exe
2017-12-06 13:04 - 2017-12-06 13:05 - 000041430 _____ C:\Users\Ethan Hughes\Downloads\Addition.txt
2017-12-06 13:02 - 2017-12-06 13:25 - 000020426 _____ C:\Users\Ethan Hughes\Downloads\FRST.txt
2017-12-06 13:02 - 2017-12-06 13:24 - 000000000 ____D C:\FRST
2017-12-06 13:01 - 2017-12-06 13:24 - 002390528 _____ (Farbar) C:\Users\Ethan Hughes\Downloads\FRST64.exe
2017-12-06 01:01 - 2017-12-06 01:01 - 000000000 ____D C:\ProgramData\SWCUTemp
2017-12-05 13:35 - 2017-12-05 13:35 - 000014625 ____H C:\Users\Ethan Hughes\Documents\~WRL0426.tmp
2017-11-30 15:22 - 2017-12-01 17:10 - 000000000 ____D C:\Users\Ethan Hughes\Downloads\Geology Research Paper
2017-11-30 15:21 - 2017-11-30 15:21 - 001172761 _____ C:\Users\Ethan Hughes\Downloads\Topographic Map of Kanawha River.pdf
2017-11-30 14:24 - 2017-11-30 14:24 - 000188645 ____H C:\Users\Ethan Hughes\Documents\~WRL3425.tmp
2017-11-24 14:48 - 2017-12-06 01:01 - 000000510 _____ C:\WINDOWS\Tasks\Avast Driver Updater Startup.job
2017-11-24 14:48 - 2017-11-24 14:48 - 000003022 _____ C:\WINDOWS\System32\Tasks\Avast Driver Updater Startup
2017-11-24 14:47 - 2017-11-24 14:47 - 000002517 _____ C:\Users\Public\Desktop\Avast Driver Updater.lnk
2017-11-24 14:47 - 2017-11-24 14:47 - 000000000 ____D C:\Users\Public\Documents\Downloaded Installers
2017-11-24 14:47 - 2017-11-24 14:47 - 000000000 ____D C:\Users\Ethan Hughes\AppData\Local\AVAST Software
2017-11-24 14:47 - 2017-11-24 14:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Driver Updater
2017-11-24 14:47 - 2017-11-24 14:47 - 000000000 ____D C:\Program Files (x86)\Avast Driver Updater
2017-11-16 17:41 - 2017-11-16 17:50 - 000160452 _____ C:\WINDOWS\ntbtlog.txt
2017-11-16 17:41 - 2017-11-16 17:41 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2017-11-16 17:12 - 2017-11-16 17:12 - 000000000 ___HD C:\$AV_ASW
2017-11-16 17:09 - 2017-11-16 17:09 - 000000000 ____D C:\Users\Ethan Hughes\AppData\Local\DBG
2017-11-15 22:02 - 2017-11-15 21:58 - 000183584 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2017-11-15 22:01 - 2017-11-15 21:58 - 000365168 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2017-11-15 21:41 - 2017-11-15 21:41 - 000001228 _____ C:\Users\Public\Desktop\FIFA 17.lnk
2017-11-15 21:41 - 2017-11-15 21:41 - 000000000 ___HD C:\Program Files\Common Files\EAInstaller
2017-11-15 21:41 - 2017-11-15 21:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FIFA 17
2017-11-15 20:00 - 2017-10-25 04:11 - 017083904 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2017-11-15 20:00 - 2017-10-25 04:11 - 000336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicRuntimes.dll
2017-11-15 20:00 - 2017-10-25 04:09 - 021753344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2017-11-15 20:00 - 2017-10-25 03:56 - 000665600 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2017-11-15 20:00 - 2017-10-25 01:36 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2017-11-15 20:00 - 2017-10-24 23:30 - 004487968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2017-11-15 20:00 - 2017-10-24 23:29 - 002269080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2017-11-15 20:00 - 2017-10-24 23:29 - 001507736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2017-11-15 20:00 - 2017-10-24 23:27 - 006791472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2017-11-15 20:00 - 2017-10-24 23:27 - 001970520 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2017-11-15 20:00 - 2017-10-24 23:20 - 002717392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2017-11-15 20:00 - 2017-10-24 22:36 - 025246208 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2017-11-15 20:00 - 2017-10-24 22:28 - 004648528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2017-11-15 20:00 - 2017-10-24 22:27 - 001454568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2017-11-15 20:00 - 2017-10-24 22:27 - 001377080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2017-11-15 20:00 - 2017-10-24 22:27 - 001015008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2017-11-15 20:00 - 2017-10-24 22:22 - 006015200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2017-11-15 20:00 - 2017-10-24 22:22 - 002465848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2017-11-15 20:00 - 2017-10-24 22:16 - 023658496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2017-11-15 20:00 - 2017-10-24 22:15 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2017-11-15 20:00 - 2017-10-24 22:14 - 000541184 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2017-11-15 20:00 - 2017-10-24 22:13 - 013655552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2017-11-15 20:00 - 2017-10-24 22:12 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2017-11-15 20:00 - 2017-10-24 22:10 - 008099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2017-11-15 20:00 - 2017-10-24 22:10 - 004742144 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2017-11-15 20:00 - 2017-10-24 22:09 - 000812032 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2017-11-15 20:00 - 2017-10-24 22:08 - 002392576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2017-11-15 20:00 - 2017-10-24 22:08 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcSpecfc.dll
2017-11-15 20:00 - 2017-10-24 22:07 - 018914304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2017-11-15 20:00 - 2017-10-24 22:05 - 019339776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2017-11-15 20:00 - 2017-10-24 22:05 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2017-11-15 20:00 - 2017-10-24 22:01 - 012687360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2017-11-15 20:00 - 2017-10-24 22:01 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2017-11-15 20:00 - 2017-10-24 21:59 - 003679232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2017-11-15 20:00 - 2017-10-24 21:59 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2017-11-15 20:00 - 2017-10-24 21:57 - 006035968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2017-11-15 20:00 - 2017-10-20 09:17 - 002474584 _____ C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2017-11-15 19:27 - 2017-10-25 03:57 - 000956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
2017-11-15 19:27 - 2017-10-25 03:57 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2017-11-15 19:27 - 2017-10-24 23:41 - 000362176 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2017-11-15 19:27 - 2017-10-24 23:40 - 001634288 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2017-11-15 19:27 - 2017-10-24 23:40 - 000612760 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2017-11-15 19:27 - 2017-10-24 23:40 - 000269696 _____ C:\WINDOWS\system32\FaceProcessorCore.dll
2017-11-15 19:27 - 2017-10-24 23:39 - 007831248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2017-11-15 19:27 - 2017-10-24 23:39 - 000479912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2017-11-15 19:27 - 2017-10-24 23:39 - 000285080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2017-11-15 19:27 - 2017-10-24 23:37 - 001954048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2017-11-15 19:27 - 2017-10-24 23:37 - 000610712 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2017-11-15 19:27 - 2017-10-24 23:36 - 008590744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2017-11-15 19:27 - 2017-10-24 23:36 - 002400664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2017-11-15 19:27 - 2017-10-24 23:36 - 000187288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2017-11-15 19:27 - 2017-10-24 23:34 - 002573208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2017-11-15 19:27 - 2017-10-24 23:34 - 000839928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll
2017-11-15 19:27 - 2017-10-24 23:34 - 000710920 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2017-11-15 19:27 - 2017-10-24 23:32 - 000559512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2017-11-15 19:27 - 2017-10-24 23:32 - 000147864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2017-11-15 19:27 - 2017-10-24 23:31 - 000436120 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2017-11-15 19:27 - 2017-10-24 23:31 - 000045464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2017-11-15 19:27 - 2017-10-24 23:30 - 000555416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2017-11-15 19:27 - 2017-10-24 23:29 - 000603920 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2017-11-15 19:27 - 2017-10-24 23:28 - 001170008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2017-11-15 19:27 - 2017-10-24 23:27 - 001426152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2017-11-15 19:27 - 2017-10-24 23:27 - 000374032 _____ (Microsoft Corporation) C:\WINDOWS\system32\vac.exe
2017-11-15 19:27 - 2017-10-24 23:24 - 000428952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2017-11-15 19:27 - 2017-10-24 22:52 - 001615720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2017-11-15 19:27 - 2017-10-24 22:50 - 001528904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2017-11-15 19:27 - 2017-10-24 22:30 - 005615968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2017-11-15 19:27 - 2017-10-24 22:30 - 000354200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2017-11-15 19:27 - 2017-10-24 22:28 - 001246432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2017-11-15 19:27 - 2017-10-24 22:28 - 000982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2017-11-15 19:27 - 2017-10-24 22:24 - 000506256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2017-11-15 19:27 - 2017-10-24 22:19 - 003670016 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2017-11-15 19:27 - 2017-10-24 22:19 - 000097792 _____ C:\WINDOWS\system32\runexehelper.exe
2017-11-15 19:27 - 2017-10-24 22:18 - 000975872 _____ C:\WINDOWS\system32\FaceProcessor.dll
2017-11-15 19:27 - 2017-10-24 22:18 - 000328192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2017-11-15 19:27 - 2017-10-24 22:18 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll
2017-11-15 19:27 - 2017-10-24 22:18 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2017-11-15 19:27 - 2017-10-24 22:16 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManager.dll
2017-11-15 19:27 - 2017-10-24 22:16 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys
2017-11-15 19:27 - 2017-10-24 22:14 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdrleakdiag.exe
2017-11-15 19:27 - 2017-10-24 22:13 - 002972672 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2017-11-15 19:27 - 2017-10-24 22:12 - 001015296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2017-11-15 19:27 - 2017-10-24 22:12 - 000599040 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2017-11-15 19:27 - 2017-10-24 22:12 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2017-11-15 19:27 - 2017-10-24 22:11 - 000768512 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll
2017-11-15 19:27 - 2017-10-24 22:10 - 001167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2017-11-15 19:27 - 2017-10-24 22:09 - 002862080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2017-11-15 19:27 - 2017-10-24 22:09 - 002106368 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2017-11-15 19:27 - 2017-10-24 22:09 - 001806336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2017-11-15 19:27 - 2017-10-24 22:08 - 002905600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2017-11-15 19:27 - 2017-10-24 22:08 - 002781696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2017-11-15 19:27 - 2017-10-24 22:08 - 002633216 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2017-11-15 19:27 - 2017-10-24 22:08 - 001667584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2017-11-15 19:27 - 2017-10-24 22:08 - 000654848 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2017-11-15 19:27 - 2017-10-24 22:08 - 000465408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2017-11-15 19:27 - 2017-10-24 22:07 - 003478016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2017-11-15 19:27 - 2017-10-24 22:07 - 001485824 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2017-11-15 19:27 - 2017-10-24 22:07 - 000685056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2017-11-15 19:27 - 2017-10-24 22:07 - 000372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll
2017-11-15 19:27 - 2017-10-24 22:07 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CapabilityAccessManagerClient.dll
2017-11-15 19:27 - 2017-10-24 22:04 - 000124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
2017-11-15 19:27 - 2017-10-24 22:04 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdrleakdiag.exe
2017-11-15 19:27 - 2017-10-24 22:03 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2017-11-15 19:27 - 2017-10-24 22:02 - 000591872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll
2017-11-15 19:27 - 2017-10-24 21:58 - 002467840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2017-11-15 19:27 - 2017-10-24 21:58 - 001322496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2017-11-15 19:27 - 2017-10-24 21:58 - 001280000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2017-11-15 19:27 - 2017-10-24 21:55 - 002864640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2017-11-15 19:27 - 2017-10-21 07:25 - 003313968 _____ C:\WINDOWS\system32\Windows.Mirage.dll
2017-11-15 19:27 - 2017-10-20 00:08 - 000339968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2017-11-15 19:26 - 2017-10-24 22:18 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2017-11-15 19:26 - 2017-10-24 22:18 - 000056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcSpecfc.dll
2017-11-15 19:26 - 2017-10-24 22:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2017-11-15 19:26 - 2017-10-24 22:06 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2017-11-15 19:26 - 2017-10-24 22:05 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcVSp1res.dll
2017-11-15 19:26 - 2017-10-24 21:54 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcVSp1res.dll
2017-11-15 13:54 - 2017-11-15 13:54 - 000002125 _____ C:\Users\Public\Desktop\FL Studio 12 (64bit).lnk
2017-11-15 13:54 - 2017-11-15 13:54 - 000002109 _____ C:\Users\Public\Desktop\FL Studio 12.lnk
2017-11-15 13:54 - 2017-11-15 13:54 - 000001215 _____ C:\Users\Ethan Hughes\Desktop\ASIO4ALL v2 Instruction Manual.lnk
2017-11-15 13:54 - 2017-11-15 13:54 - 000000000 ____D C:\Users\Ethan Hughes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2
2017-11-15 13:54 - 2017-11-15 13:54 - 000000000 ____D C:\Program Files\Common Files\VST2
2017-11-15 13:54 - 2017-11-15 13:54 - 000000000 ____D C:\Program Files\Common Files\Propellerhead Software
2017-11-15 13:54 - 2017-11-15 13:54 - 000000000 ____D C:\Program Files (x86)\VstPlugins
2017-11-15 13:54 - 2017-11-15 13:54 - 000000000 ____D C:\Program Files (x86)\ASIO4ALL v2
2017-11-15 13:53 - 2017-11-15 13:53 - 000000000 ____D C:\Users\Ethan Hughes\Documents\Image-Line
2017-11-15 13:53 - 2017-11-15 13:53 - 000000000 ____D C:\Users\Ethan Hughes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
2017-11-15 13:53 - 2017-11-15 13:53 - 000000000 ____D C:\Users\Ethan Hughes\AppData\Roaming\Image-Line
2017-11-15 13:53 - 2017-11-15 13:53 - 000000000 ____D C:\Program Files\Image-Line
2017-11-15 13:52 - 2017-11-15 13:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image-Line
2017-11-15 13:44 - 2017-11-15 13:54 - 000000000 ____D C:\Program Files (x86)\Image-Line
2017-11-15 11:41 - 2017-11-15 11:57 - 702580464 _____ (Image-Line) C:\Users\Ethan Hughes\Downloads\flstudio_12.5.1.5.exe
2017-11-14 00:23 - 2017-11-14 00:23 - 000003388 _____ C:\WINDOWS\System32\Tasks\AcerCloud
2017-11-12 23:33 - 2017-11-11 07:56 - 000121304 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHdsKe.sys
2017-11-10 13:12 - 2017-12-02 21:43 - 000000000 ____D C:\WINDOWS\Minidump
2017-11-10 00:24 - 2017-11-10 00:29 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2017-11-10 00:22 - 2017-11-10 00:24 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2017-11-10 00:22 - 2017-11-10 00:22 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2017-11-10 00:20 - 2017-11-10 00:20 - 005906264 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 002869248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 001822208 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 001664000 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 001641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 001587200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 001559552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 001554216 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 001547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 001470976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 001463856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 001436432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 001323840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 001261864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 001200024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2017-11-10 00:20 - 2017-11-10 00:20 - 001053592 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2017-11-10 00:20 - 2017-11-10 00:20 - 000925184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2017-11-10 00:20 - 2017-11-10 00:20 - 000739696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000726016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2017-11-10 00:20 - 2017-11-10 00:20 - 000677280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2017-11-10 00:20 - 2017-11-10 00:20 - 000665088 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000649304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2017-11-10 00:20 - 2017-11-10 00:20 - 000640512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswstr10.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000597160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000566272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2017-11-10 00:20 - 2017-11-10 00:20 - 000478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000464416 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000442880 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2017-11-10 00:20 - 2017-11-10 00:20 - 000418712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000373656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2017-11-10 00:20 - 2017-11-10 00:20 - 000353688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2017-11-10 00:20 - 2017-11-10 00:20 - 000246168 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000232344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2017-11-10 00:20 - 2017-11-10 00:20 - 000184984 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000139672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2017-11-10 00:20 - 2017-11-10 00:20 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000123520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000060824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\urscx01000.sys
2017-11-10 00:20 - 2017-11-10 00:20 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys
2017-11-10 00:20 - 2017-11-10 00:20 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys
2017-11-10 00:20 - 2017-11-10 00:20 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2017-11-10 00:20 - 2017-11-10 00:20 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjint40.dll
2017-11-10 00:17 - 2017-11-10 00:17 - 000000000 ____D C:\Program Files\Reference Assemblies
2017-11-10 00:17 - 2017-11-10 00:17 - 000000000 ____D C:\Program Files\MSBuild
2017-11-10 00:17 - 2017-11-10 00:17 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2017-11-10 00:17 - 2017-11-10 00:17 - 000000000 ____D C:\Program Files (x86)\MSBuild
2017-11-10 00:16 - 2017-09-28 18:50 - 001166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2017-11-10 00:16 - 2017-09-28 18:50 - 000124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2017-11-10 00:16 - 2017-09-28 18:50 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2017-11-10 00:16 - 2017-09-22 21:19 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2017-11-10 00:16 - 2017-09-22 21:19 - 000103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-11-10 00:16 - 2017-09-22 21:19 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2017-11-09 22:05 - 2017-11-09 22:05 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2017-11-09 22:03 - 2017-11-09 22:03 - 000000000 ___HD C:\Users\Ethan Hughes\MicrosoftEdgeBackups
2017-11-09 22:02 - 2017-11-09 22:02 - 000000020 ___SH C:\Users\Ethan Hughes\ntuser.ini
2017-11-09 22:02 - 2017-11-09 22:02 - 000000000 ___RD C:\Users\Ethan Hughes\3D Objects
2017-11-09 21:56 - 2017-11-09 21:56 - 000007623 _____ C:\WINDOWS\diagwrn.xml
2017-11-09 21:56 - 2017-11-09 21:56 - 000007623 _____ C:\WINDOWS\diagerr.xml
2017-11-09 21:55 - 2017-12-06 12:39 - 000004164 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{6CF3C14E-5180-4E5F-B2EE-129596D100CD}
2017-11-09 21:55 - 2017-12-06 12:37 - 000003506 _____ C:\WINDOWS\System32\Tasks\DashlaneUpgradeCheck
2017-11-09 21:55 - 2017-12-06 00:56 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-11-09 21:55 - 2017-12-05 12:54 - 000003374 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2008701448-1604200778-1345039759-1001
2017-11-09 21:55 - 2017-12-05 00:35 - 000004268 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update
2017-11-09 21:55 - 2017-11-15 12:17 - 000003416 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2017-11-09 21:55 - 2017-11-15 12:17 - 000003292 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2017-11-09 21:55 - 2017-11-14 00:17 - 000003508 _____ C:\WINDOWS\System32\Tasks\BacKGroundAgent
2017-11-09 21:55 - 2017-11-09 21:55 - 000004302 _____ C:\WINDOWS\System32\Tasks\Software Update Application
2017-11-09 21:55 - 2017-11-09 21:55 - 000003852 _____ C:\WINDOWS\System32\Tasks\ACCAgent
2017-11-09 21:55 - 2017-11-09 21:55 - 000003692 _____ C:\WINDOWS\System32\Tasks\AcerCMUpdateTask2.1.16258
2017-11-09 21:55 - 2017-11-09 21:55 - 000003352 _____ C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1475440989
2017-11-09 21:55 - 2017-11-09 21:55 - 000003118 _____ C:\WINDOWS\System32\Tasks\Intel PTT EK Recertification
2017-11-09 21:55 - 2017-11-09 21:55 - 000002820 _____ C:\WINDOWS\System32\Tasks\ACC
2017-11-09 21:55 - 2017-11-09 21:55 - 000002706 _____ C:\WINDOWS\System32\Tasks\UbtFrameworkService
2017-11-09 21:55 - 2017-11-09 21:55 - 000002328 _____ C:\WINDOWS\System32\Tasks\ACCBackgroundApplication
2017-11-09 21:55 - 2017-11-09 21:55 - 000002316 _____ C:\WINDOWS\System32\Tasks\App Explorer
2017-11-09 21:55 - 2017-11-09 21:55 - 000002256 _____ C:\WINDOWS\System32\Tasks\Power Button
2017-11-09 21:55 - 2017-11-09 21:55 - 000002180 _____ C:\WINDOWS\System32\Tasks\Quick Access
2017-11-09 21:55 - 2017-11-09 21:55 - 000002074 _____ C:\WINDOWS\System32\Tasks\FUBTrackingByPLD
2017-11-09 21:55 - 2017-11-09 21:55 - 000000000 ____D C:\WINDOWS\System32\Tasks\McAfee
2017-11-09 21:55 - 2017-11-09 21:55 - 000000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software
2017-11-09 21:55 - 2017-11-09 21:55 - 000000000 ____D C:\WINDOWS\System32\Tasks\Apple
2017-11-09 21:54 - 2017-12-06 01:03 - 001194770 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-11-09 21:44 - 2017-11-09 21:44 - 000000000 ____D C:\ProgramData\USOShared
2017-11-09 21:40 - 2017-11-09 21:40 - 000001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2017-11-09 21:38 - 2017-12-06 13:01 - 000000000 ____D C:\Users\Ethan Hughes\AppData\Local\Packages
2017-11-09 21:37 - 2017-12-06 00:54 - 000000000 ____D C:\Users\Ethan Hughes
2017-11-09 21:36 - 2017-09-29 08:41 - 002241024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2017-11-09 21:36 - 2017-02-07 21:47 - 000122384 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2017-11-09 21:36 - 2017-02-07 21:47 - 000113176 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2017-11-09 21:35 - 2017-11-09 21:35 - 000000000 ____D C:\WINDOWS\system32\IntelSSTAPO
2017-11-09 21:33 - 2017-12-06 12:34 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2017-11-09 21:32 - 2017-11-15 20:56 - 000416104 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-11-09 19:05 - 2017-11-10 00:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 3
2017-11-09 19:05 - 2017-11-09 19:05 - 000001483 _____ C:\Users\Public\Desktop\The Sims 3.lnk
2017-11-09 19:05 - 2006-09-28 16:05 - 003977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll
2017-11-09 19:05 - 2006-09-28 16:05 - 002414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll
2017-11-08 20:51 - 2017-11-09 19:12 - 000000000 ____D C:\Users\Ethan Hughes\Documents\Electronic Arts
2017-11-08 20:50 - 2017-11-15 17:26 - 000001427 _____ C:\Users\Public\Desktop\The Sims 4.lnk
2017-11-08 20:50 - 2017-11-10 00:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4
2017-11-08 20:50 - 2017-11-08 20:50 - 000000000 ____D C:\ProgramData\Electronic Arts
2017-11-08 20:50 - 2015-04-14 16:09 - 000447752 _____ (On2.com) C:\WINDOWS\SysWOW64\vp6vfw.dll
2017-11-08 20:24 - 2017-11-15 21:23 - 000000000 ____D C:\Program Files (x86)\Origin Games
2017-11-08 20:20 - 2017-11-22 17:07 - 000000000 ____D C:\Users\Ethan Hughes\AppData\Roaming\Origin
2017-11-08 20:12 - 2017-11-10 00:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2017-11-08 20:12 - 2017-11-08 20:12 - 000001070 _____ C:\Users\Public\Desktop\Origin.lnk
2017-11-08 20:10 - 2017-11-16 18:32 - 000000000 ____D C:\Program Files (x86)\Origin
2017-11-08 20:06 - 2017-11-18 14:30 - 000000000 ____D C:\ProgramData\Origin
2017-11-08 20:06 - 2017-11-08 20:24 - 000000000 ____D C:\Users\Ethan Hughes\AppData\Local\Origin
2017-11-08 20:06 - 2017-11-08 20:06 - 000000000 ____D C:\Users\Ethan Hughes\.QtWebEngineProcess
2017-11-08 20:06 - 2017-11-08 20:06 - 000000000 ____D C:\Users\Ethan Hughes\.Origin
2017-11-08 20:05 - 2017-11-08 20:06 - 062397632 _____ (Electronic Arts) C:\Users\Ethan Hughes\Downloads\OriginThinSetup.exe
2017-11-08 14:59 - 2017-11-09 21:58 - 000000000 ___DC C:\WINDOWS\Panther

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-12-06 13:18 - 2016-10-02 15:05 - 000000000 ____D C:\Users\Ethan Hughes\AppData\Roaming\Spotify
2017-12-06 13:01 - 2017-09-29 08:46 - 000000000 ___HD C:\Program Files\WindowsApps
2017-12-06 13:01 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\AppReadiness
2017-12-06 12:37 - 2016-10-02 15:05 - 000000000 ____D C:\Users\Ethan Hughes\AppData\Local\Spotify
2017-12-06 01:26 - 2016-10-02 17:49 - 000000000 ____D C:\WINDOWS\system32\MRT
2017-12-06 01:05 - 2017-10-16 14:21 - 127017032 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
2017-12-06 01:05 - 2016-10-02 17:49 - 127017032 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-12-06 01:05 - 2016-10-02 14:43 - 000000000 ____D C:\Users\Ethan Hughes\AppData\Local\Host App Service
2017-12-06 01:03 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization
2017-12-06 00:57 - 2016-10-02 14:46 - 000000000 __SHD C:\Users\Ethan Hughes\IntelGraphicsProfiles
2017-12-06 00:55 - 2017-09-29 03:45 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2017-12-05 13:07 - 2017-09-29 08:46 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-12-05 13:05 - 2016-06-21 04:33 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2017-12-05 12:56 - 2016-11-02 12:34 - 000000000 ___RD C:\Users\Ethan Hughes\OneDrive for Business
2017-12-05 12:54 - 2017-06-20 11:22 - 000002392 _____ C:\Users\Ethan Hughes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-12-05 12:54 - 2016-10-02 14:51 - 000000000 ___RD C:\Users\Ethan Hughes\OneDrive
2017-12-01 12:41 - 2016-10-20 14:08 - 000000000 ____D C:\Users\Ethan Hughes\AppData\Local\CrashDumps
2017-11-29 19:25 - 2017-01-30 13:53 - 000000000 ____D C:\Users\Ethan Hughes\Documents\Personal
2017-11-29 19:16 - 2017-09-29 08:44 - 000000000 ____D C:\WINDOWS\INF
2017-11-29 14:27 - 2016-05-04 22:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2017-11-22 17:09 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2017-11-19 12:27 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\rescache
2017-11-16 17:39 - 2017-01-31 10:15 - 000000000 ____D C:\Program Files (x86)\Steam
2017-11-16 17:17 - 2017-09-29 03:45 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2017-11-15 22:02 - 2017-06-09 07:23 - 000061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys
2017-11-15 22:02 - 2016-10-02 15:40 - 000455376 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2017-11-15 22:00 - 2016-10-02 15:39 - 000000000 ____D C:\ProgramData\AVAST Software
2017-11-15 21:58 - 2016-10-02 15:40 - 000455384 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys.151080137653103
2017-11-15 21:58 - 2016-10-02 15:40 - 000364464 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2017-11-15 21:58 - 2016-10-02 15:40 - 000203976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2017-11-15 21:58 - 2016-10-02 15:40 - 000148288 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2017-11-15 21:58 - 2016-10-02 15:40 - 000084416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2017-11-15 21:58 - 2016-10-02 15:40 - 000047008 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2017-11-15 21:57 - 2016-10-02 15:40 - 000110376 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2017-11-15 21:53 - 2016-10-02 15:40 - 001026232 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2017-11-15 21:52 - 2017-02-07 10:40 - 000343288 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbloga.sys
2017-11-15 21:52 - 2017-02-07 10:40 - 000321032 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys
2017-11-15 21:52 - 2017-02-07 10:40 - 000198968 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsha.sys
2017-11-15 21:52 - 2017-02-07 10:40 - 000057728 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbuniva.sys
2017-11-15 21:40 - 2016-05-04 22:02 - 000000000 ____D C:\ProgramData\Package Cache
2017-11-15 21:38 - 2016-05-04 22:02 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-11-15 20:53 - 2017-09-29 08:46 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2017-11-15 20:53 - 2017-09-29 08:46 - 000000000 ___SD C:\WINDOWS\system32\F12
2017-11-15 20:53 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\TextInput
2017-11-15 20:53 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2017-11-15 20:53 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2017-11-15 20:53 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\system32\appraiser
2017-11-15 20:53 - 2017-09-29 03:45 - 000000000 ____D C:\WINDOWS\system32\Dism
2017-11-15 20:01 - 2017-09-29 08:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2017-11-14 00:23 - 2016-05-04 22:01 - 000000000 ____D C:\Program Files (x86)\Acer
2017-11-14 00:20 - 2016-10-02 14:48 - 000000000 ____D C:\Users\Ethan Hughes\AppData\Local\clear.fi
2017-11-14 00:16 - 2016-05-04 22:46 - 000000000 ___HD C:\OEM
2017-11-13 23:39 - 2016-10-02 15:02 - 000002276 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-11-13 23:39 - 2016-10-02 15:02 - 000002264 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-11-10 12:23 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\appcompat
2017-11-10 00:32 - 2017-09-29 08:46 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2017-11-10 00:29 - 2017-09-29 08:49 - 000000000 ____D C:\WINDOWS\Setup
2017-11-10 00:29 - 2017-09-29 08:46 - 000000000 __RHD C:\Users\Public\Libraries
2017-11-10 00:29 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\system32\spool
2017-11-10 00:29 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\system32\NDF
2017-11-10 00:29 - 2017-09-29 08:46 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2017-11-10 00:29 - 2017-06-13 09:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2017-11-10 00:29 - 2017-05-23 14:10 - 000000000 ____D C:\Program Files\UNP
2017-11-10 00:29 - 2017-01-31 10:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2017-11-10 00:29 - 2017-01-15 13:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Finale NotePad 2012
2017-11-10 00:29 - 2016-10-26 17:21 - 000000000 ____D C:\Program Files\Intel
2017-11-10 00:29 - 2016-10-02 14:41 - 000000000 ____D C:\WINDOWS\oem
2017-11-10 00:29 - 2016-07-16 06:47 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2017-11-10 00:29 - 2016-06-21 06:22 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 12
2017-11-10 00:29 - 2016-06-21 06:07 - 000000000 ____D C:\WINDOWS\system32\ihvmanager
2017-11-10 00:29 - 2016-06-21 04:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools
2017-11-10 00:29 - 2016-05-04 22:01 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2017-11-10 00:25 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\system32\oobe
2017-11-10 00:24 - 2016-10-26 17:19 - 000000000 ____D C:\Program Files\Realtek
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\zu-ZA
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\yo-NG
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\xh-ZA
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\wo-SN
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\uz-Latn-UZ
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\tn-ZA
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\tk-TM
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ti-ET
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\tg-Cyrl-TJ
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\sw-KE
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-RS
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-BA
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\si-LK
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\sd-Arab-PK
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\rw-RW
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\quc-Latn-GT
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\prs-AF
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-Arab-PK
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\nso-ZA
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\mn-MN
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ky-KG
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ku-Arab-IQ
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ig-NG
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ha-Latn-NG
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\chr-CHER-US
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES-valencia
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\bs-Latn-BA
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-BD
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\az-Latn-AZ
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN
2017-11-10 00:21 - 2017-09-29 09:42 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET
2017-11-1

Relevance 100%
Preferred Solution: Amazon Assistant Removal

I recommend downloading and running Reimage. It's a computer repair tool that has been proven to identify and fix many Windows problems with a high level of success.

I've used it in the past to identify and fix everything from blue screens (BSOD's), ActiveX errors, corrupt files and processes, dll/exe/sys errors, recover lost memory, Windows update problems, defragging, malware removal etc.

You can download it direct from this link http://downloadreimage.com/download.php. (This link will automatically start a download of Reimage that you can save to your computer.)

Answer: Amazon Assistant Removal

Here is the additional scan:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-12-2017
Ran by Ethan Hughes (06-12-2017 13:26:14)
Running from C:\Users\Ethan Hughes\Downloads
Windows 10 Home Version 1709 16299.64 (X64) (2017-11-10 02:58:41)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================

Administrator (S-1-5-21-2008701448-1604200778-1345039759-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2008701448-1604200778-1345039759-503 - Limited - Disabled)
Ethan Hughes (S-1-5-21-2008701448-1604200778-1345039759-1001 - Administrator - Enabled) => C:\Users\Ethan Hughes
Guest (S-1-5-21-2008701448-1604200778-1345039759-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-2008701448-1604200778-1345039759-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

abFiles (HKLM-x32\...\{13885028-098C-4799-9B71-27DAC96502D5}) (Version: 2.03.2003 - Acer Incorporated)
abPhoto (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 4.00.2001.1 - Acer Incorporated)
Acer Configuration Manager (HKLM-x32\...\{414D554E-4453-454E-0201-000000016258}) (Version: 2.1.16258 - Acer)
Acer Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 3.12.2006 - Acer Incorporated)
Acer Quick Access (HKLM\...\{8BBF04F1-C68A-441C-B5EF-446EE9960EAF}) (Version: 2.01.3003 - Acer Incorporated)
Acer UEIP Framework (HKLM\...\{12A718F2-2357-4D41-9E1F-18583A4745F7}) (Version: 3.01.3001 - Acer Incorporated)
Amazon Assistant (HKLM-x32\...\{EDA2A064-F600-47BA-9EBA-58BE807BF6D2}) (Version: 10.17.0926 - Amazon) <==== ATTENTION
AOP Framework (HKLM-x32\...\{4A37A114-702F-4055-A4B6-16571D4A5353}) (Version: 3.25.2001.0 - Acer Incorporated)
App Explorer (HKU\S-1-5-21-2008701448-1604200778-1345039759-1001\...\Host App Service) (Version: 0.273.2.476 - SweetLabs)
Apple Application Support (32-bit) (HKLM-x32\...\{E92BB800-BCC5-4C25-8102-AC2C3B7C7C1E}) (Version: 5.5 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{9C912B1E-06DD-43EF-BB2B-45CB2C88BAAE}) (Version: 5.5 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{0A596141-97D5-45FA-9281-98DFAF48D579}) (Version: 10.3.2.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{52D87F32-70E4-4348-8148-C0B9F35B1314}) (Version: 2.3.0.177 - Apple Inc.)
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.14 - Michael Tippach)
Avast Driver Updater (HKLM-x32\...\{06E0CADE-89B2-4EFD-B0AF-0DDCE4400E70}) (Version: 2.2.3 - AVAST Software) Hidden
Avast Driver Updater (HKLM-x32\...\Avast Driver Updater) (Version: 2.2.3 - AVAST Software)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.8.2318 - AVAST Software)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Care Center (HKLM\...\{1AF41E84-3408-499A-8C93-8891F0612719}) (Version: 2.00.3029 - Acer Incorporated)
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.5917.02 - CyberLink Corp.)
Dashlane Upgrade Service (HKLM-x32\...\Dashlane Upgrade Service) (Version: 2.1.17.0 - Dashlane, Inc.)
DriverSetupUtility (HKLM\...\{2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6}) (Version: 1.00.3013 - Acer Incorporated)
FIFA 17 (HKLM-x32\...\{8C0DD062-B659-409C-9AB7-8EBD1D64D2EB}) (Version: 1.0.48.30259 - Electronic Arts)
Finale NotePad 2012 (HKLM-x32\...\Finale NotePad 2012) (Version: 2012..r1.5 - MakeMusic)
FL Studio 12 (HKLM-x32\...\FL Studio 12) (Version: - Image-Line)
FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version: - Image-Line)
Freedome VPN (source) (HKLM-x32\...\{83A4BF20-6745-437C-98D8-3C4B94D174EB}) (Version: 1.16.0612 - Acer)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 62.0.3202.94 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
IL Download Manager (HKLM-x32\...\IL Download Manager) (Version: - Image-Line)
Intel(R) Chipset Device Software (HKLM-x32\...\{fb610cea-ba50-4d4b-a717-cf025419035c}) (Version: 10.1.1.13 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.2.1183 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 21.20.16.4534 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.6.1.1030 - Intel Corporation)
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.63.1519.7 - Intel Corporation)
Intelģ Security Assist (HKLM-x32\...\{CCBE9F01-C2C3-469C-A508-2E23A7495E91}) (Version: 1.0.0.609 - Intel Corporation)
iTunes (HKLM\...\{F0C7385A-9D20-45F3-8101-05D383885180}) (Version: 12.6.1.25 - Apple Inc.)
Microsoft Office 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.8625.2139 - Microsoft Corporation)
Microsoft Office 365 ProPlus - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 16.0.8625.2139 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2008701448-1604200778-1345039759-1001\...\OneDriveSetup.exe) (Version: 17.3.7131.1115 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 (HKLM-x32\...\{323dad84-0974-4d90-a1c1-e006c7fdbb7d}) (Version: 14.0.24212.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Mozilla Firefox 56.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 56.0 (x86 en-US)) (Version: 56.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 45.0 - Mozilla)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.8625.2139 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.8625.2139 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.8625.2139 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) (Version: 16.0.8326.2107 - Microsoft Corporation) Hidden
Origin (HKLM-x32\...\Origin) (Version: 10.5.6.6235 - Electronic Arts, Inc.)
Qualcomm Atheros 11ac Wireless LAN Installer (HKLM-x32\...\{20CA507E-24AA-4741-87CF-CC1B250790B7}) (Version: 11.0.10299 - Qualcomm Atheros)
Qualcomm Atheros Bluetooth Installer (64) (HKLM\...\{628988B4-3FA5-4EA6-BAA3-DA640F6718BD}) (Version: 10.0.0.191 - Qualcomm Atheros)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.21287 - Realtek Semiconduct Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.6.1001.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7773 - Realtek Semiconductor Corp.)
SafeZone Stable 4.58.2552.909 (HKLM-x32\...\SafeZone 4.58.2552.909) (Version: 4.58.2552.909 - Avast Software) Hidden
Spotify (HKU\S-1-5-21-2008701448-1604200778-1345039759-1001\...\Spotify) (Version: 1.0.68.407.g6864aaaf - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
The Sims? 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.69.43.024017 - Electronic Arts Inc.)
The Sims? 3 High-End Loft Stuff (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 High-End Loft Stuff) (Version: 1.0.0.0 - Electronic Arts Inc.)
The Sims? 3 Late Night (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 Late Night) (Version: 1.0.0.0 - Electronic Arts Inc.)
The Sims? 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.36.104.1020 - Electronic Arts Inc.)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{17515373-7495-4995-9089-B7D6DF455C38}) (Version: 2.6.0.0 - Microsoft Corporation)
VirtualDJ 8 (HKLM-x32\...\{0EA0F8C9-7E82-4196-8B67-A42626194118}) (Version: 8.2.3456.0 - Atomix Productions)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2017-10-02] (Acer Incorporated)
ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2017-10-02] (Acer Incorporated)
ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2017-10-02] (Acer Incorporated)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-15] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-15] (AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-15] (AVAST Software)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-15] (AVAST Software)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxDTCM.dll [2017-02-07] (Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-15] (AVAST Software)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {06CBE828-B60A-464B-AA6E-48694627D746} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-02] (Google Inc.)
Task: {0F1F25F8-7715-4B0F-9567-3F602C616ADE} - System32\Tasks\ACCBackgroundApplication => C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [2017-05-24] ()
Task: {156174FF-0BBA-4B79-BFB6-FC222C4F0060} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [2017-03-20] (Acer Incorporated)
Task: {1D88610F-A18D-4233-BFC0-DDD1C0D56496} - System32\Tasks\DashlaneUpgradeCheck => net [Argument = start "Dashlane Upgrade Service"]
Task: {290C4C65-1EA9-48A4-88EC-82031A6AB1DD} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-08-14] (AVAST Software)
Task: {3B125365-E1EF-4E7F-8431-9A9C20E61C0F} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [2016-03-10] (Acer Incorporated)
Task: {4E4CBBCC-F0E5-48D2-9D9C-200292E8FFE8} - System32\Tasks\Power Button => C:\Program Files\Acer\Acer Quick Access\ePowerButton_NB.exe [2016-03-10] (Acer Incorporated)
Task: {506CCE0D-0246-4180-91EE-46B3FC848281} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-11-15] (AVAST Software)
Task: {549B7FAF-4891-4603-B2C9-472755E0F1D5} - System32\Tasks\SafeZone scheduled Autoupdate 1475440989 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-08-04] (Avast Software)
Task: {65B0C647-3D5A-48F3-91F2-BE9F82BC9ABC} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [2016-01-20] ()
Task: {775466C5-E7C9-41AB-AB24-CB9F754192AD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-02] (Google Inc.)
Task: {7BBB146B-7ED3-47E7-8960-4B7A8E647985} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [2016-03-10] (Acer Incorporated)
Task: {7C2B7DF1-6732-4B62-A94C-7E0CDF12A0DF} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-29] ()
Task: {83E1EC89-6866-4956-AA89-A97A0EE66B22} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-11-22] (Microsoft Corporation)
Task: {88A1E353-4F27-4893-8687-694D851152E3} - System32\Tasks\App Explorer => C:\Users\Ethan Hughes\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe [2017-11-20] (SweetLabs, Inc) <==== ATTENTION
Task: {8AA589EA-356C-4284-903D-325565BCD81B} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [2016-01-14] (Intel(R) Corporation)
Task: {A52D5828-3B08-4595-A94A-1498D09FC27A} - System32\Tasks\FUBTrackingByPLD => C:\OEM\Preload\FubTracking\FubTracking.exe [2015-05-14] ()
Task: {B4D32C25-71FF-4B18-A0A2-B0953E892BDF} - System32\Tasks\AcerCMUpdateTask2.1.16258 => C:\Program Files (x86)\Acer\Amundsen\2.1.16258\AWC.exe [2016-09-20] ()
Task: {CDDB08B6-CBDB-4E90-A18F-58E8990A45B3} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-02-14] (Apple Inc.)
Task: {D6036386-5AC6-496B-AE04-19A10731B3D8} - System32\Tasks\AcerCloud => C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe [2017-10-02] (Acer)
Task: {DC911A9F-8342-4A4E-B361-210CFF970748} - System32\Tasks\UbtFrameworkService => C:\Program Files\Acer\User Experience Improvement Program\Framework\TriggerFramework.exe [2014-03-12] (TODO: <Company name>)
Task: {E1823288-ABD2-4F73-9023-D1FE6B62871B} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {E8D41A8B-BC0B-48CF-A797-944D89EACB1E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2017-12-01] (Microsoft Corporation)
Task: {E94A9A9F-3C59-4C1F-90CC-E398E79091B3} - System32\Tasks\Avast Driver Updater Startup => C:\Program Files (x86)\Avast Driver Updater\Avast Driver Updater.exe [2017-09-27] (AVAST Software)
Task: {EE69AFAA-A067-4244-B7D9-085CB7BC2F8E} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2017-12-01] (Microsoft Corporation)
Task: {EF2B7030-8BE8-4630-AECA-37BCF366E6AA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2017-12-01] (Microsoft Corporation)
Task: {F1770A8C-D9E4-4E62-ADEA-E0C75741AC14} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-29] ()
Task: {F522DA47-E95E-4844-9B65-EBE5CED19100} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-11-22] (Microsoft Corporation)
Task: {F53D4274-6AC2-4980-AB2E-6C572658FF32} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [2017-05-24] ()

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Avast Driver Updater Startup.job => C:\Program Files (x86)\Avast Driver Updater\Avast Driver Updater.exe
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)
Shortcut: C:\Users\Ethan Hughes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ\Online Help.lnk -> hxxp://www.virtualdj.com/wiki
Shortcut: C:\Users\Ethan Hughes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ\www.virtualdj.com.lnk -> hxxp://www.virtualdj.com

==================== Loaded Modules (Whitelisted) ==============

2017-09-29 08:41 - 2017-09-29 08:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2015-12-02 17:37 - 2015-12-02 17:37 - 005570064 _____ () C:\WINDOWS\system32\IntelSSTAPO\ParameterService\libxml2-2.dll
2016-09-01 17:12 - 2016-09-01 17:12 - 000092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2017-05-08 23:44 - 2017-05-08 23:44 - 001354040 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2017-10-04 12:06 - 2017-10-04 12:06 - 000105136 _____ () C:\Program Files (x86)\Amazon\Amazon Assistant\amazonAssistantService.exe
2016-10-02 15:29 - 2017-11-07 18:09 - 008931496 _____ () C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\1033\GrooveIntlResource.dll
2016-05-04 22:08 - 2015-05-08 12:41 - 000111872 _____ () C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext_x64.dll
2017-09-29 08:42 - 2017-09-29 09:43 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-09-29 08:42 - 2017-09-29 09:43 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-11-15 21:53 - 2017-11-15 21:53 - 000067408 _____ () C:\Program Files\AVAST Software\Avast\x64\module_lifetime.dll
2017-11-13 23:39 - 2017-11-10 04:57 - 004135768 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.94\libglesv2.dll
2017-11-13 23:39 - 2017-11-10 04:57 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.94\libegl.dll
2017-05-24 20:11 - 2017-05-24 20:11 - 004645168 _____ () C:\Program Files (x86)\Acer\Care Center\ACCStd.exe
2017-11-30 13:19 - 2017-11-30 13:20 - 000087040 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.9.604.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-11-30 13:19 - 2017-11-30 13:20 - 000202752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.9.604.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-09-22 15:14 - 2017-09-22 15:14 - 000202528 _____ () C:\Program Files (x86)\Acer\abPhoto\curllib.dll
2017-09-22 15:17 - 2017-09-22 15:17 - 000654072 _____ () C:\Program Files (x86)\Acer\abPhoto\sqlite3.dll
2017-09-22 15:17 - 2017-09-22 15:17 - 000641312 _____ () C:\Program Files (x86)\Acer\abPhoto\tag.dll
2017-09-22 15:16 - 2017-09-22 15:16 - 000119072 _____ () C:\Program Files (x86)\Acer\abPhoto\OpenLDAP.dll
2017-11-14 00:16 - 2017-11-14 00:16 - 000015064 _____ () C:\WINDOWS\assembly\GAC_MSIL\MyService\1.0.0.1__2dfa3f50f0bed57d\MyService.dll
2017-03-20 14:24 - 2017-03-20 14:24 - 000013016 _____ () C:\Program Files (x86)\Acer\AOP Framework\ServiceInterface.dll
2017-03-20 14:21 - 2017-03-20 14:21 - 000277856 _____ () C:\Program Files (x86)\Acer\AOP Framework\libcurl.dll
2017-10-02 14:56 - 2017-10-02 14:56 - 000202456 _____ () C:\Program Files (x86)\Acer\Acer Portal\curllib.dll
2017-10-02 14:56 - 2017-10-02 14:56 - 000119000 _____ () C:\Program Files (x86)\Acer\Acer Portal\OpenLDAP.dll
2017-12-05 12:53 - 2017-12-05 12:53 - 000102088 _____ () C:\Users\Ethan Hughes\AppData\Local\Microsoft\OneDrive\17.3.7131.1115\UpdateRingSettings.dll
2017-11-15 21:53 - 2017-11-15 21:53 - 000167096 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2017-11-15 21:53 - 2017-11-15 21:53 - 000059040 _____ () C:\Program Files\AVAST Software\Avast\module_lifetime.dll
2017-11-15 21:55 - 2017-11-15 21:56 - 067109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2017-11-15 21:53 - 2017-11-15 21:53 - 000237808 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll
2017-11-15 21:53 - 2017-11-15 21:53 - 000244584 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll
2017-11-15 21:52 - 2017-11-15 21:52 - 000235816 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
2016-02-11 19:47 - 2016-02-11 19:47 - 001243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2016-10-02 15:05 - 2017-11-25 00:44 - 068211824 _____ () C:\Users\Ethan Hughes\AppData\Roaming\Spotify\libcef.dll
2016-10-02 15:05 - 2017-11-25 00:44 - 003110512 _____ () C:\Users\Ethan Hughes\AppData\Roaming\Spotify\libglesv2.dll
2016-10-02 15:05 - 2017-11-25 00:44 - 000087152 _____ () C:\Users\Ethan Hughes\AppData\Roaming\Spotify\libegl.dll
2016-10-02 15:26 - 2017-11-07 18:09 - 008930992 _____ () C:\Program Files (x86)\Microsoft Office\Root\Office16\1033\GrooveIntlResource.dll
2016-10-02 15:29 - 2017-12-01 04:23 - 001452728 _____ () C:\Program Files (x86)\Microsoft Office\Root\Office16\ClientTelemetry.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-2008701448-1604200778-1345039759-1001\...\sharepoint.com -> hxxps://wutigers-myfiles.sharepoint.com

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-10-30 02:24 - 2015-10-30 02:21 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts
==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2008701448-1604200778-1345039759-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Ethan Hughes\Downloads\Flag_of_Cincinnati.svg.png
DNS Servers: 136.227.1.10 - 136.227.1.11
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKU\S-1-5-21-2008701448-1604200778-1345039759-1001\...\StartupApproved\Run: => "Steam"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{22BB775B-BB31-47C4-8542-AE4C6F9414A4}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\4.58.2552.909\SZBrowser.exe
FirewallRules: [{C2AAC4C9-C70D-43DD-B584-3E50E8D18205}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{D8E74072-1126-4F95-8D4F-45EC6FC1B4B6}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.607\SZBrowser.exe
FirewallRules: [{20821A04-9176-4D78-AF66-7346080DD27F}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{1EC48AB6-1A4B-4C94-A414-0532FD32AAF7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{DB4E6399-CFE5-4D4E-9BB0-EDD5CAC30F35}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{BE8006F1-2BAB-471A-87BA-1536D85A4970}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe
FirewallRules: [{8A908535-D094-46FF-A05D-84B2C267D421}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe
FirewallRules: [{8AEBCE84-CB3E-4526-AC8D-9F9CE4E92B97}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spore\SporeBin\SporeApp.exe
FirewallRules: [{EC614104-6BB2-4F2B-892F-3D1F0537D323}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spore\SporeBin\SporeApp.exe
FirewallRules: [{22BA3E5B-0D8C-4228-A31E-2C1F517BFD65}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PapersPlease\PapersPlease.exe
FirewallRules: [{4B2ADADD-C3AC-44C1-8EAD-51F2664BF56D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PapersPlease\PapersPlease.exe
FirewallRules: [{6D5FAE70-E05A-46A2-9DB7-8942727215CE}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{132B0616-130A-49E8-BAD8-CC3D6EFE4972}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{416C4B83-16F1-41FF-A5C7-CBC48BB0AA90}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{CF9C4258-A86F-4CEB-8D39-5105FD0CAD4D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{B27F4AF1-4639-497C-ABCC-7C8A1F09F07E}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{FF3336F4-A972-4715-B130-8D09F2F4B6D6}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{6E47E648-1BBC-420B-BBD4-707245726D3D}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{6E938509-FE08-4DAD-A680-25EAB5BD9B39}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{8FE46E36-6097-46C9-B94D-04C3771C6564}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{A39A0342-6DFE-42C3-A648-76B724BF1BF3}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{2D3CD0F4-EA05-400A-826E-A08212D9CA3A}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
FirewallRules: [{B3339414-F9A7-450A-97F2-F739D85297E3}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
FirewallRules: [{CA7DB177-8790-411D-8BC7-CB1B6BF806FD}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe
FirewallRules: [{1375A0AA-74D5-4730-B801-85A386BE5CB5}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe
FirewallRules: [{3F5A4D9E-CB9B-4F94-882B-2FBE793FCC83}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe
FirewallRules: [{CF1D77F8-5C09-4F16-B39E-EF7FF7328110}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe
FirewallRules: [{539C7237-3AC4-40A8-9A7E-0D55345A6E27}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe
FirewallRules: [{1A4B3766-2131-47AE-BCC9-5301BDC6444B}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe
FirewallRules: [{DDB1AAA5-267B-4C25-B086-4D306497AB15}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
FirewallRules: [{93192B3B-2168-45B1-BA04-7EEE80B4D42F}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe
FirewallRules: [{B17CE905-2CA3-4F74-985F-D6D49D8C9B38}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe
FirewallRules: [{EFF44C21-37BC-44AB-8388-E0DB357C9CB7}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe
FirewallRules: [{1A8D5D81-E56A-41DA-ADC4-EF08661352D8}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{8A1F2DD3-7B02-4C39-B0D2-3174AE7715D6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{3AB2E93A-4ABF-43FA-BD9E-8E7F1B8FA76E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{798F9B8A-5658-4227-B43B-7237FE9FB1A6}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [TCP Query User{5411C2AC-0E76-48FD-ACBE-72F7A923E5A6}C:\users\ethan hughes\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\ethan hughes\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{CEA65999-C46D-475C-89E9-250058C3B798}C:\users\ethan hughes\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\ethan hughes\appdata\roaming\spotify\spotify.exe
FirewallRules: [{64642017-3E71-4F4E-90DE-624386FED63F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{ED7F0133-C754-46A2-8270-792E07278ADE}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe
FirewallRules: [{7EBC514A-EEAE-4FCE-B889-ED21D780A4EA}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe
FirewallRules: [{C286D835-CD83-49A2-8D94-0B0741651517}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe
FirewallRules: [{0298D661-56EF-4AEB-885E-475904252A14}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe
FirewallRules: [{7584E93F-5E9E-4051-B064-5C409C834A6A}] => (Allow) C:\Program Files (x86)\Origin Games\FIFA 17\FIFASetup\fifaconfig.exe
FirewallRules: [{80CEC651-C60A-4ED9-9377-798C3A72A4FF}] => (Allow) C:\Program Files (x86)\Origin Games\FIFA 17\FIFASetup\fifaconfig.exe

==================== Restore Points =========================

06-12-2017 01:03:55 Windows Update

==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================

Application errors:
==================
Error: (12/06/2017 01:18:22 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 80453

Error: (12/06/2017 01:18:22 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 80453

Error: (12/06/2017 01:18:22 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (12/06/2017 01:17:07 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 5672

Error: (12/06/2017 01:17:07 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 5672

Error: (12/06/2017 01:17:07 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (12/06/2017 01:17:06 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 4594

Error: (12/06/2017 01:17:06 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 4594

Error: (12/06/2017 01:17:06 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (12/06/2017 01:17:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 3500
System errors:
=============
Error: (12/06/2017 12:39:04 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (12/06/2017 12:37:40 PM) (Source: DCOM) (EventID: 10016) (User: HUGHES)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user HUGHES\Ethan Hughes SID (S-1-5-21-2008701448-1604200778-1345039759-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (12/06/2017 01:11:44 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (12/06/2017 01:02:05 AM) (Source: DCOM) (EventID: 10016) (User: HUGHES)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user HUGHES\Ethan Hughes SID (S-1-5-21-2008701448-1604200778-1345039759-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (12/06/2017 01:02:00 AM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: The Delivery Optimization service hung on starting.

Error: (12/06/2017 12:59:58 AM) (Source: DCOM) (EventID: 10016) (User: HUGHES)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user HUGHES\Ethan Hughes SID (S-1-5-21-2008701448-1604200778-1345039759-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (12/06/2017 12:57:55 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the iphlpsvc service.

Error: (12/06/2017 12:57:24 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the iphlpsvc service.

Error: (12/06/2017 12:57:10 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Windows Presentation Foundation Font Cache 3.0.0.0 service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion.

Error: (12/06/2017 12:57:09 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the FontCache3.0.0.0 service to connect.
CodeIntegrity:
===================================
Date: 2017-12-06 13:18:29.948
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2017-12-06 13:18:29.947
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2017-12-06 13:18:29.793
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2017-12-06 13:18:29.791
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2017-12-06 13:18:29.297
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2017-12-06 13:18:29.294
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2017-12-06 13:18:29.260
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2017-12-06 13:18:29.259
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2017-12-06 13:18:24.508
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2017-12-06 13:18:24.499
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================

Processor: Intel(R) Core(TM) i5-6200U CPU @ 2.30GHz
Percentage of memory in use: 78%
Total physical RAM: 3969.9 MB
Available physical RAM: 871.91 MB
Total Virtual: 7169.9 MB
Available Virtual: 2964.78 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:930.91 GB) (Free:812.75 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 97C9FAD4)

Partition: GPT.

==================== End of Addition.txt ============================

If I could get some help in easy to follow steps, it would be super appreciated! I'm just trying to get through finals week!

Best,

Ethan

1 more replies
Relevance 88.15%

i original posted in security - as i dont have the machine
but will probably connect tomorrow

however, as i only really want advice from the experts here - i moved to the virus forum

I have just been helping a friend remotely on a laptop - windows 10 remove amazon assistant
which keeps popping up on the screen

usually adwarecleaner followed by malwarebytes gets rid of these

Adwarecleaner - listed it as an optional PUP and i made sure it was checked - also checked other amazon items WOW - etc
and removed and rebooted

Still came up

ran adwarecleaner again
this time it had removed other items - except amazon button1 (which is amazon assistant)
so removed it again and rebooted

still came up

ran malwarebytes

listed as a threat - quarantined
rebooted

still there

how do we get of this think
ALL google searches appear to indicate that Malwarebytes & Adwarecleaner - should remove
 

More replies
Relevance 76.67%

This program called Program Files (x86)\Amazon\Amazon Assistant\aa.hta keeps popping up and I can't uninstall it and I tried on programs and features, but I never even downloaded Amazon Assistant (I think) because there is no uninstall option. How do I get rid of it?
 

More replies
Relevance 67.65%

This window keeps popping up. I tried to uninstall Amazon assistant but it won't uninstall.

Loaded Farbar Recovery but it seems to show nothing wrong.

Help this window popping up is doing my head in.
 

More replies
Relevance 66.83%

I noticed an amazon assistant on my lapy a few days ago. Didn't give much tought to it at the time.
Now i have a windows popping up like every 2 second named amazon assistant.hta
Tried uninstalling from programmes and features but the option is grayed out. Can anyone guide me as how to remove this??
 

More replies
Relevance 66.83%

can someone please help me to remove this
here are the farbar logs

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 29-06-2017
Ran by pmcin (administrator) on LAPTOP-S2MJLQRH (28-06-2017 18:45:02)
Running from C:\Users\pmcin\Downloads
Loaded Profiles: pmcin (Available Profiles: pmcin)
Platform: Windows 10 Home Version 1607 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxCUIService.exe
(Intel Corporation) C:\Windows\System32\IntelSSTAPO\ParameterService\ParameterService.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avp.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Windows (R) Win 7 DDK provider) C:\Windows\System32\AdminService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\... Read more

Answer:amazon assistant aa hta virus

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-06-2017
Ran by pmcin (28-06-2017 18:46:21)
Running from C:\Users\pmcin\Downloads
Windows 10 Home Version 1607 (X64) (2016-08-26 04:02:27)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================

Administrator (S-1-5-21-2431516657-3315794798-938488331-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2431516657-3315794798-938488331-503 - Limited - Disabled)
Guest (S-1-5-21-2431516657-3315794798-938488331-501 - Limited - Disabled)
pmcin (S-1-5-21-2431516657-3315794798-938488331-1001 - Administrator - Enabled) => C:\Users\pmcin

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Kaspersky Internet Security (Enabled - Up to date) {86367591-4BE4-AE08-2FD9-7FCB8259CD98}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Kaspersky Internet Security (Enabled - Up to date) {3D579475-6DDE-A186-1569-44B9F9DE8725}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Kaspersky Internet Security (Enabled) {BE0DF4B4-018B-AF50-0486-D6FE7C8A8AE3}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

12 Labours of Hercule... Read more

1 more replies
Relevance 66.83%

I am getting a pop up window that says C:\Program Files(x86)\Amazon\Amazon Assistant\aa.hta and it consistently opens a new window every 30 seconds or so. How do I get rid of this? I'm thinking it must be some sort of virus.
---------------------------------------------------

Tech Support Guy System Info Utility version 1.0.0.4
OS Version: Microsoft Windows 10 Home, 64 bit
Processor: Intel(R) Core(TM) i5-6200U CPU @ 2.30GHz, Intel64 Family 6 Model 78 Stepping 3
Processor Count: 4
RAM: 3962 Mb
Graphics Card: Intel(R) HD Graphics 520, 1024 Mb
Hard Drives: C: 930 GB (853 GB Free);
Motherboard: Acer, Zoro_SL
Antivirus: Windows Defender, Disabled
 

More replies
Relevance 66.83%

I'm getting blank white boxes constantly.

I didn't download it intentionally.

I have read the other 8 threads on it here.

I'm running Windows 10.

When I tried to uninstall the program I found both modify and uninstall options were shaded grey and didn't work.

I saw that the other solutions involved downloading this link:

http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/

I was going to do that and run it and put the report in this message but windows defender wasn't happy about it.

I'm poised to run it and get the report if that is the next step and very thankful that people take their time to help out in this way.

(i see that the sysinfo says windows defender is disabled. it says it's protecting me so i dunno what is going on there)

Tech Support Guy System Info Utility version 1.0.0.4
OS Version: Microsoft Windows 10 Home, 64 bit
Processor: Intel(R) Core(TM) i5-5200U CPU @ 2.20GHz, Intel64 Family 6 Model 61 Stepping 4
Processor Count: 4
RAM: 8106 Mb
Graphics Card: Intel(R) HD Graphics 5500, 1024 Mb
Hard Drives: C: 917 GB (487 GB Free);
Motherboard: Type2 - Board Vendor Name1, Type2 - Board Product Name1
Antivirus: Windows Defender, Disabled
 

More replies
Relevance 66.83%

So first of all, English is not my main language so, sorry for my bad england ok?

I will be fast and right to the point but just to make things clear this is not a final fix for fully deleting the ''virus'' but to get rid of that pop up window all the time that seems to be strong enough to resist some of the best anti-viruses out there so here is the ****ing deal:

1: Press windows key + R and write ''services.msc''
2: Find the Amazon Assistant instance and right click it and go to proprieties(i think)
3: if you did it right you will notice that in one of the boxes it is set to ''automatic'', just change it to ''disabled'' and after it stop the service.
4: save clicking on the Ok button and then go to the task manager
5: find the Amazon Assistant exe and just finish it if possible.

Now you should notice that the annoying windows has gone and from there you can get time to find a tutorial to help you get rid of the Amazon Assistant files.

That's it, leave a comment if I helped you and if not also leave a comment and i will try to help if possible.
 

More replies
Relevance 66.83%

Also having issues with the amazon assistant box popping up every 5 seconds, driving me crazy. Are you able to help get rid of it? I tried uninstalling but wasn't able to so followed instructions from another post

I tried to copy and paste the FRST text but this thread wouldn't allow that many characters
 

More replies
Relevance 66.83%

For a while i've noticed that i had a program installed (amazon assistant), but i couldn't seem to remove it. I didn't notice any real problems, but since today something keeps popping up called amazon assistant/aa.hta
I tried to use IObit uninstaller to delete the program and it says it has deleted it but the file still keeps popping up every few seconds. Can anyone help me?
 

More replies
Relevance 66.01%

So first of all, English is not my main language so, sorry for my bad england ok?

I will be fast and right to the point but just to make things clear this is not a final fix for fully deleting the ''virus'' but to get rid of that pop up window all the time that seems to be strong enough to resist some of the best anti-viruses out there so here is the deal:

1: Press windows key + R and write ''services.msc''
2: Find the Amazon Assistant instance and right click it and go to proprieties(i think)
3: if you did it right you will notice that in one of the boxes it is set to ''automatic'', just change it to ''disabled'' and after it stop the service.
4: save clicking on the Ok button and then go to the task manager
5: find the Amazon Assistant exe and just finish it if possible.

Now you should notice that the annoying windows has gone and from there you can get time to find a tutorial to help you get rid of the Amazon Assistant files.

That's it, leave a comment if I helped you and if not also leave a comment and i will try to help if possible.
 

Answer:How to Stop the Amazon Assistant aa.hta Service

6 more replies
Relevance 66.01%

Hello,

My computer was running very slow, and I decided to clean everything from my pc.
Unfortunately, I was reckless and deleted too much things.

I don't know what else happened, but now I keep getting pop-ups of a blank page saying C:\Program Files (x86)\Amazon\Amazon Assistant\aa.hta

I do not know what this is or what it means, but is is annoying and a little infuriating.

Please help,

Blue
 

Answer:Amazon Assistant Blank Page

15 more replies
Relevance 66.01%

Under control panel, in changing or uninstalling programs, I have attempted to uninstall amazon assistant. It goes into set-up mode and I follow that through, and although I have just signed in as administrator, it says I cannot uninstall amazon assistant until I sign in as administrator. Please help me get rid of this progam.













Solved!

Go to Solution.

Answer:Amazon assistant - Acer 704 desktop

Hi,Try Revo Uninstaller free:https://www.revouninstaller.com/revo_uninstaller_free_download.html

4 more replies
Relevance 66.01%

Hi All,
Any help would be greatly appreciated. I have tried uninstalling without any success !
 

More replies
Relevance 53.71%

Hi,I am having this problem - Helpassitant folder created in my document and settings folder, every time i reboot my computer.I have many problems because of this.. like slow booting up... freezing computer..Any help is really appreciatedThanks for you time and efforts in advance.Disha

Answer:Help Assistant Removal

Hello my name is Sempai and welcome to Bleeping Computer. *We apologize for the delay. Forum has been busy.* Please stay with me until I declare that your computer is clean as most users don't reply anymore once they found out that their computer is running smoothly, but absence of symptoms does not mean that a computer is free from infection.*It is important not to make any further changes or run any other tools unless instructed to. This may hinder the cleaning process of your machine.*Please be patient, all Bleeping Computer helpers are volunteers and have lives outside this forum.*You must reply within 5 days otherwise this topic will be closed.+++++++++++++++++++1. Download GMER Rootkit Scanner from here. Extract the contents of the zipped file to the desktop. Double click GMER.exe and if you are asked if you want to allow gmer.sys driver to load, please allow it to do so. If it gives you a warning about rootkit activity and asks if you want to run scan, please click on NO. In the right panel you will see several boxes that have been checked. Uncheck the following the following checkboxes: Sections IAT/EAT Drives/Partition other than Systemdrive (typically C:\) Show All (don't miss this one) Now click on the Scan button and wait for it to finish. Once done click on the [Save..] button, and in the File name area, type in ark.txt and save it to your desktop.Post the contents of that report when you reply.2. Download OTL to your Desktop.Double click on the icon... Read more

12 more replies
Relevance 53.3%

Hello HijackThis Team and the Moderators!! You guys helped me out a couple years ago, which I appreciated. Now once again, am here asking for your help.Can't get rid of this &$#%$ Search Assistant Have scanned with Ad-Aware and Spybot - Search and Destroy but to no avail - it comes back up each time I do a Hijack This run. Not sure of this but I think it controls results on Google--sometimes I do a search, and the weirdest sites come up as results--just doesn't look right.Anyway, your help is much appreciated, as always!! Logfile of Trend Micro HijackThis v2.0.2Scan saved at 6:44:24 AM, on 26/02/2008Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16574)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\ZoneLabs\vsmon.exeC:\WINDOWS\system32\spoolsv.exeC:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exeC:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exeC:\WINDOWS\system32\gearsec.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\Explorer.EXEC:\Program Files\Zone Labs\ZoneAlarm\zlcl... Read more

Answer:Please Help With Search Assistant Removal

Hello jaja67893,

Welcome back to Bleeping Computer

Sorry about the delay. If you still need help, please post a new HijackThis log to make sure nothing has changed, and I'll be happy to look at it for you.

Thanks,
tea

3 more replies
Relevance 53.3%

Follwed instructions and the toolbar diappeared.. Now as I start browsing on firefox I get an alert from my Norton firewall asking to permit this connection. I block it.I permitted this before and the hijacker returned .This is the log from norton firewall log: Help is appreciated. Thanks Details: This one time, the user has chosen to "block" communicationsOutbound TCP connectionRemote address,service is (f15717.bins.lop.com(66.220.17.158),http(80))Process name is "C:\Program Files\Internet Explorer\iexplore.exe" Logfile of HijackThis v1.98.2Scan saved at 1:19:31 AM, on 8/26/2004Platform: Windows XP SP1 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\System32\Ati2evxx.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exec:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exec:\Program Files\Norton Personal Firewall\NISUM.EXEC:\WINDOWS\system32\Ati2evxx.exeC:\WINDOWS\Explorer.EXEC:\HP\KBD\KBD.EXEC:\Program Files\Common Files\Symantec Shared\ccApp.exeC:\Program Files\Common Files\Microsoft Shared\Work... Read more

Answer:Search Assistant removal

Are you already being helped in another thread?

1 more replies
Relevance 53.3%

Logfile of HijackThis v1.98.2Scan saved at 6:05:20 AM, on 8/23/2004Platform: Windows XP SP1 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\System32\Ati2evxx.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exec:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exec:\Program Files\Norton Personal Firewall\NISUM.EXEC:\WINDOWS\system32\Ati2evxx.exeC:\WINDOWS\Explorer.EXEC:\HP\KBD\KBD.EXEC:\Program Files\Common Files\Symantec Shared\ccApp.exeC:\WINDOWS\ALCXMNTR.EXEC:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exeC:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exeC:\Program Files\Common Files\Real\Update_OB\realsched.exeC:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exeC:\Program Files\QuickTime\qttask.exeC:\Program Files\Java\j2re1.4.2_04\bin\jusched.exeC:\Program Files\Common Files\AOL\ACS\AOLDial.exeC:\WINDOWS\LTMSG.exec:\progra~1\... Read more

Answer:Search Assistant Removal

I want you to fix some of those entries. Please do the following:Please make sure that you can view all hidden files. Instructions on how to do this can be found here:How to see hidden files in WindowsRun Hijackthis again, click scan, and Put a checkmark next to each of these. Then click the Fix buttonR0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.bqqiwmqzjtdiaqd.net/YobkkBgtflu...pJ4cDxgrq5m.jpgO2 - BHO: (no name) - {7B55BB05-0B4D-44fd-81A6-B136188F5DEB} - C:\WINDOWS\questmod-1.dllO2 - BHO: (no name) - {D851EA4E-FB53-1B72-AD35-D592E4700583} - C:\PROGRA~1\ERRORC~1\Hold this.exeO2 - BHO: TChkBHO Class - {F6E6D2FD-5AFD-4D35-91CD-3F09010EFD52} - C:\WINDOWS\system32\effje.dllO4 - HKLM\..\Run: [WindUpdates] C:\Program Files\WindUpdates\WinUpdt.exeO4 - HKLM\..\Run: [Audio Noun] C:\PROGRA~1\OPENDO~1\Info Platform First.exeO4 - HKLM\..\Run: [support bird readme move] C:\Documents and Settings\All Users\Application Data\Proxy More Support Bird\heartfast.exeO4 - Startup: PowerReg Scheduler.exeO8 - Extra context menu item: &WordWeb... - res://C:\WINDOWS\System32\wweb32.dll/lookup.htmlO16 - DPF: {0191ABF4-9421-435E-9FFD-CD827A2A82D8} (SBITAX7Ctrl Class) - http://ultimateplugin.com/tl7000.dllO16 - DPF: {15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://public.windupdates.com/get_file.php...f7... Read more

1 more replies
Relevance 53.3%

Happy 4th of July Everyone!

Somehow I got this little bugger... can't figure out how to get rid of it.
You can't remove it from the "Add/Remove Hardware" screen.

I have a HijackThis log if you want to see it.
I ran AdawareSE but for some reason I don't think it's updating correctly.

Any help would be appreciated!
Thanks

 

Answer:My Way Search Assistant Removal

You should be looking at Add/Remove Programs not Hardware.

If you still have problems, follow the steps below. HijackThis is far from the first step. What version of Ad-Aware SE do you have. Make sure you compare to the one in the links below.

Please follow the steps below:

- Run ALL the steps in this Sticky thread READ ME FIRST BEFORE ASKING FOR SUPPORT: Basic Spyware, Trojan And Virus Removal

Make sure you check version numbers and get all updates.

- Very Important: Make sure you tell us the results from running the tutorial...was anything found? Were you unable to complete any of the scans?...Were you unable to download any of the tools?...Did you do the on-line scans as suggested? etc.
After doing ALL of the above you still have a problem make sure you have booted to normal mode and run the steps below:

- Download HijackThis 1.99.1

- Unzip the hijackthis.exe file to a folder you create named C:\Program Files\HJT

- Do NOT run Hijack This from the Desktop, a temp folder, or a sub-folder of C:\Documents and Settings, or choose to run it directly from the downloaded ZIP file.

- Before running HijackThis: You must close each of the following:your web browser, e-mail client, instant messenger, and programs like notepad, wordpad, MS Word etc. And any other unnecessary running programs.

- Run HijackThis and save your log file.

- Post your log as an ATTACHMENT to your next message. (Do NOT copy/paste the log into your post).
 

13 more replies
Relevance 53.3%

After having numerous problems with my machine locking up I discover the Help Assistant directory with a copy of my hard drive in it. After some initial research I tried to remove it by disabling the user and deleting the directory only to have it return. I found another topic regarding this but after reading decided to contact you first before doing anything more.DDS log file is below and Attach.txt is attached. When I tried to run GMER, after making the requested adjustments and then clicking scan, it began scanning and then displayed the blue problem detected screen and windows has been shut down. Pertinant information in blue screen was:======================================DRIVER_IRQL_NOT_LESS_OR_EQUAL======================================then the standard if first time restart message followed by:======================================Technical Information:*** STOP: 0x000000D1 (0x0000000C, 0x00000002, 0x000000000, oxEE0C2E52)Mpfp.sys - Adress EE0C2E52 base a EE0B9000, Date STamp 49de3cac======================================DDS logDDS (Ver_10-03-17.01) - NTFSx86 Run by Mommy at 13:15:06.03 on Sat 06/12/2010Internet Explorer: 8.0.6001.18702Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.894.158 [GMT -4:00]AV: McAfee VirusScan *On-access scanning enabled* (Updated) {84B5EE75-6421-4CDE-A33A-DD43BA9FAD83}FW: McAfee Personal Firewall *enabled* {94894B63-8C7F-4050-BDA4-813CA00DA3E8}============== Running Processes ===============C:\WINDOWS\syste... Read more

Answer:Help Assistant Virus removal

Hello and welcome to Bleeping ComputerWe apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.Please refrain from running tools or applying updates other than those we suggest while we are cleaning up your computer. The reason for this is so we know what is going on with the machine at any time. Some programs can interfere with others and hamper the recovery process. Please also continue to work with me until I give you the all clear. Even if your computer appears to act better, you may still be infected.Even if you have already provided information about your PC, we need a new log to see what has changed since you originally posted your problem.Once we start working together, please reply back within 3 days or this thread may be closed so we can help others who are waiting.We need to create an OTL report,Please download OT... Read more

16 more replies
Relevance 52.89%

I am trying to remove Home Search Assistant - CWS_NS3 and have a question about step 2 under the Begin Removal Procedure - specifically the services that are running. I do not have Network Security Service or Workstation NetLogon Service but have Remote Procedure Call (RPC) Locater NOT "HELPER" as described as the three. What should I do? Thanks.

Answer:Home Search Assistant Removal

The first thing I need you to do is download the file from here:ServiceFilter.zip - Get list of XP/2000/NT ServicesExtract the zip file to your C: drive. Once it is extracted there will be a directory on your C: drive called ServiceFilter. Inside the C:\ServiceFilter directory will be a file called ServiceFilter.vbs. Simply double-click on the ServiceFilter.vbs. When the script finishes a wordpad document should open with the unknown services listed in it. If the script could not access wordpad then you will see a message box telling you so. In that case you need to open POST_THIS.TXT by double-clicking it and pasting the contents as a reply to this topic. Please provide a brand new hijackthis log as well in this reply.

1 more replies
Relevance 52.89%

It appears I have fallen victim to the Home Search Assistant hijack as so many others have. I downloaded the HSRemove tool and followed the instructions contained therein. After running the program in safe mode, I checked the add/remove programs and Home Search Assistant is no longer listed. When I restart my computer in normal mode, it reappears. IE opens with the message that the hijack has been removed, but once I close IE and reopen it again the hijack is back. The curious thing is that I stopped and disabled Network Security Services when in safe mode. When I restart in normal mode, I find that Network Secuirty Services has been changed back to "automatic". Any ideas??? I have Windows XP home edition. I have set up an administrator account and a personal account too if that makes a difference. Thanks for any help you can offer.
 

Answer:Home Search Assistant Removal

It does in that you need to remove it from both accounts. More importantly, you can not open internet explorer until you have done both. Double the pleasure
 

3 more replies
Relevance 52.89%

I'm sure you have all seen a lot of this lately. I am comfortable enough to follow someones wonderful instructions, but I am not confident in changing dll files without an expert opionion. I have attached my log file from hijack this. I have read all of the instructions from this site and downloaded all of the tools. I just need to know which files I should alter. Thank you very much.____________________________________Logfile of HijackThis v1.99.0Scan saved at 4:22:20 PM, on 1/25/2005Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\WINDOWS\AGRSMMSG.exeC:\PROGRA~1\QtVprMtx\QTVPRMTX.EXEC:\Program Files\Common Files\Symantec Shared\ccApp.exeC:\Program Files\Apoint2K\Apoint.exeC:\Program Files\Common Files\Real\Update_OB\realsched.exeC:\Program Files\support.com\bin\tgcmd.exeC:\WINDOWS\system32\netts32.exeC:\WINDOWS\system32\Zrdhon.exeC:\WINDOWS\system32\Qlixmm.exeC:\Program Files\Apoint2K\Apntex.exeC:\Program Files\Common Fil... Read more

Answer:Home Search Assistant Removal

Your logfile is being analyzed now, and a response will be posted shortly.

Thanks
daveai

6 more replies
Relevance 52.89%

Hi. My mywaysearch assisant is gone rogue. I've attached my log of hijackthis so I just need help on what to do next. Already uninstalled myway and cleared the folders as well.
 

Answer:Myway Search Assistant Removal

Welcome to Major Geeks!

Please read ALL of this message including the notes before doing anything.

Please follow the instructions in the below link:

READ & RUN ME FIRST. Malware Removal Guide


and attach the requested logs when you finish these instructions.

**** If something does not run, write down the info to explain to us later but keep on going. ****
Do not assume that because one step does not work that they all will not. MGtools will frequently run even when all other tools will not.


After completing the READ & RUN ME and attaching your logs, make sure that you tell us what problems still remain ( if any still do )!
Helpful Notes:


If you run into problems trying to run the READ & RUN ME or any of the scans in normal boot mode, you can run the steps in safe boot mode but make sure you tell us what you did later when you post logs. See the below if you do not know how to boot in safe mode:

Starting your computer in Safe mode

If you have problems downloading on the problem PC, download the tools and the manual updates for SUPERAntiSpyware and Malwarebytes ( links are given in the READ & RUN ME) onto another PC and then burn to a CD. Then copy them to the problem PC. You will have to skip getting updates if (and only if) your internet connection does not work. Yes you could use a flash drive too but flash drives are writeable and infections can spread to them.
If you cannot seem to login to an infected user account, try using ... Read more

1 more replies
Relevance 52.89%

Please help--I have been infected by the Home Search Assistant. I am running Norton antivirus and "Alert Spy"--any help is greatly appreciated. By the way, this is a work computer. Here is my most recent HJT LOGLogfile of HijackThis v1.99.0Scan saved at 2:06:41 PM, on 1/19/2005Platform: Windows XP SP1 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\System32\ibmpmsvc.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\WINDOWS\System32\Ati2evxx.exeC:\Program Files\NavNT\DefWatch.exeC:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exeC:\Program Files\Microsoft SQL Server\MSSQL\Binn\sqlservr.exeC:\WINDOWS\Explorer.EXEC:\Program Files\NavNT\Rtvscan.exeC:\oracle\Ora_Client\bin\omtsreco.exeC:\Program Files\CheckPoint\SecuRemote\bin\SR_WatchDog.exeC:\WINDOWS\System32\svchost.exeC:\Program Files\CheckPoint\SecuRemote\bin\SR_GUI.exeC:\WINDOWS\System32\tp4serv.exeC:\PROGRA~1\ThinkPad\UTILIT~1\TP98TRAY.EXEC:\P... Read more

Answer:Home Search Assistant Removal

Sorry about a new log being posted, but I got booted from the laptop (battery died).Logfile of HijackThis v1.99.0Scan saved at 4:43:53 PM, on 1/19/2005Platform: Windows XP SP1 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\System32\ibmpmsvc.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\WINDOWS\System32\Ati2evxx.exeC:\Program Files\NavNT\DefWatch.exeC:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exeC:\Program Files\Microsoft SQL Server\MSSQL\Binn\sqlservr.exeC:\WINDOWS\Explorer.EXEC:\Program Files\NavNT\Rtvscan.exeC:\oracle\Ora_Client\bin\omtsreco.exeC:\Program Files\CheckPoint\SecuRemote\bin\SR_WatchDog.exeC:\WINDOWS\System32\svchost.exeC:\Program Files\CheckPoint\SecuRemote\bin\SR_GUI.exeC:\WINDOWS\System32\tp4serv.exeC:\PROGRA~1\ThinkPad\UTILIT~1\TP98TRAY.EXEC:\PROGRA~1\ThinkPad\PkgMgr\HOTKEY\TPHKMGR.exeC:\Program Files\AClient\Bin\XCDiffCache.exeC:\windo... Read more

38 more replies
Relevance 52.89%

I was infected on Sunday July 5th and ran the Superantispy software and that seem to clear the issue, but I still have the Myway Search Assistant as a listed program. I see a previous post with the same issue and followed all the instructions up to including the post from Chaslang on 07-05-05 14:43 (http://forums.majorgeeks.com/showthread.php?t=66855). I believe the threat has been removed, but like rookiegirl it still shows in my "add/remove programs" and I want to make sure the threat is completely removed.

I didn't know if the delmyway.reg given to rookiegirl would work directly for my PC. Attached are the log files. Please let me know if there's more to be done and how to get rid of the final traces of the Myway Search Assistant

Thanks in advance for you help!
(first time msg board, so please let me know if I've committed any faux paus!)
 

Answer:Myway Search Assistant Removal

Welcome to Major Geeks!

We cannot continue until you attach the last log that was requested which is the C:\MGlogs.zip file created by running MGtools.
 

19 more replies
Relevance 52.07%

I've tried numerous programs including avg, xoftspy, trojanhunter, adaware, spybot, avast, fixvundo, cwshredder, smitrem, everything. There's this file awtsp.dll which is impossible to delete no matter what I have tried (force deleting it, killbox, safe mode.. even though safe mode explorer doesn't seem to want to run). Also.. there's a pesky devldr32 file. Even after I did a complete uninstall of creative and used driver clean professional. Can someone help me?

Answer:Awtsp.dll And 180search Assistant/zango Removal Help

Hello Darkmindzero I'm EVAN198.I'm going to ask you to download ewido. You can download it here. * Install ewido security suite * Ewido will automatically run at the end. * The program will now open to the main screen. * When you run ewido for the first time, you may get a warning "Database could not be found!". Click OK. We will fix this in a moment. * You will need to update ewido to the latest definition files. o On the top row of the main screen click update. o Then click on "Start Update". * The update will start and a progress bar will show the updates being installed. (the status bar at the top will display ("Update successful")If you are having problems with the updater, you can use this link to manually update ewido.ewido manual updatesDon't run it yet.Reboot into SAFE MODEBy pressing the F8 key right when Windows starts, usually right after you hear your computerbeep when you reboot it (some versions of windows will display 'Starting Windows' with a grey progress bar)you will be brought to a menu where you can choose to boot into safe mode.Open Ewido anti-malwareClick on the scanner button in the top row. * Click Complete System Scan and the scan will begin. * During the scan it will prompt you to clean files, click OK * When the scan is finished, look at the bottom left of the screen and click the "Save Scan Report" button. * Click on "Save Repo... Read more

2 more replies
Relevance 52.07%

Logfile of HijackThis v1.98.2Scan saved at 4:51:33 AM, on 8/24/2004Platform: Windows XP SP1 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\System32\Ati2evxx.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exec:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exec:\Program Files\Norton Personal Firewall\NISUM.EXEC:\WINDOWS\system32\Ati2evxx.exeC:\WINDOWS\Explorer.EXEC:\HP\KBD\KBD.EXEC:\Program Files\Common Files\Symantec Shared\ccApp.exeC:\WINDOWS\ALCXMNTR.EXEC:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exeC:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exeC:\Program Files\Common Files\Real\Update_OB\realsched.exeC:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exeC:\Program Files\QuickTime\qttask.exeC:\Program Files\Java\j2re1.4.2_04\bin\jusched.exeC:\Program Files\Common Files\AOL\ACS\AOLDial.exeC:\WINDOWS\LTMSG.exeC:\Program Files... Read more

Answer:Searh assistant removal- I didn't see it at reboot

Scan with Hijackthis again and mark the following items. Make sure you have all browser windows closed and click"Fix Checked"R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.sszikvhzgyff.com/YobkkBgtflu3A7...ZJ4cDxgrq5m.phpR1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhostO4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXEO4 - HKCU\..\Run: [Workout] C:\Program Files\WorkoutGenerator\\RSSAD.exe <-do you know what this program is?Reboot, scan with HijackThis again and post a fresh log please.

1 more replies
Relevance 52.07%

Before I pestered you with my HijackThis log - I've seen these things before and they're not pretty - I followed your Home Search Assistant Removal Guide, and I no longer get the annoying symptoms. You guys rock!

Answer:Home Search Assistant Removal Guide Did The Job!

Thank Grinler, the guy who created the tutorial
I'm glad we could help.
David

1 more replies
Relevance 52.07%

Hi everybody,

my problem is that i just don?t seem to be able to get rid of that damn Search Assistant that appears beside the clock-tray on the taskbar.
Everytime I turn on my computer it is back, I?ve run AdAware 6, SpyWareDoctor etc. You just name it. So this is kinda my last call for help.. i?m going nuts over this :evil: Search Assistant.

So here below i?m going to post the log from Hijack This and hope someone can lend me a helping hand

--------- HijackThis ---------
Logfile of HijackThis v1.97.7
Scan saved at 16:02:00, on 14/09/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Intel\ASF Agent\AS***ent.exe
C:\Program Files\Dell\OpenManage\Client\Iap.exe
C:\Program Files\Trend Micro\OfficeScan Client\ntrtscan.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Common Files\Lanovation\PrismXL\PRISMXL.SYS
C:\Program Files\Trend Micro\OfficeScan Client\tmlisten.exe
C:\Program Files\Trend Micro\OfficeScan Client\ofcdog.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Trend Micro\OfficeScan Client\pccntmon.exe
C:\Program Files\Java\j2re1.4.... Read more

Answer:Search Assistant Removal problem (HJT included)

Hi,
Go to http://www.greyknight17.com/spyware.htm
Its a KRC Anti-Spware Tutorial..Very helpful.
Do follow everthing suggested.
Great start for security team in digesting your problem.
Upgrade your HJT to latest version.
Repost new HJT LOG.
Marty

1 more replies
Relevance 52.07%

I have been working on my nephews computer for a couple of days now and Cox Security still finds zeno search assistant. Please help. Thanks in Advance.Logfile of Trend Micro HijackThis v2.0.2Scan saved at 9:51:04 PM, on 2/2/2008Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16574)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exec:\Program Files\Cox\Applications\App\syssvcnt.exeC:\Program Files\Bonjour\mDNSResponder.exec:\Program Files\Common Files\Authentium\AntiVirus\dvpapi.exeC:\Program Files\Kodak\printer\center\KodakSvc.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\Explorer.EXEC:\Program Files\Analog Devices\Core\smax4pnp.exeC:\WINDOWS\system32\ctfmon.exeC:\Program Files\Dell\Media Experience\DMXLauncher.exeC:\Program Files\Corel\Corel Photo Album 6\MediaDetect.exeC:\WINDOWS\system32\igfxpers.exeC:\Program Files\Common Files\Real\Update_OB\realsched.exeC:\Program Files\Java\jre1.6.0_03\bin&#... Read more

Answer:Zeno Searc Assistant Removal And Other Popups

Hi and welcome to Bleeping Computer! My name is Sam and I will be helping you. Please download ComboFix and save it to your desktop.Prior to running Combofix.exe you should disable your antivirus program and disconnect from the internet.Double click combofix.exe and follow the prompts.When it's done running it will produce a log for you. Please post that log in your next reply.Important Note - Do not mouseclick combofix's window whilst it's running. That may cause it to stall.

10 more replies
Relevance 52.07%

Forgot to add I tried ewido as well... and my hijackthis log is...

Logfile of HijackThis v1.99.1
Scan saved at 3:05:09 PM, on 7/17/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\Linksys Wireless-G PCI Wireless Network Monitor\WLService.exe
C:\Program Files\Linksys Wireless-G PCI Wireless Network Monitor\WMP54Gv4.exe
C:\WINDOWS\system32\devldr32.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\CTHELPER.EXE
C:\Program Files\Winamp\winamp.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\eDonkey2000\edonkey2000.exe
C:\Program Files\Yahoo!\Messenger\YPager.exe
C:\Program Files\LimeWire\LimeWire.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\Documents and Settings\HijackThis.exe

R1 - HKLM\Software\Microsoft\Inter... Read more

Answer:Awtsp.dll And 180search Assistant/zango Removal Help

Hello Darkmindzero, and welcome to Bleeping Computer. My name is Charles and I will be helping you to clean up your computer.Please give me some time to look over your log and I will get back to you as soon as possible.Thanks,Charles

2 more replies
Relevance 51.66%

Hey guys.....................I have recently encountered CWS home search assistant in spyware doctor and as you already know Im sure........it wont remove it. Ive ran all the scans with the CW and Home search programs includding CWShredder, virus scans, asquared, adaware, spybot,ect, ect. My problem is...........I followed the guide to removing it and when I get to the part where you look for bogus network processes.......I dont find anything. I saw names of newtork service programs that were similar but not exact, so I ran the "get active services" file to see which were bogus and which werent, and all of them came back without the funny characters following the name that are supposed to differentiate the bogus service from the real service. What should I do now? Do I continue with the removal guide even though I can find bogus network service names? This is what I came up with:These are the Current Active Services: Adobe Active File Monitor V4: AdobeActiveFileMonitor4.0C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe Application Layer Gateway Service: ALGC:\WINDOWS\System32\alg.exe Windows Audio: AudioSrvC:\WINDOWS\System32\svchost.exe -k netsvcs Computer Browser: BrowserC:\WINDOWS\System32\svchost.exe -k netsvcs Cryptographic Services: CryptSvcC:\WINDOWS\system32\svchost.exe -k netsvcs DHCP Client: DhcpC:\WINDOWS\System32\svchost.exe -k... Read more

Answer:Cws Home Search Assistant Removal..........tutorial Problem

Anyone out there?

18 more replies
Relevance 50.84%

I have an amazon.co.uk account and when I logon at the front screen on the Kindle app, it doesn't recognise it as a valid account.

Answer:When I try to logon to Amazon through the Kindle app, it prompts for an Amazon.com account, why?

Just checked and mine logs in using my regular Amazon account info. I would suggest a soft reset and try again.

3 more replies
Relevance 47.97%

Hi,

I'm not sure if this is the right place to come to for this. For the last few days, I have not been able to access amazon.co.uk or amazon.com. My housemate (who I'm on the same wireless network as) can access it on his computer, but when I try on mine, I just get redirected to my Sony Vaio google search page saying it can't find it. I've done three scans for viruses etc and got nothing. I've reinstalled IE7 and all that's changed now is that when I try and access amazon, it now comes up as Cannot display page, so it's not even redirecting me to the Sony Vaio google seach page anymore.

I know amazon isn't down as my housemate can get it. Can anyone suggest what's wrong here? To me it's very bizarre and has never happened before.

Tim.
 

Answer:Problems with accessing amazon.co.uk and amazon.com

Start, Run, NOTEPAD c:\Windows\system32\drivers\etc\HOSTS.

Select all and copy and paste to a message here.
 

3 more replies
Relevance 47.15%

Hi

Model No- HP Pavilion dv6330ea Notebook PC. Refer to the link http://h10025.www1.hp.com/ewfrf/wc/product?cc=us&d

my OS is vista home premium 32-bit.

Everytime i run Hp Support Assistant i get an error of CASLExec has stopped working. recently downloaded sp52110.exe for vista os. http://ftp://ftp.hp.com/pub/softpaq/sp52001-52500/sp52110.exe
but everytime i run hp support assistant i get this error.

Even Hp Wireless Assistant is not working or not opening at all. Recently just flash bios, then installed wireless drives and finially installed wireless assitant but still now solution. same problem not opening at all. but wireless card is working fine and i can easily connect to the internet, therefore there is no wireless problem.

Because of hp wireless assistant, i am unable to turn on Bluetooth because previously when hp wireless assistant was working at that time i had ennabled wireless and disabled bluetooth. Now i am unable to turn on the bluetooth because of this.
Can anyone suggest me any alternative way to enable the bluetooth without hp wireless assistant.
---------------------------------------------------------
If any user are looking for hp support assistant for windows 7 or 8 or vista then download the latest version from this link

http://http://h18021.www1.hp.com/helpandsupport/hp-support-assistant.html

-------------------------------------------------------

please reply soon.

Answer:Problem Wireless Assistant & Support Assistant, How Turn On manually WLAN & Bluetooth

Almost one weak passed away.... and still no reply to this post.

2 more replies
Relevance 46.33%
Relevance 43.87%

^Service client amazon 01 84 88 04 19 contacter+amazon+france+service+client+amazon+france+
^Service client amazon 01 84 88 04 19 contacter+amazon+france+service+client+amazon+france+
^Service client amazon 01 84 88 04 19 contacter+amazon+france+service+client+amazon+france+
^Service client amazon 01 84 88 04 19 contacter+amazon+france+service+client+amazon+france+
^Service client amazon 01 84 88 04 19 contacter+amazon+france+service+client+amazon+france+

More replies
Relevance 36.9%

MS Removal Tool is a rogue software. It restricts you from accessing your desktop. You cannot start Task Manager, and you cannot open Internet Explorer or any other programs. This situation is the result of malware (a variant of Win32/Winwebsec) that is infecting your computer.
To remove the MS Removal Tool, follow the steps below: Boot your computer into Safe Mode.
Windows XP and Windows Vista:Start your computer and press and hold the F8 key.A Windows Advanced Options menu will appear. Use your arrow keys to scroll to Safe Mode and click the Enter key.Click the Start button, and then click Run.Type cmd then click OK. A black command prompt window will appear.Locate the affected directories:
Windows XP:Type cd c:\Documents and Settings\All Users\Application Data\ and press the Enter key.Type dir and press the Enter key.
Windows Vista:Type cd c:\ProgramData\ and press the Enter key.Type dir and press the Enter key.Type c:\Users\All Users\ and press the Enter key.Type dir and press the Enter key.Scroll through the list to find directories with random names that contains 18 characters. For example: cHl08200gMhHd08200 , pJg08200fBmPl08200.Type rd /s /q <random name>, and then press the Enter key. Replace <random name> with the 18 character name. Repeat this step for each random name you find.Type reg delete hkcu\software\microsoft\windows\currentversion\run once /v <random name> /f, and then press the Enter key. Replace <random name> with the 18 cha... Read more

More replies
Relevance 36.9%

Hi. Sorry to bother you for help, as I have read previous posts related to this particular topic, but I still cannot find a proper solution to rid this computer of Search Assistant. I have tried all the "easy" ways such as Ad-aware, CWShredder, Spybot and Spy Sweeper as well. Yet, I still get a search bar when I start IE. More annoyingly, I have Spybot-SD Resident on as well. This is not really a problem but Search Assistant constantly changes registry values and I have to approve or disapprove of them. I know there is a "remember this setting" option. However, the values differ every time!

The following is the log from HijackThis:

Logfile of HijackThis v1.98.0
Scan saved at 1:33:39 PM, on 7/29/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\Explorer.EXE
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\System32\hkcmd.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC1.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Fellowes\MediaFACE 4.0\SetHook.exe
C:\WINDOWS\System32\igfxtray.exe
C:\Program File... Read more

Answer:Search Assistant not being "Assistant" at all

Open hijack this, scan, check off these..

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://searchweb2.com/passthrough/i...p://about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.lhysnycmbmjjujeirvgabmny...qr928nqwv_.html
O3 - Toolbar: (no name) - {218679B1-863F-3879-631A-FD3131CBDFED} - (no file)

Do you know what this is?
O4 - HKLM\..\Run: [byysXs] C:\docume~1\owner\locals~1\temp\byysXs.exe

Please scan with housecall anitivirus..
http://housecall.trendmicro.com/
 

1 more replies
Relevance 35.67%

Folks...As heading really...It's 20:45 on a Sunday evening and I can't get on to Amazon.co.ukDifferent browsers produce the same result; Nothing.Is it just me?Thanks,Regards,Simsy

Answer:Can't get on to Amazon.. just me?

Yes, seems down here. I was browsing there only a few minutes ago. Wonder if the Christmas shoppers have overloaded it & sent it crashing.Btw, you can check if any site is down or if it's just you at click here. G

9 more replies
Relevance 35.67%
Question: looking for amazon

hi there all i was browsing the net for a game i think is called "Amazon" its an old game. its in the genre of the myst games, where they use prerendered graphics with a 360 degree camera. all ive found are some other boguss games with the same name. if you know where i can find this game please reply 

Answer:looking for amazon

this is the closest thing to what you are describing that i could find.http://www.play.com/Games/PC/4-/2557760/Amazon-Guardians-of-Eden/Product.htmlhope it helpsoh and found this toohttp://www.bigfishgames.com/download-games/3483/hidden-expedition-amazon-game/index.html?afcode=afc2e49bab7d&src=bfgppcgoogwshxam&sem=usgoogwshxam&kw=amazon%20game&adid=2882409974

2 more replies
Relevance 35.67%
Question: amazon.com

why cant i connect to amazon.com but i can connect to other sites?
 

Answer:amazon.com

Are you typing in www.amazon.com ? The complete URL is:

http://www.amazon.com/

Rosie
 

2 more replies
Relevance 35.67%
Question: amazon

i need help
everytime i press alink it is mooving to apage of amazone.com banners
itried adware anf spyboot
please help
thanks yossi
 

Answer:amazon

11 more replies
Relevance 35.67%
Question: Amazon.co.uk

Hi Everyone :)For a while now, my hubby has been unable to access the Amazon.co.uk site on his computer. It is a Pentium 111, using Windows 98. When he tries, all he gets his the headings at the top of the page in a horizontal line, but nothing underneath. When he clicks on a heading, music for instance, it takes him to the music page, but again, only the headings at the top come up and nothing underneath. Same goes for a particular search request.My hubby thought maybe it was because his computer/browser was old, but he can get on other sites no problem, play.com, hmv.co.uk, etc. He does have Zonealarm installed, but if it was that, wouldn't it stop him going on all the other sites, too?He would email Amazon's customer service people, but the site won't bring up the contact email or anthing else except the headings at the top.Any ideas as to what is going on?Michelle

Answer:Amazon.co.uk

Me again :)One thing I forget to mention is that this all seemed to start when Amazon suddenly started letting you 'search inside' books, etc.Michelle

1 more replies
Relevance 35.67%
Question: amazon

I would like to order something off Amazon. I did have an account once. I told them I no longer wanted an account but it still accepts my email and password, I went ahead to order something, when it came to pay I had to click on payment method. but it wouldn't work.I was wondering if I told you what I wanted would you buy it for me;-)).Do I have to put my card info in again?

Answer:amazon

Best to phone or email Amazon.

5 more replies
Relevance 35.67%
Question: www.amazon.com

I was wondering if amazon.com was Canada or USA?

Answer:www.amazon.com

I believe that you can go to amazon.com amazon.ca amazon.co.uk and others.

1 more replies
Relevance 35.67%
Question: Amazon help

I've looked all over Amazon (UK & US) for the answer to this. What code do I add to an Amazon banner link to open the link in new window?This is the main part of the code:amazon,co,uk/e/cm?t=my id-21&o=2&p=26&l=ur1&category=pcvideogames&banner=1EZH10GZG35XXVXEHQ02&f=ifrI've tried target blank on the end but no joy.

Answer:Amazon help

click hereinfo here, hope its what you need..

2 more replies
Relevance 35.67%
Question: Help with amazon

Using IE6, my computer will not allow me to go to www.amazon.com. Interestingly, I can get there as long as I dont use the www prefix. Also, once I get there, I cannot navigate to any other website. i have checked for blocked sites etc and there are none. Does anyone know what I can do to stop this. I can get on any other website except amazon. Thanks for the help.

Bob
 

Answer:Help with amazon

you need to check for browser hijackers or diverters,use adaware se personnel
http://www.recommended-download.com/ad-aware/?gclid=CLjLsu_ClYkCFRx6EAodKEsY7g
 

1 more replies
Relevance 35.67%
Question: new Amazon app?

Did anyone notice there is a new Amazon app for W10 and Mobile? I had the old app, tried to use it and got an error message. Then I was goofing around and noticed that there was a completely new app on the Windows store. If you have the old app that was discontinued (the one that came stock with W10 install I believe) it will not update to the new app. You have to do a fresh search on the store and install the new app. Hope its not a fake.

More replies
Relevance 35.67%
Question: amazon

I am a regular customer at amazon,but for no apparent reason everytime I try to use the secure server to order or check my account I get an error page.I have contacted amazon they say the problem is mine and to complex for them to offer any help.It seems I a can no longer order from amazonI wonder if anyone else has had this problemTanks

Answer:amazon

just placed my order with them, and all is well...

5 more replies
Relevance 35.67%

I was browsing Amazon (looking for xmas presents) and suddenly my antivirus displayed the following msg "IP-BLOCK 54.230.11.115 (Type: outgoing, Port: 57120, Process: iexplore.exe)" . From what I gathered by searching the net for the above IP looks like it belongs to Amazon but at the same time I never encountered any warning by browsing the site..Can anyone confirm it does indeed belong to Amazon and I got nothing to worry?

Is it a false positive or I really should format?

i'm using malwarebytes pro AV
 

Answer:is this really Amazon?

false probably
 

2 more replies
Relevance 35.67%
Question: IE9 and amazon MP3

I'm using IE9 in Windows Vista H.P. The last couple of weeks when I try to download an MP3 off Amazon, it fails every time. It will load in the Cloud player but won't download from there. India C.S says there is nothing they can do because it's a local file error. Also, some of the music I have downloaded from Amazon has disappeared. iTunes works fine, although can't figure out how to get that music to Windows Media Player. Is it the browser? It has been working up until now. Any ideas?                                                           Jim

Answer:IE9 and amazon MP3

I just purchased music from Amazon for the first time and downloaded it via IE9.  Since it worked for me, I don't know what your problem is.  I'm under the impression the amazon downloader uses Java.  Do you have Java installed and is it updated?  I just got a Java update today; it's Version 7 Update 5.   And, do you have the Amazon MP3 Downloader installed?  Do you see it in your Programs menu? Have you made any changes to your system since the last time you were able to download music? Do you have any other browser installed?  If so, try using it to download music.

6 more replies
Relevance 35.67%

Alright, I'm not exactly sure what the problem is. My first guess is I can't enable secure transactions on my wireless network (Linksys).

When I try to buy something on Amazon the site stalls for a sec then it doesn't come up even when I refresh.

Next I try to change the password on my AIM account, that doesn't work either. Or when I try to register a AOL name it doesn't display also.

I am using Internet Explorer v6.026 and Windows XP Home Edition. Linksys 2.0 Ghz wireless router. I also have a problem direct connecting on AIM 5.0, it says I'm behind a firewall, so I go to properties on my wireless network and I go to the advanced tab and it says "Windows can not display the properties of this connection. The Windows Management Instrumentation might be corrupted." Then it says try system restore. And I don't have any restore points, so as hard as this problem might seem, please try and help me. I want my stuff to work.

I think I have to enable secure transactions or take off firewall or something else, not sure.

Thanks for your time.

Here's a URL I can't access: http://aim.aol.com/redirects/password/change_password.adp?ScreenName=rokslow&CCode=US
 

Answer:I can't use Amazon or AOL.

Keep in mind I can't find my windows disk to repair the corruption. And try to keep it simple for me, thanks.
 

3 more replies
Relevance 35.67%
Question: Only Amazon.com

I can access every site on the internet except Amazon.com. WHY???? Pleaassseee Help!
 

Answer:Only Amazon.com

Are you typing Amazon.com into a web browser, or clicking on a saved favorite link?
 

1 more replies
Relevance 35.67%
Question: www.amazon.co.uk

Wonder what's happening... amazon seems to be down.Http/1.1 Service Unavailable

Answer:www.amazon.co.uk

I was just coming on here to ask about that - not just me then?Sheila

4 more replies
Relevance 35.67%

Has anyone else been experiencing a problem with not being able to log into Amazon.com? after attempting to log in, there is a 2nd log in screen which is asking me to enter my personal/sensitive info (this is other than my email address and password). I have never seen, nor had to enter this, before.
On Amazon's 2nd log in screen, I see this:
"We haven't seen you using this device before. To help protect your account, we just want to make sure it's really you". I have been using the same computer since 2012, so it does not make any sense for me to be seeing that message. and how does Amazon know what I am using anyway? I thought this might be a scam or a hacker ploy, so I ran 6 different anti-virus/trojan/malware/spyware programs (one of which took over 3 hours to run), but none of those found anything in my system (unless the virus is buried down so deep that it can't be found). Amazon is the only site that I can not log into. I am experiencing this problem through Firefox and Internet Explorer, but I also downloaded and installed Opera and Google Chrome just as tests to see if I were to have the same problem, and I did.
I have contacted Amazon 4 times, but the answers I received did not provide any help at all (they were mostly a non sequitur answer).
Am I the ONLY person on earth who is seeing that message? I am at my wits end and do not know what to do (I don't want to buy yet another pc to resolve the issue. plus, it may not resolve it... Read more

Answer:Anyone else not able to log into Amazon.com?

11 more replies
Relevance 35.67%

Hi,
New here and was not sure just where this question should be.
Whenever I look at anything on Amazon, for weeks afterward on every site I visit, there is Amazon's ad with a big picture of whatever product I had looked at.
This wouldn't bother me most times, except this is a family computer and it is impossible to keep gift ideas a secret when Amazon emblazons them onto every site anyone looks at.
Is there any way I can stop Amazon following me everywhere I go ?
Thanks for reading.
 

Answer:Amazon following me everywhere.

12 more replies
Relevance 35.67%

On this desktop, HP, XP pro, I cannot connect with amazon.com. It is the only site thus far that I can't connect with. I have no problem connecting when using my laptop. Here is what I get using tracert.
Thanks for the help,
Phil
Microsoft Windows XP [Version 5.1.2600]
(C) Copyright 1985-2001 Microsoft Corp.
C:\Documents and Settings\Administrator>tracert amazon.com
Tracing route to amazon.com [72.21.210.250]
over a maximum of 30 hops:
1 1 ms <1 ms <1 ms 192.168.1.1
2 34 ms 85 ms 28 ms L100.TAMPFL-DSL-02.verizon-gni.net [71.98.160.1]
3 23 ms 22 ms 23 ms P2-3.TAMPFL-LCR-02.verizon-gni.net [130.81.34.15
0]
4 24 ms 24 ms 24 ms so-7-2-0-0.TPA01-BB-RTR2.verizon-gni.net [130.81
.28.237]
5 40 ms 42 ms 40 ms ge-1-0-0-0.ATL01-BB-RTR2.verizon-gni.net [130.81
.17.48]
6 43 ms 41 ms 41 ms 0.ge-7-1-0.XT2.ATL4.ALTER.NET [152.63.81.1]
7 40 ms 41 ms 41 ms 0.so-7-0-0.BR1.ATL4.ALTER.NET [152.63.86.173]
8 41 ms 40 ms 40 ms 204.255.169.226
9 40 ms 41 ms 41 ms atl-core-02.inet.qwest.net [205.171.21.45]
10 62 ms 61 ms 61 ms dca-edge-18.inet.qwest.net [67.14.36.2]
11 * * * Request timed out.
12 * * * Request timed out.
13 * *
 

Answer:can't get amazon.com

That's a normal trace to Amazon, I get the exact same thing after the 67.14.36.2 node.

I have to believe this is a firewall or filter list on that machine blocking Amazon.
 

3 more replies
Relevance 35.67%
Question: Amazon

A lot of moans and complaints aainst firms, but on Saturday night I ordered a new PSU from Amazon, even though I wanted it asp I decided to go for the 3-5 day free delivery, so well done Amazon as I received it this morning. Also I always thought it was my g/card that was loud(fan)but it was the PSU fan.

Answer:Amazon

I thought I had out this in consumerwatch.

1 more replies
Relevance 35.67%
Question: Amazon

Lately I can't open Amazon page, blank page with "Diagnose connection problems".Everything else openning OK.Any ideas?

Answer:Amazon

Works fine here. Are you still having this problem?

2 more replies
Relevance 35.67%
Question: Amazon.co.uk

hello guyswas wonder if anyone know any contact details like email or telephone number that amazon.co.uk has?i been looking at their site and it seems that it just keeps taking me around in circles. I need to contact them because my order still not arrived yet. Order on May 13th and there was stock in. thanks

Answer:Amazon.co.uk

click here

2 more replies
Relevance 35.67%

recently had this message on Amazon

Supported Browsers
There has been a serious vulnerability disclosed in version 3.0 of the SSL protocol. It's no longer considered safe to use. We'll no longer support this legacy protocol as of 1 November 2014.

What can I do to get round this problem - I tried to upgrade to ie 11 but that is not possible and trying to upgrade to 8.1 also doesn't work well (my download speed from Tiscali is only 1/2 meg!! and the download is 3.6 GB!

any suggestions? and what exactly is the problem amazon are referring to?
 

Answer:amazon and ie 10 on win 8

6 more replies
Relevance 35.67%

I have a strange problem. OR, Maybe it's just strange to me. Of all the sites we visit, our computer won't go to Amazon.com. Well, it will go there at first. Then when I click on a second item I get a popup at the bottom of the screen that says "Do you want to open or save ref=pd_sim_sbs_auto_2 from www.amazon.com?" Also, "ref=pd_sim_sbs_auto_2" and "www.amazon.com" is in BOLD print. To the right of that, in the same box are buttons to "Open" "Save" or "Cancel". This started a couple of days ago and to my knowledge only happens on Amazon. Amazon customer service told me by phone that they are not having any technical problems. Thank you in advance for any help. BTW- Don't worry about offending me by treating me as if I'm computer ignorant, because I am computer ignorant Tim

Answer:Can't go to Amazon- @#$%^&*

Hello, not sure what that is??Change your DNS Servers: Go to > Run... and in the open box, type: cmdPress OK or Hit Enter.At the command prompt, type or copy/paste: ipconfig /flushdnsHit Enter.You will get a confirmation that the flush was successful.Close the command box.Then Clear the web browser's cacheIf it still exixts..Run TFC by OT (Temp File Cleaner)Please download TFC by Old Timer and save it to your desktop. alternate download linkSave any unsaved work. TFC will close ALL open programs including your browser! Double-click on TFC.exe to run it. If you are using Vista, right-click on the file and choose Run As Administrator. Click the Start button to begin the cleaning process and let it run uninterrupted to completion. Important! If TFC prompts you to reboot, please do so immediately. If not prompted, manually reboot the machine anyway to ensure a complete clean.Next run MBAM (MalwareBytes):Please download Malwarebytes Anti-Malware and save it to your desktop.Important!! When you save the mbam-setup file, rename it to something random (such as 123abc.exe) before beginning the download.Malwarebytes may "make changes to your registry" as part of its disinfection routine. If using other security programs that detect registry changes (ie Spybot's Teatimer), they may interfere or alert you. Temporarily disable such programs or permit them to allow the changes.Make sure you are connected to the Internet and double-click on the rename... Read more

5 more replies
Relevance 35.67%
Question: Amazon.co.uk

Anyone having problems connection to click here - I can't get connected...

Answer:Amazon.co.uk

just tried it no problem

5 more replies
Relevance 35.67%




Kindle Support Phone Number
{<{1-888-811-4532}>}


Amazon Kindle Customer Service
{<{1-888-811-4532}>}


kindle helpline
{<{1-888-811-4532}>}


Kindle Customer Service Number
{<{1-888-811-4532}>}


kindle fire tech support
{<{1-888-811-4532}>}


amazon kindle help
{<{1-888-811-4532}>}


kindle fire customer service
{<{1-888-811-4532}>}


kindle customer support
{<{1-888-811-4532}>}


Kindle Help Phone Number
{<{1-888-811-4532}>}


kindle help
{<{1-888-811-4532}>}


Kindle Customer Service Phone Number
{<{1-888-811-4532}>}


kindle tech support
{<{1-888-811-4532}>}


kindle fire helpline
{<{1-888-811-4532}>}


kindle support number
{<{1-888-811-4532}>}


kindle technical support
{<{1-888-811-4532}>}


kindle contact number
{<{1-888-811-4532}>}


Kindle Tech Support Number
{<{1-888-811-4532}>}


kindle fire support number
{<{1-888-811-4532}>}


Kindle Customer Support Number
{<{1-888-811-4532}>}


Amazon Kindle Customer Service Phone Number
{<{1-888-811-4532}>}

More replies
Relevance 35.26%

Have a strange one, Amazon.com refuses to load or only loads slowly on a single pc on the network. Scanned with Microsoft security essentials and MalwareBytes. Nothing found. I can't think of anything that could cause this and am at a loss of where to look.

Device: Asus Zenbook
OS: Win 8.1
Browser: Both Mozilla and IE affected
 

Answer:Issue with only amazon.com on one pc

The only thing left is the cookie. I would delete it and retry.
 

2 more replies
Relevance 35.26%

Just curious - I'm got a book here, cover price for soft back £14.99 & I want to order one from Amazon.On the sellers' site, the hardback version is quoted as new at that price, but also at over £110 (shipped from the States).The new softback edition is shown between £41 and £77.Is this a bit odd, or am I missing something?

Answer:Question about Amazon

And the name of the book is...

8 more replies
Relevance 35.26%

Hi,
I've encounter a strange behavior in the last month - I can't reach www.amazon.com on my computer. All other websites seem to be working fine, and amazon.com works well on other devices in my home network. What could be the cause? I've attached a tracert output for www.amazon.com
Microsoft Windows [Version 10.0.10586]
(c) 2015 Microsoft Corporation. All rights reserved.

tracert www.amazon.com

Tracing route to www.amazon.com [38.68.16.38]
over a maximum of 30 hops:

1 7 ms 2 ms 2 ms 192.168.1.1
2 9 ms 9 ms 10 ms 10.16.128.1
3 13 ms 24 ms 14 ms bzq-179-162-202.pop.bezeqint.net [212.179.162.202]
4 18 ms 14 ms 19 ms bzq-162-201.pop.bezeqint.net [212.179.162.201]
5 15 ms 15 ms 13 ms bzq-25-82-86.cust.bezeqint.net [212.25.82.86]
6 15 ms 13 ms 12 ms bzq-25-77-10.cust.bezeqint.net [212.25.77.10]
7 15 ms 14 ms 14 ms bzq-219-189-90.cablep.bezeqint.net [62.219.189.90]
8 71 ms 53 ms 53 ms 213.242.116.129
9 62 ms 63 ms 64 ms ae-3-80.edge5.Paris1.Level3.net [4.69.168.136]
10 65 ms 63 ms 62 ms ae-3-80.edge5.Paris1.Level3.net [4.69.168.136]
11 71 ms 68 ms 70 ms 213.242.121.150
12 183 ms 184 ms 184 ms queryfoundry.te5-13.br02.dal01.pccwbtn.net [63.218.23.66]
13 * * * Request timed out.
14 191 ms 188 ms 186 ms 38-16-68-38-static.reverse.queryfoundry.net [38.68.16.38]

Trace complete.

Any Advice? Thanks!

Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft Windows 10 Home, 64 bit
Processor: Intel(R) Core(TM) i7-4700HQ CPU @ 2.40GHz, Intel64 Family ... Read more

Answer:can't reach www.amazon.com

8 more replies
Relevance 35.26%

Hi,

Since x-mas (+or- one month) I am not able to connect to the following websites:

Amazon.ca
Amazon.com

http or https

If I connect through a VPN with a USA IP (or sometimes with an IP from Ontario, Canada) I have not problem to connect what so ever.

(I am from Quebec, Canada)

IE11 or Firefox 44 with or without addons, Win 8.1 x64
And yes I tried removing the IS suite. Same results.

Strange thing. I am in dual boot with Win 7 x64 and if I boot with Win 7 and use IE11 or FF 43, I am able to connect to those site (with Kaspersky IS on)!

Any idea why in with Win 8.1, I am not able?
thanx

More replies
Relevance 35.26%

Hi there
Am I right in thinking, that when you are registred with Amazon, and you use the "one click", which is great, you lose the benefit of some "free delivery" deals.

Answer:Anyone use 1 click on Amazon ??

Click here.

7 more replies
Relevance 35.26%

Vista and Office 2007 store just went live (I think "just" haven't seen it before)

http://www.amazon.com/gp/browse.htm...=1168450365/ref=tr_293971/102-1412884-8895345

Vista Ultimate for $379.99, twenty bucks off retail. Pre-orders available.

And if you REALLY love Microsoft (please don't snicker ) you can get a version autographed by Bill himself....
http://www.amazon.com/gp/product/B000M2WPIQ/ref=amb_link_4123912_1/102-1412884-8895345
 

Answer:Vista now available on Amazon.com

You just KNOW you want a signature edition
 

13 more replies
Relevance 35.26%

I am a frequent user of Amazon.co.uk for books, DVDs etc but, since yesterday, I have found that every time I try to use their site I get the ?Cannot find server or DNS error? message. I have tried the Amazon.com and the Amazon.ca sites but with the same results. I have tried numerous other book and DVD sites saved in my Favourites folder and all load normally. I tried to access Amazon via one of the price comparison sites, but without success. I have successfully accessed the site by using a friend?s computer, so the site isn?t down. Has anybody any idea as to what?s going wrong?

Answer:Cannot access Amazon

Have a look for the file HOSTS (no file extension).In Windows 2K and XP it would be in C:\windows\system32\drivers\etc\HOSTSor in other WindowsC:\windows\HOSTSIf you find it, rename it to HOSTS.TXT, restart your PC and see if you can access the site.

5 more replies
Relevance 35.26%

Just a heads up guys'n'gals. You can currently snag this wee beasty from Amazon for the AMAZING price of $599 currently. http://www.amazon.com/gp/product/B00...pUvbUpU1910637
I personally think this is the best of the current gen Atom Win 8 convertible tablets - it really does perform rather well.
Some of it's biggest plus points IMHO:
1. All aluminum construction - people WILL think this is a Mac Book Air at first glance - it's beautifully constructed.
2. MicroSD on tablet AND SD slot on tablet both support sdxc protocol allowing for some serious expansion. I currently had both slots occupied with 64GB cards set up with VHD's so Windows sees these as fixed drives. I've increased my storage from the 64GB shipped to 192GB! (Well, I know it's a bit less with recover partition on C Drive and formatting meaning less than actual but hey - it's still pretty darn good)
3. SUPERB battery life. I mean insane. When this is docked it will run for 12 hours easy.
4. Keyboard dock is actually very usable - I know some people have complained about double spaces or random letters but honestly it's easily remedied by turning up palm rejection sensitivity in settings so track pad is not registering brushes while typing. I think I can almost certainly say that double spaces/letters is directly related to how hard you type. If you're a keyboard hammerer you're gonna have a lot more errors on this keyboard. Type softly and it's all good.
5. Last but certainly not least - IT RUNS FULL WINDOWS! Ye... Read more

Answer:HP ENVY X2 for $599 from Amazon!

Staples, my friend: HP ENVY X2 Intel Atom 12" Convertible Laptop for $525 + free shipping - C2K61UA#ABA

33 more replies
Relevance 35.26%

Hi - I'm thinking about getting Kaspersky Internet Security 7.It's £17.98 on Amazon, £36.12 downloaded from the website - presumably it's the same thing, and you don't have to pay any extra for the first year with the Amazon ourchase?

Answer:Kaspersky and Amazon

This is correct, its the Retail version and £17.98 from Amazon on a free delivery if done over the saver option. Strongly recomend this product it's top.1 tip when installing, Select Recomended option NOT Custom and register it keeping the codes.

3 more replies
Relevance 35.26%

A strange problem with Internet Explorer 7 on my PC (XP Home). It won't load Amazon.com. But Firefox will.

Any suggestions?
 

Answer:IE7 not loading Amazon.com

See other thread at http://forums.techguy.org/all-other-software/832590-internet-explorer-7-wont-load.html
 

2 more replies
Relevance 35.26%
Question: Email Amazon

Let's all spend 3 or 4 minutes and email Amazon to bring out a Universal Windows App. for amozon prime. If 500 thousand or even a million emailed then they would know that there is a demand for that service.
We as Windows supports have power if we act as one voice to demand a WUA for any particular service, there more and likely make one. Imagine if all the windows OS users demand apps from You Tube. That's millions of emails!
So let's make a list of companies that you want all of use to email. Let's work together and get UWA, let's help close the app gap.
Posted via the Windows Central App for Android

Answer:Email Amazon

Originally Posted by charlie2128 Posted via the Windows Central App for Android I would have thought you would use the Windows version of the app at least!

3 more replies
Relevance 35.26%

When I go to the amazon.com website (using http://www.amazon.com or www.amazon.com or amazon.com or http://208.216.182.15 using Netscape 4.79, IE 6.0, and Opera browsers) I get the following error message:
Please contact your Internet Service Provider

Your Internet Service Provider is having a problem with their DNS servers, and as a result, you have connected to the old address for Amazon.com.

We recommend that you contact your Internet Service Provider and give them the following message:

"Your DNS servers are not honoring the TTL for the
Amazon.com domain, and you are caching out-of-date addresses. Please fix this problem in order to be compliant with generally accepted internet practices documented in RFC1034 and other documents."

We appreciate your patience, and hope that you are able to resolve the issues at your Internet Service Provider.

--Your friends at Amazon.com

I know my ISPs are not the problem here because 1) I attempted to access the site with two different ISPs (university dial-up lines and the freebie, netzero) and 2) I went to the office of the univeristy ISP, had them contact their dial up line using my username and password and they were able to connect to the site just fine.

I have tried the following to solve the problem:

reinstall my browsers
change security settings to low
change privacy settings to low and "always" allow amazon.com
delete my temporary internet files/cache
delete history
delete all tcp/ip and other ne... Read more

Answer:can't access amazon.com?

Thanks to those who suggest changing hosts to hosts.old...that did the trick for both amazon and yahoo!!! so great. appreciate it folks!
 

1 more replies
Relevance 35.26%

Simple question! How does one log out of their account in amazon.co.uk?
I know how to do it, but it will never allow me to log out.
In the Your Account page, I hover over the Your Account button and the facility to log out is there but as soon as I move over the drop down menu, it vanishes. How can I make the thing stay open so that I can click the last line "Not A" and log out?
This is on an iMAC with Mountain Lion 10.8.4 and Safari 6.0.5.
Thanks
TonyV

Answer:Logging out in Amazon..

I also have to sign in after my previous session, without manually having to sign-out.

10 more replies
Relevance 35.26%

is there an easy way to stop these pop ups invading my computer every time i go on to amazon to look for something, windows 7

Answer:pop ups getting worse from amazon

Have you enabled the inbuilt PopUP blocker in your Browser? and do you have an additional AdBlocker for your browser?

3 more replies
Relevance 35.26%

Hi There, I am thinking of buying Lenovo Flex 2- 14 on Amazon.de and deliver it to my destination in Israel.I wanted to know whether there is an international warranty, and if so - for how long.Can I exercise the warranty in Israel? Thanks!Assaf

Answer:Warranty on Amazon.de

The relevant products are:1) http://www.amazon.de/gp/product/B00KGSHN38/ref=ox_sc_act_title_2?&ie=UTF8&smid=A3JWKAKR8XB7XF2) http://www.amazon.de/gp/product/B00Q2R1Z3Q/ref=gno_cart_title_0?ie=UTF8&psc=1&smid=A3JWKAKR8XB7XFAssaf

1 more replies
Relevance 35.26%
Question: amazon associates

Hi
I was wondering if i sign up to amazon associates does that mean my site is signed up to amazon for life. i mean can i remove the link to amzon if i ever feel like it

second i was wondering if i can use the link on my site for me to purchase stuff too.
i
what i mean is go to amazon through my site, so that if i buy something from amazon, i wil get some credit to my associate account.

Answer:amazon associates

also i was wondering do i need to have a specific link like a Product link or a general link will do

1 more replies
Relevance 35.26%

Okay im having problems with Amazon.com, in that it just wont open. I don't know why and its not blocked or anything. It wont work in netscape or internet explorer. And it doesnt work with firefox either. Took off the firewall and that doesnt work. Closed the virus checker and that didnt do it either. Im not sure if maybe the virus checker is still "working" when its been closed. Im only suspicious of the virus checker because I installed that this year and thats the only thing I can think of thats changed since I was last on amazon. Im using avg free if that helps anyone to help me.Heres a link to a picture of what happens when I try to open amazon.com in internet explorer.http://au.geocities.com/absolutely_james/amazon.jpgI have tried clicking the box to use TLS 1.0 but that doesnt affect it and I dont have an option for PCT 1.0.For firefox I get an alert that says: "The connection was refused when attempting to contact www.amazon.com"For netscape I get "there was no response. The server could be down or not responding."

Answer:Problems With Amazon.com

Hi lordjames
AVG shouldn't be interferring. At least I can't think of why it would.
You could try turning off the resident shield before you close it just for the heck of it I guess.
Did you just notice this today?
It's possible it's just a temporary isp problem since none of your browsers can get there and as far as you know right now, it's just that site. Amazon's been accidently blocked by some isp's before.
This is a stretch and I don't really expect it to work but put amazon in your trusted sites list in IE.
Close the browser and reopen after doing so. Try again in IE.
If your using any spyware blockers, hosts files, etc, check those too.
Is there a router in this picture?

1 more replies
Relevance 35.26%

Hi
I am using a wireless LAN connection to connect to the net. I tried to register on amazon and i keep on getting this message
"The connection was refused when attempting to contact www.amazon.co.uk"

does this have something to do with the fact the my connection is unsecure.
can you guys tell me what the solution is?

Answer:amazon registration

have u tried another browser?

9 more replies
Relevance 35.26%
Question: amazon prime

hi.not sure if i am in the right help section but here goes-
i am unable to stream any amazon prime online videos.i keep getting error message 6036?and a message about content protection,however if i boot into safe mode it works!ANY ONE HELP?

Answer:amazon prime

Have you tried asking Amazon? Are they being blocked by your Anti-Virus program or your browser?

10 more replies
Relevance 35.26%
Question: Amazon AWS Malware

Hello I am new to this forum and am looking for any help I can find in removing a redirect file that is affecting my website (www.mixtapemix.com). I have noticed the problem after I installed Amazon Associate ads on the site. I have removed all of these ads since then. Here is the actual code of the pop up that I get. Every one of the pop ups asks for the user to

"Complete a 30 second test below in order to access the content below you must fill out a sponsored offer"

The screen shot is attached.

This is the coding:

<html>
<iframe src="http://s3.amazonaws.com/premium_/lock.html" width="100%" height="100%" frameborder="0" scrolling="no"></iframe>
</html>

I cannot have any of these pop ups occur because it obviously is a HUGE problem with new visitors. Most of the time the user can eventually access the site but that is after being redirected back to one of those types of redirects 10-15 times before it allows access.

ANY help is so greatly appreciated. Look forward to hearing from you.

Thank You,

Graham
MixTapeMix.com

More replies
Relevance 35.26%

I am in desparate need of help.

Just registering on this forum and navigating through it took me 10 times longer than it should have. I couln't find any other posts regarding this topic, so please excuse me if this is a repeat.

I am unable to do anything on the internet anymore. Almost every time I click on a link, I am redirected to a page that is a blank white background with a banner for Amazon.com. I tried running "spybot search and destroy" and "ad-aware" but to no avail. I am crippled right now. Every time I do anything on the internet now, I am constantly clicking link>back>back to get to where I wanted to be. The back>back is to go back from the Amazon banner pages.

FYI I am running IE6 and WindowsXP.

Thank you in advance!
 

Answer:OMG Amazon Banners!

13 more replies
Relevance 35.26%

New Dell 8300 computer w/ Windows 7. All sites in Internet Explorer load fine with the exception of Amazon.com Comes up with Internet Explorer cannot show this webpage. I have used amazon allot & still would like too. Anybody have a clue?Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft Windows 7 Home Premium, Service Pack 1, 64 bit
Processor: Intel(R) Core(TM) i5-2320 CPU @ 3.00GHz, Intel64 Family 6 Model 42 Stepping 7
Processor Count: 4
RAM: 6126 Mb
Graphics Card: AMD Radeon HD 6450, 1024 Mb
Hard Drives: C: Total - 940261 MB, Free - 895167 MB;
Motherboard: Dell Inc., 0Y2MRG
Antivirus: CA Anti-Virus Plus, Updated and Enabled
 

More replies
Relevance 35.26%
Question: Amazon search

I use Windows XP Home Addition. Whenever I open my browser IE (Google Chrome webpage), I also get a heading that says Amazon Search. This is annoying. I tried going to Programs & Features to uninstall but I cannot find it. How do I disable it, or at least get it not to open?
 

Answer:Amazon search

6 more replies
Relevance 35.26%

Folks,I'm trying to help a mate with a PC problem, over the phone...the problem is that he can't get on to the Amazon.co.uk site... in fact he can't get on to any of the amazon European sites, France, germany etc... he can get on to Amazon.comI've been through all the usual suspects, cookies, temp internet files. He's installed CCleaner, Regseeker and scanned for nasties etc.He's not a bedinner, and I've talked him through all this on the phoneI'm starting to think that perhaps its a problem that's isp based. (Didn't AOL have an issue with certain sites recently?)Anyway, he is on dial-up, and his isp is Tesco.Are there any other Tesco users who can confirm, or otherwise, whether they can get on to Amazon.co.ukThanks in anticipation,Regards,Simsy

Answer:Tesco and Amazon...

What country is he in?

10 more replies