Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

the sound is stuttering and sometimes its lagging [Solved]


  • This topic is locked This topic is locked

#31
frichieny

frichieny

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 192 posts
OTL Extras logfile created on: 12/11/2013 3:23:28 PM - Run 5
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\ACER\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16750)
Locale: 00003409 | Country: Republic of the Philippines | Language: ENP | Date Format: M/d/yyyy

3.84 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 52.03% Memory free
15.49 Gb Paging File | 13.29 Gb Available in Paging File | 85.80% Paging File free
Paging file location(s): c:\pagefile.sys 8000 8000d:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 226.28 Gb Total Space | 70.32 Gb Free Space | 31.08% Space Free | Partition Type: NTFS
Drive D: | 226.38 Gb Total Space | 150.76 Gb Free Space | 66.60% Space Free | Partition Type: NTFS

Computer Name: ACER-PC | User Name: ACER | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-559359422-3810118987-1361560690-1000\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML.F74JE7UHLXBAIAGRTXBCLEWKJE] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00A9FF18-E004-4E6E-9717-79A5B9ABE27A}" = lport=6980 | protocol=17 | dir=in | name=league of legends launcher |
"{00CD1824-6CB5-4AE2-9E6C-C90188A929B6}" = rport=138 | protocol=17 | dir=out | app=system |
"{05E5A2D2-5400-4D24-AA67-940A368C6EA1}" = rport=10243 | protocol=6 | dir=out | app=system |
"{063A4E3D-1F4B-4759-A2D8-DA63BAC75450}" = lport=6939 | protocol=6 | dir=in | name=league of legends launcher |
"{066CDEEF-0C6E-4118-B732-7BCEED34E389}" = lport=6956 | protocol=17 | dir=in | name=league of legends launcher |
"{07D4CFEE-9B23-47D6-BFD3-3F771773DE36}" = lport=8370 | protocol=6 | dir=in | name=league of legends launcher |
"{0AE3B328-E910-4878-A751-8021924B839B}" = lport=6967 | protocol=6 | dir=in | name=league of legends launcher |
"{0E0A1494-FFCB-40EB-AF2F-2D080EDC27B3}" = lport=6978 | protocol=17 | dir=in | name=league of legends launcher |
"{0F98958D-CD03-4A85-81D5-ADF00D890FB3}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{1141E597-4944-47F7-AA65-E6ABFE633B98}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{12210DC9-96E8-4DE5-88C4-FD0C4E0F2C07}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{13445CA8-3D4E-4175-94C4-D3ECCC5E7C10}" = lport=6920 | protocol=6 | dir=in | name=league of legends launcher |
"{144E5C26-B8FC-4C74-834A-F67609372BC7}" = lport=6953 | protocol=17 | dir=in | name=league of legends launcher |
"{14C684AC-3BDE-4869-86DC-6AD3A42B6121}" = lport=6997 | protocol=17 | dir=in | name=league of legends launcher |
"{16D7BC30-CDD9-4B51-AC46-5AF9EA3A67A1}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{17C4BF8A-76B3-4B04-8B33-8655554A182C}" = lport=139 | protocol=6 | dir=in | app=system |
"{17ECD855-A7D2-43E6-A082-A70AB11FD11E}" = lport=6939 | protocol=17 | dir=in | name=league of legends launcher |
"{1EFCF899-B3AB-4563-8E31-4CC64F3E0DC6}" = lport=6929 | protocol=6 | dir=in | name=league of legends launcher |
"{1F15DC72-6E88-4EB1-80C3-F027BA22C746}" = lport=6973 | protocol=6 | dir=in | name=league of legends launcher |
"{21B1A646-27A9-4CFA-B67D-CB506CF97D65}" = lport=6949 | protocol=17 | dir=in | name=league of legends launcher |
"{233350DA-31C6-478A-BB8D-D2310B3560F8}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{27702C72-FBA9-4DF9-A4D3-E12E5A76124A}" = lport=6929 | protocol=17 | dir=in | name=league of legends launcher |
"{278ABC3A-E919-4762-AD2A-61F85681F2C4}" = lport=6895 | protocol=17 | dir=in | name=league of legends launcher |
"{29E11EE0-E6B1-4F6B-9011-10A7EC3C3483}" = lport=6941 | protocol=17 | dir=in | name=league of legends launcher |
"{29E800AB-F069-47AC-8AB6-6D40827D253F}" = lport=6991 | protocol=6 | dir=in | name=league of legends launcher |
"{2B853076-6268-4637-A511-3292FFC9F02C}" = lport=6996 | protocol=6 | dir=in | name=league of legends launcher |
"{2B8CC03B-0E45-41F3-A3B8-59092C58C33B}" = lport=6975 | protocol=6 | dir=in | name=league of legends launcher |
"{2DD0F3CA-34E1-48EE-BE48-AFDABB34F8FC}" = lport=6915 | protocol=6 | dir=in | name=league of legends launcher |
"{2E473CE6-CB9D-403D-980A-1C2480A685EF}" = lport=6893 | protocol=6 | dir=in | name=league of legends launcher |
"{30844C72-3DC2-43A9-B921-278B21CB40C5}" = lport=6980 | protocol=6 | dir=in | name=league of legends launcher |
"{35783237-8DE6-4C4A-9515-BF9C7AC1A7EB}" = rport=139 | protocol=6 | dir=out | app=system |
"{360BB036-4EB0-4753-ABF9-3D11BCCC1FA1}" = lport=6972 | protocol=6 | dir=in | name=league of legends launcher |
"{36429E78-9C6E-4D81-8817-2A1987B3DC9C}" = lport=6881 | protocol=6 | dir=in | name=league of legends launcher |
"{38C99B91-90C6-4E78-820E-83EBA3C7F7B0}" = lport=6972 | protocol=17 | dir=in | name=league of legends launcher |
"{39D6017A-A632-41C0-8E49-0511A1782A35}" = lport=6907 | protocol=6 | dir=in | name=league of legends launcher |
"{3A027F07-CB3E-4E9F-95FB-08E92879D603}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
"{3B2142A5-2A34-486E-976D-B6D9078A9D15}" = lport=6921 | protocol=17 | dir=in | name=league of legends launcher |
"{3C3111DF-E1D7-4A74-8D71-95C0349FF8BD}" = lport=6882 | protocol=17 | dir=in | name=league of legends launcher |
"{3D159177-06FD-4191-8322-2C689E88F18B}" = lport=6966 | protocol=17 | dir=in | name=league of legends launcher |
"{3E51D3D1-88F7-4278-B95D-A9E680E3EE2E}" = lport=6916 | protocol=6 | dir=in | name=league of legends launcher |
"{3E9DF007-AAED-4ACE-80B7-A99356ADC92D}" = lport=6996 | protocol=17 | dir=in | name=league of legends launcher |
"{420057AA-1EAE-4A57-AF20-BC7B36C8F4D0}" = lport=6993 | protocol=17 | dir=in | name=league of legends launcher |
"{430B5A72-EAFE-4F16-9F7D-2B4FD2E0D7EC}" = lport=6912 | protocol=17 | dir=in | name=league of legends launcher |
"{44664D86-1043-4366-85D8-E3368AB25E0C}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{4A01DB44-BCE6-4A96-9D7A-21C2E603FDCB}" = lport=6902 | protocol=6 | dir=in | name=league of legends launcher |
"{4C311C5A-5251-42AA-B58D-970E2E2C2558}" = lport=6968 | protocol=17 | dir=in | name=league of legends launcher |
"{4D5642A2-D723-4048-A243-62877301D76B}" = lport=6905 | protocol=17 | dir=in | name=league of legends launcher |
"{4FA25BE3-5343-4D81-B3B0-3FAEA257A758}" = lport=6959 | protocol=6 | dir=in | name=league of legends launcher |
"{506F49ED-1224-40C6-9750-725B3C8DB5FB}" = lport=6958 | protocol=6 | dir=in | name=league of legends launcher |
"{528A3E06-081C-49D9-BEAC-E948C113C10A}" = lport=6993 | protocol=6 | dir=in | name=league of legends launcher |
"{564FB7EF-0F74-4EAE-A73D-C83ED4815E76}" = lport=6958 | protocol=17 | dir=in | name=league of legends launcher |
"{5B33D320-921D-436C-BDF6-AF3409109360}" = lport=6968 | protocol=6 | dir=in | name=league of legends launcher |
"{5BA212D9-8B33-4B50-A3DF-1A66F134E6BA}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{5EE9C9ED-EE04-4385-974F-9C70EBB96E0A}" = lport=4482 | protocol=17 | dir=in | name=blackberry desktop software wireless music sync discovery |
"{61294088-1915-4E28-9A3B-CA283DFA6CC3}" = lport=4481 | protocol=6 | dir=in | name=blackberry desktop software wireless music sync data transfer |
"{618648FA-5519-419F-A3E5-1F9AD9730788}" = lport=8393 | protocol=6 | dir=in | name=league of legends lobby |
"{62C6F833-0314-4123-849B-D1E8A0D31651}" = lport=6962 | protocol=6 | dir=in | name=league of legends launcher |
"{66FBF833-C887-4177-84E8-FCDBE2508CFA}" = lport=6974 | protocol=17 | dir=in | name=league of legends launcher |
"{6899E03D-9BE9-4C4F-961F-9763976C5698}" = lport=6946 | protocol=17 | dir=in | name=league of legends launcher |
"{6AA505E9-E07D-403C-98D3-CCF94B05B9B6}" = lport=6946 | protocol=6 | dir=in | name=league of legends launcher |
"{6AD7B11D-0D7D-418D-AD76-433573F73384}" = lport=4481 | protocol=17 | dir=in | name=blackberry desktop software wireless music sync discovery |
"{6B31E4BF-9CD3-42FF-AE29-49D2583DBAA4}" = lport=8390 | protocol=6 | dir=in | name=league of legends game client |
"{6EC4F05D-33A4-44FA-9706-524C7220325C}" = lport=6995 | protocol=17 | dir=in | name=league of legends launcher |
"{7070EB84-0B25-4ED6-ABCB-26DEA5B23170}" = lport=6974 | protocol=17 | dir=in | name=league of legends launcher |
"{740CC035-A8D5-4F64-9CDD-E32725EFAF34}" = lport=6905 | protocol=6 | dir=in | name=league of legends launcher |
"{75281679-77EB-439C-B094-BBA414D6B3A5}" = lport=6904 | protocol=6 | dir=in | name=league of legends launcher |
"{75C1299D-1E1F-42A7-98F0-BE11D56727C3}" = lport=2869 | protocol=6 | dir=in | app=system |
"{769F43AB-2EFC-4FC7-B3F4-3DE8FD3B53C3}" = lport=6889 | protocol=17 | dir=in | name=league of legends launcher |
"{76AFD2CA-000D-4B33-ABDD-188992909F86}" = lport=137 | protocol=17 | dir=in | app=system |
"{781EA23A-DF7B-4334-8560-B0D07BB8E630}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{7916BD57-E64B-4B06-A211-7790884ED89B}" = lport=6922 | protocol=6 | dir=in | name=league of legends launcher |
"{798E3418-B92D-4D44-AA13-5EC9468D9C25}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{79DCC0BA-C91A-4064-8F49-A42FEAB68AD4}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{7B5B16CA-F4C8-40A4-8F69-772D76B029F8}" = lport=445 | protocol=6 | dir=in | app=system |
"{7C26555B-BD29-424A-886B-13343D006075}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{81E415CC-EC8D-4F15-9804-A10AD4188731}" = lport=6974 | protocol=6 | dir=in | name=league of legends launcher |
"{847F00A4-BEAF-43C1-96D0-2E9F8EB4C7F5}" = lport=6952 | protocol=6 | dir=in | name=league of legends launcher |
"{8624620F-065E-4D6D-9AB7-E43F20BB02F2}" = lport=6990 | protocol=6 | dir=in | name=league of legends launcher |
"{88719AA3-CF83-4704-ADD0-6FEA5D9F70D9}" = lport=6895 | protocol=6 | dir=in | name=league of legends launcher |
"{8A9FA8BA-1851-4279-A41D-6D24DEF97454}" = lport=6953 | protocol=6 | dir=in | name=league of legends launcher |
"{8F61E475-ED33-4D4F-B046-D7A979C204BB}" = lport=6915 | protocol=17 | dir=in | name=league of legends launcher |
"{91280714-B1C1-4D54-856A-0950AE37C4BD}" = lport=6904 | protocol=17 | dir=in | name=league of legends launcher |
"{951EAFE0-86AF-4A48-B211-AB69523DAEC1}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{979783D3-7253-4796-B8F6-A16E0D745713}" = lport=6959 | protocol=17 | dir=in | name=league of legends launcher |
"{9D6E2FDE-B80F-45D7-B3FB-2C457FA1C5D0}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{9DB71C50-457B-4CE7-A22D-3EAF2CD348A8}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe |
"{9FF87459-2AD2-4E0C-9996-5A13DDBAB29D}" = lport=6920 | protocol=17 | dir=in | name=league of legends launcher |
"{A1128DEA-1501-4E2D-B85C-62933788F49D}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{A6BE2B96-ADAD-4D3C-BAA0-35412B3E4EA2}" = lport=6948 | protocol=17 | dir=in | name=league of legends launcher |
"{A99E573D-68C4-4A70-A6E2-A7A2E8B113B3}" = lport=6974 | protocol=6 | dir=in | name=league of legends launcher |
"{A9E89530-A352-4895-902F-D0E849C3B456}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{ACA21DC2-EE70-4AC6-89BE-B45FE9F1DAE1}" = lport=6924 | protocol=17 | dir=in | name=league of legends launcher |
"{AFF5B47F-4CD7-4776-8A76-5CAE30CC2B02}" = rport=137 | protocol=17 | dir=out | app=system |
"{B1EF4E2B-9AF3-49CB-9310-D09C094D04C7}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{B2F0B60C-9B16-48C9-AF5D-DF1FE7DD07C9}" = lport=8370 | protocol=17 | dir=in | name=league of legends launcher |
"{B5EA5BC2-80B4-41D8-A65D-42BA755241E1}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{BA6AE65C-9CB4-4473-946E-AAC7AA748F9E}" = lport=6977 | protocol=17 | dir=in | name=league of legends launcher |
"{BB338CD7-5380-4D10-A06D-C486F3EEEB01}" = lport=8370 | protocol=6 | dir=in | name=league of legends launcher |
"{BDA0D68C-A584-4F62-8452-59E7F10DDF0D}" = lport=6882 | protocol=6 | dir=in | name=league of legends launcher |
"{BDB54490-9CFC-4E34-9156-BAD332B022A8}" = lport=6902 | protocol=17 | dir=in | name=league of legends launcher |
"{BF209383-677F-478F-800A-AFD3D0B44F44}" = lport=6924 | protocol=6 | dir=in | name=league of legends launcher |
"{BF9564E5-A66F-4CDC-924E-A3639F5C4EE5}" = lport=6967 | protocol=17 | dir=in | name=league of legends launcher |
"{C050DE37-8476-4A28-98EA-1B0FBAA553F5}" = lport=4482 | protocol=6 | dir=in | name=blackberry desktop software wireless music sync data transfer |
"{C56FAF79-B45B-4638-A3A3-59AF7340C87B}" = lport=6977 | protocol=6 | dir=in | name=league of legends launcher |
"{C8A65044-C129-4283-9D16-EDBDBCA9AA82}" = lport=138 | protocol=17 | dir=in | app=system |
"{C90F8A9F-427C-444F-982E-1207971FFF09}" = lport=6995 | protocol=6 | dir=in | name=league of legends launcher |
"{CACD2BD1-1E38-4502-B022-7BCB213D8429}" = lport=8393 | protocol=17 | dir=in | name=league of legends lobby |
"{CB63AA1E-0FEF-446E-910D-20A86509A35F}" = lport=6907 | protocol=17 | dir=in | name=league of legends launcher |
"{CE4B5B83-82EF-4FED-88FA-4BC81C6E5539}" = lport=6962 | protocol=17 | dir=in | name=league of legends launcher |
"{CF839D8D-504C-420B-AB3F-F2E46013B699}" = lport=6978 | protocol=6 | dir=in | name=league of legends launcher |
"{CF85C910-36D9-42A6-AC79-F03B2F4067E1}" = lport=6889 | protocol=6 | dir=in | name=league of legends launcher |
"{D515A40E-D738-4982-A471-92AFDC596A66}" = lport=6973 | protocol=17 | dir=in | name=league of legends launcher |
"{D548161C-5BFF-4F38-8ED3-96F7C0228E1F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{D5A38ADE-2DBB-444F-B283-7CEEEB01A29F}" = rport=445 | protocol=6 | dir=out | app=system |
"{D5C49553-059E-4348-A694-EED2DC1F4E94}" = lport=6941 | protocol=6 | dir=in | name=league of legends launcher |
"{D5E1C104-CCB9-4B85-B39D-00D27CDAC149}" = lport=6922 | protocol=17 | dir=in | name=league of legends launcher |
"{D67A8D26-3471-4C14-A933-7CD78CB8B32D}" = lport=6975 | protocol=17 | dir=in | name=league of legends launcher |
"{DB363C39-DC2E-496E-AA79-4133A22E1A0D}" = lport=6982 | protocol=17 | dir=in | name=league of legends launcher |
"{DB7BAB0F-BB85-442F-AFC0-3E9E16560EC8}" = lport=6982 | protocol=6 | dir=in | name=league of legends launcher |
"{DDAC2B4F-EE33-4C6A-9DD5-14EF13DE5E64}" = lport=6990 | protocol=17 | dir=in | name=league of legends launcher |
"{DDB6A1AC-100D-4F63-AE2E-2DF3BF520984}" = lport=6956 | protocol=6 | dir=in | name=league of legends launcher |
"{E051406E-B004-4980-BFBE-2202F5418306}" = lport=6966 | protocol=6 | dir=in | name=league of legends launcher |
"{E1BC73B3-238D-4BD3-9355-02E601C3CCA9}" = lport=8370 | protocol=17 | dir=in | name=league of legends launcher |
"{E26ABB04-2DF0-42D0-A4C1-0D3104336470}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{E2C4E10B-20D3-4C5B-958C-DE17FDBBA19D}" = lport=6948 | protocol=6 | dir=in | name=league of legends launcher |
"{E4AE6ED9-38AF-4024-BCD1-8BAB0C915063}" = lport=6997 | protocol=6 | dir=in | name=league of legends launcher |
"{E500DEF2-CCF7-4B6F-AE41-3910AC36CDA4}" = lport=10243 | protocol=6 | dir=in | app=system |
"{E55520C8-3613-49BD-90DC-B57E637B4DE2}" = lport=6952 | protocol=17 | dir=in | name=league of legends launcher |
"{E5965BC3-687C-40E4-98CF-2899B3C100B6}" = lport=8390 | protocol=17 | dir=in | name=league of legends game client |
"{E99FC1EA-4D78-4A2D-B83F-07DAF93F7B44}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{EDA149BF-CFA0-4CEF-9F41-BBBE9AE27EC5}" = lport=6893 | protocol=17 | dir=in | name=league of legends launcher |
"{EE159C71-EEB5-4652-8D38-9B10248E745A}" = lport=6949 | protocol=6 | dir=in | name=league of legends launcher |
"{F0100E40-F55D-4ADB-AE60-CB458125A24F}" = lport=6881 | protocol=17 | dir=in | name=league of legends launcher |
"{F17B7150-5A9A-48F7-84A1-CBB3D74A5A57}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{F41C8922-8838-49D3-9481-8D7963F0D1B6}" = lport=6991 | protocol=17 | dir=in | name=league of legends launcher |
"{F9B4F9D2-9BAE-4118-8A9F-02A0EFD64DD8}" = lport=6921 | protocol=6 | dir=in | name=league of legends launcher |
"{FDDAE7F9-FDE1-4B6A-900C-338225F33DA1}" = lport=6916 | protocol=17 | dir=in | name=league of legends launcher |
"{FE29D95C-5D47-4EDD-9CD4-DFED769E9144}" = lport=6912 | protocol=6 | dir=in | name=league of legends launcher |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{02CED495-7B30-4771-83C2-78B478E6F354}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{03C51AA4-99EC-46F8-8CF9-41F48DA54A11}" = protocol=17 | dir=in | app=c:\program files (x86)\tunngle\launcher.exe |
"{06BE0F1C-61A3-43C7-8FFB-F15558DD669F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{07ACC848-C187-466A-9DEC-E6BA6FB702D6}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe |
"{07D2D219-A862-481F-B4AF-AB6AEE56ABDB}" = protocol=6 | dir=in | app=c:\program files (x86)\tunngle\tnglctrl.exe |
"{0C750D5F-7958-4874-BDDF-E415992744AB}" = protocol=6 | dir=in | app=c:\program files (x86)\acer\clear.fi media\windowsupnpmv.exe |
"{12D80A72-4749-4D39-87F6-FEA728579CC5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{12F36E2A-7DC5-40C6-9586-70C906692FF2}" = protocol=6 | dir=in | app=c:\program files (x86)\tunngle\tunngle.exe |
"{1B5A5EEA-35E5-42E3-9772-05EE3FE76932}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{2023212F-05FC-4744-B252-A1FF2298AC57}" = protocol=17 | dir=in | app=c:\program files (x86)\tunngle\tnglctrl.exe |
"{21C26A88-2FCD-44C2-AB7B-6E15B4DE5D9F}" = protocol=6 | dir=in | app=d:\program files (x86)\league of legends ph\gamedata\apps\lolph\game\league of legends.exe |
"{23969739-BEBC-4B94-93CB-85588E80F693}" = protocol=17 | dir=in | app=c:\program files (x86)\tunngle\tnglctrl.exe |
"{26DE5B63-AB60-442C-A133-BD9C36CE9A56}" = protocol=1 | dir=in | [email protected],-28543 |
"{27F8E064-FC79-4CDE-9C06-39E9A827826E}" = dir=in | app=c:\program files (x86)\garena plus\ggdllhost.exe |
"{28E2B39A-CEA5-4611-BFC1-B14D355B7714}" = protocol=6 | dir=in | app=c:\users\acer\downloads\elsphinstaller.exe |
"{2A4BE2D3-8E7E-4295-BBA9-02BBFAA42CAC}" = protocol=6 | dir=in | app=d:\program files (x86)\elsword ph\gamedata\apps\elsph\data\x2.exe |
"{3383BA2E-134D-4486-A19A-D0160E793028}" = protocol=6 | dir=in | app=c:\program files (x86)\acer\clear.fi photo\dmcdaemon.exe |
"{3A8A8FBC-618B-49CC-87FC-4C16963A47A9}" = protocol=6 | dir=in | app=c:\program files (x86)\tunngle\launcher.exe |
"{3DB9CDE9-04A8-47C4-8DE5-BB038FBABC03}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{48C510B7-06F7-4E7D-B9EC-7393A6ED08AD}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{59A909EE-E707-45F3-ABA5-F4EE0FBB21F1}" = protocol=1 | dir=out | [email protected],-28544 |
"{5CC17F1D-79FC-4F19-9BA5-E29BBBA1C3E4}" = dir=in | app=c:\program files (x86)\garena plus\room\garena_room.exe |
"{63CEBCC0-9C3A-49F1-AFEB-005D77F94B50}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{65D583E3-21E9-4583-9ED4-5F18406282B1}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{66CBEAE2-0CA7-453F-AED4-B4021CFA5496}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe |
"{67741C7C-A06C-475D-83A1-06B3FA08D8EB}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe |
"{6F7DF193-B5D8-43A9-AB07-EAA9FE256C51}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{778BFB84-3BF3-402F-B28D-382ECA826EE5}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{7AAF8B4A-290F-4805-9F7E-906A7B0EBA9D}" = protocol=17 | dir=in | app=c:\program files (x86)\tunngle\tunngle.exe |
"{7C5985E2-A367-4A75-9739-8CADD0DA04D2}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{7D6AC9DF-26A0-4D3C-9848-82BABA3B81BF}" = protocol=17 | dir=in | app=d:\program files (x86)\elsword ph\gamedata\apps\elsph\data\x2.exe |
"{7FB3BDB3-957E-4199-AB83-EA24C251F153}" = protocol=17 | dir=in | app=c:\users\acer\downloads\elsphinstaller.exe |
"{82F959A6-2E4A-4261-9D94-F8E82D2F5E50}" = protocol=6 | dir=in | app=c:\program files (x86)\tunngle\tnglctrl.exe |
"{8379C005-AAD1-4D38-AC6F-A36CEC17810A}" = protocol=17 | dir=in | app=d:\program files (x86)\league of legends ph\gamedata\apps\lolph\air\lolclient.exe |
"{8D0492C0-2B21-4612-A007-B596E6EDA650}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{9096F0D2-DED9-4AA4-AB48-B3DCDFE96006}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{949C600F-E92A-4918-B946-DDE8DD6DFBB4}" = dir=in | app=c:\program files (x86)\acer\clear.fi sdk20\mvp\musicplayer.exe |
"{9C2A4C43-0DE2-4448-9B31-BDFC2D9049F2}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{A1A1C93D-2C83-4E2E-869F-2346A6F59C7F}" = dir=in | app=c:\users\acer\appdata\local\facebook\video\skype\facebookvideocalling.exe |
"{A4689B09-5DC6-48E0-BE55-BD861A532B55}" = protocol=17 | dir=in | app=c:\program files (x86)\acer\clear.fi photo\windowsupnp.exe |
"{ACEE2070-A3CC-4029-ACC9-A0670B8F6F57}" = protocol=58 | dir=in | [email protected],-28545 |
"{ADCB4E29-6F0A-47F2-8ABF-4B4F8F76E755}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{AEE5DB5E-3429-4105-B886-B2D28FB43F3F}" = protocol=6 | dir=in | app=c:\program files (x86)\tunngle\tunngle.exe |
"{B640E2E4-58B4-47B4-8AB3-CA680F984709}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{B70507D4-6165-4BC7-A82A-726D42837D4D}" = protocol=17 | dir=in | app=c:\program files (x86)\research in motion\blackberry desktop\rim.desktop.exe |
"{B7634DF5-C4CD-471D-A940-E4EE9CC4AC81}" = dir=in | app=c:\program files (x86)\acer\clear.fi sdk20\mvp\videoplayer.exe |
"{B99CCFBB-403B-4E08-97F3-A28A715EDA4B}" = protocol=6 | dir=in | app=d:\program files (x86)\league of legends ph\gamedata\apps\lolph\lol.exe |
"{BA117C98-8457-422A-AD49-97F700064DC6}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe |
"{BCBDC551-6C78-4BE6-9014-5BCBBA20E62C}" = dir=in | app=c:\program files (x86)\nokia\nokia suite\nokiasuite.exe |
"{BF01628D-7AC7-4D02-8B88-80FD5886D1B5}" = protocol=6 | dir=in | app=d:\program files (x86)\league of legends ph\gamedata\apps\lolph\air\lolclient.exe |
"{BF44AF4C-6294-4689-B678-EDED3939EA81}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe |
"{C09070BA-56DE-47A5-832D-440CA15BAB9D}" = protocol=6 | dir=in | app=c:\program files (x86)\acer\clear.fi media\dmcdaemon.exe |
"{C147FE3F-1F06-4CB3-ACD4-6FC5AC26AF80}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{C4674AEA-DC31-4708-BA49-BF973C902AF5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{C7152B89-BDD0-4D3E-ADCA-6B6E34C9C5A9}" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"{C762DB56-2B93-40D0-B319-6C38D11CB2F5}" = protocol=17 | dir=in | app=c:\users\acer\downloads\lolinstaller.exe |
"{C8AD3B5C-A54B-40E5-8AA1-FC7E1619471A}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{CFDECC85-3724-4784-80A9-BB495C88A366}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{D21CB2D6-DE92-4D1F-87F2-F7250E0616BB}" = protocol=58 | dir=out | [email protected],-28546 |
"{D5640878-34BB-4B68-A8CD-8ABDBD4842D7}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{D59C7BC5-216D-4F1E-847B-A63B4AD51752}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{D5F5C002-B58A-43F8-816F-84A01D11D94B}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{D60947AA-2530-4656-A18B-168B5C48B68E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{D6EA9C2D-27DC-494C-8392-9CD4359EB936}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{D6F5B0A8-A5EA-44ED-ABBC-1EB5454321DA}" = protocol=17 | dir=in | app=c:\program files (x86)\acer\clear.fi media\dmcdaemon.exe |
"{D7E9ADB8-6FF8-4E1D-9003-584343D9ED7D}" = protocol=17 | dir=in | app=c:\program files (x86)\tunngle\tunngle.exe |
"{D827C6F9-8550-4006-B147-3C04993713A2}" = protocol=17 | dir=in | app=d:\program files (x86)\league of legends ph\gamedata\apps\lolph\game\league of legends.exe |
"{DD503EAF-EC3D-433D-A759-81DA8909826A}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{E36EC218-5936-49A3-B641-3576238ED068}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe |
"{E43C76B4-9B8E-4F5F-98A1-10BED787B6C3}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{E4A1E68A-1F1B-4B76-9A1B-6DCF0001AA44}" = protocol=17 | dir=in | app=d:\program files (x86)\league of legends ph\gamedata\apps\lolph\lol.exe |
"{E688C54E-DBFD-46EC-8EA4-091CB2EDFC2B}" = protocol=17 | dir=in | app=c:\program files (x86)\acer\clear.fi media\windowsupnpmv.exe |
"{E7C00E90-7122-4AA9-81F6-C0A0472A5618}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe |
"{E888C66C-071A-4196-BF43-85B23F05E181}" = protocol=6 | dir=in | app=c:\users\acer\downloads\lolinstaller.exe |
"{EB40A11D-44AB-4FF9-8981-1D3535227955}" = protocol=6 | dir=out | app=system |
"{EF12A1D7-83F6-484D-826B-FABCBBEA3F42}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{F69338A2-F992-41DF-AD5E-FCB40A076384}" = protocol=6 | dir=in | app=c:\program files (x86)\acer\clear.fi photo\windowsupnp.exe |
"{F8BD7770-0E14-40DC-8DEB-AA9DAA2F3B1F}" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"{F921F520-BD88-4AD3-A21F-74B1CE26546B}" = protocol=6 | dir=in | app=c:\program files (x86)\research in motion\blackberry desktop\rim.desktop.exe |
"{FF077B1E-7214-45EA-BDB7-B08728D97CCF}" = protocol=17 | dir=in | app=c:\program files (x86)\acer\clear.fi photo\dmcdaemon.exe |
"TCP Query User{110E58B8-DFEE-446E-943D-3F304933B7C2}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"TCP Query User{1226EC0C-D5DE-4646-8970-C2ACEE9B6FC8}D:\program files (x86)\counter-strike 1.6\hl.exe" = protocol=6 | dir=in | app=d:\program files (x86)\counter-strike 1.6\hl.exe |
"TCP Query User{18AAACFF-637B-4488-AF61-1E79C1273A48}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"TCP Query User{41B59353-1733-4D2B-8FF5-DA97B1CBAD6E}\\acer-pc\users\public\sacred citadel\sacredcitadel.exe" = protocol=6 | dir=in | app=\\acer-pc\users\public\sacred citadel\sacredcitadel.exe |
"TCP Query User{4B0DED37-13BD-4D92-8C97-74E6968A49CD}C:\program files (x86)\garena plus\garenamessenger.exe" = protocol=6 | dir=in | app=c:\program files (x86)\garena plus\garenamessenger.exe |
"TCP Query User{97F7713A-3027-4963-9B24-C69B5444DBA7}C:\users\acer\downloads\yeah men\dead island\deadislandgame.exe" = protocol=6 | dir=in | app=c:\users\acer\downloads\yeah men\dead island\deadislandgame.exe |
"TCP Query User{A3D02377-8BF3-4C01-941A-6704FD6CA8CA}C:\program files (x86)\java\jre7\bin\java.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\java.exe |
"TCP Query User{A832D2E7-1831-473E-99F5-FB191D2D2846}D:\program files (x86)\counter-strike 1.6\hl.exe" = protocol=6 | dir=in | app=d:\program files (x86)\counter-strike 1.6\hl.exe |
"TCP Query User{B0E3C7D4-7002-4AFC-BF2A-D8F8A4453BAF}D:\lolreplay\lolreplay.exe" = protocol=6 | dir=in | app=d:\lolreplay\lolreplay.exe |
"TCP Query User{EBFF7BAD-2002-427A-96CE-BC09840792A3}D:\program files (x86)\activision\rome - total war\rometw.exe" = protocol=6 | dir=in | app=d:\program files (x86)\activision\rome - total war\rometw.exe |
"TCP Query User{FFD7FD68-C238-43BB-9CA6-D6EA3FF4EEF8}C:\program files (x86)\garena plus\bbtalk\bbtalk.exe" = protocol=6 | dir=in | app=c:\program files (x86)\garena plus\bbtalk\bbtalk.exe |
"UDP Query User{0065CD28-7C94-4098-BA39-F184F9F35D90}D:\program files (x86)\activision\rome - total war\rometw.exe" = protocol=17 | dir=in | app=d:\program files (x86)\activision\rome - total war\rometw.exe |
"UDP Query User{3BC461E2-5E17-4043-921C-97BAF20519E2}C:\program files (x86)\garena plus\garenamessenger.exe" = protocol=17 | dir=in | app=c:\program files (x86)\garena plus\garenamessenger.exe |
"UDP Query User{4D7F0D06-3631-419E-AF36-3887D82B48B0}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"UDP Query User{5D5E0196-62F8-4F01-A919-AC0C82914131}C:\program files (x86)\java\jre7\bin\java.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\java.exe |
"UDP Query User{7F9C9C5F-E1F5-4A01-BFEF-62733B462325}C:\program files (x86)\garena plus\bbtalk\bbtalk.exe" = protocol=17 | dir=in | app=c:\program files (x86)\garena plus\bbtalk\bbtalk.exe |
"UDP Query User{AA83C035-82F4-458A-925B-E77C5F22CE1C}D:\program files (x86)\counter-strike 1.6\hl.exe" = protocol=17 | dir=in | app=d:\program files (x86)\counter-strike 1.6\hl.exe |
"UDP Query User{CAEE377A-2179-4476-93E9-726FC8DA7A5E}C:\users\acer\downloads\yeah men\dead island\deadislandgame.exe" = protocol=17 | dir=in | app=c:\users\acer\downloads\yeah men\dead island\deadislandgame.exe |
"UDP Query User{EC90F3FE-7016-4B57-9502-B9DFC3BC0D26}D:\lolreplay\lolreplay.exe" = protocol=17 | dir=in | app=d:\lolreplay\lolreplay.exe |
"UDP Query User{FA48E647-10BB-4446-8682-48482ECD0261}D:\program files (x86)\counter-strike 1.6\hl.exe" = protocol=17 | dir=in | app=d:\program files (x86)\counter-strike 1.6\hl.exe |
"UDP Query User{FC2A9D47-FEDE-456C-96E3-A8078D584738}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"UDP Query User{FEB5E624-9D90-4449-BD7F-0632D11408B7}\\acer-pc\users\public\sacred citadel\sacredcitadel.exe" = protocol=17 | dir=in | app=\\acer-pc\users\public\sacred citadel\sacredcitadel.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{09536BA1-E498-4CC3-B834-D884A67D7E34}" = Intel® Trusted Connect Service Client
"{0E5D76AD-A3FB-48D5-8400-8903B10317D3}" = iTunes
"{180C8888-50F1-426B-A9DC-AB83A1989C65}" = Windows Live Language Selector
"{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant
"{1AD147D0-BE0E-3D6C-AC11-64F6DC4163F1}" = Microsoft .NET Framework 4.5
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{206BD2C5-DE08-4577-A0D7-D441A79D5A3A}" = Windows Live Remote Client Resources
"{3C1F302A-CC25-488D-9C24-A76B95BC916F}" = Nitro Reader 3
"{4D668D4F-FAA2-4726-834C-31F4614F312E}" = MSVC80_x64_v2
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{656DEEDE-F6AC-47CA-A568-A1B4E34B5760}" = Windows Live Remote Service Resources
"{680EDA59-9266-44B4-949E-0C24F65DFF82}" = Microsoft_VC100_CRT_SP1_x64
"{6D3B2650-6767-49B6-A63E-CD410C653B05}" = Intel Processor Diagnostic Tool 64Bit
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{825C7D3F-D0B3-49D5-A42B-CBB0FBE85E99}" = Windows Live Remote Client Resources
"{847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}" = Windows Live Remote Client Resources
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010
"{90140000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2010
"{90140000-006D-0409-1000-0000000FF1CE}" = Microsoft Office Click-to-Run 2010
"{90140000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5
"{93A07A0D-454E-43d1-86A9-5DE9C5F4411A}" = Shadow Defender
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}" = MSVC90_x64
"{AE91E0F3-C49A-4EF4-8B98-A07BD409EB90}" = Windows Live Remote Service Resources
"{D70884EA-E2CE-4539-91DB-4766CC1E5F5F}" = Apple Mobile Device Support
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client
"{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service
"{E102B843-786A-4F58-AF75-6504570E207B}" = Microsoft Security Client
"{FAA3933C-6F0D-4350-B66B-9D7F7031343E}" = Windows Live Remote Service Resources
"62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F" = Windows Driver Package - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0)
"72A50F48CC5601190B9C4E74D81161693133E7F7" = Windows Driver Package - Nokia Modem (02/25/2011 7.01.0.9)
"CCleaner" = CCleaner
"E0AC723A3DE3A04256288CADBBB011B112AED454" = Windows Driver Package - Nokia Modem (02/25/2011 4.7)
"GIMP-2_is1" = GIMP 2.8.6
"Microsoft Security Client" = Microsoft Security Essentials
"Recuva" = Recuva
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"VLC media player" = VLC media player 2.0.2
"WinRAR archiver" = WinRAR 4.20 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{000F2A10-9CDF-47BF-9CF2-9AC87567B433}" = Windows Live Photo Common
"{03241D8D-2217-42F7-9FCB-6A68D141C14D}" = Windows Live 软件包
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}" = Backup Manager V3
"{10B9C608-BF7C-4CCF-A658-C01D969DCA21}_is1" = gpedt.msc 1.0
"{192A227B-A8C8-4C6D-B939-21FAEB007E1E}" = Google Drive
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}" = YTD Video Downloader 3.9
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 45
"{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Qualcomm Atheros WiFi Driver Installation
"{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1
"{29373274-977E-413C-A4DE-DC0F8E80C429}" = Nokia Connectivity Cable Driver
"{29373E24-AC72-424E-8F2A-FB0F9436F21F}" = Windows Live Photo Common
"{2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}" = Windows Live Messenger
"{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}" = Microsoft XNA Framework Redistributable 4.0
"{2C865FB0-051E-4D22-AC62-428E035AEAF0}" = Windows Live Mesh
"{2D49C296-BCCA-4800-BAF6-A0269EBDCF74}" = Windows Live Messenger
"{317D56AC-0DB3-48F5-929A-42032DAC9AD7}" = Windows Live Writer
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{368BEC2C-B7A2-4762-9213-2D8465D533CA}" = Windows Live UX Platform Language Pack
"{3DB0448D-AD82-4923-B305-D001E521A964}" = Acer ePower Management
"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel® Rapid Storage Technology
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.11
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{588CE0C0-860B-49A8-AFCF-3C69465B345F}" = Windows Live Mesh
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel® Management Engine Components
"{6807427D-8D68-4D30-AF5B-0B38F8F948C8}" = Windows Live Writer Resources
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6B0DC474-A5F0-4091-8913-25E9DA2E7F53}" = Asoftech Photo Recovery
"{6C772996-BFF3-3C8C-860B-B3D48FF05D65}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106
"{6CB36609-E3A6-446C-A3C1-C71E311D2B9C}" = Windows Live Movie Maker
"{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}" = PC Connectivity Solution
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7115EEBC-DA7B-434C-B81C-EA5B26EA9A94}" = Windows Live Writer Resources
"{72199E33-4F2A-4B7F-8E25-95DDDD50A678}" = Acer System Information
"{753F0A72-59C3-41CE-A36A-F2DF2079275C}" = Windows Live Mail
"{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7B982EBD-D017-4527-BF1A-FC489EC6B100}" = Windows Live 照片库
"{7F811A54-5A09-4579-90E1-C93498E230D9}" = Acer eRecovery Management
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}" = Nokia PC Suite
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8e70e4e1-06d7-470b-9f74-a51bef21088e}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106
"{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010
"{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{047B0968-E622-4FAA-9B4B-121FA109EDDE}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2010
"{90140000-0015-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2010
"{90140000-0016-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2010
"{90140000-0018-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2010
"{90140000-0019-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2010
"{90140000-001A-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2010
"{90140000-001B-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUS_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010
"{90140000-001F-040C-0000-0000000FF1CE}_Office14.PROPLUS_{46298F6A-1E7E-4D4A-B5F5-106A4F0E48C6}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010
"{90140000-001F-0C0A-0000-0000000FF1CE}_Office14.PROPLUS_{DEA87BE2-FFCC-4F33-9946-FCBE55A1E998}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{967EF02C-5C7E-4718-8FCB-BDC050190CCF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002A-0409-1000-0000000FF1CE}_Office14.PROPLUS_{D6C6B46A-6CE1-4561-84A0-EFD58B8AB979}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010
"{90140000-002C-0409-0000-0000000FF1CE}_Office14.PROPLUS_{7CA93DF4-8902-449E-A42E-4C5923CFBDE3}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2010
"{90140000-0044-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010
"{90140000-006E-0409-0000-0000000FF1CE}_Office14.PROPLUS_{4560037C-E356-444A-A015-D21F487D809E}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2010
"{90140000-00A1-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2010
"{90140000-00BA-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010
"{90140000-0115-0409-0000-0000000FF1CE}_Office14.PROPLUS_{4560037C-E356-444A-A015-D21F487D809E}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0116-0409-1000-0000000FF1CE}_Office14.PROPLUS_{D6C6B46A-6CE1-4561-84A0-EFD58B8AB979}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2010
"{90140000-0117-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140011-0066-0409-0000-0000000FF1CE}" = Microsoft Office Starter 2010 - English
"{903EDF14-4E28-4463-AA5E-4AEE71C0263B}" = Windows Live Movie Maker
"{913F5509-372B-4796-980B-D1687F76B489}" = Asoftech Video Converter
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{A0382E3C-7384-429A-9BFA-AF5888E5A193}" = Acer Crystal Eye Webcam
"{A0B91308-6666-4249-8FF6-1E11AFD75FE1}" = Windows Live Mail
"{A0C91188-C88F-4E86-93E6-CD7C9A266649}" = Windows Live Mesh
"{A3AD65CC-B2CE-49da-AE4E-CC2ECF4EC0F8}" = clear.fi SDK - MVP 2
"{A6C48A9F-694A-4234-B3AA-62590B668927}" = Intel® Manageability Engine Firmware Recovery Agent
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
"{AC76BA86-7AD7-FFFF-7B44-AA0000000001}" = Adobe Reader X (10.1.0) MUI
"{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86
"{AFF7E080-1974-45BF-9310-10DE1A1F5ED0}" = Adobe AIR
"{B1C2398C-6FAB-46D1-806C-5942F0829994}" = ParetoLogic Data Recovery
"{B5AD89F2-03D3-4206-8487-018298007DD0}" = clear.fi Photo
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{B92C5909-1D37-4C51-8397-A28BB28E5DC3}" = Facebook Video Calling 1.2.0.287
"{BAEE89D5-6E87-4F89-9603-A1C100479181}" = Windows Live Messenger
"{BCC315E7-2E8F-4EFD-8A0B-F8F276FE73F2}" = YTD Toolbar v6.2
"{BE5B0450-DCCB-4FE9-93E2-3B38D88A745B}" = BlackBerry Desktop Software 7.1
"{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader
"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
"{CCE825DB-347A-4004-A186-5F4A6FDD8547}" = Apple Application Support
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D299197D-CDEA-41A6-A363-F532DE4114FD}" = Windows Live UX Platform Language Pack
"{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}" = NTI Media Maker 9
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{DAF7BB88-6392-40aa-A714-8392C4BDBD2C}" = clear.fi SDK- Movie 2
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E3739848-5329-48E3-8D28-5BBD6E8BE384}" = CyberLink MediaEspresso
"{E3B64CC5-C011-40C0-92BC-7316CD5E5688}" = Microsoft_VC100_CRT_SP1_x86
"{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
"{E62E0550-C098-43A2-B54B-03FB1E634483}" = Windows Live Writer
"{E824E81C-80A4-3DFF-B5F9-4842A9FF5F7F}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106
"{E9AF1707-3F3A-49E2-8345-4F2D629D0876}" = clear.fi Media
"{EDB188F5-D8E8-42EE-89E0-F212DA48CB81}" = Nokia Suite
"{EE171732-BEB4-4576-887D-CB62727F01CA}" = Acer Updater
"{EEF99142-3357-402C-B298-DEC303E12D92}" = Windows Live 影像中心
"{EF7EAB13-46FC-49DD-8E3C-AAF8A286C5BB}" = Windows Live 程式集
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel® Processor Graphics
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F77EF646-19EB-11E1-9A9E-984BE15F174E}" = Evernote v. 4.5.2
"{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel® Control Center
"{FCB3772C-B7D0-4933-B1A9-3707EBACC573}" = Intel® SDK for OpenCL - CPU Only Runtime Package
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"Acer Registration" = Acer Registration
"Acer Screensaver" = Acer ScreenSaver
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"BlackBerry_Desktop" = BlackBerry Desktop Software 7.1
"DAEMON Tools Ultra" = DAEMON Tools Ultra
"Driver Genius Professional Edition_is1" = Driver Genius Professional Edition
"ELSWORD" = Garena - ELSWORD
"Faster Than Light_is1" = Faster Than Light
"Identity Card" = Identity Card
"InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}" = Acer Backup Manager
"InstallShield_{A0382E3C-7384-429A-9BFA-AF5888E5A193}" = Acer Crystal Eye Webcam
"InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}" = NTI Media Maker 9
"InstallShield_{E3739848-5329-48E3-8D28-5BBD6E8BE384}" = CyberLink MediaEspresso
"LManager" = Launch Manager
"LoLPH" = Garena - League of Legends
"LOLReplay" = LOLReplay
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.75.0.1300
"Mozilla Firefox 15.0.1 (x86 en-US)" = Mozilla Firefox 15.0.1 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Nokia PC Suite" = Nokia PC Suite
"Nokia Suite" = Nokia Suite
"Office14.Click2Run" = Microsoft Office Click-to-Run 2010
"Office14.PROPLUS" = Microsoft Office Professional Plus 2010
"PandoraRecovery" = PandoraRecovery (Remove Only)
"PhotoScape" = PhotoScape
"PowerISO" = PowerISO
"Razer Game Booster_is1" = Razer Game Booster
"RealPlayer 15.0" = RealPlayer
"Recettear: An Item Shop's Tale_is1" = Recettear: An Item Shop's Tale
"Smart Bro" = Smart Bro
"Steam App 206980" = War of the Roses Beta
"TeamViewer 8" = TeamViewer 8
"TechPowerUp GPU-Z" = TechPowerUp GPU-Z
"Tunngle beta_is1" = Tunngle beta
"Uplay" = Uplay
"Winamp" = Winamp
"WinLiveSuite" = Windows Live 程式集
"WinPcapInst" = WinPcap 4.1.2
"Zero Assumption Recovery_is1" = Zero Assumption Recovery Version 9

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-559359422-3810118987-1361560690-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"CopyTrans Suite" = CopyTrans Suite Remove Only
"Flux" = f.lux
"Google Chrome" = Google Chrome
"UnityWebPlayer" = Unity Web Player
"Winamp Detect" = Winamp Detector Plug-in

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 12/11/2013 12:52:06 AM | Computer Name = ACER-PC | Source = Bonjour Service | ID = 100
Description = ERROR: handle_resolve_request bad interfaceIndex 16

Error - 12/11/2013 12:52:06 AM | Computer Name = ACER-PC | Source = Bonjour Service | ID = 100
Description = ERROR: handle_resolve_request bad interfaceIndex 17

Error - 12/11/2013 12:52:06 AM | Computer Name = ACER-PC | Source = Bonjour Service | ID = 100
Description = ERROR: handle_resolve_request bad interfaceIndex 18

Error - 12/11/2013 12:52:06 AM | Computer Name = ACER-PC | Source = Bonjour Service | ID = 100
Description = ERROR: handle_resolve_request bad interfaceIndex 19

Error - 12/11/2013 12:52:06 AM | Computer Name = ACER-PC | Source = Bonjour Service | ID = 100
Description = ERROR: handle_resolve_request bad interfaceIndex 20

Error - 12/11/2013 12:52:06 AM | Computer Name = ACER-PC | Source = Bonjour Service | ID = 100
Description = ERROR: handle_resolve_request bad interfaceIndex 21

Error - 12/11/2013 12:52:06 AM | Computer Name = ACER-PC | Source = Bonjour Service | ID = 100
Description = ERROR: handle_resolve_request bad interfaceIndex 22

Error - 12/11/2013 12:52:06 AM | Computer Name = ACER-PC | Source = Bonjour Service | ID = 100
Description = ERROR: handle_resolve_request bad interfaceIndex 23

Error - 12/11/2013 12:52:06 AM | Computer Name = ACER-PC | Source = Bonjour Service | ID = 100
Description = ERROR: handle_resolve_request bad interfaceIndex 24

Error - 12/11/2013 12:52:14 AM | Computer Name = ACER-PC | Source = WinMgmt | ID = 10
Description =

[ System Events ]
Error - 12/9/2013 6:43:11 PM | Computer Name = ACER-PC | Source = DCOM | ID = 10010
Description =

Error - 12/10/2013 7:53:23 PM | Computer Name = ACER-PC | Source = Service Control Manager | ID = 7011
Description = A timeout (30000 milliseconds) was reached while waiting for a transaction
response from the eventlog service.

Error - 12/10/2013 7:54:23 PM | Computer Name = ACER-PC | Source = Service Control Manager | ID = 7011
Description = A timeout (30000 milliseconds) was reached while waiting for a transaction
response from the eventlog service.

Error - 12/10/2013 7:55:23 PM | Computer Name = ACER-PC | Source = Service Control Manager | ID = 7011
Description = A timeout (30000 milliseconds) was reached while waiting for a transaction
response from the eventlog service.

Error - 12/10/2013 7:56:23 PM | Computer Name = ACER-PC | Source = Service Control Manager | ID = 7011
Description = A timeout (30000 milliseconds) was reached while waiting for a transaction
response from the eventlog service.


< End of report >
  • 0

Advertisements


#32
godawgs

godawgs

    Teacher

  • Retired Staff
  • 8,228 posts

The Lag happens when i am playing Games
The sound stutters and it lags

And When im watching a Movie sometimes the sound stutters too

Well so far we haven't found any malware / infections causing the problem. It is most likely going to be an audio or video driver that needs to be updated. It could also be related to the additional video programs that have been installed on the system. Or the audio / video enhancement programs that have been or are still on the system. If the Driver Genius program automatically looks for and updates drivers, it could have installed an incompatible driver update.
Once the system is clean and we have checked the system services, if that issue still isn't resolved, you can start a topic in the Windows 7 operating system forum.


Windows Sidebar Advice

Your log shows Windows sidebar running. I recommend that you disable the sidebar.

Microsoft has discovered a security vulnerability in Windows Sidebar and Gadgets. If you are not aware of this, Windows Sidebar(gadgets) has the potential to compromise the security of a machine it is running on as mentioned here. So it would be best to disable this feature.

Download the Disable Windows Sidebar and Gadgets Fix-it on this page to your desktop.

Once downloaded, double-click on MicrosoftFixit50906.msi >> follow the prompts >> reboot your machine if not advised to do so.


Step-1.

Posted Image OTL Fix

Be advised that when the fix commences it will shut down all running processes and you may lose the desktop and icons, they will return on reboot

1. Please copy all of the text in the quote box below (Do Not copy the word Quote. To do this, highlight everything
inside the quote box (except the word Quote) , right click and click Copy.

:COMMANDS
[createrestorepoint]

:OTL
File not found (No name found) -- C:\PROGRAM FILES (X86)\COMMON FILES\SPIGOT\WTXPCOM
O4 - HKU\S-1-5-21-559359422-3810118987-1361560690-1000..\Run: [] File not found
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O16:64bit: - DPF: {CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Reg Error: Key error.)

:FILES
C:\PROGRAM FILES (X86)\COMMON FILES\SPIGOT
C:\Users\ACER\AppData\Roaming\uTorrent
C:\Users\ACER\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.40\agent\stub_data\stubinst_pkg_en-ap.cab
C:\Users\ACER\Downloads\cbsidlm-tr1_14-Breakaway_Audio_Enhancer-ORG-10824539.exe
C:\Users\ACER\Downloads\cbsidlm-tr1_14-Letasoft_Sound_Booster-ORG-75761429.exe
C:\Users\ACER\Downloads\Movies\The.Cave-RELOADED\rld-tcave.iso
D:\Downloads\cbsidlm-cbsi134-Delete_Doctor-SEO-10791266.exe
D:\Downloads\cbsidlm-cbsi134-Razer_Game_Booster-ORG-10913645.exe
D:\Downloads\Remove WAT.rar
netsh advfirewall reset /c
netsh advfirewall set allprofiles state on /c

:COMMANDS
[emptytemp]


Warning: This fix is relevant for this system and no other. If you are not this user, DO NOT follow these directions as they could damage the workings of your system.

2. Please re-open Posted Image on your desktop. To do that:
  • Vista and 7 users: Right click the icon and click Run as Administrator
3. Place the mouse pointer inside the Posted Image textbox, right click and click Paste. This will put the above script inside the textbox.
4. Click the Posted Image button.
5. Let the program run unhindered.
6. OTL may ask to reboot the machine. Please do so if asked.
7. Click the Posted Image button.
8. A report will open. Copy and Paste that report in your next reply.
9. If the machine reboots, the log will be located at C:\_OTL\MovedFiles\mmddyyyy_hhmmss.log, (where mmddyyyy_hhmmss is the date of the tool run).


Step-2.

Run Farbar Service Scanner

Please download Farbar Service Scanner to the desktop.
  • Right click the FSS.exe file, click Run as Administrator and OK any UAC prompts.

    Posted Image
  • Make sure the following options are checked:
    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center
    • Windows Update
    • Windows Defender
    • Other Services
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log to your reply.

Step-3.

Run Security Check

Download Security Check from here or here and save it to the Desktop.
  • Right click the SecurityCheck icon Posted Image and click Run as Administrator to run the application. Allow any UAC warnings.
  • Follow the onscreen instructions inside of the black box.

    Posted Image
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.

Step-4.

Check Devices

  • Click the Start Orb. In the Start Search box type devmgmt.msc and press the Enter key. Click OK or Continue on any UAC prompts. The Device Manager will open.
  • Look for any red Xs or yellow triangles or question marks or exclamation points next to any of the devices. If you see a device with such a mark, click the + beside the device and post a screen shot of it. To do that:
Capture a Screen Shot

  • When you have the screen up that you want to capture...click on the ALT key + PRT SCR key. This will put the screen shot in the clipboard.
  • Click on Start>> All Programs>> Accessories>> Paint. A Paint window will open up.
  • Left click in the white area and press the CTRL + V keys. This will paste the screen shot from the clipboard into the Paint window.
  • On the Menu bar at the top of the Paint window, click on File, click on Save and save it to your desktop.
  • In the File Name box, name it something related to the screen your capturing.
  • In the Save as type: box, BE SURE TO SAVE IT AS A .JPG ...otherwise it may be to big to upload.

Upload a file or Screen Shot and put it in a post:

  • Click the Add Reply button an the bottom of this post. That will load the Full Editor.
    • Type or copy and past any text you need in the post. When you get to the point where you want to attach a file:
  • Scroll down and click the Browse button. A new window will open where you can browse your computer for the file to upload..

    a. Select the file. This will put the file in the File Name box on the Choose File to Upload window.
    b. Click Open. This will put the file name and path in the Attachments section of the post editor.

  • Click the Attach This File button. This will open a new box under the Attachments section that has the file name.
  • To the right of the file name you will see Add to Post | Delete
  • Click on Add to Post. This will attach the file to the post.
  • Once you have completed your post and are ready to submit it, click the Add Reply button.
Some screen shots of the process can be seen here


Step-5.

Things For Your Next Post:
Please post the logs in the order requested. Do Not attach the logs unless I request it.
1. The OTL fixes log
2. The FSS.txt log
3. The checkup.txt log
4. Any screen shots of problem devices
  • 1

#33
frichieny

frichieny

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 192 posts
All processes killed
========== COMMANDS ==========
Restore point Set: OTL Restore Point
========== OTL ==========
Registry value HKEY_USERS\S-1-5-21-559359422-3810118987-1361560690-1000\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry value HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
Registry value HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
Starting removal of ActiveX control {CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA}
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA}\ not found.
========== FILES ==========
File\Folder C:\PROGRAM FILES (X86)\COMMON FILES\SPIGOT not found.
C:\Users\ACER\AppData\Roaming\uTorrent\ie folder moved successfully.
C:\Users\ACER\AppData\Roaming\uTorrent\dlimagecache folder moved successfully.
C:\Users\ACER\AppData\Roaming\uTorrent\apps folder moved successfully.
C:\Users\ACER\AppData\Roaming\uTorrent folder moved successfully.
C:\Users\ACER\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.40\agent\stub_data\stubinst_pkg_en-ap.cab moved successfully.
C:\Users\ACER\Downloads\cbsidlm-tr1_14-Breakaway_Audio_Enhancer-ORG-10824539.exe moved successfully.
C:\Users\ACER\Downloads\cbsidlm-tr1_14-Letasoft_Sound_Booster-ORG-75761429.exe moved successfully.
C:\Users\ACER\Downloads\Movies\The.Cave-RELOADED\rld-tcave.iso moved successfully.
D:\Downloads\cbsidlm-cbsi134-Delete_Doctor-SEO-10791266.exe moved successfully.
D:\Downloads\cbsidlm-cbsi134-Razer_Game_Booster-ORG-10913645.exe moved successfully.
D:\Downloads\Remove WAT.rar moved successfully.
< netsh advfirewall reset /c >
Ok.
C:\Users\ACER\Desktop\cmd.bat deleted successfully.
C:\Users\ACER\Desktop\cmd.txt deleted successfully.
< netsh advfirewall set allprofiles state on /c >
Ok.
C:\Users\ACER\Desktop\cmd.bat deleted successfully.
C:\Users\ACER\Desktop\cmd.txt deleted successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: ACER
->Temp folder emptied: 178070495 bytes
->Temporary Internet Files folder emptied: 7835175 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Google Chrome cache emptied: 6892351 bytes
->Flash cache emptied: 922 bytes

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Guest
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Ipad 2 wifi

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 28244191 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 131142 bytes

Total Files Cleaned = 211.00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 12122013_064022

Files\Folders moved on Reboot...
C:\Users\ACER\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\ACER\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.
File move failed. C:\Windows\temp\dsiwmis.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\LMutilps32.log scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
  • 0

#34
frichieny

frichieny

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 192 posts
Farbar Service Scanner Version: 05-12-2013
Ran by ACER (administrator) on 12-12-2013 at 06:47:17
Running from "C:\Users\ACER\Desktop"
Microsoft Windows 7 Home Premium Service Pack 1 (X64)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo.com is accessible.


Windows Firewall:
=============

Firewall Disabled Policy:
==================


System Restore:
============

System Restore Disabled Policy:
========================


Action Center:
============


Windows Update:
============

Windows Autoupdate Disabled Policy:
============================


Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is set to Demand. The default start type is Auto.
The ImagePath of WinDefend service is OK.
The ServiceDll of WinDefend service is OK.


Windows Defender Disabled Policy:
==========================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware"=DWORD:1


Other Services:
==============


File Check:
========
C:\Windows\System32\nsisvc.dll => MD5 is legit
C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit
C:\Windows\System32\dhcpcore.dll => MD5 is legit
C:\Windows\System32\drivers\afd.sys => MD5 is legit
C:\Windows\System32\drivers\tdx.sys => MD5 is legit
C:\Windows\System32\Drivers\tcpip.sys => MD5 is legit
C:\Windows\System32\dnsrslvr.dll => MD5 is legit
C:\Windows\System32\mpssvc.dll => MD5 is legit
C:\Windows\System32\bfe.dll => MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit
C:\Windows\System32\SDRSVC.dll => MD5 is legit
C:\Windows\System32\vssvc.exe => MD5 is legit
C:\Windows\System32\wscsvc.dll => MD5 is legit
C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit
C:\Windows\System32\wuaueng.dll => MD5 is legit
C:\Windows\System32\qmgr.dll => MD5 is legit
C:\Windows\System32\es.dll => MD5 is legit
C:\Windows\System32\cryptsvc.dll => MD5 is legit
C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
C:\Windows\System32\ipnathlp.dll => MD5 is legit
C:\Windows\System32\iphlpsvc.dll => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit


**** End of log ****
  • 0

#35
frichieny

frichieny

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 192 posts
Results of screen317's Security Check version 0.99.77
Windows 7 Service Pack 1 x64
Internet Explorer 10 Out of date!
``````````````Antivirus/Firewall Check:``````````````
Windows Firewall Enabled!
Microsoft Security Essentials
(On Access scanning disabled!)
`````````Anti-malware/Other Utilities Check:`````````
Malwarebytes Anti-Malware version 1.75.0.1300
Java 7 Update 45
Adobe Flash Player 11.9.900.117
Adobe Reader 10.1.0 Adobe Reader out of Date!
Mozilla Firefox 15.0.1 Firefox out of Date!
Google Chrome 29.0.1547.76
Google Chrome 30.0.1599.69
````````Process Check: objlist.exe by Laurent````````
Microsoft Security Essentials MSMpEng.exe
Microsoft Security Essentials msseces.exe
Malwarebytes Anti-Malware mbamservice.exe
Malwarebytes Anti-Malware mbamgui.exe
Malwarebytes' Anti-Malware mbamscheduler.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C: 1%
````````````````````End of Log``````````````````````
  • 0

#36
frichieny

frichieny

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 192 posts
Good morning sir :) I dont think there are any marks

Attached Thumbnails

  • Geekstogo.jpg

Edited by frichieny, 11 December 2013 - 05:04 PM.

  • 0

#37
godawgs

godawgs

    Teacher

  • Retired Staff
  • 8,228 posts
Let's check the system files and the and the file system on the hard disk for errors.


Step-1.

Delete Old SFC Log and run SFC

  • Open an elevated command prompt. To do that:
    • Click Start, click on All Programs and Accessories, then right click on Command Prompt and click on Run as administrator. (See screenshot below)

    Posted Image
  • A command window will open like the image below:

    Posted Image

  • Type the following and press ENTER after each line:
    cd  \windows\Logs\cbs
    
    copy  cbs.log  cbs.old
    
    del  cbs.log
    
    

    Back at the blinking cursor:
  • Type or copy and paste the following command and press Enter:

    sfc /scannow

    Posted Image

    The sfc /scannow command scans all protected system files and replaces incorrect versions with correct Microsoft versions.
    Note: This may take awhile to finish. Do not close this Command Prompt window until the verification is 100% complete.
  • When the scan has finished you should get one of the following messages in the Command window:
    • Windows Resource Protection did not find any integrity violations.
    • Windows Resource Protection could not perform the requested operation.
    • Windows Resource Protection found corrupt files and successfully repaired them. Details are included in the CBS.Log %WinDir%\Logs\CBS\CBS.log.
    • Windows Resource Protection found corrupt files but was unable to fix some of them. Details are included in the CBS.Log %WinDir%\Logs\CBS\CBS.log.
  • Write down the message you got so you can post it in your next reply.
  • Type exit and press the ENTER key to close the command window.

Step-2.

Check Hard Disk For Errors:

Please copy everything in the quote box below into notepad. To do this highlight all text, except the word Quote, then right click and click Copy.

@Echo Off
cmd /c chkdsk c: |find /v "percent" >> "%userprofile%\desktop\checkhd.txt"
del %0


  • Next, open Notepad, or click Start->Run and in the Open: box type notepad.exe and click OK.
  • Right click in the notepad window and click Paste, or put the cursor inside the notepad window and press the Ctrl-V keys to paste the text into notepad.
  • On the File menu, click Save
  • On the Save AS window that comes up, do the following:
    • On the left side, click the Desktop Icon. This will put "Desktop" in the Save In: box at the top.
    • At the bottom in the File Name: box type testhd.bat
    • In the Save as type: box, click the down arrow and click All Files(*.*)
    • Click Save
    This will put a new file on the Desktop named testhd.bat
    The file icon will look like this:
    Posted Image

    Close all open windows and any open Browsers.
  • Right click the testhd.bat file on the desktop and click Run As Administrator then OK any UAC prompts to run the file. A command window will open briefly, then close. This is quite normal.
  • When the command window has closed there will be a new file on the desktop named checkhd.txt
  • Copy and paste the contents of the checkhd.txt file in your next reply.

Step-3.

Things For Your Next Post:
Please post the logs in the order requested. Do Not attach the logs unless I request it.
1. The results of the SFC scan
2. The checkhd.txt log
  • 1

#38
frichieny

frichieny

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 192 posts
Windows Resource Protection found corrupt files but was unable to fix some of them

Details are included in the CBS.Log windir\Logs\CBS\CBS.log. For example C:\Windows\Logs\CBS\CBS.log

The system file repair changes will take effect after the next reboot.
  • 0

#39
frichieny

frichieny

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 192 posts
The type of the file system is NTFS.
Volume label is Acer.

WARNING! F parameter not specified.
Running CHKDSK in read-only mode.

CHKDSK is verifying files (stage 1 of 3)...
File verification completed.
869 large file records processed.

0 bad file records processed.

0 EA records processed.

76 reparse records processed.

CHKDSK is verifying indexes (stage 2 of 3)...
Index verification completed.
0 unindexed files scanned.

0 unindexed files recovered.

CHKDSK is verifying security descriptors (stage 3 of 3)...
Security descriptor verification completed.
32847 data files processed.

CHKDSK is verifying Usn Journal...
Usn Journal verification completed.
Windows has checked the file system and found no problems.

237271039 KB total disk space.
164229120 KB in 189380 files.
107336 KB in 32848 indexes.
0 KB in bad sectors.
407107 KB in use by the system.
65536 KB occupied by the log file.
72527476 KB available on disk.

4096 bytes in each allocation unit.
59317759 total allocation units on disk.
18131869 allocation units available on disk.
  • 0

#40
godawgs

godawgs

    Teacher

  • Retired Staff
  • 8,228 posts
  • Open an elevated command prompt. To do that:
    • Click on All Programs and Accessories, then right click on Command Prompt and click on Run as administrator. (See screenshot below)
    Posted Image
  • Type, or copy and paste, the following command, and then press ENTER:

    findstr /c:"[SR]" %windir%\Logs\CBS\CBS.log >%userprofile%\Desktop\sfcdetails.txt
A file named sfcdetails.txt will now be on the desktop. Copy and Paste the contents of this file in your next reply.
  • 1

Advertisements


#41
frichieny

frichieny

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 192 posts
FINDSTR: /c ignore
FINDSTR: /[ ignore
FINDSTR: /] ignore

The file in the desktop is empty :)

Good morning :)

Edited by frichieny, 13 December 2013 - 08:20 PM.

  • 0

#42
godawgs

godawgs

    Teacher

  • Retired Staff
  • 8,228 posts
Please delete the sfcdetails.txt file on the desktop.

Please download the attached sfc.bat file and save it to the desktop.

The file icon will look like this Posted Image
Close all open windows and any open Browsers.

Right click the sfc.bat file and click Run as Administrator. OK any UAC prompts you might get.<---Very Important
A command window will open briefly, then close. This is quite normal.
A new file named sfcdetails.txt will be placed on the desktop.
Post the contents of the sfcdetails.txt log in your next reply.
  • 0

#43
frichieny

frichieny

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 192 posts
there's still nothing on the new sfcdetails sorry
  • 0

#44
godawgs

godawgs

    Teacher

  • Retired Staff
  • 8,228 posts
Just making sure. The empty sfcdetails.txt file means that there aren't any SFC entries with the [SR] tag, indicating that SFC was able to repair everything. Let's run SFC again and see what message you get this time.


Run SFC

  • Open an elevated command prompt. To do that:
    • Click Start, click on All Programs and Accessories, then right click on Command Prompt and click on Run as administrator. (See screenshot below)

    Posted Image
  • A command window will open like the image below:

    Posted Image
  • Type or copy and paste the following command and press Enter:

    sfc /scannow

    Posted Image

    The sfc /scannow command scans all protected system files and replaces incorrect versions with correct Microsoft versions.
    Note: This may take awhile to finish. Do not close this Command Prompt window until the verification is 100% complete.
  • When the scan has finished you should get one of the following messages in the Command window:
    • Windows Resource Protection did not find any integrity violations.
    • Windows Resource Protection could not perform the requested operation.
    • Windows Resource Protection found corrupt files and successfully repaired them. Details are included in the CBS.Log %WinDir%\Logs\CBS\CBS.log.
    • Windows Resource Protection found corrupt files but was unable to fix some of them. Details are included in the CBS.Log %WinDir%\Logs\CBS\CBS.log.
  • Write down the message you got so you can post it in your next reply.
  • Type exit and press the ENTER key to close the command window.

Things For Your Next Post:
Please post the logs in the order requested. Do Not attach the logs unless I request it.
1. Let me know what message SFC gave this time
  • 0

#45
frichieny

frichieny

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 192 posts
Windows Resource Protection could not perform the requested operation.
Windows Resource Protection found corrupt files and successfully repaired them. Details are included in the CBS.Log WinDir\Logs\CBS\CBS.log.

For example c:\Windows\Logs\CBS\CBS.log

Good morning sir godawgs :thumbsup:

Edited by frichieny, 14 December 2013 - 05:33 PM.

  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP