OTL Extras logfile created on: 5/2/2014 9:48:20 PM - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Mom\Downloads 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.16521) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 3.45 Gb Total Physical Memory | 1.08 Gb Available Physical Memory | 31.19% Memory free 4.39 Gb Paging File | 1.77 Gb Available in Paging File | 40.31% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 446.78 Gb Total Space | 385.20 Gb Free Space | 86.22% Space Free | Partition Type: NTFS Drive D: | 18.22 Gb Total Space | 1.87 Gb Free Space | 10.27% Space Free | Partition Type: NTFS Computer Name: LEIGHA | User Name: Mom | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = AC 1C AE C5 46 9F CE 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = [binary data] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = Reg Error: Unknown registry data type -- File not found [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{363FA916-6FDD-4C77-ABC1-526528DEDAB9}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{CC0F9C4B-D164-4F83-A55D-D87127AFD8BA}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{D956DFE8-C9BD-41B1-836B-2F39F0A15267}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\outlook.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{04075795-03D3-4F02-81C9-0795AA99AA8C}" = dir=in | name=microsoft solitaire collection | "{052021F6-B0A7-4AAA-AF7B-594EFF443475}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd12\powerdvd12ml.exe | "{07CF2D22-EB45-4D23-ABE2-AFB881E013F8}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{0943C7D3-0DA4-4FA7-A060-E9AB50FB78DA}" = dir=in | name=skype | "{0D45A681-06A1-4D22-AF05-1EAF4CAEC622}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe | "{0E45E01E-D5CF-40FF-9F99-087CA8B3C473}" = dir=out | name=microsoft solitaire collection | "{11760002-1189-4EE6-9AD8-E500EC49FB5B}" = dir=out | app=c:\users\mom\appdata\local\temp\file_to_run55724.exe | "{18ADF2BA-6057-471E-9F4A-47F924781710}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20461_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{1AF121A5-F711-4FF4-92DC-C048236E134C}" = dir=out | name=@{microsoft.bingtravel_3.0.2.243_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/brandedapptitle} | "{1C045491-4772-4E9B-B3C4-753AFFE732BE}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd12\movie\powerdvd.exe | "{1DF775FC-83D1-439A-A173-516421AC2580}" = protocol=17 | dir=in | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe | "{21528F33-F294-4E03-A973-B309E77E3110}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20461_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{24923E29-0F7A-421E-A76A-767933901AB8}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{2A40A05B-33CB-4442-8130-857D0BCE9EE6}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{335A45FA-0B91-4667-94A3-16071BD21798}" = protocol=6 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe | "{33FD14D4-487D-42A9-B00D-19F3314D29A5}" = dir=in | app=c:\users\mom\appdata\local\temp\file_3753328191.exe | "{3490B333-63B1-4859-BC89-C838630CA28F}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2816\agent.exe | "{36348AC8-37BE-4263-9400-68F6254EB98B}" = dir=in | name=hp connected photo | "{38CBD61A-26AB-40B0-A40D-A09E2F698CFE}" = dir=in | app=c:\users\mom\appdata\local\microsoft\skydrive\skydrive.exe | "{38CD06C0-4F58-45D3-B382-23DA51145622}" = dir=out | name=mcafee® central for hp | "{3C4E1BDC-A4A7-4907-9437-844CBA965719}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2816\agent.exe | "{3ED79347-086F-423F-91F1-5C98B57BAE7A}" = dir=out | name=hp connected photo | "{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn | "{4675C50F-8A4B-437B-B5AF-53B41575741B}" = dir=in | name=microsoft mahjong | "{4956C7F7-E375-4A77-BF26-F80DEC763ADB}" = dir=out | name=unroll it | "{50C547C0-9779-456E-9435-A170EC34D453}" = dir=in | app=c:\program files\pcreg\service.exe | "{53627DEF-828B-4373-B811-D2DE7A90B429}" = dir=out | app=c:\program files\pcreg\pcreg.exe | "{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect | "{57A4796C-9010-466E-8D5C-0DDB51383C97}" = dir=out | name=ebay | "{5862458C-611F-41F0-983F-0E6E8DE2452D}" = dir=out | name=microsoft mahjong | "{58F1CF33-6358-468D-BCDC-57835A21C969}" = dir=out | name=- games app - | "{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect | "{6036CE9A-F97B-418C-892F-E8C34FA819BC}" = dir=in | name=mcafee® central for hp | "{61FC807C-38A9-45B7-8DB8-8F5764F6BAD2}" = dir=out | name=youcam for hp | "{6343D234-FD40-4C32-881E-1033FD62FE29}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe | "{64912D72-4725-4A6B-88D9-7A9B0A8B7ACB}" = dir=out | name=box | "{708F1232-73F6-4C19-AD48-DC0A8144B538}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9654.20349_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} | "{7091CA7D-9B4A-4F16-89BD-48C5C9554052}" = dir=in | name=getting started with windows 8 | "{7207110E-D63A-4C8E-A3AD-FFED3D85E6B4}" = dir=in | app=c:\users\mom\appdata\local\temp\file_to_run55446.exe | "{760D42D9-5A80-47FB-940B-7FDF2D4729A6}" = dir=out | name=windows_ie_ac_001 | "{7920A97C-BA1C-4EE4-88A1-FB75F8AB3EC3}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe | "{7D245680-8EE4-4A33-A808-577263DE4A82}" = dir=out | app=c:\program files\pcreg\service.exe | "{7E0B3BF1-15F9-4915-A2F3-414CD9B91FF2}" = protocol=17 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe | "{82AE014E-7A7A-431D-8BFA-D393F2E5A0DA}" = dir=out | name=getting started with windows 8 | "{934F188C-026E-428C-A3FF-A18538E7D589}" = dir=out | name=hp registration | "{97BAB26E-2424-4655-B8E5-C9F82EE0332A}" = protocol=6 | dir=in | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe | "{986F2F87-D4EF-4902-A79C-EC357B958BBE}" = dir=out | app=c:\users\mom\appdata\local\temp\file_to_run55446.exe | "{9B66CE4A-97E7-4176-8F51-D8CCC5620CCF}" = dir=out | name=skype | "{9D08B289-D33A-4982-A09B-052C6E944418}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{A605EF0E-07FE-4BD1-8402-2658D0431317}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe | "{A7EDA137-DF87-46F3-A5CE-5A8492001F28}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd12\powerdvd12agent.exe | "{BB82AB22-9A16-4F1A-A243-55A3C47E8508}" = dir=out | name=kindle | "{BDA80A3D-6C73-40D9-BBFF-93E02CCD9095}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd12\kernel\dms\clmsserverpdvd12.exe | "{C0AA1212-05E8-42F6-ADAB-37FBD12234CC}" = dir=in | app=c:\program files (x86)\hewlett-packard\hp support framework\resources\hpwarrantycheck\hpdevicedetection3.exe | "{C24F5DCC-55EC-48ED-A2B2-16778E69B76F}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9654.20349_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} | "{C56C3C86-40CD-43A0-A00F-FF68588D94FB}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd12\powerdvd12.exe | "{CF544727-D2C6-4CD7-9ED3-41F5CAB34CAC}" = dir=in | app=c:\users\mom\appdata\local\temp\file_147060.exe | "{D0F8E6EF-9188-4DCE-BF3D-9B27B6A289AA}" = dir=out | name=netflix | "{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn | "{D7C54A4C-4444-493D-BF27-314B681F83C9}" = dir=in | app=c:\users\mom\appdata\local\temp\speedmax.exe | "{DA2ACCDD-4576-4FC1-97BA-16D10F4FF9E8}" = dir=in | name=box | "{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn | "{DDBAFF4F-FA35-406B-A0C0-043DA55F29CF}" = dir=out | name=@{microsoft.zunemusic_2.2.849.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{E56BB48C-47E2-48BA-939E-66635B34F2B3}" = dir=out | name=hp connected drive | "{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn | "{ECCD13D4-282E-410A-8990-A9BE2BF47EEB}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{EFEAAE96-5A3D-4624-BEA9-C33582BF0348}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd12\kernel\dmr\powerdvd12dmrengine.exe | "{F061848D-0E92-4C6E-AA16-7EA4AE7101F2}" = dir=out | name=@{microsoft.zunevideo_2.2.849.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "{F085444F-9A57-4EB2-89CD-2069BEDA35E7}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client | "{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client | "{F7AA463F-20F6-414F-A528-28B183A9B3DA}" = dir=out | app=c:\users\mom\appdata\local\temp\file_to_run551033.exe | "{F9D8B131-2136-4595-92BC-71885EBD22B2}" = dir=in | app=c:\users\mom\appdata\local\temp\file_to_run551033.exe | "{FA5B9B16-1E28-43CB-83D4-C4BC14157C05}" = dir=in | app=c:\program files\pcreg\pcreg.exe | "{FB8A6A13-7E24-4F77-823F-5A9D31D57C49}" = dir=out | name=@{microsoft.bingweather_3.0.2.243_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{FFCCFFE3-131D-4BBB-902F-41443CEA0D61}" = dir=in | name=hp connected drive | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{12D24BD9-6AAE-42C6-B1B0-E29590A3A77A}" = ccc-utility64 "{19C397A1-9C70-119F-E3BF-752C432FD217}" = AMD Catalyst Install Manager "{1D7EB7E7-0B5D-4A23-A383-7EF133090026}" = HP Utility Center "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition) "{2DE6247C-7077-451B-8BA7-FFD1A2ABBB47}" = Inst5675 "{314FAD12-F785-4471-BCE8-AB506642B9A1}" = HP SimplePass "{325C2B0D-146D-13B4-8A98-7C838EB10D05}" = AMD Start Now "{3596588B-0A6E-6C6B-FB53-B2EDC9A63B17}" = AMD Accelerated Video Transcoding "{3B3EAE8A-CF6C-E631-8E63-CEA756E16356}" = AMD Fuel "{6E14E6D6-3175-4E1A-B934-CAB5A86367CD}" = HP Postscript Converter "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour "{74FE39A0-FB76-47CD-84BA-91E2BBB17EF2}" = DisableMSDefender "{878F6913-7421-4713-97F7-0A736EE2A188}" = Inst5676 "{90150000-008F-0000-1000-0000000FF1CE}" = Office 15 Click-to-Run Licensing Component "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 "{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 "{D1E8F2D7-7794-4245-B286-87ED86C1893C}" = HP Registration Service "{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64 "O365HomePremRetail - en-us" = Microsoft Office 365 - en-us "SynTPDeinstKey" = Synaptics Pointing Device Driver [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{01D60AE5-7A78-32CB-1E25-E3BCF43C6F5E}" = CCC Help Dutch "{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam "{02691CBC-51A2-F845-169A-620A4DF59A86}" = CCC Help Spanish "{03D562B5-C4E2-4846-A920-33178788BE00}" = Windows Live Communications Platform "{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements "{0896C595-4001-266A-4E65-AC8B9D70A075}" = CCC Help Italian "{0F929651-F516-4956-90F2-FFBD2CD5D30E}" = Photo Gallery "{0FF9CC94-EF23-401E-BDBD-37403D1A2B38}" = Windows Live SOXE Definitions "{118DD9F0-49FE-498E-A2EE-F33423C1394C}" = Catalyst Control Center - Branding "{13A81B50-E880-4BFE-4B9E-6A18238AC86D}" = CCC Help Greek "{15134cb0-b767-4960-a911-f2d16ae54797}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}" = CyberLink Media Suite 10 "{22154f09-719a-4619-bb71-5b3356999fbf}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 "{26A24AE4-039D-4CA4-87B4-2F83217055FF}" = Java 7 Update 55 "{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}" = CyberLink Power2Go 8 "{2AC01935-3774-4981-98C8-14E93C14372C}" = Windows Live UX Platform Language Pack "{2D2F9E79-3DD8-D1C0-B8D5-BC4237D37BA0}" = CCC Help Swedish "{2DC1BBF1-02BA-AAFE-2007-274B3B5FBD43}" = CCC Help Chinese Standard "{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 "{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App" = Update Installer for WildTangent Games App "{30B2D1D8-0A07-4B71-9553-0710C5D31E35}" = HP Wireless Button Driver "{34FCD9EC-B55A-BDDD-A8EF-F0C70034D51A}" = CCC Help English "{3AF15EEA-8EDF-4393-BB6C-CF8A9986486A}" = HP Support Assistant "{45898170-E68C-4F02-AA35-C2186BF347A3}" = Movie Maker "{4687A349-171D-2F50-2D12-D61F647F9D97}" = CCC Help French "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{593EFB1F-1150-C4C5-9572-4C2CCA41C207}" = CCC Help Turkish "{5A0EE0F0-E909-4F3B-B437-AAD9252427CB}" = Windows Live Installer "{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}" = Realtek Card Reader "{5CA2F546-86B3-A0C4-731F-9BDE78A614F5}" = CCC Help Chinese Traditional "{5CC09593-C53F-5C38-0EE6-0E355BEA4670}" = Catalyst Control Center Graphics Previews Common "{5E094C92-6288-4F43-AA9A-D452D0218F3F}" = Windows Live Essentials "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{6B6923B9-8719-425B-916C-CD2908F31AAF}" = Windows Live SOXE "{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.2.2.3 "{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp" = WildTangent Games App (HP Games) "{70D5F822-F4C4-33D9-7EEC-2A4AF4EA7BDC}" = OEM Application Profile "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7E315722-3F01-EF0B-35A8-B4446BAE1C5A}" = CCC Help Danish "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8890A6A6-D589-81FE-19FE-7E76C55126BD}" = CCC Help Russian "{89C7E0A7-4D9D-4DCC-8834-A9A2B92D7EBB}" = Photo Gallery "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110 "{90150000-008C-0000-0000-0000000FF1CE}" = Office 15 Click-to-Run Extensibility Component "{90150000-008C-0409-0000-0000000FF1CE}" = Office 15 Click-to-Run Localization Component "{90E1A2C4-322E-C20E-22B4-0C3167EAFDD2}" = CCC Help Portuguese "{94A7ED8F-5A22-4F4E-4B0F-4EF85CD8A7B4}" = Catalyst Control Center InstallProxy "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9B56B031-A6C0-4BB7-8F61-938548C1B759}" = Pinger "{A4879DA2-1D82-79BD-BF5B-3AB069365D31}" = CCC Help Hungarian "{A5107464-AA9B-4177-8129-5FF2F42DD322}" = REALTEK Wireless LAN Driver "{A78F6253-8697-FB07-86BA-5DEA4E56B7B8}" = CCC Help Korean "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{ABE9E22F-2D48-103D-36FC-086AF9AB9C2A}" = CCC Help Japanese "{AE02E0DC-F7FF-1814-9641-4799AF4B8370}" = CCC Help Czech "{B39A6825-EA20-43EA-AB2D-A6BC0298D9A1}" = Movie Maker "{B46BEA36-0B71-4A4E-AE41-87241643FA0A}" = CyberLink PowerDVD 12 "{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = CyberLink LabelPrint "{C6B0EE9E-2128-4448-B7AE-5E2B46E0F0E7}" = Windows Live Photo Common "{C78E8F51-3EAD-4F0C-83F0-EF371075E0B4}" = HP System Event Utility "{CE30B8E7-CEE4-A490-3C92-2DECCE48A7BF}" = CCC Help Thai "{D820FF65-B479-6B51-4CEB-9E2DD2012D6C}" = CCC Help German "{D82B396E-A647-4C81-9DA4-C61F7BB620EC}" = HP Documentation "{DD7C5FC1-DCA5-487A-AF23-658B1C00243F}" = Photo Common "{E00B15CB-88A1-786D-6B0A-FCD4070A06D1}" = Catalyst Control Center Localization All "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E22D6940-B58C-1D38-8978-E8FE61529678}" = CCC Help Norwegian "{E3445598-4424-4EE2-B71C-C23325F7FB71}" = Windows Live PIMT Platform "{E5DC26A8-794F-9F95-F0EF-083E1B75C764}" = CCC Help Polish "{E662C83F-41DE-737D-F83E-A4339B00D728}" = AMD Catalyst Control Center "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0E58739-2B4C-498F-9B0D-FF0F2FD52B61}" = Windows Live UX Platform "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}" = Realtek Ethernet Controller All-In-One Windows Driver "{F9EBABFD-809B-25A9-D21E-BA190CE652D7}" = CCC Help Finnish "{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}" = Energy Star "{FD49537C-C3A6-4F8D-93E6-68C778A1E192}" = HP Recovery Manager "{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 "35450_Start Savin" = Start Savin "Adobe Shockwave Player" = Adobe Shockwave Player 12.0 "Battle.net" = Battle.net "Google Chrome" = Google Chrome "InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam "InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}" = CyberLink Media Suite 10 "InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}" = CyberLink Power2Go 8 "InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1}" = HP SimplePass "InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}" = CyberLink PowerDVD 12 "InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = CyberLink LabelPrint "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware version 2.0.1.1004 "MSC" = McAfee LiveSafe - Internet Security "PC Speed Maximizer_is1" = PC Speed Maximizer v3.2 "Pinger 1.4.0.1" = Pinger "Settings Manager" = Settings Manager "WildTangent wildgames Master Uninstall" = WildTangent Games "WinLiveSuite" = Windows Live Essentials "World of Warcraft" = World of Warcraft "WTA-042253bf-b369-4a76-8a8d-34385b3a27fe" = Vacation Quest™ - Australia "WTA-0c411bb9-99b4-41e0-87f8-cf5a0fdcaeb7" = Build-a-lot "WTA-0e60c1aa-64c9-4531-9872-3a621c04d3ad" = Peggle Nights "WTA-1c705dda-d638-41bc-a916-f43c491cb09a" = Curse at Twilight "WTA-1e350cce-7b1c-4aba-800c-48716cc60bcc" = Airport Mania "WTA-22115ff0-9e95-4430-83e0-8c15907f00ed" = Fishdom 3: Collector's Edition "WTA-23824612-adb6-4c7f-82f1-9dd8c09a2271" = Mahjongg Dimensions Deluxe "WTA-31e4b974-5ded-4ae1-b46b-5ff648b1c47f" = Azkend 2: The World Beneath "WTA-3eb54275-1f3d-47ab-8e8c-6b37c2d659be" = House of 1000 Doors: Family Secrets "WTA-50c81989-bd06-4041-8bdb-eda6e3d4d7c6" = Mystery P.I. - Curious Case of Counterfeit Cove "WTA-53496468-739f-4daf-9999-b9823f027c89" = Jewel Match 3 "WTA-545aa1e8-471e-4efc-9132-05ed45152c29" = 4 Elements II "WTA-5ce6c8ea-49a4-49ae-a2a0-63135c500875" = Cradle of Rome 2 "WTA-6e9486f2-21c3-4e1b-9e8e-05e37eae6809" = Youda Jewel Shop "WTA-70ef15d1-43a2-4071-8a27-85587e95d13e" = Roads of Rome 3 "WTA-872c36de-ad44-4735-9234-d2cb8c4438f9" = Tales of Lagoona "WTA-8c19759a-cabd-43b3-bd5d-b7053214531c" = Bounce Symphony "WTA-907c9196-a16f-45e5-a836-05147a403026" = King Oddball "WTA-9eb69b18-6608-4ff1-8350-e995d8ababd0" = Luxor Evolved "WTA-a2762c91-c502-413d-b757-56b815bdf8e7" = John Deere Drive Green "WTA-a6e76048-f70e-40a5-82eb-84d2c73ebbda" = Governor of Poker 2 Premium Edition "WTA-a7a7a624-9c9a-4a09-b37e-5018aac5e0ca" = Cradle Of Egypt Collector's Edition "WTA-b45c4bdc-7269-49b7-9ac0-6eec63e53b26" = Zuma's Revenge "WTA-c878aac2-8d29-448a-b55c-6ced49637f6d" = Farm Frenzy "WTA-d3d51d38-13a3-439b-bae0-0bed6cb0d74c" = Penguins! "WTA-d59a1ddd-8827-4478-848e-257c8f7479e0" = Plants vs. Zombies - Game of the Year "WTA-d6fcbbb6-022d-4052-abfb-445d19c7578d" = Delicious: Emily's Childhood Memories Premium Edition "WTA-e7e48931-095a-4f37-8a4f-5cec7d34907d" = Bejeweled 3 "WTA-f8868715-8d23-4c71-af13-b5a6c2175bd3" = Polar Bowler "Yahoo! Companion" = Yahoo! Toolbar "Yahoo! Messenger" = Yahoo! Messenger "Yahoo! Software Update" = Yahoo! Software Update [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Linkey" = Linkey "Mozilla Firefox 28.0 (x86 en-US)" = Mozilla Firefox 28.0 (x86 en-US) "SkyDriveSetup.exe" = Microsoft SkyDrive [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 4/24/2014 8:57:55 AM | Computer Name = Leigha | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 1610 Error - 4/24/2014 8:57:55 AM | Computer Name = Leigha | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 1610 Error - 4/24/2014 11:46:41 AM | Computer Name = Leigha | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 4/24/2014 11:46:41 AM | Computer Name = Leigha | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 10127719 Error - 4/24/2014 11:46:41 AM | Computer Name = Leigha | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 10127719 Error - 4/24/2014 1:44:42 PM | Computer Name = Leigha | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 4/24/2014 1:44:42 PM | Computer Name = Leigha | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 1547 Error - 4/24/2014 1:44:42 PM | Computer Name = Leigha | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 1547 Error - 4/24/2014 2:54:26 PM | Computer Name = Leigha | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 4/24/2014 2:54:26 PM | Computer Name = Leigha | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 4185969 [ System Events ] Error - 4/24/2014 5:37:54 PM | Computer Name = Leigha | Source = Service Control Manager | ID = 7000 Description = The McAfee Anti-Spam Service service failed to start due to the following error: %%1053 Error - 4/24/2014 6:09:56 PM | Computer Name = Leigha | Source = DCOM | ID = 10010 Description = Error - 4/24/2014 6:16:56 PM | Computer Name = Leigha | Source = EventLog | ID = 6008 Description = The previous system shutdown at 6:00:34 PM on ?4/?24/?2014 was unexpected. Error - 4/24/2014 6:16:50 PM | Computer Name = Leigha | Source = Service Control Manager | ID = 7000 Description = The UAC File Virtualization service failed to start due to the following error: %%1275 Error - 4/24/2014 6:26:31 PM | Computer Name = Leigha | Source = Service Control Manager | ID = 7034 Description = The CyberLink PowerDVD 12 Media Server Service service terminated unexpectedly. It has done this 1 time(s). Error - 4/24/2014 8:39:02 PM | Computer Name = Leigha | Source = Service Control Manager | ID = 7034 Description = The CyberLink PowerDVD 12 Media Server Service service terminated unexpectedly. It has done this 2 time(s). Error - 4/24/2014 10:15:17 PM | Computer Name = Leigha | Source = Service Control Manager | ID = 7034 Description = The CyberLink PowerDVD 12 Media Server Service service terminated unexpectedly. It has done this 3 time(s). Error - 4/25/2014 10:03:44 AM | Computer Name = Leigha | Source = DCOM | ID = 10010 Description = Error - 4/25/2014 10:21:00 AM | Computer Name = Leigha | Source = Service Control Manager | ID = 7034 Description = The CyberLink PowerDVD 12 Media Server Service service terminated unexpectedly. It has done this 4 time(s). Error - 4/25/2014 11:12:04 AM | Computer Name = Leigha | Source = Service Control Manager | ID = 7034 Description = The CyberLink PowerDVD 12 Media Server Service service terminated unexpectedly. It has done this 5 time(s). < End of report >