:OTL
SRV - File not found [Auto | Stopped] -- -- (ASKUpgrade)
IE - HKLM\..\URLSearchHook: {14f0d511-36a2-41ca-ae01-ba4f87282c97} - File not found
IE - HKLM\..\URLSearchHook: {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - Reg Error: Key error. File not found
IE - HKLM\..\URLSearchHook: {4724c5d8-dfa7-417a-a2f5-1eabfee9b4ac} - C:\Program Files\MyPlayCity\tbMyPl.dll (Conduit Ltd.)
IE - HKLM\..\URLSearchHook: {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files\XfireXO\prxtbXfir.dll (Conduit Ltd.)
IE - HKLM\..\URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTo1.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-290597968-237744235-810446994-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource=10&ctid=CT1392740
IE - HKU\S-1-5-21-290597968-237744235-810446994-1000\..\URLSearchHook: {14f0d511-36a2-41ca-ae01-ba4f87282c97} - File not found
IE - HKU\S-1-5-21-290597968-237744235-810446994-1000\..\URLSearchHook: {4724c5d8-dfa7-417a-a2f5-1eabfee9b4ac} - C:\Program Files\MyPlayCity\tbMyPl.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-290597968-237744235-810446994-1000\..\URLSearchHook: {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files\XfireXO\prxtbXfir.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-290597968-237744235-810446994-1000\..\URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTo1.dll (Conduit Ltd.)
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.defaultthis.engineName: "Conduit Engine Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=ConduitEngine&SearchSource=3&q={searchTerms}"
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=966134"
FF - prefs.js..extensions.enabledItems:
engine@conduit.com:3.2.3.3
FF - prefs.js..keyword.URL: "http://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&type=966134&p="
[2010-07-19 22:58:50 | 000,000,000 | ---D | M] (SHOUTcast Radio Toolbar) -- C:\Users\SuperUser\AppData\Roaming\mozilla\Firefox\Profiles\gbl0q39n.default\extensions\{12e4c684-c03e-4e4d-85bc-0c065e7a9489}
[2010-04-09 19:35:55 | 000,000,000 | ---D | M] (Softonic-Eng7 Toolbar) -- C:\Users\SuperUser\AppData\Roaming\mozilla\Firefox\Profiles\gbl0q39n.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}
[2011-04-29 21:05:17 | 000,000,000 | ---D | M] (XfireXO) -- C:\Users\SuperUser\AppData\Roaming\mozilla\Firefox\Profiles\gbl0q39n.default\extensions\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}
[2010-11-21 18:32:24 | 000,000,000 | ---D | M] (uTorrentBar Community Toolbar) -- C:\Users\SuperUser\AppData\Roaming\mozilla\Firefox\Profiles\gbl0q39n.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
[2009-09-01 20:45:31 | 000,000,000 | ---D | M] ("Ask Toolbar for Firefox") -- C:\Users\SuperUser\AppData\Roaming\mozilla\Firefox\Profiles\gbl0q39n.default\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}
2009-09-05 23:45:34 | 000,000,000 | ---D | M] ("DAEMON Tools Toolbar") -- C:\Users\SuperUser\AppData\Roaming\mozilla\Firefox\Profiles\gbl0q39n.default\extensions\DTToolbar@toolbarnet.com
[2010-11-21 18:32:25 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Users\SuperUser\AppData\Roaming\mozilla\Firefox\Profiles\gbl0q39n.default\extensions\engine@conduit.com
[2009-09-01 21:23:32 | 000,000,681 | ---- | M] () -- C:\Users\SuperUser\AppData\Roaming\Mozilla\Firefox\Profiles\gbl0q39n.default\searchplugins\ask.xml
[2010-11-21 18:32:25 | 000,000,913 | ---- | M] () -- C:\Users\SuperUser\AppData\Roaming\Mozilla\Firefox\Profiles\gbl0q39n.default\searchplugins\conduit.xml
[2010-07-12 21:47:15 | 000,002,059 | ---- | M] () -- C:\Users\SuperUser\AppData\Roaming\Mozilla\Firefox\Profiles\gbl0q39n.default\searchplugins\daemon-search.xml
[2010-10-17 12:37:19 | 000,001,184 | ---- | M] () -- C:\Users\SuperUser\AppData\Roaming\Mozilla\Firefox\Profiles\gbl0q39n.default\searchplugins\winamp-search.xml
O4 - Startup: C:\Users\SuperUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Registration Silent Hunter III.LNK = File not found
@Alternate Data Stream - 507 bytes -> C:\ProgramData\TEMP:05EE1EEF
@Alternate Data Stream - 102 bytes -> C:\ProgramData\TEMP:C7DEC6B7
:Files
C:\Users\SuperUser\AppData\Local\Temp*.html
:Commands
[emptytemp]
[emptyflash]