OTL Extras logfile created on: 10/6/2013 10:32:17 AM - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Stephen\Downloads 64bit- Professional (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16688) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 7.97 Gb Total Physical Memory | 5.72 Gb Available Physical Memory | 71.76% Memory free 15.97 Gb Paging File | 13.52 Gb Available in Paging File | 84.70% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 111.69 Gb Total Space | 45.88 Gb Free Space | 41.08% Space Free | Partition Type: NTFS Computer Name: STEPHENPC | User Name: Stephen | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) [HKEY_USERS\S-1-5-21-1253532607-2520101648-4280107524-1001\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htafile [open] -- "%1" %* htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htafile [open] -- "%1" %* htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = CE 37 E6 AF FF 6A CD 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{282A2717-8368-4EB3-BFAA-CEE78D3E0AB3}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{3D376404-3D40-46D7-A76A-6D9337448E63}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{3D8B8CD9-98A9-430D-8F71-67B2FE5C16B4}" = lport=137 | protocol=17 | dir=in | app=system | "{3FA11732-889B-4A33-A31F-57AD3746FBA8}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe | "{410120A6-6A1C-4055-A072-082F55BBC8F0}" = lport=445 | protocol=6 | dir=in | app=system | "{4C3322A8-D1DF-4C2B-9442-75428F946951}" = lport=138 | protocol=17 | dir=in | app=system | "{5598FE90-4926-42FA-93C3-87912D37FD4D}" = rport=445 | protocol=6 | dir=out | app=system | "{5923341A-81CF-49CA-B708-2354479F0622}" = rport=138 | protocol=17 | dir=out | app=system | "{5D81C6FF-DD95-43E4-8EA9-AC5F4512C4C1}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{6D50B48B-1940-480D-9575-C91869EA1E93}" = lport=139 | protocol=6 | dir=in | app=system | "{71D6DAC2-74D4-4CE2-8686-C6A18FB437B4}" = lport=10243 | protocol=6 | dir=in | app=system | "{79682F26-D371-4279-83B0-0D04C3965102}" = lport=2869 | protocol=6 | dir=in | app=system | "{7B7C8E07-2236-4FE3-8CC5-6744C8C423AC}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{81B09765-E12C-4443-B043-AC7F75A0757C}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{8564CFC5-B905-479E-AEFA-51BFF72C9FB2}" = rport=137 | protocol=17 | dir=out | app=system | "{8C1A5D78-C9B2-4721-95BF-EA60F499D438}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{A1904A8C-0343-4FC9-BD61-CDFAF7AF1197}" = rport=139 | protocol=6 | dir=out | app=system | "{BD8AC859-E2B7-4BF3-9DD0-5DAC6C9809D2}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{BE48F4E8-E222-46C9-ADC6-42D36B8CEB3D}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{BE9E2DB8-8B77-42E1-A4DD-CC09CF46BF94}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{CFE684CA-C242-473F-9C35-E2399CEBFC8C}" = rport=10243 | protocol=6 | dir=out | app=system | "{D98CBBBF-1082-479B-A10C-124E22F53ECA}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{02465A82-FF8C-4712-BCA1-4F0551C18AE4}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposid01.exe | "{02497C3E-D77F-4E7C-9C07-7576E4D495D4}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 | "{034B1D6B-6789-4842-9C07-4B2D0F010D07}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{040C3380-D233-4686-87E3-16B0BFF3717B}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{047F820C-DA12-4001-909E-5DC6DC26B7F9}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpofxs08.exe | "{0743C95A-D06F-4082-BAD7-A2BDFA0D7B60}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgm.exe | "{07A42E7E-02F9-485C-9934-194043D7E4A2}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{0CD3B761-7FA7-4A7E-9D65-1FBD01C41D67}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgpc01.exe | "{1477273F-DC0F-48CB-8949-B5A5434FF587}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgh.exe | "{15225321-457D-4851-9300-091882E11815}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{1D3039E0-C0C0-4A0D-BF8A-B13B33EFF2F3}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqfxt08.exe | "{214536F6-87F4-48F7-940E-A36C13F66357}" = dir=out | name=@{microsoft.bingmaps_1.6.1821.2624_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{235F9EC3-6885-4542-9270-755CF76F8193}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposfx08.exe | "{2826B6E6-074F-48F9-B30F-B22BA9F48877}" = dir=out | name=@{microsoft.xboxlivegames_1.3.10.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{2ADE7E01-AE82-4727-ADAA-B216EF8632A9}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe | "{2C9B2FE3-3699-488C-A463-AF9265C71354}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqste08.exe | "{2D50A6AE-06EA-4F41-9F5D-EB60953706CD}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{2D544A2F-BB63-4C6B-BD90-1928F85FFDCB}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{39C0F78B-C56F-4C68-9D8C-4C5702270000}" = protocol=17 | dir=in | app=c:\users\stephen\appdata\roaming\utorrent\utorrent.exe | "{3A512EDD-4A9F-437E-B72F-4B3E9E8CF7C3}" = dir=out | name=@{microsoft.zunemusic_1.4.18.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{3CC3784B-4D45-4BB5-B611-9D5B7A1DC2D6}" = dir=out | name=@{microsoft.bingsports_2.0.0.273_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | "{4296204A-ADF5-46AF-9F26-FC6327B51EE2}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{43AFB668-72B6-49D5-B724-2703EF3AB18A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{4B5C8C80-2BEB-4F38-8951-55718F813E0D}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpoews01.exe | "{4F737CAE-6F20-449D-81CC-CFB521858ACC}" = dir=out | name=@{microsoft.bingnews_2.0.0.273_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} | "{530877A2-E328-4F71-B262-2E64FEE608A1}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{536565A7-50E0-48BD-B48F-60CBDD7C7391}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{55E42246-3643-40EB-AB9F-D66A31E25ECF}" = dir=in | app=c:\program files (x86)\hp\hp software update\hpwucli.exe | "{5FB7EFFC-423B-48F4-A626-1C15B85D9CAC}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqkygrp.exe | "{652B6AB2-4BCD-4A24-AA06-E4044A2B57AF}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpzwiz01.exe | "{666F6886-518C-4BF4-BB9A-0073F6EADBFF}" = protocol=6 | dir=out | app=system | "{6CCFEA94-4652-4FB3-9A0D-C6DF68F03BCD}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{6F9F71B6-7690-4B7F-AEC0-6DD2A4F3CF87}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqtra08.exe | "{7A2AB6A5-189C-421B-8F9E-010DBB7E36BC}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{7AFC2AA5-8DF5-4117-B56F-F7E9254F90FA}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{7B0CCAB8-90A4-44DE-98C5-8E67E835AF7C}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpofxm08.exe | "{7B4F7910-A7F0-4FA2-8092-2720D82B0827}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{7D95865E-878C-45F3-858C-F0582A0829E5}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{81616E2D-0362-4BAA-AF53-3C85EE3EFDBA}" = dir=out | name=@{microsoft.microsoftskydrive_16.4.4388.928_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftskydrive/resources/shortproductname} | "{832FDA33-1145-4E62-8833-CD8F7BC965E1}" = protocol=6 | dir=in | app=c:\users\stephen\appdata\roaming\utorrent\utorrent.exe | "{85F95C6C-15E2-45F0-8156-3EF723173C0B}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpiscnapp.exe | "{87E20059-47EF-4B6E-85A3-35FB1DB5DEE7}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{8E6B6A12-500F-4258-AD4A-8BF95FC7A97E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{9BB2C6F6-C0F4-4AEC-B6E3-3741A411A362}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{9C3E242A-58C0-44EE-9291-1864B899157E}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpfccopy.exe | "{9C57CB1E-FFAA-44DC-89AF-AE5464D72814}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{9C7B6B92-123C-46F6-ADE5-959D2C897FF6}" = dir=out | name=@{microsoft.windowsphotos_16.4.4388.928_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{A0647059-08ED-4FF4-A39C-F401F94F3909}" = dir=out | name=@{microsoft.zunevideo_1.4.19.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "{A6A6DEF8-0BF8-47B2-9DA6-D54837ADD245}" = dir=out | name=@{microsoft.reader_6.2.9200.20623_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{AEDCD0C8-07C6-4C0A-9DCC-39336B13D5D6}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{AF55F6A8-DA8C-40B1-A2E7-BBC90A5FFC2E}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgplgtupl.exe | "{B083A3F3-F7FE-4E89-9400-5C0FA56F49E8}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{B3DE48FF-EDC8-49F6-A90B-F7C2A784BD81}" = dir=out | name=@{microsoft.bingweather_2.0.0.288_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{B5D1B3A3-077F-4E19-830E-3E334BD2BDB1}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{B721CEB3-0FC2-45FC-B787-65029DABF583}" = dir=out | name=@{microsoft.bingtravel_2.0.0.274_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "{BBE60477-8074-4ADA-BEE0-D97C13F796B0}" = dir=out | name=@{microsoft.bingfinance_2.0.0.300_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{BC0C6C9F-A6D4-44E7-8A77-8B502BD2AE97}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{C127FF06-E928-42EC-85CB-204633D5F015}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | "{C5CD7A37-FECC-4A2C-9915-4435DB017CE4}" = dir=out | name=@{microsoft.bing_1.5.1.259_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{C782D91D-720B-41D5-9571-CAA426A8238B}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{C8A280D0-BBA7-4F0E-9723-35C0C0D41166}" = dir=in | name=@{microsoft.reader_6.2.9200.20623_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{CC2C4AC8-44CA-4484-BFE8-5737CA0D5426}" = dir=in | name=@{microsoft.windowsphotos_16.4.4388.928_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{D3B0E31E-B0F7-4A6C-A12C-257A2AB7DA01}" = protocol=58 | dir=in | app=system | "{E5B74D4A-C364-4CCA-8B15-ED54E90C51C4}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{E6884030-8BB3-4FA8-87ED-87B756B2CACC}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{EF1C60B8-6695-49F3-9C23-6FB7044528A2}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{F5AA561B-FE8F-4BB8-98FD-398A330A8993}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{13351E83-6DCD-4E97-2A8C-5D496259A47F}" = AMD Catalyst Install Manager "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}" = Apple Mobile Device Support "{3AA627AF-DD36-F927-D91F-207FB3CC32D9}" = ccc-utility64 "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}" = Network64 "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour "{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 "{90140000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2010 "{90140000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 "{9C57D227-1FE7-4F40-BD49-2BCA7761B083}" = HP Officejet 6500 E709 Series "{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 "{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{C4838EB8-FCED-B4EB-2777-017DFC3BD65D}" = AMD Accelerated Video Transcoding "{F73A118B-8271-47E2-8790-0C636B2539C5}" = iTunes "{FF21C3E6-97FD-474F-9518-8DCBE94C2854}" = 64 Bit HP CIO Components Installer "Bitdefender" = Bitdefender Total Security 2013 "CCleaner" = CCleaner "HP Imaging Device Functions" = HP Imaging Device Functions 14.0 "HP Solution Center & Imaging Support Tools" = HP Solution Center 14.0 "HPExtendedCapabilities" = HP Customer Participation Program 14.0 "HPOCR" = OCR Software by I.R.I.S. 14.0 "Shop for HP Supplies" = Shop for HP Supplies "WinRAR archiver" = WinRAR 4.20 (64-bit) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{06A1D88C-E102-4527-AF70-29FFD7AF215A}" = Scan "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86 "{0E52A52C-E120-461C-AA1B-21B045BEE842}" = bpd_scan "{1008F030-1D06-C7C2-14F7-18CE3307F51F}" = CCC Help Portuguese "{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}" = DeviceDiscovery "{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}" = HPProductAssistant "{15134cb0-b767-4960-a911-f2d16ae54797}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 "{174F94E5-581E-EFCA-60FF-72B99A893BAE}" = CCC Help Thai "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{22154f09-719a-4619-bb71-5b3356999fbf}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 "{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 25 "{292F0F52-B62D-4E71-921B-89A682402201}" = Toolbox "{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 "{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 "{3C9EF074-E7E8-1DAD-7B24-E2ACDC48FBDE}" = CCC Help English "{46F044A5-CE8B-4196-984E-5BD6525E361D}" = Apple Application Support "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4F07D6C9-3AB0-0567-FA40-FA091398E7BE}" = CCC Help Italian "{56978E45-6A6B-8DF7-B37C-58043F182D6C}" = CCC Help Swedish "{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}" = Status "{6672A809-A0D9-A47E-7CFE-AF0B0D599D40}" = Catalyst Control Center Localization All "{6AFE5E25-121D-6054-62B8-F3354C82FAAF}" = CCC Help Hungarian "{6FEDAA68-D9C4-4042-BECC-9C2656A7B606}" = 6500_E709n "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{767BA4BF-8419-4771-8CE7-9707EB287C32}_is1" = Need For Speed(TM) Most Wanted v1.5.0.0 / RePack by Baracuda "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{7BDECEC6-87A7-A7AA-8AE8-A8D663F3B9E5}" = CCC Help Finnish "{7D6835C4-F6C7-7D78-5DC7-593E025A58FD}" = CCC Help Korean "{88B2ABCF-9C00-47C1-8FC4-369B98845DD7}" = Catalyst Control Center - Branding "{8BB6D134-BFBA-F4B7-D086-6EF765576DBE}" = CCC Help Norwegian "{8E663D89-A2EA-46B6-AD38-A427A3348309}" = BPDSoftware "{8EE94FD8-5F52-4463-A340-185D16328158}" = WebReg "{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2010 "{90140000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2010 "{90140000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2010 "{90140000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2010 "{90140000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2010 "{90140000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2010 "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010 "{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010 "{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010 "{90140000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2010 "{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010 "{90140000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2010 "{90140000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2010 "{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010 "{90140000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2010 "{9294F169-72EE-4D74-AE92-CA25F64B4FF8}" = Fax "{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86 "{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195 "{99F67894-9486-413F-94E1-8B12B1606EAB}" = BPDSoftware_Ini "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9B362566-EC1B-4700-BB9C-EC661BDE2175}" = DocProc "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A69B5801-707A-D310-2DD1-0DE7EFF761AC}" = CCC Help Greek "{AA787E05-E835-4812-AA3D-4048C8A46587}" = 6500_E709_eDocs "{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}" = HPSSupply "{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}" = HP Update "{BB3447F6-9553-4AA9-960E-0DB5310C5779}" = GPBaseService2 "{BC0F3E35-0AFF-4F11-B33D-F6FC31BD1AA0}" = ProductContext "{BC5DD87B-0143-4D14-AAE6-97109614DC6B}" = SolutionCenter "{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}" = Destinations "{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}" = PDF Settings CS6 "{C42B66AB-B0A2-516D-63BE-6D9608A3B9BC}" = CCC Help Dutch "{C9B21EB7-9E61-55EF-DC76-ADB8DDEEFE56}" = CCC Help Polish "{CC45C792-5348-9446-1FBB-2A287A19D48E}" = AMD Catalyst Control Center "{CC9AD130-069C-E5AF-A56C-48E58781BE24}" = CCC Help Chinese Standard "{CD31E63D-47FD-491C-8117-CF201D0AFAB5}" = TrayApp "{D0A0DC26-EDD5-C03D-6AFC-8F10D2FD974F}" = CCC Help Chinese Traditional "{D360FA88-17C8-4F14-B67F-13AAF9607B12}" = MarketResearch "{D805E716-EE94-64C4-04FB-BE98A4BF6CF6}" = CCC Help Spanish "{E002447E-6B41-DCF6-8133-987BF12C5B50}" = CCC Help Czech "{E7970ADC-319A-A32B-7D8D-9404F4807365}" = CCC Help German "{E7E71065-1152-440D-F258-5B6DE3817E41}" = Catalyst Control Center Graphics Previews Common "{EADF01C1-9C48-5157-AF54-8E5DC3540185}" = CCC Help Turkish "{EB48CCF6-69EC-F24E-0F24-6A13DFF63A05}" = CCC Help French "{EF2E4024-2B49-F761-B36F-167033D7F005}" = CCC Help Japanese "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F53B432E-BD19-4400-BFA0-2BBD16410F8F}" = 6500_E709_Help "{F88FFBE5-6A07-6206-0B13-4F648A6718C9}" = Catalyst Control Center InstallProxy "{FA0FF682-CC70-4C57-93CD-E276F3E7537E}" = BufferChm "{FA5BA14A-631B-3AFB-8918-B75443396D4C}" = CCC Help Danish "{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 "{FE8DA369-A02D-F0E4-231C-7D73A2D62028}" = CCC Help Russian "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Cakewalk Sound Center_is1" = Cakewalk Sound Center 1.1.0 "FreeArc" = FreeArc 0.666 "Google Chrome" = Google Chrome "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.75.0.1300 "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "PowerISO" = PowerISO "WinRAR archiver" = WinRAR 4.20 (32-bit) "Wondershare Video Converter Ultimate_is1" = Wondershare Video Converter Ultimate(Build 6.0.0.18) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1253532607-2520101648-4280107524-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 10/6/2013 12:00:31 PM | Computer Name = StephenPC | Source = Microsoft-Windows-Immersive-Shell | ID = 2486 Description = App microsoft.windowsphotos_8wekyb3d8bbwe!Microsoft.WindowsLive.ModernPhotos did not launch within its allotted time. < End of report >