OTL logfile created on: 7/10/2012 7:45:06 AM - Run 2
OTL by OldTimer - Version 3.2.53.1 Folder = C:\Users\Bobby\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.99 Gb Total Physical Memory | 1.25 Gb Available Physical Memory | 41.88% Memory free
6.21 Gb Paging File | 4.45 Gb Available in Paging File | 71.65% Paging File free
Paging file location(s): C:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 447.70 Gb Total Space | 275.94 Gb Free Space | 61.63% Space Free | Partition Type: NTFS
Drive F: | 219.99 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Computer Name: BOBBY-PC | User Name: Bobby | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012/07/10 07:23:39 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Users\Bobby\Desktop\OTL.exe
PRC - [2012/06/27 12:29:22 | 001,385,896 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
PRC - [2012/06/19 15:49:26 | 000,913,888 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2012/06/18 07:23:15 | 000,400,352 | ---- | M] (Mozilla Messaging) -- C:\Program Files\Mozilla Thunderbird\thunderbird.exe
PRC - [2012/06/04 16:17:00 | 004,527,504 | ---- | M] (Mozy, Inc.) -- C:\Program Files\MozyHome\mozystat.exe
PRC - [2012/03/26 17:08:12 | 000,931,200 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\msseces.exe
PRC - [2012/03/26 17:03:40 | 000,011,552 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft Security Client\MsMpEng.exe
PRC - [2012/02/22 14:07:00 | 001,592,160 | ---- | M] () -- C:\Users\Bobby\Downloads\M4-Capture.exe
PRC - [2012/02/22 14:06:58 | 001,007,472 | ---- | M] () -- C:\Users\Bobby\Downloads\M4-Service.exe
PRC - [2010/11/19 09:17:20 | 000,160,328 | ---- | M] (Siber Systems) -- C:\Program Files\Siber Systems\AI RoboForm\robotaskbaricon.exe
PRC - [2010/10/26 18:20:52 | 001,196,032 | ---- | M] (Brother Industries, Ltd.) -- C:\Program Files\ControlCenter4\BrCcUxSys.exe
PRC - [2010/10/26 18:16:06 | 000,331,776 | ---- | M] (Brother Industries, Ltd.) -- C:\Program Files\ControlCenter4\BrCtrlCntr.exe
PRC - [2010/09/13 17:18:32 | 000,308,656 | ---- | M] (Eastman Kodak Company) -- C:\Program Files\Kodak\AiO\Center\ekdiscovery.exe
PRC - [2010/08/04 04:51:38 | 000,069,632 | ---- | M] () -- C:\Windows\agent.exe
PRC - [2010/06/10 14:42:44 | 002,621,440 | R--- | M] (Brother Industries, Ltd.) -- C:\Program Files\Browny02\Brother\BrStMonW.exe
PRC - [2010/03/09 01:40:36 | 000,144,672 | ---- | M] (Nuance Communications, Inc.) -- C:\Program Files\Nuance\PaperPort\PDFProFiltSrvPP.exe
PRC - [2010/01/25 09:22:56 | 000,245,760 | ---- | M] (Brother Industries, Ltd.) -- C:\Program Files\Browny02\BrYNSvc.exe
PRC - [2009/08/18 17:12:56 | 000,027,136 | ---- | M] (Thought Communications, Inc.) -- C:\Program Files\FaxTalk\FTmsgsvc.exe
PRC - [2009/08/18 17:12:32 | 000,114,688 | ---- | M] (Thought Communications, Inc.) -- C:\Program Files\FaxTalk\FTclctrl.exe
PRC - [2009/08/18 14:50:24 | 000,009,216 | ---- | M] (Thought Communications, Inc.) -- C:\Program Files\FaxTalk\Fapiexe.exe
PRC - [2009/07/20 12:30:50 | 000,813,584 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Logitech\SetPoint\SetPoint.exe
PRC - [2009/07/10 12:42:32 | 000,055,824 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe
PRC - [2009/05/05 17:06:06 | 000,222,496 | ---- | M] (Acresso Corporation) -- C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
PRC - [2009/04/11 02:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2008/02/01 14:27:36 | 000,066,824 | ---- | M] (Trend Micro Inc.) -- C:\Program Files\Trend Micro\OKAVAgent\OKAVAgent.exe
PRC - [2008/01/11 17:50:16 | 000,030,312 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
PRC - [2007/08/17 01:27:00 | 004,702,208 | ---- | M] (Realtek Semiconductor) -- C:\Windows\RtHDVCpl.exe
PRC - [2007/01/04 18:48:52 | 000,112,152 | R--- | M] (InterVideo) -- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
PRC - [2006/12/27 14:26:00 | 000,053,248 | ---- | M] ( Advanced Software Technologies) -- C:\Windows\System32\AstSrv.exe
PRC - [2006/08/14 10:10:30 | 000,061,440 | ---- | M] () -- C:\Program Files\Lenovo\Lenovo Standard Keyboard Driver\SkDaemond.exe
========== Modules (No Company Name) ==========
MOD - [2012/06/19 15:49:26 | 002,042,848 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2012/06/18 07:23:17 | 001,977,312 | ---- | M] () -- C:\Program Files\Mozilla Thunderbird\mozjs.dll
MOD - [2012/06/18 07:23:17 | 000,162,784 | ---- | M] () -- C:\Program Files\Mozilla Thunderbird\nsldap32v60.dll
MOD - [2012/06/18 07:23:17 | 000,021,984 | ---- | M] () -- C:\Program Files\Mozilla Thunderbird\nsldappr32v60.dll
MOD - [2012/06/13 10:20:39 | 001,801,216 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Deployment\18050fc0ebf2c4835d05ffd337aa1616\System.Deployment.ni.dll
MOD - [2012/06/13 09:42:30 | 012,433,920 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\f2691cfa7671cdc58179e56ba9227591\System.Windows.Forms.ni.dll
MOD - [2012/06/13 09:42:22 | 001,592,320 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\18f9789aa214c657113e676b3a9015aa\System.Drawing.ni.dll
MOD - [2012/05/12 03:54:16 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\bd76aaaa03ddc15d1840207b5a480644\System.Configuration.ni.dll
MOD - [2012/05/12 03:50:36 | 005,450,752 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d2630342a066a7cb9056d9eb6157687a\System.Xml.ni.dll
MOD - [2012/05/12 03:48:23 | 007,953,408 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\28d633338fc8d29f8af31935ef7d001b\System.ni.dll
MOD - [2012/05/12 03:47:38 | 011,492,352 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\af9c9e9d7e0523cd444f8b551baa9cbf\mscorlib.ni.dll
MOD - [2010/11/04 11:04:32 | 000,036,864 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\Inkjet.Diagnostics\5.4.6.4__5cc7ad8abd921325\Inkjet.Diagnostics.dll
MOD - [2010/11/04 11:04:31 | 000,058,368 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\Inkjet.Automation\5.4.6.4__5cc7ad8abd921325\Inkjet.Automation.dll
MOD - [2009/07/20 12:27:14 | 000,017,936 | ---- | M] () -- C:\Program Files\Logitech\SetPoint\khalwrapper.dll
MOD - [2009/02/27 17:38:20 | 000,139,264 | R--- | M] () -- C:\Program Files\Brother\BrUtilities\BrLogAPI.dll
MOD - [2008/04/20 07:46:06 | 000,282,730 | ---- | M] () -- C:\Program Files\Lenovo\VeriFace\SimpleExt.dll
MOD - [2008/04/20 07:46:06 | 000,241,752 | ---- | M] () -- C:\Program Files\Lenovo\VeriFace\IcnOvrly.dll
MOD - [2006/08/14 10:10:30 | 000,061,440 | ---- | M] () -- C:\Program Files\Lenovo\Lenovo Standard Keyboard Driver\SkDaemond.exe
MOD - [2006/08/08 13:40:04 | 000,024,576 | ---- | M] () -- C:\Program Files\Lenovo\Lenovo Standard Keyboard Driver\SKHooks.dll
MOD - [2005/10/07 15:05:32 | 000,125,440 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [On_Demand | Stopped] -- C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE -- (LiveUpdate)
SRV - File not found [Auto | Stopped] -- C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe -- (Automatic LiveUpdate Scheduler)
SRV - [2012/07/09 19:55:47 | 000,250,056 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/06/27 12:29:22 | 001,385,896 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2012/06/19 15:49:26 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012/06/12 20:14:51 | 000,289,928 | ---- | M] () [On_Demand | Stopped] -- C:\Users\Bobby\Documents\ZohoMeeting\ZohoMeeting.exe -- (Zoho Assist)
SRV - [2012/03/26 17:03:40 | 000,214,952 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV - [2012/03/26 17:03:40 | 000,011,552 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV - [2012/02/22 14:06:58 | 001,007,472 | ---- | M] () [Auto | Running] -- C:\Users\Bobby\Downloads\M4-Service.exe -- (M4-Service)
SRV - [2010/09/13 17:18:32 | 000,308,656 | ---- | M] (Eastman Kodak Company) [Auto | Running] -- C:\Program Files\Kodak\AiO\Center\ekdiscovery.exe -- (Kodak AiO Network Discovery Service)
SRV - [2010/09/01 15:51:28 | 000,066,112 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files\NOS\bin\getPlus_Helper_3004.dll -- (nosGetPlusHelper) getPlus®
SRV - [2010/08/04 04:51:38 | 000,069,632 | ---- | M] () [Auto | Running] -- C:\Windows\agent.exe -- (Agent)
SRV - [2010/04/21 13:46:17 | 000,373,760 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\inetsrv\iisw3adm.dll -- (WAS)
SRV - [2010/04/21 13:46:17 | 000,373,760 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\inetsrv\iisw3adm.dll -- (W3SVC)
SRV - [2010/03/09 01:40:36 | 000,144,672 | ---- | M] (Nuance Communications, Inc.) [Auto | Running] -- C:\Program Files\Nuance\PaperPort\PDFProFiltSrvPP.exe -- (PDFProFiltSrvPP)
SRV - [2010/01/25 11:00:54 | 000,067,360 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files\NOS\bin\getPlus_Helper.dll -- (getPlusHelper)
SRV - [2010/01/25 09:22:56 | 000,245,760 | ---- | M] (Brother Industries, Ltd.) [On_Demand | Running] -- C:\Program Files\Browny02\BrYNSvc.exe -- (BrYNSvc)
SRV - [2009/12/10 14:05:56 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2009/08/18 17:12:56 | 000,027,136 | ---- | M] (Thought Communications, Inc.) [Auto | Running] -- C:\Program Files\FaxTalk\FTmsgsvc.exe -- (FaxTalk FaxCenter Pro 7.5)
SRV - [2009/07/20 12:28:10 | 000,121,360 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe -- (LBTServ)
SRV - [2009/04/11 02:28:17 | 000,052,224 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\inetsrv\apphostsvc.dll -- (AppHostSvc)
SRV - [2008/02/01 14:27:36 | 000,066,824 | ---- | M] (Trend Micro Inc.) [Auto | Running] -- C:\Program Files\Trend Micro\OKAVAgent\OKAVAgent.exe -- (OKAV Agent Service)
SRV - [2008/01/19 03:38:24 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2008/01/11 17:50:16 | 000,030,312 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe -- (BcmSqlStartupSvc)
SRV - [2007/01/04 18:48:52 | 000,112,152 | R--- | M] (InterVideo) [Auto | Running] -- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe -- (IviRegMgr)
SRV - [2006/12/27 14:26:00 | 000,053,248 | ---- | M] ( Advanced Software Technologies) [Auto | Running] -- C:\Windows\System32\AstSrv.exe -- (astcc)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\mcdbus.sys -- (mcdbus)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ipinip.sys -- (IpInIp)
DRV - File not found [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\blbdrive.sys -- (blbdrive)
DRV - [2012/03/20 20:44:12 | 000,074,112 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\NisDrvWFP.sys -- (NisDrv)
DRV - [2010/04/03 11:02:54 | 000,240,608 | ---- | M] (Microsoft Corporation) [File_System | Disabled | Stopped] -- C:\Windows\System32\drivers\RsFx0150.sys -- (RsFx0150)
DRV - [2009/11/03 04:06:12 | 000,071,424 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\BrSerIb.sys -- (BrSerIb) Brother Serial Interface Driver(WDM)
DRV - [2009/11/03 04:06:12 | 000,011,520 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\BrUsbSib.sys -- (BrUsbSIb) Brother Serial USB Driver(WDM)
DRV - [2009/09/13 18:07:36 | 000,722,416 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\drivers\sptd.sys -- (sptd)
DRV - [2009/06/17 12:56:16 | 000,037,392 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LMouFilt.Sys -- (LMouFilt)
DRV - [2009/06/17 12:56:06 | 000,035,472 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LHidFilt.Sys -- (LHidFilt)
DRV - [2009/06/17 12:55:18 | 000,020,240 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\L8042Kbd.sys -- (L8042Kbd)
DRV - [2009/03/18 17:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\hamachi.sys -- (hamachi)
DRV - [2008/02/14 11:01:24 | 000,013,680 | ---- | M] (Nicomsoft Ltd.) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\ddcdrv.sys -- (WinI2C-DDC)
DRV - [2007/04/17 19:09:28 | 000,011,032 | ---- | M] (InterVideo) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\regi.sys -- (regi)
DRV - [2007/03/28 20:29:12 | 000,131,944 | ---- | M] (StorageCraft) [File_System | Boot | Running] -- C:\Windows\System32\drivers\symsnap.sys -- (symsnap)
DRV - [2006/11/08 03:54:04 | 000,258,048 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSXHWBS2.sys -- (HSXHWBS2)
DRV - [2006/11/08 03:53:00 | 000,986,624 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSX_DP.sys -- (HSF_DPV)
DRV - [2006/11/02 03:41:53 | 000,251,904 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VSTBS23.SYS -- (VSTHWBS2)
DRV - [2006/11/02 03:36:43 | 002,028,032 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\atikmdag.sys -- (R300)
DRV - [2006/11/02 03:30:53 | 000,045,056 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\bcm4sbxp.sys -- (bcm4sbxp)
DRV - [2006/06/30 00:53:44 | 000,003,712 | ---- | M] (Logitech, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\LBeepKE.sys -- (LBeepKE)
DRV - [2006/05/10 09:56:54 | 000,027,264 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\LHidKE.Sys -- (LHidKe)
DRV - [2006/05/10 09:56:50 | 000,071,680 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\LMOUKE.sys -- (LMouKE)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.lenovo.com
IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7
IE - HKLM\..\SearchScopes\{CF739809-1C6C-47C0-85B9-569DBB141420}: "URL" = http://toolbar.ask.c...rchTerms}&crm=1
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://seoic.com/
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\Software\Microsoft\Internet Explorer\SearchURL\nn, = http://search.nation...qcat=web&qkw=%s
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\Software\Microsoft\Internet Explorer\SearchURL\nn, = %20
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\Software\Microsoft\Internet Explorer\SearchURL\nn,# = %23
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\Software\Microsoft\Internet Explorer\SearchURL\nn,& = %26
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\Software\Microsoft\Internet Explorer\SearchURL\nn,: = %3A
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\Software\Microsoft\Internet Explorer\SearchURL\nn,? = %3F
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\Software\Microsoft\Internet Explorer\SearchURL\nn,+ = %2B
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\Software\Microsoft\Internet Explorer\SearchURL\nn,= = %3D
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE8SRC
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...&rlz=1I7GGLL_en
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\..\SearchScopes\{CF739809-1C6C-47C0-85B9-569DBB141420}: "URL" = http://toolbar.ask.c...rchTerms}&crm=1
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\..\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A}: "URL" = http://mystart.incre...&loc=PMAH10IESB
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "http://seoic.com/"
FF - prefs.js..network.proxy.no_proxies_on: "*.local"
FF - prefs.js..network.proxy.type: 0
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_11_3_300_262.dll ()
FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf: C:\PROGRAM FILES\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=1.6.0_33: C:\Windows\system32\npdeployJava1.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/Photosynth,version=2.0: C:\Program Files\Photosynth\npPhotosynthMozilla.dll ()
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@movenetworks.com/Quantum Media Player: C:\Users\Bobby\AppData\Roaming\Move Networks\plugins\npqmp071706000001.dll (Move Networks)
FF - HKLM\Software\MozillaPlugins\@nosltd.com/getPlus+®,version=1.6.2.91: C:\Program Files\NOS\bin\np_gp.dll (NOS Microsystems Ltd.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@unity3d.com/UnityPlayer: C:\Program Files\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@movenetworks.com/Quantum Media Player: C:\Users\Bobby\AppData\Roaming\Move Networks\plugins\npqmp071706000001.dll (Move Networks)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\Bobby\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Users\Bobby\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Bobby\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Bobby\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}: C:\Program Files\CheckPoint\ZAForceField\TrustChecker
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{22119944-ED35-4ab1-910B-E619EA06A115}: C:\Program Files\Siber Systems\AI RoboForm\Firefox [2009/12/30 14:20:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/06/19 15:49:27 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012/06/16 14:26:38 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 13.0.1\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2012/06/18 07:23:18 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 13.0.1\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins [2012/04/16 07:50:19 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[email protected]: C:\Users\Bobby\AppData\Roaming\Move Networks [2010/11/06 08:43:02 | 000,000,000 | ---D | M]
[2011/08/08 16:51:22 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Bobby\AppData\Roaming\Mozilla\Extensions
[2009/07/17 10:32:04 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Bobby\AppData\Roaming\Mozilla\Firefox\extensions
[2009/07/17 10:32:04 | 000,000,000 | ---D | M] ("Ask Toolbar for Firefox") -- C:\Users\Bobby\AppData\Roaming\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}
[2012/07/05 13:31:18 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Bobby\AppData\Roaming\Mozilla\Firefox\Profiles\rs4h3wbp.default\extensions
[2012/02/10 11:38:58 | 000,000,000 | ---D | M] (IE Tab 2 (FF 3.6+)) -- C:\Users\Bobby\AppData\Roaming\Mozilla\Firefox\Profiles\rs4h3wbp.default\extensions\{1BC9BA34-1EED-42ca-A505-6D2F1A935BBB}
[2012/07/05 13:31:18 | 000,000,000 | ---D | M] (Ghostery) -- C:\Users\Bobby\AppData\Roaming\Mozilla\Firefox\Profiles\rs4h3wbp.default\extensions\[email protected]
[2012/06/16 14:26:41 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2012/06/16 14:26:41 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
[2010/11/06 08:43:02 | 000,000,000 | ---D | M] (Move Media Player) -- C:\USERS\BOBBY\APPDATA\ROAMING\MOVE NETWORKS
[2012/04/16 21:08:42 | 000,015,997 | ---- | M] () (No name found) -- C:\USERS\BOBBY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\RS4H3WBP.DEFAULT\EXTENSIONS\[email protected]
[2012/02/10 11:38:57 | 000,107,019 | ---- | M] () (No name found) -- C:\USERS\BOBBY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\RS4H3WBP.DEFAULT\EXTENSIONS\[email protected]
[2012/05/21 08:21:20 | 001,771,909 | ---- | M] () (No name found) -- C:\USERS\BOBBY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\RS4H3WBP.DEFAULT\EXTENSIONS\[email protected]
[2012/06/19 15:49:27 | 000,085,472 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2012/04/19 13:54:56 | 000,215,864 | ---- | M] (Cisco WebEx LLC) -- C:\Program Files\mozilla firefox\plugins\npatgpc.dll
[2012/06/19 15:49:23 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2012/06/19 15:49:23 | 000,002,040 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\twitter.xml
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Bobby\AppData\Local\Google\Chrome\Application\19.0.1084.46\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Bobby\AppData\Local\Google\Chrome\Application\19.0.1084.46\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Bobby\AppData\Local\Google\Chrome\Application\19.0.1084.46\gcswf32.dll
CHR - plugin: Shockwave Flash (Disabled) = C:\Users\Bobby\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: ActiveTouch General Plugin Container (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npatgpc.dll
CHR - plugin: Java Deployment Toolkit 6.0.310.5 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
CHR - plugin: Java Platform SE 6 U31 (Enabled) = C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: Coupons Inc., Coupon Printer Manager (Enabled) = C:\Users\Bobby\AppData\Local\Google\Chrome\Application\plugins\npMozCouponPrinter.dll
CHR - plugin: Google Talk Plugin (Enabled) = C:\Users\Bobby\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll
CHR - plugin: Google Talk Plugin Video Accelerator (Enabled) = C:\Users\Bobby\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll
CHR - plugin: Foxit Reader Plugin for Mozilla (Enabled) = C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Picasa (Enabled) = C:\Program Files\Google\Picasa3\npPicasa3.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Microsoft Office Live Plug-in for Firefox (Enabled) = C:\Program Files\Microsoft\Office Live\npOLW.dll
CHR - plugin: getPlusPlus for Adobe 16291 (Enabled) = C:\Program Files\NOS\bin\np_gp.dll
CHR - plugin: Photosynth (Enabled) = C:\Program Files\Photosynth\npPhotosynthMozilla.dll
CHR - plugin: Unity Player (Enabled) = C:\Program Files\Unity\WebPlayer\loader\npUnity3D32.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Move Streaming Media Player (Enabled) = C:\Users\Bobby\AppData\Roaming\Move Networks\plugins\npqmp071706000001.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - Extension: Angry Birds = C:\Users\Bobby\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj\1.1.2.1_0\
CHR - Extension: Bouncy Mouse = C:\Users\Bobby\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgdllcbmneiklcmbeclfegccdjholomb\1.2.1_0\
CHR - Extension: http://football.fant...yahoo.com/f1/16 = C:\Users\Bobby\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmlafocckfanhknpficnkaacmpbokhah\2011.10.28.56276_0\
CHR - Extension: StumbleUpon = C:\Users\Bobby\AppData\Local\Google\Chrome\User Data\Default\Extensions\kcahibnffhnnjcedflmchmokndkjnhpg\4.5.7.1_0\
O1 HOSTS File: ([2009/12/10 14:35:10 | 000,000,794 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O1 - Hosts: 127.0.0.1 activate.adobe.com
O2 - BHO: (AskBar BHO) - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll (Ask.com)
O2 - BHO: (PlusIEEventHelper Class) - {551A852F-39A6-44A7-9C13-AFBEC9185A9D} - C:\Program Files\Nuance\PDF Viewer Plus\bin\PlusIEContextMenu.dll (Zeon Corporation)
O2 - BHO: (Reg Error: Value error.) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3 - HKLM\..\Toolbar: (Foxit Toolbar) - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll (Ask.com)
O3 - HKLM\..\Toolbar: (&RoboForm) - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O3 - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\..\Toolbar\WebBrowser: (Foxit Toolbar) - {3041D03E-FD4B-44E0-B742-2D9B88305F98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll (Ask.com)
O3 - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\..\Toolbar\WebBrowser: (&RoboForm) - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O3 - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\..\Toolbar\WebBrowser: (ZoneAlarm Toolbar) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll File not found
O4 - HKLM..\Run: [AdobeCS4ServiceManager] C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [BrStsMon00] C:\Program Files\Browny02\Brother\BrStMonW.exe (Brother Industries, Ltd.)
O4 - HKLM..\Run: [Conime] C:\Windows\System32\conime.exe (Microsoft Corporation)
O4 - HKLM..\Run: [ControlCenter4] C:\Program Files\ControlCenter4\BrCcBoot.exe (Brother Industries, Ltd.)
O4 - HKLM..\Run: [FaxTalk FaxCenter Pro 7.5] C:\Program Files\FaxTalk\FTClCtrl.exe (Thought Communications, Inc.)
O4 - HKLM..\Run: [Google Quick Search Box] C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe (Google Inc.)
O4 - HKLM..\Run: [ISW] "C:\Program Files\CheckPoint\ZAForceField\ForceField.exe" /icon="hidden" File not found
O4 - HKLM..\Run: [Kernel and Hardware Abstraction Layer] C:\Windows\KHALMNPR.Exe (Logitech, Inc.)
O4 - HKLM..\Run: [LogMeIn Hamachi Ui] C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
O4 - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [PPort12reminder] C:\Program Files\Nuance\PaperPort\Ereg\Ereg.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [SkDaemond] C:\Program Files\Lenovo\Lenovo Standard Keyboard Driver\SkDaemond.exe ()
O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-21-3979474346-4061523993-856938039-1004..\Run: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (Acresso Corporation)
O4 - HKU\S-1-5-21-3979474346-4061523993-856938039-1004..\Run: [Pando Media Booster] C:\Program Files\Pando Networks\Media Booster\PMB.exe ()
O4 - HKU\S-1-5-21-3979474346-4061523993-856938039-1004..\Run: [RoboForm] C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe (Siber Systems)
O4 - Startup: C:\Users\Bobby\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Bobby\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O4 - Startup: C:\Users\Bobby\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Zoho Assist.lnk = C:\Users\Bobby\Documents\ZohoMeeting\ZohoTray.exe (Zoho Meeting)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 00 00 00 02 [binary data]
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: Customize Menu - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html ()
O8 - Extra context menu item: Fill Forms - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O8 - Extra context menu item: Open with PDF Viewer Plus - C:\Program Files\Nuance\PDF Viewer Plus\Bin\PlusIEContextMenu.dll (Zeon Corporation)
O8 - Extra context menu item: RoboForm Toolbar - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O8 - Extra context menu item: Save Forms - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra Button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra 'Tools' menuitem : Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra Button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra 'Tools' menuitem : Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra Button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O9 - Extra 'Tools' menuitem : RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O9 - Extra Button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\Program Files\Bonjour\ExplorerPlugin.dll (Apple Inc.)
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: PDFill PDF Editor - {FB858B22-55E2-413f-87F5-30ADC5552151} - C:\Program Files\PlotSoft\PDFill\DownloadPDF.exe (PlotSoft LLC)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O15 - HKLM\..Trusted Domains: isqft.com ([www] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: isqft.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: isqft.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\..Trusted Domains: facebook.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\..Trusted Domains: ideamarketers.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\..Trusted Domains: isqft.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-21-3979474346-4061523993-856938039-1004\..Trusted Domains: seoic.com ([www] https in Trusted sites)
O16 - DPF: {05D96F71-87C6-11D3-9BE4-00902742D6E0} https://sites.clarkus.com/qp2.cab (Lotus Quickr Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_33)
O16 - DPF: {CAFEEFAC-0014-0001-0007-ABCDEFFEDCBA} Reg Error: Key error. (Java Plug-in 1.4.1_07)
O16 - DPF: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_25)
O16 - DPF: {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_33)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_33)
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} https://secure.logme...trl.cab?lmi=100 (Performance Viewer Activex Control)
O16 - DPF: {FFB3A759-98B1-446F-BDA9-909C6EB18CC7} http://utilities.pcp.../pcpitstop2.dll (PCPitstop Exam)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 75.75.75.75 75.75.76.76
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{5F39EAF1-36C1-4950-AA32-4613267F1C86}: DhcpNameServer = 75.75.75.75 75.75.76.76
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\Bobby\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O24 - Desktop BackupWallPaper: C:\Users\Bobby\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O28 - HKLM ShellExecuteHooks: {A213B520-C6C2-11d0-AF9D-008029E1027E} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2012/07/09 19:18:51 | 000,000,000 | ---D | M] - C:\Auto Save -- [ NTFS ]
O32 - AutoRun File - [2006/09/18 17:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2002/01/30 09:16:30 | 000,000,045 | R--- | M] () - F:\AUTORUN.INF -- [ CDFS ]
O33 - MountPoints2\{fea29f06-0ec3-11dd-b103-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{fea29f06-0ec3-11dd-b103-806e6f6e6963}\Shell\AutoRun\command - "" = F:\START.EXE -- [2002/01/30 09:45:23 | 003,061,448 | R--- | M] (Macromedia, Inc.)
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
========== Files/Folders - Created Within 30 Days ==========
[2012/07/10 07:23:37 | 000,595,968 | ---- | C] (OldTimer Tools) -- C:\Users\Bobby\Desktop\OTL.exe
[2012/07/09 20:59:09 | 000,201,728 | ---- | C] (OldTimer Tools) -- C:\Users\Bobby\Desktop\OTC.exe
[2012/07/09 20:45:40 | 000,000,000 | ---D | C] -- C:\Users\Bobby\AppData\Roaming\Malwarebytes
[2012/07/09 20:45:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2012/06/30 06:38:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
[2012/06/30 06:38:29 | 000,000,000 | ---D | C] -- C:\Program Files\LogMeIn Hamachi
[2012/06/30 06:38:20 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2012/06/28 08:56:29 | 000,000,000 | ---D | C] -- C:\Users\Bobby\AppData\Local\dotPDN LLC
[2012/06/23 01:19:32 | 000,045,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups2.dll
[2012/06/23 01:19:31 | 002,422,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wucltux.dll
[2012/06/23 01:19:04 | 000,577,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapi.dll
[2012/06/23 01:19:04 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wudriver.dll
[2012/06/23 01:19:04 | 000,035,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups.dll
[2012/06/23 01:18:38 | 000,171,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuwebv.dll
[2012/06/23 01:18:38 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapp.exe
[2012/06/16 14:26:38 | 000,476,936 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\npdeployJava1.dll
[2012/06/16 14:26:38 | 000,157,448 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaws.exe
[2012/06/16 14:26:38 | 000,149,256 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaw.exe
[2012/06/16 14:26:38 | 000,149,256 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\java.exe
[2012/06/13 18:41:12 | 000,000,000 | ---D | C] -- C:\Users\Bobby\AppData\Local\Macromedia
[2012/06/13 08:56:24 | 002,382,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2012/06/13 08:56:22 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2012/06/13 08:56:22 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
[2012/06/13 08:56:21 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll
[2012/06/13 08:56:20 | 001,800,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
[2012/06/13 08:56:20 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2012/06/13 08:56:19 | 001,427,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
[2012/06/13 06:07:30 | 002,045,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2012/06/12 14:52:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
========== Files - Modified Within 30 Days ==========
[2012/07/10 07:23:39 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Users\Bobby\Desktop\OTL.exe
[2012/07/10 07:02:15 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/07/10 06:59:00 | 000,000,908 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3979474346-4061523993-856938039-1004UA.job
[2012/07/10 06:59:00 | 000,000,886 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/07/10 06:56:39 | 000,000,882 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/07/10 06:56:06 | 000,003,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2012/07/10 06:56:06 | 000,003,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2012/07/10 06:56:00 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/07/10 01:45:31 | 000,005,172 | ---- | M] () -- C:\Windows\mozy.flt
[2012/07/10 01:45:31 | 000,003,486 | ---- | M] () -- C:\Windows\mozy.blk
[2012/07/09 20:59:12 | 000,201,728 | ---- | M] (OldTimer Tools) -- C:\Users\Bobby\Desktop\OTC.exe
[2012/07/09 19:59:06 | 000,000,856 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3979474346-4061523993-856938039-1004Core.job
[2012/07/09 19:55:47 | 000,426,184 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
[2012/07/09 19:55:46 | 000,070,344 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
[2012/07/06 17:11:57 | 009,572,753 | ---- | M] () -- C:\Users\Bobby\Desktop\plans.pdf
[2012/07/06 10:57:57 | 003,844,573 | R--- | M] () -- C:\Users\Bobby\Desktop\0WCH Markups.pdf
[2012/07/04 12:00:00 | 000,000,394 | ---- | M] () -- C:\Windows\tasks\Schedule Task Weekly.job
[2012/07/02 18:49:30 | 000,207,435 | ---- | M] () -- C:\Users\Bobby\Desktop\eleccib.pdf
[2012/06/29 08:09:59 | 000,834,760 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2012/06/29 08:09:59 | 000,188,224 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2012/06/25 14:21:25 | 000,060,304 | ---- | M] () -- C:\Users\Bobby\g2mdlhlpx.exe
[2012/06/18 17:17:22 | 000,018,629 | ---- | M] () -- C:\Users\Bobby\Desktop\Contacts.csv
[2012/06/16 14:25:56 | 000,157,448 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaws.exe
[2012/06/16 14:25:56 | 000,149,256 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaw.exe
[2012/06/16 14:25:56 | 000,149,256 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\System32\java.exe
[2012/06/16 14:25:55 | 000,476,936 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\System32\npdeployJava1.dll
[2012/06/16 14:25:55 | 000,472,840 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\System32\deployJava1.dll
[2012/06/15 01:28:13 | 000,000,824 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\MozyHome Status.lnk
[2012/06/13 09:34:40 | 002,523,904 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2012/06/12 14:52:59 | 000,000,955 | ---- | M] () -- C:\Users\Bobby\Application Data\Microsoft\Internet Explorer\Quick Launch\Foxit Reader.lnk
========== Files Created - No Company Name ==========
[2012/07/09 19:55:49 | 000,000,830 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/07/06 17:11:55 | 009,572,753 | ---- | C] () -- C:\Users\Bobby\Desktop\plans.pdf
[2012/07/06 10:57:55 | 003,844,573 | R--- | C] () -- C:\Users\Bobby\Desktop\0WCH Markups.pdf
[2012/07/02 19:07:55 | 000,207,435 | ---- | C] () -- C:\Users\Bobby\Desktop\eleccib.pdf
[2012/06/18 17:17:19 | 000,018,629 | ---- | C] () -- C:\Users\Bobby\Desktop\Contacts.csv
[2012/06/12 14:52:59 | 000,000,955 | ---- | C] () -- C:\Users\Bobby\Application Data\Microsoft\Internet Explorer\Quick Launch\Foxit Reader.lnk
[2011/12/06 14:10:41 | 000,000,306 | ---- | C] () -- C:\Windows\Brpfx04a.ini
[2011/12/06 14:10:41 | 000,000,153 | ---- | C] () -- C:\Windows\brpcfx.ini
[2011/12/06 14:03:50 | 000,000,066 | ---- | C] () -- C:\Windows\Brfaxrx.ini
[2011/12/06 14:03:49 | 000,000,000 | ---- | C] () -- C:\Windows\brdfxspd.dat
[2011/11/30 00:04:41 | 000,004,003 | ---- | C] () -- C:\Users\Bobby\.recently-used.xbel
[2011/11/18 19:56:56 | 000,110,456 | ---- | C] () -- C:\Users\Bobby\g2ax_customer_downloadhelper_win32_x86.exe
[2011/08/12 22:51:04 | 000,000,284 | ---- | C] () -- C:\Users\Bobby\.AtD-OpenOffice.org
[2011/04/26 21:32:55 | 000,000,025 | ---- | C] () -- C:\Windows\WebEasy.INI
[2011/02/08 09:52:28 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2010/08/27 10:31:32 | 000,115,712 | ---- | C] () -- C:\Windows\Notespad Uninstaller.exe
[2010/08/24 15:01:49 | 000,000,132 | ---- | C] () -- C:\Windows\picture-shark.INI
[2010/08/20 15:15:01 | 000,069,632 | ---- | C] () -- C:\Windows\agent.exe
[2010/08/20 15:14:39 | 000,038,912 | ---- | C] () -- C:\Windows\System32\pmppm.dll
[2010/07/14 17:17:06 | 000,060,304 | ---- | C] () -- C:\Users\Bobby\g2mdlhlpx.exe
[2010/06/24 13:00:32 | 000,000,137 | ---- | C] () -- C:\Users\Bobby\.jalbum-recent-projects.properties
[2010/06/24 12:55:35 | 000,000,442 | ---- | C] () -- C:\Users\Bobby\.jalbum-ftp-accounts.xml
[2010/06/24 12:55:34 | 000,000,923 | ---- | C] () -- C:\Users\Bobby\.jalbum-defaults.jap
[2010/03/26 09:36:36 | 000,000,760 | ---- | C] () -- C:\Users\Bobby\AppData\Roaming\setup_ldm.iss
[2010/02/26 12:53:14 | 000,000,085 | ---- | C] () -- C:\Users\Bobby\appletfile.props
[2009/11/16 11:14:22 | 000,000,680 | ---- | C] () -- C:\Users\Bobby\AppData\Local\d3d9caps.dat
[2009/09/04 18:26:03 | 000,000,013 | -H-- | C] () -- C:\ProgramData\˜113.›sys
[2009/07/17 15:14:10 | 000,000,258 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2008/09/18 16:34:40 | 000,000,093 | ---- | C] () -- C:\Users\Bobby\AppData\Local\fusioncache.dat
[2008/09/02 03:32:28 | 000,004,864 | ---- | C] () -- C:\ProgramData\powjnvfp.pmy
[2008/09/01 09:52:51 | 000,064,512 | ---- | C] () -- C:\Users\Bobby\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
========== LOP Check ==========
[2011/05/24 16:24:12 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Audacity
[2011/11/18 17:28:00 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Autodesk
[2009/10/06 14:34:56 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Avanquest
[2010/03/26 13:29:16 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\BackToTheBeach
[2009/11/06 09:34:28 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\CheckPoint
[2009/12/09 10:47:55 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\ClipMagic
[2012/05/21 11:45:25 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\CoffeeCup Software
[2011/12/06 14:44:03 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\ControlCenter4
[2009/09/24 15:55:42 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\DigitalPhotosExport
[2012/07/10 06:58:19 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Dropbox
[2011/11/18 17:59:19 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\FabCAD
[2008/08/29 21:53:48 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\FabCADinc
[2009/07/17 10:32:00 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Foxit
[2012/06/12 15:07:24 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Foxit Software
[2010/01/08 08:36:22 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\GoodSync
[2011/11/29 23:51:40 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\gtk-2.0
[2010/03/26 15:03:02 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\iHostStudio
[2008/08/29 12:18:10 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\InterVideo
[2012/06/28 09:01:04 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Jarte
[2011/10/12 15:19:01 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Leadertech
[2011/07/01 10:09:31 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\LiveSoftware
[2010/01/25 17:11:08 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\MAGIX
[2010/08/27 11:52:10 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\MyNesting
[2011/12/06 13:53:23 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Nuance
[2010/01/28 09:36:37 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\OpenOffice.org
[2012/04/04 12:02:25 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\PC-FAX TX
[2009/08/10 15:32:38 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Playrix Entertainment
[2010/06/11 14:15:56 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Snappy Fax
[2008/08/31 01:13:33 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Snappy Fax Archives
[2010/10/19 17:32:20 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\svBuilder
[2010/11/04 10:56:04 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Temp
[2011/08/08 16:51:21 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Thunderbird
[2010/03/09 20:41:35 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Turbine
[2010/08/20 15:31:20 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Two Pilots
[2009/10/27 16:48:17 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Unity
[2010/04/04 19:39:13 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\uTorrent
[2010/06/10 15:19:42 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Vu360
[2010/08/24 12:17:32 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\webex
[2010/10/25 09:30:49 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Windows Live Writer
[2011/08/12 20:53:05 | 000,000,000 | ---D | M] -- C:\Users\Bobby\AppData\Roaming\Zoundry
[2012/07/10 06:53:58 | 000,032,628 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2012/07/04 12:00:00 | 000,000,394 | ---- | M] () -- C:\Windows\Tasks\Schedule Task Weekly.job
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 510 bytes -> C:\Users\Bobby\Documents\Builders.eml:OECustomProperty
< End of report >
OTL Extras logfile created on: 7/10/2012 7:30:16 AM - Run 1
OTL by OldTimer - Version 3.2.53.1 Folder = C:\Users\Bobby\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.99 Gb Total Physical Memory | 1.59 Gb Available Physical Memory | 53.10% Memory free
6.21 Gb Paging File | 4.65 Gb Available in Paging File | 74.84% Paging File free
Paging file location(s): C:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 447.70 Gb Total Space | 275.94 Gb Free Space | 61.63% Space Free | Partition Type: NTFS
Drive F: | 219.99 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Computer Name: BOBBY-PC | User Name: Bobby | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
[HKEY_USERS\S-1-5-21-3979474346-4061523993-856938039-1004\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"AutoUpdateDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{06244662-C795-4D31-BAA4-AB092FD4B066}" = lport=9322 | protocol=6 | dir=in | name=ekdiscovery |
"{275CC055-F0C5-41F7-A72D-60BD594C505A}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{285D19C9-1019-4BED-AD75-12792C704DD3}" = lport=9322 | protocol=6 | dir=in | name=ekdiscovery |
"{38B93BEC-9E96-4ED6-83D8-CC0C5DEDB7F7}" = lport=47917 | protocol=17 | dir=in | name=ut |
"{43983F86-E711-40B2-B5E1-2E3FBE48DC84}" = lport=5353 | protocol=6 | dir=in | name=adobe csi cs4 |
"{4FC2D385-0F73-4C20-8B0F-D258A1A9B863}" = lport=10243 | protocol=6 | dir=in | app=system |
"{513C341B-F195-47B9-9C07-268C88F45128}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{53468DCF-4811-4137-A89B-20C1B099EE34}" = lport=47917 | protocol=6 | dir=in | name=utorrent |
"{69480888-037A-49A3-A8F1-108E9DD9855F}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office12\outlook.exe |
"{869C23C6-FF40-4146-B082-D56FD29FA06F}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{A47207E8-90CB-4377-B247-C06CFF7E98B2}" = lport=5353 | protocol=17 | dir=in | name=bonjour port 5353 |
"{BCD2BFC5-DCA6-47AD-A8A6-524F6D5F5386}" = lport=2869 | protocol=6 | dir=in | app=system |
"{BD26C054-F299-4876-AA17-0806FB594AE0}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{BDEAF94C-85D5-43FD-AE45-AAA1558DC5E6}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{CAF068F7-EF32-48C8-B50C-5CAA25B625A3}" = rport=10243 | protocol=6 | dir=out | app=system |
"{D474EE9B-2EDE-4F4A-ABCA-CE7F9DF0B3AF}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{D7D79558-CCF0-4AC0-8FA2-318636A28D5B}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{DAD40A27-FA27-486E-BD30-764C33BCA511}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00A4FF0A-07FA-4A7E-8296-21322BE5EE6C}" = protocol=6 | dir=in | app=c:\program files\incredimail\bin\incmail.exe |
"{01464AE5-0E13-4163-A848-E0100007C642}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0186AC0E-EAFA-430D-9AF5-581576F5B2EA}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{01A24D1F-E309-4A9D-96F7-417FB6DE0229}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{020ACD3C-D6AE-4421-ACC9-66D581AC47B1}" = protocol=6 | dir=out | app=system |
"{03D82F9B-4A48-4251-9182-BA912DCDD522}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0425E799-F399-49F2-A6D5-5D38FDD2E2FC}" = protocol=17 | dir=in | app=c:\program files\skype\plugin manager\skypepm.exe |
"{075AF1BE-0FC7-4E71-8C85-CCF43140D8AA}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{082E45E5-97A2-4B6A-BAC0-468C8ED64A33}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{0B6668FE-199E-492D-B026-D5D820D64F1B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0C5C21B8-17B4-43C3-88FE-CDFC0A2F8692}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0CADF18F-30CC-44E0-843D-F768D8C3E352}" = protocol=6 | dir=in | app=c:\program files\incredimail\bin\impcnt.exe |
"{12F0E047-F744-427D-AB67-D9FF9CC1A4F3}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{13037D39-0266-46CD-BBE4-96448E1C1C54}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{1519646A-92F4-474B-BB7E-5E221004812E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{17E8A5D1-A2B0-4DEF-9F27-9DFFBA1F7705}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{187876DB-8B31-45AB-A231-CB8F7E8943B9}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{18FDF615-7D64-4612-8F9D-4D1807E8FFFC}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{1D1AFBFD-5065-4133-9C0D-2CDA03A0103A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{1E25F1F4-F0BA-4CA3-81AB-480E62931B4C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{1E85DECB-9CCA-4B5B-BF40-5935BC2F95E9}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{20A5AD1F-98E1-4440-9984-18C07482E222}" = protocol=17 | dir=in | app=c:\program files\mozilla thunderbird\thunderbird.exe |
"{215BF307-AC5F-48E7-8E35-8F0E9C515EDE}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{225C217B-3501-454A-B4CC-1EC2F051BE9E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{22B0D424-5FAC-4EF4-8123-0D93B9BCCF14}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2516AF7C-B3C2-418F-A4F0-8ED45E07FC8C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{25905682-75BB-408D-A91C-BFF010EBE97E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{260530FB-AD8B-482A-9FEF-5A34D21D6F9C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2712D0E5-EE24-4E42-BD62-C870A5FECA8C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{29378638-35E3-436F-97CA-BD614DE8295B}" = dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{297F7F35-D746-4C4D-A30B-CBA86D03F4AE}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2B035309-69E4-4092-877E-C5EB5277B6FC}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2D753251-072A-41D8-A1D4-FF7BFA110E10}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2D76682F-9975-4464-B6C1-8C02702277EB}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{2F74D314-75E7-4C49-A985-0014214839C4}" = protocol=6 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{2FDE89A3-AFB8-4B32-9FB9-F81F9F8FE4A7}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{31E1F571-E50F-4324-B6DE-6011D055FB40}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{328752C6-FF99-4F81-9F4F-3A09DF2812CA}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{32F781B6-5D38-40BD-A610-1E48380888E3}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{33CAE0DE-F390-4151-933A-73F40A868283}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{35EE5687-9C91-4059-9FC9-1A0D51841B5B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3A35C4BE-E304-45FB-98F5-E9BE5B1923D2}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3E72B36B-6983-4E00-8A9D-62ADF26F7CB7}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{413C8DD5-EEDE-40AA-8BDF-4C8D086033A3}" = protocol=17 | dir=in | app=c:\program files\atari\neverwinter nights 2\nwupdate.exe |
"{42165869-1C54-4765-A2A4-4A23BC8B9F63}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{42A50ED2-A8DD-4423-8068-1D65B9A250CA}" = protocol=6 | dir=in | app=c:\program files\incredimail\bin\imapp.exe |
"{44DE3D7C-1FD8-4D63-BB0B-4B838A5BBA56}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{47F452D4-41B3-4854-920C-47204305EE48}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{4BA07B2C-DE5A-4D30-B6D0-51CD308A081B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{4E9E4879-61DA-449D-BE8C-F54A9D5B9202}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{542B05CA-D9D4-43D2-9A5E-231F2BA45259}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{56F609E6-D591-40D4-A921-74B696A9EEB1}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5764A460-F7C6-4B3A-923A-9731F310BBF4}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{58059BF5-81BE-4C80-8E97-E2841FEDE076}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{58833134-09AE-4606-9742-78AFF106FBCB}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5993569A-F64D-4FD1-8360-0AB611B945F7}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5C5CD35B-71E3-470F-BDB0-B11113D0550A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5DD894FE-4CDC-4E61-B072-152D3814411E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{636D7AD3-B50C-468E-8473-9E16A96483D1}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{6735FD70-128C-4B51-A250-E1C90AFC984B}" = dir=in | app=c:\program files\windows live\contacts\wlcomm.exe |
"{6DC54F15-700C-45FC-9DE7-3D2241A3AE0A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{6E1AB781-2654-402F-A1ED-6D1202D28E9C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{6F79F5A2-BCEF-47E3-96F8-6C2E5387BC20}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{6F84ED0B-D8D7-4B1D-9869-FE1628949B47}" = protocol=6 | dir=in | app=c:\program files\skype\plugin manager\skypepm.exe |
"{707BDA81-F0B8-4958-9016-9E3F5FA5E0CA}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{711B164D-331D-4D5E-8C1C-B3F55F40300C}" = protocol=17 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{71AE059F-4565-4EAD-B015-2F4E6DCBA87A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{73B7C4E1-183F-411F-82BD-12CB3DF095EA}" = protocol=17 | dir=in | app=c:\users\bobby\appdata\roaming\dropbox\bin\dropbox.exe |
"{758394EB-805F-4FAC-A982-AA2E8AC4AB83}" = protocol=17 | dir=in | app=c:\program files\incredimail\bin\imapp.exe |
"{7692BBA2-74C9-4B94-8B41-6D2AA3D936C7}" = protocol=17 | dir=in | app=c:\program files\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
"{76D28532-80E6-4BC5-96CE-58E2974000A8}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{78A97533-CE58-4763-A3DF-52C10CB81BAD}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{79FD3B6D-08DD-4917-ADBA-7B0869A82E4B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{8043ABD5-C563-4D61-A1BF-F9A07FFCD48C}" = protocol=17 | dir=in | app=c:\program files\atari\neverwinter nights 2\nwn2main_amdxp.exe |
"{8284183C-8E76-45DB-AEF6-D018B3C52EA4}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{86F4B656-06B4-440A-9A2A-750D4EB2BB15}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{88ED5EC2-D1E8-4133-A8BD-315B86C61699}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{89190588-E994-439C-95E8-4C92737A0F12}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{8B383760-BEAC-412F-993E-1189B5C7D23C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{8E98921A-D508-484E-B13F-EB93B6362E4E}" = protocol=6 | dir=in | app=c:\program files\incredimail\bin\imlc.exe |
"{8FFD1890-B8EB-4EA2-B186-DA81F28BBF12}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{900C3931-0DDE-4545-939A-54322777A621}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{9087A690-748B-449B-9535-17885222FA17}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{90E97613-36F2-4E77-AEE8-44E91D36C95F}" = protocol=6 | dir=in | app=c:\users\bobby\appdata\local\google\google talk plugin\googletalkplugin.exe |
"{95A687AA-1E38-492F-99AF-2F2919530817}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{9E063F86-DA37-465E-879C-8C40322FA588}" = protocol=6 | dir=in | app=c:\program files\atari\neverwinter nights 2\nwn2main.exe |
"{9F77BFEB-5D69-46CE-AEDD-892FDB0EC167}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A0EB84E4-80A2-43F6-A4B6-2763E6D18D03}" = protocol=17 | dir=in | app=c:\program files\incredimail\bin\impcnt.exe |
"{ACE64CC2-BC6C-4D5E-A63D-B23642A8FC42}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{AD6B1C56-FB2F-4EB4-B89D-CD75492E987E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{AFC2CA9C-B3AF-42A7-A141-C1AD1A3AC210}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{B00FF3EA-503C-4C1C-9604-272853611490}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{B0B97D5C-EBE2-4730-A6F4-3C2961149263}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{B34118A5-5501-431E-9D33-9836261E77AC}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{B51F157F-BE75-4F78-AB28-8C73021B6450}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{B70B6CAC-3F45-4BBC-824F-5605AB69626B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{B8409F18-CD4E-4590-AA7A-AC22384F2A74}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{BAA6F57E-BA4F-4AB0-AF99-D7237C8E3931}" = protocol=17 | dir=in | app=c:\program files\incredimail\bin\imlc.exe |
"{BAE3585C-1180-4493-8436-65BA400D6D72}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{BF4DC1C0-C2BF-49E5-8F69-03E222D5DACA}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{BFB53132-FB06-48E4-AC72-71114B37A8E3}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{BFF11C7D-5FA2-48DE-8B87-4C51D1290EBA}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{C03834C1-B0EA-47AE-832D-DFDE0E477645}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{C1D6EF90-EBE2-4467-B23C-0EF58206D473}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{C39334F1-0932-4834-B0B3-ED766ACBABDC}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{C3CC8A77-5455-4D5C-A8A1-986EE1103FB4}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{C932379B-B660-4EDF-B409-4FCC3BA979F2}" = protocol=17 | dir=in | app=c:\program files\incredimail\bin\impackr.exe |
"{CC30CFE1-81CD-49E1-B613-962BE70A11BB}" = protocol=17 | dir=in | app=c:\program files\atari\neverwinter nights 2\nwn2main.exe |
"{CE42C0C3-3B15-40FE-A8DD-CE527A8C7496}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{CF0031AF-000B-4B75-B7C7-A3E7D952BAB7}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{D0C78C87-3669-4FA6-B8DB-CEDDC542982D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{D0CC9B40-85F4-4EA5-A17B-8A866D2B930C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{D3DE0A90-529F-4498-84A6-B21343DF8E18}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{D789674B-F64F-477D-A10D-0442439F3623}" = dir=in | app=c:\program files\lenovo\lenovo media studio\pdr.exe |
"{D99508EA-3904-4690-BA7B-C811C8E09D5E}" = protocol=6 | dir=in | app=c:\program files\atari\neverwinter nights 2\nwupdate.exe |
"{DA964C19-1C49-4BC2-8EAD-987CFF12DB4F}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{DBAB4B92-5A73-492A-AABC-BA9E9F74DEC3}" = protocol=17 | dir=in | app=c:\program files\atari\neverwinter nights 2\nwn2server.exe |
"{DD72DF66-3BDD-4293-9B36-14FD32304B36}" = protocol=6 | dir=in | app=c:\program files\atari\neverwinter nights 2\nwn2main_amdxp.exe |
"{E0260DA2-809B-4ABF-97F9-2243D9C0FE63}" = protocol=17 | dir=in | app=c:\program files\incredimail\bin\incmail.exe |
"{E149CA84-1B93-4E57-9458-A45626EADD11}" = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe |
"{E1E1FBDE-BC5A-4495-B805-074F420613E3}" = protocol=6 | dir=in | app=c:\users\bobby\appdata\roaming\dropbox\bin\dropbox.exe |
"{E435CEBF-9764-426F-BEF9-C6102413973A}" = protocol=6 | dir=in | app=c:\program files\mozilla thunderbird\thunderbird.exe |
"{E604D464-525B-423F-AA18-91023F101256}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{E7BB691A-C769-4E84-98E6-C720C16AE3F1}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{E9F1F227-FE8E-4CB0-83F8-EC07DC693D41}" = protocol=17 | dir=in | app=c:\users\bobby\appdata\local\google\google talk plugin\googletalkplugin.exe |
"{EB63A012-6552-4C3B-B7AB-3338919A8096}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{EB66CC9E-1060-4EDA-BEAB-A9E6323EC714}" = protocol=6 | dir=in | app=c:\program files\incredimail\bin\impackr.exe |
"{EB7F326C-C0BF-42E6-B601-A72E3F0025E4}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{EE216F14-E101-4B37-AE47-3576124700CE}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F11E6AC1-6AAF-4FCE-8A71-20A576E56A47}" = protocol=6 | dir=in | app=c:\program files\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
"{F16CA5AA-ED6E-40FB-A21C-89C571F83CA3}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F190B9EC-1B9A-4B59-A5F2-FB61130B01CE}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F2604EFA-BAC1-42F0-8BF1-011D1C802E48}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F2F8FE73-8C8C-4A93-A12F-38E9D13D68D2}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F4072371-565E-49D3-938A-046468194DC0}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F5225974-8AC1-4D66-94BD-EEF3EDA663C7}" = protocol=6 | dir=in | app=c:\program files\atari\neverwinter nights 2\nwn2server.exe |
"{F5257933-6BB4-4679-B88C-E9BE5B9A4F61}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F7C07BFE-12DC-4542-924A-3E2120FCDC30}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{FCA71106-FBFC-41A9-8E5F-A9EC9FBDD443}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"TCP Query User{109C342F-53D5-4C18-B1D5-53C4FEAD0A86}C:\program files\ea games\command & conquer generals zero hour\game.dat" = protocol=6 | dir=in | app=c:\program files\ea games\command & conquer generals zero hour\game.dat |
"TCP Query User{1E9C2E34-36C3-4CEC-8587-3C9779E6034C}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"TCP Query User{27E8377E-2411-48EA-8682-759E8E97387E}C:\program files\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"TCP Query User{572A624D-EEE4-4489-8B70-E5DF1FB19591}C:\program files\ea games\command & conquer generals zero hour\game.dat" = protocol=6 | dir=in | app=c:\program files\ea games\command & conquer generals zero hour\game.dat |
"TCP Query User{614B6629-E246-432A-B3EB-C7696D29F4D3}C:\users\bobby\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\bobby\appdata\roaming\dropbox\bin\dropbox.exe |
"TCP Query User{727ED5F4-3623-46DF-81A3-51F7D5C4971B}C:\windows\system32\javaw.exe" = protocol=6 | dir=in | app=c:\windows\system32\javaw.exe |
"TCP Query User{7BDB2D11-E0AB-4B36-B3FF-66DF03E4B627}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"TCP Query User{D955212F-7080-4CA5-A10E-5724AE574899}C:\program files\ea games\command & conquer generals zero hour\patchget.dat" = protocol=6 | dir=in | app=c:\program files\ea games\command & conquer generals zero hour\patchget.dat |
"TCP Query User{DB8E7EDB-3E60-4FEA-A5EB-50AD83CE669F}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=6 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe |
"TCP Query User{F53A70A6-DFB3-42A5-9865-1E2E30F6AF66}C:\program files\turbine\ddo unlimited\dndclient.exe" = protocol=6 | dir=in | app=c:\program files\turbine\ddo unlimited\dndclient.exe |
"UDP Query User{548E36CE-AA6C-41AF-92CE-E0877A7C9038}C:\program files\ea games\command & conquer generals zero hour\game.dat" = protocol=17 | dir=in | app=c:\program files\ea games\command & conquer generals zero hour\game.dat |
"UDP Query User{911D9764-28AF-4432-BF60-B36615DBC120}C:\windows\system32\javaw.exe" = protocol=17 | dir=in | app=c:\windows\system32\javaw.exe |
"UDP Query User{9189A2D5-CFB0-4832-8291-468D8BAEF7CA}C:\program files\ea games\command & conquer generals zero hour\patchget.dat" = protocol=17 | dir=in | app=c:\program files\ea games\command & conquer generals zero hour\patchget.dat |
"UDP Query User{94FB7540-83EE-4CB2-B507-94B6665B4BAB}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=17 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe |
"UDP Query User{AD5E3A7A-69A8-46AD-B9DB-28869FC1C90D}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"UDP Query User{CAF48247-7355-4FD2-9DE1-72568A29DD29}C:\program files\turbine\ddo unlimited\dndclient.exe" = protocol=17 | dir=in | app=c:\program files\turbine\ddo unlimited\dndclient.exe |
"UDP Query User{D18DFE78-05AD-4E63-9071-2AB2CAC8E57E}C:\users\bobby\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\bobby\appdata\roaming\dropbox\bin\dropbox.exe |
"UDP Query User{D6891F59-864F-482E-93C6-E32D0CC321C0}C:\program files\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"UDP Query User{DCE82AC6-F57E-412C-8BDE-B33FFE9AEE04}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"UDP Query User{EA98BEC8-7E73-40D5-A156-F921D5D56C5B}C:\program files\ea games\command & conquer generals zero hour\game.dat" = protocol=17 | dir=in | app=c:\program files\ea games\command & conquer generals zero hour\game.dat |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"%ProgramName%" = picture-shark 1.0
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{00ADFB20-AE75-46F4-AD2C-F48B15AC3100}" = Adobe Color NA Recommended Settings CS4
"{02E89EFC-7B07-4D5A-AA03-9EC0902914EE}" = VC 9.0 Runtime
"{05308C4E-7285-4066-BAE3-6B50DA6ED755}" = Adobe Update Manager CS4
"{054EFA56-2AC1-48F4-A883-0AB89874B972}" = Adobe Extension Manager CS4
"{0645A454-AD44-4F0D-99CF-6B762735AD1F}" = aioprnt
"{068724F8-D8BE-4B43-8DDD-B9FE9E49FD76}" = Scansoft PDF Professional
"{06F80017-8F98-4C94-B868-52358569FC32}" = Command & Conquer Generals
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
"{098727E1-775A-4450-B573-3F441F1CA243}" = kuler
"{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0C826C5B-B131-423A-A229-C71B3CACCD6A}" = CDDRV_Installer
"{0D6013AB-A0C7-41DC-973C-E93129C9A29F}" = Adobe Color JA Extra Settings CS4
"{0F723FC1-7606-4867-866C-CE80AD292DAF}" = Adobe CSI CS4
"{0F842B77-56EA-4AAF-8295-81A022350B5E}" = Microsoft Security Client
"{15BF7AAF-846C-4A6D-80E1-5D1FC7FB461B}" = Adobe SGM CS4
"{1618734A-3957-4ADD-8199-F973763109A8}" = Adobe Anchor Service CS4
"{16E6D2C1-7C90-4309-8EC4-D2212690AAA4}" = AdobeColorCommonSetRGB
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate
"{18DB3375-0649-4EA3-959A-44F1ACD278BA}" = IncrediMail
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{19A71C4F-94D9-44EA-AC98-FF8A045273AB}" = iSqFt Full Viewer V4.01
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{1DCA3EAA-6EB5-4563-A970-EA14D75037BA}" = Adobe InDesign CS4
"{1E04CB54-AF4E-4AC3-B4B7-C0A160BE57F1}" = Adobe InDesign CS4 Icon Handler
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{20471B27-D702-4FE8-8DEC-0702CC8C0A85}" = InterVideo WinDVD 8
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{26A24AE4-039D-4CA4-87B4-2F83216016F0}" = Java 6 Update 16
"{26A24AE4-039D-4CA4-87B4-2F83216025F0}" = Java 6 Update 25
"{26A24AE4-039D-4CA4-87B4-2F83216033FF}" = Java 6 Update 33
"{28656860-4728-433C-8AD4-D1A930437BC8}" = Nuance PDF Viewer Plus
"{2934DCB0-F8EE-11E0-A4A5-B8AC6F97B88E}" = Google Earth Plug-in
"{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}" = Microsoft SQL Server 2005 Express Edition (MSSMLBIZ)
"{2BAF2B96-7560-48B4-87D4-10178DDBE217}" = Adobe InDesign CS4 Application Feature Set Files (Roman)
"{2BF52D77-1DF7-4391-85B3-AE45CEE8BD86}" = Xara Xtreme Pro 5
"{2EA870FA-585F-4187-903D-CB9FFD21E2E0}" = DHTML Editing Component
"{2EC3F249-91D1-460B-BD2A-4779F9D5E793}" = FabCAD 2009 Disk2
"{3101CB58-3482-4D21-AF1A-7057FC935355}" = KhalInstallWrapper
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{35D94F92-1D3A-43C5-8605-EA268B1A7BD9}" = PDF Settings CS4
"{35DC9F1E-5E88-4E69-A49A-9F4C2B33DDF3}" = Web Easy Professional
"{364AD023-F22D-4380-88D0-F9C6A778E194}" = Driver & Application Installation
"{39F6E2B4-CFE8-C30A-66E8-489651F0F34C}" = Adobe Media Player
"{3A097992-41D6-F477-4982-9617C0BFB9CA}" = svBuilder
"{3A4E8896-C2E7-4084-A4A4-B8FD1894E739}" = Adobe XMP Panels CS4
"{3ACCCFB3-7B17-4E9F-ACB0-46868FCD4487}" = Brother MFL-Pro Suite MFC-7360N
"{3BB1501C-1670-4b53-8B67-B1C368BC7227}" = Lenovo PC Type Configuration
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3DA8DF9A-044E-46C4-8531-DEDBB0EE37FF}" = Adobe WinSoft Linguistics Plugin
"{3E171899-0175-47CC-84C4-562ACDD4C021}" = OpenOffice.org 3.3
"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go 5.0
"{4112625F-2D38-49EF-924F-48511BC5CD34}" = SQL Server 2008 R2 Database Engine Services
"{41DC9B1E-BB88-43F0-B886-99CF70AE6626}" = Greeting Card Factory Deluxe
"{4448ABF6-786D-4C3D-A49D-7BB237E6DD17}" = Foxit PDF IFilter
"{47365D32-E881-4473-9565-6254ED0809E2}" = FaxTalk FaxCenter Pro 7.5
"{4943EFF5-229F-435D-BEA9-BE3CAEA783A7}" = Adobe Service Manager Extension
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A52555C-032A-4083-BDD9-6A85ABFB39A8}" = Adobe SING CS4
"{4C9D82EB-9001-4E59-8F64-0BEEE5F4A30A}" = SQL Server 2008 R2 Database Engine Shared
"{529125EF-E3AC-4B74-97E6-F688A7C0F1BF}" = Paint.NET v3.5.10
"{53735ECE-E461-4FD0-B742-23A352436D3A}" = Logitech Updater
"{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}" = Microsoft SQL Server Setup Support Files (English)
"{5545EEE1-FA36-4F76-B6BE-5696E7F4E2D6}" = VBA (2627.01)
"{5570C7F0-43D0-4916-8A9E-AEDD52FA86F4}" = Adobe Color EU Extra Settings CS4
"{56BA241F-580C-43D2-8403-947241AAE633}" = center
"{56D8B4D1-0DCE-4DF6-B3FC-459157C9AC75}_is1" = PDF Maker Pilot Trial 2.2
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{59932D51-F260-4EF6-A784-4F69659F1A62}" = Map Button (Windows Live Toolbar)
"{5A3F6A80-7913-475E-8B96-477A952CFA43}" = SupportSoft Assisted Service
"{5C474A83-A45F-470C-9AC8-2BD1C251BF9A}" = Skype™ 4.2
"{5DD4FCBD-A3C1-4155-9E17-4161C70AAABA}" = Segoe UI
"{65420DC9-306E-4371-905F-F4DC3B418E52}" = Autodesk Material Library Base Resolution Image Library 2012
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{6C0A559F-8583-4B5A-8B50-20BEE15D8E64}" = Nuance PaperPort 12
"{6EF2FDAB-7FBF-4AB9-92CD-594BDDB6A56B}" = PaperPort Image Printer
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{72DE3C67-FB48-450E-8BEA-4EB1B3B5355D}" = Microsoft SQL Server 2008 R2 Setup (English)
"{75AE8014-1184-4BC0-B279-C879540719EE}" = PhotoMail Maker
"{7670D32F-DAE6-4E49-8C8B-B3F08B5B1686}" = Microsoft SQL Server Native Client
"{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}" = Avanquest update
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{777CA40C-0206-4EF6-A0FC-618BF06BF8D0}" = Intel® PRO Network Connections 12.1.12.0
"{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com
"{788A0222-5690-4212-AA9C-C48FD0E1C9AE}" = Photo Notifier and Animation Creator
"{7B63B2922B174135AFC0E1377DD81EC2}" = DivX Codec
"{7C8EAD2B-A954-4F73-AAFC-C3EC60D49ADA}" = Microsoft SQL Server 2008 R2 RsFx Driver
"{7CC7BDD5-6F10-4724-96A1-EAC7D9F2831C}" = Adobe InDesign CS4 Common Base Files
"{7FB413C8-3CAD-49F7-A67C-6EFEB4B04050}" = LogMeIn Hamachi
"{7FBDF1E0-E616-11D3-AFFB-AA0004003D04}" = Linear AccessBase v 1.52
"{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}" = Adobe Type Support CS4
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83877DB1-8B77-45BC-AB43-2BAC22E093E0}" = Adobe Bridge CS4
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{842B4B72-9E8F-4962-B3C1-1C422A5C4434}" = Suite Shared Configuration CS4
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A1D86F3-3FF4-400B-9B2F-27B269C594EE}" = Multiple Image Resizer .NET
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8F0837C2-EE09-4903-88F3-1976FE7FFF4E}" = Autodesk Material Library 2012
"{8FC59A07-B17F-44A2-A5B0-3D78E78B4E13}" = ScreenShot V1.0.0.0
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120000-0015-0409-0000-0000000FF1CE}_PROHYBRIDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_PROHYBRIDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_PROHYBRIDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
"{90120000-0019-0409-0000-0000000FF1CE}_PROHYBRIDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}_PROHYBRIDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_PROHYBRIDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_PROHYBRIDR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_PROHYBRIDR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_PROHYBRIDR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_PROHYBRIDR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_PROHYBRIDR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
"{90120000-0117-0409-0000-0000000FF1CE}_PROHYBRIDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{90A40409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office 2003 Web Components
"{91120000-0031-0000-0000-0000000FF1CE}" = Microsoft Office Professional Hybrid 2007
"{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{929648CA-A97F-4EB3-9CD8-563ADDF468DF}" = Zoho Assist
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{931AB7EA-3656-4BB7-864D-022B09E3DD67}" = Adobe Linguistics CS4
"{93998800-1608-403F-9A51-420A77D23C25}" = Sql Server Customer Experience Improvement Program
"{94D398EB-D2FD-4FD1-B8C4-592635E8A191}" = Adobe CMaps CS4
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9610EC3A-C7A0-4C31-9F3B-F9020C582B47}" = Lenovo Healthcare Software
"{975C3A93-2491-3D44-A071-F6CBF153E46D}" = Google Talk Plugin
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{981029E0-7FC9-4CF3-AB39-6F133621921A}" = Skype Toolbars
"{9A1D5854-F960-4198-B8B5-4E42F7CD97DD}" = Tec Basic for Windows Vista
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{A3A6A319-F194-4065-A255-26C03D33A0F8}" = Email Verifier
"{A3D79488-45B9-4BCE-9CE7-AB24C0F1E645}" = Library Release 16
"{A498D9EB-927B-459B-85D6-DD6EF8C2C564}" = erLT
"{A6806D86-BFF3-49CD-8E2B-87BB3507E53F}" = Web Easy Professional 8
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A939D341-5A04-4E0A-BB55-3E65B386432D}" = Microsoft Office Small Business Connectivity Components
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
"{AB05F2C8-F608-403b-95E1-FD8ADFACD31E}" = Windows 7 Upgrade Advisor
"{AC76BA86-7AD7-1033-7B44-A95000000001}" = Adobe Reader 9.5.1
"{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9
"{ACEB2BAF-96DF-48FD-ADD5-43842D4C443D}" = Adobe AIR
"{AF844339-2F8A-4593-81B3-9F4C54038C4E}" = Windows Live MIME IFilter
"{AFB9C8D1-70A6-B2C2-D668-EA1BCFCCFC8D}" = MozyHome
"{B10914FD-8812-47A4-85A1-50FCDE7F1F33}" = Windows Live Sync
"{B2520F31-1EC6-4299-95F4-9DF1592D4FAE}" = FabCAD 2012 Disk2
"{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0
"{B26B00DA-2E5D-4CF2-83C5-911198C0F009}" = GoodSync
"{B29AD377-CC12-490A-A480-1452337C618D}" = Connect
"{B32C4059-6E7A-41EF-AD20-56DF1872B923}" = Business Contact Manager for Outlook 2007 SP2
"{B4287F1F-FD5C-4A8B-8BBB-7DBA436F269F}" = DiggThis for Windows Live Writer
"{B8E9F8A1-9F4D-43D5-ABD6-1DF067FAA469}" = SQL Server 2008 R2 Database Engine Services
"{BB4E33EC-8181-4685-96F7-8554293DEC6A}" = Adobe Output Module
"{C52E3EC1-048C-45E1-8D53-10B0C6509683}" = Adobe Default Language CS4
"{C5BF6436-2E5B-4090-BA6B-28DE1BDC2107}" = OKAVAgent
"{C6150D8A-86ED-41D3-87BB-F3BB51B0B77F}" = Windows Live ID Sign-in Assistant
"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
"{CA1CA5F8-7500-45C5-9D4C-47D13FBC92D2}" = Adobe Setup
"{CACEA8C8-3D38-4F51-953D-1E6FC3346FEF}" = SQL Server 2008 R2 Common Files
"{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = Lenovo Media Studio
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CC75AB5C-2110-4A7F-AF52-708680D22FE8}" = Photoshop Camera Raw
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CFF8B8E8-E086-4DE0-935F-FE22CAB54F80}" = Microsoft Search Enhancement Pack
"{D1399216-81B2-457C-A0F7-73B9A2EF6902}" = PDFill PDF Editor with FREE Writer and FREE Tools
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{DA5BDB2A-12F0-4343-8351-21AAEB293990}" = PreReq
"{DBBFDD7B-71FC-443D-95C2-D014FED556CB}" = LVT
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{DE6B7599-D3EF-4436-8836-BAA0B0D7768D}" = aiofw
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E0F274B7-592B-4669-8FB8-8D9825A09858}" = KODAK AiO Home Center
"{E1077A0C-0DF2-4A9E-AD83-D6ACDFA40890}" = Twitter Plugin for Windows Live Writer
"{E14D6A39-96CA-44DF-9FC7-EB17BC9E2F73}" = Photosynth 2.0110.0317.1042
"{E2883E8F-472F-4fb0-9522-AC9BF37916A7}" = Adobe Download Manager
"{E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218
"{E5FCED12-3E77-4C0E-A305-5AEB38A52A70}" = AdobeColorCommonSetCMYK
"{E8481C18-EE4A-42FB-9762-D2EDAE58538E}" = FabCAD 2012
"{F021CC0C-21C3-4038-AA4A-6E3CBC669CE8}" = SQL Server 2008 R2 Database Engine Shared
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E64E2E-3A60-40D8-A55D-92F6831875DA}" = Adobe Search for Help
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F2795DC8-50AE-4611-B7C9-AAE0DF93778D}" = FabCad 2009
"{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}" = Logitech SetPoint
"{F3E9C243-122E-4D6B-ACC1-E1FEC02F6CA1}" = Command and ConquerTM Generals Zero Hour
"{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}" = Microsoft Office Live Add-in 1.5
"{F484477C-6E96-4887-A0C1-00E20F525392}" = Lenovo Standard Keyboard Driver
"{F67382D1-971A-4086-818F-D16D060A71E5}" = MyNesting Client
"{F7E2EBD0-95F9-152E-A50A-59B46EF15E79}" = Library15
"{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}" = Adobe ExtendScript Toolkit CS4
"{F93C84A6-0DC6-42AF-89FA-776F7C377353}" = Adobe PDF Library Files CS4
"{FC835376-FF3B-4CAA-83E0-2148B3FB7C98}" = SQL Server 2008 R2 Common Files
"{FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794}" = Adobe Fonts All
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"{FE0646A7-19D0-41B4-A2BB-2C35D644270D}" = Windows Live OneCare safety scanner
"{FE24086F-3B0C-4C47-A874-97A7B8E2FBBE}" = aioscnnr
"ActiveTouchMeetingClient" = Cisco WebEx Meetings
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe_1710d324011afc3e7658e969025f4ba" = Adobe InDesign CS4
"AI RoboForm" = AI RoboForm (All Users)
"Ask Toolbar_is1" = Foxit Toolbar
"Batch Watermark Creator_is1" = Batch Watermark Creator 7.0.3
"Business Contact Manager" = Business Contact Manager for Outlook 2007 SP2
"CNXT_MODEM_PCI_VEN_14F1&DEV_2F20&SUBSYS_201414F1" = HSF2014 56K Data Fax Modem
"CoffeeCup Web Form Builder" = CoffeeCup Web Form Builder
"CoffeeCup Web Form Builder - Registered" = CoffeeCup Web Form Builder - Registered
"CoffeeCup Website Access Manager" = CoffeeCup Website Access Manager
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"Concord Telephony Translation" = Concord Telephony Translation
"Coupon Printer for Windows5.0.0.1" = Coupon Printer for Windows
"CTIAPI32" = CTIAPI32 (remove only)
"CtiLogC" = CtiLogC (remove only)
"Cucusoft MPEG/MOV/RM/DivX/AVI to DVD/VCD/SVCD Creator Pro_is1" = Cucusoft MPEG/MOV/RM/DivX/AVI to DVD/VCD/SVCD Creator Pro 7.07
"Digital Photo Export_is1" = DigitalPhotoExport 0.4.0.7 (Beta)
"Ditto_is1" = Ditto
"DMGenie_is1" = DM Genie Version 2.25.345
"DVD Flick_is1" = DVD Flick 1.3.0.7
"Email Verifier" = Email Verifier
"FabCad 2009" = FabCad 2009
"FabCAD 2012" = FabCAD 2012
"FabCAD 2012 SP1" = FabCAD 2012 SP1
"Foxit Reader_is1" = Foxit Reader
"GPL Ghostscript 8.64" = GPL Ghostscript 8.64
"HDMI" = Intel® Graphics Media Accelerator Driver
"iEasySite" = iEasySite (remove only)
"Img2CAD_is1" = Img2CAD 7.1
"IncrediMail" = IncrediMail 2.0
"InstallShield_{06F80017-8F98-4C94-B868-52358569FC32}" = Command & Conquer Generals
"InstallShield_{20471B27-D702-4FE8-8DEC-0702CC8C0A85}" = InterVideo WinDVD 8
"InstallShield_{C5BF6436-2E5B-4090-BA6B-28DE1BDC2107}" = OKAVAgent
"InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = Lenovo Media Studio
"InstallShield_{F3E9C243-122E-4D6B-ACC1-E1FEC02F6CA1}" = Command and ConquerTM Generals Zero Hour
"Jarte_is1" = Jarte 4.1
"Java Web Start" = Java Web Start
"Live Writer Picasa Plugin" = Live Writer Picasa Plugin 1.3.0
"LiveAdvisor" = LiveAdvisor (Symantec Corporation)
"LiveUpdate" = LiveUpdate 3.2 (Symantec Corporation)
"LogMeIn Hamachi" = LogMeIn Hamachi
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft Security Client" = Microsoft Security Essentials
"Microsoft SQL Server 10" = Microsoft SQL Server 2008 R2
"Microsoft SQL Server 2005" = Microsoft SQL Server 2005
"Microsoft SQL Server 2008 R2" = Microsoft SQL Server 2008 R2
"Mozilla Firefox 13.0.1 (x86 en-US)" = Mozilla Firefox 13.0.1 (x86 en-US)
"Mozilla Thunderbird 13.0.1 (x86 en-US)" = Mozilla Thunderbird 13.0.1 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Multiple Image Resizer .NET" = Multiple Image Resizer .NET
"Notespad" =
"Photo Notifier and Animation Creator" = Photo Notifier and Animation Creator
"PhotoMail" = PhotoMail Maker
"Picasa 3" = Picasa 3
"PlayerGenie_is1" = Player Genie Version 2.24.333
"PROHYBRIDR" = 2007 Microsoft Office system
"PROSetDX" = Intel® PRO Network Connections 12.1.12.0
"Quick Search Box" = Google Quick Search Box
"svBuilder" = svBuilder
"SystemRequirementsLab" = System Requirements Lab
"The Blue Book" = Vu360
"uberOptions" = uberOptions 4.80.5
"UnityWebPlayer" = Unity Web Player
"VeriFace" = VeriFace
"WebCEO70_is1" = Web CEO 8.0
"Winamp" = Winamp
"WinFax" = Symantec WinFax PRO 10.0
"WinGimp-2.0_is1" = GIMP 2.6.11
"WinLiveSuite" = Windows Live Essentials
"WinRAR archiver" = WinRAR archiver
"Zoundry Raven" = Zoundry Raven
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-3979474346-4061523993-856938039-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Dropbox" = Dropbox
"Google Chrome" = Google Chrome
"GoToMeeting" = GoToMeeting 5.1.0.880
"Move Media Player" = Move Media Player
"ShockWave" = ShockWave
"ShockWave 1.1" = ShockWave 1.1
"ShockWave Map Pack" = ShockWave Map Pack
"ShockWave V0.95" = ShockWave V0.95
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 4/24/2012 12:48:07 PM | Computer Name = Bobby-PC | Source = .NET Runtime Optimization Service | ID = 1101
Description =
Error - 4/24/2012 12:49:37 PM | Computer Name = Bobby-PC | Source = .NET Runtime Optimization Service | ID = 1101
Description =
Error - 4/24/2012 5:38:32 PM | Computer Name = Bobby-PC | Source = Application Error | ID = 1000
Description = Faulting application FOXIT READER.EXE, version 5.1.4.104, time stamp
0x4f03f742, faulting module facebook_plugin.fpi_unloaded, version 0.0.0.0, time
stamp 0x4ed5d143, exception code 0xc0000005, fault offset 0x05a82978, process id
0x12b0, application start time 0x01cd223e1b12ebe0.
Error - 4/24/2012 5:38:35 PM | Computer Name = Bobby-PC | Source = Application Error | ID = 1000
Description = Faulting application FOXIT READER.EXE, version 5.1.4.104, time stamp
0x4f03f742, faulting module facebook_plugin.fpi_unloaded, version 0.0.0.0, time
stamp 0x4ed5d143, exception code 0xc0000005, fault offset 0x057e8e73, process id
0x12b0, application start time 0x01cd223e1b12ebe0.
Error - 4/25/2012 2:10:21 PM | Computer Name = Bobby-PC | Source = Brother BrLog | ID = 1001
Description = STI BrtSTI: [2012/04/25 14:10:21.887]: [00003856]: CUsbScnDev: DeviceIoControl()
failed. ErrorCode = 5
Error - 4/25/2012 2:14:00 PM | Computer Name = Bobby-PC | Source = Application Error | ID = 1000
Description = Faulting application FOXIT READER.EXE, version 5.1.4.104, time stamp
0x4f03f742, faulting module facebook_plugin.fpi_unloaded, version 0.0.0.0, time
stamp 0x4ed5d143, exception code 0xc0000005, fault offset 0x05812978, process id
0x56c, application start time 0x01cd230f29ded770.
Error - 4/25/2012 2:14:02 PM | Computer Name = Bobby-PC | Source = Application Error | ID = 1000
Description = Faulting application FOXIT READER.EXE, version 5.1.4.104, time stamp
0x4f03f742, faulting module facebook_plugin.fpi_unloaded, version 0.0.0.0, time
stamp 0x4ed5d143, exception code 0xc0000005, fault offset 0x05578e73, process id
0x56c, application start time 0x01cd230f29ded770.
Error - 4/25/2012 5:48:02 PM | Computer Name = Bobby-PC | Source = Application Error | ID = 1000
Description = Faulting application FOXIT READER.EXE, version 5.1.4.104, time stamp
0x4f03f742, faulting module facebook_plugin.fpi_unloaded, version 0.0.0.0, time
stamp 0x4ed5d143, exception code 0xc0000005, fault offset 0x05a72978, process id
0x1650, application start time 0x01cd232cf72293d0.
Error - 4/25/2012 5:48:03 PM | Computer Name = Bobby-PC | Source = Application Error | ID = 1000
Description = Faulting application FOXIT READER.EXE, version 5.1.4.104, time stamp
0x4f03f742, faulting module facebook_plugin.fpi_unloaded, version 0.0.0.0, time
stamp 0x4ed5d143, exception code 0xc0000005, fault offset 0x057d8e73, process id
0x1650, application start time 0x01cd232cf72293d0.
Error - 4/26/2012 11:20:07 AM | Computer Name = Bobby-PC | Source = Application Hang | ID = 1002
Description = The program FabCAD.exe version 24.2.107.0 stopped interacting with
Windows and was closed. To see if more information about the problem is available,
check the problem history in the Problem Reports and Solutions control panel. Process
ID: 958 Start Time: 01cd223a7c6093b0 Termination Time: 287
Error - 4/26/2012 11:26:44 AM | Computer Name = Bobby-PC | Source = Application Hang | ID = 1002
Description = The program FabCAD.exe version 24.2.107.0 stopped interacting with
Windows and was closed. To see if more information about the problem is available,
check the problem history in the Problem Reports and Solutions control panel. Process
ID: d48 Start Time: 01cd23c0136dbbd0 Termination Time: 21
[ Media Center Events ]
Error - 11/8/2009 11:03:41 PM | Computer Name = Bobby-PC | Source = Media Center Guide | ID = 0
Description = Event Info: ERROR: SqmApiWrapper.TimerRecord failed; Win32 GetLastError
returned 10000105 Process: DefaultDomain Object Name: Media Center Guide
Error - 11/8/2009 11:03:55 PM | Computer Name = Bobby-PC | Source = Media Center Guide | ID = 0
Description = Event Info: ERROR: SqmApiWrapper.TimerRecord failed; Win32 GetLastError
returned 10000105 Process: DefaultDomain Object Name: Media Center Guide
Error - 2/27/2010 7:51:32 PM | Computer Name = Bobby-PC | Source = Media Center Guide | ID = 0
Description = Event Info: ERROR: SqmApiWrapper.TimerAccumulate failed; Win32 GetLastError
returned 10000105 Process: DefaultDomain Object Name: Media Center Guide
[ OSession Events ]
Error - 12/15/2009 6:37:34 PM | Computer Name = Bobby-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6514.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 28
seconds with 0 seconds of active time. This session ended with a crash.
[ System Events ]
Error - 7/9/2012 7:51:04 PM | Computer Name = Bobby-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 7/9/2012 7:51:21 PM | Computer Name = Bobby-PC | Source = Service Control Manager | ID = 7009
Description =
Error - 7/9/2012 7:57:46 PM | Computer Name = Bobby-PC | Source = Service Control Manager | ID = 7022
Description =
Error - 7/9/2012 9:08:35 PM | Computer Name = Bobby-PC | Source = Print | ID = 23
Description = Printer PDF4U Adobe PDF Creator failed to initialize because a suitable
PDF4U Adobe PDF Creator driver could not be found. The new printer settings that
you specified have not taken effect. Install or reinstall the printer driver. You
might need to contact the vendor for an updated driver.
Error - 7/9/2012 9:08:36 PM | Computer Name = Bobby-PC | Source = Print | ID = 19
Description = The print spooler failed to share printer Brother MFC-7360N Printer
with shared resource name Brother MFC-7360N Printer. Error 2114. The printer cannot
be used by others on the network.
Error - 7/9/2012 9:08:36 PM | Computer Name = Bobby-PC | Source = Print | ID = 19
Description = The print spooler failed to share printer Brother MFC-4350 with shared
resource name Brother MFC-4350. Error 2114. The printer cannot be used by others
on the network.
Error - 7/9/2012 9:09:33 PM | Computer Name = Bobby-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 7/10/2012 6:53:13 AM | Computer Name = Bobby-PC | Source = DCOM | ID = 10010
Description =
Error - 7/10/2012 6:56:09 AM | Computer Name = Bobby-PC | Source = Print | ID = 23
Description = Printer PDF4U Adobe PDF Creator failed to initialize because a suitable
PDF4U Adobe PDF Creator driver could not be found. The new printer settings that
you specified have not taken effect. Install or reinstall the printer driver. You
might need to contact the vendor for an updated driver.
Error - 7/10/2012 6:57:02 AM | Computer Name = Bobby-PC | Source = Service Control Manager | ID = 7000
Description =
< End of report >