OTL logfile created on: 1/27/2012 12:11:37 PM - Run 1 OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Charlie Henderson\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000409 | Country: Canada | Language: ENC | Date Format: dd/MM/yyyy 3.80 Gb Total Physical Memory | 1.56 Gb Available Physical Memory | 40.90% Memory free 7.60 Gb Paging File | 5.02 Gb Available in Paging File | 65.98% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 683.01 Gb Total Space | 471.03 Gb Free Space | 68.96% Space Free | Partition Type: NTFS Drive D: | 15.33 Gb Total Space | 1.90 Gb Free Space | 12.36% Space Free | Partition Type: NTFS Drive F: | 98.87 Mb Total Space | 84.74 Mb Free Space | 85.71% Space Free | Partition Type: FAT32 Unable to calculate disk information. Computer Name: CHARLIE-LAPTOP | User Name: Charlie Henderson | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012/01/27 12:06:04 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Charlie Henderson\Downloads\OTL.com PRC - [2012/01/24 22:06:39 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe PRC - [2012/01/22 08:40:04 | 003,025,112 | ---- | M] (Emsi Software GmbH) -- C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe PRC - [2011/11/02 08:24:04 | 000,068,896 | ---- | M] (Nalpeiron Ltd.) -- C:\Windows\SysWOW64\NLSSRV32.EXE PRC - [2011/10/20 10:40:57 | 000,641,400 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe PRC - [2011/09/01 17:06:50 | 000,227,896 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe PRC - [2011/04/16 19:45:11 | 000,130,008 | R--- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\ccSvcHst.exe PRC - [2011/04/08 11:59:52 | 000,507,624 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe PRC - [2011/03/17 17:54:30 | 001,832,016 | ---- | M] (Motorola Solutions, Inc.) -- C:\Program Files\Motorola\Bluetooth\btplayerctrl.exe PRC - [2011/01/27 11:38:04 | 000,318,520 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe PRC - [2010/12/11 01:02:24 | 000,136,488 | ---- | M] (CyberLink) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe PRC - [2010/11/09 18:20:36 | 000,586,296 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe PRC - [2010/11/09 18:20:34 | 000,026,680 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe PRC - [2010/09/16 12:13:14 | 002,538,520 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe PRC - [2010/09/16 12:13:06 | 000,325,656 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe PRC - [2010/09/13 20:32:32 | 000,013,336 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe PRC - [2010/09/13 20:32:30 | 000,283,160 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe PRC - [2009/12/03 09:12:12 | 000,976,320 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe PRC - [2008/08/12 16:04:04 | 009,618,728 | ---- | M] (SMART Technologies ULC) -- C:\Program Files (x86)\SMART Technologies\SMART Board Drivers\SMARTBoardTools.exe PRC - [2008/08/08 08:30:02 | 002,123,048 | ---- | M] (SMART Technologies) -- C:\Program Files (x86)\SMART Technologies\SMART Board Drivers\SMARTBoardService.exe PRC - [2008/07/31 02:51:38 | 001,037,608 | ---- | M] (SMART Technologies ULC) -- C:\Program Files (x86)\SMART Technologies\SMART Board Drivers\SMARTSNMPAgent.exe PRC - [2008/07/31 02:48:36 | 005,571,880 | ---- | M] (SMART Technologies ULC) -- C:\Program Files (x86)\SMART Technologies\SMART Board Drivers\Marker.exe PRC - [2008/07/31 02:48:16 | 002,323,752 | ---- | M] (SMART Technologies ULC) -- C:\Program Files (x86)\SMART Technologies\SMART Board Drivers\Aware.exe PRC - [2007/08/06 19:05:46 | 000,200,704 | ---- | M] (PowerISO Computing, Inc.) -- C:\Program Files (x86)\PowerISO\PWRISOVM.EXE PRC - [2006/12/19 17:23:20 | 000,094,208 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSvc.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012/01/24 22:06:38 | 002,124,760 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll MOD - [2012/01/11 01:47:14 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\b559a471eef00081f0b5c2719d1d9623\System.Runtime.Remoting.ni.dll MOD - [2011/12/14 23:57:08 | 008,527,008 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll MOD - [2011/10/13 10:44:49 | 012,433,408 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\6e592e424a204aafeadbe22b6b31b9db\System.Windows.Forms.ni.dll MOD - [2011/10/13 10:44:32 | 001,587,200 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\3b2cfd85528a27eb71dc41d8067359a1\System.Drawing.ni.dll MOD - [2011/10/13 10:44:27 | 000,025,600 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\31fce331fded94dd06627603f6fe4562\Accessibility.ni.dll MOD - [2011/10/13 10:44:12 | 003,347,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\d7a64c28cf0c90e6c48af4f7d6f9ed41\WindowsBase.ni.dll MOD - [2011/10/13 10:44:04 | 005,453,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\130ad4d9719e566ca933ac7158a04203\System.Xml.ni.dll MOD - [2011/10/13 10:43:57 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\2d5bcbeb9475ef62189f605bcca1cec6\System.Configuration.ni.dll MOD - [2011/10/13 10:43:56 | 007,963,648 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\abab08afa60a6f06bdde0fcc9649c379\System.ni.dll MOD - [2011/10/13 10:43:46 | 011,490,304 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\a1a82db68b3badc7c27ea1f6579d22c5\mscorlib.ni.dll MOD - [2010/11/22 16:00:58 | 007,745,536 | ---- | M] () -- C:\Program Files (x86)\Common Files\LightScribe\QtGui4.dll MOD - [2010/11/22 16:00:58 | 002,121,728 | ---- | M] () -- C:\Program Files (x86)\Common Files\LightScribe\QtCore4.dll MOD - [2010/11/22 16:00:58 | 000,135,168 | ---- | M] () -- C:\Program Files (x86)\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll MOD - [2010/01/21 00:34:10 | 008,793,952 | ---- | M] () -- C:\Program Files (x86)\Microsoft Office\Office14\1033\GrooveIntlResource.dll MOD - [2010/01/09 19:18:18 | 004,254,560 | ---- | M] () -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF MOD - [2008/02/27 09:09:18 | 001,536,000 | ---- | M] () -- C:\Program Files (x86)\SMART Technologies\SMART Board Drivers\QtCore4.dll MOD - [2008/02/19 13:37:32 | 000,561,152 | ---- | M] () -- C:\Program Files (x86)\SMART Technologies\SMART Board Drivers\QtNetwork4.dll MOD - [2008/02/19 13:36:06 | 006,230,016 | ---- | M] () -- C:\Program Files (x86)\SMART Technologies\SMART Board Drivers\QtGui4.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - [2012/01/09 06:24:21 | 001,028,096 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Running] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe -- (FLEXnet Licensing Service 64) SRV:[b]64bit:[/b] - [2011/11/02 08:23:46 | 000,341,280 | ---- | M] (Nitro PDF Software) [Auto | Running] -- C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe -- (NitroDriverReadSpool2) SRV:[b]64bit:[/b] - [2011/07/27 22:10:24 | 000,296,448 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Program Files\IDT\WDM\stacsv64.exe -- (STacSV) SRV:[b]64bit:[/b] - [2011/05/04 17:54:40 | 000,783,704 | ---- | M] (Motorola Solutions, Inc.) [Auto | Running] -- C:\Program Files\Motorola\Bluetooth\obexsrv.exe -- (Bluetooth OBEX Service) SRV:[b]64bit:[/b] - [2011/04/15 17:21:46 | 004,180,824 | ---- | M] (Motorola Solutions, Inc.) [On_Demand | Running] -- C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe -- (Bluetooth Device Manager) SRV:[b]64bit:[/b] - [2011/03/17 17:52:42 | 001,193,040 | ---- | M] (Motorola Solutions, Inc.) [Auto | Running] -- C:\Program Files\Motorola\Bluetooth\audiosrv.exe -- (Bluetooth Media Service) SRV:[b]64bit:[/b] - [2010/09/22 21:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc) SRV:[b]64bit:[/b] - [2010/08/05 22:51:08 | 000,291,896 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe -- (HPClientSvc) SRV:[b]64bit:[/b] - [2010/07/21 17:33:00 | 000,103,992 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe -- (HP Wireless Assistant Service) SRV:[b]64bit:[/b] - [2009/09/13 17:00:00 | 000,166,400 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE -- (EPSON_EB_RPCV4_04) SRV:[b]64bit:[/b] - [2009/09/13 17:00:00 | 000,128,512 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE -- (EPSON_PM_RPCV4_04) SRV:[b]64bit:[/b] - [2009/07/13 20:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2012/01/22 08:40:04 | 003,025,112 | ---- | M] (Emsi Software GmbH) [Auto | Running] -- C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe -- (a2AntiMalware) SRV - [2012/01/09 06:24:17 | 000,647,680 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service) SRV - [2011/11/02 08:24:04 | 000,068,896 | ---- | M] (Nalpeiron Ltd.) [Auto | Running] -- C:\Windows\SysWOW64\NLSSRV32.EXE -- (nlsX86cc) SRV - [2011/09/01 17:06:50 | 000,227,896 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe -- (HPDrvMntSvc.exe) SRV - [2011/07/27 22:09:07 | 002,375,168 | ---- | M] (Realsil Microelectronics Inc.) [Auto | Running] -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe -- (IconMan_R) SRV - [2011/06/21 14:57:34 | 000,085,560 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe -- (HP Support Assistant Service) SRV - [2011/04/16 19:45:11 | 000,130,008 | R--- | M] (Symantec Corporation) [Unknown | Running] -- C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\ccSvcHst.exe -- (N360) SRV - [2010/11/09 18:20:34 | 000,026,680 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe -- (HPWMISVC) SRV - [2010/09/16 12:13:14 | 002,538,520 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS) Intel(R) SRV - [2010/09/16 12:13:06 | 000,325,656 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS) Intel(R) SRV - [2010/09/13 20:32:32 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc) Intel(R) SRV - [2010/06/18 20:59:12 | 000,246,520 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe -- (GameConsoleService) SRV - [2010/03/18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2010/02/19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard) SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) SRV - [2006/12/19 17:23:20 | 000,094,208 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSvc.exe -- (EpsonBidirectionalService) SRV - [2003/04/18 18:06:26 | 000,008,192 | ---- | M] () [Auto | Stopped] -- C:\Windows\SysWOW64\srvany.exe -- (KMService) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - [2012/01/16 21:29:49 | 000,174,200 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS -- (SymEvent) DRV:[b]64bit:[/b] - [2011/07/27 22:10:29 | 000,520,192 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA) DRV:[b]64bit:[/b] - [2011/07/27 22:09:08 | 000,335,464 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsPStor.sys -- (RSPCIESTOR) DRV:[b]64bit:[/b] - [2011/07/27 22:07:31 | 000,436,840 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167) DRV:[b]64bit:[/b] - [2011/07/19 09:19:16 | 001,492,992 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\netr28x.sys -- (netr28x) DRV:[b]64bit:[/b] - [2011/07/08 17:45:12 | 000,386,168 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\symnets.sys -- (SymNetS) DRV:[b]64bit:[/b] - [2011/03/30 22:00:09 | 000,744,568 | R--- | M] (Symantec Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\srtsp64.sys -- (SRTSP) DRV:[b]64bit:[/b] - [2011/03/30 22:00:09 | 000,040,568 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\srtspx64.sys -- (SRTSPX) Symantec Real Time Storage Protection (PEL) DRV:[b]64bit:[/b] - [2011/03/23 12:08:24 | 000,663,936 | ---- | M] (Motorola Solutions, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btmusb.sys -- (BTMUSB) DRV:[b]64bit:[/b] - [2011/03/14 21:31:23 | 000,912,504 | R--- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\SymEFA64.sys -- (SymEFA) DRV:[b]64bit:[/b] - [2011/03/11 01:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:[b]64bit:[/b] - [2011/03/11 01:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:[b]64bit:[/b] - [2011/02/22 18:33:16 | 000,052,736 | ---- | M] (Motorola Solutions, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btmcom.sys -- (BTMCOM) DRV:[b]64bit:[/b] - [2011/01/27 01:47:10 | 000,450,680 | R--- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\SymDS64.sys -- (SymDS) DRV:[b]64bit:[/b] - [2011/01/27 00:07:06 | 000,171,128 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\Ironx64.sys -- (SymIRON) DRV:[b]64bit:[/b] - [2010/12/16 21:28:38 | 001,403,440 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP) DRV:[b]64bit:[/b] - [2010/12/11 01:03:46 | 000,031,088 | ---- | M] (CyberLink Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\clwvd.sys -- (clwvd) DRV:[b]64bit:[/b] - [2010/12/07 16:05:36 | 000,317,440 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud) Intel(R) DRV:[b]64bit:[/b] - [2010/12/07 16:05:36 | 000,158,976 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Impcd.sys -- (Impcd) DRV:[b]64bit:[/b] - [2010/12/07 16:05:26 | 012,252,192 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx) DRV:[b]64bit:[/b] - [2010/11/20 08:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:[b]64bit:[/b] - [2010/11/20 06:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV:[b]64bit:[/b] - [2010/11/20 04:37:42 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus) DRV:[b]64bit:[/b] - [2010/09/13 20:24:26 | 000,437,272 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor) DRV:[b]64bit:[/b] - [2010/08/20 22:59:12 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM) DRV:[b]64bit:[/b] - [2009/09/17 14:54:54 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (HECIx64) Intel(R) DRV:[b]64bit:[/b] - [2009/07/13 20:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs) DRV:[b]64bit:[/b] - [2009/07/13 20:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2) DRV:[b]64bit:[/b] - [2009/07/13 20:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor) DRV:[b]64bit:[/b] - [2009/06/10 16:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTDPV6.SYS -- (SrvHsfV92) DRV:[b]64bit:[/b] - [2009/06/10 16:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS -- (SrvHsfWinac) DRV:[b]64bit:[/b] - [2009/06/10 16:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTAZL6.SYS -- (SrvHsfHDA) DRV:[b]64bit:[/b] - [2009/06/10 15:35:33 | 000,389,120 | ---- | M] (Marvell) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7) DRV:[b]64bit:[/b] - [2009/06/10 15:35:28 | 005,434,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netw5v64.sys -- (netw5v64) Intel(R) DRV:[b]64bit:[/b] - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv) DRV:[b]64bit:[/b] - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv) DRV:[b]64bit:[/b] - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a) DRV:[b]64bit:[/b] - [2009/06/10 15:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir) DRV:[b]64bit:[/b] - [2008/07/30 23:08:34 | 000,015,784 | ---- | M] (SMART Technologies ULC) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SMARTVHidMiniVistaAmd64.sys -- (SMARTVHidMiniVistaAmd64) DRV:[b]64bit:[/b] - [2008/07/30 23:08:26 | 000,012,584 | ---- | M] (SMART Technologies ULC) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SMARTMouseFilterx64.sys -- (SMARTMouseFilterx64) DRV:[b]64bit:[/b] - [2008/07/30 23:08:24 | 000,017,832 | ---- | M] (SMART Technologies ULC) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SMARTVTabletPCx64.sys -- (SMARTVTabletPCx64) DRV:[b]64bit:[/b] - [2008/03/08 20:11:00 | 000,031,320 | ---- | M] (KORG Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\KORGUM64.SYS -- (KORGUMDS) DRV:[b]64bit:[/b] - [2007/08/06 19:21:32 | 000,057,776 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\scdemu.sys -- (SCDEmu) DRV - [2012/01/16 01:00:00 | 002,048,632 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\VirusDefs\20120126.033\EX64.SYS -- (NAVEX15) DRV - [2012/01/16 01:00:00 | 000,482,936 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys -- (eeCtrl) DRV - [2012/01/16 01:00:00 | 000,138,360 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv) DRV - [2012/01/16 01:00:00 | 000,117,880 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\VirusDefs\20120126.033\ENG64.SYS -- (NAVENG) DRV - [2011/12/23 22:17:32 | 001,157,240 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\BASHDefs\20120121.002\BHDrvx64.sys -- (BHDrvx64) DRV - [2011/12/15 18:33:20 | 000,488,568 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\IPSDefs\20120126.003\IDSviA64.sys -- (IDSVia64) DRV - [2011/11/02 10:13:12 | 000,063,880 | ---- | M] (Emsi Software GmbH) [File_System | On_Demand | Running] -- C:\Program Files (x86)\Emsisoft Anti-Malware\a2accx64.sys -- (a2acc) DRV - [2011/05/19 13:10:34 | 000,023,208 | ---- | M] (Emsi Software GmbH) [Kernel | System | Running] -- C:\Program Files (x86)\Emsisoft Anti-Malware\a2ddax64.sys -- (A2DDA) DRV - [2009/07/13 20:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPCON/4 IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com/HPCON/4 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPCON/4 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com/HPCON/4 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPCON/4 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com/HPCON/4 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..keyword.URL: "http://www.questscan.com/?tmp=nemo_results_removelink&prt=QstscanPB&keywords=" FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\Charlie Henderson\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\Charlie Henderson\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google) FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Users\Charlie Henderson\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll () FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Charlie Henderson\AppData\Local\Google\Update\1.3.21.93\npGoogleUpdate3.dll (Google Inc.) FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Charlie Henderson\AppData\Local\Google\Update\1.3.21.93\npGoogleUpdate3.dll (Google Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\IPSFFPlgn\ [2012/01/27 11:42:11 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\coFFPlgn_2011_7_0_8 [2012/01/27 11:41:53 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/01/24 22:06:40 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/12/17 18:35:59 | 000,000,000 | ---D | M] [2011/07/14 22:35:39 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Charlie Henderson\AppData\Roaming\Mozilla\Extensions [2012/01/27 12:04:00 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Charlie Henderson\AppData\Roaming\Mozilla\Firefox\Profiles\tgm0dvrw.default\extensions [2012/01/27 12:04:00 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Users\Charlie Henderson\AppData\Roaming\Mozilla\Firefox\Profiles\tgm0dvrw.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781} [2012/01/22 19:31:22 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions [2011/11/03 05:40:05 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2012/01/22 19:31:22 | 000,000,000 | ---D | M] (SMART Notebook Extension) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{D6D05E6F-D5C1-4e03-8E33-73F92B05E262} [2011/08/08 18:41:43 | 000,000,000 | ---D | M] (QuestScan) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{F0E1168A-B4B5-484C-B77E-0D28E6B64096} [2012/01/24 22:06:40 | 000,121,816 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll [2010/03/31 10:09:22 | 010,437,264 | ---- | M] (PDFTron Systems Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\PDFNetC.dll [2010/04/08 12:36:02 | 000,107,760 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\plugins\ScorchPDFWrapper.dll [2012/01/24 22:06:36 | 000,001,538 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazon-en-GB.xml [2012/01/24 22:06:36 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml [2012/01/24 22:06:36 | 000,000,947 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\chambers-en-GB.xml [2012/01/24 22:06:36 | 000,001,180 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-en-GB.xml [2012/01/24 22:06:36 | 000,001,135 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-en-GB.xml O1 HOSTS File: ([2011/08/23 23:21:03 | 000,001,836 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O1 - Hosts: 127.0.0.1 3dns.adobe.com 3dns-1.adobe.com 3dns-2.adobe.com 3dns-3.adobe.com 3dns-4.adobe.com activate.adobe.com activate-sea.adobe.com activate-sjc0.adobe.com activate.wip.adobe.com O1 - Hosts: 127.0.0.1 activate.wip1.adobe.com activate.wip2.adobe.com activate.wip3.adobe.com activate.wip4.adobe.com adobe-dns.adobe.com adobe-dns-1.adobe.com adobe-dns-2.adobe.com adobe-dns-3.adobe.com adobe-dns-4.adobe.com O1 - Hosts: 127.0.0.1 adobeereg.com practivate.adobe practivate.adobe.com practivate.adobe.newoa practivate.adobe.ntp practivate.adobe.ipp ereg.adobe.com ereg.wip.adobe.com ereg.wip1.adobe.com O1 - Hosts: 127.0.0.1 ereg.wip2.adobe.com ereg.wip3.adobe.com ereg.wip4.adobe.com hl2rcv.adobe.com wip.adobe.com wip1.adobe.com wip2.adobe.com wip3.adobe.com wip4.adobe.com O1 - Hosts: 127.0.0.1 www.adobeereg.com wwis-dubc1-vip60.adobe.com www.wip.adobe.com www.wip1.adobe.com O1 - Hosts: 127.0.0.1 www.wip2.adobe.com www.wip3.adobe.com www.wip4.adobe.com wwis-dubc1-vip60.adobe.com crl.verisign.net CRL.VERISIGN.NET ood.opsource.net O1 - Hosts: 127.0.0.1 activate.adobe.com O2 - BHO: (Symantec NCO BHO) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\CoIEPlg.dll (Symantec Corporation) O2 - BHO: (CIEDownload Object) - {67BCF957-85FC-4036-8DC4-D4D80E00A77B} - C:\Program Files (x86)\SMART Technologies\Notebook Software\NotebookPlugin.dll (SMART Technologies ULC.) O2 - BHO: (Symantec Intrusion Prevention) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\IPS\IPSBHO.dll (Symantec Corporation) O2 - BHO: (Adobe PDF Link Helper) - {7863175D-410D-6845-1331-73BA140629AA} - C:\Windows\SysWOW64\ReAgennt.dll (Microsoft Corporation) O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\CoIEPlg.dll (Symantec Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated) O4:[b]64bit:[/b] - HKLM..\Run: [BTMTrayAgent] C:\Program Files\Motorola\Bluetooth\btmshell.dll (Motorola Solutions, Inc.) O4:[b]64bit:[/b] - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [HPWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe () O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.) O4 - HKLM..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin File not found O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [EEventManager] C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION) O4 - HKLM..\Run: [emsisoft anti-malware] C:\Program Files (x86)\Emsisoft Anti-Malware\a2guard.exe (Emsi Software GmbH) O4 - HKLM..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Development Company, L.P.) O4 - HKLM..\Run: [HPOSD] C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (Hewlett-Packard Development Company, L.P.) O4 - HKLM..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE (PowerISO Computing, Inc.) O4 - HKLM..\Run: [SMART Board Service] C:\Program Files (x86)\SMART Technologies\SMART Board Drivers\SMARTBoardService.exe (SMART Technologies) O4 - HKLM..\Run: [SMART SNMP Agent] C:\Program Files (x86)\SMART Technologies\SMART Board Drivers\SMARTSNMPAgent.exe (SMART Technologies ULC) O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated) O4 - HKCU..\Run: [Epson Stylus NX420(Network)] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGCA.EXE /FU "C:\Windows\TEMP\E_SEE1F.tmp" /EF "HKCU" File not found O4 - HKCU..\Run: [Epson Stylus NX420(Network) (Copy 1)] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGCA.EXE /FU "C:\Windows\TEMP\E_SA23B.tmp" /EF "HKCU" File not found O4 - HKCU..\Run: [Facebook Update] C:\Users\Charlie Henderson\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.) O4 - HKCU..\Run: [Startup] C:\Users\Charlie Henderson\AppData\Roaming\Microsoft\svchost.exe File not found O4 - HKCU..\Run: [uTorrent] C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent, Inc.) O4 - HKCU..\Run: [Windows86] "C:\Users\Charlie Henderson\Downloads\Microsoft Office 2010 KeYGeN ][ + Patch Activation -- ] GeNeRaPRG\Microsoft Office 2010 KeYGeN ][ + Patch Activation -- ] GeNeRaPRG\KeYGeN GiV.exe" File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O9:[b]64bit:[/b] - Extra Button: @C:\Program Files\Motorola\Bluetooth\btmshell.dll,-247 - {bd707fe6-39f6-4bda-9265-86a76719bdc5} - C:\Program Files\Motorola\Bluetooth\btmiesend.htm () O9:[b]64bit:[/b] - Extra 'Tools' menuitem : @C:\Program Files\Motorola\Bluetooth\btmshell.dll,-247 - {bd707fe6-39f6-4bda-9265-86a76719bdc5} - C:\Program Files\Motorola\Bluetooth\btmiesend.htm () O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra Button: @C:\Program Files\Motorola\Bluetooth\btmshell.dll,-247 - {bd707fe6-39f6-4bda-9265-86a76719bdc5} - C:\Program Files\Motorola\Bluetooth\btmiesend.htm () O9 - Extra 'Tools' menuitem : @C:\Program Files\Motorola\Bluetooth\btmshell.dll,-247 - {bd707fe6-39f6-4bda-9265-86a76719bdc5} - C:\Program Files\Motorola\Bluetooth\btmiesend.htm () O13[b]64bit:[/b] - gopher Prefix: missing O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22) O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1B74ACA8-4D20-4A24-B408-6C16452C6B48}: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7F2B8DF0-F251-41C4-9556-AE134CDDA27D}: DhcpNameServer = 24.25.5.60 24.25.5.61 O18:[b]64bit:[/b] - Protocol\Handler\livecall - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\ms-help - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\msnim - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\skype-ie-addon-data - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\wlpg - No CLSID value found O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (userinit.exe) -C:\Windows\SysWow64\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation) O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O33 - MountPoints2\G\Shell - "" = AutoRun O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\AutoRun.exe O34 - HKLM BootExecute: (autocheck autochk *) O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %* O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012/01/27 11:48:05 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\Desktop\GooredFix Backups [2012/01/27 11:37:11 | 000,000,000 | ---D | C] -- C:\_OTM [2012/01/27 11:33:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Emsisoft Anti-Malware [2012/01/27 11:32:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Emsisoft Anti-Malware [2012/01/27 11:32:28 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\Documents\Anti-Malware [2012/01/27 09:32:02 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{F35A4D53-2FBB-4891-8466-BDE768FFA324} [2012/01/27 09:31:50 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{EC5037BA-C9EA-4E81-97DF-47CDFCC3C1DC} [2012/01/27 09:31:37 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{42C481D6-63A8-4748-89CA-0E18C2525603} [2012/01/27 09:31:24 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{30B4117A-9B6D-44A1-86AE-0C658C6C006A} [2012/01/27 00:27:20 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PDFtoMusic Pro [2012/01/27 00:27:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PDFtoMusic Pro [2012/01/26 21:31:12 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{E3F1DE63-A468-4DF3-BC5D-D0DE61BD7ACF} [2012/01/26 21:31:02 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{C7BCF6F8-B0E3-4B4F-9C2F-DD6074BEEC74} [2012/01/26 21:30:52 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{F926462E-3D6B-4DBB-B099-53F700212F07} [2012/01/26 21:30:42 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{126DDD59-37BC-4675-92CA-FAE78BD19FED} [2012/01/26 09:30:28 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{23AA4267-4CF3-434E-9A3F-A996C3BE3F9B} [2012/01/26 09:30:16 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{BF626E65-4F71-48C7-BC2B-3DBB38B54AC9} [2012/01/26 09:30:02 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{16309230-A949-47A7-943B-AC9EF30BDE24} [2012/01/26 09:29:47 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{F76CD0AF-093C-4ECE-AE05-9ECC7B69F536} [2012/01/25 21:29:33 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{5F9B51DC-930E-4B7A-BADD-33C98B2C0BDB} [2012/01/25 21:29:21 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{88DF5A95-C62B-486C-838E-D6AE554F2D50} [2012/01/25 21:29:08 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{4A947D42-837F-4A2D-B1FE-1A3174389AF6} [2012/01/25 21:28:52 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{E285BD9C-6553-40A8-A4C2-3BA09DC3FE86} [2012/01/25 09:27:57 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{44367332-18F0-4C2A-B4B9-D2022543C7C5} [2012/01/25 08:10:24 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{CA464092-E31E-4551-BEBA-8DE287023B0E} [2012/01/25 08:09:38 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{87AD258E-BFD1-4F66-B1F8-A460319D95B9} [2012/01/24 17:54:35 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{C12334D4-8B2B-4C1D-ABCD-EEECAAA7A601} [2012/01/24 17:54:25 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{DF8FD4C4-0848-45F9-B273-89A70801C4CB} [2012/01/24 17:54:16 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{2F661518-93E4-4BAD-BB2C-2FA2E4DE29DF} [2012/01/24 17:54:06 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{C09A9EED-BAFA-4144-9DAE-3F7293DEAC4A} [2012/01/24 05:53:54 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{0DB0C5F1-4920-436F-8F8E-E789645BA874} [2012/01/24 05:53:45 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{8FCA6D91-F478-425B-89F5-9E0E607A07A8} [2012/01/24 05:53:35 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{6227B1EB-498D-43B9-9993-8CC539E314C8} [2012/01/24 05:52:57 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{2C13765C-2BA5-41B9-BB94-0A24E6C5F05E} [2012/01/23 22:34:28 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\Documents\Teaching Resources [2012/01/23 13:24:41 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{5AD018DA-E83C-43B6-A80F-8A589EF53102} [2012/01/23 13:24:31 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{D846BD7C-DDE7-461A-AAFA-1E7DE4EC591E} [2012/01/23 13:24:22 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{939E9925-9A16-49D5-9A71-E2A68FB665D3} [2012/01/23 13:24:11 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{DC6303CF-A943-4ACF-823C-DEDE44E1638B} [2012/01/23 01:23:57 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{01E8799B-F222-4EF6-95E8-77149DA840A8} [2012/01/23 01:23:47 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{73AB85A4-4DFB-42E9-9E4A-39E83D2A86D3} [2012/01/23 01:23:33 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{08451277-AD3A-4518-AA69-3C9BE11BD47B} [2012/01/23 01:23:19 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{DF276E5D-E7BB-463F-974C-0F31740B3E94} [2012/01/22 21:29:40 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\Documents\My Notebook Content [2012/01/22 21:29:29 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\SMART Technologies Inc [2012/01/22 20:36:09 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Roaming\SMART Technologies [2012/01/22 20:32:47 | 000,033,064 | ---- | C] (SMART Technologies) -- C:\Windows\SysNative\smrtlocalmon.dll [2012/01/22 20:32:47 | 000,022,312 | ---- | C] (SMART Technologies Inc.) -- C:\Windows\SysNative\smrtlocalui.dll [2012/01/22 19:32:28 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Roaming\SMART Technologies Inc [2012/01/22 19:32:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SMART Technologies [2012/01/22 19:31:52 | 000,110,592 | ---- | C] (TechSmith Corporation) -- C:\Windows\SysWow64\tsccvid.dll [2012/01/22 19:31:28 | 000,000,000 | ---D | C] -- C:\ProgramData\SMART Technologies [2012/01/22 19:31:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SMART Technologies [2012/01/22 19:31:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\SMART Technologies [2012/01/22 19:30:49 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\Downloaded Installations [2012/01/22 13:23:05 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{8117C766-8D53-421B-B767-BFBD9609F379} [2012/01/22 13:22:55 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{FEB4EC84-4D39-4FF1-89FE-7FF198E56B12} [2012/01/22 13:22:42 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{7235CB0B-B848-4777-8D9C-931F190FD45A} [2012/01/22 13:22:29 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{9D98D931-0236-4E36-B05C-09BFB1791350} [2012/01/22 01:22:17 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{C4DB70A8-88AE-47A3-8B0E-32759BCFA0BD} [2012/01/22 01:22:08 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{04546B27-88C5-4DE1-A829-1592C3900D2A} [2012/01/22 01:21:59 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{3B90FDB7-4E1C-4887-AD68-9D2AE399E8F6} [2012/01/22 01:21:23 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{7C6BF1B7-67D0-4309-A1AA-CBBC1A7FA623} [2012/01/21 10:35:20 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{029A6C94-61B5-448B-B6FC-BC0EAD3A8F7D} [2012/01/21 10:35:00 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{F60A2FFE-5EAF-474C-A0D0-97D006F65357} [2012/01/21 06:46:25 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{B74EA57D-A5E8-48AE-954C-B9810475F11F} [2012/01/20 15:46:41 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{627EDBD5-E1F0-43DB-A313-3D06629B4A06} [2012/01/20 15:45:52 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{61A134D1-ED46-4B4C-93B6-3E34D1E1B3BA} [2012/01/20 14:01:19 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{7AC67704-3E6A-42D1-BB8E-48B3F6775EFA} [2012/01/19 23:56:22 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\.pdfsam [2012/01/19 23:53:09 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PDF Split And Merge [2012/01/19 23:53:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\pdfsam [2012/01/19 21:17:46 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{90DA5318-193D-44EE-A597-8A151566343B} [2012/01/19 21:17:36 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{0BA34302-F4F8-474A-8586-703FCCA2BDA3} [2012/01/19 21:17:27 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{0AA3E26A-06FE-4FF3-93BD-795C3B711AB1} [2012/01/19 21:17:16 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{15FAD005-38BE-4512-8CC2-3B6299DED807} [2012/01/19 05:51:49 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{ABD847C4-1113-41AB-BD0E-94CF7BCF6A46} [2012/01/19 05:51:39 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{2299DB52-733A-4921-A145-7AA36479EE15} [2012/01/19 05:51:30 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{2A3795AA-D232-4632-AC81-587AA8A08E7D} [2012/01/19 05:51:20 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{15BADAF5-2B3D-46C7-A835-D64521803E02} [2012/01/18 15:11:59 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{8B0CD43E-BEBE-43B1-A18A-A3E9F773B9FA} [2012/01/18 15:11:48 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{336176BA-4D0C-4CF4-8DBA-27B733FCCE1B} [2012/01/18 15:11:36 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{EA833AAB-CEC5-41E0-BA73-AA0A6F827E56} [2012/01/18 15:10:54 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{5A9E184D-5689-42E0-AE24-EBF7F7745717} [2012/01/18 10:26:41 | 052,128,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MRT.exe [2012/01/18 00:31:47 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{083E7825-1AB9-43C4-A0DC-2181B5728BE3} [2012/01/18 00:31:36 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{BD75FF6A-AE4C-4364-BD27-2306950E4F2E} [2012/01/18 00:31:23 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{BE85EDD2-2E49-49E0-9996-C780CE4FF678} [2012/01/18 00:31:10 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{363FF360-973F-4CAF-B1EC-12DDB8D98C87} [2012/01/17 12:30:52 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{E12B92B7-F656-422A-A99F-576DEAD33C36} [2012/01/17 12:30:42 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{E7298D41-86BB-4E8A-934A-31C9E3935B1B} [2012/01/17 12:30:31 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{3F7A12F8-E1F4-4E02-904C-33C6B4D48081} [2012/01/17 12:30:19 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{AA39FE2A-8FE1-4E99-932E-A8DD74BDE663} [2012/01/16 21:29:50 | 000,034,152 | ---- | C] (GEAR Software Inc.) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys [2012/01/16 21:29:50 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DRVSTORE [2012/01/16 21:29:49 | 000,174,200 | ---- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS [2012/01/16 21:29:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Symantec Shared [2012/01/16 21:29:49 | 000,000,000 | ---D | C] -- C:\Program Files\Symantec [2012/01/16 21:29:25 | 000,912,504 | R--- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\SymEFA64.sys [2012/01/16 21:29:25 | 000,744,568 | R--- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\srtsp64.sys [2012/01/16 21:29:25 | 000,450,680 | R--- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\SymDS64.sys [2012/01/16 21:29:25 | 000,386,168 | R--- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\symnets.sys [2012/01/16 21:29:25 | 000,171,128 | R--- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\Ironx64.sys [2012/01/16 21:29:25 | 000,040,568 | R--- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\srtspx64.sys [2012/01/16 21:29:20 | 000,125,872 | ---- | C] (GEAR Software Inc.) -- C:\Windows\SysNative\GEARAspi64.dll [2012/01/16 21:29:20 | 000,106,928 | ---- | C] (GEAR Software Inc.) -- C:\Windows\SysWow64\GEARAspi.dll [2012/01/16 21:29:11 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\N360x64 [2012/01/16 21:29:11 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\N360x64\0501000.01D [2012/01/16 21:29:08 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton 360 [2012/01/16 21:29:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Norton 360 [2012/01/16 21:28:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NortonInstaller [2012/01/16 21:28:37 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{B7C80D24-F25B-46BC-B224-E26782216818} [2012/01/16 21:28:24 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{DA6C7390-D9F7-4955-8612-F38660AAFC47} [2012/01/16 20:53:37 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Norton [2012/01/16 17:56:26 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{B7FF8338-7FE3-46F9-8685-71DB7F515B1F} [2012/01/16 17:52:55 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{673CC780-D0F9-4018-B7E3-C6C5032F9495} [2012/01/16 05:51:32 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{8565B07C-FE9E-4174-A1C4-EFFA2536B31C} [2012/01/16 05:51:23 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{244478D9-6C69-41AF-A64B-2451736BBE5C} [2012/01/16 05:51:13 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{CD10534B-61BF-4CCA-B3AC-1A27F7D31963} [2012/01/16 05:51:04 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{F7E89A48-E2A0-4FF4-BD2F-79F899BA1718} [2012/01/15 17:20:44 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\Desktop\Adobe CS5 [2012/01/15 15:09:18 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{18618CF1-E35B-4324-845F-F76BB1FB2728} [2012/01/15 15:09:08 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{57E74B04-C36E-424C-B2AA-A601D9422A2E} [2012/01/15 15:08:59 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{B19DA077-B86C-443E-98B6-D18666478466} [2012/01/15 15:08:49 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{5E976350-4C85-48F0-B7B1-43D855F52F2A} [2012/01/15 01:06:04 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{A6379DA4-0BAA-4299-8E46-8C267B909E47} [2012/01/15 01:05:58 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{716CBECC-2F45-42C2-A41A-306C435362BC} [2012/01/15 01:05:49 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{00D8E566-7E89-405A-889A-3C6DAFF3CCFC} [2012/01/15 01:05:39 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{4749C195-8C01-4868-AF33-DEFC1B4C9338} [2012/01/14 11:01:32 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{7A1509C8-6930-4C90-AE41-7CF2C755C7CF} [2012/01/14 11:01:23 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{F4058790-C534-4E7F-AE26-EE0F507A9D33} [2012/01/14 07:32:42 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{7C6DDE23-DBDD-48E1-BD4C-7704F33A8CBC} [2012/01/13 19:25:14 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{9E5B3A08-3780-4C6D-B968-19EE62B0B3EE} [2012/01/13 19:25:05 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{588D2960-A5A8-4750-9DEE-77F89C4B04BB} [2012/01/13 19:24:55 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{8DA92441-ED4F-41DC-B240-E513D51BD9E5} [2012/01/13 19:24:42 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{37602813-6CE9-44AE-ACAD-9A7EA656BF8E} [2012/01/13 07:24:17 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{E81818B4-F915-48C2-BE66-C476CC3483D0} [2012/01/13 07:24:08 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{C539CDE8-42B1-4CA4-A944-F622A2D7C386} [2012/01/13 07:23:58 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{3F5CDD3F-74D6-4351-8494-F6F7BDBC7A06} [2012/01/13 07:23:48 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{357D6723-0C34-42FA-8B09-416253A7B3DE} [2012/01/12 19:25:23 | 001,447,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll [2012/01/12 19:25:23 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webio.dll [2012/01/12 19:25:23 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webio.dll [2012/01/12 19:25:22 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll [2012/01/12 19:25:22 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll [2012/01/12 19:25:22 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll [2012/01/12 19:23:37 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{B01B7CD3-B1E2-46BB-A4F9-8097BA8A4CB6} [2012/01/12 19:23:27 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{2BE8F2A4-7C13-4AE0-9BEA-97A26E812927} [2012/01/12 19:23:18 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{5D940CCC-F172-45E9-A981-1424926ED1BE} [2012/01/12 19:23:08 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{4D36A88D-78DB-4A0A-960E-111879CECA62} [2012/01/12 06:03:42 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{2471AD36-A2C9-4541-9F54-9C7E01912084} [2012/01/12 06:03:26 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{266AB5C9-83C0-4FCA-9B31-551194081916} [2012/01/12 06:03:17 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{1ADCAE6D-0017-4FB4-B1A8-B67AFCBCC7C0} [2012/01/12 06:03:05 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{42137214-4742-42E8-866B-423A4B2FE047} [2012/01/11 18:01:55 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{FF94A7FE-F68C-4C4F-8AF8-6925537AA13A} [2012/01/11 18:01:45 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{A6799041-CFF0-4665-AC48-33FBDB3F168F} [2012/01/11 18:01:36 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{B190F32A-6B69-4C85-93E1-832DE2841BA6} [2012/01/11 18:01:26 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{1C8AC511-8E31-4125-A465-CA8E381DB13A} [2012/01/11 10:41:11 | 001,572,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll [2012/01/11 10:41:11 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll [2012/01/11 10:41:10 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll [2012/01/11 10:41:10 | 000,366,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll [2012/01/11 10:41:09 | 000,918,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll [2012/01/11 10:41:09 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll [2012/01/11 10:41:07 | 001,731,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll [2012/01/11 10:41:06 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\packager.dll [2012/01/11 10:41:06 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\packager.dll [2012/01/11 06:01:14 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{32FA9ED8-728C-41E7-A743-7B81075164CE} [2012/01/11 06:01:05 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{65C719DE-135C-43CD-9EC0-A4D1EBEC38A0} [2012/01/11 06:00:55 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{DF8599D1-3ADE-40E0-8D5E-D27F9C8A58EE} [2012/01/11 06:00:46 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{ECEB5641-6022-47C3-9C4D-E03C97B3B906} [2012/01/10 18:00:20 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{9E9652C0-0EB2-489E-993C-692E38E7396C} [2012/01/10 18:00:11 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{0B08CF85-04DA-47DA-B25F-09AA6A819463} [2012/01/10 18:00:01 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{D968CD9C-82FE-4F03-9A0F-E3769E9A9711} [2012/01/10 17:59:51 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{BBA16C30-7C13-4D15-9FE4-4C26FB942C3D} [2012/01/10 05:59:36 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{A358294C-4786-4ED1-A4A0-48D363081C33} [2012/01/10 05:59:24 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{13C00C55-A25E-4047-8256-F9CD97F24EFB} [2012/01/10 05:59:12 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{D0FFEE39-18BA-4A08-90CF-69BB175FCC23} [2012/01/10 05:59:00 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{5124F01F-46B0-450D-B370-9A34AE248488} [2012/01/09 17:58:48 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{1535031E-B3D8-4C36-91C7-C37B32563C1A} [2012/01/09 17:58:38 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{C02BCE44-76BC-4272-8166-5335BEF7AD08} [2012/01/09 17:58:29 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{8F974016-5E84-4949-BC08-8BB2520EA504} [2012/01/09 17:58:18 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{CE704C82-5F35-42B7-B730-F132B4CEC6BC} [2012/01/09 06:26:05 | 000,052,736 | ---- | C] (Motorola Solutions, Inc.) -- C:\Windows\SysNative\drivers\btmcom.sys [2012/01/09 06:25:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bluetooth [2012/01/09 06:25:52 | 000,009,048 | ---- | C] (Motorola Solutions, Inc.) -- C:\Windows\SysNative\btmsstverschk.dll [2012/01/09 06:24:37 | 000,326,736 | ---- | C] (Motorola Solutions, Inc.) -- C:\Windows\SysNative\btmcls.dll [2012/01/09 06:24:29 | 000,663,936 | ---- | C] (Motorola Solutions, Inc.) -- C:\Windows\SysNative\drivers\btmusb.sys [2012/01/09 06:24:28 | 000,000,000 | ---D | C] -- C:\Program Files\Motorola [2012/01/09 06:24:21 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Macrovision Shared [2012/01/09 06:24:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Macrovision Shared [2012/01/09 05:57:54 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{3D1063BB-0D25-414C-BFA0-69FA383B6998} [2012/01/09 05:57:45 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{48B166B8-5B7F-4C9E-A1A6-DE78A0D0A8FA} [2012/01/09 05:57:35 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{DDD6DD53-9CFB-46A6-95CC-6C13F2952999} [2012/01/09 05:57:25 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{1421C940-F105-429D-85B7-97556B6552C1} [2012/01/08 14:50:49 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{68CEBF68-98F5-4253-AA9A-6B485CC42F53} [2012/01/08 14:50:38 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{EF60585F-5068-4889-93D1-B0BEA5DEDCE2} [2012/01/08 13:14:18 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{409928E6-0D18-4320-805F-AADB64587BDC} [2012/01/08 01:25:57 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Roaming\Plogue [2012/01/08 01:12:48 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{8F4D2777-A5C3-4CD0-B37E-F30E01B529F9} [2012/01/08 01:12:38 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{9AE430C8-7808-4B98-B29A-F2673542740F} [2012/01/07 22:17:13 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Roaming\Nitro PDF [2012/01/07 22:15:05 | 000,028,960 | ---- | C] (Nitro PDF Software) -- C:\Windows\SysNative\nitrolocalmon2.dll [2012/01/07 22:15:05 | 000,017,184 | ---- | C] (Nitro PDF Software) -- C:\Windows\SysNative\nitrolocalui2.dll [2012/01/07 22:14:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Nitro PDF [2012/01/07 22:14:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Nitro PDF [2012/01/07 22:14:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Nitro PDF [2012/01/07 22:14:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Nitro PDF [2012/01/07 22:12:04 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Roaming\Downloaded Installations [2012/01/07 21:45:34 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\Documents\Myriad Documents [2012/01/07 21:45:34 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Roaming\ACAMPREF [2012/01/07 13:12:26 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{8025983E-66CC-4603-8091-2CA17F2E9F89} [2012/01/07 13:12:17 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{615D123F-68C0-4E9A-A7F2-2FD8F90C83D9} [2012/01/07 13:12:07 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{D654DDC0-3FBB-4DB1-885A-D5C448F121F5} [2012/01/07 13:11:57 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{2B24B140-0F57-477E-9BC0-1D8D502FDAF6} [2012/01/07 00:11:53 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{75A75793-55FE-4619-836F-E10456AA0B4A} [2012/01/07 00:11:43 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{F46CF0D1-3B97-41AD-A78D-51C10ED52E86} [2012/01/07 00:11:34 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{5666C870-F61C-468F-9A3A-611514827643} [2012/01/07 00:11:21 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{9E2EAFB4-3FFA-40EB-A3E4-C2559D85D76E} [2012/01/06 12:11:08 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{DC8B5D24-ACD9-49EA-9DCA-6B59711FE263} [2012/01/06 12:10:59 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{E71E8452-1A0C-4710-A1A2-AAEF9F1679E4} [2012/01/06 12:10:49 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{DADC8F23-3D87-44E0-AB51-A1F28CDEFFE9} [2012/01/06 12:10:40 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{64EFB6E7-C8CA-4AA2-AFA7-ED534C8C0939} [2012/01/06 00:10:27 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{62D98456-392E-4334-AF07-866129332F83} [2012/01/06 00:10:18 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{B4B957BF-8623-4A5B-91B4-0156B541469B} [2012/01/06 00:10:08 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{38F0CD1B-7EB7-4B4E-93E8-D3EB4EE6BCE3} [2012/01/06 00:09:57 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{F0A94017-F866-430C-AF67-7071D5B417D1} [2012/01/05 21:25:07 | 000,000,000 | --SD | C] -- C:\Users\Charlie Henderson\Documents\My Data Sources [2012/01/05 12:09:46 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{16C15E91-4C78-4054-9788-A6E7B3EE8738} [2012/01/05 12:09:37 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{1ED0D95F-9389-4FC2-9FE6-08D45B36A79F} [2012/01/05 12:09:27 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{DFA2D8D1-7DF4-4428-A525-C114833C4346} [2012/01/05 12:09:17 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{CDF3CE60-97AC-48D4-A484-A250B293B99C} [2012/01/04 23:47:47 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{37459E1E-B38E-4FB9-A890-C63D161939A2} [2012/01/04 23:47:37 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{0B6051C7-6C2A-48A1-8E4E-0FC134FC5D56} [2012/01/04 23:47:28 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{6EC114C4-37A3-4F2C-8E5A-20B4EEB3BDAC} [2012/01/04 23:47:18 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{77E308B4-1DB0-4928-A6A4-D56A3EB5B5BC} [2012/01/04 11:47:03 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{F515DD10-1C32-4C10-8781-5156100A03DD} [2012/01/04 11:46:52 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{2F864900-F296-4FFE-A65A-7E6D2740E95B} [2012/01/04 11:46:39 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{7075F742-CAF9-43F3-A545-8B0F8A54E870} [2012/01/04 11:46:25 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{3B4C4D6F-9292-43FB-871F-58DFBC658126} [2012/01/03 23:46:13 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{B8E0611C-E60B-4AA8-B820-A79C1C353BAF} [2012/01/03 23:46:02 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{EF5346DD-732F-4E54-ADA5-D4567014BC71} [2012/01/03 23:45:51 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{8E85E2B3-2BCF-4773-ACDD-058D08FFA006} [2012/01/03 23:45:38 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{27E1FB35-ECCC-49F4-B0F2-EF269904D75A} [2012/01/03 11:39:23 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{2A5D2ADB-E814-4BB4-8098-DAF26CCE3495} [2012/01/03 11:39:13 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{7AD39BD9-2F4B-4B44-A53D-07B466966CF1} [2012/01/03 11:39:04 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{674D7A1F-9A6D-4C26-91C6-0DB9ED85B6B0} [2012/01/03 11:38:54 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{8CF5AA06-4221-463E-B6EA-6777BE855B0B} [2012/01/02 00:34:51 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{71362C8B-16AB-4E33-937C-B7223AB425A4} [2012/01/02 00:34:49 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{AF2A31D8-642D-40E7-BFBE-3C6A31605043} [2012/01/02 00:34:41 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{21748183-18B2-4443-AC33-3B2441F0D617} [2012/01/02 00:34:31 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{06061D79-815F-4E53-A603-3D80276A87DC} [2011/12/29 10:32:02 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{4D6DE8AD-F4AC-482C-BE0F-34A3C5639C87} [2011/12/29 10:31:53 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{BFFC94C8-CDF5-4EDF-AE74-C6E61CA3EEE7} [2011/12/29 10:31:42 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{A1113C2F-BFC2-4761-9842-98895206EFD3} [2011/12/28 22:11:42 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\Documents\Finale Files [2011/12/28 19:55:19 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{4CACAFC7-71C7-43AC-AA6A-FC0CF241AB4F} [2011/12/28 19:55:09 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{8AFE4B2F-558F-4E02-B050-6142F978ACF5} [2011/12/28 19:55:00 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{93334617-85D4-4BA6-A5AB-C5A67731DF7C} [2011/12/28 19:54:48 | 000,000,000 | ---D | C] -- C:\Users\Charlie Henderson\AppData\Local\{3F8C0CA1-EDA8-44B1-BE04-15F0DB585632} [2010/11/18 23:27:00 | 000,587,776 | ---- | C] (Igor Pavlov) -- C:\Users\Charlie Henderson\AppData\Roaming\7za.exe [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012/01/27 12:11:01 | 000,000,976 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-174769313-1577546451-3502020474-1001UA.job [2012/01/27 12:03:01 | 000,000,956 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-174769313-1577546451-3502020474-1001UA.job [2012/01/27 11:49:43 | 000,026,192 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2012/01/27 11:49:43 | 000,026,192 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2012/01/27 11:41:33 | 000,000,380 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForCharlie Henderson.job [2012/01/27 11:41:33 | 000,000,326 | ---- | M] () -- C:\Windows\tasks\Xpxstzutf.job [2012/01/27 11:41:24 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2012/01/27 11:41:17 | 3062,255,616 | -HS- | M] () -- C:\hiberfil.sys [2012/01/27 11:36:18 | 263,797,158 | ---- | M] () -- C:\Users\Charlie Henderson\Desktop\registry ja 27.reg [2012/01/27 11:33:00 | 000,001,115 | ---- | M] () -- C:\Users\Charlie Henderson\Application Data\Microsoft\Internet Explorer\Quick Launch\Emsisoft Anti-Malware.lnk [2012/01/27 11:32:59 | 000,001,091 | ---- | M] () -- C:\Users\Public\Desktop\Emsisoft Anti-Malware.lnk [2012/01/27 00:13:34 | 000,000,059 | ---- | M] () -- C:\Windows\wpd99.drv [2012/01/25 23:43:11 | 000,726,316 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2012/01/25 23:43:11 | 000,628,460 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2012/01/25 23:43:11 | 000,110,612 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2012/01/25 18:11:00 | 000,000,954 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-174769313-1577546451-3502020474-1001Core.job [2012/01/25 18:03:01 | 000,000,904 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-174769313-1577546451-3502020474-1001Core.job [2012/01/23 13:02:13 | 000,267,516 | ---- | M] () -- C:\Users\Charlie Henderson\Desktop\img011.pdf [2012/01/23 12:58:28 | 000,588,552 | ---- | M] () -- C:\Users\Charlie Henderson\Desktop\img010.jpg [2012/01/22 20:35:59 | 001,897,292 | ---- | M] () -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\Cat.DB [2012/01/22 20:34:38 | 000,002,280 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SMART Board Tools.lnk [2012/01/22 19:32:12 | 000,002,215 | ---- | M] () -- C:\Users\Public\Desktop\Notebook Software 10.lnk [2012/01/22 01:21:26 | 000,000,346 | ---- | M] () -- C:\Windows\tasks\At1.job [2012/01/16 21:56:22 | 001,455,477 | ---- | M] () -- C:\Users\Charlie Henderson\Desktop\agony2.xml [2012/01/16 21:53:17 | 000,197,796 | ---- | M] () -- C:\Users\Charlie Henderson\Desktop\agony2.pdf [2012/01/16 21:51:39 | 000,210,177 | ---- | M] () -- C:\Users\Charlie Henderson\Desktop\agony.pdf [2012/01/16 21:29:49 | 000,174,200 | ---- | M] (Symantec Corporation) -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS [2012/01/16 21:29:49 | 000,007,488 | ---- | M] () -- C:\Windows\SysNative\drivers\SYMEVENT64x86.CAT [2012/01/16 21:29:49 | 000,000,855 | ---- | M] () -- C:\Windows\SysNative\drivers\SYMEVENT64x86.INF [2012/01/16 21:29:41 | 000,002,460 | ---- | M] () -- C:\Users\Public\Desktop\Norton 360.lnk [2012/01/16 21:27:16 | 000,001,314 | ---- | M] () -- C:\Users\Charlie Henderson\Desktop\Norton Installation Files.lnk [2012/01/16 21:26:48 | 005,231,064 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [2012/01/15 17:42:36 | 000,094,720 | RHS- | M] () -- C:\Windows\SysWow64\helps.dll [2012/01/10 09:35:06 | 000,023,390 | ---- | M] () -- C:\Users\Charlie Henderson\Desktop\charlie headshot.jpg [2012/01/08 12:24:49 | 000,228,457 | ---- | M] () -- C:\Users\Charlie Henderson\Desktop\love's a bond.wav.asd [2012/01/08 01:33:53 | 000,004,972 | ---- | M] () -- C:\Users\Charlie Henderson\Desktop\mighty morphin power rangers wrist communicator sound.mp3.asd [2012/01/07 22:14:54 | 000,002,059 | ---- | M] () -- C:\Users\Public\Desktop\Nitro Pro 7.lnk [2012/01/07 21:50:43 | 000,892,769 | ---- | M] () -- C:\Users\Charlie Henderson\Desktop\Love's a Bond.xml [2012/01/04 17:15:16 | 052,128,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\MRT.exe [2012/01/02 15:33:12 | 000,000,354 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForCHARLIE-LAPTOP$.job [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012/01/27 11:34:54 | 263,797,158 | ---- | C] () -- C:\Users\Charlie Henderson\Desktop\registry ja 27.reg [2012/01/27 11:33:00 | 000,001,115 | ---- | C] () -- C:\Users\Charlie Henderson\Application Data\Microsoft\Internet Explorer\Quick Launch\Emsisoft Anti-Malware.lnk [2012/01/27 11:32:59 | 000,001,091 | ---- | C] () -- C:\Users\Public\Desktop\Emsisoft Anti-Malware.lnk [2012/01/22 20:34:38 | 000,002,280 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SMART Board Tools.lnk [2012/01/22 19:32:12 | 000,002,215 | ---- | C] () -- C:\Users\Public\Desktop\Notebook Software 10.lnk [2012/01/16 21:56:22 | 001,455,477 | ---- | C] () -- C:\Users\Charlie Henderson\Desktop\agony2.xml [2012/01/16 21:53:09 | 000,197,796 | ---- | C] () -- C:\Users\Charlie Henderson\Desktop\agony2.pdf [2012/01/16 21:51:17 | 000,210,177 | ---- | C] () -- C:\Users\Charlie Henderson\Desktop\agony.pdf [2012/01/16 21:30:57 | 001,897,292 | ---- | C] () -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\Cat.DB [2012/01/16 21:29:49 | 000,007,488 | ---- | C] () -- C:\Windows\SysNative\drivers\SYMEVENT64x86.CAT [2012/01/16 21:29:49 | 000,000,855 | ---- | C] () -- C:\Windows\SysNative\drivers\SYMEVENT64x86.INF [2012/01/16 21:29:41 | 000,002,460 | ---- | C] () -- C:\Users\Public\Desktop\Norton 360.lnk [2012/01/16 21:29:25 | 000,000,000 | R--- | C] () -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\SymDS64.cat [2012/01/16 21:29:12 | 000,003,373 | R--- | C] () -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\SymEFA.inf [2012/01/16 21:29:12 | 000,002,792 | R--- | C] () -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\SymDS.inf [2012/01/16 21:29:12 | 000,001,446 | R--- | C] () -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\SymNet.inf [2012/01/16 21:29:12 | 000,001,438 | R--- | C] () -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\srtsp64.inf [2012/01/16 21:29:12 | 000,001,422 | R--- | C] () -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\srtspx64.inf [2012/01/16 21:29:12 | 000,000,772 | R--- | C] () -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\Iron.inf [2012/01/16 21:29:11 | 000,007,492 | R--- | C] () -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\iron.cat [2012/01/16 21:29:11 | 000,007,462 | R--- | C] () -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\srtspx64.cat [2012/01/16 21:29:11 | 000,007,460 | R--- | C] () -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\SymEFA64.cat [2012/01/16 21:29:11 | 000,007,458 | R--- | C] () -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\symnet64.cat [2012/01/16 21:29:11 | 000,007,458 | R--- | C] () -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\srtsp64.cat [2012/01/16 21:29:11 | 000,000,172 | ---- | C] () -- C:\Windows\SysNative\drivers\N360x64\0501000.01D\isolate.ini [2012/01/16 20:53:37 | 000,001,314 | ---- | C] () -- C:\Users\Charlie Henderson\Desktop\Norton Installation Files.lnk [2012/01/15 17:42:37 | 000,000,326 | ---- | C] () -- C:\Windows\tasks\Xpxstzutf.job [2012/01/15 17:42:36 | 000,094,720 | RHS- | C] () -- C:\Windows\SysWow64\helps.dll [2012/01/15 17:37:06 | 000,001,075 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS5 (64 Bit).lnk [2012/01/15 17:36:19 | 000,001,207 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS5.lnk [2012/01/15 17:33:52 | 000,001,262 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Device Central CS5.lnk [2012/01/10 09:35:06 | 000,023,390 | ---- | C] () -- C:\Users\Charlie Henderson\Desktop\charlie headshot.jpg [2012/01/08 12:24:49 | 000,228,457 | ---- | C] () -- C:\Users\Charlie Henderson\Desktop\love's a bond.wav.asd [2012/01/08 01:33:53 | 000,004,972 | ---- | C] () -- C:\Users\Charlie Henderson\Desktop\mighty morphin power rangers wrist communicator sound.mp3.asd [2012/01/07 22:14:51 | 000,002,059 | ---- | C] () -- C:\Users\Public\Desktop\Nitro Pro 7.lnk [2012/01/07 22:14:50 | 000,002,557 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nitro Pro 7.lnk [2012/01/07 21:50:42 | 000,892,769 | ---- | C] () -- C:\Users\Charlie Henderson\Desktop\Love's a Bond.xml [2012/01/07 21:44:36 | 000,000,724 | ---- | C] () -- C:\Windows\wacam.ini [2011/09/29 19:03:55 | 000,000,028 | ---- | C] () -- C:\Windows\pdf995.ini [2011/09/29 19:02:03 | 000,000,059 | ---- | C] () -- C:\Windows\wpd99.drv [2011/09/29 19:02:02 | 000,047,616 | ---- | C] () -- C:\Windows\SysWow64\pdf995mon64.dll [2011/09/28 16:51:19 | 000,014,119 | ---- | C] () -- C:\Windows\SysWow64\RaCoInst.dat [2011/09/25 12:57:03 | 000,000,000 | ---- | C] () -- C:\Windows\EEventManager.INI [2011/09/18 22:23:58 | 000,000,184 | ---- | C] () -- C:\Windows\AutoKMS.ini [2011/08/14 00:24:19 | 000,008,192 | ---- | C] () -- C:\Windows\SysWow64\srvany.exe [2011/08/11 12:42:50 | 000,073,220 | ---- | C] () -- C:\Windows\SysWow64\EPPICPrinterDB.dat [2011/08/11 12:42:50 | 000,031,053 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern131.dat [2011/08/11 12:42:50 | 000,029,114 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern1.dat [2011/08/11 12:42:50 | 000,027,417 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern121.dat [2011/08/11 12:42:50 | 000,021,021 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern3.dat [2011/08/11 12:42:50 | 000,015,670 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern5.dat [2011/08/11 12:42:50 | 000,013,280 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern2.dat [2011/08/11 12:42:50 | 000,010,673 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern4.dat [2011/08/11 12:42:50 | 000,004,943 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern6.dat [2011/08/11 12:42:50 | 000,001,140 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_PT.dat [2011/08/11 12:42:50 | 000,001,140 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_BP.dat [2011/08/11 12:42:50 | 000,001,137 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_ES.dat [2011/08/11 12:42:50 | 000,001,130 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_FR.dat [2011/08/11 12:42:50 | 000,001,130 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_CF.dat [2011/08/11 12:42:50 | 000,001,104 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_EN.dat [2011/08/11 12:42:50 | 000,000,097 | ---- | C] () -- C:\Windows\SysWow64\PICSDK.ini [2011/08/11 12:39:00 | 000,000,071 | ---- | C] () -- C:\Windows\ENX420.ini [2011/08/08 18:41:43 | 000,000,000 | ---- | C] () -- C:\ProgramData\88d6ed877f07c7fe8017c8e69186cb26_c [2011/08/02 19:30:46 | 000,002,048 | ---- | C] () -- C:\Users\Charlie Henderson\AppData\Roaming\Photobook Designer Prefs [2011/08/02 15:54:58 | 000,009,256 | ---- | C] () -- C:\Users\Charlie Henderson\AppData\Roaming\a.7z [2011/07/16 15:31:43 | 000,040,960 | ---- | C] () -- C:\Windows\SysWow64\wuappp.exe [2011/07/15 00:04:58 | 000,380,701 | ---- | C] () -- C:\Users\Charlie Henderson\AppData\Roaming\file_2.exe [2011/01/07 14:58:58 | 000,000,188 | ---- | C] () -- C:\Windows\SysWow64\HPWA.ini [2010/12/16 21:26:22 | 000,066,856 | ---- | C] () -- C:\Windows\SysWow64\SynTPEnhPS.dll [2010/12/07 16:05:32 | 000,867,020 | ---- | C] () -- C:\Windows\SysWow64\igkrng575.bin [2010/12/07 16:05:28 | 000,105,408 | ---- | C] () -- C:\Windows\SysWow64\igfcg575m.bin [2010/12/07 16:05:24 | 000,128,204 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng575.bin [2010/09/24 17:41:34 | 000,007,736 | ---- | C] () -- C:\Windows\hpDSTRES.DLL [2009/09/16 18:27:58 | 000,508,224 | ---- | C] () -- C:\Windows\SysWow64\ICCProfiles.dll [2009/07/14 00:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat [2009/07/13 21:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT [2009/07/13 21:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat [2009/07/13 19:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin [2009/07/13 18:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll [2009/07/13 16:59:36 | 001,498,564 | ---- | C] () -- C:\Windows\SysWow64\igkrng400.bin [2009/07/13 16:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll [2009/06/10 16:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat [2002/09/17 23:45:00 | 000,119,808 | ---- | C] () -- C:\Windows\lsb_un20.exe < End of report >