Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Possible infection - very slow at times


  • Please log in to reply

#1
gram12

gram12

    Member

  • Member
  • PipPip
  • 15 posts
Hey,

Recently I had an infection on my PC from something called stage_primary.
My friend cleared it up for me.
However, since then, the pc has felt rather sluggish. Especially when I run a game/program (in games I often get fps issues of around 10-14 where I once had around 50+).

My friend has no idea why, but before you guys were very helpful in fixing my infected machine.

Sorry to have to ask again!

Thanks in advance,

-
Here is the OTL log as asked for here (http://www.geekstogo...cleaning-guide/)

OTL logfile created on: 7/6/2013 4:46:57 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\ge-bill\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16614)
Locale: 00000409 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

5.42 Gb Total Physical Memory | 2.44 Gb Available Physical Memory | 45.02% Memory free
10.84 Gb Paging File | 7.16 Gb Available in Paging File | 66.03% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 288.32 Gb Total Space | 96.42 Gb Free Space | 33.44% Space Free | Partition Type: NTFS
Drive D: | 2.79 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF
Drive F: | 511.50 Mb Total Space | 490.03 Mb Free Space | 95.80% Space Free | Partition Type: FAT32

Computer Name: INDEFATIGABLE | User Name: ge-bill | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2013/07/06 16:40:32 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\ge-bill\Desktop\OTL.exe
PRC - [2013/06/25 19:19:25 | 000,920,472 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2013/06/21 05:15:56 | 000,413,472 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2013/06/20 11:29:38 | 000,173,192 | ---- | M] (Microsoft Corp.) -- C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe
PRC - [2013/06/17 00:00:00 | 005,306,880 | ---- | M] () -- c:\Program Files (x86)\Trillian\plugins\skypekit.exe
PRC - [2013/06/17 00:00:00 | 002,606,448 | ---- | M] (Cerulean Studios) -- C:\Program Files (x86)\Trillian\trillian.exe
PRC - [2013/06/12 20:23:18 | 001,855,880 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
PRC - [2013/06/07 00:06:24 | 001,641,896 | ---- | M] (Valve Corporation) -- C:\Program Files (x86)\Steam\Steam.exe
PRC - [2013/06/07 00:06:24 | 000,543,656 | ---- | M] (Valve Corporation) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe
PRC - [2013/05/19 13:59:07 | 000,295,512 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
PRC - [2013/05/16 16:44:05 | 001,012,000 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
PRC - [2013/05/16 16:38:39 | 001,826,592 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
PRC - [2013/05/16 16:38:28 | 001,213,216 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe
PRC - [2013/05/11 12:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013/04/16 03:07:06 | 000,039,056 | ---- | M] () -- C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
PRC - [2013/02/13 04:37:16 | 001,263,952 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
PRC - [2012/12/14 11:17:04 | 003,467,768 | ---- | M] (TeamViewer GmbH) -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
PRC - [2011/11/25 09:32:36 | 000,687,400 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Nero\Update\NASvc.exe
PRC - [2011/07/08 17:14:44 | 003,968,832 | ---- | M] (SoftThinks - Dell) -- C:\Program Files (x86)\AlienRespawn\Toaster.exe
PRC - [2011/07/08 17:12:32 | 002,749,248 | ---- | M] () -- C:\Program Files (x86)\AlienRespawn\Components\Scheduler\STService.exe
PRC - [2011/07/08 17:09:50 | 001,692,480 | ---- | M] (SoftThinks SAS) -- C:\Program Files (x86)\AlienRespawn\SftService.exe
PRC - [2011/03/09 00:06:10 | 001,635,696 | ---- | M] () -- C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe
PRC - [2011/02/09 15:09:28 | 001,045,880 | R--- | M] (BUFFALO INC.) -- C:\Program Files (x86)\BUFFALO\HD-xLU3\RaidUtility.exe
PRC - [2010/12/09 15:38:20 | 002,655,768 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
PRC - [2010/12/09 15:38:20 | 000,325,656 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
PRC - [2010/11/17 17:35:34 | 000,514,544 | ---- | M] () -- C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
PRC - [2010/11/10 17:40:28 | 000,016,832 | ---- | M] () -- C:\Program Files\Alienware\Command Center\AlienFusionController.exe
PRC - [2010/09/14 01:32:32 | 000,013,336 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
PRC - [2010/08/20 13:55:14 | 000,320,888 | R--- | M] (BUFFALO INC.) -- C:\Program Files (x86)\BUFFALO\Backup_Utility\BUService.exe


========== Modules (No Company Name) ==========

MOD - [2013/06/25 19:18:57 | 003,285,912 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2013/06/17 00:00:00 | 005,306,880 | ---- | M] () -- c:\Program Files (x86)\Trillian\plugins\skypekit.exe
MOD - [2013/06/17 00:00:00 | 000,187,392 | ---- | M] () -- C:\Program Files (x86)\Trillian\libpng15.dll
MOD - [2013/06/17 00:00:00 | 000,065,536 | ---- | M] () -- C:\Program Files (x86)\Trillian\libungif.dll
MOD - [2013/06/17 00:00:00 | 000,059,904 | ---- | M] () -- C:\Program Files (x86)\Trillian\zlib1.dll
MOD - [2013/06/17 00:00:00 | 000,010,752 | ---- | M] () -- c:\Program Files (x86)\Trillian\languages\en\buddy.dll
MOD - [2013/06/17 00:00:00 | 000,007,168 | ---- | M] () -- c:\Program Files (x86)\Trillian\languages\en\talk.dll
MOD - [2013/06/17 00:00:00 | 000,006,656 | ---- | M] () -- c:\Program Files (x86)\Trillian\languages\en\trillian.dll
MOD - [2013/06/17 00:00:00 | 000,006,656 | ---- | M] () -- c:\Program Files (x86)\Trillian\languages\en\events.dll
MOD - [2013/06/17 00:00:00 | 000,003,584 | ---- | M] () -- c:\Program Files (x86)\Trillian\languages\en\toolkit.dll
MOD - [2013/06/16 20:18:54 | 011,914,240 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\ce6b7579fbb77330560e9122d1cf6526\System.Web.ni.dll
MOD - [2013/06/12 20:23:17 | 016,033,160 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll
MOD - [2013/06/07 00:06:24 | 001,114,536 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\chromehtml.dll
MOD - [2013/05/16 19:49:06 | 002,297,856 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\3c2ed368e1f3889997dfb42a5ca77284\System.Core.ni.dll
MOD - [2013/05/16 19:46:35 | 013,199,360 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\b2c0f91d4817a23f3fd07cd05ebd8e89\System.Windows.Forms.ni.dll
MOD - [2013/05/16 19:38:01 | 014,340,608 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\af525b4bec3b9941b7be8ffbf813da80\PresentationFramework.ni.dll
MOD - [2013/05/16 19:37:32 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\30e3a21202000677d0a9270572251477\System.Windows.Forms.ni.dll
MOD - [2013/05/16 19:37:26 | 012,237,824 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\7eac0dbe9aa20b55e37235f8ee030e6b\PresentationCore.ni.dll
MOD - [2013/05/16 19:37:18 | 003,347,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\716959df79685a1eae0fc14275a32b0f\WindowsBase.ni.dll
MOD - [2013/05/16 19:37:13 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\764f15e86c82662e977bd418bd6318c1\System.Configuration.ni.dll
MOD - [2013/05/07 03:05:20 | 000,654,848 | ---- | M] () -- C:\Program Files (x86)\Steam\SDL2.dll
MOD - [2013/03/27 02:16:40 | 020,341,672 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\libcef.dll
MOD - [2013/02/13 04:38:06 | 000,100,688 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll
MOD - [2013/02/13 04:37:16 | 001,263,952 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
MOD - [2013/02/12 10:31:06 | 002,010,624 | ---- | M] () -- C:\Program Files (x86)\ManyCam\Bin\opencv_core220.dll
MOD - [2013/02/12 10:31:06 | 001,241,088 | ---- | M] () -- C:\Program Files (x86)\ManyCam\Bin\opencv_imgproc220.dll
MOD - [2013/02/05 22:57:56 | 000,269,824 | ---- | M] () -- C:\Program Files (x86)\Windows Live\Writer\en\WindowsLive.Writer.Localization.resources.dll
MOD - [2013/01/09 05:30:05 | 000,220,672 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\5baea82888a13fa558004b24e3b107cf\CustomMarshalers.ni.dll
MOD - [2013/01/09 03:23:46 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\d7d20811a7ce7cc589153648cbb1ce5c\PresentationFramework.Aero.ni.dll
MOD - [2013/01/09 03:23:03 | 001,592,832 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\eead6629e384a5b69f9ae35284b7eeed\System.Drawing.ni.dll
MOD - [2013/01/09 03:23:01 | 000,025,600 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\d908c91e24616e6b8d38c9da61038b25\Accessibility.ni.dll
MOD - [2013/01/09 03:22:48 | 005,453,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\f687c43e9fdec031988b33ae722c4613\System.Xml.ni.dll
MOD - [2013/01/09 03:22:45 | 007,989,760 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\369f8bdca364e2b4936d18dea582912c\System.ni.dll
MOD - [2013/01/09 03:22:41 | 011,493,376 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\7150b9136fad5b79e88f6c7f9d3d2c39\mscorlib.ni.dll
MOD - [2013/01/09 02:58:20 | 001,667,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\b83993cc955262507c8ead67567c8060\System.Drawing.ni.dll
MOD - [2013/01/09 02:58:19 | 009,094,656 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System\df418085cedae9fa2efee87e20a419a4\System.ni.dll
MOD - [2013/01/09 02:58:15 | 014,413,824 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\60c214b6ad5691e368a16ec65d127c27\mscorlib.ni.dll
MOD - [2012/12/11 19:51:10 | 001,100,800 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\avcodec-53.dll
MOD - [2012/12/11 19:51:10 | 000,192,000 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\avformat-53.dll
MOD - [2012/12/11 19:51:10 | 000,124,416 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\avutil-51.dll
MOD - [2011/07/08 17:12:32 | 002,749,248 | ---- | M] () -- C:\Program Files (x86)\AlienRespawn\Components\Scheduler\STService.exe
MOD - [2011/07/05 18:27:56 | 000,004,096 | ---- | M] () -- C:\Program Files (x86)\NVIDIA Corporation\coprocmanager\detoured.dll
MOD - [2011/03/09 00:06:10 | 001,635,696 | ---- | M] () -- C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe
MOD - [2010/11/25 05:44:02 | 000,375,280 | ---- | M] () -- c:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\SQLite352.dll
MOD - [2010/11/21 05:24:01 | 000,069,120 | ---- | M] () -- C:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
MOD - [2010/11/17 17:35:34 | 000,514,544 | ---- | M] () -- C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
MOD - [2010/11/10 17:40:28 | 000,016,832 | ---- | M] () -- C:\Program Files\Alienware\Command Center\AlienFusionController.exe
MOD - [2009/12/18 18:07:06 | 000,577,536 | ---- | M] () -- C:\Program Files (x86)\Alienware On-Screen Display\EMSC.dll


========== Services (SafeList) ==========

SRV:64bit: - [2013/01/27 04:34:32 | 000,379,360 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2013/01/27 04:34:32 | 000,022,056 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2011/03/30 01:50:24 | 000,763,904 | ---- | M] () [Auto | Running] -- C:\Program Files\Bigfoot Networks\Killer Network Manager\BFNService.exe -- (Bigfoot Networks Killer Service)
SRV:64bit: - [2011/03/17 13:14:56 | 000,297,984 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Program Files\IDT\WDM\stacsv64.exe -- (STacSV)
SRV:64bit: - [2010/11/10 17:40:46 | 000,015,296 | ---- | M] (Alienware) [Auto | Running] -- C:\Program Files\Alienware\Command Center\AlienFusionService.exe -- (AlienFusionService)
SRV:64bit: - [2010/10/26 23:42:16 | 005,790,064 | ---- | M] (Wacom Technology, Corp.) [Auto | Running] -- C:\Program Files\Tablet\Pen\Pen_Tablet.exe -- (TabletServicePen)
SRV:64bit: - [2010/10/26 23:42:16 | 000,487,280 | ---- | M] (Wacom Technology, Corp.) [Auto | Running] -- C:\Program Files\Tablet\Pen\Pen_TouchService.exe -- (TouchServicePen)
SRV:64bit: - [2009/07/14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/03/03 11:42:58 | 000,089,600 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Program Files\IDT\WDM\AESTSr64.exe -- (AESTFilters)
SRV - [2013/06/25 19:19:24 | 000,117,144 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013/06/21 05:15:56 | 000,413,472 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2013/06/20 11:29:38 | 000,173,192 | ---- | M] (Microsoft Corp.) [Auto | Running] -- C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe -- (BingDesktopUpdate)
SRV - [2013/06/12 20:23:18 | 000,256,904 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013/06/07 00:06:24 | 000,543,656 | ---- | M] (Valve Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2013/06/03 16:21:54 | 000,162,408 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013/05/16 16:38:39 | 001,826,592 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2013/05/11 12:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013/04/16 03:07:06 | 000,039,056 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe -- (RealNetworks Downloader Resolver Service)
SRV - [2012/12/14 11:17:04 | 003,467,768 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe -- (TeamViewer8)
SRV - [2012/12/13 19:42:10 | 000,277,616 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
SRV - [2012/08/07 12:28:37 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2012/02/10 04:11:30 | 000,131,912 | ---- | M] (Desura Pty Ltd) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Desura\desura_service.exe -- (Desura Install Service)
SRV - [2011/11/25 09:32:36 | 000,687,400 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files (x86)\Nero\Update\NASvc.exe -- (NAUpdate)
SRV - [2011/07/08 17:09:50 | 001,692,480 | ---- | M] (SoftThinks SAS) [Auto | Running] -- C:\Program Files (x86)\AlienRespawn\SftService.exe -- (SftService)
SRV - [2011/02/09 15:09:28 | 001,045,880 | R--- | M] (BUFFALO INC.) [Auto | Running] -- C:\Program Files (x86)\BUFFALO\HD-xLU3\RaidUtility.exe -- (HD_xLU3_RaidUtility)
SRV - [2010/12/09 15:38:20 | 002,655,768 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2010/12/09 15:38:20 | 000,325,656 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2010/11/25 12:34:18 | 000,219,632 | ---- | M] (Sonic Solutions) [Auto | Stopped] -- C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe -- (RoxWatch12)
SRV - [2010/11/25 12:33:18 | 001,116,656 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe -- (RoxMediaDB12OEM)
SRV - [2010/09/14 01:32:32 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
SRV - [2010/08/20 13:55:14 | 000,320,888 | R--- | M] (BUFFALO INC.) [Auto | Running] -- C:\Program Files (x86)\BUFFALO\Backup_Utility\BUService.exe -- (BFBackupUtilityService)
SRV - [2010/04/28 15:17:02 | 000,359,288 | R--- | M] (BUFFALO INC.) [Auto | Running] -- C:\Program Files (x86)\BUFFALO\Backup_Utility\BUVSSService64.exe -- (BFBackupUtilityVSSService)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2013/06/21 14:06:36 | 000,284,448 | ---- | M] (NVIDIA Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\nvkflt.sys -- (nvkflt)
DRV:64bit: - [2013/06/21 14:06:36 | 000,030,496 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\nvpciflt.sys -- (nvpciflt)
DRV:64bit: - [2013/02/25 07:27:45 | 000,194,848 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:64bit: - [2013/01/31 11:50:58 | 000,028,160 | ---- | M] (ManyCam LLC) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mcaudrv_x64.sys -- (mcaudrv_simple)
DRV:64bit: - [2013/01/20 08:59:04 | 000,130,008 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2012/12/13 19:42:22 | 005,353,888 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2012/12/13 06:50:36 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2012/08/23 16:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012/08/23 16:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2012/08/23 16:07:35 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2012/08/21 06:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2012/08/01 20:13:42 | 000,041,704 | ---- | M] (AnchorFree Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\hssdrv6.sys -- (HssDRV6)
DRV:64bit: - [2012/07/27 19:15:28 | 000,057,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2012/07/20 12:12:00 | 000,044,928 | ---- | M] (ManyCam LLC) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mcvidrv_x64.sys -- (ManyCam)
DRV:64bit: - [2012/03/01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011/11/24 02:58:44 | 000,078,208 | ---- | M] (SafeNet Inc.) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aksdf.sys -- (aksdf)
DRV:64bit: - [2011/10/07 02:31:42 | 000,321,536 | ---- | M] (SafeNet Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\hardlock.sys -- (Hardlock)
DRV:64bit: - [2011/09/23 04:39:10 | 000,019,968 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\EigenAlpha.sys -- (EigenAlpha)
DRV:64bit: - [2011/09/06 18:31:14 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/09/06 18:31:14 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/08/09 00:11:50 | 000,021,120 | ---- | M] (SafeNet Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\aksusb.sys -- (aksusb)
DRV:64bit: - [2011/07/26 19:49:12 | 000,037,888 | ---- | M] (AnchorFree Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\taphss.sys -- (taphss)
DRV:64bit: - [2011/07/13 17:22:00 | 000,072,016 | R--- | M] (BUFFALO INC.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\bftpdskc64.sys -- (bftpdskc64)
DRV:64bit: - [2011/06/16 07:40:20 | 000,176,000 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CtClsFlt.sys -- (CtClsFlt)
DRV:64bit: - [2011/05/04 04:39:38 | 000,158,976 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Impcd.sys -- (Impcd)
DRV:64bit: - [2011/05/04 04:39:26 | 000,317,440 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:64bit: - [2011/03/30 01:50:46 | 002,705,000 | ---- | M] (Bigfoot Networks, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Ak27x64.sys -- (Ak27x64)
DRV:64bit: - [2011/03/30 01:50:46 | 000,068,712 | ---- | M] (Bigfoot Networks, Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\bflwfx64.sys -- (BfLwf)
DRV:64bit: - [2011/03/17 13:14:56 | 000,521,728 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA)
DRV:64bit: - [2011/03/04 02:18:22 | 000,181,760 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3xhc.sys -- (nusb3xhc)
DRV:64bit: - [2011/03/04 02:18:22 | 000,082,432 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3hub.sys -- (nusb3hub)
DRV:64bit: - [2011/02/09 02:36:00 | 000,053,760 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\akshasp.sys -- (akshasp)
DRV:64bit: - [2010/11/30 15:48:38 | 000,076,912 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\L1C62x64.sys -- (L1C)
DRV:64bit: - [2010/11/30 15:32:36 | 000,326,760 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsPStor.sys -- (RSPCIESTOR)
DRV:64bit: - [2010/11/29 18:03:06 | 001,395,760 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2010/11/21 05:23:47 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2010/11/21 05:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/10/21 18:47:12 | 000,020,608 | R--- | M] (BUFFALO INC.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bftpusbx64.sys -- (bftpusbx64)
DRV:64bit: - [2010/10/19 16:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2010/10/15 11:50:08 | 000,020,608 | ---- | M] (BUFFALO INC.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\raidfilt.sys -- (raidfilt)
DRV:64bit: - [2010/10/11 21:19:36 | 000,018,288 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wacmoumonitor.sys -- (wacmoumonitor)
DRV:64bit: - [2010/10/11 21:19:28 | 000,012,848 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\wacommousefilter.sys -- (wacommousefilter)
DRV:64bit: - [2010/10/11 21:19:26 | 000,016,168 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\wacomvhid.sys -- (wacomvhid)
DRV:64bit: - [2010/09/14 01:24:26 | 000,437,272 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2010/09/07 15:41:14 | 000,027,760 | ---- | M] (ST Microelectronics) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Accelern.sys -- (Acceler)
DRV:64bit: - [2010/08/20 20:05:12 | 000,021,616 | ---- | M] (ST Microelectronics) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\stdcfltn.sys -- (stdcfltn)
DRV:64bit: - [2010/08/17 15:17:46 | 000,344,616 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btwampfl.sys -- (btwampfl)
DRV:64bit: - [2010/08/17 15:17:46 | 000,135,720 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btwavdt.sys -- (btwavdt)
DRV:64bit: - [2010/08/17 15:17:46 | 000,021,544 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwrchid.sys -- (btwrchid)
DRV:64bit: - [2010/03/19 10:00:00 | 000,055,856 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2010/03/10 13:30:00 | 000,047,232 | ---- | M] (BUFFALO INC.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\BFRD4G.sys -- (BFRD4G)
DRV:64bit: - [2009/07/14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/07/14 02:39:20 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV:64bit: - [2009/06/26 22:43:42 | 000,016,752 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\EMSC.sys -- (EMSC)
DRV:64bit: - [2009/06/10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/02/24 20:35:44 | 000,255,552 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mcdbus.sys -- (mcdbus)
DRV:64bit: - [2006/11/01 19:51:00 | 000,151,656 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WimFltr.sys -- (WimFltr)
DRV - [2009/07/14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2009/06/26 22:43:42 | 000,013,680 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | Boot | Running] -- C:\Windows\SysWOW64\drivers\EMSC.sys -- (EMSC)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {61E6A3EB-170C-485F-B8ED-8BF4A6CDC286}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{D758711A-B8AA-45CF-86CA-BE1019ACBB56}: "URL" = http://u-search.net/...q={searchTerms}

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.co.uk/alienware
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.condui...8D-68D053680105
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://uk.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-GB
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 59 5B 7A 2D E2 9F CD 01 [binary data]
IE - HKCU\..\URLSearchHook: {f999a48b-1950-4d81-9971-79018f807b4b} - No CLSID value found
IE - HKCU\..\SearchScopes,DefaultScope = {61E6A3EB-170C-485F-B8ED-8BF4A6CDC286}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE10SR
IE - HKCU\..\SearchScopes\{2FCF03E5-8DC0-4EB0-BBA0-4A59A60AA493}: "URL" = http://websearch.ask...1-F87337CD7FF7
IE - HKCU\..\SearchScopes\{61E6A3EB-170C-485F-B8ED-8BF4A6CDC286}: "URL" = http://search.condui...7352659018&UM=2
IE - HKCU\..\SearchScopes\{D758711A-B8AA-45CF-86CA-BE1019ACBB56}: "URL" = http://u-search.net/...q={searchTerms}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..browser.search.defaultthis.engineName: "DivX Browser Bar Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.condui...={searchTerms}"
FF - prefs.js..browser.search.selectedEngine: "Wikipedia (en)"
FF - prefs.js..browser.startup.homepage: "http://www.google.co...w.qwertee.com/"
FF - prefs.js..extensions.enabledAddons: %7Bdd3d7613-0246-469d-bc65-2a3cc1668adc%7D:1.0.19
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:22.0
FF - prefs.js..keyword.URL: "http://search.condui...=1&sspv=idb&q="
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.25.2: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.4: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF:64bit: - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.5: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF:64bit: - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.6: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF:64bit: - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.7: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Plus Web Player Plug-In,version=1.0.0: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.4: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=1.110.0: C:\Program Files (x86)\Battlelog Web Plugins\1.110.0\npesnlaunch.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=1.118.0: C:\Program Files (x86)\Battlelog Web Plugins\1.118.0\npesnlaunch.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.7.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3508.0205: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=16.0.2.32: C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlchromebrowserrecordext;version=1.3.2: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlhtml5videoshim;version=1.3.2: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlpepperflashvideoshim;version=1.3.2: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpplugin;version=16.0.2.32: C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll (RealPlayer)
FF - HKLM\Software\MozillaPlugins\@realnetworks.com/npdlplugin;version=1: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.3: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@wacom.com/wacom-plugin,version=1.1.0.5: C:\Program Files (x86)\TabletPlugins\npwacom.dll (Wacom, Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@onlive.com/OnLiveGameClientDetector,version=1.0.0: C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll (OnLive)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\ge-bill\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll (Ubisoft)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FCE04E1F-9378-4f39-96F6-5689A9159E45}: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ [2013/05/19 13:59:49 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013/05/19 13:59:49 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2013/05/30 21:37:14 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 22.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/06/25 19:13:05 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 22.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/06/25 19:18:49 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 22.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/06/25 19:13:05 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 22.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/06/25 19:18:49 | 000,000,000 | ---D | M]

[2011/09/12 13:13:08 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ge-bill\AppData\Roaming\Mozilla\Extensions
[2013/05/19 14:37:06 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ge-bill\AppData\Roaming\Mozilla\Firefox\Profiles\09lyh00t.default-1360208697402\extensions
[2013/04/25 08:52:00 | 000,000,000 | ---D | M] (Block site) -- C:\Users\ge-bill\AppData\Roaming\Mozilla\Firefox\Profiles\09lyh00t.default-1360208697402\extensions\{dd3d7613-0246-469d-bc65-2a3cc1668adc}
[2013/03/23 10:14:17 | 000,000,000 | ---D | M] (British English Dictionary (Updated)) -- C:\Users\ge-bill\AppData\Roaming\Mozilla\Firefox\Profiles\09lyh00t.default-1360208697402\extensions\[email protected]
[2013/05/11 23:03:54 | 000,001,009 | ---- | M] () -- C:\Users\ge-bill\AppData\Roaming\Mozilla\Firefox\Profiles\09lyh00t.default-1360208697402\searchplugins\conduit.xml
[2013/06/25 19:18:38 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2013/06/25 19:18:38 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2013/06/25 19:13:04 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013/06/25 19:19:26 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2013/05/19 13:59:20 | 000,124,504 | ---- | M] (RealPlayer) -- C:\Program Files (x86)\mozilla firefox\plugins\nprpplugin.dll

O1 HOSTS File: ([2009/06/10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (no name) - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - No CLSID value found.
O2 - BHO: (RealNetworks Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:64bit: - HKLM..\Run: [] File not found
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [Nvtmru] C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe (NVIDIA Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [AlienwareOn-ScreenDisplay] C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe ()
O4 - HKLM..\Run: [BingDesktop] C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe (Microsoft Corp.)
O4 - HKLM..\Run: [Desktop Disc Tool] C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe ()
O4 - HKLM..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe (DivX, LLC)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [Integrated Webcam Live! Central] C:\Program Files (x86)\Integrated Webcam\Live! Central\WebcamInt.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe (RealNetworks, Inc.)
O4 - HKCU..\Run: [FileHippo.com] C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe (FileHippo.com)
O4 - HKCU..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe ()
O4 - HKCU..\Run: [Steam] C:\Program Files (x86)\Steam\steam.exe (Valve Corporation)
O4 - HKCU..\RunOnce: [Uninstall C:\Users\ge-bill\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\ge-bill\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\amd64" File not found
O4 - Startup: C:\Users\ge-bill\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Trillian.lnk = C:\Program Files (x86)\Trillian\trillian.exe (Cerulean Studios)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Windows\SysNative\BfLLR.dll (Bigfoot Networks, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Windows\SysNative\BfLLR.dll (Bigfoot Networks, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Windows\SysNative\BfLLR.dll (Bigfoot Networks, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Windows\SysNative\BfLLR.dll (Bigfoot Networks, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000016 - C:\Windows\SysNative\BfLLR.dll (Bigfoot Networks, Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\SysWOW64\BfLLR.dll (Bigfoot Networks, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\SysWOW64\BfLLR.dll (Bigfoot Networks, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\SysWOW64\BfLLR.dll (Bigfoot Networks, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\SysWOW64\BfLLR.dll (Bigfoot Networks, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\Windows\SysWOW64\BfLLR.dll (Bigfoot Networks, Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: sony.com ([]* in Trusted sites)
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.25.2)
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_24)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.25.2)
O16 - DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} http://ccfiles.creat...102/CTSUEng.cab (Creative Software AutoUpdate)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.9.2)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_25)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.9.2)
O16 - DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} http://ccfiles.creat...13/CTPIDPDE.cab (Creative Software AutoUpdate Support Package 2)
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} http://ccfiles.creat...21022/CTPID.cab (Creative Software AutoUpdate Support Package)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{92CE6D7B-4EB2-464F-8229-EF861878483F}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C7678D2B-BEF7-40C1-9F16-971D00B8FE4A}: DhcpNameServer = 10.15.21.70 10.15.21.71
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - AppInit_DLLs: (C:\Windows\system32\nvinitx.dll) - C:\Windows\SysNative\nvinitx.dll (NVIDIA Corporation)
O20 - AppInit_DLLs: (C:\Windows\SysWOW64\nvinit.dll) - C:\Windows\SysWOW64\nvinit.dll (NVIDIA Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2013/07/06 16:40:25 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\ge-bill\Desktop\OTL.exe
[2013/07/06 16:29:26 | 000,000,000 | ---D | C] -- C:\Users\ge-bill\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Camel Audio
[2013/07/06 16:29:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Camel Audio
[2013/07/06 16:29:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Camel Audio
[2013/07/06 16:29:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Camel Audio
[2013/07/06 16:29:04 | 000,000,000 | ---D | C] -- C:\Program Files\VSTPlugins
[2013/07/06 16:29:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VSTPlugins
[2013/07/06 16:29:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Digidesign
[2013/07/05 16:54:24 | 000,000,000 | ---D | C] -- C:\Users\ge-bill\AppData\Local\NVIDIA
[2013/07/05 16:47:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AGEIA Technologies
[2013/07/05 16:46:01 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\NV
[2013/07/05 16:46:01 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\NV
[2013/07/05 16:38:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
[2013/06/29 14:54:29 | 000,000,000 | ---D | C] -- C:\Users\ge-bill\AppData\Roaming\Rogue Legacy
[2013/06/29 13:08:32 | 000,000,000 | ---D | C] -- C:\Users\ge-bill\AppData\Roaming\.technic
[2013/06/26 18:37:46 | 000,000,000 | ---D | C] -- C:\Users\ge-bill\AppData\Roaming\.minecraft
[2013/06/25 19:13:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2013/06/16 20:08:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Origin Games
[2013/06/13 08:27:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
[2013/06/07 18:01:54 | 000,000,000 | ---D | C] -- C:\Users\ge-bill\Documents\Proteus
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2013/07/06 16:40:32 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\ge-bill\Desktop\OTL.exe
[2013/07/06 16:23:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013/07/06 15:35:26 | 000,021,296 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/07/06 15:35:26 | 000,021,296 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/07/06 15:25:23 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/07/06 15:25:04 | 069,591,039 | -HS- | M] () -- C:\hiberfil.sys
[2013/07/06 13:14:16 | 536,870,912 | -H-- | M] () -- C:\BFRD_000.dat
[2013/07/05 21:40:22 | 000,151,637 | ---- | M] () -- C:\Users\ge-bill\Desktop\recipty.png
[2013/07/05 14:03:19 | 003,474,507 | ---- | M] () -- C:\Users\ge-bill\Desktop\One-Step Generation of Mice Carrying mutations in multiple genes by CRISPR Cas Mediated Genome Engeneering.pdf
[2013/07/05 14:02:19 | 000,159,456 | ---- | M] () -- C:\Users\ge-bill\Desktop\One-Step Generation of Mice Carrying mutations in multiple genes by CRISPR Cas Mediated Genome Engeneering Supplementary table.pdf
[2013/07/01 18:26:57 | 000,102,385 | ---- | M] () -- C:\Users\ge-bill\Desktop\matr2 recipt.png
[2013/07/01 16:07:03 | 000,002,198 | -H-- | M] () -- C:\Users\ge-bill\Documents\Default.rdp
[2013/07/01 15:39:28 | 000,127,916 | ---- | M] () -- C:\Users\ge-bill\Desktop\matr recipt.png
[2013/06/29 16:13:21 | 000,004,184 | ---- | M] () -- C:\Users\ge-bill\AppData\Local\recently-used.xbel
[2013/06/29 13:07:21 | 003,020,770 | ---- | M] () -- C:\Users\ge-bill\Desktop\TechnicLauncher.exe
[2013/06/29 12:54:11 | 000,263,186 | ---- | M] () -- C:\Users\ge-bill\Desktop\Minecraft.exe
[2013/06/27 20:31:11 | 002,285,688 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013/06/22 19:59:31 | 000,785,332 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013/06/22 19:59:31 | 000,652,360 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013/06/22 19:59:31 | 000,121,292 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013/06/21 14:06:36 | 000,021,578 | ---- | M] () -- C:\Windows\SysNative\nvinfo.pb
[2013/06/20 06:17:49 | 003,253,909 | ---- | M] () -- C:\Windows\SysNative\nvcoproc.bin
[2013/06/16 20:16:08 | 000,765,178 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2013/06/10 14:39:27 | 000,015,631 | -HS- | M] () -- C:\Users\ge-bill\Desktop\Folder.jpg
[2013/06/10 14:39:27 | 000,004,272 | -HS- | M] () -- C:\Users\ge-bill\Desktop\AlbumArtSmall.jpg
[2013/06/10 07:43:57 | 003,632,632 | ---- | M] () -- C:\Users\ge-bill\Desktop\Journal present Csicsvari et al 2010.odp
[2013/06/08 12:51:25 | 000,081,705 | ---- | M] () -- C:\Users\ge-bill\Desktop\239_gugg.pdf
[2013/06/07 17:53:57 | 000,466,456 | ---- | M] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll
[2013/06/07 17:53:57 | 000,444,952 | ---- | M] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2013/07/05 21:40:21 | 000,151,637 | ---- | C] () -- C:\Users\ge-bill\Desktop\recipty.png
[2013/07/05 16:39:22 | 000,021,578 | ---- | C] () -- C:\Windows\SysNative\nvinfo.pb
[2013/07/05 14:03:06 | 003,474,507 | ---- | C] () -- C:\Users\ge-bill\Desktop\One-Step Generation of Mice Carrying mutations in multiple genes by CRISPR Cas Mediated Genome Engeneering.pdf
[2013/07/05 14:02:16 | 000,159,456 | ---- | C] () -- C:\Users\ge-bill\Desktop\One-Step Generation of Mice Carrying mutations in multiple genes by CRISPR Cas Mediated Genome Engeneering Supplementary table.pdf
[2013/07/01 18:26:57 | 000,102,385 | ---- | C] () -- C:\Users\ge-bill\Desktop\matr2 recipt.png
[2013/07/01 15:39:28 | 000,127,916 | ---- | C] () -- C:\Users\ge-bill\Desktop\matr recipt.png
[2013/06/29 16:13:21 | 000,004,184 | ---- | C] () -- C:\Users\ge-bill\AppData\Local\recently-used.xbel
[2013/06/29 13:07:13 | 003,020,770 | ---- | C] () -- C:\Users\ge-bill\Desktop\TechnicLauncher.exe
[2013/06/29 12:54:09 | 000,263,186 | ---- | C] () -- C:\Users\ge-bill\Desktop\Minecraft.exe
[2013/06/27 20:30:15 | 002,285,688 | ---- | C] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013/06/08 12:51:25 | 000,081,705 | ---- | C] () -- C:\Users\ge-bill\Desktop\239_gugg.pdf
[2013/04/23 00:27:08 | 000,000,075 | RHS- | C] () -- C:\Windows\CT4CET.bin
[2013/02/25 07:02:25 | 000,001,526 | ---- | C] () -- C:\Windows\Ascd_tmp.ini
[2012/12/13 19:42:30 | 000,064,512 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
[2012/10/22 07:47:46 | 000,000,893 | ---- | C] () -- C:\ProgramData\All Users - Shortcut.lnk
[2012/10/09 19:22:28 | 000,272,928 | ---- | C] () -- C:\Windows\SysWow64\igvpkrng600.bin
[2012/10/09 19:22:20 | 000,963,452 | ---- | C] () -- C:\Windows\SysWow64\igcodeckrng600.bin
[2012/09/24 23:47:42 | 000,178,688 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2012/04/26 11:28:38 | 000,380,928 | ---- | C] () -- C:\Windows\SysWow64\lame_enc.dll
[2012/04/17 06:39:46 | 000,032,256 | ---- | C] () -- C:\Windows\SysWow64\AVSredirect.dll
[2012/04/17 06:37:06 | 000,107,520 | RHS- | C] () -- C:\Windows\SysWow64\TAKDSDecoder.dll
[2012/02/23 16:21:09 | 000,099,050 | ---- | C] () -- C:\Users\ge-bill\AppData\Roaming\icarus-dxdiag.xml
[2012/02/14 11:47:06 | 000,963,912 | ---- | C] () -- C:\Windows\SysWow64\igkrng600.bin
[2012/02/14 11:47:06 | 000,261,208 | ---- | C] () -- C:\Windows\SysWow64\igfcg600m.bin
[2011/12/25 17:50:25 | 000,524,288 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2011/12/25 17:50:25 | 000,139,264 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2011/12/25 17:03:54 | 000,023,512 | R--- | C] () -- C:\Windows\UN091222.INI
[2011/12/25 17:03:33 | 000,035,896 | R--- | C] () -- C:\Windows\UN091111.INI
[2011/12/25 17:03:28 | 000,013,773 | R--- | C] () -- C:\Windows\UN091201.INI
[2011/12/25 17:01:34 | 000,011,419 | R--- | C] () -- C:\Windows\UN101018.INI
[2011/10/04 00:42:22 | 000,023,552 | ---- | C] () -- C:\Users\ge-bill\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/09/28 19:44:14 | 000,179,271 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2011/09/22 16:33:10 | 000,008,192 | ---- | C] () -- C:\Windows\SysWow64\drivers\IntelMEFWVer.dll
[2011/09/13 21:34:22 | 002,434,856 | ---- | C] () -- C:\Windows\SysWow64\pbsvc_bc2.exe
[2011/09/13 21:34:22 | 000,076,888 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2011/09/06 18:21:46 | 000,145,804 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng600.bin

========== ZeroAccess Check ==========

[2009/07/14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/02/27 07:52:56 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/02/27 06:55:05 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2012/08/21 15:11:31 | 000,857,088 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2012/08/21 15:37:44 | 000,636,928 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2012/08/21 15:08:38 | 000,453,120 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2013/06/29 13:04:16 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\.minecraft
[2013/06/29 13:08:44 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\.technic
[2013/05/01 17:24:37 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\3909 LLC
[2013/06/19 12:49:44 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Applian FLV and Media Player
[2013/02/05 07:18:17 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Arrowhead
[2013/03/08 12:38:18 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Audacity
[2011/12/25 19:00:05 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Babylon
[2011/10/10 09:27:28 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Blio
[2012/06/10 07:13:56 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Braid
[2011/12/25 17:04:38 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\BUFFALO
[2012/03/12 08:30:43 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\calibre
[2012/12/16 07:52:56 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Carbon
[2011/09/27 02:45:26 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Clickteam
[2013/03/21 10:40:01 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\com.radialgames.MonsterLovesYou
[2013/03/04 09:51:29 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\com.stoicstudio.TheBannerSagaFactions
[2011/12/20 21:03:14 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Crayon Physics Deluxe
[2011/12/25 17:57:15 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Digiarty
[2013/06/03 20:49:31 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Dropbox
[2012/09/20 16:13:56 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Fatshark
[2011/09/12 13:03:29 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Fingertapps
[2012/06/03 05:05:35 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\fltk.org
[2012/12/30 16:15:43 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Free DVD Ripper Platinum
[2012/04/17 06:21:24 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\GetRightToGo
[2012/10/22 07:30:48 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Groovedown_Uninstall
[2013/04/16 18:35:49 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\gtk-2.0
[2011/12/25 18:25:26 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\HandBrake
[2011/09/12 17:35:58 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\IDT
[2013/04/25 18:39:04 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\inkscape
[2013/06/03 20:29:07 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Little Inferno
[2012/09/24 23:48:56 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\LockHunter
[2011/09/13 19:54:01 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\LolClient
[2012/06/09 17:24:58 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\LoneSurvivor
[2012/04/21 08:43:12 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\LOVE
[2012/06/30 12:56:33 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\ManyCam
[2011/10/29 17:22:57 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\MinMaxGames
[2011/10/21 15:10:26 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\mm
[2013/04/16 21:20:36 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\MMFApplications
[2012/01/11 14:14:10 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Mount&Blade
[2012/01/13 09:18:13 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\NationRed
[2012/12/30 19:55:01 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Natural Selection 2
[2012/02/29 13:38:12 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\OnLive App
[2013/05/19 13:58:11 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\OpenCandy
[2011/09/12 17:29:22 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\OpenOffice.org
[2013/06/16 20:11:05 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Origin
[2012/09/12 09:01:57 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\PCDr
[2012/06/29 18:26:26 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\RenPy
[2013/06/29 14:54:29 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Rogue Legacy
[2012/02/21 16:19:41 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\RotMG.Production
[2012/06/22 18:52:07 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\six-zsync
[2012/12/30 21:06:26 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\SpringLobby
[2012/12/30 21:20:04 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\springlobby_updater
[2012/12/30 20:56:57 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\SpringSettings
[2012/04/10 17:47:32 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Stage
[2012/08/30 15:16:06 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Synthesia
[2012/12/24 17:10:20 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\TeamViewer
[2013/05/17 18:19:59 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\TEdit
[2011/09/13 21:42:06 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\The Creative Assembly
[2012/01/24 05:53:15 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Trillian
[2012/05/19 12:55:13 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\TS3Client
[2012/03/26 07:34:45 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\VoipDiscount
[2011/11/06 10:22:21 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Voxatron
[2011/10/04 04:12:18 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Windows Live Writer
[2012/07/12 06:58:31 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\ZinioReader4

========== Purity Check ==========



========== Files - Unicode (All) ==========
[2012/09/18 07:10:11 | 000,182,388 | ---- | M] ()(C:\Users\ge-bill\Desktop\??????.jpg) -- C:\Users\ge-bill\Desktop\イェスマット.jpg
[2012/09/18 07:10:11 | 000,182,388 | ---- | C] ()(C:\Users\ge-bill\Desktop\??????.jpg) -- C:\Users\ge-bill\Desktop\イェスマット.jpg

< End of report >
  • 0

Advertisements


#2
gram12

gram12

    Member

  • Topic Starter
  • Member
  • PipPip
  • 15 posts
Just realized that there was a file called Extras.txt that opened following OTL running
Have posted this just in case

OTL Extras logfile created on: 7/6/2013 4:46:57 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\ge-bill\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16614)
Locale: 00000409 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

5.42 Gb Total Physical Memory | 2.44 Gb Available Physical Memory | 45.02% Memory free
10.84 Gb Paging File | 7.16 Gb Available in Paging File | 66.03% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 288.32 Gb Total Space | 96.42 Gb Free Space | 33.44% Space Free | Partition Type: NTFS
Drive D: | 2.79 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF
Drive F: | 511.50 Mb Total Space | 490.03 Mb Free Space | 95.80% Space Free | Partition Type: FAT32

Computer Name: INDEFATIGABLE | User Name: ge-bill | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
.txt[@ = SigilTXT] -- C:\Program Files\Sigil\Sigil.exe ()

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.txt [@ = SigilTXT] -- C:\Program Files\Sigil\Sigil.exe ()

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = SigilHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistApplianMP] -- "C:\Program Files (x86)\Applian Technologies\Applian FLV and Media Player\amp.exe" -I skins2 --started-from-file --playlist-enqueue "%1" ()
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithApplianMP] -- "C:\Program Files (x86)\Applian Technologies\Applian FLV and Media Player\amp.exe" -I skins2 --started-from-file --no-playlist-enqueue "%1" ()
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistApplianMP] -- "C:\Program Files (x86)\Applian Technologies\Applian FLV and Media Player\amp.exe" -I skins2 --started-from-file --playlist-enqueue "%1" ()
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithApplianMP] -- "C:\Program Files (x86)\Applian Technologies\Applian FLV and Media Player\amp.exe" -I skins2 --started-from-file --no-playlist-enqueue "%1" ()
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0A969EEB-7DC2-444D-960E-138EC4B85731}" = rport=139 | protocol=6 | dir=out | app=system |
"{25660016-FA4B-4CBE-AC6D-32AC22C0E439}" = lport=138 | protocol=17 | dir=in | app=system |
"{29737300-B490-4154-B6A9-E5FAD79D1BAB}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{2DB97F75-F030-4989-9E40-C1AFBA9D5EF8}" = lport=9702 | protocol=6 | dir=in | name=syncup_tcp_9702 |
"{2F37A1CB-7F1F-475B-8DB9-EB76A65BC5AF}" = lport=9700 | protocol=6 | dir=in | name=syncup_tcp_9700 |
"{2FA9D9D7-31C2-4D65-A06C-814153AC069D}" = rport=10243 | protocol=6 | dir=out | app=system |
"{33DE0EC0-1EC8-4896-9476-1AFC31555C2C}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{41A1FE55-E167-49F0-B176-4F23118B6FC9}" = lport=9700 | protocol=17 | dir=in | name=syncup_udp_9700 |
"{57532E32-9ED7-49D2-92D2-5A6AF1D3BE1F}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{5C00CA96-F496-41BF-8151-BE2F389EA1E7}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{60C69E23-732F-4537-A669-B55B9983C2C2}" = lport=9701 | protocol=6 | dir=in | name=syncup_tcp_9701 |
"{6C2CC718-AD5F-4659-B3F1-78CCE9AC80B6}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe |
"{7F78B230-1DDC-4D5B-9C4B-3766C8236542}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{83650D18-4A0F-4F59-9D68-B78621DE3E66}" = lport=137 | protocol=17 | dir=in | app=system |
"{896AC64C-36D8-4954-9296-8F0D2BE7F559}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{99432C1F-3C02-42DF-BA54-91656ACEA93A}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{9F42C365-0D1B-4605-97B1-037E44FA1D21}" = rport=138 | protocol=17 | dir=out | app=system |
"{A7E96DCA-C497-467B-A475-718E4B615D76}" = lport=10243 | protocol=6 | dir=in | app=system |
"{A7FA6041-3867-4AE2-934F-D1C6E430923D}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
"{B22F41F9-7477-4C1D-8568-752E82E00E1D}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{B2874503-5036-42A7-8BC7-1FBE033D25CF}" = rport=137 | protocol=17 | dir=out | app=system |
"{B8B76E14-29B1-4162-B54E-0516EC93DEBF}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{C4E60B87-781D-46DB-9626-72AD9854A49E}" = rport=445 | protocol=6 | dir=out | app=system |
"{CD179332-B2C6-48AB-B35F-14ED9F3A8ED9}" = lport=139 | protocol=6 | dir=in | app=system |
"{D939E6D7-204A-4DDA-87BD-72D667EA7D4E}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{EAF0D05D-3DA0-446E-9CBB-7979E56B19FF}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{F0C90031-5DDA-44E8-B8EC-D5C77143FC72}" = lport=445 | protocol=6 | dir=in | app=system |
"{FBAB935B-6123-428B-AF2E-55096C9E27FB}" = lport=2869 | protocol=6 | dir=in | app=system |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0227A3BA-DAA9-4A4C-B125-297BA9C7EF10}" = protocol=6 | dir=in | app=c:\program files (x86)\veoh networks\veohwebplayer\veohwebplayer.exe |
"{02665787-10C9-482A-ADC3-A18D00B5ADEC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\rogue legacy\roguelegacy.exe |
"{028EDFE6-0816-4190-B9E4-CD6ED873AF2C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{02C74AD9-5440-4C67-B204-5547F60BBE94}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{04AA1B15-E580-46CA-9704-97DB1ABF3979}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\[email protected]\counter-strike source\hl2.exe |
"{0B9903CB-9E71-42CD-8FBD-917AE7A71BD7}" = protocol=17 | dir=in | app=c:\program files (x86)\veoh networks\veohwebplayer\veohwebplayer.exe |
"{13149ECC-C7E0-450E-83DE-ABC7FF18AED8}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{134DA4E3-799E-4BEB-B6A3-C10BE3AA20C7}" = protocol=6 | dir=out | app=system |
"{13D725D4-3405-4A86-A13F-D5F23EA081D1}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe |
"{1499D15F-404F-40DD-9D5B-5BC29A48A039}" = protocol=17 | dir=in | app=c:\program files (x86)\dell\stage remote\controller.exe |
"{14D6993C-498D-4771-B7F8-38137CA6BE8D}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe |
"{1626BCD1-1038-4173-B82B-CD7ED2322CDF}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{1673D0C2-40E6-4E42-A974-F8F8FD7DE19C}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1363\agent.exe |
"{173039A9-38F5-4330-9CB5-83CFAF0F0E29}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\war of the roses\run_game.exe |
"{17536B37-BBCE-45A6-A8AE-7E8E39655BC6}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{1D621468-3263-47A3-A198-4FB7A43FB72D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\skulls of the shogun\skullsoftheshogun.exe |
"{1E0A1E08-43C2-41E0-B863-66980B9EE68C}" = protocol=1 | dir=out | [email protected],-28544 |
"{215CC390-42BF-471C-81D8-A02FD4EF9045}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe |
"{23F5B9F5-12EC-43F4-98C8-8A8DFA5C5A30}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\little inferno beta\little inferno.exe |
"{263FCE66-8B7E-4A8F-B06F-060B44F7D0BF}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe |
"{2A08C584-5A83-473C-A7FA-81363FC540F7}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1363\agent.exe |
"{2C01ADBE-8850-48EC-83ED-DE11A00116E2}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\company of heroes 2\reliccoh2.exe |
"{318411E6-4CA4-4719-9B6A-9F2F96229A5E}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\skulls of the shogun\skullsoftheshogun.exe |
"{34E64579-B687-47D6-88AD-551952A5215A}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
"{37345A95-C72E-4125-BAA8-2E65B7329F39}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{38B11704-FE0F-4653-B9F1-589024486D00}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{3B078A48-B062-4465-9E12-C7B63B120C69}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe |
"{410135E4-C19C-489E-8707-C7C4A859E0EF}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{42D22BBE-4216-4161-AD3C-F1DEAF766DFB}" = protocol=17 | dir=in | app=c:\program files (x86)\dell\stage remote\stageremoteservice.exe |
"{477CB7AC-0E59-42E2-9FA2-E394423315EB}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe |
"{48DD45B2-1144-4A83-A57C-A95A189C2FA2}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{4B52EA3F-CCB5-423D-AE9F-02E1C296D459}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{4BC94A14-FBC7-42DA-906D-E338F540FE1F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe |
"{4E2C268D-1BAE-4D21-A5FA-F7920E46B301}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{4F37E3A2-728B-4AD4-93A2-38EDAD47526D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\rogue legacy\roguelegacy.exe |
"{4F938D6E-1C35-4FA2-90BB-70181861601D}" = protocol=17 | dir=in | app=c:\users\ge-bill\appdata\roaming\dropbox\bin\dropbox.exe |
"{4FB920F5-BE73-48E4-A025-C20F70ED8210}" = protocol=6 | dir=in | app=c:\program files (x86)\dell\stage remote\installerhelp.exe |
"{501CB8DD-21BC-459F-BBBA-F4D3772CE5C6}" = dir=in | app=c:\program files (x86)\dell\videostage\videostage.exe |
"{5101ED55-B2BA-45EE-83FE-7307E2575D1A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{5379E1D1-BE70-4C88-BAD4-8FD664CA6CB7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{54BAB041-3E3C-4324-A763-A9A97118EBD0}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{5733A9AA-5B90-4D7F-A5F7-FC289A5BBEC6}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\rogue legacy\roguelegacy.exe |
"{5C497AE1-F14C-43D6-93A5-108D3C7B2675}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\skulls of the shogun\skullsoftheshogun.exe |
"{5CB4ACE8-307E-4246-9AAF-52B11D67129A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\torchlight ii\modlauncher.exe |
"{5CDE430B-86F7-44B4-887C-0FD403B3B278}" = dir=in | app=c:\users\ge-bill\appdata\local\microsoft\skydrive\skydrive.exe |
"{5E84FAE7-CB81-4C27-8109-DA08A7636D83}" = protocol=58 | dir=in | [email protected],-28545 |
"{5FEDEB96-E385-4C07-8605-69BF2433C192}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{64840CB0-06A2-4E0C-A600-F57FA375649E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\skyrim\creationkit.exe |
"{65AA1071-D030-4873-96B2-DF53FD2A5EF7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gamemaker_studio\gamemakerplayer.exe |
"{68863A97-8678-4E48-83CA-432E5B629EA6}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gamemaker_studio\gamemakerplayer.exe |
"{6984BA86-F2A7-4FD7-86E7-822BAC7F2895}" = protocol=6 | dir=in | app=c:\program files (x86)\buffalo\hd-xlu3\raidutility.exe |
"{6C49B902-3C16-4C20-B107-C30AC2D38546}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\[email protected]\source sdk base 2007\hl2.exe |
"{6D6E86FC-90C5-4DF5-8FF1-82A1063421C9}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\rogue legacy\roguelegacy.exe |
"{6DFF2F4A-AE4B-4515-9E08-5A6905E1B25A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\showdown beta\binaries\showdown.exe |
"{70E23196-A60E-47F7-840E-ED3D9A62E952}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\company of heroes 2\reliccoh2.exe |
"{71D53062-5812-47D7-B6AD-8086188BAAD4}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{72C1AB74-5990-4387-A034-571CE2DA84CA}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{74322189-F9CF-4407-ABCC-3D2CAB5FAF9C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\magicka\magicka.exe |
"{74FC45F5-10F9-426D-9C61-3FE7FEC73C93}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\torchlight ii\modlauncher.exe |
"{77C18545-CC65-49DF-AECC-04FBE3C85AC7}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{7968D27B-D8DA-46D7-B7C9-9D5CCBD08E7C}" = protocol=17 | dir=in | app=c:\program files (x86)\buffalo\hd-xlu3\raidutility.exe |
"{79FBE120-5D03-4E93-9B1C-339C708EF1C5}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{7EC4C92E-B8DD-4F4F-8348-5BBD57675CD6}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{7F202AEC-62FD-4BB1-BFEE-916E0B0FA843}" = protocol=6 | dir=in | app=c:\program files (x86)\dell\stage remote\controller.exe |
"{817653E6-E4F6-41BA-9E5A-2D89D2B549A8}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{8DD9CF3E-657F-4A64-8602-72711F1ED683}" = protocol=6 | dir=in | app=c:\program files (x86)\dell\stage remote\stageremote.exe |
"{8F8F1FFD-C1DA-4F28-9F92-B0EDDAB163E8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{8FEB4253-5B69-4134-A689-3FC41FF2DBF0}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe |
"{92CC8750-A873-4C93-AA3F-476D364C9CFD}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\r.u.s.e\ruse.exe |
"{94B7E6D6-77C5-41D7-AD87-3B0ACFA26DC6}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\thomaswasalone\thomaswasalone.exe |
"{9AC1289B-8A99-4B5E-910D-F861B70AC934}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\magicka\magicka.exe |
"{9DD73867-716B-4659-B6F0-E3347B169BD5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{9E3ACCF9-5889-4877-841A-4908D8C86DFF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\[email protected]\source sdk base 2007\hl2.exe |
"{9EBAD942-33FA-4396-989B-97D0AB7F3D9C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\thomaswasalone\thomaswasalone.exe |
"{A014E584-EAB2-471B-A946-13737E645020}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{A45A49CC-7D17-460F-AEFB-A142642060AF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\magicka\magicka.exe |
"{A6675E1A-D43B-4549-A6AF-7834B7EC8845}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{A9F3172E-5744-4377-B5C7-F379EE4766D3}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gamemaker_studio\gamemakerplayer.exe |
"{ABCDCE57-15C2-43A1-82A7-832FAFFDD44B}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{B247CF28-9754-4FED-B1D2-24BDEB24E54B}" = protocol=58 | dir=out | [email protected],-28546 |
"{B3A1A489-77EC-4AA8-BB00-2C27A11107CD}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{B3D6309D-C67E-43DC-9E7F-026E6D1A63D4}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\little inferno beta\little inferno.exe |
"{B40D9F04-42BA-41B8-8B88-34BEBD803AE7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\r.u.s.e\ruse.exe |
"{B42DE161-C56D-408B-9504-639902BD07FC}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{B4A6A652-D18D-4E86-86F0-4F04FF46AE01}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\terraria\terraria.exe |
"{B5F3380F-4CAA-4C46-AB4C-8B87B9DA68C5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\[email protected]\counter-strike source\hl2.exe |
"{B6B8A505-1D04-4746-896B-DA6C9F5F36B3}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\war of the roses\run_game.exe |
"{B77DC50C-641D-4BBE-9FC9-ACD721C1A567}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\magicka\magicka.exe |
"{BB944FEE-F8F4-4A2B-9395-DD47FFDA06D1}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{BC46AC07-DA2C-43E9-812D-28648D417E7E}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe |
"{BDA75DC8-F319-4E2A-A5D1-B3D7EE6272C2}" = protocol=6 | dir=in | app=c:\users\ge-bill\appdata\roaming\dropbox\bin\dropbox.exe |
"{BDECB227-4FFE-41A3-B4B9-BA109C95E905}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{C09D9CEB-4B67-444F-B696-E56E29F5DC46}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\torchlight ii\modlauncher.exe |
"{C1031C95-8248-4DCD-92B2-D23C7DA1A989}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{C50BCFEA-A6F3-4A55-B11E-9CEC7DE1C44B}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{C55BF62B-240D-4B90-B9BC-EC273F2A69BC}" = protocol=6 | dir=in | app=c:\program files (x86)\dell\stage remote\dmr.exe |
"{C582F3D5-199D-4B37-B3E4-CADA7B7C9D32}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\terraria\terraria.exe |
"{C69E8AFB-38DB-48B0-BF20-18B727A97068}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{CD9BD3FF-765A-4D11-9AF0-C281610A8C03}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\skulls of the shogun\skullsoftheshogun.exe |
"{D2C77B97-2EBA-4F61-B2CA-3FEA5EF07BB6}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{D2D49711-9F8B-4821-B757-C4DC31D43748}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{D328327D-1BE7-4C2A-AC9C-86B596D6E4A5}" = protocol=17 | dir=in | app=c:\program files (x86)\dell\stage remote\stageremote.exe |
"{D4BA4746-7FC0-4BFF-9F11-7CC82F7EA7BE}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\skyrim\creationkit.exe |
"{D7F10D36-1169-4FBB-B45D-77B4FD85FB65}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\torchlight ii\modlauncher.exe |
"{DB595FBD-C570-423D-AAD2-2F539322BB7C}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
"{E17F70F8-406F-47EE-A3E7-1429D3F5C0CD}" = protocol=6 | dir=in | app=c:\program files (x86)\dell\stage remote\stageremoteservice.exe |
"{E4CF2237-EB28-4E50-A58F-FCE1B8066A97}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{E9A59FAD-1A2B-42D6-AB84-C8B8E4C427C4}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe |
"{EA1E2B82-5689-4ACB-A6D7-F2F15D1BC564}" = protocol=1 | dir=in | [email protected],-28543 |
"{EE4203A3-3FA6-45EB-88AE-0FD4BE09D344}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gamemaker_studio\gamemakerplayer.exe |
"{F2B68B3D-01AD-4CAC-9303-24EEF1375801}" = protocol=17 | dir=in | app=c:\program files (x86)\dell\stage remote\installerhelp.exe |
"{F74C67D3-0CFD-43BE-B767-0499BDE4CD51}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{F778CCF5-9B48-4B8D-B9BD-7CD320327581}" = protocol=17 | dir=in | app=c:\program files (x86)\dell\stage remote\dmr.exe |
"{F9661B7E-F12F-4244-AFD7-6F18E4012B4C}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{FA25A048-43B5-4B17-880C-6340FBCC8F3D}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{FA6FC467-7023-441E-AF92-D4DC376CAA1A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\showdown beta\binaries\showdown.exe |
"TCP Query User{0251102C-230E-4641-8A39-4B2986AAC5F7}C:\program files (x86)\fiji\fiji.app\fiji-win64.exe" = protocol=6 | dir=in | app=c:\program files (x86)\fiji\fiji.app\fiji-win64.exe |
"TCP Query User{06A8FA6F-7CE4-4F20-A27A-AA4C77BDDF7B}C:\program files (x86)\fiji\fiji.app\fiji-win64.exe" = protocol=6 | dir=in | app=c:\program files (x86)\fiji\fiji.app\fiji-win64.exe |
"TCP Query User{095CEB46-9544-43B7-AEE5-523C86B1BA2C}C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\editor.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the witcher 2\bin\editor.exe |
"TCP Query User{130A5D2B-D777-4634-9E7E-AFAB66EA0A70}C:\program files (x86)\cryptic studios\neverwinter\live\gameclient.exe" = protocol=6 | dir=in | app=c:\program files (x86)\cryptic studios\neverwinter\live\gameclient.exe |
"TCP Query User{2C02925D-3A97-4044-BD6D-020E4506B029}C:\program files (x86)\trillian\plugins\skypekit.exe" = protocol=6 | dir=in | app=c:\program files (x86)\trillian\plugins\skypekit.exe |
"TCP Query User{7BBB4C02-DEB9-4862-91A0-D83DE11C8651}C:\program files (x86)\steam\steam.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"TCP Query User{7C38E0D1-CE75-4488-96DD-F8E661A1AE08}C:\program files (x86)\trillian\plugins\skypekit.exe" = protocol=6 | dir=in | app=c:\program files (x86)\trillian\plugins\skypekit.exe |
"TCP Query User{7E399748-A782-49B1-B26B-3D6B6B79E519}C:\users\ge-bill\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\ge-bill\appdata\roaming\dropbox\bin\dropbox.exe |
"TCP Query User{7F3EF3AE-56D5-4DD3-B093-AE3BBAD7FC75}C:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\expansion\beta\arma2oa.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\expansion\beta\arma2oa.exe |
"TCP Query User{85251453-9E48-4C6A-B35D-282EF15457BE}C:\program files (x86)\trillian\trillian.exe" = protocol=6 | dir=in | app=c:\program files (x86)\trillian\trillian.exe |
"TCP Query User{853142A0-7BF3-4958-8F54-6A1752BED79C}C:\programdata\battle.net\agent\agent.1040\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe |
"TCP Query User{89CDE2EA-DB92-473E-9598-4797B8736A83}C:\program files (x86)\imagej\jre\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\imagej\jre\bin\javaw.exe |
"TCP Query User{8A10AD6C-BFBF-48AA-A4CD-55799C08891E}C:\program files (x86)\eigenlabs\release-2.0.72-stable\bin\eigend.exe" = protocol=6 | dir=in | app=c:\program files (x86)\eigenlabs\release-2.0.72-stable\bin\eigend.exe |
"TCP Query User{91323564-0217-48D0-8158-E4A255E26B5C}C:\program files (x86)\desura\common\guncraft\guncraft.exe" = protocol=6 | dir=in | app=c:\program files (x86)\desura\common\guncraft\guncraft.exe |
"TCP Query User{9661AC73-45FB-44EF-BE81-37EA4E66DF6B}C:\program files (x86)\eigenlabs\release-2.0.74-stable\bin\eigend.exe" = protocol=6 | dir=in | app=c:\program files (x86)\eigenlabs\release-2.0.74-stable\bin\eigend.exe |
"TCP Query User{BD425FAF-478B-420C-9A32-8069490F3EBC}C:\program files (x86)\eigenlabs\release-2.0.74-stable\bin\eigend.exe" = protocol=6 | dir=in | app=c:\program files (x86)\eigenlabs\release-2.0.74-stable\bin\eigend.exe |
"TCP Query User{BEEC12E2-3AC2-492A-A16D-D741F33B95BC}C:\program files (x86)\eigenlabs\release-2.0.72-stable\bin\stage.exe" = protocol=6 | dir=in | app=c:\program files (x86)\eigenlabs\release-2.0.72-stable\bin\stage.exe |
"TCP Query User{CE00E9A6-866D-4238-A061-DF49302D4A0D}C:\windows\syswow64\dpnsvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dpnsvr.exe |
"TCP Query User{D42547D1-1339-44D3-9676-F8F680A19278}C:\program files (x86)\eigenlabs\release-2.0.74-stable\bin\stage.exe" = protocol=6 | dir=in | app=c:\program files (x86)\eigenlabs\release-2.0.74-stable\bin\stage.exe |
"TCP Query User{D9A0FBF8-0D38-4E19-A538-3EF365C28B72}C:\program files (x86)\imagej\jre\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\imagej\jre\bin\javaw.exe |
"TCP Query User{F6729ED1-350B-40AF-9471-6BD12DD85AB0}C:\program files (x86)\veoh networks\veohwebplayer\veohwebplayer.exe" = protocol=6 | dir=in | app=c:\program files (x86)\veoh networks\veohwebplayer\veohwebplayer.exe |
"UDP Query User{092CF086-45A0-4605-A445-2FE3BCDC195D}C:\program files (x86)\fiji\fiji.app\fiji-win64.exe" = protocol=17 | dir=in | app=c:\program files (x86)\fiji\fiji.app\fiji-win64.exe |
"UDP Query User{0A898432-C98F-4F7F-9DD4-E75F2BEAB310}C:\program files (x86)\veoh networks\veohwebplayer\veohwebplayer.exe" = protocol=17 | dir=in | app=c:\program files (x86)\veoh networks\veohwebplayer\veohwebplayer.exe |
"UDP Query User{24F09945-6965-4562-837D-92AFC75B3748}C:\programdata\battle.net\agent\agent.1040\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe |
"UDP Query User{323CB717-4582-46D2-890E-BEE503D897A4}C:\program files (x86)\trillian\plugins\skypekit.exe" = protocol=17 | dir=in | app=c:\program files (x86)\trillian\plugins\skypekit.exe |
"UDP Query User{3AD0E145-9F46-42A8-8DB3-5E4548750B78}C:\program files (x86)\imagej\jre\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\imagej\jre\bin\javaw.exe |
"UDP Query User{5008C4C4-5629-428C-A77C-6FEC29EAD003}C:\program files (x86)\trillian\plugins\skypekit.exe" = protocol=17 | dir=in | app=c:\program files (x86)\trillian\plugins\skypekit.exe |
"UDP Query User{5A037F21-CE61-4F72-A079-AC939E741C33}C:\program files (x86)\cryptic studios\neverwinter\live\gameclient.exe" = protocol=17 | dir=in | app=c:\program files (x86)\cryptic studios\neverwinter\live\gameclient.exe |
"UDP Query User{62F432CE-92F4-4B5E-BA75-0815CDC0537F}C:\program files (x86)\imagej\jre\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\imagej\jre\bin\javaw.exe |
"UDP Query User{68589D3D-2124-4509-A0B7-033789CC1C67}C:\program files (x86)\eigenlabs\release-2.0.74-stable\bin\stage.exe" = protocol=17 | dir=in | app=c:\program files (x86)\eigenlabs\release-2.0.74-stable\bin\stage.exe |
"UDP Query User{6A91AB01-6EC0-4455-A2B7-47D72D31F520}C:\program files (x86)\eigenlabs\release-2.0.74-stable\bin\eigend.exe" = protocol=17 | dir=in | app=c:\program files (x86)\eigenlabs\release-2.0.74-stable\bin\eigend.exe |
"UDP Query User{72E284A4-F0BE-40B5-98AA-A1BEC737ECB9}C:\program files (x86)\trillian\trillian.exe" = protocol=17 | dir=in | app=c:\program files (x86)\trillian\trillian.exe |
"UDP Query User{77A0574E-07DD-4B76-95E0-A8A6B1024429}C:\program files (x86)\steam\steam.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"UDP Query User{7D5DC8C0-D920-4768-9A99-8CBCD7E32CE1}C:\windows\syswow64\dpnsvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dpnsvr.exe |
"UDP Query User{C6CB81FD-939D-44BB-878C-3EBBA10F7C93}C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\editor.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the witcher 2\bin\editor.exe |
"UDP Query User{CC27076F-5632-4B49-B78C-E878A40DF701}C:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\expansion\beta\arma2oa.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\expansion\beta\arma2oa.exe |
"UDP Query User{D1BCB171-93B7-48A8-98D0-3DAA421DB0CE}C:\program files (x86)\fiji\fiji.app\fiji-win64.exe" = protocol=17 | dir=in | app=c:\program files (x86)\fiji\fiji.app\fiji-win64.exe |
"UDP Query User{D5E5E878-68E3-4A84-8F1C-DE141EF65059}C:\users\ge-bill\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\ge-bill\appdata\roaming\dropbox\bin\dropbox.exe |
"UDP Query User{D9FF31B1-A784-43B9-A10C-D940E9A166F7}C:\program files (x86)\eigenlabs\release-2.0.72-stable\bin\stage.exe" = protocol=17 | dir=in | app=c:\program files (x86)\eigenlabs\release-2.0.72-stable\bin\stage.exe |
"UDP Query User{DB1DE6B1-4636-4750-8895-813ADAB52026}C:\program files (x86)\desura\common\guncraft\guncraft.exe" = protocol=17 | dir=in | app=c:\program files (x86)\desura\common\guncraft\guncraft.exe |
"UDP Query User{DEB3FB09-BC2B-48F5-AE0C-270ED275A4C8}C:\program files (x86)\eigenlabs\release-2.0.74-stable\bin\eigend.exe" = protocol=17 | dir=in | app=c:\program files (x86)\eigenlabs\release-2.0.74-stable\bin\eigend.exe |
"UDP Query User{EB2D7400-7B78-4B23-9EAF-86881D16977B}C:\program files (x86)\eigenlabs\release-2.0.72-stable\bin\eigend.exe" = protocol=17 | dir=in | app=c:\program files (x86)\eigenlabs\release-2.0.72-stable\bin\eigend.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0225AD21-F3E2-4916-BFF3-65D3F9052582}" = iTunes
"{1032900F-4BC2-4E9F-BAE3-93A7FDDA0EEF}" = Command Center
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{26A24AE4-039D-4CA4-87B4-2F86416024FF}" = Java™ 6 Update 24 (64-bit)
"{26A24AE4-039D-4CA4-87B4-2F86417025FF}" = Java 7 Update 25 (64-bit)
"{2F72F540-1F60-4266-9506-952B21D6640D}" = Apple Mobile Device Support
"{2FD0FA0A-7A21-4C4A-B268-1142B54E035E}" = Windows Live Family Safety
"{350AA351-21FA-3270-8B7A-835434E766AD}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{5EEC477F-8E9B-4420-8829-16E7426227DB}" = Windows Live MIME IFilter
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{60B2315F-680F-4EB3-B8DD-CCDC86A7CCAB}" = Roxio File Backup
"{64A3A4F4-B792-11D6-A78A-00B0D0170250}" = Java SE Development Kit 7 Update 25 (64-bit)
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{99B984C8-3A95-4D5D-9C68-447942E382E1}" = Gatan Microscopy Suite 64-Bit 2.1.1 Build 1391
"{9D6DFAD6-09E5-445E-A4B5-A388FEEBD90D}" = RBVirtualFolder64Inst
"{A140A094-942E-4F76-B8F4-850EC146170F}" = Alienware M17x Manual
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA 3D Vision Driver 320.49
"{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Control Panel 320.49
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Graphics Driver 320.49
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 1.5
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA 3D Vision Controller Driver 320.49
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus 4.11.9
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX System Software 9.13.0604
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 4.11.9
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA HD Audio Driver 1.3.24.2
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant
"{D954C6C2-544B-4091-A47F-11E77162883E}" = Microsoft Security Client
"{DF446558-ADF7-4884-9B2D-281979CCE71F}" = Bigfoot Networks Killer Network Manager
"{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"Buffalo BFRD4G" = Buffalo RAMDISK Utility
"C9168AA0369330338AB18922E49CDEF58CC490AE" = Windows Driver Package - Eigenlabs (EigenAlpha) EigenLabs (09/23/2011 1.0.8)
"CCleaner" = CCleaner
"GIMP-2_is1" = GIMP 2.8.4
"LockHunter_is1" = LockHunter 2.0 beta 2, 64 bit
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft Security Client" = Microsoft Security Essentials
"PC-Doctor for Windows" = AlienAutopsy
"Pen Tablet Driver" = Bamboo
"Sigil_is1" = Sigil 0.4.2
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"VLC media player" = VLC media player 2.0.7
"WinRAR archiver" = WinRAR 4.20 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0046FA01-C5B9-4985-BACB-398DC480FC05}" = Adobe Photoshop CS3
"{01070EBF-D92B-4E09-8A5C-F33CE8B9D9D5}" = Blio
"{023C3C20-4625-11D0-86A0-00C0F003261B}" = iTEM FIVE
"{03D562B5-C4E2-4846-A920-33178788BE00}" = Windows Live Communications Platform
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{04AF207D-9A77-465A-8B76-991F6AB66245}" = Adobe Help Viewer CS3
"{08B32819-6EEF-4057-AEDA-5AB681A36A23}" = Adobe Bridge Start Meeting
"{0D69462F-99CC-4F8D-942E-666E21CE59F8}" = Alienware On-Screen Display
"{0ED7EE95-6A97-47AA-AD73-152C08A15B04}" = AlienRespawn
"{0F929651-F516-4956-90F2-FFBD2CD5D30E}" = Photo Gallery
"{0FF9CC94-EF23-401E-BDBD-37403D1A2B38}" = Windows Live SOXE Definitions
"{135BDCE5-20F6-C349-F837-B5C147E20743}" = runtime-1.0.0
"{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}" = Adobe WinSoft Linguistics Plugin
"{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}" = Microsoft XNA Framework Redistributable 3.1
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{2299EEBD-0A83-4B26-AA4A-057AE9E5BAE8}" = Dell Stage Remote
"{237CCB62-8454-43E3-B158-3ACD0134852E}" = High-Definition Video Playback
"{2436F2A8-4B7E-4B6C-AE4E-604C84AA6A4F}" = Nero Core Components 10
"{26A24AE4-039D-4CA4-87B4-2F83216022F0}" = Java™ 6 Update 22
"{26A24AE4-039D-4CA4-87B4-2F83216024FF}" = Java™ 6 Update 26
"{26A24AE4-039D-4CA4-87B4-2F83216025F0}" = Java™ 6 Update 25
"{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 9
"{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1
"{29E5EA97-5F74-4A57-B8B2-D4F169117183}" = Adobe Stock Photos CS3
"{2AC01935-3774-4981-98C8-14E93C14372C}" = Windows Live UX Platform Language Pack
"{3250260C-7A95-4632-893B-89657EB5545B}" = PhotoShowExpress
"{3282FBE1-35FC-48D8-98CA-115A5EF1F9B4}" = NVIDIA PhysX
"{354714AA-54ED-4F99-8161-4A1EABA9170A}" = Eigenlabs Device Drivers
"{3DC873BB-FFE3-46BF-9701-26B9AE371F9F}" = RealDownloader
"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel® Rapid Storage Technology
"{407DE242-5BFA-CE6B-B310-C716E2CC7945}" = resources-1.0.0
"{40F06490-8C14-43AA-99D3-EEEFDBAC3CFC}" = SyncUP
"{45898170-E68C-4F02-AA35-C2186BF347A3}" = Movie Maker
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A3FCC59-5231-4634-882C-BF8B511392C5}" = calibre
"{4C5BDE44-44A9-4B4A-85F5-F3A0158734BA}" = Eigenlabs Device Drivers
"{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
"{4DD1AF59-5121-421F-B92D-EEBF3F20345A}" = Official Video Converter
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.5
"{51846830-E7B2-4218-8968-B77F0FF475B8}" = Adobe Color EU Extra Settings
"{523B2B1B-D8DB-4B41-90FF-C4D799E2758A}" = Nero ControlCenter 10 Help (CHM)
"{54793AA1-5001-42F4-ABB6-C364617C6078}" = Adobe Linguistics CS3
"{55D9DB47-FF42-1D87-7497-723F032855FB}" = alchemy-1.0.0
"{5A06423A-210C-49FB-950E-CB0EB8C5CEC7}" = Roxio BackOnTrack
"{5A0EE0F0-E909-4F3B-B437-AAD9252427CB}" = Windows Live Installer
"{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}" = Apple Application Support
"{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411
"{5E094C92-6288-4F43-AA9A-D452D0218F3F}" = Windows Live Essentials
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{6389F199-1D6C-4974-9557-693F9DD48736}" = Windows Live Writer Resources
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel® Management Engine Components
"{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}" = Nero Update
"{65D0C510-D7B6-4438-9FC8-E6B91115AB0D}" = Live! Cam Avatar Creator
"{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3
"{6ABE0BEE-D572-4FE8-B434-9E72A289431B}" = Adobe Fonts All
"{6B6923B9-8719-425B-916C-CD2908F31AAF}" = Windows Live SOXE
"{6DFB899F-17A2-48F0-A533-ED8D6866CF38}" = Nero Control Center 10
"{6F0BBEFE-BE1C-419B-BA1F-D36C9E7915BC}" = Roxio Creator Starter
"{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}" = Adobe Asset Services CS3
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7746BFAA-2B5D-4FFD-A0E8-4558F4668105}" = Roxio Burn
"{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7C6F0282-3DCD-4A80-95AC-BB298E821C44}" = Windows Live Writer
"{7D095455-D971-4D4C-9EFD-9AF6A6584F3A}" = Bing Desktop
"{7FB00B6B-6843-97EC-EED6-78BD6D35370A}" = Zinio Reader 4
"{802771A9-A856-4A41-ACF7-1450E523C923}" = Adobe XMP Panels CS3
"{820B6609-4C97-3A2B-B644-573B06A0F0CC}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{89870E0D-9602-41F8-9E83-14F6849346A4}" = Windows Live Mail
"{89C7E0A7-4D9D-4DCC-8834-A9A2B92D7EBB}" = Photo Gallery
"{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}" = Adobe Device Central CS3
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}" = Adobe Type Support
"{90176341-0A8B-4CCC-A78D-F862228A6B95}" = Adobe Anchor Service CS3
"{91AF2672-F5BC-42CF-8037-A9D2F92BBCC0}" = Dell MusicStage
"{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
"{95655ED4-7CA5-46DF-907F-7144877A32E5}" = Adobe Color NA Recommended Settings
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{9A00EC4E-27E1-42C4-98DD-662F32AC8870}" = Sonic CinePlayer Decoder Pack
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9C6D5C94-386A-4DE7-B99F-523D3F167B9A}" = Windows Live Messenger
"{9C9824D9-9000-4373-A6A5-D0E5D4831394}" = Adobe Bridge CS3
"{9F1F2AEA-C72A-4DD6-991E-C5506A5625E4}" = OpenOffice.org 3.4.1
"{A0087DDE-69D0-11E2-AD57-43CA6188709B}" = Adobe AIR
"{A121EEDE-C68F-461D-91AA-D48BA226AF1C}" = Roxio Activation Module
"{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}" = Adobe CMaps
"{A2D81E70-2A98-4A08-A628-94388B063C5E}" = Adobe Color - Photoshop Specific
"{A9668246-FB70-4103-A1E3-66C9BC2EFB49}" = AlienRespawn - Support Software
"{AAA94EAA-40A4-458C-9D86-D1DA765B51D5}" = Windows Live Writer
"{AAECF7BA-E83B-4A10-87EA-DE0B333F8734}" = RealNetworks - Microsoft Visual C++ 2010 Runtime
"{AAF91344-2808-4D6B-9242-FBE5AF79D60A}" = Windows Live Family Safety
"{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}" = PDF Settings
"{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI (11.0.03)
"{AC76BA86-7AD7-2530-0000-A00000000004}" = Extended Asian Language font pack for Adobe Reader XI
"{AF4D3C63-009B-4A17-B02E-D395065DD3F0}" = Dell Stage Remote
"{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}" = DirectX 9 Runtime
"{B286BAC3-CBE6-4854-BF68-EB72A34CEA56}" = Windows Live Messenger
"{B39A6825-EA20-43EA-AB2D-A6BC0298D9A1}" = Movie Maker
"{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}" = Adobe Camera Raw 4.0
"{B67BAFBA-4C9F-48FA-9496-933E3B255044}" = QuickTime
"{B93DCF58-AA57-41EC-8D69-B05C66C6312D}_is1" = SUPER © v2012.build.51 (April 7, 2012) version v2012.build.51
"{B93EEE50-9C8F-45DF-95E4-3D85A6E242F3}" = DarksidersInstaller
"{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}" = Adobe Default Language CS3
"{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}" = Adobe ExtendScript Toolkit 2
"{C6B0EE9E-2128-4448-B7AE-5E2B46E0F0E7}" = Windows Live Photo Common
"{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D0DFF92A-492E-4C40-B862-A74A173C25C5}" = Adobe Version Cue CS3 Client
"{D1BB4446-AE9C-4256-9A7F-4D46604D2462}" = Adobe Setup
"{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}" = Adobe PDF Library Files
"{D604900F-A275-416C-AF9D-CDEDF58B72DB}" = Windows Live Mail
"{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}" = Microsoft XNA Framework Redistributable 4.0 Refresh
"{D92C9CCE-E5F0-4125-977A-0590F3225B74}" = SyncUP
"{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}" = Adobe Color Common Settings
"{DCE0E79A-B9AC-41AC-98C1-7EF0538BCA7F}" = Dell VideoStage
"{DD7C5FC1-DCA5-487A-AF23-658B1C00243F}" = Photo Common
"{DD7DB3C5-6FA3-4FA3-8A71-C2F2940EB029}" = Adobe Color JA Extra Settings
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E2EBA7C0-8072-447F-856D-FFEE8D15B23B}" = Dell Stage
"{E3445598-4424-4EE2-B71C-C23325F7FB71}" = Windows Live PIMT Platform
"{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio
"{E4335E82-17B3-460F-9E70-39D9BC269DB3}" = Dell PhotoStage
"{E69AE897-9E0B-485C-8552-7841F48D42D8}" = Adobe Update Manager CS3
"{EF56258E-0326-48C5-A86C-3BAC26FC15DF}" = Roxio Creator Starter
"{EFBCA571-617D-484A-9ECA-E301BB6D0750}" = Windows Live Writer
"{F06B5C4C-8D2E-4B24-9D43-7A45EEC6C878}" = Roxio Creator Starter
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel® Processor Graphics
"{F0E58739-2B4C-498F-9B0D-FF0F2FD52B61}" = Windows Live UX Platform
"{F5CB822F-B365-43D1-BCC0-4FDA1A2017A7}" = Nero 10 Movie ThemePack Basic
"{F6F30C28-38AA-4DBA-AE0B-7E30238E61BB}" = Junk Mail filter update
"{FCD6D60F-AF2B-49E3-ABC4-A4C96B56225D}" = Blio
"{FEF06E73-A519-4510-8CF3-B66041B91D8A}" = EMSC
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"Adobe_2ac78060bc5856b0c1cf873bb919b58" = Adobe Photoshop CS3
"Advanced Audio FX Engine" = Advanced Audio FX Engine
"Applian FLV and Media Player" = Applian FLV and Media Player 3.1.1.12
"Applian FLV Player2.0.25" = Applian FLV Player
"Audacity_is1" = Audacity 2.0.2
"AudibleDownloadManager" = Audible Download Manager
"AudibleManager" = AudibleManager
"Battlelog Web Plugins" = Battlelog Web Plugins
"BattlEye for OA" = BattlEye for OA Uninstall
"Camel Audio Alchemy" = Camel Audio Alchemy
"Capsule" = Capsule
"Comical_is1" = Comical 0.8
"Desura" = Desura
"Desura_72683731550240" = Desura: Guncraft
"DivX Setup" = DivX Setup
"ESN Sonar-0.70.4" = ESN Sonar
"FileHippo.com" = FileHippo.com Update Checker
"Free DVD Ripper Platinum_is1" = Free DVD Ripper Platinum 3.0.1
"ImageJ_is1" = ImageJ 1.45s
"Inkscape" = Inkscape 0.48.4
"InstallShield_{0D69462F-99CC-4F8D-942E-666E21CE59F8}" = Alienware On-Screen Display
"InstallShield_{1032900F-4BC2-4E9F-BAE3-93A7FDDA0EEF}" = Command Center
"InstallShield_{A140A094-942E-4F76-B8F4-850EC146170F}" = Alienware M17x Manual
"InstallShield_{DCE0E79A-B9AC-41AC-98C1-7EF0538BCA7F}" = Dell VideoStage
"InstallShield_{DF446558-ADF7-4884-9B2D-281979CCE71F}" = Bigfoot Networks Killer Network Manager
"Integrated Webcam Live! Central" = Integrated Webcam Live! Central
"KLiteCodecPack_is1" = K-Lite Codec Pack 9.3.0 (Full)
"LAME_is1" = LAME v3.99.3 (for Windows)
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.75.0.1300
"ManyCam" = ManyCam 3.1.43
"Mendeley Desktop" = Mendeley Desktop 1.1.3
"Mozilla Firefox 22.0 (x86 en-US)" = Mozilla Firefox 22.0 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Neverwinter" = Neverwinter
"NVIDIA StereoUSB Driver" = NVIDIA 3D Vision Controller Driver
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"OnLive" = OnLive
"OpenAL" = OpenAL
"Origin" = Origin
"Pen Tablet Driver" = Bamboo
"RealPlayer 16.0" = RealPlayer
"Reconstruct_is1" = Reconstruct v1.1.0.0
"sfArk" = sfArk
"Steam App 200710" = Torchlight II
"Steam App 202480" = Creation Kit
"Steam App 214850" = GameMaker: Studio
"Steam App 218" = Source SDK Base 2007
"Steam App 228960" = Skulls of the Shogun
"Steam App 241600" = Rogue Legacy
"Steam App 42910" = Magicka
"Steam App 730" = Counter-Strike: Global Offensive Beta
"Synthesia" = Synthesia (remove only)
"TeamViewer 8" = TeamViewer 8
"Trillian" = Trillian
"UN091111" = BUFFALO TurboPC for FLASH/HDD
"UN091201" = BUFFALO BuffaloTools Launcher
"UN091222" = BUFFALO Backup Utility
"UN101018" = BUFFALO RAID Utility
"Uplay" = Uplay
"Veoh Web Player Beta" = Veoh Web Player
"Wacom WebTabletPlugin for IE" = WebTablet IE Plugin
"Wacom WebTabletPlugin for Netscape" = WebTablet Netscape Plugin
"WinLiveSuite" = Windows Live Essentials
"ZinioReader4" = Zinio Reader 4

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Dropbox" = Dropbox
"f031ef6ac137efc5" = Dell Driver Download Manager
"Gnumeric" = Gnumeric Spreadsheet 1.10.16-20110616
"SkyDriveSetup.exe" = Microsoft SkyDrive
"SOE-" = gamelauncher-ps2-live
"SOE-C:/Users/ge-bill/AppData/Local/Sony Online Entertainment/ApplicationUpdater" = applicationupdater
"UnityWebPlayer" = Unity Web Player

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 9/7/2012 8:06:19 AM | Computer Name = indefatigable | Source = WinMgmt | ID = 10
Description =

Error - 9/7/2012 8:08:40 AM | Computer Name = indefatigable | Source = Application Error | ID = 1000
Description = Faulting application name: DivX Plus Player.exe, version: 10.3.3.16,
time stamp: 0x50180d3e Faulting module name: unknown, version: 0.0.0.0, time stamp:
0x00000000 Exception code: 0xc0000005 Fault offset: 0x1616ff16 Faulting process id:
0x1834 Faulting application start time: 0x01cd8cf171e15e30 Faulting application path:
C:\Program Files (x86)\DivX\DivX Plus Player\DivX Plus Player.exe Faulting module
path: unknown Report Id: c29077ea-f8e4-11e1-9df7-d0df9ab11ab9

Error - 9/7/2012 11:02:11 PM | Computer Name = indefatigable | Source = WinMgmt | ID = 10
Description =

Error - 9/8/2012 11:49:37 PM | Computer Name = indefatigable | Source = WinMgmt | ID = 10
Description =

Error - 9/9/2012 11:54:17 AM | Computer Name = indefatigable | Source = WinMgmt | ID = 10
Description =

Error - 9/9/2012 12:03:10 PM | Computer Name = indefatigable | Source = Windows Backup | ID = 4103
Description =

Error - 9/9/2012 10:41:45 PM | Computer Name = indefatigable | Source = WinMgmt | ID = 10
Description =

Error - 9/10/2012 10:43:32 AM | Computer Name = indefatigable | Source = WinMgmt | ID = 10
Description =

Error - 9/10/2012 10:26:58 PM | Computer Name = indefatigable | Source = WinMgmt | ID = 10
Description =

Error - 9/11/2012 9:32:18 AM | Computer Name = indefatigable | Source = WinMgmt | ID = 10
Description =

[ System Events ]
Error - 7/4/2013 12:45:24 PM | Computer Name = indefatigable | Source = Service Control Manager | ID = 7038
Description = The nvUpdatusService service was unable to log on as .\UpdatusUser
with the currently configured password due to the following error: %%1330 To ensure
that the service is configured properly, use the Services snap-in in Microsoft
Management Console (MMC).

Error - 7/4/2013 12:45:24 PM | Computer Name = indefatigable | Source = Service Control Manager | ID = 7000
Description = The NVIDIA Update Service Daemon service failed to start due to the
following error: %%1069

Error - 7/5/2013 7:50:00 AM | Computer Name = indefatigable | Source = DCOM | ID = 10016
Description =

Error - 7/5/2013 7:51:33 AM | Computer Name = indefatigable | Source = Service Control Manager | ID = 7038
Description = The nvUpdatusService service was unable to log on as .\UpdatusUser
with the currently configured password due to the following error: %%1330 To ensure
that the service is configured properly, use the Services snap-in in Microsoft
Management Console (MMC).

Error - 7/5/2013 7:51:33 AM | Computer Name = indefatigable | Source = Service Control Manager | ID = 7000
Description = The NVIDIA Update Service Daemon service failed to start due to the
following error: %%1069

Error - 7/5/2013 10:24:45 AM | Computer Name = indefatigable | Source = Service Control Manager | ID = 7038
Description = The nvUpdatusService service was unable to log on as .\UpdatusUser
with the currently configured password due to the following error: %%1330 To ensure
that the service is configured properly, use the Services snap-in in Microsoft
Management Console (MMC).

Error - 7/5/2013 10:24:45 AM | Computer Name = indefatigable | Source = Service Control Manager | ID = 7000
Description = The NVIDIA Update Service Daemon service failed to start due to the
following error: %%1069

Error - 7/5/2013 12:01:38 PM | Computer Name = indefatigable | Source = DCOM | ID = 10016
Description =

Error - 7/6/2013 4:35:40 AM | Computer Name = indefatigable | Source = DCOM | ID = 10016
Description =

Error - 7/6/2013 9:28:40 AM | Computer Name = indefatigable | Source = DCOM | ID = 10016
Description =


< End of report >

_____________________________________________________________
thanks
  • 0

#3
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 19,991 posts
Hello gram12,

Please download Farbar Recovery Scan Tool and save it to your desktop.

Note: You need to run the version compatible with your system. The 64bit one will be the right version for your machine.

  • Right click to run as administrator. When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will produce a log called (FRST.txt) in the same directory the tool is run from.
  • Please copy and paste log back here.
  • The first time the tool is run, it makes also another log (Addition.txt). Please also paste that into your reply.

  • 0

#4
gram12

gram12

    Member

  • Topic Starter
  • Member
  • PipPip
  • 15 posts
Hey,

Here is the FRST.txt
_____

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-07-2013 01
Ran by ge-bill (administrator) on 09-07-2013 22:53:51
Running from C:\Users\ge-bill\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe
(Microsoft Corporation) C:\Windows\SYSTEM32\WISPTIS.EXE
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TouchService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\SYSTEM32\WISPTIS.EXE
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TouchUser.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(BUFFALO INC.) C:\Program Files (x86)\BUFFALO\Backup_Utility\BUService.exe
(BUFFALO INC.) C:\Program Files (x86)\BUFFALO\Backup_Utility\BUVSSService64.exe
() C:\Program Files\Bigfoot Networks\Killer Network Manager\BFNService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Microsoft Corp.) C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(FileHippo.com) C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
() C:\Program Files\Bigfoot Networks\Killer Network Manager\KillerNetManager.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Cerulean Studios) C:\Program Files (x86)\Trillian\trillian.exe
() C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe
(BUFFALO INC.) C:\Program Files (x86)\BUFFALO\HD-xLU3\RaidUtility.exe
() C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
() C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
(SoftThinks SAS) C:\Program Files (x86)\AlienRespawn\sftservice.EXE
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_Tablet.exe
(SoftThinks - Dell) C:\Program Files (x86)\AlienRespawn\TOASTER.EXE
() C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
(RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TabletUser.exe
() C:\Program Files (x86)\AlienRespawn\COMPONENTS\SCHEDULER\STSERVICE.EXE
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_Tablet.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
() c:\program files (x86)\trillian\plugins\skypekit.exe
(Alienware) C:\Program Files\Alienware\Command Center\AlienFusionService.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
() C:\Program Files\Alienware\Command Center\AlienFusionController.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\IELowutil.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [SynTPEnh] - %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe [2392872 2010-11-29] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1128448 2011-03-17] (IDT, Inc.)
HKLM\...\Run: [] - [x]
HKLM\...\Run: [MSC] - "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [1281512 2013-01-27] (Microsoft Corporation)
HKLM\...\Run: [IgfxTray] - C:\Windows\system32\igfxtray.exe [172144 2012-12-13] (Intel Corporation)
HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [399984 2012-12-13] (Intel Corporation)
HKLM\...\Run: [Persistence] - C:\Windows\system32\igfxpers.exe [441968 2012-12-13] (Intel Corporation)
HKLM\...\Run: [Nvtmru] - "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [1012000 2013-05-16] (NVIDIA Corporation)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,
HKCU\...\Run: [Pando Media Booster] - C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [3093624 2012-12-29] ()
HKCU\...\Run: [FileHippo.com] - "C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe" /background [307712 2012-11-23] (FileHippo.com)
HKCU\...\Run: [Steam] - "C:\Program Files (x86)\Steam\steam.exe" -silent [1672616 2013-07-08] (Valve Corporation)
HKCU\...\Run: [Skype] - "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [19603048 2013-06-03] (Skype Technologies S.A.)
HKCU\...\Runonce: [Uninstall C:\Users\ge-bill\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\amd64] - C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\ge-bill\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\amd64" [x]
HKLM-x32\...\Run: [AlienwareOn-ScreenDisplay] - C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe [1635696 2011-03-09] ()
HKLM-x32\...\Run: [Desktop Disc Tool] - "C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe" [514544 2010-11-17] ()
HKLM-x32\...\Run: [BingDesktop] - C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe /fromkey [2249352 2013-06-27] (Microsoft Corp.)
HKLM-x32\...\Run: [Adobe ARM] - "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [DivXMediaServer] - C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-05-20] (DivX, LLC)
HKLM-x32\...\Run: [Integrated Webcam Live! Central] - "C:\Program Files (x86)\Integrated Webcam\Live! Central\WebcamInt.exe" /mode2 [577536 2013-01-08] (Creative Technology Ltd)
HKLM-x32\...\Run: [DivXUpdate] - "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW [1263952 2013-02-13] ()
HKLM-x32\...\Run: [TkBellExe] - "C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot [295512 2013-05-19] (RealNetworks, Inc.)
HKLM-x32\...\Run: [QuickTime Task] - "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2013-05-01] (Apple Inc.)
HKU\Default\...\RunOnce: [mctadmin] - C:\Windows\System32\mctadmin.exe [97280 2009-07-14] (Microsoft Corporation)
HKU\Default User\...\RunOnce: [mctadmin] - C:\Windows\System32\mctadmin.exe [97280 2009-07-14] (Microsoft Corporation)
HKU\UpdatusUser\...\RunOnce: [mctadmin] - C:\Windows\System32\mctadmin.exe [97280 2009-07-14] (Microsoft Corporation)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll [266448 2013-06-21] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll [214448 2013-06-21] (NVIDIA Corporation)
Startup: C:\ProgramData\Start Menu\Programs\Startup\Bigfoot Killer Network Manager.lnk
ShortcutTarget: Bigfoot Killer Network Manager.lnk -> C:\Program Files\Bigfoot Networks\Killer Network Manager\KillerNetManager.exe ()
Startup: C:\Users\ge-bill\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Trillian.lnk
ShortcutTarget: Trillian.lnk -> C:\Program Files (x86)\Trillian\trillian.exe (Cerulean Studios)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.condui...8D-68D053680105
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://uk.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.co.uk/alienware
URLSearchHook: (No Name) - {f999a48b-1950-4d81-9971-79018f807b4b} - No File
HKLM-x32 SearchScopes: DefaultScope {61E6A3EB-170C-485F-B8ED-8BF4A6CDC286} URL =
SearchScopes: HKLM-x32 - {D758711A-B8AA-45CF-86CA-BE1019ACBB56} URL = http://u-search.net/...q={searchTerms}
HKCU SearchScopes: DefaultScope {61E6A3EB-170C-485F-B8ED-8BF4A6CDC286} URL = http://search.condui...7352659018&UM=2
SearchScopes: HKCU - {2FCF03E5-8DC0-4EB0-BBA0-4A59A60AA493} URL = http://websearch.ask...1-F87337CD7FF7
SearchScopes: HKCU - {61E6A3EB-170C-485F-B8ED-8BF4A6CDC286} URL = http://search.condui...7352659018&UM=2
SearchScopes: HKCU - {D758711A-B8AA-45CF-86CA-BE1019ACBB56} URL = http://u-search.net/...q={searchTerms}
BHO: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: No Name - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - No File
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO-x32: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
DPF: HKLM-x32 {6C269571-C6D7-4818-BCA4-32A035E8C884} http://ccfiles.creat...102/CTSUEng.cab
DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} http://ccfiles.creat...13/CTPIDPDE.cab
DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} http://ccfiles.creat...21022/CTPID.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Winsock: Catalog9 01 %SYSTEMROOT%\system32\BfLLR.dll [183400] (Bigfoot Networks, Inc.)
Winsock: Catalog9 02 %SYSTEMROOT%\system32\BfLLR.dll [183400] (Bigfoot Networks, Inc.)
Winsock: Catalog9 03 %SYSTEMROOT%\system32\BfLLR.dll [183400] (Bigfoot Networks, Inc.)
Winsock: Catalog9 04 %SYSTEMROOT%\system32\BfLLR.dll [183400] (Bigfoot Networks, Inc.)
Winsock: Catalog9 16 %SYSTEMROOT%\system32\BfLLR.dll [183400] (Bigfoot Networks, Inc.)
Winsock: Catalog9-x64 01 %SYSTEMROOT%\system32\BfLLR.dll [192104] (Bigfoot Networks, Inc.)
Winsock: Catalog9-x64 02 %SYSTEMROOT%\system32\BfLLR.dll [192104] (Bigfoot Networks, Inc.)
Winsock: Catalog9-x64 03 %SYSTEMROOT%\system32\BfLLR.dll [192104] (Bigfoot Networks, Inc.)
Winsock: Catalog9-x64 04 %SYSTEMROOT%\system32\BfLLR.dll [192104] (Bigfoot Networks, Inc.)
Winsock: Catalog9-x64 16 %SYSTEMROOT%\system32\BfLLR.dll [192104] (Bigfoot Networks, Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\ge-bill\AppData\Roaming\Mozilla\Firefox\Profiles\09lyh00t.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.0.4 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.0.5 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.0.6 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.0.7 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @divx.com/DivX Plus Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=1.110.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.110.0\npesnlaunch.dll (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=1.118.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.118.0\npesnlaunch.dll (ESN Social Software AB)
FF Plugin-x32: @java.com/DTPlugin,version=10.7.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @real.com/nppl3260;version=16.0.2.32 - C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.2 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.2 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.2 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpplugin;version=16.0.2.32 - C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll (RealPlayer)
FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF Plugin-x32: @videolan.org/vlc,version=2.0.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @wacom.com/wacom-plugin,version=1.1.0.5 - C:\Program Files (x86)\TabletPlugins\npwacom.dll (Wacom, Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @onlive.com/OnLiveGameClientDetector,version=1.0.0 - C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll (OnLive)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\ge-bill\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll (Ubisoft)
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF HKLM-x32\...\Firefox\Extensions: [{FCE04E1F-9378-4f39-96F6-5689A9159E45}] C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\
FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: DivX Plus Web Player HTML5 &lt;video&gt; - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5

==================== Services (Whitelisted) =================

R2 BFBackupUtilityService; C:\Program Files (x86)\BUFFALO\Backup_Utility\BUService.exe [320888 2010-08-20] (BUFFALO INC.)
R2 BFBackupUtilityVSSService; C:\Program Files (x86)\BUFFALO\Backup_Utility\BUVSSService64.exe [359288 2010-04-28] (BUFFALO INC.)
R2 Bigfoot Networks Killer Service; C:\Program Files\Bigfoot Networks\Killer Network Manager\BFNService.exe [763904 2011-03-30] ()
R2 BingDesktopUpdate; C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe [173192 2013-06-27] (Microsoft Corp.)
R2 HD_xLU3_RaidUtility; C:\Program Files (x86)\BUFFALO\HD-xLU3\RaidUtility.exe [1045880 2011-02-09] (BUFFALO INC.)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22056 2013-01-27] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [379360 2013-01-27] (Microsoft Corporation)
R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-04-16] ()

==================== Drivers (Whitelisted) ====================

R3 Ak27x64; C:\Windows\System32\DRIVERS\Ak27x64.sys [2705000 2011-03-30] (Bigfoot Networks, Inc.)
S3 aksusb; C:\Windows\System32\DRIVERS\aksusb.sys [21120 2011-08-09] (SafeNet Inc.)
R1 BfLwf; C:\Windows\System32\DRIVERS\bflwfx64.sys [68712 2011-03-30] (Bigfoot Networks, Inc.)
R0 BFRD4G; C:\Windows\System32\DRIVERS\BFRD4G.sys [47232 2010-03-10] (BUFFALO INC.)
R0 bftpdskc64; C:\Windows\System32\drivers\bftpdskc64.sys [72016 2011-07-13] (BUFFALO INC.)
S3 bftpusbx64; C:\Windows\System32\drivers\bftpusbx64.sys [20608 2010-10-21] (BUFFALO INC.)
S3 EigenAlpha; C:\Windows\System32\Drivers\EigenAlpha.sys [19968 2011-09-23] (Windows ® Win 7 DDK provider)
R2 Hardlock; C:\Windows\system32\drivers\hardlock.sys [321536 2011-10-07] (SafeNet Inc.)
R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [41704 2012-08-01] (AnchorFree Inc.)
R3 ManyCam; C:\Windows\System32\DRIVERS\mcvidrv_x64.sys [44928 2012-07-20] (ManyCam LLC)
R3 mcaudrv_simple; C:\Windows\System32\drivers\mcaudrv_x64.sys [28160 2013-01-31] (ManyCam LLC)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [230320 2013-01-20] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [130008 2013-01-20] (Microsoft Corporation)
R1 nvkflt; C:\Windows\System32\DRIVERS\nvkflt.sys [284448 2013-06-21] (NVIDIA Corporation)
S3 raidfilt; C:\Windows\System32\drivers\raidfilt.sys [20608 2010-10-15] (BUFFALO INC.)
S1 mfojwtns; \??\C:\Windows\system32\drivers\mfojwtns.sys [x]
S3 X6va005; \??\C:\Users\ge-bill\AppData\Local\Temp\005E36D.tmp [x]
S3 X6va007; \??\C:\Users\ge-bill\AppData\Local\Temp\0071BCA.tmp [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-07-09 22:53 - 2013-07-09 22:53 - 01776221 ____A (Farbar) C:\Users\ge-bill\Desktop\FRST64.exe
2013-07-09 22:53 - 2013-07-09 22:53 - 00000000 ____D C:\FRST
2013-07-06 17:15 - 2013-07-06 17:16 - 00116068 ____A C:\Users\ge-bill\Desktop\Extras.Txt
2013-07-06 17:11 - 2013-07-06 17:26 - 2057513328 ____A C:\Users\ge-bill\Desktop\Black_Grand_Close.sf2
2013-07-06 17:10 - 2013-07-06 17:29 - 2066105030 ____A C:\Users\ge-bill\Desktop\Black_Grand_Ambient.sf2
2013-07-06 16:40 - 2013-07-06 16:40 - 00602112 ____A (OldTimer Tools) C:\Users\ge-bill\Desktop\OTL.exe
2013-07-06 16:29 - 2013-07-06 16:35 - 00000000 ____D C:\Program Files (x86)\VSTPlugins
2013-07-06 16:29 - 2013-07-06 16:29 - 00000000 ____D C:\ProgramData\Camel Audio
2013-07-06 16:29 - 2013-07-06 16:29 - 00000000 ____D C:\Program Files\VSTPlugins
2013-07-06 16:29 - 2013-07-06 16:29 - 00000000 ____D C:\Program Files (x86)\Camel Audio
2013-07-06 16:28 - 2013-07-06 16:28 - 00000028 ____A C:\Users\ge-bill\alchemy.txt
2013-07-05 17:59 - 2013-07-05 17:59 - 00000728 ____A C:\Windows\PFRO.log
2013-07-05 16:54 - 2013-07-05 16:54 - 00000000 ____D C:\Users\ge-bill\AppData\Local\NVIDIA
2013-07-05 16:47 - 2013-07-05 16:47 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2013-07-05 16:46 - 2013-07-05 16:46 - 00000000 ____D C:\Windows\SysWOW64\NV
2013-07-05 16:46 - 2013-07-05 16:46 - 00000000 ____D C:\Windows\System32\NV
2013-07-05 16:39 - 2013-06-21 14:06 - 27781920 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 25256224 ____A (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 21102368 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 17560352 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 13411896 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 11235104 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys
2013-07-05 16:39 - 2013-06-21 14:06 - 09239344 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 07687592 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 07641832 ____A (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 06324360 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 02953504 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 02777888 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 02363680 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 02002720 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 01832224 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispco6432049.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 01511712 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispgenco6432049.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 00572704 ____A (NVIDIA Corporation) C:\Windows\System32\NvFBC64.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 00570656 ____A (NVIDIA Corporation) C:\Windows\System32\NvIFR64.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 00467232 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 00465184 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 00284448 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvkflt.sys
2013-07-05 16:39 - 2013-06-21 14:06 - 00218592 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglshim64.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 00181488 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2013-07-05 16:39 - 2013-06-21 14:06 - 00030496 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvpciflt.sys
2013-07-05 16:39 - 2013-06-21 14:06 - 00021578 ____A C:\Windows\System32\nvinfo.pb
2013-07-05 16:39 - 2013-02-25 07:27 - 00194848 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvhda64v.sys
2013-07-05 16:39 - 2013-02-25 07:27 - 00031520 ____A (NVIDIA Corporation) C:\Windows\System32\nvhdap64.dll
2013-07-05 16:38 - 2013-07-05 17:24 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2013-07-01 18:13 - 2013-07-01 18:13 - 00000021 ____A C:\Users\ge-bill\wifipass.txt
2013-06-29 16:13 - 2013-06-29 16:13 - 00004184 ____A C:\Users\ge-bill\AppData\Local\recently-used.xbel
2013-06-29 14:54 - 2013-06-29 14:54 - 00000000 ____D C:\Users\ge-bill\AppData\Roaming\Rogue Legacy
2013-06-29 13:08 - 2013-06-29 13:08 - 00000000 ____D C:\Users\ge-bill\AppData\Roaming\.technic
2013-06-29 13:07 - 2013-06-29 13:07 - 03020770 ____A () C:\Users\ge-bill\Desktop\TechnicLauncher.exe
2013-06-29 12:54 - 2013-06-29 12:54 - 00263186 ____A C:\Users\ge-bill\Desktop\Minecraft.exe
2013-06-27 20:30 - 2013-07-09 20:24 - 00003044 ____A C:\Windows\setupact.log
2013-06-27 20:30 - 2013-06-27 20:31 - 02285688 ____A C:\Windows\System32\FNTCACHE.DAT
2013-06-27 20:30 - 2013-06-27 20:30 - 00000000 ____A C:\Windows\setuperr.log
2013-06-26 21:46 - 2013-06-26 21:46 - 00085520 ____A C:\Users\ge-bill\AppData\Local\GDIPFONTCACHEV1.DAT
2013-06-26 18:37 - 2013-06-29 13:04 - 00000000 ____D C:\Users\ge-bill\AppData\Roaming\.minecraft
2013-06-25 19:13 - 2013-06-25 19:19 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-06-21 05:16 - 2013-06-21 05:16 - 00566048 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2013-06-19 21:32 - 2013-06-19 21:32 - 00312232 ____A (Oracle Corporation) C:\Windows\System32\javaws.exe
2013-06-19 21:32 - 2013-06-19 21:32 - 00108968 ____A (Oracle Corporation) C:\Windows\System32\WindowsAccessBridge-64.dll
2013-06-16 20:08 - 2013-06-16 20:08 - 00000000 ____D C:\Program Files (x86)\Origin Games
2013-06-15 14:04 - 2013-06-08 16:08 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2013-06-15 14:04 - 2013-06-08 16:07 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2013-06-15 14:04 - 2013-06-08 16:06 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2013-06-15 14:04 - 2013-06-08 16:06 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2013-06-15 14:04 - 2013-06-08 16:06 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2013-06-15 14:04 - 2013-06-08 14:28 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2013-06-15 14:04 - 2013-06-08 13:42 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-06-15 14:04 - 2013-06-08 13:40 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-06-15 14:04 - 2013-06-08 13:40 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-06-15 14:04 - 2013-06-08 13:40 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-06-15 14:04 - 2013-06-08 13:40 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-06-15 14:04 - 2013-06-08 13:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-06-13 00:03 - 2013-05-17 03:25 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-06-13 00:03 - 2013-05-17 03:25 - 01767936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-06-13 00:03 - 2013-05-17 03:25 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-06-13 00:03 - 2013-05-17 03:25 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-06-13 00:03 - 2013-05-17 03:25 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-06-13 00:03 - 2013-05-17 03:25 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-06-13 00:03 - 2013-05-17 03:25 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-06-13 00:03 - 2013-05-17 03:25 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-06-13 00:03 - 2013-05-17 02:59 - 02241024 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2013-06-13 00:03 - 2013-05-17 02:59 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2013-06-13 00:03 - 2013-05-17 02:58 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2013-06-13 00:03 - 2013-05-17 02:58 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2013-06-13 00:03 - 2013-05-17 02:58 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2013-06-13 00:03 - 2013-05-17 02:58 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll
2013-06-13 00:03 - 2013-05-17 02:58 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll
2013-06-13 00:03 - 2013-05-17 02:58 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2013-06-13 00:03 - 2013-05-17 02:58 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll
2013-06-13 00:03 - 2013-05-14 14:23 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe
2013-06-13 00:03 - 2013-05-14 10:40 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-06-12 19:13 - 2013-05-13 07:51 - 01464320 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
2013-06-12 19:13 - 2013-05-13 07:51 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
2013-06-12 19:13 - 2013-05-13 07:51 - 00139776 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
2013-06-12 19:13 - 2013-05-13 07:50 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\certenc.dll
2013-06-12 19:13 - 2013-05-13 06:45 - 01160192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-06-12 19:13 - 2013-05-13 06:45 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2013-06-12 19:13 - 2013-05-13 06:45 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2013-06-12 19:13 - 2013-05-13 05:43 - 01192448 ____A (Microsoft Corporation) C:\Windows\System32\certutil.exe
2013-06-12 19:13 - 2013-05-13 05:08 - 00903168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2013-06-12 19:13 - 2013-05-13 05:08 - 00043008 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2013-06-12 19:13 - 2013-05-10 07:49 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll
2013-06-12 19:13 - 2013-05-10 05:20 - 00024576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2013-06-12 19:13 - 2013-05-08 08:39 - 01910632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2013-06-12 19:13 - 2013-04-26 07:51 - 00751104 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll
2013-06-12 19:13 - 2013-04-26 06:55 - 00492544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2013-06-12 19:13 - 2013-04-26 01:30 - 01505280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2013-06-12 19:13 - 2013-04-17 09:02 - 01230336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2013-06-12 19:13 - 2013-04-17 08:24 - 01424384 ____A (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll
2013-06-12 19:13 - 2013-04-01 00:52 - 01887232 ____A (Microsoft Corporation) C:\Windows\System32\d3d11.dll

==================== One Month Modified Files and Folders =======

2013-07-09 22:53 - 2013-07-09 22:53 - 01776221 ____A (Farbar) C:\Users\ge-bill\Desktop\FRST64.exe
2013-07-09 22:53 - 2013-07-09 22:53 - 00000000 ____D C:\FRST
2013-07-09 22:52 - 2011-09-12 13:29 - 00000000 ____D C:\Users\ge-bill\AppData\Roaming\Skype
2013-07-09 22:23 - 2011-11-05 13:12 - 00000830 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-07-09 22:06 - 2011-09-06 18:22 - 00000000 ____D C:\Program Files (x86)\Steam
2013-07-09 21:23 - 2011-11-05 13:12 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-07-09 21:23 - 2011-09-06 16:50 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-07-09 21:22 - 2011-09-12 17:09 - 00000000 ____D C:\Users\ge-bill\AppData\Local\Adobe
2013-07-09 20:56 - 2011-09-12 19:20 - 00000000 ____D C:\Users\ge-bill\AppData\Local\PMB Files
2013-07-09 20:39 - 2011-09-06 18:39 - 01814378 ____A C:\Windows\WindowsUpdate.log
2013-07-09 20:39 - 2009-07-14 06:45 - 00021296 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-07-09 20:39 - 2009-07-14 06:45 - 00021296 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-07-09 20:26 - 2011-09-06 17:05 - 00000000 ____D C:\Program Files (x86)\AlienRespawn
2013-07-09 20:25 - 2011-09-12 12:59 - 00000000 ____D C:\Users\ge-bill\AppData\Local\SoftThinks
2013-07-09 20:24 - 2013-06-27 20:30 - 00003044 ____A C:\Windows\setupact.log
2013-07-09 20:24 - 2011-09-06 16:46 - 00000000 ____D C:\ProgramData\NVIDIA
2013-07-09 20:24 - 2009-07-14 07:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2013-07-08 22:48 - 2011-12-25 17:13 - 536870912 ___AH C:\BFRD_000.dat
2013-07-08 22:46 - 2012-07-25 13:13 - 00000000 ____D C:\Users\ge-bill\AppData\Roaming\vlc
2013-07-07 00:26 - 2012-12-10 11:45 - 05791744 __ASH C:\Users\ge-bill\Desktop\Thumbs.db
2013-07-06 17:29 - 2013-07-06 17:10 - 2066105030 ____A C:\Users\ge-bill\Desktop\Black_Grand_Ambient.sf2
2013-07-06 17:26 - 2013-07-06 17:11 - 2057513328 ____A C:\Users\ge-bill\Desktop\Black_Grand_Close.sf2
2013-07-06 17:16 - 2013-07-06 17:15 - 00116068 ____A C:\Users\ge-bill\Desktop\Extras.Txt
2013-07-06 17:15 - 2012-04-10 15:08 - 00000000 ____D C:\Program Files (x86)\Eigenlabs
2013-07-06 16:40 - 2013-07-06 16:40 - 00602112 ____A (OldTimer Tools) C:\Users\ge-bill\Desktop\OTL.exe
2013-07-06 16:35 - 2013-07-06 16:29 - 00000000 ____D C:\Program Files (x86)\VSTPlugins
2013-07-06 16:29 - 2013-07-06 16:29 - 00000000 ____D C:\ProgramData\Camel Audio
2013-07-06 16:29 - 2013-07-06 16:29 - 00000000 ____D C:\Program Files\VSTPlugins
2013-07-06 16:29 - 2013-07-06 16:29 - 00000000 ____D C:\Program Files (x86)\Camel Audio
2013-07-06 16:28 - 2013-07-06 16:28 - 00000028 ____A C:\Users\ge-bill\alchemy.txt
2013-07-06 16:28 - 2011-09-12 12:59 - 00000000 ____D C:\users\ge-bill
2013-07-06 12:46 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2013-07-05 17:59 - 2013-07-05 17:59 - 00000728 ____A C:\Windows\PFRO.log
2013-07-05 17:24 - 2013-07-05 16:38 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2013-07-05 17:24 - 2012-04-22 11:19 - 00000000 ____D C:\Users\ge-bill\Desktop\STUFF
2013-07-05 16:54 - 2013-07-05 16:54 - 00000000 ____D C:\Users\ge-bill\AppData\Local\NVIDIA
2013-07-05 16:50 - 2011-09-06 18:37 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2013-07-05 16:48 - 2011-09-06 18:37 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2013-07-05 16:47 - 2013-07-05 16:47 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2013-07-05 16:46 - 2013-07-05 16:46 - 00000000 ____D C:\Windows\SysWOW64\NV
2013-07-05 16:46 - 2013-07-05 16:46 - 00000000 ____D C:\Windows\System32\NV
2013-07-01 18:13 - 2013-07-01 18:13 - 00000021 ____A C:\Users\ge-bill\wifipass.txt
2013-07-01 16:07 - 2013-04-04 07:18 - 00002198 ___AH C:\Users\ge-bill\Documents\Default.rdp
2013-06-29 16:13 - 2013-06-29 16:13 - 00004184 ____A C:\Users\ge-bill\AppData\Local\recently-used.xbel
2013-06-29 16:13 - 2013-04-23 16:23 - 00000000 ____D C:\Users\ge-bill\.gimp-2.8
2013-06-29 14:54 - 2013-06-29 14:54 - 00000000 ____D C:\Users\ge-bill\AppData\Roaming\Rogue Legacy
2013-06-29 14:54 - 2013-06-03 18:41 - 00000000 ____D C:\Users\ge-bill\Documents\SavedGames
2013-06-29 13:08 - 2013-06-29 13:08 - 00000000 ____D C:\Users\ge-bill\AppData\Roaming\.technic
2013-06-29 13:07 - 2013-06-29 13:07 - 03020770 ____A () C:\Users\ge-bill\Desktop\TechnicLauncher.exe
2013-06-29 13:07 - 2011-09-06 16:56 - 00000000 ____D C:\Program Files\Java
2013-06-29 13:04 - 2013-06-26 18:37 - 00000000 ____D C:\Users\ge-bill\AppData\Roaming\.minecraft
2013-06-29 12:56 - 2013-05-07 23:11 - 00000016 ____A C:\Users\ge-bill\Documents\minecraft.txt
2013-06-29 12:54 - 2013-06-29 12:54 - 00263186 ____A C:\Users\ge-bill\Desktop\Minecraft.exe
2013-06-29 12:28 - 2013-02-25 08:12 - 00000202 ____A C:\Users\ge-bill\Documents\mojang pass.txt
2013-06-27 20:31 - 2013-06-27 20:30 - 02285688 ____A C:\Windows\System32\FNTCACHE.DAT
2013-06-27 20:30 - 2013-06-27 20:30 - 00000000 ____A C:\Windows\setuperr.log
2013-06-26 21:46 - 2013-06-26 21:46 - 00085520 ____A C:\Users\ge-bill\AppData\Local\GDIPFONTCACHEV1.DAT
2013-06-26 18:40 - 2011-02-10 16:02 - 00000000 ____D C:\Windows\panther
2013-06-26 18:37 - 2012-01-12 04:23 - 00000000 ____D C:\Program Files\CCleaner
2013-06-26 18:10 - 2012-04-03 13:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-06-25 19:19 - 2013-06-25 19:13 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-06-22 19:59 - 2009-07-14 07:13 - 00785332 ____A C:\Windows\System32\PerfStringBackup.INI
2013-06-21 14:06 - 2013-07-05 16:39 - 27781920 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 25256224 ____A (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 21102368 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 17560352 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 13411896 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 11235104 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys
2013-06-21 14:06 - 2013-07-05 16:39 - 09239344 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 07687592 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 07641832 ____A (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 06324360 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 02953504 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 02777888 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 02363680 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 02002720 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 01832224 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispco6432049.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 01511712 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispgenco6432049.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 00572704 ____A (NVIDIA Corporation) C:\Windows\System32\NvFBC64.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 00570656 ____A (NVIDIA Corporation) C:\Windows\System32\NvIFR64.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 00467232 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 00465184 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 00284448 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvkflt.sys
2013-06-21 14:06 - 2013-07-05 16:39 - 00218592 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglshim64.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 00181488 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2013-06-21 14:06 - 2013-07-05 16:39 - 00030496 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvpciflt.sys
2013-06-21 14:06 - 2013-07-05 16:39 - 00021578 ____A C:\Windows\System32\nvinfo.pb
2013-06-21 14:06 - 2013-04-01 09:52 - 15920536 ____A (NVIDIA Corporation) C:\Windows\System32\nvwgf2umx.dll
2013-06-21 14:06 - 2013-04-01 09:52 - 15144928 ____A (NVIDIA Corporation) C:\Windows\System32\nvd3dumx.dll
2013-06-21 14:06 - 2011-09-06 18:22 - 12427240 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2013-06-21 14:06 - 2011-09-06 18:22 - 02936208 ____A (NVIDIA Corporation) C:\Windows\System32\nvapi64.dll
2013-06-21 14:06 - 2011-09-06 18:22 - 02597856 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2013-06-21 14:06 - 2011-09-06 18:22 - 01059560 ____A (NVIDIA Corporation) C:\Windows\System32\nvumdshimx.dll
2013-06-21 14:06 - 2011-09-06 18:22 - 00925648 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2013-06-21 14:06 - 2011-09-06 18:22 - 00266448 ____A (NVIDIA Corporation) C:\Windows\System32\nvinitx.dll
2013-06-21 14:06 - 2011-09-06 18:22 - 00214448 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2013-06-21 12:23 - 2011-06-27 00:49 - 00063776 ____A (NVIDIA Corporation) C:\Windows\System32\nvshext.dll
2013-06-21 12:23 - 2011-06-26 18:49 - 02555680 ____A (NVIDIA Corporation) C:\Windows\System32\nvsvcr.dll
2013-06-21 12:23 - 2011-06-26 18:49 - 01025312 ____A (NVIDIA Corporation) C:\Windows\System32\nv3dappshext.dll
2013-06-21 12:23 - 2011-06-26 18:49 - 00884512 ____A (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
2013-06-21 12:23 - 2011-06-26 18:49 - 00237856 ____A (NVIDIA Corporation) C:\Windows\System32\nvmctray.dll
2013-06-21 12:23 - 2011-06-26 18:49 - 00067072 ____A (NVIDIA Corporation) C:\Windows\System32\nv3dappshextr.dll
2013-06-21 12:23 - 2011-06-26 18:48 - 06496544 ____A (NVIDIA Corporation) C:\Windows\System32\nvcpl.dll
2013-06-21 12:23 - 2011-06-26 18:48 - 03514656 ____A (NVIDIA Corporation) C:\Windows\System32\nvsvc64.dll
2013-06-21 05:16 - 2013-06-21 05:16 - 00566048 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2013-06-20 22:14 - 2011-10-03 08:52 - 00000000 ____D C:\Users\ge-bill\Desktop\JOURNALS
2013-06-20 06:17 - 2011-06-27 00:49 - 03253909 ____A C:\Windows\System32\nvcoproc.bin
2013-06-19 21:32 - 2013-06-19 21:32 - 00312232 ____A (Oracle Corporation) C:\Windows\System32\javaws.exe
2013-06-19 21:32 - 2013-06-19 21:32 - 00108968 ____A (Oracle Corporation) C:\Windows\System32\WindowsAccessBridge-64.dll
2013-06-19 21:32 - 2011-12-14 13:16 - 01093032 ____A (Oracle Corporation) C:\Windows\System32\npdeployJava1.dll
2013-06-19 21:32 - 2011-09-06 16:56 - 00972712 ____A (Oracle Corporation) C:\Windows\System32\deployJava1.dll
2013-06-19 21:32 - 2011-09-06 16:56 - 00189352 ____A (Oracle Corporation) C:\Windows\System32\javaw.exe
2013-06-19 21:32 - 2011-09-06 16:56 - 00188840 ____A (Oracle Corporation) C:\Windows\System32\java.exe
2013-06-19 12:49 - 2012-01-11 14:24 - 00000000 ____D C:\Users\ge-bill\AppData\Roaming\Applian FLV and Media Player
2013-06-19 12:47 - 2011-12-25 17:58 - 00000000 ____D C:\Users\ge-bill\AppData\Roaming\dvdcss
2013-06-18 08:45 - 2011-09-12 13:32 - 00000000 ____D C:\Program Files (x86)\Trillian
2013-06-16 20:16 - 2011-02-10 18:10 - 00765178 ____A C:\Windows\SysWOW64\PerfStringBackup.INI
2013-06-16 20:11 - 2011-12-17 21:37 - 00000000 ____D C:\Users\ge-bill\AppData\Roaming\Origin
2013-06-16 20:11 - 2011-12-17 21:37 - 00000000 ____D C:\ProgramData\Origin
2013-06-16 20:08 - 2013-06-16 20:08 - 00000000 ____D C:\Program Files (x86)\Origin Games
2013-06-16 20:08 - 2011-12-17 21:37 - 00000000 ____D C:\Users\ge-bill\AppData\Local\Origin
2013-06-16 20:08 - 2011-12-17 21:37 - 00000000 ____D C:\Program Files (x86)\Origin
2013-06-14 09:05 - 2011-09-12 13:27 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-06-14 09:05 - 2011-09-12 13:27 - 00000000 ____D C:\ProgramData\Skype
2013-06-14 00:35 - 2011-09-06 17:14 - 00000000 ____D C:\ProgramData\Sonic
2013-06-13 00:03 - 2011-09-25 16:18 - 75825640 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2013-06-12 20:23 - 2013-05-14 23:23 - 09089416 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2013-06-10 07:43 - 2013-06-02 15:00 - 03632632 ____A C:\Users\ge-bill\Desktop\Journal present Csicsvari et al 2010.odp

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-07-06 12:36

==================== End Of Log ============================

______

Here is the Addition.txt

______

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-07-2013 01
Ran by ge-bill at 2013-07-09 22:55:16
Running from C:\Users\ge-bill\Desktop
Boot Mode: Normal
==========================================================


==================== Installed Programs =======================


Adobe AIR (x32 Version: 3.7.0.2090)
Adobe Anchor Service CS3 (x32 Version: 1.0)
Adobe Asset Services CS3 (x32 Version: 3)
Adobe Bridge CS3 (x32 Version: 2)
Adobe Bridge Start Meeting (x32 Version: 1.0)
Adobe Camera Raw 4.0 (x32 Version: 4.0)
Adobe CMaps (x32 Version: 1.0)
Adobe Color - Photoshop Specific (x32 Version: 1.0)
Adobe Color Common Settings (x32 Version: 1.0)
Adobe Color EU Extra Settings (x32 Version: 1.0)
Adobe Color JA Extra Settings (x32 Version: 1.0)
Adobe Color NA Recommended Settings (x32 Version: 1.0)
Adobe Default Language CS3 (x32 Version: 1.0)
Adobe Device Central CS3 (x32 Version: 1.0)
Adobe ExtendScript Toolkit 2 (x32 Version: 2.0)
Adobe Flash Player 11 ActiveX (x32 Version: 11.7.700.224)
Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94)
Adobe Fonts All (x32 Version: 1.0)
Adobe Help Viewer CS3 (x32 Version: 1)
Adobe Linguistics CS3 (x32 Version: 3.0.0)
Adobe PDF Library Files (x32 Version: 8.0)
Adobe Photoshop CS3 (x32 Version: 10)
Adobe Photoshop CS3 (x32 Version: 10.0)
Adobe Reader XI (11.0.03) (x32 Version: 11.0.03)
Adobe Setup (x32 Version: 1.0)
Adobe Shockwave Player 11.6 (x32 Version: 11.6.1.629)
Adobe Stock Photos CS3 (x32 Version: 1.5)
Adobe Type Support (x32 Version: 1.0)
Adobe Update Manager CS3 (x32 Version: 5.1.0)
Adobe Version Cue CS3 Client (x32 Version: 3)
Adobe WinSoft Linguistics Plugin (x32 Version: 1.0)
Adobe XMP Panels CS3 (x32 Version: 1.0)
Advanced Audio FX Engine (x32 Version: 1.12.05)
alchemy-1.0.0 (x32 Version: 1.0.0)
AlienAutopsy (Version: 3.3.6261.27)
AlienRespawn - Support Software (x32 Version: 9.4.57)
AlienRespawn (x32 Version: 9.4.57)
Alienware M17x Manual (Version: 1.0.0.1)
Alienware M17x Manual (x32 Version: 1.0.0.1)
Alienware On-Screen Display (x32 Version: 0.31.0.14C)
Apple Application Support (x32 Version: 2.3.4)
Apple Mobile Device Support (Version: 6.1.0.13)
Apple Software Update (x32 Version: 2.1.3.127)
Applian FLV and Media Player 3.1.1.12 (x32 Version: 3.1.1.12)
Applian FLV Player (x32 Version: 2.0.25)
applicationupdater (HKCU)
Audacity 2.0.2 (x32 Version: 2.0.2)
Audible Download Manager (x32 Version: 6.6.0.15)
AudibleManager (x32 Version: 2011839726.48.56.2758010)
Bamboo (Version: 5.2.4-6)
Bamboo (x32)
Battlelog Web Plugins (x32 Version: 1.118.0)
BattlEye for OA Uninstall (x32)
Bigfoot Networks Killer Network Manager (Version: 6.0.1.0)
Bigfoot Networks Killer Network Manager (x32)
Bing Desktop (x32 Version: 1.3.174.0)
Blio (x32 Version: 2.3.8153)
Blio (x32 Version: 3.0.9482)
Bonjour (Version: 3.0.0.10)
BUFFALO Backup Utility (x32)
BUFFALO BuffaloTools Launcher (x32)
BUFFALO RAID Utility (x32)
BUFFALO TurboPC for FLASH/HDD (x32)
calibre (x32 Version: 0.9.5)
Camel Audio Alchemy (x32 Version: 1.12.24)
Capsule (x32 Version: 1.0.000)
CCleaner (Version: 4.03)
Comical 0.8 (x32)
Command Center (Version: 2.6.2.0)
Command Center (x32 Version: 2.6.2.0)
Counter-Strike: Global Offensive Beta (x32)
Creation Kit (x32)
D3DX10 (x32 Version: 15.4.2368.0902)
DarksidersInstaller (x32 Version: 1.00.1000)
Dell Driver Download Manager (HKCU Version: 2.1.0.0)
Dell MusicStage (x32 Version: 1.5.201.0)
Dell PhotoStage (x32 Version: 1.5.0.65)
Dell Stage (x32 Version: 1.5.201.0)
Dell Stage Remote (x32 Version: 2.0.0.50)
Dell VideoStage (x32 Version: 1.2.0.1712)
Desura (x32 Version: 100.53)
Desura: Guncraft (x32 Version: Open Beta)
DirectX 9 Runtime (x32 Version: 1.00.0000)
DivX Setup (x32 Version: 2.6.1.44)
Dropbox (HKCU Version: 2.0.22)
eigend-2.0.62-stable (x32 Version: 2.0.62)
eigend-build-2.0.62-stable (x32 Version: 2.0.62)
eigend-nongpl-2.0.62-stable (x32 Version: 2.0.62)
Eigenlabs Device Drivers (x32 Version: 1.0.2)
Eigenlabs Device Drivers (x32 Version: 1.0.8)
EMSC (x32 Version: 0.0.0.22C)
ESN Sonar (x32 Version: 0.70.4)
Extended Asian Language font pack for Adobe Reader XI (x32 Version: 11.0.0)
falo RAMDISK Utility
FileHippo.com Update Checker (x32)
Free DVD Ripper Platinum 3.0.1 (x32)
gamelauncher-ps2-live (HKCU)
GameMaker: Studio (x32)
Gatan Microscopy Suite 64-Bit 2.1.1 Build 1391 (Version: 2.11.1391.0)
GIMP 2.8.4 (Version: 2.8.4)
Gnumeric Spreadsheet 1.10.16-20110616 (HKCU Version: 1.10.16-20110616)
High-Definition Video Playback (x32 Version: 7.3.10000.0.0)
IDT Audio (x32 Version: 1.0.6330.0)
ImageJ 1.45s (x32)
Inkscape 0.48.4 (x32 Version: 0.48.4)
Integrated Webcam Live! Central (x32 Version: 2.01.18)
Intel® Management Engine Components (x32 Version: 7.0.0.1118)
Intel® Processor Graphics (x32 Version: 9.17.10.2932)
Intel® Rapid Storage Technology (x32 Version: 10.0.0.1046)
iTEM FIVE (x32 Version: 5.0.1200)
iTunes (Version: 11.0.2.26)
Java 7 Update 25 (64-bit) (Version: 7.0.250)
Java 7 Update 9 (x32 Version: 7.0.90)
Java Auto Updater (x32 Version: 2.1.9.0)
Java SE Development Kit 7 Update 25 (64-bit) (Version: 1.7.0.250)
Java™ 6 Update 22 (x32 Version: 6.0.220)
Java™ 6 Update 24 (64-bit) (Version: 6.0.240)
Java™ 6 Update 25 (x32 Version: 6.0.250)
Java™ 6 Update 26 (x32 Version: 6.0.260)
Junk Mail filter update (x32 Version: 16.4.3508.0205)
K-Lite Codec Pack 9.3.0 (Full) (x32 Version: 9.3.0)
LAME v3.99.3 (for Windows) (x32)
Live! Cam Avatar Creator (x32 Version: 4.6.5205.1)
LockHunter 2.0 beta 2, 64 bit
Magicka (x32)
Malwarebytes Anti-Malware version 1.75.0.1300 (x32 Version: 1.75.0.1300)
ManyCam 3.1.43 (x32 Version: 3.1.43)
Mendeley Desktop 1.1.3 (x32 Version: 1.1.3)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (x32 Version: 3.5.30730.0)
Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.92.0)
Microsoft Games for Windows Marketplace (x32 Version: 3.5.50.0)
Microsoft Security Client (Version: 4.2.0223.1)
Microsoft Security Essentials (Version: 4.2.223.1)
Microsoft Silverlight (Version: 5.1.20125.0)
Microsoft SkyDrive (HKCU Version: 16.4.6013.0910)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (x32 Version: 9.0.30411)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft XNA Framework Redistributable 3.1 (x32 Version: 3.1.10527.0)
Microsoft XNA Framework Redistributable 4.0 Refresh (x32 Version: 4.0.30901.0)
Movie Maker (x32 Version: 16.4.3508.0205)
Mozilla Firefox 22.0 (x86 en-US) (x32 Version: 22.0)
Mozilla Maintenance Service (x32 Version: 22.0)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
MSVCRT110 (x32 Version: 16.4.1108.0727)
MSVCRT110_amd64 (Version: 16.4.1109.0912)
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0)
Nero 10 Movie ThemePack Basic (x32 Version: 10.2.10200.0.0)
Nero Control Center 10 (x32 Version: 10.6.12500.0.5)
Nero ControlCenter 10 Help (CHM) (x32 Version: 10.2.10800)
Nero Core Components 10 (x32 Version: 2.0.20000.9.12)
Nero Update (x32 Version: 11.0.11500.28.0)
Neverwinter (x32)
NVIDIA 3D Vision Controller Driver (x32 Version: 268.90)
NVIDIA 3D Vision Controller Driver 320.49 (Version: 320.49)
NVIDIA 3D Vision Driver 320.49 (Version: 320.49)
NVIDIA Control Panel 320.49 (Version: 320.49)
NVIDIA GeForce Experience 1.5 (Version: 1.5)
NVIDIA Graphics Driver 320.49 (Version: 320.49)
NVIDIA HD Audio Driver 1.3.24.2 (Version: 1.3.24.2)
NVIDIA Install Application (Version: 2.1002.124.810)
NVIDIA Optimus 4.11.9 (Version: 4.11.9)
NVIDIA PhysX (x32 Version: 9.13.0604)
NVIDIA PhysX System Software 9.13.0604 (Version: 9.13.0604)
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.2049)
NVIDIA Update 4.11.9 (Version: 4.11.9)
NVIDIA Update Components (Version: 4.11.9)
Official Video Converter (x32 Version: 2.5058.00033)
OnLive (x32)
OpenAL (x32)
OpenOffice.org 3.4.1 (x32 Version: 3.41.9593)
Origin (x32 Version: 8.5.0.4550)
Pando Media Booster (x32 Version: 2.6.0.8)
PDF Settings (x32 Version: 1.0)
Photo Gallery (x32 Version: 16.4.3508.0205)
PhotoShowExpress (x32 Version: 2.0.063)
PlayReady PC Runtime x86 (x32 Version: 1.3.0)
QuickTime (x32 Version: 7.74.80.86)
RBVirtualFolder64Inst (Version: 1.00.0000)
RealDownloader (x32 Version: 1.3.2)
RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0)
RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0)
RealPlayer (x32 Version: 16.0.2)
RealUpgrade 1.1 (x32 Version: 1.1.0)
Reconstruct v1.1.0.0 (x32)
resources-1.0.0 (x32 Version: 1.0.0)
Rogue Legacy (x32)
Roxio Activation Module (x32 Version: 1.0)
Roxio BackOnTrack (x32 Version: 1.3.3)
Roxio Burn (x32 Version: 1.8)
Roxio Creator Starter (x32 Version: 1.0.439)
Roxio Creator Starter (x32 Version: 12.1.77.0)
Roxio Creator Starter (x32 Version: 5.0.0)
Roxio Express Labeler 3 (x32 Version: 3.2.2)
Roxio File Backup (Version: 1.3.2)
runtime-1.0.0 (x32 Version: 1.0.0)
sfArk (x32)
Sigil 0.4.2
Skulls of the Shogun (x32)
Skype™ 6.5 (x32 Version: 6.5.158)
Sonic CinePlayer Decoder Pack (x32 Version: 4.3.0)
Source SDK Base 2007 (x32)
Steam (x32 Version: 1.0.0.0)
SUPER © v2012.build.51 (April 7, 2012) version v2012.build.51 (x32 Version: v2012.build.51)
swMSM (x32 Version: 12.0.0.1)
Synaptics Pointing Device Driver (Version: 15.1.19.0)
SyncUP (x32 Version: 1.10.11100.8.106)
SyncUP (x32 Version: 10.2.14900)
Synthesia (remove only) (x32)
TeamSpeak 3 Client
TeamViewer 8 (x32 Version: 8.0.16642)
Torchlight II (x32)
Trillian (x32)
Ubisoft Game Launcher (x32 Version: 1.0.0.0)
Unity Web Player (HKCU Version: )
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1)
Uplay (x32 Version: 2.0)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0)
Veoh Web Player (x32 Version: 1.1.2.0000)
VLC media player 2.0.7 (Version: 2.0.7)
WebTablet IE Plugin (x32 Version: 1.1.0.7)
WebTablet Netscape Plugin (x32 Version: 1.1.0.5)
Windows Driver Package - Eigenlabs (EigenAlpha) EigenLabs (09/23/2011 1.0.8) (Version: 09/23/2011 1.0.8)
Windows Live Communications Platform (x32 Version: 16.4.3508.0205)
Windows Live Essentials (x32 Version: 16.4.3508.0205)
Windows Live Family Safety (Version: 16.4.3508.0205)
Windows Live Family Safety (x32 Version: 16.4.3508.0205)
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0)
Windows Live Installer (x32 Version: 16.4.3508.0205)
Windows Live Mail (x32 Version: 16.4.3508.0205)
Windows Live Messenger (x32 Version: 16.4.3508.0205)
Windows Live MIME IFilter (Version: 16.4.3508.0205)
Windows Live Photo Common (x32 Version: 16.4.3508.0205)
Windows Live PIMT Platform (x32 Version: 16.4.3508.0205)
Windows Live SOXE (x32 Version: 16.4.3508.0205)
Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205)
Windows Live UX Platform (x32 Version: 16.4.3508.0205)
Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205)
Windows Live Writer (x32 Version: 16.4.3508.0205)
Windows Live Writer Resources (x32 Version: 16.4.3508.0205)
WinRAR 4.20 (64-bit) (Version: 4.20.0)
Zinio Reader 4 (x32 Version: 4.2.4164)

==================== Restore Points =========================

06-07-2013 14:58:28 Removed eigend-2.0.74-stable
06-07-2013 14:59:53 Removed eigend-build-2.0.72-stable
06-07-2013 15:01:03 Removed eigend-build-2.0.74-stable
06-07-2013 15:01:50 Removed eigend-nongpl-2.0.72-stable
06-07-2013 15:02:21 Removed eigend-nongpl-2.0.74-stable
06-07-2013 15:03:03 Removed eigend-pro-2.0.72-stable
06-07-2013 15:03:55 Removed eigend-pro-2.0.74-stable
09-07-2013 18:37:27 Windows Update

==================== Hosts content: ==========================

2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

Task: {15023531-D743-4B8E-A190-8493ABA56D43} - System32\Tasks\RunAsStdUser Task for VeohWebPlayer => C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe [2013-03-24] (Veoh Networks)
Task: {1FD4A9F2-3D5A-4CFB-9F78-816EC29CE85A} - System32\Tasks\{BEC81645-6693-44DC-AFF4-BC7FAF48A44E} => C:\program files (x86)\mozilla firefox\firefox.exe [2013-06-25] (Mozilla Corporation)
Task: {22BB6653-A927-4567-815B-503A76A913A0} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => C:\Program Files\Microsoft Security Client\MpCmdRun.exe [2013-01-27] (Microsoft Corporation)
Task: {4D4395A1-814A-46EA-BA08-232E4769F3FA} - System32\Tasks\SystemToolsDailyTest => C:\Windows\System32\uaclauncher.exe No File
Task: {581D939D-7B1E-440B-A760-F7A3450E32DE} - System32\Tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor => C:\Windows\system32\sdclt.exe [2010-11-21] (Microsoft Corporation)
Task: {6366FCFD-CFC1-4FDF-8877-2550E9E750C1} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2161992721-2987271217-3344870149-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-04-16] (RealNetworks, Inc.)
Task: {67718A37-C3D7-49B8-84C4-64279DFCC914} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2161992721-2987271217-3344870149-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-04-16] (RealNetworks, Inc.)
Task: {682F902B-4204-43BF-8D2C-6AB07B412DFD} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => C:\Windows\system32\rundll32.exe [2009-07-14] (Microsoft Corporation)
Task: {77922A6D-93AD-4EAF-A1F4-AB723E6CB964} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {7BBAC380-9867-40DB-AF04-954136A7E562} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-09] (Adobe Systems Incorporated)
Task: {882CAF01-F902-473B-9217-86256323BD4D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-06-19] (Piriform Ltd)
Task: {8BD63067-D588-46F1-8AEE-46A52C6DD590} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [2009-07-14] (Microsoft Corporation)
Task: {97397838-1098-40D9-9A09-B906F8E98300} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\AlienAutopsy\sessionchecker.exe [2013-05-07] (PC-Doctor, Inc.)
Task: {9BE91639-EFB0-45BB-9156-380DE89AF17C} - System32\Tasks\{6610DF60-5FBB-4344-85B4-709625AB63DC} => C:\program files (x86)\mozilla firefox\firefox.exe [2013-06-25] (Mozilla Corporation)
Task: {A9E08B55-69C6-40BF-AA5A-C1ABEF5A26C2} - System32\Tasks\{79243BC3-2A2E-4722-ABB6-F70077D4D687} => C:\Program Files (x86)\Skype\\Phone\Skype.exe [2013-06-03] (Skype Technologies S.A.)
Task: {C0AE664E-62B3-4E61-BEFB-023DB87E7069} - System32\Tasks\User_Feed_Synchronization-{35E2407C-1BB3-4154-BA55-70F2AF0B30A3} => C:\Windows\system32\msfeedssync.exe [2013-03-14] (Microsoft Corporation)
Task: {C468E397-9765-4722-86C5-D187A3F8AA4F} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\AlienAutopsy\uaclauncher.exe [2013-05-07] (PC-Doctor, Inc.)
Task: {C6EEFF8C-17CD-4A6D-80AB-656812586F2B} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task
Task: {E4FD22BE-41E2-4266-A319-462CD26C2791} - System32\Tasks\{882CDB81-2A4A-48E0-BBDC-79FD35762A2F} => C:\program files (x86)\mozilla firefox\firefox.exe [2013-06-25] (Mozilla Corporation)
Task: {EDA71454-BC40-4CD9-A655-29049B6BB968} - System32\Tasks\{6BFBAC12-6C5F-4885-8617-E393C0BA6873} => C:\program files (x86)\mozilla firefox\firefox.exe [2013-06-25] (Mozilla Corporation)
Task: {FB095A96-CD3D-4D7C-807B-76C67F2BA782} - System32\Tasks\RunAsStdUser Task => C:\Program Files (x86)\ClickPotatoLite\bin\11.0.19.0\ClickPotatoLiteSA.exe No File
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Faulty Device Manager Devices =============

Name: Bluetooth Peripheral Device
Description: Bluetooth Peripheral Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Bluetooth Peripheral Device
Description: Bluetooth Peripheral Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Bluetooth Peripheral Device
Description: Bluetooth Peripheral Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Bluetooth Peripheral Device
Description: Bluetooth Peripheral Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (07/09/2013 08:26:01 PM) (Source: Microsoft-Windows-WMI) (User: NT AUTHORITY)
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (07/08/2013 06:58:13 PM) (Source: Microsoft-Windows-WMI) (User: NT AUTHORITY)
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (07/07/2013 08:00:57 PM) (Source: Windows Backup) (User: )
Description: The backup did not complete because of an error writing to the backup location G:\. The error is: The backup location cannot be found or is not valid. Review your backup settings and check the backup location. (0x81000006).

Error: (07/07/2013 07:15:38 PM) (Source: Microsoft-Windows-WMI) (User: NT AUTHORITY)
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (07/07/2013 08:27:42 AM) (Source: Microsoft-Windows-WMI) (User: NT AUTHORITY)
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (07/06/2013 05:32:58 PM) (Source: Application Error) (User: )
Description: Faulting application name: eigend.exe, version: 0.0.0.0, time stamp: 0x502d5204
Faulting module name: Alchemy.dll, version: 1.12.0.23, time stamp: 0x4c6ac465
Exception code: 0xc0000005
Fault offset: 0x0022800d
Faulting process id: 0x23cc
Faulting application start time: 0xeigend.exe0
Faulting application path: eigend.exe1
Faulting module path: eigend.exe2
Report Id: eigend.exe3

Error: (07/06/2013 04:43:23 PM) (Source: Application Error) (User: )
Description: Faulting application name: eigend.exe, version: 0.0.0.0, time stamp: 0x50f6ae49
Faulting module name: Alchemy.dll, version: 1.12.0.23, time stamp: 0x4c6ac465
Exception code: 0xc0000005
Fault offset: 0x0022800d
Faulting process id: 0x23c0
Faulting application start time: 0xeigend.exe0
Faulting application path: eigend.exe1
Faulting module path: eigend.exe2
Report Id: eigend.exe3

Error: (07/06/2013 04:33:49 PM) (Source: Application Error) (User: )
Description: Faulting application name: eigend.exe, version: 0.0.0.0, time stamp: 0x50f6ae49
Faulting module name: Alchemy.dll, version: 1.12.0.23, time stamp: 0x4c6ac465
Exception code: 0xc0000005
Fault offset: 0x0022800d
Faulting process id: 0x1490
Faulting application start time: 0xeigend.exe0
Faulting application path: eigend.exe1
Faulting module path: eigend.exe2
Report Id: eigend.exe3

Error: (07/06/2013 03:27:29 PM) (Source: Microsoft-Windows-WMI) (User: NT AUTHORITY)
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (07/06/2013 10:36:10 AM) (Source: Microsoft-Windows-WMI) (User: NT AUTHORITY)
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.


System errors:
=============
Error: (07/09/2013 08:32:37 PM) (Source: Service Control Manager) (User: )
Description: The Background Intelligent Transfer Service service hung on starting.

Error: (07/09/2013 08:30:11 PM) (Source: Service Control Manager) (User: )
Description: The Steam Client Service service failed to start due to the following error:
%%1053

Error: (07/09/2013 08:30:11 PM) (Source: Service Control Manager) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.

Error: (07/09/2013 08:25:41 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)

Error: (07/08/2013 06:59:22 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)

Error: (07/07/2013 07:15:16 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)

Error: (07/07/2013 08:28:52 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)

Error: (07/07/2013 01:06:19 AM) (Source: Service Control Manager) (User: )
Description: The Windows Time service terminated with the following error:
%%1115

Error: (07/06/2013 03:28:40 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)

Error: (07/06/2013 10:35:40 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)


Microsoft Office Sessions:
=========================
Error: (07/09/2013 08:26:01 PM) (Source: Microsoft-Windows-WMI)(User: NT AUTHORITY)
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (07/08/2013 06:58:13 PM) (Source: Microsoft-Windows-WMI)(User: NT AUTHORITY)
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (07/07/2013 08:00:57 PM) (Source: Windows Backup)(User: )
Description: G:\The backup location cannot be found or is not valid. Review your backup settings and check the backup location. (0x81000006)

Error: (07/07/2013 07:15:38 PM) (Source: Microsoft-Windows-WMI)(User: NT AUTHORITY)
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (07/07/2013 08:27:42 AM) (Source: Microsoft-Windows-WMI)(User: NT AUTHORITY)
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (07/06/2013 05:32:58 PM) (Source: Application Error)(User: )
Description: eigend.exe0.0.0.0502d5204Alchemy.dll1.12.0.234c6ac465c00000050022800d23cc01ce7a5cebde55e0C:\Program Files (x86)\Eigenlabs\release-2.0.62-stable\bin\eigend.exeC:\Program Files (x86)\EigenLabs\VST\Alchemy.dll555b67a8-e651-11e2-8c81-d0df9ab11ab9

Error: (07/06/2013 04:43:23 PM) (Source: Application Error)(User: )
Description: eigend.exe0.0.0.050f6ae49Alchemy.dll1.12.0.234c6ac465c00000050022800d23c001ce7a55dae273d0C:\Program Files (x86)\Eigenlabs\release-2.0.74-stable\bin\eigend.exeC:\Program Files (x86)\EigenLabs\VST\Alchemy.dll67feaa7f-e64a-11e2-8c81-d0df9ab11ab9

Error: (07/06/2013 04:33:49 PM) (Source: Application Error)(User: )
Description: eigend.exe0.0.0.050f6ae49Alchemy.dll1.12.0.234c6ac465c00000050022800d149001ce7a5059809cefC:\Program Files (x86)\Eigenlabs\release-2.0.74-stable\bin\eigend.exeC:\Program Files (x86)\EigenLabs\VST\Alchemy.dll11ea3e09-e649-11e2-8c81-d0df9ab11ab9

Error: (07/06/2013 03:27:29 PM) (Source: Microsoft-Windows-WMI)(User: NT AUTHORITY)
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (07/06/2013 10:36:10 AM) (Source: Microsoft-Windows-WMI)(User: NT AUTHORITY)
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


==================== Memory info ===========================

Percentage of memory in use: 46%
Total physical RAM: 5549.82 MB
Available physical RAM: 2961.05 MB
Total Pagefile: 11097.83 MB
Available Pagefile: 7989.21 MB
Total Virtual: 8192 MB
Available Virtual: 8191.78 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:288.32 GB) (Free:90.06 GB) NTFS (Disk=0 Partition=3)
Drive d: (CHUCK_S4_D06) (CDROM) (Total:2.79 GB) (Free:0 GB) UDF
Drive f: (BFRD-DRIVE) (Fixed) (Total:0.5 GB) (Free:0.48 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 298 GB) (Disk ID: E2E073F4)
Partition 1: (Not Active) - (Size=39 MB) - (Type=DE)
Partition 2: (Active) - (Size=10 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=288 GB) - (Type=07 NTFS)

==================== End Of Log ============================
_____________


Thanks a lot!
  • 0

#5
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 19,991 posts
Hello gram12,

Please download Malwarebytes' Anti-Malware from Here

Double Click mbam-setup.exe to install the application.
  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy & Paste the entire report in your next reply.
Extra Note:
If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediatly.

After that

Please download Junkware Removal Tool to your desktop.

  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right click JRT.exe and "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
Finally in this post

  • Close all windows and open OTL again.
  • Click Run Scan and let the program run uninterrupted
  • It will produce a log for you. Post the log here.

So when you return please post
  • MBAM log
  • JRT.txt
  • OTL log

  • 0

#6
gram12

gram12

    Member

  • Topic Starter
  • Member
  • PipPip
  • 15 posts
Hey,

MBAM
____
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Database version: v2013.07.09.09

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16635
ge-bill :: INDEFATIGABLE [administrator]

10/07/2013 19:36:07
mbam-log-2013-07-10 (19-36-07).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 310040
Time elapsed: 19 minute(s), 4 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)
_______________________________

JRT

_______________________________
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 5.0.4 (07.10.2013:1)
OS: Windows 7 Home Premium x64
Ran by ge-bill on 10/07/2013 at 20:19:11.11
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\babylon
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\conduit
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\conduit
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\freeze.com
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\systweak
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\conduitsearchscopes
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\smartbar
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\features\95fa1dd41215f1249bd2eefbf30243a5
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\prod.cap
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\conduitinstaller_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\conduitinstaller_rasmancs
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{2FCF03E5-8DC0-4EB0-BBA0-4A59A60AA493}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{61E6A3EB-170C-485F-B8ED-8BF4A6CDC286}
Successfully deleted: [Registry Key] "hkey_current_user\software\apn pip"
Successfully deleted: [Registry Key] "hkey_current_user\software\pip"
Successfully deleted: [Registry Key] "hkey_local_machine\software\pip"



~~~ Files

Successfully deleted: [File] "C:\end"
Successfully deleted: [File] C:\eula.1028.txt
Successfully deleted: [File] C:\eula.1031.txt
Successfully deleted: [File] C:\eula.1033.txt
Successfully deleted: [File] C:\eula.1036.txt
Successfully deleted: [File] C:\eula.1040.txt
Successfully deleted: [File] C:\eula.1041.txt
Successfully deleted: [File] C:\eula.1042.txt
Successfully deleted: [File] C:\eula.1049.txt
Successfully deleted: [File] C:\eula.2052.txt
Successfully deleted: [File] C:\install.res.1028.dll
Successfully deleted: [File] C:\install.res.1031.dll
Successfully deleted: [File] C:\install.res.1033.dll
Successfully deleted: [File] C:\install.res.1036.dll
Successfully deleted: [File] C:\install.res.1040.dll
Successfully deleted: [File] C:\install.res.1041.dll
Successfully deleted: [File] C:\install.res.1042.dll
Successfully deleted: [File] C:\install.res.1049.dll
Successfully deleted: [File] C:\install.res.2052.dll
Successfully deleted: [File] C:\install.res.3082.dll



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\babylon"
Successfully deleted: [Folder] "C:\ProgramData\boost_interprocess"
Successfully deleted: [Folder] "C:\ProgramData\conduit"
Successfully deleted: [Folder] "C:\Users\ge-bill\AppData\Roaming\babylon"
Successfully deleted: [Folder] "C:\Users\ge-bill\AppData\Roaming\opencandy"
Successfully deleted: [Folder] "C:\Users\ge-bill\appdata\local\babylon"
Successfully deleted: [Folder] "C:\Users\ge-bill\appdata\local\conduit"
Successfully deleted: [Folder] "C:\Users\ge-bill\appdata\locallow\boost_interprocess"
Successfully deleted: [Folder] "C:\Users\ge-bill\appdata\locallow\conduit"
Successfully deleted: [Folder] "C:\Program Files (x86)\conduit"
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{007AE93A-A1CB-422F-9E1E-98ABA4ABFC7C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0095B689-7366-48B9-9F61-12DBAFDDFC23}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{00A849D8-A64A-448D-96B4-2C5D39D3BA58}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{00EB623D-FD22-4CD0-BB4D-D5EC18346936}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{00EEEAF5-4EF0-4402-8F3A-488BA5CB4270}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0109E7A7-81F2-43C7-8B06-1425F0BF35F5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{010D9DE6-23F3-4420-912D-002ED1C70764}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0193401D-8A22-4810-8051-2F57727439E4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{02A40AE8-DD0F-429D-918F-BDA80CC24EF1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{02F7B25A-FADF-4D8C-9CF9-258E17751CAA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{038C250E-A185-4DCC-A590-9AB1FD79F84A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0414D974-0547-4E0C-9D81-F9C4F89F10EA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{042B2EB5-8DAF-4458-A002-D49C54F9F89C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0431ADFA-648E-43C1-BF9C-AFED3340B97A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{04728F95-0127-43E0-BE1D-0499630AFDA8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{049024FE-0FAE-4DAD-AC8B-6E03BB5F2964}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{04907337-B843-41BC-AC16-171316233781}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0494238F-9B6F-40DC-B76D-C22DB98FD586}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{04D72D80-176D-4841-A496-3EA77BD4BEF8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0544ED0F-21B9-4008-8D90-C06F10AA1B1D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{05D01CB6-7A0E-48DD-8BEB-FF249AE1FEEA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{05D90536-3665-40C8-B794-BD76BEB34E9A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{066D4393-F440-47D6-A2A2-3233C539E5AC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{06833067-0FBE-493A-AE46-169D33C3B0B0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{070C2A8A-3E6F-4BB4-B71E-061A91F2A2F0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0770AF66-EE6D-4FEE-AA92-18EA63B33D89}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{077F12E5-5DBF-424D-B16D-80D6261F2AFE}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0856B301-690F-421E-A936-76D896F71016}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{08767B55-5C91-4D2B-BAB8-44CADB4A7C83}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{08A0D1CA-C3EC-4712-AA58-D3195FF56AC6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0917C701-802A-4956-BE32-D658E0196E42}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{095E203F-8383-4E04-9875-30FBBA1AB6A7}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0987FFD4-7D97-4C17-B4DD-D30DDB39FAE8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0998AA47-C917-4E8B-AD63-C24669184A81}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{09D2B612-99C7-4465-B488-4130E2104118}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{09DAEC25-EABF-4C0B-A68D-5BC32E745CB4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0A028161-6A93-42DD-855C-4456A2F5E096}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0A47D84E-4C60-416B-9B84-F3FA3142E57C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0A6637DB-4CBE-46EF-981D-C402841C1DF2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0A851375-2EDD-41A6-AA02-99170B72A719}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0A94A7C7-677B-44C2-B8E1-B97DDC443F6D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0AC1ED47-7416-4A4C-805E-6473A66870C5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0ACEE682-3663-4758-9615-2521617AFE1E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0AD76598-679E-4DC4-A87B-98394C53338E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0AE7D6FB-0533-44DF-8F09-CC6EAE4519C1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0AEE73B6-CEC8-42D0-A810-65A22FD0ACD6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0B7EDE27-7107-4843-A712-56458803F5D2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0C8449D7-1D6A-4125-8A13-E70973EA9A89}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0CE62196-9A8F-4990-B446-88E7A12BBE41}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0D90E7C5-9B83-44EF-84C8-E4E3FA2DFC24}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0DC58DA2-0A90-44D7-A7D1-7B776D900F12}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0DC93293-DFA4-498D-BE19-FCE3F71DA969}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0E22C834-7CFD-40FA-AF60-31BAC826E3D9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0EC41539-644C-4ED9-93A0-A66B74FA8B76}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0F5BBE8D-4494-4CD7-8ABA-715294B4BA81}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0F883A3C-E448-4D06-93E9-AB772EBB5FAB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0F95A50E-A12B-448A-80DF-F6385E33CA3C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{0FE66BFE-42AE-4E34-BA03-198EFA4EC05C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{10119B5E-60B4-47D4-AC60-DA79FFEBB183}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{108F9A46-C140-4EA3-98EC-8AAAEB7644B0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{10DA69E9-6B31-4D94-A2DB-BB782AD2314E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{12056B24-A4E5-4580-BE88-F86A7ADF1EC9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{12682EC2-03B4-461A-B3F9-46C4D9A43542}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{12ECA74F-D549-42EC-B365-3734BCF0458F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{131E4D91-6E78-45E6-8775-DDE3B4405188}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{14353F9A-55CC-41E5-99FD-E551AFD34EE1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1442ED38-3402-44E1-9DFA-203C014EF03D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{145DD970-CBD8-4286-9FC1-6A54773EC6B3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1490022D-D6E3-45E7-8234-16F295D3329D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{14966990-3816-46C6-9C95-0FB7D08F0FA4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{151B3A39-1E62-4310-B4A2-28E38CC7169E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{152566FC-C7FF-474F-AD98-FACBD705A7D5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{154F4B3A-4083-4631-B09F-3F47275FA748}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{162F92C1-0BED-4E56-B13F-73236E4C20C5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{164667DC-C6A0-4574-9527-4BBF47B55A88}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{165DC3C0-950E-4DCD-AFE7-1D4DDE518E70}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1687C925-9807-4407-86E3-5584E17C6B9B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{16944538-1F01-4144-98DB-2E84DF51ECD4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{169F225D-17D1-44C2-99E4-650FA2ED26C4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1768D189-3CC5-4E39-8D52-BF0F4C3F2330}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1796EC9D-834F-41AB-8BDE-C5E379BE7363}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{17A0B5DE-8F15-4681-944A-51BAD481D58D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{17C85192-5165-47F7-8AFD-76CC1B12C55C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{183B7A5D-46D2-411E-8C05-5966BF88DBE3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1920291A-6491-4EC1-A3AA-D12CA17B95A0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{193A0C0D-8437-435F-932F-BD792A532B8A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{198F0066-7B43-43E1-A254-1008BB897D1B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{199D4D8D-C6AD-4B4E-AB31-B16B3B9DAC32}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{19E052F8-E54E-4396-9D97-1E1C76C27F18}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1A128C04-180B-4347-B2D7-665E3F9ACB90}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1A424533-D612-4EA5-9ABA-48B079AB1154}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1ABFBF0E-A2BB-407E-93CD-1C292787BA8C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1AE552C0-FAAD-4E41-A84A-4C91B2A35206}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1AF2167B-0071-4291-A304-9F82C7C9F195}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1B2E1FD1-01CE-4C26-A725-92DED3405EBD}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1B405234-F6DA-46EA-9C12-683F0804AB87}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1B47EF5B-0016-432D-88B7-E622638E46AC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1B72C522-D784-4B11-969B-9484D5262E07}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1BA181A1-C3E9-4013-B8DB-FD353EC423A3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1C3A82E8-2F6C-4BF6-90E8-6EBC7D1572E9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1C64E33E-29A2-430B-83DD-0F753CC0E75F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1CB171B9-47F0-4745-AFDB-77A8EF10699F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1CDD23A1-CD02-418E-91C4-F13B6327AB1E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1D119DDA-BB50-410F-A19B-75247A2E80C0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1DE473FE-B7F8-4FEA-A540-49328D650D73}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1E131FA6-71D0-481C-858A-BC5B5EBBC6EE}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1E817165-7221-4458-B08F-A5A2C450D74E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1EBC8272-1A1D-4A7A-9214-F86811F6D8CF}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1F047E99-89E4-424C-AE5B-2FA7787D9712}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1F3069FC-A657-4A03-8FB6-896B237D3617}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1F329FBE-0913-4F9A-8762-F1ED37B47EF5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1F569ED8-96C6-4A96-865C-D1F2D2F5B7E3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1FAA7952-38DC-4CD2-B65F-256A95A69437}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1FB3B526-9A66-43BE-A9F2-9A607242E69B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{1FE0C1B3-FB19-44C0-A444-E0ED8C400AE5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{20A0464B-9FFD-4887-B87A-628B22908F78}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{20F1427F-DA2C-4B17-8C41-065A151C4799}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{212FCCFA-5B76-493C-9BEB-0D97E67EAA05}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{21AC5B2E-B4A5-4F5D-A2DE-419CE082AA9C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{223483CD-CA07-416F-9F0E-05DA1C8B2588}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{223D8B17-6675-47C7-85BE-634D274D5E63}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{22578400-41BF-4E52-A614-561FC1615667}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{227E24E5-A46F-4C78-8A7A-4C11A27FE16A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{22AB2B6E-6D63-4680-8A63-5E7B973F79F6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{23353412-FE4E-4492-A821-2A4788CAA949}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{233A9455-EC9F-469F-AE84-D284FF812B37}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2365C92E-9DF7-4C53-869D-B6694C4CB661}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{23B03856-FD0A-4512-8B9A-94D8973AAEF5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{23FBC220-56F3-4BD6-86D2-787DEBCE2C73}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{242B0B6A-D3ED-413B-8451-5AC31AD290A0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{245EB382-4D69-45BE-A7E4-E3B3FD082A1E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2471E179-E426-454D-BF5A-A8CA53A436A4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{250D30CF-5302-4816-911A-11307DC6FC4A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2512B9B2-C36E-430F-AB8B-4BD3F6C4D0D7}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2563E73D-3DE4-4D13-8CC4-D70BB4A2DED2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{259A7A05-F6AE-4427-B624-BF2F8CFC379F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{25E7EB46-0C8F-4BF2-B61F-89D746AB00A9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{25F25A9D-1380-4BFE-A184-AF938512FBB7}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{26E0C2E9-9663-4B06-9A2F-1020B152C26B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{26E565AD-186B-4DD3-AD28-28F2D4262657}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{26FD9359-D249-423F-A8F0-8D62ABC41389}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{27340A0C-5921-4F17-8582-0FC50D726604}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{277922B9-EFDF-4A27-8306-1155F9CEF380}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2782D01B-8221-483F-BE7B-6883543A6971}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{27B31EA8-7E2F-49C4-90F3-C0C09AE26408}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{282F8398-E39A-45FF-8920-F2C886693824}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{286DE6AD-34D4-4397-8554-26232A972F2E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{28BA817C-500A-4622-833A-712039D26560}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{28FD07F1-6C1F-4970-8711-E4A40715B1C3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{292699D9-E694-4E6A-A6DE-DD567FD38A9E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2A63B0BE-078A-4D46-80E3-9CD867531659}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2AD7621F-5CF2-4619-900D-19A89D1D4331}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2AD81143-5533-4032-B12B-8356CDE5A3A8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2AEDD831-B7EC-4207-A356-BA7F9F5968C1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2B437786-B763-425A-8D08-C9A63318E9A8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2B4DCC51-FACD-404A-9AFB-31E215CCF68D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2B6F8702-FED3-4949-A1EC-FDFDD1D32933}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2BAD541C-3AD3-4C92-8949-999182E443FA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2CD503A3-1D3C-4BEC-8A56-696DA6D670AA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2D00C23D-29BF-47EB-B189-EFC6D76CCE41}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2D3E7AAE-B675-4355-AAC2-62F1DDB323F6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2DADF949-8A6A-4E93-BEBA-B05C502B0C24}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2DC062DD-A6F5-4661-A595-D47E5BD92019}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2DF60D65-110F-465D-B450-8A6963C01AC1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2E354758-3FE3-4FEE-8B4F-4728C7576EC5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2E9D2B88-371C-4C0B-8488-69B39F7B5801}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2EA1B012-3288-4555-A585-B038A30AAAF5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2EBD6969-3145-45B5-93F4-C7612D244B70}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2EC62493-C5E5-4978-8D08-45B5266F7DDC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2EE2FD42-C258-4412-BDF4-4638FBF04473}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2EE6AE3A-2581-4398-9997-DDEAF722FED5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2F0595B4-14C5-4572-8489-E8D4BB5BC710}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2F0EBABE-F8E4-4F17-9556-BB4197F9AF97}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2F645AF9-5F39-4261-BA47-66E3006F10E8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2FC6F749-0E60-4FD1-846C-D23F8DF6DF07}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{2FEADBC6-D04A-4078-9067-28B9EF9AB315}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3008E78E-BA1C-49EF-91AD-0C7EF1D4A9C6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{300F15A6-63F4-411E-B695-028A10918100}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{30C1D7F2-B5C4-474F-8E4A-2038F8FB9F2F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{30D0BAFE-9981-40F6-90B3-1FE74D0D6A15}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{31021A74-78F2-4573-AAB9-A80237F1D6F4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{311566EB-953D-4776-9535-702EC2B77A14}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{31404647-8E35-4435-9496-6124ABCB2FA9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{314A33E2-B576-4918-9CD5-A9951FFCDFDD}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{31539D5C-4679-4CC5-A66D-5294047B94D3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{31B51CF3-FF31-4E3D-A06E-292104C8AB86}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{31C4DC42-7A4F-4E8E-B203-B87AAA4D69F6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{31D1B00C-EB5F-4A98-AE8E-645AE5D4FFCF}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{320E1E6B-1599-4CFF-9B69-947A59823799}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{323ABD3D-A4E1-4874-B113-612309A08520}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{324BD586-541C-4415-948A-18E6A52CA5BF}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3255044E-4B25-43F1-B6C4-CC9E38CB0DB4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{32FF0D13-81A3-4BA0-87B9-7DE664BC0722}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{33059715-F6B5-476F-905F-F8F3151E09BF}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{33428A0E-BD2D-4483-B120-44E8EDD093A5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{33D2C94F-0D14-4C12-A04F-7B20B94587C6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{34290621-C516-4D20-9A2E-683722E82049}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{349F2C24-28CC-4025-8617-81BA94EDA72D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{34B4AB1B-C33E-4A60-AE9B-17245E60490B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{34C8E791-786F-4D63-9A6F-85B6D3A70792}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{34D25BF9-8723-47D2-B545-FE1946CCEAA6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3529F205-E83E-4D5D-9AB5-25677EC2C8BC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{358B7A43-E2D6-4CF6-BBB0-D80DDC2CC24D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{35AF1C73-4261-4E9F-BB23-AB6690D5467D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{35BE1D41-E683-466A-A1B7-D1A56382E56E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{35C5CC7B-CEA4-4D3D-8EC7-C0E8F381C9AC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{35E19AA1-C6FB-4655-8688-819112185598}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{360DAA86-F34F-4B24-899F-06067A767584}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{36EC9E17-06B4-4D71-8AFB-95740AE7BC36}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{372F7139-7BB3-4123-9540-3F042BEFCFCD}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{37420832-EB93-4A85-A696-BEE392A18DDE}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{375B988C-8E91-4113-862F-98BBFA443193}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3776AA0B-B7AD-4516-9430-5C84088D9072}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{377E775F-1237-466E-9ECF-F6B56B24024E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{38A4159A-AB75-46FF-84C6-566BFB04EA33}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{38AB79D5-E9B9-4B97-9707-933CE17E57B3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{38C8DE6C-E18C-46D2-B42E-26C6A555E2F1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{38DD7448-82D6-4F7D-897A-4CACB123789A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{39160840-FDB2-4D6C-A56E-24732D520334}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{398ACF3A-3CFE-4F55-B561-28327333FDF6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3991BFA0-4532-41FB-88D1-382CD5833B17}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{399FB766-5B6B-44A1-9B25-67BA1731B520}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{39A4AEEB-656C-4EFB-A98F-05236E350614}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{39ABFDB1-DF1E-4745-B096-ED41181262CC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{39F8D649-F8AF-4580-A0C2-CBFA49993562}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3A1EF329-7C37-4D4F-A056-70747748F788}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3A85204F-6820-4596-BD18-20039C82A4FB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3B2913D1-7347-45D3-AB50-A26A79CBDFC9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3BC64BCD-D4E1-4ACE-88C5-9E5C946498D6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3C236067-490A-4845-8874-9CE39B526326}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3C5EAA4B-46EC-46FB-8F99-192DEEB5B554}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3C647D12-6E39-47C8-8510-7D7DA18F8FB7}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3C7F53B8-C828-4DA2-866D-61D6CCA10288}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3CB44ADC-41B0-4DB5-9424-37B8CBE68AD2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3D75D368-285B-4B6F-82FF-E7C8FC95695E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3D865177-91AE-449E-B750-D731CDB65218}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3D8BF2D9-93E6-4103-8228-94FB8C831FBE}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3D8D6490-24E8-4930-8D64-5A0683F8034F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3DA1BCD9-1A45-4DA0-93BF-4D988A4BD453}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3E2B6120-38B2-4F97-9D4F-C5EA7859362A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3E5BD678-E807-4E3D-97FE-2E8A6150931F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3E94AF78-1F30-4308-A363-C5CE96AEBACD}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3EFF76D4-5239-41C1-B68D-EC2F62D9A0C9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{3FDC8125-DD32-4456-B7BA-284781E130E4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{402C1678-80CB-4E6F-AAC5-60C3CDF3488F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{404787DA-9804-4B2D-AD9D-01CBEC7DCED2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{40A56F0F-1FB0-475D-AB58-209C5FBEA977}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{40AE1F40-93A9-46CB-8A6F-CDBCC0D1E520}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{42057C63-37FC-4BAF-A152-6985B59EEF80}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{421C9CA9-DAA6-40A8-867A-D414DBB2123B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{423DF925-5202-406D-BAA3-AE3C490A62C0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{42FA4EAA-C3B1-4761-8AD0-3C939C1989D5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{43BE9B77-B30C-4491-B9AB-A770101D9210}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{43CCE498-53FB-48AF-A5B0-85F65B8724E4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{442531A2-BA3F-4804-B957-48D5CB66B33E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4488D0B0-3DDE-4AE5-AC7E-B35E7802FFD9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{44B6A6E9-5003-4997-89C4-400F61FD48A4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{44F86A0F-0506-4948-9F03-72254C33ABF1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4505DB32-240B-41C6-80FE-20B6498CB4D3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{450E2BAC-946C-4FFD-98A4-9E5D19EFF091}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4541F1C3-013A-4D3B-9827-60D2F0FB70BD}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4550DA0A-B82E-4319-B2EA-6EB358B966DF}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4568E0E8-BB33-4758-B860-5BC1AF090E45}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{45FFC23A-032C-42FE-9EF1-A0E9AC100BBD}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{460B22D4-70F7-49CC-B484-DE5A4D8CD985}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{46198435-2878-451A-84E0-880A04D6BDA0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{46206FA2-0CE5-453F-B102-3BE8ABAC2EA4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{463963B2-4D56-47B0-B69F-08B7D34D4ECB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{467759DD-7BB8-45F8-B87D-B217BDF830C2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{46CB60DB-1C7E-4FF2-B94A-0096B6A41BF3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{46F9984F-80A1-43C0-8AED-C643961823E1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4754A3F5-DBC9-4391-806B-778908A9335C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4756751F-22DF-4E9A-B915-436E4E7D3C3F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{483511E8-307E-4859-8D86-8150D32A5CB9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4874D94A-A8F5-4E1F-9636-AE5A32138F6B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{488D1FFE-7DFB-4914-B5D4-D24BEAF7EBE1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{48D24B2B-AB42-462E-8E29-2D7366EB112A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{48F81E71-1824-48A2-BB2C-188088E186CC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{492B3B43-2996-4BCC-AE56-4C9454589E8A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{49BC7783-59E2-4291-929F-7B7C68AF5D41}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4A95B44D-18DF-4385-BE23-18FA9C2A7D88}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4ABEF812-2954-4FD3-9FB5-C5ACF3F398F5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4AEED01F-C36A-47E6-8031-2BD0D746B91A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4B15356D-2545-4F6E-B194-D0D19F6562C8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4B27E77B-D864-4CAD-BCC9-E649105B52E2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4B2EF917-C366-49F5-87DC-CF31E247FD8E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4BA46D6A-2B26-4081-982D-36B88F10B460}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4BAC1834-6BDB-47C8-991F-6B066060270E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4BFE84DC-FC93-4468-9A94-2C453F69B098}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4C92C271-5646-4AF1-A929-DD8192639702}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4C93D799-DD40-4A1F-83E4-0012992418FC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4CA4CDD8-E06E-46DB-8E50-D39F76037361}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4CDBE6F4-2ED1-4B23-8D47-D736F1E69B9D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4D40FFCC-D025-44B4-87C5-E56E4BAA503E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4D446B00-5FC2-4E48-9267-BCF577367A2C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4D4B312E-C9E7-49A9-9C9D-1C21A6B4EEFB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4DACD666-8421-420C-955F-E77DBF1224B2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4E41AFB2-61F0-4287-BC13-17D815AEC28C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4E47D481-9C64-4125-AE5C-B2C62FF9BAB9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4E5C3353-47EB-462B-9FE2-89390F510209}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4E73B2E8-E0DE-4A80-9DAC-9C7337C1A2B2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{4EDFA266-8ED1-4960-89C9-2BD4515F0E87}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{500D995F-F979-48D9-A59B-7D0A42696921}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5018D76F-A08F-4547-B85E-B97FD92C32E1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{50D5C3CF-C8BA-426E-B45F-3D93F1ECE5EC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{50DCA218-2E28-4949-AE1D-38D4F81BA48E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{51303F12-505B-4729-A08E-9279975A5817}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{51375EC9-E1CD-4D94-8D56-C00F22211123}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{51AB0D59-FE8D-415A-986C-8CBFA3A05984}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{51B04AF3-0B03-49E2-983F-D198B5BC89A3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{521A40D4-A5CE-4242-9080-2355D3979E05}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{521AD35D-D3D3-48E3-9C85-CD783CF6953F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{527CAEF1-7E82-4281-A520-8E88B9BFB607}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{52B1E1D1-0662-4C46-8DAC-16297A1D9455}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{52B8E0FF-D90C-4A96-A8A9-7A1156DA783F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{52C39DB5-C705-4899-B394-E5D549E8D901}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{53523685-A372-4F5D-8E3B-B709658D5416}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{53EADCA4-92FC-4FC7-9552-46E283E42CCC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{53F82D21-CA77-4FA3-A4E2-282EA1903B78}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{540DB29C-155F-43AE-BF1E-3BFF2A13BB80}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{547B860C-CD75-401F-88CD-F2AA56C91912}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5528EC8E-C018-4218-ACBA-363FB9F7C773}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{555B135A-83BE-4350-8AA6-26FC466BBFE1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{55AA3B3C-8FC6-48CE-8A5C-DB8DC21119D3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5672723F-04D9-45CF-8E46-CE314D201AA0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5751B8D5-2A89-4575-8D32-57B360D42E9C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5773510D-CB07-405D-AA0F-FBF13775F35D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{57CE84ED-50B5-49D8-B972-85784FF0C1C3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{57D2B62E-96B4-4106-BA11-E0EB85A8E8A5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{581B1DC8-F858-4B42-BFB3-96BACDAF857E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{58562433-55CE-4CEA-BFDA-DBE52932C271}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{587EFD02-D537-45CC-8E33-78436F2CEE60}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{588C4B7C-3DB7-494B-8C2B-A148B3FA5E85}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{58A16418-6703-47DA-8DF2-BB98912D718E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{58E667A8-826E-4645-B453-B68718E23B56}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{58F16382-5CFA-4723-85C9-1882907121F2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{591F5C00-81CA-4BC8-B68A-D1EBB33CFEAA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{598505FC-3524-4B0F-8323-FF625E0201D7}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{59934C76-B719-4C35-BE9E-6C6F4A1FCFD4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5A217912-1463-4545-98C2-29B5CBBB76BF}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5AD67126-D104-4B11-A098-016732924FE0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5B0AFA1E-0F81-4F37-A3E4-5D80134946F3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5B733AB4-21D4-47E5-9853-D65778139CC4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5BB9CD14-E7E8-4D08-94C3-81A759A497B1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5BC08C2B-37FD-4505-A148-8711EF1BCA47}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5BCAF8D5-EFAF-4BE6-9F29-B8642B177ABB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5BE96F53-5A74-4CB3-B478-05047AD39572}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5C551DC2-A36E-4116-AF68-6AC2FCC82E20}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5C567264-D25E-4CE8-BB19-9B3E814C6D38}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5C8CBA45-7F97-4AE3-A785-D98A9F3D57D5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5CA1300C-ED15-411C-9631-14DF67389481}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5CC5FB71-18EA-47DF-B760-CB2AB3A4B4FB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5CCD8C45-D44C-4385-8D9D-890CAA5DB90B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5D26C35D-BCFA-4698-BE21-09989349659E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5D36B292-82AD-4DE7-8C61-227FE71BF05C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5D795155-01E2-4829-BA1F-1145B858AE21}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5DB1DAD2-B040-4E81-B2CE-DE2F6A48D20A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5DBA28DA-FE84-4360-BDC7-E4B6DF1A21CF}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5DE3FF65-ACCE-4959-AEA1-3779B0C61E6E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5E0A4530-3532-4845-BD21-F88EAB25A4E4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5E3207B8-7B77-49F9-87F1-5F971049EF91}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5E45649C-D30F-4E55-8E43-6BADA4FF2D6A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5EB53135-7318-4AE7-B406-C7CBA93A41AF}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5EE4E7A9-E69A-4B97-9215-7E6F56635F28}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5EE6E15D-2F16-4926-9D7F-EFAF03E9BC32}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5EF582EF-B905-4CC9-9EAA-A39021920046}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5F485F19-6462-4E51-9C80-DBC44D893C4B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5F662B2E-AD04-499A-BF14-7C6078D7448E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{5FDD040A-53D7-4DA7-8B2B-E6B7687A3775}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6021A564-4B2D-4076-BF9F-D3C0B79BCE53}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{60869700-4B96-487E-892B-CE6E769498D3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{60E43DA8-660F-406F-87C6-5FF120FBEDED}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6116BBCA-8D30-48AF-94A2-F3081537B92A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{61539362-3B04-420C-AB1B-CFABEF4DD5F1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{61804F07-BF4A-427B-8BE9-A9357D377EF1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{61F2A6B0-F8BD-4F42-B30A-F2FB830ADD55}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6235A569-5569-46B6-8508-5881624A7AF0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6241A8DA-4298-49DF-9D22-68C8DDF8AF1F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{628BF001-46D2-4A8F-8478-ACF70E27ABE5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{628D1C3E-28A4-469C-AF2F-AA3A278183A1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{62FF1665-3F7F-436B-B572-2FD20DBCAC60}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{639A7AE9-1AEF-4AFE-A887-93EA77DCF3FE}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{63F5D92D-8CF7-4957-B33A-CBD7190F24FC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{64806976-B7D7-4CB7-A26C-A40D5D101DBE}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{64A8014B-9BCE-4D39-A9A4-05C1AF9912E9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{64B71881-B249-4DC0-8303-1866AB960F13}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{64BC15B4-E3CE-40C9-A460-9F03615B4DBA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{64E82246-1EE4-430F-A164-8C3FD303AE5C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6526AB85-8A7C-438C-A0C8-9072C8A4F4AB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{653B061B-D09F-4D3E-AF57-D4EC12D02DE5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{655221DD-6B70-4E77-9FBB-FF1B58641278}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{656A8842-C275-468B-8D12-711F9A1B8C65}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{658D9B3D-AE99-4768-8A05-BDB93786C87B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{660FD229-B247-4B78-9DC8-4B612C9EDDD0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6656E6C0-EFBE-45B9-BB77-F7CAC6890A07}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{66A4E1BB-9AE9-411E-A10B-DE2C05D04EA2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{66E09984-0FE2-48E0-ACF8-569DA74E175D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{66E974E9-C585-4FEC-9872-77FCC89AA092}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{66EF09E5-D561-4F02-91F3-E7732DB239D2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{66F8D667-17D9-4B0D-BF55-C7F32FFBBF89}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6766F7F3-0389-476C-839D-DF5A37615A16}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{67B5EA67-C0B1-4B4C-A2A6-2E1E9868057C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{683DC9DB-58B6-4933-AF0C-4AF4B5C2DDD8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{685F6559-1132-43CE-BB59-7BA745948FB8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6918CB0C-FEF4-4532-AF82-CC0E1FF22A3E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{695A1C11-A5A0-4C2A-BF29-0322AAF5ED36}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6A453903-E772-4CE6-A41B-310C3D1A56E4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6A795D4A-5BD5-4ED4-8D89-EE0CBF713549}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6A8A2CC7-4E49-4DAF-A521-64C1107A6D47}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6ABE840B-6352-4E76-B5A1-7C936477B18C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6B074FD2-ED7B-4994-B5C1-7EDD01A5BA35}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6D3F3A1D-E658-47BF-BDC2-283D38D32F39}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6D46CC16-A3BB-4580-94CF-F402AE1A703D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6D6CA5F0-FA2A-4FD5-A828-6C2A911A2C22}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6DEB705D-3452-47A5-B8C1-4CD1ABC1E8A8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6E327FA4-C82D-442F-8B55-8210B05FC13C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6E861C70-8E73-4679-8326-E85C223D5DE6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6F16783B-3A06-4C5A-9749-BD1C1B7CE7BF}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6F3B9E3D-8FB2-4E2E-B094-C5718FC1F38C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6F558961-44BB-43A9-9991-C5B822C2E816}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{6F7F35DA-FB16-4C34-BD42-8878524B3181}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{716E6D3D-E247-4384-B6C7-9E588E8634AE}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{71A1E30F-0F25-400F-9089-BF87E91FBBB9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{71A515CF-2EBC-4446-8ABD-D1819392C91B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{71B73C7A-2926-401F-9F48-C2265B242113}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7202DA46-2295-4EA9-BA7C-B3BB2EF7321C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7252DF2B-E6D8-48F7-84E6-9940E14ECDE4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{72C5220F-454C-4470-A330-B26B1AF6992F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7324787F-9F80-4A7E-8EB9-ADEC730557E7}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{737ED34B-4431-4E47-A29C-4C3AA5F3ED39}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{73A130D4-BE62-4D86-88F6-A629CD089DC3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{73D22580-80B1-41B6-96C1-8E63A6BFDBF9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{73FC4E1E-09F9-483E-9CCD-77C1CE5D5073}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{742F21C6-B4A3-4B7B-8631-AB2642DE6ED0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{74586FE2-8FAE-4D4F-8F6D-0754DE38B6FF}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{746A263C-9DAF-4321-8200-BE789AF76E6B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{74E6F3EB-8B45-405C-B232-3E9E444EBA17}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{756C31C9-BE68-425C-B058-B662E41DF146}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7659BA89-D898-4247-AD02-09850DBC0DE2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{767DD55B-317F-48C8-9A6B-ACF77DEE1283}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7688884C-CC93-46B7-BA60-F83FAB984745}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{770A811F-3A94-4D96-8A93-AF3C6E2EC61D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{772F2E1C-25DB-4562-8005-AC31E6A95974}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7760A6C9-9840-487C-B9BF-B945E4C1B647}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7775D67C-D0AA-4447-BB6E-F3C6884AE8F2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{778F35D5-E5AD-4CCB-9562-2D2EB12E9F6E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{779F6209-E281-4B2F-A708-3F177AC5F6E6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{77C2DCD3-FC1B-40C6-935C-55C1523631A4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{78D39C8D-4644-4F9F-8DF0-2C968B920C7B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{78E8DC3B-DF60-4507-9346-37FF44D4B6E8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{794366D4-CBAB-4477-AFB7-6386DD23F12B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{79525CFC-BFC4-47FE-AEB2-ABB6A4EFEFA0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7A0B057E-FE3E-4C15-B411-CAA1A555D5A8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7A11DCAF-CBA2-4EDD-9FBB-1803E808FB43}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7B14D1EC-B513-4205-A531-48F212C2C202}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7B3E9670-32D5-4133-9217-F6B8387179AB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7B5B6431-E43D-4810-AA4A-95DE2FF821CD}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7B5B65F3-DBB1-402F-B0D9-FAE780E02E69}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7B5F71B5-7505-4278-A6FC-A8C17AD3C8D8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7C05C933-5905-435E-BFD2-C53291DD810C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7C063B3D-3907-446C-8646-07E07B8298D5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7C0D3F78-586F-4AF7-9AC7-27E5EC8A5EF2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7C3BC7DE-AAC7-4932-8CCE-E10FC04CBBCC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7CF84540-6D5C-4226-8C50-B3A8DC4CB2C2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7D2BB701-C135-4001-B2B9-956480301D49}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7D3EBAB3-8889-4936-8AC3-222A1FF52728}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7E025BB4-497A-433D-8D6A-2EC4A5BB3AF3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7E1B2E44-2D1A-4C3A-84E9-DD74B45C6F7D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7E913ECE-ADD7-4EC7-B157-0E8AD5EA41F1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7F51C191-E0D0-4667-B6D0-65EE5D21C296}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7FF4846A-936B-4ECF-87E1-BBBA17427A9F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{7FFF68BD-097C-4D10-A718-4D57C7F9BC02}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{802F6B10-6465-47EC-B9A4-30E1418A8043}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8060BFC5-FDB0-4BE0-899D-838D219AF5CD}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{806C5F6F-5619-4D74-B10F-415DEEE14671}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{807E620C-63F4-4F6A-8127-F409A7734463}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{809919B1-FBF0-4EBD-993F-A5F4003FBA03}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{809BCBEB-CC21-46D1-9B3A-CB573318E6D3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8101CEB8-9FF3-4A52-9CA4-11F42AA5CC28}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8228FFD8-8F59-4E45-8004-61C17DCD9B24}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{831106BD-8FFF-43F5-B55D-7613D7F5988B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{83285366-1D53-4343-8164-BD13353A99B8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8331E60C-CF64-4D36-B5E6-92B2C836FA0C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{83338352-62A6-4E6D-A9B5-EF3FB3EF6826}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{833987F5-A47A-4F54-8FE4-90BC003934F6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{83432270-48DC-4ABE-8A05-10A7AD76058B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8385D501-5125-4EF0-8F22-89917FC31AF2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{838AA115-8F84-4A06-9B77-49C6D089987B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{84514336-698F-441E-A642-B7E712385BBD}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8566D6C4-920E-4BCA-AA6E-E5524C26C73A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8593A3EF-8F79-49DD-B346-360D7C23E2A2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{85CCE548-4766-4A42-9E0D-90D9F643A6D1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{869CECAC-EF1B-4E6D-885B-E2B3E69C3366}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{86BED5C6-3D12-4470-8938-583581CC7910}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{86CB5157-DB75-4CF4-B64B-525DFF183AEA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{86ECF405-6290-48CD-87E0-84CB17831F62}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{87047827-6B23-44A3-A7BC-C876C8D1AECA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8743199E-ED3E-433F-B461-FC05D5AB6AAA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{875586D4-55C9-497C-A3A3-1DD21323CEF7}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{87872A89-7E8F-40E2-A7A9-347336A1F4BB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8813C028-9130-4C3A-BF18-0D852BC09169}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{88740332-B379-4F21-A451-D078BD20E43E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{88D65F9B-833F-44A9-B6D3-34D193DB3A4A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{89120076-CC72-468F-A306-45C707089F11}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8926BBAC-FA48-42BB-BCF5-A6375D94651C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8965B981-30C1-48E5-9F51-78163888EE61}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8971D285-F0AC-4F62-9F89-521C89609BFA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{89D61482-117A-440C-8EC1-E3F00C64B59F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8A77A655-0EE5-40FF-8BBB-8A4DE632030D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8AD45F8C-413D-4BF4-8D9C-496973F80837}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8B2F80DC-A4C7-4DFC-BEFD-5B56C9E93F79}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8B33C2DD-E1A6-4BA8-A952-ED44685B8034}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8B58A930-E648-4D99-9EB5-12F9ED5599FC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8C2D3D80-9790-4E22-8C2A-A01999B893BF}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8C8A3BDE-C00E-44DF-9AA6-1450FDF7D324}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8D054423-B02A-4A01-897F-6BBF16920C74}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8D12CB0E-4670-41B5-863C-823F89F9B6C7}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8D6FA1F0-1335-4762-95D7-FFE2778E6B6C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8D9E5E87-5286-4962-865E-35BC0F81CDBC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8DAFEA38-3814-4815-A6D9-7D7AF035921B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8E011880-E133-43F3-90CD-74C27CF404B8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8E0AE7A5-C03D-4BDF-9EEE-88BD7E55DAC0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8EDCBE4D-4E6B-448B-B6F5-A1EB878D345A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8F11ABC2-6FB7-4702-B473-6FD4FEAAC150}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8F40F596-3E6A-4678-8363-F2371E6B0A46}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8F5A648C-F6EB-49B1-80F9-C156D189A75A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{8FD5097F-4F49-46E6-A278-B0A1CD079788}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9004048A-037E-4C21-AC29-C4F41A93D038}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9016C874-E07D-4DC0-A698-85B1552FB719}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9035FF35-6527-4CFF-AE17-9EADE7D48A31}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{909D0E9A-3BAD-4189-B4DA-38135EA0A3E9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{912CC298-D66E-48C4-B654-64F73C6AB640}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{92164E15-3D4D-45AC-A6E4-75D4BBDF0FE4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{92D0D1E9-8B00-4E4F-9A59-47A92FAD39AF}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{92EBBFAA-3245-4C3B-8B8F-763FEED56237}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{93628E04-97D7-417B-B34C-63FDE30AFAE3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9396EB72-34C8-456C-B897-193512BCF73D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{93CC8886-EFC9-4277-991D-EC81072CDAC8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{93F2DEE1-E69B-48E3-A59C-00FAB6CB79BE}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{94BA519B-29C5-4A72-93F7-60E0FE9DF7C6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{94D3032A-5EC5-4F06-A705-0248A47B6BB9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9540030E-59A2-439B-BFC6-71AC591745F1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{955D09D6-EC79-4BDB-B9D2-7C462B98825B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{95AAC710-9FCF-4B64-B4E6-1F691341DE75}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{963CD8B4-5638-4CB7-A063-6C63B4D48819}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{966BF30F-E33F-4DC4-953E-88F43B582E09}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{972B89EF-E039-4DA6-95F6-F789488CFE3A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{97ACA264-C7F2-4475-9EDB-2B47A04E56BB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{97BB1627-BCB9-48ED-A33D-EE97A8E2F1F0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9804D4CB-5714-4392-BD30-44CE6CA5DE8C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{980A48E8-9B76-4357-BFB7-8154C36EA481}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9814FB73-E1CA-4699-AE5D-BA0B7BD5F7F9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{983CEC99-9EC2-4C76-89DF-D6D9BA63F4EB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{986EC17E-A49B-404D-8C1C-558DED25BE30}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{989A7A63-FD98-4E59-8B94-0339CFCBB63C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{98DC4ECB-D68F-4B5D-B633-309345105497}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{993351D3-B3FD-48E9-A13F-74AFC8A777C1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9A4796B1-1DA1-40E9-A9F4-FBD9B9D9AF48}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9A894862-632C-493C-8995-0D5CC1733AD8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9A91F3D5-341C-4679-9693-2892E013654B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9B0A44AF-76CB-4251-A122-B419D825D3D6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9B460A95-851C-4D74-9FE5-603A23998EB4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9B587699-73DD-40D4-A07D-F573E1FA9D93}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9B88095B-2AF9-4A57-A8DE-2F2E4C87BA67}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9BA6AEC8-B491-41BB-A5E9-A0EBC6D22B6E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9C100FF3-F9C8-40AB-B7AF-8BE5C57C46A7}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9C249E3D-73E3-4634-9EEA-2D53869CE00D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9C405404-3407-4EC3-A4DB-223505182D0C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9C60959D-B90D-47DE-B1AF-4657DA274324}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9CAD9E0A-3376-4365-B028-8F8340BED805}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9CF62E7D-A350-4B1F-ACE5-B794575268C1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9D25E6FF-EEBF-41EB-BB0D-1EC2FA3E3DF8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9DA497C0-9BDA-491F-AAA1-A6D065E1D62E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9DBA3311-94E1-409D-8B4C-899D070C1FAC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9DCB1F2A-65DF-4905-B855-B0A67E2AE4CE}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9DF728F7-68D8-4BCD-A840-F538DEB26B8F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9EAD2BE4-F202-45EE-BE00-074FB5E8C437}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{9F2E28C9-C625-4D96-AC22-79D96CA70B35}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A08F3C21-84DD-442A-BAC0-6EBA48348449}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A0FBBBC8-0B94-4F58-9486-5851F2763AEA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A10CBFF2-D72D-4F15-A622-06A0E22698FD}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A27B9D5A-92D2-442D-AE80-FB19351719F1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A2E189C4-2D75-4E58-B087-5FBFA3E14665}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A2FCC74E-D94E-418F-A1FE-A6EB91E0C322}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A300B5F5-7802-4D94-A1E0-1F0A2218CF82}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A3136D89-7E30-4222-8F0A-0635912D27BD}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A3C31392-44F4-4589-A684-D2A8EC13930F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A3E8C9C0-F192-4B5E-B99D-6D7611A80C0D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A40362E7-A70A-4836-8744-0930BB7D32B6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A431B93F-7438-44D0-A1AF-EA385C53C27E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A450F08C-DC44-427A-A491-26DEFD1E9573}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A4EC9056-4EA4-4642-9A90-2F570063D561}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A4F1BC52-DF8D-4A1B-8C0D-76CA740B945E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A51D0938-0E45-44C6-B47B-4A3CD878884A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A54496C9-1E72-4B4E-8920-FECC06C8882B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A59D606F-E314-477E-89C9-8427D0BAF4A4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A5BB3F37-76F6-4403-B5F2-03FFBF4F0BFA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A5EF18E5-8AB0-400B-AB14-6A0473237199}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A620DB67-0C3F-49BF-87B0-68643C4EB0DE}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A62C615F-FE9A-4E30-A22B-7FFE03B0C613}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A64CEDA5-EB3D-45E0-8AA2-1BB9CEE792F4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A6C02CD8-75CE-4F53-B39A-68EFD99B63C2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A6C71889-5225-4966-BFC7-D2B6E28A7A82}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A6E5EE93-AB5C-41DE-9B6F-4351562CB53E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A810F67D-F9EA-49F8-AB2B-DF8A1C1C340C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A8388C53-F3D8-4DBF-8C96-DC62492BEE99}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A86499A4-B231-4B8E-8305-FF6AC1316D29}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A8D769BA-6029-4CEB-B7A3-E0F30E64F40A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{A96C3DEB-4E73-4FCB-BBD1-12F114C51B2A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{AA4845A5-2E11-4C51-85D2-87175D70FF88}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{AA53F8F6-4B68-4249-8E5E-13E55493AC2B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{AA6C07B4-DDFE-4B2C-94CC-E3F11F254E6C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{AADE1841-C4F7-4CDF-888C-0106C2F6FAC9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{AAE42EF6-B4A1-4F0C-86F0-596361097966}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{ABE8E9E4-7428-4E8F-A0B2-AB9BE8768011}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{ABF8D9A3-86F6-455D-8116-1860927A9F40}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{ABF8EA3A-F9FE-459C-BD96-892CE5CBA47C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{AC78A7C3-82CC-4FC5-AAD6-CDA79CAA41A6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{ADA0AF2D-6565-4676-A9A4-59C18C3DA0C3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{ADCE4DDC-08D5-48DF-A92C-3F83B79598F9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{AEA0F4B4-6C2A-49A0-A78E-42BD1BEBB4E4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{AEA12A20-E0A9-4AF1-8491-571397ADCC62}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{AF2C573A-7E62-4869-94CC-296CC5B38FBD}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{AF737792-10DD-4760-A9F4-A49F2483B56A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{AF94F553-CDF1-4DEE-AD5C-A3471002A163}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{AFBE6955-1495-4659-8D2C-DC44A13D10CB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B0BC59C3-D444-468A-9598-FC4B934C0706}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B0F30379-4571-43BF-AD11-C1AE5C6264CF}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B1A72C1B-4F55-465A-B433-B6CF35C283E7}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B1B9B4A1-B81D-4355-B7E1-A528614202D0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B1F5C049-27AA-4CC8-AFFB-5C879A3DB934}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B2241E73-AA79-4ED0-AE00-3F261087229A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B26C86FA-9D2D-451F-811A-1AC408F22A70}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B2B6C46D-4427-43C5-A9E6-6AA9D0090B21}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B30BFD3C-1F02-44C6-B002-C88B03848EB8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B31BE631-FA9D-493D-85CA-14550C2D90FB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B34CA1C7-A551-43E5-BB85-8FEE80A61D3C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B3CAC563-A4E8-41F4-AF1A-A49FCB9415B5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B4AAB0A9-5C65-4A35-95E2-F8087A876486}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B4D7F31F-D844-4973-82E7-52F8CD914D3D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B51F6CF9-D1B6-4664-9EB8-7723B9468A38}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B55C223C-8602-46FD-9FB0-3E0924C435EB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B562BD97-48B4-4EE3-B444-F8822B112DF0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B59F8E0A-B218-4D22-8FCE-0A5C6B8EA8B4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B60CBEFC-F3D6-40DC-8D2C-7C631A15B224}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B636D0A0-DFE6-4CB9-B441-B2147342E1D2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B6427EBE-F9F2-4795-A36C-21563B36CD8A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B64B5E38-0915-4813-992E-21A3B12603BA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B6513AC1-AA65-4BAA-878A-CC514A1ED97C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B6BFDA1A-EECA-40E7-8B9A-57BD3614EDB5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B78873D0-E3C5-4219-A5E6-A6D5EA5E96D2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B8223FFE-8A87-47ED-9206-774BDA9C89DD}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B8521C18-52FC-43EB-A97F-C113DE885099}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B86F9EB9-34C3-457A-9617-7DEA96E5532A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B8A49262-90B9-4791-84CA-DB6665691446}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B95ECC51-ABFF-4F5A-819D-920609E5F0A9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B9649EF1-B74B-4689-8ABA-2B9CA96DC035}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{B9BD4DFD-D7F3-4684-9E81-3C45E2E0D906}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BA03EBF4-1366-4634-831A-A330ABDCB2CE}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BA17C2D1-72FC-4F6F-AD5C-7C77A3DB54AA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BA6C6490-EBBB-477B-9806-0BAC94C27A39}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BA833757-DB27-4320-A530-E1466AC11521}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BAB31A1B-39BD-4267-8FCF-54844605C515}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BAD01723-23A8-4289-9701-86B5D71CE6EA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BAF2E165-8B77-480B-A46D-CF9045233227}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BB096216-A12A-4A34-BF5A-4D4DA61B65EC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BB4BC703-75CE-4AAE-82FB-0CFDE92EAC78}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BB70F713-6736-4886-9D56-12158700E167}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BBBA5E34-6BF3-4B61-896F-D344F2F78EE4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BBC7A30A-87FE-43D1-B24D-A979EA5F7426}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BBCD8F20-8D13-4D6E-9514-FC7C7155AF32}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BBD68615-E3FB-4DE8-BBCE-BFF9E00B67E9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BBEBB809-CCBD-408F-B23C-9B3ADF8C4E20}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BC2E2EB0-B8B4-4257-A3D5-3BA784E0FB92}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BC608E3F-2811-4D82-8494-D3C611501612}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BCDDBBCF-DCB2-4CD5-90EB-70F12BC9238C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BD1466AB-F3F1-4EAC-A12B-0DDDFC78F064}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BD497EEE-7E95-4B43-83D8-5898736E2255}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BD90E836-D15A-4538-B3C7-9BE32156854D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BDA26F7C-FF94-4453-A2ED-8C23E7958372}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BDC32AC6-BFF7-4DA1-AAFB-321DC1C8FDEC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BE29C51A-3462-45B5-B8E0-84C0D8041DFB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BE45A976-2845-4073-B923-8CB4E226D3E4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BE4A9C03-7EAA-469B-A288-0DE5ABB221E1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BE561717-8733-46C1-B6A0-814EE6733BF1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BE75D088-682E-446F-A872-AC344C04435F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BEA865E8-2F4F-46E8-9AA2-82619F83AC4D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BF433356-23F9-4BF8-B45D-91ED123D8CB9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BF7A4537-3220-47FA-833B-210D5BF44731}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BF844488-E960-4CD6-874E-E1D9C52993AE}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BF92CA44-50EB-44F7-8903-458E2D9E9B93}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{BFFC2375-F577-43A0-857C-330558ED559C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C0116030-CD8F-42EB-B727-0009BCCDF431}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C0A18305-52A6-4CD2-8C10-2251BCF4A048}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C0C6B649-B5CC-41CB-9AF6-15F649854C96}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C12A86BD-864E-4990-BB10-19CE83BA1092}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C16602BA-CEC4-4878-B2F4-B60340EB9EF1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C1BEAE6A-ACE1-4BF1-B8F5-E0DF15581948}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C1E258CC-9F1A-4BDE-BD69-B56DAE5E7B88}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C20032A7-1EA1-460D-A513-5FEEC332FA56}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C21713AE-FE6E-426E-83A3-B848FD310DBB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C25788BB-C2D3-42FB-B7BB-5614830B4D7E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C2852768-5005-4925-A521-9C9BBA3B7817}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C2941BFE-83F9-4DCD-AD01-8B88F5788387}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C2F5D3D2-F387-4B7B-9285-1D1E54E50E84}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C34F8D41-6CFB-4932-ACEA-D93727354EC7}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C39D2FAF-C755-410F-896F-460E38F891BA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C3BB9999-639B-4665-A28B-777C913375D2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C47DD8EE-BF6B-44AD-AC08-768CACBFFC71}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C58E820F-C053-4B3D-AC9F-237CA3D4B3E2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C5AA6797-E611-4C8B-9EFA-37BC427A3B55}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C5C0D15C-F5B0-4772-B4B1-BCF059F92773}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C5DBAA8D-DA30-40EC-95CA-A7B5417A4DE2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C5FD84A7-20F7-4A2B-9C18-0EF77FB47F7A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C7CB2E98-DC36-481E-9548-681B75B28FA6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C7CE334D-0A65-45D6-865D-AB6FED766CB1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C8190DEE-1C6D-4D64-A44A-0F5EA8BE92BC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C8D393E6-9652-49EF-A390-2CB02A7CBA7B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C9269BFA-E138-41C3-8040-A37FDFD20EAE}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C9976434-396E-468D-8658-0EDCAE6E3899}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C997713C-A8F5-4E1E-A7EE-91BDE6DA4530}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C9B953D0-0B86-4BC6-8C42-6B6DBC15C6A9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{C9B982A6-4E2F-4DA6-B97B-98B23EF1C0B3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{CAE67E6B-40C6-408F-BC51-04EDD6DDA912}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{CBD89CC3-BE22-40B9-A47C-7C7BBA349EC0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{CBEE7328-FDCC-432F-A2DA-0251EAF40AEB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{CC212FAF-6077-4AC8-8F2D-835637125161}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{CC26128C-DF6C-4D8C-8DAE-0F83D1CA92D8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{CC38A4F0-AAE7-4B01-94F8-83A2730428E5}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{CCCB7C79-8A0D-4E7C-8638-D2FDC245A779}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{CD06A61E-64D6-4A1B-87C6-D84CD3519AC6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{CD61EF1A-C5E2-4954-AA73-B7930851B1C9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{CDAB11B5-FC85-4272-A8E2-E4656267F489}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{CE79CA19-7BB4-47AE-84A3-1979AF1E2775}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{CED07FF6-5F85-480D-8E91-FC31411DA1A2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{CEF29D83-081E-4046-8A73-F267C3271937}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{CF0A3388-79F2-496A-965B-4EC74D621BBB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{CFAF873C-0AF8-4ABC-AE97-13ADC78D4DFE}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{CFB10674-3D20-4B5C-83C8-D5ABD7B26F7F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D0686C13-BFEF-455F-A443-48367CA24E66}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D07B4E7E-1272-428B-85A3-12BDBF6309EB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D0A611B4-48D6-41DA-999F-257874AB5099}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D11E506F-8862-4DD3-900C-0A7F09FAF3B4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D209B827-7FB3-46D2-B433-082F5759D9F9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D21BC54C-D67F-49B0-9C8B-AC05CFA3EC13}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D3203B65-C878-45C0-825A-412756DF5AB7}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D37BD47E-5AE3-4472-98C3-5A10A705D5E1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D3ABDF72-CB6A-429C-8486-7FE4315A1B79}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D3BF643C-2F61-4052-BE47-295B568D2D41}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D3BFEFB1-DC31-491E-BE68-58FC614140BF}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D3F880BA-C006-43C2-BE9D-13F136C3658F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D402F33B-0456-4368-85CA-4CB5AD737A8E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D44BFBBC-53AF-440D-87E3-76B572792DE1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D514325B-368F-41FA-B8E4-F78099CA1A2F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D5156060-25A4-4013-ABE9-270367DBC667}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D53F72E9-7C1E-4D94-9FBC-EEE25C18EEC2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D56A9255-A743-448C-B150-1D9DA7309049}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D57DE7A0-EFFB-4A06-8F80-4ED1F9AB61A1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D6291A3D-6441-42B0-B8AA-E5716CE96E33}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D660FDF1-8452-485E-930C-B5E0550FC4FE}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D67CD451-C946-4BCD-B457-4AA4F1875F54}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D6B5D987-933F-4B12-AC9A-EDF9DBC11287}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D72ABE3F-F7A4-4413-AC20-20E92427EEFE}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D730034F-D8F1-4B4A-89F6-10DA2D2D73D8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D74331A0-8207-4D36-A8CF-7D83D25DA2ED}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D78BB2CD-F15A-40D1-98E7-CD4AEC69B831}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D7AF8DAB-D863-4D9C-A4E2-CDC9498AA8B7}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D7D293F8-75BB-4017-BB53-79F688BE42CA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D82FD42A-F79E-48E1-9843-9B4C4C3D5EC7}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D905F90C-7DE5-4785-AE15-2D80A58CB2B9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D9D2828D-3FF0-457C-8B3D-086AD0A2E9C1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{D9D2BCA1-94B3-4197-8A61-28B1F2929437}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DA403421-43B0-426A-9E61-9140E9AE2AC7}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DA6755FC-013E-46FC-9789-E50DEDF263C1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DA8FFEB1-37F7-47FD-BF6B-D354F2754DA8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DACCFB06-F198-4824-A26C-1A93CD709C27}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DAD39485-DB33-460C-A9CA-735C82285D22}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DAEE9BB4-75D3-4CE2-93BF-06B1A3499327}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DB4E0A91-B82C-4572-8403-9B73AA5727EF}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DB9BBFA1-AD3D-49AA-8DEF-F4B45C2EA2A6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DBA346C0-6F6B-48CA-9A1D-65B9C1EF4B3B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DC2D1C87-8B3D-48E9-8491-6F3097706A8E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DC8CA2C6-143B-49F0-BE3C-D8F68F1F96E8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DCAEAFCB-E17E-42B4-8CCF-E0E1BE359B90}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DCE96EDD-9B01-44D7-82FF-20E9CA7C69C8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DD2BC60C-BDE7-4D6F-B2D6-086A0DD9BC9D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DD2DC23A-E600-4111-9253-90298BBC15A1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DDD8149D-D254-44EC-885F-8EFD776D1D3E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DED3E327-7594-46EF-9CC9-7A582A54806E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DEEE39DC-4E3E-4966-979F-E1ED83B855B8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DF6D6604-B06A-4245-B1DE-83EFB0040EC3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DFA583AB-A03B-4FAC-9EE7-7B20E99642E1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{DFB902D7-91FC-4B41-B1B2-1B131A5FA58F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E0986CD1-9AFA-4647-A002-3AB3089DB024}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E0A457CA-6CCC-4C56-9CAC-EA54C9E9208A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E175BDAA-5B00-4D9D-A9CD-91E94027BDB1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E1F42FF2-62EA-4671-AF30-EB4C4E5FB04B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E20A6188-8AD2-4EAD-B430-EDCB1D56D0D2}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E2467B25-849E-4B92-8866-68D74BB3F20F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E2AE55FE-2EDF-4D9B-B913-128AC340A3A4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E2FFAD4E-FD76-49E3-A829-AC05DDA56645}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E33865ED-2FFA-4099-BDDA-E73D8477875D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E3B2250C-8CE6-4D9E-AB16-336696A8DA87}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E3C07682-D347-4670-AAF4-71A893607B90}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E3C0AD3E-F7DE-41F2-8ADC-49D0F0ED7B57}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E3D215E1-AA41-4174-87C2-31ACBDB8C400}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E4152316-354E-48DE-8541-29D99F298879}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E48B9F41-B25B-4A41-A1CF-2239281DE54A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E4DB942E-B581-416E-A702-24DD093F232B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E516D5A5-0B39-4FB0-9A03-156848F55013}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E579809E-7180-4F02-8C96-C5531551B436}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E592BD1B-ED36-4B0D-9F01-5E37AEDD803F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E5D5510D-A6AA-48E2-9544-3810EF2CFDA6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E5FA4369-0FE8-49FE-B8AC-6C5DEBDBE660}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E602E7E2-759B-4987-981D-9A40F5E743F7}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E65EDD11-BE29-4DBA-8D2C-60DDB0558587}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E68B9EDE-6944-4837-9EC8-097DE186796E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E71AF90C-32B5-4DB7-BC10-167017FFBAAC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E72150E7-8B63-4957-B3BA-661BCDDAB2F3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E746E6AE-0371-4B3F-8DCA-11FF66E25606}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E7619D5F-3F92-4253-83C0-83C8DE26D638}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E78981F8-680F-4852-95B8-4BD7C964572D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E7C2946A-1C33-4902-9126-60C13C1A2913}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E8212D8F-DC37-40DB-92A8-A81D5F0BD169}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E845D18D-4BA5-4615-B5DC-0CE5D130219F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E8D5ADD7-021A-4B12-9C19-6FCF3B84607E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E8D639EB-85F7-48F2-A005-8F0B67FEB841}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E8DED4F1-FC5D-464D-96DC-27B73169B142}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E92B8E13-5A3C-43A4-BE33-B7AF777A49FD}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E9B57AAB-E52B-43E8-9999-F38CED82C9B4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E9D89EBC-A269-44D6-9F42-629DC8829E43}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{E9EE4C55-05E4-49ED-B8F4-52E10B0FF426}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{EA36AF76-D928-4615-BD62-B1F37E29317D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{EA6E9D3C-3263-4B75-99ED-646A34684547}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{EAB2EFB8-F858-4F7F-AC84-7D21C64EA7D6}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{EAF8461F-1055-4808-8A85-D00E81A361D4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{EAFC6B39-7AB9-4525-A07B-D207BB4D30FB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{EB4A0301-768D-48CC-85EE-950ACEF82C06}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{EB7A5744-5F6A-4A94-8182-2A5DA78D4517}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{EBCC10DB-2194-488F-BE9F-5D83F1954CC1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{EC33FDED-6241-40AE-BEA2-2DBD96E0EAD7}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{EC59E0F8-C2F9-49AE-9282-C9A732B8B91E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{ECE27CF7-0E52-4354-8822-57BD8BC2A265}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{ED004511-66F8-4229-8246-13513FB4EEB0}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{ED40C79A-754A-4177-9256-BD98FFA05968}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{ED42BFD3-E744-4B4E-BF3C-98B6BC68E909}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{ED71AF46-CF2A-4159-9CE1-428E0E000DBE}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{ED9800CC-8E90-43B1-A93A-7C54B39BF424}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{ED981807-BC89-4BB4-B79B-B04CA19A22CD}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{EDBF912C-9393-478A-9A41-8D837CDFC0B4}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{EE5E74DB-92DB-40B3-9231-CCFB28C97400}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{EE6F283F-10C5-4B36-9345-B06E19D5989A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{EEE77C72-5BD7-4B05-98FD-A5F6E82F1606}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{EFBCE661-0BF8-4272-8DFE-B962AD6850DF}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{EFCA0BEE-C6C5-409C-919B-74739E97C124}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{EFE9BDE0-1394-4B00-9703-9DFCEB1DD4AB}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{EFF9BE4C-F42D-4D45-BCB5-7222B870842B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F0279FAC-7685-4144-A0E6-6159EB3F6049}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F05E8778-0EC1-47B9-B0B8-C1FC570DA898}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F05EB2F1-DC1E-4471-AA7B-5F10273BB236}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F0758BED-D561-4D19-A64B-0DF4672D559C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F0D7AE3E-A58A-4975-AD1B-C6450DF4675C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F103B715-24F3-41CB-BFD3-A19A2D22C6BF}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F106D8F4-AB40-4768-8D84-17479D0F623D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F108172D-A501-4336-AA7F-467A10D59B30}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F13D227B-5A3F-4B56-9328-EC6ACEF35712}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F13FDA83-AFC2-4B9C-8BFA-40E38FDCC0F3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F1990438-CC8D-4477-AC77-7C2A278AEF5F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F1C705D4-B8FC-4572-8091-D4CE7C3CAF9B}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F1DC009C-B78D-4411-AA7A-9A2CC2819626}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F2101CB5-7551-4883-ABB5-5E8E23F4A3EC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F230E16D-B5D3-4D8D-BFA4-1BEB30F0E59D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F23B8A17-CE66-4DE7-8D59-F541B2CDEB9C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F23E1CA1-D899-49C6-85C6-AC0E8C1D152F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F25CC4B5-268A-462F-B73F-67C0650D1C70}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F271BD6D-7AA5-47E0-9F08-31FE20924B92}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F2C6B2C4-14FF-4306-A983-31DC2D5D7A27}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F34901FB-9454-4B1A-9C86-F71B1507806F}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F3E813A3-B8EF-4C72-B6E8-6047B5A3F699}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F3EBDBF5-8DD6-4EB5-A19B-45B51B35040C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F401CD0A-CCCD-471E-BF73-E3430BC31F8A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F41C6F68-4E02-4300-B2B7-7D5CCBB3AA0A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F45F10B7-3829-4B5A-96A2-41F0DF47E075}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F475D7C3-925C-499B-9BE1-708CCEBC4C1A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F583289C-BAB6-4237-B280-F9EA190E2126}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F58AEF7C-70CE-4E98-961B-04D0843235C8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F590FE83-5F2D-4021-8E33-09D77BB7C71D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F5FA459B-DE33-4EED-BC1E-684706A35A82}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F62226AD-0DA3-45AF-94E7-9737A70271A8}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F62605DB-4825-41A5-886C-831E5B149F2D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F63DDF13-0712-4B20-B5DC-82D1E4F183FC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F6528A22-6EB9-4D55-AD09-20BB561AC24C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F652A157-80EA-42D4-BE1C-095D61B9A8EC}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F6A1F598-1EE7-4DCC-967D-806493B4FA82}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F70496A4-D029-459D-A8C2-40C4B55B5BD7}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F7091B72-6F38-406B-BEA6-FA5CAA5D1CBE}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F70BE1B4-7220-4D44-B577-3CEF2D41A1B3}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F72E4872-CD7D-49FB-92CD-ADBF52574F41}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F74F8FB6-4589-468A-AA3C-EDDD4DE2D83D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F76E2058-321C-46E1-BB26-4F6953387B1A}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F785124B-7EA1-4801-95D7-68CF56399431}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F7C37EC5-1F7E-4770-9A21-DAA0FD7C287C}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F811A6F5-8F23-48C1-BAA2-FEE034D020F1}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F82D96D9-6933-4333-A5B6-4D3B38CA17FA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F8355FB6-95FE-4E33-A100-ED35B98A61FA}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F8BA05A3-2343-48CC-A39C-8430EBA58992}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F9252475-2BC5-456C-AA65-28E9BF76ABC9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F925D256-31C8-44B1-A5F3-1C522A51DA72}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F98FDA90-C3A2-44C8-81BF-CA04CFB050C9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F9E0017A-15A1-40AD-8E23-3D0E07D1FE6E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{F9F685D7-8595-4748-9A1A-54DBAD176215}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{FA3BAA6F-5AE1-459E-AF2A-84770798A3E9}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{FABA3ADE-640E-49A2-AC3A-FBC1D90454CF}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{FAD2966B-C7C3-46EE-9D6E-5C774C051079}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{FB28764A-2DF4-46C8-AA5C-EC67F52238CD}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{FB9A3D13-EAC3-49C2-9A7D-F10C17D25648}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{FBE93E58-6705-42A3-9389-69E0F4EB6405}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{FC3DC9C1-2EE6-4017-9114-863AB9BC1493}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{FC7FD313-2FD5-48D3-B21D-DB2E1D7F9F63}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{FCA8E31C-D006-4A6E-8DA6-0D02DF3E229E}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{FD1D068B-11D2-41FD-8090-56D97A85C509}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{FD36F7A2-E428-41F0-BA8A-57166C9ED674}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{FDBB3856-6A57-40AB-9161-507509D5E89D}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{FDFE3D4D-5714-4BBF-B82B-722C2910ABAD}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{FE5CC142-A3D6-46A6-98C5-702216B2B365}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{FF01392F-1A33-4E57-8E53-45595EAAE555}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{FF4FE2E1-0B70-4A2E-A13A-A65C2D90B909}
Successfully deleted: [Empty Folder] C:\Users\ge-bill\appdata\local\{FFAF8B23-B7C4-48C4-AF9B-0A2271BB0A8A}
Successfully deleted: [Folder] "C:\ProgramData\ask"



~~~ FireFox

Successfully deleted: [File] C:\Users\ge-bill\AppData\Roaming\mozilla\firefox\profiles\09lyh00t.default-1360208697402\searchplugins\conduit.xml
Successfully deleted the following from C:\Users\ge-bill\AppData\Roaming\mozilla\firefox\profiles\09lyh00t.default-1360208697402\prefs.js

user_pref("CT3264748_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1368966930655,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}
user_pref("CT3288691_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1368306264593,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}
user_pref("Smartbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT3288691&octid=CT3288691&SearchSource=61&CUI=UN40025272332370435&UM=2&UP=SP751E419E-E274-45CB-BF8D
user_pref("Smartbar.ConduitSearchEngineList", "DivX Browser Bar Customized Web Search");
user_pref("Smartbar.ConduitSearchUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3288691&SearchSource=2&CUI=UN40025272332370435&UM=2&q=");
user_pref("Smartbar.SearchFromAddressBarSavedUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3288691&SearchSource=2&CUI=UN40025272332370435&UM=2&q=");
user_pref("Smartbar.keywordURLSelectedCTID", "CT3288691");
user_pref("browser.search.defaultthis.engineName", "DivX Browser Bar Customized Web Search");
user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3288691&CUI=UN40025272332370435&UM=2&SearchSource=3&q={searchTerms}");
user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3264748&SearchSource=2&CUI=UN28404273822318210&UM=1&sspv=idb&q=");
user_pref("smartbar.machineId", "+0IT5KTADR75QXMBNU9O7ACTNBEJV4I76ZNXKN5GBPY828YQJSJ6AIC06SC4IXRZ8LASMK4CI3BO9IP+QEFY+A");
Emptied folder: C:\Users\ge-bill\AppData\Roaming\mozilla\firefox\profiles\09lyh00t.default-1360208697402\minidumps [256 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 10/07/2013 at 20:33:28.21
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
__________________________________________________

OTL

__________________________________________________

OTL logfile created on: 7/10/2013 8:35:38 PM - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\ge-bill\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16635)
Locale: 00000409 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

5.42 Gb Total Physical Memory | 2.68 Gb Available Physical Memory | 49.37% Memory free
10.84 Gb Paging File | 7.73 Gb Available in Paging File | 71.33% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 288.32 Gb Total Space | 91.79 Gb Free Space | 31.84% Space Free | Partition Type: NTFS
Drive D: | 2.84 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF
Drive F: | 511.50 Mb Total Space | 487.96 Mb Free Space | 95.40% Space Free | Partition Type: FAT32

Computer Name: INDEFATIGABLE | User Name: ge-bill | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2013/07/10 03:56:22 | 000,559,016 | ---- | M] (Valve Corporation) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe
PRC - [2013/07/10 03:56:20 | 001,672,616 | ---- | M] (Valve Corporation) -- C:\Program Files (x86)\Steam\Steam.exe
PRC - [2013/07/06 16:40:32 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\ge-bill\Desktop\OTL.exe
PRC - [2013/06/27 12:15:06 | 000,173,192 | ---- | M] (Microsoft Corp.) -- C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe
PRC - [2013/06/21 05:15:56 | 000,413,472 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2013/06/17 00:00:00 | 005,306,880 | ---- | M] () -- c:\Program Files (x86)\Trillian\plugins\skypekit.exe
PRC - [2013/06/17 00:00:00 | 002,606,448 | ---- | M] (Cerulean Studios) -- C:\Program Files (x86)\Trillian\trillian.exe
PRC - [2013/05/19 13:59:07 | 000,295,512 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
PRC - [2013/05/16 16:44:05 | 001,012,000 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
PRC - [2013/05/16 16:38:39 | 001,826,592 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
PRC - [2013/05/11 12:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013/04/16 03:07:06 | 000,039,056 | ---- | M] () -- C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
PRC - [2013/02/13 04:37:16 | 001,263,952 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
PRC - [2012/12/14 11:17:04 | 003,467,768 | ---- | M] (TeamViewer GmbH) -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
PRC - [2011/11/25 09:32:36 | 000,687,400 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Nero\Update\NASvc.exe
PRC - [2011/07/08 17:14:44 | 003,968,832 | ---- | M] (SoftThinks - Dell) -- C:\Program Files (x86)\AlienRespawn\Toaster.exe
PRC - [2011/07/08 17:12:32 | 002,749,248 | ---- | M] () -- C:\Program Files (x86)\AlienRespawn\Components\Scheduler\STService.exe
PRC - [2011/07/08 17:09:50 | 001,692,480 | ---- | M] (SoftThinks SAS) -- C:\Program Files (x86)\AlienRespawn\SftService.exe
PRC - [2011/03/09 00:06:10 | 001,635,696 | ---- | M] () -- C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe
PRC - [2011/02/09 15:09:28 | 001,045,880 | R--- | M] (BUFFALO INC.) -- C:\Program Files (x86)\BUFFALO\HD-xLU3\RaidUtility.exe
PRC - [2010/12/09 15:38:20 | 002,655,768 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
PRC - [2010/12/09 15:38:20 | 000,325,656 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
PRC - [2010/11/17 17:35:34 | 000,514,544 | ---- | M] () -- C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
PRC - [2010/11/10 17:40:28 | 000,016,832 | ---- | M] () -- C:\Program Files\Alienware\Command Center\AlienFusionController.exe
PRC - [2010/09/14 01:32:32 | 000,013,336 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
PRC - [2010/08/20 13:55:14 | 000,320,888 | R--- | M] (BUFFALO INC.) -- C:\Program Files (x86)\BUFFALO\Backup_Utility\BUService.exe


========== Modules (No Company Name) ==========

MOD - [2013/07/10 19:13:50 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\178644ab40108f3becd8b91049a254c3\System.Windows.Forms.ni.dll
MOD - [2013/07/10 19:13:33 | 001,593,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\bfa7a95284aec941f4b03bae0debe07c\System.Drawing.ni.dll
MOD - [2013/07/10 19:13:28 | 000,025,600 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\8c20095bd7d46cdfa7933eb258a07daa\Accessibility.ni.dll
MOD - [2013/07/10 19:12:49 | 005,464,064 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\bda7430e393758ce03bd26509f5a8762\System.Xml.ni.dll
MOD - [2013/07/10 19:12:41 | 000,978,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\9e24b9ffd816c0c90efc4d3fc9fd745f\System.Configuration.ni.dll
MOD - [2013/07/10 19:12:39 | 007,989,760 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\187c13e8967097d2ed1e5f123e7d890a\System.ni.dll
MOD - [2013/07/10 19:12:26 | 011,499,520 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\9a6c1b7af18b4d5a91dc7f8d6617522f\mscorlib.ni.dll
MOD - [2013/07/10 08:06:15 | 013,199,360 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\88b9d1c2090f7f3e0e61833ec101923c\System.Windows.Forms.ni.dll
MOD - [2013/07/10 08:05:50 | 001,667,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\203d9fcb7dfa54b7923d01ca8bfea8d0\System.Drawing.ni.dll
MOD - [2013/07/10 08:05:46 | 009,099,776 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System\1c0a3dbd8b8c2033b811036ff7043ef3\System.ni.dll
MOD - [2013/07/10 07:49:24 | 014,418,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\c799474a067f07ef3a167d75029fa012\mscorlib.ni.dll
MOD - [2013/07/10 03:56:22 | 001,121,704 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\chromehtml.dll
MOD - [2013/07/09 23:45:48 | 020,625,832 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\libcef.dll
MOD - [2013/07/01 18:20:48 | 000,652,800 | ---- | M] () -- C:\Program Files (x86)\Steam\SDL2.dll
MOD - [2013/06/17 00:00:00 | 005,306,880 | ---- | M] () -- c:\Program Files (x86)\Trillian\plugins\skypekit.exe
MOD - [2013/06/17 00:00:00 | 000,187,392 | ---- | M] () -- C:\Program Files (x86)\Trillian\libpng15.dll
MOD - [2013/06/17 00:00:00 | 000,065,536 | ---- | M] () -- C:\Program Files (x86)\Trillian\libungif.dll
MOD - [2013/06/17 00:00:00 | 000,059,904 | ---- | M] () -- C:\Program Files (x86)\Trillian\zlib1.dll
MOD - [2013/06/17 00:00:00 | 000,010,752 | ---- | M] () -- c:\Program Files (x86)\Trillian\languages\en\buddy.dll
MOD - [2013/06/17 00:00:00 | 000,007,168 | ---- | M] () -- c:\Program Files (x86)\Trillian\languages\en\talk.dll
MOD - [2013/06/17 00:00:00 | 000,006,656 | ---- | M] () -- c:\Program Files (x86)\Trillian\languages\en\trillian.dll
MOD - [2013/06/17 00:00:00 | 000,006,656 | ---- | M] () -- c:\Program Files (x86)\Trillian\languages\en\events.dll
MOD - [2013/06/17 00:00:00 | 000,003,584 | ---- | M] () -- c:\Program Files (x86)\Trillian\languages\en\toolkit.dll
MOD - [2013/06/15 01:49:12 | 001,100,800 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\avcodec-53.dll
MOD - [2013/06/15 01:49:12 | 000,192,000 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\avformat-53.dll
MOD - [2013/06/15 01:49:12 | 000,124,416 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\avutil-51.dll
MOD - [2013/05/16 07:33:37 | 002,052,096 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.Xml.dll
MOD - [2013/05/16 07:33:36 | 000,425,984 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.dll
MOD - [2013/04/24 00:57:26 | 004,554,752 | ---- | M] () -- C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
MOD - [2013/04/16 00:56:17 | 001,253,376 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll
MOD - [2013/04/16 00:56:16 | 005,283,840 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\PresentationFramework\3.0.0.0__31bf3856ad364e35\PresentationFramework.dll
MOD - [2013/04/16 00:56:15 | 004,218,880 | ---- | M] () -- C:\Windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
MOD - [2013/02/13 04:38:06 | 000,100,688 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll
MOD - [2013/02/13 04:37:16 | 001,263,952 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
MOD - [2013/02/12 10:31:06 | 002,010,624 | ---- | M] () -- C:\Program Files (x86)\ManyCam\Bin\opencv_core220.dll
MOD - [2013/02/12 10:31:06 | 001,241,088 | ---- | M] () -- C:\Program Files (x86)\ManyCam\Bin\opencv_imgproc220.dll
MOD - [2013/02/05 22:57:56 | 000,269,824 | ---- | M] () -- C:\Program Files (x86)\Windows Live\Writer\en\WindowsLive.Writer.Localization.resources.dll
MOD - [2012/12/12 07:32:26 | 005,025,792 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
MOD - [2012/10/05 12:53:24 | 003,198,976 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
MOD - [2012/10/05 12:53:24 | 000,630,784 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
MOD - [2011/07/08 17:12:32 | 002,749,248 | ---- | M] () -- C:\Program Files (x86)\AlienRespawn\Components\Scheduler\STService.exe
MOD - [2011/07/05 18:27:56 | 000,004,096 | ---- | M] () -- C:\Program Files (x86)\NVIDIA Corporation\coprocmanager\detoured.dll
MOD - [2011/03/09 00:06:10 | 001,635,696 | ---- | M] () -- C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe
MOD - [2010/11/25 05:44:02 | 000,375,280 | ---- | M] () -- c:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\SQLite352.dll
MOD - [2010/11/21 05:25:01 | 000,667,648 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Core\3.5.0.0__b77a5c561934e089\System.Core.dll
MOD - [2010/11/17 17:35:34 | 000,514,544 | ---- | M] () -- C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
MOD - [2010/11/10 17:40:28 | 000,016,832 | ---- | M] () -- C:\Program Files\Alienware\Command Center\AlienFusionController.exe
MOD - [2009/12/18 18:07:06 | 000,577,536 | ---- | M] () -- C:\Program Files (x86)\Alienware On-Screen Display\EMSC.dll
MOD - [2009/06/10 23:14:43 | 000,196,608 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\PresentationFramework.Aero\3.0.0.0__31bf3856ad364e35\PresentationFramework.Aero.dll


========== Services (SafeList) ==========

SRV:64bit: - [2013/05/27 07:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2013/01/27 04:34:32 | 000,379,360 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2013/01/27 04:34:32 | 000,022,056 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2011/03/30 01:50:24 | 000,763,904 | ---- | M] () [Auto | Running] -- C:\Program Files\Bigfoot Networks\Killer Network Manager\BFNService.exe -- (Bigfoot Networks Killer Service)
SRV:64bit: - [2011/03/17 13:14:56 | 000,297,984 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Program Files\IDT\WDM\stacsv64.exe -- (STacSV)
SRV:64bit: - [2010/11/10 17:40:46 | 000,015,296 | ---- | M] (Alienware) [Auto | Running] -- C:\Program Files\Alienware\Command Center\AlienFusionService.exe -- (AlienFusionService)
SRV:64bit: - [2010/10/26 23:42:16 | 005,790,064 | ---- | M] (Wacom Technology, Corp.) [Auto | Running] -- C:\Program Files\Tablet\Pen\Pen_Tablet.exe -- (TabletServicePen)
SRV:64bit: - [2010/10/26 23:42:16 | 000,487,280 | ---- | M] (Wacom Technology, Corp.) [Auto | Running] -- C:\Program Files\Tablet\Pen\Pen_TouchService.exe -- (TouchServicePen)
SRV:64bit: - [2009/03/03 11:42:58 | 000,089,600 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Program Files\IDT\WDM\AESTSr64.exe -- (AESTFilters)
SRV - [2013/07/10 03:56:22 | 000,559,016 | ---- | M] (Valve Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2013/07/09 21:23:23 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013/06/27 12:15:06 | 000,173,192 | ---- | M] (Microsoft Corp.) [Auto | Running] -- C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe -- (BingDesktopUpdate)
SRV - [2013/06/25 19:19:24 | 000,117,144 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013/06/21 05:15:56 | 000,413,472 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2013/06/03 16:21:54 | 000,162,408 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013/05/16 16:38:39 | 001,826,592 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2013/05/11 12:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013/04/16 03:07:06 | 000,039,056 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe -- (RealNetworks Downloader Resolver Service)
SRV - [2012/12/14 11:17:04 | 003,467,768 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe -- (TeamViewer8)
SRV - [2012/12/13 19:42:10 | 000,277,616 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
SRV - [2012/08/07 12:28:37 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2012/02/10 04:11:30 | 000,131,912 | ---- | M] (Desura Pty Ltd) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Desura\desura_service.exe -- (Desura Install Service)
SRV - [2011/11/25 09:32:36 | 000,687,400 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files (x86)\Nero\Update\NASvc.exe -- (NAUpdate)
SRV - [2011/07/08 17:09:50 | 001,692,480 | ---- | M] (SoftThinks SAS) [Auto | Running] -- C:\Program Files (x86)\AlienRespawn\SftService.exe -- (SftService)
SRV - [2011/02/09 15:09:28 | 001,045,880 | R--- | M] (BUFFALO INC.) [Auto | Running] -- C:\Program Files (x86)\BUFFALO\HD-xLU3\RaidUtility.exe -- (HD_xLU3_RaidUtility)
SRV - [2010/12/09 15:38:20 | 002,655,768 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2010/12/09 15:38:20 | 000,325,656 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2010/11/25 12:34:18 | 000,219,632 | ---- | M] (Sonic Solutions) [Auto | Stopped] -- C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe -- (RoxWatch12)
SRV - [2010/11/25 12:33:18 | 001,116,656 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe -- (RoxMediaDB12OEM)
SRV - [2010/09/14 01:32:32 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
SRV - [2010/08/20 13:55:14 | 000,320,888 | R--- | M] (BUFFALO INC.) [Auto | Running] -- C:\Program Files (x86)\BUFFALO\Backup_Utility\BUService.exe -- (BFBackupUtilityService)
SRV - [2010/04/28 15:17:02 | 000,359,288 | R--- | M] (BUFFALO INC.) [Auto | Running] -- C:\Program Files (x86)\BUFFALO\Backup_Utility\BUVSSService64.exe -- (BFBackupUtilityVSSService)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2013/06/21 14:06:36 | 000,284,448 | ---- | M] (NVIDIA Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\nvkflt.sys -- (nvkflt)
DRV:64bit: - [2013/06/21 14:06:36 | 000,030,496 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\nvpciflt.sys -- (nvpciflt)
DRV:64bit: - [2013/02/25 07:27:45 | 000,194,848 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:64bit: - [2013/01/31 11:50:58 | 000,028,160 | ---- | M] (ManyCam LLC) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mcaudrv_x64.sys -- (mcaudrv_simple)
DRV:64bit: - [2013/01/20 08:59:04 | 000,130,008 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2012/12/13 19:42:22 | 005,353,888 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2012/12/13 06:50:36 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2012/08/23 16:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012/08/23 16:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2012/08/23 16:07:35 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2012/08/21 06:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2012/08/01 20:13:42 | 000,041,704 | ---- | M] (AnchorFree Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\hssdrv6.sys -- (HssDRV6)
DRV:64bit: - [2012/07/27 19:15:28 | 000,057,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2012/07/20 12:12:00 | 000,044,928 | ---- | M] (ManyCam LLC) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mcvidrv_x64.sys -- (ManyCam)
DRV:64bit: - [2012/03/01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011/11/24 02:58:44 | 000,078,208 | ---- | M] (SafeNet Inc.) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aksdf.sys -- (aksdf)
DRV:64bit: - [2011/10/07 02:31:42 | 000,321,536 | ---- | M] (SafeNet Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\hardlock.sys -- (Hardlock)
DRV:64bit: - [2011/09/23 04:39:10 | 000,019,968 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\EigenAlpha.sys -- (EigenAlpha)
DRV:64bit: - [2011/09/06 18:31:14 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/09/06 18:31:14 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/08/09 00:11:50 | 000,021,120 | ---- | M] (SafeNet Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\aksusb.sys -- (aksusb)
DRV:64bit: - [2011/07/26 19:49:12 | 000,037,888 | ---- | M] (AnchorFree Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\taphss.sys -- (taphss)
DRV:64bit: - [2011/07/13 17:22:00 | 000,072,016 | R--- | M] (BUFFALO INC.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\bftpdskc64.sys -- (bftpdskc64)
DRV:64bit: - [2011/06/16 07:40:20 | 000,176,000 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CtClsFlt.sys -- (CtClsFlt)
DRV:64bit: - [2011/05/04 04:39:38 | 000,158,976 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Impcd.sys -- (Impcd)
DRV:64bit: - [2011/05/04 04:39:26 | 000,317,440 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:64bit: - [2011/03/30 01:50:46 | 002,705,000 | ---- | M] (Bigfoot Networks, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Ak27x64.sys -- (Ak27x64)
DRV:64bit: - [2011/03/30 01:50:46 | 000,068,712 | ---- | M] (Bigfoot Networks, Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\bflwfx64.sys -- (BfLwf)
DRV:64bit: - [2011/03/17 13:14:56 | 000,521,728 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA)
DRV:64bit: - [2011/03/04 02:18:22 | 000,181,760 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3xhc.sys -- (nusb3xhc)
DRV:64bit: - [2011/03/04 02:18:22 | 000,082,432 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3hub.sys -- (nusb3hub)
DRV:64bit: - [2011/02/09 02:36:00 | 000,053,760 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\akshasp.sys -- (akshasp)
DRV:64bit: - [2010/11/30 15:48:38 | 000,076,912 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\L1C62x64.sys -- (L1C)
DRV:64bit: - [2010/11/30 15:32:36 | 000,326,760 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsPStor.sys -- (RSPCIESTOR)
DRV:64bit: - [2010/11/29 18:03:06 | 001,395,760 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2010/11/21 05:23:47 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2010/11/21 05:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/10/21 18:47:12 | 000,020,608 | R--- | M] (BUFFALO INC.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bftpusbx64.sys -- (bftpusbx64)
DRV:64bit: - [2010/10/19 16:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2010/10/15 11:50:08 | 000,020,608 | ---- | M] (BUFFALO INC.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\raidfilt.sys -- (raidfilt)
DRV:64bit: - [2010/10/11 21:19:36 | 000,018,288 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wacmoumonitor.sys -- (wacmoumonitor)
DRV:64bit: - [2010/10/11 21:19:28 | 000,012,848 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\wacommousefilter.sys -- (wacommousefilter)
DRV:64bit: - [2010/10/11 21:19:26 | 000,016,168 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\wacomvhid.sys -- (wacomvhid)
DRV:64bit: - [2010/09/14 01:24:26 | 000,437,272 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2010/09/07 15:41:14 | 000,027,760 | ---- | M] (ST Microelectronics) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Accelern.sys -- (Acceler)
DRV:64bit: - [2010/08/20 20:05:12 | 000,021,616 | ---- | M] (ST Microelectronics) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\stdcfltn.sys -- (stdcfltn)
DRV:64bit: - [2010/08/17 15:17:46 | 000,344,616 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btwampfl.sys -- (btwampfl)
DRV:64bit: - [2010/08/17 15:17:46 | 000,135,720 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btwavdt.sys -- (btwavdt)
DRV:64bit: - [2010/08/17 15:17:46 | 000,021,544 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwrchid.sys -- (btwrchid)
DRV:64bit: - [2010/03/19 10:00:00 | 000,055,856 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2010/03/10 13:30:00 | 000,047,232 | ---- | M] (BUFFALO INC.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\BFRD4G.sys -- (BFRD4G)
DRV:64bit: - [2009/07/14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/07/14 02:39:20 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV:64bit: - [2009/06/26 22:43:42 | 000,016,752 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\EMSC.sys -- (EMSC)
DRV:64bit: - [2009/06/10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/02/24 20:35:44 | 000,255,552 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mcdbus.sys -- (mcdbus)
DRV:64bit: - [2006/11/01 19:51:00 | 000,151,656 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WimFltr.sys -- (WimFltr)
DRV - [2009/07/14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2009/06/26 22:43:42 | 000,013,680 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | Boot | Running] -- C:\Windows\SysWOW64\drivers\EMSC.sys -- (EMSC)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {61E6A3EB-170C-485F-B8ED-8BF4A6CDC286}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{D758711A-B8AA-45CF-86CA-BE1019ACBB56}: "URL" = http://u-search.net/...q={searchTerms}

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.co.uk/alienware
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.condui...8D-68D053680105
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://uk.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-GB
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 59 5B 7A 2D E2 9F CD 01 [binary data]
IE - HKCU\..\URLSearchHook: {f999a48b-1950-4d81-9971-79018f807b4b} - No CLSID value found
IE - HKCU\..\SearchScopes,DefaultScope = {61E6A3EB-170C-485F-B8ED-8BF4A6CDC286}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE10SR
IE - HKCU\..\SearchScopes\{D758711A-B8AA-45CF-86CA-BE1019ACBB56}: "URL" = http://u-search.net/...q={searchTerms}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..browser.search.selectedEngine: "Wikipedia (en)"
FF - prefs.js..browser.startup.homepage: "http://www.google.co...w.qwertee.com/"
FF - prefs.js..extensions.enabledAddons: %7Bdd3d7613-0246-469d-bc65-2a3cc1668adc%7D:1.0.19
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:22.0
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.25.2: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.4: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF:64bit: - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.5: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF:64bit: - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.6: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF:64bit: - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.7: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Plus Web Player Plug-In,version=1.0.0: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.4: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=1.110.0: C:\Program Files (x86)\Battlelog Web Plugins\1.110.0\npesnlaunch.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=1.118.0: C:\Program Files (x86)\Battlelog Web Plugins\1.118.0\npesnlaunch.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.7.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3508.0205: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=16.0.2.32: C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlchromebrowserrecordext;version=1.3.2: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlhtml5videoshim;version=1.3.2: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlpepperflashvideoshim;version=1.3.2: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpplugin;version=16.0.2.32: C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll (RealPlayer)
FF - HKLM\Software\MozillaPlugins\@realnetworks.com/npdlplugin;version=1: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.3: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@wacom.com/wacom-plugin,version=1.1.0.5: C:\Program Files (x86)\TabletPlugins\npwacom.dll (Wacom, Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@onlive.com/OnLiveGameClientDetector,version=1.0.0: C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll (OnLive)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\ge-bill\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll (Ubisoft)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FCE04E1F-9378-4f39-96F6-5689A9159E45}: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ [2013/05/19 13:59:49 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013/05/19 13:59:49 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2013/05/30 21:37:14 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 22.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/06/25 19:13:05 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 22.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/06/25 19:18:49 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 22.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/06/25 19:13:05 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 22.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/06/25 19:18:49 | 000,000,000 | ---D | M]

[2011/09/12 13:13:08 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ge-bill\AppData\Roaming\Mozilla\Extensions
[2013/05/19 14:37:06 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ge-bill\AppData\Roaming\Mozilla\Firefox\Profiles\09lyh00t.default-1360208697402\extensions
[2013/04/25 08:52:00 | 000,000,000 | ---D | M] (Block site) -- C:\Users\ge-bill\AppData\Roaming\Mozilla\Firefox\Profiles\09lyh00t.default-1360208697402\extensions\{dd3d7613-0246-469d-bc65-2a3cc1668adc}
[2013/03/23 10:14:17 | 000,000,000 | ---D | M] (British English Dictionary (Updated)) -- C:\Users\ge-bill\AppData\Roaming\Mozilla\Firefox\Profiles\09lyh00t.default-1360208697402\extensions\[email protected]
[2013/06/25 19:18:38 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2013/06/25 19:18:38 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2013/06/25 19:13:04 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013/06/25 19:19:26 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2013/05/19 13:59:20 | 000,124,504 | ---- | M] (RealPlayer) -- C:\Program Files (x86)\mozilla firefox\plugins\nprpplugin.dll

O1 HOSTS File: ([2009/06/10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (no name) - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - No CLSID value found.
O2 - BHO: (RealNetworks Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:64bit: - HKLM..\Run: [] File not found
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [Nvtmru] C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe (NVIDIA Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [AlienwareOn-ScreenDisplay] C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe ()
O4 - HKLM..\Run: [BingDesktop] C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe (Microsoft Corp.)
O4 - HKLM..\Run: [Desktop Disc Tool] C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe ()
O4 - HKLM..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe (DivX, LLC)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [Integrated Webcam Live! Central] C:\Program Files (x86)\Integrated Webcam\Live! Central\WebcamInt.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe (RealNetworks, Inc.)
O4 - HKCU..\Run: [FileHippo.com] C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe (FileHippo.com)
O4 - HKCU..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe ()
O4 - HKCU..\Run: [Steam] C:\Program Files (x86)\Steam\steam.exe (Valve Corporation)
O4 - HKCU..\RunOnce: [Uninstall C:\Users\ge-bill\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\ge-bill\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\amd64" File not found
O4 - Startup: C:\Users\ge-bill\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Trillian.lnk = C:\Program Files (x86)\Trillian\trillian.exe (Cerulean Studios)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Windows\SysNative\BfLLR.dll (Bigfoot Networks, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Windows\SysNative\BfLLR.dll (Bigfoot Networks, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Windows\SysNative\BfLLR.dll (Bigfoot Networks, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Windows\SysNative\BfLLR.dll (Bigfoot Networks, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000016 - C:\Windows\SysNative\BfLLR.dll (Bigfoot Networks, Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\SysWOW64\BfLLR.dll (Bigfoot Networks, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\SysWOW64\BfLLR.dll (Bigfoot Networks, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\SysWOW64\BfLLR.dll (Bigfoot Networks, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\SysWOW64\BfLLR.dll (Bigfoot Networks, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\Windows\SysWOW64\BfLLR.dll (Bigfoot Networks, Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: sony.com ([]* in Trusted sites)
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.25.2)
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_24)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.25.2)
O16 - DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} http://ccfiles.creat...102/CTSUEng.cab (Creative Software AutoUpdate)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.9.2)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_25)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.9.2)
O16 - DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} http://ccfiles.creat...13/CTPIDPDE.cab (Creative Software AutoUpdate Support Package 2)
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} http://ccfiles.creat...21022/CTPID.cab (Creative Software AutoUpdate Support Package)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{92CE6D7B-4EB2-464F-8229-EF861878483F}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C7678D2B-BEF7-40C1-9F16-971D00B8FE4A}: DhcpNameServer = 10.15.21.70 10.15.21.71
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - AppInit_DLLs: (C:\Windows\system32\nvinitx.dll) - C:\Windows\SysNative\nvinitx.dll (NVIDIA Corporation)
O20 - AppInit_DLLs: (C:\Windows\SysWOW64\nvinit.dll) - C:\Windows\SysWOW64\nvinit.dll (NVIDIA Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2013/07/10 20:19:09 | 000,000,000 | ---D | C] -- C:\Windows\ERUNT
[2013/07/10 20:18:03 | 000,552,874 | ---- | C] (Oleg N. Scherbakov) -- C:\Users\ge-bill\Desktop\JRT.exe
[2013/07/10 07:44:25 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2013/07/09 22:53:46 | 000,000,000 | ---D | C] -- C:\FRST
[2013/07/09 22:53:11 | 001,776,221 | ---- | C] (Farbar) -- C:\Users\ge-bill\Desktop\FRST64.exe
[2013/07/06 17:19:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EigenLabs
[2013/07/06 16:40:25 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\ge-bill\Desktop\OTL.exe
[2013/07/06 16:29:26 | 000,000,000 | ---D | C] -- C:\Users\ge-bill\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Camel Audio
[2013/07/06 16:29:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Camel Audio
[2013/07/06 16:29:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Camel Audio
[2013/07/06 16:29:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Camel Audio
[2013/07/06 16:29:04 | 000,000,000 | ---D | C] -- C:\Program Files\VSTPlugins
[2013/07/06 16:29:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VSTPlugins
[2013/07/06 16:29:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Digidesign
[2013/07/05 16:54:24 | 000,000,000 | ---D | C] -- C:\Users\ge-bill\AppData\Local\NVIDIA
[2013/07/05 16:47:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AGEIA Technologies
[2013/07/05 16:46:01 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\NV
[2013/07/05 16:46:01 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\NV
[2013/07/05 16:38:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
[2013/06/29 14:54:29 | 000,000,000 | ---D | C] -- C:\Users\ge-bill\AppData\Roaming\Rogue Legacy
[2013/06/29 13:08:32 | 000,000,000 | ---D | C] -- C:\Users\ge-bill\AppData\Roaming\.technic
[2013/06/26 18:37:46 | 000,000,000 | ---D | C] -- C:\Users\ge-bill\AppData\Roaming\.minecraft
[2013/06/25 19:13:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2013/06/16 20:08:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Origin Games
[2013/06/13 08:27:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2013/07/10 20:23:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013/07/10 20:18:20 | 000,552,874 | ---- | M] (Oleg N. Scherbakov) -- C:\Users\ge-bill\Desktop\JRT.exe
[2013/07/10 19:08:10 | 000,021,296 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/07/10 19:08:10 | 000,021,296 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/07/10 18:58:16 | 002,285,688 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013/07/10 18:57:44 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/07/10 18:55:57 | 069,591,039 | -HS- | M] () -- C:\hiberfil.sys
[2013/07/10 08:07:06 | 536,870,912 | -H-- | M] () -- C:\BFRD_000.dat
[2013/07/10 08:03:03 | 000,785,332 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013/07/10 08:03:03 | 000,652,360 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013/07/10 08:03:03 | 000,121,292 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013/07/09 22:53:28 | 001,776,221 | ---- | M] (Farbar) -- C:\Users\ge-bill\Desktop\FRST64.exe
[2013/07/07 00:26:16 | 153,074,943 | ---- | M] () -- C:\Users\ge-bill\Desktop\PCGamerEp93.mp3
[2013/07/06 17:29:36 | 2066,105,030 | ---- | M] () -- C:\Users\ge-bill\Desktop\Black_Grand_Ambient.sf2
[2013/07/06 17:26:16 | 2057,513,328 | ---- | M] () -- C:\Users\ge-bill\Desktop\Black_Grand_Close.sf2
[2013/07/06 17:03:09 | 000,288,715 | ---- | M] () -- C:\Users\ge-bill\Desktop\19E38806-103F-44A4-8DF1-D94C1B4986E2.jpg
[2013/07/06 16:40:32 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\ge-bill\Desktop\OTL.exe
[2013/07/05 21:40:22 | 000,151,637 | ---- | M] () -- C:\Users\ge-bill\Desktop\recipty.png
[2013/07/05 14:03:19 | 003,474,507 | ---- | M] () -- C:\Users\ge-bill\Desktop\One-Step Generation of Mice Carrying mutations in multiple genes by CRISPR Cas Mediated Genome Engeneering.pdf
[2013/07/05 14:02:19 | 000,159,456 | ---- | M] () -- C:\Users\ge-bill\Desktop\One-Step Generation of Mice Carrying mutations in multiple genes by CRISPR Cas Mediated Genome Engeneering Supplementary table.pdf
[2013/07/01 18:26:57 | 000,102,385 | ---- | M] () -- C:\Users\ge-bill\Desktop\matr2 recipt.png
[2013/07/01 16:07:03 | 000,002,198 | -H-- | M] () -- C:\Users\ge-bill\Documents\Default.rdp
[2013/07/01 15:39:28 | 000,127,916 | ---- | M] () -- C:\Users\ge-bill\Desktop\matr recipt.png
[2013/06/29 16:13:21 | 000,004,184 | ---- | M] () -- C:\Users\ge-bill\AppData\Local\recently-used.xbel
[2013/06/29 13:07:21 | 003,020,770 | ---- | M] () -- C:\Users\ge-bill\Desktop\TechnicLauncher.exe
[2013/06/29 12:54:11 | 000,263,186 | ---- | M] () -- C:\Users\ge-bill\Desktop\Minecraft.exe
[2013/06/21 14:06:36 | 000,021,578 | ---- | M] () -- C:\Windows\SysNative\nvinfo.pb
[2013/06/20 06:17:49 | 003,253,909 | ---- | M] () -- C:\Windows\SysNative\nvcoproc.bin
[2013/06/16 20:16:08 | 000,765,178 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2013/07/07 00:25:36 | 153,074,943 | ---- | C] () -- C:\Users\ge-bill\Desktop\PCGamerEp93.mp3
[2013/07/06 17:11:06 | 2057,513,328 | ---- | C] () -- C:\Users\ge-bill\Desktop\Black_Grand_Close.sf2
[2013/07/06 17:10:59 | 2066,105,030 | ---- | C] () -- C:\Users\ge-bill\Desktop\Black_Grand_Ambient.sf2
[2013/07/06 17:03:09 | 000,288,715 | ---- | C] () -- C:\Users\ge-bill\Desktop\19E38806-103F-44A4-8DF1-D94C1B4986E2.jpg
[2013/07/05 21:40:21 | 000,151,637 | ---- | C] () -- C:\Users\ge-bill\Desktop\recipty.png
[2013/07/05 16:39:22 | 000,021,578 | ---- | C] () -- C:\Windows\SysNative\nvinfo.pb
[2013/07/05 14:03:06 | 003,474,507 | ---- | C] () -- C:\Users\ge-bill\Desktop\One-Step Generation of Mice Carrying mutations in multiple genes by CRISPR Cas Mediated Genome Engeneering.pdf
[2013/07/05 14:02:16 | 000,159,456 | ---- | C] () -- C:\Users\ge-bill\Desktop\One-Step Generation of Mice Carrying mutations in multiple genes by CRISPR Cas Mediated Genome Engeneering Supplementary table.pdf
[2013/07/01 18:26:57 | 000,102,385 | ---- | C] () -- C:\Users\ge-bill\Desktop\matr2 recipt.png
[2013/07/01 15:39:28 | 000,127,916 | ---- | C] () -- C:\Users\ge-bill\Desktop\matr recipt.png
[2013/06/29 16:13:21 | 000,004,184 | ---- | C] () -- C:\Users\ge-bill\AppData\Local\recently-used.xbel
[2013/06/29 13:07:13 | 003,020,770 | ---- | C] () -- C:\Users\ge-bill\Desktop\TechnicLauncher.exe
[2013/06/29 12:54:09 | 000,263,186 | ---- | C] () -- C:\Users\ge-bill\Desktop\Minecraft.exe
[2013/06/27 20:30:15 | 002,285,688 | ---- | C] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013/04/23 00:27:08 | 000,000,075 | RHS- | C] () -- C:\Windows\CT4CET.bin
[2013/02/25 07:02:25 | 000,001,526 | ---- | C] () -- C:\Windows\Ascd_tmp.ini
[2012/12/13 19:42:30 | 000,064,512 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
[2012/10/22 07:47:46 | 000,000,893 | ---- | C] () -- C:\ProgramData\All Users - Shortcut.lnk
[2012/10/09 19:22:28 | 000,272,928 | ---- | C] () -- C:\Windows\SysWow64\igvpkrng600.bin
[2012/10/09 19:22:20 | 000,963,452 | ---- | C] () -- C:\Windows\SysWow64\igcodeckrng600.bin
[2012/09/24 23:47:42 | 000,178,688 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2012/04/26 11:28:38 | 000,380,928 | ---- | C] () -- C:\Windows\SysWow64\lame_enc.dll
[2012/04/17 06:39:46 | 000,032,256 | ---- | C] () -- C:\Windows\SysWow64\AVSredirect.dll
[2012/04/17 06:37:06 | 000,107,520 | RHS- | C] () -- C:\Windows\SysWow64\TAKDSDecoder.dll
[2012/02/23 16:21:09 | 000,099,050 | ---- | C] () -- C:\Users\ge-bill\AppData\Roaming\icarus-dxdiag.xml
[2012/02/14 11:47:06 | 000,963,912 | ---- | C] () -- C:\Windows\SysWow64\igkrng600.bin
[2012/02/14 11:47:06 | 000,261,208 | ---- | C] () -- C:\Windows\SysWow64\igfcg600m.bin
[2011/12/25 17:50:25 | 000,524,288 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2011/12/25 17:50:25 | 000,139,264 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2011/12/25 17:03:54 | 000,023,512 | R--- | C] () -- C:\Windows\UN091222.INI
[2011/12/25 17:03:33 | 000,035,896 | R--- | C] () -- C:\Windows\UN091111.INI
[2011/12/25 17:03:28 | 000,013,773 | R--- | C] () -- C:\Windows\UN091201.INI
[2011/12/25 17:01:34 | 000,011,419 | R--- | C] () -- C:\Windows\UN101018.INI
[2011/10/04 00:42:22 | 000,023,552 | ---- | C] () -- C:\Users\ge-bill\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/09/28 19:44:14 | 000,179,271 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2011/09/22 16:33:10 | 000,008,192 | ---- | C] () -- C:\Windows\SysWow64\drivers\IntelMEFWVer.dll
[2011/09/13 21:34:22 | 002,434,856 | ---- | C] () -- C:\Windows\SysWow64\pbsvc_bc2.exe
[2011/09/13 21:34:22 | 000,076,888 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2011/09/06 18:21:46 | 000,145,804 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng600.bin

========== ZeroAccess Check ==========

[2009/07/14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/02/27 07:52:56 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/02/27 06:55:05 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2012/08/21 15:11:31 | 000,857,088 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2012/08/21 15:37:44 | 000,636,928 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2012/08/21 15:08:38 | 000,453,120 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2013/06/29 13:04:16 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\.minecraft
[2013/06/29 13:08:44 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\.technic
[2013/05/01 17:24:37 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\3909 LLC
[2013/06/19 12:49:44 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Applian FLV and Media Player
[2013/02/05 07:18:17 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Arrowhead
[2013/03/08 12:38:18 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Audacity
[2011/10/10 09:27:28 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Blio
[2012/06/10 07:13:56 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Braid
[2011/12/25 17:04:38 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\BUFFALO
[2012/03/12 08:30:43 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\calibre
[2012/12/16 07:52:56 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Carbon
[2011/09/27 02:45:26 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Clickteam
[2013/03/21 10:40:01 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\com.radialgames.MonsterLovesYou
[2013/03/04 09:51:29 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\com.stoicstudio.TheBannerSagaFactions
[2011/12/20 21:03:14 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Crayon Physics Deluxe
[2011/12/25 17:57:15 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Digiarty
[2013/06/03 20:49:31 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Dropbox
[2012/09/20 16:13:56 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Fatshark
[2011/09/12 13:03:29 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Fingertapps
[2012/06/03 05:05:35 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\fltk.org
[2012/12/30 16:15:43 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Free DVD Ripper Platinum
[2012/04/17 06:21:24 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\GetRightToGo
[2012/10/22 07:30:48 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Groovedown_Uninstall
[2013/04/16 18:35:49 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\gtk-2.0
[2011/12/25 18:25:26 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\HandBrake
[2011/09/12 17:35:58 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\IDT
[2013/04/25 18:39:04 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\inkscape
[2013/06/03 20:29:07 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Little Inferno
[2012/09/24 23:48:56 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\LockHunter
[2011/09/13 19:54:01 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\LolClient
[2012/06/09 17:24:58 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\LoneSurvivor
[2012/04/21 08:43:12 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\LOVE
[2012/06/30 12:56:33 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\ManyCam
[2011/10/29 17:22:57 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\MinMaxGames
[2011/10/21 15:10:26 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\mm
[2013/04/16 21:20:36 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\MMFApplications
[2012/01/11 14:14:10 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Mount&Blade
[2012/01/13 09:18:13 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\NationRed
[2012/12/30 19:55:01 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Natural Selection 2
[2012/02/29 13:38:12 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\OnLive App
[2011/09/12 17:29:22 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\OpenOffice.org
[2013/06/16 20:11:05 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Origin
[2012/09/12 09:01:57 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\PCDr
[2012/06/29 18:26:26 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\RenPy
[2013/06/29 14:54:29 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Rogue Legacy
[2012/02/21 16:19:41 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\RotMG.Production
[2012/06/22 18:52:07 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\six-zsync
[2012/12/30 21:06:26 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\SpringLobby
[2012/12/30 21:20:04 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\springlobby_updater
[2012/12/30 20:56:57 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\SpringSettings
[2012/04/10 17:47:32 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Stage
[2012/08/30 15:16:06 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Synthesia
[2012/12/24 17:10:20 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\TeamViewer
[2013/05/17 18:19:59 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\TEdit
[2011/09/13 21:42:06 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\The Creative Assembly
[2012/01/24 05:53:15 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Trillian
[2012/05/19 12:55:13 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\TS3Client
[2012/03/26 07:34:45 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\VoipDiscount
[2011/11/06 10:22:21 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Voxatron
[2011/10/04 04:12:18 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\Windows Live Writer
[2012/07/12 06:58:31 | 000,000,000 | ---D | M] -- C:\Users\ge-bill\AppData\Roaming\ZinioReader4

========== Purity Check ==========



========== Files - Unicode (All) ==========
[2012/09/18 07:10:11 | 000,182,388 | ---- | M] ()(C:\Users\ge-bill\Desktop\??????.jpg) -- C:\Users\ge-bill\Desktop\イェスマット.jpg
[2012/09/18 07:10:11 | 000,182,388 | ---- | C] ()(C:\Users\ge-bill\Desktop\??????.jpg) -- C:\Users\ge-bill\Desktop\イェスマット.jpg

< End of report >

___________________________________________________________________________________



Thanks for the help!
  • 0

#7
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 19,991 posts
Hello gram12,

Please run OTL.exe

  • Under the Custom Scans/Fixes box at the bottom, copy and paste the content of the quote box below:

    :OTL
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.condui...8D-68D053680105
    IE - HKCU\..\URLSearchHook: {f999a48b-1950-4d81-9971-79018f807b4b} - No CLSID value found
    IE - HKCU\..\SearchScopes,DefaultScope = {61E6A3EB-170C-485F-B8ED-8BF4A6CDC286}
    IE - HKCU\..\SearchScopes\{D758711A-B8AA-45CF-86CA-BE1019ACBB56}: "URL" = http://u-search.net/...q={searchTerms}
    O2:64bit: - BHO: (no name) - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - No CLSID value found.
    O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
    O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
    O4:64bit: - HKLM..\Run: [] File not found

    :Files
    ipconfig /flushdns /c

    :Commands
    [resethosts]
    [emptytemp]

  • Then click the Run Fix button at the top
  • Let the program run unhindered, reboot when it is done
  • It will produce a log for you on reboot, please post that log in your next reply.The log is saved in the same location as OTL.

  • 0

#8
gram12

gram12

    Member

  • Topic Starter
  • Member
  • PipPip
  • 15 posts
Hey emeraldnzl,

here is the log

All processes killed
========== OTL ==========
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{f999a48b-1950-4d81-9971-79018f807b4b} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f999a48b-1950-4d81-9971-79018f807b4b}\ not found.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D758711A-B8AA-45CF-86CA-BE1019ACBB56}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D758711A-B8AA-45CF-86CA-BE1019ACBB56}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}\ not found.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
========== FILES ==========
< ipconfig /flushdns /c >
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
C:\Users\ge-bill\Desktop\cmd.bat deleted successfully.
C:\Users\ge-bill\Desktop\cmd.txt deleted successfully.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Flash cache emptied: 57472 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: ge-bill
->Temp folder emptied: 3848004 bytes
->Java cache emptied: 1831815 bytes
->FireFox cache emptied: 19077623 bytes
->Flash cache emptied: 58530 bytes

User: Public

User: UpdatusUser
->Temp folder emptied: 0 bytes

User: UpdatusUser.INDEFATIGABLE
->Temp folder emptied: 0 bytes
->Flash cache emptied: 56475 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 200704 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 89230829 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 78100 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 109.00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 07102013_215058

Files\Folders moved on Reboot...
C:\Users\ge-bill\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
File move failed. C:\Windows\temp\TmpFile1 scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
  • 0

#9
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 19,991 posts
Hello gram12,

Please run a free online scan with the ESET Online Scanner

Vista / Win7 users: Right-click on the either the IE or FF icon in the Start Menu or Quick Launch Bar on the Taskbar and select Run as Administrator.

Note: This scan works with Internet Explorer or Mozilla FireFox.

If using Mozilla Firefox you will need to download esetsmartinstaller_enu.exe when prompted then double click on it to install.

  • Click the green ESET Online Scanner box
  • Tick the box next to YES, I accept the Terms of Use
    then click on: Start
  • You may see a panel towards the top of the screen telling you the website wants to install an addon... click and allow it to install. If your firewall asks whether you want to allow installation, say yes.
  • Make sure that the option Scan archives is checked.
  • Now click on Advanced Settings and select the following:
    • Scan for potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth Technology
  • Click on Start
  • The virus signature database will begin to download. Be patient this make take some time depending on the speed of your Internet Connection.
  • When completed the Online Scan will begin automatically. The scan may take several hours.
  • Do not touch either the Mouse or keyboard during the scan otherwise it may stall.
  • When completed select Uninstall application on close, make sure you copy the logfile first!
  • Then click on: Finish
  • Use notepad to open the logfile located at C:\Program Files\ESET\EsetOnlineScanner\log.txt.
  • Copy and paste that log as a reply to this topic and tell me how your machine is now.

  • 0

#10
gram12

gram12

    Member

  • Topic Starter
  • Member
  • PipPip
  • 15 posts
Hey emeraldnzl

Before I post the log, the PC is running better now, a tiny bit of delay in some programs. As an extra test I tried running CS:GO (a first person shooter) and the fps is now between 25-35 (still not as high as it was, but considerably better!)

Thanks for the help so far!!!

Here is the log as requested

[email protected] as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=c0329465464a194486c3d9bf2fed5be2
# engine=14346
# end=finished
# remove_checked=true
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2013-07-11 07:44:19
# local_time=2013-07-11 09:44:19 (+0100, W. Europe Daylight Time)
# country="United Kingdom"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=5893 16776574 100 94 53287 125158509 0 0
# scanned=516580
# found=4
# cleaned=4
# scan_time=41836
sh=89AA4CC7B1818E7F6BC572AAD0580084DB85C80C ft=1 fh=11ad30c2523dc3ca vn="a variant of Win32/HiddenStart.A application (cleaned by deleting - quarantined)" ac=C fn="C:\Program Files (x86)\AlienRespawn\hstart.exe"
sh=7FDF9E32EC4E89213BFA79F7DC3F49AD30FEFB4C ft=1 fh=f2c3285321728ab0 vn="a variant of Win32/HiddenStart.A application (cleaned by deleting - quarantined)" ac=C fn="C:\Program Files (x86)\AlienRespawn\Components\DSUpdate\hstart.exe"
sh=E32AA2E78D2C8F0E9316080E71A714BEFE851E6C ft=1 fh=374915f71a49693e vn="a variant of Win32/Bundled.Toolbar.Ask application (cleaned by deleting - quarantined)" ac=C fn="C:\Users\ge-bill\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LAXG9J3T\ApnIC[1].0"
sh=CD5C99B467EBF6A1D61BCC6C0323AB13271BF3B7 ft=0 fh=0000000000000000 vn="a variant of Win32/Aedgency.A application (deleted - quarantined)" ac=C fn="C:\Windows\Installer\633d04.msi"
  • 0

#11
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 19,991 posts

still not as high as it was


Hmm... I think we are pretty well there from a malware viewpoint but let's check if there is something on the security side slowing things.

Please download Security Check by screen317 from here .

  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.

  • 0

#12
gram12

gram12

    Member

  • Topic Starter
  • Member
  • PipPip
  • 15 posts
hey,

Here is the checkup.txt

Results of screen317's Security Check version 0.99.68
Windows 7 Service Pack 1 x64 (UAC is enabled)
Internet Explorer 10
``````````````Antivirus/Firewall Check:``````````````
Windows Firewall Enabled!
Microsoft Security Essentials
Antivirus up to date!
`````````Anti-malware/Other Utilities Check:`````````
Malwarebytes Anti-Malware version 1.75.0.1300
Java™ 6 Update 22
Java™ 6 Update 26
Java™ 6 Update 25
Java 7 Update 9
Java version out of Date!
Adobe Flash Player 11.8.800.94
Adobe Reader XI
Mozilla Firefox (22.0)
````````Process Check: objlist.exe by Laurent````````
Microsoft Security Essentials MSMpEng.exe
Microsoft Security Essentials msseces.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C: 2%
````````````````````End of Log``````````````````````


thanks
  • 0

#13
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 19,991 posts
Well I am not seeing anything. There is a Java warning but check out my closing statement below.

You could carry out some housekeeping.

Maybe:

Use the System File Checker tool (SFC.exe) to check your system and replace files where necessary.

To do this, follow these steps:
  • To do this, click Start, click All Programs, click Accessories, right-click Command Prompt, and then click Run as administrator.
  • If you are prompted for an administrator password or for a confirmation, type the password, or click Allow.
  • Type the following command, and then press ENTER:
    sfc /scannow Please note that there is a single space between sfc and /scannow.
The sfc /scannow command scans all protected system files and replaces incorrect versions with correct Microsoft versions.

Step 2

CHKDSK (short for Checkdisk) is a command on computers running DOS, OS/2 and Microsoft Windows operating systems that displays the file system integrity status of hard disks and floppy disk and can fix logical file system errors.

How to run Chkdsk using the Command Line:

Before running Chkdsk, be aware of the following:

* Chkdsk requires exclusive access to a volume while it is running. Chkdsk might display a prompt asking if you want to check the disk the next time you restart your computer.

* Chkdsk might take a long time to run, depending on the number of files and folders, the size of the volume, disk performance, and available system resources (such as processor and memory).

* Chkdsk might not accurately report information in read-only mode.

Now

Go to Start > Run and type:

chkdsk C: /f /r note the spaces. They are meant to be there.

Hit OK

If chkdsk does not start immediately reboot your computer. Chkdsk will run during the start up process. It can take a very long time... so be patient.

Step 3

Download Auslogics Disk Defrag and save it to your Desktop.

Double click and follow the prompts to install it. Note: only install the defrag utility. Some versions come with Askbar toolbars... do not install those.

Once installed, run the defrag utility.

At the end the utility may tell you that it has found Junk Files and recommend that you run a scan to remove. Disregard that suggestion, it is a promotion of a tool you don't need. All we are interested in here is the defrag. process.

Note: Do not download Windows Registry Cleaner which is promoted at the same site.

You could also check out these links:

Over time computers do build up bits and pieces of left over programs updates etc. which slow the machine. Some people even go to extent of reformatting their computers every few years just to clean them up. Removing surplus programs can help, also making sure your computer is clean (dust free) and not overheating are good housekeeping actions to help it run efficiently. Here are a couple of links that may be helpful:

Go here for information about what makes your computer slow by Artellos.

In addition:

miekiemoes has a blog with some information about slow computing.

Just scroll down until you find it, might be helpful. Link below.

http://miekiemoes.bl...l/Slow computer

Next

From a malware viewpoint I think your machine is good to go.

We have a couple of last steps to perform and then you're all set.Posted Image

  • Double-click OTL.exe to run it. (Vista and above users, please right click on OTL.exe and select "Run as an Administrator")
  • Click on the CleanUp! button
  • You will be asked to reboot the machine to finish the Cleanup process. If you are asked to reboot the machine choose Yes.

MBAM can be uninstalled via control panel add/remove but it may be a useful tool to keep.

Any other tools remaining may be deleted.

Next, we need to clean your restore points and set a new one:

Open System by clicking the Start button, right-clicking Computer, and then clicking Properties.

  • In the left pane, click System protection. Administrator permission required If you're prompted for an administrator password or confirmation, type the password or provide confirmation.
  • Under Protection Settings, click the radio button Configure.
  • Under Disk Space Usage, click the radio button Delete.
  • Click Continue, and then click OK.
-------------------------------------------------------------------------------------------------------------------

A reminder: Remember to (re-install if uninstalled during cleaning) update and turn back on any anti-malware programs you may have turned off during the cleaning process.
-------------------------------------------------------------------------------------------------------------------

Here are some things that I think are worth having a look at if you don't already know about them:

---------------------------------------------------------------------------------------------------------------------

It is good security practice to change your passwords to all your online accounts on a fairly regular basis, this is especially true after an infection. Refer to this Microsoft article Strong passwords: How to create and use them.

----------------------------------------------------------------------------------------------------------------------

Java warning

Java is a popular point of entry to your computer for malicous programs. The United States Department of Homeland Security recommends that computer users disable Java, see here. Unless you need it to run an important software the safest approach is to completely uninstall Java. Where you do require it, then the next safest option is to disable it in your browsers until you need it, then enable it.

How to disable Java in your web browser and How to unplug Java from the browser

If you do still need Java then regularly check that it is up to date. Older versions are the most vulnerable to malicious attack.

  • Download Java for Windows

    Reboot your computer.
    You also need to unininstall older versions of Java.
  • Click Start > Control Panel > Add or Remove Programs
  • Remove all Java updates except the latest one you have just installed.
--------------------------------------------------------------------------------------------------------------------

To help protect your computer in the future:



If you do not already have automatic updates set then it is recommended that you do set Windows to check, download and install your updates automatically.

* Click Start > Control Panel > System and Security > Windows Update
* Under Windows Update click on Turn automatic updating on or off
* Check items shown to ensure you receive updates automatically. Click OK.

Be aware of what emails you open and websites you visit.

Go here for some good advice about how to prevent infection.

A fun way to check your online safety literacy.

Quiz - getsafeonline

Have a safe and happy computing day!
  • 0

#14
gram12

gram12

    Member

  • Topic Starter
  • Member
  • PipPip
  • 15 posts
Thanks so very much for all the assistance!

I will follow through the final steps you posted tomorrow.

You have been incredibly patient and helpful

thanks again
  • 0

#15
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 19,991 posts

thanks again


You are very welcome. :happy:

I will keep this topic open for a day or two in case any issues develop.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP