Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Can not log on Internet Explorer


  • Please log in to reply

#1
sarahvon

sarahvon

    New Member

  • Member
  • Pip
  • 1 posts
OTL Extras logfile created on: 4/2/2013 5:15:21 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Sarahvon\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16521)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

7.75 Gb Total Physical Memory | 5.51 Gb Available Physical Memory | 71.17% Memory free
15.49 Gb Paging File | 12.54 Gb Available in Paging File | 80.95% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 581.66 Gb Total Space | 508.98 Gb Free Space | 87.50% Space Free | Partition Type: NTFS
Drive D: | 14.21 Gb Total Space | 1.58 Gb Free Space | 11.13% Space Free | Partition Type: NTFS
Drive H: | 99.34 Mb Total Space | 89.20 Mb Free Space | 89.79% Space Free | Partition Type: FAT32

Computer Name: SARAHVON-HP | User Name: Sarahvon | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{056C20B3-D280-4FE8-81B5-EC223F5FD8F9}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{07A72254-B9B8-4A49-AD7C-7A343B5EA149}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{08CF9C4A-6D7B-42A4-BFBE-DAE1D18A01B3}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{15C7314F-0B7C-4E93-ADAC-0E2F04B69B4F}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{22A38EB1-64F5-4F44-B29A-4A7C68F81969}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{22C00B35-5644-49C3-9651-2C1E7847BF53}" = lport=10244 | protocol=6 | dir=in | app=system |
"{2427B1D0-1A24-4DEC-92A8-07C90E1BA474}" = lport=139 | protocol=6 | dir=in | app=system |
"{2641162A-5BFD-4734-BFCB-15A60DDD4B9F}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{2671A44B-4CD5-43A7-BA67-5CA764472FDF}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{26772A51-BE6A-4674-A10B-FFA726E30FCC}" = rport=10243 | protocol=6 | dir=out | app=system |
"{2A435DCA-E87C-4FFD-B257-CB248451D2D4}" = rport=139 | protocol=6 | dir=out | app=system |
"{2D4530C1-EA43-4C4E-A5DA-6BF0CA6D5613}" = lport=554 | protocol=6 | dir=in | app=%systemroot%\ehome\ehshell.exe |
"{2DCDEC0C-BC05-4D4F-B6BE-D2714F84D42B}" = lport=443 | protocol=6 | dir=in | name=oovoo tcp port 443 |
"{2E01FDBB-ED9C-452C-B166-6F268BC976C5}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{383A68DE-CE9F-45D2-B54B-4146F2250B36}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{3D506C79-68C6-4C3E-B971-A34847B29E92}" = lport=37675 | protocol=17 | dir=in | name=oovoo udp port 37675 |
"{40F7015A-6A98-4B75-B209-3055EC608E29}" = lport=2869 | protocol=6 | dir=in | app=system |
"{4125A20F-6965-4042-BB53-3EC831C2F22E}" = lport=7777 | protocol=17 | dir=in | app=%systemroot%\ehome\ehshell.exe |
"{470A6713-D0B0-47F5-870E-8DFCABC8D567}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{4D5E1D4E-960B-4456-8BC1-F3770047BEDE}" = lport=137 | protocol=17 | dir=in | app=system |
"{51C84B0B-026B-4D38-B0B4-B146AA29F01A}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{52668B6A-F92F-4572-B54D-4EC17B3F29DA}" = rport=445 | protocol=6 | dir=out | app=system |
"{5F218B31-68E5-43F3-AFA8-2BF546459D19}" = lport=10243 | protocol=6 | dir=in | app=system |
"{6C08BFF8-85C9-4F8B-8FAA-A6166A41D204}" = lport=445 | protocol=6 | dir=in | app=system |
"{6CEDBA7B-9D16-418E-881B-828030397EB1}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{713166E5-914E-41F9-96D8-FCEA8BD9169D}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{7976FE84-2688-4064-BFA2-81220A08F0EF}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{7A9CB761-2A2E-40D5-B8FE-FA60A18D578E}" = rport=80 | protocol=6 | dir=out | app=c:\program files (x86)\common files\intuit\update service v4\intuitupdateservice.exe |
"{7F502DC4-334D-4757-8F31-3F90FA3F349D}" = rport=80 | protocol=6 | dir=out | app=c:\program files (x86)\common files\intuit\update service v4\intuitupdater.exe |
"{81549396-46C4-4311-B324-C1C4808E6A0B}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{84E651C3-A1B9-444D-8242-EE8AD9BB7638}" = lport=443 | protocol=17 | dir=in | name=oovoo udp port 443 |
"{93106930-5075-4AAC-92DC-FC95808D61E0}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{9A1D3D3D-9926-4EF7-A79D-F20C34C7F1AC}" = lport=37674 | protocol=6 | dir=in | name=oovoo tcp port 37674 |
"{9A86AB5D-41D8-40E6-88D5-FDC296FB09DA}" = lport=3390 | protocol=6 | dir=in | app=system |
"{9E49C59B-BD76-4F29-A086-F43620B41AA0}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{9EC47F44-6DA0-4D51-B685-B542F40F78C9}" = lport=37674 | protocol=17 | dir=in | name=oovoo udp port 37674 |
"{AB3789FE-E70D-46E1-A010-FB10FF20147F}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{ADA4BE31-3503-4B6C-844C-2D12591ADB9A}" = lport=138 | protocol=17 | dir=in | app=system |
"{B4BA8757-51AD-48FE-BFF1-5D918C0848F7}" = lport=2869 | protocol=6 | dir=in | app=system |
"{BC63ACF2-102F-4CA0-A641-7E586B7876AC}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{C4CE2B01-C022-41A3-AB46-655B02EBB2E2}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{C7FBA407-7DF0-443E-B258-6AA1909CFADF}" = rport=137 | protocol=17 | dir=out | app=system |
"{CDD0D5F3-B5FF-4AE2-A97D-F2605201278F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{D56BA5CB-93F7-4127-90BE-FF0C289FCDDF}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{D6FA63A3-A87B-4647-8508-18ED54CB65A2}" = rport=138 | protocol=17 | dir=out | app=system |
"{D8446DC6-53EE-4D46-86F4-F794833C229B}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{DD5E35C2-6241-47A8-A106-B8D1A2251C89}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{DD6E1C58-7521-4DAB-B6E9-EDB211F18F19}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{E0B79E42-6D45-4088-AF38-AD4BB27AAE35}" = lport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{EA6B43A4-C8FC-4948-822B-AEB03DA3BF3D}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{F184BBCA-66AD-428C-A86F-A80D549C11F2}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F3B6DB22-C3E1-4DEA-B8C1-0B5E2406C21F}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{02171240-E2FB-42B3-9F15-ECA7460056B0}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{02F829F9-55BE-4C1B-A65D-1012C8F505E7}" = dir=in | app=c:\program files (x86)\belkin\router setup and monitor\belkinsetup.exe |
"{047D6622-41F8-485B-856E-B43410367D90}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{0607DAEA-C882-414B-85F1-6AD0114CF615}" = dir=in | app=c:\program files (x86)\laplink\pcmover\pcmover.exe |
"{0D774822-8CF5-411F-A3D8-83A295CF88F5}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{0E8C2FB4-0B0F-4832-BD57-0DE0B7FE542E}" = protocol=6 | dir=out | svc=mcx2svc | app=%systemroot%\system32\svchost.exe |
"{0F504EF4-6121-4FA5-B177-1CD8B292E924}" = protocol=6 | dir=in | app=c:\program files (x86)\roxio\roxionow player\rnowshell.exe |
"{11345E51-63B8-413F-AD46-02D956AFDA9D}" = protocol=6 | dir=in | app=c:\program files (x86)\searchresults\dtuser.exe |
"{153030E5-5537-4846-8DDF-A3640D6DDD3E}" = protocol=17 | dir=out | app=%systemroot%\ehome\ehshell.exe |
"{1888AFDD-39F9-42C6-9F5E-CBEB05FD171F}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{1C290E3A-8B38-4C71-9557-1D1BC9DAEF21}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{2A986644-E48F-4A0F-905B-7DD2DC7DA1D4}" = protocol=6 | dir=in | app=c:\program files (x86)\bearshare applications\mediabar\datamngr\toolbar\dtuser.exe |
"{2BF968C7-4826-445D-BFC1-E81F27C992FA}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{3D313E46-A4BE-41D0-8419-F6AA1EC26201}" = protocol=6 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{431BEE62-0417-4618-A6AF-CA072A7B7485}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{4F6ACB63-14C5-4A75-AD49-8F003B246771}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{54FB9D32-A155-402E-B79F-E8E432692EB8}" = protocol=6 | dir=in | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
"{5DFBD5C3-577D-4DBC-AA36-4B21054EA715}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{618302C2-9541-4B27-B4D8-96867C4E6D24}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{62C24B00-8899-4743-BFFB-40C523641F80}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe |
"{68779F2F-9121-4CAA-9ADE-E2F2EEDFEF18}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{7A9B1027-99CA-48D1-9BF0-8D82DA39B949}" = protocol=17 | dir=in | app=c:\program files (x86)\bearshare applications\mediabar\datamngr\toolbar\dtuser.exe |
"{7FFBCA59-08AC-48F5-83E2-33E7568B2ACC}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{80562131-AE83-46DE-B1DE-39CA80A86BB3}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{85F52B76-9D5B-44B2-8ABF-8D953C0420BF}" = protocol=17 | dir=in | app=c:\program files (x86)\searchresults\dtuser.exe |
"{88551D61-8ED0-400B-BCFF-54268CEF9A1E}" = protocol=17 | dir=in | app=c:\program files (x86)\belkin\router setup and monitor\belkinsetup.exe |
"{903D097F-92A7-43BE-A061-C9237F37E6B8}" = protocol=17 | dir=in | app=c:\program files (x86)\belkin\router setup and monitor\belkinsetup.exe |
"{952EA809-EA1D-4814-B0F3-23AD01177EB6}" = protocol=6 | dir=out | app=%systemroot%\ehome\ehshell.exe |
"{A659C913-5957-4B68-ADA4-BD31935416A9}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{A80FDAF0-0D39-4224-B2AC-AEBE80329FF3}" = dir=in | app=c:\program files (x86)\easybits for kids\ezdesktop.exe |
"{AC65B8FC-1A92-49C1-B242-99A422FBCB05}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{ACF776BA-2AD9-4E1F-8A21-11A607827569}" = protocol=6 | dir=out | app=%systemroot%\ehome\mcrmgr.exe |
"{AD1D3E24-B332-4CAF-B1D6-38AC8609A0DC}" = protocol=17 | dir=in | app=c:\program files (x86)\roxio\roxionow player\rnowshell.exe |
"{AF676822-9809-4B5E-B603-11E77D0ED784}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{B2A58C39-F6E8-452B-B368-64F6505B8102}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{BD14A633-F297-42F1-B323-D774F22574F0}" = protocol=6 | dir=in | app=c:\program files (x86)\hewlett-packard\mediasmart\roxionow\rnow.exe |
"{C49F73F3-8BA4-42D2-B725-B058811117CC}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{C7C597B5-A17E-49A8-BD60-21AD9FA1ECB4}" = protocol=6 | dir=in | app=c:\program files (x86)\belkin\router setup and monitor\belkinsetup.exe |
"{CA1971CB-7388-4A5B-B0EE-BC117322E0F3}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{CB8FD574-1BA2-489D-BCAC-5DFF7F2FF1A8}" = protocol=6 | dir=out | app=system |
"{CE90F2C4-F4F2-4352-8253-15FA5B2C11C8}" = protocol=17 | dir=in | app=c:\program files (x86)\hewlett-packard\mediasmart\roxionow\rnow.exe |
"{D90D589A-23DE-45F8-9070-09FB75892208}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{DCA110F0-3778-42BA-BFA4-BC8F129155CD}" = dir=in | app=c:\windows\system32\ezsharedsvchost.exe |
"{DE951E30-D836-4D8A-B3B6-85B348D18DFA}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{E2FEB716-D45C-4B0B-B1FC-9DDCAE3622D3}" = protocol=17 | dir=in | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
"{E744977E-33A3-4301-A1FF-2FE5A1641BCE}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{EA988D0E-71F2-4C11-A017-B18A15F31845}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{EB3C8AD1-DBE4-4163-A43C-AB097AE5F919}" = protocol=6 | dir=out | app=%systemroot%\ehome\mcx2prov.exe |
"{F4390F4F-BB39-4879-A095-F09B3CCB54A7}" = dir=in | app=c:\program files (x86)\hewlett-packard\hp support framework\resources\hpwarrantycheck\hpwarrantychecker.exe |
"{F4C948B2-905D-46FF-BB08-1FD860DAD6B1}" = protocol=6 | dir=in | app=c:\program files (x86)\belkin\router setup and monitor\belkinsetup.exe |
"{FA9ACFFD-D6D0-49BF-8D12-5BBF71134342}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{FE19CB19-1DD0-4FE5-BC5C-59DC8F6298A9}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"TCP Query User{EB43E6FD-8B07-4E2D-A4D5-F8B848780CB8}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"UDP Query User{9715C6E4-4F44-4E15-9BEE-89B2C28C081F}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{054EF02F-95D8-48F4-9EEB-2F9CE3072ED8}" = AuthenTec TrueAPI
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant
"{26588EB8-85EF-09E9-F1D9-52E3EFA94A81}" = AMD Fuel
"{26A24AE4-039D-4CA4-87B4-2F86416024FF}" = Java™ 6 Update 24 (64-bit)
"{2856A1C2-70C5-4EC3-AFF7-E5B51E5530A2}" = HP Client Services
"{350AA351-21FA-3270-8B7A-835434E766AD}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{5601F151-A69F-4E30-8C60-37928124CD07}" = HP 3D DriveGuard
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{656DEEDE-F6AC-47CA-A568-A1B4E34B5760}" = Windows Live Remote Service Resources
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{79174AF2-6CB1-42F5-981E-66DCA49391D0}" = Validity WBF DDK
"{7B060824-0C1E-90E4-2906-B1F547669EFF}" = ccc-utility64
"{7FBA6627-88F8-0AE0-9326-FB8488DD26E0}" = ATI Catalyst Install Manager
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}" = Windows Live Remote Client Resources
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010
"{90140000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2010
"{90140000-006D-0409-1000-0000000FF1CE}" = Microsoft Office Click-to-Run 2010
"{90140000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}" = HP Auto
"{D07A61E5-A59C-433C-BCBD-22025FA2287B}" = Windows Live Language Selector
"{D86BF639-AFA1-462A-AB44-593F71A4D7E2}" = Laplink SafeErase
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
"{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client
"{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"CCleaner" = CCleaner
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"PDF-XChange 3_is1" = PDF-XChange 3
"SynTPDeinstKey" = Synaptics Pointing Device Driver

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{007F778D-F15C-4EAB-AE92-071D21FAF632}" = Adobe Photoshop Elements 9
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"{068724F8-D8BE-4B43-8DDD-B9FE9E49FD76}" = Scansoft PDF Converter
"{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0EDEB615-1A60-425E-8306-0E10519C7B55}" = RoxioNow Player
"{106DADAD-B062-4de5-8D1F-3FD2AD195E49}" = PC Utility Kit
"{108953E4-1670-011C-093E-698B6DC3168D}" = CCC Help French
"{120262A6-7A4B-4889-AE85-F5E5688D3683}" = HP MovieStore
"{132EAFB3-2B2A-A694-0D67-099066554F60}" = CCC Help Polish
"{1439B98F-681E-4D51-BB90-D04474E4C6EA}" = Serif Digital Scrapbook Artist 2
"{17A869F2-4ABC-446D-B497-F08A7450A923}" = PearsonVUE Tutorial and Practice Exam
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{18FC153D-D962-E9E5-47A4-330E829D49B5}" = CCC Help Japanese
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{1E03DB52-D5CB-4338-A338-E526DD4D4DB1}" = Bing Bar
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{20F13E5A-6E78-9807-4628-57974A1AB862}" = Catalyst Control Center Localization All
"{210A03F5-B2ED-4947-B27E-516F50CBB292}" = HP Setup
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{26A24AE4-039D-4CA4-87B4-2F83216024FF}" = Java™ 6 Update 26
"{285F722C-0E45-47DE-B38E-5B3B10FA4A7C}" = HP Quick Launch
"{28B8CCF7-7CE3-0F37-6BED-8E9446000141}" = CCC Help Thai
"{28FE073B-1230-4BF6-830C-7434FD0C0069}" = HP Software Framework
"{2902F983-B4C1-44BA-B85D-5C6D52E2C441}" = Windows Live Mesh ActiveX Control for Remote Connections
"{2EA870FA-585F-4187-903D-CB9FFD21E2E0}" = DHTML Editing Component
"{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App" = Update Installer for WildTangent Games App
"{30E411BE-C174-405F-9361-27F4CEDE0C19}" = PCmover Professional
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{35EDE682-4AE5-47D6-B44F-103F859951DC}" = Serif PanoramaPlus X4
"{378C743F-06B8-430F-91A0-0EDD06EDD253}" = Nuance PDF Converter 7
"{3877C901-7B90-4727-A639-B6ED2DD59D43}" = ESU for Microsoft Windows 7
"{433EACD8-4747-4A6A-826A-FFA9F39B0D40}" = Elements 9 Organizer
"{442A4B2B-1A30-5C0F-753D-13529EBCB22C}" = CCC Help Dutch
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4D46DE30-49FE-4043-99F7-D7E8C06175E0}_is1" = AntiLogger SDK version 1.4.6.637
"{4F08C533-EB80-88C5-DA91-CC5EEC7435BA}" = Catalyst Control Center Graphics Previews Common
"{50BD0B15-5197-4EAF-8BCD-81117D1324B1}" = Family Tree Heritage Collaboration Support
"{53E4CE64-629E-4590-AB43-1D8C85A6E621}" = The Print Shop 2.0 Deluxe
"{546984D4-170B-2C56-1AB8-10F9552935ED}" = CCC Help Czech
"{553C904F-57A2-4113-888E-BA0C3D1C69C0}" = Microsoft VC9 runtime libraries
"{55FD1D5A-7AEF-4DA3-8FAF-A71B2A52FFC7}_is1" = iolo technologies' System Mechanic
"{571D119C-CF96-46C2-BD68-B6FE1439F181}" = Catalyst Control Center - Branding
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{596ECF31-381D-406D-9C22-6B805C3D7A8F}" = TurboTax 2011 wgaiper
"{5AB52F3C-23C7-4FB2-9285-C0C0635CABCC}" = Punch! Home and Landscape
"{5F136FB9-B653-185A-F203-288C43811D58}" = CCC Help Norwegian
"{63EE0664-A05E-5F64-0411-FB2011C3E348}" = CCC Help Portuguese
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.1.2.0
"{6F44AF95-3CDE-4513-AD3F-6D45F17BF324}" = HP Support Assistant
"{70AFA3C0-558B-9099-A573-9703AB3FD67D}" = Catalyst Control Center InstallProxy
"{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp" = WildTangent Games App (HP Games)
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7A6B4340-7090-418F-8976-EE9650B35550}" = HP Connection Manager
"{7BE15435-2D3E-4B58-867F-9C75BED0208C}" = QuickTime
"{7E76ABF7-A6AD-115D-3B59-59AE0467987B}" = CCC Help Spanish
"{80956555-A512-4190-9CAD-B000C36D6B6B}" = Windows Live Messenger
"{80C03F1B-0E02-16E7-59C5-84FC57602C55}" = CCC Help Finnish
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-510007707}" = Lost in Night
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{84F41469-E24B-7B5A-F949-AD8AD770B438}" = CCC Help Danish
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{879AF6B3-7253-B9A9-1538-BDC9C6B2421B}" = CCC Help Swedish
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{8AF58048-CE5D-01C7-0134-5F991FDC17EE}" = CCC Help Russian
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E1CB0F1-67BF-4052-AA23-FA22E94804C1}" = InstallIQ Updater
"{8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}" = Ralink RT5390 802.11b/g/n WiFi Adapter
"{9008D736-35CA-40DB-A2BE-5F32D954E5AA}" = HP MovieStore
"{90140000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2010
"{90140000-0015-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2010
"{90140000-0016-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2010
"{90140000-0018-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2010
"{90140000-0019-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2010
"{90140000-001A-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2010
"{90140000-001B-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010
"{90140000-001F-040C-0000-0000000FF1CE}_Office14.SingleImage_{46298F6A-1E7E-4D4A-B5F5-106A4F0E48C6}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010
"{90140000-001F-0C0A-0000-0000000FF1CE}_Office14.SingleImage_{DEA87BE2-FFCC-4F33-9946-FCBE55A1E998}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{967EF02C-5C7E-4718-8FCB-BDC050190CCF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002A-0409-1000-0000000FF1CE}_Office14.SingleImage_{D6C6B46A-6CE1-4561-84A0-EFD58B8AB979}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010
"{90140000-002C-0409-0000-0000000FF1CE}_Office14.SingleImage_{7CA93DF4-8902-449E-A42E-4C5923CFBDE3}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-003D-0000-0000-0000000FF1CE}" = Microsoft Office Single Image 2010
"{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{047B0968-E622-4FAA-9B4B-121FA109EDDE}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010
"{90140000-006E-0409-0000-0000000FF1CE}_Office14.SingleImage_{4560037C-E356-444A-A015-D21F487D809E}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2010
"{90140000-00A1-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010
"{90140000-0115-0409-0000-0000000FF1CE}_Office14.SingleImage_{4560037C-E356-444A-A015-D21F487D809E}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0116-0409-1000-0000000FF1CE}_Office14.SingleImage_{D6C6B46A-6CE1-4561-84A0-EFD58B8AB979}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2010
"{90140000-0117-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140011-0062-0409-0000-0000000FF1CE}" = Microsoft Office Home and Business 2010 - English
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{93B41F22-14EC-A8D8-B55D-B569E6D415AA}" = CCC Help Chinese Traditional
"{95140000-00AF-0409-0000-0000000FF1CE}" = Microsoft PowerPoint Viewer
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{9F5BD369-23CF-416F-87AB-38763809B43B}_is1" = Mahjong Mysteries - Ancient Egypt
"{A0C91188-C88F-4E86-93E6-CD7C9A266649}" = Windows Live Mesh
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A4338C8A-6E6F-5908-69C7-9C768E440EDF}" = CCC Help German
"{A4D5167D-D18E-F3F8-26AC-13BC439A849E}" = CCC Help Greek
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A755E802-F7F0-F079-69B6-6CA814F66DAE}" = Catalyst Control Center
"{A83279FD-CA4B-4206-9535-90974DE76654}" = Apple Application Support
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
"{AC76BA86-7AD7-FFFF-7B44-AA0000000001}" = Adobe Reader X (10.1.1) MUI
"{AE856388-AFAD-4753-81DF-D96B19D0A17C}" = HP Setup Manager
"{AEDA8713-5521-4600-9AC2-81674A9EDC4F}" = Blio
"{B6946BAC-2169-42CC-8E6D-F6FE2EEDB20F}" = HP Documentation
"{BCFAA37D-A6DB-43BF-A351-43F183E52D07}" = HP SimplePass 2011
"{BD1A34C9-4764-4F79-AE1F-112F8C89D3D4}" = Energy Star Digital Logo
"{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader
"{C1F77753-F64B-BD33-3BC5-4C2A22DCBA67}" = CCC Help Italian
"{C5CFE150-86C1-4D7C-B07B-9023A62628DC}" = honestech Easy Video Editor
"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
"{CAF5B770-082F-40C4-853D-3973BB81BDAA}" = TurboTax 2011 WinPerTaxSupport
"{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D1D0FAEA-D317-439A-9798-3D406E850BDE}" = Fairy Forest
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D7670221-BF9B-4DFF-B26B-5BE55A87329F}" = HP On Screen Display
"{D867522F-4E43-A5AA-0D24-ADC0C7969555}" = CCC Help Hungarian
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DBCD5E64-7379-4648-9444-8A6558DCB614}" = Recovery Manager
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E0612C03-2885-66DC-495C-2D944B448F98}" = CCC Help English
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E2AE009D-37E5-4724-A6B8-0ED6A6BA4F68}" = Elements STI Installer
"{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E44578C7-4667-4124-8BC2-1161BCA54978}" = HP Power Manager
"{E463E171-4082-4744-A466-F7CBE8502789}" = TurboTax 2011 WinPerReleaseEngine
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{EBFEEB3F-3E3B-4725-A4E0-376144CE4F76}" = Citrix XenApp Web Plugin
"{EC343B2E-C4CE-0298-B3AD-7C22BAE966A0}" = CCC Help Korean
"{EC8282AB-48DD-91D2-7387-01CD6E100A5D}" = Adobe Photoshop.com Inspiration Browser
"{EE556A3E-EB37-4392-9637-BAA8EC2F47FA}" = TurboTax 2011 wrapper
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F302F4F0-588D-6501-1ACF-BE3FDCC9135D}" = Adobe Community Help
"{F358C0E1-B8DD-43A4-8B2E-269710247F16}" = Typing Instructor Platinum
"{F68DFE6C-43D8-EAD2-D90C-0105A72FA37B}" = CCC Help Chinese Standard
"{F761359C-9CED-45AE-9A51-9D6605CD55C4}" = Evernote v. 4.2.2
"{FAA7F8FF-3C05-4A61-8F14-D8A6E9ED6623}" = ooVoo
"{FAD3D68B-2F9C-459B-AA79-C04B9090FD72}" = TurboTax 2011 WinPerFedFormset
"{FC2FCC30-642D-93BF-B3E9-A82BA300DEF4}" = CCC Help Turkish
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"20,000 Notebook Games" = 20,000 Notebook Games
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Photoshop Elements 9" = Adobe Photoshop Elements 9
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"Belkin Setup and Router Monitor_is1" = Belkin Setup and Router Monitor
"BFGC" = Big Fish Games: Game Manager
"Blackboard IM" = Blackboard IM 4.0.1-C
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"Chica Password Manager_is1" = Chica Password Manager 1.10.0.6
"Clue Classic" = Clue Classic (remove only)
"EasyBits Magic Desktop" = Magic Desktop
"Family Tree Heritage" = Family Tree Heritage
"Foxit Reader" = Foxit Reader
"Game of LIFE" = Game of LIFE (remove only)
"Google Chrome" = Google Chrome
"HP DVB-T TV Tuner" = HP DVB-T TV Tuner 8.0.64.43
"ID Vault" = Constant Guard Protection Suite
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"InstallShield_{50BD0B15-5197-4EAF-8BCD-81117D1324B1}" = Family Tree Heritage Collaboration Support
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.70.0.1100
"mefeediatest" = MeFeedia
"Monopoly" = Monopoly (remove only)
"MyScrapNook_12bar Uninstall" = My Scrap Nook Toolbar
"MyWebSearch bar Uninstall" = My Web Search (My Fun Cards)
"N360" = Norton Security Suite
"NoAdware 5.0_is1" = NoAdware v5.0
"Office14.Click2Run" = Microsoft Office Click-to-Run 2010
"Office14.SingleImage" = Microsoft Office Home and Student 2010
"Operation Mania" = Operation Mania (remove only)
"PhotoshopdotcomInspirationBrowser.4C35C4D325D350FE0114230CBADCA2DDD0AC8D25.1" = Adobe Photoshop.com Inspiration Browser
"Pictureka! Museum Mayhem" = Pictureka! Museum Mayhem (remove only)
"profile_spy Toolbar" = profile spy Toolbar
"Quicken Legal Business Pro 2011" = Quicken Legal Business Pro 2011
"RegClean Pro_is1" = RegClean Pro
"searchresults" = Search Results Toolbar
"SoftwareUpdUtility" = Download Updater (AOL LLC)
"Total 3D Home, Landscape, and Deck" = Total 3D Home, Landscape, and Deck
"TurboTax 2011" = TurboTax 2011
"WildTangent hp Master Uninstall" = HP Games
"WildTangent wildgames Master Uninstall" = WildTangent Games
"Wincore MediaBar" = Wincore MediaBar
"WinLiveSuite" = Windows Live Essentials
"WT087393" = Mah Jong Medley
"WTA-ff14c65a-b017-4455-9cca-07f6cb459609" = Paris Mahjong
"xfin_portal" = XFINITY Toolbar
"Yahoo! Companion" = Yahoo! Toolbar
"Yahoo! Messenger" = Yahoo! Messenger
"Yahoo! Software Update" = Yahoo! Software Update
"Yahtzee" = Yahtzee (remove only)

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{79A765E1-C399-405B-85AF-466F52E918B0}" = ooVoo toolbar, powered by Ask.com Updater
"Mystery Case Files - Prime Suspects" = Mystery Case Files - Prime Suspects (remove only)
"Smilebox" = Smilebox

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 5/24/2012 5:37:57 PM | Computer Name = Sarahvon-HP | Source = CVHSVC | ID = 100
Description = Information only. (Patch task for {90140011-0062-0409-0000-0000000FF1CE}):
DownloadLatest Failed: There are currently no active network connections. Background
Intelligent Transfer Service (BITS) will try again when an adapter is connected.


Error - 5/25/2012 8:03:05 AM | Computer Name = Sarahvon-HP | Source = WinMgmt | ID = 10
Description =

Error - 5/26/2012 12:04:13 AM | Computer Name = Sarahvon-HP | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Failed extract of third-party root list from auto update cab at: <http://www.download....uthrootstl.cab>
with error: The data is invalid. .

Error - 5/26/2012 1:39:22 PM | Computer Name = Sarahvon-HP | Source = WinMgmt | ID = 10
Description =

Error - 5/26/2012 10:24:33 PM | Computer Name = Sarahvon-HP | Source = WinMgmt | ID = 10
Description =

Error - 5/26/2012 10:35:07 PM | Computer Name = Sarahvon-HP | Source = CVHSVC | ID = 100
Description = Information only. (Patch task for {90140011-0062-0409-0000-0000000FF1CE}):
DownloadLatest Failed:

Error - 5/26/2012 10:42:38 PM | Computer Name = Sarahvon-HP | Source = WinMgmt | ID = 10
Description =

Error - 5/26/2012 10:56:09 PM | Computer Name = Sarahvon-HP | Source = Application Error | ID = 1000
Description = Faulting application name: iexplore.exe, version: 9.0.8112.16421,
time stamp: 0x4d76255d Faulting module name: ntdll.dll, version: 6.1.7601.17725,
time stamp: 0x4ec49b8f Exception code: 0xc0000374 Fault offset: 0x000ce6c3 Faulting
process id: 0x1b1c Faulting application start time: 0x01cd3bb28b343039 Faulting application
path: C:\Program Files (x86)\Internet Explorer\iexplore.exe Faulting module path:
C:\Windows\SysWOW64\ntdll.dll Report Id: 8261389e-a7a7-11e1-b925-101f74136cde

Error - 5/27/2012 8:49:08 AM | Computer Name = Sarahvon-HP | Source = WinMgmt | ID = 10
Description =

Error - 5/27/2012 9:21:10 AM | Computer Name = Sarahvon-HP | Source = WinMgmt | ID = 10
Description =

[ Hewlett-Packard Events ]
Error - 5/24/2012 11:47:25 PM | Computer Name = Sarahvon-HP | Source = HPSF.exe | ID = 4000
Description =

Error - 5/24/2012 11:47:43 PM | Computer Name = Sarahvon-HP | Source = hpsa_service.exe | ID = 2000
Description = HP Error ID: -2146233088 at HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateDetail(String
category) at HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateAndDetectCore()

at HP.SupportAssistant.Service.ACLM.ActiveCheck.LaunchActiveCheck(Boolean singleScan,
Boolean localScan) Message: Failed to perform update. StackTrace: at HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateDetail(String
category) at HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateAndDetectCore()

at HP.SupportAssistant.Service.ACLM.ActiveCheck.LaunchActiveCheck(Boolean singleScan,
Boolean localScan) Source: HP.ActiveCheckLocalMode.SessionManager InnerException.Message:
Object '/a4967c6e_acec_4dd5_b437_0bf1aed3d639/gw7ro0vbo8rbl+23y0cgfxcv_5.rem' has
been disconnected or does not exist at the server. Name: hpsa_service.exe Version:
06.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
Format:
en-US RAM: 7930 Ram Utilization: 20 TargetSite: Void UpdateDetail(System.String)

[ HP Connection Manager Events ]
Error - 3/27/2013 6:55:32 PM | Computer Name = Sarahvon-HP | Source = hpCMSrv | ID = 5
Description = 2013/03/27 18:55:32.722|00000FD8|Error |CWLAN::SignalStrengthChanged|Fire_SignalStrengthChanged
failed [hr:0x800706BA]

Error - 3/27/2013 6:55:32 PM | Computer Name = Sarahvon-HP | Source = hpCMSrv | ID = 5
Description = 2013/03/27 18:55:32.738|00000FD8|Error |CWLAN::SignalStrengthChanged|Fire_SignalStrengthChanged
failed [hr:0x800706BA]

Error - 3/27/2013 6:55:34 PM | Computer Name = Sarahvon-HP | Source = hpCMSrv | ID = 5
Description = 2013/03/27 18:55:34.734|00000FD8|Error |CWLAN::SignalStrengthChanged|Fire_SignalStrengthChanged
failed [hr:0x800706BA]

Error - 3/27/2013 7:36:04 PM | Computer Name = Sarahvon-HP | Source = hpCMSrv | ID = 5
Description = 2013/03/27 19:36:04.020|00000764|Error |CWLAN::SignalStrengthChanged|Fire_SignalStrengthChanged
failed [hr:0x800706BA]

Error - 3/27/2013 7:36:06 PM | Computer Name = Sarahvon-HP | Source = hpCMSrv | ID = 5
Description = 2013/03/27 19:36:06.016|00000764|Error |CWLAN::SignalStrengthChanged|Fire_SignalStrengthChanged
failed [hr:0x800706BA]

Error - 3/27/2013 7:36:09 PM | Computer Name = Sarahvon-HP | Source = hpCMSrv | ID = 5
Description = 2013/03/27 19:36:09.453|00000764|Error |CWLAN::SignalStrengthChanged|Fire_SignalStrengthChanged
failed [hr:0x800706BA]

Error - 3/28/2013 10:06:05 PM | Computer Name = Sarahvon-HP | Source = hpCMSrv | ID = 5
Description = 2013/03/28 22:06:05.753|00000D2C|Error |CWLAN::SignalStrengthChanged|Fire_SignalStrengthChanged
failed [hr:0x800706BA]

Error - 3/28/2013 10:25:59 PM | Computer Name = Sarahvon-HP | Source = hpCMSrv | ID = 5
Description = 2013/03/28 22:25:59.054|0000121C|Error |CWLAN::SignalStrengthChanged|Fire_SignalStrengthChanged
failed [hr:0x800706BA]

Error - 3/28/2013 10:26:02 PM | Computer Name = Sarahvon-HP | Source = hpCMSrv | ID = 5
Description = 2013/03/28 22:26:02.907|0000121C|Error |CWLAN::SignalStrengthChanged|Fire_SignalStrengthChanged
failed [hr:0x800706BA]

Error - 4/2/2013 3:28:33 PM | Computer Name = Sarahvon-HP | Source = hpCMSrv | ID = 5
Description = 2013/04/02 15:28:33.224|000016D8|Error |CWLAN::SignalStrengthChanged|Fire_SignalStrengthChanged
failed [hr:0x800706BA]

[ HP Software Framework Events ]
Error - 8/24/2012 12:35:41 AM | Computer Name = Sarahvon-HP | Source = CaslWmi | ID = 5
Description = 2012/08/24 00:35:41.749|0000195C|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error
0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state

Error - 8/25/2012 11:32:27 PM | Computer Name = Sarahvon-HP | Source = CaslWmi | ID = 5
Description = 2012/08/25 23:32:27.753|0000144C|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error
0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state

Error - 8/26/2012 4:02:45 PM | Computer Name = Sarahvon-HP | Source = CaslWmi | ID = 5
Description = 2012/08/26 16:02:45.754|00001608|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error
0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state

Error - 8/28/2012 6:33:43 PM | Computer Name = Sarahvon-HP | Source = CaslWmi | ID = 5
Description = 2012/08/28 18:33:43.407|000016C4|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error
0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state

Error - 8/28/2012 10:07:03 PM | Computer Name = Sarahvon-HP | Source = CaslWmi | ID = 5
Description = 2012/08/28 22:07:03.437|00001198|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error
0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state

Error - 8/28/2012 11:04:07 PM | Computer Name = Sarahvon-HP | Source = CaslWmi | ID = 5
Description = 2012/08/28 23:04:07.430|00001744|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error
0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state

Error - 8/30/2012 6:38:52 PM | Computer Name = Sarahvon-HP | Source = CaslWmi | ID = 5
Description = 2012/08/30 18:38:52.794|00000E08|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error
0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state

Error - 8/30/2012 7:12:16 PM | Computer Name = Sarahvon-HP | Source = CaslWmi | ID = 5
Description = 2012/08/30 19:12:16.075|0000182C|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error
0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state

Error - 8/31/2012 7:06:57 PM | Computer Name = Sarahvon-HP | Source = CaslWmi | ID = 5
Description = 2012/08/31 19:06:57.018|00001104|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error
0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state

Error - 9/2/2012 9:03:07 PM | Computer Name = Sarahvon-HP | Source = CaslWmi | ID = 5
Description = 2012/09/02 21:03:07.012|00001494|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error
0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state

[ Media Center Events ]
Error - 1/2/2012 10:06:45 AM | Computer Name = Sarahvon-HP | Source = MCUpdate | ID = 0
Description = 9:06:36 AM - Error connecting to the internet. 9:06:36 AM - Unable
to contact server..

Error - 1/3/2012 6:33:56 PM | Computer Name = Sarahvon-HP | Source = MCUpdate | ID = 0
Description = 5:33:56 PM - Error connecting to the internet. 5:33:56 PM - Unable
to contact server..

Error - 1/3/2012 6:34:12 PM | Computer Name = Sarahvon-HP | Source = MCUpdate | ID = 0
Description = 5:34:01 PM - Error connecting to the internet. 5:34:01 PM - Unable
to contact server..

Error - 5/17/2012 8:59:05 PM | Computer Name = Sarahvon-HP | Source = MCUpdate | ID = 0
Description = 8:58:55 PM - Error connecting to the internet. 8:58:55 PM - Unable
to contact server..

Error - 5/17/2012 9:59:12 PM | Computer Name = Sarahvon-HP | Source = MCUpdate | ID = 0
Description = 9:59:11 PM - Error connecting to the internet. 9:59:11 PM - Unable
to contact server..

Error - 5/17/2012 10:59:19 PM | Computer Name = Sarahvon-HP | Source = MCUpdate | ID = 0
Description = 10:59:18 PM - Error connecting to the internet. 10:59:18 PM - Unable
to contact server..

Error - 5/27/2012 9:48:21 PM | Computer Name = Sarahvon-HP | Source = MCUpdate | ID = 0
Description = 9:48:21 PM - Failed to retrieve SportsSchedule.enc (Error: HTTP status
404: The requested URL does not exist on the server. )

Error - 5/27/2012 10:48:49 PM | Computer Name = Sarahvon-HP | Source = MCUpdate | ID = 0
Description = 10:48:47 PM - Failed to retrieve SportsSchedule.enc (Error: HTTP status
404: The requested URL does not exist on the server. )

Error - 5/28/2012 10:41:41 AM | Computer Name = Sarahvon-HP | Source = MCUpdate | ID = 0
Description = 10:41:40 AM - Failed to retrieve SportsSchedule.enc (Error: HTTP status
404: The requested URL does not exist on the server. )

Error - 5/28/2012 12:42:13 PM | Computer Name = Sarahvon-HP | Source = MCUpdate | ID = 0
Description = 12:42:11 PM - Failed to retrieve SportsSchedule.enc (Error: HTTP status
404: The requested URL does not exist on the server. )

[ System Events ]
Error - 3/26/2013 2:05:01 PM | Computer Name = Sarahvon-HP | Source = Service Control Manager | ID = 7000
Description = The CGPS Service service failed to start due to the following error:
%%1053

Error - 3/26/2013 2:09:21 PM | Computer Name = Sarahvon-HP | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x800f0816: Security Update for Windows 7 for x64-based Systems (KB2807986).

Error - 3/27/2013 7:09:09 PM | Computer Name = Sarahvon-HP | Source = DCOM | ID = 10010
Description =

Error - 3/28/2013 10:33:27 PM | Computer Name = Sarahvon-HP | Source = Service Control Manager | ID = 7009
Description = A timeout was reached (30000 milliseconds) while waiting for the CGPS
Service service to connect.

Error - 3/28/2013 10:33:27 PM | Computer Name = Sarahvon-HP | Source = Service Control Manager | ID = 7000
Description = The CGPS Service service failed to start due to the following error:
%%1053

Error - 3/28/2013 10:39:14 PM | Computer Name = Sarahvon-HP | Source = DCOM | ID = 10010
Description =

Error - 4/2/2013 3:21:01 PM | Computer Name = Sarahvon-HP | Source = Service Control Manager | ID = 7009
Description = A timeout was reached (30000 milliseconds) while waiting for the CGPS
Service service to connect.

Error - 4/2/2013 3:21:01 PM | Computer Name = Sarahvon-HP | Source = Service Control Manager | ID = 7000
Description = The CGPS Service service failed to start due to the following error:
%%1053

Error - 4/2/2013 3:30:43 PM | Computer Name = Sarahvon-HP | Source = EventLog | ID = 6008
Description = The previous system shutdown at 3:29:19 PM on ?4/?2/?2013 was unexpected.

Error - 4/2/2013 3:36:22 PM | Computer Name = Sarahvon-HP | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070003: Security Update for Windows 7 for x64-based Systems (KB2807986).


< End of report >
  • 0

Advertisements


#2
Jintan

Jintan

    Trusted Helper

  • Malware Removal
  • 904 posts
Welcome to Geeks2Go sarahvon,

Plenty of adware installs showing here, which will interfere with network access.


The system is Windows 7, so when running any of the scan files we use, be sure to right click the file, then select "Run as administrator" to start the scan/tool.

And To make sure you have an accurate view of files there, make sure you can View Hidden Files. Also uncheck "Hide Extensions for Known File Types"



To keep them from interfering with the repairs, be sure to temporarily disable all antivirus/anti-spyware softwares while these steps are being completed. This can usually be done through right clicking the software's Taskbar icons, or accessing each software through Start - Programs. Here are some antivirus disable tips if needed.

-------

Go to Start - Control Panel - Programs - Programs and Features/Uninstall, then click on each of the following programs, if they show there, and click "Uninstall/Change".

Iolo technologies' System Mechanic - Known to damage systems, instead of fixing things.
Ask Toolbar - Adware, spyware, search hijacker.
InstallIQ Updater - Adware, spyware, search hijacker.
MeFeedia - Adware.
My Scrap Nook Toolbar - Adware, spyware, search hijacker.
My Web Search (My Fun Cards) - Adware, spyware, search hijacker.
NoAdware v5.0 - Fake, scam fixit software.
profile spy Toolbar - Adware, spyware, search hijacker.
RegClean Pro - Fake, scam fixit software.
Search Results Toolbar - Adware, spyware, search hijacker.
Download Updater (AOL LLC) - Useless.
Wincore MediaBar - Adware, spyware, search hijacker.
ooVoo toolbar, powered by Ask.com Updater - Adware, spyware, search hijacker.

Then reboot.

------------

Be sure to continue to temporarily disable any protective software when running the scan tools we use here.



Download RogueKiller from here to your desktop.

Close all open programs
Remember to right click -> run as administrator, and click the downloaded file.
Wen RogueKiller finises it's opening scan, press the Scan button..
A RKreport.txt will be created in the same location as the RogueKiller file.
If the program is blocked, do not hesitate to try several times. If it really does not work (it could happen), rename it to winlogon.exe, and try again.

Please post the contents of the RKreport.txt.

---------

Please download AdwCleaner by Xplode onto your desktop.
  • Double click on AdwCleaner.exe to run the tool.
  • Click on Search.
  • A logfile will automatically open after the scan has finished.
  • Please post the contents of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[R1].txt as well.

  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP