Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Occasional crash minutes after login


  • This topic is locked This topic is locked

#1
Willium_Bob_Cole

Willium_Bob_Cole

    Member

  • Member
  • PipPip
  • 46 posts
I have posted the thread below with details of my problem, and as there may be Malware at least partially to blame, I am here for a cleanup.

Thread:
http://www.geekstogo...98#entry2243698


Basically I woke up one morning and my computer would crash to a black screen (well, it is kind of brownish and fuzzy...) minutes after logging into my desktop.
It would do this every time I logged on, but I could start in safe mode perfectly fine, even immediately after the crash, so I find it unlikely that it is an overheating issue (also SpeedFan reports okay temps usually, though one time my CPU temps persisted at too high a level after I quit playing TF2, but when it cooled down again, idle temps were normal, so desktop temps shouldn't crash it at login). After posting in the above thread for help, from safe mode, I thought I remembered that at the time of the crash every time, it would be as the screen would normally darken when UAC was requesting admin permissions, so I restarted normally to test this theory, ending processes that normally pop up, and it worked fine, played TF2 (as mentioned above when the temps persisted after quitting), and it ran fine, letting me change resolutions in and out of game with no problem, then I opened a program that needed UAC permissions... and it carried on working fine. And has done since then. It just stopped breaking. Wahey I thought! Well no, this morning I have the same crash cycle happening again, posting now from safe mode.

Recently I had to download ATI Tray Tools to adjust my 2D clock speeds, as I was getting severe flickering on my dual monitor setup (default drivers left them too low, nice job ATI CCC! 3D was fine though). This worked for a couple weeks without issue, but is the only thing I can really think that has changed recently that would have had an impact like this. The nature of the crash, with the suddenness of it and the fuzzyish, off black screen, seems like an overclocking crash.

But, when loading firefox, I very occasionally get a second window open alongside my normal window with a few hundred tabs in various groups, and this new window loads to sh.com which seems innocent enough, posing as some language tutoring website, but has a bad reputation and of course shouldn't open without my consent (I never heard of or asked for it before it started opening).

I hope you can help me rid the malware causing this minor problem, and hopefully it will also stop the major problem of crashing from ever happening again! Log below. =] (Also, do you need Extras.txt?)

OTL logfile created on: 01/01/2013 12:38:52 PM - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Mike\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
 
3.99 Gb Total Physical Memory | 2.84 Gb Available Physical Memory | 71.24% Memory free
6.01 Gb Paging File | 4.87 Gb Available in Paging File | 80.99% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 455.99 Gb Total Space | 2.54 Gb Free Space | 0.56% Space Free | Partition Type: NTFS
Drive K: | 931.28 Gb Total Space | 49.52 Gb Free Space | 5.32% Space Free | Partition Type: FAT32
 
Computer Name: MIKES-PC | User Name: Mike | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
 
[color=#E56717]========== Processes (SafeList) ==========[/color]
 
PRC - [2013/01/01 12:38:11 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Mike\Desktop\OTL.exe
PRC - [2012/12/11 18:29:37 | 001,807,800 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_5_502_135.exe
PRC - [2012/12/06 17:44:14 | 000,916,960 | ---- | M] (Mozilla Corporation) -- C:\Users\Mike\AppData\Local\Mozilla Firefox\firefox.exe
PRC - [2011/11/09 20:05:42 | 002,420,616 | ---- | M] (Check Point Software Technologies LTD) -- C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
 
 
[color=#E56717]========== Modules (No Company Name) ==========[/color]
 
MOD - [2012/12/11 18:29:35 | 014,586,296 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_135.dll
MOD - [2012/12/06 17:44:13 | 002,397,152 | ---- | M] () -- C:\Users\Mike\AppData\Local\Mozilla Firefox\mozjs.dll
 
 
[color=#E56717]========== Services (SafeList) ==========[/color]
 
SRV:[b]64bit:[/b] - [2012/10/30 22:50:59 | 000,044,808 | ---- | M] (AVAST Software) [Auto | Stopped] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
SRV:[b]64bit:[/b] - [2012/09/28 01:38:16 | 000,239,616 | ---- | M] (AMD) [Auto | Stopped] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:[b]64bit:[/b] - [2011/11/03 14:44:42 | 000,827,520 | ---- | M] (Check Point Software Technologies) [Auto | Stopped] -- C:\Program Files\CheckPoint\ZAForceField\ISWSVC.exe -- (IswSvc)
SRV:[b]64bit:[/b] - [2011/06/27 21:10:09 | 001,431,888 | ---- | M] (Flexera Software, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe -- (FLEXnet Licensing Service 64)
SRV:[b]64bit:[/b] - [2011/02/22 20:52:54 | 000,086,016 | ---- | M] () [Auto | Stopped] -- C:\Program Files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe -- (mi-raysat_3dsmax2012_64)
SRV:[b]64bit:[/b] - [2010/11/30 12:27:58 | 000,336,824 | ---- | M] (arvato digital services llc) [Auto | Stopped] -- c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2_x64)
SRV:[b]64bit:[/b] - [2010/09/22 17:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:[b]64bit:[/b] - [2009/10/07 01:47:10 | 000,191,000 | ---- | M] (Logitech Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\logishrd\LVMVFM\LVPrcSrv.exe -- (LVPrcS64)
SRV:[b]64bit:[/b] - [2009/07/14 01:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2009/06/03 13:54:40 | 000,660,640 | ---- | M] () [Auto | Stopped] -- C:\Windows\SysNative\atwtusb.exe -- (WTService)
SRV - [2012/12/21 12:45:54 | 000,541,760 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2012/12/11 19:27:34 | 000,250,808 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/12/08 22:39:39 | 000,075,136 | ---- | M] () [Auto | Stopped] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2012/11/09 11:21:24 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012/07/27 20:51:26 | 000,063,960 | ---- | M] (Adobe Systems Incorporated) [Auto | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012/07/12 19:16:55 | 000,008,704 | ---- | M] (Hi-Rez Studios) [Auto | Stopped] -- C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe -- (HiPatchService)
SRV - [2012/03/05 12:19:00 | 003,953,632 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\Windows\SysWOW64\GameMon.des -- (npggsvc)
SRV - [2012/02/24 10:33:54 | 000,853,088 | ---- | M] (Charity Engine) [Auto | Stopped] -- C:\Program Files (x86)\Charity Engine\boinc.exe -- (BOINC)
SRV - [2012/01/13 13:53:18 | 000,652,360 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2011/12/01 22:21:04 | 000,651,720 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2011/11/09 20:05:42 | 002,420,616 | ---- | M] (Check Point Software Technologies LTD) [Auto | Running] -- C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe -- (vsmon)
SRV - [2011/05/25 14:14:34 | 000,053,248 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files (x86)\NOS\bin\getPlus_Helper_3004.dll -- (nosGetPlusHelper)
SRV - [2010/04/23 16:47:09 | 000,068,096 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe -- (Macromedia Licensing Service)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/02/19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009/12/17 16:37:52 | 000,067,360 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files (x86)\NOS\bin\getPlus_Helper.dll -- (getPlusHelper)
SRV - [2009/06/10 21:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
 
 
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
 
DRV:[b]64bit:[/b] - [2012/11/12 16:26:54 | 000,121,416 | ---- | M] (MotioninJoy) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\MijXfilt.sys -- (MotioninJoyXFilter)
DRV:[b]64bit:[/b] - [2012/10/30 22:51:56 | 000,059,728 | ---- | M] (AVAST Software) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:[b]64bit:[/b] - [2012/10/30 22:51:55 | 000,984,144 | ---- | M] (AVAST Software) [File_System | System | Stopped] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:[b]64bit:[/b] - [2012/10/30 22:51:55 | 000,370,288 | ---- | M] (AVAST Software) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:[b]64bit:[/b] - [2012/10/30 22:51:55 | 000,071,600 | ---- | M] (AVAST Software) [File_System | Auto | Stopped] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:[b]64bit:[/b] - [2012/10/30 22:51:53 | 000,025,232 | ---- | M] (AVAST Software) [File_System | Auto | Stopped] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:[b]64bit:[/b] - [2012/10/15 16:59:28 | 000,054,072 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:[b]64bit:[/b] - [2012/09/28 10:32:56 | 000,053,760 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:[b]64bit:[/b] - [2012/09/28 02:21:20 | 010,697,216 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag)
DRV:[b]64bit:[/b] - [2012/09/28 02:21:20 | 010,697,216 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:[b]64bit:[/b] - [2012/09/28 01:12:52 | 000,460,288 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:[b]64bit:[/b] - [2012/08/21 12:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:[b]64bit:[/b] - [2012/05/31 04:10:48 | 000,126,944 | ---- | M] (Power Software Ltd) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\scdemu.sys -- (SCDEmu)
DRV:[b]64bit:[/b] - [2012/05/14 06:12:30 | 000,096,896 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:[b]64bit:[/b] - [2012/03/01 06:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2011/12/10 14:24:08 | 000,023,152 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:[b]64bit:[/b] - [2011/11/03 14:44:22 | 000,033,672 | ---- | M] (Check Point Software Technologies) [Kernel | Auto | Stopped] -- C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys -- (ISWKL)
DRV:[b]64bit:[/b] - [2011/08/15 13:32:10 | 000,146,736 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys -- (VBoxNetAdp)
DRV:[b]64bit:[/b] - [2011/06/10 05:34:52 | 000,539,240 | ---- | M] (Realtek                                            ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2011/05/07 17:51:32 | 000,454,232 | ---- | M] (Check Point Software Technologies LTD) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vsdatant.sys -- (Vsdatant)
DRV:[b]64bit:[/b] - [2011/03/21 16:45:22 | 000,254,528 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:[b]64bit:[/b] - [2011/03/11 06:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2011/03/11 06:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2010/11/20 13:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2010/11/20 11:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2010/10/26 14:47:49 | 000,314,016 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\atksgt.sys -- (atksgt)
DRV:[b]64bit:[/b] - [2010/10/26 14:47:48 | 000,043,680 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\lirsgt.sys -- (lirsgt)
DRV:[b]64bit:[/b] - [2010/09/22 23:36:48 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:[b]64bit:[/b] - [2010/07/12 18:36:10 | 000,055,856 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:[b]64bit:[/b] - [2010/07/06 08:56:40 | 000,032,256 | ---- | M] (DAVICOM Semiconductor, Inc.                                                    ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dm9usb.sys -- (DM9USB)
DRV:[b]64bit:[/b] - [2009/11/24 14:29:16 | 000,074,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xusb21.sys -- (xusb21)
DRV:[b]64bit:[/b] - [2009/10/07 08:49:28 | 006,379,288 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lvuvc64.sys -- (LVUVC64)
DRV:[b]64bit:[/b] - [2009/10/07 08:48:08 | 000,067,992 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lvsels64.sys -- (lvsels64)
DRV:[b]64bit:[/b] - [2009/10/07 08:47:46 | 000,327,704 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lvrs64.sys -- (LVRS64)
DRV:[b]64bit:[/b] - [2009/10/07 08:45:38 | 000,271,640 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lvpopf64.sys -- (lvpopf64)
DRV:[b]64bit:[/b] - [2009/10/07 01:45:50 | 000,030,232 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2Mon)
DRV:[b]64bit:[/b] - [2009/10/07 01:45:50 | 000,030,232 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2M64)
DRV:[b]64bit:[/b] - [2009/09/30 14:34:30 | 000,121,872 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:[b]64bit:[/b] - [2009/08/09 21:25:45 | 000,036,352 | ---- | M] (Elaborate Bytes AG) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VClone.sys -- (VClone)
DRV:[b]64bit:[/b] - [2009/07/14 01:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009/07/14 01:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009/07/14 01:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009/07/10 03:07:02 | 001,222,144 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\viahduaa.sys -- (VIAHdAudAddService)
DRV:[b]64bit:[/b] - [2009/06/10 20:35:38 | 000,707,072 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netr7364.sys -- (netr7364)
DRV:[b]64bit:[/b] - [2009/06/10 20:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009/06/10 20:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009/06/10 20:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009/06/10 20:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2009/06/08 07:02:14 | 000,086,584 | ---- | M] (Adobe Systems, Inc.) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\adfs.sys -- (adfs)
DRV:[b]64bit:[/b] - [2009/05/25 06:51:00 | 000,207,872 | ---- | M] (Realtek                                            ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Rtlh64.sys -- (RTL8169)
DRV:[b]64bit:[/b] - [2009/04/17 01:18:26 | 000,007,808 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\walvhid.sys -- (vhidmini)
DRV:[b]64bit:[/b] - [2009/03/08 17:16:14 | 000,007,680 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\moufiltr.sys -- (moufiltr)
DRV:[b]64bit:[/b] - [2008/02/14 13:12:00 | 001,854,976 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\monfilt.sys -- (monfilt)
DRV:[b]64bit:[/b] - [2007/08/20 11:05:02 | 000,012,744 | ---- | M] (EnTech Taiwan) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Entech64.sys -- (ENTECH64)
DRV:[b]64bit:[/b] - [2007/08/08 10:10:24 | 000,112,512 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ewusbmdm.sys -- (hwdatacard)
DRV:[b]64bit:[/b] - [2006/10/31 15:23:42 | 000,015,680 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ASACPI.sys -- (MTsensor)
DRV - [2009/07/14 01:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2009/06/08 06:57:40 | 000,073,312 | ---- | M] (Adobe Systems, Inc.) [Kernel | Auto | Stopped] -- C:\Windows\SysWow64\drivers\adfs.sys -- (adfs)
 
 
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
 
 
[color=#E56717]========== Internet Explorer ==========[/color]
 
IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
 
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.meshcomputersownersclub.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.meshcomputersownersclub.com
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
 
[color=#E56717]========== FireFox ==========[/color]
 
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..extensions.enabledAddons: en-GB%40dictionaries.addons.mozilla.org:1.19.1
FF - prefs.js..extensions.enabledAddons: %7B23fcfd51-4958-4f00-80a3-ae97e717ed8b%7D:2.1.2.145
FF - prefs.js..extensions.enabledAddons: wrc%40avast.com:7.0.1474
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:17.0.1
FF - prefs.js..extensions.enabledItems: {E2883E8F-472F-4fb0-9522-AC9BF37916A7}:1.6.2.91
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: [email protected]:8477
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: [email protected]:6.0.1367
FF - prefs.js..extensions.enabledItems: [email protected]:1.0.53.2
FF - prefs.js..extensions.enabledItems: {0b38152b-1b20-484d-a11f-5e04a9b0661f}:5.6.17.1
FF - prefs.js..extensions.enabledItems: {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.2.145
FF - prefs.js..extensions.enabledItems: {01A8CA0A-4C96-465b-A49B-65C46FAD54F9}:6.0
FF - prefs.js..network.proxy.no_proxies_on: "*.local"
 
 
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_5_502_135.dll File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_135.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1168638.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:  File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@checkpoint.com/FFApi: C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\npFFApi.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.0: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.0\npesnsonar.dll File not found
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@hypercosm.com/HypercosmPlayer: C:\Program Files (x86)\Hypercosm\Hypercosm Player\components\nphypercosm.dll (Hypercosm LLC)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.7.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@ngm.nexoneu.com/NxGame: C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@nosltd.com/getPlus+(R),version=1.6.2.103: C:\Program Files (x86)\NOS\bin\np_gp.dll (NOS Microsystems Ltd.)
FF - HKLM\Software\MozillaPlugins\@nosltd.com/getPlus+(R),version=1.6.2.91: C:\Program Files (x86)\NOS\bin\np_gp.dll (NOS Microsystems Ltd.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.4: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@facebook.com/FBPlugin,version=1.0.3: C:\Users\Mike\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll ( )
FF - HKCU\Software\MozillaPlugins\@onlive.com/OnLiveGameClientDetector,version=1.0.0: C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll (OnLive)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Mike\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll (Ubisoft)
 
64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}: C:\PROGRAM FILES\CHECKPOINT\ZAFORCEFIELD\TRUSTCHECKER [2012/03/09 18:46:26 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}: D:\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}: C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker [2011/11/12 13:11:54 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012/06/21 19:16:19 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Alwil Software\Avast5\WebRep\FF [2012/11/05 18:51:11 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.16\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/11/12 14:22:34 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.16\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012/11/12 14:22:34 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 4.0\extensions\\Components: C:\Users\Mike\AppData\Local\Mozilla Firefox\components [2012/12/06 17:44:14 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 4.0\extensions\\Plugins: C:\Users\Mike\AppData\Local\Mozilla Firefox\plugins [2012/12/06 17:44:04 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Components: C:\Users\Mike\AppData\Local\Mozilla Firefox\components [2012/12/06 17:44:14 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Plugins: C:\Users\Mike\AppData\Local\Mozilla Firefox\plugins [2012/12/06 17:44:04 | 000,000,000 | ---D | M]
 
[2009/12/23 10:15:23 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Mike\AppData\Roaming\Mozilla\Extensions
[2012/11/23 12:14:35 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\xs62pm0i.default\extensions
[2012/06/18 19:39:34 | 000,000,000 | ---D | M] (British English Dictionary) -- C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\xs62pm0i.default\extensions\[email protected]
[2011/04/01 14:31:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\xs62pm0i.default\extensions\nostmp
[2012/11/23 12:14:35 | 000,804,627 | ---- | M] () (No name found) -- C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\xs62pm0i.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2011/07/18 17:01:28 | 000,002,354 | ---- | M] () -- C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\xs62pm0i.default\searchplugins\aol-web-search.xml
[2011/02/20 23:18:38 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2010/05/25 18:28:10 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010/08/06 17:16:06 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2011/01/01 17:41:48 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
[2011/02/20 23:18:38 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2012/06/21 19:16:19 | 000,000,000 | ---D | M] (DivX Plus Web Player HTML5 <video>) -- C:\PROGRAM FILES (X86)\DIVX\DIVX PLUS WEB PLAYER\FIREFOX\DIVXHTML5
[2012/11/05 18:51:11 | 000,000,000 | ---D | M] (avast! WebRep) -- C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST5\WEBREP\FF
[2010/03/08 10:24:04 | 000,103,168 | ---- | M] (Midasplayer Ltd) -- C:\Program Files (x86)\mozilla firefox\plugins\npmidas.dll
[2010/07/12 16:33:56 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll
[2010/12/11 20:38:33 | 000,001,538 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazon-en-GB.xml
[2010/12/11 20:38:33 | 000,000,947 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\chambers-en-GB.xml
[2010/12/11 20:38:33 | 000,000,769 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-en-GB.xml
[2010/12/11 20:38:33 | 000,001,135 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-en-GB.xml
 
[color=#E56717]========== Chrome  ==========[/color]
 
CHR - homepage: http://www.google.co.uk/
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}&sugkey={google:suggestAPIKeyParameter}
CHR - homepage: http://www.google.co.uk/
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.91\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.91\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.91\gcswf32.dll
CHR - plugin: Shockwave Flash (Disabled) = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_235.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll
CHR - plugin: Java Deployment Toolkit 6.0.310.5 (Enabled) = C:\Users\Mike\AppData\Local\Mozilla Firefox\plugins\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U31 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: downloadUpdater (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npdnu.dll
CHR - plugin: downloadUpdater2 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npdnupdater2.dll
CHR - plugin: Windows Genuine Advantage (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npLegitCheckPlugin.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: Winamp Application Detector (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npwachk.dll
CHR - plugin: getPlusPlus for Adobe 162103 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\np_gp.dll
CHR - plugin: ESN Launch Mozilla Plugin (Enabled) = C:\Program Files (x86)\Battlelog Web Plugins\0.80.0\npesnlaunch.dll
CHR - plugin: ESN Sonar API (Enabled) = C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.0\npesnsonar.dll
CHR - plugin: DivX VOD Helper Plug-in (Enabled) = C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
CHR - plugin: DivX Plus Web Player (Enabled) = C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Hypercosm Player (Enabled) = C:\Program Files (x86)\Hypercosm\Hypercosm Player\components\nphypercosm.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - plugin: OnLive Game Client Detector (Enabled) = C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll
CHR - plugin: VLC Web Plugin (Enabled) = C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: npFFApi (Enabled) = C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\npFFApi.dll
CHR - plugin: Nexon Game Controller (Enabled) = C:\ProgramData\NexonEU\NGM\npNxGameeu.dll
CHR - plugin: Unity Player (Enabled) = C:\Users\Mike\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
CHR - plugin: Facebook Plugin (Enabled) = C:\Users\Mike\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Windows\system32\Adobe\Director\np32dsw.dll
CHR - Extension: YouTube = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: YouTube = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_1\
CHR - Extension: Google Search = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Google Search = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_1\
CHR - Extension: Photo Zoom for Facebook = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\elioihkkcdgakfbahdoddophfngopipi\1.1206.11.1_0\
CHR - Extension: Photo Zoom for Facebook = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\elioihkkcdgakfbahdoddophfngopipi\1.1208.30.1_0\
CHR - Extension: AdBlock = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.5.41_0\
CHR - Extension: AdBlock = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.5.48_0\
CHR - Extension: Flood-It! = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\hidcjhphimkfnacedjcnajpmlaegnddp\1.11_0\
CHR - Extension: avast! WebRep = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1466_0\
CHR - Extension: avast! WebRep = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1474_0\
CHR - Extension: Tiny Balls = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\kaiflebloonfmcndeohafmphnandedlf\1.51_0\
CHR - Extension: Little Alchemy = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd\0.0.12_0\
CHR - Extension: Little Alchemy = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd\0.0.15.7_0\
CHR - Extension: Rango: The WORLD = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\ladlgddeghalkmimaamlhbfaglfcdiep\1.0_0\
CHR - Extension: Clickable Links = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\mblbciejcodpealifnhfjbdlkedplodp\1.1.4_0\
CHR - Extension: Facebook Notifications = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmameahlembdcigphohgiodcgjomcgeo\1.27_0\
CHR - Extension: DivX Plus Web Player HTML5 \u003Cvideo\u003E = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\
CHR - Extension: Falling Sand Game = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdknckljjbdpkhgmcokoahffbdinafbo\1.3_0\
CHR - Extension: PhotoFit Me = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdpbdnchfplfpdjbckgbmpnddnjdijjk\1.0.0.4_0\
CHR - Extension: Gmail = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
CHR - Extension: Gmail = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
 
O1 HOSTS File: ([2011/12/03 23:46:08 | 000,001,394 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1 practivate.adobe.com
O1 - Hosts: 127.0.0.1 ereg.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com
O1 - Hosts: 127.0.0.1 wip3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com
O1 - Hosts: 127.0.0.1 activate-sea.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com
O1 - Hosts: 127.0.0.1 adobe.activate.com
O1 - Hosts: 127.0.0.1 adobeereg.com
O1 - Hosts: 127.0.0.1 www.adobeereg.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 hl2rcv.adobe.com
O2:[b]64bit:[/b] - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll (AVAST Software)
O2:[b]64bit:[/b] - BHO: (ZoneAlarm Security Engine Registrar) - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\Trustchecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
O2 - BHO: (ContributeBHO Class) - {074C1DC5-9320-4A9A-947D-C042949C6216} - D:\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll File not found
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (ZoneAlarm Security Engine Registrar) - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll (AVAST Software)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (ZoneAlarm Security Engine) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\Trustchecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (Contribute Toolbar) - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - D:\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll File not found
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (ZoneAlarm Security Engine) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:[b]64bit:[/b] - HKLM..\Run: []  File not found
O4:[b]64bit:[/b] - HKLM..\Run: [ISW] C:\Program Files\CheckPoint\ZAForceField\ForceField.exe (Check Point Software Technologies)
O4:[b]64bit:[/b] - HKLM..\Run: [MacroKeyManager] C:\Windows\SysNative\WTMKM.exe ()
O4 - HKLM..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe (AMD)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [avast] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe File not found
O4 - HKLM..\Run: [boincmgr] C:\Program Files (x86)\Charity Engine\charityengine.exe (Charity Engine)
O4 - HKLM..\Run: [boinctray] C:\Program Files (x86)\Charity Engine\boinctray.exe (Charity Engine)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE (Power Software Ltd)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [ZoneAlarm] C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe (Check Point Software Technologies LTD)
O4 - HKCU..\Run: [AdobeBridge]  File not found
O4 - HKCU..\Run: [AtiTrayTools] C:\Program Files (x86)\Ray Adams\ATI Tray Tools\atitray.exe (Ray Adams)
O4 - HKCU..\Run: [DS3 Tool] C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe (www.motioninjoy.com)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: _NoDriveTypeAutoRun = 255
O8:[b]64bit:[/b] - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MIF5BA~1\Office12\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MIF5BA~1\Office12\EXCEL.EXE/3000 File not found
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000010 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: sony.com ([]* in Trusted sites)
O16:[b]64bit:[/b] - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16:[b]64bit:[/b] - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16:[b]64bit:[/b] - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} http://cdn.scan.onecare.live.com/resource/download/scanner/en-us/wlscctrl2.cab (Windows Live OneCare safety scanner control)
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab (Solitaire Showdown Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 10.9.2)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 10.9.2)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (get_atlcom Class)
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab (Minesweeper Flags Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2F4F344D-9069-4023-B1AD-C06E6FF9C72D}: DhcpNameServer = 192.168.0.1
O18:[b]64bit:[/b] - Protocol\Handler\livecall - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\ms-itss - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\msnim - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\skype4com - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{6c69023d-38d9-11df-b3a7-90e6bad52e3d}\Shell - "" = AutoRun
O33 - MountPoints2\{6c69023d-38d9-11df-b3a7-90e6bad52e3d}\Shell\AutoRun\command - "" = D:\AutoRun.exe
O33 - MountPoints2\{6c690252-38d9-11df-b3a7-90e6bad52e3d}\Shell - "" = AutoRun
O33 - MountPoints2\{6c690252-38d9-11df-b3a7-90e6bad52e3d}\Shell\AutoRun\command - "" = D:\AutoRun.exe
O33 - MountPoints2\{6c69027f-38d9-11df-b3a7-90e6bad52e3d}\Shell - "" = AutoRun
O33 - MountPoints2\{6c69027f-38d9-11df-b3a7-90e6bad52e3d}\Shell\AutoRun\command - "" = D:\AutoRun.exe
O33 - MountPoints2\{7f0bc569-539c-11e0-8c8a-90e6bad52e3d}\Shell - "" = AutoRun
O33 - MountPoints2\{7f0bc569-539c-11e0-8c8a-90e6bad52e3d}\Shell\AutoRun\command - "" = F:\AUTORUN.EXE
O33 - MountPoints2\D\Shell - "" = AutoRun
O33 - MountPoints2\D\Shell\AutoRun\command - "" = D:\setup.exe
O33 - MountPoints2\G\Shell - "" = AutoRun
O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\Launcher.exe
O33 - MountPoints2\H\Shell - "" = AutoRun
O33 - MountPoints2\H\Shell\AutoRun\command - "" = H:\Setup.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
 
[2013/01/01 12:38:09 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Mike\Desktop\OTL.exe
[2012/12/31 15:13:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2012/12/31 15:12:08 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2012/12/31 15:12:07 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2012/12/31 15:12:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2012/12/31 15:12:07 | 000,000,000 | ---D | C] -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
[2012/12/29 16:07:05 | 000,000,000 | ---D | C] -- C:\Users\Mike\Documents\Stronghold 3
[2012/12/28 18:46:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
[2012/12/28 18:41:41 | 000,000,000 | ---D | C] -- C:\ProgramData\BlueStacksSetup
[2012/12/28 18:41:41 | 000,000,000 | ---D | C] -- C:\ProgramData\BlueStacks
[2012/12/28 10:56:14 | 000,000,000 | ---D | C] -- C:\Users\Mike\AppData\Roaming\Little Inferno
[2012/12/24 01:00:48 | 000,000,000 | ---D | C] -- C:\Users\Mike\Documents\Snapshot
[2012/12/22 19:20:37 | 000,000,000 | ---D | C] -- C:\Users\Mike\Documents\Prince of Persia
[2012/12/21 13:45:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MeteorEntertainment
[2012/12/15 14:15:56 | 000,000,000 | ---D | C] -- C:\Users\Mike\AppData\Roaming\e-academy Inc
[2012/12/15 14:15:56 | 000,000,000 | ---D | C] -- C:\Users\Mike\AppData\Local\e-academy Inc
[2012/12/14 10:21:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2012/12/14 10:21:35 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype
[2012/12/14 10:21:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2012/12/14 10:14:20 | 000,000,000 | ---D | C] -- C:\Users\Mike\AppData\Local\{82795F07-5580-4CB3-B9C1-F30FC01D1F2E}
[2012/12/13 22:45:10 | 000,000,000 | ---D | C] -- C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ATI Tray Tools
[2012/12/13 22:12:25 | 000,000,000 | ---D | C] -- C:\Users\Mike\AppData\Roaming\atitray
[2012/12/13 22:12:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ray Adams
[2012/12/10 20:21:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
[2012/12/09 00:11:06 | 000,000,000 | ---D | C] -- C:\Users\Mike\Documents\Assassin's Creed III
[2012/12/08 22:39:49 | 000,000,000 | ---D | C] -- C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
[2012/12/07 21:14:23 | 000,000,000 | ---D | C] -- C:\Users\Mike\AppData\Roaming\Warner Bros. Interactive Entertainment
[2012/12/06 17:44:00 | 000,000,000 | ---D | C] -- C:\Users\Mike\AppData\Local\Mozilla Firefox
[2012/12/05 16:37:17 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2012/12/05 16:35:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD AVT
[2012/12/05 16:33:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD APP
[2012/12/05 16:31:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
[2012/12/02 14:34:56 | 000,000,000 | ---D | C] -- C:\Users\Mike\Desktop\Shortcuts
[2012/12/02 14:34:49 | 000,000,000 | ---D | C] -- C:\Users\Mike\Desktop\Folders
[2012/12/02 14:34:43 | 000,000,000 | ---D | C] -- C:\Users\Mike\Desktop\Files
[7 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\SysNative\drivers\*.tmp files -> C:\Windows\SysNative\drivers\*.tmp -> ]
[1 C:\Users\Mike\*.tmp files -> C:\Users\Mike\*.tmp -> ]
 
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
 
[2013/01/01 12:38:11 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Mike\Desktop\OTL.exe
[2013/01/01 12:20:51 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/01/01 12:20:39 | 3214,188,544 | -HS- | M] () -- C:\hiberfil.sys
[2013/01/01 12:18:35 | 000,000,890 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013/01/01 12:13:23 | 000,013,792 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/01/01 12:13:23 | 000,013,792 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/01/01 01:35:01 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013/01/01 01:27:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/12/31 19:00:00 | 000,000,374 | ---- | M] () -- C:\Windows\tasks\At1.job
[2012/12/31 15:13:21 | 000,001,751 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2012/12/29 18:26:27 | 000,057,502 | ---- | M] () -- C:\Users\Mike\Desktop\dinosaur_6226-01.jpg
[2012/12/29 18:26:19 | 000,003,273 | ---- | M] () -- C:\Users\Mike\Desktop\dinosaur_6226-05_thumb.jpg
[2012/12/29 16:06:15 | 000,778,018 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012/12/29 16:06:15 | 000,660,918 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012/12/29 16:06:15 | 000,125,108 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012/12/29 16:06:09 | 000,778,018 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012/12/22 03:19:49 | 005,353,712 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012/12/21 14:41:31 | 000,466,456 | ---- | M] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll
[2012/12/21 14:41:31 | 000,444,952 | ---- | M] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll
[2012/12/15 08:11:02 | 000,000,183 | ---- | M] () -- C:\Users\Mike\Desktop\100147395372.sdx
[2012/12/15 08:11:00 | 000,772,608 | ---- | M] () -- C:\Users\Mike\Desktop\SDM_EN.msi
[2012/12/14 01:43:10 | 000,281,392 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2012/12/12 09:48:18 | 000,014,562 | ---- | M] () -- C:\Users\Mike\Documents\written application - personal assistant.odt
[2012/12/08 22:39:42 | 000,189,248 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.ex0
[2012/12/08 22:39:39 | 000,075,136 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2012/12/08 22:20:22 | 003,123,272 | ---- | M] () -- C:\Windows\SysWow64\pbsvc.exe
[2012/12/05 21:07:32 | 000,041,782 | ---- | M] () -- C:\Users\Mike\Desktop\RE Michael Brandon Estrangement.pdf
[2012/12/05 20:49:54 | 000,012,170 | ---- | M] () -- C:\Users\Mike\Desktop\sandy.png
[2012/12/02 19:52:58 | 000,007,749 | ---- | M] () -- C:\Users\Mike\Documents\400311_300398010014593_234897473231314_754603_1221403152_n.jpg
[2012/12/02 19:51:43 | 000,040,963 | ---- | M] () -- C:\Users\Mike\Documents\tumblr_mcalbfgB1x1rf38dto1_500.jpg
[2012/12/02 19:50:37 | 000,023,332 | ---- | M] () -- C:\Users\Mike\Documents\nig.jpg
[7 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\SysNative\drivers\*.tmp files -> C:\Windows\SysNative\drivers\*.tmp -> ]
[1 C:\Users\Mike\*.tmp files -> C:\Users\Mike\*.tmp -> ]
 
[color=#E56717]========== Files Created - No Company Name ==========[/color]
 
[2012/12/31 15:13:21 | 000,001,751 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2012/12/29 18:26:27 | 000,057,502 | ---- | C] () -- C:\Users\Mike\Desktop\dinosaur_6226-01.jpg
[2012/12/29 18:26:19 | 000,003,273 | ---- | C] () -- C:\Users\Mike\Desktop\dinosaur_6226-05_thumb.jpg
[2012/12/15 14:14:54 | 000,772,608 | ---- | C] () -- C:\Users\Mike\Desktop\SDM_EN.msi
[2012/12/15 14:14:54 | 000,000,183 | ---- | C] () -- C:\Users\Mike\Desktop\100147395372.sdx
[2012/12/05 21:07:30 | 000,041,782 | ---- | C] () -- C:\Users\Mike\Desktop\RE Michael Brandon Estrangement.pdf
[2012/12/05 20:49:54 | 000,012,170 | ---- | C] () -- C:\Users\Mike\Desktop\sandy.png
[2012/12/02 19:52:57 | 000,007,749 | ---- | C] () -- C:\Users\Mike\Documents\400311_300398010014593_234897473231314_754603_1221403152_n.jpg
[2012/12/02 19:51:41 | 000,040,963 | ---- | C] () -- C:\Users\Mike\Documents\tumblr_mcalbfgB1x1rf38dto1_500.jpg
[2012/12/02 19:50:36 | 000,023,332 | ---- | C] () -- C:\Users\Mike\Documents\nig.jpg
[2012/10/29 23:56:03 | 000,000,092 | ---- | C] () -- C:\Users\Mike\AppData\Local\fusioncache.dat
[2012/09/27 15:48:27 | 000,046,067 | ---- | C] () -- C:\Users\Mike\Cube.smd
[2012/09/18 12:49:48 | 000,032,608 | ---- | C] () -- C:\Windows\king-uninstall.exe
[2012/08/28 01:40:23 | 000,000,132 | ---- | C] () -- C:\Users\Mike\AppData\Roaming\Adobe Targa Format CS5 Prefs
[2012/07/16 22:33:44 | 000,860,211 | --S- | C] () -- C:\Windows\SysWow64\XSIFtk-3.6.2.1.dll
[2012/07/08 16:18:10 | 003,130,440 | ---- | C] () -- C:\Windows\SysWow64\pbsvc_blr.exe
[2012/05/02 14:58:10 | 000,029,184 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
[2012/04/04 19:09:35 | 000,129,024 | ---- | C] () -- C:\Windows\SysWow64\AVERM.dll
[2012/04/04 19:09:35 | 000,028,672 | ---- | C] () -- C:\Windows\SysWow64\AVEQT.dll
[2012/03/09 04:31:26 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2012/03/09 04:31:26 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2012/03/08 20:10:39 | 000,000,209 | ---- | C] () -- C:\Users\Mike\dsj.xml
[2012/02/08 01:45:13 | 000,000,132 | ---- | C] () -- C:\Users\Mike\AppData\Roaming\Adobe PNG Format CS5 Prefs
[2011/11/13 09:05:24 | 000,000,361 | ---- | C] () -- C:\Windows\KA.INI
[2011/11/10 19:14:21 | 000,000,001 | ---- | C] () -- C:\Users\Mike\AppData\Local\llftool.4.12.agreement
[2011/10/25 21:21:34 | 000,056,832 | ---- | C] () -- C:\Windows\SysWow64\OVDecoder.dll
[2011/09/28 17:44:14 | 000,179,271 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2011/09/24 01:38:09 | 000,000,464 | ---- | C] () -- C:\Windows\{17FE44E2-D21A-4F0C-BE49-798A8FBC374E}_WiseFW.ini
[2011/09/24 01:32:40 | 000,000,604 | -H-- | C] () -- C:\Program Files (x86)\STLL Notifier
[2011/09/12 22:06:16 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2011/08/31 22:26:17 | 000,000,032 | R--- | C] () -- C:\ProgramData\hash.dat
[2011/08/14 20:40:21 | 000,039,997 | ---- | C] () -- C:\Users\Mike\AppData\Local\Perfmon.PerfmonCfg
[2011/06/25 15:49:12 | 004,874,240 | ---- | C] () -- C:\Windows\SysWow64\DSE2_DFT.dll
[2011/06/03 22:28:32 | 000,645,632 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2011/06/03 22:28:32 | 000,240,640 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2011/05/31 06:39:50 | 000,058,368 | ---- | C] () -- C:\Windows\SysWow64\bdmpegv.dll
[2011/05/31 06:38:18 | 000,015,360 | ---- | C] () -- C:\Windows\SysWow64\bdmjpeg.dll
[2011/05/18 15:24:21 | 000,000,125 | ---- | C] () -- C:\Windows\disney.ini
[2011/03/30 13:39:50 | 000,008,263 | ---- | C] () -- C:\Windows\aiptbl.ini
[2011/03/25 17:50:58 | 000,000,120 | ---- | C] () -- C:\Users\Mike\AppData\Roaming\bb4235d7.dat
[2011/01/27 13:00:40 | 000,031,437 | ---- | C] () -- C:\Users\Mike\AppData\Local\Temp20.html
[2011/01/27 13:00:17 | 000,001,667 | ---- | C] () -- C:\Users\Mike\AppData\Local\Temp1.html
[2009/12/20 17:29:34 | 000,007,600 | ---- | C] () -- C:\Users\Mike\AppData\Local\resmon.resmoncfg
 
[color=#E56717]========== ZeroAccess Check ==========[/color]
 
[2009/07/14 04:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012/06/09 05:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012/06/09 04:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 01:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 12:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 01:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
 
[color=#E56717]========== LOP Check ==========[/color]
 
[2012/10/22 20:26:30 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\.minecraft
[2011/12/10 11:24:57 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\.minecraft - BACKUP
[2011/08/26 10:45:16 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\AMD
[2011/12/26 11:13:27 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\AtomZombieData
[2011/04/30 02:18:34 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\AtomZombieDemoData
[2012/05/30 14:49:58 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Audacity
[2011/06/28 13:38:42 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Autodesk
[2011/08/28 20:24:56 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Backup Tickets
[2011/12/05 01:16:16 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\BAMZOOKi SW
[2010/12/26 19:49:14 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Beat Hazard
[2012/02/15 12:28:06 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\BigHugeEngine
[2012/11/12 16:59:13 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Bioshock
[2010/04/26 20:11:55 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Blender Foundation
[2011/03/08 12:46:29 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Braid
[2011/08/07 10:16:06 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Broken Rules
[2012/08/16 12:44:58 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\calibre
[2011/08/28 20:59:52 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Canon
[2011/08/31 21:52:02 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Celemony Software GmbH
[2011/11/24 20:29:09 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2011/11/12 13:11:56 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\CheckPoint
[2010/12/08 15:54:52 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Chime
[2011/11/15 18:38:44 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Colibri Games
[2012/11/25 15:39:16 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\collection
[2011/08/28 20:26:03 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Configuration
[2012/08/24 16:20:56 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Crayon Physics Deluxe
[2012/03/08 20:09:22 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\D-Zed Software
[2011/03/22 11:34:30 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\DAEMON Tools Lite
[2012/02/06 23:33:18 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\DarknessIIDemo
[2011/06/14 20:13:34 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\DisneyInteractiveStudios
[2012/04/02 13:24:05 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Doublefine
[2011/06/07 09:47:33 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Dwarfs
[2012/11/26 01:55:50 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Dynamite Jack
[2012/12/15 14:15:56 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\e-academy Inc
[2010/06/17 22:24:30 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Facebook
[2012/11/26 02:01:32 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\FatShark
[2012/06/09 22:56:35 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\fltk.org
[2010/01/21 12:56:41 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\fofix
[2012/09/11 14:37:05 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\gd.sos.McPixel
[2012/04/02 13:03:24 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Hive Cluster
[2010/01/13 11:32:10 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Hypercosm
[2011/06/06 10:31:45 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Ice-pick Lodge
[2010/03/27 17:27:04 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\ImgBurn
[2012/11/25 12:41:23 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Kalypso Media
[2011/08/06 21:42:16 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Lazy 8 Studios
[2009/12/23 11:12:35 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Leadertech
[2011/10/20 11:23:28 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\LightFish
[2011/05/25 10:46:32 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Lionhead Studios
[2012/12/31 22:30:16 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Little Inferno
[2012/03/05 05:57:15 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\LOVE
[2010/05/25 19:08:21 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\LucasArts
[2012/10/20 22:08:47 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\MAXON
[2012/11/21 22:43:13 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\MonoDevelop-Unity
[2010/05/30 09:54:51 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\MotioninJoy
[2012/11/25 19:37:52 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Natural Selection 2
[2011/12/14 13:21:41 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Nicalis
[2011/07/30 12:21:44 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\okino
[2011/10/02 13:56:48 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\OnLive App
[2010/01/22 11:54:42 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\OnReally
[2011/04/06 18:33:23 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\OpenOffice.org
[2012/11/05 18:55:37 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Origin
[2012/10/12 16:21:02 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\PACE Anti-Piracy
[2011/08/06 01:25:32 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Pokemon Online
[2012/01/22 23:32:36 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Polynomial
[2011/03/21 11:45:04 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\PunkBuster
[2010/11/24 20:49:33 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Quest3D
[2012/11/21 17:58:02 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Quixel
[2012/05/25 14:13:32 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\RenPy
[2010/11/24 20:49:32 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Roaming
[2012/02/22 20:33:54 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\RotMG.Production
[2010/11/15 23:11:09 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\SecondLife
[2012/02/06 10:07:04 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Sony Online Entertainment
[2011/03/18 19:01:41 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\SPORE
[2010/09/29 19:41:43 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Sports Interactive
[2011/11/27 18:06:05 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Spotify
[2011/11/11 21:08:20 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2012/08/25 15:49:34 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Synthesia
[2011/02/12 06:09:41 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\System
[2011/09/11 15:39:49 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\SystemRequirementsLab
[2011/08/28 20:24:57 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Temp
[2012/05/26 01:31:35 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Toon Boom Animation
[2011/08/10 15:21:33 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Tropico 4 Demo
[2010/12/24 15:49:41 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Ubisoft
[2012/10/12 16:21:47 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Unity
[2013/01/01 01:36:50 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\uTorrent
[2011/11/01 19:32:12 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Voxatron
[2012/12/07 21:14:23 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Warner Bros. Interactive Entertainment
[2012/04/05 17:04:29 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Waveform
[2011/03/12 14:29:36 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Windows Live Writer
[2011/04/29 23:29:41 | 000,000,000 | -HSD | M] -- C:\Users\Mike\AppData\Roaming\wyUpdate AU
[2011/04/03 19:06:28 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\XnView
[2011/11/06 12:21:37 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\Zen Puzzle Garden
[2012/05/19 09:49:38 | 000,000,000 | ---D | M] -- C:\Users\Mike\AppData\Roaming\ZenBound2
 
[color=#E56717]========== Purity Check ==========[/color]
 
 
 
[color=#E56717]========== Alternate Data Streams ==========[/color]
 
@Alternate Data Stream - 906 bytes -> C:\ProgramData\TEMP:97B59CE9
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:C8B8CEBD

< End of report >


  • 0

Advertisements


#2
Willium_Bob_Cole

Willium_Bob_Cole

    Member

  • Topic Starter
  • Member
  • PipPip
  • 46 posts
Also, this hasn't happened to me, but night before last, and tonight, my gf has tried to use firefox (on this same computer) and it closes on her with error about plugins, so I had to put it in safe mode. It seems a plugin on firefox is, occasionally, to blame for firefox problems. Not frequent, but yeah.
  • 0

#3
Dakeyras

Dakeyras

    Anti-Malware Mammoth

  • Expert
  • 9,684 posts

Please note that all instructions given are customised for this computer only, the tools used may cause damage if used on a computer with different infections.

If you think you have similar problems, please post the appropriate logs in the Malware Removal forum and wait for help.

Hi and welcome back to Geeks to Go. :)

I'm Dakeyras and I am going to try to assist you with your problem. Please take note of the below:

  • I will start working on your Malware issues, this may or may not, solve other issues you have with your machine.
  • The fixes are specific to your problem and should only be used for this issue on this machine!
  • The process is not instant. Please continue to review my answers until I tell you your machine is clear. Absence of symptoms does not mean that everything is clear.
  • If you don't know, stop and ask! Don't keep going on.
  • Please reply to this thread. Do not start a new topic.
  • Refrain from running self fixes as this will hinder the malware removal process.
  • It may prove beneficial if you print of the following instructions or save them to notepad as I post them.
  • Your security programs may give warnings for some of the tools I will ask you to use. Be assured, any links I give are safe.
Windows 7 Advice:

All applications I ask to be used will require to be run in Administrator mode. IE: Right click on and select Run as Administrator.

The Operating System in use comes with a inbuilt utility called User Access Control(UAC) when prompted by this with anything I ask you to do carry out please select the option Allow.

Before we start:

Please be aware that removing Malware is a potentially hazardous undertaking. I will take care not to knowingly suggest courses of action that might damage your computer. However it is impossible for me to foresee all interactions that may happen between the software on your computer and those we'll use to clear you of infection, and I cannot guarantee the safety of your system. It is possible that we might encounter situations where the only recourse is to re-format and re-install your operating system, or to necessitate you taking your computer to a repair shop.

Because of this, I advise you to backup any personal files and folders before you start.

Next:

I have read through your waiting room topic and taken into account what you mentioned etc. Since it has been some time since your original request for assistance I would like some new logs to review as follows. Also just cut 'n' paste them directly into your replies rather than inside a code box, thank you.

Scan with aswMBR:

Please download aswMBR.exe to your desktop.

  • Right-click the aswMBR.exe and select Run as Administrator to start aswMBR.
  • When prompted with The application can use the Avast! Free Antivirus for scanning >> select No
  • Now click on the Scan button to start scan
  • On completion of the scan click Save Log, save it to your desktop and post the contents in your next reply
Note: There will also be a file on your desktop named MBR.dat(or similar) do not delete this for now it is a actual backup of the MBR(master boot record).

Re-scan with OTL:

  • Right-click on OTL.exe and select Run as Administrator to start OTL.
  • Ensure Include 64bit Scans is selected.
  • Under Output, ensure that Minimal Output is selected.
  • Under Extra Registry section, select Use SafeList.
  • Click the Scan All Users checkbox.
  • Click on Run Scan at the top left hand corner.
  • When done, two Notepad files will open.
    • OTL.txt <-- Will be opened
    • Extra.txt <-- Will be minimized
  • Please post the contents of these 2 Notepad files in your next reply.
When completed the above, please post back the following in the order asked for:

  • How is your computer performing now, any further symptoms and or problems encountered?
  • aswMBR Log.
  • Both OTL logs. <-- Post them individually please, IE: one Log per post/reply.

  • 0

#4
Willium_Bob_Cole

Willium_Bob_Cole

    Member

  • Topic Starter
  • Member
  • PipPip
  • 46 posts
Thank you for your reply, I have downloaded aswMBR and will run the scan and then redo OTL with the settings requested, and post the 3 logs seperately, which should be completed shortly. Just to reiterate the situation and update you as to how things are now:

I started getting the crashes not long after cleaning out my case. After trying a few things, I figured maybe I didn't put my CPU heatsink back properly, so I recleaned it and reapplied thermal paste (the stuff I put on before didnt seem to cover fully or evenly...) and it seemed to have resolved that problem. In my other thread, the guy suggested also that lack of HDD space may be to blame, and I had been meaning to upgrade my storage for a long time, so I have gotten a 3TB HDD which now houses my entire steam library of over 300 games. (I had a couple issue with this new HDD which I will detail shortly) And this was running fine.

Then, after an intense gaming session last night till about 5AM, I woke up to play some more this morning at about 11... and the crashes came back... AGAIN. I am now posting in safe mode. I tried the reappling thermal paste trick but didn't fix it this time around. Even though I thought I was doing the paste properly, the last batch was, again, seemingly only covering the edges of the required area... I don't know if the heatsink is being clamped too tightly to the cpu as to squeeze all the paste out or what, and it may well have happened immediately this time hence not fixing the problem. Otherwise I don't know what the cause could be...



--------------- (might be TLDR, this is for my reference as well as yours and the people in the hardware thread when I go back to that)
Regarding the new hard drive... I was previously running a second HDD of about 400GB (my boot drive is 500GB and my new HDD is 3TB). The 400GB was given to me second had by a friend, and after setting it up, it was fine for a while, despite having a damaged sata cable (just a little bit of plastic chipped of the connector, nothing too drastic). Then, it would start disappearing from my computer, often whilst I was loading something such as photoshop or a game. I thought it might be overheating, so I would shut down, leave it for a while, and it would be fine when I came back. Then after some times of this, it wouldn't reliably show up after shutting down so I would leave it disconnected for maybe a week, then try it again, and it would work. One time after it disconnected when loading, it had to run chkdsk after rebooting, and it recovered all the files into one folder and I had to manually put them back where they came from. Then recently it disconnected again but it just doesn't seem to connect at all any more... I can still see it's information in BIOS (when plugged in of course), but nowhere else in my computer. I would like, soon, to be able to recover as much of this as possible...

So anyway, I got my new, 3TB drive, and it didn't come with cables, so I am using the same damaged sata cable as before. It was plugged into the same mobo port and it would recognise in BIOS, but not in windows. I switched the port on the mobo, and it set up and worked just fine. Because of this, I thought maybe only the sata port on the motherboard was damaged and my 400GB drive would be still recoverable on this other port... but again, it showed in BIOS, but not in windows, so I thought "oh well, I guess I can't recover this". I switched the cable back over to my 3TB drive... but it wouldn't recognise in windows! I again moved the cable to a new port on the mobo and it worked again and is still working now! SO, it SEEMS like, the 400GB HDD is broken and, in some way, is damaging the sata ports it connects to, or the motherboard, OR the mobo itself is broken and is causing problems, because, only once, but the other day, my new 3TB drive did the same disconnecting thing my 400GB drive used to do. I was downloading games on steam, then an error message came up saying steam has stopped working, tried loading it from a shortcut and it said it refers to a location that is unavailable, and lo and behold, it had disappeared from my computer. Checked in BIOS and it was there, and it is again working fine, but I am now worried that my brand new HDD is being, is going to be, or is damaged... Also, that time in BIOS it registered as 3TB like it should, but checking now (I was looking at CPU temps because the crashes are coming back >< ), it registers only as about 800GB... It still works as 3TB in windows, but should I be concerned?
---------------


I will post back shortly with the logs you requested. Thanks again =]
  • 0

#5
Dakeyras

Dakeyras

    Anti-Malware Mammoth

  • Expert
  • 9,684 posts
Acknowledged and you're welcome! :)
  • 0

#6
Willium_Bob_Cole

Willium_Bob_Cole

    Member

  • Topic Starter
  • Member
  • PipPip
  • 46 posts
aswMBR log. Note that it didn't ask me whether or not to use Avast! Free Antivirus for scanning, so I hope this is right.



aswMBR version 0.9.9.1707 Copyright© 2011 AVAST Software
Run date: 2013-01-19 15:02:36
-----------------------------
15:02:36.081 OS Version: Windows x64 6.1.7601 Service Pack 1
15:02:36.081 Number of processors: 4 586 0x1E05
15:02:36.081 ComputerName: MIKES-PC UserName: Mike
15:02:36.643 Initialize success
15:02:38.899 AVAST engine defs: 13011900
15:03:12.647 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-4
15:03:12.647 Disk 0 Vendor: SAMSUNG_HD502HJ 1AJ100E4 Size: 476940MB BusType: 3
15:03:12.647 Disk 1 \Device\Harddisk1\DR1 -> \Device\Ide\IdeDeviceP5T0L0-a
15:03:12.647 Disk 1 Vendor: ST3000DM001-9YN166 CC4B Size: 2861588MB BusType: 3
15:03:12.663 Disk 0 MBR read successfully
15:03:12.663 Disk 0 MBR scan
15:03:13.006 Disk 0 Windows 7 default MBR code
15:03:13.022 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 10000 MB offset 2048
15:03:13.302 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 466936 MB offset 20482875
15:03:13.568 Disk 0 scanning C:\Windows\system32\drivers
15:03:28.232 Service scanning
15:03:46.523 Modules scanning
15:03:46.523 Disk 0 trace - called modules:
15:03:46.538 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys ataport.SYS pciide.sys PCIIDEX.SYS hal.dll atapi.sys
15:03:46.554 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004caf060]
15:03:46.554 3 CLASSPNP.SYS[fffff8800181743f] -> nt!IofCallDriver -> [0xfffffa8004a8f520]
15:03:46.554 5 ACPI.sys[fffff88000f127a1] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP2T0L0-4[0xfffffa8004a8a680]
15:03:47.037 AVAST engine scan C:\Windows
15:03:49.943 AVAST engine scan C:\Windows\system32
15:06:35.786 AVAST engine scan C:\Windows\system32\drivers
15:06:45.236 AVAST engine scan C:\Users\Mike
15:59:42.146 AVAST engine scan C:\ProgramData
16:08:06.482 Scan finished successfully
16:10:20.097 Disk 0 MBR has been saved successfully to "C:\Users\Mike\Desktop\MBR.dat"
16:10:20.097 The log file has been saved successfully to "C:\Users\Mike\Desktop\aswMBR.txt"
  • 0

#7
Willium_Bob_Cole

Willium_Bob_Cole

    Member

  • Topic Starter
  • Member
  • PipPip
  • 46 posts
OTL logfile created on: 19/01/2013 04:12:48 PM - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Mike\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

3.99 Gb Total Physical Memory | 2.02 Gb Available Physical Memory | 50.69% Memory free
7.98 Gb Paging File | 6.25 Gb Available in Paging File | 78.36% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 455.99 Gb Total Space | 220.59 Gb Free Space | 48.38% Space Free | Partition Type: NTFS
Drive T: | 2794.39 Gb Total Space | 1800.53 Gb Free Space | 64.43% Space Free | Partition Type: NTFS

Computer Name: MIKES-PC | User Name: Mike | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Users\Mike\AppData\Local\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_5_502_146.exe (Adobe Systems, Inc.)
PRC - C:\Users\Mike\Desktop\OTL.exe (OldTimer Tools)


========== Modules (No Company Name) ==========

MOD - C:\Users\Mike\AppData\Local\Mozilla Firefox\mozjs.dll ()
MOD - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_146.dll ()


========== Services (SafeList) ==========

SRV:64bit: - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD)
SRV:64bit: - (avast! Antivirus) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV:64bit: - (FLEXnet Licensing Service 64) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe (Flexera Software, Inc.)
SRV:64bit: - (mi-raysat_3dsmax2012_64) -- C:\Program Files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe ()
SRV:64bit: - (PSI_SVC_2_x64) -- c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe (arvato digital services llc)
SRV:64bit: - (wlcrasvc) -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe (Microsoft Corporation)
SRV:64bit: - (LVPrcS64) -- C:\Program Files\Common Files\logishrd\LVMVFM\LVPrcSrv.exe (Logitech Inc.)
SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV:64bit: - (WTService) -- C:\Windows\SysNative\atwtusb.exe ()
SRV - (Steam Client Service) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation)
SRV - (PnkBstrA) -- C:\Windows\SysWOW64\PnkBstrA.exe ()
SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
SRV - (SkypeUpdate) -- C:\Program Files (x86)\Skype\Updater\Updater.exe (Skype Technologies)
SRV - (HiPatchService) -- C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe (Hi-Rez Studios)
SRV - (npggsvc) -- C:\Windows\SysWOW64\GameMon.des (INCA Internet Co., Ltd.)
SRV - (BOINC) -- C:\Program Files (x86)\Charity Engine\boinc.exe (Charity Engine)
SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (FLEXnet Licensing Service) -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Macrovision Europe Ltd.)
SRV - (nosGetPlusHelper) -- C:\Program Files (x86)\NOS\bin\getPlus_Helper_3004.dll (NOS Microsystems Ltd.)
SRV - (Macromedia Licensing Service) -- C:\Program Files (x86)\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe ()
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (SwitchBoard) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
SRV - (getPlusHelper) -- C:\Program Files (x86)\NOS\bin\getPlus_Helper.dll (NOS Microsystems Ltd.)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)


========== Driver Services (SafeList) ==========

DRV:64bit: - (atikmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (Advanced Micro Devices, Inc.)
DRV:64bit: - (amdkmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (Advanced Micro Devices, Inc.)
DRV:64bit: - (amdkmdap) -- C:\Windows\SysNative\drivers\atikmpag.sys (Advanced Micro Devices, Inc.)
DRV:64bit: - (MotioninJoyXFilter) -- C:\Windows\SysNative\drivers\MijXfilt.sys (MotioninJoy)
DRV:64bit: - (aswTdi) -- C:\Windows\SysNative\drivers\aswTdi.sys (AVAST Software)
DRV:64bit: - (aswSnx) -- C:\Windows\SysNative\drivers\aswSnx.sys (AVAST Software)
DRV:64bit: - (aswSP) -- C:\Windows\SysNative\drivers\aswSP.sys (AVAST Software)
DRV:64bit: - (aswMonFlt) -- C:\Windows\SysNative\drivers\aswMonFlt.sys (AVAST Software)
DRV:64bit: - (aswFsBlk) -- C:\Windows\SysNative\drivers\aswFsBlk.sys (AVAST Software)
DRV:64bit: - (aswRdr) -- C:\Windows\SysNative\drivers\aswRdr2.sys (AVAST Software)
DRV:64bit: - (USBAAPL64) -- C:\Windows\SysNative\drivers\usbaapl64.sys (Apple, Inc.)
DRV:64bit: - (GEARAspiWDM) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys (GEAR Software Inc.)
DRV:64bit: - (SCDEmu) -- C:\Windows\SysNative\drivers\scdemu.sys (Power Software Ltd)
DRV:64bit: - (AtiHDAudioService) -- C:\Windows\SysNative\drivers\AtihdW76.sys (Advanced Micro Devices)
DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:64bit: - (MBAMProtector) -- C:\Windows\SysNative\drivers\mbam.sys (Malwarebytes Corporation)
DRV:64bit: - (VBoxNetAdp) -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys (Oracle Corporation)
DRV:64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek )
DRV:64bit: - (dtsoftbus01) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys (DT Soft Ltd)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (atksgt) -- C:\Windows\SysNative\drivers\atksgt.sys ()
DRV:64bit: - (lirsgt) -- C:\Windows\SysNative\drivers\lirsgt.sys ()
DRV:64bit: - (fssfltr) -- C:\Windows\SysNative\drivers\fssfltr.sys (Microsoft Corporation)
DRV:64bit: - (PxHlpa64) -- C:\Windows\SysNative\drivers\PxHlpa64.sys (Sonic Solutions)
DRV:64bit: - (DM9USB) -- C:\Windows\SysNative\drivers\dm9usb.sys (DAVICOM Semiconductor, Inc. )
DRV:64bit: - (xusb21) -- C:\Windows\SysNative\drivers\xusb21.sys (Microsoft Corporation)
DRV:64bit: - (LVUVC64) -- C:\Windows\SysNative\drivers\lvuvc64.sys (Logitech Inc.)
DRV:64bit: - (lvsels64) -- C:\Windows\SysNative\drivers\lvsels64.sys (Logitech Inc.)
DRV:64bit: - (LVRS64) -- C:\Windows\SysNative\drivers\lvrs64.sys (Logitech Inc.)
DRV:64bit: - (lvpopf64) -- C:\Windows\SysNative\drivers\lvpopf64.sys (Logitech Inc.)
DRV:64bit: - (LVPr2Mon) -- C:\Windows\SysNative\drivers\LVPr2M64.sys ()
DRV:64bit: - (LVPr2M64) -- C:\Windows\SysNative\drivers\LVPr2M64.sys ()
DRV:64bit: - (AtiHdmiService) -- C:\Windows\SysNative\drivers\AtiHdmi.sys (ATI Technologies, Inc.)
DRV:64bit: - (VClone) -- C:\Windows\SysNative\drivers\VClone.sys (Elaborate Bytes AG)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (VIAHdAudAddService) -- C:\Windows\SysNative\drivers\viahduaa.sys (VIA Technologies, Inc.)
DRV:64bit: - (netr7364) -- C:\Windows\SysNative\drivers\netr7364.sys (Ralink Technology, Corp.)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:64bit: - (adfs) -- C:\Windows\SysNative\drivers\adfs.sys (Adobe Systems, Inc.)
DRV:64bit: - (RTL8169) -- C:\Windows\SysNative\drivers\Rtlh64.sys (Realtek )
DRV:64bit: - (vhidmini) -- C:\Windows\SysNative\drivers\walvhid.sys (Windows ® Codename Longhorn DDK provider)
DRV:64bit: - (moufiltr) -- C:\Windows\SysNative\drivers\moufiltr.sys (Windows ® Codename Longhorn DDK provider)
DRV:64bit: - (monfilt) -- C:\Windows\SysNative\drivers\monfilt.sys (Creative Technology Ltd.)
DRV:64bit: - (ENTECH64) -- C:\Windows\SysNative\drivers\Entech64.sys (EnTech Taiwan)
DRV:64bit: - (hwdatacard) -- C:\Windows\SysNative\drivers\ewusbmdm.sys (Huawei Technologies Co., Ltd.)
DRV:64bit: - (MTsensor) -- C:\Windows\SysNative\drivers\ASACPI.sys ()
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)
DRV - (adfs) -- C:\Windows\SysWow64\drivers\adfs.sys (Adobe Systems, Inc.)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-2877518406-3504683670-2877553021-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.meshcomputersownersclub.com
IE - HKU\S-1-5-21-2877518406-3504683670-2877553021-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.meshcomputersownersclub.com
IE - HKU\S-1-5-21-2877518406-3504683670-2877553021-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-2877518406-3504683670-2877553021-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE8SRC
IE - HKU\S-1-5-21-2877518406-3504683670-2877553021-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-2877518406-3504683670-2877553021-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..extensions.enabledAddons: en-GB%40dictionaries.addons.mozilla.org:1.19.1
FF - prefs.js..extensions.enabledAddons: %7B23fcfd51-4958-4f00-80a3-ae97e717ed8b%7D:2.1.2.145
FF - prefs.js..extensions.enabledAddons: wrc%40avast.com:7.0.1474
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:18.0
FF - prefs.js..extensions.enabledItems: {E2883E8F-472F-4fb0-9522-AC9BF37916A7}:1.6.2.91
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: [email protected]:8477
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: [email protected]:6.0.1367
FF - prefs.js..extensions.enabledItems: [email protected]:1.0.53.2
FF - prefs.js..extensions.enabledItems: {0b38152b-1b20-484d-a11f-5e04a9b0661f}:5.6.17.1
FF - prefs.js..extensions.enabledItems: {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.2.145
FF - prefs.js..extensions.enabledItems: {01A8CA0A-4C96-465b-A49B-65C46FAD54F9}:6.0
FF - prefs.js..network.proxy.no_proxies_on: "*.local"


FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_5_502_146.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_146.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1168638.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@checkpoint.com/FFApi: C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\npFFApi.dll File not found
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.0: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.0\npesnsonar.dll File not found
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@hypercosm.com/HypercosmPlayer: C:\Program Files (x86)\Hypercosm\Hypercosm Player\components\nphypercosm.dll (Hypercosm LLC)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.7.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@ngm.nexoneu.com/NxGame: C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@nosltd.com/getPlus+®,version=1.6.2.103: C:\Program Files (x86)\NOS\bin\np_gp.dll (NOS Microsystems Ltd.)
FF - HKLM\Software\MozillaPlugins\@nosltd.com/getPlus+®,version=1.6.2.91: C:\Program Files (x86)\NOS\bin\np_gp.dll (NOS Microsystems Ltd.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.4: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@facebook.com/FBPlugin,version=1.0.3: C:\Users\Mike\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll ( )
FF - HKCU\Software\MozillaPlugins\@onlive.com/OnLiveGameClientDetector,version=1.0.0: C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll (OnLive)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Mike\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll (Ubisoft)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}: D:\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}: C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012/06/21 19:16:19 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Alwil Software\Avast5\WebRep\FF [2012/11/05 18:51:11 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.16\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/11/12 14:22:34 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.16\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/01/10 12:11:31 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 4.0\extensions\\Components: C:\Users\Mike\AppData\Local\Mozilla Firefox\components [2013/01/11 12:40:01 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 4.0\extensions\\Plugins: C:\Users\Mike\AppData\Local\Mozilla Firefox\plugins [2013/01/11 12:39:44 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 18.0\extensions\\Components: C:\Users\Mike\AppData\Local\Mozilla Firefox\components [2013/01/11 12:40:01 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 18.0\extensions\\Plugins: C:\Users\Mike\AppData\Local\Mozilla Firefox\plugins [2013/01/11 12:39:44 | 000,000,000 | ---D | M]

[2009/12/23 10:15:23 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Mike\AppData\Roaming\Mozilla\Extensions
[2012/11/23 12:14:35 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\xs62pm0i.default\extensions
[2012/06/18 19:39:34 | 000,000,000 | ---D | M] (British English Dictionary) -- C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\xs62pm0i.default\extensions\[email protected]
[2011/04/01 14:31:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\xs62pm0i.default\extensions\nostmp
[2012/11/23 12:14:35 | 000,804,627 | ---- | M] () (No name found) -- C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\xs62pm0i.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2011/07/18 17:01:28 | 000,002,354 | ---- | M] () -- C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\xs62pm0i.default\searchplugins\aol-web-search.xml
[2011/02/20 23:18:38 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2010/05/25 18:28:10 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010/08/06 17:16:06 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2011/01/01 17:41:48 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
[2011/02/20 23:18:38 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2012/06/21 19:16:19 | 000,000,000 | ---D | M] (DivX Plus Web Player HTML5 &lt;video&gt;) -- C:\PROGRAM FILES (X86)\DIVX\DIVX PLUS WEB PLAYER\FIREFOX\DIVXHTML5
[2012/11/05 18:51:11 | 000,000,000 | ---D | M] (avast! WebRep) -- C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST5\WEBREP\FF
[2010/03/08 10:24:04 | 000,103,168 | ---- | M] (Midasplayer Ltd) -- C:\Program Files (x86)\mozilla firefox\plugins\npmidas.dll
[2010/07/12 16:33:56 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll
[2010/12/11 20:38:33 | 000,001,538 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazon-en-GB.xml
[2010/12/11 20:38:33 | 000,000,947 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\chambers-en-GB.xml
[2010/12/11 20:38:33 | 000,000,769 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-en-GB.xml
[2010/12/11 20:38:33 | 000,001,135 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-en-GB.xml

========== Chrome ==========

CHR - homepage: http://www.google.co.uk/
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}&sugkey={google:suggestAPIKeyParameter}
CHR - homepage: http://www.google.co.uk/
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.91\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.91\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.91\gcswf32.dll
CHR - plugin: Shockwave Flash (Disabled) = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_235.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll
CHR - plugin: Java Deployment Toolkit 6.0.310.5 (Enabled) = C:\Users\Mike\AppData\Local\Mozilla Firefox\plugins\npdeployJava1.dll
CHR - plugin: Java™ Platform SE 6 U31 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: downloadUpdater (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npdnu.dll
CHR - plugin: downloadUpdater2 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npdnupdater2.dll
CHR - plugin: Windows Genuine Advantage (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npLegitCheckPlugin.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: Winamp Application Detector (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npwachk.dll
CHR - plugin: getPlusPlus for Adobe 162103 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\np_gp.dll
CHR - plugin: ESN Launch Mozilla Plugin (Enabled) = C:\Program Files (x86)\Battlelog Web Plugins\0.80.0\npesnlaunch.dll
CHR - plugin: ESN Sonar API (Enabled) = C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.0\npesnsonar.dll
CHR - plugin: DivX VOD Helper Plug-in (Enabled) = C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
CHR - plugin: DivX Plus Web Player (Enabled) = C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Hypercosm Player (Enabled) = C:\Program Files (x86)\Hypercosm\Hypercosm Player\components\nphypercosm.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - plugin: OnLive Game Client Detector (Enabled) = C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll
CHR - plugin: VLC Web Plugin (Enabled) = C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: npFFApi (Enabled) = C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\npFFApi.dll
CHR - plugin: Nexon Game Controller (Enabled) = C:\ProgramData\NexonEU\NGM\npNxGameeu.dll
CHR - plugin: Unity Player (Enabled) = C:\Users\Mike\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
CHR - plugin: Facebook Plugin (Enabled) = C:\Users\Mike\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Windows\system32\Adobe\Director\np32dsw.dll
CHR - Extension: YouTube = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: YouTube = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_1\
CHR - Extension: Google Search = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Google Search = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_1\
CHR - Extension: Photo Zoom for Facebook = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\elioihkkcdgakfbahdoddophfngopipi\1.1206.11.1_0\
CHR - Extension: Photo Zoom for Facebook = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\elioihkkcdgakfbahdoddophfngopipi\1.1208.30.1_0\
CHR - Extension: AdBlock = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.5.41_0\
CHR - Extension: AdBlock = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.5.48_0\
CHR - Extension: Flood-It! = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\hidcjhphimkfnacedjcnajpmlaegnddp\1.11_0\
CHR - Extension: avast! WebRep = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1466_0\
CHR - Extension: avast! WebRep = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1474_0\
CHR - Extension: Tiny Balls = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\kaiflebloonfmcndeohafmphnandedlf\1.51_0\
CHR - Extension: Little Alchemy = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd\0.0.12_0\
CHR - Extension: Little Alchemy = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd\0.0.15.7_0\
CHR - Extension: Rango: The WORLD = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\ladlgddeghalkmimaamlhbfaglfcdiep\1.0_0\
CHR - Extension: Clickable Links = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\mblbciejcodpealifnhfjbdlkedplodp\1.1.4_0\
CHR - Extension: Facebook Notifications = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmameahlembdcigphohgiodcgjomcgeo\1.27_0\
CHR - Extension: DivX Plus Web Player HTML5 \u003Cvideo\u003E = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\
CHR - Extension: Falling Sand Game = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdknckljjbdpkhgmcokoahffbdinafbo\1.3_0\
CHR - Extension: PhotoFit Me = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdpbdnchfplfpdjbckgbmpnddnjdijjk\1.0.0.4_0\
CHR - Extension: Gmail = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
CHR - Extension: Gmail = C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\

O1 HOSTS File: ([2011/12/03 23:46:08 | 000,001,394 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1 practivate.adobe.com
O1 - Hosts: 127.0.0.1 ereg.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com
O1 - Hosts: 127.0.0.1 wip3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com
O1 - Hosts: 127.0.0.1 activate-sea.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com
O1 - Hosts: 127.0.0.1 adobe.activate.com
O1 - Hosts: 127.0.0.1 adobeereg.com
O1 - Hosts: 127.0.0.1 www.adobeereg.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 hl2rcv.adobe.com
O2:64bit: - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll (AVAST Software)
O2 - BHO: (ContributeBHO Class) - {074C1DC5-9320-4A9A-947D-C042949C6216} - D:\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll File not found
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3:64bit: - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll (AVAST Software)
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (Contribute Toolbar) - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - D:\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll File not found
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:64bit: - HKLM..\Run: [] File not found
O4:64bit: - HKLM..\Run: [MacroKeyManager] C:\Windows\SysNative\WTMKM.exe ()
O4 - HKLM..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe (AMD)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [avast] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe File not found
O4 - HKLM..\Run: [boincmgr] C:\Program Files (x86)\Charity Engine\charityengine.exe (Charity Engine)
O4 - HKLM..\Run: [boinctray] C:\Program Files (x86)\Charity Engine\boinctray.exe (Charity Engine)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE (Power Software Ltd)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2877518406-3504683670-2877553021-1000..\Run: [AdobeBridge] File not found
O4 - HKU\S-1-5-21-2877518406-3504683670-2877553021-1000..\Run: [AtiTrayTools] C:\Program Files (x86)\Ray Adams\ATI Tray Tools\atitray.exe (Ray Adams)
O4 - HKU\S-1-5-21-2877518406-3504683670-2877553021-1000..\Run: [DS3 Tool] C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe (www.motioninjoy.com)
O4 - HKU\S-1-5-21-2877518406-3504683670-2877553021-1000..\Run: [Xvid] C:\Program Files (x86)\Xvid\CheckUpdate.exe ()
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - Startup: C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\atitray.lnk = C:\Program Files (x86)\Ray Adams\ATI Tray Tools\atitray.exe (Ray Adams)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\S-1-5-21-2877518406-3504683670-2877553021-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O7 - HKU\S-1-5-21-2877518406-3504683670-2877553021-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: _NoDriveTypeAutoRun = 255
O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MIF5BA~1\Office12\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MIF5BA~1\Office12\EXCEL.EXE/3000 File not found
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000010 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKU\.DEFAULT\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: sony.com ([]* in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: sony.com ([]* in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: clonewarsadventures.com ([]* in )
O15 - HKU\S-1-5-19\..Trusted Domains: freerealms.com ([]* in )
O15 - HKU\S-1-5-19\..Trusted Domains: soe.com ([]* in )
O15 - HKU\S-1-5-19\..Trusted Domains: sony.com ([]* in )
O15 - HKU\S-1-5-20\..Trusted Domains: clonewarsadventures.com ([]* in )
O15 - HKU\S-1-5-20\..Trusted Domains: freerealms.com ([]* in )
O15 - HKU\S-1-5-20\..Trusted Domains: soe.com ([]* in )
O15 - HKU\S-1-5-20\..Trusted Domains: sony.com ([]* in )
O15 - HKU\S-1-5-21-2877518406-3504683670-2877553021-1000\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-2877518406-3504683670-2877553021-1000\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-2877518406-3504683670-2877553021-1000\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-2877518406-3504683670-2877553021-1000\..Trusted Domains: sony.com ([]* in Trusted sites)
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} http://cdn.scan.onec...s/wlscctrl2.cab (Windows Live OneCare safety scanner control)
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} http://messenger.zon...wn.cab56986.cab (Solitaire Showdown Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.9.2)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zon...nt.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.9.2)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.m...ash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (get_atlcom Class)
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} http://messenger.zon...er.cab56986.cab (Minesweeper Flags Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2F4F344D-9069-4023-B1AD-C06E6FF9C72D}: DhcpNameServer = 192.168.0.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{6c69023d-38d9-11df-b3a7-90e6bad52e3d}\Shell - "" = AutoRun
O33 - MountPoints2\{6c69023d-38d9-11df-b3a7-90e6bad52e3d}\Shell\AutoRun\command - "" = D:\AutoRun.exe
O33 - MountPoints2\{6c690252-38d9-11df-b3a7-90e6bad52e3d}\Shell - "" = AutoRun
O33 - MountPoints2\{6c690252-38d9-11df-b3a7-90e6bad52e3d}\Shell\AutoRun\command - "" = D:\AutoRun.exe
O33 - MountPoints2\{6c69027f-38d9-11df-b3a7-90e6bad52e3d}\Shell - "" = AutoRun
O33 - MountPoints2\{6c69027f-38d9-11df-b3a7-90e6bad52e3d}\Shell\AutoRun\command - "" = D:\AutoRun.exe
O33 - MountPoints2\{7f0bc569-539c-11e0-8c8a-90e6bad52e3d}\Shell - "" = AutoRun
O33 - MountPoints2\{7f0bc569-539c-11e0-8c8a-90e6bad52e3d}\Shell\AutoRun\command - "" = F:\AUTORUN.EXE
O33 - MountPoints2\D\Shell - "" = AutoRun
O33 - MountPoints2\D\Shell\AutoRun\command - "" = D:\Setup.exe
O33 - MountPoints2\G\Shell - "" = AutoRun
O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\Launcher.exe
O33 - MountPoints2\H\Shell - "" = AutoRun
O33 - MountPoints2\H\Shell\AutoRun\command - "" = H:\Setup.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2013/01/19 15:05:57 | 000,000,000 | ---D | C] -- C:\Users\Mike\Desktop\old OTLs
[2013/01/19 14:35:34 | 004,732,416 | ---- | C] (AVAST Software) -- C:\Users\Mike\Desktop\aswMBR.exe
[2013/01/19 04:34:16 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Monolith Productions
[2013/01/18 23:26:49 | 000,000,000 | ---D | C] -- C:\Users\Mike\Documents\Puddle
[2013/01/16 17:39:54 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2013/01/16 17:39:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD AVT
[2013/01/16 17:39:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD APP
[2013/01/16 17:38:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
[2013/01/14 17:49:13 | 000,000,000 | ---D | C] -- C:\Users\Mike\Desktop\Mightier
[2013/01/13 12:29:58 | 000,000,000 | ---D | C] -- C:\Users\Mike\Documents\Almost Human
[2013/01/12 03:50:11 | 000,000,000 | ---D | C] -- C:\Users\Mike\Documents\EA Games
[2013/01/11 12:39:32 | 000,000,000 | ---D | C] -- C:\Users\Mike\AppData\Local\Mozilla Firefox
[2013/01/10 22:12:53 | 000,000,000 | ---D | C] -- C:\Windows\rescache
[2013/01/09 10:09:06 | 000,750,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll
[2013/01/09 10:09:06 | 000,492,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll
[2013/01/09 10:09:04 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2013/01/09 10:08:37 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usp10.dll
[2013/01/09 10:08:30 | 000,045,568 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\oflc-nz.rs
[2013/01/09 10:08:30 | 000,045,568 | ---- | C] (Microsoft) -- C:\Windows\SysNative\oflc-nz.rs
[2013/01/09 10:08:29 | 000,046,592 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\fpb.rs
[2013/01/09 10:08:29 | 000,046,592 | ---- | C] (Microsoft) -- C:\Windows\SysNative\fpb.rs
[2013/01/09 10:08:29 | 000,044,544 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegibbfc.rs
[2013/01/09 10:08:29 | 000,044,544 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegibbfc.rs
[2013/01/09 10:08:29 | 000,043,520 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\csrr.rs
[2013/01/09 10:08:29 | 000,043,520 | ---- | C] (Microsoft) -- C:\Windows\SysNative\csrr.rs
[2013/01/09 10:08:29 | 000,040,960 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\cob-au.rs
[2013/01/09 10:08:29 | 000,040,960 | ---- | C] (Microsoft) -- C:\Windows\SysNative\cob-au.rs
[2013/01/09 10:08:28 | 000,030,720 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\usk.rs
[2013/01/09 10:08:28 | 000,030,720 | ---- | C] (Microsoft) -- C:\Windows\SysNative\usk.rs
[2013/01/09 10:08:28 | 000,021,504 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\grb.rs
[2013/01/09 10:08:28 | 000,021,504 | ---- | C] (Microsoft) -- C:\Windows\SysNative\grb.rs
[2013/01/09 10:08:28 | 000,015,360 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\djctq.rs
[2013/01/09 10:08:28 | 000,015,360 | ---- | C] (Microsoft) -- C:\Windows\SysNative\djctq.rs
[2013/01/09 10:08:27 | 000,441,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wpc.dll
[2013/01/09 10:08:27 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi-pt.rs
[2013/01/09 10:08:27 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegi-pt.rs
[2013/01/09 10:08:27 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi.rs
[2013/01/09 10:08:27 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegi.rs
[2013/01/09 10:08:26 | 002,746,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gameux.dll
[2013/01/09 10:08:25 | 002,576,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gameux.dll
[2013/01/09 10:08:25 | 000,308,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Wpc.dll
[2013/01/09 10:08:19 | 000,051,712 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\esrb.rs
[2013/01/09 10:08:19 | 000,051,712 | ---- | C] (Microsoft) -- C:\Windows\SysNative\esrb.rs
[2013/01/09 10:08:18 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegi-fi.rs
[2013/01/09 10:08:17 | 000,055,296 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\cero.rs
[2013/01/09 10:08:17 | 000,055,296 | ---- | C] (Microsoft) -- C:\Windows\SysNative\cero.rs
[2013/01/09 10:08:17 | 000,023,552 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\oflc.rs
[2013/01/09 10:08:17 | 000,023,552 | ---- | C] (Microsoft) -- C:\Windows\SysNative\oflc.rs
[2013/01/09 10:08:17 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi-fi.rs
[2013/01/09 10:07:14 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
[2013/01/09 10:07:12 | 001,161,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
[2013/01/09 10:07:10 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
[2013/01/09 10:07:10 | 000,338,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
[2013/01/09 10:07:10 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2013/01/09 10:07:10 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2013/01/09 10:07:10 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntvdm64.dll
[2013/01/09 10:07:10 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
[2013/01/09 10:07:09 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
[2013/01/09 10:07:09 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
[2013/01/09 10:07:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll
[2013/01/09 10:07:06 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2013/01/09 10:07:06 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll
[2013/01/09 10:07:05 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2013/01/09 10:07:05 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2013/01/09 10:07:05 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
[2013/01/09 10:07:04 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll
[2013/01/09 10:07:04 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
[2013/01/09 10:07:04 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2013/01/09 10:07:04 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
[2013/01/09 10:07:04 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
[2013/01/09 10:07:04 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll
[2013/01/09 10:07:03 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2013/01/09 10:07:03 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
[2013/01/09 10:07:03 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2013/01/09 10:07:03 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
[2013/01/09 10:07:03 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
[2013/01/09 10:07:03 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2013/01/09 10:07:03 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
[2013/01/09 10:07:03 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2013/01/09 10:07:03 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2013/01/09 10:07:03 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2013/01/09 10:07:03 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
[2013/01/09 10:07:02 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2013/01/09 10:07:02 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2013/01/09 10:07:02 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
[2013/01/09 10:07:02 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
[2013/01/09 10:07:02 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
[2013/01/09 10:07:02 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2013/01/09 10:07:02 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
[2013/01/09 10:07:02 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/01/09 10:07:02 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/01/09 10:07:02 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2013/01/09 10:07:02 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll
[2013/01/09 10:07:01 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2013/01/09 10:07:01 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2013/01/09 10:07:01 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
[2013/01/09 10:07:01 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
[2013/01/09 10:07:01 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2013/01/09 10:07:01 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
[2013/01/09 10:07:01 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2013/01/09 10:07:01 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
[2013/01/09 10:07:01 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
[2013/01/09 10:07:01 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2013/01/09 10:07:01 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
[2013/01/09 10:07:00 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2013/01/09 10:07:00 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2013/01/09 10:07:00 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
[2013/01/09 10:06:59 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2013/01/09 10:06:59 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2013/01/09 10:06:58 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2013/01/09 10:06:57 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
[2013/01/09 10:06:57 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2013/01/09 10:06:56 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
[2013/01/09 10:06:55 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2013/01/09 10:06:54 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
[2013/01/09 10:06:54 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2013/01/09 10:06:54 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll
[2013/01/09 10:06:53 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
[2013/01/09 10:06:14 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskhost.exe
[2013/01/08 01:20:27 | 000,000,000 | ---D | C] -- C:\Users\Mike\AppData\Roaming\Microsoft Corporation
[2013/01/08 01:07:14 | 000,078,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\perf-SQLAgent$SQLEXPRESS-sqlagtctr10.1.2531.0.dll
[2013/01/08 01:07:14 | 000,050,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\perf-SQLAgent$SQLEXPRESS-sqlagtctr10.1.2531.0.dll
[2013/01/08 01:06:34 | 000,111,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\perf-MSSQL$SQLEXPRESS-sqlctr10.1.2531.0.dll
[2013/01/08 01:06:34 | 000,079,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\perf-MSSQL$SQLEXPRESS-sqlctr10.1.2531.0.dll
[2013/01/08 01:03:57 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\RsFx
[2013/01/08 01:01:47 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio 9.0
[2013/01/08 01:00:51 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2013/01/08 00:56:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008
[2013/01/08 00:47:19 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server
[2013/01/08 00:46:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft SQL Server
[2013/01/08 00:44:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Sync Framework
[2013/01/08 00:44:19 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Sync Framework
[2013/01/08 00:44:09 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Synchronization Services
[2013/01/08 00:44:09 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server Compact Edition
[2013/01/08 00:44:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Synchronization Services
[2013/01/08 00:43:09 | 000,000,000 | ---D | C] -- C:\ProgramData\PreEmptive Solutions
[2013/01/08 00:40:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 3 SDK
[2013/01/08 00:37:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft ASP.NET
[2013/01/08 00:37:48 | 000,000,000 | ---D | C] -- C:\Program Files\IIS
[2013/01/08 00:37:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\IIS
[2013/01/08 00:35:58 | 000,000,000 | ---D | C] -- C:\Users\Mike\Documents\Visual Studio 2008
[2013/01/08 00:33:35 | 000,000,000 | ---D | C] -- C:\Users\Mike\Documents\Visual Studio 2010
[2013/01/08 00:20:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Designer
[2013/01/08 00:20:45 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\1033
[2013/01/08 00:18:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2010
[2013/01/08 00:18:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft F#
[2013/01/08 00:18:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Merge Modules
[2013/01/08 00:18:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HTML Help Workshop
[2013/01/08 00:18:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio 10.0
[2013/01/08 00:15:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio 9.0
[2013/01/08 00:14:15 | 000,000,000 | ---D | C] -- C:\Windows\symbols
[2013/01/08 00:14:15 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\1033
[2013/01/08 00:14:14 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio 10.0
[2013/01/08 00:14:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft SDKs
[2013/01/08 00:14:14 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Help Viewer
[2013/01/08 00:13:44 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2013/01/08 00:09:35 | 000,000,000 | ---D | C] -- C:\Users\Mike\AppData\Roaming\PowerISO
[2013/01/07 23:18:52 | 000,000,000 | ---D | C] -- C:\Users\Mike\Desktop\USB stuffs
[2013/01/07 22:29:32 | 000,000,000 | ---D | C] -- C:\Users\Mike\Documents\DigitalFossils
[2013/01/07 22:28:20 | 000,000,000 | ---D | C] -- C:\Users\Mike\Desktop\VoidWorld
[2013/01/04 21:12:57 | 000,000,000 | ---D | C] -- C:\Users\Mike\Documents\Bully Scholarship Edition
[2013/01/03 15:32:57 | 000,000,000 | ---D | C] -- C:\Users\Mike\AppData\Roaming\Comodo
[2013/01/01 12:38:09 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Mike\Desktop\OTL.exe
[2012/12/31 15:13:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2012/12/31 15:12:08 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2012/12/31 15:12:07 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2012/12/31 15:12:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2012/12/31 15:12:07 | 000,000,000 | ---D | C] -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
[2012/12/29 16:07:05 | 000,000,000 | ---D | C] -- C:\Users\Mike\Documents\Stronghold 3
[2012/12/28 18:46:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
[2012/12/28 18:41:41 | 000,000,000 | ---D | C] -- C:\ProgramData\BlueStacksSetup
[2012/12/28 18:41:41 | 000,000,000 | ---D | C] -- C:\ProgramData\BlueStacks
[2012/12/28 10:56:14 | 000,000,000 | ---D | C] -- C:\Users\Mike\AppData\Roaming\Little Inferno
[2012/12/24 01:00:48 | 000,000,000 | ---D | C] -- C:\Users\Mike\Documents\Snapshot
[2012/12/22 19:20:37 | 000,000,000 | ---D | C] -- C:\Users\Mike\Documents\Prince of Persia
[2012/12/22 03:01:03 | 000,046,080 | ---- | C] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll
[2012/12/22 03:01:03 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
[2012/12/22 03:00:57 | 000,367,616 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll
[2012/12/22 03:00:54 | 000,295,424 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
[2012/12/21 13:45:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MeteorEntertainment
[8 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\SysNative\drivers\*.tmp files -> C:\Windows\SysNative\drivers\*.tmp -> ]
[1 C:\Users\Mike\*.tmp files -> C:\Users\Mike\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2013/01/19 16:10:20 | 000,000,512 | ---- | M] () -- C:\Users\Mike\Desktop\MBR.dat
[2013/01/19 14:36:39 | 004,732,416 | ---- | M] (AVAST Software) -- C:\Users\Mike\Desktop\aswMBR.exe
[2013/01/19 13:58:50 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/01/19 13:58:40 | 3214,188,544 | -HS- | M] () -- C:\hiberfil.sys
[2013/01/19 13:51:12 | 000,000,890 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013/01/19 12:12:24 | 000,001,977 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2013/01/19 12:12:23 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\config.nt
[2013/01/19 05:27:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013/01/19 04:35:02 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013/01/19 01:03:29 | 000,013,792 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/01/19 01:03:29 | 000,013,792 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/01/18 19:00:00 | 000,000,374 | ---- | M] () -- C:\Windows\tasks\At1.job
[2013/01/16 19:16:11 | 000,281,688 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.xtr
[2013/01/16 19:16:11 | 000,281,688 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2013/01/16 19:08:58 | 000,281,688 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.ex0
[2013/01/15 17:31:56 | 000,000,605 | ---- | M] () -- C:\Users\Public\Desktop\Scribblenauts Unlimited.lnk
[2013/01/15 17:30:54 | 000,001,868 | ---- | M] () -- C:\Users\Mike\Desktop\Microsoft Visual Studio Pro 2010.lnk
[2013/01/15 17:24:18 | 000,886,122 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013/01/15 17:24:18 | 000,739,472 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013/01/15 17:24:18 | 000,154,556 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013/01/12 22:12:05 | 000,076,888 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2013/01/12 20:04:12 | 000,000,862 | ---- | M] () -- C:\Users\Mike\Desktop\Steam.lnk
[2013/01/12 19:46:36 | 000,002,251 | ---- | M] () -- C:\Users\Mike\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2013/01/10 12:02:13 | 005,353,712 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013/01/09 23:29:37 | 000,871,590 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2013/01/09 11:33:36 | 000,697,864 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2013/01/09 11:33:35 | 000,074,248 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2013/01/03 15:23:49 | 000,001,635 | ---- | M] () -- C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\atitray.lnk
[2013/01/02 15:36:44 | 002,203,886 | ---- | M] () -- C:\Users\Mike\Desktop\IMG_6745.JPG
[2013/01/02 15:36:20 | 002,721,184 | ---- | M] () -- C:\Users\Mike\Desktop\IMG_6743.JPG
[2013/01/01 12:38:11 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Mike\Desktop\OTL.exe
[2012/12/21 14:41:31 | 000,466,456 | ---- | M] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll
[2012/12/21 14:41:31 | 000,444,952 | ---- | M] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll
[2012/12/21 14:41:31 | 000,122,904 | ---- | M] (Portions © Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll
[2012/12/21 14:41:30 | 000,109,080 | ---- | M] (Portions © Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysWow64\OpenAL32.dll
[8 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\SysNative\drivers\*.tmp files -> C:\Windows\SysNative\drivers\*.tmp -> ]
[1 C:\Users\Mike\*.tmp files -> C:\Users\Mike\*.tmp -> ]

========== Files Created - No Company Name ==========

[2013/01/19 16:10:20 | 000,000,512 | ---- | C] () -- C:\Users\Mike\Desktop\MBR.dat
[2013/01/19 12:12:24 | 000,001,977 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2013/01/15 17:30:54 | 000,001,868 | ---- | C] () -- C:\Users\Mike\Desktop\Microsoft Visual Studio Pro 2010.lnk
[2013/01/13 22:16:38 | 000,000,605 | ---- | C] () -- C:\Users\Public\Desktop\Scribblenauts Unlimited.lnk
[2013/01/11 20:13:57 | 000,000,862 | ---- | C] () -- C:\Users\Mike\Desktop\Steam.lnk
[2013/01/03 15:23:49 | 000,001,635 | ---- | C] () -- C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\atitray.lnk
[2013/01/03 15:07:27 | 000,696,832 | ---- | C] () -- C:\Windows\SysNative\xvidcore.dll
[2013/01/03 15:07:27 | 000,645,632 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2013/01/03 15:07:27 | 000,255,488 | ---- | C] () -- C:\Windows\SysNative\xvidvfw.dll
[2013/01/03 15:07:27 | 000,240,640 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2013/01/03 15:07:27 | 000,173,568 | ---- | C] () -- C:\Windows\SysNative\xvid.ax
[2013/01/03 15:07:27 | 000,153,088 | ---- | C] () -- C:\Windows\SysWow64\xvid.ax
[2013/01/02 20:57:09 | 002,203,886 | ---- | C] () -- C:\Users\Mike\Desktop\IMG_6745.JPG
[2013/01/02 20:57:07 | 002,721,184 | ---- | C] () -- C:\Users\Mike\Desktop\IMG_6743.JPG
[2012/12/02 07:38:16 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2012/12/02 07:38:16 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2012/10/29 23:56:03 | 000,000,092 | ---- | C] () -- C:\Users\Mike\AppData\Local\fusioncache.dat
[2012/09/27 15:48:27 | 000,046,067 | ---- | C] () -- C:\Users\Mike\Cube.smd
[2012/09/18 12:49:48 | 000,032,608 | ---- | C] () -- C:\Windows\king-uninstall.exe
[2012/08/28 01:40:23 | 000,000,132 | ---- | C] () -- C:\Users\Mike\AppData\Roaming\Adobe Targa Format CS5 Prefs
[2012/07/16 22:33:44 | 000,860,211 | --S- | C] () -- C:\Windows\SysWow64\XSIFtk-3.6.2.1.dll
[2012/07/08 16:18:10 | 003,130,440 | ---- | C] () -- C:\Windows\SysWow64\pbsvc_blr.exe
[2012/05/02 13:58:10 | 000,029,184 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
[2012/04/04 19:09:35 | 000,129,024 | ---- | C] () -- C:\Windows\SysWow64\AVERM.dll
[2012/04/04 19:09:35 | 000,028,672 | ---- | C] () -- C:\Windows\SysWow64\AVEQT.dll
[2012/03/08 20:10:39 | 000,000,209 | ---- | C] () -- C:\Users\Mike\dsj.xml
[2012/02/08 01:45:13 | 000,000,132 | ---- | C] () -- C:\Users\Mike\AppData\Roaming\Adobe PNG Format CS5 Prefs
[2011/11/13 09:05:24 | 000,000,361 | ---- | C] () -- C:\Windows\KA.INI
[2011/11/10 19:14:21 | 000,000,001 | ---- | C] () -- C:\Users\Mike\AppData\Local\llftool.4.12.agreement
[2011/10/25 21:21:34 | 000,056,832 | ---- | C] () -- C:\Windows\SysWow64\OVDecoder.dll
[2011/09/28 17:44:14 | 000,179,271 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2011/09/24 01:38:09 | 000,000,464 | ---- | C] () -- C:\Windows\{17FE44E2-D21A-4F0C-BE49-798A8FBC374E}_WiseFW.ini
[2011/09/24 01:32:40 | 000,000,604 | -H-- | C] () -- C:\Program Files (x86)\STLL Notifier
[2011/09/12 22:06:16 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2011/08/31 22:26:17 | 000,000,032 | R--- | C] () -- C:\ProgramData\hash.dat
[2011/08/14 20:40:21 | 000,039,997 | ---- | C] () -- C:\Users\Mike\AppData\Local\Perfmon.PerfmonCfg
[2011/06/25 15:49:12 | 004,874,240 | ---- | C] () -- C:\Windows\SysWow64\DSE2_DFT.dll
[2011/05/31 06:39:50 | 000,058,368 | ---- | C] () -- C:\Windows\SysWow64\bdmpegv.dll
[2011/05/31 06:38:18 | 000,015,360 | ---- | C] () -- C:\Windows\SysWow64\bdmjpeg.dll
[2011/05/18 15:24:21 | 000,000,125 | ---- | C] () -- C:\Windows\disney.ini
[2011/03/30 13:39:50 | 000,008,263 | ---- | C] () -- C:\Windows\aiptbl.ini
[2011/03/25 17:50:58 | 000,000,120 | ---- | C] () -- C:\Users\Mike\AppData\Roaming\bb4235d7.dat
[2011/01/27 13:00:40 | 000,031,437 | ---- | C] () -- C:\Users\Mike\AppData\Local\Temp20.html
[2011/01/27 13:00:17 | 000,001,667 | ---- | C] () -- C:\Users\Mike\AppData\Local\Temp1.html
[2009/12/20 17:29:34 | 000,007,600 | ---- | C] () -- C:\Users\Mike\AppData\Local\resmon.resmoncfg

========== ZeroAccess Check ==========

[2009/07/14 04:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012/06/09 05:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012/06/09 04:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 01:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 12:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 01:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== Alternate Data Streams ==========

@Alternate Data Stream - 906 bytes -> C:\ProgramData\TEMP:97B59CE9
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:C8B8CEBD

< End of report >
  • 0

#8
Willium_Bob_Cole

Willium_Bob_Cole

    Member

  • Topic Starter
  • Member
  • PipPip
  • 46 posts
OTL Extras logfile created on: 19/01/2013 04:12:48 PM - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Mike\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

3.99 Gb Total Physical Memory | 2.02 Gb Available Physical Memory | 50.69% Memory free
7.98 Gb Paging File | 6.25 Gb Available in Paging File | 78.36% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 455.99 Gb Total Space | 220.59 Gb Free Space | 48.38% Space Free | Partition Type: NTFS
Drive T: | 2794.39 Gb Total Space | 1800.53 Gb Free Space | 64.43% Space Free | Partition Type: NTFS

Computer Name: MIKES-PC | User Name: Mike | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)

[HKEY_USERS\S-1-5-21-2877518406-3504683670-2877553021-1000\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Users\Mike\AppData\Local\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Bridge] -- D:\Adobe\Adobe Bridge CS5\Bridge.exe "%L"
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [Digital Photo Professional] -- C:\Program Files (x86)\Canon\Digital Photo Professional\DPPViewer.exe /path "%1" (CANON INC.)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Bridge] -- D:\Adobe\Adobe Bridge CS5\Bridge.exe "%L"
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [Digital Photo Professional] -- C:\Program Files (x86)\Canon\Digital Photo Professional\DPPViewer.exe /path "%1" (CANON INC.)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{17246950-DFA6-4CF9-937D-D240228C84F1}" = lport=2869 | protocol=6 | dir=in | app=system |
"{197F2673-A86C-4688-9A53-48AA32E521D8}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{1C32CF48-4B69-469C-B2EA-20DD9897D4E3}" = lport=25565 | protocol=6 | dir=in | name=minecraft tcp |
"{2334A00E-448C-4123-B5BC-815D0F4842AB}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{27BC2C87-B1A3-4E72-B2E6-6F893C4E0DFF}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{27E323C2-7504-497F-88D1-2ED471627E87}" = lport=139 | protocol=6 | dir=in | app=system |
"{30300C9F-BDF8-47AA-AA81-BBBCF0D6240A}" = lport=25565 | protocol=17 | dir=in | name=minecraft udp |
"{3D198E3C-4E6F-4E78-877C-2D8A45B3D2B4}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{468CD0DA-D8FA-4285-A2F1-4AA970C735E7}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{4F158847-A798-4163-BD12-01911C0E814F}" = rport=139 | protocol=6 | dir=out | app=system |
"{63B2BF9B-1979-401F-946D-B7735E228918}" = lport=2869 | protocol=6 | dir=in | app=system |
"{809358DC-74E9-42D7-A511-0ACCDEEFEE26}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{8331C7ED-43CA-4B1C-AEB1-56BC68E28E06}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{9A34DB3C-5F88-4BA3-8654-D667D55A66FF}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{AEE33063-0C93-4C8E-8179-65AC5E0E79A0}" = lport=137 | protocol=17 | dir=in | app=system |
"{AF640CA6-9695-4F3F-91E4-140858DC1723}" = rport=445 | protocol=6 | dir=out | app=system |
"{B06178D8-BBE3-40FB-AE76-C68CCC7A315A}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
"{BA7CAAFC-2C58-4C85-9F4D-AFDE2C6AB778}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{BCB8B40C-F2CF-4217-93B5-8310F511490F}" = rport=10243 | protocol=6 | dir=out | app=system |
"{BF3C29A0-F7EE-4353-A132-888771D2BF21}" = lport=445 | protocol=6 | dir=in | app=system |
"{C96516DF-48F9-47A8-9CDD-F32EDDF4661D}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{C9A5C150-DB24-4EEA-BDE3-A67522111549}" = lport=10243 | protocol=6 | dir=in | app=system |
"{D32B382E-C1B6-4EB5-97EB-D5654C1E470F}" = rport=138 | protocol=17 | dir=out | app=system |
"{DDEA5647-74A1-428F-A895-09781428D804}" = lport=138 | protocol=17 | dir=in | app=system |
"{E2CFD127-36F2-4E26-ABAD-54DF4FDD7C8E}" = rport=137 | protocol=17 | dir=out | app=system |
"{EBFF0CC7-95A7-4860-99BA-5A8E5C436162}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{EC5C6123-C455-4F24-A0F4-88E31E99E1E1}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{EF7BFEB5-DB8E-43DC-BA8A-4658271D63C2}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F9D08294-DBEF-4D94-9CDF-D71B3209D42E}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{FD8B5FAB-20E3-4540-A873-8F02EA50A0E9}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00307D56-17BF-494F-B21C-5D645C7A1389}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\rogue trooper\roguetrooper.exe |
"{00B32FD7-998D-4778-B71E-E5B79C6F0FA0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\launchgtaiv.exe |
"{00F3B2B1-F7B1-49DE-8161-F220CB6D8B89}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\snapshot\snapshot.exe |
"{015C879B-0385-4DEE-B37E-A3481584F703}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\ava\nwzlauncher.exe |
"{01606E6A-AC03-4413-BA5D-B2820A6D2C31}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{016391D2-B311-41EF-842F-DA5441AF6946}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{01A96CB1-9D40-4C82-905C-E632B6826FA0}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\left 4 dead\left4dead.exe |
"{01D4BDBF-C179-469C-8D20-1B03B6147C9F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 teaser\smp.exe |
"{026020D7-D3BC-458A-AFB4-AEBF0FC2B602}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\tomb raider legend\trl.exe |
"{0266AE65-98D1-438C-B623-2352AA10A045}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\wallace and gromit ep2\wallacegromit102.exe |
"{02E07A0D-A2B2-4A0F-847E-8241E06578A2}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\geometry wars\geometrywars.exe |
"{02F34214-FB20-4609-BB12-E0AA92B0889D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 valentines\smp.exe |
"{039DA5E3-04F4-4316-98CD-F465C892777D}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\left 4 dead 2\srcds.exe |
"{03AEB238-AB57-48C1-A761-FDBD66A3651C}" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\battleforge\bootstrapper.exe |
"{03D2F6A9-FD58-4DC6-8F79-5FAD49B84700}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\tales from space mutant blobs attack\game.exe |
"{03F66A92-D541-491E-B476-8265C2E49FE9}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\deadlight\binaries\win32\lotdgame.exe |
"{0413E258-15BD-4A4F-9909-E4725447B6C7}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\kane and lynch dead men\launcher.exe |
"{0420A988-841E-44C9-AA08-8434233A1872}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\wallace and gromit ep4\wallacegromit104.exe |
"{044B3F31-A822-4572-A4F6-E6A360024DBA}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 meet the soldier\smp.exe |
"{048DC871-F904-4B98-88FF-E4B0C9A79D0B}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\max payne 2 the fall of max payne\maxpayne2.exe |
"{04C77776-057F-448E-88AC-DA7D12F7C312}" = protocol=17 | dir=in | app=c:\program files (x86)\activision\prototype\prototypef.exe |
"{04DFA7A5-D7BD-44E5-94FE-FF9B68B514F3}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\bioshock 2\mp\builds\binaries\bioshock2launcher.exe |
"{0613358B-D5FD-43FB-8469-F2F6793BAEA8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (faith plates)\smp.exe |
"{061D5D7B-EEF9-4B90-AD54-82B9A7E5F1F9}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\grand theft auto\wino\grand theft auto.exe |
"{0620421B-826C-4FAB-BAD9-AEF1FF4D02E9}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\3dmark vantage\3dmarkvantagelauncher.exe |
"{06254EE2-4D73-4FE7-97C6-29E78DC5A610}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\the wonderful end of the world\main.exe |
"{06537400-428E-4390-9FEF-58031C130FC3}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\shellshock 2\shellshock 2.exe |
"{066DD053-4548-4234-9DDE-4B78C0C1CC75}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\grand theft auto san andreas\gta-sa.exe |
"{068FB538-F919-4813-8970-83E3B67E8323}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\serious sam 3\bin\sam3.exe |
"{069746B7-7E1E-4B40-8315-9942EB2BDE5B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\world of goo\worldofgoo.exe |
"{06AA6DD8-DC99-4EF2-8A22-B9AB87719951}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\amnesia the dark descent\launcher.exe |
"{06BE3CF1-5F88-499C-BBCE-C7A742806EEB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\crimecraft\binaries\crimecraft.exe |
"{06E2067C-6D46-424E-9C81-85DC2CA6B1E2}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\batman2\binaries\win32\batmanac.exe |
"{0789FFC0-EB50-401D-9F5B-87498B65B171}" = protocol=17 | dir=in | app=t:\steam\steamapps\willium_bob_cole\the ship single player\ship.exe |
"{07DCEA28-DD46-4D8B-A739-59BB2795622A}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\brazen\brazen.exe |
"{0877589F-DDE4-487E-BF49-0AD7700C1018}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\closure\closure.exe |
"{08848581-41BF-4474-A832-91C9A61D151B}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{093EA513-056D-4A3F-A998-22BD3A87C08A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\psychonauts\psychonauts.exe |
"{0952959E-D0B4-44D8-ABA5-DA6324B339FA}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\brazen\brazen.exe |
"{09E6C2AD-59F2-4722-AC79-22B9B4FC5E20}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 trailer\smp.exe |
"{0A1089A3-EEC7-4228-99AB-4ED29F9402DB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\guns of icarus\gunsoficaruswindows.exe |
"{0A4387CB-973C-466F-A06A-EC81EA12EA14}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\thief deadly shadows\system\runme.exe |
"{0A8B2C6D-1F55-44D1-832D-B5BDFA11875F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\batman arkham asylum\batman_revoker.exe |
"{0ACCEDF8-308F-4794-B772-4460A5816FDF}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sniper elite v2\bin\sniperelitev2.exe |
"{0AEEAAEE-8D0C-42EA-9F0E-DC4372876E51}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gamemaker_studio\gamemakerplayer.exe |
"{0B2DE755-5EFA-4661-8D0D-E9335F93F327}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 meet the demoman\smp.exe |
"{0BB11632-DC72-48DC-A8E6-829290F75315}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gratuitous space battles\gsb.exe |
"{0BB28F9D-EFD7-41AF-AB25-4B60F56E9A7A}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\far cry 3\bin\farcry3_d3d11.exe |
"{0C00626B-D69D-44DA-88BF-1C417B780699}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\microvolts\launcher.exe |
"{0C0E0EC5-3B0D-4689-BF64-163987EB3DEF}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\i-fluid\i-fluid.exe |
"{0C465522-E71E-495F-AFAF-6F2C0F11648B}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\hitman sniper challenge\hmsc.exe |
"{0C81BAA4-F811-4310-8154-E462FABB024A}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\vvvvvv\vvvvvv.exe |
"{0CAD141D-A4EF-4CAF-9D2A-4C98682CAF30}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\batman2\runlauncher.bat |
"{0CDDEE3A-DAA2-440E-97CA-057C5881F1ED}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\audiosurf\engine\questviewer.exe |
"{0D3EA1E3-4476-41F6-BB88-B2E054C92BAE}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\max payne 2 the fall of max payne\maxpayne2.exe |
"{0D770B7F-7815-4E7E-B83D-B2A7160FE1EE}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\overlord ii\overlord2.exe |
"{0D8EEA1B-A79B-408C-8704-A41F0548C3AC}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\assassins creed\assassinscreed_game.exe |
"{0DCDBE6E-CAF8-40AF-A8F7-3B1F2F0F81C5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\bit.trip beat\beat.exe |
"{0DF28EB9-69F5-4F3A-B0D3-A3627453CEA5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{0DFAC9B5-F759-4EED-8D84-B5FB2EAA0696}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{0E8A39CF-B493-460C-84AF-A0CAA97B754B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\moon base alpha\binaries\win32\moonbasealphagame.exe |
"{0EA7B458-18DB-4E60-868C-31D76510F31A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\closure\closure.exe |
"{0ED1D55D-D006-4D98-ACD5-C72CEB3A10B0}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\far cry 2\bin\fc2benchmarktool.exe |
"{0F073432-AA5E-4089-94EC-F2D490BBD82B}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\hero academy\heroacademy.exe |
"{0F1A33F1-2BC7-4911-8402-FB4E693B0579}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\age of empires online\aoeonline.exe |
"{0F468205-FB2F-46BA-BDC5-407A5701BC40}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\lume\lume.exe |
"{0F49A744-F0DA-40FC-ABD1-961449F4ACDC}" = protocol=17 | dir=in | app=c:\windows\syswow64\zonelabs\vsmon.exe |
"{0F5EF0A7-3F59-4558-841A-D0C2D67DCEE8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\mini ninjas\ninja.exe |
"{0FB0BC7C-3636-4336-955D-2961169552FD}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\metaldrift\metaldrift.exe |
"{0FF23B3C-C61C-4B31-96DB-19AA6965280C}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\3dmark vantage\3dmarkvantagelauncher.exe |
"{1034C185-E7DB-434E-AA93-A62595B900B8}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\back to the future 104\backtothefuture104.exe |
"{10464B77-C484-4144-9166-B5F9A68B226D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\bully scholarship edition\bully.exe |
"{108A1C30-0BD6-4BA1-9FAA-50D3103804AE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (propulsion gel)\smp.exe |
"{11199044-3E82-4390-8D1B-6682227332AC}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\babel rising\babelrising3d.exe |
"{1150B9ED-BD92-451A-A8AD-1139EDE5B095}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\breach\breach.exe |
"{1159FD61-836F-4CF0-9066-24588E011219}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{11693497-74F6-4059-B274-80F05C5BF73C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 - panels short (english)\smp.exe |
"{11783275-0D8B-4F6D-B836-02F128B528E1}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\tales of monkey island - chapter 5\monkeyisland105.exe |
"{1239D0B2-13C6-41A2-A2FB-D88D4A3FD808}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\imagine earth\imagineearth.exe |
"{12724F35-2B37-4824-824B-2489D71EB16E}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\beyond good and evil\checkapplication.exe |
"{128578CC-2CF8-420D-8230-3B2BAE8A85B0}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\penumbra black plague\redist\penumbra.exe |
"{12CEA5A4-F022-4BA0-B43E-9977E38FDD10}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\cargo! demo\bin\win32\config.exe |
"{12D39336-21EB-44FB-A7B5-27F3652DBBC3}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\grand theft auto iv episodes from liberty city\eflc\launcheflc.exe |
"{13526DDB-0C7B-435D-AC92-03CCFC22963E}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sam and max season 2 episode 1\sammax201.exe |
"{13849188-364F-4F69-B71F-420FE654CB24}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sam and max 302\sammax302.exe |
"{138575DB-F18D-4028-A562-2A28A2135B2E}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\waveform\waveform.exe |
"{13B4AF44-CC6E-4083-B32D-DA442AFC44B8}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\hammerfight\hammerfight.exe |
"{13CEE9B4-57DF-415B-9C2B-1DB7C45BA551}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\thepolynomial-demo\polynomial.exe |
"{13F4BF71-3E22-4E03-A70B-E75195652FCC}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\tinyandbig\tinyandbig.exe |
"{14026154-48AB-4551-B138-9A24CF76FDBF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\aceofspades\aos.exe |
"{142FD54B-1C02-431B-9045-9EC30FBFE63C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\noitu love 2 demo\nl2demo.exe |
"{146A1DBB-E8B8-4DC3-AF81-DB2B3DEB9EA0}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\batman arkham asylum\binaries\bmlauncher.exe |
"{14C9E301-4A3C-40C4-8C80-C292E23815CC}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gish\gish.exe |
"{154DC3D4-45BA-4E57-A492-65DF471937E1}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\hitman codename 47\setup.exe |
"{157C94BB-885F-4382-B1A6-A707868DA7F5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\portal trailer\smp.exe |
"{15A03865-AC05-4281-A2B8-0E9AAC77101C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{16300F32-A229-4DAA-9FDD-9F8704BC39E6}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed brotherhood\acbmp.exe |
"{164A4F0B-9F4B-466E-AD28-EEEF6FA68A94}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 teaser\smp.exe |
"{16A7AA93-140D-41B2-93B7-1F5D23F71E28}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 meet the spy\smp.exe |
"{16CE00DB-56C7-478C-B048-7DF7DDC9C70F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\zen bound 2\zenbound2.exe |
"{1703472B-E3D9-49AA-B4C3-8ED454544FF6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dungeons the dark lord demo\dungeons-server.exe |
"{175DB58B-6C8F-4013-BC81-380AFB5EF3B7}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\f1 race stars demo\f1racestarsdemo.exe |
"{179D33AC-5375-4C82-B4C8-74754FF2C868}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\uplink\uplink.exe |
"{17B5A907-D7FD-4026-9B6C-522B2E25147C}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\stronghold crusader extreme\stronghold crusader.exe |
"{17F9126B-4834-46B7-B5F4-A0843B57FABB}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\payday the heist\payday_win32_release.exe |
"{180AB835-E4FA-4026-B205-BD7A799B9678}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\blueberry garden\blueberrygarden.exe |
"{1819B945-203F-4CD5-B8A6-84577C35E8EE}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\shattered_horizon\client_exe\shattered_horizon.exe |
"{18479869-8C6F-493E-9130-660A8BA68A05}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\serious sam the random encounter\sstre.exe |
"{185B104F-AB89-438A-B0FC-47D6BDCEC1B1}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\penumbra black plague\redist\penumbra.exe |
"{193E18C6-D8D9-42EC-A4EB-E43CBF0D1C1D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the final hours of portal 2\thefinalhoursofportal2.exe |
"{1A0070DE-CE67-4811-AFDB-441FD4760E1B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\mann vs machine_trailer\smp.exe |
"{1A168346-1093-4726-BBDB-D9B929535C07}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2\portal2.exe |
"{1A3A7EF1-889F-4C96-BD40-EBC28C305D1D}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\mark_of_the_ninja\bin\game.exe |
"{1A7160A1-EDC2-46B1-A44C-0547D0021438}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (excursion funnels)\smp.exe |
"{1A953A19-07DF-4FB8-9846-0030C8FDDD18}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\from dust\from_dust.exe |
"{1AEEB646-DDFA-4F9B-9A44-C373DA55FEE9}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\jurassicpark\jurassicpark100.exe |
"{1AF9BAA5-4703-4EDD-AD26-EF43416A9DAF}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\primal_carnage\binaries\win32\primalcarnagegame.exe |
"{1B0ADEAD-8A93-46BD-9145-445EE54BA6BF}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\specops_theline\binaries\win32\specopstheline.exe |
"{1B5D837B-5C69-47B3-8E10-774FB6187963}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\back to the future 105\backtothefuture105.exe |
"{1B5D9606-230E-48D6-A1DB-07B956BBCD34}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\tinyandbig\tinyandbig.exe |
"{1B6ED9CA-AB8C-4526-BC3D-AF479E7571DE}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\planetside 2\planetside2.exe |
"{1B773D90-836C-4FFE-A454-35198CD34D12}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\plain sight\plainsight.exe |
"{1BB65C2D-9ACB-400F-91F7-D1D3845263DC}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\puzzle dimension\puzzledimension.exe |
"{1BC72B10-51A4-44D2-9A22-3E6E080C35B2}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\flatout\flatout.exe |
"{1BE26F33-E089-4D88-8B84-54E6DAC6C80C}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{1C0DAAF4-6432-4286-9F96-D429A70D7FCF}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gumboy crazy adventures\gumboycrazyadventures.exe |
"{1C12D13F-724F-4B14-95BF-856201D60EFB}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\pc gamer digital edition\freakshow.exe |
"{1C4A0C5E-42F5-4FD6-877D-BB8DCD3592B9}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\hitman absolution\hma.exe |
"{1C51B056-7EA7-42B9-86FC-8CD1C16C1C76}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\forge\binaries\win32\forgegame.exe |
"{1C68E364-80CA-4E7C-B411-4D9B94DF665F}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\cubemen\cubemen.exe |
"{1C8B82BE-99E5-4EF1-9C9E-DE4BCF49D593}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\bone 2\bone2v20.exe |
"{1C9C5C89-5568-4ED6-AA4A-86B463382D26}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\colourbind\colourbind.exe |
"{1CC76E68-BBB5-4023-A80E-5323048F4869}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\hammerfight\hammerfight.exe |
"{1CEC75E6-FDF4-45B0-9737-28088C75EE67}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\far cry 2\bin\fc2editor.exe |
"{1CFF40C2-DA8C-41DB-9EC3-ED267D6979FE}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\floras fruit farm\florasfruitfarm.exe |
"{1D1CF200-E6F2-4F83-BD1E-086D45A11B64}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\basement\the basement collection.exe |
"{1D2EBE75-24C9-48D3-9153-0DA9E319252A}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\puddle\launcher.exe |
"{1D5BEB91-6AA4-4AE3-AD06-278CA00AD593}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\saints row the third\game_launcher.exe |
"{1D6D6792-CA7F-4BA7-93AB-DD17B6DD4D83}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sniper ghost warrior\sniper_x86.exe |
"{1D8210DD-189D-4EC7-BBAD-1A4C648C59A3}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\flatout\flatout.exe |
"{1DAF4118-5F97-4B37-9661-4EE0CE1D0AA0}" = protocol=1 | dir=out | [email protected],-28544 |
"{1DB10FDE-7FF5-458A-AC7D-B3D4866C1897}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\prince of persia\launcher\launcher.exe |
"{1DB7A4CE-BC4B-446B-9997-A395AFF39806}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\frozen synapse - demo\frozensynapse.exe |
"{1DE5BB5A-8B4E-435E-8833-85E271A400AC}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\the ball\binaries\win32\theball.exe |
"{1E40A162-1731-4268-9357-0D6D233312BC}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\max payne 3\max payne 3\maxpayne3.exe |
"{1E48F429-7E77-4EB6-9F10-4B25FE765915}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\meet the engineer\smp.exe |
"{1E6523A1-5DA5-4BFD-8481-6589944F6155}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\serious sam 3\bin\sam3.exe |
"{1F5BCF5B-00F1-446C-BC48-4003EEA0B83C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\kingdoms of amalur - reckoning demo\reckoningdemo.exe |
"{1F72FD24-2419-4771-90B9-5679A3B2B847}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\steelstorm\netradiant_win32\radiant.exe |
"{1F8F4B5C-CD8C-4FEA-AF6A-22EFEB340EF5}" = protocol=17 | dir=in | app=c:\program files\autodesk\3ds max 2012\3dsmax.exe |
"{1FAAF5B6-B925-4EB0-8586-6B17A1AF059A}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\call of duty black ops\blackops.exe |
"{1FC5E969-E7CE-4793-B08E-17A9365E2C65}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sam and max episode 1\sammax101.exe |
"{1FFBC0B0-8D70-480E-B59C-568385266BCF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 - boots short (english)\smp.exe |
"{200B1F10-BFF2-4DBE-A7CE-9727291C8EF9}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\team fortress 2 meet the medic\smp.exe |
"{20348F31-959D-4EA0-9251-4C5E8846F149}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\hector episode 1\hector101.exe |
"{203EA61F-70DC-4361-B698-354738A45FCA}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\puddle\launcher.exe |
"{204D88FE-0212-4B0E-A22F-F62F133F0C34}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the binding of isaac\isaac.exe |
"{204E90E8-A5E4-4B17-8841-3EB6E3453BA1}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\vvvvvv\vvvvvv.exe |
"{210E4BF8-A1FA-4AC4-ACA1-097AC43DB905}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\forge\binaries\win32\forgegame.exe |
"{215F5588-527C-4A28-A77E-ACC46A2EFFF9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the ball demo\binaries\win32\theball.exe |
"{21A8490C-80CE-4DBD-AC4C-F2C6A25E88B5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\team fortress 2 meet the medic\smp.exe |
"{21BFAC16-9588-44EA-8803-6E3DC8C031D3}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\bob came in pieces\bob.exe |
"{21C3A2A5-B9EE-4A37-9C13-E5561CBB9148}" = protocol=6 | dir=in | app=t:\steam\steamapps\willium_bob_cole\rag doll kung fu\rag_doll_kung_fu_steam.exe |
"{221305E8-A897-48CD-A687-717FDA65CB26}" = protocol=17 | dir=in | app=c:\nexon\vindictus eu\en-eu\vindictus.exe |
"{2256DF73-43FE-4975-B0F4-7A9DB77EEE7D}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{227AE0CB-843F-463D-A01D-446E10726DD6}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\hitman sniper challenge\hmsc.exe |
"{227B3CB2-AC07-405D-A461-62DB93B91072}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\wallace and gromit ep4\wallacegromit104.exe |
"{22A2110F-DF6B-4BF8-9B21-782524B86EFE}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\bone 2\bone2v20.exe |
"{22A687C9-3015-4FBF-87BF-F61D98E9CC68}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\cogs\cogs.exe |
"{22C43B39-2D59-4C9A-9590-3F7C08DF8245}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\far cry 3\bin\farcry3.exe |
"{23345ADF-C3B1-44C0-BF65-601C1B458AE6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\unmechanical demo\binaries\win32\udk.exe |
"{234318E1-AC4A-42DA-BBFA-3D2DB98AF2AE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\flatout2\flatout2.exe |
"{23D132B2-3920-49CF-9A92-AB70771642C5}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\mcpixel\mclauncher.exe |
"{23F38ACA-F56C-4807-838C-3485829CBB22}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\thirty_flights_of_loving\tfol.exe |
"{240FF7DE-8E49-46BF-AE04-7551664327AE}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{247CBE9C-FDAC-4B69-B080-A6B952C3620B}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\hector ep 2\hector102.exe |
"{248EB1C1-50AD-4598-9956-00D6EFECA0E5}" = protocol=17 | dir=in | app=c:\program files (x86)\sibelius software\sibelius 6\regtool.exe |
"{24A7A872-A6DB-4182-8BA8-9B4C22BD4E15}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\puzzle agent 2\grickle102.exe |
"{24DE8B54-351D-4956-AD6F-BD888C19DBDC}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\the maw\themaw.exe |
"{25B17E49-BCD0-46C4-9012-510EC182B1D4}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\avseq\avseq-win.exe |
"{26067D6A-2E5C-4E11-8126-B14597DD493A}" = protocol=17 | dir=in | app=c:\program files\autodesk\3ds max 2012\mentalimages\satellite\raysat_3dsmax2012_64.exe |
"{264B167D-FEE1-4A16-8D58-149ADE542FE5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\team fortress 2 - mac trailer\smp.exe |
"{264BDF85-3075-48E7-83AF-F666A31B2634}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sideway\win32\sideway_shippingwin32steam.exe |
"{2663A980-E737-4642-BC5D-6A5C3CA795CD}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\thepolynomial-demo\polynomial.exe |
"{26A7B78D-4A0E-4757-BCDB-221280823D8C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\sourcesdk\bin\sdklauncher.exe |
"{2742CB38-01E9-47BB-8F42-A80F2DC2DB6B}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\prince of persia forgotten sands\prince of persia.exe |
"{277390EB-08EF-4535-865E-B7EC58E42F10}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\bin\sdklauncher.exe |
"{2797C418-D326-4F9C-BF03-5614DA9BCAD7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\crimecraft\binaries\crimecraft.exe |
"{27DF9F51-9191-481F-A4DD-F7CCB1AFACD7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\blueberry garden\blueberrygarden.exe |
"{28030692-0C72-4BF1-8A76-87E2AE191339}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\warincbattlezone\rsupdate.exe |
"{283ACCE7-53F3-419A-91B6-A37D9CA84FA7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\lead and gold gangs of the wild west\lag_win32_public_dev.exe |
"{28DFE6F0-57B3-4DCD-9357-6B1F31ACE2E3}" = protocol=17 | dir=in | app=d:\assassin's creed revelations\acrmp.exe |
"{28F9C374-D1E6-4BD5-BE70-C633C6AFFA4B}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\defensegridtheawakening\defensegrid.exe |
"{28FF98DC-84FD-4459-87A3-AEA36C884955}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\bit.trip runner\runner.exe |
"{29087E44-3F47-474C-B306-2CFF4C4C5762}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\steelstorm\netradiant_win32\radiant.exe |
"{29161B24-D2DC-418A-AF2B-80DEFF0F0C72}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed revelations\acrmp.exe |
"{2A29170E-2EC5-4B15-8BD6-5F5F02F97949}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\hamilton's great adventure demo\hamilton.exe |
"{2A3F44AF-2440-4410-BE36-D0E948C902E0}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\assassins creed brotherhood\acbsp.exe |
"{2A6C65EC-7820-4853-B116-46E3A7CD5C1A}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sam and max 303\sammax303.exe |
"{2AD0F295-D781-4F2A-8217-9904E0186939}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\breach\breach.exe |
"{2AF5983B-760A-46D4-BB2F-DDBCD52BBD3C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\thirty_flights_of_loving\tfol.exe |
"{2B30B022-4AD1-4F74-87D2-D7CE9A84D57D}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\painkiller black edition\bin\painkiller.exe |
"{2B3347DC-2C71-43B7-A8B3-CD25A4A8EFA3}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the walking dead\walkingdead101.exe |
"{2B93FDCF-83AD-4404-BC1F-5183B7747D95}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\penumbra black plague\redist\requiem.exe |
"{2C83F62E-9465-4553-B5D2-5CFB2B72DA99}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\assassin's creed 3\ac3sp.exe |
"{2CD3EC01-6910-46AB-A31D-66EEB6FBC8B7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\batman arkham asylum\binaries\shippingpc-bmgame.exe |
"{2D3E63EC-A778-43B3-84B0-2628E50686FC}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\heavy weapon deluxe\heavy weapon deluxe.exe |
"{2D573114-2440-4733-8BD0-DE9BFB5754A7}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\hitman 2 silent assassin\hitman2.exe |
"{2DBA4EA9-1456-4019-B8CA-E11DDB81C77F}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\orcs must die 2\build\release\orcsmustdie2.exe |
"{2E23CA45-21D8-4AA6-B4E0-6617D1442EE7}" = protocol=6 | dir=in | app=t:\steam\steamapps\willium_bob_cole\team fortress 2\hl2.exe |
"{2E57A908-0823-48FA-B59B-EFC2121EF1B6}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\mirrors edge\binaries\mirrorsedge.exe |
"{2E841B63-57BE-4413-B103-EF89EDF40230}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\farcry\bin32\farcry.exe |
"{2E928A7E-3161-4C4A-8BA9-7A97A07A3226}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\planetside 2\launchpad.exe |
"{2E9F5779-563A-485E-B9ED-E7EEB2050097}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\awesomenauts\awesomenautslauncher.exe |
"{2EAD0ACB-DEE8-4932-B080-B8E7CC2723AF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\team fortress 2 - mac trailer\smp.exe |
"{2EC9C93B-5798-4C49-B4BB-F75C15DABFDC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\rush\rush.exe |
"{2F0E2329-4B7A-4E4B-AF45-CA2D11045F39}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\the maw\themaw.exe |
"{2F11329D-C499-470A-8F6B-426B7919D8A9}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\dawn of war gold\w40k.exe |
"{2F3072BD-78D9-4211-8F82-1BB8E35FCE17}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\winterbottom\winterbottom.exe |
"{2F3386DC-7415-4727-8047-7D87772F959F}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\braid\braid.exe |
"{2F53DB58-AC9D-4915-A003-1BA8580436AA}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\trash tv\trash tv.exe |
"{2F57746C-0F65-4A80-B6C8-A91D8E5BF016}" = protocol=6 | dir=in | app=c:\windows\syswow64\zonelabs\vsmon.exe |
"{2F64FF5D-9FBA-4EC0-97E0-D0C382592946}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{2FB35B7B-3C77-4FB8-B7AE-338281F3BC5C}" = protocol=6 | dir=in | app=c:\program files (x86)\autodesk\backburner\manager.exe |
"{2FC7E520-B0E7-4552-B835-7E7CA3D21A39}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (lasers)\smp.exe |
"{2FD0A9F7-1B39-45FD-9468-97CB3E9207D8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\plants vs zombies\plantsvszombies.exe |
"{3022068A-5152-4682-8705-52C4326F4545}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\winterbottom\winterbottom.exe |
"{3027F62A-3F9F-444F-B552-EE395BD6A4A8}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\3dmark 11\3dmarklauncher.exe |
"{306257BA-32FA-4C25-B4E6-1D83A0B8A42A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\quantum conundrum\binaries\win32\trygame-win32-shipping.exe |
"{3191BF4A-5875-4309-A55E-C1FAA81B2844}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\penumbra black plague\redist\requiem.exe |
"{31C54BA1-D9EB-4D6A-AADB-A996E271B9AB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\source sdk base 2007\hl2.exe |
"{31FB783E-F000-4796-8D9D-1D776E965468}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sam and max episode 3\sammax103.exe |
"{32FA9B9B-73D8-42B3-85C3-B08E39A20638}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\deponia\deponia.exe |
"{337CA4BE-C3D8-4577-BC54-7D98C1B4BCD8}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\farcry\bin32\farcry.exe |
"{33BB4AC8-8650-46DA-81A2-B421D79EE8B5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\braid\braid.exe |
"{33ED77A9-D555-4D1E-A18B-E66CD1046C96}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\geometry wars\geometrywars.exe |
"{34CB75A0-8DC2-4A76-953C-60F54A5402FC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\batman2\binaries\win32\batmanac.exe |
"{34D21AF8-D7A8-46DD-8359-08DD30DDB003}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\revelations 2012\revelations.exe |
"{35057FAA-B71F-4D9D-B11C-13831F3D0EF3}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (suction)\smp.exe |
"{353A35B1-7621-4CF1-8E48-8D5F5B5EAEDB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\trine\trine_launcher.exe |
"{355EF515-07EC-4224-9EB7-E63C3BAD11D4}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\orcs must die!\build\release\orcsmustdie.exe |
"{356CF4AD-DCA1-4F73-BED0-B9B6531D3033}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dino d-day\srcds.exe |
"{35E61128-EA78-4759-B168-6FA638911316}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\chime\chime.exe |
"{36611828-F299-4945-899B-1F4E4530F935}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\awesomenauts\awesomenautslauncher.exe |
"{366BB0A7-B4C1-4742-80E8-9018707ACA6F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\all zombies must die demo\binaries\win32\shippingpc-bzb2game.exe |
"{36AEE45C-01D5-4503-95D7-075EEE985404}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\deus ex\system\deusex.exe |
"{36E7A377-7198-4241-94FC-75D053D0077F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\trackmania nations forever\tmforeverlauncher.exe |
"{36F9ACF8-A9B3-4FC1-8398-24296A114543}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\spiral knights\java_vm\bin\javaw.exe |
"{370424B3-1823-4B23-853F-13E83E65AD76}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\grand theft auto 3\gta3.exe |
"{378DE31C-566F-44D2-9CFC-329087314296}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\trine\trine_launcher.exe |
"{37CCB355-081D-4DE8-A668-56C70C995109}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\lawandorder\lawandorder101.exe |
"{38110DE5-A296-4AC5-B022-EADB52D11247}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (excursion funnels)\smp.exe |
"{3817D6B4-0967-44BD-B503-A370CF66D1EE}" = protocol=6 | dir=in | app=d:\diablo iii beta\diablo iii.exe |
"{381CB262-6FCB-40A3-973B-0027AB4E1888}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\alan wake\alanwake.exe |
"{3858FC80-A71E-4336-B267-6379D8C57816}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\english country tune\english country tune.exe |
"{386B31E7-0871-4690-B799-FC79B245F1DA}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 valentines\smp.exe |
"{388F4B30-567D-4762-BC64-F0248701AE17}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\aceofspades\aos.exe |
"{38CDA795-0834-4827-99E4-53A5B83276EA}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\trine\trine_launcher.exe |
"{38F919AD-9D87-4833-84AD-45C1F4FA843C}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\red faction guerrilla\rfg_launcher.exe |
"{3928E6AF-5269-4577-A0C3-6DD782F673A2}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\dota 2 test\dota.exe |
"{39338715-EBE5-444E-B36B-D07A7C6B2DD0}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\i am alive\src\system\iamalive_game.exe |
"{395A1E30-E07C-4D63-9241-1052BD6CD3F7}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\dead space 2\support\ea help\electronic_arts_technical_support.htm |
"{396D3FDF-7C07-400C-BCBC-B9761E89775F}" = protocol=6 | dir=in | app=c:\program files (x86)\activision\prototype\prototypef.exe |
"{39E69810-8C38-4884-923E-5AFED6443A86}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\batman arkham asylum\binaries\shippingpc-bmgame.exe |
"{3A655E4E-69E2-49A7-8E93-1AEE484874AE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 meet the sandvich\smp.exe |
"{3A806DE4-D6C6-4AAF-9F5E-C2585B2428F3}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\puzzle bots\puzzlebots.exe |
"{3A8D4E25-AD7B-4503-AE99-4ADECB3F65EC}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dead space\dead space.exe |
"{3AB3355F-EE13-45D1-8E9F-6ACB38C221B6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\mole control demo\molecontrol.exe |
"{3ABFFC5A-F01B-48B2-ABCE-AD2827825859}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft games\viva pinata\viva pinata.exe |
"{3AE41DF1-B5D1-4AC6-92D5-2A37650EC298}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\monday night combat\binaries\win32\mnc.exe |
"{3B0C0407-67B7-4E18-84BE-3EF930F2AA96}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\lucius\lucius.exe |
"{3B893FD1-AB27-4C99-BDA8-21FC0CD3CE80}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\the journey down\journeydown1.exe |
"{3B9868CD-F6C7-4354-80C3-DEA050BADD8F}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\spiral knights\java_vm\bin\javaw.exe |
"{3BA6AC56-952A-4164-A950-B3DAB1BBFA40}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops\blackops.exe |
"{3BFECEF1-4010-4E8E-AE46-8C29E5563A99}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 - panels short (english)\smp.exe |
"{3C35FDAF-AD60-4FA8-BAD8-3EDBE398ECE2}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\mini ninjas\ninja.exe |
"{3C3CF715-E178-4C0D-9750-245484D9C757}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\moon base alpha\binaries\win32\moonbasealphagame.exe |
"{3C56F83C-906B-438C-A088-8DD58C35403C}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\back to the future ep 2\backtothefuture102.exe |
"{3C8202E7-C0F1-4D6C-BC6F-4EA644950373}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\aliens vs predator\avp.exe |
"{3C92E346-C79A-4907-9BC5-0B1D91A3685D}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\overlord ii\config.exe |
"{3CBFB6A6-2702-451F-8103-8E575A0C19D7}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\mcpixel\mclauncher.exe |
"{3CF5E005-B632-4F2E-B715-F82C3943A92B}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\microvolts\launcher.exe |
"{3CFCE216-19BF-49D6-AD92-49D9BA56DE1F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops rcon\blackopsrcon.exe |
"{3D8649AE-6727-492E-9517-8331589EFFFD}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\shank 2\bin\shank2.exe |
"{3DB17424-5843-46E0-9850-7C45B15D0CB8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\penumbra overture\redist\penumbra.exe |
"{3E028086-73C7-4E1A-B11C-65C0DEAA7948}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\magic the gathering tactics\mtgtactics.exe |
"{3E221607-C648-4008-9E93-910352E28684}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\ben there, dan that!\winsetup.exe |
"{3E5C9CCF-BCD2-4BA9-BA74-871027560C64}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\english country tune\english country tune.exe |
"{3E60DF01-ACDE-46A9-9AE6-86E4678AAC08}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sam and max 301\sammax301.exe |
"{3E9205DC-67CC-469B-9843-B67529985252}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\super meat boy\supermeatboy.exe |
"{3ED24474-93EA-4EEF-B3A5-E23A2A8AF0B0}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\magic 2012 demo\magic_2012.exe |
"{3ED540E9-C096-4AF4-A743-1DD960026C62}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\blacklightretribution\blacklight retribution.exe |
"{3EFF50F2-0D4C-4C7D-AACC-6CCFF78214BB}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed brotherhood\acbsp.exe |
"{3F116639-4B21-4DC4-BC16-645D41CF204D}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\far cry 2\bin\farcry2.exe |
"{3F149C5B-D00F-442D-84EC-B875F0F349AF}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the ball demo\binaries\win32\theball.exe |
"{3F185FFE-42D0-4C69-8CCB-B1573289F3DB}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\painkiller recurring evil\bin\recurringevileditor.exe |
"{3F2282F3-A616-4052-8B3B-B7C81276EFC2}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\shattered_horizon\client_exe\shattered_horizon.exe |
"{3F4227CA-3F77-4BD9-8A7E-168695180EC9}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{3FE9544B-46ED-4C62-A7B9-F6B2D1C58F83}" = dir=in | app=c:\program files (x86)\windows live\sync\windowslivesync.exe |
"{41AC0D3D-6BB8-4A5F-A44C-31F91541D0D7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gumboy crazy adventures\gumboycrazyadventures.exe |
"{41D7BFFE-2C45-440E-A936-BDEAE8DB4A60}" = protocol=17 | dir=in | app=c:\program files (x86)\sibelius software\sibelius 6\sibelius.exe |
"{41DED0A9-BE16-421C-91AD-703D319511F1}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\the white birch prototype\birch.exe |
"{41E0DC22-721D-4A9D-B567-480E8D32B669}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{421120AD-C26C-4F28-B97F-52D210D1FA8B}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\aliens vs predator\avp_dx11.exe |
"{423C5905-48A7-455F-9D27-7785F1E6EE6E}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\red faction armageddon\rf4_launcher.exe |
"{4244CD9E-7442-4CA7-BBCA-8526766FD6BC}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\call of duty black ops\blackops.exe |
"{4267A699-AD77-43C2-862C-3F7C8FEB67B1}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops\blackopsmp.exe |
"{4283FDC2-98A7-4B92-9CAF-A50A63D02218}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\unmechanical\binaries\win32\udk.exe |
"{42C4E36E-E3F0-4F3B-BF52-562F52134307}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\from dust\from_dust.exe |
"{4309FD4F-CDB2-4828-A242-718F4974391C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\spacechem\spacechem.exe |
"{432B6389-EDF9-4227-AE3F-0664D590E52F}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\wallace and gromit ep3\wallacegromit103.exe |
"{43A9C7E3-3E8D-4853-9E90-F818E2B1B0B4}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\spacebase df-9 prototype\win\bin\moai-fmod-designer.exe |
"{43B62F80-7524-4B31-823F-1B6261B7F250}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\the longest journey\game.exe |
"{43D729A7-296F-469C-93C9-B8A640A43196}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\shado\shado.exe |
"{4413D227-9F02-4868-9863-AFC1890B8F34}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the book of unwritten tales demo\bout.exe |
"{445A3A4D-A88E-4B84-9D9B-5EC63C907666}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\homestar ruiner\homestar101.exe |
"{44BD2679-9A4B-46BE-B444-A6E5093894D3}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\srcds.exe |
"{451826BD-0AEB-44FC-9EBD-A5F602A3486E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\all zombies must die demo\binaries\win32\shippingpc-bzb2game.exe |
"{452E41D0-407A-406F-B041-F3323FFB9B85}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\thepolynomial-demo\polynomial.exe |
"{4548D8B6-86AC-4FA6-9542-22828D004949}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\hack n slash prototype\run.bat |
"{45F228EA-9817-4F24-8134-351B1B7C47B4}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\tales of monkey island - chapter 5\monkeyisland105.exe |
"{460027D4-928A-4EF4-836F-98F3267D2095}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (propulsion gel)\smp.exe |
"{461CAA7D-B827-4293-ABB3-5C54C4FC68CE}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\steelstorm\steelstorm.exe |
"{461CC641-5577-4849-A4AC-AADD401E78A5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\amd driver updater, vista and 7, 64 bit\setup.exe |
"{46B31000-D752-48C7-A8D1-71E103009AD8}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\tales of monkey island - chapter 4\monkeyisland104.exe |
"{471D1282-48E4-4BC2-A234-EC712561357E}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\chime\chime.exe |
"{47B75BFF-CF7D-42AC-9106-1576F4A519EE}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the maw\themaw.exe |
"{47DD50ED-EB03-4EB4-957D-D6AA6263A937}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\aaaaaaaaaaaaaaaaaaaaaaaaa!!!\main.exe |
"{47F97516-BF03-467D-9745-5CFC493750C9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\toki tori\tokitori.exe |
"{485A73BF-8558-47B6-A4CE-8CE22D95F31E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 meet the sniper\smp.exe |
"{488A6781-9FE1-4435-BD1E-56818EBD9604}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\payday the heist\payday_win32_release.exe |
"{48DB0939-A8EA-405E-AFBC-C51AF211D1B6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 trailer 2\smp.exe |
"{496F28BC-2379-425E-ABAA-61515DB8D21D}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\aceofspades\aos.exe |
"{49C0AFE0-A3E1-4307-9D99-A8CC7736FF65}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\trackmania nations forever\tmforever.exe |
"{4A1CD174-76B8-4AC8-BB9C-F8525A812F30}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dead space\support\ea help\electronic_arts_technical_support.htm |
"{4AA72466-CCB7-4466-A553-25820B11A80B}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\crayon physics deluxe\launcher.exe |
"{4AA9FA75-0D13-423B-840C-E603D1E05A61}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\trine\trine_launcher.exe |
"{4ABF1B21-988B-451C-A598-F0558E52A39C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\amnesia the dark descent\launcher.exe |
"{4ACC7F57-4251-4110-8804-4CAE1DEB36C8}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\the white birch prototype\birch.exe |
"{4ACE37ED-0C90-4787-BA68-401DECFC73A4}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\cubemen\cubemen.exe |
"{4B04FB12-1C75-4B71-B6D1-ABE5EF2E4977}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\peggle deluxe\peggle.exe |
"{4B4F636E-9040-4D82-AE11-7F95672FBDC3}" = dir=in | app=c:\program files (x86)\ (x86)\cyberlink\powerdirector express\pdx.exe |
"{4B6BA1BA-4A32-4F23-8E27-B4BE11D9F479}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\max payne\maxpayne.exe |
"{4B89EF01-04D5-49E9-8BE2-7944B99DD430}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\back to the future 105\backtothefuture105.exe |
"{4B8B74B4-0FA8-4506-8DDA-C2FBD91623C5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the tiny bang story demo\ttbs_demo.exe |
"{4BC85FDA-67D2-451E-A333-C52912B8DE78}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\poker night at the inventory\celebritypoker.exe |
"{4C8E3014-92D9-4F52-856D-D550156E3D20}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\flyn demo\source\flyn.exe |
"{4CF05923-BC00-4BC2-AD9D-8EFEF4CD4498}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{4D056A26-11B0-4867-819E-DA3B9A156FA0}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\resonance\resonance.exe |
"{4D0ABED8-9837-4D64-B960-B3B4A4524104}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\assassins creed\assassinscreed_game.exe |
"{4D24262B-9B8F-4715-A1A6-2226B3D8901C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\serioussamdoubled\ssgame.exe |
"{4D28C4EB-F47F-4E8B-9326-994B9439CB7C}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed brotherhood\acbmp.exe |
"{4E20BC2E-4C02-4D35-BFE7-A5A7C9AC3232}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2\bin\sdklauncher.exe |
"{4E30A3DF-3BEF-4FE4-82B4-D0AEB9B669EF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\demolitioninc\finaldgamegl.exe |
"{4E3884C4-0855-49F4-A084-2B18B4D64EE8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\brink\brink.exe |
"{4E7EF113-095C-4ADA-AA18-4DFD7233454D}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sam and max season 2 episode 4\sammax204.exe |
"{4E99586C-C971-432D-A4AB-74A752B4B584}" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\burnout™ paradise the ultimate box\burnoutlauncher.exe |
"{4EA291D1-846A-4534-94A0-7B1F9FD94DF1}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{4F4EE82E-96F1-4846-8250-203ECD7444B9}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\painkiller recurring evil\bin\recurringevil.exe |
"{4F62E343-CC67-4D6C-B01C-EC329F42A143}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{4F906896-C14C-44FB-BDBF-77C9BF95BDB9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\natural selection 2\ns2.exe |
"{4F9E308F-22DD-4B01-8F49-4AEF94817241}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\steelstorm\steelstorm.exe |
"{501107D5-A85F-46FF-AAC2-23DEA2657C0A}" = protocol=17 | dir=in | app=t:\steam\steamapps\willium_bob_cole\rag doll kung fu\rag_doll_kung_fu_steam.exe |
"{504E2F32-4608-4B7F-858A-A83D7199D7FE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\batman arkham asylum\batman_revoker.exe |
"{50753D87-2395-401F-AE62-2A73A46E6B6B}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\8-bit is enough\homestar105.exe |
"{50EAA15C-4623-45B4-B29D-0DAAA617504A}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\red faction armageddon\rf4_launcher.exe |
"{5102AC70-327F-43F3-B490-600459348CA8}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{511AEA66-92C8-4E85-A592-8AFE654A6D02}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\shattered_horizon\client_exe\shattered_horizon.exe |
"{51272B99-9EDD-48B9-83D2-2DB46FD92AB9}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gumboy crazy adventures\gumboycrazyadventures.exe |
"{51BA742C-A06E-4837-983A-896592CAD8BE}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\painkiller [bleep] & damnation\binaries\win32\pkhdgame-win32-shipping.exe |
"{521FDF5B-AAD1-4DE1-93E6-4C07B24BF803}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\strong badia the free\homestar102.exe |
"{52341199-0F1A-49E2-A66B-7B7FF12D068F}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\metaldrift\metaldrift.exe |
"{5286C2EE-67E0-45B5-909E-3AF8A310ED7E}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\left 4 dead 2\bin\sdklauncher.exe |
"{5293F3F2-E390-4072-A7E4-607323A33A27}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the wonderful end of the world\main.exe |
"{52AD1AB4-1DFC-48C3-9674-173949FAF679}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\stronghold crusader extreme\stronghold_crusader_extreme.exe |
"{534F4C04-D8CF-423D-83FA-43F3FCC24EED}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\team fortress 2 - mac trailer\smp.exe |
"{5492C68E-38A5-457E-BE3A-A45C99BC5401}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\tribes\binaries\win32\hirezbridge.exe |
"{549A1385-B632-40DB-A25F-CFC972DE66D0}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sourcefilmmaker\game\bin\qsdklauncher.exe |
"{54B2E98C-4314-4BB8-B873-D131594CB1D9}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{54F4FD0D-8859-45E3-84C9-891089CB6D9C}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\far cry 3\bin\fc3editor.exe |
"{550EBBFE-352B-4DA7-9115-5569177CD018}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\deus ex invisible war\system\dx2.exe |
"{55214DE7-05C7-4B63-9226-A385D66C04D9}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\hack n slash prototype\run.bat |
"{5577C244-D8B4-4C6C-925A-7E81A6DE7D93}" = protocol=6 | dir=in | app=c:\program files\autodesk\3ds max 2012\3dsmax.exe |
"{558C27A8-127E-4FBA-BED0-31AA2DCD5A7E}" = protocol=1 | dir=in | [email protected],-28543 |
"{561765CD-E195-4B35-8877-02CFFFB72E7C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\nightsky\nightsky.exe |
"{564522E4-EF2E-4108-9047-F6C4919971DC}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed brotherhood\acbsp.exe |
"{568B0B4E-F61B-4433-955D-ACE900A043E8}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\dead space 2\support\ea help\electronic_arts_technical_support.htm |
"{56FA0567-A60B-4907-9E81-F8A82B7ED357}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2\portal2.exe |
"{5721C4FB-DAEB-4A78-BF3A-4A846AF54038}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\ben there, dan that!\btdt.exe |
"{573793C8-55E6-487D-AC3C-DAF250A3C5A0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\warincbattlezone\rsupdate.exe |
"{57B9AF36-DB7D-4A2B-9BFE-42C31D67BC84}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\microsoft flight\flight.exe |
"{57CA5640-800A-48C5-9E02-0D22B3884584}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\aliens vs predator\avp_launcher.exe |
"{5813E96D-376C-4C09-AB15-DC4A932CCABE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\plants vs zombies\plantsvszombies.exe |
"{5822F87C-1CE3-459E-A43F-7365384EC15D}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\gumboy crazy features\gumboycrazyfeatures.exe |
"{5836D207-3D84-48B6-BC05-810DB7C7047A}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\i-fluid\i-fluid.exe |
"{583D55A4-3104-4A41-B51E-01E06FF81030}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\tower wars\tw.exe |
"{587385F2-F499-45FD-8E93-03F5F2105158}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\tribes\binaries\win32\hirezbridge.exe |
"{58ADDE6A-F5F9-45B3-BCB6-A00158E3A499}" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\burnout™ paradise the ultimate box\burnoutparadise.exe |
"{58B389B3-E9D9-43C5-94C6-830BAFF6B272}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\bully scholarship edition\bully.exe |
"{58C1DFBC-51E9-49A4-A654-735447C90A5B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\primal_carnage\binaries\win32\primalcarnagegame.exe |
"{58D89073-3DB6-4809-9CD2-06C77F318E06}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 - bot trust short (english)\smp.exe |
"{591905BC-C7CD-467B-987E-387DB2BB533B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\team fortress 2 - mac trailer\smp.exe |
"{59426152-8AD2-4CE6-BD11-4CDF52A65097}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the tiny bang story demo\ttbs_demo.exe |
"{5953C00D-EE2E-4A98-9B98-7D327C9FD842}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\microsoft flight\flight.exe |
"{59D5A43C-2315-4FB4-94B8-47ECA20530E1}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\uplink\uplink.exe |
"{59D7821B-C4AE-448B-956F-9D4E93775E03}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\cs go_trailer_short_nr\smp.exe |
"{5A21F960-3E39-46E8-86F0-2DFD9F3CFBCC}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\grand theft auto san andreas\gta-sa.exe |
"{5A36FF56-85A3-440F-B315-1125E2144677}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\assassin's creed 3\ac3sp.exe |
"{5A79A6EB-00CB-4541-9935-67660C4DB376}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\amd driver updater, vista and 7, 64 bit\setup.exe |
"{5AE6778F-6A32-482C-BC8B-FF87F34F1979}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\button\b.u.t.t.o.n.exe |
"{5B2C508D-6DFB-45C2-B878-CB411325B72C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 - bot trust short (english)\smp.exe |
"{5B438DCB-5653-4A10-A98B-739EF40910CF}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{5B8F2548-4DEF-4482-82FC-8B828DB5F96C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\full pipe\fullpipe.exe |
"{5C068D6E-4F0C-4CCB-8C0F-2FAE2F879B64}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft games\fable iii\fable3.exe |
"{5C097644-70AD-4DA1-AAB9-730B665CBA99}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\brink\brink.exe |
"{5C11C36F-F506-446E-B188-FAC16437F4A0}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\toki tori\tokitori.exe |
"{5C21A5F1-DD1D-496C-8C77-8D4B8142EBD7}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\serious sam 3\bin\sam3_unrestricted.exe |
"{5C86C963-6A93-4E37-AB7B-B6298748E40C}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\battlestations midway\options.exe |
"{5C9AE222-DC54-4730-8684-473D06FD6D6B}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sniper ghost warrior\sniper_x86.exe |
"{5D4F6382-86E4-4D71-985E-F859F84ADD2B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\trackmania nations forever\tmforever.exe |
"{5DBCFB2F-F1CB-4622-958F-719A83BF0272}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\crayon physics deluxe\launcher.exe |
"{5E60F92A-E822-48ED-B943-336ADED20F14}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\puzzle pirates\java_vm\bin\javaw.exe |
"{5E887F5B-8F17-4597-BA64-19145287FA4A}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\l.a.noire\lanlauncher.exe |
"{5E9DEB77-A101-4092-B714-21E1311254A4}" = dir=in | app=c:\program files (x86)\ (x86)\cyberlink\powerdvd\powerdvd.exe |
"{5F334CD4-7612-4B47-94FC-FE696E688499}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (wheatley)\smp.exe |
"{5FDED946-B765-4B30-949E-F0B9F398C8BF}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\overlord\overlord.exe |
"{5FECA372-D8B6-48D2-931A-37179E649540}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\serious sam the random encounter\sstre.exe |
"{602E0E20-3A04-4273-96EE-4079D0B95237}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 meet the heavy (russian)\smp.exe |
"{606F10C4-4CE4-46D4-BE32-AF881FECEBE8}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\conflict denied ops\conflictdeniedops.exe |
"{607B233A-CA00-47C1-914E-6570A7C56E8B}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\atomzombiesmasher\data\atomzombiesmasher.exe |
"{607F315B-5DD9-4208-A991-B6BA743856F4}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\hitman blood money\configure.exe |
"{608329D3-3454-4100-8D27-276138B29EF2}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\batman arkham asylum\binaries\bmlauncher.exe |
"{60A8C784-071F-433C-A580-D7B545D0B27E}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\button\b.u.t.t.o.n.exe |
"{60B1C598-6B63-456B-B347-EE8861C0996D}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\autonomous prototype\launcher.exe |
"{60DC0315-75D9-4D3D-8C36-A5DE78859A15}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\eets\eets.exe |
"{61FE7598-E71D-4999-967B-749599AD91A4}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\batman arkham asylum\batman_revoker.exe |
"{6223CD78-B56A-41D8-B0E1-483FB8A21A3C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\snapshot\snapshot.exe |
"{6248E3EA-3FE8-4033-91FD-72ECC25340AD}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sam and max season 2 episode 5\sammax205.exe |
"{624A61B0-8BBD-4734-9192-03A00AE7BD5E}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\universe at war earth assault\launchuaw.exe |
"{6294E94C-F295-416B-A2EA-C17506A5EF2D}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\deus ex\system\deusex.exe |
"{62B6BC7F-0EC2-4427-B961-DF42F8970D73}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\hardreset\hardreset.exe |
"{62EBE3D6-1A7A-4B05-BEA7-557033180EE0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\alien swarm\srcds.exe |
"{62FBD446-F1E6-47C0-922A-D0989C03A83B}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft games\fable iii\fable3.exe |
"{63116406-B450-4FEE-B806-3E7C0EC245B1}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (wheatley)\smp.exe |
"{63147FBB-4CF4-4635-9685-6D85CB20D381}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{633BEAA8-9F9B-4CF3-94EC-B629702733FB}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\battlestations pacific\battlestationspacific.exe |
"{63B6EECD-D92C-441C-99AF-53D5F16062A2}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\monday night combat\binaries\win32\mnc.exe |
"{63BE8561-A6FC-4839-A1A6-9F8B9013473F}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\natural selection 2\ns2.exe |
"{63E9A352-8A71-4340-BE48-57E47887D083}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\stronghold3\bin\win32_release\stronghold3.exe |
"{6409BAB3-A276-4996-A448-1B3851267F61}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.0\sonarhost.exe |
"{6473AB9E-A709-4EE5-9963-212666DE7349}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\defensegridtheawakening\defensegrid.exe |
"{649F4382-663C-4CB5-A344-066B7E3D2BC2}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\noitu love 2 demo\config.exe |
"{64B75067-0563-4A92-9DDC-5224CD492F8C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{652B3BC4-0934-427C-AD24-863C439F0E94}" = protocol=17 | dir=in | app=t:\steam\steamapps\willium_bob_cole\team fortress 2\hl2.exe |
"{65A0771C-15DB-4C31-B043-2F38B12AFB21}" = protocol=6 | dir=in | app=c:\nexon\vindictus eu\en-eu\nmservice.exe |
"{65ADDFFF-7CD1-486F-80B8-6D51C4E4E6E5}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\shattered_horizon\server_exe\sh_server.exe |
"{66863288-41C8-44C0-B604-6C79029E90B8}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\painkiller overdose\bin\overdose.exe |
"{669AD5C0-049F-479A-8EB4-051390D1E457}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\eets\eets.exe |
"{66C22B16-AD10-452E-8FF3-3850AFB63128}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\pc gamer digital edition\freakshow.exe |
"{66F9F641-E46C-46F9-A43D-17D4D2321CA6}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\titan quest\titan quest.exe |
"{67022CAD-63C2-411B-BB87-805A36C5E7BB}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\sanctum\binaries\win32\sanctumgame-win32-shipping.exe |
"{671B9E86-A673-4F02-8090-2946FB51AAAD}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\crysis 2 - demo\bin32\crysis2demo.exe |
"{6722FD43-66BB-4661-B4A7-8126EB227B85}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 meet the demoman\smp.exe |
"{6726222B-37A6-453A-A082-FEAA3475BECF}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\zero gear\zerogear.bat |
"{67B5B7B2-AD4E-4A5A-A621-420CE4E703F4}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\chime\chime.exe |
"{67CEE7D7-21E9-4052-8F54-C5F5AA7014E6}" = protocol=6 | dir=in | app=c:\program files\autodesk\3ds max 2012\mentalimages\satellite\raysat_3dsmax2012_64.exe |
"{67D7586A-FB46-4C7E-AF4C-23E7320CEC95}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\tomb raider underworld\tru.exe |
"{67EF192A-FF04-475C-835F-97831A7F1055}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\sam and max episode 4\sammax104.exe |
"{68624015-09E7-4D2D-9403-875F77B250FD}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\hitman 2 silent assassin\config.exe |
"{686AB334-AC26-4B3A-998E-58C1C112645C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 meet the scout\smp.exe |
"{68829A60-2692-4797-B8D4-EEB891C596DC}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\full pipe\fullpipe.exe |
"{688312CE-A26D-4D2B-BE4E-4E9B07E92CDD}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (bounce)\smp.exe |
"{689B747F-499F-4E58-8583-C21064F2BDF1}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\bone\bone1v20.exe |
"{68BFCE81-DE1E-4FA6-A01C-7965F240BD87}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (suction)\smp.exe |
"{69200F4A-C2D6-4583-A5CC-906611D7F693}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\alien swarm\srcds.exe |
"{693D7060-232B-467A-9C6A-524A32A4FDA4}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\nightsky\nightsky.exe |
"{695147DE-0366-44AD-83EE-628654AF9984}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\time gentlemen, please!\winsetup.exe |
"{6955D49C-01F5-4A6A-809B-88773E8D5313}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 valentines\smp.exe |
"{695D0BF0-B2B1-4732-B33B-287288B2A1F9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 - bot trust short (english)\smp.exe |
"{69B436EB-11A7-40D9-97E2-9DB9DDA4EA2A}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sam and max episode 6\sammax106.exe |
"{69C79B7D-BF8F-4910-BF7A-24536907FEB6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\time gentlemen, please!\tgp.exe |
"{69F2842A-3A73-4935-A969-C070F38FB1A3}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\dungeon defenders\binaries\win32\dungeondefenders.exe |
"{6A1DACB4-50C1-4C0D-8EC8-D3D30AD9425D}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\mole control demo\molecontrol.exe |
"{6A43F031-A349-4727-8102-066ACFBA01C4}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\spacechem\spacechem.exe |
"{6A6DE5AE-B53E-4CA5-A208-C08DCC050953}" = protocol=6 | dir=in | app=c:\nexon\vindictus eu\en-eu\vindictus.exe |
"{6A82C52B-1EA9-474E-BA37-0C7A015B1AB6}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\tomb raider legend\trl.exe |
"{6AA952F4-5F8F-4F55-A250-FD9CD856399B}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\painkiller overdose\bin\overdose.exe |
"{6B17FA0E-8378-4D1A-9052-03B132625572}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\wallace and gromit ep2\wallacegromit102.exe |
"{6B198FB9-789F-4658-896B-580CD872E91E}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\darksiders\darksiderspc.exe |
"{6B319D5D-6E30-447D-8702-A76FFE237D76}" = protocol=17 | dir=in | app=c:\program files (x86)\autodesk\backburner\monitor.exe |
"{6B56DD88-BCA3-434E-8948-4CFADE272E37}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\tales of monkey island - chapter 1\monkeyisland101.exe |
"{6BB3619A-82EF-4910-BAE5-C21AA23ED9FB}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\rogue trooper\roguetrooper.exe |
"{6BD97774-3561-4FD6-B082-9CB632790B7A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 meet the heavy (russian)\smp.exe |
"{6BF35933-0E3B-4FE9-ADDF-341906CFD2D4}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\stronghold\stronghold.exe |
"{6C12D7E2-73C9-4874-BA49-601A82644363}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{6CCB2EA8-5CEC-4819-8C6A-E83382775C17}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\grand theft auto iv episodes from liberty city\eflc\launcheflc.exe |
"{6D21EBE9-A8F0-45A0-8FFD-265B628C2EBF}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\borderlands\binaries\borderlands.exe |
"{6D6B3631-057E-42B6-82A6-000E8E93E244}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\left 4 dead 2\bin\sdklauncher.exe |
"{6D757B87-D5D5-42D6-AAE1-14FE2E473380}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\source sdk base 2007\hl2.exe |
"{6DE17B29-D7FD-4594-B1E2-6FD19175B7E5}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\jurassicpark\jurassicpark100.exe |
"{6E014DBB-2C77-4154-928D-15C10EBE0CB5}" = protocol=17 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe |
"{6E1ACDFE-9E61-416B-B98C-2CB3FD091C7C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\portal trailer\smp.exe |
"{6E6AE0F7-E60B-4B8D-AFD0-8E3E6FFAF1E7}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\hitman blood money\configure.exe |
"{6EE1989B-D409-4D20-B0FD-DE10D214CD68}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\tomb raider legend\trl.exe |
"{6EE20E04-7345-4F7B-BB9B-4246127254F5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (faith plates)\smp.exe |
"{6F064204-822E-40AF-A801-8E2D64959CDD}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gish\gish.exe |
"{6F9FFD1B-1476-40C1-9D66-23CECE81731D}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\painkiller redemption\bin\redemptioneditor.exe |
"{6FE908E0-2416-4151-9952-A5B5E72C50A6}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\just cause\jcsetup.exe |
"{7036203C-9744-4D90-A6D1-6FBCF9630F15}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.868\agent.exe |
"{703AB72D-A0D1-412F-A1A9-063B8433B54B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\lead and gold gangs of the wild west\lag_win32_public_dev.exe |
"{70C47146-8091-4E9A-BE38-158CC80A1A1F}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\battlestations midway\battlestationsmidway.exe |
"{711EF467-69FF-4F4E-A692-2FFA4B0A4350}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\puzzle dimension\puzzledimension.exe |
"{714C8D8A-6543-4518-9BF9-0DB81F44415B}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\hitman codename 47\setup.exe |
"{719B76C1-3F3E-4074-8C88-3B6FD3F02973}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\sourcesdk\bin\sdklauncher.exe |
"{71DF5728-5CDF-46EF-97B4-F5FF98AB8AB9}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{71DFCEEC-29F6-4258-A527-330A536149BD}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\project snowblind\snowblind.exe |
"{71FC7FF7-1819-4D2F-A5B0-34C63009B6A1}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\alien swarm\swarm.exe |
"{728FEBCA-5AB3-4F38-8FF9-91CD8039B88B}" = protocol=17 | dir=in | app=c:\nexon\vindictus eu\en-eu\nmservice.exe |
"{73056F6C-AF6E-46E3-A56B-AD26238A9E0A}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\shellshock 2\shellshock 2.exe |
"{73073E64-0154-44DB-9B99-BE28EF6AD0EE}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\mightier\mightier.exe |
"{732D07A8-25DA-4B47-A6E5-9FC290076AE2}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\infernal\game\game.exe |
"{7380ED9F-C393-4614-BEDA-8A61050243EB}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sam and max episode 4\sammax104.exe |
"{73AEB627-C3D3-4262-8F3F-EB34DB8067A3}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\darksiders\darksiderspc.exe |
"{73C63DB8-6FA8-4DD0-BD32-11F03430EBB0}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\just cause\jcsetup.exe |
"{73F330D8-C705-435F-A2DA-6CC04AFB2FE1}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\lawandorder\lawandorder101.exe |
"{74387472-ACFF-49A3-90E3-3E048E8AE117}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\portal trailer\smp.exe |
"{74B8852F-2ACC-4BA8-A871-250E50751877}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\bin\sdklauncher.exe |
"{7545419B-D67E-4880-A008-2AF90010FB5B}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\flatout2\flatout2.exe |
"{755E7744-2393-423B-943A-13E2E60CC9B0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\the ship\ship.exe |
"{76096DA1-23EB-4F8A-92F9-B31684D59365}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\overlord\config.exe |
"{76A39CCC-FCD2-4A9C-9D48-BB13EB5AD7DA}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\serious sam 3\bin\sam3_unrestricted.exe |
"{76C41500-3C5C-4E5A-B169-84355DD40E37}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\psychonauts\psychonauts.exe |
"{7768C963-DFD6-483B-B6B6-D2391475FF4C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\world of goo\worldofgoo.exe |
"{7782EEB4-2EC7-4284-BA61-8440C6AF6BEE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\aaaaaaaaaaaaaaaaaaaaaaaaa!!!\main.exe |
"{7795E192-C919-4891-BB42-5611ACED8E1F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 co-op trailer\smp.exe |
"{77B1A33F-66B5-4760-8806-CAC99A3D311E}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{77C28345-1C1B-4307-9108-2F9E6178B66C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\shado\shado.exe |
"{77C5F889-5A15-4317-866A-C12440702044}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gateways\gateways.exe |
"{77D541E5-E8C8-49FF-8E40-76A0594341AC}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{77D8B3F8-268A-4DB5-A01C-82FB10C2A9B3}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\shank\bin\shank.exe |
"{77EFD249-7D9D-4B01-B1A3-15B876078DC2}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\world of goo\worldofgoo.exe |
"{78215EF5-7B84-4C21-9F65-D9117A4D36A4}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\qube\binaries\win32\qube.exe |
"{78978CF0-1D29-42BF-AD2C-90E6A98852A7}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\atomzombiesmasher\data\atomzombiesmasher.exe |
"{79B03845-9DB7-4975-B184-88D281174C45}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (wheatley)\smp.exe |
"{79DDA243-9342-4CFE-8F9C-09903904CD33}" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\burnout™ paradise the ultimate box\burnoutconfigtool.exe |
"{7A05A972-5834-4CAA-9456-8954FCE1964A}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\mirrors edge\support\ea help\electronic_arts_technical_support.htm |
"{7A249399-FEEA-47FB-929B-BCC13BB320A2}" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\burnout™ paradise the ultimate box\burnoutlauncher.exe |
"{7A321EE4-6C26-40CC-8DF0-88741DE2138F}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\tales from space mutant blobs attack\game.exe |
"{7A39CF88-ECEB-461C-AFA4-78678E405DB5}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\max payne 3\max payne 3\maxpayne3.exe |
"{7B218A0F-2F96-4023-9133-431966217E7D}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\supermnc\uberlauncher.exe |
"{7B474418-518E-4FF0-B65F-B971A1EFA536}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\fieldrunners\fieldrunners.exe |
"{7B569CFD-0124-4749-9C05-97B626395D55}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\audiosurf\engine\questviewer.exe |
"{7B743EE2-55CE-4CBA-BC36-FF64173B987B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\edge demo\edge.exe |
"{7B7B50A2-72FA-4A8A-98FA-23990B8A8866}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\painkiller recurring evil\bin\recurringevileditor.exe |
"{7BC6EE6C-513A-4239-BF21-C5F69F33BA51}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\nuclear dawn\nucleardawn.exe |
"{7BD86935-1AB6-42DF-BD74-0650CD5C89EF}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\alan wakes american nightmare\alan_wakes_american_nightmare.exe |
"{7C37184D-2316-47EA-A598-5907509D8F49}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\blacklightretribution\blacklight retribution.exe |
"{7C6AACF9-3151-4F9D-B279-767E396629E5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\beatbuddy\beatbuddy.exe |
"{7C706DCC-1545-4F9A-9BA0-001F066BEEDA}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\to the moon\to the moon\to the moon.exe |
"{7C79555D-627F-428B-BE7F-B1590D1D3CF7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\blackwell\blackwell.exe |
"{7CAA66CD-31A9-4D66-8D55-5598B2C48C9F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\magic the gathering tactics\mtgtactics.exe |
"{7CAE5545-777D-49E4-8741-BF5B055C7F08}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sniper elite v2\bin\sniperelitev2.exe |
"{7CCB28A4-D78A-4D58-B334-FCBDC5F08CFF}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\hitman 2 silent assassin\hitman2.exe |
"{7CE72622-E237-4D68-A672-172816A19100}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 trailer\smp.exe |
"{7D7E349B-776D-4C27-9E50-7D24423E58D6}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\grand theft auto 2\gta2.exe |
"{7DFE792E-C277-4E32-A9BE-3D6DBF698195}" = protocol=6 | dir=in | app=c:\program files (x86)\sibelius software\sibelius 6\sibelius.exe |
"{7E1EB83A-EACD-4965-BC2F-7214737CC277}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\defensegridtheawakening\defensegrid.exe |
"{7E53C574-B193-49FB-A883-0D1B6B541B08}" = protocol=6 | dir=in | app=t:\steam\steamapps\willium_bob_cole\half-life source\hl2.exe |
"{7E95BFFE-023B-4ACA-88F7-9DCD697DE9D8}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\basement\the basement collection.exe |
"{7E960B6B-E636-4CF5-8A4F-8E3A984E290F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\jamestown\jamestown.exe |
"{7F6D191A-D246-43EB-B387-8F9E6E510301}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (faith plates)\smp.exe |
"{8013018C-4BAB-4147-B7A3-135387F20632}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2\bin\sdklauncher.exe |
"{802AE6AE-8668-494B-ABAF-2544A4B4C13B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\telltale games poker\poker.exe |
"{8036104F-C756-48AC-A17A-8F9C49ECA57F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\world of goo\worldofgoo.exe |
"{803BEA78-9886-4563-8597-206B35EC105D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\meet the engineer\smp.exe |
"{80BCE952-04F2-4A78-9CA5-1959712B8F0B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\hamlet\hamlet.exe |
"{8248B2D8-DBF1-42E5-A99E-06CDD837B262}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gish\gish.exe |
"{828CA825-C686-444A-A262-E36CDCD0D56F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\beatbuddy\beatbuddy.exe |
"{82A06D6E-47AD-4D99-977E-30F46AFD3DDD}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 meet the sandvich\smp.exe |
"{82DC898D-C28B-456D-8325-72396657BC5C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\prince of persia\launcher\launcher.exe |
"{83BE9DFE-CD2C-415F-947B-D46E8F6132A4}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\penumbra overture\redist\penumbra.exe |
"{83D34DCB-8083-4630-B57A-131C671CE448}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\from dust\from_dust.exe |
"{83DFDFC8-73C6-47C2-B930-93DBB8619D96}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\dead island\deadislandgame.exe |
"{844F938D-3C19-4C91-A7CB-3F3E2641F478}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\avseq\avseq-win.exe |
"{8498EA87-8B52-48CB-B430-04D632D02163}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\indie game the movie\igtm.exe |
"{85033CA3-624D-490C-813C-48560E741FDB}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\hardreset\hardreset.exe |
"{855ED383-D91F-4E56-983C-C1EC1FDBFAC3}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\the longest journey\game.exe |
"{85FB72BC-529F-4220-A5DE-B9DE350087F7}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sam and max 301\sammax301.exe |
"{8625C088-9A64-473F-95FD-F8F8DBA8A62E}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sam and max episode 6\sammax106.exe |
"{8626D708-41B1-4CC2-9CE1-4606D8A3FD56}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\xotic\xotic.exe |
"{867E4A5A-0516-4BA5-8575-A7D8AB7F426E}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\far cry 2\bin\fc2serverlauncher.exe |
"{8684E447-EEE5-4C20-A248-8556C577807B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\little inferno beta\little inferno.exe |
"{86E46D43-ADE2-4A9F-BC42-9B0094471ECC}" = protocol=17 | dir=in | app=t:\steam\steamapps\willium_bob_cole\the ship tutorial\ship.exe |
"{86E99A38-B6AE-48B9-97FB-5B4322CC0AB3}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\back to the future ep 2\backtothefuture102.exe |
"{874C2FD9-BE5C-4B9A-BD93-B0642B055A09}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\blackwell\blackwell.exe |
"{87A34200-EB6A-4C02-9ED0-C60ED43980FD}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 co-op trailer\smp.exe |
"{87FB5D92-DE0A-42E8-9312-361FB026BE63}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sam and max episode 5\sammax105.exe |
"{880435BE-5C14-4323-8A59-E190D9B89BB4}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.0\sonarhost.exe |
"{885BC5FC-167B-4F28-A668-444B603E4C76}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\aaaaaaaaaaaaaaaaaaaaaaaaa!!!\main.exe |
"{8881C4DF-CE1E-4D5D-9F70-B20FA993D839}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dead island trailer\smp.exe |
"{88BAF33C-E44F-4B08-A69F-61C943BD5AF7}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\mark_of_the_ninja\bin\game.exe |
"{890754B3-EC9E-440D-9410-C5A82137366E}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\puzzle agent 2\grickle102.exe |
"{897B82FB-EFF7-47AE-9BCB-8BB59853A5B8}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\tales of monkey island - chapter 3\monkeyisland103.exe |
"{89C64DD7-8F0C-426F-BF42-4DEAB2C84F69}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\deponia\deponia.exe |
"{89C9346A-93BA-4DA9-9835-630AF7538E64}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dungeons the dark lord demo\dungeons-server.exe |
"{8A1D2B7C-9458-4A96-B19C-196A6A6136EA}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sam and max episode 5\sammax105.exe |
"{8AB4B1E8-70E6-4282-8B07-8CED8208313E}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\grand theft auto 3\gta3.exe |
"{8AC4F125-3002-4BF2-9CCA-144E90DD6163}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\dangeresque 3\homestar104.exe |
"{8AEF5748-E7F6-42A0-8395-4BAC454018C3}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\grand theft auto vice city\gta-vc.exe |
"{8AEF8A46-7C52-477B-A858-2E5A2CF23AEB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\sanctum\binaries\win32\sanctumgame-win32-shipping.exe |
"{8B061608-8A3F-4663-A065-1C8F6365131D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\spirits\spirits.exe |
"{8B12A51F-2DD1-41D1-AC87-239536E4DE1B}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\dead space 2\deadspace2.exe |
"{8B23ACFC-F485-4F1A-B26C-7CBAB71A0E77}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\dead space 2\deadspace2.exe |
"{8B247CD6-D0CA-49F3-939B-8C53F5132467}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\bit.trip beat\beat.exe |
"{8B6BF057-818A-407C-B621-222F43D00405}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\dark souls prepare to die edition\data\darksouls.exe |
"{8C3200D0-E0DF-466B-A1EA-0B2DF822CA07}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\anna\anna.exe |
"{8C82F30F-B96B-4509-A540-363B93239C3B}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\bastion\bastion.exe |
"{8CA133E5-E99F-4FA6-8E08-6EE05020B866}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\prince of persia forgotten sands\prince of persia.exe |
"{8CC18B66-04D4-4936-876E-04038E7FE503}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (lasers)\smp.exe |
"{8CC30A28-42F6-4FAD-A167-B25C68DB4F6D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\super meat boy\supermeatboy.exe |
"{8D09EE9F-3A8C-4D5B-89A6-7B722E2088F6}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\tales of monkey island - chapter 4\monkeyisland104.exe |
"{8D391D13-23FF-48BA-9FF7-504F239A9FB6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 teaser\smp.exe |
"{8D7DDC5B-B250-4191-94DB-B1DB8238D1D9}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\cargo! demo\bin\win32\config.exe |
"{8E6569B6-3B51-4849-B1B3-52FC43AA70B8}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\lucius\lucius.exe |
"{8EF52092-C17A-4169-ABEC-92EC8952EE23}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\hitman blood money\hitmanbloodmoney.exe |
"{8EFEA436-FC33-4E02-B7F4-D8370888B359}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 meet the heavy\smp.exe |
"{8F119580-52E9-486F-91D1-7AA45AF68FDB}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\home\home-win-eng.exe |
"{8F1C448B-33B2-49EE-B6CF-4F3F838F79E4}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\3dmark 11\3dmarklauncher.exe |
"{8F4042FF-0621-4171-B535-FD9BFDD79AD2}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\waveform\waveform.exe |
"{8F9C516C-8DC9-46E3-AA20-D1B563F298FC}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{8FE8E27E-7C0A-4EA2-89D3-07F662449B05}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\legend of grimrock\grimrock.exe |
"{908806AC-603D-4D4E-9F89-F954083D5A0A}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sam and max 305\sammax305.exe |
"{909C1242-266C-4B2D-8883-7535957A9EBE}" = protocol=6 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe |
"{90A4B6E1-5933-434D-B43C-43ADC461474C}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\hamilton's great adventure demo\hamilton.exe |
"{90AE7DAD-E6BD-483F-8518-CCDC81F8612A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dungeons the dark lord demo\dungeons-server.exe |
"{90C1F1FE-9A69-47C7-B086-A15FDF701A2C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\audiosurf\engine\questviewer.exe |
"{9103F863-B569-4FE8-A51A-A713688DDF69}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe |
"{911B6311-609A-462A-AFFE-F4BF3E3D643F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\offspring fling!\offspring fling.exe |
"{918BECD4-A2BB-435F-853A-DFCA3EA52F45}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\back to the future ep 1\backtothefuture101.exe |
"{92052FA8-A9C1-447C-8297-7FF1D9D26D15}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2\bin\sdklauncher.exe |
"{931CEE5F-F608-4761-9F28-98027094BC4D}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\primal_carnage\binaries\win32\primalcarnagegame.exe |
"{93286219-F162-4E64-81E4-BE029078092A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 meet the spy\smp.exe |
"{934B8CF5-10CD-428D-BA64-8B61AE3411F2}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\tower wars\tw.exe |
"{93D3FC10-74C1-4AD7-A9DF-A6634D5031A9}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gratuitous space battles\gsb.exe |
"{9418078A-F545-45B1-BD86-FCC398F3E285}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sam and max season 2 episode 3\sammax203.exe |
"{9437B043-433A-4411-99AF-2A930006055C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (propulsion gel)\smp.exe |
"{9445184E-D3F8-4541-A788-E874E04A60A6}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\peggle deluxe\peggle.exe |
"{947698FD-128C-49D3-BB02-6E20F70565F4}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\alan wakes american nightmare\alan_wakes_american_nightmare.exe |
"{94932C55-49BB-4B06-8148-29700131C16B}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\natural selection 2\ns2.exe |
"{949B5EC6-9825-45D8-9729-F57B73C400BC}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{951EE8C2-3D95-4FF9-9D0F-213F775286EA}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the walking dead\walkingdead101.exe |
"{95284118-9C5F-4D9C-8682-970F29C8B5AB}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\transformers war for cybertron\binaries\twfc.exe |
"{953F645A-021E-4501-ABA4-3727255AB684}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2\portal2.exe |
"{958E01DF-DD10-4EDA-B789-43E713503AF4}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\osmos\osmos.exe |
"{95A7EE65-373C-4587-B23A-3FAE8A7CF692}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\painkiller black edition\bin\painkiller.exe |
"{95B8E332-2774-482B-B169-0BC28B7F966E}" = protocol=6 | dir=in | app=c:\program files\autodesk\3ds max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe |
"{960039DB-56D1-4F9A-AD66-96CADCF2255D}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\black lake prototype\black.exe |
"{9667D968-E49F-4C33-BB38-87DDE3BA5D44}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\far cry 3\bin\fc3updatersteam.exe |
"{967FA77D-25E6-424A-BBCE-66FC1F3EDA95}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sam and max episode 2\sammax102.exe |
"{96AA8597-E9FB-4E93-9611-69D09455D7E5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 teaser\smp.exe |
"{96F998E3-1302-4F91-8684-861746C66679}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\flyn demo\source\flyn.exe |
"{9716F41E-273E-4B7D-AE12-4F09692835B0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gumboy crazy adventures\gumboycrazyadventures.exe |
"{974BB51E-8BD5-4DB5-AAB7-66E1ADB5095B}" = protocol=17 | dir=in | app=c:\program files (x86)\codemasters\dirt 3\dirt3_game.exe |
"{974D3F7A-35E6-4820-9B74-B21317B0D284}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\stronghold crusader extreme\stronghold crusader.exe |
"{975ABA7E-9AFC-449D-9635-89C23E794DCB}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\dangeresque 3\homestar104.exe |
"{97685070-A2F2-49E5-B2ED-8220E14E9D8E}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\imagine earth\imagineearth.exe |
"{979A4513-8ADD-43E3-83CD-FD85E81E99F7}" = protocol=6 | dir=in | app=c:\program files (x86)\ea play\create demo\pc\create.exe |
"{97A110C4-E68A-4076-BBD0-DFEE0B113337}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sam and max season 2 episode 2\sammax202.exe |
"{97C54DEC-7FFE-4F46-B032-3F20B4530828}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\cargo! demo\bin\win32\game.exe |
"{980770FD-4251-4BC0-A300-94DD445B6947}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\puzzle agent\grickle101.exe |
"{98161480-5CC1-4826-9AA2-1055DBA335F8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{984ABE23-F06F-47DC-B2F2-C11B5193BC70}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{98BC2350-1324-4797-A390-666193BBA1C8}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\grand theft auto\wino\grand theft auto.exe |
"{98D6B83B-AFD3-4175-8339-58B941B3C063}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{98EAA9C2-3EB7-4419-B5FC-EC6546052B2C}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\strong badia the free\homestar102.exe |
"{98EC7578-601B-4406-9E67-E1476E4767BB}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\orcs must die!\build\release\orcsmustdie.exe |
"{98FFFE61-3423-4835-AD95-08B1ADCC04C0}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\stronghold 2\stronghold2.exe |
"{99021542-B5B8-427F-8754-D34AE13361E7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dungeons the dark lord demo\dungeons-server.exe |
"{990BDA70-C2DD-4382-8DDB-6822DBF05CEC}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\the ship\ship.exe |
"{9925C09C-C9BA-4087-A6D0-452546A3C408}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\jamestown\jamestown.exe |
"{99548B96-F8F9-40E3-AD61-A0A499F248C2}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\tomb raider underworld\tru.exe |
"{996BFC01-9EF3-4771-977E-11B2FE8CB37A}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\overlord ii\overlord2.exe |
"{99FBBE28-024A-4306-9778-2B88B44E95DD}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\hitman absolution\hma.exe |
"{9A27E533-2707-416A-B239-E8F4E4C7654D}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\forge\binaries\win32\forgegame.exe |
"{9AA01A5D-FB22-4B6A-BE32-C2BD5D3C24BC}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\terraria\terraria.exe |
"{9B16923F-A2D2-418A-B496-5BCA188DAF40}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\dreamfall the longest journey\dreamfall.exe |
"{9B4E45EE-1BAC-4778-94B3-B124AA33760E}" = protocol=17 | dir=in | app=t:\steam\steamapps\willium_bob_cole\half-life source\hl2.exe |
"{9B63D653-FA33-4760-8FA5-F48203718B82}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\indie game the movie\igtm.exe |
"{9BB10A05-8DD1-4893-9EE7-720818A75E26}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\borderlands\binaries\borderlands.exe |
"{9C95A6BB-76E1-4FCD-91B3-BCF30C15068E}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{9CD0F541-94DD-4CDE-9C62-10454670F0BA}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gateways\gateways.exe |
"{9DCB241C-02B7-4179-99CD-733D5B774E5D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops rcon\blackopsrcon.exe |
"{9DE0EE78-2748-41F3-8FA3-37CFFEC410A3}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\battlestations midway\battlestationsmidway.exe |
"{9E31D6F8-0BB5-4FCF-9BF6-721EBE03624F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\frozen synapse - demo\frozensynapse.exe |
"{9EF16D2D-81F3-4F8A-8197-D563C7C5C0DD}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\offspring fling!\offspring fling.exe |
"{9F74A813-E3C2-4F51-B7AB-38FDFBAB1C1B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{9F8DCD0D-A00C-4085-A142-4F619B7EDAB6}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\baddest of the bands\homestar103.exe |
"{9F98DA4A-F257-4142-A946-7E87282EEFA8}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sam and max 303\sammax303.exe |
"{9FBE106D-9A31-48E6-A2C4-7FF72FC8F832}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (faith plates)\smp.exe |
"{A0A1E452-D40C-4FFE-A933-1EA8C8C607C4}" = protocol=6 | dir=in | app=c:\program files (x86)\codemasters\dirt 3\dirt3_game.exe |
"{A0EDD0B3-3F1C-469E-8977-412652D38DFD}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (bounce)\smp.exe |
"{A112864C-7BE0-41B6-82D8-90BC80510B0C}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\far cry 3\bin\fc3editor.exe |
"{A11AE9C0-3A20-4ADF-B291-52884D058383}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\amd driver updater, vista and 7, 64 bit\setup.exe |
"{A11C2EC2-9550-4C6F-BB2B-E14DC6AE72BD}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sam and max 304\sammax304.exe |
"{A13309AE-11C2-41AF-97A1-F7ADB9C4A4ED}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\time gentlemen, please!\tgp.exe |
"{A1533653-D0BA-45E3-A2AD-D85FC65D5BC4}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\anna\anna.exe |
"{A1C06A58-5AB1-44C4-AE97-C5E66D47AD94}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\alice madness returns\binaries\win32\alicemadnessreturns.exe |
"{A1C80091-08A1-4549-88F1-9A1776D9A488}" = protocol=17 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe |
"{A284F330-EEF6-425A-98A9-F14B2B371316}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\edge\edge.exe |
"{A28FF153-EFA0-440B-B5A1-DFACC5E7310F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\plain sight\plainsight.exe |
"{A347FB27-58EB-4729-8B08-0FFC799F9A06}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\ben there, dan that!\btdt.exe |
"{A37F3FF7-86FE-4C2A-8F6E-049686EA49DE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\edge demo\edge.exe |
"{A3AF52F2-B152-4BDC-BA95-2E7D32DB2B7E}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\farcry\bin32\farcryconfigurator.exe |
"{A444E6B2-C83B-42E9-8951-B7A83D7CE3A2}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sourcefilmmaker\game\sfm.exe |
"{A454DA7C-8FE8-47D0-BA42-B398DA1EF1AA}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\spirits\spirits.exe |
"{A457A758-0F6B-444F-8144-C1A1F272A187}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\black lake prototype\black.exe |
"{A47BE77A-7EA4-4DF6-A23E-D8A0F1F646E6}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\kane and lynch dead men\launcher.exe |
"{A4B9FDC2-8509-4815-AFE6-7F7F0880CA89}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\costume quest prototype\afcq.exe |
"{A4F0E742-A93E-464E-9011-A56C93917D12}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\natural selection 2\ns2.exe |
"{A507279D-F689-4318-9DCA-DEC355FD7DE5}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\castlecrashers\castle.exe |
"{A5764953-999A-4906-AF39-52B2CCE05D93}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\lume\lume.exe |
"{A5D5C6A7-521B-491C-B3F3-7B6944B7BE4E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{A6283F82-A660-4F21-853D-A4A7A3999C39}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\noitu love 2 demo\nl2demo.exe |
"{A67CB62F-3E82-4FB8-97EA-563F02A8E8CA}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\red faction guerrilla\rfg_launcher.exe |
"{A6A462D2-5937-4808-A01B-79D5D74F72B9}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{A6CD6FE0-AE43-45C5-A813-7AF786A2A620}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\penumbra overture\redist\penumbra.exe |
"{A7086D98-C9D7-4CC9-89C8-488481633DC3}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the final hours of portal 2\thefinalhoursofportal2.exe |
"{A77DF4AB-FAB1-405A-B8B8-4A5744F28DFF}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\painkiller redemption\bin\redemptioneditor.exe |
"{A7A800E3-0525-43E2-9BD3-2056887950E3}" = protocol=6 | dir=in | app=c:\program files (x86)\sibelius software\sibelius 6\regtool.exe |
"{A7C8FFCD-6F5F-459C-9756-616E37667DEC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the binding of isaac\isaac.exe |
"{A7D7E7E5-A501-42F5-A964-64FAC0E53704}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 - boots short (english)\smp.exe |
"{A7F50CF0-8729-4EC1-A2FF-7B913C783239}" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\battleforge\bootstrapper.exe |
"{A82010FA-E707-4D00-9E4A-E216C8FC5727}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\tales of monkey island - chapter 1\monkeyisland101.exe |
"{A8BDDBD7-C9AC-4C51-813F-45C744B0F7F8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dead island trailer\smp.exe |
"{A8FF9648-235A-42E6-915C-169E5089D740}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\rock of ages\binaries\win32\roa.exe |
"{A95E7787-087A-440A-BA8F-F26FAAA45474}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the tiny bang story\ttbs.exe |
"{A9872003-2706-4A14-8063-1FEF7E7C0463}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\red faction\redfaction.exe |
"{A9A9D7AC-78BF-4E99-BAF1-3F6678A78E34}" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\battleforge\battleforge.exe |
"{A9ADFE0D-600B-434B-8479-D90C4D73F410}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\offspring fling!\offspring fling.exe |
"{A9AE197C-DFC7-4F77-8C63-2EB8441484B9}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\and yet it moves\and yet it moves.exe |
"{AA65BCC6-8009-44A0-8985-04FFEFDCAFA6}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{AA7B400E-3FC0-4182-A48B-8B3E3358707A}" = protocol=6 | dir=in | app=t:\steam\steamapps\willium_bob_cole\the ship tutorial\ship.exe |
"{AA8A285E-199A-400E-A995-F99CF5C1EBEF}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\cogs\cogs.exe |
"{AA9561DA-89B2-4A28-B07D-620A6A0CDCCA}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\project snowblind\snowblind.exe |
"{AAFBED2F-1C02-4DFB-AD63-7E28E0AB3089}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\battlestations pacific\battlestationspacific.exe |
"{AB10349D-B27F-4B6B-91CA-5309737F1249}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\overlord\overlord.exe |
"{AB8AC05D-A386-498B-AE9E-398AED9B7E20}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\fear ultimate shooter edition\fear.exe |
"{AB8DB361-3028-408D-9D1A-D270213B158D}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 meet the soldier\smp.exe |
"{ABB7B15C-A4B6-402B-BB8B-55997FA42B44}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\peggle deluxe\peggle.exe |
"{AC0258F6-F2B0-445F-A03F-2E965DADF740}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{AC1D3820-D3D7-49AB-A229-F1BC0F8A260D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\rocketbirds_hardboiled\game.exe |
"{AD1935C2-59C5-4629-9B9A-D49519ACA76B}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\fear2\fear2.exe |
"{ADB8D35A-2EB5-4A10-9B96-F9703F114D83}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\metro 2033\metro2033.exe |
"{ADDCE477-5F78-4B51-9538-87F5F94A4FCA}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\alien swarm\swarm.exe |
"{ADEAE49D-64CB-4D72-AB0D-CCABE2312C1D}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\fieldrunners\fieldrunners.exe |
"{AE20CF3A-D959-472A-A517-CC83F40DD7C5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\serioussamdoubled\ssgame.exe |
"{AEA7863D-E4F9-4C50-8D7E-3B2E0C7B8B32}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\dota 2 beta\dota.exe |
"{AEAF5A0F-3415-4C08-8B2E-8C853AA354DF}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\gemini rue\reslists\gemini rue.exe |
"{AF895E01-8A1E-4992-8753-3629987AEA7F}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\revelations 2012\revelations.exe |
"{AF984DB5-5A59-448B-809B-F4D469ACEDE0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2\portal2.exe |
"{AFDF69CC-937F-44D0-A165-F911E3380CF8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\braid\braid.exe |
"{B006DF0C-0B2C-4563-B66D-0569F5891EA7}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\spectraball\spectraball.exe |
"{B00B23BF-9775-4960-90BB-6609A94F655D}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\bit.trip runner\runner.exe |
"{B029A296-63FD-4149-8E79-092C92C0648B}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\deadlight\binaries\win32\lotdgame.exe |
"{B092A0BD-C49A-4621-B592-4F2D94CF3EB1}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\superbrothers sword & sworcery ep\swordandsworcery_pc.exe |
"{B0B18317-EEB8-45C5-BE33-977B8237A78B}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\assassin's creed revelations\acrsp.exe |
"{B0EB195F-E89F-44B2-B44B-0E69CA187150}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\dungeon defenders\binaries\win32\dungeondefenders.exe |
"{B104CA22-7248-4CFF-AC47-0AEDFDD07224}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\tinyandbig\tinyandbig.exe |
"{B1674768-384A-44E5-9E9D-E01787DCEBF3}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{B20498F0-691C-4C33-9E00-8F702C2AA882}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\moon base alpha\binaries\win32\moonbasealphagame.exe |
"{B23BBFFE-B6A0-4040-A688-D37051473CFF}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 meet the scout\smp.exe |
"{B2673E39-3BA6-4E7B-9BA6-C868653CCCF7}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\painkiller resurrection\bin\resurrection.exe |
"{B27EE3C0-D693-426A-B7F5-C7B9EB380A16}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\happy song prototype\afmana.exe |
"{B325448E-C6CE-4D18-B3F6-1C009F0BDBC8}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\home\home-win-eng.exe |
"{B337302A-46D7-43E5-9732-F2570475E6D4}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\superbrothers sword & sworcery ep\swordandsworcery_pc.exe |
"{B36C4330-AD48-47D3-8440-BD2F9B08FD49}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\red faction ii\red faction ii.exe |
"{B3A33BD4-0663-42F7-8EE4-CAAE0355BA64}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sam and max season 2 episode 3\sammax203.exe |
"{B3ABBC6C-F06E-4707-BA0F-0C80BC1D223B}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft games\viva pinata\viva pinata.exe |
"{B3CB2584-6888-4FE9-9A50-5E3AE918C4F3}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\magic 2012 demo\magic_2012.exe |
"{B3DB8745-F7C3-47FD-B9B0-BE4283A4105B}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\overlord\config.exe |
"{B4351BEB-4739-4742-8CCD-50241EDF0A71}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (excursion funnels)\smp.exe |
"{B4BBEC9E-150D-4786-A1DF-6BE73ECFED53}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\srcds.exe |
"{B4C3A6FE-CF13-41B0-943F-4EBE0625F1EC}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\left 4 dead\left4dead.exe |
"{B51A4889-AC01-4ED5-97AE-451BCD972012}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sanctum\binaries\win32\sanctumgame-win32-shipping.exe |
"{B5D49027-F944-4422-9AD6-0B663B1810DB}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\mightier\mightier.exe |
"{B5E10284-F1A1-4320-865C-4BCDE2742E26}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\far cry 2\bin\farcry2.exe |
"{B5EF4A08-AE13-4273-8610-A9E4149E8BEB}" = protocol=6 | dir=in | app=c:\program files (x86)\autodesk\backburner\server.exe |
"{B64B8452-9C8A-4238-90C9-9352C555BDB7}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\conflict denied ops\conflictdeniedops.exe |
"{B6D2B492-4D5D-45E1-8FB3-DB39D1E54EDE}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\bob came in pieces\bob.exe |
"{B6DC25ED-A0FA-4291-A547-D9C1F3646737}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\homestar ruiner\homestar101.exe |
"{B6DFFB8F-BA71-4B5D-A994-2FCB5ADAEE3A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (suction)\smp.exe |
"{B6FB9BBF-FA90-47A5-BA73-563BB45788C2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{B781FECB-423C-422B-884A-E5636381774C}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\the ball\binaries\win32\theball.exe |
"{B80DBB34-217E-41D0-A3CC-0B301DCFF59B}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\just cause\justcause.exe |
"{B8A326EA-F963-4BFD-A3AA-0B826E05791E}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\f1 race stars demo\f1racestarsdemo.exe |
"{B8BCA54B-5669-4BF3-BFF1-6BB55F175C2E}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\supermnc\uberlauncher.exe |
"{B8C2805B-725D-49E9-8C45-EEB2992CF269}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\unmechanical\binaries\win32\udk.exe |
"{B8D2419B-FCBB-4301-B932-9279C856A16A}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed brotherhood\assassinscreedbrotherhood.exe |
"{B93129EF-9BAA-4502-B4A8-5A7A080EBBA3}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\transformers war for cybertron\binaries\twfc.exe |
"{B96CB361-ECC9-4C56-A9AC-E4154B1BA2E7}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{B998082F-BFD0-4202-A496-AA3E5FAD0E39}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\red faction\redfaction.exe |
"{B9FF5B68-52E2-43B4-A77F-05AEE9C91B90}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\offspring fling!\offspring fling.exe |
"{BA7357ED-A50A-4771-B673-F701DABABE34}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dead space\support\ea help\electronic_arts_technical_support.htm |
"{BADB3002-0F1A-4440-B26A-4C254F6E56E1}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\ava\nwzlauncher.exe |
"{BAE97DC1-58E4-48B5-BBED-91B7CB2E93F4}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\moon base alpha\binaries\win32\moonbasealphagame.exe |
"{BB0E9D3C-08D3-40CF-80D8-B18FB1BBA386}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\far cry 3\bin\fc3updatersteam.exe |
"{BB43CA65-15E9-4B26-AD66-B7FA1BFAD3F7}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\the wonderful end of the world\main.exe |
"{BB5948CF-7261-49A8-BB33-D411A7630DD4}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sam and max season 2 episode 2\sammax202.exe |
"{BB99A25E-0FBC-4559-A718-F1EEF7380241}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\saints row the third\game_launcher.exe |
"{BC303577-705F-43E8-BA33-2ADA05465167}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\far cry 3\bin\farcry3_d3d11.exe |
"{BC530897-9597-4D1D-AB0E-46E97EFE08E1}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\max payne\maxpayne.exe |
"{BCCAC375-E96C-4102-89F8-59AC3B36E17D}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\fear ultimate shooter edition\fear.exe |
"{BD2A9FC6-F20C-41F6-9BE3-BDD85789F204}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\kingdoms of amalur - reckoning demo\reckoningdemo.exe |
"{BD512F63-DAA4-4AC5-9AF8-B3738A05BC61}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\aliens vs predator\avp.exe |
"{BD97F657-7263-4D92-BEC7-D36D20155123}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\back to the future 103\backtothefuture103.exe |
"{BD9F5A8A-5459-4CEA-A630-8A4678C15EBD}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\hector ep 3\hector103.exe |
"{BDB367EC-568D-442F-9436-0F65972F741C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (excursion funnels)\smp.exe |
"{BDDEB0AC-F4AC-4FAB-B9FE-5AFE84A5F182}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\trash tv\trash tv.exe |
"{BE080B4D-E543-45FD-97EA-CFB5998E0D47}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sam and max 305\sammax305.exe |
"{BE3BEA54-0EC7-4756-8992-4FAA07610914}" = protocol=17 | dir=in | app=c:\program files (x86)\autodesk\backburner\server.exe |
"{BE706516-051B-43E2-8A1C-F687E87E9019}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\heavy weapon deluxe\heavy weapon deluxe.exe |
"{BE758963-99A3-407E-AB07-A38112DB71E2}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\company of heroes\reliccoh.exe |
"{BE851516-8AAE-4026-909F-E9116CD2C568}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\planetside 2\planetside2.exe |
"{BE99C8C9-6AB1-400B-ACF8-56CBCE16FB29}" = protocol=17 | dir=in | app=c:\program files (x86)\ea play\create demo\pc\create.exe |
"{BEEA53E0-FFCC-47AA-ABD4-3B42DCF5B656}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\universe at war earth assault\launchuaw.exe |
"{BF696643-7529-444F-A901-10D9ECEFEC33}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\overlord ii\config.exe |
"{C01CA65D-AA1B-4E78-B1AF-A11C7F169A9F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2\bin\sdklauncher.exe |
"{C0930776-D15C-4947-B91C-FCB50EA0C138}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\assassin's creed 2\assassinscreediigame.exe |
"{C0A680B6-BDBB-463F-B269-69C846D9404B}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\mirrors edge\binaries\mirrorsedge.exe |
"{C0B716D4-B11E-403F-BBE6-CC2F75D2D5FD}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\braid\braid.exe |
"{C0BE4469-22EE-4D85-98D6-180207DFDCF7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\cogs\cogs.exe |
"{C0DD90F6-5C91-4B28-B219-B6BF2A2FA089}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\full pipe\fullpipe.exe |
"{C0F90B35-FDE4-4D24-A0ED-138BA38FF632}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (propulsion gel)\smp.exe |
"{C1523140-EAF3-4253-AF6C-0F2871BFFD34}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\bioshock 2\mp\builds\binaries\bioshock2launcher.exe |
"{C16C3016-14D3-44E6-870A-53F00B79B62E}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (bounce)\smp.exe |
"{C17B97B0-74D9-4341-81BB-CAA52A6825B8}" = protocol=58 | dir=in | [email protected],-28545 |
"{C21C7B0E-AE8D-4DA1-8A01-97A61D9D5B32}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops\blackops.exe |
"{C23A640D-B7E5-4FA3-8EA0-670F3F2BEBE0}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\dreamfall the longest journey\dreamfall.exe |
"{C23D9BEA-D260-497D-AAB3-A02AC9D42FEF}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sideway\win32\sideway_shippingwin32steam.exe |
"{C27065E9-390B-4E2A-8D63-853337BED900}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\peggle nights\pegglenights.exe |
"{C29AF460-8086-4987-8372-F2F0871DA31E}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\portal trailer\smp.exe |
"{C29BA011-5E17-425D-9252-8FFB4BB25CF2}" = protocol=17 | dir=in | app=d:\diablo iii beta\diablo iii.exe |
"{C29E4488-B93D-4560-ADBF-7971F6D9D927}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sniper elite\sniperelite.exe |
"{C38F4C6F-80F8-43F3-928C-817FEC18A01D}" = protocol=6 | dir=out | app=system |
"{C3940354-1DB0-4664-BBA2-99A1F9F77BB8}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\hero academy\heroacademy.exe |
"{C4018BEB-930B-4A6A-95F1-1EAB6BA74085}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\planetside 2\launchpad.exe |
"{C416FFB7-2587-4AEA-86DF-CF5385ACC208}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\alan wake\alanwake.exe |
"{C44D063A-6502-404E-885A-969C6147B97D}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sam and max season 2 episode 4\sammax204.exe |
"{C469BFA1-B7C7-49DB-9DC7-8EABF78E93C8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the book of unwritten tales demo\bout.exe |
"{C4E8B917-B5A0-4A8D-9191-F56EF6AC0CE1}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\to the moon\to the moon\to the moon.exe |
"{C4F69692-CB3F-4CD6-BD6B-D7C2CA19BF5F}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\puzzle pirates\java_vm\bin\javaw.exe |
"{C4FC6F48-C91C-4DA2-9208-BF0AE7DD1C0D}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\fear2\fear2.exe |
"{C5ACEAD1-15EF-40F5-A9DC-FC7599A2A709}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sam and max season 2 episode 5\sammax205.exe |
"{C6257F8D-27AE-4E34-A38A-29D6EA181D50}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\guns of icarus\gunsoficaruswindows.exe |
"{C6ECDB79-86A1-4709-AAD6-798AC4EDB534}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\time gentlemen, please!\winsetup.exe |
"{C6FE9CF8-2F29-445C-BC88-9A5EF6709F62}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\quantum conundrum\binaries\win32\trygame-win32-shipping.exe |
"{C71BA01E-A2FF-48AC-B2A5-1938302E1A3A}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\aaaaaaaaaaaaaaaaaaaaaaaaa!!!\main.exe |
"{C726C753-9718-4F28-8F54-3DA926C75919}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\hitman 2 silent assassin\config.exe |
"{C759B5DF-1DBE-40DF-B957-29EE4EC79B88}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the tiny bang story\ttbs.exe |
"{C76279D7-9C70-42EC-87CF-563302928A22}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\i-fluid\i-fluid.exe |
"{C765D202-1AE9-4E04-8B4E-7E2E459476CE}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{C785C33C-55B8-4EF3-8FF2-180A0E5B1C93}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\crayon physics deluxe\launcher.exe |
"{C7891382-4ADF-4DCF-9B6D-9493F6FD052B}" = protocol=6 | dir=in | app=d:\assassin's creed revelations\acrmp.exe |
"{C7AC3499-EDC1-49C2-952F-9F0E216F9D29}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\bastion\bastion.exe |
"{C815851A-F67A-44DB-9427-921ED4E2DA1D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\assassin's creed 3\ac3mp.exe |
"{C8888B13-3A99-4DFE-A0A6-568BC6A58048}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sniper elite\sniperelite.exe |
"{C8973BC8-9A0D-4D3F-9727-DA326EC6FF18}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\thepolynomial-demo\polynomial.exe |
"{C8B84EDD-2562-4823-A6C4-4741DEDCFC15}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dino d-day\srcds.exe |
"{C9191FF0-DD6A-4CDE-85E4-1003726CA8E6}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the maw\themaw.exe |
"{C9495F41-D59E-4964-A333-90531842AE5F}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\far cry 2\bin\fc2serverlauncher.exe |
"{C9AEE1FF-BBE4-4964-A0D5-E8A8A4E6EE20}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\mini ninjas\ninja.exe |
"{C9BA9881-39AE-4591-94BF-F3DE190988A5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\sam and max episode 4\sammax104.exe |
"{CA6CC9A4-8334-4C2E-9A10-9CFEE0E8D3F9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\shank\bin\shank.exe |
"{CA975AF5-5417-4BB9-8AC0-2A0B35D50AD8}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\dead island\deadislandgame.exe |
"{CAF3615F-668D-4615-BAC6-92AA03116B89}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dead island trailer\smp.exe |
"{CB186561-B00B-457B-AACC-1E69F6A0809E}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\audiosurf\engine\questviewer.exe |
"{CBEEA8AD-A1FA-4CAB-B0C3-93AA8492A35D}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\dota 2 test\dota.exe |
"{CC0E4DEF-F42D-4DD8-9B1E-B9FFA37A5E10}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.868\agent.exe |
"{CC6607A3-4E07-4E1D-B0A8-51DFC0D52DCA}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\trauma\trauma.exe |
"{CC7A1881-DD3A-41E7-88F9-CEADBC16A006}" = protocol=6 | dir=in | app=t:\steam\steamapps\willium_bob_cole\the ship single player\ship.exe |
"{CD05E81B-9E08-4889-9166-428F7B034C85}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\far cry 2\bin\fc2benchmarktool.exe |
"{CD4F15BB-1C6A-4C29-A1E3-0E13ED4B6AF5}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\battlestations midway\options.exe |
"{CDAF1F1A-77D7-4F13-9290-9A86705E45A6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (wheatley)\smp.exe |
"{CDD77D23-6458-490A-AD6F-C17901F4CCE0}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sanctum\binaries\win32\sanctumgame-win32-shipping.exe |
"{CDF23F7D-0E83-4C60-AE13-4FB1D4219E26}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\peggle deluxe\peggle.exe |
"{CE0D9E25-4450-42C3-B52E-528A97715296}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\steelstorm\steelstorm.exe |
"{CE68440F-19C7-4B4F-89EE-77F260E33B6F}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sam and max 304\sammax304.exe |
"{CE92792E-78C1-4454-B245-D1A927E58AD2}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\penumbra overture\redist\penumbra.exe |
"{CEB003AB-3095-4F95-B6B0-AD8BBE91649B}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\stronghold 2\stronghold2.exe |
"{CF08873E-8909-4B64-8F70-AD6AB655CB34}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\trackmania nations forever\tmforeverlauncher.exe |
"{CF8071B5-ADBF-43DA-ADB6-8C3ED156C173}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\deus ex invisible war\system\dx2.exe |
"{CFC7DB08-F8B2-407D-94A9-21DEF6828EED}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\miasmata\miasmata.exe |
"{CFDB4776-7562-4E06-B9DB-55B756716288}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\chime\chime.exe |
"{D00674DF-B4BF-4DB2-A52B-B668ED491512}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\eets\eets.exe |
"{D0092547-DCCF-4649-A9AF-70B2762996CC}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\back to the future ep 1\backtothefuture101.exe |
"{D00BB714-A3E1-4AB3-974B-A5173A9E38B6}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\far cry 2\bin\fc2editor.exe |
"{D0A7388F-FAE0-4E48-865E-9AC395A95B03}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\rush\rush.exe |
"{D0B1E8E1-5979-491A-AE3F-49682C13BC4F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 valentines\smp.exe |
"{D1560D7D-32B0-48AC-A6BE-AB4E9798F6B2}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\tomb raider legend\trl.exe |
"{D18F4543-5D51-4693-95B2-E59D85A3C35C}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sam and max season 2 episode 1\sammax201.exe |
"{D194D8BD-3CA1-436B-93EC-800042863888}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 - boots short (english)\smp.exe |
"{D1A10F38-7D2B-418A-8384-EEB643695B3E}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\colourbind\colourbind.exe |
"{D1E0E861-6A9C-4CF0-9F61-A416CB86D7D1}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\hector ep 2\hector102.exe |
"{D1EB2131-FB9E-4080-B01C-BEE1D5094711}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{D1F4DAFD-C315-4DCE-8D5B-D155C43036EA}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\infernal\game\game.exe |
"{D20326D6-41BD-48E0-89A2-EA309D62D359}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{D2231D92-7B21-4832-963A-0B8423F2663D}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\assassins creed brotherhood\acbsp.exe |
"{D241052B-3A0B-4654-B6D2-D9543B81392A}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\miasmata\miasmata.exe |
"{D25E3631-AEF6-4203-A67E-64BFC91A880B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\amd driver updater, vista and 7, 64 bit\setup.exe |
"{D274D54F-D32A-4E84-8A34-0D37D6E33A27}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\gumboy crazy features\gumboycrazyfeatures.exe |
"{D2D23E57-BABA-426B-B34A-EBAB72F693A5}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sam and max episode 1\sammax101.exe |
"{D2D248D4-D2B5-4755-B4E8-BBCE80435CD4}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 meet the heavy\smp.exe |
"{D2DA4487-4B38-49A8-9B31-149349F29B41}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\farcry\bin32\farcryconfigurator.exe |
"{D31412D9-815F-4988-8E48-0A96252158B7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\sourcesdk\bin\sdklauncher.exe |
"{D351AB21-EC6D-49E7-AC91-D5754BD13A4C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\forge\binaries\win32\forgegame.exe |
"{D37C99E6-9600-42E9-91F7-5A93662C2D27}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{D3A90BE0-8C3E-4677-BDCC-8341B652B550}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\tales of monkey island - chapter 3\monkeyisland103.exe |
"{D3BA51B0-30FF-498A-BC01-14742B2D3AAA}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\hitman blood money\hitmanbloodmoney.exe |
"{D435EEBD-5700-4AA9-BE88-104A00353B30}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\terraria\terraria.exe |
"{D46A7AF6-E4C9-4652-BA44-4D0BC4593BCB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\crayon physics deluxe\launcher.exe |
"{D493D3B9-A1D5-411B-9E12-28C8EEE3245B}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\l.a.noire\lanlauncher.exe |
"{D4B2E184-BEF3-47F4-A147-43B0C0E64F4C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{D4CF2197-61FF-419C-8F87-A9A03C5DC174}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\poker night at the inventory\celebritypoker.exe |
"{D4F822DA-E6BE-4D77-8A5D-BDD716226574}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\costume quest prototype\afcq.exe |
"{D542AF12-BE37-4DC8-8504-EE220AE1E237}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\orcs must die 2\build\release\orcsmustdie2.exe |
"{D5CDF56D-A979-4C4C-B463-077E29A3B8AF}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{D6067D1B-164F-4DFE-9F55-18C1EB5D7D1A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\crysis 2 - demo\bin32\crysis2demo.exe |
"{D62BF41B-93A6-44D6-B577-251761A68A2C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\sourcesdk\bin\sdklauncher.exe |
"{D6310C39-9073-4C0D-A213-7F0232F2421A}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\wallace and gromit ep1\wallacegromit101.exe |
"{D63C5517-C405-4473-B227-86509D817936}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\back to the future 103\backtothefuture103.exe |
"{D65F7908-9A5C-46A1-A7FE-4738D2307464}" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\battleforge\battleforge.exe |
"{D67E96C8-E623-4506-98C5-AA69193B0586}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\thief deadly shadows\system\runme.exe |
"{D6D2FAC0-333C-48C0-B538-EABEA5D75183}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\i-fluid\i-fluid.exe |
"{D7338CAB-9D35-4844-B5F4-25A5A5DD8E11}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\far cry 3\bin\farcry3.exe |
"{D77FB7A7-C4A5-40D5-9425-7511C3D5DCE0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\puzzle bots\puzzlebots.exe |
"{D7AA14B3-AAD5-453E-BCF6-9801EBD18D6F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\full pipe\fullpipe.exe |
"{D7AC5FBC-5025-4B80-8633-EF078E58DC4B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\edge\edge.exe |
"{D7FEC86E-8EE8-43FC-BCAA-05696D9E2021}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\zero gear\zerogear.bat |
"{D856C5D8-B9DA-4163-8B47-19172E3E73D5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\osmos\osmos.exe |
"{D8641EFF-FF32-4023-97F9-2E43C8741F6A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\zen bound 2\zenbound2.exe |
"{D87BFA30-D3B8-41FC-AFBA-6D4A31A4BD98}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\painkiller [bleep] & damnation\binaries\win32\pkhdgame-win32-shipping.exe |
"{D88F6E44-31C9-4E6D-98D9-B5F630061683}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\back to the future 104\backtothefuture104.exe |
"{D8C2CF9F-0311-4890-B97A-36969F3D74AA}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\plain sight\plainsight.exe |
"{D8F100D6-9F9B-4ABF-9E48-05869B0C17DD}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\grand theft auto vice city\gta-vc.exe |
"{D95C09E1-7F80-4F9E-931B-6D8E563BBCE8}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\hitman codename 47\hitman.exe |
"{D969D821-ED6F-475F-9503-B7158B16F0CE}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\castlecrashers\castle.exe |
"{D98FA18D-D1E1-4664-B213-45C4ECA7160C}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\floras fruit farm\florasfruitfarm.exe |
"{D99B5D4B-D11F-47F4-ADF9-CD92F5A51785}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{DA7AA275-9589-437C-BB57-BC2299486855}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\cs go_trailer_short_nr\smp.exe |
"{DA8D612F-2170-4174-A911-7DCFAA8F8F59}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\trauma\trauma.exe |
"{DABAC6C1-CB6B-4B48-8B5D-25040712DF36}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\stronghold3\bin\win32_release\stronghold3.exe |
"{DB224EE8-0AAC-48CD-847E-68956849E7CC}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{DB3D3137-3A2A-4C74-A85E-7764316B27AB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 - panels short (english)\smp.exe |
"{DB482D4E-7B3F-487F-BED1-E2397410D52C}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\painkiller redemption\bin\redemption.exe |
"{DB539A37-7782-4177-8793-740E137C05AF}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\hammerfight\hammerfight.exe |
"{DB6954C3-E759-40AA-854C-C1DD22B2C445}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\geometry wars\geometrywars.exe |
"{DC0C2E3A-B350-4F94-8D0A-23B92852C699}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\alice madness returns\binaries\win32\alicemadnessreturns.exe |
"{DC3ABC59-3490-4A0A-8FFE-C84048F56234}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\cogs\cogs.exe |
"{DC3FD0B5-9208-4490-A046-EC039FEAF96B}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sam and max episode 3\sammax103.exe |
"{DC4D7E26-962E-46FB-8A6D-2F680A4E7A4F}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\flatout2\flatout2.exe |
"{DC7ABC8B-89DA-40D7-A2BB-DBB8E3C2267B}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe |
"{DCB64F56-C7B0-4709-B26F-B50E8BC3D210}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\hammerfight\hammerfight.exe |
"{DCEA6F90-5C05-482E-B283-78BFB8CEC98C}" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\burnout™ paradise the ultimate box\burnoutparadise.exe |
"{DD114157-0AE0-4CAE-ADFC-05D91255960D}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\qube\binaries\win32\qube.exe |
"{DD253265-A67D-40F5-814B-D3DC25369E58}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\amnesia the dark descent\launcher.exe |
"{DD46445D-884B-4110-ADF1-1BFAD33EF78F}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sam and max 302\sammax302.exe |
"{DD90508E-D8D1-426E-B9DC-A1D41E0D8E48}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\ben there, dan that!\winsetup.exe |
"{DD9F8F93-34CD-415D-9003-5F12B779FFE3}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\noitu love 2 demo\config.exe |
"{DE06735C-FD44-4065-A972-57EF36C036BB}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\left 4 dead 2\srcds.exe |
"{DE71C446-66B3-4D37-818E-860B113A2168}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\resonance\resonance.exe |
"{DFDCA16B-C509-4B7A-9F02-19F9B4507A86}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\puzzle agent\grickle101.exe |
"{E089BB15-FD54-4F7D-A260-7A6F292960B9}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\painkiller recurring evil\bin\recurringevil.exe |
"{E099E4D8-7F54-4774-A567-171465F05AAC}" = protocol=6 | dir=in | app=c:\program files (x86)\autodesk\backburner\monitor.exe |
"{E0D71C4E-1B93-435A-BBC6-BDA10BF14453}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\bin\sdklauncher.exe |
"{E0E4E21C-F0ED-4C60-88B9-F0E06C19B328}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\psn_robynandhyde\team fortress 2\hl2.exe |
"{E0F38F19-7F8F-40A8-A728-0FFAE388C2BC}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 - bot trust short (english)\smp.exe |
"{E129B064-D83E-4A80-A646-7148472FC5A6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{E18A7D1D-A0F1-46A7-AC6D-44DABE4058A5}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed brotherhood\assassinscreedbrotherhood.exe |
"{E19C9FAC-E854-4178-9240-F867F8850C96}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\stronghold\stronghold.exe |
"{E1D2AC4A-8FDD-4CA3-8C01-E4B206F91022}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\plain sight\plainsight.exe |
"{E219809F-AF20-4E00-AD61-441962C118F5}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\cargo! demo\bin\win32\game.exe |
"{E2313E25-9720-4BCA-94CE-09C0B8FF898E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\assassin's creed 3\ac3mp.exe |
"{E236F19F-720A-467F-B766-2220FEE7013A}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\wallace and gromit ep3\wallacegromit103.exe |
"{E2D671F7-C3B4-4694-B6EC-E3C00A8B365D}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\dawn of war gold\w40k.exe |
"{E3ABFFB3-DCD9-4028-B7BF-417426BC6A75}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\autonomous prototype\launcher.exe |
"{E3B4C4C3-6B92-4596-AB9D-FB44D7D0E702}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed brotherhood\uplaybrowser.exe |
"{E3C13E06-8561-4D56-8A46-827FDF842AEB}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\realm of the mad god\realm of the mad god.exe |
"{E493E016-D75F-4686-A241-97BEDB1EFDE3}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\unmechanical demo\binaries\win32\udk.exe |
"{E4BB398A-0798-4AC3-A3F1-FCE60330898B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\telltale games poker\poker.exe |
"{E4DCFDE2-DC94-4553-A7A3-7803C30E562B}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed brotherhood\uplaybrowser.exe |
"{E512A1C0-599E-4203-9391-AF5BCE35B163}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 co-op trailer\smp.exe |
"{E52FFA42-F7EC-488D-8F34-F445B0362C22}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\mini ninjas\ninja.exe |
"{E5447129-B08A-4017-8C98-9842C08F6ECE}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\spectraball\spectraball.exe |
"{E55C9D2A-D3B3-4070-9B4D-37BCED705648}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\painkiller redemption\bin\redemption.exe |
"{E56C5B44-17C3-4693-AF47-61081F459321}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\steelstorm\steelstorm.exe |
"{E5AA9BF1-26E7-4F38-B306-8375AC19832E}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\specops_theline\binaries\win32\specopstheline.exe |
"{E5D3EAD4-DEE7-4254-BF99-7171E76938A7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 - boots short (english)\smp.exe |
"{E5EAD9B7-1A9E-4BA9-AFAB-52D1ACA55D91}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\tales of monkey island - chapter 2\monkeyisland102.exe |
"{E5EFC264-3A9F-4686-9015-9511856B8BCD}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\tinyandbig\tinyandbig.exe |
"{E6D5BF6D-F82B-4A79-B0DB-391F3A25A046}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\dark souls prepare to die edition\data\darksouls.exe |
"{E6F8783B-8FD8-4B10-AE61-D38794983164}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\mann vs machine_trailer\smp.exe |
"{E7773677-E225-4FCF-AC9A-257D89A8CE3E}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sam and max episode 2\sammax102.exe |
"{E7A32FCD-C9B3-449D-8E81-53984173F380}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\hector ep 3\hector103.exe |
"{E7A416D3-8758-46C3-A497-AC4D1DC67404}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\baddest of the bands\homestar103.exe |
"{E86C79D8-0BE7-4E9C-824F-685119FE49BD}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\assassin's creed revelations\acrsp.exe |
"{E8C17421-7367-448D-9615-BE3681DF1922}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sourcefilmmaker\game\bin\qsdklauncher.exe |
"{E8D9543B-8FA2-4B1A-BB42-32206567A35A}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{E8EF80AC-ADF1-46D1-B9D1-657C117BC596}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\assassin's creed 3\ac3sp.exe |
"{E90F469D-0EC1-4FDB-B0F8-E6F0B77500B4}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\bone\bone1v20.exe |
"{E94340E1-AD69-4383-AEEB-B003BE11080F}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed revelations\acrmp.exe |
"{E95B0378-C3FA-4DD0-B2FA-62CE8CED95C8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 - panels short (english)\smp.exe |
"{E9E206AC-3E39-45E8-8AE9-C345CA4A3EB4}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\sourcefilmmaker\game\sfm.exe |
"{EAF5B1DF-D8B8-41B1-989C-AD54ECB654C1}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\srcds.exe |
"{EB44E5FC-FAA6-4152-817E-0FCAE522E074}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\shattered_horizon\server_exe\sh_server.exe |
"{EB4CC6DD-3B89-4C36-8B32-111D9C8F729A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\psn_robynandhyde\team fortress 2\hl2.exe |
"{EB92111F-92E5-4E80-AF92-FCC0B86721AA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{EB9D845F-AA6E-4DD4-9A99-DEA12DD8B572}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\wallace and gromit ep1\wallacegromit101.exe |
"{EC23B290-33F9-4861-B3D0-B3B21FF82C5D}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\painkiller resurrection\bin\resurrection.exe |
"{EC43E3A6-09DA-4A65-9A93-F8102B4BCAAA}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\bioshock 2\sp\builds\binaries\bioshock2launcher.exe |
"{EC56CD18-6E7D-462F-8B28-AF00B0BAD030}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\dota 2 beta\dota.exe |
"{EC76BABC-BDF4-4A07-ADAA-D9C2DFDDFCCB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\batman2\runlauncher.bat |
"{ECC8784D-2F68-47F5-A657-1B4C41B5C2A3}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\rock of ages\binaries\win32\roa.exe |
"{ED32B8C6-2CDC-415C-9DE2-886D88627B90}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\bin\sdklauncher.exe |
"{ED3BF402-EF40-44A7-9EDA-D46235FE647E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\meet the pyro tf2\smp.exe |
"{ED775686-1F53-4125-9727-E4308D5E4000}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\defensegridtheawakening\defensegrid.exe |
"{EDB4F34B-2204-4AA9-B43F-B0897D3C9550}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\realm of the mad god\realm of the mad god.exe |
"{EDE1385F-2E01-4559-9F44-7FF639307FF9}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\primal_carnage\binaries\win32\primalcarnagegame.exe |
"{EE23BE3C-B357-4865-AA88-77D12784E123}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\beyond good and evil\checkapplication.exe |
"{EEC3F00F-FD72-4282-9244-2C302A6482A9}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\assassin's creed 2\assassinscreediigame.exe |
"{EEE4E804-90D3-454A-BEEF-C4E5DCF39DF5}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\stronghold legends\strongholdlegends.exe |
"{EF8E8CC6-BCF5-4CCF-9302-299E1A3AF941}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\just cause\justcause.exe |
"{F00B5884-0D73-471A-B502-991CB1E1D34B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (lasers)\smp.exe |
"{F070AF32-DF30-455C-9456-214291DFFF87}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\8-bit is enough\homestar105.exe |
"{F0BF614E-BC57-4FB6-9554-45E06A4DAF30}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\xotic\xotic.exe |
"{F10CAEDD-AC25-4777-B18F-2718BFA2C6B4}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\amnesia the dark descent\launcher.exe |
"{F135922F-C594-43E0-864B-DF7FFB4522BA}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (bounce)\smp.exe |
"{F1595E38-C942-4385-995B-74B58CD31DDA}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\aceofspades\aos.exe |
"{F1B3F9EA-6BAD-4B8B-9C8D-76E2C3308CC8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\demolitioninc\finaldgamegl.exe |
"{F1BEC0DB-B505-4378-AC19-29DAB2946931}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\bioshock 2\sp\builds\binaries\bioshock2launcher.exe |
"{F1D0C712-8C03-4CE5-9FF4-1DF5FE7C6F30}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\shank 2\bin\shank2.exe |
"{F2628C75-CC50-4867-8C30-96691CF60E74}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\peggle nights\pegglenights.exe |
"{F279892A-402E-408E-B205-6D14673FE0BD}" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\burnout™ paradise the ultimate box\burnoutconfigtool.exe |
"{F280E432-622B-4B3F-B6B8-F79DCEDF76EF}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\red faction ii\red faction ii.exe |
"{F2D27EFA-DD90-408C-A556-B67ED110B80F}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{F32A27E3-088B-4A90-9F5C-DD72B2A17903}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\sam and max episode 4\sammax104.exe |
"{F348230F-714B-4013-ACF0-194D8E91F7AA}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\call of duty black ops\blackopsmp.exe |
"{F34FC8FB-E2DD-42E2-92EA-A7FE7BB16C98}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\srcds.exe |
"{F370A495-78A1-478C-97FB-DAA56481D7F4}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\nuclear dawn\nucleardawn.exe |
"{F3D67458-15E9-4666-A37A-9334C53F18C8}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\mirrors edge\support\ea help\electronic_arts_technical_support.htm |
"{F3FDD8D3-D631-469B-A0C0-5DDB8A2DCB0B}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\hitman codename 47\hitman.exe |
"{F415D304-47E4-471D-BB76-405BF73A9CB6}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\spacebase df-9 prototype\win\bin\moai-fmod-designer.exe |
"{F43FC551-E6AE-4FCD-833C-B5FC5BD85EA9}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\gemini rue\reslists\gemini rue.exe |
"{F47F27FB-782C-4710-970B-6D83CD1C87F9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gamemaker_studio\gamemakerplayer.exe |
"{F5816F6A-F45B-4175-866B-D354CCB3FDBD}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\tales of monkey island - chapter 2\monkeyisland102.exe |
"{F6047ACA-CE52-4D61-B1EC-389AF2B8952E}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (suction)\smp.exe |
"{F64D638B-9F12-4B92-AD3F-F68B326DAEDA}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{F65AD332-3D82-4C93-AB5E-DAC6A05C7196}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\legend of grimrock\grimrock.exe |
"{F67B7CBD-602B-4C78-981D-E80C6776B4F7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 e3 demo (lasers)\smp.exe |
"{F689F3FD-0068-493E-8083-55AB50AF9485}" = protocol=17 | dir=in | app=c:\program files\autodesk\3ds max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe |
"{F69C4398-7D59-4D1E-89EE-3D309A57CA69}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\aliens vs predator\avp_dx11.exe |
"{F6BBDCD3-6DDB-4014-B1AC-ECC715F9C523}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\shattered_horizon\client_exe\shattered_horizon.exe |
"{F6EEADCB-7D1F-474D-B7B0-8012070FD984}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\happy song prototype\afmana.exe |
"{F7369D67-F6AD-49DD-84AA-253AAB7A7FC9}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\company of heroes\reliccoh.exe |
"{F74D9ABF-D690-475A-A456-940D70394A70}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 trailer 2\smp.exe |
"{F76D9A83-54B0-4C18-809C-0901FE510D36}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\rocketbirds_hardboiled\game.exe |
"{F76F15FF-D319-4A8C-A5E2-AE084641478E}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\babel rising\babelrising3d.exe |
"{F79D28E6-562E-4B2A-AB7D-679AFF6962AF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dead space\dead space.exe |
"{F7ABB230-A656-4E53-AAD3-275799F40199}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\grand theft auto 2\gta2.exe |
"{F7EA3E48-D068-4196-A577-61BB1CB7B3FF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gish\gish.exe |
"{F862F139-CDE7-4C7C-AF1F-F26AE1066C57}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\call of duty black ops\blackopsmp.exe |
"{F88C5097-87E3-428F-989C-5A5F7D50B5E2}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\titan quest\titan quest.exe |
"{F8DCE98E-503E-46D3-8F0D-531EC4C25456}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\i am alive\src\system\iamalive_game.exe |
"{F8F52BBD-014D-4A9C-87AE-6B75933037C6}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{F9175939-BF8C-40DD-B2BE-962A2E7CB61C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{F94632C2-1351-42C7-8135-ADC2C7FFB0E4}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\assassin's creed 3\ac3sp.exe |
"{F95D06A2-5CF8-47BD-99E7-A5E571834843}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dead island trailer\smp.exe |
"{F9D33E21-6622-4F5B-A7F3-A70F3BE21EA8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\meet the pyro tf2\smp.exe |
"{F9ED1CA2-E1EE-4810-8B0A-243D3F33DCB8}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{FA0EF259-E75D-4CCF-A1E2-716A100A0051}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\aliens vs predator\avp_launcher.exe |
"{FA11122B-F676-4FB9-AACF-C855739FB63C}" = protocol=58 | dir=out | [email protected],-28546 |
"{FAF1AFD6-C378-4FF3-A8FC-89D0866B85CB}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\stronghold legends\strongholdlegends.exe |
"{FB05E932-FEF8-43BD-BBDA-269A9720383F}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\hector episode 1\hector101.exe |
"{FB1ECDA2-93D7-4439-9A1F-C6440E504DDA}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\eets\eets.exe |
"{FBC28562-CDC5-4B00-B856-2F07052D5618}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe |
"{FBE88A94-42F3-42FB-8B07-7F2C913DF3B9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\flatout2\flatout2.exe |
"{FBF91748-5DD7-440D-9D66-490491E9C510}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\launchgtaiv.exe |
"{FC22602A-2BC2-4929-9C65-E9199C9F9F65}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\age of empires online\aoeonline.exe |
"{FCE33AE0-45AE-4BFF-8309-5586C9FE9843}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\batman arkham asylum\batman_revoker.exe |
"{FCF6475C-C10D-48B6-8F05-487898CBE413}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\hamlet\hamlet.exe |
"{FCFF185A-8199-4B14-8BF6-A37112759477}" = protocol=6 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe |
"{FDBEAAE5-BE02-49F9-8315-1BABBD0EF288}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the wonderful end of the world\main.exe |
"{FDDB33B2-1281-4A1F-968B-A28AED6C9865}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\geometry wars\geometrywars.exe |
"{FE74F004-A504-4C5A-8FD9-B6ACC307AF8C}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\and yet it moves\and yet it moves.exe |
"{FE9DFF33-28D0-42FB-85F3-3579ADDBE337}" = protocol=6 | dir=in | app=t:\steam\steamapps\common\stronghold crusader extreme\stronghold_crusader_extreme.exe |
"{FEB99A63-E957-4208-A9ED-764043891228}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2 meet the sniper\smp.exe |
"{FEC3D852-BC9D-4DB8-B9DE-A120549AB433}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\metro 2033\metro2033.exe |
"{FF3F96D9-E060-4371-9189-C12103DECBD6}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2 co-op trailer\smp.exe |
"{FF6293FB-9924-44E5-873A-FDA8A7122CFD}" = protocol=17 | dir=in | app=t:\steam\steamapps\common\the journey down\journeydown1.exe |
"{FFA24A7A-C165-4C3C-A107-8665BBAD8CE9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\little inferno beta\little inferno.exe |
"{FFCC1395-74C2-4FC0-9373-E2C898F92AE6}" = protocol=17 | dir=in | app=c:\program files (x86)\autodesk\backburner\manager.exe |
"{FFDE68B3-3787-4277-9F63-D41CA0F7C3DB}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops\blackopsmp.exe |
"{FFEE9976-07BA-4B97-A4B1-C2A02D718D6E}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\from dust\from_dust.exe |
"TCP Query User{08981CD6-926B-46FB-B535-6AA15B7ADD59}C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe |
"TCP Query User{08A475F9-933C-40E5-909E-DF0A502D23E9}C:\program files (x86)\atari\tdu2\uplauncher.exe" = protocol=6 | dir=in | app=c:\program files (x86)\atari\tdu2\uplauncher.exe |
"TCP Query User{095150AF-2681-403F-912C-F70342693AF9}C:\roboblitz\binaries\robogame.exe" = protocol=6 | dir=in | app=c:\roboblitz\binaries\robogame.exe |
"TCP Query User{10356084-6D20-42D3-8F75-0C94F349EC77}C:\program files (x86)\electronic arts\eadm\core.exe" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\eadm\core.exe |
"TCP Query User{13F681E1-4B04-4658-A217-D5FDFD9DB964}C:\program files (x86)\ambereh\ambereh.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ambereh\ambereh.exe |
"TCP Query User{24165D50-F1B3-4EE0-B696-A0AA8BDFAC77}T:\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe" = protocol=6 | dir=in | app=t:\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe |
"TCP Query User{2CFF9F9C-DA6C-4924-B57D-5E31E3BAD8F8}T:\steam\steamapps\common\planetside 2\planetside2.exe" = protocol=6 | dir=in | app=t:\steam\steamapps\common\planetside 2\planetside2.exe |
"TCP Query User{414F6BD0-3F56-4CEC-82EC-7CA7F3E250C4}C:\program files (x86)\steam\steamapps\common\crimecraft\binaries\crimecraft.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\crimecraft\binaries\crimecraft.exe |
"TCP Query User{44E2800B-6581-4918-9C57-7BDA8C23ADC3}C:\program files (x86)\ea games\battlefield play4free\bfp4f.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ea games\battlefield play4free\bfp4f.exe |
"TCP Query User{59D36960-A379-4D68-990E-9A506DE5D2BC}C:\program files (x86)\atari\tdu2\_uplauncher.exe" = protocol=6 | dir=in | app=c:\program files (x86)\atari\tdu2\_uplauncher.exe |
"TCP Query User{5EE78C10-5AEE-4519-8DF9-AAEC915DC6D7}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"TCP Query User{61CBB163-F853-424B-B6CC-3B04FE70BC6E}C:\program files (x86)\steam\steamapps\common\magic the gathering tactics\mtgtactics.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\magic the gathering tactics\mtgtactics.exe |
"TCP Query User{6A3FAD0F-1394-4A58-A895-F493568CE539}C:\program files (x86)\steam\steamapps\common\kingdoms of amalur - reckoning demo\reckoningdemo.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\kingdoms of amalur - reckoning demo\reckoningdemo.exe |
"TCP Query User{72A874EB-7225-4934-B289-9147EE3CB017}C:\program files (x86)\steam\steamapps\psn_robynandhyde\team fortress 2\hl2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\psn_robynandhyde\team fortress 2\hl2.exe |
"TCP Query User{7E1D327B-3A5D-44F6-B489-CBF535394E5E}C:\program files (x86)\steam\steamapps\common\breach\breach.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\breach\breach.exe |
"TCP Query User{97FAB64E-C929-4DA9-A56A-3E77D2D4C3E8}C:\program files (x86)\steam\steamapps\common\batman arkham asylum\binaries\shippingpc-bmgame.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\batman arkham asylum\binaries\shippingpc-bmgame.exe |
"TCP Query User{A494B74B-939D-435C-8F51-8456320DA398}T:\steam\steamapps\common\shattered_horizon\server_exe\sh_server.exe" = protocol=6 | dir=in | app=t:\steam\steamapps\common\shattered_horizon\server_exe\sh_server.exe |
"TCP Query User{B371E32D-519D-4DC1-A6AE-E65C48784E4C}C:\program files (x86)\google\google earth\plugin\geplugin.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\plugin\geplugin.exe |
"TCP Query User{B5272AB0-A9EB-4127-95BB-C0B8D9A8F50B}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=6 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe |
"TCP Query User{C55EA1D6-0D49-4D02-B844-55F0C01FC5A9}C:\program files (x86)\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\java.exe |
"TCP Query User{C92F00C7-3C4B-4C84-909B-B50CA17608D5}T:\steam\steamapps\common\assassin's creed 3\ac3sp.exe" = protocol=6 | dir=in | app=t:\steam\steamapps\common\assassin's creed 3\ac3sp.exe |
"TCP Query User{CD100126-0A9C-4208-AAF1-0CB7076E336C}C:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2\hl2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2\hl2.exe |
"TCP Query User{CF1178D0-0647-4AFA-9E42-04A70A71AD74}D:\diablo iii beta\diablo iii.exe" = protocol=6 | dir=in | app=d:\diablo iii beta\diablo iii.exe |
"TCP Query User{D953139C-C7FD-4EFF-9F4A-25FDAC84AB4B}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"TCP Query User{F817AFC2-A844-4C51-B2B7-7E95EFF58464}C:\nexon\vindictus eu\en-eu\vindictus.exe" = protocol=6 | dir=in | app=c:\nexon\vindictus eu\en-eu\vindictus.exe |
"TCP Query User{FC05AB3D-8C14-4E05-99D2-34AE638C5F21}T:\steam\steamapps\willium_bob_cole\team fortress 2\hl2.exe" = protocol=6 | dir=in | app=t:\steam\steamapps\willium_bob_cole\team fortress 2\hl2.exe |
"UDP Query User{11E01D31-C683-4997-8931-078BB6CF2940}C:\program files (x86)\ambereh\ambereh.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ambereh\ambereh.exe |
"UDP Query User{34991F39-574D-4F5D-AF3F-79CA7FFE4D35}C:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2\hl2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\willium_bob_cole\team fortress 2\hl2.exe |
"UDP Query User{4A8A4602-FFD7-4667-B5DB-E3180B26A1D8}T:\steam\steamapps\willium_bob_cole\team fortress 2\hl2.exe" = protocol=17 | dir=in | app=t:\steam\steamapps\willium_bob_cole\team fortress 2\hl2.exe |
"UDP Query User{4AE893E8-1371-45C1-BB5D-D2B143FB3517}C:\program files (x86)\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\java.exe |
"UDP Query User{5B2A1A07-94B4-4FE0-8133-FB6741C6CAB2}D:\diablo iii beta\diablo iii.exe" = protocol=17 | dir=in | app=d:\diablo iii beta\diablo iii.exe |
"UDP Query User{5EB0E824-4ABD-4D1A-99C5-87FCC72402DF}C:\program files (x86)\steam\steamapps\common\crimecraft\binaries\crimecraft.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\crimecraft\binaries\crimecraft.exe |
"UDP Query User{7B09D722-CA4B-4370-919F-AC341C6ECA89}C:\nexon\vindictus eu\en-eu\vindictus.exe" = protocol=17 | dir=in | app=c:\nexon\vindictus eu\en-eu\vindictus.exe |
"UDP Query User{825FE747-5181-4A20-96E0-9FD9BFD6BACC}C:\program files (x86)\electronic arts\eadm\core.exe" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\eadm\core.exe |
"UDP Query User{8858F69B-F6F2-405F-8A9C-AD6AC3D9FA06}T:\steam\steamapps\common\assassin's creed 3\ac3sp.exe" = protocol=17 | dir=in | app=t:\steam\steamapps\common\assassin's creed 3\ac3sp.exe |
"UDP Query User{887A4AA2-2E2C-4925-8B6E-CE66F60A732A}C:\program files (x86)\steam\steamapps\common\magic the gathering tactics\mtgtactics.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\magic the gathering tactics\mtgtactics.exe |
"UDP Query User{89AF3F14-9B1D-4A3F-97BD-55ACE5393421}C:\program files (x86)\google\google earth\plugin\geplugin.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\plugin\geplugin.exe |
"UDP Query User{8DFC4F7D-2C0D-43FE-BD63-56667A5AD928}C:\program files (x86)\ea games\battlefield play4free\bfp4f.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ea games\battlefield play4free\bfp4f.exe |
"UDP Query User{937BD768-235E-47D7-86C8-40E9BAF74F95}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"UDP Query User{93BB5A87-1DCB-4432-BD72-9045FD853029}C:\program files (x86)\atari\tdu2\_uplauncher.exe" = protocol=17 | dir=in | app=c:\program files (x86)\atari\tdu2\_uplauncher.exe |
"UDP Query User{ACDBCDE8-6B19-4878-91E4-926F4C213DD4}T:\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe" = protocol=17 | dir=in | app=t:\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe |
"UDP Query User{AE3F64E9-81BB-4A8C-84D3-C7C0A7347C13}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=17 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe |
"UDP Query User{BC744D34-4F86-479E-A750-0B8E35493A36}T:\steam\steamapps\common\planetside 2\planetside2.exe" = protocol=17 | dir=in | app=t:\steam\steamapps\common\planetside 2\planetside2.exe |
"UDP Query User{C036C274-E6F3-45EB-9A7D-76A09AEA73AE}C:\program files (x86)\steam\steamapps\common\kingdoms of amalur - reckoning demo\reckoningdemo.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\kingdoms of amalur - reckoning demo\reckoningdemo.exe |
"UDP Query User{C143ABAF-B65D-4403-B301-CB72164B063E}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"UDP Query User{C62E5D69-37A4-4EFA-B092-85A9FD1A5C60}C:\program files (x86)\atari\tdu2\uplauncher.exe" = protocol=17 | dir=in | app=c:\program files (x86)\atari\tdu2\uplauncher.exe |
"UDP Query User{CA487676-1B4D-46F3-B585-50A5A88CAC2C}T:\steam\steamapps\common\shattered_horizon\server_exe\sh_server.exe" = protocol=17 | dir=in | app=t:\steam\steamapps\common\shattered_horizon\server_exe\sh_server.exe |
"UDP Query User{D3DBCBF8-A2D7-4381-AA81-0A955E91153A}C:\roboblitz\binaries\robogame.exe" = protocol=17 | dir=in | app=c:\roboblitz\binaries\robogame.exe |
"UDP Query User{EDE8EE96-F297-4A64-8377-C0C4CA6835C0}C:\program files (x86)\steam\steamapps\common\breach\breach.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\breach\breach.exe |
"UDP Query User{EE6E5C4A-CA95-488F-8598-6F9EA45C2ECD}C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe |
"UDP Query User{F341C83B-7245-4336-85FC-BB162B09B31E}C:\program files (x86)\steam\steamapps\psn_robynandhyde\team fortress 2\hl2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\psn_robynandhyde\team fortress 2\hl2.exe |
"UDP Query User{F47EFB21-4796-481B-AA47-78F4435C769B}C:\program files (x86)\steam\steamapps\common\batman arkham asylum\binaries\shippingpc-bmgame.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\batman arkham asylum\binaries\shippingpc-bmgame.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"_{08A8CCEA-36DC-4634-AAAA-79463D644C0E}" = Corel Painter 12
"{034106B5-54B7-467F-B477-5B7DBB492624}" = Microsoft Sync Framework Services v1.0 SP1 (x64)
"{06DB2C4C-DC29-DA42-3B00-5581CBF545BB}" = AMD Drag and Drop Transcoding
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{0826F9E4-787E-481D-83E0-BC6A57B056D5}" = Microsoft SQL Server VSS Writer
"{08A8CCEA-36DC-4634-AAAA-79463D644C0E}" = Painter 12 - Setup Files
"{0E5D76AD-A3FB-48D5-8400-8903B10317D3}" = iTunes
"{0F37D969-1260-419E-B308-EF7D29ABDE20}" = Web Deployment Tool
"{180C8888-50F1-426B-A9DC-AB83A1989C65}" = Windows Live Language Selector
"{1AB7EDC5-D891-34C5-9FF1-BE6A85ACC44B}" = Microsoft Team Foundation Server 2010 Object Model - ENU
"{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant
"{1CB6C387-65A7-327F-B4A5-7DDC75A291AF}" = Microsoft Visual Studio 2010 Office Developer Tools (x64)
"{1D1CEEF8-3741-45BD-8E77-963E1DEBDDD3}" = Microsoft Sync Services for ADO.NET v2.0 SP1 (x64)
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
"{1FB31F44-D4D0-4D76-944A-A1A5D79FD321}" = Windows Live Family Safety
"{23170F69-40C1-2702-0465-000001000000}" = 7-Zip 4.65 (x64 edition)
"{26A24AE4-039D-4CA4-87B4-2F86416026FF}" = Java™ 6 Update 26 (64-bit)
"{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1" = Media Player Classic - Home Cinema v1.5.2.3456 x64
"{2F14965D-567B-4E59-ADEB-0A2CC1E3ADDF}" = Sql Server Customer Experience Improvement Program
"{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1" = MotioninJoy ds3 driver version 0.5.0002
"{350AA351-21FA-3270-8B7A-835434E766AD}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022
"{42CD49CD-4B05-4A2D-8FD1-E37CC9315FA5}" = Painter 12 - Core
"{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
"{47374ACF-9023-40e7-9830-ECED0DCBC3DC}" = Autodesk Maya 2011 English Documentation 64-bit
"{4A8CE6D7-4D52-43B9-970B-03FC75FAD667}" = Microsoft SQL Server System CLR Types (x64)
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{4E82E2E9-668B-4F8A-814A-78E163FCDBCD}" = IconHandler 64 bit
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{529125EF-E3AC-4B74-97E6-F688A7C0F1C0}" = Paint.NET v3.5.10
"{5340A3B5-3853-4745-BED2-DD9FF5371331}" = Microsoft SQL Server 2008 Common Files
"{5BA8D4F0-C15F-57FE-2B6C-C4AF214833CE}" = AMD Accelerated Video Transcoding
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{5FD7D415-F562-4767-913F-26E7F463DF8B}" = Painter 12 - Corex64
"{64A3A4F4-B792-11D6-A78A-00B0D0160250}" = Java™ SE Development Kit 6 Update 25 (64-bit)
"{656DEEDE-F6AC-47CA-A568-A1B4E34B5760}" = Windows Live Remote Service Resources
"{662014D2-0450-37ED-ABAE-157C88127BEB}" = Visual Studio 2010 Prerequisites - English
"{66A4349A-AA55-43E5-A781-62867A701A90}" = MacroKey Manager
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{723C8298-C7B0-0409-A1B6-C3BA6F3FFAB1}" = Autodesk 3ds Max 2012 64-bit - English
"{77013803-5BA9-4C8A-BFC4-99AE7151C4B7}" = Painter 12 - EN
"{7ACE202B-1B01-4B43-B6AE-03D66D621CDE}" = Microsoft SQL Server 2008 RsFx Driver
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8338783A-0968-3B85-AFC7-BAAE0A63DC50}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570
"{8438EC02-B8A9-462D-AC72-1B521349C001}" = Microsoft Sync Framework Runtime v1.0 SP1 (x64)
"{847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}" = Windows Live Remote Client Resources
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{887CB4A1-5DB4-4924-A2C6-CDCB72376CC7}" = Autodesk Maya 2011 64-bit
"{88BAE373-00F4-3E33-828F-96E89E5E0CB9}" = Microsoft Visual Studio 2010 IntelliTrace Collection (x64)
"{893F27E6-D6BE-4B9F-80E6-0ADA694A31A8}" = Microsoft SQL Server 2008 Common Files
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{8FF0ACBD-17A5-3637-95F4-D7C69723E2BF}" = Microsoft Visual Studio 2010 Performance Collection Tools - ENU
"{9064F37C-66B4-BAF2-E8A7-EDE5E72BB16D}" = AMD Media Foundation Decoders
"{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{94D70749-4281-39AC-AD90-B56A0E0A402E}" = Microsoft Visual C++ 2010 x64 Runtime - 10.0.30319
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{97759DE4-0A6A-4ACF-A511-4DA791BEAA1A}" = Painter 12 - Content
"{987FE247-4E69-4A2E-A961-D14F901FDBF6}" = Logitech Webcam Software
"{9B9E4031-ED35-4BE0-A397-BEC2CC88C471}" = Oracle VM VirtualBox 4.1.2
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}" = Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175
"{AC6FC993-CCD1-41A5-B61C-AD61F90549BE}" = Corel Painter 12 - IPM
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B143BE44-8723-315E-9413-011C55873C0E}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"{B40EE88B-400A-4266-A17B-E3DE64E94431}" = Microsoft SQL Server 2008 Setup Support Files
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{BBDE8A3D-64A2-43A6-95F3-C27B87DF7AC1}" = Microsoft SQL Server 2008 Native Client
"{BE118D69-E21C-4FD5-936C-91F8CD13D3D6}" = ArchVision Dashboard
"{BECAA3A9-CC5A-615C-5FF5-F5261E153CF0}" = ccc-utility64
"{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
"{CA2F11A0-56C1-4AB3-9D8A-07974591D35E}" = RPC Plug-in for Autodesk 3ds Max 2012 64-bit
"{CC8BA866-16A7-4667-BA0C-C494A1E7B2BF}" = Microsoft SQL Server 2008 Database Engine Shared
"{CEA21F20-DBF4-464C-8B81-28B8508AFDDD}" = Windows Live Family Safety
"{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}" = Microsoft SQL Server Compact 3.5 SP2 x64 ENU
"{D70884EA-E2CE-4539-91DB-4766CC1E5F5F}" = Apple Mobile Device Support
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{DA67488A-2689-4F10-B90F-D2F6977509D6}" = Microsoft SQL Server 2008 R2 Management Objects (x64)
"{DF167CE3-60E7-44EA-99EC-2507C51F37AE}" = Microsoft SQL Server 2008 Database Engine Shared
"{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client
"{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service
"{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148
"{F436A08B-63BB-72A2-17C0-6D8E5182CA49}" = AMD Catalyst Install Manager
"{F5079164-1DB9-3BDA-853B-F78AF67CE071}" = Microsoft Visual C++ 2010 x64 Designtime - 10.0.30319
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"{FA7394B8-CE65-4F9E-AC99-F372AD365424}" = Microsoft SQL Server 2008 Database Engine Services
"{FBD367D1-642F-47CF-B79B-9BE48FB34007}" = Microsoft SQL Server 2008 Database Engine Services
"{FCADA26A-5672-31DD-BF0E-BA76ECF9B02D}" = Microsoft Help Viewer 1.0
"Adobe Flash Player ActiveX 64" = Adobe Flash Player 10 ActiveX 64-bit
"Autodesk 3ds Max 2012 64-bit - English" = Autodesk 3ds Max 2012 64-bit - English
"Autodesk FBX Plug-in 2012.0 - 3ds Max 2012 64-bit" = Autodesk FBX Plug-in 2012.0 - 3ds Max 2012 64-bit
"MAXONFCA5B0F9" = CINEMA 4D 13.061
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft Help Viewer 1.0" = Microsoft Help Viewer 1.0
"Microsoft SQL Server 10" = Microsoft SQL Server 2008 (64-bit)
"Microsoft SQL Server 10 Release" = Microsoft SQL Server 2008 (64-bit)
"Microsoft Team Foundation Server 2010 Object Model - ENU" = Microsoft Team Foundation Server 2010 Object Model - ENU
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"Ogg Codecs" = Ogg Codecs 0.81.15562
"UDK-5ecd6feb-13f4-4742-9b47-404f9cdaaf3b" = Hazard - Journey Of Life Demo
"UDK-9f7d2384-4722-4cff-a463-00ecd6c0e5b6" = My Game Long Name
"WhoCrashed_is1" = WhoCrashed 3.01
"WinRAR archiver" = WinRAR archiver

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{024521CF-C07E-4F8E-8481-0D75695E03AF}" = PxMergeModule
"{02E89EFC-7B07-4D5A-AA03-9EC0902914EE}" = VC 9.0 Runtime
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
"{0DDCEC37-369C-484B-B16D-B4413FD42FB9}" = Microsoft SQL Server 2008 R2 Data-Tier Application Framework
"{0E3DFC64-CC49-4BE2-8C9C-58EF129675DB}" = Microsoft Sync Framework SDK v1.0 SP1
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1
"{112C23F2-C036-4D40-BED4-0CB47BF5555C}" = Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 ENU
"{117B6BF6-82C3-420C-B284-9247C8568E53}" = The Sims™ 3 Outdoor Living Stuff
"{12E777A1-74B6-AD5A-D2CD-C792464E425B}" = CCC Help Turkish
"{14DD7530-CCD2-3798-B37D-3839ED6A441C}" = Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools
"{17FE44E2-D21A-4F0C-BE49-798A8FBC374E}" = Sibelius 6
"{1803A630-3C38-4D2B-9B9A-0CB37243539C}" = Microsoft ASP.NET MVC 2
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}" = Microsoft XNA Framework Redistributable 3.1
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{1F77C418-2C90-459C-BD33-B56A4182B9FA}" = System Requirements Lab CYRI
"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = DVD Suite
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{2012098D-EEE9-4769-8DD3-B038050854D4}" = Microsoft Silverlight 3 SDK
"{257C7A78-535E-1450-C720-AE353876C816}" = Catalyst Control Center InstallProxy
"{26A1E9CF-BFC1-4309-80CD-C182D80922DB}_is1" = Artweaver 0.5
"{26A24AE4-039D-4CA4-87B4-2F83216022F0}" = Java™ 6 Update 22
"{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java™ 6 Update 31
"{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 9
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{289AC7E0-0AEE-4a7b-913C-709D9803D23E}" = Nexon Game Manager
"{2902F983-B4C1-44BA-B85D-5C6D52E2C441}" = Windows Live Mesh ActiveX Control for Remote Connections
"{2A2F3AE8-246A-4252-BB26-1BEB45627074}" = Microsoft SQL Server System CLR Types
"{2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}" = Windows Live Messenger
"{2B8D8529-DA80-74D8-4898-DAA028746E08}" = CCC Help Korean
"{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}" = Microsoft XNA Framework Redistributable 4.0
"{2C08D7E7-9EE1-4A08-AFE0-745F02DCD6A4}_is1" = Pokemon Online 1.0.23
"{2D9FEBEE-F1B7-344F-BFDF-760E18332D96}" = Microsoft Visual Studio 2010 SharePoint Developer Tools
"{2FDBBCEA-62DB-45F4-B6E5-0E1FB2A1F29D}" = Visual C++ 8.0 Runtime Setup Package (x64)
"{30C01299-554C-4B62-BD0F-849F43E01C91}_is1" = Pokemon World Online version 1.8
"{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1" = MotioninJoy ds3 vibration driver version 0.100
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{343EFA17-5BC5-44DA-924F-539ECBEFF68C}" = Viva Pinata
"{34E7E124-7AA8-1274-1BA2-90CBD7F6B708}" = CCC Help Thai
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{3806764C-0AA7-4082-908D-C3671372C1E8}" = calibre
"{3898934B-05AE-41CD-96BE-70DA9BFBCE1F}" = Microsoft XNA Framework Redistributable 3.0
"{39F6E2B4-CFE8-C30A-66E8-489651F0F34C}" = Adobe Media Player
"{3A9FC03D-C685-4831-94CF-4EDFD3749497}" = Microsoft SQL Server Compact 3.5 SP2 ENU
"{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}" = Hi-Rez Studios Authenticate and Update Service
"{3C912BF1-73FE-B493-C7D6-04EBF14F57A2}" = CCC Help Portuguese
"{3D347E6D-5A03-4342-B5BA-6A771885F379}" = Autodesk Backburner 2012.0.0
"{3E66D17B-6A22-4C1D-9931-57FCA0A04416}" = Autodesk 3ds Max 2012 SDK
"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX
"{40416836-56CC-4C0E-A6AF-5C34BADCE483}" = Microsoft ASP.NET MVC 2 - Visual Studio 2010 Tools
"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go 5.0
"{41785C66-90F2-40CE-8CB5-1C94BFC97280}" = Microsoft Chart Controls for Microsoft .NET Framework 3.5
"{41B31ABE-5A6E-498A-8F28-3BA3B8779A41}" = Dotfuscator Software Services - Community Edition
"{45057FCE-5784-48BE-8176-D9D00AF56C3C}" = The Sims™ 3 Late Night
"{46ADAC53-F1D2-41B4-B57C-DF43C70904FB}" = Toon Boom Animate Pro 2
"{4908FC28-0BFB-4471-A5A8-58B1B9B547D2}_is1" = English Country Tune Demo version 1.0 Demo
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A5667B2-5D13-46C2-85B5-9D46A6096F61}" = Secure Download Manager
"{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
"{4D53090A-9B45-437B-A66A-831000008300}" = Fable III
"{4D53090A-CE35-42BD-B377-831000018301}" = Fable III
"{4E2EA555-3DAE-4BE1-96BF-6A632ACFE8DE}" = LEGO® Batman™ 2: DC Super Heroes
"{4E968D9C-21A7-4915-B698-F7AEB913541D}" = Microsoft SQL Server 2008 R2 Management Objects
"{50816F92-1652-4A7C-B9BC-48F682742C4B}" = Messenger Companion
"{52E819E9-C69A-4AF6-B2B3-BC01F8B0ECA3}" = Toon Boom Storyboard Pro Trial
"{549FACD7-A5F5-6EA8-7A19-8F7E8CE282A7}" = Catalyst Control Center Localization All
"{56FF113E-161E-4843-845E-68E6766C9151}" = ORGasm
"{5753C527-E2AA-2B8B-AFD1-D4325A0A44B4}" = CCC Help Chinese Standard
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}" = Google Earth
"{5BAEAA63-8C55-4571-B0FE-695299835907}" = MKVcleaver
"{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{613C67FF-E71D-124A-6380-E0E77F9438F7}" = CCC Help Polish
"{632B73D1-C23A-0BD4-FBE2-175B680876A9}" = CCC Help Norwegian
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{63CEA2E4-4FE7-4F2C-B388-C1313D24157C}" = SPORE™ Galactic Adventures
"{6530FDAA-5B1F-4830-95BB-650E9804D239}" = UE3Redist
"{659F48FB-0A8A-49A1-3FD2-C6F069C10893}" = Catalyst Control Center Graphics Previews Common
"{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites
"{6742BE3D-1A59-3BFD-BA20-2FDA866099B8}" = Microsoft Visual Studio 2010 Premium - ENU
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6A86554B-8928-30E4-A53C-D7337689134D}" = Microsoft Visual C++ 2010 x86 Runtime - 10.0.30319
"{6CDEAD7E-F8D8-37F7-AB6F-1E22716E30F3}" = Microsoft Visual Studio Macro Tools
"{6D52C408-B09A-4520-9B18-475B81D393F1}" = Microsoft Works
"{70CEC2B6-BE72-E9B1-D6B8-C1A3CA170D1F}" = Catalyst Control Center InstallProxy
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{71828142-5A24-4BD0-97E7-976DA08CE6CF}" = The Sims™ 3 High-End Loft Stuff
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{729A3000-BC8A-3B74-BA5D-5068FE12D70C}" = Microsoft Visual F# 2.0 Runtime
"{74A3C7EE-10A4-EA61-AC31-335E0500DE48}" = CCC Help English
"{77F94BE8-A504-352B-E873-FC78E5FA9CD7}" = CCC Help Japanese
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}" = Windows Live Messenger Companion Core
"{78C3657E-742C-40B1-9F53-E5A921D40F17}" = Microsoft SQL Server 2008 R2 Transact-SQL Language Service
"{79AAA7A5-6917-2C53-7FCB-C00B54602149}" = CCC Help Chinese Traditional
"{7AEBFFF0-15A1-48A9-88F3-06604486C7C9}" = WMPTagSupportExtender
"{7B11296A-F894-449C-8DF6-6AAAA7D4D118}" = The Sims™ 3 Town Life Stuff
"{82AF3E91-57E1-4754-84D0-40A46E2479AB}" = OpenOffice.org 3.3
"{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}" = Windows Live Sync
"{86883E5D-330F-4F36-A5B4-80CBFF386F31}" = Code Hero
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{910F4A29-1134-49E0-AD8B-56E4A3152BD1}" = The Sims™ 3 Ambitions
"{926E4789-8065-6F3B-9D9A-5E6AABA000BC}" = CCC Help Czech
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{9322A850-9091-4D0E-B252-3E82EDA3D94A}" = Prototype™
"{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9559F7CA-5E34-4237-A2D9-D856464AD727}" = Project64 1.6
"{9700C74F-1D07-FD53-6430-A858B34E30B7}" = CCC Help Russian
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{9D623E1A-30E1-4E55-BD80-5C1359DB120B}" = Melodyne 3.1
"{9DF0196F-B6B8-4C3A-8790-DE42AA530101}" = SPORE™
"{9FD6F1A8-5550-46AF-8509-271DF0E768B5}" = Dual-Core Optimizer
"{A0C91188-C88F-4E86-93E6-CD7C9A266649}" = Windows Live Mesh
"{A0E64741-5C93-FCCD-6A90-248D3C92CAFA}" = CCC Help Greek
"{A1F143D1-1F0D-44FB-A44B-71D4367D16DE}" = Melodyne 3.1
"{A347C572-F7B4-43A3-BD51-FFC99184F70D}" = Jurassic Park Operation Genesis
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A5355F15-F98B-4704-9BAE-E53B9FE48F48}" = SDFormatter
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A8D4FFA9-94CA-B0E4-7ED0-A7FD4DEDB106}" = CCC Help Hungarian
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{A9D5BCE3-6D8B-95B0-925F-F39BFAAB4177}" = CCC Help French
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
"{ABA15F5D-057C-2677-3C90-04838682F66B}" = CCC Help Dutch
"{AC41D924-8C68-4BD5-A7A1-0AE4176C31A6}" = Crystal Reports for Visual Studio
"{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.5)
"{ACC88BAA-D748-E9D9-3F72-B359EFD11912}" = CCC Help Swedish
"{ACE28263-76A4-4BF5-B6F4-8BD719595969}" = Microsoft SQL Server Database Publishing Wizard 1.4
"{ADD5DB49-72CF-11D8-9D75-000129760D75}" = PowerBackup
"{AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A}" = QuickTime
"{AFF7E080-1974-45BF-9310-10DE1A1F5ED0}" = Adobe AIR
"{B7A0CE06-068E-11D6-97FD-0050BACBF861}" = PowerProducer
"{BA10AC78-E687-4523-8B93-540428FC256F}" = Fahrenheit
"{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}" = The Sims™ 3 World Adventures
"{BDACEB26-35BF-4651-BDED-FB99A9081416}" = Charity Engine
"{BEE64C14-BEF1-4610-8A68-A16EAA47B882}" = Futuremark SystemInfo
"{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3
"{C07F8D75-7A8D-400E-A8F9-A3F396B49BB1}" = SPORE™ Creepy & Cute Parts Pack
"{C12631C6-804D-4B32-B0DD-8A496462F106}" = The Sims™ 3 Pets
"{C3C9EB3D-24FA-4462-B784-0EC6AAFCD2DD}" = Fable - The Lost Chapters
"{C4377DBD-EF89-4088-B68C-1DB78280F076}_is1" = Anomaly Warzone Earth
"{C580908C-B3BA-4C19-BD60-16F02F272201}" = BattleForge™
"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
"{C688457E-03FD-4941-923B-A27F4D42A7DD}" = Microsoft SQL Server 2008 Browser
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CC8FA402-451D-4813-B64C-DB728B145727}" = Dragon Stop Motion
"{CCE825DB-347A-4004-A186-5F4A6FDD8547}" = Apple Application Support
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}" = Microsoft .NET Framework 4 Multi-Targeting Pack
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1" = Rapture3D 2.5.1 Game
"{D33CE733-2DE9-D582-9D35-323F9F79A1EB}" = CCC Help Italian
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D67A9023-307F-B5A0-8621-5258D3FA9813}" = CCC Help German
"{D7D6CCD3-D9BD-EA92-288E-EFCBDE939FF5}" = Catalyst Control Center
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{D9577427-2D9D-4580-BDB3-FFDDE06A9554}" = Riven
"{D9E09B07-6C95-11D5-AEBB-00606E910201}" = DM9XInst
"{DA899085-5492-4320-98BF-4F3ACEB23E01}" = SlimDX Redistributable for .NET 4.0 (March 2011)
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E2883E8F-472F-4fb0-9522-AC9BF37916A7}" = Adobe Download Manager
"{E2CBF3FE-A24F-40DF-B25D-8C9E05F0CD63}" = UltraEdit 15.20
"{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding
"{E3D04529-6EDB-11D8-A372-0050BAE317E1}" = PowerDVD Copy
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E52424A0-0D5C-4CCE-9A70-900675EA8A8C}" = ORGasm
"{E5AE9031-79A5-4627-9641-BEFA82819B08}" = Microsoft SQL Server 2008 R2 Data-Tier Application Project
"{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
"{E6B88BD6-E4B2-4701-A648-B6DAC6E491CC}" = The Sims™ 3 Generations
"{EA17F4FC-FDBF-4CF8-A529-2D983132D053}" = Skype™ 6.0
"{EAB8A41D-FABA-4569-A0A1-60A8B358D6F1}" = Autodesk Network License Manager
"{ED436EA8-4145-4703-AE5D-4D09DD24AF5A}" = The Sims™ 3 Fast Lane Stuff
"{EDE721EC-870A-11D8-9D75-000129760D75}" = PowerDirector Express
"{EF666029-2EDF-C792-D438-34940ED13A46}" = CCC Help Finnish
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F38EF546-DCE4-E290-AB73-4C57A3AC70A0}" = CCC Help Danish
"{FBB02B04-C034-4382-A3F6-57416E2752C4}" = Adobe Creative Suite 5 Master Collection
"{FDAD2767-11CA-4D38-9CC4-48770CE3CC7B}" = Notification Center
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"{FE6A55DF-D79E-7469-37CC-3E7F08098FCA}" = CCC Help Spanish
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"AGSAdventureDev321Final_is1" = Adventure Game Studio 3.2.1
"Alan Wake_is1" = Alan Wake
"ASM_Laguna_is1" = The Amazing Spider-Man
"Audacity 1.3 Beta (Unicode)_is1" = Audacity 1.3.12 (Unicode)
"avast" = avast! Free Antivirus
"BandiMPEG1" = Bandisoft MPEG-1 Decoder
"Bugs Bunny & Taz - Time Busters" = Bugs Bunny & Taz - Time Busters
"Canon MOV Decoder" = Canon MOV Decoder
"Canon MOV Encoder" = Canon MOV Encoder
"Canon RAW Codec" = Canon RAW Codec
"Carnivores Ice Age" = Carnivores Ice Age
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"Cobalt" = Cobalt
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"Crazy Machines 2 Complete_is1" = Crazy Machines 2 Complete
"Creatures 3" = Creatures 3
"DAEMON Tools Lite" = DAEMON Tools Lite
"Dishonored_is1" = Dishonored
"DivX Setup" = DivX Setup
"DPP" = Canon Utilities Digital Photo Professional 3.10
"Dungeon Keeper II" = Dungeon Keeper 2
"DVD Decrypter" = DVD Decrypter (Remove Only)
"DVDStyler_is1" = DVDStyler v2.3
"EOS Utility" = Canon Utilities EOS Utility
"EOS Video Snapshot Task" = Canon Utilities EOS Video Snapshot Task for ZoomBrowser EX
"ESN Sonar-0.70.0" = ESN Sonar
"Fahrenheit_is1" = Fahrenheit
"Fraps" = Fraps (remove only)
"GamewareBAMZOOKiSWCBBCUser1_is1" = BAMZOOKi SR v1.2 (build 379.1)
"GamewareBAMZOOKiSWCBBCUserStream1_is1" = BAMZOOKi SR v1.2 (build 379.1)
"GFWL_{4D53090A-9B45-437B-A66A-831000008300}" = Fable III
"Google Chrome" = Google Chrome
"Guitar Pro 5_is1" = Guitar Pro 5.2
"Half-Life Dedicated Server Update Tool" = Half-Life Dedicated Server Update Tool
"Hitman Sniper Challenge_is1" = Hitman Sniper Challenge
"Huawei Modems" = Huawei Modems
"Hypercosm Player 5_is1" = Hypercosm Player 3.48
"ImgBurn" = ImgBurn
"Indeo® Software" = Indeo® Software
"Insanely Twisted Shadow Planet_is1" = skidrow
"InstallShield_{343EFA17-5BC5-44DA-924F-539ECBEFF68C}" = Viva Pińata
"InstallShield_{66A4349A-AA55-43E5-A781-62867A701A90}" = MacroKey Manager
"InstallShield_{9322A850-9091-4D0E-B252-3E82EDA3D94A}" = Prototype™
"InstallShield_{A347C572-F7B4-43A3-BD51-FFC99184F70D}" = Jurassic Park Operation Genesis
"InstallShield_{C3C9EB3D-24FA-4462-B784-0EC6AAFCD2DD}" = Fable - The Lost Chapters
"InterActual Player" = InterActual Player
"JoyIDs" = PJP's JoyIDs
"JTablet" = JTablet
"Jurassic Park The Game" = Jurassic Park The Game
"king.com" = king.com (remove only)
"LHTTSENG" = L&H TTS3000 British English
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.60.1.1000
"ManiaPlanet_is1" = ManiaPlanet
"McPixel_is1" = McPixel version 1.0.4
"Microsoft Visual Studio 2010 Premium - ENU" = Microsoft Visual Studio 2010 Premium - ENU
"Microsoft Visual Studio Macro Tools" = Microsoft Visual Studio Macro Tools
"MINERVA: Metastasis" = MINERVA: Metastasis
"MKVToolNix" = MKVToolNix 5.8.0
"MovieEditTask" = Canon MovieEdit Task for ZoomBrowser EX
"Mozilla Firefox (3.6.16)" = Mozilla Firefox (3.6.16)
"Mozilla Firefox 4.0 (x86 en-GB)" = Mozilla Firefox 4.0 (x86 en-GB)
"MSTTS" = Microsoft Text-to-Speech Engine 4.0 (English)
"NaturalMotion endorphin_is1" = NaturalMotion endorphin 2.7.1
"OCCT_is1" = OCCT Perestroika 3.1.0
"Octodad" = Octodad
"OnLive" = OnLive
"OpenAL" = OpenAL
"Origin" = Origin
"Outcast_is1" = Outcast
"Paintball2" = Paintball2 Alpha build 35
"PhotoStitch" = Canon Utilities PhotoStitch
"PowerISO" = PowerISO
"PunkBusterSvc" = PunkBuster Services
"rayatitray" = Ray Adams ATI Tray Tools
"realMYST Interactive 3D Edition" = realMYST Interactive 3D Edition
"Rockstar Games Social Club" = Rockstar Games Social Club
"Scribblenauts Unlimited_is1" = Scribblenauts Unlimited
"Speakonia_is1" = Speakonia
"SpeedFan" = SpeedFan (remove only)
"SS2000_2.0" = Jump Ahead Starting School 2000 v2.0
"Stacking_is1" = Stacking
"Steam App 100" = Counter-Strike: Condition Zero Deleted Scenes
"Steam App 1002" = Rag Doll Kung Fu
"Steam App 102600" = Orcs Must Die!
"Steam App 10430" = Universe at War: Earth Assault
"Steam App 104600" = Portal 2 - The Final Hours
"Steam App 105600" = Terraria
"Steam App 108710" = Alan Wake
"Steam App 110800" = L.A. Noire
"Steam App 111600" = Serious Sam Double D
"Steam App 113200" = The Binding of Isaac
"Steam App 11450" = Overlord
"Steam App 12100" = Grand Theft Auto III
"Steam App 12140" = Max Payne
"Steam App 12150" = Max Payne 2: The Fall of Max Payne
"Steam App 12210" = Grand Theft Auto IV
"Steam App 12220" = Grand Theft Auto: Episodes from Liberty City
"Steam App 12710" = Overlord: Raising [bleep]
"Steam App 12810" = Overlord II
"Steam App 12900" = Audiosurf
"Steam App 13260" = Unreal Development Kit
"Steam App 13520" = Far Cry
"Steam App 1510" = Uplink
"Steam App 15520" = AaAaAA!!! - A Reckless Disregard for Gravity
"Steam App 16450" = F.E.A.R. 2: Project Origin
"Steam App 17410" = Mirror's Edge
"Steam App 17470" = Dead Space
"Steam App 17710" = Nuclear Dawn
"Steam App 18110" = Shattered Horizon
"Steam App 18300" = Spectraball
"Steam App 18500" = Defense Grid: The Awakening
"Steam App 19900" = Far Cry 2
"Steam App 19980" = Prince of Persia
"Steam App 200010" = Quantum Conundrum
"Steam App 200190" = Sideway
"Steam App 200210" = Realm of the Mad God
"Steam App 200900" = Cave Story+
"Steam App 201480" = Serious Sam: The Random Encounter
"Steam App 201830" = Jurassic Park: The Game
"Steam App 203140" = Hitman: Absolution
"Steam App 204060" = Superbrothers: Sword & Sworcery EP
"Steam App 204100" = Max Payne 3
"Steam App 204220" = Snapshot
"Steam App 204300" = Awesomenauts
"Steam App 204360" = Castle Crashers
"Steam App 20530" = Red Faction
"Steam App 205790" = Dota 2 Test
"Steam App 205910" = Tiny and Big: Grandpa's Leftovers
"Steam App 205930" = Hitman: Sniper Challenge
"Steam App 206370" = Tales from Space: Mutant Blobs Attack
"Steam App 206440" = To the Moon
"Steam App 206760" = Painkiller: Recurring Evil
"Steam App 207080" = Indie Game: The Movie
"Steam App 207170" = Legend of Grimrock
"Steam App 207250" = Cubemen
"Steam App 207570" = English Country Tune
"Steam App 207610" = The Walking Dead
"Steam App 207670" = AVSEQ
"Steam App 208010" = Noitu Love 2 Devolution Demo
"Steam App 208070" = Waveform Demo
"Steam App 208480" = Assassin’s Creed® III
"Steam App 208710" = Colour Bind
"Steam App 209270" = Hero Academy
"Steam App 209690" = Fieldrunners
"Steam App 210170" = Spirits
"Steam App 21090" = F.E.A.R.
"Steam App 21110" = F.E.A.R.: Extraction Point
"Steam App 211180" = Unmechanical
"Steam App 21120" = F.E.A.R.: Perseus Mandate
"Steam App 211360" = Offspring Fling!
"Steam App 211400" = Deadlight
"Steam App 211420" = Dark Souls: Prepare to Die Edition
"Steam App 213410" = BeatBuddy
"Steam App 213450" = Imagine Earth
"Steam App 213510" = Splice
"Steam App 213570" = Trash TV
"Steam App 213590" = Blackwell's Asylum
"Steam App 214250" = I Am Alive
"Steam App 214340" = Deponia
"Steam App 214360" = Tower Wars
"Steam App 214560" = Mark of the Ninja
"Steam App 214700" = Thirty Flights of Loving
"Steam App 214790" = The Basement Collection
"Steam App 214850" = GameMaker: Studio
"Steam App 214870" = Painkiller [bleep] & Damnation
"Steam App 215180" = The Book of Unwritten Tales Demo
"Steam App 215470" = Primal Carnage
"Steam App 215510" = Rocketbirds: Hardboiled Chicken
"Steam App 215670" = Home
"Steam App 215770" = Shad'O
"Steam App 216290" = Gateways
"Steam App 216840" = Dungeon Defenders Development Kit
"Steam App 217690" = Anna
"Steam App 218230" = PlanetSide 2
"Steam App 218640" = Lucius
"Steam App 220" = Half-Life 2
"Steam App 220090" = The Journey Down: Chapter One
"Steam App 220240" = Far Cry® 3
"Steam App 220720" = Shad'O Demo
"Steam App 220860" = McPixel
"Steam App 221260" = Little Inferno
"Steam App 221450" = 3D Coat Demo
"Steam App 22180" = Penumbra: Overture
"Steam App 221850" = 3DMark Vantage Demo
"Steam App 221870" = 3DMark 11 Demo
"Steam App 222140" = Puddle
"Steam App 222160" = Hamlet or the last game without MMORPG features, shaders and product placement
"Steam App 22230" = Rock of Ages
"Steam App 223390" = Forge
"Steam App 223510" = Miasmata
"Steam App 224540" = Ace of Spades
"Steam App 224620" = Primal Carnage Dedicated Server
"Steam App 225120" = BRAZEN Prototype
"Steam App 225940" = Happy Song Prototype
"Steam App 225960" = Costume Quest Prototype
"Steam App 226470" = Far Cry 3 - Map Editor
"Steam App 228020" = Spacebase DF-9 Prototype
"Steam App 228040" = The White Birch Prototype
"Steam App 228060" = Black Lake Prototype
"Steam App 228080" = Hack n Slash Prototype
"Steam App 228100" = Autonomous Prototype
"Steam App 240" = Counter-Strike: Source
"Steam App 2400" = The Ship
"Steam App 2420" = The Ship Single Player
"Steam App 24240" = PAYDAY: The Heist
"Steam App 2430" = The Ship Tutorial
"Steam App 26000" = The Maw
"Steam App 26500" = Cogs
"Steam App 26800" = Braid
"Steam App 29160" = Blueberry Garden
"Steam App 29180" = Osmos
"Steam App 2990" = FlatOut 2
"Steam App 300" = Day of Defeat: Source
"Steam App 31100" = Wallace & Gromit Ep 1: Fright of the Bumblebees
"Steam App 31110" = Wallace & Gromit Ep 2: The Last Resort
"Steam App 31170" = Tales of Monkey Island: Chapter 1 - Launch of the Screaming Narwhal
"Steam App 31280" = Poker Night at the Inventory
"Steam App 31290" = Back to the Future: Ep 1 - It's About Time
"Steam App 320" = Half-Life 2: Deathmatch
"Steam App 3270" = Painkiller Overdose
"Steam App 340" = Half-Life 2: Lost Coast
"Steam App 34830" = Sniper: Ghost Warrior
"Steam App 35460" = The Ball
"Steam App 3590" = Plants vs. Zombies: Game of the Year
"Steam App 360" = Half-Life Deathmatch: Source
"Steam App 3700" = Sniper Elite
"Steam App 37400" = Time Gentlemen, Please!
"Steam App 37420" = Ben There, Dan That!
"Steam App 380" = Half-Life 2: Episode One
"Steam App 3830" = Psychonauts
"Steam App 38700" = Toki Tori
"Steam App 38720" = RUSH
"Steam App 38740" = EDGE
"Steam App 39000" = Moonbase Alpha
"Steam App 39530" = Painkiller: Black Edition
"Steam App 39560" = Painkiller: Resurrection
"Steam App 400" = Portal
"Steam App 4000" = Garry's Mod
"Steam App 40800" = Super Meat Boy
"Steam App 40810" = Super Meat Boy Editor
"Steam App 41070" = Serious Sam 3: BFE
"Steam App 41800" = Gratuitous Space Battles
"Steam App 420" = Half-Life 2: Episode Two
"Steam App 42650" = Transformers: War for Cybertron
"Steam App 4570" = Warhammer 40,000: Dawn of War - Game of the Year Edition
"Steam App 47400" = Stronghold 3
"Steam App 48190" = Assassin's Creed Brotherhood
"Steam App 4920" = Natural Selection 2
"Steam App 49800" = Guns of Icarus
"Steam App 49900" = Plain Sight
"Steam App 50300" = Spec Ops: The Line
"Steam App 50620" = Darksiders
"Steam App 520" = Team Fortress 2 Beta
"Steam App 55040" = Atom Zombie Smasher
"Steam App 55230" = Saints Row: The Third
"Steam App 570" = Dota 2
"Steam App 57200" = Puzzle Dimension
"Steam App 57400" = Batman: Arkham City™ PC
"Steam App 6120" = Shank
"Steam App 61600" = Zen Bound® 2
"Steam App 629" = Portal 2 Authoring Tools - Beta
"Steam App 6300" = Dreamfall: The Longest Journey
"Steam App 6310" = The Longest Journey
"Steam App 63200" = Monday Night Combat
"Steam App 63700" = BIT.TRIP BEAT
"Steam App 63710" = BIT.TRIP RUNNER
"Steam App 65560" = Painkiller: Redemption
"Steam App 65800" = Dungeon Defenders
"Steam App 67010" = The Polynomial - Demo
"Steam App 6870" = Battlestations: Midway
"Steam App 6880" = Just Cause
"Steam App 6980" = Thief: Deadly Shadows
"Steam App 7010" = Project: Snowblind
"Steam App 7060" = Infernal
"Steam App 72000" = Closure
"Steam App 730" = Counter-Strike: Global Offensive
"Steam App 80300" = Puzzle Bots
"Steam App 80310" = Gemini Rue
"Steam App 8080" = Kane & Lynch: Dead Men
"Steam App 8200" = Sam & Max 101: Culture Shock
"Steam App 8210" = Sam & Max 102: Situation: Comedy
"Steam App 8330" = Telltale Texas Hold'Em
"Steam App 8340" = Strong Bad Episode 1: Homestar Ruiner
"Steam App 91310" = Dead Island
"Steam App 91600" = Sanctum
"Steam App 92400" = B.U.T.T.O.N.
"Steam App 92800" = SpaceChem
"Steam App 94200" = Jamestown
"Steam App 94500" = Back to the Future: Ep 2 - Get Tannen!
"Steam App 94520" = Back to the Future: Ep 4 - Double Visions
"Steam App 94600" = Hector: Ep 1
"Steam App 94610" = Hector: Ep 2
"Steam App 94620" = Hector: Ep 3
"Steam App 96000" = The Tiny Bang Story
"Steam App 98220" = Frozen Synapse - Demo
"Steam App 98400" = Hard Reset
"Steam App 98600" = Demolition, Inc.
"Steam App 99700" = NightSky
"The Shivah_is1" = The Shivah v1.2
"Tricky Truck 1.9992" = Tricky Truck 1.9992
"tv_enua" = Lernout & Hauspie TruVoice American English TTS Engine
"Ultra Video Splitter_is1" = Ultra Video Splitter 6.0.1201
"Unity" = Unity
"Uplay" = Uplay
"uTorrent" = µTorrent
"Vindictus EU" = Vindictus EU
"VLC media player" = VLC media player 2.0.4
"Void" = Void 1.0
"Voxatron" = Voxatron 0.1.8
"VST Bridge_is1" = VST Bridge 1.1
"Winamp" = Winamp
"Windows Live OneCare safety scanner" = Windows Live OneCare safety scanner
"WinLiveSuite" = Windows Live Essentials
"WorldUnlock Codes Calculator" = WorldUnlock Codes Calculator
"Xvid Video Codec 1.3.0" = Xvid Video Codec
"Zen Puzzle Garden" = Zen Puzzle Garden Demo 1.28
"ZoomBrowser EX" = Canon Utilities ZoomBrowser EX
"ZoomBrowser EX Memory Card Utility" = Canon ZoomBrowser EX Memory Card Utility

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-2877518406-3504683670-2877553021-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"CodeBlocks" = CodeBlocks
"Dachon 4k" = Dachon 4k
"Facebook Plug-In" = Facebook Plug-In
"Hawken" = Hawken
"Inquisit 3 Web Edition" = Inquisit 3 Web Edition
"InstallShield_{6530FDAA-5B1F-4830-95BB-650E9804D239}" = UE3Redist
"Mozilla Firefox 18.0 (x86 en-GB)" = Mozilla Firefox 18.0 (x86 en-GB)
"Spotify" = Spotify
"UnityWebPlayer" = Unity Web Player
"uTorrent" = µTorrent
"WinDirStat" = WinDirStat 1.1.2

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 12/01/2013 09:56:36 AM | Computer Name = Mikes-PC | Source = Application Error | ID = 1000
Description = Faulting application name: HMA.exe, version: 1.0.444.0, time stamp:
0x50c86d35 Faulting module name: MSVCR100.dll, version: 10.0.40219.325, time stamp:
0x4df2be1e Exception code: 0xc0000417 Fault offset: 0x0008af3e Faulting process id:
0x2118 Faulting application start time: 0x01cdf0cbf2cb5209 Faulting application path:
T:\Steam\steamapps\common\Hitman Absolution\HMA.exe Faulting module path: T:\Steam\steamapps\common\Hitman
Absolution\MSVCR100.dll Report Id: e11e8adc-5cbf-11e2-b413-90e6bad52e3d

Error - 13/01/2013 07:50:00 AM | Computer Name = Mikes-PC | Source = MsiInstaller | ID = 1013
Description =

Error - 14/01/2013 02:02:09 AM | Computer Name = Mikes-PC | Source = Application Error | ID = 1000
Description = Faulting application name: PlanetSide2.exe, version: 0.0.0.0, time
stamp: 0x50f0af29 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception
code: 0xc0000005 Fault offset: 0x7fffffff Faulting process id: 0x8e8 Faulting application
start time: 0x01cdf1fe7d57b614 Faulting application path: T:\Steam\steamapps\common\PlanetSide
2\PlanetSide2.exe Faulting module path: unknown Report Id: ed9c9393-5e0f-11e2-a2b7-90e6bad52e3d

Error - 16/01/2013 07:26:48 AM | Computer Name = Mikes-PC | Source = Application Hang | ID = 1002
Description = The program Spectraball.exe version 4.0.0.62010 stopped interacting
with Windows and was closed. To see if more information about the problem is available,
check the problem history in the Action Center control panel. Process ID: 10f0 Start
Time: 01cdf3d65cb21eed Termination Time: 85 Application Path: T:\Steam\steamapps\common\Spectraball\Spectraball.exe

Report
Id:

Error - 16/01/2013 01:13:55 PM | Computer Name = Mikes-PC | Source = Application Error | ID = 1000
Description = Faulting application name: farcry3_d3d11.exe, version: 0.1.0.1, time
stamp: 0x50d1e5f6 Faulting module name: atidxx32.dll, version: 8.17.10.453, time
stamp: 0x5064ffd8 Exception code: 0xc0000005 Fault offset: 0x00022345 Faulting process
id: 0x1014 Faulting application start time: 0x01cdf40538f64232 Faulting application
path: T:\Steam\steamapps\common\Far Cry 3\bin\farcry3_d3d11.exe Faulting module
path: C:\Windows\system32\atidxx32.dll Report Id: 1b4ae8b7-6000-11e2-a529-90e6bad52e3d

Error - 16/01/2013 03:11:58 PM | Computer Name = Mikes-PC | Source = Application Error | ID = 1000
Description = Faulting application name: farcry3_d3d11.exe, version: 0.1.0.1, time
stamp: 0x50d1e5f6 Faulting module name: ntdll.dll, version: 6.1.7601.17725, time
stamp: 0x4ec49b8f Exception code: 0xc00000fd Fault offset: 0x0002e17a Faulting process
id: 0x124c Faulting application start time: 0x01cdf41cdb71d8c8 Faulting application
path: T:\Steam\steamapps\common\Far Cry 3\bin\farcry3_d3d11.exe Faulting module
path: C:\Windows\SysWOW64\ntdll.dll Report Id: 98bdd824-6010-11e2-bfd2-90e6bad52e3d

Error - 18/01/2013 01:43:40 AM | Computer Name = Mikes-PC | Source = Application Error | ID = 1000
Description = Faulting application name: Steam.exe, version: 0.0.0.0, time stamp:
0x50b7ef0d Faulting module name: tier0_s.dll, version: 0.0.0.0, time stamp: 0x50f7296e
Exception
code: 0x40000015 Fault offset: 0x0001b0e0 Faulting process id: 0xf50 Faulting application
start time: 0x01cdf4b40b9ef892 Faulting application path: T:\Steam\Steam.exe Faulting
module path: T:\Steam\tier0_s.dll Report Id: 02e074be-6132-11e2-bb19-90e6bad52e3d

Error - 18/01/2013 07:34:31 AM | Computer Name = Mikes-PC | Source = Application Error | ID = 1000
Description = Faulting application name: SteamService.exe, version: 1.63.87.14,
time stamp: 0x50f7296e Faulting module name: ntdll.dll, version: 6.1.7601.17725,
time stamp: 0x4ec49b8f Exception code: 0xc0000006 Fault offset: 0x0005b223 Faulting
process id: 0x1f04 Faulting application start time: 0x01cdf5046cdb2043 Faulting application
path: C:\Program Files (x86)\Common Files\Steam\SteamService.exe Faulting module
path: C:\Windows\SysWOW64\ntdll.dll Report Id: 05c91fa4-6163-11e2-bb19-90e6bad52e3d

Error - 18/01/2013 07:34:31 AM | Computer Name = Mikes-PC | Source = Application Error | ID = 1005
Description = Windows cannot access the file for one of the following reasons: there
is a problem with the network connection, the disk that the file is stored on,
or the storage drivers installed on this computer; or the disk is missing. Windows
closed the program Steam Client Service ([email protected])
because of this error. Program: Steam Client Service ([email protected])
File:
The error value is listed in the Additional Data section. User Action 1. Open the
file again. This situation might be a temporary problem that corrects itself when
the program runs again. 2. If the file still cannot be accessed and - It is on the
network, your network administrator should verify that there is not a problem with
the network and that the server can be contacted. - It is on a removable disk, for
example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the
computer. 3. Check and repair the file system by running CHKDSK. To run CHKDSK,
click Start, click Run, type CMD, and then click OK. At the command prompt, type
CHKDSK /F, and then press ENTER. 4. If the problem persists, restore the file from
a backup copy. 5. Determine whether other files on the same disk can be opened.
If not, the disk might be damaged. If it is a hard disk, contact your administrator
or computer hardware vendor for further assistance. Additional Data Error value: C000026E
Disk
type: 0

Error - 18/01/2013 08:42:05 PM | Computer Name = Mikes-PC | Source = Application Error | ID = 1000
Description = Faulting application name: PlanetSide2.exe, version: 0.0.0.0, time
stamp: 0x50f74754 Faulting module name: PlanetSide2.exe, version: 0.0.0.0, time
stamp: 0x50f74754 Exception code: 0xc0000005 Fault offset: 0x0084ff54 Faulting process
id: 0x778 Faulting application start time: 0x01cdf5dbae059b13 Faulting application
path: T:\Steam\steamapps\common\PlanetSide 2\PlanetSide2.exe Faulting module path:
T:\Steam\steamapps\common\PlanetSide 2\PlanetSide2.exe Report Id: 0bbd24ad-61d1-11e2-ba02-90e6bad52e3d

Error - 19/01/2013 12:21:35 AM | Computer Name = Mikes-PC | Source = Application Error | ID = 1000
Description = Faulting application name: PlanetSide2.exe, version: 0.0.0.0, time
stamp: 0x50f74754 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception
code: 0xc0000005 Fault offset: 0xe38dd303 Faulting process id: 0x1638 Faulting application
start time: 0x01cdf5df0a16623c Faulting application path: T:\Steam\steamapps\common\PlanetSide
2\PlanetSide2.exe Faulting module path: unknown Report Id: b5770f51-61ef-11e2-ba02-90e6bad52e3d

[ System Events ]
Error - 19/01/2013 12:14:09 PM | Computer Name = Mikes-PC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Error - 19/01/2013 12:16:17 PM | Computer Name = Mikes-PC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Error - 19/01/2013 12:16:17 PM | Computer Name = Mikes-PC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Error - 19/01/2013 12:16:17 PM | Computer Name = Mikes-PC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Error - 19/01/2013 12:21:17 PM | Computer Name = Mikes-PC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Error - 19/01/2013 12:21:17 PM | Computer Name = Mikes-PC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Error - 19/01/2013 12:21:17 PM | Computer Name = Mikes-PC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Error - 19/01/2013 12:23:25 PM | Computer Name = Mikes-PC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Error - 19/01/2013 12:23:25 PM | Computer Name = Mikes-PC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Error - 19/01/2013 12:23:25 PM | Computer Name = Mikes-PC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068


< End of report >
  • 0

#9
Dakeyras

Dakeyras

    Anti-Malware Mammoth

  • Expert
  • 9,684 posts
Hi. :)

Note that it didn't ask me whether or not to use Avast! Free Antivirus for scanning, so I hope this is right.

Not a problem.

Now not really ideal trying to assist you with your machine running SafeMode with Networking but if the need we will do so. Anyway this may be one of the problems-

Error - 19/01/2013 12:23:25 PM | Computer Name = Mikes-PC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Though I am not ruling out malware as the root cause either, do you have a Windows 7 Installation DVD ?

For now lets boot your machine outside of the Windows environment so to speak as follows...

Scan with Farbar Recovery Scan Tool:

Please download and save Farbar Recovery Scan Tool 64-Bit to a Flash/USB drive.

Then insert the Flash/USB drive into your machine....

Enter System Recovery Options.

To enter System Recovery Options from the Advanced Boot Options:

  • Restart the computer.
  • As soon as the BIOS is loaded begin tapping the F8 key until Advanced Boot Options appears.
  • Use the arrow keys to select the Repair your computer menu item.
  • Select US as the keyboard language settings, and then click Next.
  • Select the operating system you want to repair, and then click Next.
  • Select your user account an click Next.
On the System Recovery Options menu you will get the following options:


Startup Repair
System Restore
Windows Complete PC Restore
Windows Memory Diagnostic Tool
Command Prompt
[*]Select Command Prompt
[*]In the command window type in notepad and press Enter.
[*]The notepad opens. Under File menu select Open.
[*]Select "Computer" and find your flash drive letter and close the notepad.
[*]In the command window type e:\frst64.exe and press Enter[/list] Note: Replace letter e with the drive letter of your flash drive.
  • The tool will start to run.
  • When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will make a log (FRST.txt) on the flash drive. Please copy and paste the contents of the aforementioned notepad file in your next reply.

  • 0

#10
Dakeyras

Dakeyras

    Anti-Malware Mammoth

  • Expert
  • 9,684 posts
Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
  • 0

Advertisements


#11
Dakeyras

Dakeyras

    Anti-Malware Mammoth

  • Expert
  • 9,684 posts
Topic re-opened at OP's request...
  • 0

#12
Willium_Bob_Cole

Willium_Bob_Cole

    Member

  • Topic Starter
  • Member
  • PipPip
  • 46 posts
Thanks for reopening the thread. Sorry for delay since earlier, I have been frantically searching around for my windows 7 disc, only just discovered it, right in the first place I looked!... Anyway, the scan is done, log below. Hope it helps you help me =] (Also, my new 3tb hard drive crashed the other day, and has been disconnecting a couple times since, so it was disconnected during this scan. It pretty much ONLY has my steam games on though, so not a problem. Well, the only problem is that it now thinks some of my steam games are not downloaded when they are. Clicking play on any one will start as if it is downloading, check existing files for a minute or two, then work fine. Really hope to stop the disconnecting HDD problem though. and the computer crashes. And the sh.com or whatever that dodgy site was...)



Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-02-2013
Ran by SYSTEM at 17-02-2013 16:28:37
Running from F:\
Windows 7 Home Premium (X64) OS Language: English(US)
The current controlset is ControlSet001

==================== Registry (Whitelisted) ===================

HKLM\...\Run: [] [x]
HKLM\...\Run: [MacroKeyManager] WTMKM.exe [x]
HKLM\...\Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [444904 2012-09-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [946352 2012-12-02] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray [460872 2012-01-13] (Malwarebytes Corporation)
HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59280 2012-11-28] (Apple Inc.)
HKLM-x32\...\Run: [boincmgr] "C:\Program Files (x86)\Charity Engine\charityengine.exe" /a /s [4858976 2012-02-24] (Charity Engine)
HKLM-x32\...\Run: [boinctray] "C:\Program Files (x86)\Charity Engine\boinctray.exe" [58464 2012-02-24] (Charity Engine)
HKLM-x32\...\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE -startup [336992 2012-05-30] (Power Software Ltd)
HKLM-x32\...\Run: [avast] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui [4297136 2012-10-30] (AVAST Software)
HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2012-10-24] (Apple Inc.)
HKLM-x32\...\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe [x]
HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [152544 2012-12-12] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [252848 2012-07-03] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin [1073352 2012-06-25] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] [x]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe" [39136 2012-12-18] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe" [825560 2012-12-18] (Adobe Systems Inc.)
HKLM-x32\...\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [642808 2012-12-19] (Advanced Micro Devices, Inc.)
HKU\Mike\...\Run: [AdobeBridge] [x]
HKU\Mike\...\Run: [DS3 Tool] C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe -mini [104768 2012-11-12] (www.motioninjoy.com)
HKU\Mike\...\Run: [Xvid] C:\Program Files (x86)\Xvid\CheckUpdate.exe [8192 2011-01-17] ()
HKU\Mike\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [1305408 2011-01-20] (DT Soft Ltd)
HKU\Mike\...\Run: [TomTomHOME.exe] "C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe" [247768 2012-12-05] (TomTom)
HKU\Mike\...\Run: [AtiTrayTools] "C:\Program Files (x86)\Ray Adams\ATI Tray Tools\atitray.exe" [929792 2011-10-29] (Ray Adams)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Startup: C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\atitray.lnk
ShortcutTarget: atitray.lnk -> C:\Program Files (x86)\Ray Adams\ATI Tray Tools\atitray.exe (Ray Adams)

==================== Services (Whitelisted) ===================

2 avast! Antivirus; "C:\Program Files\Alwil Software\Avast5\AvastSvc.exe" [44808 2012-10-30] (AVAST Software)
2 BOINC; "C:\Program Files (x86)\Charity Engine\boinc.exe" -daemon [853088 2012-02-24] (Charity Engine)
3 getPlusHelper; C:\Program Files (x86)\NOS\bin\getPlus_Helper.dll [67360 2009-12-17] (NOS Microsystems Ltd.)
3 Macromedia Licensing Service; "C:\Program Files (x86)\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe" [68096 2010-04-23] ()
2 MBAMService; "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe" [652360 2012-01-13] (Malwarebytes Corporation)
2 mi-raysat_3dsmax2012_64; "C:\Program Files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe" [86016 2011-02-22] ()
3 nosGetPlusHelper; C:\Program Files (x86)\NOS\bin\getPlus_Helper_3004.dll [53248 2011-05-25] (NOS Microsystems Ltd.)
2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-01-12] ()
2 PSI_SVC_2_x64; "C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe" [336824 2010-11-30] (arvato digital services llc)
2 RichVideo; "C:\Program Files (x86)\CyberLink\Shared Files\RichVideo.exe" [272024 2006-12-19] ()
2 TomTomHOMEService; "C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe" [92632 2012-12-05] (TomTom)
2 WTService; C:\Windows\System32\atwtusb.exe -s [660640 2009-06-03] ()
2 BstHdAndroidSvc; "C:\Program Files (x86)\BlueStacks\HD-Service.exe" BstHdAndroidSvc Android [x]
2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [x]

==================== Drivers (Whitelisted) =====================

2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [25232 2012-10-30] (AVAST Software)
2 aswMonFlt; C:\Windows\System32\Drivers\aswMonFlt.sys [71600 2012-10-30] (AVAST Software)
1 aswRdr; C:\Windows\System32\Drivers\aswRdr.sys [42328 2011-11-28] (AVAST Software)
1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [984144 2012-10-30] (AVAST Software)
1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [370288 2012-10-30] (AVAST Software)
1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [59728 2012-10-30] (AVAST Software)
1 atitray; \??\C:\Program Files (x86)\Ray Adams\ATI Tray Tools\atitray64.sys [24736 2011-08-15] ()
2 atksgt; C:\Windows\System32\Drivers\atksgt.sys [314016 2010-10-26] ()
3 DM9USB; C:\Windows\System32\Drivers\DM9USB.sys [32256 2010-07-06] (DAVICOM Semiconductor, Inc. )
1 dtsoftbus01; C:\Windows\System32\Drivers\dtsoftbus01.sys [254528 2011-03-21] (DT Soft Ltd)
3 ENTECH64; C:\Windows\System32\Drivers\ENTECH64.sys [12744 2007-08-20] (EnTech Taiwan)
2 lirsgt; C:\Windows\System32\Drivers\lirsgt.sys [43680 2010-10-26] ()
3 LVPr2M64; C:\Windows\System32\Drivers\LVPr2M64.sys [30232 2009-10-06] ()
3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30232 2009-10-06] ()
3 lvsels64; C:\Windows\System32\Drivers\lvsels64.sys [67992 2009-10-07] (Logitech Inc.)
3 MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [23152 2011-12-10] (Malwarebytes Corporation)
3 monfilt; C:\Windows\System32\Drivers\monfilt.sys [1854976 2008-02-14] (Creative Technology Ltd.)
3 moufiltr; C:\Windows\System32\Drivers\moufiltr.sys [7680 2009-03-08] (Windows ® Codename Longhorn DDK provider)
3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15680 2006-10-31] ()
3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [117040 2011-08-15] (Oracle Corporation)
3 vhidmini; C:\Windows\SysWow64\Drivers\vhidmini.sys [12504 2004-09-22] (IVT Corporation)
2 BstHdDrv; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [x]
3 cpuz130; \??\C:\Users\Mike\AppData\Local\Temp\cpuz130\cpuz_x64.sys [x]
3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x]
3 X6va009; \??\C:\Windows\SysWOW64\Drivers\X6va009 [x]

==================== NetSvcs (Whitelisted) ====================


==================== One Month Created Files and Folders ========

2013-02-17 16:28 - 2013-02-17 16:28 - 00000000 ____D C:\FRST
2013-02-17 02:59 - 2013-02-17 02:59 - 01464351 ____A (Farbar) C:\Users\Mike\Downloads\FRST64.exe
2013-02-17 02:29 - 2013-02-17 02:29 - 00262144 ___AH C:\Windows\MEMORY.DMP
2013-02-16 14:50 - 2013-02-16 14:54 - 00000098 ____A C:\Users\Mike\Desktop\Chinese Hours.txt
2013-02-16 05:41 - 2013-02-16 05:49 - 160741800 ____A C:\Users\Mike\Downloads\Oozi.1.msi
2013-02-16 05:40 - 2013-02-16 05:44 - 64847823 ____A C:\Users\Mike\Downloads\Wake_Win.zip
2013-02-16 05:40 - 2013-02-16 05:44 - 54206599 ____A C:\Users\Mike\Downloads\LunnyeDevitsy_Win.zip
2013-02-14 10:39 - 2013-02-14 12:06 - 00000000 ____D C:\Users\Mike\Downloads\ArtRage.Studio.Pro.v3.5.0.retail-FOSI
2013-02-14 10:09 - 2013-02-14 10:09 - 00000021 ____A C:\Windows\SurCode.INI
2013-02-14 10:09 - 2013-02-14 10:09 - 00000000 ____D C:\Program Files\Common Files\PACE Anti-Piracy
2013-02-14 10:08 - 2013-02-14 10:08 - 00000000 ____D C:\Users\Mike\Downloads\Farming.Simulator.2013-RELOADED
2013-02-14 10:05 - 2013-02-14 10:05 - 01021973 ____A C:\Users\Mike\Downloads\SystemReport.zip
2013-02-14 10:05 - 2013-02-14 10:05 - 00000000 ____D C:\Users\Mike\AppData\Local\EdgeOfReality
2013-02-14 10:04 - 2013-02-14 10:04 - 00000000 ____D C:\Users\Mike\AppData\Roaming\ATI
2013-02-14 10:04 - 2013-02-14 10:04 - 00000000 ____D C:\Users\Mike\AppData\Local\ATI
2013-02-14 10:04 - 2013-02-14 10:04 - 00000000 ____D C:\ProgramData\ATI
2013-02-14 10:03 - 2013-02-14 10:03 - 00000000 ____D C:\ProgramData\AMD
2013-02-14 10:03 - 2013-02-14 10:03 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2013-02-14 10:03 - 2013-02-14 10:03 - 00000000 ____D C:\Program Files (x86)\AMD AVT
2013-02-14 10:03 - 2013-02-14 10:03 - 00000000 ____D C:\Program Files (x86)\AMD APP
2013-02-14 10:00 - 2013-02-14 10:00 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2013-02-14 09:58 - 2013-02-14 10:03 - 00000000 ____D C:\Program Files\ATI Technologies
2013-02-14 09:05 - 2013-01-08 17:48 - 17812992 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2013-02-14 09:05 - 2013-01-08 17:22 - 10925568 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2013-02-14 09:05 - 2013-01-08 17:19 - 02312704 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2013-02-14 09:05 - 2013-01-08 17:12 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2013-02-14 09:05 - 2013-01-08 17:12 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2013-02-14 09:05 - 2013-01-08 17:11 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2013-02-14 09:05 - 2013-01-08 17:10 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2013-02-14 09:05 - 2013-01-08 17:09 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2013-02-14 09:05 - 2013-01-08 17:07 - 00816640 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2013-02-14 09:05 - 2013-01-08 17:07 - 00599040 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll
2013-02-14 09:05 - 2013-01-08 17:07 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2013-02-14 09:05 - 2013-01-08 17:06 - 00729088 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2013-02-14 09:05 - 2013-01-08 17:05 - 02147840 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2013-02-14 09:05 - 2013-01-08 17:04 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2013-02-14 09:05 - 2013-01-08 17:04 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2013-02-14 09:05 - 2013-01-08 17:00 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2013-02-14 09:05 - 2013-01-08 14:23 - 12321280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-02-14 09:05 - 2013-01-08 14:11 - 01800704 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-02-14 09:05 - 2013-01-08 14:09 - 09738240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-02-14 09:05 - 2013-01-08 14:03 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-02-14 09:05 - 2013-01-08 14:03 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-02-14 09:05 - 2013-01-08 14:03 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-02-14 09:05 - 2013-01-08 14:01 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-02-14 09:05 - 2013-01-08 14:00 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-02-14 09:05 - 2013-01-08 13:59 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-02-14 09:05 - 2013-01-08 13:58 - 00717824 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-02-14 09:05 - 2013-01-08 13:58 - 00420864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-02-14 09:05 - 2013-01-08 13:57 - 00607744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-02-14 09:05 - 2013-01-08 13:56 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-02-14 09:05 - 2013-01-08 13:56 - 01796096 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-02-14 09:05 - 2013-01-08 13:56 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-02-14 09:05 - 2013-01-08 13:53 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-02-14 09:01 - 2013-02-14 09:01 - 00000000 ____D C:\Program Files\ATI
2013-02-14 08:52 - 2013-02-14 08:52 - 00000000 ____D C:\AMD
2013-02-14 08:47 - 2013-02-14 08:49 - 153548912 ____A (Advanced Micro Devices, Inc.) C:\Users\Mike\Downloads\13-1_vista_win7_win8_64_dd_ccc_whql.exe
2013-02-14 08:25 - 2013-01-04 21:53 - 05553512 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2013-02-14 08:25 - 2013-01-04 21:00 - 03967848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-02-14 08:25 - 2013-01-04 21:00 - 03913064 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-02-14 08:25 - 2013-01-03 21:46 - 00215040 ____A (Microsoft Corporation) C:\Windows\System32\winsrv.dll
2013-02-14 08:25 - 2013-01-03 20:51 - 00005120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-02-14 08:25 - 2013-01-03 18:47 - 00025600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-02-14 08:25 - 2013-01-03 18:47 - 00014336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-02-14 08:25 - 2013-01-03 18:47 - 00007680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-02-14 08:25 - 2013-01-03 18:47 - 00002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-02-14 08:24 - 2013-01-03 19:26 - 03153408 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2013-02-14 08:24 - 2013-01-02 22:00 - 01913192 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2013-02-14 08:24 - 2013-01-02 22:00 - 00288088 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\FWPKCLNT.SYS
2013-02-14 08:22 - 2013-02-14 08:22 - 00792704 ____A (AMD) C:\Users\Mike\Downloads\amddriverdownloader.exe
2013-02-11 13:31 - 2013-02-11 14:10 - 00000000 ____D C:\Program Files (x86)\Auto Window Manager
2013-02-11 13:31 - 2013-02-11 13:31 - 00000963 ____A C:\Users\boinc_master\Desktop\Auto Window Manager.lnk
2013-02-11 13:30 - 2013-02-11 13:31 - 00000000 ____D C:\Users\Mike\Desktop\BorderLands SplitScreen
2013-02-11 13:30 - 2013-02-11 13:30 - 00788184 ____A C:\Users\Mike\Downloads\AWMSetup.exe
2013-02-11 13:29 - 2013-02-11 13:29 - 00063269 ____A C:\Users\Mike\Downloads\DxWnd.zip
2013-02-11 09:07 - 2013-02-11 11:39 - 00000000 ____D C:\Users\Mike\Downloads\Singularity-RELOADED
2013-02-11 08:38 - 2013-02-11 09:46 - 00000000 ____D C:\Users\Mike\Desktop\Roby-Mation
2013-02-11 07:23 - 2013-02-11 07:39 - 00000000 ____D C:\Users\Mike\Downloads\The Walking Dead Season 3 Complete(Ep 1-8) HDTV x264 [VectoR]
2013-02-11 06:54 - 2013-02-11 06:54 - 00056327 ____A C:\Users\Mike\Downloads\Assignment 1 Review.zip
2013-02-11 06:54 - 2013-01-10 02:56 - 00072195 ____A C:\Users\Mike\Desktop\Assignment 1 Review.pptx
2013-02-11 04:10 - 2013-02-11 04:10 - 00000000 ____D C:\Users\boinc_master\AppData\Roaming\Adobe
2013-02-11 04:09 - 2013-02-11 04:09 - 00000000 ____D C:\Users\boinc_master\AppData\Local\Adobe
2013-02-10 07:33 - 2013-02-10 07:33 - 00000000 ____D C:\Users\Mike\Adobe Flash Builder 4.6
2013-02-07 18:01 - 2013-01-24 09:09 - 00000000 ____D C:\Users\Mike\Desktop\Unity 3D Pro 4.0.1 f2
2013-02-07 17:58 - 2013-02-07 17:59 - 00000000 ____D C:\Users\Mike\Desktop\Backin up TomTom Backup
2013-02-07 16:47 - 2013-02-07 16:47 - 21331476 ____A C:\Users\Mike\Downloads\St_Chicken_Win.zip
2013-02-07 16:47 - 2012-07-16 08:57 - 00000000 ____D C:\Users\Mike\Desktop\St_Chicken_Win
2013-02-07 14:06 - 2013-02-07 14:06 - 00000000 ____D C:\Users\Mike\AppData\Roaming\stetic
2013-02-07 14:06 - 2013-02-07 14:06 - 00000000 ____D C:\Users\Mike\AppData\Roaming\MonoDevelop-Unity-2.8
2013-02-07 14:05 - 2013-02-07 14:06 - 00000000 ____D C:\Users\Mike\AppData\Local\MonoDevelop-Unity-2.8
2013-02-07 14:02 - 2013-02-07 17:58 - 721134611 ____A C:\Users\Mike\Downloads\fk.rar
2013-02-07 13:24 - 2012-11-01 05:22 - 00000000 ____D C:\Users\Mike\Desktop\Mothhead(Win)
2013-02-07 13:13 - 2013-02-07 13:29 - 686144112 ____A (Unity Technologies ApS) C:\Users\Mike\Downloads\UnitySetup-4.0.1.exe
2013-02-07 12:43 - 2013-02-07 12:50 - 360013048 ____A C:\Users\Mike\Downloads\mothhead-win.zip
2013-02-07 12:38 - 2013-02-07 14:01 - 00000000 ____D C:\ProgramData\Unity
2013-02-07 12:22 - 2013-02-07 13:52 - 00001092 ____A C:\Users\Public\Desktop\Unity.lnk
2013-02-07 11:58 - 2013-02-07 11:58 - 00000000 ____D C:\Users\Mike\Downloads\Unity Pro 4.0.0f7 incl. patch-MPT
2013-02-07 02:30 - 2013-02-07 02:30 - 00000000 ____D C:\Users\Mike\Documents\TomTom
2013-02-07 02:30 - 2013-02-07 02:30 - 00000000 ____D C:\ProgramData\TomTom
2013-02-07 02:29 - 2013-02-07 02:33 - 00000000 ____D C:\Program Files (x86)\TomTom HOME 2
2013-02-07 02:29 - 2013-02-07 02:29 - 00000000 ____D C:\Users\Mike\AppData\Roaming\TomTom
2013-02-07 02:29 - 2013-02-07 02:29 - 00000000 ____D C:\Users\Mike\AppData\Local\TomTom
2013-02-07 02:29 - 2013-02-07 02:29 - 00000000 ____D C:\Program Files (x86)\TomTom International B.V
2013-02-07 02:28 - 2013-02-07 02:28 - 00000000 ____D C:\Program Files (x86)\TomTom DesktopSuite
2013-02-06 12:27 - 2013-02-06 12:27 - 00000000 ____D C:\ProgramData\Mozilla
2013-02-06 12:27 - 2013-02-06 12:27 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-02-06 02:24 - 2013-02-06 12:27 - 00000000 ____D C:\Users\Mike\AppData\Local\Mozilla Firefox
2013-02-05 09:47 - 2013-02-05 09:47 - 00000000 ____D C:\Users\Mike\Desktop\SurgeonSimulator2013_Data
2013-02-05 09:47 - 2012-11-12 13:18 - 10078720 ____A C:\Users\Mike\Desktop\SurgeonSimulator2013.exe
2013-02-04 08:13 - 2013-02-04 08:52 - 00000000 ____D C:\Users\Mike\Documents\Proteus
2013-02-04 08:01 - 2013-02-04 08:01 - 00000335 ____A C:\Users\Mike\Downloads\OIO-v3.4.0.2724.zip
2013-02-03 17:22 - 2013-02-03 17:23 - 00000000 ____D C:\Users\Mike\Documents\Mutant Blobs Attack
2013-02-03 05:09 - 2013-02-03 05:09 - 00000543 ____A C:\Users\Public\Desktop\Test Drive Unlimited 2.lnk
2013-02-03 03:44 - 2013-02-03 03:44 - 00262560 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-02-03 03:44 - 2013-02-03 03:44 - 00095648 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-02-02 10:33 - 2013-02-02 10:33 - 00000960 ____A C:\Users\Mike\Desktop\meerkatz.txt
2013-02-01 08:56 - 2013-02-01 09:41 - 159755950 ____A C:\Users\Mike\Downloads\OIO-v3.4.0.2724.zip.part
2013-01-31 07:10 - 2013-01-31 07:10 - 24364137 ____A C:\Users\Mike\Downloads\surgenonsimulator2013_win.zip
2013-01-30 14:53 - 2013-01-30 14:53 - 00001421 ____A C:\Users\Public\Desktop\Crysis 3 MP Open Beta.lnk
2013-01-28 07:48 - 2013-01-28 07:48 - 00002455 ____A C:\Users\Public\Desktop\BioShock.lnk
2013-01-28 06:01 - 2013-01-28 06:01 - 00000634 ____A C:\Users\Public\Desktop\Sleeping Dogs.lnk
2013-01-28 05:47 - 2013-01-28 05:47 - 00001837 ____A C:\Users\Mike\Desktop\GameFly.lnk
2013-01-28 05:47 - 2013-01-28 05:47 - 00000000 ____D C:\Users\Mike\Documents\GameFly
2013-01-28 05:47 - 2013-01-28 05:47 - 00000000 ____D C:\Users\Mike\AppData\Roaming\GameFly
2013-01-28 05:46 - 2013-01-28 05:46 - 00000000 ____D C:\Program Files (x86)\GameFly
2013-01-28 05:45 - 2013-01-28 05:45 - 00001085 ____A C:\Users\Mike\Desktop\Battlefield 3.lnk
2013-01-28 05:44 - 2013-01-28 05:44 - 26069118 ____A C:\Users\Mike\Downloads\gamefly_setup.exe
2013-01-28 04:53 - 2013-01-28 04:53 - 00000756 ____A C:\Users\Public\Desktop\Kingdoms of Amalur Reckoning.lnk
2013-01-28 04:49 - 2013-01-28 04:49 - 00001365 ____A C:\Users\Mike\Desktop\Need For Speed The Run.lnk
2013-01-27 12:53 - 2013-01-27 12:53 - 00000724 ____A C:\Users\Public\Desktop\The Amazing Spider-Man.lnk
2013-01-27 12:13 - 2010-09-22 05:12 - 19087360 ____A (Intel Corporation / Blue Ripple Sound Limited) C:\Windows\SysWOW64\mkl_blueripple.dll
2013-01-27 12:12 - 2011-04-15 15:40 - 00809496 ___RA (Creative Labs Inc.) C:\Windows\SysWOW64\tmp35D7.tmp
2013-01-27 12:11 - 2013-01-27 12:11 - 00001472 ____A C:\Users\Public\Desktop\DiRT 3.lnk
2013-01-27 11:58 - 2013-01-27 11:58 - 00000676 ____A C:\Users\Public\Desktop\Mafia II.lnk
2013-01-27 06:56 - 2013-01-28 02:57 - 00000000 ____D C:\Users\Mike\Downloads\Sims 3 Complete
2013-01-27 06:54 - 2013-01-27 17:41 - 00000000 ____D C:\Users\Mike\Downloads\Sims 3 Store (package and decrapified sims3pack files)
2013-01-27 06:43 - 2013-01-27 06:43 - 00001203 ____A C:\Users\Public\Desktop\Battlefield 1942.lnk
2013-01-27 06:36 - 2013-01-27 06:36 - 00000000 ____D C:\Users\Mike\Documents\SimCity
2013-01-27 06:16 - 2013-01-27 06:16 - 00001351 ____A C:\Users\Public\Desktop\SimCity™ Closed Beta.lnk
2013-01-26 14:15 - 2013-01-26 15:26 - 00000163 ____A C:\Users\Mike\Desktop\Deadlines Dos.txt
2013-01-26 06:36 - 2013-01-26 06:36 - 00000633 ____A C:\Users\Public\Desktop\DMC Devil May Cry.lnk
2013-01-26 06:13 - 2013-01-27 13:20 - 00000000 ____D C:\Users\Mike\Downloads\Ace_Combat_Assault_Horizon_Enhanced_Edition-FLT
2013-01-26 06:10 - 2013-01-30 06:11 - 00000000 ____D C:\Users\Mike\Downloads\The.Witcher.2.Assassins.of.Kings.Enhanced.Edition-SKIDROW
2013-01-26 06:09 - 2013-01-27 09:06 - 00000000 ____D C:\Users\Mike\Downloads\TDU2
2013-01-25 13:32 - 2013-01-28 16:03 - 00006676 ____A C:\shared.log
2013-01-25 13:03 - 2013-01-25 15:17 - 681451150 ____A C:\Users\Mike\Downloads\jimmy.7z
2013-01-25 13:02 - 2013-01-25 17:04 - 1180281211 ____A C:\Users\Mike\Downloads\Jimmy_Neutron_Attack_Of_The_Twonkies_USA_NGC.rar
2013-01-25 13:00 - 2013-01-25 13:19 - 00000000 ____D C:\Users\Mike\Downloads\Jimmy Neutron complete set OFFICIAL idreamofjimmy.com v2
2013-01-25 12:59 - 2013-01-25 13:06 - 00000000 ____D C:\Users\Mike\Downloads\Jimmy Naitron
2013-01-25 12:58 - 2013-01-25 12:58 - 00000000 ____D C:\Users\Mike\Downloads\Jimmy Neutorn The Movie 2001 XviD DVDRip LKRG
2013-01-24 03:29 - 2013-01-24 03:29 - 00000000 ____D C:\Users\Mike\Desktop\FAKEFACTORY CM12
2013-01-23 14:13 - 2013-01-27 12:55 - 00000000 ____D C:\Users\Mike\Downloads\CM12.20.FULL
2013-01-22 11:37 - 2013-02-03 03:44 - 00174496 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-01-22 11:37 - 2013-02-03 03:44 - 00174496 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-01-22 11:36 - 2013-01-22 11:37 - 00004434 ____A C:\Windows\SysWOW64\jupdate-1.7.0_11-b21.log
2013-01-21 15:40 - 2013-01-21 15:41 - 00000000 ____D C:\Users\Mike\Documents\Hard Reset Extended
2013-01-21 04:02 - 2013-01-21 04:02 - 02132399 ____A (Ray Adams) C:\Users\Mike\Downloads\attsetup.exe
2013-01-20 09:42 - 2013-01-20 09:42 - 00000000 ____D C:\Program Files (x86)\steam
2013-01-19 08:25 - 2013-01-19 08:25 - 00452314 ____A C:\Users\Mike\Desktop\Extras.Txt
2013-01-19 08:10 - 2013-01-19 08:10 - 00000512 ____A C:\Users\Mike\Desktop\MBR.dat
2013-01-19 07:05 - 2013-01-19 07:06 - 00000000 ____D C:\Users\Mike\Desktop\old OTLs
2013-01-19 06:35 - 2013-01-19 06:36 - 04732416 ____A (AVAST Software) C:\Users\Mike\Desktop\aswMBR.exe
2013-01-18 20:34 - 2013-01-18 20:34 - 00000000 ____D C:\Users\Public\Documents\Monolith Productions
2013-01-18 15:26 - 2013-01-18 15:28 - 00000000 ____D C:\Users\Mike\Documents\Puddle

==================== One Month Modified Files and Folders =======

2013-02-17 16:28 - 2013-02-17 16:28 - 00000000 ____D C:\FRST
2013-02-17 07:50 - 2012-05-10 08:03 - 00000000 ____D C:\ProgramData\BOINC
2013-02-17 07:50 - 2009-12-09 12:52 - 00000890 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-02-17 07:44 - 2009-07-13 20:45 - 00013792 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-02-17 07:44 - 2009-07-13 20:45 - 00013792 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-02-17 07:42 - 2009-12-09 12:52 - 00000894 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-02-17 07:41 - 2009-07-13 21:13 - 00886122 ____A C:\Windows\System32\PerfStringBackup.INI
2013-02-17 07:37 - 2009-07-13 18:34 - 00000518 ____A C:\Windows\win.ini
2013-02-17 07:36 - 2009-07-13 21:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2013-02-17 07:35 - 2009-07-13 20:51 - 00123460 ____A C:\Windows\setupact.log
2013-02-17 02:59 - 2013-02-17 02:59 - 01464351 ____A (Farbar) C:\Users\Mike\Downloads\FRST64.exe
2013-02-17 02:45 - 2009-12-09 12:48 - 00791302 ____A C:\Windows\PFRO.log
2013-02-17 02:29 - 2013-02-17 02:29 - 00262144 ___AH C:\Windows\MEMORY.DMP
2013-02-17 02:28 - 2012-04-01 02:36 - 00000830 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-02-17 02:28 - 2009-12-20 09:13 - 00000000 ____D C:\Users\Mike\AppData\Local\Adobe
2013-02-16 15:58 - 2009-12-04 07:54 - 01227506 ____A C:\Windows\WindowsUpdate.log
2013-02-16 14:54 - 2013-02-16 14:50 - 00000098 ____A C:\Users\Mike\Desktop\Chinese Hours.txt
2013-02-16 11:00 - 2012-02-17 14:23 - 00000374 ____A C:\Windows\Tasks\At1.job
2013-02-16 09:22 - 2012-05-11 02:14 - 00000000 ____D C:\users\boinc_master
2013-02-16 07:27 - 2009-12-04 07:57 - 00654125 ____A C:\Windows\DirectX.log
2013-02-16 05:59 - 2011-09-09 13:21 - 00000000 ____D C:\Program Files (x86)\Origin
2013-02-16 05:49 - 2013-02-16 05:41 - 160741800 ____A C:\Users\Mike\Downloads\Oozi.1.msi
2013-02-16 05:44 - 2013-02-16 05:40 - 64847823 ____A C:\Users\Mike\Downloads\Wake_Win.zip
2013-02-16 05:44 - 2013-02-16 05:40 - 54206599 ____A C:\Users\Mike\Downloads\LunnyeDevitsy_Win.zip
2013-02-15 15:03 - 2010-01-11 13:30 - 00000000 ____D C:\Users\Mike\AppData\Roaming\uTorrent
2013-02-15 12:54 - 2010-09-15 12:29 - 00000000 ____D C:\Users\Mike\Desktop\Robyn's Stuffs
2013-02-14 14:35 - 2012-02-26 09:26 - 00000000 ____D C:\Users\Mike\AppData\Roaming\vlc
2013-02-14 12:35 - 2012-04-02 05:24 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Doublefine
2013-02-14 12:32 - 2012-12-13 14:12 - 00000000 ____D C:\Program Files (x86)\Ray Adams
2013-02-14 12:06 - 2013-02-14 10:39 - 00000000 ____D C:\Users\Mike\Downloads\ArtRage.Studio.Pro.v3.5.0.retail-FOSI
2013-02-14 10:09 - 2013-02-14 10:09 - 00000021 ____A C:\Windows\SurCode.INI
2013-02-14 10:09 - 2013-02-14 10:09 - 00000000 ____D C:\Program Files\Common Files\PACE Anti-Piracy
2013-02-14 10:08 - 2013-02-14 10:08 - 00000000 ____D C:\Users\Mike\Downloads\Farming.Simulator.2013-RELOADED
2013-02-14 10:05 - 2013-02-14 10:05 - 01021973 ____A C:\Users\Mike\Downloads\SystemReport.zip
2013-02-14 10:05 - 2013-02-14 10:05 - 00000000 ____D C:\Users\Mike\AppData\Local\EdgeOfReality
2013-02-14 10:04 - 2013-02-14 10:04 - 00000000 ____D C:\Users\Mike\AppData\Roaming\ATI
2013-02-14 10:04 - 2013-02-14 10:04 - 00000000 ____D C:\Users\Mike\AppData\Local\ATI
2013-02-14 10:04 - 2013-02-14 10:04 - 00000000 ____D C:\ProgramData\ATI
2013-02-14 10:03 - 2013-02-14 10:03 - 00000000 ____D C:\ProgramData\AMD
2013-02-14 10:03 - 2013-02-14 10:03 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2013-02-14 10:03 - 2013-02-14 10:03 - 00000000 ____D C:\Program Files (x86)\AMD AVT
2013-02-14 10:03 - 2013-02-14 10:03 - 00000000 ____D C:\Program Files (x86)\AMD APP
2013-02-14 10:03 - 2013-02-14 09:58 - 00000000 ____D C:\Program Files\ATI Technologies
2013-02-14 10:00 - 2013-02-14 10:00 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2013-02-14 09:24 - 2009-07-13 20:45 - 05415648 ____A C:\Windows\System32\FNTCACHE.DAT
2013-02-14 09:11 - 2009-12-09 12:45 - 70004024 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2013-02-14 09:01 - 2013-02-14 09:01 - 00000000 ____D C:\Program Files\ATI
2013-02-14 08:52 - 2013-02-14 08:52 - 00000000 ____D C:\AMD
2013-02-14 08:49 - 2013-02-14 08:47 - 153548912 ____A (Advanced Micro Devices, Inc.) C:\Users\Mike\Downloads\13-1_vista_win7_win8_64_dd_ccc_whql.exe
2013-02-14 08:22 - 2013-02-14 08:22 - 00792704 ____A (AMD) C:\Users\Mike\Downloads\amddriverdownloader.exe
2013-02-14 08:03 - 2011-11-11 12:40 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2013-02-12 10:26 - 2011-03-21 12:43 - 00925696 __ASH C:\Users\Mike\Desktop\Thumbs.db
2013-02-12 08:23 - 2012-04-11 13:02 - 00000000 ____D C:\Program Files (x86)\SpeedFan
2013-02-12 04:45 - 2010-10-24 08:32 - 00000000 ____D C:\Windows\Minidump
2013-02-12 04:42 - 2012-09-17 12:44 - 00279862 ____N C:\Windows\Minidump\021213-79841-01.dmp
2013-02-11 14:10 - 2013-02-11 13:31 - 00000000 ____D C:\Program Files (x86)\Auto Window Manager
2013-02-11 13:31 - 2013-02-11 13:31 - 00000963 ____A C:\Users\boinc_master\Desktop\Auto Window Manager.lnk
2013-02-11 13:31 - 2013-02-11 13:30 - 00000000 ____D C:\Users\Mike\Desktop\BorderLands SplitScreen
2013-02-11 13:30 - 2013-02-11 13:30 - 00788184 ____A C:\Users\Mike\Downloads\AWMSetup.exe
2013-02-11 13:29 - 2013-02-11 13:29 - 00063269 ____A C:\Users\Mike\Downloads\DxWnd.zip
2013-02-11 12:56 - 2009-12-20 09:33 - 00000000 ____D C:\Users\Mike\Documents\My Games
2013-02-11 11:39 - 2013-02-11 09:07 - 00000000 ____D C:\Users\Mike\Downloads\Singularity-RELOADED
2013-02-11 09:46 - 2013-02-11 08:38 - 00000000 ____D C:\Users\Mike\Desktop\Roby-Mation
2013-02-11 07:39 - 2013-02-11 07:23 - 00000000 ____D C:\Users\Mike\Downloads\The Walking Dead Season 3 Complete(Ep 1-8) HDTV x264 [VectoR]
2013-02-11 06:54 - 2013-02-11 06:54 - 00056327 ____A C:\Users\Mike\Downloads\Assignment 1 Review.zip
2013-02-11 04:39 - 2009-12-04 07:57 - 00000000 ____D C:\Program Files (x86)\Adobe
2013-02-11 04:36 - 2010-11-01 03:41 - 00000000 ____D C:\Program Files\Common Files\Adobe
2013-02-11 04:13 - 2011-03-26 05:48 - 00000000 ____D C:\Program Files\Adobe
2013-02-11 04:10 - 2013-02-11 04:10 - 00000000 ____D C:\Users\boinc_master\AppData\Roaming\Adobe
2013-02-11 04:09 - 2013-02-11 04:09 - 00000000 ____D C:\Users\boinc_master\AppData\Local\Adobe
2013-02-11 04:08 - 2009-12-04 07:57 - 00000000 ____D C:\ProgramData\Adobe
2013-02-10 08:01 - 2009-12-09 12:36 - 00203072 ____A C:\Users\Mike\AppData\Local\GDIPFONTCACHEV1.DAT
2013-02-10 07:52 - 2009-12-20 09:13 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Adobe
2013-02-10 07:33 - 2013-02-10 07:33 - 00000000 ____D C:\Users\Mike\Adobe Flash Builder 4.6
2013-02-10 07:33 - 2009-12-09 12:35 - 00000000 ____D C:\users\Mike
2013-02-09 08:03 - 2010-11-22 04:05 - 00000000 ____D C:\Users\Mike\AppData\Local\Unity
2013-02-08 05:27 - 2012-04-01 02:36 - 00697712 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-02-08 05:27 - 2011-06-03 01:34 - 00074096 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-02-07 17:59 - 2013-02-07 17:58 - 00000000 ____D C:\Users\Mike\Desktop\Backin up TomTom Backup
2013-02-07 17:58 - 2013-02-07 14:02 - 721134611 ____A C:\Users\Mike\Downloads\fk.rar
2013-02-07 16:47 - 2013-02-07 16:47 - 21331476 ____A C:\Users\Mike\Downloads\St_Chicken_Win.zip
2013-02-07 14:06 - 2013-02-07 14:06 - 00000000 ____D C:\Users\Mike\AppData\Roaming\stetic
2013-02-07 14:06 - 2013-02-07 14:06 - 00000000 ____D C:\Users\Mike\AppData\Roaming\MonoDevelop-Unity-2.8
2013-02-07 14:06 - 2013-02-07 14:05 - 00000000 ____D C:\Users\Mike\AppData\Local\MonoDevelop-Unity-2.8
2013-02-07 14:01 - 2013-02-07 12:38 - 00000000 ____D C:\ProgramData\Unity
2013-02-07 13:54 - 2012-10-12 07:40 - 00000000 ____D C:\Program Files (x86)\Unity
2013-02-07 13:52 - 2013-02-07 12:22 - 00001092 ____A C:\Users\Public\Desktop\Unity.lnk
2013-02-07 13:29 - 2013-02-07 13:13 - 686144112 ____A (Unity Technologies ApS) C:\Users\Mike\Downloads\UnitySetup-4.0.1.exe
2013-02-07 13:06 - 2012-10-12 07:45 - 00000000 ____D C:\Users\Public\Documents\Unity Projects
2013-02-07 12:50 - 2013-02-07 12:43 - 360013048 ____A C:\Users\Mike\Downloads\mothhead-win.zip
2013-02-07 12:50 - 2010-11-22 04:14 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Unity
2013-02-07 11:58 - 2013-02-07 11:58 - 00000000 ____D C:\Users\Mike\Downloads\Unity Pro 4.0.0f7 incl. patch-MPT
2013-02-07 11:49 - 2012-02-17 14:24 - 00000000 ____D C:\Program Files (x86)\u-he
2013-02-07 02:33 - 2013-02-07 02:29 - 00000000 ____D C:\Program Files (x86)\TomTom HOME 2
2013-02-07 02:31 - 2011-01-02 09:20 - 00000000 ____D C:\Users\Mike\AppData\Local\Downloaded Installations
2013-02-07 02:30 - 2013-02-07 02:30 - 00000000 ____D C:\Users\Mike\Documents\TomTom
2013-02-07 02:30 - 2013-02-07 02:30 - 00000000 ____D C:\ProgramData\TomTom
2013-02-07 02:29 - 2013-02-07 02:29 - 00000000 ____D C:\Users\Mike\AppData\Roaming\TomTom
2013-02-07 02:29 - 2013-02-07 02:29 - 00000000 ____D C:\Users\Mike\AppData\Local\TomTom
2013-02-07 02:29 - 2013-02-07 02:29 - 00000000 ____D C:\Program Files (x86)\TomTom International B.V
2013-02-07 02:28 - 2013-02-07 02:28 - 00000000 ____D C:\Program Files (x86)\TomTom DesktopSuite
2013-02-07 02:22 - 2012-12-02 06:34 - 00000000 ____D C:\Users\Mike\Desktop\Shortcuts
2013-02-06 12:27 - 2013-02-06 12:27 - 00000000 ____D C:\ProgramData\Mozilla
2013-02-06 12:27 - 2013-02-06 12:27 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-02-06 12:27 - 2013-02-06 02:24 - 00000000 ____D C:\Users\Mike\AppData\Local\Mozilla Firefox
2013-02-05 10:52 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\System32\NDF
2013-02-05 09:47 - 2013-02-05 09:47 - 00000000 ____D C:\Users\Mike\Desktop\SurgeonSimulator2013_Data
2013-02-05 09:28 - 2012-05-10 08:03 - 00000000 ____D C:\Program Files (x86)\Charity Engine
2013-02-04 08:52 - 2013-02-04 08:13 - 00000000 ____D C:\Users\Mike\Documents\Proteus
2013-02-04 08:01 - 2013-02-04 08:01 - 00000335 ____A C:\Users\Mike\Downloads\OIO-v3.4.0.2724.zip
2013-02-03 17:23 - 2013-02-03 17:22 - 00000000 ____D C:\Users\Mike\Documents\Mutant Blobs Attack
2013-02-03 05:09 - 2013-02-03 05:09 - 00000543 ____A C:\Users\Public\Desktop\Test Drive Unlimited 2.lnk
2013-02-03 03:44 - 2013-02-03 03:44 - 00262560 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-02-03 03:44 - 2013-02-03 03:44 - 00095648 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-02-03 03:44 - 2013-01-22 11:37 - 00174496 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-02-03 03:44 - 2013-01-22 11:37 - 00174496 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-02-03 03:44 - 2012-08-21 04:54 - 00861088 ____A (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll
2013-02-03 03:44 - 2010-05-25 10:28 - 00782240 ____A (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll
2013-02-02 10:33 - 2013-02-02 10:33 - 00000960 ____A C:\Users\Mike\Desktop\meerkatz.txt
2013-02-02 09:02 - 2011-06-30 04:34 - 00281688 ____A C:\Windows\SysWOW64\PnkBstrB.xtr
2013-02-02 09:02 - 2009-12-20 09:11 - 00281688 ____A C:\Windows\SysWOW64\PnkBstrB.exe
2013-02-01 11:29 - 2012-12-02 06:34 - 00000000 ____D C:\Users\Mike\Desktop\Folders
2013-02-01 09:41 - 2013-02-01 08:56 - 159755950 ____A C:\Users\Mike\Downloads\OIO-v3.4.0.2724.zip.part
2013-01-31 17:10 - 2009-12-20 09:11 - 00281688 ____A C:\Windows\SysWOW64\PnkBstrB.ex0
2013-01-31 07:10 - 2013-01-31 07:10 - 24364137 ____A C:\Users\Mike\Downloads\surgenonsimulator2013_win.zip
2013-01-30 14:53 - 2013-01-30 14:53 - 00001421 ____A C:\Users\Public\Desktop\Crysis 3 MP Open Beta.lnk
2013-01-30 12:58 - 2009-12-20 06:49 - 00000000 ____D C:\Program Files (x86)\Electronic Arts
2013-01-30 06:11 - 2013-01-26 06:10 - 00000000 ____D C:\Users\Mike\Downloads\The.Witcher.2.Assassins.of.Kings.Enhanced.Edition-SKIDROW
2013-01-30 03:02 - 2010-01-11 13:30 - 00000000 ____D C:\Program Files (x86)\uTorrent
2013-01-29 09:15 - 2012-02-20 07:59 - 00000000 ____D C:\Users\Mike\Documents\Telltale Games
2013-01-28 16:03 - 2013-01-25 13:32 - 00006676 ____A C:\shared.log
2013-01-28 07:48 - 2013-01-28 07:48 - 00002455 ____A C:\Users\Public\Desktop\BioShock.lnk
2013-01-28 06:01 - 2013-01-28 06:01 - 00000634 ____A C:\Users\Public\Desktop\Sleeping Dogs.lnk
2013-01-28 05:47 - 2013-01-28 05:47 - 00001837 ____A C:\Users\Mike\Desktop\GameFly.lnk
2013-01-28 05:47 - 2013-01-28 05:47 - 00000000 ____D C:\Users\Mike\Documents\GameFly
2013-01-28 05:47 - 2013-01-28 05:47 - 00000000 ____D C:\Users\Mike\AppData\Roaming\GameFly
2013-01-28 05:46 - 2013-01-28 05:46 - 00000000 ____D C:\Program Files (x86)\GameFly
2013-01-28 05:45 - 2013-01-28 05:45 - 00001085 ____A C:\Users\Mike\Desktop\Battlefield 3.lnk
2013-01-28 05:44 - 2013-01-28 05:44 - 26069118 ____A C:\Users\Mike\Downloads\gamefly_setup.exe
2013-01-28 04:53 - 2013-01-28 04:53 - 00000756 ____A C:\Users\Public\Desktop\Kingdoms of Amalur Reckoning.lnk
2013-01-28 04:49 - 2013-01-28 04:49 - 00001365 ____A C:\Users\Mike\Desktop\Need For Speed The Run.lnk
2013-01-28 02:57 - 2013-01-27 06:56 - 00000000 ____D C:\Users\Mike\Downloads\Sims 3 Complete
2013-01-27 17:41 - 2013-01-27 06:54 - 00000000 ____D C:\Users\Mike\Downloads\Sims 3 Store (package and decrapified sims3pack files)
2013-01-27 13:20 - 2013-01-26 06:13 - 00000000 ____D C:\Users\Mike\Downloads\Ace_Combat_Assault_Horizon_Enhanced_Edition-FLT
2013-01-27 12:55 - 2013-01-23 14:13 - 00000000 ____D C:\Users\Mike\Downloads\CM12.20.FULL
2013-01-27 12:53 - 2013-01-27 12:53 - 00000724 ____A C:\Users\Public\Desktop\The Amazing Spider-Man.lnk
2013-01-27 12:13 - 2012-11-16 04:04 - 00000000 ____D C:\Program Files (x86)\BRS
2013-01-27 12:12 - 2009-12-23 03:57 - 00466456 ____A (Creative Labs) C:\Windows\System32\wrap_oal.dll
2013-01-27 12:12 - 2009-12-23 03:57 - 00444952 ____A (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2013-01-27 12:12 - 2009-12-23 03:57 - 00122904 ____A (Portions © Creative Labs Inc. and NVIDIA Corp.) C:\Windows\System32\OpenAL32.dll
2013-01-27 12:12 - 2009-12-23 03:57 - 00109080 ____A (Portions © Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2013-01-27 12:11 - 2013-01-27 12:11 - 00001472 ____A C:\Users\Public\Desktop\DiRT 3.lnk
2013-01-27 11:58 - 2013-01-27 11:58 - 00000676 ____A C:\Users\Public\Desktop\Mafia II.lnk
2013-01-27 09:06 - 2013-01-26 06:09 - 00000000 ____D C:\Users\Mike\Downloads\TDU2
2013-01-27 06:50 - 2011-09-09 13:22 - 00000000 ____D C:\Users\Mike\AppData\Local\Origin
2013-01-27 06:43 - 2013-01-27 06:43 - 00001203 ____A C:\Users\Public\Desktop\Battlefield 1942.lnk
2013-01-27 06:36 - 2013-01-27 06:36 - 00000000 ____D C:\Users\Mike\Documents\SimCity
2013-01-27 06:35 - 2010-12-21 08:36 - 00000000 ____D C:\ProgramData\Origin
2013-01-27 06:16 - 2013-01-27 06:16 - 00001351 ____A C:\Users\Public\Desktop\SimCity™ Closed Beta.lnk
2013-01-27 05:53 - 2011-09-09 13:22 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Origin
2013-01-26 15:26 - 2013-01-26 14:15 - 00000163 ____A C:\Users\Mike\Desktop\Deadlines Dos.txt
2013-01-26 06:36 - 2013-01-26 06:36 - 00000633 ____A C:\Users\Public\Desktop\DMC Devil May Cry.lnk
2013-01-25 17:04 - 2013-01-25 13:02 - 1180281211 ____A C:\Users\Mike\Downloads\Jimmy_Neutron_Attack_Of_The_Twonkies_USA_NGC.rar
2013-01-25 15:17 - 2013-01-25 13:03 - 681451150 ____A C:\Users\Mike\Downloads\jimmy.7z
2013-01-25 13:19 - 2013-01-25 13:00 - 00000000 ____D C:\Users\Mike\Downloads\Jimmy Neutron complete set OFFICIAL idreamofjimmy.com v2
2013-01-25 13:06 - 2013-01-25 12:59 - 00000000 ____D C:\Users\Mike\Downloads\Jimmy Naitron
2013-01-25 12:58 - 2013-01-25 12:58 - 00000000 ____D C:\Users\Mike\Downloads\Jimmy Neutorn The Movie 2001 XviD DVDRip LKRG
2013-01-24 09:09 - 2013-02-07 18:01 - 00000000 ____D C:\Users\Mike\Desktop\Unity 3D Pro 4.0.1 f2
2013-01-24 03:29 - 2013-01-24 03:29 - 00000000 ____D C:\Users\Mike\Desktop\FAKEFACTORY CM12
2013-01-22 11:37 - 2013-01-22 11:36 - 00004434 ____A C:\Windows\SysWOW64\jupdate-1.7.0_11-b21.log
2013-01-22 11:37 - 2010-01-21 07:58 - 00000000 ____D C:\Program Files (x86)\Java
2013-01-21 15:41 - 2013-01-21 15:40 - 00000000 ____D C:\Users\Mike\Documents\Hard Reset Extended
2013-01-21 15:16 - 2012-12-23 17:00 - 00000000 ____D C:\Users\Mike\Documents\Snapshot
2013-01-21 04:02 - 2013-01-21 04:02 - 02132399 ____A (Ray Adams) C:\Users\Mike\Downloads\attsetup.exe
2013-01-20 12:35 - 2011-06-04 04:51 - 00014555 ____A C:\Users\Mike\Documents\written application - personal assistant.odt
2013-01-20 12:35 - 2011-05-09 05:21 - 00108032 __ASH C:\Users\Mike\Documents\Thumbs.db
2013-01-20 09:42 - 2013-01-20 09:42 - 00000000 ____D C:\Program Files (x86)\steam
2013-01-19 08:25 - 2013-01-19 08:25 - 00452314 ____A C:\Users\Mike\Desktop\Extras.Txt
2013-01-19 08:10 - 2013-01-19 08:10 - 00000512 ____A C:\Users\Mike\Desktop\MBR.dat
2013-01-19 07:06 - 2013-01-19 07:05 - 00000000 ____D C:\Users\Mike\Desktop\old OTLs
2013-01-19 06:36 - 2013-01-19 06:35 - 04732416 ____A (AVAST Software) C:\Users\Mike\Desktop\aswMBR.exe
2013-01-19 04:12 - 2009-12-23 02:43 - 00000000 ____A C:\Windows\SysWOW64\config.nt
2013-01-18 20:34 - 2013-01-18 20:34 - 00000000 ____D C:\Users\Public\Documents\Monolith Productions
2013-01-18 15:28 - 2013-01-18 15:26 - 00000000 ____D C:\Users\Mike\Documents\Puddle

==================== Known DLLs (Whitelisted) =================


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== EXE ASSOCIATION =====================

HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK

==================== Restore Points =========================

Restore point made on: 2013-02-16 05:12:47
Restore point made on: 2013-02-16 07:27:21

==================== Memory info ===========================

Percentage of memory in use: 16%
Total physical RAM: 4087.05 MB
Available physical RAM: 3403.45 MB
Total Pagefile: 4085.2 MB
Available Pagefile: 3407.36 MB
Total Virtual: 8192 MB
Available Virtual: 8191.9 MB

==================== Partitions =============================

1 Drive c: (Windows7) (Fixed) (Total:455.99 GB) (Free:47.38 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
2 Drive d: (Win_RE) (Fixed) (Total:9.77 GB) (Free:3.25 GB) NTFS ==>[System with boot components (obtained from reading drive)]
3 Drive e: (GRMCHPXFREO_EN_DVD) (CDROM) (Total:3 GB) (Free:0 GB) UDF
4 Drive f: (ROBZ USB) (Removable) (Total:1.87 GB) (Free:1.85 GB) FAT
5 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS

Disk ### Status Size Free Dyn Gpt
-------- ------------- ------- ------- --- ---
Disk 0 Online 465 GB 1024 KB
Disk 1 Online 1914 MB 0 B

Partitions of Disk 0:
===============

Disk ID: 37B4D5AA

Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Recovery 9 GB 1024 KB
Partition 2 Primary 455 GB 9 GB

==================================================================================

Disk: 0
Partition 1
Type : 27
Hidden: Yes
Active: No

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 2 D Win_RE NTFS Partition 9 GB Healthy Hidden

=========================================================

Disk: 0
Partition 2
Type : 07
Hidden: No
Active: Yes

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 1 C Windows7 NTFS Partition 455 GB Healthy

=========================================================

Partitions of Disk 1:
===============

Disk ID: 00000000

Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 1910 MB 4032 KB

==================================================================================

Disk: 1
Partition 1
Type : 06
Hidden: No
Active: No

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 3 F ROBZ USB FAT Removable 1910 MB Healthy

=========================================================

Last Boot: 2013-02-13 02:42

==================== End Of Log =============================
  • 0

#13
godawgs

godawgs

    Teacher

  • Retired Staff
  • 8,228 posts
Hello Willium_Bob_Cole,

My name is godawgs. Dakeyras has asked me to step in as he will be away from the forum for the next few days. So if it's ok with you we will see what we can do.

I don't really see anything in the FRST scan. So if SafeMode with Networking is the only mode you can boot into let's see what we can find from there.


Step-1.

AdwCleaner by Xplode

Download AdwCleaner from here to your desktop.
Close all open windows and browsers.

  • Right click The adwcleaner.exe, click Run as administrator and accept the UAC prompt to run AdwCleaner.
    Posted Image
  • Click the Search button and wait for the scan to finish.
  • Do Not delete anything at this point.
  • Once done it may ask to reboot, allow this.
  • On reboot a log will be produced please copy/paste that in your next reply. This report is also saved to C:\AdwCleaner[R1].txt

Step-2.

Run RogueKiller

NOTE: If using IE8 or better Smartscreen Filter will need to be disabled

  • Download RogueKiller to the desktop.
  • Click the English Webpage link.
  • Click the 64bits (x64) download link and save the RogueKiller.exe file to the desktop.
  • Quit all programs and close all browsers.
  • Right click the RogueKiller icon and click Run as Administrator to run the program.
  • Wait until Prescan has finished ...
  • Click on Scan

    Posted Image
  • Wait for the end of the scan.
  • DO NOT delete anything at this time.
  • The report has been created on the desktop.
Please post:
All RKreport.txt text files located on your desktop.
NOTE: If RogueKiller has been blocked, do not hesitate to try a few times more. If it really won't run, rename it to winlogon.exe (or winlogon.com) and try again


Step-3

Things For Your Next Post:
Please post the logs in the order requested. Do Not attach the logs unless I request it.
1. The AdwCleaner[R1].txt log
2. The RKreport.txt log
  • 0

#14
Dakeyras

Dakeyras

    Anti-Malware Mammoth

  • Expert
  • 9,684 posts
Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
  • 0

#15
Dakeyras

Dakeyras

    Anti-Malware Mammoth

  • Expert
  • 9,684 posts
Topic re-opened at OP's request...
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP