Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Windows 7 64-bit Startup Repair Loop [Solved]


  • This topic is locked This topic is locked

#16
Nikolina

Nikolina

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
OK. I got the message saying :
the operation was succesfull.

Should i take the usb out and restart?

Or keep it in and restart windows?

Edited by Nikolina, 06 May 2012 - 07:06 AM.

  • 0

Advertisements


#17
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Remove the USB and attempt a restart please
  • 0

#18
Nikolina

Nikolina

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
OK.
I tried that but it goes to blue screen and then to automatic restart.

When it restarted it took me to Windows error recovery offering 2 options:

1. Launch Startup repair (recommended)
2. Start windows normally

Option 2 again takes me in circles, and Option 1 one can't repair automatically.
Not sure if this is relevant but it also says the following:

"If you have recently attached a device to this computer, such as a camera or portable music player, remove it and restart your computer."

Thanks
  • 0

#19
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
OK back to the recovery console

And from the command prompt type the following

bootrec /FixMBR

Then retry a normal boot as before please
  • 0

#20
Nikolina

Nikolina

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
Just to double check if I should put USB back in first?
:unsure:
  • 0

#21
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Yes please

We may need to try a system restore next as long as some restore points are available
  • 0

#22
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
I have been doing some digging around and I appear to have made an error on the FRST drive letter :blush: I will amend my destructions to refelect this


On the System Recovery Options menu you will get the following options:
Startup Repair
System Restore
Windows Complete PC Restore
Windows Memory Diagnostic Tool
Command Prompt
[*]Select Command Prompt
[*]In the command window type in notepad and press Enter.
[*]The notepad opens. Under File menu select Open.
[*]Select "Computer" and find your flash drive letter and close the notepad.
[*]In the command window type e:\frst64.exe and press Enter
Note: Replace letter e with the drive letter of your flash drive.
[*]The tool will start to run.
[*]When the tool opens click Yes to disclaimer.
[*]Press Scan button.
[*]It will make a log (FRST.txt) on the flash drive. Please copy and paste it to your reply.[/list]
  • 0

#23
Nikolina

Nikolina

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
OK. Here we go.

Scan result of Farbar Recovery Scan Tool Version: 05-05-2012 02
Ran by SYSTEM at 06-05-2012 18:08:57
Running from G:\
Windows 7 Professional (X64) OS Language: English(US)
The current controlset is ControlSet001

========================== Registry (Whitelisted) =============

HKLM\...\Run: [TPHOTKEY] C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe [69568 2009-11-16] (Lenovo Group Limited)
HKLM\...\Run: [TpShocks] TpShocks.exe [x]
HKLM\...\Run: [AcWin7Hlpr] C:\Program Files (x86)\Lenovo\Access Connections\AcTBenabler.exe [36864 2009-10-13] ()
HKLM\...\Run: [cssauth] "C:\Program Files\Lenovo\Client Security Solution\cssauth.exe" silent [5879608 2009-08-26] (Lenovo Group Limited)
HKLM\...\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe [2097960 2010-04-22] (Synaptics Incorporated)
HKLM-x32\...\Run: [PWMTRV] rundll32 C:\PROGRA~2\ThinkPad\UTILIT~1\PWMTR64V.DLL,PwrMgrBkGndMonitor [1101672 2010-01-05] (Lenovo Group Limited)
HKLM-x32\...\Run: [Message Center Plus] C:\Program Files (x86)\LENOVO\Message Center Plus\MCPLaunch.exe /start [49976 2009-05-27] ()
HKLM-x32\...\Run: [] [x]
HKLM-x32\...\Run: [ACTray] C:\Program Files (x86)\Lenovo\Access Connections\ACTray.exe [435560 2010-03-01] (Lenovo)
HKLM-x32\...\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices [91520 2010-03-13] (Microsoft Corporation)
HKLM-x32\...\Run: [Communicator] "C:\Program Files (x86)\Microsoft Office Communicator\communicator.exe" /fromrunkey [5152096 2011-09-06] (Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [254696 2011-04-08] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [937920 2011-06-06] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [CieoNetUtilities_0e Browser Plugin Loader] C:\PROGRA~2\CIEONE~2\bar\1.bin\0ebrmon.exe [30096 2011-08-24] (VER_COMPANY_NAME)
HKLM-x32\...\Run: [AppleSyncNotifier] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [58656 2011-04-20] (Apple Inc.)
HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59240 2011-09-26] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2011-10-24] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [421736 2011-11-12] (Apple Inc.)
HKLM-x32\...\Run: [Launch Backup Service Once] C:\Program Files (x86)\Lenovo\Rescue and Recovery\rrstrigger.exe -start [21304 2009-08-28] ()
HKU\Nikolina\...\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background [4283256 2011-05-13] (Microsoft Corporation)
HKU\Nikolina\...\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [39408 2010-05-23] (Google Inc.)
HKU\Nikolina\...\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized [17351304 2011-10-13] (Skype Technologies S.A.)
Lsa: [Notification Packages] scecli
ACGina

==================== Services (Whitelisted) ======

2 AcPrfMgrSvc; C:\Program Files (x86)\Lenovo\Access Connections\AcPrfMgrSvc.exe [124264 2010-03-01] (Lenovo)
2 AcSvc; C:\Program Files (x86)\Lenovo\Access Connections\AcSvc.exe [259432 2010-03-01] (Lenovo)
2 BcmSqlStartupSvc; "C:\Program Files (x86)\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe" [31144 2010-03-25] (Microsoft Corporation)
2 btwdins; C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe [873248 2010-02-17] (Broadcom Corporation.)
2 CieoNetUtilities_0eService; C:\PROGRA~2\CIEONE~2\bar\1.bin\0ebarsvc.exe [42504 2011-08-24] (COMPANYVERS_NAME)
2 GtFlashSwitch; "C:\Program Files\Common Files\GtFlashSwitch\GtFlashSwitch.exe" [306688 2007-04-13] (Option)
2 IBMPMSVC; C:\Windows\System32\ibmpmsvc.exe [45928 2009-11-17] (Lenovo.)
2 IviRegMgr; "C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe" [112152 2007-01-04] (InterVideo)
2 LENOVO.CAMMUTE; C:\Program Files\LENOVO\HOTKEY\CAMMUTE.exe [54632 2009-11-08] (Lenovo Group Limited)
2 LENOVO.MICMUTE; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [44984 2009-11-17] (Lenovo Group Limited)
2 NIS; "C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\diMaster.dll" /prefetch:1 [262584 2011-03-31] (Symantec Corporation)
2 nlsX86cc; C:\Windows\SysWOW64\NLSSRV32.EXE [68928 2011-03-21] (Nalpeiron Ltd.)
3 Power Manager DBC Service; "C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE" [75112 2010-01-05] (Lenovo)
2 QDLService2kLenovo; "C:\Program Files (x86)\QUALCOMM\QDLService2k\QDLService2kLenovo.exe" [331512 2010-02-05] (QUALCOMM, Inc.)
2 ThinkVantage Registry Monitor Service; "C:\Program Files (x86)\Common Files\Lenovo\tvt_reg_monitor_svc.exe" [1019904 2009-08-28] (Lenovo Group Limited)
3 TPHDEXLGSVC; C:\Windows\System32\TPHDEXLG64.exe [47656 2009-10-09] (Lenovo.)
2 TPHKSVC; C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe [62904 2009-11-16] (Lenovo Group Limited)
3 TVT Backup Service; "C:\Program Files (x86)\Lenovo\Rescue and Recovery\rrservice.exe" [1474560 2009-09-03] (Lenovo Group Limited)
2 UNS; "C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe" [2320920 2009-11-03] (Intel Corporation)
3 MSSQL$MSSMLBIZ; "c:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sMSSMLBIZ [x]
4 MSSQLServerADHelper; "c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqladhlp90.exe" [x]
2 SQLBrowser; "c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe" [x]
2 SQLWriter; "c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe" [x]
2 SUService; "c:\Program Files (x86)\Lenovo\System Update\SUService.exe" [x]

========================== Drivers (Whitelisted) =============

3 1394ohci; C:\Windows\System32\Drivers\1394ohci.sys [229888 2010-11-20] (Microsoft Corporation)
3 5U877; C:\Windows\System32\Drivers\5U877.sys [161024 2009-06-18] (Ricoh co.,Ltd.)
3 amdkmdag; C:\Windows\System32\DRIVERS\atipmdag.sys [6327296 2010-01-13] (ATI Technologies Inc.)
1 BHDrvx64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\Definitions\BASHDefs\20111221.003\BHDrvx64.sys [1156216 2011-11-23] (Symantec Corporation)
0 CLFS; C:\Windows\System32\CLFS.sys [367696 2009-07-13] (Microsoft Corporation)
3 ebdrv; C:\Windows\System32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
1 eeCtrl; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [482936 2011-11-30] (Symantec Corporation)
3 EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [138360 2011-11-30] (Symantec Corporation)
3 GT72NDISIPXP; C:\Windows\System32\DRIVERS\Gt51Ip.sys [110592 2007-07-09] (Option NV)
3 GT72UBUS; C:\Windows\System32\Drivers\GT72UBUS.sys [70656 2007-06-26] (Option N.V.)
3 GTPTSER; C:\Windows\System32\Drivers\GTPTSER.sys [10624 2007-03-30] (Option N.V.)
3 IBMPMDRV; C:\Windows\System32\Drivers\IBMPMDRV.sys [32880 2009-11-17] (Lenovo.)
1 IDSVia64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\Definitions\IPSDefs\20111223.001\IDSvia64.sys [488568 2011-11-29] (Symantec Corporation)
3 igfx; C:\Windows\System32\DRIVERS\igdkmd64.sys [6108416 2009-06-10] (Intel Corporation)
3 IpFilterDriver; C:\Windows\System32\DRIVERS\ipfltdrv.sys [82944 2010-11-20] (Microsoft Corporation)
3 iScsiPrt; C:\Windows\System32\drivers\msiscsi.sys [273792 2010-11-20] (Microsoft Corporation)
1 lenovo.smi; C:\Windows\System32\DRIVERS\smiifx64.sys [15400 2008-05-12] (Lenovo Group Limited)
3 NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\Definitions\VirusDefs\20111224.017\ENG64.SYS [117880 2011-11-30] (Symantec Corporation)
3 NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\Definitions\VirusDefs\20111224.017\EX64.SYS [2048632 2011-11-30] (Symantec Corporation)
3 NDProxy; C:\Windows\System32\Drivers\NDProxy.sys [57856 2010-11-20] (Microsoft Corporation)
3 psadd; C:\Windows\System32\Drivers\psadd.sys [40512 2009-07-01] (Lenovo (United States) Inc.)
3 qcfilterlno2k; C:\Windows\System32\Drivers\qcfilterlno2k.sys [6400 2010-02-05] (QUALCOMM Incorporated)
3 qcusbnetlno2k; C:\Windows\System32\Drivers\qcusbnetlno2k.sys [241664 2010-02-05] (QUALCOMM Incorporated)
3 qcusbserlno2k; C:\Windows\System32\Drivers\qcusbserlno2k.sys [121600 2010-02-05] (QUALCOMM Incorporated)
0 Shockprf; C:\Windows\System32\DRIVERS\Apsx64.sys [136744 2009-10-09] (Lenovo.)
3 SRTSP; C:\Windows\System32\Drivers\NISx64\1206000.01D\SRTSP64.SYS [744568 2011-03-30] (Symantec Corporation)
1 SRTSPX; C:\Windows\System32\drivers\NISx64\1206000.01D\SRTSPX64.SYS [40568 2011-03-30] (Symantec Corporation)
0 SymDS; C:\Windows\System32\drivers\NISx64\1206000.01D\SYMDS64.SYS [450680 2011-01-26] (Symantec Corporation)
0 SymEFA; C:\Windows\System32\drivers\NISx64\1206000.01D\SYMEFA64.SYS [912504 2011-03-14] (Symantec Corporation)
3 SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [174200 2011-05-02] (Symantec Corporation)
1 SymIRON; C:\Windows\System32\drivers\NISx64\1206000.01D\Ironx64.SYS [171128 2011-01-26] (Symantec Corporation)
1 SymNetS; C:\Windows\System32\Drivers\NISx64\1206000.01D\SYMNETS.SYS [386168 2011-07-08] (Symantec Corporation)
0 TPDIGIMN; C:\Windows\System32\DRIVERS\ApsHM64.sys [23592 2009-10-09] (Lenovo.)
3 TPM; C:\Windows\System32\Drivers\TPM.sys [38400 2009-07-13] (Microsoft Corporation)
1 TPPWRIF; C:\Windows\System32\drivers\Tppwr64v.sys [13104 2010-01-05] ()
2 TurboB; C:\Windows\System32\Drivers\TurboB.sys [12728 2009-09-29] ()
3 PcdrNdisuio; C:\Windows\SysWow64\drivers\pcdrndisuio.sys [x]
3 PCDSRVC{127174DC-C366ED8B-06020200}_0; \??\c:\program files\pc-doctor\pcdsrvc_x64.pkms [x]
3 SYMFW; C:\Windows\System32\Drivers\NISx64\1008000.029\SYMFW.SYS [x]
3 SYMNDISV; C:\Windows\System32\Drivers\NISx64\1008000.029\SYMNDISV.SYS [x]

========================== NetSvcs (Whitelisted) ===========

============ One Month Created Files and Folders ==============

2012-05-06 18:08 - 2012-05-05 01:33 - 0000000 ____D C:\FRST
2012-05-05 00:35 - 2012-05-05 03:25 - 0001732 ____A C:\tvtpktfilter.dat
2012-05-04 15:00 - 2009-08-26 14:31 - 0000116 ____A C:\tvttemp.txt

============ 3 Months Modified Files and Folders =============

2012-05-06 18:09 - 2012-05-06 18:08 - 0000000 ____D C:\FRST
2012-05-05 02:07 - 2009-07-13 21:37 - 0000000 ____D C:\Windows\SysWOW64\winrm
2012-05-05 02:07 - 2009-07-13 21:37 - 0000000 ____D C:\Windows\SysWOW64\WCN
2012-05-05 02:07 - 2009-07-13 21:37 - 0000000 ____D C:\Windows\SysWOW64\sysprep
2012-05-05 02:07 - 2009-07-13 21:37 - 0000000 ____D C:\Windows\SysWOW64\slmgr
2012-05-05 02:07 - 2009-07-13 21:37 - 0000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts
2012-05-05 02:07 - 2009-07-13 21:32 - 0000000 ____D C:\Windows\SysWOW64\WindowsPowerShell
2012-05-05 02:07 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\Web
2012-05-05 02:07 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\Vss
2012-05-05 02:07 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\spp
2012-05-05 02:07 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\Speech
2012-05-05 02:07 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\NetworkList
2012-05-05 02:07 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\MUI
2012-05-05 02:07 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\Msdtc
2012-05-05 02:06 - 2010-04-15 02:07 - 0000000 ____D C:\Windows\SysWOW64\Macromed
2012-05-05 02:06 - 2009-07-13 21:37 - 0000000 ____D C:\Windows\System32\winrm
2012-05-05 02:06 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\IME
2012-05-05 02:06 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\winevt
2012-05-05 02:05 - 2009-07-13 21:37 - 0000000 ____D C:\Windows\System32\WCN
2012-05-05 02:05 - 2009-07-13 21:37 - 0000000 ____D C:\Windows\System32\slmgr
2012-05-05 02:05 - 2009-07-13 21:37 - 0000000 ____D C:\Windows\System32\Printing_Admin_Scripts
2012-05-05 02:05 - 2009-07-13 21:32 - 0000000 ____D C:\Windows\System32\WindowsPowerShell
2012-05-05 02:05 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\spp
2012-05-05 02:05 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\spool
2012-05-05 02:05 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\Speech
2012-05-05 02:05 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\SMI
2012-05-05 02:05 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\NetworkList
2012-05-05 02:05 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\MUI
2012-05-05 02:04 - 2011-02-19 12:19 - 0000000 ____D C:\Windows\System32\Macromed
2012-05-05 02:04 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\IME
2012-05-05 02:02 - 2010-05-20 16:53 - 0000000 ____D C:\Windows\System32\Drivers\NISx64
2012-05-05 02:01 - 2010-08-13 13:22 - 0000000 ____D C:\Windows\Sun
2012-05-05 02:01 - 2010-06-06 00:17 - 0000000 ____D C:\Windows\System32\appmgmt
2012-05-05 02:01 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\Speech
2012-05-05 02:00 - 2009-07-13 20:45 - 0000000 ____D C:\Windows\Setup
2012-05-05 01:59 - 2010-04-15 02:33 - 0000000 ____D C:\Windows\PCHEALTH
2012-05-05 01:59 - 2009-07-13 21:32 - 0000000 ____D C:\Windows\Performance
2012-05-05 01:59 - 2009-07-13 20:45 - 0000000 ____D C:\Windows\ServiceProfiles
2012-05-05 01:59 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\security
2012-05-05 01:59 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\schemas
2012-05-05 01:59 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\Resources
2012-05-05 01:59 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\PLA
2012-05-05 01:59 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\LiveKernelReports
2012-05-05 01:57 - 2010-04-15 02:23 - 0000000 ____D C:\Windows\Downloaded Installations
2012-05-05 01:57 - 2010-04-15 01:47 - 0000000 ____D C:\Windows\CSC
2012-05-05 01:57 - 2009-07-13 21:37 - 0000000 ____D C:\Windows\DigitalLocker
2012-05-05 01:57 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\Globalization
2012-05-05 01:57 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\Branding
2012-05-05 01:56 - 2010-04-15 02:26 - 0000000 ____D C:\Users\Public\Lenovo
2012-05-05 01:56 - 2009-07-13 23:44 - 0000000 ___RD C:\Users\Public\Recorded TV
2012-05-05 01:56 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\AppCompat
2012-05-05 01:55 - 2011-09-13 02:27 - 0000000 ____D C:\Users\Nikolina\Documents\Fax
2012-05-05 01:55 - 2011-08-24 02:46 - 0000000 ___HD C:\Users\Nikolina\AppData\Roaming\Nitro PDF
2012-05-05 01:55 - 2011-07-09 02:15 - 0000000 ___HD C:\Users\Nikolina\AppData\Roaming\QcWizard
2012-05-05 01:55 - 2011-05-03 13:58 - 0000000 ____D C:\Users\Nikolina\AppData\Roaming\PCDr
2012-05-05 01:55 - 2010-08-23 15:19 - 0000000 ____D C:\Users\Nikolina\Documents\InterVideo
2012-05-05 01:55 - 2010-07-17 14:55 - 0000000 ____D C:\Users\Nikolina\AppData\Roaming\Update
2012-05-05 01:55 - 2010-06-22 01:52 - 0000000 ___HD C:\Users\Nikolina\AppData\Roaming\Ulead Systems
2012-05-05 01:55 - 2010-06-22 01:52 - 0000000 ____D C:\Users\Nikolina\Documents\Ulead Burn.Now
2012-05-05 01:53 - 2011-11-21 14:18 - 0000000 ____D C:\Users\Nikolina\AppData\Roaming\ATI
2012-05-05 01:53 - 2011-08-24 02:42 - 0000000 ____D C:\Users\Nikolina\AppData\Roaming\Downloaded Installations
2012-05-05 01:53 - 2011-08-13 09:42 - 0000000 ___HD C:\Users\Nikolina\AppData\Roaming\Apple Computer
2012-05-05 01:53 - 2011-04-20 08:51 - 0000000 ___HD C:\Users\Nikolina\AppData\Roaming\eTeks
2012-05-05 01:53 - 2010-08-23 13:58 - 0000000 ___HD C:\Users\Nikolina\AppData\Roaming\InterVideo
2012-05-05 01:53 - 2010-05-23 14:37 - 0000000 ___HD C:\Users\Nikolina\AppData\Roaming\Google
2012-05-05 01:53 - 2010-05-23 09:24 - 0000000 ____D C:\Users\Nikolina\AppData\Roaming\Macromedia
2012-05-05 01:53 - 2010-05-23 09:24 - 0000000 ____D C:\Users\Nikolina\AppData\Roaming\Adobe
2012-05-05 01:53 - 2010-05-20 16:58 - 0000000 ___HD C:\Users\Nikolina\AppData\Roaming\Lenovo
2012-05-05 01:53 - 2010-05-20 16:44 - 0000000 ____D C:\Users\Nikolina\AppData\Roaming\Intel
2012-05-05 01:53 - 2010-05-20 16:43 - 0000000 ____D C:\Users\Nikolina\AppData\LocalLow
2012-05-05 01:52 - 2011-01-26 04:48 - 0000000 ___HD C:\Users\Nikolina\AppData\Local\Windows Live Writer
2012-05-05 01:52 - 2010-09-07 08:11 - 0000000 ____D C:\Users\Nikolina\AppData\Local\Yahoo!
2012-05-05 01:52 - 2010-05-20 16:46 - 0000000 ____D C:\Users\Nikolina\AppData\Local\VirtualStore
2012-05-05 01:51 - 2011-07-29 09:33 - 0000000 ____D C:\Users\Nikolina\AppData\Local\Microsoft Games
2012-05-05 01:46 - 2011-11-21 14:18 - 0000000 ____D C:\Users\Nikolina\AppData\Local\ATI
2012-05-05 01:46 - 2011-08-05 14:12 - 0000000 ___HD C:\Users\Nikolina\AppData\Local\Apple Computer
2012-05-05 01:46 - 2011-06-21 13:10 - 0000000 ___HD C:\Users\Nikolina\AppData\Local\Apple
2012-05-05 01:46 - 2010-07-16 14:57 - 0000000 ___HD C:\Users\Nikolina\AppData\Local\Broadcom
2012-05-05 01:46 - 2010-05-24 03:36 - 0000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2012-05-05 01:46 - 2010-05-24 03:36 - 0000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2012-05-05 01:46 - 2010-05-23 14:37 - 0000000 ___HD C:\Users\Nikolina\AppData\Local\Google
2012-05-05 01:46 - 2010-05-23 14:31 - 0000000 ____D C:\Users\Nikolina\AppData\Local\Adobe
2012-05-05 01:45 - 2011-08-13 09:41 - 0000000 ____D C:\Users\All Users\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
2012-05-05 01:45 - 2011-08-13 09:41 - 0000000 ____D C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
2012-05-05 01:45 - 2010-06-12 01:54 - 0000000 ___HD C:\Users\All Users\Sun
2012-05-05 01:45 - 2010-06-12 01:54 - 0000000 ___HD C:\ProgramData\Sun
2012-05-05 01:45 - 2010-05-23 10:01 - 0000000 ____D C:\Users\All Users\Skype
2012-05-05 01:45 - 2010-05-23 10:01 - 0000000 ____D C:\ProgramData\Skype
2012-05-05 01:45 - 2010-05-23 08:17 - 0000000 ___HD C:\Users\All Users\Symantec
2012-05-05 01:45 - 2010-05-23 08:17 - 0000000 ___HD C:\ProgramData\Symantec
2012-05-05 01:45 - 2010-04-15 02:23 - 0000000 ____D C:\Users\All Users\PCDr
2012-05-05 01:45 - 2010-04-15 02:23 - 0000000 ____D C:\ProgramData\PCDr
2012-05-05 01:45 - 2010-04-15 01:58 - 0000000 ___HD C:\Users\All Users\QUALCOMM
2012-05-05 01:45 - 2010-04-15 01:58 - 0000000 ___HD C:\ProgramData\QUALCOMM
2012-05-05 01:44 - 2011-08-24 02:44 - 0000000 ___HD C:\Users\All Users\Nitro PDF
2012-05-05 01:44 - 2011-08-24 02:44 - 0000000 ___HD C:\ProgramData\Nitro PDF
2012-05-05 01:44 - 2011-05-03 13:59 - 0000000 ____D C:\Users\All Users\PC-Doctor for Windows
2012-05-05 01:44 - 2011-05-03 13:59 - 0000000 ____D C:\ProgramData\PC-Doctor for Windows
2012-05-05 01:44 - 2010-05-23 14:31 - 0000000 ____D C:\Users\All Users\NOS
2012-05-05 01:44 - 2010-05-23 14:31 - 0000000 ____D C:\ProgramData\NOS
2012-05-05 01:44 - 2010-05-20 16:47 - 0000000 ____D C:\Users\All Users\NortonInstaller
2012-05-05 01:44 - 2010-05-20 16:47 - 0000000 ____D C:\ProgramData\NortonInstaller
2012-05-05 01:43 - 2011-08-13 01:47 - 0000000 ____D C:\Users\All Users\Apple Computer
2012-05-05 01:43 - 2011-08-13 01:47 - 0000000 ____D C:\ProgramData\Apple Computer
2012-05-05 01:43 - 2011-06-21 13:10 - 0000000 ____D C:\Users\All Users\Apple
2012-05-05 01:43 - 2011-06-21 13:10 - 0000000 ____D C:\ProgramData\Apple
2012-05-05 01:43 - 2010-06-01 14:12 - 0000000 ____D C:\Program Files (x86)\T-Mobile
2012-05-05 01:43 - 2010-05-27 13:44 - 0000000 ____D C:\Users\All Users\Hewlett-Packard
2012-05-05 01:43 - 2010-05-27 13:44 - 0000000 ____D C:\ProgramData\Hewlett-Packard
2012-05-05 01:43 - 2010-05-24 03:36 - 0000000 ____D C:\Users\All Users\Adobe
2012-05-05 01:43 - 2010-05-24 03:36 - 0000000 ____D C:\ProgramData\Adobe
2012-05-05 01:43 - 2010-05-23 14:31 - 0000000 ____D C:\Users\All Users\Google
2012-05-05 01:43 - 2010-05-23 14:31 - 0000000 ____D C:\ProgramData\Google
2012-05-05 01:43 - 2010-05-21 14:53 - 0000000 ____D C:\Program Files (x86)\SpeedTouch
2012-05-05 01:43 - 2010-04-15 02:27 - 0000000 ____D C:\Program Files (x86)\Windows Live
2012-05-05 01:43 - 2010-04-15 02:21 - 0000000 ___HD C:\Users\All Users\AT&T
2012-05-05 01:43 - 2010-04-15 02:21 - 0000000 ___HD C:\ProgramData\AT&T
2012-05-05 01:43 - 2010-04-15 02:21 - 0000000 ____D C:\Program Files (x86)\Verizon Wireless
2012-05-05 01:43 - 2010-04-15 02:15 - 0000000 ___HD C:\Users\All Users\InterVideo
2012-05-05 01:43 - 2010-04-15 02:15 - 0000000 ___HD C:\ProgramData\InterVideo
2012-05-05 01:43 - 2010-04-15 02:02 - 0000000 ___HD C:\Users\All Users\ATI
2012-05-05 01:43 - 2010-04-15 02:02 - 0000000 ___HD C:\ProgramData\ATI
2012-05-05 01:43 - 2010-04-15 01:59 - 0000000 ____D C:\Program Files (x86)\ThinkPad
2012-05-05 01:43 - 2010-04-15 01:58 - 0000000 ____D C:\Program Files (x86)\Realtek
2012-05-05 01:43 - 2010-04-15 01:54 - 0000000 ____D C:\Users\All Users\Intel
2012-05-05 01:43 - 2010-04-15 01:54 - 0000000 ____D C:\ProgramData\Intel
2012-05-05 01:43 - 2009-07-13 21:32 - 0000000 ____D C:\Program Files (x86)\Reference Assemblies
2012-05-05 01:43 - 2009-07-13 19:20 - 0000000 ____D C:\Program Files (x86)\Windows NT
2012-05-05 01:42 - 2010-11-02 13:41 - 0000000 ____D C:\Program Files (x86)\MSN Toolbar
2012-05-05 01:42 - 2010-10-19 14:29 - 0000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services
2012-05-05 01:42 - 2010-10-19 14:27 - 0000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8
2012-05-05 01:42 - 2010-06-06 00:30 - 0000000 ____D C:\Program Files (x86)\Option
2012-05-05 01:42 - 2010-05-20 16:47 - 0000000 ____D C:\Program Files (x86)\NortonInstaller
2012-05-05 01:42 - 2010-04-15 02:40 - 0000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2012-05-05 01:42 - 2010-04-15 02:37 - 0000000 ____D C:\Program Files (x86)\Microsoft Office
2012-05-05 01:42 - 2010-04-15 02:35 - 0000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2012-05-05 01:42 - 2010-04-15 02:29 - 0000000 ____D C:\Program Files (x86)\Microsoft Sync Framework
2012-05-05 01:42 - 2010-04-15 01:58 - 0000000 ____D C:\Program Files (x86)\QUALCOMM
2012-05-05 01:40 - 2010-10-19 14:40 - 0000000 ____D C:\Program Files (x86)\Microsoft Chart Controls
2012-05-05 01:40 - 2010-10-19 14:26 - 0000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2012-05-05 01:40 - 2010-04-15 02:17 - 0000000 ____D C:\Program Files (x86)\Java
2012-05-05 01:38 - 2011-05-14 09:03 - 0000000 ____D C:\Program Files (x86)\FreeCall.com
2012-05-05 01:38 - 2011-04-27 00:17 - 0000000 ____D C:\Program Files (x86)\innoplus
2012-05-05 01:38 - 2010-05-23 14:31 - 0000000 ____D C:\Program Files (x86)\Google
2012-05-05 01:38 - 2010-04-15 02:10 - 0000000 ____D C:\Program Files (x86)\InterVideo
2012-05-05 01:38 - 2010-04-15 01:58 - 0000000 ____D C:\Program Files (x86)\Intel
2012-05-05 01:38 - 2010-04-15 01:55 - 0000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2012-05-05 01:36 - 2010-04-15 02:13 - 0000000 ____D C:\Program Files (x86)\Corel
2012-05-05 01:35 - 2011-08-24 01:35 - 0000000 ____D C:\Program Files (x86)\CieoNetUtilities_0e
2012-05-05 01:35 - 2011-08-24 01:30 - 0000000 ____D C:\Program Files (x86)\CieoNetUtilities_0eEI
2012-05-05 01:35 - 2010-04-15 01:56 - 0000000 ____D C:\Program Files (x86)\Chicony Electronics Co.,Ltd
2012-05-05 01:35 - 2010-04-15 01:54 - 0000000 ____D C:\Program Files (x86)\Cisco
2012-05-05 01:34 - 2011-08-06 10:50 - 0000000 ____D C:\Program Files\Windows Live
2012-05-05 01:34 - 2011-07-25 14:59 - 0000000 ____D C:\Program Files (x86)\Amazon
2012-05-05 01:34 - 2010-05-24 03:36 - 0000000 ____D C:\Program Files (x86)\Adobe
2012-05-05 01:34 - 2010-04-15 02:44 - 0000000 ____D C:\Program Files\Synaptics
2012-05-05 01:34 - 2010-04-15 02:21 - 0000000 ____D C:\Program Files (x86)\AT&T
2012-05-05 01:34 - 2010-04-15 01:56 - 0000000 ____D C:\Program Files\ThinkPad
2012-05-05 01:34 - 2010-04-15 01:51 - 0000000 ____D C:\Program Files\Realtek
2012-05-05 01:34 - 2009-07-13 21:32 - 0000000 ____D C:\Program Files\Reference Assemblies
2012-05-05 01:34 - 2009-07-13 19:20 - 0000000 ____D C:\Program Files\Windows NT
2012-05-05 01:33 - 2011-08-13 09:41 - 0000000 ____D C:\Program Files\Common Files\Apple
2012-05-05 01:33 - 2010-10-19 14:26 - 0000000 __RHD C:\MSOCache
2012-05-05 01:33 - 2010-10-19 14:26 - 0000000 ____D C:\Program Files\Microsoft Office
2012-05-05 01:33 - 2010-05-23 14:31 - 0000000 ____D C:\Program Files\Google
2012-05-05 01:33 - 2010-04-15 02:40 - 0000000 ____D C:\Program Files\Microsoft SQL Server
2012-05-05 01:33 - 2010-04-15 02:16 - 0000000 ____D C:\Program Files\Java
2012-05-05 01:33 - 2010-04-15 02:00 - 0000000 ____D C:\Program Files\ATI
2012-05-05 01:33 - 2010-04-15 01:58 - 0000000 ___HD C:\Intel
2012-05-05 01:33 - 2010-04-15 01:55 - 0000000 ____D C:\Program Files\Lenovo
2012-05-05 01:33 - 2010-04-15 01:54 - 0000000 ____D C:\Program Files\Intel
2012-05-05 01:33 - 2010-04-15 01:54 - 0000000 ____D C:\Program Files\Common Files\Intel
2012-05-05 01:33 - 2010-04-15 01:52 - 0000000 ____D C:\Program Files\DIFX
2012-05-05 01:33 - 2009-07-13 21:32 - 0000000 ____D C:\Program Files\MSBuild
2012-05-05 01:33 - 2009-07-13 21:32 - 0000000 ____D C:\Program Files\Microsoft Games
2012-05-05 01:33 - 2009-07-13 19:20 - 0000000 ____D C:\Program Files\Common Files\SpeechEngines
2012-05-05 01:33 - 2009-07-13 19:20 - 0000000 ____D C:\Program Files\Common Files\Microsoft Shared
2012-05-05 01:33 - 2009-07-13 19:20 - 0000000 ____D C:\PerfLogs
2012-05-05 01:33 - 2009-07-13 19:18 - 0000000 __SHD C:\$Recycle.Bin
2012-05-05 00:35 - 2012-05-05 00:35 - 0001732 ____A C:\tvtpktfilter.dat
2012-05-04 18:23 - 2012-05-04 15:00 - 0000116 ____A C:\tvttemp.txt
2012-05-04 18:19 - 2010-12-07 12:52 - 0000000 ____D C:\Users\Nikolina\Documents\Outlook Files
2012-05-04 18:11 - 2010-04-15 01:51 - 0000000 ____D C:\Windows\SysWOW64\RTCOM
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\zh-TW
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\zh-HK
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\zh-CN
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\uk-UA
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\tr-TR
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\th-TH
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\sv-SE
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\sr-Latn-CS
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\sl-SI
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\sk-SK
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\Setup
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\ru-RU
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\ro-RO
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\Recovery
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\pt-PT
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\pt-BR
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\pl-PL
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\oobe
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\nl-NL
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\nb-NO
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\migwiz
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\lv-LV
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\lt-LT
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\ko-KR
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\ja-JP
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\it-IT
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\InstallShield
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\icsxml
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\hu-HU
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\hr-HR
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\he-IL
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\fr-FR
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\fi-FI
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\et-EE
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\es-ES
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\el-GR
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\de-DE
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\da-DK
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\cs-CZ
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\com
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\bg-BG
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\ar-SA
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\AdvancedInstallers
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\zh-TW
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\zh-HK
2012-05-04 18:11 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\zh-CN
2012-05-04 18:10 - 2009-07-13 21:32 - 0000000 ____D C:\Windows\System32\WinBioPlugIns
2012-05-04 18:10 - 2009-07-13 21:32 - 0000000 ____D C:\Windows\System32\restore
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\uk-UA
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\tr-TR
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\th-TH
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\sysprep
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\sv-SE
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\sr-Latn-CS
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\sl-SI
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\sk-SK
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\Setup
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\ru-RU
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\ro-RO
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\Recovery
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\pt-PT
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\pt-BR
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\pl-PL
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\oobe
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\nl-NL
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\NDF
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\nb-NO
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\Msdtc
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\migwiz
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\lv-LV
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\lt-LT
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\ko-KR
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\ja-JP
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\it-IT
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\icsxml
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\hu-HU
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\hr-HR
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\he-IL
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\fr-FR
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\fi-FI
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\et-EE
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\es-ES
2012-05-04 18:10 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\el-GR
2012-05-04 18:09 - 2010-05-23 18:03 - 0000000 ____D C:\Windows\SQL9_KB970892_ENU
2012-05-04 18:09 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\Dism
2012-05-04 18:09 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\de-DE
2012-05-04 18:09 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\da-DK
2012-05-04 18:09 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\cs-CZ
2012-05-04 18:09 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\com
2012-05-04 18:09 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\bg-BG
2012-05-04 18:09 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\ar-SA
2012-05-04 18:09 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\AdvancedInstallers
2012-05-04 18:08 - 2010-07-30 05:26 - 0000000 ____D C:\Windows\Minidump
2012-05-04 18:08 - 2009-07-24 09:29 - 0000000 ____D C:\Windows\Panther
2012-05-04 18:08 - 2009-07-13 23:45 - 0000000 ____D C:\Windows\ShellNew
2012-05-04 18:08 - 2009-07-13 21:32 - 0000000 ____D C:\Windows\Offline Web Pages
2012-05-04 18:08 - 2009-07-13 19:20 - 0000000 __RSD C:\Windows\Media
2012-05-04 18:08 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\servicing
2012-05-04 18:08 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\registration
2012-05-04 18:08 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\PolicyDefinitions
2012-05-04 18:08 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\L2Schemas
2012-05-04 18:07 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\IME
2012-05-04 18:06 - 2010-04-15 02:27 - 0000000 ____D C:\Windows\delnis
2012-05-04 18:06 - 2009-07-13 21:32 - 0000000 ____D C:\Windows\Downloaded Program Files
2012-05-04 18:06 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\Help
2012-05-04 18:06 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\Cursors
2012-05-04 18:05 - 2009-07-13 21:32 - 0000000 ____D C:\Windows\addins
2012-05-04 18:05 - 2009-07-13 19:20 - 0000000 ___RD C:\Users\Public\Libraries
2012-05-04 18:05 - 2009-07-13 19:20 - 0000000 ___RD C:\users\Public
2012-05-04 18:00 - 2011-01-10 13:35 - 0000000 ____D C:\Users\Nikolina\Documents\Symantec
2012-05-04 18:00 - 2010-10-19 14:38 - 0000000 ____D C:\Program Files (x86)\Microsoft Office Communicator
2012-05-04 18:00 - 2010-10-11 09:30 - 0000000 ____D C:\Users\Nikolina\Documents\Elavon
2012-05-04 18:00 - 2010-05-21 11:10 - 0000000 ____D C:\Users\Nikolina\AppData\Local\Microsoft Help
2012-05-04 18:00 - 2010-05-20 16:53 - 0000000 ____D C:\Users\All Users\Norton
2012-05-04 18:00 - 2010-05-20 16:53 - 0000000 ____D C:\ProgramData\Norton
2012-05-04 18:00 - 2010-05-20 16:43 - 0000000 ____D C:\users\Nikolina
2012-05-04 18:00 - 2010-04-15 02:43 - 0000000 ____D C:\Program Files (x86)\Microsoft Office Suite Activation Assistant
2012-05-04 18:00 - 2010-04-15 02:41 - 0000000 ____D C:\Program Files (x86)\Microsoft Small Business
2012-05-04 18:00 - 2010-04-15 02:37 - 0000000 ____D C:\Users\All Users\Microsoft Help
2012-05-04 18:00 - 2010-04-15 02:37 - 0000000 ____D C:\ProgramData\Microsoft Help
2012-05-04 18:00 - 2010-04-15 02:13 - 0000000 ____D C:\Users\All Users\Ulead Systems
2012-05-04 18:00 - 2010-04-15 02:13 - 0000000 ____D C:\ProgramData\Ulead Systems
2012-05-04 18:00 - 2009-07-24 09:28 - 0000000 ____D C:\SWTOOLS
2012-05-04 18:00 - 2009-07-13 21:32 - 0000000 ____D C:\Program Files (x86)\Windows Sidebar
2012-05-04 18:00 - 2009-07-13 21:32 - 0000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2012-05-04 18:00 - 2009-07-13 21:32 - 0000000 ____D C:\Program Files (x86)\Windows Defender
2012-05-04 18:00 - 2009-07-13 21:32 - 0000000 ____D C:\Program Files (x86)\MSBuild
2012-05-04 18:00 - 2009-07-13 19:20 - 0000000 ___RD C:\users\Default
2012-05-04 17:59 - 2010-04-15 01:56 - 0000000 ____D C:\Program Files (x86)\Lenovo
2012-05-04 17:58 - 2010-04-15 01:56 - 0000000 ____D C:\Program Files (x86)\Integrated Camera Driver
2012-05-04 17:57 - 2010-11-02 13:41 - 0000000 ____D C:\Program Files (x86)\Bing Bar Installer
2012-05-04 17:57 - 2010-04-15 02:00 - 0000000 ____D C:\Program Files (x86)\ATI Technologies
2012-05-04 17:57 - 2009-07-13 23:45 - 0000000 ____D C:\Program Files\Windows Journal
2012-05-04 17:57 - 2009-07-13 21:32 - 0000000 ____D C:\Program Files\Windows Sidebar
2012-05-04 17:57 - 2009-07-13 21:32 - 0000000 ____D C:\Program Files\Windows Photo Viewer
2012-05-04 17:57 - 2009-07-13 21:32 - 0000000 ____D C:\Program Files\Windows Defender
2012-05-04 17:56 - 2010-06-06 00:30 - 0000000 ____D C:\Program Files\Common Files\GtFlashSwitch
2012-05-04 17:56 - 2010-04-15 02:26 - 0000000 ____D C:\Program Files\Common Files\Lenovo
2012-05-04 17:56 - 2009-07-13 21:32 - 0000000 ____D C:\Program Files\DVD Maker
2012-05-04 17:49 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\TAPI
2012-05-04 17:49 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\sppui
2012-05-04 17:49 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\ras
2012-05-04 17:49 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\manifeststore
2012-05-04 17:49 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\SysWOW64\Dism
2012-05-04 17:48 - 2011-06-28 01:13 - 0000000 ____D C:\Windows\System32\SPReview
2012-05-04 17:48 - 2011-06-28 01:11 - 0000000 ____D C:\Windows\System32\EventProviders
2012-05-04 17:48 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\sppui
2012-05-04 17:48 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\ras
2012-05-04 17:48 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\manifeststore
2012-05-04 17:48 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\ias
2012-05-04 17:48 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\config\TxR
2012-05-04 17:47 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\rescache
2012-05-04 17:47 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\ModemLogs
2012-05-04 17:44 - 2011-08-06 10:52 - 0000000 ____D C:\Windows\en
2012-05-04 17:42 - 2010-05-23 09:25 - 0000000 ____D C:\Users\Nikolina\Tracing
2012-05-04 17:39 - 2011-09-13 02:27 - 0000000 ___RD C:\Users\Nikolina\Documents\Scanned Documents
2012-05-04 17:39 - 2010-08-11 10:20 - 0000000 ____D C:\Users\Nikolina\Desktop\Slike by Antonija
2012-05-04 17:38 - 2011-11-30 15:24 - 0000000 ____D C:\Users\Nikolina\AppData\Roaming\Tific
2012-05-04 17:38 - 2011-05-14 09:03 - 0000000 ___HD C:\Users\Nikolina\AppData\Roaming\FreeCall
2012-05-04 17:38 - 2010-05-23 10:01 - 0000000 ____D C:\Users\Nikolina\AppData\Roaming\Skype
2012-05-04 17:37 - 2010-11-02 13:08 - 0000000 ___HD C:\Users\Nikolina\AppData\Local\Windows Live
2012-05-04 17:34 - 2010-09-14 01:56 - 0000000 ___HD C:\Users\Nikolina\AppData\Local\CrashDumps
2012-05-04 17:31 - 2010-04-15 02:06 - 0000000 ____D C:\swshare
2012-05-04 17:30 - 2010-05-23 10:01 - 0000000 ___RD C:\Program Files (x86)\Skype
2012-05-04 17:30 - 2010-04-15 02:22 - 0000000 ____D C:\Users\All Users\Lenovo
2012-05-04 17:30 - 2010-04-15 02:22 - 0000000 ____D C:\ProgramData\Lenovo
2012-05-04 17:30 - 2009-07-13 21:32 - 0000000 ____D C:\Program Files (x86)\Windows Portable Devices
2012-05-04 17:29 - 2011-10-31 15:01 - 0000000 ____D C:\Program Files (x86)\QuickTime
2012-05-04 17:29 - 2010-11-02 13:41 - 0000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2012-05-04 17:29 - 2010-05-20 16:53 - 0000000 ____D C:\Program Files (x86)\Norton Internet Security
2012-05-04 17:28 - 2011-11-21 14:25 - 0000000 ____D C:\Program Files (x86)\iTunes
2012-05-04 17:27 - 2011-11-21 14:25 - 0000000 ____D C:\Program Files\iTunes
2012-05-04 17:27 - 2011-11-21 14:25 - 0000000 ____D C:\Program Files\iPod
2012-05-04 17:27 - 2011-10-31 14:56 - 0000000 ____D C:\Program Files\Bonjour
2012-05-04 17:27 - 2011-10-31 14:56 - 0000000 ____D C:\Program Files (x86)\Bonjour
2012-05-04 17:27 - 2011-08-13 01:43 - 0000000 ____D C:\Program Files (x86)\Apple Software Update
2012-05-04 17:27 - 2010-05-22 12:42 - 0000000 ____D C:\Netgear
2012-05-04 17:27 - 2010-05-20 16:53 - 0000000 ____D C:\Program Files\Common Files\Symantec Shared
2012-05-04 17:27 - 2010-04-15 02:33 - 0000000 ___HD C:\mfg
2012-05-04 17:27 - 2010-04-15 02:22 - 0000000 ____D C:\Program Files\PC-Doctor
2012-05-04 17:27 - 2009-07-13 21:32 - 0000000 ____D C:\Program Files\Windows Portable Devices
2012-05-04 17:27 - 2009-07-13 19:20 - 0000000 ____D C:\Program Files\Common Files\System
2012-05-04 17:27 - 2009-07-13 19:20 - 0000000 ____D C:\Program Files\Common Files\Services

========================= Known DLLs (Whitelisted) ============


========================= Bamital & volsnap Check ============

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

========================= Memory info ======================

Percentage of memory in use: 15%
Total physical RAM: 3956.55 MB
Available physical RAM: 3338.91 MB
Total Pagefile: 3954.7 MB
Available Pagefile: 3322.82 MB
Total Virtual: 8192 MB
Available Virtual: 8191.9 MB

======================= Partitions =========================

1 Drive c: (Windows7_OS) (Fixed) (Total:454.82 GB) (Free:352.23 GB) NTFS ==>[System with boot components (obtained from reading drive)]
2 Drive e: (Lenovo_Recovery) (Fixed) (Total:9.77 GB) (Free:0.61 GB) NTFS
4 Drive g: () (Removable) (Total:14.84 GB) (Free:14.59 GB) NTFS ==>[System with boot components (obtained from reading drive)]
6 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
7 Drive y: (SYSTEM_DRV) (Fixed) (Total:1.17 GB) (Free:0.5 GB) NTFS ==>[System with boot components (obtained from reading drive)]

Disk ### Status Size Free Dyn Gpt
-------- ------------- ------- ------- --- ---
Disk 0 Online 465 GB 0 B
Disk 1 Online 14 GB 0 B
Disk 2 No Media 0 B 0 B

Partitions of Disk 0:
===============

Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 1200 MB 1024 KB
Partition 2 Primary 454 GB 1201 MB
Partition 3 Primary 9 GB 455 GB

======================================================================================================

Disk: 0
Partition 1
Type : 07
Hidden: No
Active: Yes

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 1 Y SYSTEM_DRV NTFS Partition 1200 MB Healthy

======================================================================================================

Disk: 0
Partition 2
Type : 07
Hidden: No
Active: No

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 2 C Windows7_OS NTFS Partition 454 GB Healthy

======================================================================================================

Disk: 0
Partition 3
Type : 07
Hidden: No
Active: No

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 3 E Lenovo_Reco NTFS Partition 9 GB Healthy

======================================================================================================

Partitions of Disk 1:
===============

Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 14 GB 1192 KB

======================================================================================================

Disk: 1
Partition 1
Type : 07
Hidden: No
Active: Yes

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 4 G NTFS Removable 14 GB Healthy

======================================================================================================
==========================================================
TDL4: custom:26000022


==========================================================

Last Boot: 2011-12-25 03:05

======================= End Of Log ==========================
  • 0

#24
Nikolina

Nikolina

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
Let me know please if i should still do the bootrec /FixMBR?
Thank you.
  • 0

#25
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Download the attached fixlist.txt to the USB in the same location as FRST
[attachment=57652:fixlist.txt]
Boot the computer using the recovery USB
Locate FRST64 and run
Once FRST is running then press FIX

Once it has completed
remove the USB and try a reboot to normal windows please
  • 0

Advertisements


#26
Nikolina

Nikolina

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
:thumbsup:
This is fantastic! It looks like it's back to normal.
Is it really? Should I be doing anything else to it now?

Thank you thank you thank you :)
  • 0

#27
Nikolina

Nikolina

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
And just to add this too please...When I open Norton internet security it tells me my computer is at risk, giving me an option to Fix Now. I'll wait for your instructions though b4 doing anything else.
Thanks
  • 0

#28
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Aye do not let Norton do anything or we will have to do all this again

OK lets see what you have

Download aswMBR.exe ( 4.8mb ) to your desktop.
Double click the aswMBR.exe to run it Click the "Scan" button to start scan

Posted Image

On completion of the scan click save log, save it to your desktop and post in your next reply

Posted Image

THEN

Download OTL to your Desktop
  • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
  • Select All Users
  • Under the Custom Scan box paste this in
    netsvcs
    %SYSTEMDRIVE%\*.exe
    /md5start
    consrv.dll
    explorer.exe
    winlogon.exe
    Userinit.exe
    svchost.exe
    /md5stop
    C:\Windows\assembly\tmp\U\*.* /s
    %Temp%\smtmp\1\*.*
    %Temp%\smtmp\2\*.*
    %Temp%\smtmp\3\*.*
    %Temp%\smtmp\4\*.*
    CREATERESTOREPOINT
  • Click the Quick Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.
  • When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
  • Post both logs

  • 0

#29
Nikolina

Nikolina

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
Unfortunatelly Norton must have automatically run live update or something without me even touching anything.
Should I still go ahead with this last instruction?
Sorry :-(
  • 0

#30
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Yes please as I need to get a feel for what Norton actually found... aswMBR should tell me the variant
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP