I also get many popups that open a new false browser especially for an ad that wants be to update Flash Player on my system.
One other problem I have been having is when closing some browser tabs, I will at times have that window open up once again numerous times, and when I try to close them they just keep opening. These aren't weird sites either, they are just regular sites or blogs. I notice that sites that run infusionsoft programs do this most.
Anyway, I have installed and ran many different security and adware, spyware destroyers.
These programs can be seen in my programs in the results.
I have eliminated many threats and continue to do so, but still get these popups and windows opening randomly.
I run Windows 7
Here's the results from my scans which opened in two notepads:
OTL logfile created on: 3/5/2013 2:37:11 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\dogonit23\Desktop\Software Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.75 Gb Total Physical Memory | 1.16 Gb Available Physical Memory | 31.08% Memory free
7.49 Gb Paging File | 3.39 Gb Available in Paging File | 45.27% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 442.60 Gb Total Space | 254.15 Gb Free Space | 57.42% Space Free | Partition Type: NTFS
Drive D: | 22.87 Gb Total Space | 3.34 Gb Free Space | 14.59% Space Free | Partition Type: NTFS
Drive F: | 1863.01 Gb Total Space | 403.11 Gb Free Space | 21.64% Space Free | Partition Type: NTFS
Computer Name: DOGONIT23-HP | User Name: dogonit23 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2013/03/05 14:24:06 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\dogonit23\Desktop\Software Downloads\OTL.exe
PRC - [2013/02/27 02:36:46 | 000,701,808 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_6_602_171_ActiveX.exe
PRC - [2012/12/18 06:28:08 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2012/12/14 20:38:46 | 001,236,968 | ---- | M] (Lavasoft Limited) -- C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe
PRC - [2012/12/14 20:38:42 | 018,880,984 | ---- | M] (Lavasoft Limited) -- C:\Program Files (x86)\Ad-Aware Antivirus\AdAware.exe
PRC - [2012/12/14 16:49:28 | 000,682,344 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2012/12/14 16:49:28 | 000,512,360 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2012/12/14 16:49:28 | 000,398,184 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2012/12/11 15:20:50 | 000,542,104 | ---- | M] (Lavasoft) -- C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe
PRC - [2012/09/20 05:39:12 | 003,677,000 | ---- | M] (GFI Software) -- C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe
PRC - [2011/10/01 08:30:22 | 000,219,496 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
PRC - [2011/10/01 08:30:18 | 000,508,776 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
PRC - [2011/08/19 08:26:50 | 000,450,848 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
PRC - [2011/06/27 11:00:12 | 000,213,848 | ---- | M] (NETGATE Technologies s.r.o.) -- C:\Program Files\NETGATE\Spy Emergency\SpyEmergencyWow64.exe
PRC - [2011/06/02 01:42:53 | 000,025,472 | ---- | M] (Uniblue Systems Limited) -- C:\Program Files (x86)\Uniblue\RegistryBooster\rbmonitor.exe
PRC - [2011/04/26 01:30:48 | 003,298,712 | ---- | M] (Tonec Inc.) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe
PRC - [2011/03/28 16:07:50 | 000,094,264 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
PRC - [2011/03/08 15:06:22 | 000,160,328 | ---- | M] (Siber Systems) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
PRC - [2010/09/28 17:08:58 | 000,026,680 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
PRC - [2010/09/11 01:02:22 | 000,399,344 | ---- | M] (Roxio) -- C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
PRC - [2010/09/03 17:13:30 | 000,136,488 | ---- | M] (CyberLink) -- C:\Program Files (x86)\Hewlett-Packard\Media\Webcam\YCMMirage.exe
PRC - [2010/05/25 06:28:58 | 000,263,600 | ---- | M] (Tonec Inc.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
PRC - [2009/05/08 09:35:50 | 002,780,432 | ---- | M] () -- C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe
PRC - [2009/05/08 09:34:08 | 000,559,888 | ---- | M] () -- C:\Program Files (x86)\Common Files\logishrd\LQCVFX\COCIManager.exe
PRC - [2009/04/30 15:01:12 | 000,125,464 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Common Files\logishrd\LVMVFM\LVPrS64H.exe
PRC - [2009/04/30 13:39:30 | 005,472,016 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Logitech\Logitech Vid\Vid.exe
PRC - [2008/09/16 00:02:16 | 000,139,264 | ---- | M] (Mind Movies Pty Ltd Australia) -- C:\Program Files (x86)\MindMovies\Subliminal\SubVid.exe
PRC - [2008/04/23 01:08:13 | 000,483,328 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files (x86)\Adobe\Acrobat 7.0\Distillr\acrotray.exe
========== Modules (No Company Name) ==========
MOD - [2013/02/14 11:27:39 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\cb562e2e4f74ae607f1186f6ec50cec7\System.Windows.Forms.ni.dll
MOD - [2013/01/24 03:16:54 | 001,050,112 | ---- | M] () -- c:\Program Files (x86)\BrowseToSave\sprotector.dll
MOD - [2013/01/11 11:08:52 | 001,592,832 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\eead6629e384a5b69f9ae35284b7eeed\System.Drawing.ni.dll
MOD - [2013/01/11 11:08:47 | 000,025,600 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\d908c91e24616e6b8d38c9da61038b25\Accessibility.ni.dll
MOD - [2013/01/11 11:08:15 | 005,453,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\f687c43e9fdec031988b33ae722c4613\System.Xml.ni.dll
MOD - [2013/01/11 11:08:08 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\195a77fcc6206f8bb35d419ff2cf0d72\System.Configuration.ni.dll
MOD - [2013/01/11 11:08:06 | 007,989,760 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\369f8bdca364e2b4936d18dea582912c\System.ni.dll
MOD - [2013/01/11 11:05:02 | 011,493,376 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\7150b9136fad5b79e88f6c7f9d3d2c39\mscorlib.ni.dll
MOD - [2012/11/29 13:59:32 | 000,093,696 | ---- | M] () -- C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll
MOD - [2012/02/20 20:29:04 | 000,087,912 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2012/02/20 20:28:42 | 001,242,472 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2009/05/08 09:35:50 | 002,780,432 | ---- | M] () -- C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe
MOD - [2009/05/08 09:35:28 | 000,181,520 | ---- | M] () -- C:\Program Files (x86)\Common Files\logishrd\LvApi11\LvApi11.dll
MOD - [2009/05/08 09:34:08 | 000,559,888 | ---- | M] () -- C:\Program Files (x86)\Common Files\logishrd\LQCVFX\COCIManager.exe
MOD - [2009/04/30 13:39:56 | 000,138,000 | ---- | M] () -- C:\Program Files (x86)\Logitech\Logitech Vid\plugins\imageformats\qjpeg4.dll
MOD - [2009/04/30 13:39:56 | 000,035,088 | ---- | M] () -- C:\Program Files (x86)\Logitech\Logitech Vid\plugins\imageformats\qico4.dll
MOD - [2009/04/30 13:39:52 | 000,028,944 | ---- | M] () -- C:\Program Files (x86)\Logitech\Logitech Vid\plugins\imageformats\qgif4.dll
MOD - [2009/04/30 13:39:08 | 000,027,408 | ---- | M] () -- C:\Program Files (x86)\Logitech\Logitech Vid\SDL.dll
MOD - [2009/04/30 13:38:56 | 000,363,792 | ---- | M] () -- C:\Program Files (x86)\Logitech\Logitech Vid\qtxml4.dll
MOD - [2009/04/30 13:38:44 | 011,311,888 | ---- | M] () -- C:\Program Files (x86)\Logitech\Logitech Vid\QtWebKit4.dll
MOD - [2009/04/30 13:38:34 | 000,199,952 | ---- | M] () -- C:\Program Files (x86)\Logitech\Logitech Vid\qtsql4.dll
MOD - [2009/04/30 13:38:22 | 000,968,976 | ---- | M] () -- C:\Program Files (x86)\Logitech\Logitech Vid\QtNetwork4.dll
MOD - [2009/04/30 13:38:22 | 000,475,408 | ---- | M] () -- C:\Program Files (x86)\Logitech\Logitech Vid\QtOpenGL4.dll
MOD - [2009/04/30 13:38:10 | 007,704,336 | ---- | M] () -- C:\Program Files (x86)\Logitech\Logitech Vid\QtGui4.dll
MOD - [2009/04/30 13:37:58 | 002,140,944 | ---- | M] () -- C:\Program Files (x86)\Logitech\Logitech Vid\QtCore4.dll
MOD - [2009/04/30 13:37:48 | 000,291,600 | ---- | M] () -- C:\Program Files (x86)\Logitech\Logitech Vid\phonon4.dll
MOD - [2006/01/12 20:20:26 | 000,019,968 | ---- | M] () -- C:\Program Files (x86)\Adobe\Acrobat 7.0\Distillr\acrotray.DEU
MOD - [2006/01/12 20:13:46 | 000,019,968 | ---- | M] () -- C:\Program Files (x86)\Adobe\Acrobat 7.0\Distillr\acrotray.FRA
MOD - [2002/07/03 16:38:00 | 000,053,248 | ---- | M] () -- C:\Program Files (x86)\ArcSoft\Software Suite\PhotoImpression\Share\PIHook.dll
========== Services (SafeList) ==========
SRV:64bit: - [2013/01/27 11:34:32 | 000,379,360 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2013/01/27 11:34:32 | 000,022,056 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2012/07/19 11:26:26 | 004,111,200 | ---- | M] (NETGATE Technologies s.r.o.) [Auto | Running] -- C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe -- (SpyEmrgSrv)
SRV:64bit: - [2012/07/11 10:54:58 | 000,140,672 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware\SASCore64.exe -- (!SASCORE)
SRV:64bit: - [2011/05/13 17:58:10 | 000,030,520 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Windows\SysNative\hpservice.exe -- (hpsrv)
SRV:64bit: - [2011/01/14 13:35:58 | 000,341,296 | ---- | M] (Nitro PDF Software) [Auto | Running] -- C:\Program Files\Common Files\Nitro PDF\Reader\1.0\NitroPDFReaderDriverServicex64.exe -- (NitroReaderDriverReadSpool)
SRV:64bit: - [2010/10/08 15:17:42 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2010/09/14 15:57:34 | 000,263,168 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Program Files\IDT\WDM\stacsv64.exe -- (STacSV)
SRV:64bit: - [2010/09/14 15:57:26 | 000,089,600 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Program Files\IDT\WDM\AESTSr64.exe -- (AESTFilters)
SRV:64bit: - [2010/08/05 18:51:08 | 000,291,896 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe -- (HPClientSvc)
SRV:64bit: - [2010/07/21 13:33:00 | 000,103,992 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe -- (HP Wireless Assistant Service)
SRV:64bit: - [2009/07/13 17:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/04/30 15:01:00 | 000,190,488 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files\Common Files\logishrd\LVMVFM\LVPrcSrv.exe -- (LVPrcS64)
SRV - [2013/02/27 03:36:38 | 000,251,248 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013/01/08 12:55:20 | 000,161,536 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012/12/18 06:28:08 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012/12/14 20:38:46 | 001,236,968 | ---- | M] (Lavasoft Limited) [Auto | Running] -- C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe -- (Ad-Aware Service)
SRV - [2012/12/14 16:49:28 | 000,682,344 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012/12/14 16:49:28 | 000,398,184 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2012/09/20 05:39:12 | 003,677,000 | ---- | M] (GFI Software) [Auto | Running] -- C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe -- (SBAMSvc)
SRV - [2012/08/08 16:53:01 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2011/10/01 08:30:22 | 000,219,496 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa)
SRV - [2011/10/01 08:30:18 | 000,508,776 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist)
SRV - [2011/09/09 16:10:28 | 000,086,072 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe -- (HP Support Assistant Service)
SRV - [2011/08/19 08:26:50 | 000,450,848 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe -- (UMVPFSrv)
SRV - [2011/03/28 16:07:50 | 000,094,264 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe -- (HPDrvMntSvc.exe)
SRV - [2010/09/28 17:08:58 | 000,026,680 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe -- (HPWMISVC)
SRV - [2010/09/21 15:52:04 | 000,245,232 | ---- | M] (CyberLink) [Auto | Stopped] -- C:\Program Files (x86)\Hewlett-Packard\Media\DVD\Kernel\HDDVD\NavFilter\kmsvc.exe -- (CLKMSVC10_C6F09094)
SRV - [2010/09/11 01:02:22 | 000,399,344 | ---- | M] (Roxio) [Auto | Running] -- C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe -- (RoxioNow Service)
SRV - [2010/06/18 17:59:12 | 000,246,520 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe -- (GameConsoleService)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/10 13:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2013/01/30 09:40:44 | 000,014,456 | ---- | M] (GFI Software) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\gfibto.sys -- (gfibto)
DRV:64bit: - [2013/01/20 15:59:04 | 000,130,008 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2012/12/14 16:49:28 | 000,024,176 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2012/08/23 06:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012/08/23 06:07:35 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2012/06/20 09:42:44 | 003,678,720 | ---- | M] (Qualcomm Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:64bit: - [2012/02/29 22:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012/02/15 10:01:50 | 000,052,736 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2011/10/01 08:30:22 | 000,022,376 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftvollh.sys -- (Sftvol)
DRV:64bit: - [2011/10/01 08:30:18 | 000,268,648 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftplaylh.sys -- (Sftplay)
DRV:64bit: - [2011/10/01 08:30:18 | 000,025,960 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftredirlh.sys -- (Sftredir)
DRV:64bit: - [2011/10/01 08:30:10 | 000,764,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftfslh.sys -- (Sftfs)
DRV:64bit: - [2011/08/19 08:27:30 | 004,869,024 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lvuvc64.sys -- (LVUVC64)
DRV:64bit: - [2011/08/19 08:27:30 | 000,351,136 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lvrs64.sys -- (LVRS64)
DRV:64bit: - [2011/07/22 08:26:56 | 000,014,928 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys -- (SASDIFSV)
DRV:64bit: - [2011/07/12 13:55:18 | 000,012,368 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\saskutil64.sys -- (SASKUTIL)
DRV:64bit: - [2011/06/10 05:34:52 | 000,539,240 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2011/06/07 01:56:48 | 000,082,816 | ---- | M] (VSO Software) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pcouffin.sys -- (pcouffin)
DRV:64bit: - [2011/05/13 17:58:16 | 000,030,008 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hpdskflt.sys -- (hpdskflt)
DRV:64bit: - [2011/05/13 17:57:58 | 000,043,320 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Accelerometer.sys -- (Accelerometer)
DRV:64bit: - [2011/04/21 10:31:46 | 000,024,408 | ---- | M] (NETGATE Technologies s.r.o.) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\spyemrg_access.sys -- (SpyEmrgAccess)
DRV:64bit: - [2011/04/21 10:31:40 | 000,018,776 | ---- | M] (NETGATE Technologies s.r.o.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\spyemrg_guard.sys -- (SpyEmrgGuard)
DRV:64bit: - [2011/04/21 10:31:32 | 000,017,240 | ---- | M] (NETGATE Technologies s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\spyemrg.sys -- (SpyEmrg)
DRV:64bit: - [2011/03/28 09:46:40 | 000,146,568 | ---- | M] (Tonec Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\idmwfp.sys -- (IDMWFP)
DRV:64bit: - [2011/03/10 22:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/10 22:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010/12/16 14:58:14 | 000,040,816 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ElbyCDIO.sys -- (ElbyCDIO)
DRV:64bit: - [2010/11/20 05:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 01:37:42 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2010/10/08 15:18:06 | 000,125,456 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2010/10/08 15:18:04 | 000,038,528 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)
DRV:64bit: - [2010/10/08 15:18:04 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie64.sys -- (AtiPcie)
DRV:64bit: - [2010/10/08 15:17:44 | 007,767,552 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2010/10/08 15:17:44 | 000,279,040 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2010/09/14 16:06:08 | 000,239,136 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:64bit: - [2010/09/14 15:57:40 | 000,515,584 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA)
DRV:64bit: - [2010/09/03 17:13:32 | 000,031,088 | ---- | M] (CyberLink Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\clwvd.sys -- (clwvd)
DRV:64bit: - [2010/08/20 02:45:28 | 000,654,720 | ---- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\emBDA64.sys -- (USB28xxBGA)
DRV:64bit: - [2010/08/20 02:44:48 | 000,943,872 | ---- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\emOEM64.sys -- (USB28xxOEM)
DRV:64bit: - [2010/05/07 17:43:30 | 000,030,304 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2Mon)
DRV:64bit: - [2010/05/07 17:43:30 | 000,030,304 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2M64)
DRV:64bit: - [2010/01/26 18:09:02 | 000,047,632 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\npf.sys -- (npf)
DRV:64bit: - [2009/07/13 17:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 17:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 17:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/22 19:38:34 | 000,116,992 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ewusbmdm.sys -- (hwdatacard)
DRV:64bit: - [2009/06/22 19:26:40 | 000,113,792 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ewusbdev.sys -- (hwusbdev)
DRV:64bit: - [2009/06/10 13:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTDPV6.SYS -- (SrvHsfV92)
DRV:64bit: - [2009/06/10 13:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS -- (SrvHsfWinac)
DRV:64bit: - [2009/06/10 13:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTAZL6.SYS -- (SrvHsfHDA)
DRV:64bit: - [2009/06/10 12:37:05 | 006,108,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2009/06/10 12:35:33 | 000,389,120 | ---- | M] (Marvell) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)
DRV:64bit: - [2009/06/10 12:35:28 | 005,434,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netw5v64.sys -- (netw5v64)
DRV:64bit: - [2009/06/10 12:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 12:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 12:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 12:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/05/18 12:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2008/04/29 16:24:58 | 000,378,664 | ---- | M] (Swisscom) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wtsmpflt.sys -- (WtSmpFlt)
DRV:64bit: - [2008/04/29 16:24:58 | 000,056,104 | ---- | M] (Swisscom) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wtsmpadap.sys -- (wtsmpadap)
DRV:64bit: - [2008/04/03 09:02:16 | 000,079,872 | ---- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\emAudio64.sys -- (emAudio)
DRV:64bit: - [2006/06/16 15:50:34 | 000,275,968 | ---- | M] (Synaptics, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV - [2009/07/13 17:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2005/02/03 01:50:28 | 000,004,224 | ---- | M] () [File_System | System | Unknown] -- C:\Windows\SysWow64\StarOpen.sys -- (StarOpen)
DRV - [1999/09/10 12:06:00 | 000,025,244 | ---- | M] (Adaptec) [Kernel | System | Stopped] -- C:\Windows\SysWow64\drivers\aspi32.sys -- (Aspi32)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPNOT/1
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.funmood...E&cr=1222258573
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {ec29edf6-ad3c-4e1c-a087-d6cb81400c43}
IE:64bit: - HKLM\..\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}: "URL" = http://search.ask.co...&l=dis&o=HPNTDF
IE:64bit: - HKLM\..\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}: "URL" = http://search.yahoo....psg&type=HPNTDF
IE:64bit: - HKLM\..\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}: "URL" = http://en.wikipedia....h={searchTerms}
IE:64bit: - HKLM\..\SearchScopes\{d944bb61-2e34-4dbf-a683-47e505c587dc}: "URL" = http://rover.ebay.co...}&mfe=Notebooks
IE:64bit: - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://start.funmood...E&cr=1222258573
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPNOT/1
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.easyli...912&lg=EN&cc=US
IE - HKLM\..\SearchScopes,Backup.Old.DefaultScope = {ec29edf6-ad3c-4e1c-a087-d6cb81400c43}
IE - HKLM\..\SearchScopes,DefaultScope = {ec29edf6-ad3c-4e1c-a087-d6cb81400c43}
IE - HKLM\..\SearchScopes\{01bd49d7-c76b-4310-8beb-14d7e5f322c6}: "URL" = http://search.easyli...912&lg=EN&cc=US
IE - HKLM\..\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}: "URL" = http://search.ask.co...&l=dis&o=HPNTDF
IE - HKLM\..\SearchScopes\{6DF1C33E-C0B9-75F9-B506-250E091C4DC1}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKLM\..\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}: "URL" = http://search.yahoo....psg&type=HPNTDF
IE - HKLM\..\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}: "URL" = http://en.wikipedia....h={searchTerms}
IE - HKLM\..\SearchScopes\{d944bb61-2e34-4dbf-a683-47e505c587dc}: "URL" = http://rover.ebay.co...}&mfe=Notebooks
IE - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://start.funmood...E&cr=1222258573
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Backup.Old.Start Page = http://search.babylo...0008e9ffa47a16d
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPNOT/1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://search.pch.co...LAS VEGAS&st=NV
IE - HKCU\..\URLSearchHook: {b2ed7faf-72a0-46d1-9d9d-602226f5cb9f} - No CLSID value found
IE - HKCU\..\URLSearchHook: {B922D405-6D13-4A2B-AE89-08A030DA4402} - No CLSID value found
IE - HKCU\..\SearchScopes,Backup.Old.DefaultScope = {4408C5D3-D063-47B7-F412-10B06D154E1C}
IE - HKCU\..\SearchScopes,DefaultScope = {ec29edf6-ad3c-4e1c-a087-d6cb81400c43}
IE - HKCU\..\SearchScopes\{01bd49d7-c76b-4310-8beb-14d7e5f322c6}: "URL" = http://search.easyli...912&lg=EN&cc=US
IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylo...0008e9ffa47a16d
IE - HKCU\..\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}: "URL" = http://search.ask.co...&l=dis&o=HPNTDF
IE - HKCU\..\SearchScopes\{329DF456-2B9A-1254-3222-23D6BB4C8442}: "URL" = http://ics.asksearch...g=2-441-0-3bsx1
IE - HKCU\..\SearchScopes\{4408C5D3-D063-47B7-F412-10B06D154E1C}: "URL" = http://start.funmood...E&cr=1222258573
IE - HKCU\..\SearchScopes\{5B79D585-7A5A-4418-B472-F710C358C633}: "URL" = http://search.condui...&ctid=CT3059010
IE - HKCU\..\SearchScopes\{6DF1C33E-C0B9-75F9-B506-250E091C4DC1}: "URL" = http://www.bing.com/...eferrer:source}
IE - HKCU\..\SearchScopes\{A9C475D2-0D39-C58A-F73C-57614B472EAC}: "URL" = http://www.bing.com/...UGO&form=ZGAIDF
IE - HKCU\..\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}: "URL" = http://search.yahoo....psg&type=HPNTDF
IE - HKCU\..\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}: "URL" = http://en.wikipedia....h={searchTerms}
IE - HKCU\..\SearchScopes\{d944bb61-2e34-4dbf-a683-47e505c587dc}: "URL" = http://rover.ebay.co...}&mfe=Notebooks
IE - HKCU\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKCU\..\SearchScopes\{F5362F6A-4F82-4B81-A668-35401F8BEBDE}: "URL" = http://no.search.yah...p={searchTerms}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=;ftp=;https=;
========== FireFox ==========
FF - prefs.js..backup.old.browser.search.defaultenginename: "Search the web (Babylon)"
FF - prefs.js..backup.old.browser.search.selectedEngine: "Search the web (Babylon)"
FF - prefs.js..browser.startup.homepage: "http://search.babylo...008e9ffa47a16d"
FF - prefs.js..browser.search.defaultenginename: "EasyLife"
FF - prefs.js..browser.search.defaultenginename,S: S", "EasyLife"
FF - prefs.js..browser.search.defaultthis.engineName: "Vgrabber Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.easyli...N&cc=US&l=1&q="
FF - prefs.js..browser.search.order.1: "EasyLife"
FF - prefs.js..browser.search.order.1,S: S", "EasyLife"
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=827316"
FF - prefs.js..browser.search.selectedEngine: "Search Defender"
FF - prefs.js..browser.search.selectedEngine,S: S", "EasyLife"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://google.com"
FF - prefs.js..extensions.enabledAddons: [email protected]:1.2.4
FF - prefs.js..extensions.enabledAddons: [email protected]:1.0
FF - prefs.js..extensions.enabledAddons: {DDC359D1-844A-42a7-9AA1-88A850A938A8}:2.0.15
FF - prefs.js..extensions.enabledAddons: [email protected]:1.0
FF - prefs.js..extensions.enabledAddons: {5d5886b5-56e6-4327-94dd-7560f56dc9ce}:3.0.1
FF - prefs.js..extensions.enabledAddons: {317B5128-0B0B-49b2-B2DB-1E7560E16C74}:2.8.8
FF - prefs.js..keyword.URL: "http://search.easyli...N&cc=US&l=1&q="
FF - prefs.js..network.proxy.gopher: ""
FF - prefs.js..network.proxy.gopher_port: 0
FF - prefs.js..network.proxy.share_proxy_settings: true
FF - prefs.js..network.proxy.type: 0
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaultenginename: ""
FF - prefs.js..sweetim.toolbar.previous.browser.search.selectedEngine: ""
FF - prefs.js..browser.startup.homepage: ""
FF - prefs.js..sweetim.toolbar.previous.keyword.URL: ""
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_6_602_171.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_171.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.7.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@photoproduct.rocketlife.com/RocketLife App Viewer;version=0.8: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=15.0.0.198: c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=15.0.0.198: c:\program files (x86)\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=15.0.0.198: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=15.0.0.198: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=15.0.0.198: c:\program files (x86)\real\realplayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=1.1.11: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (the VideoLAN Team)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@hulu.com/Hulu Desktop: C:\Windows\..\Users\Default\AppData\Local\HuluDesktop\instances\0.9.13.1\npHDPlg.dll ()
FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\dogonit23\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O1DPlugin: C:\Users\dogonit23\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Users\dogonit23\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\dogonit23\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\dogonit23\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}: C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DMExtension\ [2011/01/03 01:22:51 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2011/12/04 11:24:44 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/01/30 09:39:51 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/02/23 17:55:22 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[email protected]: C:\Users\dogonit23\AppData\Roaming\IDM\idmmzcc3 [2012/02/14 11:38:26 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/01/30 09:39:51 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/02/23 17:55:22 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\[email protected]: C:\Users\dogonit23\AppData\Roaming\IDM\idmmzcc3 [2012/02/14 11:38:26 | 000,000,000 | ---D | M]
[2011/03/22 21:42:04 | 000,000,000 | ---D | M] (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Extensions
[2013/02/23 11:10:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\extensions
[2013/02/23 11:10:51 | 000,000,000 | ---D | M] (SeoQuake) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\extensions\{317B5128-0B0B-49b2-B2DB-1E7560E16C74}
[2011/06/23 12:07:46 | 000,000,000 | ---D | M] (Freecorder Toolbar) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\extensions\{70dd86e8-b5bc-4e4a-9d5c-b6234c24323c}
[2013/02/11 13:08:33 | 000,000,000 | ---D | M] (Vgrabber Community Toolbar) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\extensions\{b2ed7faf-72a0-46d1-9d9d-602226f5cb9f}
[2013/01/30 09:39:35 | 000,000,000 | ---D | M] (Lavasoft Search Plugin) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack
[2012/03/02 12:06:01 | 000,135,903 | ---- | M] () (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\extensions\[email protected]
[2012/11/26 23:32:18 | 002,042,908 | ---- | M] () (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\extensions\[email protected]
[2012/04/01 02:46:11 | 000,002,095 | ---- | M] () (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\extensions\[email protected]
[2013/01/24 13:02:06 | 000,004,526 | ---- | M] () (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\extensions\[email protected]
[2011/10/28 13:45:18 | 000,061,854 | ---- | M] () (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\extensions\[email protected]
[2011/06/09 17:39:45 | 000,077,793 | ---- | M] () (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\extensions\{02450954-cdd9-410f-b1da-db804e18c671}.xpi
[2013/01/30 09:26:53 | 000,003,971 | ---- | M] () (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\extensions\{5d5886b5-56e6-4327-94dd-7560f56dc9ce}.xpi
[2013/01/13 14:27:07 | 000,316,778 | ---- | M] () (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\extensions\{c50ca3c4-5656-43c2-a061-13e717f73fc8}.xpi
[2012/09/13 13:24:46 | 000,698,867 | ---- | M] () (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi
[2011/07/31 16:51:07 | 000,001,945 | ---- | M] () -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\searchplugins\bing-zugo.xml
[2012/01/05 15:16:56 | 000,000,919 | ---- | M] () -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\searchplugins\conduit.xml
[2013/02/06 20:49:01 | 000,000,568 | ---- | M] () -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\searchplugins\EasyLife.xml
[2013/02/19 11:05:59 | 000,002,349 | ---- | M] () -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\searchplugins\search-defender.xml
[2012/06/25 09:17:11 | 000,002,303 | ---- | M] () -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\searchplugins\Search.xml
[2011/12/09 16:27:14 | 000,006,116 | ---- | M] () -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\dlp00xlg.default\searchplugins\simpleology.xml
[2013/02/19 14:09:18 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2012/04/29 00:23:21 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2012/08/08 16:53:03 | 000,136,672 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2012/10/19 15:18:49 | 000,248,192 | ---- | M] (Coupons, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npCouponPrinter.dll
[2012/10/19 15:18:57 | 000,248,192 | ---- | M] (Coupons, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npMozCouponPrinter.dll
[2012/07/21 01:35:06 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2010/01/01 00:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml.old
[2012/07/21 01:35:06 | 000,002,040 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml
========== Chrome ==========
CHR - homepage:
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\bodmmjnpfmdaffmfjojgbiglpnlbkjea\1.2.17_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\filcdchddjiekgohoaojfoofhbfbamig\1.0.1_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\gllmkcahdekdbapmdfnffclacbpnicaj\4.2.6_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk\1.5_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.2023_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.9.0.9216_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfabdkmgodmpnidagmhhmhmdbchmejda\0.7.8.1004_0\
O1 HOSTS File: ([2013/01/29 11:50:01 | 000,001,543 | RHS- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O1 - Hosts: 192.157.56.28 www.google-analytics.com.
O1 - Hosts: 192.157.56.28 ad-emea.doubleclick.net.
O1 - Hosts: 192.157.56.28 www.statcounter.com.
O1 - Hosts: 192.157.56.28 connect.facebook.net.
O1 - Hosts: 192.157.56.28 platform.twitter.com.
O1 - Hosts: 93.115.241.27 www.google-analytics.com.
O1 - Hosts: 93.115.241.27 ad-emea.doubleclick.net.
O1 - Hosts: 93.115.241.27 www.statcounter.com.
O1 - Hosts: 93.115.241.27 connect.facebook.net.
O1 - Hosts: 93.115.241.27 platform.twitter.com.
O2:64bit: - BHO: (IDM integration (IDMIEHlprObj Class)) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll (Internet Download Manager, Tonec Inc.)
O2:64bit: - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No CLSID value found.
O2 - BHO: (IDM integration (IDMIEHlprObj Class)) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll (Internet Download Manager, Tonec Inc.)
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (Freecorder Toolbar) - {70dd86e8-b5bc-4e4a-9d5c-b6234c24323c} - C:\Program Files (x86)\freecordertoolbar\vmntemplateX.dll ()
O2 - BHO: (Reg Error: Value error.) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (no name) - {CF070CB8-F02F-4af4-A7B7-8D45CAD4BB54} - No CLSID value found.
O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Freecorder Toolbar) - {70dd86e8-b5bc-4e4a-9d5c-b6234c24323c} - C:\Program Files (x86)\freecordertoolbar\vmntemplateX.dll ()
O3 - HKLM\..\Toolbar: (&RoboForm) - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKCU\..\Toolbar\WebBrowser: (&RoboForm) - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O4:64bit: - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
O4:64bit: - HKLM..\Run: [CanonSolutionMenu] C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.)
O4:64bit: - HKLM..\Run: [itype] c:\Program Files\Microsoft IntelliType Pro\itype.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [SmartMenu] C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe ()
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Acrobat Assistant 7.0] C:\Program Files (x86)\Adobe\Acrobat 7.0\Distillr\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Ad-Aware Antivirus] C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareLauncher.exe (Lavasoft Limited)
O4 - HKLM..\Run: [Ad-Aware Browsing Protection] C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe (Lavasoft)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [LogitechQuickCamRibbon] C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe ()
O4 - HKCU..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe (Tonec Inc.)
O4 - HKCU..\Run: [Logitech Vid] C:\Program Files (x86)\Logitech\Logitech Vid\vid.exe (Logitech Inc.)
O4 - HKCU..\Run: [RoboForm] C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe (Siber Systems)
O4 - HKCU..\Run: [SpyEmergency] C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe (NETGATE Technologies s.r.o.)
O4 - HKCU..\Run: [SubVid] C:\Program Files (x86)\MindMovies\Subliminal\SubVid.exe (Mind Movies Pty Ltd Australia)
O4 - HKCU..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware.com)
O4 - HKCU..\Run: [updateMgr] C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AdobeUpdateManager.exe (Adobe Systems Incorporated)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Activities present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O8:64bit: - Extra context menu item: Convert link target to Adobe PDF - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert link target to existing PDF - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert selected links to Adobe PDF - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert selected links to existing PDF - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert selection to Adobe PDF - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert selection to existing PDF - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert to existing PDF - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Customize Menu - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html ()
O8:64bit: - Extra context menu item: Download all links with IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm ()
O8:64bit: - Extra context menu item: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm ()
O8:64bit: - Extra context menu item: Fill Forms - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O8:64bit: - Extra context menu item: RoboForm Toolbar - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O8:64bit: - Extra context menu item: Save Forms - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O8:64bit: - Extra context menu item: Save Page As PDF ... - C:\Program Files (x86)\Nitro PDF\PDF Download\nitroweb.htm ()
O8 - Extra context menu item: Convert link target to Adobe PDF - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert link target to existing PDF - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert selected links to Adobe PDF - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert selected links to existing PDF - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert selection to Adobe PDF - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert selection to existing PDF - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to existing PDF - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Customize Menu - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html ()
O8 - Extra context menu item: Download all links with IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm ()
O8 - Extra context menu item: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm ()
O8 - Extra context menu item: Fill Forms - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O8 - Extra context menu item: RoboForm Toolbar - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O8 - Extra context menu item: Save Forms - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O8 - Extra context menu item: Save Page As PDF ... - C:\Program Files (x86)\Nitro PDF\PDF Download\nitroweb.htm ()
O9 - Extra Button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra 'Tools' menuitem : Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra Button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra 'Tools' menuitem : Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra Button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O9 - Extra 'Tools' menuitem : RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: samsungsetup.com ([www] http in Trusted sites)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.9.2)
O16 - DPF: {CAFEEFAC-0017-0000-0009-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.7.0_09)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.7.0_09)
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} https://akamaicdn.we...nt/ieatgpc1.cab (GpcContainer Class)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{03E2D4D8-4331-4BF1-807E-B2127DD99B44}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2A907A11-940D-4C2F-BAD7-A1C33153ADAE}: DhcpNameServer = 192.168.1.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap11 - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18:64bit: - Protocol\Filter\text/xml - No CLSID value found
O20 - AppInit_DLLs: (c:\progra~2\browse~1\sprote~1.dll) - c:\Program Files (x86)\BrowseToSave\sprotector.dll ()
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O22:64bit: - SharedTaskScheduler: {1984DD45-52CF-49cd-AB77-18F378FEA264} - FencesShellExt - C:\Program Files\Stardock\Fences Pro\FencesMenu64.dll (Stardock)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011/08/18 23:41:32 | 000,000,000 | RH-D | M] - F:\autorun -- [ NTFS ]
O32 - AutoRun File - [2002/10/16 04:56:50 | 000,000,036 | RH-- | M] () - F:\autorun.inf -- [ NTFS ]
O33 - MountPoints2\{3351cf1e-3304-11e0-a48e-889ffa47a16d}\Shell - "" = AutoRun
O33 - MountPoints2\{3f0af488-3258-11e0-a464-889ffa47a16d}\Shell - "" = AutoRun
O33 - MountPoints2\{3f0af488-3258-11e0-a464-889ffa47a16d}\Shell\AutoRun\command - "" = G:\MobileBroadbandSetup.exe AUTORUN=1
O33 - MountPoints2\{4f8bcb74-57df-11e0-a859-889ffa47a16d}\Shell - "" = AutoRun
O33 - MountPoints2\{6830baea-3809-11e0-8fe3-889ffa47a16d}\Shell - "" = AutoRun
O33 - MountPoints2\{6830bd78-3809-11e0-8fe3-8e9ffa47a16d}\Shell - "" = AutoRun
O33 - MountPoints2\{78ecf0f7-35bd-11e0-b4a5-889ffa47a16d}\Shell - "" = AutoRun
O33 - MountPoints2\{a76b7489-3229-11e0-bda5-00ade1ac1c1a}\Shell - "" = AutoRun
O33 - MountPoints2\{a76b7489-3229-11e0-bda5-00ade1ac1c1a}\Shell\AutoRun\command - "" = G:\MobileBroadbandSetup.exe AUTORUN=1
O33 - MountPoints2\{cd07f910-37a8-11e0-8467-889ffa47a16d}\Shell - "" = AutoRun
O33 - MountPoints2\{f48b2d6d-32a1-11e0-88a8-00ade1ac1c1a}\Shell - "" = AutoRun
O33 - MountPoints2\{f48b2d6d-32a1-11e0-88a8-00ade1ac1c1a}\Shell\AutoRun\command - "" = G:\MobileBroadbandSetup.exe AUTORUN=1
O33 - MountPoints2\{ff4abf91-32ab-11e0-a1bd-889ffa47a16d}\Shell - "" = AutoRun
O33 - MountPoints2\{ff4abf91-32ab-11e0-a1bd-889ffa47a16d}\Shell\AutoRun\command - "" = G:\MobileBroadbandSetup.exe AUTORUN=1
O33 - MountPoints2\{ff4abf9d-32ab-11e0-a1bd-889ffa47a16d}\Shell - "" = AutoRun
O33 - MountPoints2\{ff4abf9d-32ab-11e0-a1bd-889ffa47a16d}\Shell\AutoRun\command - "" = G:\MobileBroadbandSetup.exe AUTORUN=1
O33 - MountPoints2\{ff4abfad-32ab-11e0-a1bd-889ffa47a16d}\Shell - "" = AutoRun
O33 - MountPoints2\{ff4abfad-32ab-11e0-a1bd-889ffa47a16d}\Shell\AutoRun\command - "" = G:\MobileBroadbandSetup.exe AUTORUN=1
O33 - MountPoints2\G\Shell - "" = AutoRun
O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\MobileBroadbandSetup.exe AUTORUN=1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2013/03/05 13:16:17 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{BCC22C11-68B6-49A1-A8DF-39FAF7D04C8F}
[2013/03/05 01:15:50 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{894B8F5A-703F-4A15-A536-A4CE3499963D}
[2013/03/04 13:15:24 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{31114E7B-5E02-48A7-AA7E-F7CE963E2E8B}
[2013/03/04 01:14:58 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{4C111410-12E2-4AA9-8147-1069BCD292AF}
[2013/03/03 13:14:17 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{B75AE968-5C02-497D-A84D-DAEED3B73388}
[2013/03/03 01:13:38 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{4D6249DF-E13F-45BB-929A-44AB7936B771}
[2013/03/02 13:13:26 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{BBE629BD-7E58-47ED-88A2-A4299AA97211}
[2013/03/02 01:13:00 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{C2D03709-8F3E-4C4C-A3DD-FB3ABC022DAE}
[2013/03/01 13:12:32 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{D876318C-E4D8-4A6A-8F53-2CE9914ED93B}
[2013/03/01 01:12:03 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{1193C18F-AA3F-44DB-B8E9-AA55830017F0}
[2013/02/28 13:11:28 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{78E3B802-A1AA-48CF-AEF2-E576E70B6D00}
[2013/02/28 01:11:00 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{8D763294-DEA5-48E1-A807-8E09123CCD48}
[2013/02/27 13:10:35 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{832F4F12-079F-4C0C-B1A6-DC386CF8583B}
[2013/02/27 01:10:08 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{F6AD11CB-64DB-4B6D-B340-70F047DB4CA9}
[2013/02/26 13:09:56 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{7B1490A4-5270-4FFE-9868-2FA9E4094D73}
[2013/02/26 03:31:32 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Spy Emergency
[2013/02/26 03:31:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spy Emergency
[2013/02/26 03:31:28 | 000,024,408 | ---- | C] (NETGATE Technologies s.r.o.) -- C:\Windows\SysNative\drivers\spyemrg_access.sys
[2013/02/26 03:31:28 | 000,018,776 | ---- | C] (NETGATE Technologies s.r.o.) -- C:\Windows\SysNative\drivers\spyemrg_guard.sys
[2013/02/26 03:31:28 | 000,017,240 | ---- | C] (NETGATE Technologies s.r.o.) -- C:\Windows\SysNative\drivers\spyemrg.sys
[2013/02/26 03:31:22 | 000,000,000 | ---D | C] -- C:\ProgramData\NETGATE
[2013/02/26 03:30:11 | 000,000,000 | ---D | C] -- C:\Program Files\NETGATE
[2013/02/26 01:09:26 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{7B3748D5-E710-471A-99F6-3803CE836BA7}
[2013/02/25 18:45:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\High Bar Media
[2013/02/25 18:42:22 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\llt
[2013/02/25 18:41:40 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\LocalizerLeadsTool
[2013/02/25 18:39:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Localizer Leads Tool
[2013/02/25 13:08:46 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{FA7D6533-FDDC-4F72-8AAB-99FFC4B4FB6C}
[2013/02/25 01:08:04 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{CBC354EB-3589-4FAF-AFDE-D800BE0F865B}
[2013/02/24 13:07:33 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{8CFD2767-2FA6-4CA4-853D-800B955A5C99}
[2013/02/24 04:20:31 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Traffic Phoenix
[2013/02/24 04:20:18 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\TrafficPhoenix
[2013/02/24 04:20:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TrafficPhoenix
[2013/02/24 01:07:07 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{199D6502-784A-464B-8481-CD0DD720CB6E}
[2013/02/23 20:47:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Datagenn
[2013/02/23 20:47:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Datagenn.com
[2013/02/23 16:37:49 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Site Profit Bot
[2013/02/23 16:37:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Site Profit Bot
[2013/02/23 13:06:42 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{8B56063C-7DA6-4310-9F66-C49110318934}
[2013/02/23 01:06:16 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{7C575F13-6D79-4950-A2D7-6E582F8DCC75}
[2013/02/22 13:06:03 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{5B19E07B-8D65-449E-871A-7DC2E6B1F545}
[2013/02/22 07:49:50 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\CurationSoft
[2013/02/22 07:49:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CurationSoft
[2013/02/22 01:05:37 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{5833F075-60C4-4E65-A849-A7688459DA11}
[2013/02/21 13:05:10 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{6D7A5298-D4F3-4060-BF48-FD8947CCBDDB}
[2013/02/21 01:04:40 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{E23DBAF1-F679-4319-B28A-BD023AB5799D}
[2013/02/20 13:04:24 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{F0F8634B-2CE7-4E6E-B868-8B4FFF6EFB80}
[2013/02/19 22:38:33 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{476D7572-9EDC-45F7-A4F8-D6CBF03AA511}
[2013/02/19 11:41:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Doctor
[2013/02/19 11:41:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Windows Doctor
[2013/02/19 11:23:16 | 000,000,000 | -HSD | C] -- C:\Windows\SysWow64\AI_RecycleBin
[2013/02/19 11:22:59 | 000,000,000 | -HSD | C] -- C:\AI_RecycleBin
[2013/02/19 10:37:34 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{C4E733B2-F6D9-4C54-8AD4-A415FDBAC368}
[2013/02/18 21:56:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PC Tools
[2013/02/18 21:47:10 | 000,253,256 | ---- | C] (PC Tools) -- C:\Windows\SysNative\drivers\PCTSD64.sys
[2013/02/18 21:47:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\PC Tools
[2013/02/18 21:45:48 | 000,000,000 | ---D | C] -- C:\ProgramData\PC Tools
[2013/02/18 21:45:46 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\TestApp
[2013/02/18 21:03:40 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\Coupon Companion Plugin
[2013/02/18 17:04:07 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{E7D9500C-6CD7-4D15-89D3-8EC865629FD6}
[2013/02/18 02:18:12 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{AA51CE63-3F4A-4960-865F-28D07E3BD559}
[2013/02/17 14:17:24 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{17ED307C-3048-4DF1-B673-D2805BAC316D}
[2013/02/17 02:16:22 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{D689AB9D-6D5C-4DCE-8FD4-C8742B05F6DE}
[2013/02/16 14:15:53 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{ACCAB741-5513-426B-B32D-F9C0EC14F5C6}
[2013/02/16 02:15:25 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{64EF126C-3544-454A-85C4-8A3FD6D3DC09}
[2013/02/15 14:21:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Social Prospector
[2013/02/15 14:20:56 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\Social Prospector
[2013/02/15 12:49:56 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{40CDCE62-D852-43DC-8821-423A74387332}
[2013/02/15 00:49:30 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{E9C44966-EB40-4548-896D-F65E9162E266}
[2013/02/14 12:49:03 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{A5D55DE3-5A0E-4087-A372-44A658602492}
[2013/02/14 00:48:36 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{9D02FF20-64AE-45B0-9C9C-CDF3ED2DA102}
[2013/02/13 12:48:09 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{3C1FC0F1-9A46-49AD-BA29-01ABBC7EF78B}
[2013/02/13 00:47:42 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{A996A501-2352-418B-B4AB-8DA6FECDA16E}
[2013/02/12 12:47:16 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{7723B0D0-16B5-4038-B551-F1F5D51169CA}
[2013/02/12 00:46:46 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{5BBAEF49-B136-477B-8756-ED5123207A4D}
[2013/02/11 17:42:49 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{84A68319-134E-DB01-6F41-2CF64EE87AA9}
[2013/02/11 12:46:04 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{1A1484DD-E67C-4B50-BE66-A48BD18609B2}
[2013/02/11 00:45:30 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{DD751616-A238-46C4-856A-7C490693AE2E}
[2013/02/10 14:51:33 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\ubot
[2013/02/10 12:45:14 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{F626322F-1426-4436-BD29-F78DF20C3E1B}
[2013/02/10 00:44:30 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{CA049958-7BBB-41B7-A5E8-062D34C296E7}
[2013/02/09 12:44:17 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{A73FDECB-35F1-403D-B36B-A6BB15269C55}
[2013/02/09 00:43:47 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{CB784833-3976-4C3C-93C9-F73D1433608E}
[2013/02/09 00:37:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2013/02/09 00:37:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2013/02/08 12:42:56 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{05FD35FA-C6BD-4412-B503-071BABCAC84E}
[2013/02/08 00:42:39 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{9FA30107-DE22-4FDC-9790-B6A11BC6E095}
[2013/02/07 12:18:45 | 000,000,000 | ---D | C] -- C:\Flight 2
[2013/02/07 11:38:13 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{1DBB43D4-03E3-4F4A-8085-7212D7BA3740}
[2013/02/06 23:37:47 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{7AAB4003-9AB5-4719-A92A-2924EE93B176}
[2013/02/06 21:38:25 | 000,000,000 | ---D | C] -- C:\Flight
[2013/02/06 21:25:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDFab 9
[2013/02/06 21:24:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DVDFab 9
[2013/02/06 20:50:40 | 000,000,000 | ---D | C] -- C:\ProgramData\RightClick
[2013/02/06 20:49:31 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\SendSpace
[2013/02/06 20:49:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\EasyLife
[2013/02/06 20:48:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\BrowseToSave
[2013/02/06 20:47:40 | 000,000,000 | ---D | C] -- C:\ProgramData\InstallMate
[2013/02/06 11:37:20 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{310FEF2F-1ABE-471C-92E9-204C9F9CE53C}
[2013/02/05 23:36:53 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{EE02987D-B00A-4CD9-8B41-43B2372B203F}
[2013/02/05 17:37:45 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Tube Groove
[2013/02/05 17:36:17 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tube Fool
[2013/02/05 17:36:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tube Fool
[2013/02/05 17:36:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Tube Fool
[2013/02/05 11:36:24 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{B8E05911-1490-4D0E-A78E-96D032C22B5E}
[2013/02/04 23:35:51 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{0A3D0D98-4696-4CB5-9DBF-50F6C2303E63}
[2013/02/04 11:35:35 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{8F99D7FC-C8F9-4122-A356-75D1E47CF5F3}
[2013/02/03 18:01:31 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\{9EC566E3-D5A5-492A-80C4-BCE186C9C6C1}
[2011/06/07 01:56:48 | 000,082,816 | ---- | C] (VSO Software) -- C:\Users\dogonit23\AppData\Roaming\pcouffin.sys
[2 C:\*.tmp files -> C:\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2013/03/05 14:36:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013/03/05 14:27:01 | 000,000,904 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013/03/05 13:58:02 | 000,000,924 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2034785586-1586066431-309787569-1000UA.job
[2013/03/05 09:48:02 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/03/05 09:48:01 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/03/05 09:38:45 | 000,001,828 | ---- | M] () -- C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk
[2013/03/05 09:38:39 | 000,000,900 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013/03/05 09:37:52 | 000,000,352 | ---- | M] () -- C:\Windows\tasks\RegistryBooster.job
[2013/03/05 09:36:22 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/03/05 09:36:15 | 3015,888,896 | -HS- | M] () -- C:\hiberfil.sys
[2013/03/05 02:55:44 | 000,001,945 | ---- | M] () -- C:\Windows\epplauncher.mif
[2013/03/04 20:58:01 | 000,000,872 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2034785586-1586066431-309787569-1000Core.job
[2013/02/28 15:02:56 | 000,020,190 | ---- | M] () -- C:\Windows\SysNative\cc_20130228_150248.reg
[2013/02/27 18:06:00 | 000,000,350 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForDOGONIT23-HP$.job
[2013/02/26 03:31:32 | 000,000,989 | ---- | M] () -- C:\Users\Public\Desktop\Spy Emergency.lnk
[2013/02/25 18:45:20 | 000,003,087 | ---- | M] () -- C:\Users\dogonit23\Desktop\Localizer Beta.lnk
[2013/02/25 18:39:06 | 000,000,951 | ---- | M] () -- C:\Users\Public\Desktop\Localizer Leads Tool.lnk
[2013/02/25 18:17:24 | 078,418,073 | ---- | M] () -- C:\Users\dogonit23\Desktop\hypersonic profits.mp4
[2013/02/24 04:20:32 | 000,003,087 | ---- | M] () -- C:\Users\dogonit23\Desktop\Traffic Phoenix.lnk
[2013/02/23 20:47:21 | 000,001,140 | ---- | M] () -- C:\Users\dogonit23\Desktop\Viral PDF SE.lnk
[2013/02/23 16:37:49 | 000,001,959 | ---- | M] () -- C:\Users\dogonit23\Desktop\Site Profit Bot.lnk
[2013/02/22 07:49:30 | 000,000,871 | ---- | M] () -- C:\Users\Public\Desktop\CurationSoft.lnk
[2013/02/21 13:12:16 | 000,780,156 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013/02/21 13:12:16 | 000,660,982 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013/02/21 13:12:16 | 000,121,620 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013/02/21 00:20:51 | 000,017,920 | ---- | M] () -- C:\Users\dogonit23\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2013/02/20 20:12:10 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleFordogonit23.job
[2013/02/19 12:15:54 | 000,000,866 | ---- | M] () -- C:\Windows\SysWow64\InstallUtil.InstallLog
[2013/02/19 11:41:34 | 000,001,058 | ---- | M] () -- C:\Users\dogonit23\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Doctor.lnk
[2013/02/19 11:41:34 | 000,001,034 | ---- | M] () -- C:\Users\dogonit23\Desktop\Windows Doctor.lnk
[2013/02/18 21:48:53 | 002,539,975 | ---- | M] () -- C:\Windows\SysNative\drivers\Cat.DB
[2013/02/18 21:10:44 | 000,034,304 | ---- | M] () -- C:\U
[2013/02/18 19:45:42 | 000,003,648 | ---- | M] () -- C:\Windows\SysNative\cc_20130218_194538.reg
[2013/02/18 19:45:02 | 000,030,862 | ---- | M] () -- C:\Windows\SysNative\cc_20130218_194445.reg
[2013/02/18 11:24:15 | 000,000,950 | ---- | M] () -- C:\Users\Public\Desktop\ICCPro.lnk
[2013/02/17 11:21:00 | 000,060,864 | ---- | M] () -- C:\Users\dogonit23\g2mdlhlpx.exe
[2013/02/15 21:02:40 | 000,073,795 | ---- | M] () -- C:\Users\dogonit23\presidential storage payment 2-15-13.pdf
[2013/02/15 15:32:37 | 000,002,619 | ---- | M] () -- C:\Users\Public\Desktop\Niche Sensei.lnk
[2013/02/15 15:15:26 | 000,001,182 | ---- | M] () -- C:\Users\Public\Desktop\The Prospector.lnk
[2013/02/15 14:21:14 | 000,001,197 | ---- | M] () -- C:\Users\Public\Desktop\Social Prospector.lnk
[2013/02/14 15:41:18 | 000,014,046 | ---- | M] () -- C:\Users\dogonit23\Documents\today.eml
[2013/02/14 11:17:06 | 000,448,896 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013/02/12 02:01:26 | 000,000,334 | ---- | M] () -- C:\Windows\SysWow64\CountScans.XML
[2013/02/10 12:09:21 | 000,000,122 | ---- | M] () -- C:\Users\dogonit23\Desktop\Convert Youtube to MP3 & Download Youtube Videos - Free Downloader.url
[2013/02/09 00:37:30 | 000,002,515 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2013/02/08 00:32:35 | 000,015,152 | ---- | M] () -- C:\Windows\SysNative\cc_20130208_003209.reg
[2013/02/07 18:56:05 | 000,000,043 | -HS- | M] () -- C:\ProgramData\.zreglib
[2013/02/06 21:25:15 | 000,000,955 | ---- | M] () -- C:\Users\dogonit23\Desktop\DVDFab 9.lnk
[2013/02/05 17:36:17 | 000,000,989 | ---- | M] () -- C:\Users\dogonit23\Desktop\Tube Fool.lnk
[2 C:\*.tmp files -> C:\*.tmp -> ]
========== Files Created - No Company Name ==========
[2013/02/28 15:02:53 | 000,020,190 | ---- | C] () -- C:\Windows\SysNative\cc_20130228_150248.reg
[2013/02/26 03:31:32 | 000,000,989 | ---- | C] () -- C:\Users\Public\Desktop\Spy Emergency.lnk
[2013/02/25 19:37:46 | 078,418,073 | ---- | C] () -- C:\Users\dogonit23\Desktop\hypersonic profits.mp4
[2013/02/25 18:45:20 | 000,003,087 | ---- | C] () -- C:\Users\dogonit23\Desktop\Localizer Beta.lnk
[2013/02/25 18:45:20 | 000,003,047 | ---- | C] () -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Localizer Beta.lnk
[2013/02/25 18:39:07 | 000,000,963 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Localizer Leads Tool.lnk
[2013/02/25 18:39:06 | 000,000,951 | ---- | C] () -- C:\Users\Public\Desktop\Localizer Leads Tool.lnk
[2013/02/24 04:20:32 | 000,003,087 | ---- | C] () -- C:\Users\dogonit23\Desktop\Traffic Phoenix.lnk
[2013/02/23 20:47:21 | 000,001,140 | ---- | C] () -- C:\Users\dogonit23\Desktop\Viral PDF SE.lnk
[2013/02/23 16:37:49 | 000,001,959 | ---- | C] () -- C:\Users\dogonit23\Desktop\Site Profit Bot.lnk
[2013/02/22 07:49:30 | 000,000,883 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CurationSoft.lnk
[2013/02/22 07:49:30 | 000,000,871 | ---- | C] () -- C:\Users\Public\Desktop\CurationSoft.lnk
[2013/02/19 11:41:34 | 000,001,058 | ---- | C] () -- C:\Users\dogonit23\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Doctor.lnk
[2013/02/19 11:41:34 | 000,001,034 | ---- | C] () -- C:\Users\dogonit23\Desktop\Windows Doctor.lnk
[2013/02/18 21:47:18 | 002,539,975 | ---- | C] () -- C:\Windows\SysNative\drivers\Cat.DB
[2013/02/18 21:10:44 | 000,034,304 | ---- | C] () -- C:\U
[2013/02/18 21:04:22 | 000,000,866 | ---- | C] () -- C:\Windows\SysWow64\InstallUtil.InstallLog
[2013/02/18 19:45:40 | 000,003,648 | ---- | C] () -- C:\Windows\SysNative\cc_20130218_194538.reg
[2013/02/18 19:44:58 | 000,030,862 | ---- | C] () -- C:\Windows\SysNative\cc_20130218_194445.reg
[2013/02/18 11:24:15 | 000,000,950 | ---- | C] () -- C:\Users\Public\Desktop\ICCPro.lnk
[2013/02/15 21:02:40 | 000,073,795 | ---- | C] () -- C:\Users\dogonit23\presidential storage payment 2-15-13.pdf
[2013/02/15 15:15:26 | 000,001,182 | ---- | C] () -- C:\Users\Public\Desktop\The Prospector.lnk
[2013/02/15 14:21:14 | 000,001,197 | ---- | C] () -- C:\Users\Public\Desktop\Social Prospector.lnk
[2013/02/14 15:41:17 | 000,014,046 | ---- | C] () -- C:\Users\dogonit23\Documents\today.eml
[2013/02/12 02:01:26 | 000,000,334 | ---- | C] () -- C:\Windows\SysWow64\CountScans.XML
[2013/02/10 12:09:21 | 000,000,122 | ---- | C] () -- C:\Users\dogonit23\Desktop\Convert Youtube to MP3 & Download Youtube Videos - Free Downloader.url
[2013/02/09 00:37:30 | 000,002,515 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk
[2013/02/08 00:32:31 | 000,015,152 | ---- | C] () -- C:\Windows\SysNative\cc_20130208_003209.reg
[2013/02/06 21:25:15 | 000,000,955 | ---- | C] () -- C:\Users\dogonit23\Desktop\DVDFab 9.lnk
[2013/02/05 17:36:17 | 000,000,989 | ---- | C] () -- C:\Users\dogonit23\Desktop\Tube Fool.lnk
[2013/01/30 11:37:48 | 000,001,666 | ---- | C] () -- C:\Windows\wininit.ini
[2013/01/29 19:19:18 | 1171,038,208 | ---- | C] () -- C:\Users\dogonit23\capture-1.camrec
[2012/11/09 20:18:06 | 000,000,008 | RHS- | C] () -- C:\Users\dogonit23\$vSiGG1C.pvr
[2012/11/09 20:18:06 | 000,000,008 | RHS- | C] () -- C:\Users\dogonit23\$vLeGG1C.pvr
[2012/08/24 12:23:53 | 000,002,717 | ---- | C] () -- C:\Users\dogonit23\.recently-used.xbel
[2012/06/04 11:12:01 | 000,302,425 | ---- | C] () -- C:\Users\dogonit23\AppData\Local\funmoods-speeddial.crx
[2012/03/31 10:43:19 | 000,134,228 | ---- | C] () -- C:\Users\dogonit23\7 Do Not Eat Foods.pdf
[2012/01/25 17:15:08 | 000,000,999 | ---- | C] () -- C:\Program Files (x86)\Backlink Profit Monster.lnk
[2012/01/25 17:15:08 | 000,000,939 | ---- | C] () -- C:\Program Files (x86)\Update Backlink Profit Monster.lnk
[2011/10/04 11:22:44 | 000,000,205 | ---- | C] () -- C:\Windows\BlogHatter.INI
[2011/08/19 08:26:20 | 010,898,456 | ---- | C] () -- C:\Windows\SysWow64\LogiDPP.dll
[2011/08/19 08:26:20 | 000,336,408 | ---- | C] () -- C:\Windows\SysWow64\DevManagerCore.dll
[2011/08/19 08:26:20 | 000,104,472 | ---- | C] () -- C:\Windows\SysWow64\LogiDPPApp.exe
[2011/07/28 10:49:13 | 000,000,376 | ---- | C] () -- C:\Windows\ODBC.INI
[2011/06/11 19:11:42 | 000,000,043 | -HS- | C] () -- C:\ProgramData\.zreglib
[2011/06/07 01:56:48 | 000,099,384 | ---- | C] () -- C:\Users\dogonit23\AppData\Roaming\inst.exe
[2011/06/07 01:56:48 | 000,007,859 | ---- | C] () -- C:\Users\dogonit23\AppData\Roaming\pcouffin.cat
[2011/06/07 01:56:48 | 000,001,167 | ---- | C] () -- C:\Users\dogonit23\AppData\Roaming\pcouffin.inf
[2011/05/20 17:16:41 | 000,000,161 | ---- | C] () -- C:\Windows\DISPARAM.INI
[2011/04/29 10:43:53 | 000,205,717 | ---- | C] () -- C:\Windows\XHeader Uninstaller.exe
[2011/03/30 00:25:10 | 000,017,920 | ---- | C] () -- C:\Users\dogonit23\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/03/23 06:24:30 | 000,020,480 | ---- | C] () -- C:\Users\dogonit23\AppData\Roaming\DomainFinder.rsd
[2011/02/13 13:08:47 | 001,130,348 | ---- | C] () -- C:\Users\dogonit23\hot-minisite-templates.zip
[2011/02/08 16:46:12 | 000,060,864 | ---- | C] () -- C:\Users\dogonit23\g2mdlhlpx.exe
========== ZeroAccess Check ==========
[2009/07/13 20:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012/06/08 21:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012/06/08 20:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 17:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 04:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 17:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2012/06/26 08:56:47 | 000,000,000 | -HSD | M] -- C:\Users\dogonit23\AppData\Roaming\.#
[2013/01/30 13:14:23 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Ad-Aware Antivirus
[2011/07/14 02:00:27 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Affilorama
[2012/07/02 17:29:54 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Audacity
[2012/07/23 12:51:53 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Auto Traffic Monopoly
[2013/01/24 13:01:25 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\AutoHideIP
[2011/03/08 04:45:30 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\AutomatedSalesFormula
[2011/02/06 02:11:13 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Blio
[2011/03/08 08:35:21 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Bloopio
[2012/10/04 14:58:49 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Canon
[2011/04/03 12:26:21 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\CherryPickerLive
[2012/08/31 13:06:51 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\com.kamicode.tubenitro
[2012/06/03 22:50:57 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\com.pageone.Curator
[2012/05/26 11:40:20 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\com.webdimensions.instant-content-curator-pro
[2013/01/09 02:05:20 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\com.webdimensions.viralvideocuratorpro
[2013/02/22 07:49:50 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\CurationSoft
[2011/12/25 14:09:53 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\DeepBurner
[2011/12/25 13:14:25 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\DeepBurner Pro
[2011/06/11 19:19:48 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Digiarty
[2011/12/09 19:40:37 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\DigiResults
[2013/03/05 02:53:04 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\DMCache
[2011/07/21 02:42:57 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\EasyHelper
[2012/08/18 12:33:57 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\EasyLeadFinderv2
[2011/10/09 13:46:31 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\EB Projects
[2013/01/22 21:46:45 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Ehdoiq
[2013/01/30 10:44:10 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\EurekaLog
[2011/08/03 22:02:04 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\FeedNamerTest
[2013/02/24 16:54:18 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\FileZilla
[2011/05/01 14:43:49 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\FlashGet
[2013/01/26 15:52:39 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\gmll
[2012/01/13 19:05:47 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\GPScraper 2011
[2012/08/24 12:14:46 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\gtk-2.0
[2013/03/01 18:45:25 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\IDM
[2011/02/21 13:39:33 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\KompoZer
[2012/02/16 02:26:12 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\KSOWatchboard
[2011/03/30 00:32:18 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Leadertech
[2013/01/26 19:28:26 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\LinkWheelData
[2012/07/14 16:49:10 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\LiveSoftware
[2013/02/25 18:41:40 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\LocalizerLeadsTool
[2012/07/23 03:04:42 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\MicroCashMachines
[2013/01/25 15:23:51 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Niche
[2013/03/03 21:10:52 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Nitro PDF
[2012/01/22 21:49:05 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Nvu
[2012/10/04 10:23:53 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\PFU
[2011/02/06 01:40:41 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\PictureMover
[2012/01/11 15:22:58 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\PrimoPDF
[2013/01/26 16:12:15 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\RankArmoryData
[2013/01/22 09:45:30 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Roacy
[2013/01/22 09:45:30 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Roenqa
[2012/07/16 18:09:55 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\SendBlaster2
[2013/02/06 20:49:31 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\SendSpace
[2013/03/02 02:14:55 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\SoftGrid Client
[2011/03/08 08:38:07 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\SpinWizard-HC
[2013/03/05 09:38:05 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Spy Emergency
[2011/02/06 01:39:43 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Stardock
[2013/01/21 16:13:49 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\teknikforce
[2013/02/18 21:45:46 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\TestApp
[2011/05/15 10:27:30 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Tific
[2012/06/29 14:26:03 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Touche Software
[2012/01/11 22:31:06 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\TP
[2012/01/20 14:55:55 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\TrafficInitiator-Air
[2011/12/06 12:34:13 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\TrafficLaunchPad-PRO
[2013/02/24 04:20:31 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\TrafficPhoenix
[2013/02/24 04:15:20 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Tube Groove
[2013/01/29 15:47:42 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Tuehs
[2011/05/10 13:00:10 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\ubot
[2011/06/11 16:49:56 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Uniblue
[2012/01/11 12:17:36 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Vso
[2011/02/11 16:37:10 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Windows Live Writer
[2011/05/01 03:07:25 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\XMind
[2013/01/29 15:47:41 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Yvad
[2013/01/23 11:10:00 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Ywfux
[2013/01/22 21:46:45 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Yxypoc
[2013/01/21 08:28:25 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Yzpayv
[2013/01/23 11:04:05 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Zalaw
[2011/07/22 08:32:10 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\ZumoDrive
========== Purity Check ==========
========== Files - Unicode (All) ==========
[2011/07/22 15:19:02 | 000,000,000 | ---D | M](C:\Users\dogonit23\AppData\Local\??) -- C:\Users\dogonit23\AppData\Local\
[2011/07/22 15:19:02 | 000,000,000 | ---D | M](C:\Users\dogonit23\AppData\Local\??) -- C:\Users\dogonit23\AppData\Local\
(C:\Users\dogonit23\AppData\Local\??) -- C:\Users\dogonit23\AppData\Local\
========== Alternate Data Streams ==========
@Alternate Data Stream - 491 bytes -> C:\Users\dogonit23\Documents\today.eml:OECustomProperty
@Alternate Data Stream - 127 bytes -> C:\ProgramData\Temp:430C6D84
@Alternate Data Stream - 105 bytes -> C:\ProgramData\Temp:DFC5A2B2
@Alternate Data Stream - 105 bytes -> C:\ProgramData\Temp:5C321E34
< End of report >
OTL Extras logfile created on: 3/5/2013 2:37:11 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\dogonit23\Desktop\Software Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.75 Gb Total Physical Memory | 1.16 Gb Available Physical Memory | 31.08% Memory free
7.49 Gb Paging File | 3.39 Gb Available in Paging File | 45.27% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 442.60 Gb Total Space | 254.15 Gb Free Space | 57.42% Space Free | Partition Type: NTFS
Drive D: | 22.87 Gb Total Space | 3.34 Gb Free Space | 14.59% Space Free | Partition Type: NTFS
Drive F: | 1863.01 Gb Total Space | 403.11 Gb Free Space | 21.64% Space Free | Partition Type: NTFS
Computer Name: DOGONIT23-HP | User Name: dogonit23 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{05AE0C86-5528-4BC9-B11E-8A7680BE6010}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{09813EFE-BFCE-451B-B24A-E55A7E506086}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{0A3D5D3F-22C7-43D0-B693-45D0EB228C3C}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{0B41D4B7-C71A-4C6B-9F41-087A4A9FA3EC}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{19022F8A-988E-4818-B157-CB21783C22EA}" = lport=138 | protocol=17 | dir=in | app=system |
"{21A6F9CE-DCF1-45C2-8799-940E2605B904}" = rport=10243 | protocol=6 | dir=out | app=system |
"{25CF9786-D633-438A-B529-3A74A395EDB6}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{2F7C65F8-9AD0-4D86-A201-05707B4D6DAA}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
"{38C59669-3676-416D-AF8F-F663B05F9411}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{38FD4040-49CD-4129-8FF6-0FC3C08EDCCD}" = lport=445 | protocol=6 | dir=in | app=system |
"{3F61926D-E4FB-445F-88BE-4F80CE5A0747}" = rport=138 | protocol=17 | dir=out | app=system |
"{48160FA4-16D0-489A-B7DE-0E3835D32658}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{59DCD658-0FF6-4C87-8EDA-13EC8291D0C3}" = rport=139 | protocol=6 | dir=out | app=system |
"{5CEBDAFD-BC0A-4643-8729-9B702A169E5C}" = lport=139 | protocol=6 | dir=in | app=system |
"{5E6C9AD6-7419-47CD-BB7C-BE9280AD3329}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{65576758-42B9-4E10-8646-3357539A9150}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{6934FEEF-D6C4-4481-A0DE-8FB59BC83F87}" = lport=10243 | protocol=6 | dir=in | app=system |
"{718C56CD-7C33-44E2-9735-FCBEFAAF4B45}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{8B2EF7B1-E6FF-4E53-ACE6-703B0D14E239}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe |
"{9D0D8229-2814-4CD2-B7F1-90E810BA2571}" = rport=445 | protocol=6 | dir=out | app=system |
"{AAF738B5-3688-4964-82F4-5BDEA671A5D3}" = rport=137 | protocol=17 | dir=out | app=system |
"{C3BA2719-C692-4710-A38E-AD9EBB3B860C}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{DF4CE2F7-3809-40CA-9DA9-C3B58A8D5223}" = lport=2869 | protocol=6 | dir=in | app=system |
"{EFF19EC7-3CF5-413D-94EA-AD935A33777D}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{F108CFB2-46C4-4819-A3F2-2691DFEEF230}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{FD2566F9-E935-4BF7-B8C2-60CDF5F1FE30}" = lport=137 | protocol=17 | dir=in | app=system |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{02756275-5908-446F-B6AD-772329ED4B9C}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{05E36A89-231D-44A6-A580-705B67EE805D}" = protocol=6 | dir=in | app=c:\users\dogonit23\appdata\local\senukex\senuke.exe |
"{0A45B430-99B7-43FC-97C1-B65B3698624E}" = protocol=1 | dir=in | [email protected],-28543 |
"{15460FD3-3DE1-46B8-8BE5-F68D520232A6}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{1C55EAB7-5B3E-4414-A07F-7E21532ACF59}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{1DC5CF9C-57F8-4E56-95B5-8955A9A665EF}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\hpdvdsmart.exe |
"{1E80889F-7D9B-48EF-A54C-6634B26D0196}" = dir=in | app=c:\program files (x86)\hewlett-packard\mediasmart\video\hpmediasmartvideo.exe |
"{2206F989-09A2-4C54-8778-CBE7D077F57C}" = protocol=17 | dir=in | app=c:\program files (x86)\roxio\roxionow player\rnowshell.exe |
"{33DCB268-B0FC-4B38-9561-EECB66AD96B9}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{34026BB6-43E8-4FEF-B11B-60E927325BF5}" = protocol=58 | dir=out | [email protected],-28546 |
"{3A019C53-1F59-425B-9154-7F1FB511934C}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{3FCEDC25-1030-4C1A-B28C-15294A1178BD}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{464CBA76-05A8-44DA-87E7-65D8F1A08705}" = protocol=1 | dir=out | [email protected],-28544 |
"{4AA3758A-537A-47C7-AADB-86C35081739C}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{4B212489-25FE-4783-92B0-855B69FAE55C}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{5080DED9-0710-4CA8-A066-3907C4952617}" = dir=in | app=c:\program files (x86)\cyberlink\powerdirector\pdr8.exe |
"{550ADA97-7B34-453A-AB49-98B40C86434B}" = protocol=6 | dir=in | app=c:\program files (x86)\roxio\roxionow player\rnowshell.exe |
"{5F6899C3-3509-43D9-A5A1-21D6FDE1F896}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{60FF2042-58D6-43C1-AABB-12C23EE7DEAB}" = dir=out | app=c:\program files (x86)\hewlett-packard\hp clouddrive\zumodrive.exe |
"{63645954-4B5E-4D72-9039-1D7BD3EA2050}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{660F19A6-F376-4254-956C-676C7DE7C860}" = protocol=58 | dir=in | [email protected],-28545 |
"{665AEF6C-2149-45C8-ABB5-46D8AA12C693}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{6D8DED75-2030-47D8-AE3B-EE1ADE70E107}" = protocol=17 | dir=in | app=c:\program files (x86)\logitech\logitech vid\vid.exe |
"{7009A3D1-8E63-4C1E-82EB-4B7CD35FE337}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{70D55530-3522-409C-BEAC-CB09E46541B8}" = protocol=17 | dir=in | app=c:\users\dogonit23\appdata\local\senukex\senuke.exe |
"{70E3DAA7-3C01-488B-B01B-74F908BB9BCD}" = protocol=6 | dir=in | app=c:\program files (x86)\onlywire\onlywirewindows.exe |
"{7900D27D-EDA4-41DE-8BD2-9CCDB12535B9}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{7CD145EC-6001-4253-A5DF-CB348B785D87}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{7D9EB05C-B76B-49BF-83F6-87C820FC2CBF}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{7E10CFE0-08B1-401B-9CC5-B82EDDE8E09D}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{7E83DB33-2950-4CE6-B406-0A16FA479526}" = dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\music\hptouchsmartmusic.exe |
"{906279F7-A05F-428B-A141-52B0B75344B1}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{A0E5FF1A-A515-4C02-87BF-4BCFADCA4215}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{A7102895-E143-462F-A741-2349EF95C64F}" = protocol=17 | dir=in | app=c:\program files (x86)\onlywire\onlywirewindows.exe |
"{A7281B5F-86E5-46B4-A8AE-8505ABDF5FF1}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{BAB3B6BD-6CD9-47A7-B89D-E24ED80297C4}" = dir=in | app=c:\users\dogonit23\appdata\local\torch\plugins\torrent\torchtorrent.exe |
"{BEB37A2A-EAF9-42C1-A684-B75D9C1C4B1F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{C0384530-8BB0-4602-8A2C-21F82D75973B}" = protocol=6 | dir=out | app=system |
"{C21F541C-CCBF-4670-A3B6-470E42B7C78E}" = protocol=17 | dir=in | app=c:\program files (x86)\hewlett-packard\mediasmart\roxionow\rnow.exe |
"{CA86E68E-919E-4E60-843E-2598F6A799B5}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{CF7CFA8D-8E29-430B-898A-070208AA9E30}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{EAC2F2DD-5682-482A-8A22-D3A5E3C1F0FA}" = dir=in | app=c:\program files (x86)\hewlett-packard\hp clouddrive\zumodrive.exe |
"{EE45BEBB-7D34-47F0-A251-E640B5303E43}" = protocol=6 | dir=in | app=c:\program files (x86)\logitech\logitech vid\vid.exe |
"{FBE71914-6467-436F-B247-A988EC99B0B6}" = dir=in | app=c:\program files (x86)\hewlett-packard\hp support framework\resources\hpwarrantycheck\hpwarrantychecker.exe |
"{FBF76A95-4DDD-4731-8045-0D93245D2DFD}" = protocol=6 | dir=in | app=c:\program files (x86)\hewlett-packard\mediasmart\roxionow\rnow.exe |
"{FCC02FED-D0F5-4A13-A527-BA9B2F79177D}" = dir=in | app=c:\program files (x86)\hewlett-packard\mediasmart\photo\hpmediasmartphoto.exe |
"{FFA852E1-7D83-4D2E-ABC3-D62B0B7EB41A}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"TCP Query User{0565DACF-CB9C-4BFE-97C3-60FD22C7A910}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"TCP Query User{26A5FC7F-E98E-4FF2-92AB-D32383E3D1BE}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"TCP Query User{3434F40C-4AC3-48F9-82BA-1630E04C0898}C:\program files (x86)\logitech\logitech vid\vid.exe" = protocol=6 | dir=in | app=c:\program files (x86)\logitech\logitech vid\vid.exe |
"UDP Query User{2BF83833-0711-4529-BEED-DE58592E1BCC}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"UDP Query User{DA0691A3-EE3B-4029-964B-23CD68CBF694}C:\program files (x86)\logitech\logitech vid\vid.exe" = protocol=17 | dir=in | app=c:\program files (x86)\logitech\logitech vid\vid.exe |
"UDP Query User{DD4865C4-CE54-4841-BDC7-7D80F0DFEC90}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{027E5FAB-1476-4C59-AAB4-32EF28520399}" = Windows Live Language Selector
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{09BDCC02-80F2-4EFB-8F1B-A807D2C38E31}" = HP MediaSmart Movies and TV
"{10CD364B-FFCC-48BE-B469-B9622A033075}" = Fences Pro
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP210_series" = Canon MP210 series
"{13DCC2C7-454D-42F0-A892-E0E9A5DE4E67}" = HP Wireless Assistant
"{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant
"{20F2AD58-CE1D-4994-9945-B1B3F2600254}" = Nitro PDF Reader
"{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition)
"{2856A1C2-70C5-4EC3-AFF7-E5B51E5530A2}" = HP Client Services
"{28FA742C-DC52-9804-7116-E198E0AEFAE4}" = ATI Catalyst Install Manager
"{2D7B64F7-E9A3-C49B-9CEA-C4FE05F887E9}" = ccc-utility64
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{8219EDCB-CE5A-4348-B056-AAC0FE4E99D0}" = Microsoft IntelliType Pro 8.2
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8338783A-0968-3B85-AFC7-BAAE0A63DC50}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{90140000-006D-0409-1000-0000000FF1CE}" = Microsoft Office Click-to-Run 2010
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}" = Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{B8AD779A-82DA-4365-A7D0-AD3DCFC55CFF}" = Apple Mobile Device Support
"{BE6725F2-6D15-477C-86C6-4522B8569D62}" = HP MediaSmart SmartMenu
"{C84FFB07-C687-45CF-91C8-868DB8D8C8CD}" = HP 3D DriveGuard
"{CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}" = HP Auto
"{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware
"{CF8FFD12-602B-422D-AF1D-511B411E7632}" = iTunes
"{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}" = Microsoft SQL Server Compact 3.5 SP2 x64 ENU
"{D4DF3FD3-4467-47EF-8D4A-AF1E691E34F5}" = Logitech Webcam Software
"{D954C6C2-544B-4091-A47F-11E77162883E}" = Microsoft Security Client
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"CanonMyPrinter" = Canon My Printer
"CCleaner" = CCleaner
"lvdrivers_12.0" = Logitech Webcam Software Driver Package
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft IntelliType Pro 8.2" = Microsoft IntelliType Pro 8.2
"Microsoft Security Client" = Microsoft Security Essentials
"PolderbitSRecorder64" = PolderbitS Sound Recorder and Editor (64-bit Edition)
"Spy Emergency_is1" = Spy Emergency
"SynTPDeinstKey" = Synaptics Pointing Device Driver
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = HP MediaSmart Webcam
"{03D4E1A0-109C-7717-A19D-A0A892C94140}" = KSO Watchboard
"{0408422C-BE82-446A-8A8D-1431F4D35245}" = HP Documentation
"{0572EDC2-9CBD-6D69-7477-130CBE66086D}" = CurationSoft
"{06005D86-3436-43E4-9014-3CC4A972D47B}" = Website Indexer
"{078BE4C5-D0AA-5AD1-6195-D4E9FB7CA8F7}" = CCC Help Greek
"{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0EDEB615-1A60-425E-8306-0E10519C7B55}" = RoxioNow Player
"{108404C7-6C48-4F2F-84C5-654F2597A20F}_is1" = BlogHatter Pro 2010
"{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1
"{120262A6-7A4B-4889-AE85-F5E5688D3683}" = HP MovieStore
"{13F864A8-B7AF-4D36-8F23-08C58C7E685B}" = FBP - Facebook Blaster Pro
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{19D87B80-626A-B57F-37F2-30329A5FA056}" = CCC Help Korean
"{1A773FE9-8ED2-4FC6-AAAB-D5CC8157DAAF}" = NicheSensei
"{1AD22277-7A1E-71EC-B27D-EB7A22BED143}" = DeepBurner Pro v1.9.0.228
"{1CAC7A41-583B-4483-9FA5-3E5465AFF8C2}" = Microsoft Default Manager
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{2079FC74-9B68-4CCA-8570-CC02378AB170}" = Local Leads Magic Extractor
"{21C887C2-008E-0610-96F8-74AB3AF22784}" = CCC Help Chinese Standard
"{22800204-9E53-45C7-B6F3-5BB0F1C1A147}" = Jing
"{264FE20A-757B-492a-B0C3-4009E2997D8A}" = PictureMover
"{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 9
"{2819e172-81d5-4113-88bd-4605b02344e0}" = Ad-Aware Antivirus
"{28639B03-FEF0-06B0-72AE-4DC2F5FE7197}" = Catalyst Control Center Graphics Previews Common
"{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1
"{28D31651-C44F-7C06-BD86-8771055733A1}" = Easy Lead Finder
"{2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}" = Windows Live Messenger
"{2A435018-6957-76A6-36A6-FB34F4EF5F6D}" = CCC Help Turkish
"{2ADE2157-7A5E-122C-B51D-EB8A01B15943}" = DeepBurner v1.9.0.228
"{2EA3D6B2-157E-4112-A3AB-BF17E16661C3}" = HP MediaSmart/TouchSmart Netflix
"{2EA870FA-585F-4187-903D-CB9FFD21E2E0}" = DHTML Editing Component
"{3023EBDA-BF1B-4831-B347-E5018555F26E}" = Movie Theme Pack for HP MediaSmart Video
"{330A754C-2B53-0C5F-057F-283EC9D01D5A}" = CCC Help Japanese
"{33123af0-0eab-432e-8c75-2d66c77e4320}_is1" = Power Lead Snatcher v1.0
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{355E7B5A-DCCF-4E35-AAD4-F80F43429D9E}" = Tube Equalizer
"{3877C901-7B90-4727-A639-B6ED2DD59D43}" = ESU for Microsoft Windows 7
"{3A9FC03D-C685-4831-94CF-4EDFD3749497}" = Microsoft SQL Server Compact 3.5 SP2 ENU
"{3B834B54-EC4B-48E2-BFC6-03FF5DA06F62}" = Adobe Shockwave Player 11.5
"{3DA221C3-37A8-4FB2-BE95-FB61A5075F5A}_is1" = Big Boy Cover Creator
"{3E171899-0175-47CC-84C4-562ACDD4C021}" = OpenOffice.org 3.3
"{3EB4E1B3-5C51-D460-D305-9077DA4711B7}" = CCC Help French
"{40264C05-D84A-43E6-AEB8-1C945AD2A500}" = XTBSetup
"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}" = Recovery Manager
"{4595783F-3D44-4FBA-A43E-1CF88970C6CC}" = YellaBot
"{46D5A44A-0D8C-4CA4-8AD2-5A86E2D1F96E}" = Localizer Beta
"{489A887E-1F33-2DB8-B856-291B6729D832}" = CCC Help Dutch
"{491ADA37-04EE-2ECE-9F86-DDC0106047AC}" = Times Reader
"{49471DB8-7F3C-42DB-89C2-AC50FA0C5290}" = Camtasia Studio 7
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B110DEB-E309-4394-BC9D-3942B18F0940}_is1" = Quick Video Marketing Extreme Suite 1.0
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.1
"{4F00632C-A175-41AF-A448-BB654A4946A6}" = NicheSensei
"{4F649712-FA36-502C-B26B-88A9D091E1DF}" = CCC Help Finnish
"{4FBCEA31-5D18-4212-9231-DE7CF1BE7DBB}" = Logitech Vid
"{504CC891-B140-4E1B-860B-5E4C1DFBA9E3}" = Blio
"{5124BBB9-4A30-4306-BC27-ED986E860BE7}_is1" = Micro Niche Domain Finder version 0.23
"{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module
"{52DE3AF0-1C26-4258-9A04-9AEBF3E145F7}" = Catalyst Control Center - Branding
"{53469506-A37E-4314-A9D9-38724EC23A75}" = HP Setup
"{5535B1B7-AB06-2922-C3F6-DEDA4E823903}" = CCC Help Italian
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{5A19A119-86B6-FD94-7479-7A4AED4F2D82}" = Catalyst Control Center Graphics Previews Vista
"{5AF4B3C4-C393-48D7-AC7E-8E7615579548}" = Adobe AIR
"{5B61E4B6-E491-4FF8-888B-DC677E15798C}" = AzSiteBuilder
"{5BEBD7F0-5544-3B4C-8D15-7154AA35BEA2}" = Google Talk Plugin
"{5C5423E2-537B-0194-945D-66EA2A481CC4}" = Tube NiTRO
"{5F479D0A-ABB5-DE85-2C6A-92566C7FB813}" = CCC Help Polish
"{6028A075-9A5A-4FD0-83DC-0BFE326D9836}" = Proxy Goblin
"{61EDBE71-5D3E-4AB7-AD95-E53FEAF68C17}" = Bing Rewards Client Installer
"{6462930A-65F7-5431-71BF-299048EC7887}" = Google Maps Listing Locator
"{6488DD50-96DB-2EB1-3027-D912339B3457}" = Localizer Leads Tool
"{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6863508E-00B6-34DF-31FA-DD8D57E8CEE0}" = CCC Help Thai
"{6B114F59-6732-4EA5-A33E-ACC6DEC49B61}" = HP Software Framework
"{6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF}" = HP MediaSmart Photo
"{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.1.2.0
"{6F44AF95-3CDE-4513-AD3F-6D45F17BF324}" = HP Support Assistant
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7645B631-3FAE-3B68-63D5-884943DC9303}" = PageOne Curator
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime
"{77BE790A-2F0E-277A-B1D5-24AE58CA1C5E}" = CherryPicker
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{79E47C7F-2292-B092-515B-4BA0D409451E}" = Bloopio
"{7A0AAE7D-BEED-DD34-58EA-304DAC2EF7B6}" = CCC Help Norwegian
"{7A42C2EA-0447-42D2-8503-E08022159704}" = xGen SEO
"{7B939E98-D099-5172-FF4C-673B96ED3D13}" = CCC Help Portuguese
"{800D8BB8-8CED-453C-98FE-79757FCFF6D2}" = Long Tail Pro
"{8337F301-A848-71AC-4699-51B5153085EE}" = CCC Help German
"{83C26D20-15FF-4B40-8180-5446E4970E3D}" = BacklinkProfitMonster
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{84160DF4-D1B0-428F-EFE7-4CA2E14B5CD2}" = Catalyst Control Center Localization All
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver For Windows 7
"{8927E07C-97F7-4A54-88FB-D976F50DD46E}" = Turbo Lister 2
"{89EBB60F-5F24-2153-AEF2-F7E33B2DD8DB}" = CCC Help Russian
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8EFD09A6-E374-8519-68A9-A3F7383C29AA}" = CCC Help Hungarian
"{8FD5B469-A50B-4746-A992-ABDD6DCD45EF}" = MicroCashMachines
"{9008D736-35CA-40DB-A2BE-5F32D954E5AA}" = HP MovieStore
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{90140011-0066-0409-0000-0000000FF1CE}" = Microsoft Office Starter 2010 - English
"{91110409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{91A34181-9FAD-43AB-A35F-E7A8945B7E1C}" = HP MediaSmart Music
"{922DBD7E-43DC-4F92-8D5E-B563C8BBBB27}" = IM Easy Button Autoresponder
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
"{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English)
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
"{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader
"{9769E378-E1D4-42F4-9E5C-FAE269A1084C}_is1" = Search Syndicate version 1.0
"{993ED800-AFD9-44D4-B5E4-FF2F7D951A9F}" = Rank Armory Setup
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BBEE625-F639-CB19-6447-98B25FF975DD}" = Traffic Launch Pad
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{A2C23ED8-6C37-F32D-3108-3E91BEDEDCA8}" = CCC Help Swedish
"{A47B6CB9-E31C-B471-75FF-F42236292750}" = CCC Help Spanish
"{A4D10F4F-EF30-4498-8E18-CF2AB549DA97}" = PDF Download for Internet Explorer
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A7793099-E7B8-4B91-B0BF-D407C1C7032C}_is1" = GoogleMapsCash.com Software 1.1
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
"{AC76BA86-1033-F400-BA7E-100000000002}" = Adobe Acrobat 7.0 Standard - English, Français, Deutsch
"{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.6)
"{AD13BFB0-FDD2-4AFA-A8AF-9F4A950D56B7}" = ArcSoft Camera Suite 1.3
"{AE856388-AFAD-4753-81DF-D96B19D0A17C}" = HP Setup Manager
"{AF306BD8-F9D1-4627-89B9-246E59074A05}" = HP Power Manager
"{B293F0E6-10B7-45FD-BACF-18826515C246}_is1" = Conference Recording Service
"{B3975F18-5DCD-4C71-B382-D97F201E0161}" = GPScraper 2011
"{B3E2EB86-2EDB-061B-0DDC-58EDBCAEC4A0}" = ASHelper
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{BBBC38C2-42C5-4C3C-B25B-B3477DF4973A}_is1" = Ecover Brander 1.0
"{BD1A34C9-4764-4F79-AE1F-112F8C89D3D4}" = Energy Star Digital Logo
"{BF0EA4BA-75A3-6452-E647-1BACC7AD6612}" = SpinWizard-HC
"{C26CE461-1A2A-866E-F3FB-8E8C590919FE}" = Local Niche Spy
"{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Atheros Driver Installation Program
"{C4FE7CD7-1DA8-4793-9CCE-E7902D915131}_is1" = Auto Traffic Monopoly 1.0.1
"{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
"{C619A1DC-8EE4-4BD2-82AB-D9424A23E42A}" = Sindicator
"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
"{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
"{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86
"{CE081CB8-1970-88F1-A4D8-FC435D2E86C1}" = ccc-core-static
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CF950023-9C75-4843-8B68-FD8A5D641B4B}" = SendBlaster 2
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D12E3E7F-1B13-4933-A915-16C7DD37A095}" = HP MediaSmart Video
"{D36DD326-7280-11D8-97C8-000129760CBE}" = PhotoNow!
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D4F2AFD3-0167-4464-B92F-78AB6DA8A0AA}" = CardMinder V3.0
"{D7305AB7-9668-BC2C-470A-FA9F6264E735}" = Instant Content Curator Pro
"{D93E970F-5B4B-4BE6-89CB-E46963E3B1E4}" = DupeFree Pro
"{D9DB57B7-7C15-596C-6D5B-4CF06CF98E41}" = CCC Help English
"{DBCDB997-EEEB-4BE9-BAFF-26B4094DBDE6}" = ScanSnap Manager
"{DC67641A-05C4-4FED-A462-1EB1DC6CF2F5}" = ArcSoft Software Suite
"{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E14A6071-744B-44F0-A30E-72CB0324D4E1}" = Linkwheel
"{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E5650FD1-F98A-4948-BFB5-3E608FB8089C}" = Wordpress EasyButton
"{E58F3B88-3B3E-4F85-9323-04789D979C15}" = ScanSnap Organizer
"{E599494B-C668-E1C7-09A4-76A33BDC03F6}" = CCC Help Czech
"{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
"{E6098043-1183-4580-89EF-423CBF807188}" = pdfforge Toolbar v4.6
"{E68A38AA-A1B2-114E-19FA-F07D54683077}" = Catalyst Control Center InstallProxy
"{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}" = Apple Application Support
"{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module
"{EDAB8C86-3668-425D-9097-E39311A98A95}_is1" = The Prospector version 2.7
"{EF682D1C-591D-48B5-9803-628DA622C281}" = HP Quick Launch
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F12B4E57-D702-E193-E8AF-C93EDB8DF63E}" = CCC Help Chinese Traditional
"{F5F5E26E-67B9-438E-B813-C0CE0DE08309}" = TrafficPhoenix
"{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}" = DVD Menu Pack for HP MediaSmart Video
"{FC725C5E-294B-716E-ABDE-931B26F1BC6E}" = Viral Video Curator Pro
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"{FE0E7A1C-68C3-99E1-A5DD-0749CFAB7AB9}" = CCC Help Danish
"{FF01F58F-A8B3-E2BD-45EB-E9CF29BC0B38}" = XTA Deluxe
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"5513-1208-7298-9440" = JDownloader 0.9
"Ad-Aware Browsing Protection" = Ad-Aware Browsing Protection
"Adobe Acrobat 7.0 Standard - EFG - V" = Adobe Acrobat 7.1.0 Standard - English, Français, Deutsch
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"ashelper.ASHelper.46130C60F2252FA5A4446077F84AA968F38F8488.1" = ASHelper
"Audacity 1.3 Beta (Unicode)_is1" = Audacity 1.3.13 (Unicode)
"AudibleManager" = AudibleManager
"AutoHideIP" = Auto Hide IP
"B991B020-2968-11D8-AF23-444553540000_is1" = FreeMind
"Bloopio" = Bloopio
"BusinessLeadsMiner_is1" = BusinessLeadsMiner v2.54
"Canon MP210 series User Registration" = Canon MP210 series User Registration
"CanonSolutionMenu" = Canon Utilities Solution Menu
"Carnival Submitter_is1" = Carnival Submitter
"CherryPickerLive" = CherryPicker
"CloneDVD2" = CloneDVD2
"com.adobe.example.lovee.C6EC44B5C943A4DDCD781F06D19CDB0574EF4B20.1" = XTA Deluxe
"com.kamicode.tubenitro" = Tube NiTRO
"com.nyt.timesreader.78C54164786ADE80CB31E1C5D95607D0938C987A.1" = Times Reader
"com.pageone.Curator" = PageOne Curator
"com.webdimensions.instant-content-curator-pro" = Instant Content Curator Pro
"com.webdimensions.viralvideocuratorpro" = Viral Video Curator Pro
"Content Samurai_is1" = Content Samurai 1.0
"Coupon Printer for Windows5.0.0.2" = Coupon Printer for Windows
"CurationSoft" = CurationSoft
"Doxillion" = Doxillion Document Converter
"DVD Decrypter" = DVD Decrypter (Remove Only)
"DVDFab 9_is1" = DVDFab 9.0.1.5 (08/12/2012) Qt
"Easy Sales Video Player" = Easy Sales Video Player
"EasyLeadFinderv2" = Easy Lead Finder
"Easy-PhotoPrint EX" = Canon Utilities Easy-PhotoPrint EX
"Fences Pro" = Fences Pro
"FileZilla Client" = FileZilla Client 3.6.0.2
"Freecorder5.01" = Freecorder 5
"freecordertoolbar" = Freecorder Toolbar
"gmll" = Google Maps Listing Locator
"HP DVB-T TV Tuner" = HP DVB-T TV Tuner 8.0.64.43
"HP Photo Creations" = HP Photo Creations
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = HP MediaSmart Webcam
"InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite
"InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E}" = Movie Theme Pack for HP MediaSmart Video
"InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"InstallShield_{6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF}" = HP MediaSmart Photo
"InstallShield_{91A34181-9FAD-43AB-A35F-E7A8945B7E1C}" = HP MediaSmart Music
"InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
"InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
"InstallShield_{D12E3E7F-1B13-4933-A915-16C7DD37A095}" = HP MediaSmart Video
"InstallShield_{D36DD326-7280-11D8-97C8-000129760CBE}" = PhotoNow!
"InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
"InstallShield_{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}" = DVD Menu Pack for HP MediaSmart Video
"Instant Business Finder_is1" = Instant Business Finder v2.27
"Instant Lead Magnet Demo_is1" = Instant Lead Magnet Demo v1.13
"Internet Download Manager" = Internet Download Manager
"Keyword Tool_is1" = Keyword Tool v2.01
"KeywordSwipe_1.0" = KeywordSwipe 1.0
"KSOWatchboard" = KSO Watchboard
"Link Builder_is1" = Link Builder
"LocalizerLeadsTool" = Localizer Leads Tool
"Logic Audio Platinum v5.10" = Logic Audio Platinum v5.10
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.70.0.1100
"MixPad" = MixPad
"Mobile Partner" = Mobile Partner
"Mozilla Firefox 14.0.1 (x86 en-US)" = Mozilla Firefox 14.0.1 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"MP Navigator EX 1.0" = Canon MP Navigator EX 1.0
"My HP Game Console" = HP Game Console
"Niche" = Local Niche Spy
"Niche Video Site Builder - Platinum Edition 1.0" = Niche Video Site Builder - Platinum Edition 1.0
"Office14.Click2Run" = Microsoft Office Click-to-Run 2010
"OnlyWire" = OnlyWire
"PrimoPDF" = PrimoPDF -- brought to you by Nitro PDF Software
"Project Organizer_is1" = Project Organizer
"Proxy Server Finder" = Proxy Server Finder
"RealPlayer 15.0" = RealPlayer
"Site Profit Bot 1.8" = Site Profit Bot 1.8
"SP_f2a323db" = BrowseToSave 1.74
"SpinWizard-HC" = SpinWizard-HC
"SpywareBlaster_is1" = SpywareBlaster 4.6
"StorageSync" = StorageSync Backup Software
"Subliminal" = Subliminal $SUBLIMINAL_VERSION
"Switch" = Switch Sound File Converter
"The 5 Bucks a Day Action Enforcer_is1" = The 5 Bucks a Day Action Enforcer
"The Logo Creator v5.2" = The Logo Creator v5.2
"topkeywordlists_is1" = topkeywordlists
"Traffic Hurricane Pro Personal Use Edition" = Traffic Hurricane Pro Personal Use Edition
"Traffic Travis_is1" = Traffic Travis 3.3.16
"TrafficInitiator-Air" = Traffic Launch Pad
"Tube Fool" = Tube Fool
"Underachiever Secrets_is1" = Underachiever Secrets
"Uniblue RegistryBooster" = Uniblue RegistryBooster
"Viral PDF Silver Edition_is1" = Viral PDF Silver Edition v2.0
"VLC media player" = VLC media player 1.1.11
"WavePad" = WavePad Sound Editor
"webmmf" = WebM Media Foundation Components
"WildTangent hp Master Uninstall" = HP Games
"Windows Doctor 2.7.4_is1" = Windows Doctor 2.7.4
"WinGimp-2.0_is1" = GIMP 2.6.8
"WinLiveSuite" = Windows Live Essentials
"WinPcapInst" = WinPcap 4.1.1
"WinRAR archiver" = WinRAR archiver
"WinX DVD Ripper Platinum_is1" = WinX DVD Ripper Platinum 6.3.5
"WT087328" = Blackhawk Striker 2
"WT087330" = Bounce Symphony
"WT087335" = Build-a-lot 2
"WT087343" = Dora's World Adventure
"WT087360" = Escape Rosecliff Island
"WT087361" = FATE
"WT087362" = Final Drive Nitro
"WT087372" = Heroes of Hellas 2 - Olympia
"WT087379" = Jewel Quest Solitaire 2
"WT087394" = Penguins!
"WT087395" = Poker Superstars III
"WT087396" = Polar Bowler
"WT087397" = Polar Golfer
"WT087414" = Virtual Families
"WT087415" = Wheel of Fortune 2
"WT087428" = Bejeweled 2 Deluxe
"WT087453" = Chuzzle Deluxe
"WT087501" = Plants vs. Zombies
"WT087533" = Zuma Deluxe
"WT087536" = Diner Dash 2 Restaurant Rescue
"WT089299" = Mystery P.I. - The London Caper
"WT089307" = Virtual Villagers 4 - The Tree of Life
"WT089308" = Blasterball 3
"WT089328" = Farm Frenzy
"WT089359" = Cake Mania
"WT089362" = Agatha Christie - Peril at End House
"XHeader" = XHeader
"XMind" = XMind
"YPSpider_is1" = YPSpider v2.15
"ZumoDrive" = HP CloudDrive
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"1476554678.d.seesmic.com" = Seesmic Desktop 2
"6def5107e38c1993" = Blog Profit Pro
"a10c648895c21ba6" = Update or Uninstall SENukeX
"AI RoboForm" = AI RoboForm
"Amazon Kindle" = Amazon Kindle
"e6ae29888e656723" = Auto Blog Software
"Google Chrome" = Google Chrome
"GoToMeeting" = GoToMeeting 5.4.0.1083
"HuluDesktop" = Hulu Desktop
"Torch" = Torch
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 6/29/2012 6:54:51 AM | Computer Name = dogonit23-HP | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 18580
Error - 6/29/2012 6:54:51 AM | Computer Name = dogonit23-HP | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 18580
Error - 6/29/2012 6:54:52 AM | Computer Name = dogonit23-HP | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second
Error - 6/29/2012 6:54:52 AM | Computer Name = dogonit23-HP | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 19922
Error - 6/29/2012 6:54:52 AM | Computer Name = dogonit23-HP | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 19922
Error - 6/29/2012 1:37:30 PM | Computer Name = dogonit23-HP | Source = Application Error | ID = 1000
Description = Faulting application name: iexplore.exe, version: 9.0.8112.16446,
time stamp: 0x4fb57c8f Faulting module name: ntdll.dll, version: 6.1.7601.17725,
time stamp: 0x4ec49b8f Exception code: 0xc0000374 Fault offset: 0x000ce6c3 Faulting
process id: 0x132c Faulting application start time: 0x01cd54fe4f1178c3 Faulting application
path: C:\Program Files (x86)\Internet Explorer\iexplore.exe Faulting module path:
C:\Windows\SysWOW64\ntdll.dll Report Id: 194f4c0b-c211-11e1-a536-984be18c2e89
Error - 6/29/2012 5:26:01 PM | Computer Name = dogonit23-HP | Source = Application Error | ID = 1000
Description = Faulting application name: iexplore.exe, version: 9.0.8112.16446,
time stamp: 0x4fb57c8f Faulting module name: ole32.dll, version: 6.1.7601.17514,
time stamp: 0x4ce7b96f Exception code: 0xc0000005 Fault offset: 0x0002b759 Faulting
process id: 0x308 Faulting application start time: 0x01cd561df806dece Faulting application
path: C:\Program Files (x86)\Internet Explorer\iexplore.exe Faulting module path:
C:\Windows\syswow64\ole32.dll Report Id: 05e7c851-c231-11e1-a536-984be18c2e89
Error - 6/29/2012 7:05:40 PM | Computer Name = dogonit23-HP | Source = Application Hang | ID = 1002
Description = The program iexplore.exe version 9.0.8112.16446 stopped interacting
with Windows and was closed. To see if more information about the problem is available,
check the problem history in the Action Center control panel. Process ID: 3bfc Start
Time: 01cd5623c8f2cac2 Termination Time: 2727 Application Path: C:\Program Files
(x86)\Internet Explorer\iexplore.exe Report Id:
Error - 6/29/2012 7:44:20 PM | Computer Name = dogonit23-HP | Source = Application Hang | ID = 1002
Description = The program iexplore.exe version 9.0.8112.16446 stopped interacting
with Windows and was closed. To see if more information about the problem is available,
check the problem history in the Action Center control panel. Process ID: 3814 Start
Time: 01cd564f67af91f8 Termination Time: 2180 Application Path: C:\Program Files
(x86)\Internet Explorer\iexplore.exe Report Id:
Error - 6/29/2012 10:03:16 PM | Computer Name = dogonit23-HP | Source = Application Error | ID = 1000
Description = Faulting application name: iexplore.exe, version: 9.0.8112.16446,
time stamp: 0x4fb57c8f Faulting module name: ntdll.dll, version: 6.1.7601.17725,
time stamp: 0x4ec49b8f Exception code: 0xc0000374 Fault offset: 0x000ce6c3 Faulting
process id: 0x14f0 Faulting application start time: 0x01cd56643751d061 Faulting application
path: C:\Program Files (x86)\Internet Explorer\iexplore.exe Faulting module path:
C:\Windows\SysWOW64\ntdll.dll Report Id: c12da38d-c257-11e1-ba74-984be18c2e89
[ Hewlett-Packard Events ]
Error - 1/28/2013 11:40:34 PM | Computer Name = dogonit23-HP | Source = hpsa_service.exe | ID = 2000
Description = HP Error ID: -2146233088 at HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateDetail(String
category) at HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateAndDetectCore()
at HP.SupportAssistant.Service.ACLM.ActiveCheck.LaunchActiveCheck(Boolean singleScan,
Boolean localScan) Message: Failed to perform update. StackTrace: at HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateDetail(String
category) at HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateAndDetectCore()
at HP.SupportAssistant.Service.ACLM.ActiveCheck.LaunchActiveCheck(Boolean singleScan,
Boolean localScan) Source: HP.ActiveCheckLocalMode.SessionManager InnerException.Message:
Object '/9ad63e45_8ca2_4788_92e1_c2c84acb67cc/7bwhup2atdz3s5nc2jqb4gzq_5.rem' has
been disconnected or does not exist at the server. Name: hpsa_service.exe Version:
06.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
Format:
en-US RAM: 3834 Ram Utilization: 70 TargetSite: Void UpdateDetail(System.String)
Error - 1/28/2013 11:42:57 PM | Computer Name = dogonit23-HP | Source = HPSF.exe | ID = 4000
Description =
Error - 1/28/2013 11:43:07 PM | Computer Name = dogonit23-HP | Source = HPSF.exe | ID = 4000
Description =
Error - 1/28/2013 11:51:18 PM | Computer Name = dogonit23-HP | Source = HPSF.exe | ID = 4000
Description =
Error - 1/28/2013 11:51:18 PM | Computer Name = dogonit23-HP | Source = HPSF.exe | ID = 4000
Description =
Error - 1/28/2013 11:51:18 PM | Computer Name = dogonit23-HP | Source = HPSF.exe | ID = 4000
Description =
Error - 1/30/2013 5:26:34 PM | Computer Name = dogonit23-HP | Source = HPSFMsgr.exe | ID = 4000
Description = HP Error ID: -2147221164 at System.RuntimeTypeHandle.CreateInstance(RuntimeType
type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandle&
ctor, Boolean& bNeedSecurityCheck) at System.RuntimeType.CreateInstanceSlow(Boolean
publicOnly, Boolean fillCache) at System.RuntimeType.CreateInstanceImpl(Boolean
publicOnly, Boolean skipVisibilityChecks, Boolean fillCache) at System.Activator.CreateInstance(Type
type, Boolean nonPublic) at HPSA_Messenger.MessengerCom.TrayDeskBand.isTaskbarDisplayed()
StackTrace:
at System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly,
Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandle& ctor, Boolean& bNeedSecurityCheck)
at System.RuntimeType.CreateInstanceSlow(Boolean publicOnly, Boolean fillCache)
at System.RuntimeType.CreateInstanceImpl(Boolean publicOnly, Boolean skipVisibilityChecks,
Boolean fillCache) at System.Activator.CreateInstance(Type type, Boolean nonPublic)
at HPSA_Messenger.MessengerCom.TrayDeskBand.isTaskbarDisplayed() Source: mscorlib
Name:
HPSFMsgr.exe Version: 01.00.00.00 Path: C:\Program Files (x86)\Hewlett-Packard\HP
Support Framework\Resources\HPSFMessenger\HPSFMsgr.exe Format: en-US RAM: 3834 Ram
Utilization: 40 TargetSite: System.Object CreateInstance(System.RuntimeType, Boolean,
Boolean, Boolean ByRef, System.RuntimeMethodHandle ByRef, Boolean ByRef)
Error - 2/11/2013 11:51:48 PM | Computer Name = dogonit23-HP | Source = HPSF.exe | ID = 4000
Description =
Error - 2/11/2013 11:55:04 PM | Computer Name = dogonit23-HP | Source = HPSF.exe | ID = 4000
Description =
Error - 2/11/2013 11:59:28 PM | Computer Name = dogonit23-HP | Source = HPSF.exe | ID = 4000
Description =
[ HP Wireless Assistant Events ]
Error - 2/6/2011 6:43:59 AM | Computer Name = dogonit23-HP | Source = HP WA Service | ID = 0
Description = System.Runtime.InteropServices.COMException The RPC server is unavailable.
(Exception from HRESULT: 0x800706BA) at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32
errorCode, IntPtr errorInfo) at System.Management.ManagementScope.InitializeGuts(Object
o) at System.Management.ManagementScope.Initialize() at System.Management.ManagementObject.Initialize(Boolean
getObject) at System.Management.ManagementBaseObject.get_Properties() at System.Management.ManagementBaseObject.GetPropertyValue(String
propertyName) at HPPA_Service.CurrentConfiguration.<ReloadRadioList>b__c()
Error - 2/6/2011 6:44:04 AM | Computer Name = dogonit23-HP | Source = HP WA Service | ID = 0
Description = System.Runtime.InteropServices.COMException The RPC server is unavailable.
(Exception from HRESULT: 0x800706BA) at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32
errorCode, IntPtr errorInfo) at System.Management.ManagementScope.InitializeGuts(Object
o) at System.Management.ManagementScope.Initialize() at System.Management.ManagementObject.Initialize(Boolean
getObject) at System.Management.ManagementBaseObject.get_Properties() at System.Management.ManagementBaseObject.GetPropertyValue(String
propertyName) at HPPA_Service.CurrentConfiguration.<ReloadRadioList>b__c()
Error - 2/6/2011 6:44:09 AM | Computer Name = dogonit23-HP | Source = HP WA Service | ID = 0
Description = System.Runtime.InteropServices.COMException The RPC server is unavailable.
(Exception from HRESULT: 0x800706BA) at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32
errorCode, IntPtr errorInfo) at System.Management.ManagementScope.InitializeGuts(Object
o) at System.Management.ManagementScope.Initialize() at System.Management.ManagementObject.Initialize(Boolean
getObject) at System.Management.ManagementBaseObject.get_Properties() at System.Management.ManagementBaseObject.GetPropertyValue(String
propertyName) at HPPA_Service.CurrentConfiguration.<ReloadRadioList>b__c()
Error - 2/6/2011 6:44:14 AM | Computer Name = dogonit23-HP | Source = HP WA Service | ID = 0
Description = System.Runtime.InteropServices.COMException The RPC server is unavailable.
(Exception from HRESULT: 0x800706BA) at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32
errorCode, IntPtr errorInfo) at System.Management.ManagementScope.InitializeGuts(Object
o) at System.Management.ManagementScope.Initialize() at System.Management.ManagementObject.Initialize(Boolean
getObject) at System.Management.ManagementBaseObject.get_Properties() at System.Management.ManagementBaseObject.GetPropertyValue(String
propertyName) at HPPA_Service.CurrentConfiguration.<ReloadRadioList>b__c()
Error - 2/6/2011 6:44:19 AM | Computer Name = dogonit23-HP | Source = HP WA Service | ID = 0
Description = System.Runtime.InteropServices.COMException The RPC server is unavailable.
(Exception from HRESULT: 0x800706BA) at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32
errorCode, IntPtr errorInfo) at System.Management.ManagementScope.InitializeGuts(Object
o) at System.Management.ManagementScope.Initialize() at System.Management.ManagementObject.Initialize(Boolean
getObject) at System.Management.ManagementBaseObject.get_Properties() at System.Management.ManagementBaseObject.GetPropertyValue(String
propertyName) at HPPA_Service.CurrentConfiguration.<ReloadRadioList>b__c()
Error - 2/6/2011 6:44:24 AM | Computer Name = dogonit23-HP | Source = HP WA Service | ID = 0
Description = System.Runtime.InteropServices.COMException The RPC server is unavailable.
(Exception from HRESULT: 0x800706BA) at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32
errorCode, IntPtr errorInfo) at System.Management.ManagementScope.InitializeGuts(Object
o) at System.Management.ManagementScope.Initialize() at System.Management.ManagementObject.Initialize(Boolean
getObject) at System.Management.ManagementBaseObject.get_Properties() at System.Management.ManagementBaseObject.GetPropertyValue(String
propertyName) at HPPA_Service.CurrentConfiguration.<ReloadRadioList>b__c()
Error - 2/6/2011 6:44:29 AM | Computer Name = dogonit23-HP | Source = HP WA Service | ID = 0
Description = System.Runtime.InteropServices.COMException The RPC server is unavailable.
(Exception from HRESULT: 0x800706BA) at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32
errorCode, IntPtr errorInfo) at System.Management.ManagementScope.InitializeGuts(Object
o) at System.Management.ManagementScope.Initialize() at System.Management.ManagementObject.Initialize(Boolean
getObject) at System.Management.ManagementBaseObject.get_Properties() at System.Management.ManagementBaseObject.GetPropertyValue(String
propertyName) at HPPA_Service.CurrentConfiguration.<ReloadRadioList>b__c()
Error - 2/6/2011 6:44:34 AM | Computer Name = dogonit23-HP | Source = HP WA Service | ID = 0
Description = System.Runtime.InteropServices.COMException The RPC server is unavailable.
(Exception from HRESULT: 0x800706BA) at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32
errorCode, IntPtr errorInfo) at System.Management.ManagementScope.InitializeGuts(Object
o) at System.Management.ManagementScope.Initialize() at System.Management.ManagementObject.Initialize(Boolean
getObject) at System.Management.ManagementBaseObject.get_Properties() at System.Management.ManagementBaseObject.GetPropertyValue(String
propertyName) at HPPA_Service.CurrentConfiguration.<ReloadRadioList>b__c()
Error - 2/6/2011 6:44:40 AM | Computer Name = dogonit23-HP | Source = HP WA Service | ID = 0
Description = System.Runtime.InteropServices.COMException The RPC server is unavailable.
(Exception from HRESULT: 0x800706BA) at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32
errorCode, IntPtr errorInfo) at System.Management.ManagementScope.InitializeGuts(Object
o) at System.Management.ManagementScope.Initialize() at System.Management.ManagementObject.Initialize(Boolean
getObject) at System.Management.ManagementBaseObject.get_Properties() at System.Management.ManagementBaseObject.GetPropertyValue(String
propertyName) at HPPA_Service.CurrentConfiguration.<ReloadRadioList>b__c()
Error - 2/6/2011 6:44:45 AM | Computer Name = dogonit23-HP | Source = HP WA Service | ID = 0
Description = System.Runtime.InteropServices.COMException The RPC server is unavailable.
(Exception from HRESULT: 0x800706BA) at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32
errorCode, IntPtr errorInfo) at System.Management.ManagementScope.InitializeGuts(Object
o) at System.Management.ManagementScope.Initialize() at System.Management.ManagementObject.Initialize(Boolean
getObject) at System.Management.ManagementBaseObject.get_Properties() at System.Management.ManagementBaseObject.GetPropertyValue(String
propertyName) at HPPA_Service.CurrentConfiguration.<ReloadRadioList>b__c()
[ System Events ]
Error - 3/5/2013 1:36:12 PM | Computer Name = dogonit23-HP | Source = Application Popup | ID = 1060
Description = \SystemRoot\SysWow64\Drivers\Aspi32.SYS has been blocked from loading
due to incompatibility with this system. Please contact your software vendor for
a compatible version of the driver.
Error - 3/5/2013 1:37:00 PM | Computer Name = dogonit23-HP | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
Aspi32
Error - 3/5/2013 6:19:39 PM | Computer Name = dogonit23-HP | Source = DCOM | ID = 10016
Description =
Error - 3/5/2013 6:19:41 PM | Computer Name = dogonit23-HP | Source = DCOM | ID = 10016
Description =
Error - 3/5/2013 6:19:44 PM | Computer Name = dogonit23-HP | Source = DCOM | ID = 10016
Description =
Error - 3/5/2013 6:19:47 PM | Computer Name = dogonit23-HP | Source = DCOM | ID = 10016
Description =
Error - 3/5/2013 6:19:49 PM | Computer Name = dogonit23-HP | Source = DCOM | ID = 10016
Description =
Error - 3/5/2013 6:19:51 PM | Computer Name = dogonit23-HP | Source = DCOM | ID = 10016
Description =
Error - 3/5/2013 6:19:53 PM | Computer Name = dogonit23-HP | Source = DCOM | ID = 10016
Description =
Error - 3/5/2013 6:20:01 PM | Computer Name = dogonit23-HP | Source = DCOM | ID = 10016
Description =
< End of report >