I have an HP Elite I-7 processor with 9 GB ram. The disk is 1TB. When I look at "computer", the usable is 880GB with 142GB free and 737GB used. Most of that is pictures. The PC stays on 24/7.
Over the last few weeks the PC has gotten very slow. I've run Spinrite - Steve Gibson with no disk errors. I've run the standard memory tests and system tests - 10 passes with no errors. PC is clean and cool enough. Good ventilation.
I've got these backups running - Carbonite to the cloud, Memeo instant backup to 4TB USB 3.0 drive but compatible with 2.0 which HP is, Acronis to the network Synology drive. As far as CPU use and memory use in task manager, every thing seems normal with normal low usage of CPU and about 3-5 GB of 9 GB of the ram being used. I've restarted numerous times and the processes that are running decrease directly after restart which is also normal.
I ran Ccleaner on the advice of a more knowledgeable friend and that did seem to speed up the system a teeny. Probably placebo effect. I hope I've been accurate and concise enough! Thanks in advance for your help.
I'm attaching the OTL.txt file from OTL.exe which I ran just now:
OTL logfile created on: 8/11/2012 1:35:16 PM - Run 5
OTL by OldTimer - Version 3.2.57.0 Folder = C:\Users\anything\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
8.99 Gb Total Physical Memory | 5.02 Gb Available Physical Memory | 55.87% Memory free
17.98 Gb Paging File | 13.77 Gb Available in Paging File | 76.60% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 880.08 Gb Total Space | 142.26 Gb Free Space | 16.16% Space Free | Partition Type: NTFS
Drive D: | 12.27 Gb Total Space | 2.17 Gb Free Space | 17.71% Space Free | Partition Type: NTFS
Drive E: | 465.76 Gb Total Space | 103.99 Gb Free Space | 22.33% Space Free | Partition Type: NTFS
Drive K: | 3726.01 Gb Total Space | 2127.96 Gb Free Space | 57.11% Space Free | Partition Type: NTFS
Drive M: | 38.09 Gb Total Space | 15.79 Gb Free Space | 41.45% Space Free | Partition Type: NTFS
Computer Name: ELITE | User Name: anything | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012/08/11 13:33:03 | 000,596,992 | ---- | M] (OldTimer Tools) -- C:\Users\anything\Desktop\OTL.exe
PRC - [2012/08/06 23:43:41 | 001,229,848 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2012/07/23 11:26:21 | 003,459,024 | ---- | M] (Acronis) -- C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
PRC - [2012/07/13 14:02:23 | 000,186,832 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler.exe
PRC - [2012/06/28 17:35:40 | 001,171,336 | ---- | M] (Acronis) -- C:\Program Files (x86)\Acronis\TrueImageHome\TimounterMonitor.exe
PRC - [2012/06/28 17:32:18 | 005,915,352 | ---- | M] (Acronis) -- C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
PRC - [2012/06/28 17:29:22 | 000,403,144 | ---- | M] (Acronis) -- C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
PRC - [2012/06/28 17:28:34 | 005,955,088 | ---- | M] (Acronis) -- C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe
PRC - [2012/06/06 22:15:36 | 003,491,264 | ---- | M] (Tonec Inc.) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe
PRC - [2012/05/28 18:00:55 | 000,296,056 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
PRC - [2012/05/24 11:39:22 | 027,112,840 | ---- | M] (Dropbox, Inc.) -- C:\Users\anything\AppData\Roaming\Dropbox\bin\Dropbox.exe
PRC - [2012/04/13 20:11:46 | 000,319,488 | ---- | M] () -- C:\Program Files (x86)\Memeo\AutoBackup\InstantBackup.exe
PRC - [2012/01/03 06:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011/12/21 23:11:26 | 003,961,464 | ---- | M] (Eye-Fi, Inc.) -- C:\Program Files (x86)\Eye-Fi\Helper\EyeFiHelper.exe
PRC - [2011/07/29 13:45:56 | 000,217,256 | ---- | M] (Visicom Media Inc. (Powered by Panda Security)) -- C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe
PRC - [2011/06/01 09:42:28 | 000,071,432 | ---- | M] (Memeo) -- C:\Program Files (x86)\Seagate\Seagate Dashboard\MemeoDashboard.exe
PRC - [2011/06/01 09:42:28 | 000,014,088 | ---- | M] (Memeo) -- C:\Program Files (x86)\Seagate\Seagate Dashboard\SeagateDashboardService.exe
PRC - [2011/06/01 09:16:54 | 002,260,992 | ---- | M] (Axentra Corporation) -- C:\Program Files (x86)\Seagate\Seagate Dashboard\HipServAgent\HipServAgent.exe
PRC - [2011/04/08 05:50:02 | 000,542,264 | ---- | M] (Google) -- C:\Program Files (x86)\Google\Google Calendar Sync\GoogleCalendarSync.exe
PRC - [2011/03/28 17:07:50 | 000,094,264 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
PRC - [2011/03/24 01:11:25 | 000,167,936 | ---- | M] (Applian Technologies, Inc.) -- C:\Program Files (x86)\Freecorder\FLVSrvc.exe
PRC - [2011/03/09 00:00:00 | 000,856,064 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe
PRC - [2011/03/09 00:00:00 | 000,495,616 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe
PRC - [2011/03/03 20:52:00 | 000,948,880 | R--- | M] (Carbonite, Inc.) -- C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteUI.exe
PRC - [2010/12/15 14:31:20 | 000,460,144 | ---- | M] () -- C:\Program Files (x86)\Flip Video\FlipShare\FlipShareService.exe
PRC - [2010/12/15 14:22:42 | 001,085,440 | ---- | M] () -- C:\Program Files (x86)\Flip Video\FlipShareServer\FlipShareServer.exe
PRC - [2010/10/12 13:56:40 | 000,979,328 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
PRC - [2010/09/30 03:06:46 | 000,169,408 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe
PRC - [2010/08/31 18:00:00 | 000,024,576 | ---- | M] (Creative Technology Ltd.) -- C:\Windows\V0610Mon.exe
PRC - [2010/07/27 02:47:12 | 000,207,872 | ---- | M] (Alcatel-Lucent) -- C:\Program Files (x86)\Common Files\Motive\McciContextHookShim.exe
PRC - [2010/07/23 13:24:48 | 000,296,808 | ---- | M] (Nuance Communications, Inc.) -- C:\Program Files (x86)\Common Files\Nuance\dgnsvc.exe
PRC - [2010/05/25 05:28:58 | 000,263,600 | ---- | M] (Tonec Inc.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
PRC - [2010/03/03 20:16:06 | 000,013,336 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
PRC - [2010/03/03 20:16:04 | 000,284,696 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
PRC - [2010/02/05 16:19:26 | 000,020,376 | ---- | M] (WebEx Communications, Inc.) -- C:\Windows\SysWOW64\atashost.exe
PRC - [2009/12/01 20:49:52 | 000,210,216 | ---- | M] (CyberLink) -- c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
PRC - [2009/10/20 14:50:34 | 000,128,296 | ---- | M] (CyberLink Corp.) -- c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe
PRC - [2009/10/09 05:45:56 | 000,169,312 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe
PRC - [2009/05/14 17:07:14 | 000,759,048 | ---- | M] (ABBYY) -- C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
PRC - [2008/11/20 10:47:28 | 000,062,768 | ---- | M] (Hewlett-Packard) -- C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
PRC - [2008/09/30 18:59:26 | 000,192,512 | ---- | M] () -- C:\Program Files (x86)\Hewlett-Packard\HP Easy Backup\HPBtnSrv.exe
========== Modules (No Company Name) ==========
MOD - [2012/08/06 23:43:40 | 000,442,392 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.75\ppgooglenaclpluginchrome.dll
MOD - [2012/08/06 23:43:39 | 012,235,800 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.75\PepperFlash\pepflashplayer.dll
MOD - [2012/08/06 23:43:37 | 003,997,720 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.75\pdf.dll
MOD - [2012/08/06 23:42:21 | 000,526,872 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.75\libglesv2.dll
MOD - [2012/08/06 23:42:20 | 000,104,984 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.75\libegl.dll
MOD - [2012/08/06 23:42:09 | 000,144,424 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.75\avutil-51.dll
MOD - [2012/08/06 23:42:08 | 000,266,792 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.75\avformat-54.dll
MOD - [2012/08/06 23:42:07 | 002,480,680 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.75\avcodec-54.dll
MOD - [2012/06/14 03:38:29 | 001,670,144 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\6c59a14a23f734093e80d6093e25302a\Microsoft.VisualBasic.ni.dll
MOD - [2012/06/14 03:35:33 | 000,212,992 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\69ca4a43ba14b66689715ad62aed70e6\System.ServiceProcess.ni.dll
MOD - [2012/06/14 03:35:26 | 011,833,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\a501b7960f6c6e2e39162b83f3303aaa\System.Web.ni.dll
MOD - [2012/06/14 03:35:01 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\7b7fbe651c6e72f12099a298654c9594\System.Windows.Forms.ni.dll
MOD - [2012/06/14 03:34:55 | 001,591,808 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6bb439b3f87736d3248ae27d43e2c0d6\System.Drawing.ni.dll
MOD - [2012/05/11 08:03:24 | 000,452,608 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\635b3aec298ad5e8c903b2323d79cc5a\IAStorUtil.ni.dll
MOD - [2012/05/11 07:27:46 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\03dee80574f4ec770b6f77ca030ded6c\System.Runtime.Remoting.ni.dll
MOD - [2012/05/11 07:27:43 | 006,611,456 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\f3814b488d9e083cbbc623e01b389f09\System.Data.ni.dll
MOD - [2012/05/11 07:27:11 | 000,025,600 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\2ec98ab0193d64e95b7d09d094deed97\Accessibility.ni.dll
MOD - [2012/05/11 07:26:58 | 003,347,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\46fce56db7685a586d3eeb7c373e3c1c\WindowsBase.ni.dll
MOD - [2012/05/11 07:26:53 | 005,452,800 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ba3d70b651454c7d49b407b93663bfed\System.Xml.ni.dll
MOD - [2012/05/11 07:26:50 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\cfa9c506bfb9254c89dace7b83bc9f9d\System.Configuration.ni.dll
MOD - [2012/05/11 07:26:49 | 007,967,232 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\ce9ff6baf9053ed2ed673d948179195c\System.ni.dll
MOD - [2012/05/11 07:26:41 | 011,492,864 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\acfc1391e45fedd2a359778ea57d914c\mscorlib.ni.dll
MOD - [2012/04/13 20:11:46 | 000,319,488 | ---- | M] () -- C:\Program Files (x86)\Memeo\AutoBackup\InstantBackup.exe
MOD - [2012/04/13 20:09:32 | 002,890,752 | ---- | M] () -- C:\Program Files (x86)\Memeo\AutoBackup\Memeo.Client.UI.dll
MOD - [2012/04/13 20:09:14 | 000,022,016 | ---- | M] () -- C:\Program Files (x86)\Memeo\AutoBackup\Memeo.Client.DriveDetection.dll
MOD - [2011/12/21 22:59:12 | 000,133,120 | ---- | M] () -- C:\Program Files (x86)\Eye-Fi\Helper\libexif.dll
MOD - [2011/12/21 22:56:16 | 000,209,408 | ---- | M] () -- C:\Program Files (x86)\Eye-Fi\Helper\libopenraw.dll
MOD - [2011/08/31 11:17:28 | 000,034,816 | ---- | M] () -- C:\Program Files (x86)\Google\Google Desktop Search\gzlib.dll
MOD - [2011/06/24 22:56:36 | 000,087,328 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2011/06/24 22:56:14 | 001,241,888 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2011/06/01 09:46:02 | 000,030,984 | ---- | M] () -- C:\Program Files (x86)\Seagate\Seagate Dashboard\Plugins\Memeo.Dashboard.SeagateSharePlusPlugin.dll
MOD - [2011/06/01 09:42:24 | 000,108,296 | ---- | M] () -- C:\Program Files (x86)\Seagate\Seagate Dashboard\Memeo.Progress.dll
MOD - [2011/06/01 09:16:54 | 000,971,776 | ---- | M] () -- C:\Program Files (x86)\Seagate\Seagate Dashboard\HipServAgent\libxml2.dll
MOD - [2011/06/01 09:16:54 | 000,241,664 | ---- | M] () -- C:\Program Files (x86)\Seagate\Seagate Dashboard\HipServAgent\libupnp.dll
MOD - [2011/03/17 00:11:16 | 004,297,568 | ---- | M] () -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
MOD - [2010/12/21 01:15:30 | 001,041,248 | ---- | M] () -- C:\Program Files (x86)\Microsoft Office\Office14\ADDINS\UmOutlookAddin.dll
MOD - [2010/11/04 18:58:05 | 002,927,616 | ---- | M] () -- C:\Windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
MOD - [2010/03/22 15:59:46 | 000,504,293 | ---- | M] () -- C:\Program Files (x86)\Memeo\AutoBackup\sqlite3.dll
MOD - [2009/12/01 20:49:50 | 000,931,112 | ---- | M] () -- c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMediaLibrary.dll
========== Win32 Services (SafeList) ==========
SRV:64bit: - [2012/03/26 18:49:56 | 000,291,696 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2012/03/26 18:49:56 | 000,012,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2011/06/09 13:01:00 | 000,555,392 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe -- (EpsonCustomerParticipation)
SRV:64bit: - [2011/03/03 20:36:16 | 006,315,664 | R--- | M] (Carbonite, Inc. (www.carbonite.com)) [Auto | Running] -- C:\Program Files\Carbonite\Carbonite Backup\CarboniteService.exe -- (CarboniteService)
SRV:64bit: - [2010/09/22 18:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:64bit: - [2009/07/13 18:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/07/13 18:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2012/08/02 17:01:15 | 000,250,056 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/07/23 11:26:21 | 003,459,024 | ---- | M] (Acronis) [Auto | Running] -- C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe -- (afcdpsrv)
SRV - [2012/07/17 09:55:27 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012/06/28 17:32:18 | 005,915,352 | ---- | M] (Acronis) [Auto | Running] -- C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe -- (syncagentsrv)
SRV - [2012/06/28 17:31:36 | 001,132,856 | ---- | M] (Acronis) [Auto | Running] -- C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe -- (AcrSch2Svc)
SRV - [2012/06/11 17:59:44 | 000,335,888 | ---- | M] (Verizon) [Auto | Running] -- C:\Program Files (x86)\Verizon\IHA_MessageCenter\Bin\Verizon_IHAMessageCenter.exe -- (IHA_MessageCenter)
SRV - [2012/01/03 06:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2011/09/09 17:10:28 | 000,086,072 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe -- (HP Support Assistant Service)
SRV - [2011/06/01 09:42:28 | 000,014,088 | ---- | M] (Memeo) [Auto | Running] -- C:\Program Files (x86)\Seagate\Seagate Dashboard\SeagateDashboardService.exe -- (SeagateDashboardService)
SRV - [2011/03/28 17:07:50 | 000,094,264 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe -- (HPDrvMntSvc.exe)
SRV - [2010/12/15 14:31:20 | 000,460,144 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Flip Video\FlipShare\FlipShareService.exe -- (FlipShare Service)
SRV - [2010/12/15 14:22:42 | 001,085,440 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Flip Video\FlipShareServer\FlipShareServer.exe -- (FlipShareServer)
SRV - [2010/09/30 03:06:46 | 000,169,408 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe -- (AdobeActiveFileMonitor9.0)
SRV - [2010/07/26 14:42:36 | 000,557,424 | ---- | M] (Citrix Online, a division of Citrix Systems, Inc.) [Disabled | Stopped] -- C:\Program Files (x86)\Citrix\GoToMyPC\g2svc.exe -- (GoToMyPC)
SRV - [2010/07/23 13:24:48 | 000,296,808 | ---- | M] (Nuance Communications, Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Nuance\dgnsvc.exe -- (DragonSvc)
SRV - [2010/06/02 04:11:24 | 000,380,928 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Synology Data Replicator 3\SynoDrServicex64.exe -- (SynoDrService)
SRV - [2010/04/13 12:33:43 | 000,867,080 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2010/03/22 15:51:32 | 000,025,824 | ---- | M] (Memeo) [Auto | Running] -- C:\Program Files (x86)\Memeo\AutoBackup\MemeoBackgroundService.exe -- (MemeoBackgroundService)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/03/03 20:16:06 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
SRV - [2010/02/05 16:19:26 | 000,020,376 | ---- | M] (WebEx Communications, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\atashost.exe -- (atashost)
SRV - [2009/10/09 05:45:56 | 000,169,312 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe -- (AdobeActiveFileMonitor8.0)
SRV - [2009/06/10 14:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009/05/22 11:02:20 | 000,250,616 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe -- (GameConsoleService)
SRV - [2009/05/14 17:07:14 | 000,759,048 | ---- | M] (ABBYY) [Auto | Running] -- C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe -- (ABBYY.Licensing.FineReader.Sprint.9.0)
SRV - [2008/10/09 07:07:56 | 000,107,912 | ---- | M] () [Disabled | Stopped] -- C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe -- (IJPLMSVC)
SRV - [2008/09/30 18:59:26 | 000,192,512 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Easy Backup\HPBtnSrv.exe -- (HPBtnSrv)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2012/07/23 11:26:27 | 000,367,200 | ---- | M] (Acronis) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\afcdp.sys -- (afcdp)
DRV:64bit: - [2012/07/23 11:26:16 | 001,294,432 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tdrpman.sys -- (tdrpman)
DRV:64bit: - [2012/07/23 11:26:08 | 000,994,912 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\timntr.sys -- (timounter)
DRV:64bit: - [2012/07/23 11:26:01 | 000,211,552 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\vididr.sys -- (vididr)
DRV:64bit: - [2012/07/23 11:25:49 | 000,146,528 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\vsflt67.sys -- (vidsflt67)
DRV:64bit: - [2012/07/23 11:25:47 | 000,320,096 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\snapman.sys -- (snapman)
DRV:64bit: - [2012/07/23 11:25:45 | 000,137,312 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\fltsrv.sys -- (fltsrv)
DRV:64bit: - [2012/04/23 04:26:26 | 000,154,272 | ---- | M] (Tonec Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\idmwfp.sys -- (IDMWFP)
DRV:64bit: - [2012/03/20 20:44:12 | 000,098,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2012/02/29 23:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012/02/15 11:01:50 | 000,052,736 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2011/08/01 16:59:06 | 000,045,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\point64.sys -- (Point64)
DRV:64bit: - [2011/05/18 09:08:32 | 000,047,616 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\dc3d.sys -- (dc3d)
DRV:64bit: - [2011/04/04 15:55:54 | 000,021,504 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\motccgp.sys -- (motccgp)
DRV:64bit: - [2011/03/31 15:53:40 | 000,030,208 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\motmodem.sys -- (motmodem)
DRV:64bit: - [2011/03/10 23:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/10 23:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010/11/29 07:31:18 | 001,579,520 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:64bit: - [2010/11/25 04:27:42 | 000,120,408 | ---- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\jraid.sys -- (JRAID)
DRV:64bit: - [2010/11/20 06:34:02 | 000,360,832 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcvmm.sys -- (vpcvmm)
DRV:64bit: - [2010/11/20 06:34:02 | 000,194,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpchbus.sys -- (vpcbus)
DRV:64bit: - [2010/11/20 06:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 04:35:32 | 000,095,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpcusb.sys -- (vpcusb)
DRV:64bit: - [2010/11/20 04:35:20 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcnfltr.sys -- (vpcnfltr)
DRV:64bit: - [2010/11/20 04:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/09/23 00:36:48 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2010/09/08 18:01:00 | 000,322,912 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\V0610Vid.sys -- (V0610Vid)
DRV:64bit: - [2010/07/27 02:47:46 | 000,040,960 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Motive\MRESP50a64.sys -- (MRESP50a64)
DRV:64bit: - [2010/07/27 02:47:36 | 000,043,008 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\Motive\MREMP50a64.sys -- (MREMP50a64)
DRV:64bit: - [2010/04/01 15:44:06 | 000,026,624 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Motousbnet.sys -- (Motousbnet)
DRV:64bit: - [2010/03/19 03:00:00 | 000,055,856 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2009/08/21 12:33:42 | 000,172,704 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CtClsFlt.sys -- (CtClsFlt)
DRV:64bit: - [2009/07/13 18:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 18:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 18:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/07/13 17:39:20 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV:64bit: - [2009/07/13 17:35:32 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\serscan.sys -- (StillCam)
DRV:64bit: - [2009/07/13 17:09:50 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usb8023x.sys -- (usb_rndisx)
DRV:64bit: - [2009/07/10 14:06:50 | 000,031,744 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\motoandroid.sys -- (motandroidusb)
DRV:64bit: - [2009/06/12 11:19:58 | 000,287,960 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\e1y62x64.sys -- (e1yexpress)
DRV:64bit: - [2009/06/10 13:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 13:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 13:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 13:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/06/04 11:54:36 | 000,408,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2009/05/18 15:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2009/01/29 18:18:12 | 000,009,216 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\motccgpfl.sys -- (motccgpfl)
DRV:64bit: - [2009/01/29 18:11:38 | 000,006,144 | ---- | M] (Motorola Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\motfilt.sys -- (BTCFilterService)
DRV:64bit: - [2007/11/02 16:52:02 | 000,008,576 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\motswch.sys -- (MotoSwitchService)
DRV:64bit: - [2007/02/03 11:30:58 | 000,058,528 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LVUSBS64.sys -- (LVUSBS64)
DRV:64bit: - [2007/02/03 11:25:56 | 000,955,680 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\CamDrL64.sys -- (CamDrL64)
DRV - [2011/03/24 10:22:52 | 000,013,312 | ---- | M] () [Kernel | System | Stopped] -- C:\Windows\SysWOW64\drivers\vdmzntm0.sys -- (vdmzntm0)
DRV - [2011/03/24 10:22:47 | 000,011,264 | ---- | M] () [Kernel | System | Stopped] -- C:\Windows\SysWOW64\drivers\uzmzntm0.sys -- (uzmzntm0)
DRV - [2010/07/27 02:47:30 | 000,020,096 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Motive\MRESP50.sys -- (MRESP50)
DRV - [2010/07/27 02:47:10 | 000,021,248 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Motive\MREMP50.sys -- (MREMP50)
DRV - [2009/07/13 18:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.h...avilion&pf=cndt
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE:64bit: - HKLM\..\SearchScopes\{0068AB8E-D323-4537-8D8D-80AD5CD94630}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7
IE:64bit: - HKLM\..\SearchScopes\{D75DEEB4-956C-4EF0-91AA-B96AAD6A031C}: "URL" = http://www.ask.com/w...}&l=dis&o=ushpd
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKLM\..\SearchScopes\{0068AB8E-D323-4537-8D8D-80AD5CD94630}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7
IE - HKLM\..\SearchScopes\{D75DEEB4-956C-4EF0-91AA-B96AAD6A031C}: "URL" = http://www.ask.com/w...}&l=dis&o=ushpd
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msn.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = www.bing.com [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://www.google.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKCU\..\URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - No CLSID value found
IE - HKCU\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKCU\..\SearchScopes\{0068AB8E-D323-4537-8D8D-80AD5CD94630}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7
IE - HKCU\..\SearchScopes\{70D46D94-BF1E-45ED-B567-48701376298E}: "URL" = http://127.0.0.1:466...q={searchTerms}
IE - HKCU\..\SearchScopes\{7C929119-562B-4D1D-A388-016A93F690B0}: "URL" = http://www.google.co...&rlz=1I7GGLD_en
IE - HKCU\..\SearchScopes\{D75DEEB4-956C-4EF0-91AA-B96AAD6A031C}: "URL" = http://www.ask.com/w...}&l=dis&o=ushpd
IE - HKCU\..\SearchScopes\{FB48B168-84BB-CCE3-D32D-94102F37C5B0}: "URL" = http://www.bing.com/...eferrer:source}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.search.selectedEngine: "Bing"
FF - prefs.js..browser.startup.homepage: "http://www.msn.com/?..._date=20111110"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: [email protected]:7.2.7
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:14.0.2
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_3_300_270.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/VirtualEarth3D,version=4.0: C:\Program Files (x86)\Virtual Earth 3D\ [2010/01/21 19:22:49 | 000,000,000 | ---D | M]
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_270.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@garmin.com/GpsControl: C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/VirtualEarth3D,version=4.0: C:\Program Files (x86)\Virtual Earth 3D\ [2010/01/21 19:22:49 | 000,000,000 | ---D | M]
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Motive.com/NpMotive,version=1.0: C:\Program Files (x86)\Common Files\Motive\npMotive.dll (Alcatel-Lucent)
FF - HKLM\Software\MozillaPlugins\@pack.google.com/Google Updater;version=14: C:\Program Files (x86)\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll (Google)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=15.0.4.53: c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=15.0.4.53: c:\program files (x86)\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=15.0.4.53: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=15.0.4.53: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpplugin;version=15.0.4.53: c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\[email protected]/YahooActiveXPluginBridge;version=1.0.0.1: C:\Program Files (x86)\Yahoo!\Common\npyaxmpb.dll File not found
FF - HKCU\Software\MozillaPlugins\@yahoo.com/BrowserPlus,version=2.9.8: C:\Users\anything\AppData\Local\Yahoo!\BrowserPlus\2.9.8\Plugins\npybrowserplus_2.9.8.dll (Yahoo! Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{3112ca9c-de6d-4884-a869-9855de68056c}: C:\ProgramData\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c} [2010/02/22 19:18:30 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{97E22097-9A2F-45b1-8DAF-36AD648C7EF4}: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2012/05/28 18:01:21 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/07/17 09:55:29 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012/06/03 04:40:31 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\[email protected]: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[email protected]: C:\Users\anything\AppData\Roaming\IDM\idmmzcc5 [2012/07/11 05:29:11 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\[email protected]: C:\Users\anything\AppData\Roaming\IDM\idmmzcc5 [2012/07/11 05:29:11 | 000,000,000 | ---D | M]
[2010/03/07 13:36:18 | 000,000,000 | ---D | M] (No name found) -- C:\Users\anything\AppData\Roaming\mozilla\Extensions
[2012/07/17 09:55:32 | 000,000,000 | ---D | M] (No name found) -- C:\Users\anything\AppData\Roaming\mozilla\Firefox\Profiles\e574yg1b.default\extensions
[2011/04/14 12:21:32 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Users\anything\AppData\Roaming\mozilla\Firefox\Profiles\e574yg1b.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2011/11/10 08:31:35 | 000,000,000 | ---D | M] (Complitly - Speed up your search with your personal search suggestions tool) -- C:\Users\anything\AppData\Roaming\mozilla\Firefox\Profiles\e574yg1b.default\extensions\{33e0daa6-3af3-d8b5-6752-10e949c61516}
[2012/07/17 09:55:32 | 000,000,000 | ---D | M] (ShopToWin20) -- C:\Users\anything\AppData\Roaming\mozilla\Firefox\Profiles\e574yg1b.default\extensions\{a018b213-6b46-4791-9298-519020db5737}
[2011/12/15 17:47:12 | 000,000,000 | ---D | M] (Yontoo Layers) -- C:\Users\anything\AppData\Roaming\mozilla\Firefox\Profiles\e574yg1b.default\extensions\[email protected]
[2012/04/13 05:48:43 | 000,000,000 | ---D | M] (We-Care Reminder) -- C:\Users\anything\AppData\Roaming\mozilla\Firefox\Profiles\e574yg1b.default\extensions\wecarereminder@bryan
[2011/11/10 08:31:27 | 000,001,945 | ---- | M] () -- C:\Users\anything\AppData\Roaming\Mozilla\Firefox\Profiles\e574yg1b.default\searchplugins\bing-zugo.xml
[2012/04/22 10:14:52 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2012/04/22 10:14:53 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2012/07/11 05:29:11 | 000,000,000 | ---D | M] (IDM CC) -- C:\USERS\ANYTHING\APPDATA\ROAMING\IDM\IDMMZCC5
[2012/07/17 09:55:29 | 000,136,672 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2012/03/11 11:13:39 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2012/05/28 18:01:07 | 000,129,144 | ---- | M] (RealPlayer) -- C:\Program Files (x86)\mozilla firefox\plugins\nprpplugin.dll
[2012/03/07 06:57:19 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2012/03/07 06:57:19 | 000,002,040 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml
========== Chrome ==========
CHR - homepage: http://www.igoogle.com/
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms},
CHR - homepage: http://www.igoogle.com/
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.75\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Disabled) = C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.75\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.75\gcswf32.dll
CHR - plugin: Shockwave Flash (Disabled) = C:\Users\anything\AppData\Local\Google\Chrome\User Data\PepperFlash\11.1.31.203\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_235.dll
CHR - plugin: Skype Toolbars (Enabled) = C:\Users\anything\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.9.0.9216_0\npSkypeChromePlugin.dll
CHR - plugin: HP Product Detection Plugin for Mozilla (Enabled) = C:\Users\anything\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnhbepgnjnaoahohppnffanmkjkjoglp\1.0.15.0_0\plugins/npProductDetectPlugin.dll
CHR - plugin: HP Active Check Plugin (Enabled) = C:\Users\anything\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnhbepgnjnaoahohppnffanmkjkjoglp\1.0.15.0_0\plugins/npAclmPlugin.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.310.5 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll
CHR - plugin: Java™ Platform SE 6 U31 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: RealPlayer™ G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\nppl3260.dll
CHR - plugin: RealPlayer Version Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\nprpjplug.dll
CHR - plugin: RealPlayer™ HTML5VideoShim Plug-In (32-bit) (Enabled) = C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: RealJukebox NS Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\nprjplug.dll
CHR - plugin: ActiveTouch General Plugin Container (Enabled) = C:\Users\anything\AppData\Roaming\Mozilla\plugins\npatgpc.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL
CHR - plugin: Motive Plugin (Enabled) = C:\Program Files (x86)\Common Files\Motive\npMotive.dll
CHR - plugin: Garmin Communicator Plug-In (Enabled) = C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Google Updater (Enabled) = C:\Program Files (x86)\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll
CHR - plugin: Picasa (Enabled) = C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: RealNetworks™ Chrome Background Extension Plug-In (32-bit) (Enabled) = C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll
CHR - plugin: BrowserPlus (from Yahoo!) v2.9.8 (Enabled) = C:\Users\anything\AppData\Local\Yahoo!\BrowserPlus\2.9.8\Plugins\npybrowserplus_2.9.8.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Windows\system32\Adobe\Director\np32dsw.dll
CHR - Extension: Angry Birds = C:\Users\anything\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj\1.5.0.7_0\
CHR - Extension: YouTube = C:\Users\anything\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Add to Amazon Wish List = C:\Users\anything\AppData\Local\Google\Chrome\User Data\Default\Extensions\ciagpekplgpbepdgggflgmahnjgiaced\1.0.0.9_0\
CHR - Extension: Google Search = C:\Users\anything\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: RealPlayer HTML5Video Downloader Extension = C:\Users\anything\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk\1.5_0\
CHR - Extension: Skype Click to Call = C:\Users\anything\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.9.0.9216_0\
CHR - Extension: HP Product Detection Plugin = C:\Users\anything\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnhbepgnjnaoahohppnffanmkjkjoglp\1.0.15.0_0\
CHR - Extension: Advanced Periodic Table = C:\Users\anything\AppData\Local\Google\Chrome\User Data\Default\Extensions\obpkghbakijeifcoimhhechlmcbdmmli\1.7_0\
CHR - Extension: Gmail = C:\Users\anything\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
O1 HOSTS File: ([2011/03/24 11:09:34 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (IDM integration (IDMIEHlprObj Class)) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll (Internet Download Manager, Tonec Inc.)
O2:64bit: - BHO: (Complitly) - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Users\anything\AppData\Roaming\Complitly\64\Complitly64.dll (SimplyGen)
O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2:64bit: - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (IDM integration (IDMIEHlprObj Class)) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll (Internet Download Manager, Tonec Inc.)
O2 - BHO: (Complitly) - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Users\anything\AppData\Roaming\Complitly\Complitly.dll (SimplyGen)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (Freecorder Toolbar) - {70dd86e8-b5bc-4e4a-9d5c-b6234c24323c} - C:\Program Files (x86)\freecordertoolbar\vmntemplateX.dll ()
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (hpBHO Class) - {ABD3B5E1-B268-407B-A150-2641DAB8D898} - C:\Program Files (x86)\Common Files\Homepage Protection\HomepageProtection.dll (AOL Products)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Microsoft Live Search Toolbar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files (x86)\MSN\Toolbar\3.0.0560.0\msneshellx.dll (Microsoft Corp.)
O2 - BHO: (WeCareReminder Class) - {D824F0DE-3D60-4F57-9EB1-66033ECD8ABB} - C:\ProgramData\WeCareReminder\IEHelperv2.5.0.dll (We-Care.com)
O2 - BHO: (Yontoo Layers) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo Layers Runtime\YontooIEClient.dll (Yontoo LLC)
O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (Microsoft Live Search Toolbar) - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files (x86)\MSN\Toolbar\3.0.0560.0\msneshellx.dll (Microsoft Corp.)
O3 - HKLM\..\Toolbar: (Freecorder Toolbar) - {70dd86e8-b5bc-4e4a-9d5c-b6234c24323c} - C:\Program Files (x86)\freecordertoolbar\vmntemplateX.dll ()
O3:64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O4:64bit: - HKLM..\Run: [Acronis Scheduler2 Service] C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (Acronis)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [ATT-SST_McciTrayApp] C:\Program Files\ATT-SST\McciTrayApp.exe (Alcatel-Lucent)
O4:64bit: - HKLM..\Run: [IntelliPoint] c:\Program Files\Microsoft IntelliPoint\ipoint.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [AcronisTimounterMonitor] C:\Program Files (x86)\Acronis\TrueImageHome\TimounterMonitor.exe (Acronis)
O4 - HKLM..\Run: [Anti-phishing Domain Advisor] C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe (Visicom Media Inc. (Powered by Panda Security))
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [Carbonite Backup] C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteUI.exe (Carbonite, Inc.)
O4 - HKLM..\Run: [EEventManager] C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION)
O4 - HKLM..\Run: [Freecorder FLV Service] C:\Program Files (x86)\Freecorder\FLVSrvc.exe (Applian Technologies, Inc.)
O4 - HKLM..\Run: [FUFAXRCV] C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe (SEIKO EPSON CORPORATION)
O4 - HKLM..\Run: [FUFAXSTM] C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe (SEIKO EPSON CORPORATION)
O4 - HKLM..\Run: [hpsysdrv] c:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe (Hewlett-Packard)
O4 - HKLM..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe (Intel Corporation)
O4 - HKLM..\Run: [LTCM Client] C:\Program Files (x86)\LTCM Client\ltcmClient.exe (Leader Technologies Inc.)
O4 - HKLM..\Run: [Memeo Instant Backup] C:\Program Files (x86)\Memeo\AutoBackup\MemeoLauncher2.exe (Memeo Inc.)
O4 - HKLM..\Run: [Seagate Dashboard] C:\Program Files (x86)\Seagate\Seagate Dashboard\MemeoLauncher.exe ()
O4 - HKLM..\Run: [TkBellExe] C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [TrueImageMonitor.exe] C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis)
O4 - HKLM..\Run: [UpdatePRCShortCut] C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [V0610Mon.exe] C:\Windows\V0610Mon.exe (Creative Technology Ltd.)
O4 - HKCU..\Run: [E6CFA7A82BF59BA52DCECD7046EF4487B1BB74E0._service_run] C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
O4 - HKCU..\Run: [EPLTarget\P0000000000000000] C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIH3A.EXE /EPT "EPLTarget\P0000000000000000" /M "WP-4530 Series" /EF "HKCU" File not found
O4 - HKCU..\Run: [Eye-Fi] C:\Program Files (x86)\Eye-Fi\Helper\EyeFiHelper.exe (Eye-Fi, Inc.)
O4 - HKCU..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe (Tonec Inc.)
O4 - Startup: C:\Users\anything\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\anything\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Main present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 File not found
O8:64bit: - Extra context menu item: Download all links with IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm ()
O8:64bit: - Extra context menu item: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm ()
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\SysWow64\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: Download all links with IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm ()
O8 - Extra context menu item: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm ()
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O15:64bit: - ..Trusted Domains: localhost ([]http in Local intranet)
O15 - HKCU\..Trusted Domains: boats.com ([www] https in Trusted sites)
O15 - HKCU\..Trusted Domains: localhost ([]http in Local intranet)
O15 - HKCU\..Trusted Ranges: GD ([http] in Local intranet)
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.1.0)
O16:64bit: - DPF: {CAFEEFAC-0017-0000-0001-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.7.0_01)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Reg Error: Key error.)
O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} C:\Program Files (x86)\Yahoo!\Common\Yinsthelper.dll (Installation Support)
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} http://dlm.tools.aka...vex-2.2.5.0.cab (DLM Control)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset...lineScanner.cab (OnlineScanner Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {BC0AE9E6-E549-4554-A222-EA083A894683} http://a03-b03.mypic...r/x/Upld_47.CAB (QuickUpload)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} http://ccfiles.creat...15111/CTPID.cab (Creative Software AutoUpdate Support Package)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{53B4974C-A469-4FD2-9855-FA7E8561B5AC}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D0929FD7-D2D5-4BE3-9A7A-53F8070C4EED}: DhcpNameServer = 192.168.1.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - AppInit_DLLs: (C:\PROGRA~2\Google\GOOGLE~1\GoogleDesktopNetwork3.dll) - C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktopNetwork3.dll (Google)
O20 - AppInit_DLLs: (C:\PROGRA~2\Google\GOOGLE~1\GO36F4~1.DLL) - C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktopNetwork3.dll (Google)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O28:64bit: - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - No CLSID value found.
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/10 14:42:20 | 000,000,024 | ---- | M] () - E:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2010/02/14 21:53:50 | 000,000,027 | ---- | M] () - K:\Autorun.inf -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2012/08/11 13:33:02 | 000,596,992 | ---- | C] (OldTimer Tools) -- C:\Users\anything\Desktop\OTL.exe
[2012/08/04 11:08:05 | 009,673,088 | ---- | C] (Memeo) -- C:\Users\anything\Desktop\Memeo Instant Backup.exe
[2012/08/01 09:14:23 | 003,907,920 | ---- | C] (Piriform Ltd) -- C:\Users\anything\Desktop\ccsetup321.exe
[2012/07/23 11:26:25 | 000,000,000 | ---D | C] -- C:\Users\anything\AppData\Roaming\0A81AE1A-4638-4281-B85F-696C74253B3C
[2012/07/14 11:45:51 | 000,000,000 | ---D | C] -- C:\ProgramData\MemeoCommon
[2012/07/14 11:25:16 | 000,000,000 | ---D | C] -- C:\Users\anything\AppData\Roaming\Memeo
[2012/07/14 11:25:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Memeo
[2012/07/14 11:25:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Memeo
[2012/07/14 11:24:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Memeo
[2012/07/14 11:15:53 | 000,000,000 | ---D | C] -- C:\Users\anything\AppData\Roaming\Seagate
[2012/07/14 11:15:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seagate Dashboard
[2010/06/07 10:46:54 | 007,046,096 | ---- | C] (Citrix Online, a division of Citrix Systems, Inc.) -- C:\Users\anything\gosetup.exe
[2010/01/19 23:29:08 | 000,726,008 | ---- | C] (Citrix Online, a division of Citrix Systems, Inc.) -- C:\Users\anything\gotomypc_437.exe
[2010/01/14 07:02:20 | 000,601,408 | ---- | C] (Microsoft Corporation) -- C:\Users\anything\officesas.exe
[2010/01/14 07:01:48 | 001,618,320 | ---- | C] (Microsoft Corporation) -- C:\Users\anything\X16-19318_6BGMG-WVTGB-4JBWK-VP66D-3D7F2.exe
[2010/01/13 11:31:00 | 000,133,992 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\xmlparse_tok.dll
[2010/01/13 11:31:00 | 000,107,880 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\xmlparse.dll
[2010/01/13 11:31:00 | 000,031,080 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\xsell.dll
[2010/01/13 11:30:58 | 002,832,232 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qwutil.dll
[2010/01/13 11:30:58 | 002,778,984 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\ofxsdk_qw.dll
[2010/01/13 11:30:58 | 002,602,856 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qwonline.dll
[2010/01/13 11:30:58 | 001,491,304 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\online.dll
[2010/01/13 11:30:58 | 001,259,880 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qaccess.dll
[2010/01/13 11:30:58 | 001,163,112 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qreports.dll
[2010/01/13 11:30:58 | 000,879,464 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qvault.dll
[2010/01/13 11:30:58 | 000,810,344 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qwwin.dll
[2010/01/13 11:30:58 | 000,631,656 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qdb.dll
[2010/01/13 11:30:58 | 000,380,264 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qcomutil.dll
[2010/01/13 11:30:58 | 000,330,088 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qtax.dll
[2010/01/13 11:30:58 | 000,321,384 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qwpr.dll
[2010/01/13 11:30:58 | 000,275,304 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\lbtmngr.dll
[2010/01/13 11:30:58 | 000,229,224 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qwapp.dll
[2010/01/13 11:30:58 | 000,148,840 | ---- | C] (Connected Corporation) -- C:\Program Files (x86)\olbservice.dll
[2010/01/13 11:30:58 | 000,136,040 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qrep.dll
[2010/01/13 11:30:58 | 000,133,992 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qwxmlparse_tok.dll
[2010/01/13 11:30:58 | 000,132,968 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qsac.dll
[2010/01/13 11:30:58 | 000,127,848 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\Qsetup.dll
[2010/01/13 11:30:58 | 000,117,608 | ---- | C] (Microsoft Corporation) -- C:\Program Files (x86)\mvcl14n.dll
[2010/01/13 11:30:58 | 000,114,024 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\QCONNECT.DLL
[2010/01/13 11:30:58 | 000,111,976 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qwinet.dll
[2010/01/13 11:30:58 | 000,107,880 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qwxmlparse.dll
[2010/01/13 11:30:58 | 000,092,008 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qwsnap.dll
[2010/01/13 11:30:58 | 000,089,448 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qindex.dll
[2010/01/13 11:30:58 | 000,082,280 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\QShowHelp.dll
[2010/01/13 11:30:58 | 000,079,208 | ---- | C] (Microsoft Corporation) -- C:\Program Files (x86)\mvmc14n.dll
[2010/01/13 11:30:58 | 000,078,696 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qwinver.dll
[2010/01/13 11:30:58 | 000,077,160 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\graphs.dll
[2010/01/13 11:30:58 | 000,074,088 | ---- | C] (Microsoft Corporation) -- C:\Program Files (x86)\mvix14n.dll
[2010/01/13 11:30:58 | 000,071,528 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qdapp.dll
[2010/01/13 11:30:58 | 000,070,504 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qwcntr.dll
[2010/01/13 11:30:58 | 000,061,800 | ---- | C] (Microsoft Corporation) -- C:\Program Files (x86)\mvfs14n.dll
[2010/01/13 11:30:58 | 000,056,680 | ---- | C] (Microsoft Corporation) -- C:\Program Files (x86)\mvsr14n.dll
[2010/01/13 11:30:58 | 000,056,168 | ---- | C] (Microsoft Corporation) -- C:\Program Files (x86)\mvtl14n.dll
[2010/01/13 11:30:58 | 000,053,608 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\dllapps_savgol.dll
[2010/01/13 11:30:58 | 000,049,000 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\QWVER.DLL
[2010/01/13 11:30:58 | 000,042,856 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\onlncall.dll
[2010/01/13 11:30:58 | 000,038,248 | ---- | C] (Microsoft Corporation) -- C:\Program Files (x86)\mvmg14n.dll
[2010/01/13 11:30:58 | 000,031,080 | ---- | C] (Microsoft Corporation) -- C:\Program Files (x86)\mvbk14n.dll
[2010/01/13 11:30:58 | 000,027,496 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qsapi_eng.dll
[2010/01/13 11:30:58 | 000,026,984 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qdappui.dll
[2010/01/13 11:30:58 | 000,026,984 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\gdipapi.dll
[2010/01/13 11:30:58 | 000,025,448 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qsapi.dll
[2010/01/13 11:30:58 | 000,015,720 | ---- | C] (Microsoft Corporation) -- C:\Program Files (x86)\mvut14n.dll
[2010/01/13 11:30:58 | 000,013,672 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qwsync.dll
[2010/01/13 11:30:56 | 000,166,248 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\cashflow.dll
[2010/01/13 11:30:56 | 000,115,048 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\dllapps_frcast.dll
[2010/01/13 11:30:56 | 000,107,368 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\dllapps_dbtred.dll
[2010/01/13 11:30:56 | 000,105,832 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\dllapps_plan.dll
[2010/01/13 11:30:56 | 000,066,920 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\atwork_xprint.dll
[2010/01/13 11:30:56 | 000,063,336 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\dllapps_dedfnd.dll
[2010/01/13 11:30:56 | 000,038,248 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\bgt_pnf.dll
[2010/01/13 11:30:56 | 000,026,984 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\calnote.dll
[2010/01/13 11:30:56 | 000,016,744 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\custprof.dll
[2010/01/13 11:30:38 | 000,433,968 | ---- | C] (Intuit Inc. ) -- C:\Program Files (x86)\EmergencyRecordsOrganizer.exe
[2010/01/13 11:30:36 | 000,861,424 | ---- | C] (Intuit Inc. ) -- C:\Program Files (x86)\QuickenHomeInventory.exe
[2010/01/13 11:30:00 | 000,048,488 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\InetTools.dll
[2010/01/13 11:29:02 | 000,538,472 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\UpdateContent.dll
[2010/01/13 11:29:00 | 000,046,440 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\BindContent.exe
[2010/01/13 11:28:58 | 000,057,192 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\RestartExe.exe
[2010/01/13 11:28:56 | 000,312,680 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\SendError.dll
[2010/01/13 11:28:54 | 000,032,104 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qwutilnet.dll
[2010/01/13 11:28:50 | 000,359,784 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qwplan.dll
[2010/01/13 11:28:48 | 000,129,896 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qwonlineFeatures.dll
[2010/01/13 11:28:44 | 000,076,136 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qwipa.dll
[2010/01/13 11:28:18 | 010,145,128 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qwmain.dll
[2010/01/13 11:28:16 | 000,319,848 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qw.exe
[2010/01/13 11:28:08 | 000,103,272 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qnet.dll
[2010/01/13 11:28:02 | 000,114,024 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\qcon32.dll
[2010/01/13 11:28:00 | 000,680,808 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\decapi.dll
[2010/01/13 11:27:54 | 000,173,416 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\xport.dll
[2010/01/13 11:27:52 | 000,185,192 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\sport.dll
[2010/01/13 11:27:48 | 000,156,008 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\MoneyFileReader.dll
[2010/01/13 11:27:46 | 000,142,696 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\MoneyFileConverter.dll
[2010/01/13 11:27:44 | 000,063,336 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\lbt_ux.dll
[2010/01/13 11:27:44 | 000,060,264 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\txstuff.dll
[2010/01/13 11:27:42 | 000,315,752 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\lbt_webrequest.dll
[2010/01/13 11:27:40 | 000,071,528 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\lbt_qupddir.dll
[2010/01/13 11:27:40 | 000,066,920 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\lbt_rte.dll
[2010/01/13 11:27:38 | 000,080,744 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\lbt_qplus.dll
[2010/01/13 11:27:38 | 000,068,456 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\lbt_pvsync.dll
[2010/01/13 11:27:36 | 000,063,848 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\lbt_decompression.dll
[2010/01/13 11:27:36 | 000,041,320 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\lbt_excite.dll
[2010/01/13 11:27:34 | 000,357,736 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\lbt_customerCentral.dll
[2010/01/13 11:27:34 | 000,064,360 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\lbt_bullseye.dll
[2010/01/13 11:27:32 | 000,061,800 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\lbt_Auto1Way.dll
[2010/01/13 11:27:32 | 000,028,520 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\lbt.dll
[2010/01/13 11:27:30 | 000,129,896 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\QCustomAction.dll
[2010/01/13 11:27:20 | 000,023,912 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\dellid.dll
[2010/01/13 11:27:18 | 000,156,008 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\cashgen.dll
[2010/01/13 11:27:18 | 000,039,784 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\convert_stub.dll
[2010/01/13 11:27:16 | 000,034,152 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\CalendarSync.dll
[2010/01/13 11:27:14 | 000,116,584 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\billmind_qwrmnd.dll
[2010/01/13 11:27:12 | 000,047,464 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\billmind_alrtpkg.dll
[2010/01/13 11:27:12 | 000,026,472 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\billmind.exe
[2010/01/13 11:27:10 | 000,078,184 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\bgt.dll
[2010/01/13 11:27:08 | 000,077,672 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\bagent.exe
[2010/01/13 11:27:06 | 000,354,152 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\alert.dll
[2010/01/13 11:27:04 | 000,038,760 | ---- | C] (Intuit Inc.) -- C:\Program Files (x86)\printenv.exe
[2010/01/13 11:26:52 | 001,035,624 | ---- | C] (Microsoft Corporation) -- C:\Program Files (x86)\dbghelp.dll
[2010/01/13 11:26:50 | 000,071,016 | ---- | C] (Intuit) -- C:\Program Files (x86)\techhelp.exe
[1 C:\Users\anything\Desktop\*.tmp files -> C:\Users\anything\Desktop\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012/08/11 13:33:03 | 000,596,992 | ---- | M] (OldTimer Tools) -- C:\Users\anything\Desktop\OTL.exe
[2012/08/11 13:31:16 | 000,025,920 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/08/11 13:31:16 | 000,025,920 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/08/11 13:10:21 | 000,065,536 | ---- | M] () -- C:\Windows\SysNative\Ikeext.etl
[2012/08/11 13:09:43 | 000,000,898 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/08/11 13:08:18 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/08/11 13:07:33 | 2945,835,007 | -HS- | M] () -- C:\hiberfil.sys
[2012/08/09 18:07:00 | 000,000,902 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/08/09 18:01:04 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/08/09 16:27:14 | 000,003,288 | ---- | M] () -- C:\bootsqm.dat
[2012/08/09 12:54:00 | 000,000,880 | ---- | M] () -- C:\Windows\tasks\Google Software Updater.job
[2012/08/07 07:10:45 | 000,000,456 | ---- | M] () -- C:\Windows\tasks\PCDRScheduledMaintenance.job
[2012/08/04 11:08:36 | 009,673,088 | ---- | M] (Memeo) -- C:\Users\anything\Desktop\Memeo Instant Backup.exe
[2012/08/04 11:07:01 | 005,686,344 | ---- | M] () -- C:\Users\anything\Desktop\autosync.exe
[2012/08/04 08:14:35 | 000,733,948 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012/08/04 08:14:35 | 000,630,806 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012/08/04 08:14:35 | 000,109,012 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012/08/04 07:40:26 | 000,003,031 | ---- | M] () -- C:\Users\anything\Desktop\GoToMyPC - home.lnk
[2012/08/04 07:40:26 | 000,002,587 | ---- | M] () -- C:\Users\anything\Desktop\FLV Player - Shortcut.lnk
[2012/08/04 07:40:26 | 000,001,848 | ---- | M] () -- C:\Users\anything\Desktop\BookDB2.lnk
[2012/08/04 07:40:26 | 000,001,834 | ---- | M] () -- C:\Users\anything\Desktop\Google Earth - Tanaya Lodge.kmz - Shortcut.lnk
[2012/08/04 07:40:24 | 000,002,826 | ---- | M] () -- C:\Users\anything\Desktop\FiOS Information.lnk
[2012/08/04 07:40:24 | 000,001,756 | ---- | M] () -- C:\Users\anything\Desktop\ERUNT.lnk
[2012/08/04 07:40:13 | 000,084,265 | ---- | M] () -- C:\Users\anything\Desktop\Capture.PNG
[2012/08/04 06:27:20 | 000,007,621 | ---- | M] () -- C:\Users\anything\AppData\Local\Resmon.ResmonCfg
[2012/08/01 14:16:09 | 000,000,344 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForanything.job
[2012/08/01 09:15:17 | 000,000,855 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2012/08/01 09:14:29 | 003,907,920 | ---- | M] (Piriform Ltd) -- C:\Users\anything\Desktop\ccsetup321.exe
[2012/07/23 11:25:41 | 000,001,172 | ---- | M] () -- C:\Users\Public\Desktop\Acronis True Image Home 2012.lnk
[2012/07/17 09:55:31 | 000,002,077 | ---- | M] () -- C:\Users\anything\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2012/07/15 09:50:08 | 000,001,040 | ---- | M] () -- C:\Users\anything\AppData\Roaming\wklnhst.dat
[2012/07/14 11:15:42 | 000,001,314 | ---- | M] () -- C:\Users\Public\Desktop\Seagate Dashboard.lnk
[1 C:\Users\anything\Desktop\*.tmp files -> C:\Users\anything\Desktop\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012/08/09 16:27:14 | 000,003,288 | ---- | C] () -- C:\bootsqm.dat
[2012/08/04 11:06:43 | 005,686,344 | ---- | C] () -- C:\Users\anything\Desktop\autosync.exe
[2012/07/18 07:58:45 | 000,000,344 | ---- | C] () -- C:\Windows\tasks\HPCeeScheduleForanything.job
[2012/07/14 11:15:42 | 000,001,314 | ---- | C] () -- C:\Users\Public\Desktop\Seagate Dashboard.lnk
[2012/07/11 06:48:58 | 000,000,388 | ---- | C] () -- C:\Users\anything\AppData\Roaming\Xtend2_state.xml
[2012/04/24 11:03:31 | 000,000,106 | ---- | C] () -- C:\Windows\EP4530.ini
[2011/09/16 06:10:50 | 000,213,187 | ---- | C] () -- C:\Users\anything\AppData\Roaming\MMUpgrade.jpg
[2011/06/12 16:40:00 | 000,000,106 | ---- | C] () -- C:\Windows\VaultMediaClient.INI
[2011/03/24 10:22:52 | 000,013,312 | ---- | C] () -- C:\Windows\SysWow64\drivers\vdmzntm0.sys
[2011/03/24 10:22:46 | 000,011,264 | ---- | C] () -- C:\Windows\SysWow64\drivers\uzmzntm0.sys
[2011/02/09 11:08:01 | 001,589,248 | ---- | C] () -- C:\Windows\SysWow64\libmysql_d.dll
[2010/12/21 13:49:25 | 000,003,075 | ---- | C] () -- C:\Users\anything\AppData\Roaming\SAS7_000.DAT
[2010/10/25 18:11:21 | 000,749,860 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2010/08/24 14:22:10 | 000,001,040 | ---- | C] () -- C:\Users\anything\AppData\Roaming\wklnhst.dat
[2010/04/18 15:33:43 | 000,000,268 | RH-- | C] () -- C:\ProgramData\Static Library
[2010/04/18 15:33:43 | 000,000,268 | RH-- | C] () -- C:\Users\anything\AppData\Roaming\Sports
[2010/04/18 15:33:43 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLdw.DAT
[2010/04/18 15:32:23 | 000,000,268 | RH-- | C] () -- C:\ProgramData\Standard Tool
[2010/04/18 15:32:23 | 000,000,268 | RH-- | C] () -- C:\Users\anything\AppData\Roaming\Specifications
[2010/04/18 15:32:23 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLdu.DAT
[2010/04/13 13:09:15 | 000,075,264 | ---- | C] () -- C:\Users\anything\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/02/22 18:59:55 | 000,007,621 | ---- | C] () -- C:\Users\anything\AppData\Local\Resmon.ResmonCfg
[2010/02/20 13:18:10 | 000,113,256 | ---- | C] () -- C:\Program Files (x86)\splash.png
[2010/02/20 13:18:10 | 000,031,577 | ---- | C] () -- C:\Program Files (x86)\qbillminder.gadget
[2010/02/20 13:18:10 | 000,000,519 | ---- | C] () -- C:\Program Files (x86)\pkgsettings.ini
[2010/02/20 13:18:10 | 000,000,051 | ---- | C] () -- C:\Program Files (x86)\qappid.ini
[2010/01/13 11:30:58 | 000,946,536 | ---- | C] () -- C:\Program Files (x86)\ttaximp.dll
[2010/01/13 11:30:24 | 000,050,204 | ---- | C] () -- C:\Program Files (x86)\TAX.THP
[2010/01/13 11:30:24 | 000,022,888 | ---- | C] () -- C:\Program Files (x86)\QuickenOLBackupLauncher.exe
[2010/01/13 11:30:24 | 000,013,531 | ---- | C] () -- C:\Program Files (x86)\TAX.SCD
[2010/01/13 11:30:24 | 000,000,635 | ---- | C] () -- C:\Program Files (x86)\TAX.PRI
[2010/01/13 11:29:52 | 000,004,360 | ---- | C] () -- C:\Program Files (x86)\convert_stub.dat
[2010/01/13 11:29:50 | 001,343,953 | ---- | C] () -- C:\Program Files (x86)\phash.dat
[2010/01/13 11:29:50 | 000,230,752 | ---- | C] () -- C:\Program Files (x86)\patchw32.dll
[2010/01/13 11:29:50 | 000,138,328 | ---- | C] () -- C:\Program Files (x86)\QUpdate.bmp
[2010/01/13 11:29:50 | 000,019,951 | ---- | C] () -- C:\Program Files (x86)\err_rep.chm
[2010/01/13 11:29:50 | 000,015,581 | ---- | C] () -- C:\Program Files (x86)\Intellic.cat
[2010/01/13 11:29:50 | 000,004,622 | ---- | C] () -- C:\Program Files (x86)\ttaxexpt.dat
[2010/01/13 11:29:50 | 000,000,024 | ---- | C] () -- C:\Program Files (x86)\qif_ub.dat
[2010/01/13 11:29:48 | 000,333,333 | ---- | C] () -- C:\Program Files (x86)\dedfindr.dat
[2010/01/13 11:29:48 | 000,007,158 | ---- | C] () -- C:\Program Files (x86)\khash.dat
[2010/01/13 11:29:48 | 000,000,666 | ---- | C] () -- C:\Program Files (x86)\cnfirmfi.ini
[2010/01/13 11:29:48 | 000,000,188 | ---- | C] () -- C:\Program Files (x86)\icconfig.ini
[2010/01/13 11:29:48 | 000,000,152 | ---- | C] () -- C:\Program Files (x86)\fri.dat
[2010/01/13 11:29:48 | 000,000,126 | ---- | C] () -- C:\Program Files (x86)\bgtbrwsr.dat
[2010/01/13 11:29:48 | 000,000,080 | ---- | C] () -- C:\Program Files (x86)\mmedia.ver
[2010/01/13 11:29:48 | 000,000,080 | ---- | C] () -- C:\Program Files (x86)\deluxe.ver
[2010/01/13 11:29:48 | 000,000,027 | ---- | C] () -- C:\Program Files (x86)\SendError.ini
[2010/01/13 11:27:06 | 000,034,152 | ---- | C] () -- C:\Program Files (x86)\atwork.dll
========== LOP Check ==========
[2012/07/23 11:26:25 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\0A81AE1A-4638-4281-B85F-696C74253B3C
[2012/03/24 17:55:28 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\Acronis
[2010/11/16 20:28:08 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\Canon
[2011/06/13 15:15:03 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\Charles Schwab
[2010/04/13 13:01:07 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2011/11/10 08:31:34 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\Complitly
[2012/08/09 18:09:53 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\DMCache
[2012/08/11 13:10:32 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\Dropbox
[2012/04/25 18:35:03 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\Epson
[2010/09/05 10:12:10 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\ESET
[2012/08/06 06:50:05 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\Eye-Fi
[2010/12/25 12:54:42 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\Flip Video
[2011/03/28 18:24:42 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\GARMIN
[2012/08/06 09:24:05 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\IDM
[2012/04/24 13:31:16 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\Leader Technologies
[2012/03/27 18:11:00 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\Leadertech
[2012/07/14 11:25:16 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\Memeo
[2010/04/20 05:58:51 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\Nikon
[2010/06/05 11:38:45 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\No Company Name
[2011/01/21 10:33:26 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\Nuance
[2010/01/19 12:50:16 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\NVD
[2011/02/09 07:04:39 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\OpenOffice.org
[2011/08/03 08:29:53 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\PhotoshopdotcomInspirationBrowser.4C35C4D325D350FE0114230CBADCA2DDD0AC8D25.1
[2010/01/19 12:50:17 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\PictureMover
[2012/02/13 08:25:07 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\Racket
[2012/07/14 11:15:53 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\Seagate
[2010/08/27 11:15:05 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\SoftGrid Client
[2011/12/15 17:58:29 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\StreamTorrent
[2011/06/07 16:02:06 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\TechWizard
[2010/08/24 14:22:12 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\Template
[2012/04/03 07:02:30 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\Titanium
[2010/01/14 07:07:38 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\TP
[2012/08/01 10:44:10 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\uTorrent
[2012/02/01 15:54:29 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\webex
[2010/01/19 12:50:17 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\WinBatch
[2011/10/21 07:16:46 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\Xtend2.71305F52FFD36D9BDDE00284EF6181AE6688276A.1
[2012/06/30 10:52:13 | 000,000,000 | ---D | M] -- C:\Users\anything\AppData\Roaming\ZumoCast
[2012/08/07 07:10:45 | 000,000,456 | ---- | M] () -- C:\Windows\Tasks\PCDRScheduledMaintenance.job
[2012/07/11 03:29:37 | 000,032,656 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 233 bytes -> C:\ProgramData\Temp:0FF263E8
@Alternate Data Stream - 167 bytes -> C:\ProgramData\Temp:F35A93AD
< End of report >