OTL Extras logfile created on: 10/27/2012 2:49:42 PM - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Albertross\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 3.87 Gb Total Physical Memory | 2.40 Gb Available Physical Memory | 61.92% Memory free 7.74 Gb Paging File | 5.97 Gb Available in Paging File | 77.13% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 285.45 Gb Total Space | 227.67 Gb Free Space | 79.76% Space Free | Partition Type: NTFS Drive D: | 4.24 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: CDFS Computer Name: ALBERTROSS-PC | User Name: Albertross | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{1439AC2F-1A5E-47FE-9BE8-05400A920E33}" = lport=137 | protocol=17 | dir=in | app=system | "{2C9DFDF2-A0A6-40DA-A898-99361542B0EB}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{3D234E14-B6DD-4F33-93C4-AAD1100F132C}" = lport=138 | protocol=17 | dir=in | app=system | "{4BDC38F5-D8B5-4884-BC1D-A810AF4A88FB}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{68959284-5CB1-4184-AE9D-FEED4F5100CF}" = lport=2869 | protocol=6 | dir=in | app=system | "{6ACAD163-F837-4026-AD3A-0B7AD936D809}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{795E37FE-D205-4077-9290-139C1134A4D0}" = rport=445 | protocol=6 | dir=out | app=system | "{8076F085-6DB9-41DE-B362-E4CCB84288A0}" = rport=10243 | protocol=6 | dir=out | app=system | "{827DBA7F-4304-446E-ADFD-39C5855E0F3F}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe | "{8C700E1D-37A1-496E-A309-67173084F552}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{8E0B5210-3026-4A9E-9C64-9DA495C678DD}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{8E177C66-3675-409A-81C0-E89C077CB921}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{9071AC9F-9D7B-4497-BE5C-9ADC308EB031}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{96F0FB11-2DB6-4975-A166-8D5DAC637928}" = lport=445 | protocol=6 | dir=in | app=system | "{A569EDB6-8888-4FA2-822C-CB26412286AB}" = rport=138 | protocol=17 | dir=out | app=system | "{A77858B4-9EC3-4656-A651-A24D5EA079A4}" = lport=139 | protocol=6 | dir=in | app=system | "{A7B993F1-7F07-4F67-AF16-2CEDE65A965C}" = rport=139 | protocol=6 | dir=out | app=system | "{AD91B176-7C71-4C4C-B98F-0EA74DCF6BBF}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{AE85FFA2-114E-4D5B-A41E-E7BB62ABC323}" = lport=10243 | protocol=6 | dir=in | app=system | "{B401EEC5-0A62-47F5-82B0-CEF29EFD73EE}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{B818F718-A67A-432C-862E-56EB4B28C19E}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{C3DB3ED7-2738-4180-98F8-89E72099F45A}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{DBD3E64A-7FB9-4867-87CB-ABC384B97BE1}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{F2F8BB4C-C1ED-405F-A07C-7D632C927708}" = rport=137 | protocol=17 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0201DB6B-EB38-4B66-949B-169CDE7D5CDA}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{0D7E9A47-769F-47F0-96CA-AB87828919D5}" = protocol=6 | dir=in | app=c:\program files (x86)\aim\aim.exe | "{10BC266B-CCEC-436D-A14D-E090B9A27D1F}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | "{128E152C-4D91-4455-8805-9CBC62C90524}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{1E2253AD-6CD4-433A-958E-71BAE3C0D748}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{2153BEA4-B5EA-4DF2-8E08-326D85BA65B2}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{380CCD5E-94F8-4412-847D-55BBD91E6AEC}" = protocol=6 | dir=in | app=c:\program files\wolfram research\mathematica\8.0\math.exe | "{3D1C2BCC-88F6-4CE5-9969-C3D2C25BC935}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{443A97D3-F439-44AE-B4EB-77FF4A8C845A}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{46B27A0D-52AC-451C-B6BB-C80750A3E31F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{4A0A4805-7066-4736-8EF3-D2E27ED03632}" = protocol=17 | dir=in | app=c:\program files (x86)\lucasarts\star wars empire at war\gamedata\sweaw.exe | "{545F0F99-5496-4E9D-A5C5-A446FD233E5E}" = protocol=6 | dir=in | app=c:\program files\wolfram research\mathematica\8.0\mathkernel.exe | "{56CB9310-E27D-43CD-8C3C-FE549E0D5160}" = protocol=17 | dir=in | app=c:\program files\wolfram research\mathematica\8.0\mathkernel.exe | "{68ED4145-18EE-4E1F-9003-C1090190DA45}" = protocol=17 | dir=in | app=c:\program files\wolfram research\mathematica\8.0\math.exe | "{6CEE400F-5A95-45C6-A178-1CFA42CF872F}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{76072291-B2ED-4C27-8FBA-FEFF2B44CEE6}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{77F2615E-56C0-41A6-8AEB-A27DA7A58980}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{7A1192E0-1A06-461B-BAAE-650B21DAD51D}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{8198A7E1-6BB1-44CB-BF6F-3944064EF725}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{86ACFD25-9D0F-41A6-B652-4B5279150EB9}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe | "{889D5EBC-8D55-422C-876C-5704ECE727F8}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{88D4A428-2525-4374-9515-45F4286257FB}" = protocol=17 | dir=in | app=c:\program files\wolfram research\mathematica\8.0\mathematica.exe | "{8EA8140F-EA1E-4D11-A070-C31A0DE9A1B4}" = protocol=6 | dir=in | app=c:\program files (x86)\lucasarts\star wars empire at war\gamedata\sweaw.exe | "{97EBB9D2-14F1-49D6-9BA1-3AD46ED54160}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{984665B7-DA60-4B37-B3EE-520BF0B7E886}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{9D4A2C66-CB9C-4423-8339-7DF33A483D69}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{A010A9EB-D717-4334-800E-6A10DE596FA7}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{A1E28C65-DE4B-4243-93C5-9D6930E80F5D}" = protocol=6 | dir=out | app=system | "{A288F909-077D-4150-B419-3AEFEB488F14}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{A731CF81-295E-4915-BF5E-9F2FC58BAC44}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{CA3D075F-032A-4327-9318-5F5125C29D54}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{DDC847FD-F9E9-4D02-913C-7139BFC08C93}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{E82B99A9-CBE0-430E-A490-BD1C54B513F7}" = protocol=17 | dir=in | app=c:\program files (x86)\aim\aim.exe | "{F137AE42-4BF1-4174-B360-C98B10494676}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{F954A59D-CE84-40F9-99C5-70DB7A473BD1}" = protocol=6 | dir=in | app=c:\program files\wolfram research\mathematica\8.0\mathematica.exe | "TCP Query User{0CA37DAA-BABE-46C0-9E77-B45DB11D97FC}F:\age of empire 2\age of empire 2.exe" = protocol=6 | dir=in | app=f:\age of empire 2\age of empire 2.exe | "TCP Query User{2E405A31-436D-400B-B216-8BB5C7018F45}C:\program files\ibm\spss\statistics\20\jre\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\ibm\spss\statistics\20\jre\bin\javaw.exe | "TCP Query User{647B7EDC-C92D-429A-8ED1-68BE5FB108E7}C:\program files (x86)\lucasarts\star wars empire at war\gamedata\sweaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\lucasarts\star wars empire at war\gamedata\sweaw.exe | "TCP Query User{91B784F6-C8E1-4D23-8917-A7DB5AEC6D07}C:\program files (x86)\aim\aim.exe" = protocol=6 | dir=in | app=c:\program files (x86)\aim\aim.exe | "UDP Query User{0904C9BF-C138-40EC-9281-77149B1378A3}C:\program files (x86)\aim\aim.exe" = protocol=17 | dir=in | app=c:\program files (x86)\aim\aim.exe | "UDP Query User{4B9DA941-95D4-4A74-8A50-31A4BA5BA56B}C:\program files\ibm\spss\statistics\20\jre\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\ibm\spss\statistics\20\jre\bin\javaw.exe | "UDP Query User{5443AD2D-74E2-4E46-B268-3A5F199A0551}C:\program files (x86)\lucasarts\star wars empire at war\gamedata\sweaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\lucasarts\star wars empire at war\gamedata\sweaw.exe | "UDP Query User{901FB6D4-E729-45F8-A180-237F1C6E3783}F:\age of empire 2\age of empire 2.exe" = protocol=17 | dir=in | app=f:\age of empire 2\age of empire 2.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package "{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant "{2AF8017B-E503-408F-AACE-8A335452CAD2}" = IBM SPSS Statistics 20 "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{5DA0E02F-970B-424B-BF41-513A5018E4C0}" = TOSHIBA Disc Creator "{656DEEDE-F6AC-47CA-A568-A1B4E34B5760}" = Windows Live Remote Service Resources "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}" = Windows Live Remote Client Resources "{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 "{90140000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2010 "{90140000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 "{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{A0E99122-25C1-4CA4-9063-499A2A814EB6}" = TOSHIBA ReelTime "{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}" = PlayReady PC Runtime amd64 "{C14518AF-1A0F-4D39-8011-69BAA01CD380}" = TOSHIBA Bulletin Board "{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware "{D07A61E5-A59C-433C-BCBD-22025FA2287B}" = Windows Live Language Selector "{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = TOSHIBA HDD/SSD Alert "{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter "{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client "{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "{F67FA545-D8E5-4209-86B1-AEE045D1003F}" = TOSHIBA Face Recognition "{FBBC4667-2521-4E78-B1BD-8706F774549B}" = Best Buy pc app "A-WIN-Extras 8.0.1 2063897_is1" = Mathematica Extras 8.0 (2063897) "CNXT_AUDIO_HDA" = Conexant HD Audio "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "M-WIN-G 8.0.1 2063988_is1" = Wolfram Mathematica 8 for Students (M-WIN-G 8.0.1 2063988) "R for Windows 2.14.2_is1" = R for Windows 2.14.2 "SynTPDeinstKey" = Synaptics Pointing Device Driver [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package "{073B89C3-BA88-41B5-965F-B35A88EAE838}" = TOSHIBA Supervisor Password "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer "{0D795777-9D60-4692-8386-F2B3F2B5E5BF}" = Label@Once 1.0 "{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1 "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 "{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java(TM) 6 Update 17 "{26A24AE4-039D-4CA4-87B4-2F83217005FF}" = Java(TM) 7 Update 5 "{2902F983-B4C1-44BA-B85D-5C6D52E2C441}" = Windows Live Mesh ActiveX Control for Remote Connections "{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery "{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery "{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{553C904F-57A2-4113-888E-BA0C3D1C69C0}" = Microsoft VC9 runtime libraries "{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack "{5AF550B4-BB67-4E7E-82F1-2C4300279050}" = ToshibaRegistration "{604CD5A1-4520-4844-B064-A3D884B77E91}" = SpeedyPC Pro "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE "{6F3C8901-EBD3-470D-87F8-AC210F6E5E02}" = TOSHIBA Web Camera Application "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{80956555-A512-4190-9CAD-B000C36D6B6B}" = Windows Live Messenger "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8E9CEA3B-EBD1-439C-A01D-830CB39613C6}" = TOSHIBA Hardware Setup "{90140000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2010 "{90140000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2010 "{90140000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2010 "{90140000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2010 "{90140000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2010 "{90140000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2010 "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010 "{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010 "{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010 "{90140000-003D-0000-0000-0000000FF1CE}" = Microsoft Office Single Image 2010 "{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010 "{90140000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2010 "{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010 "{90140000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2010 "{92C7DC44-DAD3-49FE-B89B-F92C6BA9A331}" = Toshiba Book Place "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker "{9559F7CA-5E34-4237-A2D9-D856464AD727}" = Project64 1.6 "{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader "{970472D0-F5F9-4158-A6E3-1AE49EFEF2D3}" = TOSHIBA Application Installer "{983CD6FE-8320-4B80-A8F6-0D0366E0AA22}" = TOSHIBA Media Controller "{99AE7207-8612-4DBA-A8F8-BAE5C633390D}" = Star Wars Empire at War "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail "{A0C91188-C88F-4E86-93E6-CD7C9A266649}" = Windows Live Mesh "{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer "{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer "{AC6569FA-6919-442A-8552-073BE69E247A}" = TOSHIBA Service Station "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.4) "{B4E343DD-BAAB-4D59-AD9C-DEA0AFE09DF1}" = Mumble 1.2.3 "{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}" = TOSHIBA Recovery Media Creator "{C2A276E3-154E-44DC-AAF1-FFDD7FD30E35}" = TOSHIBA Assist "{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Atheros Driver Installation Program "{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail "{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86 "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform "{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64 "{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = TOSHIBA HDD/SSD Alert "{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform "{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources "{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E69992ED-A7F6-406C-9280-1C156417BC49}" = TOSHIBA Quality Application "{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.8 "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Graphics Media Accelerator Driver "{F26FDF57-483E-42C8-A9C9-EEE1EDB256E0}" = TOSHIBA Media Controller Plug-in "{FBBC4667-2521-4E78-B1BD-8706F774549B}" = Best Buy pc app "{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "AIM Toolbar" = AOL Messaging Toolbar "AIM_7" = AIM 7 "avast" = avast! Free Antivirus "Google Chrome" = Google Chrome "HaskellPlatform-2011.4.0.0" = Haskell Platform 2011.4.0.0 "InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package "InstallShield_{6F3C8901-EBD3-470D-87F8-AC210F6E5E02}" = TOSHIBA Web Camera Application "InstallShield_{A0E99122-25C1-4CA4-9063-499A2A814EB6}" = TOSHIBA ReelTime "InstallShield_{C14518AF-1A0F-4D39-8011-69BAA01CD380}" = TOSHIBA Bulletin Board "InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = TOSHIBA HDD/SSD Alert "InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F}" = TOSHIBA Face Recognition "LPSolve IDE_is1" = LPSolve IDE 5.5.2.0 "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.65.1.1000 "MatlabR2010a" = MATLAB Student R2010a "NIS" = Norton Internet Security "Office14.SingleImage" = Microsoft Office Home and Student 2010 "SpywareBlaster_is1" = SpywareBlaster 4.6 "WinLiveSuite" = Windows Live Essentials "X3TerranConflict_is1" = X3 Terran Conflict v2.5 "Xvid_is1" = Xvid MPEG-4 Video Codec [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2834404968-3745902875-2640848726-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "48e4cff94f039634" = Best Buy pc app "AOL Messaging Toolbar" = AOL Messaging Toolbar [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 10/26/2012 10:57:51 PM | Computer Name = Albertross-PC | Source = WinMgmt | ID = 10 Description = Error - 10/26/2012 11:10:39 PM | Computer Name = Albertross-PC | Source = WinMgmt | ID = 10 Description = Error - 10/26/2012 11:49:54 PM | Computer Name = Albertross-PC | Source = WinMgmt | ID = 10 Description = Error - 10/27/2012 12:27:28 AM | Computer Name = Albertross-PC | Source = WinMgmt | ID = 10 Description = Error - 10/27/2012 12:31:52 AM | Computer Name = Albertross-PC | Source = WinMgmt | ID = 10 Description = Error - 10/27/2012 1:26:54 AM | Computer Name = Albertross-PC | Source = WinMgmt | ID = 10 Description = Error - 10/27/2012 3:48:01 AM | Computer Name = Albertross-PC | Source = WinMgmt | ID = 10 Description = Error - 10/27/2012 1:21:42 PM | Computer Name = Albertross-PC | Source = WinMgmt | ID = 10 Description = Error - 10/27/2012 2:16:59 PM | Computer Name = Albertross-PC | Source = WinMgmt | ID = 10 Description = Error - 10/27/2012 2:45:08 PM | Computer Name = Albertross-PC | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 10/27/2012 1:20:18 PM | Computer Name = Albertross-PC | Source = Service Control Manager | ID = 7000 Description = The MBAMProtector service failed to start due to the following error: %%2 Error - 10/27/2012 1:20:28 PM | Computer Name = Albertross-PC | Source = Service Control Manager | ID = 7001 Description = The MBAMService service depends on the MBAMProtector service which failed to start because of the following error: %%2 Error - 10/27/2012 1:20:29 PM | Computer Name = Albertross-PC | Source = Service Control Manager | ID = 7026 Description = The following boot-start or system-start driver(s) failed to load: BHDrvx64 SymIRON Error - 10/27/2012 2:15:16 PM | Computer Name = Albertross-PC | Source = Service Control Manager | ID = 7000 Description = The MBAMProtector service failed to start due to the following error: %%2 Error - 10/27/2012 2:15:34 PM | Computer Name = Albertross-PC | Source = Service Control Manager | ID = 7001 Description = The MBAMService service depends on the MBAMProtector service which failed to start because of the following error: %%2 Error - 10/27/2012 2:15:35 PM | Computer Name = Albertross-PC | Source = Service Control Manager | ID = 7026 Description = The following boot-start or system-start driver(s) failed to load: BHDrvx64 SymIRON Error - 10/27/2012 2:43:24 PM | Computer Name = Albertross-PC | Source = Service Control Manager | ID = 7000 Description = The MBAMProtector service failed to start due to the following error: %%2 Error - 10/27/2012 2:43:41 PM | Computer Name = Albertross-PC | Source = Service Control Manager | ID = 7001 Description = The MBAMService service depends on the MBAMProtector service which failed to start because of the following error: %%2 Error - 10/27/2012 2:43:41 PM | Computer Name = Albertross-PC | Source = Service Control Manager | ID = 7026 Description = The following boot-start or system-start driver(s) failed to load: BHDrvx64 SymIRON Error - 10/27/2012 2:55:13 PM | Computer Name = Albertross-PC | Source = iaStor | ID = 262153 Description = The device, \Device\Ide\iaStor0, did not respond within the timeout period. < End of report >