Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

ComboFix and Frst will not run [Solved]


  • This topic is locked This topic is locked

#1
Cotutor

Cotutor

    Member

  • Member
  • PipPipPip
  • 494 posts
Ok, as is obvious from my profile I'm a Geek U Junior, I'm in between PL's at the moment, and as I learn by doing and playing I typically use the time between lessons to experiment with the various tools on my older computers.
I have an older model XP Home 32 bit system that I got from a surveyor friend. The system had not been fired up in a couple of years.
I decided to run a few of the tools I'm being taught to use to see what might be within.
I ran an OTL scan and there was definitely signs of an infection or two, so I thought ok learning experience. I wrote and OTL fix and started working with various tools to see about what it would take to get rid of things. A recent PL had me working with ComboFix, so I ran that too.... and that's where the problem started. ComboFix acts like it's going to run, it goes thru the process and gets to the point of deleting a directory, and just sits there for a while, and eventually I get an error message that says PEV.exe has crashed and asking me to 'send' or 'don't send'. If I let it set there, for a day or more, it does nothing. If I click on the don't send button, the open window with blue screen that indicates ComboFix is deleting that directory, and nothing ever happens. I have to force the computer to shut down and restart.
Next, I ran Malwarebytes and had 19 results on a quick scan, which I let it remove.
I then tried RKill and RogueKiller, and Viprer rescue, to see if they would clear up whatever was stopping Combofix, but to no avail.
Next I tried running Frst and it crashes the same way as PEV.
Yes I know I've run a lot of tools that I wasn't instructed to run, I am using this as a learning experience, and if I've done something that prevents a solution it's not the end of the world, this system has XP and as such I don't intend to plug it back in to the internet after April anyway.

Ok, here is the result of my latest OTL Scan, please review and guide me:

OTL logfile created on: 02/10/2014 9:41:32 AM - Run 3
OTL by OldTimer - Version 3.2.69.0 Folder = C:\cotutor\cleanup updated 1-29-14
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: enu | Date Format: MM/dd/yyyy

1.50 Gb Total Physical Memory | 1.05 Gb Available Physical Memory | 70.29% Memory free
3.31 Gb Paging File | 3.02 Gb Available in Paging File | 91.36% Paging File free
Paging file location(s): c:\pagefile.sys 2000 4000 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 148.98 Gb Total Space | 119.60 Gb Free Space | 80.28% Space Free | Partition Type: FAT32
Drive E: | 7.45 Gb Total Space | 2.87 Gb Free Space | 38.49% Space Free | Partition Type: FAT32

Computer Name: 3LHB011 | User Name: RICK | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012/10/11 18:32:52 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\cotutor\cleanup updated 1-29-14\OTL.exe
PRC - [2008/04/14 05:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007/09/12 09:52:14 | 000,180,269 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Common Files\Real\Update_OB\realsched.exe
PRC - [2006/05/11 07:40:50 | 000,426,038 | ---- | M] () -- C:\Program Files\ClipPad995\clippad\ClipPad.exe
PRC - [2005/11/11 18:30:22 | 000,995,328 | ---- | M] (Brother Industries, Ltd.) -- C:\Program Files\Brother\ControlCenter2\brctrcen.exe
PRC - [2005/08/22 15:10:24 | 000,163,840 | ---- | M] (Software995) -- C:\Program Files\ePad995\ePad995.exe
PRC - [2004/09/03 04:58:48 | 000,065,536 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Ahead\ODD Toolkit\dvdtray.exe
PRC - [2002/04/17 10:49:16 | 000,077,824 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
PRC - [2001/09/04 15:31:50 | 000,655,360 | ---- | M] (Roxio) -- C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\Directcd.exe


========== Modules (No Company Name) ==========

MOD - [2007/11/13 08:55:36 | 000,051,716 | ---- | M] () -- C:\WINDOWS\SYSTEM32\pdf995mon.dll
MOD - [2006/05/11 07:40:50 | 000,426,038 | ---- | M] () -- C:\Program Files\ClipPad995\clippad\ClipPad.exe
MOD - [2006/05/11 07:39:58 | 000,049,152 | ---- | M] () -- C:\Program Files\ClipPad995\clippad\focus.dll
MOD - [2002/04/17 10:49:22 | 000,024,576 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnfps.dll
MOD - [2002/04/17 10:49:16 | 000,077,824 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe


========== Services (SafeList) ==========

SRV - File not found [Auto | Stopped] -- C:\WINDOWS\System32\mspmspsv.dll -- (WmdmPmSp)
SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt)
SRV - [2008/04/14 05:41:56 | 000,035,328 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\iprip.dll -- (Iprip)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\RICK\LOCALS~1\Temp\catchme.sys -- (catchme)
DRV - [2012/05/25 13:14:24 | 000,101,112 | ---- | M] (GFI Software) [Kernel | System | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\SBREDrv.sys -- (SBRE)
DRV - [2008/04/13 22:05:40 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\rtl8139.sys -- (rtl8139)
DRV - [2006/10/04 22:42:44 | 000,002,560 | ---- | M] (Sonic Solutions) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\cdralw2k.sys -- (Cdralw2k)
DRV - [2006/10/04 22:42:44 | 000,002,432 | ---- | M] (Sonic Solutions) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\Cdr4_xp.sys -- (Cdr4_xp)
DRV - [2005/11/10 13:54:56 | 000,402,944 | R--- | M] (Belkin Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\BLKWGU.sys -- (BLKWGU(Belkin)
DRV - [2004/08/03 22:31:20 | 000,036,224 | ---- | M] (ADMtek Incorporated.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\an983.sys -- (AN983)
DRV - [2001/09/13 05:48:00 | 000,737,973 | ---- | M] (Conexant) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\winachcf.sys -- (Winachcf)
DRV - [2001/09/10 10:43:46 | 000,205,824 | ---- | M] (Roxio) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\udfreadr_xp.sys -- (UdfReadr_xp)
DRV - [2001/09/04 16:37:08 | 000,233,344 | ---- | M] (Roxio) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\cdudf_xp.sys -- (cdudf_xp)
DRV - [2001/09/04 15:39:50 | 000,017,990 | ---- | M] (Roxio) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\Dvd_2k.sys -- (dvd_2K)
DRV - [2001/09/04 15:39:40 | 000,019,702 | ---- | M] (Roxio) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\Mmc_2k.sys -- (mmc_2K)
DRV - [2001/09/04 15:39:28 | 000,078,454 | ---- | M] (Roxio) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\pwd_2K.sys -- (pwd_2K)
DRV - [2001/08/17 13:57:16 | 000,045,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\cirrus.sys -- (cirrus)
DRV - [2001/08/17 13:28:02 | 000,907,456 | ---- | M] (Conexant) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\HCF_MSFT.sys -- (HCF_MSFT)
DRV - [2001/08/17 12:50:26 | 000,731,648 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\nv4.sys -- (nv4)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.c...ferrer:source?}


IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\blank.htm
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKU\.DEFAULT\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497}_ - No CLSID value found
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" =

IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\blank.htm
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKU\S-1-5-18\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497}_ - No CLSID value found
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" =

IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\blank.htm
IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKU\S-1-5-19\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497}_ - No CLSID value found
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" =

IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\blank.htm
IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKU\S-1-5-20\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497}_ - No CLSID value found
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" =

IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.co...ie=utf8&oe=utf8
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 7E 4A CA B4 5A 23 CF 01 [binary data]
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\..\URLSearchHook: _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - No CLSID value found
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497}_ - No CLSID value found
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\..\SearchScopes,DefaultScope = {2D96D0FF-C102-41E8-BD47-0680D7986976}
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.c...Box&Form=IE8SRC
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\..\SearchScopes\{2D96D0FF-C102-41E8-BD47-0680D7986976}: "URL" = http://www.google.co...ie7&rlz=1I7SUNA
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "Google"
FF - prefs.js..browser.search.defaulturl: "http://www.google.co...-8&oe=UTF-8&q="
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "http://www.charter.net"
FF - prefs.js..network.proxy.http: ""
FF - prefs.js..network.proxy.http_port: ""
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@macromedia.com/FlashPlayer9: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.11.2321: C:\Program Files\Real\RealOne Player\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=1.0.2.2379: C:\Program Files\Real\RealOne Player\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.1483: C:\Program Files\Real\RealOne Player\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKCU\Software\MozillaPlugins\@macromedia.com/FlashPlayer9: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.0.4\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2006/10/09 14:29:34 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.0.4\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2006/10/09 14:29:32 | 000,000,000 | ---D | M]

[2008/10/08 15:38:34 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\RICK\Application Data\Mozilla\Extensions
[2006/10/09 14:29:50 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\RICK\Application Data\Mozilla\Firefox\Profiles\g14tpedc.default\extensions
[2008/12/22 11:38:06 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Documents and Settings\RICK\Application Data\Mozilla\Firefox\Profiles\g14tpedc.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2006/10/09 14:29:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2006/10/09 14:29:46 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Program Files\Mozilla Firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2007/09/12 08:48:38 | 000,000,000 | ---D | M] (Google Settings) -- C:\Program Files\Mozilla Firefox\extensions\[email protected]
File not found (No name found) -- C:\PROGRAM FILES\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
File not found (No name found) -- C:\PROGRAM FILES\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
[2006/11/13 19:49:18 | 002,078,344 | ---- | M] () -- C:\Program Files\mozilla firefox\plugins\NPSWF32.dll

O1 HOSTS File: ([2006/10/09 12:43:30 | 000,000,002 | ---- | M]) - C:\WINDOWS\SYSTEM32\DRIVERS\etc\HOSTS
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\Program Files\Google\GoogleToolbar3.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (&Google) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar3.dll (Google Inc.)
O3 - HKU\S-1-5-21-515967899-1220945662-725345543-1009\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar3.dll (Google Inc.)
O4 - HKLM..\Run: [AdaptecDirectCD] C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe (Roxio)
O4 - HKLM..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe (Brother Industries, Ltd.)
O4 - HKLM..\Run: [DNS7reminder] C:\Program Files\Nuance\NaturallySpeaking9\Ereg\Ereg.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [DVDTray] C:\Program Files\Ahead\ODD Toolkit\dvdtray.exe (Hewlett-Packard Company)
O4 - HKLM..\Run: [Microsoft Works Portfolio] C:\Program Files\Microsoft Works\WksSb.exe (Microsoft® Corporation)
O4 - HKLM..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe (Microsoft® Corporation)
O4 - HKLM..\Run: [NeroFilterCheck] C:\WINDOWS\SYSTEM32\NeroCheck.exe (Ahead Software Gmbh)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe (NVIDIA Corporation)
O4 - HKLM..\Run: [SetDefPrt] C:\Program Files\Brother\Brmfl05c\BrStDvPt.exe (Brother Industories, Ltd.)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKU\.DEFAULT..\Run: [NvMediaCenter] C:\WINDOWS\System32\NVMCTRAY.DLL (NVIDIA Corporation)
O4 - HKU\S-1-5-18..\Run: [NvMediaCenter] C:\WINDOWS\System32\NVMCTRAY.DLL (NVIDIA Corporation)
O4 - HKU\S-1-5-21-515967899-1220945662-725345543-1009..\Run: [ClipPad] C:\Program Files\ClipPad995\clippad\ClipPad.exe ()
O4 - HKU\S-1-5-21-515967899-1220945662-725345543-1009..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9 File not found
O4 - HKU\S-1-5-21-515967899-1220945662-725345543-1009..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe (Yahoo! Inc.)
O4 - HKU\.DEFAULT..\RunOnce: [Printing Migration] C:\WINDOWS\System32\spool\migrate.dll (Microsoft Corporation)
O4 - HKU\.DEFAULT..\RunOnce: [tscuninstall] C:\WINDOWS\SYSTEM32\tscupgrd.exe (Microsoft Corporation)
O4 - HKU\S-1-5-18..\RunOnce: [Printing Migration] C:\WINDOWS\System32\spool\migrate.dll (Microsoft Corporation)
O4 - HKU\S-1-5-18..\RunOnce: [tscuninstall] C:\WINDOWS\SYSTEM32\tscupgrd.exe (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ePad995.lnk = C:\Program Files\ePad995\ePad995.exe (Software995)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: CDRAutoRun = 0
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: CDRAutoRun = 0
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 95 00 00 00 [binary data]
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: CDRAutoRun = [binary data]
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 95 00 00 00 [binary data]
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: CDRAutoRun = [binary data]
O7 - HKU\S-1-5-21-515967899-1220945662-725345543-1009\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: CDRAutoRun = [binary data]
O7 - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O8 - Extra context menu item: &Define - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\A\ERS_DEF.HTM ()
O8 - Extra context menu item: Look Up in &Encyclopedia - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\A\ERS_ENC.HTM ()
O9 - Extra Button: Encarta Encyclopedia - {2FDEF853-0759-11D4-A92E-006097DBED37} - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\A\ERS_ENC.HTM ()
O9 - Extra 'Tools' menuitem : Encarta Encyclopedia - {2FDEF853-0759-11D4-A92E-006097DBED37} - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\A\ERS_ENC.HTM ()
O9 - Extra Button: Define - {5DA9DE80-097A-11D4-A92E-006097DBED37} - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\A\ERS_DEF.HTM ()
O9 - Extra 'Tools' menuitem : Define - {5DA9DE80-097A-11D4-A92E-006097DBED37} - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\A\ERS_DEF.HTM ()
O15 - HKU\.DEFAULT\..Trusted Domains: ([]msn in My Computer)
O15 - HKU\S-1-5-18\..Trusted Domains: ([]msn in My Computer)
O15 - HKU\S-1-5-19\..Trusted Domains: ([]msn in My Computer)
O15 - HKU\S-1-5-20\..Trusted Domains: ([]msn in My Computer)
O15 - HKU\S-1-5-21-515967899-1220945662-725345543-1009\..Trusted Domains: ([]msn in My Computer)
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} https://install.char...bin/tgctlcm.cab (Support.com Configuration Class)
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} http://messenger.zon...nt.cab27571.cab (MessengerStatsClient Class)
O16 - DPF: {1663ed61-23eb-11d2-b92f-008048fdd814} http://atlanta.ctnbg.com/smsx.cab (MeadCo ScriptX)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.micr...heckControl.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.micros...b?1135901941563 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.micros...b?1135914489452 (MUWebControl Class)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macr...ash/swflash.cab (Shockwave Flash Object)
O16 - DPF: DirectAnimation Java Classes file://C:\WINDOWS\SYSTEM\dajava.cab (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java file:///C:/WINDOWS/Java/classes/xmldso.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.3.2
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1A2C2190-5549-4C7B-AFA1-6623E6C77902}: DhcpNameServer = 192.168.3.2
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\SYSTEM32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\WRNotifier: DllName - (WRLogonNTF.dll) - File not found
O24 - Desktop WallPaper: C:\Documents and Settings\RICK\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\RICK\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2001/11/26 13:36:30 | 000,000,272 | ---- | M] () - C:\AUTOEXEC.ADK -- [ FAT32 ]
O32 - AutoRun File - [2000/08/09 10:26:38 | 000,000,079 | -HS- | M] () - C:\AUTOEXEC.DOS -- [ FAT32 ]
O32 - AutoRun File - [2001/11/26 17:37:38 | 000,000,302 | -HS- | M] () - C:\AUTOEXEC.BAK -- [ FAT32 ]
O32 - AutoRun File - [2009/01/08 18:39:24 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (SsiEfr.e)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

========== Files/Folders - Created Within 30 Days ==========

[2014/02/09 12:10:19 | 000,000,000 | --SD | C] -- C:\ComboFix
[2014/02/09 10:57:25 | 000,000,000 | ---D | C] -- C:\FRST
[2014/02/07 13:24:33 | 000,101,112 | ---- | C] (GFI Software) -- C:\WINDOWS\System32\drivers\SBREDrv.sys
[2014/02/07 13:24:33 | 000,042,864 | ---- | C] (GFI Software) -- C:\WINDOWS\System32\sbbd.exe
[2014/02/06 14:01:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\snack
[2014/02/06 12:14:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RICK\Desktop\RK_Quarantine
[2014/02/06 11:44:31 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\RICK\PrivacIE
[2014/02/06 11:42:34 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\RICK\IETldCache
[2014/02/06 11:35:20 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8
[2014/02/04 17:57:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2014/02/04 17:40:36 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2014/02/04 16:36:24 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014/02/03 21:04:54 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2014/02/03 21:03:22 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2014/02/03 21:03:22 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2014/02/03 21:03:22 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2014/02/03 21:03:22 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2014/02/03 21:03:13 | 000,000,000 | ---D | C] -- C:\Qoobox
[2014/02/03 21:03:00 | 000,000,000 | ---D | C] -- C:\WINDOWS\erdnt
[2014/02/03 20:31:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RICK\Application Data\Malwarebytes
[2014/02/03 20:31:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware
[2014/02/03 20:31:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2014/02/03 20:31:48 | 000,020,552 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2014/02/03 20:31:47 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2014/02/03 19:56:11 | 000,000,000 | ---D | C] -- C:\_OTL
[2014/02/03 19:36:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RICK\Desktop\AOL Saved PFC
[2014/01/31 11:06:24 | 000,000,000 | ---D | C] -- C:\cotutor

========== Files - Modified Within 30 Days ==========

[2014/02/10 09:17:44 | 000,021,048 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2014/02/10 09:17:36 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn
[2014/02/10 09:17:10 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2014/02/09 11:08:02 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\RICK\RICK_notes.dat
[2014/02/06 14:01:58 | 000,233,344 | ---- | M] () -- C:\WINDOWS\System32\drivers\cdudf_xp.sys.dump
[2014/02/06 14:01:58 | 000,205,824 | ---- | M] () -- C:\WINDOWS\System32\drivers\udfreadr_xp.sys.dump
[2014/02/06 14:01:58 | 000,078,454 | ---- | M] () -- C:\WINDOWS\System32\drivers\pwd_2K.sys.dump
[2014/02/06 14:01:58 | 000,057,856 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinbtxx.sys.dump
[2014/02/06 14:01:58 | 000,025,472 | ---- | M] () -- C:\WINDOWS\System32\drivers\imapiRox.sys.dump
[2014/02/06 14:01:58 | 000,019,702 | ---- | M] () -- C:\WINDOWS\System32\drivers\Mmc_2k.sys.dump
[2014/02/06 14:01:58 | 000,017,990 | ---- | M] () -- C:\WINDOWS\System32\drivers\Dvd_2k.sys.dump
[2014/02/06 14:01:58 | 000,014,336 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinpdxx.sys.dump
[2014/02/06 14:01:58 | 000,013,824 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinmdxx.sys.dump
[2014/02/06 14:01:58 | 000,012,032 | ---- | M] () -- C:\WINDOWS\System32\drivers\ws2ifsl.sys.dump
[2014/02/06 14:01:58 | 000,002,560 | ---- | M] () -- C:\WINDOWS\System32\drivers\cdralw2k.sys.dump
[2014/02/06 14:01:58 | 000,002,432 | ---- | M] () -- C:\WINDOWS\System32\drivers\Cdr4_xp.sys.dump
[2014/02/06 14:01:56 | 000,104,960 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinrvxx.sys.dump
[2014/02/06 14:01:56 | 000,055,936 | ---- | M] () -- C:\WINDOWS\System32\drivers\nwlnkspx.sys.dump
[2014/02/06 14:01:56 | 000,052,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinraxx.sys.dump
[2014/02/06 14:01:56 | 000,051,712 | ---- | M] () -- C:\WINDOWS\System32\drivers\tosdvd.sys.dump
[2014/02/06 14:01:56 | 000,034,432 | ---- | M] () -- C:\WINDOWS\System32\drivers\rawwan.sys.dump
[2014/02/06 14:01:56 | 000,032,896 | ---- | M] () -- C:\WINDOWS\System32\drivers\ipfltdrv.sys.dump
[2014/02/06 14:01:56 | 000,032,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\nwlnkfwd.sys.dump
[2014/02/06 14:01:56 | 000,028,672 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinsnxx.sys.dump
[2014/02/06 14:01:56 | 000,021,376 | ---- | M] () -- C:\WINDOWS\System32\drivers\tsbvcap.sys.dump
[2014/02/06 14:01:56 | 000,014,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\smclib.sys.dump
[2014/02/06 14:01:56 | 000,013,824 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinttxx.sys.dump
[2014/02/06 14:01:56 | 000,012,416 | ---- | M] () -- C:\WINDOWS\System32\drivers\nwlnkflt.sys.dump
[2014/02/06 14:01:56 | 000,012,032 | ---- | M] () -- C:\WINDOWS\System32\drivers\riodrv.sys.dump
[2014/02/06 14:01:56 | 000,012,032 | ---- | M] () -- C:\WINDOWS\System32\drivers\rio8drv.sys.dump
[2014/02/06 14:01:54 | 000,352,256 | ---- | M] () -- C:\WINDOWS\System32\drivers\atmuni.sys.dump
[2014/02/06 14:01:54 | 000,262,528 | ---- | M] () -- C:\WINDOWS\System32\drivers\cinemst2.sys.dump
[2014/02/06 14:01:54 | 000,063,488 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinxsxx.sys.dump
[2014/02/06 14:01:54 | 000,052,864 | ---- | M] () -- C:\WINDOWS\System32\drivers\DMusic.sys.dump
[2014/02/06 14:01:54 | 000,042,240 | ---- | M] () -- C:\WINDOWS\System32\drivers\viaagp.sys.dump
[2014/02/06 14:01:54 | 000,031,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinxbxx.sys.dump
[2014/02/06 14:01:54 | 000,019,200 | ---- | M] () -- C:\WINDOWS\System32\drivers\hidir.sys.dump
[2014/02/06 14:01:54 | 000,016,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\raspti.sys.dump
[2014/02/06 14:01:54 | 000,013,952 | ---- | M] () -- C:\WINDOWS\System32\drivers\cbidf2k.sys.dump
[2014/02/06 14:01:54 | 000,011,776 | ---- | M] () -- C:\WINDOWS\System32\drivers\cpqdap01.sys.dump
[2014/02/06 14:01:54 | 000,008,832 | ---- | M] () -- C:\WINDOWS\System32\drivers\rasacd.sys.dump
[2014/02/06 14:01:54 | 000,007,936 | ---- | M] () -- C:\WINDOWS\System32\drivers\fs_rec.sys.dump
[2014/02/06 14:01:54 | 000,004,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\rdpcdd.sys.dump
[2014/02/06 14:01:54 | 000,004,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\beep.sys.dump
[2014/02/06 14:01:54 | 000,002,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\null.sys.dump
[2014/02/06 14:01:52 | 000,799,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\dmboot.sys.dump
[2014/02/06 14:01:52 | 000,141,056 | ---- | M] () -- C:\WINDOWS\System32\drivers\ks.sys.dump
[2014/02/06 14:01:52 | 000,125,056 | ---- | M] () -- C:\WINDOWS\System32\drivers\ftdisk.sys.dump
[2014/02/06 14:01:52 | 000,092,288 | ---- | M] () -- C:\WINDOWS\System32\drivers\ksecdd.sys.dump
[2014/02/06 14:01:52 | 000,063,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\cdfs.sys.dump
[2014/02/06 14:01:52 | 000,046,464 | ---- | M] () -- C:\WINDOWS\System32\drivers\gagp30kx.sys.dump
[2014/02/06 14:01:52 | 000,036,864 | ---- | M] () -- C:\WINDOWS\System32\drivers\hidclass.sys.dump
[2014/02/06 14:01:52 | 000,024,576 | ---- | M] () -- C:\WINDOWS\System32\drivers\kbdclass.sys.dump
[2014/02/06 14:01:52 | 000,014,208 | ---- | M] () -- C:\WINDOWS\System32\drivers\diskdump.sys.dump
[2014/02/06 14:01:52 | 000,011,904 | ---- | M] () -- C:\WINDOWS\System32\drivers\sffdisk.sys.dump
[2014/02/06 14:01:52 | 000,005,504 | ---- | M] () -- C:\WINDOWS\System32\drivers\intelide.sys.dump
[2014/02/06 14:01:52 | 000,004,352 | ---- | M] () -- C:\WINDOWS\System32\drivers\wmilib.sys.dump
[2014/02/06 14:01:52 | 000,003,456 | ---- | M] () -- C:\WINDOWS\System32\drivers\oprghdlr.sys.dump
[2014/02/06 14:01:50 | 000,907,456 | ---- | M] () -- C:\WINDOWS\System32\drivers\HCF_MSFT.sys.dump
[2014/02/06 14:01:50 | 000,731,648 | ---- | M] () -- C:\WINDOWS\System32\drivers\nv4.sys.dump
[2014/02/06 14:01:50 | 000,574,976 | ---- | M] () -- C:\WINDOWS\System32\drivers\ntfs.sys.dump
[2014/02/06 14:01:50 | 000,402,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\BLKWGU.sys.dump
[2014/02/06 14:01:50 | 000,180,608 | ---- | M] () -- C:\WINDOWS\System32\drivers\mrxdav.sys.dump
[2014/02/06 14:01:50 | 000,091,520 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndiswan.sys.dump
[2014/02/06 14:01:50 | 000,080,128 | ---- | M] () -- C:\WINDOWS\System32\drivers\parport.sys.dump
[2014/02/06 14:01:50 | 000,058,112 | ---- | M] () -- C:\WINDOWS\System32\drivers\vdmindvd.sys.dump
[2014/02/06 14:01:50 | 000,041,472 | ---- | M] () -- C:\WINDOWS\System32\drivers\raspppoe.sys.dump
[2014/02/06 14:01:50 | 000,003,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\audstub.sys.dump
[2014/02/06 14:01:48 | 000,082,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\WudfRd.sys.dump
[2014/02/06 14:01:48 | 000,063,663 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1rvxx.sys.dump
[2014/02/06 14:01:48 | 000,056,623 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1btxx.sys.dump
[2014/02/06 14:01:48 | 000,044,928 | ---- | M] () -- C:\WINDOWS\System32\drivers\agpcpq.sys.dump
[2014/02/06 14:01:48 | 000,042,752 | ---- | M] () -- C:\WINDOWS\System32\drivers\alim1541.sys.dump
[2014/02/06 14:01:48 | 000,036,463 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1tuxx.sys.dump
[2014/02/06 14:01:48 | 000,034,735 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1xsxx.sys.dump
[2014/02/06 14:01:48 | 000,030,671 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1raxx.sys.dump
[2014/02/06 14:01:48 | 000,029,455 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1xbxx.sys.dump
[2014/02/06 14:01:48 | 000,026,367 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1snxx.sys.dump
[2014/02/06 14:01:48 | 000,021,343 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1ttxx.sys.dump
[2014/02/06 14:01:48 | 000,012,160 | ---- | M] () -- C:\WINDOWS\System32\drivers\fsvga.sys.dump
[2014/02/06 14:01:48 | 000,012,047 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1pdxx.sys.dump
[2014/02/06 14:01:48 | 000,011,615 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1mdxx.sys.dump
[2014/02/06 14:01:48 | 000,005,888 | ---- | M] () -- C:\WINDOWS\System32\drivers\smbali.sys.dump
[2014/02/06 14:01:46 | 000,272,128 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthport.sys.dump
[2014/02/06 14:01:46 | 000,202,624 | ---- | M] () -- C:\WINDOWS\System32\drivers\RMCast.sys.dump
[2014/02/06 14:01:46 | 000,101,120 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthpan.sys.dump
[2014/02/06 14:01:46 | 000,073,472 | ---- | M] () -- C:\WINDOWS\System32\drivers\sr.sys.dump
[2014/02/06 14:01:46 | 000,066,048 | ---- | M] () -- C:\WINDOWS\System32\drivers\udfs.sys.dump
[2014/02/06 14:01:46 | 000,057,600 | ---- | M] () -- C:\WINDOWS\System32\drivers\redbook.sys.dump
[2014/02/06 14:01:46 | 000,037,888 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthmodem.sys.dump
[2014/02/06 14:01:46 | 000,036,480 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthprint.sys.dump
[2014/02/06 14:01:46 | 000,030,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\rndismp.sys.dump
[2014/02/06 14:01:46 | 000,021,896 | ---- | M] () -- C:\WINDOWS\System32\drivers\tdtcp.sys.dump
[2014/02/06 14:01:46 | 000,017,024 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthenum.sys.dump
[2014/02/06 14:01:46 | 000,012,800 | ---- | M] () -- C:\WINDOWS\System32\drivers\usb8023.sys.dump
[2014/02/06 14:01:46 | 000,012,288 | ---- | M] () -- C:\WINDOWS\System32\drivers\tunmp.sys.dump
[2014/02/06 14:01:46 | 000,004,352 | ---- | M] () -- C:\WINDOWS\System32\drivers\swenum.sys.dump
[2014/02/06 14:01:44 | 000,264,832 | ---- | M] () -- C:\WINDOWS\System32\drivers\http.sys.dump
[2014/02/06 14:01:44 | 000,129,792 | ---- | M] () -- C:\WINDOWS\System32\drivers\fltmgr.sys.dump
[2014/02/06 14:01:44 | 000,042,368 | ---- | M] () -- C:\WINDOWS\System32\drivers\mountmgr.sys.dump
[2014/02/06 14:01:44 | 000,036,608 | ---- | M] () -- C:\WINDOWS\System32\drivers\ip6fw.sys.dump
[2014/02/06 14:01:44 | 000,036,352 | ---- | M] () -- C:\WINDOWS\System32\drivers\intelppm.sys.dump
[2014/02/06 14:01:44 | 000,025,600 | ---- | M] () -- C:\WINDOWS\System32\drivers\hidbth.sys.dump
[2014/02/06 14:01:44 | 000,018,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthusb.sys.dump
[2014/02/06 14:01:44 | 000,007,680 | ---- | M] () -- C:\WINDOWS\System32\drivers\mcd.sys.dump
[2014/02/06 14:01:42 | 001,309,184 | ---- | M] () -- C:\WINDOWS\System32\drivers\mtlstrm.sys.dump
[2014/02/06 14:01:42 | 000,452,736 | ---- | M] () -- C:\WINDOWS\System32\drivers\mtxparhm.sys.dump
[2014/02/06 14:01:42 | 000,180,360 | ---- | M] () -- C:\WINDOWS\System32\drivers\ntmtlfax.sys.dump
[2014/02/06 14:01:42 | 000,166,912 | ---- | M] () -- C:\WINDOWS\System32\drivers\s3gnbm.sys.dump
[2014/02/06 14:01:42 | 000,126,686 | ---- | M] () -- C:\WINDOWS\System32\drivers\mtlmnt5.sys.dump
[2014/02/06 14:01:42 | 000,079,232 | ---- | M] () -- C:\WINDOWS\System32\drivers\sdbus.sys.dump
[2014/02/06 14:01:42 | 000,059,136 | ---- | M] () -- C:\WINDOWS\System32\drivers\rfcomm.sys.dump
[2014/02/06 14:01:42 | 000,030,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\rndismpx.sys.dump
[2014/02/06 14:01:42 | 000,025,600 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbcamd.sys.dump
[2014/02/06 14:01:42 | 000,015,488 | ---- | M] () -- C:\WINDOWS\System32\drivers\mssmbios.sys.dump
[2014/02/06 14:01:42 | 000,013,776 | ---- | M] () -- C:\WINDOWS\System32\drivers\recagent.sys.dump
[2014/02/06 14:01:42 | 000,011,008 | ---- | M] () -- C:\WINDOWS\System32\drivers\sffp_sd.sys.dump
[2014/02/06 14:01:42 | 000,010,240 | ---- | M] () -- C:\WINDOWS\System32\drivers\sffp_mmc.sys.dump
[2014/02/06 14:01:40 | 000,404,990 | ---- | M] () -- C:\WINDOWS\System32\drivers\slntamr.sys.dump
[2014/02/06 14:01:40 | 000,143,872 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbport.sys.dump
[2014/02/06 14:01:40 | 000,129,535 | ---- | M] () -- C:\WINDOWS\System32\drivers\slnt7554.sys.dump
[2014/02/06 14:01:40 | 000,121,984 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbvideo.sys.dump
[2014/02/06 14:01:40 | 000,095,424 | ---- | M] () -- C:\WINDOWS\System32\drivers\slnthal.sys.dump
[2014/02/06 14:01:40 | 000,059,520 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbhub.sys.dump
[2014/02/06 14:01:40 | 000,040,840 | ---- | M] () -- C:\WINDOWS\System32\drivers\termdd.sys.dump
[2014/02/06 14:01:40 | 000,030,208 | ---- | M] () -- C:\WINDOWS\System32\drivers\wceusbsh.sys.dump
[2014/02/06 14:01:40 | 000,030,208 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbehci.sys.dump
[2014/02/06 14:01:40 | 000,013,240 | ---- | M] () -- C:\WINDOWS\System32\drivers\slwdmsup.sys.dump
[2014/02/06 14:01:40 | 000,012,800 | ---- | M] () -- C:\WINDOWS\System32\drivers\usb8023x.sys.dump
[2014/02/06 14:01:40 | 000,011,871 | ---- | M] () -- C:\WINDOWS\System32\drivers\wadv09nt.sys.dump
[2014/02/06 14:01:40 | 000,011,807 | ---- | M] () -- C:\WINDOWS\System32\drivers\wadv07nt.sys.dump
[2014/02/06 14:01:40 | 000,011,295 | ---- | M] () -- C:\WINDOWS\System32\drivers\wadv08nt.sys.dump
[2014/02/06 14:01:40 | 000,004,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\mnmdd.sys.dump
[2014/02/06 14:01:38 | 000,701,440 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati2mtag.sys.dump
[2014/02/06 14:01:38 | 000,096,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\atapi.sys.dump
[2014/02/06 14:01:38 | 000,071,552 | ---- | M] () -- C:\WINDOWS\System32\drivers\bridge.sys.dump
[2014/02/06 14:01:38 | 000,069,120 | ---- | M] () -- C:\WINDOWS\System32\drivers\psched.sys.dump
[2014/02/06 14:01:38 | 000,059,904 | ---- | M] () -- C:\WINDOWS\System32\drivers\atmarpc.sys.dump
[2014/02/06 14:01:38 | 000,056,576 | ---- | M] () -- C:\WINDOWS\System32\drivers\swmidi.sys.dump
[2014/02/06 14:01:38 | 000,055,808 | ---- | M] () -- C:\WINDOWS\System32\drivers\atmlane.sys.dump
[2014/02/06 14:01:38 | 000,049,536 | ---- | M] () -- C:\WINDOWS\System32\drivers\classpnp.sys.dump
[2014/02/06 14:01:38 | 000,036,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\an983.sys.dump
[2014/02/06 14:01:38 | 000,031,360 | ---- | M] () -- C:\WINDOWS\System32\drivers\atmepvc.sys.dump
[2014/02/06 14:01:38 | 000,025,856 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbprint.sys.dump
[2014/02/06 14:01:38 | 000,025,471 | ---- | M] () -- C:\WINDOWS\System32\drivers\watv10nt.sys.dump
[2014/02/06 14:01:38 | 000,022,271 | ---- | M] () -- C:\WINDOWS\System32\drivers\watv06nt.sys.dump
[2014/02/06 14:01:38 | 000,014,208 | ---- | M] () -- C:\WINDOWS\System32\drivers\wacompen.sys.dump
[2014/02/06 14:01:38 | 000,011,935 | ---- | M] () -- C:\WINDOWS\System32\drivers\wadv11nt.sys.dump
[2014/02/06 14:01:36 | 000,327,040 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati2mtaa.sys.dump
[2014/02/06 14:01:36 | 000,172,416 | ---- | M] () -- C:\WINDOWS\System32\drivers\kmixer.sys.dump
[2014/02/06 14:01:36 | 000,146,048 | ---- | M] () -- C:\WINDOWS\System32\drivers\portcls.sys.dump
[2014/02/06 14:01:36 | 000,142,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\aec.sys.dump
[2014/02/06 14:01:36 | 000,105,344 | ---- | M] () -- C:\WINDOWS\System32\drivers\mup.sys.dump
[2014/02/06 14:01:36 | 000,077,568 | ---- | M] () -- C:\WINDOWS\System32\drivers\WudfPf.sys.dump
[2014/02/06 14:01:36 | 000,064,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\serial.sys.dump
[2014/02/06 14:01:36 | 000,062,976 | ---- | M] () -- C:\WINDOWS\System32\drivers\cdrom.sys.dump
[2014/02/06 14:01:36 | 000,037,760 | ---- | M] () -- C:\WINDOWS\System32\drivers\amdk7.sys.dump
[2014/02/06 14:01:36 | 000,020,864 | ---- | M] () -- C:\WINDOWS\System32\drivers\ipinip.sys.dump
[2014/02/06 14:01:36 | 000,010,496 | ---- | M] () -- C:\WINDOWS\System32\drivers\dxapi.sys.dump
[2014/02/06 14:01:36 | 000,010,112 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndistapi.sys.dump
[2014/02/06 14:01:36 | 000,005,888 | ---- | M] () -- C:\WINDOWS\System32\drivers\dmload.sys.dump
[2014/02/06 14:01:36 | 000,003,328 | ---- | M] () -- C:\WINDOWS\System32\drivers\dxgthk.sys.dump
[2014/02/06 14:01:36 | 000,002,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\drmkaud.sys.dump
[2014/02/06 14:01:34 | 000,143,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\fastfat.sys.dump
[2014/02/06 14:01:34 | 000,071,168 | ---- | M] () -- C:\WINDOWS\System32\drivers\dxg.sys.dump
[2014/02/06 14:01:34 | 000,068,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\pci.sys.dump
[2014/02/06 14:01:34 | 000,060,160 | ---- | M] () -- C:\WINDOWS\System32\drivers\drmk.sys.dump
[2014/02/06 14:01:34 | 000,040,320 | ---- | M] () -- C:\WINDOWS\System32\drivers\nmnt.sys.dump
[2014/02/06 14:01:34 | 000,037,248 | ---- | M] () -- C:\WINDOWS\System32\drivers\isapnp.sys.dump
[2014/02/06 14:01:34 | 000,035,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\msgpc.sys.dump
[2014/02/06 14:01:34 | 000,030,080 | ---- | M] () -- C:\WINDOWS\System32\drivers\modem.sys.dump
[2014/02/06 14:01:34 | 000,024,960 | ---- | M] () -- C:\WINDOWS\System32\drivers\hidparse.sys.dump
[2014/02/06 14:01:34 | 000,023,040 | ---- | M] () -- C:\WINDOWS\System32\drivers\mouclass.sys.dump
[2014/02/06 14:01:34 | 000,019,712 | ---- | M] () -- C:\WINDOWS\System32\drivers\partmgr.sys.dump
[2014/02/06 14:01:34 | 000,015,104 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbscan.sys.dump
[2014/02/06 14:01:34 | 000,014,976 | ---- | M] () -- C:\WINDOWS\System32\drivers\tape.sys.dump
[2014/02/06 14:01:34 | 000,011,648 | ---- | M] () -- C:\WINDOWS\System32\drivers\acpiec.sys.dump
[2014/02/06 14:01:34 | 000,004,736 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbd.sys.dump
[2014/02/06 14:01:32 | 000,162,816 | ---- | M] () -- C:\WINDOWS\System32\drivers\netbt.sys.dump
[2014/02/06 14:01:32 | 000,063,232 | ---- | M] () -- C:\WINDOWS\System32\drivers\nwlnknb.sys.dump
[2014/02/06 14:01:32 | 000,061,824 | ---- | M] () -- C:\WINDOWS\System32\drivers\nic1394.sys.dump
[2014/02/06 14:01:32 | 000,052,480 | ---- | M] () -- C:\WINDOWS\System32\drivers\i8042prt.sys.dump
[2014/02/06 14:01:32 | 000,051,328 | ---- | M] () -- C:\WINDOWS\System32\drivers\rasl2tp.sys.dump
[2014/02/06 14:01:32 | 000,042,112 | ---- | M] () -- C:\WINDOWS\System32\drivers\imapi.sys.dump
[2014/02/06 14:01:32 | 000,040,576 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndproxy.sys.dump
[2014/02/06 14:01:32 | 000,036,352 | ---- | M] () -- C:\WINDOWS\System32\drivers\disk.sys.dump
[2014/02/06 14:01:32 | 000,030,848 | ---- | M] () -- C:\WINDOWS\System32\drivers\npfs.sys.dump
[2014/02/06 14:01:32 | 000,026,368 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbstor.sys.dump
[2014/02/06 14:01:32 | 000,024,960 | ---- | M] () -- C:\WINDOWS\System32\drivers\pciidex.sys.dump
[2014/02/06 14:01:32 | 000,020,992 | ---- | M] () -- C:\WINDOWS\System32\drivers\vga.sys.dump
[2014/02/06 14:01:32 | 000,018,688 | ---- | M] () -- C:\WINDOWS\System32\drivers\cdaudio.sys.dump
[2014/02/06 14:01:32 | 000,012,032 | ---- | M] () -- C:\WINDOWS\System32\drivers\nikedrv.sys.dump
[2014/02/06 14:01:32 | 000,011,392 | ---- | M] () -- C:\WINDOWS\System32\drivers\sfloppy.sys.dump
[2014/02/06 14:01:32 | 000,005,376 | ---- | M] () -- C:\WINDOWS\System32\drivers\mspclock.sys.dump
[2014/02/06 14:01:30 | 000,225,664 | ---- | M] () -- C:\WINDOWS\System32\drivers\tcpip6.sys.dump
[2014/02/06 14:01:30 | 000,153,344 | ---- | M] () -- C:\WINDOWS\System32\drivers\dmio.sys.dump
[2014/02/06 14:01:30 | 000,138,112 | ---- | M] () -- C:\WINDOWS\System32\drivers\afd.sys.dump
[2014/02/06 14:01:30 | 000,096,384 | ---- | M] () -- C:\WINDOWS\System32\drivers\scsiport.sys.dump
[2014/02/06 14:01:30 | 000,048,384 | ---- | M] () -- C:\WINDOWS\System32\drivers\raspptp.sys.dump
[2014/02/06 14:01:30 | 000,044,544 | ---- | M] () -- C:\WINDOWS\System32\drivers\fips.sys.dump
[2014/02/06 14:01:30 | 000,032,128 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbccgp.sys.dump
[2014/02/06 14:01:30 | 000,020,992 | ---- | M] () -- C:\WINDOWS\System32\drivers\rtl8139.sys.dump
[2014/02/06 14:01:30 | 000,019,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\tdi.sys.dump
[2014/02/06 14:01:30 | 000,019,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\msfs.sys.dump
[2014/02/06 14:01:30 | 000,018,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\wpdusb.sys.dump
[2014/02/06 14:01:30 | 000,014,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndisuio.sys.dump
[2014/02/06 14:01:30 | 000,011,264 | ---- | M] () -- C:\WINDOWS\System32\drivers\irenum.sys.dump
[2014/02/06 14:01:30 | 000,005,888 | ---- | M] () -- C:\WINDOWS\System32\drivers\rootmdm.sys.dump
[2014/02/06 14:01:30 | 000,004,992 | ---- | M] () -- C:\WINDOWS\System32\drivers\mspqm.sys.dump
[2014/02/06 14:01:28 | 000,361,344 | ---- | M] () -- C:\WINDOWS\System32\drivers\tcpip.sys.dump
[2014/02/06 14:01:28 | 000,187,776 | ---- | M] () -- C:\WINDOWS\System32\drivers\acpi.sys.dump
[2014/02/06 14:01:28 | 000,182,656 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndis.sys.dump
[2014/02/06 14:01:28 | 000,124,016 | ---- | M] () -- C:\WINDOWS\System32\drivers\SYMEVENT.SYS.dump
[2014/02/06 14:01:28 | 000,081,664 | ---- | M] () -- C:\WINDOWS\System32\drivers\videoprt.sys.dump
[2014/02/06 14:01:28 | 000,060,800 | ---- | M] () -- C:\WINDOWS\System32\drivers\sysaudio.sys.dump
[2014/02/06 14:01:28 | 000,060,800 | ---- | M] () -- C:\WINDOWS\System32\drivers\arp1394.sys.dump
[2014/02/06 14:01:28 | 000,052,352 | ---- | M] () -- C:\WINDOWS\System32\drivers\volsnap.sys.dump
[2014/02/06 14:01:28 | 000,042,752 | ---- | M] () -- C:\WINDOWS\System32\drivers\p3.sys.dump
[2014/02/06 14:01:28 | 000,027,392 | ---- | M] () -- C:\WINDOWS\System32\drivers\fdc.sys.dump
[2014/02/06 14:01:28 | 000,025,344 | ---- | M] () -- C:\WINDOWS\System32\drivers\sonydcam.sys.dump
[2014/02/06 14:01:28 | 000,020,608 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbuhci.sys.dump
[2014/02/06 14:01:28 | 000,015,872 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbintel.sys.dump
[2014/02/06 14:01:28 | 000,015,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\serenum.sys.dump
[2014/02/06 14:01:28 | 000,007,552 | ---- | M] () -- C:\WINDOWS\System32\drivers\mskssrv.sys.dump
[2014/02/06 14:01:28 | 000,006,784 | ---- | M] () -- C:\WINDOWS\System32\drivers\parvdm.sys.dump
[2014/02/06 14:01:26 | 000,456,576 | ---- | M] () -- C:\WINDOWS\System32\drivers\mrxsmb.sys.dump
[2014/02/06 14:01:26 | 000,175,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\rdbss.sys.dump
[2014/02/06 14:01:26 | 000,152,832 | ---- | M] () -- C:\WINDOWS\System32\drivers\ipnat.sys.dump
[2014/02/06 14:01:26 | 000,075,264 | ---- | M] () -- C:\WINDOWS\System32\drivers\ipsec.sys.dump
[2014/02/06 14:01:26 | 000,045,696 | ---- | M] () -- C:\WINDOWS\System32\drivers\cirrus.sys.dump
[2014/02/06 14:01:26 | 000,044,672 | ---- | M] () -- C:\WINDOWS\System32\drivers\uagp35.sys.dump
[2014/02/06 14:01:26 | 000,036,736 | ---- | M] () -- C:\WINDOWS\System32\drivers\crusoe.sys.dump
[2014/02/06 14:01:26 | 000,034,688 | ---- | M] () -- C:\WINDOWS\System32\drivers\netbios.sys.dump
[2014/02/06 14:01:26 | 000,034,560 | ---- | M] () -- C:\WINDOWS\System32\drivers\wanarp.sys.dump
[2014/02/06 14:01:26 | 000,025,728 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbcamd2.sys.dump
[2014/02/06 14:01:26 | 000,021,760 | ---- | M] () -- C:\WINDOWS\System32\drivers\point32.sys.dump
[2014/02/06 14:01:26 | 000,020,480 | ---- | M] () -- C:\WINDOWS\System32\drivers\flpydisk.sys.dump
[2014/02/06 14:01:26 | 000,014,336 | ---- | M] () -- C:\WINDOWS\System32\drivers\asyncmac.sys.dump
[2014/02/06 14:01:26 | 000,012,040 | ---- | M] () -- C:\WINDOWS\System32\drivers\tdpipe.sys.dump
[2014/02/06 14:01:26 | 000,006,272 | ---- | M] () -- C:\WINDOWS\System32\drivers\splitter.sys.dump
[2014/02/06 14:01:24 | 000,737,973 | ---- | M] () -- C:\WINDOWS\System32\drivers\winachcf.sys.dump
[2014/02/06 14:01:24 | 000,384,768 | ---- | M] () -- C:\WINDOWS\System32\drivers\update.sys.dump
[2014/02/06 14:01:24 | 000,334,848 | ---- | M] () -- C:\WINDOWS\System32\drivers\srv.sys.dump
[2014/02/06 14:01:24 | 000,196,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\rdpdr.sys.dump
[2014/02/06 14:01:24 | 000,120,192 | ---- | M] () -- C:\WINDOWS\System32\drivers\pcmcia.sys.dump
[2014/02/06 14:01:24 | 000,083,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\wdmaud.sys.dump
[2014/02/06 14:01:24 | 000,042,368 | ---- | M] () -- C:\WINDOWS\System32\drivers\agp440.sys.dump
[2014/02/06 14:01:24 | 000,035,840 | ---- | M] () -- C:\WINDOWS\System32\drivers\processr.sys.dump
[2014/02/06 14:01:24 | 000,020,552 | ---- | M] () -- C:\WINDOWS\System32\drivers\mbam.sys.dump
[2014/02/06 14:01:24 | 000,016,128 | ---- | M] () -- C:\WINDOWS\System32\drivers\MODEMCSA.sys.dump
[2014/02/06 14:01:24 | 000,012,672 | ---- | M] () -- C:\WINDOWS\System32\drivers\mutohpen.sys.dump
[2014/02/06 12:48:34 | 000,000,360 | ---- | M] () -- C:\WINDOWS\tasks\PCHealth Scheduler for Data Collection.job
[2014/02/06 11:42:46 | 000,000,719 | ---- | M] () -- C:\Documents and Settings\RICK\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2014/02/06 11:42:44 | 000,000,708 | ---- | M] () -- C:\Documents and Settings\RICK\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2014/02/05 23:00:00 | 000,000,502 | ---- | M] () -- C:\WINDOWS\tasks\Tune-up Application Start.job
[2014/02/04 18:00:44 | 000,378,330 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2014/02/04 18:00:44 | 000,052,534 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2014/02/04 17:59:24 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2014/02/04 17:59:04 | 000,004,635 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2014/02/04 17:57:40 | 000,373,672 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2014/02/04 17:45:46 | 000,000,327 | RHS- | M] () -- C:\boot.ini
[2014/02/04 17:42:56 | 000,250,048 | RHS- | M] () -- C:\ntldr
[2014/02/04 17:42:56 | 000,047,564 | RHS- | M] () -- C:\ntdetect.com
[2014/02/03 19:47:08 | 000,001,341 | ---- | M] () -- C:\WINDOWS\JUNO.INI
[2014/02/03 19:36:20 | 000,000,039 | ---- | M] () -- C:\WINDOWS\wininit.ini
[2014/02/03 19:36:18 | 000,000,028 | ---- | M] () -- C:\WINDOWS\msoffice.ini
[2014/01/31 10:28:48 | 000,002,560 | ---- | M] () -- C:\WINDOWS\_MSRSTRT.EXE
[2014/01/28 16:52:26 | 000,021,048 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak

========== Files Created - No Company Name ==========

[2014/02/06 14:01:57 | 000,233,344 | ---- | C] () -- C:\WINDOWS\System32\drivers\cdudf_xp.sys.dump
[2014/02/06 14:01:57 | 000,205,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\udfreadr_xp.sys.dump
[2014/02/06 14:01:57 | 000,019,702 | ---- | C] () -- C:\WINDOWS\System32\drivers\Mmc_2k.sys.dump
[2014/02/06 14:01:57 | 000,017,990 | ---- | C] () -- C:\WINDOWS\System32\drivers\Dvd_2k.sys.dump
[2014/02/06 14:01:57 | 000,002,560 | ---- | C] () -- C:\WINDOWS\System32\drivers\cdralw2k.sys.dump
[2014/02/06 14:01:56 | 000,078,454 | ---- | C] () -- C:\WINDOWS\System32\drivers\pwd_2K.sys.dump
[2014/02/06 14:01:56 | 000,057,856 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinbtxx.sys.dump
[2014/02/06 14:01:56 | 000,025,472 | ---- | C] () -- C:\WINDOWS\System32\drivers\imapiRox.sys.dump
[2014/02/06 14:01:56 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinpdxx.sys.dump
[2014/02/06 14:01:56 | 000,013,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinmdxx.sys.dump
[2014/02/06 14:01:56 | 000,012,032 | ---- | C] () -- C:\WINDOWS\System32\drivers\ws2ifsl.sys.dump
[2014/02/06 14:01:56 | 000,002,432 | ---- | C] () -- C:\WINDOWS\System32\drivers\Cdr4_xp.sys.dump
[2014/02/06 14:01:55 | 000,104,960 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinrvxx.sys.dump
[2014/02/06 14:01:55 | 000,052,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinraxx.sys.dump
[2014/02/06 14:01:55 | 000,051,712 | ---- | C] () -- C:\WINDOWS\System32\drivers\tosdvd.sys.dump
[2014/02/06 14:01:55 | 000,021,376 | ---- | C] () -- C:\WINDOWS\System32\drivers\tsbvcap.sys.dump
[2014/02/06 14:01:55 | 000,014,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\smclib.sys.dump
[2014/02/06 14:01:55 | 000,012,032 | ---- | C] () -- C:\WINDOWS\System32\drivers\riodrv.sys.dump
[2014/02/06 14:01:55 | 000,012,032 | ---- | C] () -- C:\WINDOWS\System32\drivers\rio8drv.sys.dump
[2014/02/06 14:01:54 | 000,055,936 | ---- | C] () -- C:\WINDOWS\System32\drivers\nwlnkspx.sys.dump
[2014/02/06 14:01:54 | 000,034,432 | ---- | C] () -- C:\WINDOWS\System32\drivers\rawwan.sys.dump
[2014/02/06 14:01:54 | 000,032,896 | ---- | C] () -- C:\WINDOWS\System32\drivers\ipfltdrv.sys.dump
[2014/02/06 14:01:54 | 000,032,512 | ---- | C] () -- C:\WINDOWS\System32\drivers\nwlnkfwd.sys.dump
[2014/02/06 14:01:54 | 000,031,744 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinxbxx.sys.dump
[2014/02/06 14:01:54 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinsnxx.sys.dump
[2014/02/06 14:01:54 | 000,013,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinttxx.sys.dump
[2014/02/06 14:01:54 | 000,012,416 | ---- | C] () -- C:\WINDOWS\System32\drivers\nwlnkflt.sys.dump
[2014/02/06 14:01:53 | 000,352,256 | ---- | C] () -- C:\WINDOWS\System32\drivers\atmuni.sys.dump
[2014/02/06 14:01:53 | 000,262,528 | ---- | C] () -- C:\WINDOWS\System32\drivers\cinemst2.sys.dump
[2014/02/06 14:01:53 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinxsxx.sys.dump
[2014/02/06 14:01:53 | 000,052,864 | ---- | C] () -- C:\WINDOWS\System32\drivers\DMusic.sys.dump
[2014/02/06 14:01:53 | 000,013,952 | ---- | C] () -- C:\WINDOWS\System32\drivers\cbidf2k.sys.dump
[2014/02/06 14:01:53 | 000,011,776 | ---- | C] () -- C:\WINDOWS\System32\drivers\cpqdap01.sys.dump
[2014/02/06 14:01:52 | 000,042,240 | ---- | C] () -- C:\WINDOWS\System32\drivers\viaagp.sys.dump
[2014/02/06 14:01:52 | 000,019,200 | ---- | C] () -- C:\WINDOWS\System32\drivers\hidir.sys.dump
[2014/02/06 14:01:52 | 000,016,512 | ---- | C] () -- C:\WINDOWS\System32\drivers\raspti.sys.dump
[2014/02/06 14:01:52 | 000,008,832 | ---- | C] () -- C:\WINDOWS\System32\drivers\rasacd.sys.dump
[2014/02/06 14:01:52 | 000,007,936 | ---- | C] () -- C:\WINDOWS\System32\drivers\fs_rec.sys.dump
[2014/02/06 14:01:52 | 000,004,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\rdpcdd.sys.dump
[2014/02/06 14:01:52 | 000,004,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\beep.sys.dump
[2014/02/06 14:01:52 | 000,002,944 | ---- | C] () -- C:\WINDOWS\System32\drivers\null.sys.dump
[2014/02/06 14:01:51 | 000,799,744 | ---- | C] () -- C:\WINDOWS\System32\drivers\dmboot.sys.dump
[2014/02/06 14:01:51 | 000,125,056 | ---- | C] () -- C:\WINDOWS\System32\drivers\ftdisk.sys.dump
[2014/02/06 14:01:51 | 000,046,464 | ---- | C] () -- C:\WINDOWS\System32\drivers\gagp30kx.sys.dump
[2014/02/06 14:01:51 | 000,014,208 | ---- | C] () -- C:\WINDOWS\System32\drivers\diskdump.sys.dump
[2014/02/06 14:01:51 | 000,011,904 | ---- | C] () -- C:\WINDOWS\System32\drivers\sffdisk.sys.dump
[2014/02/06 14:01:51 | 000,004,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\wmilib.sys.dump
[2014/02/06 14:01:51 | 000,003,456 | ---- | C] () -- C:\WINDOWS\System32\drivers\oprghdlr.sys.dump
[2014/02/06 14:01:50 | 000,141,056 | ---- | C] () -- C:\WINDOWS\System32\drivers\ks.sys.dump
[2014/02/06 14:01:50 | 000,092,288 | ---- | C] () -- C:\WINDOWS\System32\drivers\ksecdd.sys.dump
[2014/02/06 14:01:50 | 000,063,744 | ---- | C] () -- C:\WINDOWS\System32\drivers\cdfs.sys.dump
[2014/02/06 14:01:50 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\drivers\hidclass.sys.dump
[2014/02/06 14:01:50 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\drivers\kbdclass.sys.dump
[2014/02/06 14:01:50 | 000,016,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys.dump
[2014/02/06 14:01:50 | 000,005,504 | ---- | C] () -- C:\WINDOWS\System32\drivers\intelide.sys.dump
[2014/02/06 14:01:49 | 000,731,648 | ---- | C] () -- C:\WINDOWS\System32\drivers\nv4.sys.dump
[2014/02/06 14:01:49 | 000,180,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\mrxdav.sys.dump
[2014/02/06 14:01:49 | 000,091,520 | ---- | C] () -- C:\WINDOWS\System32\drivers\ndiswan.sys.dump
[2014/02/06 14:01:49 | 000,051,712 | ---- | C] () -- C:\WINDOWS\System32\drivers\BrSerIf.sys.dump
[2014/02/06 14:01:49 | 000,015,295 | ---- | C] () -- C:\WINDOWS\System32\drivers\BrScnUsb.sys.dump
[2014/02/06 14:01:49 | 000,011,648 | ---- | C] () -- C:\WINDOWS\System32\drivers\BrUsbSer.sys.dump
[2014/02/06 14:01:49 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\drivers\audstub.sys.dump
[2014/02/06 14:01:48 | 000,907,456 | ---- | C] () -- C:\WINDOWS\System32\drivers\HCF_MSFT.sys.dump
[2014/02/06 14:01:48 | 000,574,976 | ---- | C] () -- C:\WINDOWS\System32\drivers\ntfs.sys.dump
[2014/02/06 14:01:48 | 000,402,944 | ---- | C] () -- C:\WINDOWS\System32\drivers\BLKWGU.sys.dump
[2014/02/06 14:01:48 | 000,080,128 | ---- | C] () -- C:\WINDOWS\System32\drivers\parport.sys.dump
[2014/02/06 14:01:48 | 000,058,112 | ---- | C] () -- C:\WINDOWS\System32\drivers\vdmindvd.sys.dump
[2014/02/06 14:01:48 | 000,041,472 | ---- | C] () -- C:\WINDOWS\System32\drivers\raspppoe.sys.dump
[2014/02/06 14:01:47 | 000,096,256 | ---- | C] () -- C:\WINDOWS\System32\drivers\ac97intc.sys.dump
[2014/02/06 14:01:47 | 000,082,944 | ---- | C] () -- C:\WINDOWS\System32\drivers\WudfRd.sys.dump
[2014/02/06 14:01:47 | 000,056,623 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1btxx.sys.dump
[2014/02/06 14:01:47 | 000,044,928 | ---- | C] () -- C:\WINDOWS\System32\drivers\agpcpq.sys.dump
[2014/02/06 14:01:47 | 000,042,752 | ---- | C] () -- C:\WINDOWS\System32\drivers\alim1541.sys.dump
[2014/02/06 14:01:47 | 000,012,160 | ---- | C] () -- C:\WINDOWS\System32\drivers\fsvga.sys.dump
[2014/02/06 14:01:47 | 000,011,615 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1mdxx.sys.dump
[2014/02/06 14:01:47 | 000,005,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\smbali.sys.dump
[2014/02/06 14:01:46 | 000,063,663 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1rvxx.sys.dump
[2014/02/06 14:01:46 | 000,036,463 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1tuxx.sys.dump
[2014/02/06 14:01:46 | 000,034,735 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1xsxx.sys.dump
[2014/02/06 14:01:46 | 000,030,671 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1raxx.sys.dump
[2014/02/06 14:01:46 | 000,029,455 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1xbxx.sys.dump
[2014/02/06 14:01:46 | 000,026,367 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1snxx.sys.dump
[2014/02/06 14:01:46 | 000,021,343 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1ttxx.sys.dump
[2014/02/06 14:01:46 | 000,012,047 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1pdxx.sys.dump
[2014/02/06 14:01:45 | 000,202,624 | ---- | C] () -- C:\WINDOWS\System32\drivers\RMCast.sys.dump
[2014/02/06 14:01:45 | 000,073,472 | ---- | C] () -- C:\WINDOWS\System32\drivers\sr.sys.dump
[2014/02/06 14:01:45 | 000,066,048 | ---- | C] () -- C:\WINDOWS\System32\drivers\udfs.sys.dump
[2014/02/06 14:01:45 | 000,057,600 | ---- | C] () -- C:\WINDOWS\System32\drivers\redbook.sys.dump
[2014/02/06 14:01:45 | 000,030,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\rndismp.sys.dump
[2014/02/06 14:01:45 | 000,021,896 | ---- | C] () -- C:\WINDOWS\System32\drivers\tdtcp.sys.dump
[2014/02/06 14:01:45 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\drivers\secdrv.sys.dump
[2014/02/06 14:01:45 | 000,004,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\swenum.sys.dump
[2014/02/06 14:01:44 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\drivers\bthport.sys.dump
[2014/02/06 14:01:44 | 000,101,120 | ---- | C] () -- C:\WINDOWS\System32\drivers\bthpan.sys.dump
[2014/02/06 14:01:44 | 000,037,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\bthmodem.sys.dump
[2014/02/06 14:01:44 | 000,036,480 | ---- | C] () -- C:\WINDOWS\System32\drivers\bthprint.sys.dump
[2014/02/06 14:01:44 | 000,017,024 | ---- | C] () -- C:\WINDOWS\System32\drivers\bthenum.sys.dump
[2014/02/06 14:01:44 | 000,012,800 | ---- | C] () -- C:\WINDOWS\System32\drivers\usb8023.sys.dump
[2014/02/06 14:01:44 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\drivers\tunmp.sys.dump
[2014/02/06 14:01:43 | 000,685,056 | ---- | C] () -- C:\WINDOWS\System32\drivers\hsfcxts2.sys.dump
[2014/02/06 14:01:43 | 000,220,032 | ---- | C] () -- C:\WINDOWS\System32\drivers\hsfbs2s2.sys.dump
[2014/02/06 14:01:43 | 000,144,384 | ---- | C] () -- C:\WINDOWS\System32\drivers\hdaudbus.sys.dump
[2014/02/06 14:01:43 | 000,129,792 | ---- | C] () -- C:\WINDOWS\System32\drivers\fltmgr.sys.dump
[2014/02/06 14:01:43 | 000,042,368 | ---- | C] () -- C:\WINDOWS\System32\drivers\mountmgr.sys.dump
[2014/02/06 14:01:43 | 000,025,600 | ---- | C] () -- C:\WINDOWS\System32\drivers\hidbth.sys.dump
[2014/02/06 14:01:43 | 000,018,944 | ---- | C] () -- C:\WINDOWS\System32\drivers\bthusb.sys.dump
[2014/02/06 14:01:42 | 001,041,536 | ---- | C] () -- C:\WINDOWS\System32\drivers\hsfdpsp2.sys.dump
[2014/02/06 14:01:42 | 000,264,832 | ---- | C] () -- C:\WINDOWS\System32\drivers\http.sys.dump
[2014/02/06 14:01:42 | 000,036,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\ip6fw.sys.dump
[2014/02/06 14:01:42 | 000,036,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\intelppm.sys.dump
[2014/02/06 14:01:42 | 000,011,868 | ---- | C] () -- C:\WINDOWS\System32\drivers\mdmxsdk.sys.dump
[2014/02/06 14:01:42 | 000,007,680 | ---- | C] () -- C:\WINDOWS\System32\drivers\mcd.sys.dump
[2014/02/06 14:01:41 | 001,309,184 | ---- | C] () -- C:\WINDOWS\System32\drivers\mtlstrm.sys.dump
[2014/02/06 14:01:41 | 000,452,736 | ---- | C] () -- C:\WINDOWS\System32\drivers\mtxparhm.sys.dump
[2014/02/06 14:01:41 | 000,180,360 | ---- | C] () -- C:\WINDOWS\System32\drivers\ntmtlfax.sys.dump
[2014/02/06 14:01:41 | 000,126,686 | ---- | C] () -- C:\WINDOWS\System32\drivers\mtlmnt5.sys.dump
[2014/02/06 14:01:41 | 000,015,488 | ---- | C] () -- C:\WINDOWS\System32\drivers\mssmbios.sys.dump
[2014/02/06 14:01:40 | 000,166,912 | ---- | C] () -- C:\WINDOWS\System32\drivers\s3gnbm.sys.dump
[2014/02/06 14:01:40 | 000,079,232 | ---- | C] () -- C:\WINDOWS\System32\drivers\sdbus.sys.dump
[2014/02/06 14:01:40 | 000,059,136 | ---- | C] () -- C:\WINDOWS\System32\drivers\rfcomm.sys.dump
[2014/02/06 14:01:40 | 000,030,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\rndismpx.sys.dump
[2014/02/06 14:01:40 | 000,025,600 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbcamd.sys.dump
[2014/02/06 14:01:40 | 000,013,776 | ---- | C] () -- C:\WINDOWS\System32\drivers\recagent.sys.dump
[2014/02/06 14:01:40 | 000,011,008 | ---- | C] () -- C:\WINDOWS\System32\drivers\sffp_sd.sys.dump
[2014/02/06 14:01:40 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\drivers\sffp_mmc.sys.dump
[2014/02/06 14:01:39 | 000,404,990 | ---- | C] () -- C:\WINDOWS\System32\drivers\slntamr.sys.dump
[2014/02/06 14:01:39 | 000,129,535 | ---- | C] () -- C:\WINDOWS\System32\drivers\slnt7554.sys.dump
[2014/02/06 14:01:39 | 000,095,424 | ---- | C] () -- C:\WINDOWS\System32\drivers\slnthal.sys.dump
[2014/02/06 14:01:39 | 000,059,520 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbhub.sys.dump
[2014/02/06 14:01:39 | 000,040,840 | ---- | C] () -- C:\WINDOWS\System32\drivers\termdd.sys.dump
[2014/02/06 14:01:39 | 000,030,208 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbehci.sys.dump
[2014/02/06 14:01:39 | 000,013,240 | ---- | C] () -- C:\WINDOWS\System32\drivers\slwdmsup.sys.dump
[2014/02/06 14:01:38 | 000,143,872 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbport.sys.dump
[2014/02/06 14:01:38 | 000,121,984 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbvideo.sys.dump
[2014/02/06 14:01:38 | 000,030,208 | ---- | C] () -- C:\WINDOWS\System32\drivers\wceusbsh.sys.dump
[2014/02/06 14:01:38 | 000,012,800 | ---- | C] () -- C:\WINDOWS\System32\drivers\usb8023x.sys.dump
[2014/02/06 14:01:38 | 000,011,935 | ---- | C] () -- C:\WINDOWS\System32\drivers\wadv11nt.sys.dump
[2014/02/06 14:01:38 | 000,011,871 | ---- | C] () -- C:\WINDOWS\System32\drivers\wadv09nt.sys.dump
[2014/02/06 14:01:38 | 000,011,807 | ---- | C] () -- C:\WINDOWS\System32\drivers\wadv07nt.sys.dump
[2014/02/06 14:01:38 | 000,011,295 | ---- | C] () -- C:\WINDOWS\System32\drivers\wadv08nt.sys.dump
[2014/02/06 14:01:38 | 000,004,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\mnmdd.sys.dump
[2014/02/06 14:01:37 | 000,701,440 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati2mtag.sys.dump
[2014/02/06 14:01:37 | 000,056,576 | ---- | C] () -- C:\WINDOWS\System32\drivers\swmidi.sys.dump
[2014/02/06 14:01:37 | 000,043,008 | ---- | C] () -- C:\WINDOWS\System32\drivers\amdagp.sys.dump
[2014/02/06 14:01:37 | 000,036,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\an983.sys.dump
[2014/02/06 14:01:37 | 000,025,856 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbprint.sys.dump
[2014/02/06 14:01:37 | 000,025,471 | ---- | C] () -- C:\WINDOWS\System32\drivers\watv10nt.sys.dump
[2014/02/06 14:01:37 | 000,022,271 | ---- | C] () -- C:\WINDOWS\System32\drivers\watv06nt.sys.dump
[2014/02/06 14:01:36 | 000,096,512 | ---- | C] () -- C:\WINDOWS\System32\drivers\atapi.sys.dump
[2014/02/06 14:01:36 | 000,071,552 | ---- | C] () -- C:\WINDOWS\System32\drivers\bridge.sys.dump
[2014/02/06 14:01:36 | 000,069,120 | ---- | C] () -- C:\WINDOWS\System32\drivers\psched.sys.dump
[2014/02/06 14:01:36 | 000,059,904 | ---- | C] () -- C:\WINDOWS\System32\drivers\atmarpc.sys.dump
[2014/02/06 14:01:36 | 000,055,808 | ---- | C] () -- C:\WINDOWS\System32\drivers\atmlane.sys.dump
[2014/02/06 14:01:36 | 000,049,536 | ---- | C] () -- C:\WINDOWS\System32\drivers\classpnp.sys.dump
[2014/02/06 14:01:36 | 000,031,360 | ---- | C] () -- C:\WINDOWS\System32\drivers\atmepvc.sys.dump
[2014/02/06 14:01:36 | 000,014,208 | ---- | C] () -- C:\WINDOWS\System32\drivers\wacompen.sys.dump
[2014/02/06 14:01:35 | 000,327,040 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati2mtaa.sys.dump
[2014/02/06 14:01:35 | 000,146,048 | ---- | C] () -- C:\WINDOWS\System32\drivers\portcls.sys.dump
[2014/02/06 14:01:35 | 000,105,344 | ---- | C] () -- C:\WINDOWS\System32\drivers\mup.sys.dump
[2014/02/06 14:01:35 | 000,062,976 | ---- | C] () -- C:\WINDOWS\System32\drivers\cdrom.sys.dump
[2014/02/06 14:01:35 | 000,037,760 | ---- | C] () -- C:\WINDOWS\System32\drivers\amdk7.sys.dump
[2014/02/06 14:01:35 | 000,020,864 | ---- | C] () -- C:\WINDOWS\System32\drivers\ipinip.sys.dump
[2014/02/06 14:01:35 | 000,010,496 | ---- | C] () -- C:\WINDOWS\System32\drivers\dxapi.sys.dump
[2014/02/06 14:01:34 | 000,172,416 | ---- | C] () -- C:\WINDOWS\System32\drivers\kmixer.sys.dump
[2014/02/06 14:01:34 | 000,142,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\aec.sys.dump
[2014/02/06 14:01:34 | 000,077,568 | ---- | C] () -- C:\WINDOWS\System32\drivers\WudfPf.sys.dump
[2014/02/06 14:01:34 | 000,064,512 | ---- | C] () -- C:\WINDOWS\System32\drivers\serial.sys.dump
[2014/02/06 14:01:34 | 000,010,112 | ---- | C] () -- C:\WINDOWS\System32\drivers\ndistapi.sys.dump
[2014/02/06 14:01:34 | 000,005,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\dmload.sys.dump
[2014/02/06 14:01:34 | 000,003,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\dxgthk.sys.dump
[2014/02/06 14:01:34 | 000,002,944 | ---- | C] () -- C:\WINDOWS\System32\drivers\drmkaud.sys.dump
[2014/02/06 14:01:33 | 000,071,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\dxg.sys.dump
[2014/02/06 14:01:33 | 000,068,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\pci.sys.dump
[2014/02/06 14:01:33 | 000,035,072 | ---- | C] () -- C:\WINDOWS\System32\drivers\msgpc.sys.dump
[2014/02/06 14:01:33 | 000,030,080 | ---- | C] () -- C:\WINDOWS\System32\drivers\modem.sys.dump
[2014/02/06 14:01:33 | 000,019,712 | ---- | C] () -- C:\WINDOWS\System32\drivers\partmgr.sys.dump
[2014/02/06 14:01:33 | 000,014,976 | ---- | C] () -- C:\WINDOWS\System32\drivers\tape.sys.dump
[2014/02/06 14:01:33 | 000,011,648 | ---- | C] () -- C:\WINDOWS\System32\drivers\acpiec.sys.dump
[2014/02/06 14:01:33 | 000,004,736 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbd.sys.dump
[2014/02/06 14:01:32 | 000,143,744 | ---- | C] () -- C:\WINDOWS\System32\drivers\fastfat.sys.dump
[2014/02/06 14:01:32 | 000,060,160 | ---- | C] () -- C:\WINDOWS\System32\drivers\drmk.sys.dump
[2014/02/06 14:01:32 | 000,040,320 | ---- | C] () -- C:\WINDOWS\System32\drivers\nmnt.sys.dump
[2014/02/06 14:01:32 | 000,037,248 | ---- | C] () -- C:\WINDOWS\System32\drivers\isapnp.sys.dump
[2014/02/06 14:01:32 | 000,024,960 | ---- | C] () -- C:\WINDOWS\System32\drivers\hidparse.sys.dump
[2014/02/06 14:01:32 | 000,023,040 | ---- | C] () -- C:\WINDOWS\System32\drivers\mouclass.sys.dump
[2014/02/06 14:01:32 | 000,017,792 | ---- | C] () -- C:\WINDOWS\System32\drivers\ptilink.sys.dump
[2014/02/06 14:01:32 | 000,015,104 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbscan.sys.dump
[2014/02/06 14:01:31 | 000,162,816 | ---- | C] () -- C:\WINDOWS\System32\drivers\netbt.sys.dump
[2014/02/06 14:01:31 | 000,052,480 | ---- | C] () -- C:\WINDOWS\System32\drivers\i8042prt.sys.dump
[2014/02/06 14:01:31 | 000,051,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\rasl2tp.sys.dump
[2014/02/06 14:01:31 | 000,040,576 | ---- | C] () -- C:\WINDOWS\System32\drivers\ndproxy.sys.dump
[2014/02/06 14:01:31 | 000,036,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\disk.sys.dump
[2014/02/06 14:01:31 | 000,018,688 | ---- | C] () -- C:\WINDOWS\System32\drivers\cdaudio.sys.dump
[2014/02/06 14:01:31 | 000,012,032 | ---- | C] () -- C:\WINDOWS\System32\drivers\nikedrv.sys.dump
[2014/02/06 14:01:31 | 000,005,376 | ---- | C] () -- C:\WINDOWS\System32\drivers\mspclock.sys.dump
[2014/02/06 14:01:30 | 000,063,232 | ---- | C] () -- C:\WINDOWS\System32\drivers\nwlnknb.sys.dump
[2014/02/06 14:01:30 | 000,061,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\nic1394.sys.dump
[2014/02/06 14:01:30 | 000,042,112 | ---- | C] () -- C:\WINDOWS\System32\drivers\imapi.sys.dump
[2014/02/06 14:01:30 | 000,030,848 | ---- | C] () -- C:\WINDOWS\System32\drivers\npfs.sys.dump
[2014/02/06 14:01:30 | 000,026,368 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbstor.sys.dump
[2014/02/06 14:01:30 | 000,024,960 | ---- | C] () -- C:\WINDOWS\System32\drivers\pciidex.sys.dump
[2014/02/06 14:01:30 | 000,020,992 | ---- | C] () -- C:\WINDOWS\System32\drivers\vga.sys.dump
[2014/02/06 14:01:30 | 000,011,392 | ---- | C] () -- C:\WINDOWS\System32\drivers\sfloppy.sys.dump
[2014/02/06 14:01:29 | 000,225,664 | ---- | C] () -- C:\WINDOWS\System32\drivers\tcpip6.sys.dump
[2014/02/06 14:01:29 | 000,153,344 | ---- | C] () -- C:\WINDOWS\System32\drivers\dmio.sys.dump
[2014/02/06 14:01:29 | 000,138,112 | ---- | C] () -- C:\WINDOWS\System32\drivers\afd.sys.dump
[2014/02/06 14:01:29 | 000,044,544 | ---- | C] () -- C:\WINDOWS\System32\drivers\fips.sys.dump
[2014/02/06 14:01:29 | 000,032,128 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbccgp.sys.dump
[2014/02/06 14:01:29 | 000,020,992 | ---- | C] () -- C:\WINDOWS\System32\drivers\rtl8139.sys.dump
[2014/02/06 14:01:29 | 000,019,072 | ---- | C] () -- C:\WINDOWS\System32\drivers\msfs.sys.dump
[2014/02/06 14:01:29 | 000,014,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\ndisuio.sys.dump
[2014/02/06 14:01:28 | 000,182,656 | ---- | C] () -- C:\WINDOWS\System32\drivers\ndis.sys.dump
[2014/02/06 14:01:28 | 000,096,384 | ---- | C] () -- C:\WINDOWS\System32\drivers\scsiport.sys.dump
[2014/02/06 14:01:28 | 000,048,384 | ---- | C] () -- C:\WINDOWS\System32\drivers\raspptp.sys.dump
[2014/02/06 14:01:28 | 000,019,072 | ---- | C] () -- C:\WINDOWS\System32\drivers\tdi.sys.dump
[2014/02/06 14:01:28 | 000,018,944 | ---- | C] () -- C:\WINDOWS\System32\drivers\wpdusb.sys.dump
[2014/02/06 14:01:28 | 000,011,264 | ---- | C] () -- C:\WINDOWS\System32\drivers\irenum.sys.dump
[2014/02/06 14:01:28 | 000,005,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\rootmdm.sys.dump
[2014/02/06 14:01:28 | 000,004,992 | ---- | C] () -- C:\WINDOWS\System32\drivers\mspqm.sys.dump
[2014/02/06 14:01:27 | 000,361,344 | ---- | C] () -- C:\WINDOWS\System32\drivers\tcpip.sys.dump
[2014/02/06 14:01:27 | 000,124,016 | ---- | C] () -- C:\WINDOWS\System32\drivers\SYMEVENT.SYS.dump
[2014/02/06 14:01:27 | 000,081,664 | ---- | C] () -- C:\WINDOWS\System32\drivers\videoprt.sys.dump
[2014/02/06 14:01:27 | 000,042,752 | ---- | C] () -- C:\WINDOWS\System32\drivers\p3.sys.dump
[2014/02/06 14:01:27 | 000,025,344 | ---- | C] () -- C:\WINDOWS\System32\drivers\sonydcam.sys.dump
[2014/02/06 14:01:27 | 000,020,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbuhci.sys.dump
[2014/02/06 14:01:27 | 000,015,744 | ---- | C] () -- C:\WINDOWS\System32\drivers\serenum.sys.dump
[2014/02/06 14:01:26 | 000,187,776 | ---- | C] () -- C:\WINDOWS\System32\drivers\acpi.sys.dump
[2014/02/06 14:01:26 | 000,060,800 | ---- | C] () -- C:\WINDOWS\System32\drivers\sysaudio.sys.dump
[2014/02/06 14:01:26 | 000,060,800 | ---- | C] () -- C:\WINDOWS\System32\drivers\arp1394.sys.dump
[2014/02/06 14:01:26 | 000,052,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\volsnap.sys.dump
[2014/02/06 14:01:26 | 000,034,688 | ---- | C] () -- C:\WINDOWS\System32\drivers\netbios.sys.dump
[2014/02/06 14:01:26 | 000,027,392 | ---- | C] () -- C:\WINDOWS\System32\drivers\fdc.sys.dump
[2014/02/06 14:01:26 | 000,015,872 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbintel.sys.dump
[2014/02/06 14:01:26 | 000,007,552 | ---- | C] () -- C:\WINDOWS\System32\drivers\mskssrv.sys.dump
[2014/02/06 14:01:26 | 000,006,784 | ---- | C] () -- C:\WINDOWS\System32\drivers\parvdm.sys.dump
[2014/02/06 14:01:25 | 000,456,576 | ---- | C] () -- C:\WINDOWS\System32\drivers\mrxsmb.sys.dump
[2014/02/06 14:01:25 | 000,175,744 | ---- | C] () -- C:\WINDOWS\System32\drivers\rdbss.sys.dump
[2014/02/06 14:01:25 | 000,044,672 | ---- | C] () -- C:\WINDOWS\System32\drivers\uagp35.sys.dump
[2014/02/06 14:01:25 | 000,025,728 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbcamd2.sys.dump
[2014/02/06 14:01:25 | 000,021,760 | ---- | C] () -- C:\WINDOWS\System32\drivers\point32.sys.dump
[2014/02/06 14:01:25 | 000,012,040 | ---- | C] () -- C:\WINDOWS\System32\drivers\tdpipe.sys.dump
[2014/02/06 14:01:25 | 000,006,272 | ---- | C] () -- C:\WINDOWS\System32\drivers\splitter.sys.dump
[2014/02/06 14:01:24 | 000,152,832 | ---- | C] () -- C:\WINDOWS\System32\drivers\ipnat.sys.dump
[2014/02/06 14:01:24 | 000,120,192 | ---- | C] () -- C:\WINDOWS\System32\drivers\pcmcia.sys.dump
[2014/02/06 14:01:24 | 000,075,264 | ---- | C] () -- C:\WINDOWS\System32\drivers\ipsec.sys.dump
[2014/02/06 14:01:24 | 000,045,696 | ---- | C] () -- C:\WINDOWS\System32\drivers\cirrus.sys.dump
[2014/02/06 14:01:24 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\drivers\sisagp.sys.dump
[2014/02/06 14:01:24 | 000,036,736 | ---- | C] () -- C:\WINDOWS\System32\drivers\crusoe.sys.dump
[2014/02/06 14:01:24 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\drivers\wanarp.sys.dump
[2014/02/06 14:01:24 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\drivers\flpydisk.sys.dump
[2014/02/06 14:01:24 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\drivers\asyncmac.sys.dump
[2014/02/06 14:01:23 | 001,341,339 | ---- | C] () -- C:\WINDOWS\System32\drivers\nv4_mini.sys.dump
[2014/02/06 14:01:23 | 000,334,848 | ---- | C] () -- C:\WINDOWS\System32\drivers\srv.sys.dump
[2014/02/06 14:01:23 | 000,083,072 | ---- | C] () -- C:\WINDOWS\System32\drivers\wdmaud.sys.dump
[2014/02/06 14:01:23 | 000,035,840 | ---- | C] () -- C:\WINDOWS\System32\drivers\processr.sys.dump
[2014/02/06 14:01:23 | 000,020,552 | ---- | C] () -- C:\WINDOWS\System32\drivers\mbam.sys.dump
[2014/02/06 14:01:23 | 000,016,128 | ---- | C] () -- C:\WINDOWS\System32\drivers\MODEMCSA.sys.dump
[2014/02/06 14:01:22 | 000,737,973 | ---- | C] () -- C:\WINDOWS\System32\drivers\winachcf.sys.dump
[2014/02/06 14:01:22 | 000,384,768 | ---- | C] () -- C:\WINDOWS\System32\drivers\update.sys.dump
[2014/02/06 14:01:22 | 000,196,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\rdpdr.sys.dump
[2014/02/06 14:01:22 | 000,042,368 | ---- | C] () -- C:\WINDOWS\System32\drivers\agp440.sys.dump
[2014/02/06 14:01:22 | 000,036,560 | ---- | C] () -- C:\WINDOWS\System32\drivers\pxhelp20.sys.dump
[2014/02/06 14:01:22 | 000,012,672 | ---- | C] () -- C:\WINDOWS\System32\drivers\mutohpen.sys.dump
[2014/02/03 21:04:56 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2014/02/03 21:04:54 | 000,245,920 | RHS- | C] () -- C:\cmldr
[2014/02/03 21:03:22 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2014/02/03 21:03:22 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2014/02/03 21:03:22 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2014/02/03 21:03:22 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2014/02/03 21:03:22 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2014/01/31 10:28:45 | 000,002,560 | ---- | C] () -- C:\WINDOWS\_MSRSTRT.EXE
[2008/07/29 11:41:10 | 000,002,383 | ---- | C] () -- C:\Documents and Settings\RICK\acadstk.dmp
[2007/12/22 11:28:52 | 000,002,635 | ---- | C] () -- C:\Documents and Settings\RICK\Application Data\SAS7_000.DAT
[2007/10/16 10:36:01 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\RICK\RICK_notes.dat
[2007/05/02 14:23:52 | 000,061,465 | ---- | C] () -- C:\Documents and Settings\RICK\ALTA2005.pdf
[2006/11/18 14:20:37 | 000,001,755 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2005/11/04 12:32:15 | 000,000,051 | ---- | C] () -- C:\Documents and Settings\RICK\Application Data\tvmdmns.dll
[2005/02/04 14:02:33 | 000,000,127 | ---- | C] () -- C:\Documents and Settings\RICK\Local Settings\Application Data\fusioncache.dat
[2005/02/04 14:00:56 | 000,000,747 | ---- | C] () -- C:\Documents and Settings\RICK\Application Data\QuickBooks Templates.lnk
[2004/07/19 11:28:53 | 000,018,944 | ---- | C] () -- C:\Documents and Settings\RICK\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2000/10/13 16:56:49 | 000,023,357 | -H-- | C] () -- C:\Program Files\folder.htt

========== ZeroAccess Check ==========

[2005/02/04 13:54:54 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2008/04/14 05:42:06 | 001,499,136 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2008/04/14 05:41:54 | 000,472,064 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2008/04/14 05:42:10 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2004/04/30 17:16:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Sierra Imaging
[2004/04/30 17:16:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MSN Messenger 6.1.0211
[2006/11/29 12:38:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ScanSoft
[2007/01/02 15:47:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\pdf995
[2007/12/22 10:36:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nuance
[2004/07/17 19:13:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RICK\Application Data\InterVideo
[2005/07/18 15:52:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RICK\Application Data\Template
[2006/10/09 13:34:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RICK\Application Data\PEX
[2007/02/06 14:57:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RICK\Application Data\pdf995
[2006/10/09 11:32:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RICK\Application Data\ispnews
[2007/01/02 15:51:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RICK\Application Data\ScanSoft
[2007/01/30 11:44:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RICK\Application Data\Carlson Software
[2007/10/16 10:41:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RICK\Application Data\ClipPad
[2007/12/22 10:42:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RICK\Application Data\Nuance

========== Purity Check ==========



< End of report >
  • 0

Advertisements


#2
Machiavelli

Machiavelli

    GeekU Moderator

  • GeekU Moderator
  • 4,722 posts
Welcome to GeeksToGo, Cotutor

My name is Machiavelli and I'll try to fix your PC problems. If you are in SafeMode then print my instructions! Removing Malware on a computer can be very complicated. Malware (malicious software) is able to hide and so I may not be able to find it so easily. In order to remove Malware from you Computer, you need to follow my instructions carefully. Don't be worried if you don't know what to do, just ask me! Please stay in contact with me until the problem is fixed.

Posted Image

Posted Image

!NOTE! Please respect my volunteered time and stay with me until I declare your computer clean. If you are going to be delayed for a while, please let me know.

I am currently in training and my posts will need to be reviewed by an expert, so expect a slight delay between posts. :)

 

I wrote and OTL fix and started working with various tools to see about what it would take to get rid of things.

Please post me the FixLog. It should be located under C:\_OTL\MovedFiles\<date_number.log>

I ran an OTL scan and there was definitely signs of an infection or two, so I thought ok learning experience

Please post me the lines where you think it is Malware.

Next, I ran Malwarebytes and had 19 results on a quick scan, which I let it remove.
I then tried RKill and RogueKiller, and Viprer rescue, to see if they would clear up whatever was stopping Combofix, but to no avail.


Please start Malwarebytes. Go to the tab Logs and select the newest Log (where it found the 19 bad things) and open the log. Copy and paste the content of that textfile into your next reply.
Please post the Rkill.txt, RogueKiller and Viprer Rescue Log.

After you have posted the results we will work from there.

If you like to learn a little bit, research that log an tell me what you see. ;)

Thanks!
  • 0

#3
Cotutor

Cotutor

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 494 posts
Machiavelli,
I appreciate your volunteering to help me out.

Please post me the FixLog. It should be located under C:\_OTL\MovedFiles\<date_number.log>

I have two of these, so in order to avoid confusion, I'll post the first one, and then create a seperate post with the second.

All processes killed
========== COMMANDS ==========
Restore point Set: OTL Restore Point
========== OTL ==========
Service SymEvent stopped successfully!
Service SymEvent deleted successfully!
C:\Program Files\Symantec\SYMEVENT.SYS moved successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry value HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\URLSearchHooks\\_{707E6F76-9FFB-4920-A976-EA101271BC25} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\_{707E6F76-9FFB-4920-A976-EA101271BC25}\ not found.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
Registry value HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\URLSearchHooks\\_{707E6F76-9FFB-4920-A976-EA101271BC25} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\_{707E6F76-9FFB-4920-A976-EA101271BC25}\ not found.
HKU\S-1-5-21-515967899-1220945662-725345543-1009\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
Prefs.js: 6711 removed from network.proxy.http_port
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
C:\Documents and Settings\RICK\Application Data\Mozilla\Firefox\Profiles\g14tpedc.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\defaults\preferences folder moved successfully.
C:\Documents and Settings\RICK\Application Data\Mozilla\Firefox\Profiles\g14tpedc.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\defaults folder moved successfully.
C:\Documents and Settings\RICK\Application Data\Mozilla\Firefox\Profiles\g14tpedc.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\components folder moved successfully.
C:\Documents and Settings\RICK\Application Data\Mozilla\Firefox\Profiles\g14tpedc.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\chrome folder moved successfully.
C:\Documents and Settings\RICK\Application Data\Mozilla\Firefox\Profiles\g14tpedc.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\META-INF folder moved successfully.
C:\Documents and Settings\RICK\Application Data\Mozilla\Firefox\Profiles\g14tpedc.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} folder moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0180AC06-5669-4C0E-A5A9-4B67DAFA6DB9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0180AC06-5669-4C0E-A5A9-4B67DAFA6DB9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{04AE951D-DF4D-43C7-96E1-DA90152D5FE8}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{04AE951D-DF4D-43C7-96E1-DA90152D5FE8}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{051D0FC7-BB5A-481D-9789-1691F084AF13}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{051D0FC7-BB5A-481D-9789-1691F084AF13}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{051E1838-978D-4F24-8483-B939F45A79B4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{051E1838-978D-4F24-8483-B939F45A79B4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055D2ABE-0455-49C5-A634-85CC297E7082}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{055D2ABE-0455-49C5-A634-85CC297E7082}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{05B5022E-AD1F-4168-B32D-6FCC6C448CB0}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05B5022E-AD1F-4168-B32D-6FCC6C448CB0}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06127AE0-527B-4AB8-9C7F-68BDA2AF6630}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06127AE0-527B-4AB8-9C7F-68BDA2AF6630}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0694A6D8-D67A-4CE4-8ED2-56693A327C82}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0694A6D8-D67A-4CE4-8ED2-56693A327C82}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0740B339-2CD0-4070-B6B0-4D89C70121EB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0740B339-2CD0-4070-B6B0-4D89C70121EB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0789FFB4-28BC-49F3-A83D-882CEE273CDD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0789FFB4-28BC-49F3-A83D-882CEE273CDD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0874100A-3E51-4978-BA50-043AD5B3BA84}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0874100A-3E51-4978-BA50-043AD5B3BA84}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{091A526E-0D08-4E07-AE17-B5FE353FE446}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{091A526E-0D08-4E07-AE17-B5FE353FE446}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0AD8A2B6-30B2-4E78-8DC2-B439FA2B1939}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0AD8A2B6-30B2-4E78-8DC2-B439FA2B1939}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0AE1C61D-8D16-4A37-A279-4E03E75F2DAA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0AE1C61D-8D16-4A37-A279-4E03E75F2DAA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0AE806D8-17F3-4CDB-8003-D28D3FEF7D00}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0AE806D8-17F3-4CDB-8003-D28D3FEF7D00}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0BD056FB-1A6E-44E1-8A88-FA62A510EC53}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0BD056FB-1A6E-44E1-8A88-FA62A510EC53}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0C50C0A0-EF1A-4CD5-916C-D6C7E498619E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C50C0A0-EF1A-4CD5-916C-D6C7E498619E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E40D45B-F4E2-48C9-BF5E-37657726AB27}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E40D45B-F4E2-48C9-BF5E-37657726AB27}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0F569E8D-7C0B-44F3-8EB9-247D367A142D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F569E8D-7C0B-44F3-8EB9-247D367A142D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1149E8A6-BF6B-4EA5-910C-FE99C98F3A7D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1149E8A6-BF6B-4EA5-910C-FE99C98F3A7D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{116D81FD-BBDA-4846-BC8B-B9BEBA197EA8}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{116D81FD-BBDA-4846-BC8B-B9BEBA197EA8}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11BC6099-2ECB-4469-A2F5-7B8D8AE7A2C6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11BC6099-2ECB-4469-A2F5-7B8D8AE7A2C6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{121C5268-2562-4EF9-8DE8-780647AEF472}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{121C5268-2562-4EF9-8DE8-780647AEF472}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{147B0922-1B5B-456F-9280-48B3A97B1129}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{147B0922-1B5B-456F-9280-48B3A97B1129}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{14CC5E20-C528-416D-B6B4-D22420CFB4CC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14CC5E20-C528-416D-B6B4-D22420CFB4CC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1573A3FC-4923-461B-BE67-318501F95C63}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1573A3FC-4923-461B-BE67-318501F95C63}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{16ACC164-15D4-4049-B98E-8C536DA802C6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16ACC164-15D4-4049-B98E-8C536DA802C6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18C620DA-0BF5-4CD9-A9A7-C35CA67683FE}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{18C620DA-0BF5-4CD9-A9A7-C35CA67683FE}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18D46A97-4FEF-4B7C-B3FE-9C89DF18842C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{18D46A97-4FEF-4B7C-B3FE-9C89DF18842C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{19296D27-5FC1-4BC3-9E5A-9DDEB8C1A9AE}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19296D27-5FC1-4BC3-9E5A-9DDEB8C1A9AE}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{194A30EC-3319-47AF-B734-AA1622EE8741}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{194A30EC-3319-47AF-B734-AA1622EE8741}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{19FDA422-FCEA-4B81-9762-2AEA83CDA3A9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19FDA422-FCEA-4B81-9762-2AEA83CDA3A9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1A0B4131-D800-4D04-8D45-06F41A203240}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A0B4131-D800-4D04-8D45-06F41A203240}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1A3DE962-3493-4897-AAC4-136F2CD9155C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A3DE962-3493-4897-AAC4-136F2CD9155C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1C115C82-19A9-49C3-BA60-D1FBB56CD124}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1C115C82-19A9-49C3-BA60-D1FBB56CD124}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1C99829B-4B06-4A30-ADA1-186824EF120F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1C99829B-4B06-4A30-ADA1-186824EF120F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1EF8D7B9-B7A1-4B01-9A7E-13BCB30F5809}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1EF8D7B9-B7A1-4B01-9A7E-13BCB30F5809}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FA8CACA-46DC-4C1E-A8FD-77C6699674D1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1FA8CACA-46DC-4C1E-A8FD-77C6699674D1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FB76ACD-8B72-47FC-A947-7BC2CDD18C92}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1FB76ACD-8B72-47FC-A947-7BC2CDD18C92}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{21026C50-3D0B-437F-B791-99F363D24926}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21026C50-3D0B-437F-B791-99F363D24926}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{21E76A8D-7A5A-429A-B092-E3C652755218}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21E76A8D-7A5A-429A-B092-E3C652755218}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2295E08A-0E8D-488C-A033-297005D34DA5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2295E08A-0E8D-488C-A033-297005D34DA5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{229AF418-5E08-4134-879B-550B8549AC35}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{229AF418-5E08-4134-879B-550B8549AC35}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22D034FF-9472-493E-B00E-DCE4CF442EFC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22D034FF-9472-493E-B00E-DCE4CF442EFC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{23BAC87F-F272-4CB8-BB22-4943D6C82B2B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{23BAC87F-F272-4CB8-BB22-4943D6C82B2B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{23FB1DB7-B85A-472D-950A-1166EF99FFFB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{23FB1DB7-B85A-472D-950A-1166EF99FFFB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{267DAE1F-462E-4CB0-8D42-30CC92F06BBB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{267DAE1F-462E-4CB0-8D42-30CC92F06BBB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2776C08F-B27C-457E-A9E7-6462602A57EE}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2776C08F-B27C-457E-A9E7-6462602A57EE}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{27ADA27F-8220-483D-96B0-26CA345E2751}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27ADA27F-8220-483D-96B0-26CA345E2751}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{283B692F-3CBC-4F4D-9305-7AF3292D6D66}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{283B692F-3CBC-4F4D-9305-7AF3292D6D66}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{28F829BE-316C-4AD6-B72E-E2D0B466D5F3}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28F829BE-316C-4AD6-B72E-E2D0B466D5F3}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2902A6B1-2FEE-43A6-94A4-FF319EA1990E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2902A6B1-2FEE-43A6-94A4-FF319EA1990E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A59AB6D-4710-446B-A2C1-6BF950A18912}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2A59AB6D-4710-446B-A2C1-6BF950A18912}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A7AE6C2-230B-4E86-B64E-D7DD960CFE61}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2A7AE6C2-230B-4E86-B64E-D7DD960CFE61}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2B5F3DC9-D134-4A43-90F0-9ACA6A42D171}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B5F3DC9-D134-4A43-90F0-9ACA6A42D171}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2C6016A9-B491-44DA-AEC6-8D02AFB409F1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C6016A9-B491-44DA-AEC6-8D02AFB409F1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2D0EAE61-1F93-4C94-ABF5-9A373FA939E5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2D0EAE61-1F93-4C94-ABF5-9A373FA939E5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2D50E90D-C8B3-4B48-9EAE-88FF43AA8130}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2D50E90D-C8B3-4B48-9EAE-88FF43AA8130}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2F6CB7AC-B89A-4749-B618-E81DD0531964}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F6CB7AC-B89A-4749-B618-E81DD0531964}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2FAE5CE6-6A1C-4356-B2EE-01B8318CD9A9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2FAE5CE6-6A1C-4356-B2EE-01B8318CD9A9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3205CD1F-8B4B-4C12-9F89-7EA289F75D30}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3205CD1F-8B4B-4C12-9F89-7EA289F75D30}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{325A6997-2645-4F7D-B388-1D501FBB4CE5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{325A6997-2645-4F7D-B388-1D501FBB4CE5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{33102C5D-EEDA-41FB-9B62-050A7F29679D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33102C5D-EEDA-41FB-9B62-050A7F29679D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{333B6A98-4F90-4282-B981-05150FE53E74}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{333B6A98-4F90-4282-B981-05150FE53E74}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{33A0C2C6-DB9C-467E-9011-47812DA1836D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33A0C2C6-DB9C-467E-9011-47812DA1836D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{350680CC-801A-44E7-9DD7-3B1F2E3B9BBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{350680CC-801A-44E7-9DD7-3B1F2E3B9BBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{36517D96-A2AA-48C6-9FC5-29B7D55B4AC7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{36517D96-A2AA-48C6-9FC5-29B7D55B4AC7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3753A546-EF58-4F6C-8C07-9DF4749FFD62}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3753A546-EF58-4F6C-8C07-9DF4749FFD62}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{37FBBC98-C084-4C7B-B239-C6C8379E8F25}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{37FBBC98-C084-4C7B-B239-C6C8379E8F25}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{38291AC7-7D0F-4960-B181-589693D9DF48}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38291AC7-7D0F-4960-B181-589693D9DF48}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{38998A68-7F94-4713-82BC-B7F732C572AD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38998A68-7F94-4713-82BC-B7F732C572AD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39D2682C-23F7-472E-BC79-3BB1EBBD927A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{39D2682C-23F7-472E-BC79-3BB1EBBD927A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A596DC3-02ED-4E5B-BAE4-04886A43BEB1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3A596DC3-02ED-4E5B-BAE4-04886A43BEB1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA02110-3854-4FC4-8F92-87C7C0CB9461}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3CA02110-3854-4FC4-8F92-87C7C0CB9461}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3D4C0683-39DA-4060-AD8A-151B54C0640E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3D4C0683-39DA-4060-AD8A-151B54C0640E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3D7DA43E-CE98-4003-8960-C38D146DBD65}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3D7DA43E-CE98-4003-8960-C38D146DBD65}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3DBA66E8-1CC9-4203-9155-3A342D5BDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3DBA66E8-1CC9-4203-9155-3A342D5BDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3E24EA98-FD18-47D8-9D14-8454EDCAED8D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E24EA98-FD18-47D8-9D14-8454EDCAED8D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3EB4E1A5-8795-4BF3-9C8F-FE3A9F10367A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3EB4E1A5-8795-4BF3-9C8F-FE3A9F10367A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3F569181-B412-4AE7-B624-FCCD0C6EEECF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3F569181-B412-4AE7-B624-FCCD0C6EEECF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3FEF95DE-2509-46E7-B8D8-38BE35FD9F0B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3FEF95DE-2509-46E7-B8D8-38BE35FD9F0B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{40FD3127-CA90-4907-A116-1D7D8E148B25}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40FD3127-CA90-4907-A116-1D7D8E148B25}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{42A91245-E2C2-445A-B65D-868E5A7B43F3}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42A91245-E2C2-445A-B65D-868E5A7B43F3}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{42CF8B96-C200-41D5-9675-5FFA40F9C42C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42CF8B96-C200-41D5-9675-5FFA40F9C42C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{433FC829-B22F-4A56-B3F7-679484337A2F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{433FC829-B22F-4A56-B3F7-679484337A2F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{44FA00EE-3229-4435-A8A3-128249C6BBC8}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{44FA00EE-3229-4435-A8A3-128249C6BBC8}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{46111084-BC74-4275-833E-E46D119AC60B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{46111084-BC74-4275-833E-E46D119AC60B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{46935D00-C66C-40BB-97CF-671817B30525}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{46935D00-C66C-40BB-97CF-671817B30525}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{47D2771C-A7CE-49E7-9ECE-9B497E21B007}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47D2771C-A7CE-49E7-9ECE-9B497E21B007}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{49A18B9C-6E9F-4B47-AC60-53B3DA95448A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49A18B9C-6E9F-4B47-AC60-53B3DA95448A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{49CE7931-B1B4-44A3-8904-369395A35CF2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49CE7931-B1B4-44A3-8904-369395A35CF2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{49DE4A76-790D-4F84-88D3-6F0A285F1FDC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49DE4A76-790D-4F84-88D3-6F0A285F1FDC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{49FE3E95-1B43-48E5-9955-D9D92B4D00FA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49FE3E95-1B43-48E5-9955-D9D92B4D00FA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4C3F600A-C389-4D52-9261-1CB62584B961}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C3F600A-C389-4D52-9261-1CB62584B961}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4C711B7B-988F-4FB8-9AB8-213E7B843668}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C711B7B-988F-4FB8-9AB8-213E7B843668}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4CCAA623-550E-4A0D-BA0F-BE6002855CC4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4CCAA623-550E-4A0D-BA0F-BE6002855CC4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4CE35F87-4D86-4123-9D58-2353A954A489}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4CE35F87-4D86-4123-9D58-2353A954A489}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4EAA0D76-97CA-4B60-876F-DD360EADBB05}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4EAA0D76-97CA-4B60-876F-DD360EADBB05}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4FA6CB28-899B-4265-A566-1B49234FE052}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4FA6CB28-899B-4265-A566-1B49234FE052}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{50E11258-613B-40BA-9B1C-CAC614D2C5C4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50E11258-613B-40BA-9B1C-CAC614D2C5C4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{50F9EC40-1EE9-4D24-BA56-32012B6CDE29}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50F9EC40-1EE9-4D24-BA56-32012B6CDE29}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{510EC6DC-537A-4FB4-A107-D4FFB394E1F2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{510EC6DC-537A-4FB4-A107-D4FFB394E1F2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51E5D7FB-569F-456A-86AA-D98B942963F1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51E5D7FB-569F-456A-86AA-D98B942963F1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{52AFA781-1597-477A-A699-147CCC634427}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52AFA781-1597-477A-A699-147CCC634427}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{52B8F16B-79A8-4AA2-9AB4-559CEF1EB99C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52B8F16B-79A8-4AA2-9AB4-559CEF1EB99C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53494744-A9BD-4902-B3B3-B55F9802825B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53494744-A9BD-4902-B3B3-B55F9802825B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{539716B7-FE9F-4ECC-8148-413B8E53FFEF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{539716B7-FE9F-4ECC-8148-413B8E53FFEF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5482722F-3C54-43A7-A2D9-54CBFDA0E389}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5482722F-3C54-43A7-A2D9-54CBFDA0E389}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{55BB299A-3844-4587-AAFC-F17AEEFA3D46}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{55BB299A-3844-4587-AAFC-F17AEEFA3D46}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{561A5E40-6BED-448A-B52B-AA39C6155AAC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{561A5E40-6BED-448A-B52B-AA39C6155AAC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{56C12FAF-18D2-4E41-9BCA-922829939094}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56C12FAF-18D2-4E41-9BCA-922829939094}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5915620B-BE3D-4C6B-B200-941A699B1FF2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5915620B-BE3D-4C6B-B200-941A699B1FF2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{591ADE00-0645-4F0C-9CA9-1C7E3439A08C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{591ADE00-0645-4F0C-9CA9-1C7E3439A08C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{591D816D-6246-483E-86F2-C8F5762733CE}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{591D816D-6246-483E-86F2-C8F5762733CE}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59B35380-3D3C-4F57-B29B-E5599431AF72}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59B35380-3D3C-4F57-B29B-E5599431AF72}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5A672B49-C162-4E2C-A532-11EF1DB12176}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5A672B49-C162-4E2C-A532-11EF1DB12176}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5AFD96FE-7EB2-4D53-887D-594D5AFBAF06}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5AFD96FE-7EB2-4D53-887D-594D5AFBAF06}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C74458C-C6CE-4BB4-8AAF-C54904369BC5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C74458C-C6CE-4BB4-8AAF-C54904369BC5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5CD6C26A-F291-465D-BF65-02261DAD3273}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5CD6C26A-F291-465D-BF65-02261DAD3273}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5D8F79AA-2B37-4C87-95B3-39333CDE314D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D8F79AA-2B37-4C87-95B3-39333CDE314D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5D97EFDD-124B-4458-85E2-E4A4A453249D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D97EFDD-124B-4458-85E2-E4A4A453249D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5DD55E43-D7BE-44B6-B3BE-D1A863EB4EAB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5DD55E43-D7BE-44B6-B3BE-D1A863EB4EAB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5E502E11-C60D-4E27-9B1D-44B2BB050E58}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E502E11-C60D-4E27-9B1D-44B2BB050E58}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5F88E369-128F-41E3-9682-71185A8ED70D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5F88E369-128F-41E3-9682-71185A8ED70D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6080C572-72B6-4E89-870F-698D4F902176}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6080C572-72B6-4E89-870F-698D4F902176}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{60B202D7-38AE-48C8-8316-1BF6F229C128}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60B202D7-38AE-48C8-8316-1BF6F229C128}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{60B3B1DF-13AD-4552-B8DC-5D8ED15556DC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60B3B1DF-13AD-4552-B8DC-5D8ED15556DC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{613F3496-3038-4121-8A60-53621B00CD30}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{613F3496-3038-4121-8A60-53621B00CD30}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{63302C64-40DB-40C3-B2EC-E6D440DF1EA7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63302C64-40DB-40C3-B2EC-E6D440DF1EA7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{633EA4ED-F190-45D8-9C8D-F2F78E2BC5EB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{633EA4ED-F190-45D8-9C8D-F2F78E2BC5EB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6354670F-61A6-4C90-9F48-71AAD7AE2F0D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6354670F-61A6-4C90-9F48-71AAD7AE2F0D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6376FC0C-69F5-4269-BA0B-F501F99A90E2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6376FC0C-69F5-4269-BA0B-F501F99A90E2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64FD081C-C18C-47DC-868B-C57C964B1315}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64FD081C-C18C-47DC-868B-C57C964B1315}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{65707182-53DC-4A4A-9CA1-AEC6DFD97B80}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{65707182-53DC-4A4A-9CA1-AEC6DFD97B80}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6597CAC1-A827-4516-BF07-8AB62C8B3776}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6597CAC1-A827-4516-BF07-8AB62C8B3776}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{65A634A6-813A-4FA2-93FF-1301613AFF8E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{65A634A6-813A-4FA2-93FF-1301613AFF8E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{65A8DAC3-A95C-4B85-947C-3589A83B6538}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{65A8DAC3-A95C-4B85-947C-3589A83B6538}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{661CCA34-4526-4626-8B98-FA5B3E93EFBC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661CCA34-4526-4626-8B98-FA5B3E93EFBC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{679FD3DD-4260-48FC-8763-7CCE7B4495C5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{679FD3DD-4260-48FC-8763-7CCE7B4495C5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{67B2FF54-AFB4-4DCB-BB6B-C789252D6154}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67B2FF54-AFB4-4DCB-BB6B-C789252D6154}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{67CDA422-B8F2-449E-8B64-304FE0EB8A71}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67CDA422-B8F2-449E-8B64-304FE0EB8A71}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{685C2B46-ED1B-47E4-BAB8-AA33EB1D8C1C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{685C2B46-ED1B-47E4-BAB8-AA33EB1D8C1C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{694E1A0A-9B52-4551-BBD3-32E31B303213}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{694E1A0A-9B52-4551-BBD3-32E31B303213}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6B45C7EB-2389-4E1D-A2AC-6FBD69E36070}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B45C7EB-2389-4E1D-A2AC-6FBD69E36070}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6CA021DA-90D5-4EDD-8527-48BE713897B3}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6CA021DA-90D5-4EDD-8527-48BE713897B3}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6DC4E7AF-56A2-4D24-BE21-4DFC8424FF6E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DC4E7AF-56A2-4D24-BE21-4DFC8424FF6E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6DD3D99C-137B-4C68-B278-AA654DF68607}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DD3D99C-137B-4C68-B278-AA654DF68607}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6E65E757-17B3-42DA-A87E-51824898CE1B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E65E757-17B3-42DA-A87E-51824898CE1B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{716FA7F5-EFBC-4D31-B4CC-1532F99A7205}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{716FA7F5-EFBC-4D31-B4CC-1532F99A7205}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{719A0338-A0E8-407B-AECE-5DD92818F65D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{719A0338-A0E8-407B-AECE-5DD92818F65D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72904C06-4B87-4561-A4DD-6A3427CADB50}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72904C06-4B87-4561-A4DD-6A3427CADB50}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72F7BA12-1552-454E-8899-4323ED98B544}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72F7BA12-1552-454E-8899-4323ED98B544}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7356DE75-A79B-4833-BAEC-0C67C4927014}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7356DE75-A79B-4833-BAEC-0C67C4927014}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73A2AF20-DD87-499E-8412-4F83D25D640A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73A2AF20-DD87-499E-8412-4F83D25D640A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{742A4908-999E-44D5-8064-E9FF405CF923}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{742A4908-999E-44D5-8064-E9FF405CF923}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7563A88B-E1B2-4F14-B76B-2288EC995E18}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7563A88B-E1B2-4F14-B76B-2288EC995E18}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{75ED3A47-A92A-4C08-93E8-DA19BCA8B1ED}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75ED3A47-A92A-4C08-93E8-DA19BCA8B1ED}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{75FDEA60-DC82-4FA2-9E47-C64593539D9A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75FDEA60-DC82-4FA2-9E47-C64593539D9A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{76030487-C629-4066-9B58-32B6B982778A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{76030487-C629-4066-9B58-32B6B982778A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\ not found.
File C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7710818F-EA34-45AF-86D4-64BDF66BA8A8}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7710818F-EA34-45AF-86D4-64BDF66BA8A8}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{792070CB-ECD0-427F-A968-3AF0A6B56F4C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{792070CB-ECD0-427F-A968-3AF0A6B56F4C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{79924C0B-0ABE-44A8-ACE8-3A51E1A99E67}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{79924C0B-0ABE-44A8-ACE8-3A51E1A99E67}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7AB8CDEE-91E7-416B-BEBD-79429105D214}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7AB8CDEE-91E7-416B-BEBD-79429105D214}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7B144393-B8CF-42F6-8583-12B80CA88087}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B144393-B8CF-42F6-8583-12B80CA88087}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7B3586F4-BC4E-46C0-BB68-DD6A7AE11023}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B3586F4-BC4E-46C0-BB68-DD6A7AE11023}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7C0B6A6B-F0C9-4206-BED2-7521EB8E0C40}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C0B6A6B-F0C9-4206-BED2-7521EB8E0C40}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7C7317C6-2204-40B6-85CE-67FD83569D18}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C7317C6-2204-40B6-85CE-67FD83569D18}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E80419E-1630-4B9C-9845-06AE569E3B52}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7E80419E-1630-4B9C-9845-06AE569E3B52}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7EE9CD8C-6580-4437-A64E-DC76407EB236}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7EE9CD8C-6580-4437-A64E-DC76407EB236}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7EECF999-9CFE-42C4-872F-9305AF66599F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7EECF999-9CFE-42C4-872F-9305AF66599F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F7C985B-A89A-4EC0-BD89-B98BA370F7E6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7F7C985B-A89A-4EC0-BD89-B98BA370F7E6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7FA15F16-817C-42C8-A0A0-729EF268BC02}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7FA15F16-817C-42C8-A0A0-729EF268BC02}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7FEAF7CC-AE3B-43F8-86B3-9FD9F78583C5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7FEAF7CC-AE3B-43F8-86B3-9FD9F78583C5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{808E17C5-5A20-464C-BF78-85EB72AB2BD5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{808E17C5-5A20-464C-BF78-85EB72AB2BD5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8094EE96-8715-49D2-9E5F-D0513EEC4CF9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8094EE96-8715-49D2-9E5F-D0513EEC4CF9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{81752569-9751-4894-8BCB-9C588E71870A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81752569-9751-4894-8BCB-9C588E71870A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8212E232-A4CA-4AA5-A836-0969D6B613B7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8212E232-A4CA-4AA5-A836-0969D6B613B7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{824FB191-BE5E-4762-9155-3DAFBADAEF52}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{824FB191-BE5E-4762-9155-3DAFBADAEF52}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83E09A8F-9F0A-40FE-8EAC-A3C14DCE56C4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{83E09A8F-9F0A-40FE-8EAC-A3C14DCE56C4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8495FE10-E891-4321-B4D5-86FA3BFD4912}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8495FE10-E891-4321-B4D5-86FA3BFD4912}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{85BC40E0-8F38-4FEF-97A9-80A5FD6DF545}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{85BC40E0-8F38-4FEF-97A9-80A5FD6DF545}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{85BD9196-778D-4610-91AA-0DE509E3B970}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{85BD9196-778D-4610-91AA-0DE509E3B970}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{85D355AD-F610-464B-8077-935A422A3539}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{85D355AD-F610-464B-8077-935A422A3539}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{86243B65-FBFB-45B7-9ED8-A807764B5A21}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86243B65-FBFB-45B7-9ED8-A807764B5A21}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{87133380-C6AE-4161-A3DE-6B9A5B302145}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87133380-C6AE-4161-A3DE-6B9A5B302145}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{876ED9A2-4FC1-4673-BDB9-963D1422E914}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{876ED9A2-4FC1-4673-BDB9-963D1422E914}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{87B91CA7-FE8E-4CE4-BCFA-F10423344B5D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87B91CA7-FE8E-4CE4-BCFA-F10423344B5D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{88F31F1F-C5E1-4B50-812F-EC8F6336A9AE}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{88F31F1F-C5E1-4B50-812F-EC8F6336A9AE}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8961C2BC-63F1-457E-956B-45D8CED4B679}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8961C2BC-63F1-457E-956B-45D8CED4B679}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{89965842-6E29-4388-8BE8-044C2EE7A980}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89965842-6E29-4388-8BE8-044C2EE7A980}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8A92339B-C055-458E-BB07-DCBC98491B28}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A92339B-C055-458E-BB07-DCBC98491B28}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8B50E1C1-A7E9-4E6C-A5A1-3BB781391706}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8B50E1C1-A7E9-4E6C-A5A1-3BB781391706}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8B5CDA0B-615A-4422-825A-01C0A0029E9E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8B5CDA0B-615A-4422-825A-01C0A0029E9E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8CA2ABCB-4640-4D75-81F7-7AC7A5966480}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8CA2ABCB-4640-4D75-81F7-7AC7A5966480}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8DB0AC5D-8A98-494D-A435-726FED093AB1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8DB0AC5D-8A98-494D-A435-726FED093AB1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8F6F3959-C07D-43F8-85AC-228C398436A7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8F6F3959-C07D-43F8-85AC-228C398436A7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9088B830-BCB9-4DD8-966E-2368FB12580B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9088B830-BCB9-4DD8-966E-2368FB12580B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{912474CA-D88E-49AB-82BE-3424C452E084}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{912474CA-D88E-49AB-82BE-3424C452E084}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{91ABDDCD-2FB1-4F4C-86D6-35B30C7AF11B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91ABDDCD-2FB1-4F4C-86D6-35B30C7AF11B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{91DD39A8-B1F2-4E15-9A83-677CC77707FC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91DD39A8-B1F2-4E15-9A83-677CC77707FC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{91FD119C-0E7B-4EBB-A2EB-128210316F85}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91FD119C-0E7B-4EBB-A2EB-128210316F85}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92177C46-3892-4D7C-A38A-2D0F1D538B68}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92177C46-3892-4D7C-A38A-2D0F1D538B68}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92637F4F-93CA-4933-B57C-FAC217633F70}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92637F4F-93CA-4933-B57C-FAC217633F70}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{94C09E67-30EE-4CE4-A250-A4BD6014B552}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94C09E67-30EE-4CE4-A250-A4BD6014B552}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9568917D-C9BB-435A-A8DB-BF01367437C3}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9568917D-C9BB-435A-A8DB-BF01367437C3}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{96AF168C-76B1-4E89-ACDA-D4786C3D1796}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96AF168C-76B1-4E89-ACDA-D4786C3D1796}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{97435604-8AB9-45BF-B045-BD9A8E8475D2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{97435604-8AB9-45BF-B045-BD9A8E8475D2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{97B696F0-0D00-44E2-98A6-79F613440CF7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{97B696F0-0D00-44E2-98A6-79F613440CF7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{97B82798-1572-47C0-8EF5-EA9B04591EC4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{97B82798-1572-47C0-8EF5-EA9B04591EC4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{98B3DAF1-7711-49A4-A981-955D37E4F74A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98B3DAF1-7711-49A4-A981-955D37E4F74A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9AA1D902-ED46-40F1-ACFD-BD95BB8902C2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9AA1D902-ED46-40F1-ACFD-BD95BB8902C2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D28D8EA-06FE-4651-A99D-7EFE0AF0A85E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9D28D8EA-06FE-4651-A99D-7EFE0AF0A85E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A10B2207-10F5-4881-A6BA-B1A65D5576A6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A10B2207-10F5-4881-A6BA-B1A65D5576A6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A21D0207-477A-4133-AD77-19A4543853DE}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A21D0207-477A-4133-AD77-19A4543853DE}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A2F1CC09-A73B-46BE-825E-9A1EA703FDFA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A2F1CC09-A73B-46BE-825E-9A1EA703FDFA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A46CB3CE-E1D9-4656-A8B2-16D89972B110}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A46CB3CE-E1D9-4656-A8B2-16D89972B110}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A48FA823-216E-47B6-92F7-617D90A0FEEB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A48FA823-216E-47B6-92F7-617D90A0FEEB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A4FDE0CA-2386-45F0-AC2F-9DF15B89CE53}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A4FDE0CA-2386-45F0-AC2F-9DF15B89CE53}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A60387DE-A2EA-4BA4-A3D0-8F4719D7E5EF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A60387DE-A2EA-4BA4-A3D0-8F4719D7E5EF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A638298B-8AC7-43FE-B2B8-92CEC36B3315}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A638298B-8AC7-43FE-B2B8-92CEC36B3315}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A98404F1-2C78-4470-B2D6-BDBDDF480EF2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A98404F1-2C78-4470-B2D6-BDBDDF480EF2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AB92DFFF-18E1-462A-A7AE-FBAB9179ABBF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB92DFFF-18E1-462A-A7AE-FBAB9179ABBF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AD9BAD5A-B458-4635-9E1C-4331743CF370}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AD9BAD5A-B458-4635-9E1C-4331743CF370}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B0842E03-8384-40BE-A8F5-8E21FCC0D0A7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B0842E03-8384-40BE-A8F5-8E21FCC0D0A7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B1A67C88-372F-4C5F-9861-DEEDC1C258F0}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B1A67C88-372F-4C5F-9861-DEEDC1C258F0}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B68CC446-281A-455B-A52A-E38B74D84090}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B68CC446-281A-455B-A52A-E38B74D84090}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B70A4D26-08A2-4A07-BDB4-F85AA301736C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B70A4D26-08A2-4A07-BDB4-F85AA301736C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B72EA831-8D2F-4940-862B-822FA18E5D76}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B72EA831-8D2F-4940-862B-822FA18E5D76}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B86A19B6-D1A1-4CC5-BD2D-B272F9B0FFF3}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B86A19B6-D1A1-4CC5-BD2D-B272F9B0FFF3}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BABAA663-E463-4112-8837-E5ED59E1C738}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BABAA663-E463-4112-8837-E5ED59E1C738}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BB835EE8-E9F6-46C7-ACA1-7B0B5F24A19B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB835EE8-E9F6-46C7-ACA1-7B0B5F24A19B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BC1C7D76-9646-42ED-BDFD-43BDAC45B8CC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BC1C7D76-9646-42ED-BDFD-43BDAC45B8CC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BCDD8742-E026-491F-8CE2-923860579FF2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BCDD8742-E026-491F-8CE2-923860579FF2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BD94FC58-2B8E-49E9-BE67-B30CA3875824}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BD94FC58-2B8E-49E9-BE67-B30CA3875824}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDB178E2-0529-4156-87E0-DF2A93D89691}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BDB178E2-0529-4156-87E0-DF2A93D89691}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BE2AFA94-7687-4C58-9B08-1681AC2A833A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BE2AFA94-7687-4C58-9B08-1681AC2A833A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BEAE2C7C-03CC-439E-AF5D-20E3387AE2FF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BEAE2C7C-03CC-439E-AF5D-20E3387AE2FF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BEF40FE1-8890-4918-A6CC-642A4DABE01C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BEF40FE1-8890-4918-A6CC-642A4DABE01C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BF4EA92A-0321-43EC-BE61-A198E208459F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BF4EA92A-0321-43EC-BE61-A198E208459F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BF5DAD15-8D6C-49F1-A3B6-74F44A06D1C4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BF5DAD15-8D6C-49F1-A3B6-74F44A06D1C4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C045C12D-BED5-4166-BE8C-E78AA056D741}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C045C12D-BED5-4166-BE8C-E78AA056D741}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C0D4C9AB-02CA-4713-B338-4B600F115715}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C0D4C9AB-02CA-4713-B338-4B600F115715}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C14E8780-0BEC-42AF-8A6E-EAED0F57160C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C14E8780-0BEC-42AF-8A6E-EAED0F57160C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C2474AA3-FC1A-4322-B673-BE20BD93B2CB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2474AA3-FC1A-4322-B673-BE20BD93B2CB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C24B3382-480E-4355-93C9-39E93B326187}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C24B3382-480E-4355-93C9-39E93B326187}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C2C77F35-E131-4E2E-8F63-B681E89D9ACA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2C77F35-E131-4E2E-8F63-B681E89D9ACA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C3199CB6-0B13-426E-BBCD-51E5CA63F1B1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C3199CB6-0B13-426E-BBCD-51E5CA63F1B1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C3EB74F8-710A-472E-ABE0-2B53F723A7F9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C3EB74F8-710A-472E-ABE0-2B53F723A7F9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C4042D80-FD7B-4865-87DB-15F18920405C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C4042D80-FD7B-4865-87DB-15F18920405C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C4A71968-848F-4E69-B528-8FF7F942FDA6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C4A71968-848F-4E69-B528-8FF7F942FDA6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C4C30CB3-BF84-4C39-ACE0-326F08EF66DB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C4C30CB3-BF84-4C39-ACE0-326F08EF66DB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C50F6EB7-4442-43A4-986C-FFA803736597}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C50F6EB7-4442-43A4-986C-FFA803736597}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C5257754-9E66-48CE-9E1A-1C634F08A7A7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C5257754-9E66-48CE-9E1A-1C634F08A7A7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C544C861-303C-4D8C-9B34-14F40D2F983E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C544C861-303C-4D8C-9B34-14F40D2F983E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C66936DF-C075-496B-818F-9D7971166D52}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C66936DF-C075-496B-818F-9D7971166D52}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C6A31015-56AB-4360-972C-F309DBADD648}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C6A31015-56AB-4360-972C-F309DBADD648}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C715E087-4C7A-48D6-9E9F-740169EA76B1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C715E087-4C7A-48D6-9E9F-740169EA76B1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C7977FD0-CC1D-4EA3-841E-7A17212E3ACA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C7977FD0-CC1D-4EA3-841E-7A17212E3ACA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C7FEA806-3E21-44BB-9534-EDE8B1360C43}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C7FEA806-3E21-44BB-9534-EDE8B1360C43}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C8DE41FD-07BF-4C6F-B9CB-36B896FF60A8}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C8DE41FD-07BF-4C6F-B9CB-36B896FF60A8}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA67114F-D4AF-4214-A1FC-47B95A34FED2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CA67114F-D4AF-4214-A1FC-47B95A34FED2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CAD64EAF-24BF-47D1-AEDB-0F9908D679F1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAD64EAF-24BF-47D1-AEDB-0F9908D679F1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CBB2D80F-2A78-40C2-98E5-96E988A3DFCC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CBB2D80F-2A78-40C2-98E5-96E988A3DFCC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC6304B0-3C39-4A32-B817-26524EEA60AB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC6304B0-3C39-4A32-B817-26524EEA60AB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC66950A-663C-4E31-A4BE-7661262E571D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC66950A-663C-4E31-A4BE-7661262E571D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC8FE1D9-D9D1-4551-8F33-587C1A97BE1A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC8FE1D9-D9D1-4551-8F33-587C1A97BE1A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CDD0D921-B1F4-49E6-A074-E8E3BB9A929C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CDD0D921-B1F4-49E6-A074-E8E3BB9A929C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CE261D3F-62EB-43AF-AB64-043D8A3CFD21}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CE261D3F-62EB-43AF-AB64-043D8A3CFD21}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CFA21368-C39D-466F-B819-0BD8872B5D04}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CFA21368-C39D-466F-B819-0BD8872B5D04}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D12CA68E-14FD-4CDC-9D2D-166037563232}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D12CA68E-14FD-4CDC-9D2D-166037563232}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D14D4D3B-2CAE-4D61-A8B0-7CEDE20C334F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D14D4D3B-2CAE-4D61-A8B0-7CEDE20C334F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D195FDE8-9690-47A7-9042-5F1C58F98303}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D195FDE8-9690-47A7-9042-5F1C58F98303}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D23EBCB8-4429-4231-A8EB-8C432200EC0A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D23EBCB8-4429-4231-A8EB-8C432200EC0A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D41A0BB2-E799-466D-A6DB-F7E90B6D73B4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D41A0BB2-E799-466D-A6DB-F7E90B6D73B4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4B92CE0-3577-4DBC-928A-FF3A5B5778D3}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4B92CE0-3577-4DBC-928A-FF3A5B5778D3}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D6773A05-C07A-4713-9438-D4BAC0D12B77}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D6773A05-C07A-4713-9438-D4BAC0D12B77}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D6CDA42B-B493-426F-8FA7-171E6A2C8E17}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D6CDA42B-B493-426F-8FA7-171E6A2C8E17}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D87AA282-0C19-443F-BAF5-0C6B8EB9271A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D87AA282-0C19-443F-BAF5-0C6B8EB9271A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D8E9E094-3C4A-42F6-B600-E836DEBB3906}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D8E9E094-3C4A-42F6-B600-E836DEBB3906}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DA3CFECC-A807-4974-8F77-AB3F67A5717A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DA3CFECC-A807-4974-8F77-AB3F67A5717A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DA51489C-B51B-466B-ABF2-DA250D92BE5E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DA51489C-B51B-466B-ABF2-DA250D92BE5E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DCA5A410-459B-49DE-8293-3CD8E9BECB56}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DCA5A410-459B-49DE-8293-3CD8E9BECB56}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DD6C0262-A977-45EF-91A9-7E06C65AB906}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DD6C0262-A977-45EF-91A9-7E06C65AB906}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E07AEE23-A92F-4CE9-8EC6-E352BCC24917}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E07AEE23-A92F-4CE9-8EC6-E352BCC24917}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E3FF6E22-DEF4-47B4-8F94-53B7063610CD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E3FF6E22-DEF4-47B4-8F94-53B7063610CD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E400F0F4-51B7-4B3D-8DCE-0204CBEFE5E0}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E400F0F4-51B7-4B3D-8DCE-0204CBEFE5E0}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E42D2E83-4383-4D86-BA8E-A1C5BB90A9C9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E42D2E83-4383-4D86-BA8E-A1C5BB90A9C9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E43E2D84-4350-4EBC-A18B-32E26A5B68EB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E43E2D84-4350-4EBC-A18B-32E26A5B68EB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E486CDF5-AEE1-4D8D-80DE-0D05D304C20F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E486CDF5-AEE1-4D8D-80DE-0D05D304C20F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E61FF8CA-3984-40F6-AC99-EC4E7FE78937}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E61FF8CA-3984-40F6-AC99-EC4E7FE78937}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E653AB45-EB21-44F7-A3E2-23E065689529}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E653AB45-EB21-44F7-A3E2-23E065689529}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E6FD2421-1F0D-4385-AEDE-57879E8D04AC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FD2421-1F0D-4385-AEDE-57879E8D04AC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E78B8961-6275-4675-979B-F02E56610BDD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E78B8961-6275-4675-979B-F02E56610BDD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7A544CC-D793-4411-8699-08D40BBDEEA3}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E7A544CC-D793-4411-8699-08D40BBDEEA3}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E8A928C4-D5E9-438E-B1EC-FA6BE39C2730}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E8A928C4-D5E9-438E-B1EC-FA6BE39C2730}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E8CB2D4A-8B89-48E6-83AE-331BD754F79A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E8CB2D4A-8B89-48E6-83AE-331BD754F79A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E9EC508A-4613-467E-B5D6-54A7089EEE30}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9EC508A-4613-467E-B5D6-54A7089EEE30}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA05F04F-5782-4DBB-8E74-A7C2C24506AB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EA05F04F-5782-4DBB-8E74-A7C2C24506AB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA663BF9-8856-4415-BA5C-2B6624E616FD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EA663BF9-8856-4415-BA5C-2B6624E616FD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EC3D7D2E-0332-42CC-B7EF-D287B32E7E8C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EC3D7D2E-0332-42CC-B7EF-D287B32E7E8C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ED450485-8881-4FB6-A5C0-4D11F6AC86A2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED450485-8881-4FB6-A5C0-4D11F6AC86A2}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE58D69C-ADD7-4CEA-9532-477B7A5E9D4D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EE58D69C-ADD7-4CEA-9532-477B7A5E9D4D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE63A709-E72D-4C30-BA2D-955F3B56538D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EE63A709-E72D-4C30-BA2D-955F3B56538D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F00C4349-0A79-4477-A8E3-0C28BBBB72B1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F00C4349-0A79-4477-A8E3-0C28BBBB72B1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F04EB65F-9EB4-4AE9-97D4-76BBF4AD9A4F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F04EB65F-9EB4-4AE9-97D4-76BBF4AD9A4F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0D026F5-2521-4451-80B2-68730CEDF319}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F0D026F5-2521-4451-80B2-68730CEDF319}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F1576A94-C5DE-42D2-AC80-D816ADCC5C5F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F1576A94-C5DE-42D2-AC80-D816ADCC5C5F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F20AC8F6-39EE-41AA-9D48-01854E223794}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F20AC8F6-39EE-41AA-9D48-01854E223794}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F32E55EC-5A1B-424A-9CFD-A72FF7194BFA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F32E55EC-5A1B-424A-9CFD-A72FF7194BFA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F38A6F6A-51B6-447E-B1F8-4D91FC25A3BD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F38A6F6A-51B6-447E-B1F8-4D91FC25A3BD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F3AEA9F6-4244-4205-9D2F-BC54985C5A93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3AEA9F6-4244-4205-9D2F-BC54985C5A93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4FF37A4-29AD-4C14-91A3-E849709A8757}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F4FF37A4-29AD-4C14-91A3-E849709A8757}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F625C692-BCAC-46AA-8306-C5DCB2755D6F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F625C692-BCAC-46AA-8306-C5DCB2755D6F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F715234C-88B6-41C5-9AB2-0250FF5919D0}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F715234C-88B6-41C5-9AB2-0250FF5919D0}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F8E3F3EA-99CB-429B-BD1D-D7DDD535DA57}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8E3F3EA-99CB-429B-BD1D-D7DDD535DA57}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F98509C3-83A6-4304-923E-98EEB98E7A82}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F98509C3-83A6-4304-923E-98EEB98E7A82}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FAE7B7D2-0A17-4860-AEF7-43BA91813625}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FAE7B7D2-0A17-4860-AEF7-43BA91813625}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FB5F2FEE-F59B-4C92-96E1-3FF622062FD9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FB5F2FEE-F59B-4C92-96E1-3FF622062FD9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FB6A207E-F4FD-4979-BCB3-F5BDB28CE0BF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FB6A207E-F4FD-4979-BCB3-F5BDB28CE0BF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FC1298BE-EE4A-426E-B87F-AB41EED1857B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FC1298BE-EE4A-426E-B87F-AB41EED1857B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FC2A5DFB-CA8E-486B-A1AE-754724C24773}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FC2A5DFB-CA8E-486B-A1AE-754724C24773}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FC7E2DDC-E0A7-46F6-85C2-A2845DC43B62}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FC7E2DDC-E0A7-46F6-85C2-A2845DC43B62}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDDC89C5-1877-419D-A31A-A512BA5397A7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FDDC89C5-1877-419D-A31A-A512BA5397A7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FEEFD217-7A29-483F-84E7-FFC2C08BD4D1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FEEFD217-7A29-483F-84E7-FFC2C08BD4D1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FF561824-044F-4C4A-BBC8-DC757C0E0632}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FF561824-044F-4C4A-BBC8-DC757C0E0632}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{5CBE2611-C31B-401F-89BC-4CBB25E853D7} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5CBE2611-C31B-401F-89BC-4CBB25E853D7}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{804DB5C7-31E6-4885-850A-F1941B58A4C7} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{804DB5C7-31E6-4885-850A-F1941B58A4C7}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{8E718888-423F-11D2-876E-00A0C9082467} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E718888-423F-11D2-876E-00A0C9082467}\ deleted successfully.
C:\WINDOWS\SYSTEM32\msdxm.ocx moved successfully.
Registry value HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6}\ not found.
Registry value HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}\ not found.
Registry value HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6}\ not found.
Registry value HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}\ not found.
Registry value HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6}\ not found.
Registry value HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}\ not found.
Registry value HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6}\ not found.
Registry value HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}\ not found.
Registry value HKEY_USERS\S-1-5-21-515967899-1220945662-725345543-1009\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser\\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6}\ not found.
Registry value HKEY_USERS\S-1-5-21-515967899-1220945662-725345543-1009\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{804DB5C7-31E6-4885-850A-F1941B58A4C7} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{804DB5C7-31E6-4885-850A-F1941B58A4C7}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched not found.
File C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnceEx\\ deleted successfully.
Starting removal of ActiveX control {84B7AC1D-9AD1-474F-B6B0-FE1641DBFDFA}
C:\WINDOWS\Downloaded Program Files\ScanFile.INF moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{84B7AC1D-9AD1-474F-B6B0-FE1641DBFDFA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84B7AC1D-9AD1-474F-B6B0-FE1641DBFDFA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{84B7AC1D-9AD1-474F-B6B0-FE1641DBFDFA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84B7AC1D-9AD1-474F-B6B0-FE1641DBFDFA}\ not found.
Starting removal of ActiveX control {8AD9C840-044E-11D1-B3E9-00805F499D93}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0015-0000-0003-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{FDFFC157-83A2-40DA-A8FA-921450F1E9D2}\\DhcpNameServer| /E : value set successfully!
Folder C:\America Online 5.0\ not found.
Folder C:\WINDOWS\aolshare\ not found.
C:\Program Files\Online Services\PRODIGY folder moved successfully.
C:\Program Files\Online Services\EARTHL~1 folder moved successfully.
C:\Program Files\Online Services folder moved successfully.
C:\Program Files\Symantec folder moved successfully.
C:\Program Files\Juno\modules folder moved successfully.
C:\Program Files\Juno\USER0002 folder moved successfully.
C:\Program Files\Juno\USER0001 folder moved successfully.
C:\Program Files\Juno\USER0000\Favorites folder moved successfully.
C:\Program Files\Juno\USER0000\put folder moved successfully.
C:\Program Files\Juno\USER0000 folder moved successfully.
C:\Program Files\Juno\ads\00025660 folder moved successfully.
C:\Program Files\Juno\ads\00025620 folder moved successfully.
C:\Program Files\Juno\ads\00025618 folder moved successfully.
C:\Program Files\Juno\ads\00025664 folder moved successfully.
C:\Program Files\Juno\ads\00025567 folder moved successfully.
C:\Program Files\Juno\ads\00025610 folder moved successfully.
C:\Program Files\Juno\ads\00025657 folder moved successfully.
C:\Program Files\Juno\ads\00025665 folder moved successfully.
C:\Program Files\Juno\ads\00025668 folder moved successfully.
C:\Program Files\Juno\ads\00025659 folder moved successfully.
C:\Program Files\Juno\ads\00025658 folder moved successfully.
C:\Program Files\Juno\ads\00025674 folder moved successfully.
C:\Program Files\Juno\ads\03010812 folder moved successfully.
C:\Program Files\Juno\ads\03021700 folder moved successfully.
C:\Program Files\Juno\ads\03021602 folder moved successfully.
C:\Program Files\Juno\ads\03021500 folder moved successfully.
C:\Program Files\Juno\ads\03021400 folder moved successfully.
C:\Program Files\Juno\ads\03021301 folder moved successfully.
C:\Program Files\Juno\ads\03021200 folder moved successfully.
C:\Program Files\Juno\ads\03021100 folder moved successfully.
C:\Program Files\Juno\ads\03014202 folder moved successfully.
C:\Program Files\Juno\ads\03012602 folder moved successfully.
C:\Program Files\Juno\ads\03012500 folder moved successfully.
C:\Program Files\Juno\ads\03012400 folder moved successfully.
C:\Program Files\Juno\ads\03012307 folder moved successfully.
C:\Program Files\Juno\ads\03011800 folder moved successfully.
C:\Program Files\Juno\ads\03021808 folder moved successfully.
C:\Program Files\Juno\ads\03010700 folder moved successfully.
C:\Program Files\Juno\ads\03010600 folder moved successfully.
C:\Program Files\Juno\ads\03007504 folder moved successfully.
C:\Program Files\Juno\ads\00025666 folder moved successfully.
C:\Program Files\Juno\ads\logs folder moved successfully.
C:\Program Files\Juno\ads folder moved successfully.
C:\Program Files\Juno\tmp folder moved successfully.
C:\Program Files\Juno\bin folder moved successfully.
C:\Program Files\Juno\lib\fonts folder moved successfully.
C:\Program Files\Juno\lib folder moved successfully.
C:\Program Files\Juno folder moved successfully.
C:\Program Files\AIM95 folder moved successfully.
C:\Program Files\AIM Toolbar\Data folder moved successfully.
C:\Program Files\AIM Toolbar\Updates folder moved successfully.
C:\Program Files\AIM Toolbar folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\log folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\site folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib\Net\DNS\RR folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib\Net\DNS\Resolver folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib\Net\DNS folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib\Net folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib\HTML folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib\auto\Net\DNS folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib\auto\Net folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib\auto\HTML\Parser folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib\auto\HTML folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib\auto folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib\5.8.3\HTML folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib\5.8.3\File folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib\5.8.3\auto\HTML\Parser folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib\5.8.3\auto\HTML folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib\5.8.3\auto\File\Glob folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib\5.8.3\auto\File folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib\5.8.3\auto folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib\5.8.3 folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\dlib folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\lib\Mail\SpamAssassin\Plugin folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\lib\Mail\SpamAssassin folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\lib\Mail folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\lib\auto\List\Util folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\lib\auto\List folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\lib\auto folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\lib folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control\var folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Spam Control folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\FSGUI folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\FWES\fsdfwiu.tmp\vista folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\FWES\fsdfwiu.tmp folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\FWES\logs folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\FWES folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Anti-Virus\dbbackup\fsgkhs folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Anti-Virus\dbbackup folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Anti-Virus\minifilter folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Anti-Virus folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Common\custom folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite\Common folder moved successfully.
C:\Program Files\Charter High-Speed Security Suite folder moved successfully.
C:\Program Files\SpySpotter folder moved successfully.
C:\Program Files\Norton AntiVirus folder moved successfully.
File C:\WINDOWS\tasks\AppleSoftwareUpdate.job not found.
========== COMMANDS ==========

[EMPTYTEMP]

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 32902 bytes

User: All Users

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 32902 bytes

User: LocalService
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: RICK
->Temp folder emptied: 347819 bytes
->Temporary Internet Files folder emptied: 3722007 bytes
->Java cache emptied: 24842888 bytes
->FireFox cache emptied: 89098285 bytes
->Flash cache emptied: 34364 bytes

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 32902 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 3337929 bytes
%systemroot%\System32 .tmp files removed: 10696473 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 32680434 bytes
Session Manager Temp folder emptied: 16384 bytes
Session Manager Tmp folder emptied: 16384 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 558570 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 158.00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 02032014_195611

Files\Folders moved on Reboot...
C:\WINDOWS\temp\Perflib_Perfdata_5b4.dat moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
  • 0

#4
Cotutor

Cotutor

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 494 posts
Ok, this is the second log from the 2nd OTL Fix I wrote:

All processes killed
========== COMMANDS ==========
Restore point Set: OTL Restore Point
========== OTL ==========
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Bar| /E : value set successfully!
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Bar| /E : value set successfully!
HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Bar| /E : value set successfully!
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Bar| /E : value set successfully!
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKEY_USERS\S-1-5-21-515967899-1220945662-725345543-1009\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Prefs.js: "127.0.0.1" removed from network.proxy.http
Starting removal of ActiveX control {34805D32-AD89-469E-8503-A5666AEE4333}
Registry error reading value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{34805D32-AD89-469E-8503-A5666AEE4333}\DownloadInformation\\INF .
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{34805D32-AD89-469E-8503-A5666AEE4333}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{34805D32-AD89-469E-8503-A5666AEE4333}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{34805D32-AD89-469E-8503-A5666AEE4333}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{34805D32-AD89-469E-8503-A5666AEE4333}\ not found.
File 077-3798-49BB-9058-393499174D5D} file://c:\counter.cab not found.
Starting removal of ActiveX control {1D0D9077-3798-49BB-9058-393499174D5D}
C:\WINDOWS\Downloaded Program Files\counter.inf not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{1D0D9077-3798-49BB-9058-393499174D5D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1D0D9077-3798-49BB-9058-393499174D5D}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{1D0D9077-3798-49BB-9058-393499174D5D}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1D0D9077-3798-49BB-9058-393499174D5D}\ not found.
Starting removal of ActiveX control {4F1E5B1A-2A80-42CA-8532-2D05CB959537}
C:\WINDOWS\Downloaded Program Files\MSNPupld.inf moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{4F1E5B1A-2A80-42CA-8532-2D05CB959537}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F1E5B1A-2A80-42CA-8532-2D05CB959537}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{4F1E5B1A-2A80-42CA-8532-2D05CB959537}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F1E5B1A-2A80-42CA-8532-2D05CB959537}\ not found.
Starting removal of ActiveX control {6A060448-60F9-11D5-A6CD-0002B31F7455}
Registry error reading value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{6A060448-60F9-11D5-A6CD-0002B31F7455}\DownloadInformation\\INF .
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{6A060448-60F9-11D5-A6CD-0002B31F7455}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A060448-60F9-11D5-A6CD-0002B31F7455}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6A060448-60F9-11D5-A6CD-0002B31F7455}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A060448-60F9-11D5-A6CD-0002B31F7455}\ not found.
Starting removal of ActiveX control {8EF27A70-DD04-11D6-B7F6-00A0C9CD5F8A}
Registry error reading value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8EF27A70-DD04-11D6-B7F6-00A0C9CD5F8A}\DownloadInformation\\INF .
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8EF27A70-DD04-11D6-B7F6-00A0C9CD5F8A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8EF27A70-DD04-11D6-B7F6-00A0C9CD5F8A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8EF27A70-DD04-11D6-B7F6-00A0C9CD5F8A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8EF27A70-DD04-11D6-B7F6-00A0C9CD5F8A}\ not found.
Starting removal of ActiveX control {B8BE5E93-A60C-4D26-A2DC-220313175592}
Registry error reading value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{B8BE5E93-A60C-4D26-A2DC-220313175592}\DownloadInformation\\INF .
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{B8BE5E93-A60C-4D26-A2DC-220313175592}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B8BE5E93-A60C-4D26-A2DC-220313175592}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{B8BE5E93-A60C-4D26-A2DC-220313175592}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B8BE5E93-A60C-4D26-A2DC-220313175592}\ not found.
Starting removal of ActiveX control {CD17FAAA-17B4-4736-AAEF-436EDC304C8C}
Registry error reading value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CD17FAAA-17B4-4736-AAEF-436EDC304C8C}\DownloadInformation\\INF .
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CD17FAAA-17B4-4736-AAEF-436EDC304C8C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CD17FAAA-17B4-4736-AAEF-436EDC304C8C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CD17FAAA-17B4-4736-AAEF-436EDC304C8C}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CD17FAAA-17B4-4736-AAEF-436EDC304C8C}\ not found.
C:\Documents and Settings\All Users\Application Data\F-Secure\Daas2\revocation folder moved successfully.
C:\Documents and Settings\All Users\Application Data\F-Secure\Daas2\keys folder moved successfully.
C:\Documents and Settings\All Users\Application Data\F-Secure\Daas2\crl folder moved successfully.
C:\Documents and Settings\All Users\Application Data\F-Secure\Daas2\acl folder moved successfully.
C:\Documents and Settings\All Users\Application Data\F-Secure\Daas2\cert folder moved successfully.
C:\Documents and Settings\All Users\Application Data\F-Secure\Daas2 folder moved successfully.
C:\Documents and Settings\All Users\Application Data\F-Secure\setup folder moved successfully.
C:\Documents and Settings\All Users\Application Data\F-Secure\logs\FSFW folder moved successfully.
C:\Documents and Settings\All Users\Application Data\F-Secure\logs\DAAS2 folder moved successfully.
C:\Documents and Settings\All Users\Application Data\F-Secure\logs\ORSP Client folder moved successfully.
C:\Documents and Settings\All Users\Application Data\F-Secure\logs\fstnb folder moved successfully.
C:\Documents and Settings\All Users\Application Data\F-Secure\logs\FSMA folder moved successfully.
C:\Documents and Settings\All Users\Application Data\F-Secure\logs\custom folder moved successfully.
C:\Documents and Settings\All Users\Application Data\F-Secure\logs\FSPC folder moved successfully.
C:\Documents and Settings\All Users\Application Data\F-Secure\logs folder moved successfully.
C:\Documents and Settings\All Users\Application Data\F-Secure folder moved successfully.
C:\Documents and Settings\RICK\Application Data\F-Secure\System Control folder moved successfully.
C:\Documents and Settings\RICK\Application Data\F-Secure\Spam Control folder moved successfully.
C:\Documents and Settings\RICK\Application Data\F-Secure folder moved successfully.
C:\Documents and Settings\All Users\Application Data\fssg folder moved successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: All Users

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: RICK
->Temp folder emptied: 166478 bytes
->Temporary Internet Files folder emptied: 6908699 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Flash cache emptied: 744 bytes

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 19569 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 33431 bytes
Session Manager Temp folder emptied: 16384 bytes
Session Manager Tmp folder emptied: 16384 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 7.00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 02092014_120321

Files\Folders moved on Reboot...
File\Folder C:\Documents and Settings\RICK\Local Settings\Temp\~DF1D85.tmp not found!
File\Folder C:\Documents and Settings\RICK\Local Settings\Temp\~DF1D8E.tmp not found!
File\Folder C:\Documents and Settings\RICK\Local Settings\Temp\~DF1E4B.tmp not found!
File\Folder C:\Documents and Settings\RICK\Local Settings\Temp\~DF1E52.tmp not found!
File\Folder C:\Documents and Settings\RICK\Local Settings\Temp\~DF1F30.tmp not found!
File\Folder C:\Documents and Settings\RICK\Local Settings\Temp\~DF1F39.tmp not found!
C:\Documents and Settings\RICK\Local Settings\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat moved successfully.
C:\Documents and Settings\RICK\Local Settings\Temporary Internet Files\Content.IE5\OVKFY507\search[1].htm moved successfully.
C:\WINDOWS\temp\Perflib_Perfdata_600.dat moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
  • 0

#5
Cotutor

Cotutor

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 494 posts

Please post me the lines where you think it is Malware.

I would love to, but unfortunately when I ran OTL the second time, it over wrote the first txt and I never thought to save it first. Unless you can tell me some place that it stores them all?

Please start Malwarebytes. Go to the tab Logs and select the newest Log (where it found the 19 bad things) and open the log. Copy and paste the content of that textfile into your next reply.
Please post the Rkill.txt, RogueKiller and Viprer Rescue Log.

Can you tell me where to find the Viprer Rescue log? I have a folder called Viper that is in the directory that I ran it from, but other than about 4 dated csv files I'm not finding anything obvious?
MBytes, RKill, & RogueKiller are below.


Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Database version: v2014.02.04.01

Windows XP Service Pack 1 x86 FAT32
Internet Explorer 6.0.2800.1106
RICK :: 3LHB011 [administrator]

02/03/2014 8:50:12 PM
mbam-log-2014-02-03 (20-50-12).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 232166
Time elapsed: 5 minute(s), 49 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 16
HKCR\CLSID\{1E0004EC-5DF0-48C7-A8F0-FBB0488A3D94} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKCR\HbCoreSrv.DynamicProp.1 (Adware.Hotbar) -> Quarantined and deleted successfully.
HKCR\HbCoreSrv.DynamicProp (Adware.Hotbar) -> Quarantined and deleted successfully.
HKCR\CLSID\{8109FD3D-D891-4F80-8339-50A4913ACE6F} (Adware.Zango) -> Quarantined and deleted successfully.
HKCR\Wallpaper.WallpaperManager.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKCR\Wallpaper.WallpaperManager (Adware.Zango) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{8109FD3D-D891-4F80-8339-50A4913ACE6F} (Adware.Zango) -> Quarantined and deleted successfully.
HKCR\Typelib\{3C2D2A1E-031F-4397-9614-87C932A848E0} (Adware.Minibug) -> Quarantined and deleted successfully.
HKCR\Interface\{04A38F6B-006F-4247-BA4C-02A139D5531C} (Adware.Minibug) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6FD31ED6-7C94-4BBC-8E95-F927F4D3A949} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{99410CDE-6F16-42CE-9D49-3807F78F0287} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{99410CDE-6F16-42CE-9D49-3807F78F0287} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{F31A5D11-BF0B-4A4E-90AF-274F2090AAA6} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F31A5D11-BF0B-4A4E-90AF-274F2090AAA6} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{0AC49246-419B-4EE0-8917-8818DAAD6A4E} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{90B5A95A-AFD5-4d11-B9BD-A69D53D22226} (Adware.Hotbar) -> Quarantined and deleted successfully.

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 2
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced|StartMenuLogoff (PUM.Hijack.StartMenu) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon|Userinit (Hijack.Userinit) -> Bad: (C:\WINDOWS\system32\userinit.exe,userinit32.exe) Good: (Userinit.exe) -> Quarantined and repaired successfully.

Folders Detected: 0
(No malicious items detected)

Files Detected: 1
C:\WINDOWS\Hosts (Trojan.Agent) -> Quarantined and deleted successfully.

(end)
--------------------------------
RKill log
Rkill 2.5.0 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2014 BleepingComputer.com
More Information about Rkill can be found at this link:
http://www.bleepingc...opic308364.html

Program started at: 02/06/2014 05:25:45 PM in x86 mode.
Windows Version: Microsoft Windows XP Service Pack 3

Checking for Windows services to stop:

* No malware services found to stop.

Checking for processes to terminate:

* No malware processes found to kill.

Checking Registry for malware related settings:

* No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

* Windows Firewall Disabled

[HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = dword:00000000

Checking Windows Service Integrity:

* RpcSs => %SystemRoot%\system32\svchost.exe -k rpcss [Incorrect ImagePath]

Searching for Missing Digital Signatures:

* C:\WINDOWS\System32\drivers\bthport.sys [NoSig]
+-> C:\WINDOWS\snack\bthport.sys : 272,128 : 06/13/2008 00:05 AM : 662bfd909447dd9cc15b1a1c366583b4 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951376\SP2QFE\bthport.sys : 272,128 : 04/14/2008 00:00 AM : fc50ce8c3ada692fbe82f1d4c8a4b70b [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951376\SP3GDR\bthport.sys : 272,128 : 04/14/2008 00:30 AM : 8381fb906f05495f3d2045fbc9576cd5 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951376\SP3QFE\bthport.sys : 272,128 : 04/14/2008 00:36 AM : f6cbbcc40f94eb8a88b1e826911ac795 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951376-v2\SP2QFE\bthport.sys : 272,128 : 06/13/2008 00:52 AM : 956e7e86bb00e792c8ff3afb2f8e460d [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951376-v2\SP3GDR\bthport.sys : 272,128 : 06/13/2008 00:05 AM : 662bfd909447dd9cc15b1a1c366583b4 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951376-v2\SP3QFE\bthport.sys : 272,128 : 06/13/2008 00:27 AM : 51d05d5a8a7d93ab0b1a8d6a38db3ca4 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\bthport.sys : 273,024 : 04/14/2008 00:16 AM : 10b85171b90c449f8da71c2640b797e9 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB951376_0$\bthport.sys : 274,304 : 08/04/2004 00:10 AM : 30b76ec553b202890e90a93a4e1a27b5 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB951376-v2_0$\bthport.sys : 272,128 : 04/14/2008 00:01 AM : 0bedc4527aafdae75b1844d4db29b6db [Pos Repl]

Checking HOSTS File:

* No issues found.

Program finished at: 02/06/2014 05:26:42 PM
Execution time: 0 hours(s), 0 minute(s), and 57 seconds(s)
------------------------------

Rogue Killer

RogueKiller V8.8.3 [Jan 24 2014] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Feedback : http://www.adlice.com/forum/
Website : http://www.adlice.co...es/roguekiller/
Blog : http://www.adlice.com

Operating System : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User : RICK [Admin rights]
Mode : Remove -- Date : 02/06/2014 14:04:17
| ARK || FAK || MBR |

¤¤¤ Bad processes : 0 ¤¤¤

¤¤¤ Registry Entries : 2 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> DELETED
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowRecentDocs (0) -> REPLACED (1)

¤¤¤ Scheduled tasks : 0 ¤¤¤

¤¤¤ Startup Entries : 0 ¤¤¤

¤¤¤ Web browsers : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Particular Files / Folders: ¤¤¤

¤¤¤ Driver : [LOADED] ¤¤¤
[Inline] EAT @EXPLORER.EXE (kernel32_GetVolumeNameForVolumeMountPointA_Ptr) : uwinapi.dll -> HOOKED (Unknown @ 0x7C14E417)
[Inline] EAT @EXPLORER.EXE (?_M_truename@?$numpunct@D@_STL@@2V?$basic_string@DV?$char_traits@D@_STL@@V?$allocator@D@2@@2@A) : stlport_vc7145.dll -> HOOKED (Unknown @ 0x4E4D3957)

¤¤¤ External Hives: ¤¤¤

¤¤¤ Infection : ¤¤¤

¤¤¤ HOSTS File: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ MBR Check: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST3160815A +++++
--- User ---
[MBR] db486d535f56a5410b553a49f47da33b
[BSP] 754f3d4ad0b5b8bf15d7ae62a2da314c : Windows XP MBR Code
Partition table:
0 - [ACTIVE] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 63 | Size: 152626 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Finished : << RKreport[0]_D_02062014_140417.txt >>
RKreport[0]_S_02062014_140159.txt
  • 0

#6
Machiavelli

Machiavelli

    GeekU Moderator

  • GeekU Moderator
  • 4,722 posts

Can you tell me where to find the Viprer Rescue log? I have a folder called Viper that is in the directory that I ran it from, but other than about 4 dated csv files I'm not finding anything obvious?

Weird. While I'm researching: Did it find anything?
  • 0

#7
Machiavelli

Machiavelli

    GeekU Moderator

  • GeekU Moderator
  • 4,722 posts
Quarantine Folder:

C:\Documents and Settings\All Users\Application Data\Sunbelt\AntiMalware\Quarantine

Is there anything in it? So far my research showed you must enable logging while scanning so that it creates such logfile(s).

I'm working on a fix for you. You should see in the Learning Center a Forum called Check My Fix - there will be a topic posted called Proposed for Cotutor later - maybe you like to take a look into it. :)
  • 0

#8
Machiavelli

Machiavelli

    GeekU Moderator

  • GeekU Moderator
  • 4,722 posts
  • Step 1: OTL Fix

  • Run OTL.
  • Copy (Ctrl+C) and Paste (Ctrl+V) all of the following text into the Custom Scans/Fixes box:

    :Commands
    [CreateRestorePoint]
    
    :OTL
    IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\blank.htm
    IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
    IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 
    IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\blank.htm
    IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
    IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 
    IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\blank.htm
    IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
    IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 
    IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\blank.htm
    IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
    IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 
    O15 - HKU\.DEFAULT\..Trusted Domains: ([]msn in My Computer)
    O15 - HKU\S-1-5-18\..Trusted Domains: ([]msn in My Computer)
    O15 - HKU\S-1-5-19\..Trusted Domains: ([]msn in My Computer)
    O15 - HKU\S-1-5-20\..Trusted Domains: ([]msn in My Computer)
    O15 - HKU\S-1-5-21-515967899-1220945662-725345543-1009\..Trusted Domains: ([]msn in My Computer)
    O16 - DPF: DirectAnimation Java Classes file://C:\WINDOWS\SYSTEM\dajava.cab (Reg Error: Key error.)
    O16 - DPF: Microsoft XML Parser for Java file:///C:/WINDOWS/Java/classes/xmldso.cab (Reg Error: Key error.)
    [2005/11/04 12:32:15 | 000,000,051 | ---- | C] () -- C:\Documents and Settings\RICK\Application Data\tvmdmns.dll
    
    :Files
    dir C:\WINDOWS\snack /S /C
    
    :Commands
    [RESETHOSTS]
    [EMPTYTEMP]
    
  • Click the Run Fix button.
  • After your computer has rebooted, post the FixLog into your next reply

  • Step 2: AdwCleaner

Please download AdwCleaner (by Xplode) from the link below and save it to your Desktop:

Download Mirror #1


  • Run AdwCleaner.exe.
  • Click Scan and let the scan run.
  • When it finishes, click Clean, following the on screen prompts
  • After your computer reboots, a log will open. Please Copy (Ctrl+C) and Paste (Ctrl+V) this into your next post.

Note: The log can also be found in here: C:\AdwCleaner\

  • Step 3: JRT Scan

Posted Image Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it.
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.

  • Step 4: OTL Scan

  • Please copy the text in the Quote box below, (Do Not copy the word Quote), and paste it in the Posted Image box in OTL. To do that:
    • Highlight everything inside the quote box, (except the word Quote), right click the mouse and click Copy.

    netsvcs
    BASESERVICES
    %SYSTEMDRIVE%\*.exe
    /md5start
    services.*
    explorer.exe
    winlogon.exe
    Userinit.exe
    svchost.exe
    qmgr.dll
    winsock.*
    /md5stop
    dir "%systemdrive%\*" /S /A:L /C
    CREATERESTOREPOINT

  • Open Posted Image on the desktop. To do that:
    • XP users: Double click on the OTL icon.
    • Vista / 7 Users: Right click on the icon and click Run as Administrator)
  • Make sure all other windows are closed.
    • You will see a console like the one below:

      Posted Image

    • Click the box beside Scan All Users at the top of the console
    • If you have a 64bit Windows, click the box beside Include 64bit Scans at the top of the console.
    • Make sure the Output box at the top is set to Standard Output.
    • Check the boxes beside LOP Check and Purity Check.
    • Place the mouse pointer inside the Posted Image box, right click and click Paste. This will put the above script inside OTL
    • Click the Posted Image button. Do not change any settings unless otherwise told to do so.
    • Let the scan run uninterrupted.
    • When the scan completes, it will open OTL.Txt on the desktop.
    • Please copy the contents of these files and paste it into your reply. To do that:
    • On the OTL.txt file Menu Bar click Edit then click Select All. This will highlight the contents of the file. Then click Copy.
    • Right click inside the forum post window then click Paste. This will paste the contents of the OTL.txt file in the in the post window.
[/list]
 

How is the PC running?
  • 0

#9
Cotutor

Cotutor

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 494 posts

Can you tell me where to find the Viprer Rescue log? I have a folder called Viper that is in the directory that I ran it from, but other than about 4 dated csv files I'm not finding anything obvious?

Weird. While I'm researching: Did it find anything?

I don't recall exactly, it said something like it was done cleaning.... but don't recall anything other than that.
I do know that there is a quarantine folder inside the viper folder, this has 14 files in it, 5 of them have CLSID like names with _ENC2 on the end and the other 9 are identified as XML documents with CLSID like names beginning with a QR prefix and ending with what appears to be random numbers suffixed after the brackets.
  • 0

#10
Cotutor

Cotutor

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 494 posts

Quarantine Folder:

C:\Documents and Settings\All Users\Application Data\Sunbelt\AntiMalware\Quarantine

Is there anything in it? So far my research showed you must enable logging while scanning so that it creates such logfile(s).

I'm working on a fix for you. You should see in the Learning Center a Forum called Check My Fix - there will be a topic posted called Proposed for Cotutor later - maybe you like to take a look into it. :)


That path doesn't exist, perhaps because I didn't really install it. But check my previous post for info on the quarantine folder. Not sure how to get you the info on those files?
  • 0

Advertisements


#11
Machiavelli

Machiavelli

    GeekU Moderator

  • GeekU Moderator
  • 4,722 posts

I do know that there is a quarantine folder inside the viper folder, this has 14 files in it, 5 of them have CLSID like names with _ENC2 on the end and the other 9 are identified as XML documents with CLSID like names beginning with a QR prefix and ending with what appears to be random numbers suffixed after the brackets.

OK zip the folder - upload it to any file Hoster etc. and send me the link to the folder via PM.

For now please make the steps as in Post #8.
  • 0

#12
Cotutor

Cotutor

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 494 posts

Step 1: OTL Fix

I'm pretty sure, but please correct me properly, that I investigated the windows\snack folder, and I think it was put there by frst. I don't know that for sure, but that's what I was finding and the date of creation pretty much coincided with my attempt at running it.
All processes killed
========== COMMANDS ==========
Restore point Set: OTL Restore Point
========== OTL ==========
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
Registry value HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\\ deleted successfully.
Registry value HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\\ not found.
Registry value HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\\ deleted successfully.
Registry value HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\\ deleted successfully.
File Animation Java Classes file://C:\WINDOWS\SYSTEM\dajava.cab not found.
Starting removal of ActiveX control DirectAnimation Java Classes
Registry error reading value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\DirectAnimation Java Classes\DownloadInformation\\INF .
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\DirectAnimation Java Classes\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\DirectAnimation Java Classes\ not found.
File oft XML Parser for Java file:///C:/WINDOWS/Java/classes/xmldso.cab not found.
Starting removal of ActiveX control Microsoft XML Parser for Java
Registry error reading value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\Microsoft XML Parser for Java\DownloadInformation\\INF .
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\Microsoft XML Parser for Java\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\Microsoft XML Parser for Java\ not found.
C:\Documents and Settings\RICK\Application Data\tvmdmns.dll moved successfully.
========== FILES ==========
< dir C:\WINDOWS\snack /S /C >
Volume in drive C has no label.
Volume Serial Number is 07D0-0A0D
Directory of C:\WINDOWS\snack
02/06/2014 02:01 PM <DIR> .
02/06/2014 02:01 PM <DIR> ..
04/14/2008 12:02 AM 196,224 rdpdr.sys
04/14/2008 12:06 AM 42,368 agp440.sys
04/14/2008 12:13 AM 12,672 mutohpen.sys
04/14/2008 12:09 AM 384,768 update.sys
09/27/2006 05:53 PM 36,560 pxhelp20.sys
09/13/2001 05:48 AM 737,973 winachcf.sys
04/04/2013 02:50 PM 20,552 mbam.sys
08/17/2001 01:57 PM 16,128 MODEMCSA.sys
04/14/2008 12:47 AM 83,072 wdmaud.sys
04/14/2008 12:45 AM 334,848 srv.sys
07/28/2003 03:19 PM 1,341,339 nv4_mini.sys
04/14/2008 12:01 AM 35,840 processr.sys
04/14/2008 12:06 AM 120,192 pcmcia.sys
04/14/2008 12:27 AM 152,832 ipnat.sys
04/14/2008 12:01 AM 36,736 crusoe.sys
04/14/2008 12:06 AM 40,960 sisagp.sys
04/14/2008 12:27 AM 34,560 wanarp.sys
04/14/2008 12:27 AM 14,336 asyncmac.sys
04/14/2008 12:49 AM 75,264 ipsec.sys
08/17/2001 01:57 PM 45,696 cirrus.sys
04/14/2008 12:10 AM 20,480 flpydisk.sys
04/13/2008 02:36 PM 44,672 uagp35.sys
12/01/2005 03:57 PM 21,760 point32.sys
04/14/2008 12:58 AM 175,744 rdbss.sys
04/14/2008 12:15 AM 25,728 usbcamd2.sys
04/14/2008 12:15 AM 6,272 splitter.sys
04/14/2008 05:43 AM 12,040 tdpipe.sys
04/14/2008 12:47 AM 456,576 mrxsmb.sys
04/14/2008 12:26 AM 34,688 netbios.sys
04/14/2008 12:11 AM 52,352 volsnap.sys
04/14/2008 12:10 AM 27,392 fdc.sys
04/14/2008 12:06 AM 187,776 acpi.sys
03/31/2003 12:00 PM 6,784 parvdm.sys
04/14/2008 12:21 AM 60,800 arp1394.sys
04/14/2008 12:15 AM 15,872 usbintel.sys
04/14/2008 12:45 AM 60,800 sysaudio.sys
04/14/2008 12:09 AM 7,552 mskssrv.sys
04/14/2008 12:14 AM 81,664 videoprt.sys
09/15/2006 10:52 PM 124,016 SYMEVENT.SYS
04/14/2008 12:16 AM 25,344 sonydcam.sys
04/14/2008 12:50 AM 361,344 tcpip.sys
04/14/2008 12:10 AM 15,744 serenum.sys
04/14/2008 12:15 AM 20,608 usbuhci.sys
04/14/2008 12:01 AM 42,752 p3.sys
04/14/2008 12:50 AM 182,656 ndis.sys
04/14/2008 12:49 AM 48,384 raspptp.sys
04/14/2008 12:10 AM 96,384 scsiport.sys
03/31/2003 12:00 PM 5,888 rootmdm.sys
04/14/2008 12:24 AM 11,264 irenum.sys
04/14/2008 12:30 AM 19,072 tdi.sys
09/22/2004 06:46 PM 18,944 wpdusb.sys
04/14/2008 12:09 AM 4,992 mspqm.sys
04/14/2008 12:30 AM 225,664 tcpip6.sys
04/14/2008 12:02 AM 19,072 msfs.sys
04/14/2008 12:26 AM 14,592 ndisuio.sys
04/14/2008 12:03 AM 44,544 fips.sys
04/14/2008 12:49 AM 138,112 afd.sys
04/14/2008 12:14 AM 153,344 dmio.sys
04/13/2008 10:05 PM 20,992 rtl8139.sys
04/14/2008 12:15 AM 32,128 usbccgp.sys
04/14/2008 12:11 AM 42,112 imapi.sys
04/14/2008 12:14 AM 20,992 vga.sys
04/14/2008 12:15 AM 26,368 usbstor.sys
03/31/2003 12:00 PM 63,232 nwlnknb.sys
04/14/2008 12:10 AM 24,960 pciidex.sys
04/14/2008 12:10 AM 11,392 sfloppy.sys
04/14/2008 12:02 AM 30,848 npfs.sys
04/14/2008 12:21 AM 61,824 nic1394.sys
04/14/2008 12:48 AM 52,480 i8042prt.sys
03/31/2003 12:00 PM 18,688 cdaudio.sys
04/14/2008 12:10 AM 36,352 disk.sys
04/14/2008 12:49 AM 51,328 rasl2tp.sys
04/14/2008 12:27 AM 40,576 ndproxy.sys
03/31/2003 12:00 PM 12,032 nikedrv.sys
04/14/2008 12:09 AM 5,376 mspclock.sys
04/14/2008 12:51 AM 162,816 netbt.sys
03/31/2003 12:00 PM 17,792 ptilink.sys
04/14/2008 12:23 AM 40,320 nmnt.sys
04/14/2008 12:15 AM 15,104 usbscan.sys
04/14/2008 12:06 AM 37,248 isapnp.sys
04/14/2008 12:44 AM 143,744 fastfat.sys
04/14/2008 12:09 AM 23,040 mouclass.sys
04/14/2008 12:15 AM 24,960 hidparse.sys
04/14/2008 12:15 AM 60,160 drmk.sys
04/14/2008 12:10 AM 19,712 partmgr.sys
03/31/2003 12:00 PM 11,648 acpiec.sys
04/14/2008 12:10 AM 14,976 tape.sys
04/14/2008 12:26 AM 35,072 msgpc.sys
04/14/2008 12:06 AM 68,224 pci.sys
04/14/2008 12:08 AM 71,168 dxg.sys
04/14/2008 12:30 AM 30,080 modem.sys
03/31/2003 12:00 PM 4,736 usbd.sys
04/14/2008 12:45 AM 64,512 serial.sys
03/31/2003 12:00 PM 3,328 dxgthk.sys
04/14/2008 12:15 AM 2,944 drmkaud.sys
04/13/2008 10:09 PM 142,592 aec.sys
04/14/2008 12:27 AM 10,112 ndistapi.sys
09/28/2006 06:55 PM 77,568 WudfPf.sys
04/14/2008 12:15 AM 172,416 kmixer.sys
03/31/2003 12:00 PM 5,888 dmload.sys
03/31/2003 12:00 PM 10,496 dxapi.sys
04/14/2008 12:01 AM 37,760 amdk7.sys
04/13/2008 10:04 PM 327,040 ati2mtaa.sys
04/14/2008 12:49 AM 146,048 portcls.sys
04/14/2008 12:10 AM 62,976 cdrom.sys
04/14/2008 12:27 AM 20,864 ipinip.sys
04/14/2008 12:47 AM 105,344 mup.sys
04/14/2008 12:26 AM 69,120 psched.sys
04/14/2008 12:46 AM 49,536 classpnp.sys
04/14/2008 12:23 AM 71,552 bridge.sys
04/14/2008 12:21 AM 55,808 atmlane.sys
03/31/2003 12:00 PM 31,360 atmepvc.sys
04/14/2008 12:13 AM 14,208 wacompen.sys
04/14/2008 12:10 AM 96,512 atapi.sys
04/14/2008 12:21 AM 59,904 atmarpc.sys
04/14/2008 12:06 AM 43,008 amdagp.sys
08/03/2004 10:31 PM 36,224 an983.sys
04/14/2008 12:15 AM 56,576 swmidi.sys
04/13/2008 10:04 PM 701,440 ati2mtag.sys
04/14/2008 12:17 AM 25,856 usbprint.sys
08/03/2004 10:29 PM 25,471 watv10nt.sys
08/03/2004 10:29 PM 22,271 watv06nt.sys
08/03/2004 10:29 PM 11,935 wadv11nt.sys
08/03/2004 10:29 PM 11,871 wadv09nt.sys
08/03/2004 10:29 PM 11,295 wadv08nt.sys
08/03/2004 10:29 PM 11,807 wadv07nt.sys
03/31/2003 12:00 PM 30,208 wceusbsh.sys
04/13/2008 02:46 PM 121,984 usbvideo.sys
04/14/2008 12:15 AM 143,872 usbport.sys
04/13/2008 02:56 PM 12,800 usb8023x.sys
03/31/2003 12:00 PM 4,224 mnmdd.sys
04/14/2008 05:43 AM 40,840 termdd.sys
04/14/2008 12:15 AM 59,520 usbhub.sys
04/14/2008 12:15 AM 30,208 usbehci.sys
08/03/2004 10:41 PM 13,240 slwdmsup.sys
08/03/2004 10:41 PM 95,424 slnthal.sys
08/03/2004 10:41 PM 404,990 slntamr.sys
08/03/2004 10:41 PM 129,535 slnt7554.sys
04/13/2008 02:40 PM 11,008 sffp_sd.sys
04/13/2008 02:40 PM 10,240 sffp_mmc.sys
04/13/2008 02:36 PM 79,232 sdbus.sys
04/13/2008 02:56 PM 30,592 rndismpx.sys
08/03/2004 10:29 PM 166,912 s3gnbm.sys
04/13/2008 02:46 PM 59,136 rfcomm.sys
04/14/2008 12:15 AM 25,600 usbcamd.sys
08/03/2004 10:41 PM 13,776 recagent.sys
08/03/2004 10:41 PM 180,360 ntmtlfax.sys
04/13/2008 02:36 PM 15,488 mssmbios.sys
08/03/2004 10:29 PM 452,736 mtxparhm.sys
08/03/2004 10:41 PM 1,309,184 mtlstrm.sys
08/03/2004 10:41 PM 126,686 mtlmnt5.sys
04/13/2008 02:53 PM 36,608 ip6fw.sys
08/03/2004 10:41 PM 11,868 mdmxsdk.sys
04/13/2008 02:31 PM 36,352 intelppm.sys
04/13/2008 02:53 PM 264,832 http.sys
03/31/2003 12:00 PM 7,680 mcd.sys
08/03/2004 10:41 PM 1,041,536 hsfdpsp2.sys
08/03/2004 10:41 PM 685,056 hsfcxts2.sys
08/03/2004 10:41 PM 220,032 hsfbs2s2.sys
04/13/2008 02:46 PM 25,600 hidbth.sys
04/13/2008 12:36 PM 144,384 hdaudbus.sys
04/13/2008 02:33 PM 129,792 fltmgr.sys
04/14/2008 12:09 AM 42,368 mountmgr.sys
04/13/2008 02:46 PM 18,944 bthusb.sys
04/13/2008 02:46 PM 36,480 bthprint.sys
06/13/2008 07:05 AM 272,128 bthport.sys
04/13/2008 02:51 PM 101,120 bthpan.sys
04/13/2008 02:46 PM 37,888 bthmodem.sys
04/13/2008 02:46 PM 17,024 bthenum.sys
04/14/2008 12:26 AM 12,800 usb8023.sys
04/14/2008 12:26 AM 12,288 tunmp.sys
04/14/2008 12:02 AM 66,048 udfs.sys
04/14/2008 05:43 AM 21,896 tdtcp.sys
04/14/2008 12:09 AM 4,352 swenum.sys
04/14/2008 12:06 AM 73,472 sr.sys
04/13/2008 10:09 PM 20,480 secdrv.sys
04/14/2008 12:26 AM 30,592 rndismp.sys
04/14/2008 12:10 AM 57,600 redbook.sys
04/14/2008 12:25 AM 202,624 RMCast.sys
08/03/2004 10:29 PM 34,735 ati1xsxx.sys
08/03/2004 10:29 PM 29,455 ati1xbxx.sys
08/03/2004 10:29 PM 36,463 ati1tuxx.sys
08/03/2004 10:29 PM 21,343 ati1ttxx.sys
08/03/2004 10:29 PM 26,367 ati1snxx.sys
08/03/2004 10:29 PM 63,663 ati1rvxx.sys
08/03/2004 10:29 PM 30,671 ati1raxx.sys
08/03/2004 10:29 PM 12,047 ati1pdxx.sys
08/03/2004 10:29 PM 11,615 ati1mdxx.sys
08/03/2004 10:29 PM 56,623 ati1btxx.sys
03/31/2003 12:00 PM 12,160 fsvga.sys
04/14/2008 12:06 AM 42,752 alim1541.sys
04/14/2008 12:06 AM 44,928 agpcpq.sys
08/17/2001 12:20 PM 96,256 ac97intc.sys
04/14/2008 12:06 AM 5,888 smbali.sys
09/28/2006 07:00 PM 82,944 WudfRd.sys
11/10/2005 01:54 PM 402,944 BLKWGU.sys
04/14/2008 12:27 AM 41,472 raspppoe.sys
04/14/2008 12:10 AM 80,128 parport.sys
03/31/2003 12:00 PM 58,112 vdmindvd.sys
08/17/2001 01:28 PM 907,456 HCF_MSFT.sys
04/14/2008 12:45 AM 574,976 ntfs.sys
04/14/2008 12:50 AM 91,520 ndiswan.sys
08/17/2001 12:50 PM 731,648 nv4.sys
10/15/2004 12:50 PM 15,295 BrScnUsb.sys
09/29/2004 03:24 AM 51,712 BrSerIf.sys
04/14/2008 12:02 AM 180,608 mrxdav.sys
08/17/2001 01:59 PM 3,072 audstub.sys
01/10/2004 04:28 AM 11,648 BrUsbSer.sys
01/29/2008 12:01 PM 16,168 GEARAspiWDM.sys
04/14/2008 12:09 AM 24,576 kbdclass.sys
04/14/2008 12:01 AM 92,288 ksecdd.sys
04/14/2008 12:46 AM 141,056 ks.sys
04/14/2008 12:10 AM 5,504 intelide.sys
04/14/2008 12:44 AM 63,744 cdfs.sys
04/14/2008 12:15 AM 36,864 hidclass.sys
03/31/2003 12:00 PM 3,456 oprghdlr.sys
04/14/2008 12:14 AM 799,744 dmboot.sys
03/31/2003 12:00 PM 4,352 wmilib.sys
04/13/2008 02:40 PM 11,904 sffdisk.sys
04/13/2008 02:36 PM 46,464 gagp30kx.sys
04/14/2008 12:10 AM 14,208 diskdump.sys
03/31/2003 12:00 PM 125,056 ftdisk.sys
04/14/2008 12:06 AM 42,240 viaagp.sys
03/31/2003 12:00 PM 16,512 raspti.sys
04/14/2008 12:15 AM 19,200 hidir.sys
03/31/2003 12:00 PM 7,936 fs_rec.sys
03/31/2003 12:00 PM 2,944 null.sys
03/31/2003 12:00 PM 4,224 beep.sys
03/31/2003 12:00 PM 4,224 rdpcdd.sys
03/31/2003 12:00 PM 8,832 rasacd.sys
04/14/2008 12:15 AM 52,864 DMusic.sys
04/13/2008 10:04 PM 63,488 atinxsxx.sys
03/31/2003 12:00 PM 352,256 atmuni.sys
03/31/2003 12:00 PM 13,952 cbidf2k.sys
03/31/2003 12:00 PM 262,528 cinemst2.sys
03/31/2003 12:00 PM 11,776 cpqdap01.sys
04/13/2008 10:04 PM 31,744 atinxbxx.sys
03/31/2003 12:00 PM 32,896 ipfltdrv.sys
04/13/2008 10:04 PM 13,824 atinttxx.sys
03/31/2003 12:00 PM 12,416 nwlnkflt.sys
03/31/2003 12:00 PM 32,512 nwlnkfwd.sys
04/13/2008 10:04 PM 28,672 atinsnxx.sys
03/31/2003 12:00 PM 55,936 nwlnkspx.sys
03/31/2003 12:00 PM 34,432 rawwan.sys
03/31/2003 12:00 PM 12,032 rio8drv.sys
03/31/2003 12:00 PM 12,032 riodrv.sys
04/13/2008 10:04 PM 104,960 atinrvxx.sys
03/31/2003 12:00 PM 14,592 smclib.sys
03/31/2003 12:00 PM 51,712 tosdvd.sys
03/31/2003 12:00 PM 21,376 tsbvcap.sys
04/13/2008 10:04 PM 52,224 atinraxx.sys
03/31/2003 12:00 PM 12,032 ws2ifsl.sys
04/13/2008 10:04 PM 14,336 atinpdxx.sys
04/13/2008 10:04 PM 13,824 atinmdxx.sys
04/13/2008 10:04 PM 57,856 atinbtxx.sys
10/04/2006 10:42 PM 2,432 Cdr4_xp.sys
08/20/2001 11:59 AM 25,472 imapiRox.sys
09/04/2001 03:39 PM 78,454 pwd_2K.sys
09/04/2001 03:39 PM 19,702 Mmc_2k.sys
09/04/2001 03:39 PM 17,990 Dvd_2k.sys
10/04/2006 10:42 PM 2,560 cdralw2k.sys
09/10/2001 10:43 AM 205,824 udfreadr_xp.sys
09/04/2001 04:37 PM 233,344 cdudf_xp.sys
263 File(s) 24,964,400 bytes
Total Files Listed:
263 File(s) 24,964,400 bytes
2 Dir(s) 128,304,578,560 bytes free
C:\cotutor\cleanup updated 1-29-14\cmd.bat deleted successfully.
C:\cotutor\cleanup updated 1-29-14\cmd.txt deleted successfully.
========== COMMANDS ==========
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: All Users

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: RICK
->Temp folder emptied: 472020 bytes
->Temporary Internet Files folder emptied: 602322 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Flash cache emptied: 556 bytes

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 35681 bytes
Session Manager Temp folder emptied: 16384 bytes
Session Manager Tmp folder emptied: 16384 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 1.00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 02102014_153351

Files\Folders moved on Reboot...
C:\WINDOWS\temp\Perflib_Perfdata_5cc.dat moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...


----------------------------------------------

Step 2: AdwCleaner

Alas, I was remiss, and I apologize, in my original post I failed to mention AdwCleaner. I did already run it, and I'm posting the log here now, and then I will run it again and post the results next.
# AdwCleaner v3.018 - Report created 04/02/2014 at 16:47:06
# Updated 28/01/2014 by Xplode
# Operating System : Microsoft Windows XP Service Pack 1 (32 bits)
# Username : RICK - 3LHB011
# Running from : C:\cotutor\cleanup updated 1-29-14\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Documents and Settings\All Users\Application Data\Viewpoint
Folder Deleted : C:\Program Files\Viewpoint
File Deleted : C:\Program Files\Mozilla Firefox\.autoreg
File Deleted : C:\Documents and Settings\RICK\Application Data\Mozilla\Firefox\Profiles\g14tpedc.default\user.js

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtl
Key Deleted : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtl.1
Key Deleted : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtlSecondary
Key Deleted : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtlSecondary.1
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Key Deleted : HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@viewpoint.com/VMP
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Key Deleted : HKCU\Software\YahooPartnerToolbar
Key Deleted : HKLM\Software\Description
Key Deleted : HKLM\Software\MetaStream
Key Deleted : HKLM\Software\Viewpoint
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ViewpointMediaPlayer

***** [ Browsers ] *****

-\\ Internet Explorer v6.0.2800.1106


-\\ Mozilla Firefox v3.0.4 (en-US)

[ File : C:\Documents and Settings\RICK\Application Data\Mozilla\Firefox\Profiles\g14tpedc.default\prefs.js ]


*************************

AdwCleaner[R0].txt - [2466 octets] - [04/02/2014 16:44:05]
AdwCleaner[S0].txt - [2437 octets] - [04/02/2014 16:47:06]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2497 octets] ##########
  • 0

#13
Cotutor

Cotutor

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 494 posts
Ok, second run of AdwCleaner

# AdwCleaner v3.018 - Report created 10/02/2014 at 16:25:01
# Updated 28/01/2014 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : RICK - 3LHB011
# Running from : C:\cotutor\cleanup updated 1-29-14\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702


-\\ Mozilla Firefox v3.0.4 (en-US)

[ File : C:\Documents and Settings\RICK\Application Data\Mozilla\Firefox\Profiles\g14tpedc.default\prefs.js ]


*************************

AdwCleaner[R0].txt - [2466 octets] - [04/02/2014 16:44:05]
AdwCleaner[S0].txt - [2577 octets] - [04/02/2014 16:47:06]
AdwCleaner[R1].txt - [916 octets] - [10/02/2014 16:03:23]
AdwCleaner[S1].txt - [838 octets] - [10/02/2014 16:25:01]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [897 octets] ##########

------------------------------

OK zip the folder - upload it to any file Hoster etc. and send me the link to the folder via PM.

PM Sent

-------------------------------
I've downloaded the JRT and will run and post back.
  • 0

#14
Cotutor

Cotutor

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 494 posts

Step 3: JRT Scan


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.1 (02.04.2014:1)
OS: Microsoft Windows XP x86
Ran by RICK on 02/10/2014 at 17:08:23.85
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL



~~~ Registry Keys



~~~ Files



~~~ Folders





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 02/10/2014 at 17:16:53.59
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


------------------------------------

Step 4: OTL Scan

OTL logfile created on: 02/10/2014 5:38:14 PM - Run 4
OTL by OldTimer - Version 3.2.69.0 Folder = C:\cotutor\cleanup updated 1-29-14
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: enu | Date Format: MM/dd/yyyy

1.50 Gb Total Physical Memory | 1.06 Gb Available Physical Memory | 70.52% Memory free
3.31 Gb Paging File | 3.03 Gb Available in Paging File | 91.59% Paging File free
Paging file location(s): c:\pagefile.sys 2000 4000 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 148.98 Gb Total Space | 119.43 Gb Free Space | 80.17% Space Free | Partition Type: FAT32
Drive E: | 7.45 Gb Total Space | 2.87 Gb Free Space | 38.49% Space Free | Partition Type: FAT32

Computer Name: 3LHB011 | User Name: RICK | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012/10/11 18:32:52 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\cotutor\cleanup updated 1-29-14\OTL.exe
PRC - [2008/04/14 05:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007/09/12 09:52:14 | 000,180,269 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Common Files\Real\Update_OB\realsched.exe
PRC - [2006/05/11 07:40:50 | 000,426,038 | ---- | M] () -- C:\Program Files\ClipPad995\clippad\ClipPad.exe
PRC - [2005/11/11 18:30:22 | 000,995,328 | ---- | M] (Brother Industries, Ltd.) -- C:\Program Files\Brother\ControlCenter2\brctrcen.exe
PRC - [2005/08/22 15:10:24 | 000,163,840 | ---- | M] (Software995) -- C:\Program Files\ePad995\ePad995.exe
PRC - [2004/09/03 04:58:48 | 000,065,536 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Ahead\ODD Toolkit\dvdtray.exe
PRC - [2001/09/04 15:31:50 | 000,655,360 | ---- | M] (Roxio) -- C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\Directcd.exe


========== Modules (No Company Name) ==========

MOD - [2007/11/13 08:55:36 | 000,051,716 | ---- | M] () -- C:\WINDOWS\SYSTEM32\pdf995mon.dll
MOD - [2006/05/11 07:40:50 | 000,426,038 | ---- | M] () -- C:\Program Files\ClipPad995\clippad\ClipPad.exe
MOD - [2006/05/11 07:39:58 | 000,049,152 | ---- | M] () -- C:\Program Files\ClipPad995\clippad\focus.dll
MOD - [2002/04/17 10:49:22 | 000,024,576 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnfps.dll


========== Services (SafeList) ==========

SRV - File not found [Auto | Stopped] -- C:\WINDOWS\System32\mspmspsv.dll -- (WmdmPmSp)
SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt)
SRV - [2008/04/14 05:41:56 | 000,035,328 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\iprip.dll -- (Iprip)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\RICK\LOCALS~1\Temp\catchme.sys -- (catchme)
DRV - [2012/05/25 13:14:24 | 000,101,112 | ---- | M] (GFI Software) [Kernel | System | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\SBREDrv.sys -- (SBRE)
DRV - [2008/04/13 22:05:40 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\rtl8139.sys -- (rtl8139)
DRV - [2006/10/04 22:42:44 | 000,002,560 | ---- | M] (Sonic Solutions) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\cdralw2k.sys -- (Cdralw2k)
DRV - [2006/10/04 22:42:44 | 000,002,432 | ---- | M] (Sonic Solutions) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\Cdr4_xp.sys -- (Cdr4_xp)
DRV - [2005/11/10 13:54:56 | 000,402,944 | R--- | M] (Belkin Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\BLKWGU.sys -- (BLKWGU(Belkin)
DRV - [2004/08/03 22:31:20 | 000,036,224 | ---- | M] (ADMtek Incorporated.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\an983.sys -- (AN983)
DRV - [2001/09/13 05:48:00 | 000,737,973 | ---- | M] (Conexant) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\winachcf.sys -- (Winachcf)
DRV - [2001/09/10 10:43:46 | 000,205,824 | ---- | M] (Roxio) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\udfreadr_xp.sys -- (UdfReadr_xp)
DRV - [2001/09/04 16:37:08 | 000,233,344 | ---- | M] (Roxio) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\cdudf_xp.sys -- (cdudf_xp)
DRV - [2001/09/04 15:39:50 | 000,017,990 | ---- | M] (Roxio) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\Dvd_2k.sys -- (dvd_2K)
DRV - [2001/09/04 15:39:40 | 000,019,702 | ---- | M] (Roxio) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\Mmc_2k.sys -- (mmc_2K)
DRV - [2001/09/04 15:39:28 | 000,078,454 | ---- | M] (Roxio) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\pwd_2K.sys -- (pwd_2K)
DRV - [2001/08/17 13:57:16 | 000,045,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\cirrus.sys -- (cirrus)
DRV - [2001/08/17 13:28:02 | 000,907,456 | ---- | M] (Conexant) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\HCF_MSFT.sys -- (HCF_MSFT)
DRV - [2001/08/17 12:50:26 | 000,731,648 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\nv4.sys -- (nv4)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC


IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page =
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKU\.DEFAULT\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497}_ - No CLSID value found
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" =

IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page =
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKU\S-1-5-18\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497}_ - No CLSID value found
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" =

IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page =
IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKU\S-1-5-19\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497}_ - No CLSID value found
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" =

IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page =
IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKU\S-1-5-20\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497}_ - No CLSID value found
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" =

IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.co...ie=utf8&oe=utf8
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 7E 4A CA B4 5A 23 CF 01 [binary data]
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\..\URLSearchHook: _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - No CLSID value found
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497}_ - No CLSID value found
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\..\SearchScopes,DefaultScope = {2D96D0FF-C102-41E8-BD47-0680D7986976}
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\..\SearchScopes\{2D96D0FF-C102-41E8-BD47-0680D7986976}: "URL" = http://www.google.co...ie7&rlz=1I7SUNA
IE - HKU\S-1-5-21-515967899-1220945662-725345543-1009\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "Google"
FF - prefs.js..browser.search.defaulturl: "http://www.google.co...-8&oe=UTF-8&q="
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "http://www.charter.net"
FF - prefs.js..network.proxy.http: ""
FF - prefs.js..network.proxy.http_port: ""
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@macromedia.com/FlashPlayer9: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.11.2321: C:\Program Files\Real\RealOne Player\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=1.0.2.2379: C:\Program Files\Real\RealOne Player\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.1483: C:\Program Files\Real\RealOne Player\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKCU\Software\MozillaPlugins\@macromedia.com/FlashPlayer9: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.0.4\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2006/10/09 14:29:34 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.0.4\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2006/10/09 14:29:32 | 000,000,000 | ---D | M]

[2008/10/08 15:38:34 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\RICK\Application Data\Mozilla\Extensions
[2006/10/09 14:29:50 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\RICK\Application Data\Mozilla\Firefox\Profiles\g14tpedc.default\extensions
[2008/12/22 11:38:06 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Documents and Settings\RICK\Application Data\Mozilla\Firefox\Profiles\g14tpedc.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2006/10/09 14:29:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2006/10/09 14:29:46 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Program Files\Mozilla Firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2007/09/12 08:48:38 | 000,000,000 | ---D | M] (Google Settings) -- C:\Program Files\Mozilla Firefox\extensions\[email protected]
File not found (No name found) -- C:\PROGRAM FILES\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
File not found (No name found) -- C:\PROGRAM FILES\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
[2006/11/13 19:49:18 | 002,078,344 | ---- | M] () -- C:\Program Files\mozilla firefox\plugins\NPSWF32.dll

O1 HOSTS File: ([2014/02/10 15:34:08 | 000,000,098 | ---- | M]) - C:\WINDOWS\SYSTEM32\DRIVERS\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\Program Files\Google\GoogleToolbar3.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (&Google) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar3.dll (Google Inc.)
O3 - HKU\S-1-5-21-515967899-1220945662-725345543-1009\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar3.dll (Google Inc.)
O4 - HKLM..\Run: [AdaptecDirectCD] C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe (Roxio)
O4 - HKLM..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe (Brother Industries, Ltd.)
O4 - HKLM..\Run: [DNS7reminder] C:\Program Files\Nuance\NaturallySpeaking9\Ereg\Ereg.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [DVDTray] C:\Program Files\Ahead\ODD Toolkit\dvdtray.exe (Hewlett-Packard Company)
O4 - HKLM..\Run: [Microsoft Works Portfolio] C:\Program Files\Microsoft Works\WksSb.exe (Microsoft® Corporation)
O4 - HKLM..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe (Microsoft® Corporation)
O4 - HKLM..\Run: [NeroFilterCheck] C:\WINDOWS\SYSTEM32\NeroCheck.exe (Ahead Software Gmbh)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe (NVIDIA Corporation)
O4 - HKLM..\Run: [SetDefPrt] C:\Program Files\Brother\Brmfl05c\BrStDvPt.exe (Brother Industories, Ltd.)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKU\.DEFAULT..\Run: [NvMediaCenter] C:\WINDOWS\System32\NVMCTRAY.DLL (NVIDIA Corporation)
O4 - HKU\S-1-5-18..\Run: [NvMediaCenter] C:\WINDOWS\System32\NVMCTRAY.DLL (NVIDIA Corporation)
O4 - HKU\S-1-5-21-515967899-1220945662-725345543-1009..\Run: [ClipPad] C:\Program Files\ClipPad995\clippad\ClipPad.exe ()
O4 - HKU\S-1-5-21-515967899-1220945662-725345543-1009..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9 File not found
O4 - HKU\S-1-5-21-515967899-1220945662-725345543-1009..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe (Yahoo! Inc.)
O4 - HKU\.DEFAULT..\RunOnce: [Printing Migration] C:\WINDOWS\System32\spool\migrate.dll (Microsoft Corporation)
O4 - HKU\.DEFAULT..\RunOnce: [tscuninstall] C:\WINDOWS\SYSTEM32\tscupgrd.exe (Microsoft Corporation)
O4 - HKU\S-1-5-18..\RunOnce: [Printing Migration] C:\WINDOWS\System32\spool\migrate.dll (Microsoft Corporation)
O4 - HKU\S-1-5-18..\RunOnce: [tscuninstall] C:\WINDOWS\SYSTEM32\tscupgrd.exe (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ePad995.lnk = C:\Program Files\ePad995\ePad995.exe (Software995)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: CDRAutoRun = 0
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: CDRAutoRun = 0
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 95 00 00 00 [binary data]
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: CDRAutoRun = [binary data]
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 95 00 00 00 [binary data]
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: CDRAutoRun = [binary data]
O7 - HKU\S-1-5-21-515967899-1220945662-725345543-1009\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: CDRAutoRun = [binary data]
O7 - HKU\S-1-5-21-515967899-1220945662-725345543-1009\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O8 - Extra context menu item: &Define - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\A\ERS_DEF.HTM ()
O8 - Extra context menu item: Look Up in &Encyclopedia - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\A\ERS_ENC.HTM ()
O9 - Extra Button: Encarta Encyclopedia - {2FDEF853-0759-11D4-A92E-006097DBED37} - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\A\ERS_ENC.HTM ()
O9 - Extra 'Tools' menuitem : Encarta Encyclopedia - {2FDEF853-0759-11D4-A92E-006097DBED37} - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\A\ERS_ENC.HTM ()
O9 - Extra Button: Define - {5DA9DE80-097A-11D4-A92E-006097DBED37} - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\A\ERS_DEF.HTM ()
O9 - Extra 'Tools' menuitem : Define - {5DA9DE80-097A-11D4-A92E-006097DBED37} - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\A\ERS_DEF.HTM ()
O15 - HKU\.DEFAULT\..Trusted Domains: ([]msn in My Computer)
O15 - HKU\S-1-5-18\..Trusted Domains: ([]msn in My Computer)
O15 - HKU\S-1-5-19\..Trusted Domains: ([]msn in My Computer)
O15 - HKU\S-1-5-20\..Trusted Domains: ([]msn in My Computer)
O15 - HKU\S-1-5-21-515967899-1220945662-725345543-1009\..Trusted Domains: ([]msn in My Computer)
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} https://install.char...bin/tgctlcm.cab (Support.com Configuration Class)
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} http://messenger.zon...nt.cab27571.cab (MessengerStatsClient Class)
O16 - DPF: {1663ed61-23eb-11d2-b92f-008048fdd814} http://atlanta.ctnbg.com/smsx.cab (MeadCo ScriptX)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.micr...heckControl.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.micros...b?1135901941563 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.micros...b?1135914489452 (MUWebControl Class)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macr...ash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.3.2
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1A2C2190-5549-4C7B-AFA1-6623E6C77902}: DhcpNameServer = 192.168.3.2
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\SYSTEM32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\WRNotifier: DllName - (WRLogonNTF.dll) - File not found
O24 - Desktop WallPaper: C:\Documents and Settings\RICK\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\RICK\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2001/11/26 13:36:30 | 000,000,272 | ---- | M] () - C:\AUTOEXEC.ADK -- [ FAT32 ]
O32 - AutoRun File - [2000/08/09 10:26:38 | 000,000,079 | -HS- | M] () - C:\AUTOEXEC.DOS -- [ FAT32 ]
O32 - AutoRun File - [2001/11/26 17:37:38 | 000,000,302 | -HS- | M] () - C:\AUTOEXEC.BAK -- [ FAT32 ]
O32 - AutoRun File - [2009/01/08 18:39:24 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (SsiEfr.e)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - %SystemRoot%\System32\appmgmts.dll File not found
NetSvcs: HidServ - %SystemRoot%\System32\hidserv.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - C:\WINDOWS\SYSTEM32\iprip.dll (Microsoft Corporation)
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - C:\WINDOWS\System32\mspmspsv.dll File not found

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders - Created Within 30 Days ==========

[2014/02/10 17:08:21 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERUNT
[2014/02/10 15:34:07 | 000,000,000 | -HSD | C] -- C:\Recycled
[2014/02/09 12:10:19 | 000,000,000 | --SD | C] -- C:\ComboFix
[2014/02/09 10:57:25 | 000,000,000 | ---D | C] -- C:\FRST
[2014/02/07 13:24:33 | 000,101,112 | ---- | C] (GFI Software) -- C:\WINDOWS\System32\drivers\SBREDrv.sys
[2014/02/07 13:24:33 | 000,042,864 | ---- | C] (GFI Software) -- C:\WINDOWS\System32\sbbd.exe
[2014/02/06 14:01:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\snack
[2014/02/06 12:14:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RICK\Desktop\RK_Quarantine
[2014/02/06 11:44:31 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\RICK\PrivacIE
[2014/02/06 11:42:34 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\RICK\IETldCache
[2014/02/06 11:35:20 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8
[2014/02/04 17:57:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2014/02/04 17:44:45 | 001,306,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msxml6.dll
[2014/02/04 17:44:45 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msxml6r.dll
[2014/02/04 17:44:43 | 000,380,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\irprops.cpl
[2014/02/04 17:44:18 | 000,259,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpcl.dll
[2014/02/04 17:43:49 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpthrd.dll
[2014/02/04 17:40:36 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2014/02/04 16:36:24 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014/02/03 21:04:54 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2014/02/03 21:03:22 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2014/02/03 21:03:22 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2014/02/03 21:03:22 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2014/02/03 21:03:22 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2014/02/03 21:03:13 | 000,000,000 | ---D | C] -- C:\Qoobox
[2014/02/03 21:03:00 | 000,000,000 | ---D | C] -- C:\WINDOWS\erdnt
[2014/02/03 20:31:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RICK\Application Data\Malwarebytes
[2014/02/03 20:31:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware
[2014/02/03 20:31:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2014/02/03 20:31:48 | 000,020,552 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2014/02/03 20:31:47 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2014/02/03 19:56:11 | 000,000,000 | ---D | C] -- C:\_OTL
[2014/02/03 19:36:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RICK\Desktop\AOL Saved PFC
[2014/01/31 11:06:24 | 000,000,000 | ---D | C] -- C:\cotutor

========== Files - Modified Within 30 Days ==========

[2014/02/10 16:28:36 | 000,021,048 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2014/02/10 16:28:26 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn
[2014/02/10 16:28:00 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2014/02/10 12:59:14 | 000,000,360 | ---- | M] () -- C:\WINDOWS\tasks\PCHealth Scheduler for Data Collection.job
[2014/02/09 11:08:02 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\RICK\RICK_notes.dat
[2014/02/06 14:01:58 | 000,233,344 | ---- | M] () -- C:\WINDOWS\System32\drivers\cdudf_xp.sys.dump
[2014/02/06 14:01:58 | 000,205,824 | ---- | M] () -- C:\WINDOWS\System32\drivers\udfreadr_xp.sys.dump
[2014/02/06 14:01:58 | 000,078,454 | ---- | M] () -- C:\WINDOWS\System32\drivers\pwd_2K.sys.dump
[2014/02/06 14:01:58 | 000,057,856 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinbtxx.sys.dump
[2014/02/06 14:01:58 | 000,025,472 | ---- | M] () -- C:\WINDOWS\System32\drivers\imapiRox.sys.dump
[2014/02/06 14:01:58 | 000,019,702 | ---- | M] () -- C:\WINDOWS\System32\drivers\Mmc_2k.sys.dump
[2014/02/06 14:01:58 | 000,017,990 | ---- | M] () -- C:\WINDOWS\System32\drivers\Dvd_2k.sys.dump
[2014/02/06 14:01:58 | 000,014,336 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinpdxx.sys.dump
[2014/02/06 14:01:58 | 000,013,824 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinmdxx.sys.dump
[2014/02/06 14:01:58 | 000,012,032 | ---- | M] () -- C:\WINDOWS\System32\drivers\ws2ifsl.sys.dump
[2014/02/06 14:01:58 | 000,002,560 | ---- | M] () -- C:\WINDOWS\System32\drivers\cdralw2k.sys.dump
[2014/02/06 14:01:58 | 000,002,432 | ---- | M] () -- C:\WINDOWS\System32\drivers\Cdr4_xp.sys.dump
[2014/02/06 14:01:56 | 000,104,960 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinrvxx.sys.dump
[2014/02/06 14:01:56 | 000,055,936 | ---- | M] () -- C:\WINDOWS\System32\drivers\nwlnkspx.sys.dump
[2014/02/06 14:01:56 | 000,052,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinraxx.sys.dump
[2014/02/06 14:01:56 | 000,051,712 | ---- | M] () -- C:\WINDOWS\System32\drivers\tosdvd.sys.dump
[2014/02/06 14:01:56 | 000,034,432 | ---- | M] () -- C:\WINDOWS\System32\drivers\rawwan.sys.dump
[2014/02/06 14:01:56 | 000,032,896 | ---- | M] () -- C:\WINDOWS\System32\drivers\ipfltdrv.sys.dump
[2014/02/06 14:01:56 | 000,032,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\nwlnkfwd.sys.dump
[2014/02/06 14:01:56 | 000,028,672 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinsnxx.sys.dump
[2014/02/06 14:01:56 | 000,021,376 | ---- | M] () -- C:\WINDOWS\System32\drivers\tsbvcap.sys.dump
[2014/02/06 14:01:56 | 000,014,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\smclib.sys.dump
[2014/02/06 14:01:56 | 000,013,824 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinttxx.sys.dump
[2014/02/06 14:01:56 | 000,012,416 | ---- | M] () -- C:\WINDOWS\System32\drivers\nwlnkflt.sys.dump
[2014/02/06 14:01:56 | 000,012,032 | ---- | M] () -- C:\WINDOWS\System32\drivers\riodrv.sys.dump
[2014/02/06 14:01:56 | 000,012,032 | ---- | M] () -- C:\WINDOWS\System32\drivers\rio8drv.sys.dump
[2014/02/06 14:01:54 | 000,352,256 | ---- | M] () -- C:\WINDOWS\System32\drivers\atmuni.sys.dump
[2014/02/06 14:01:54 | 000,262,528 | ---- | M] () -- C:\WINDOWS\System32\drivers\cinemst2.sys.dump
[2014/02/06 14:01:54 | 000,063,488 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinxsxx.sys.dump
[2014/02/06 14:01:54 | 000,052,864 | ---- | M] () -- C:\WINDOWS\System32\drivers\DMusic.sys.dump
[2014/02/06 14:01:54 | 000,042,240 | ---- | M] () -- C:\WINDOWS\System32\drivers\viaagp.sys.dump
[2014/02/06 14:01:54 | 000,031,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinxbxx.sys.dump
[2014/02/06 14:01:54 | 000,019,200 | ---- | M] () -- C:\WINDOWS\System32\drivers\hidir.sys.dump
[2014/02/06 14:01:54 | 000,016,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\raspti.sys.dump
[2014/02/06 14:01:54 | 000,013,952 | ---- | M] () -- C:\WINDOWS\System32\drivers\cbidf2k.sys.dump
[2014/02/06 14:01:54 | 000,011,776 | ---- | M] () -- C:\WINDOWS\System32\drivers\cpqdap01.sys.dump
[2014/02/06 14:01:54 | 000,008,832 | ---- | M] () -- C:\WINDOWS\System32\drivers\rasacd.sys.dump
[2014/02/06 14:01:54 | 000,007,936 | ---- | M] () -- C:\WINDOWS\System32\drivers\fs_rec.sys.dump
[2014/02/06 14:01:54 | 000,004,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\rdpcdd.sys.dump
[2014/02/06 14:01:54 | 000,004,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\beep.sys.dump
[2014/02/06 14:01:54 | 000,002,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\null.sys.dump
[2014/02/06 14:01:52 | 000,799,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\dmboot.sys.dump
[2014/02/06 14:01:52 | 000,141,056 | ---- | M] () -- C:\WINDOWS\System32\drivers\ks.sys.dump
[2014/02/06 14:01:52 | 000,125,056 | ---- | M] () -- C:\WINDOWS\System32\drivers\ftdisk.sys.dump
[2014/02/06 14:01:52 | 000,092,288 | ---- | M] () -- C:\WINDOWS\System32\drivers\ksecdd.sys.dump
[2014/02/06 14:01:52 | 000,063,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\cdfs.sys.dump
[2014/02/06 14:01:52 | 000,046,464 | ---- | M] () -- C:\WINDOWS\System32\drivers\gagp30kx.sys.dump
[2014/02/06 14:01:52 | 000,036,864 | ---- | M] () -- C:\WINDOWS\System32\drivers\hidclass.sys.dump
[2014/02/06 14:01:52 | 000,024,576 | ---- | M] () -- C:\WINDOWS\System32\drivers\kbdclass.sys.dump
[2014/02/06 14:01:52 | 000,014,208 | ---- | M] () -- C:\WINDOWS\System32\drivers\diskdump.sys.dump
[2014/02/06 14:01:52 | 000,011,904 | ---- | M] () -- C:\WINDOWS\System32\drivers\sffdisk.sys.dump
[2014/02/06 14:01:52 | 000,005,504 | ---- | M] () -- C:\WINDOWS\System32\drivers\intelide.sys.dump
[2014/02/06 14:01:52 | 000,004,352 | ---- | M] () -- C:\WINDOWS\System32\drivers\wmilib.sys.dump
[2014/02/06 14:01:52 | 000,003,456 | ---- | M] () -- C:\WINDOWS\System32\drivers\oprghdlr.sys.dump
[2014/02/06 14:01:50 | 000,907,456 | ---- | M] () -- C:\WINDOWS\System32\drivers\HCF_MSFT.sys.dump
[2014/02/06 14:01:50 | 000,731,648 | ---- | M] () -- C:\WINDOWS\System32\drivers\nv4.sys.dump
[2014/02/06 14:01:50 | 000,574,976 | ---- | M] () -- C:\WINDOWS\System32\drivers\ntfs.sys.dump
[2014/02/06 14:01:50 | 000,402,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\BLKWGU.sys.dump
[2014/02/06 14:01:50 | 000,180,608 | ---- | M] () -- C:\WINDOWS\System32\drivers\mrxdav.sys.dump
[2014/02/06 14:01:50 | 000,091,520 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndiswan.sys.dump
[2014/02/06 14:01:50 | 000,080,128 | ---- | M] () -- C:\WINDOWS\System32\drivers\parport.sys.dump
[2014/02/06 14:01:50 | 000,058,112 | ---- | M] () -- C:\WINDOWS\System32\drivers\vdmindvd.sys.dump
[2014/02/06 14:01:50 | 000,041,472 | ---- | M] () -- C:\WINDOWS\System32\drivers\raspppoe.sys.dump
[2014/02/06 14:01:50 | 000,003,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\audstub.sys.dump
[2014/02/06 14:01:48 | 000,082,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\WudfRd.sys.dump
[2014/02/06 14:01:48 | 000,063,663 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1rvxx.sys.dump
[2014/02/06 14:01:48 | 000,056,623 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1btxx.sys.dump
[2014/02/06 14:01:48 | 000,044,928 | ---- | M] () -- C:\WINDOWS\System32\drivers\agpcpq.sys.dump
[2014/02/06 14:01:48 | 000,042,752 | ---- | M] () -- C:\WINDOWS\System32\drivers\alim1541.sys.dump
[2014/02/06 14:01:48 | 000,036,463 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1tuxx.sys.dump
[2014/02/06 14:01:48 | 000,034,735 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1xsxx.sys.dump
[2014/02/06 14:01:48 | 000,030,671 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1raxx.sys.dump
[2014/02/06 14:01:48 | 000,029,455 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1xbxx.sys.dump
[2014/02/06 14:01:48 | 000,026,367 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1snxx.sys.dump
[2014/02/06 14:01:48 | 000,021,343 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1ttxx.sys.dump
[2014/02/06 14:01:48 | 000,012,160 | ---- | M] () -- C:\WINDOWS\System32\drivers\fsvga.sys.dump
[2014/02/06 14:01:48 | 000,012,047 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1pdxx.sys.dump
[2014/02/06 14:01:48 | 000,011,615 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1mdxx.sys.dump
[2014/02/06 14:01:48 | 000,005,888 | ---- | M] () -- C:\WINDOWS\System32\drivers\smbali.sys.dump
[2014/02/06 14:01:46 | 000,272,128 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthport.sys.dump
[2014/02/06 14:01:46 | 000,202,624 | ---- | M] () -- C:\WINDOWS\System32\drivers\RMCast.sys.dump
[2014/02/06 14:01:46 | 000,101,120 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthpan.sys.dump
[2014/02/06 14:01:46 | 000,073,472 | ---- | M] () -- C:\WINDOWS\System32\drivers\sr.sys.dump
[2014/02/06 14:01:46 | 000,066,048 | ---- | M] () -- C:\WINDOWS\System32\drivers\udfs.sys.dump
[2014/02/06 14:01:46 | 000,057,600 | ---- | M] () -- C:\WINDOWS\System32\drivers\redbook.sys.dump
[2014/02/06 14:01:46 | 000,037,888 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthmodem.sys.dump
[2014/02/06 14:01:46 | 000,036,480 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthprint.sys.dump
[2014/02/06 14:01:46 | 000,030,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\rndismp.sys.dump
[2014/02/06 14:01:46 | 000,021,896 | ---- | M] () -- C:\WINDOWS\System32\drivers\tdtcp.sys.dump
[2014/02/06 14:01:46 | 000,017,024 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthenum.sys.dump
[2014/02/06 14:01:46 | 000,012,800 | ---- | M] () -- C:\WINDOWS\System32\drivers\usb8023.sys.dump
[2014/02/06 14:01:46 | 000,012,288 | ---- | M] () -- C:\WINDOWS\System32\drivers\tunmp.sys.dump
[2014/02/06 14:01:46 | 000,004,352 | ---- | M] () -- C:\WINDOWS\System32\drivers\swenum.sys.dump
[2014/02/06 14:01:44 | 000,264,832 | ---- | M] () -- C:\WINDOWS\System32\drivers\http.sys.dump
[2014/02/06 14:01:44 | 000,129,792 | ---- | M] () -- C:\WINDOWS\System32\drivers\fltmgr.sys.dump
[2014/02/06 14:01:44 | 000,042,368 | ---- | M] () -- C:\WINDOWS\System32\drivers\mountmgr.sys.dump
[2014/02/06 14:01:44 | 000,036,608 | ---- | M] () -- C:\WINDOWS\System32\drivers\ip6fw.sys.dump
[2014/02/06 14:01:44 | 000,036,352 | ---- | M] () -- C:\WINDOWS\System32\drivers\intelppm.sys.dump
[2014/02/06 14:01:44 | 000,025,600 | ---- | M] () -- C:\WINDOWS\System32\drivers\hidbth.sys.dump
[2014/02/06 14:01:44 | 000,018,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthusb.sys.dump
[2014/02/06 14:01:44 | 000,007,680 | ---- | M] () -- C:\WINDOWS\System32\drivers\mcd.sys.dump
[2014/02/06 14:01:42 | 001,309,184 | ---- | M] () -- C:\WINDOWS\System32\drivers\mtlstrm.sys.dump
[2014/02/06 14:01:42 | 000,452,736 | ---- | M] () -- C:\WINDOWS\System32\drivers\mtxparhm.sys.dump
[2014/02/06 14:01:42 | 000,180,360 | ---- | M] () -- C:\WINDOWS\System32\drivers\ntmtlfax.sys.dump
[2014/02/06 14:01:42 | 000,166,912 | ---- | M] () -- C:\WINDOWS\System32\drivers\s3gnbm.sys.dump
[2014/02/06 14:01:42 | 000,126,686 | ---- | M] () -- C:\WINDOWS\System32\drivers\mtlmnt5.sys.dump
[2014/02/06 14:01:42 | 000,079,232 | ---- | M] () -- C:\WINDOWS\System32\drivers\sdbus.sys.dump
[2014/02/06 14:01:42 | 000,059,136 | ---- | M] () -- C:\WINDOWS\System32\drivers\rfcomm.sys.dump
[2014/02/06 14:01:42 | 000,030,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\rndismpx.sys.dump
[2014/02/06 14:01:42 | 000,025,600 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbcamd.sys.dump
[2014/02/06 14:01:42 | 000,015,488 | ---- | M] () -- C:\WINDOWS\System32\drivers\mssmbios.sys.dump
[2014/02/06 14:01:42 | 000,013,776 | ---- | M] () -- C:\WINDOWS\System32\drivers\recagent.sys.dump
[2014/02/06 14:01:42 | 000,011,008 | ---- | M] () -- C:\WINDOWS\System32\drivers\sffp_sd.sys.dump
[2014/02/06 14:01:42 | 000,010,240 | ---- | M] () -- C:\WINDOWS\System32\drivers\sffp_mmc.sys.dump
[2014/02/06 14:01:40 | 000,404,990 | ---- | M] () -- C:\WINDOWS\System32\drivers\slntamr.sys.dump
[2014/02/06 14:01:40 | 000,143,872 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbport.sys.dump
[2014/02/06 14:01:40 | 000,129,535 | ---- | M] () -- C:\WINDOWS\System32\drivers\slnt7554.sys.dump
[2014/02/06 14:01:40 | 000,121,984 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbvideo.sys.dump
[2014/02/06 14:01:40 | 000,095,424 | ---- | M] () -- C:\WINDOWS\System32\drivers\slnthal.sys.dump
[2014/02/06 14:01:40 | 000,059,520 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbhub.sys.dump
[2014/02/06 14:01:40 | 000,040,840 | ---- | M] () -- C:\WINDOWS\System32\drivers\termdd.sys.dump
[2014/02/06 14:01:40 | 000,030,208 | ---- | M] () -- C:\WINDOWS\System32\drivers\wceusbsh.sys.dump
[2014/02/06 14:01:40 | 000,030,208 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbehci.sys.dump
[2014/02/06 14:01:40 | 000,013,240 | ---- | M] () -- C:\WINDOWS\System32\drivers\slwdmsup.sys.dump
[2014/02/06 14:01:40 | 000,012,800 | ---- | M] () -- C:\WINDOWS\System32\drivers\usb8023x.sys.dump
[2014/02/06 14:01:40 | 000,011,871 | ---- | M] () -- C:\WINDOWS\System32\drivers\wadv09nt.sys.dump
[2014/02/06 14:01:40 | 000,011,807 | ---- | M] () -- C:\WINDOWS\System32\drivers\wadv07nt.sys.dump
[2014/02/06 14:01:40 | 000,011,295 | ---- | M] () -- C:\WINDOWS\System32\drivers\wadv08nt.sys.dump
[2014/02/06 14:01:40 | 000,004,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\mnmdd.sys.dump
[2014/02/06 14:01:38 | 000,701,440 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati2mtag.sys.dump
[2014/02/06 14:01:38 | 000,096,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\atapi.sys.dump
[2014/02/06 14:01:38 | 000,071,552 | ---- | M] () -- C:\WINDOWS\System32\drivers\bridge.sys.dump
[2014/02/06 14:01:38 | 000,069,120 | ---- | M] () -- C:\WINDOWS\System32\drivers\psched.sys.dump
[2014/02/06 14:01:38 | 000,059,904 | ---- | M] () -- C:\WINDOWS\System32\drivers\atmarpc.sys.dump
[2014/02/06 14:01:38 | 000,056,576 | ---- | M] () -- C:\WINDOWS\System32\drivers\swmidi.sys.dump
[2014/02/06 14:01:38 | 000,055,808 | ---- | M] () -- C:\WINDOWS\System32\drivers\atmlane.sys.dump
[2014/02/06 14:01:38 | 000,049,536 | ---- | M] () -- C:\WINDOWS\System32\drivers\classpnp.sys.dump
[2014/02/06 14:01:38 | 000,036,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\an983.sys.dump
[2014/02/06 14:01:38 | 000,031,360 | ---- | M] () -- C:\WINDOWS\System32\drivers\atmepvc.sys.dump
[2014/02/06 14:01:38 | 000,025,856 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbprint.sys.dump
[2014/02/06 14:01:38 | 000,025,471 | ---- | M] () -- C:\WINDOWS\System32\drivers\watv10nt.sys.dump
[2014/02/06 14:01:38 | 000,022,271 | ---- | M] () -- C:\WINDOWS\System32\drivers\watv06nt.sys.dump
[2014/02/06 14:01:38 | 000,014,208 | ---- | M] () -- C:\WINDOWS\System32\drivers\wacompen.sys.dump
[2014/02/06 14:01:38 | 000,011,935 | ---- | M] () -- C:\WINDOWS\System32\drivers\wadv11nt.sys.dump
[2014/02/06 14:01:36 | 000,327,040 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati2mtaa.sys.dump
[2014/02/06 14:01:36 | 000,172,416 | ---- | M] () -- C:\WINDOWS\System32\drivers\kmixer.sys.dump
[2014/02/06 14:01:36 | 000,146,048 | ---- | M] () -- C:\WINDOWS\System32\drivers\portcls.sys.dump
[2014/02/06 14:01:36 | 000,142,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\aec.sys.dump
[2014/02/06 14:01:36 | 000,105,344 | ---- | M] () -- C:\WINDOWS\System32\drivers\mup.sys.dump
[2014/02/06 14:01:36 | 000,077,568 | ---- | M] () -- C:\WINDOWS\System32\drivers\WudfPf.sys.dump
[2014/02/06 14:01:36 | 000,064,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\serial.sys.dump
[2014/02/06 14:01:36 | 000,062,976 | ---- | M] () -- C:\WINDOWS\System32\drivers\cdrom.sys.dump
[2014/02/06 14:01:36 | 000,037,760 | ---- | M] () -- C:\WINDOWS\System32\drivers\amdk7.sys.dump
[2014/02/06 14:01:36 | 000,020,864 | ---- | M] () -- C:\WINDOWS\System32\drivers\ipinip.sys.dump
[2014/02/06 14:01:36 | 000,010,496 | ---- | M] () -- C:\WINDOWS\System32\drivers\dxapi.sys.dump
[2014/02/06 14:01:36 | 000,010,112 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndistapi.sys.dump
[2014/02/06 14:01:36 | 000,005,888 | ---- | M] () -- C:\WINDOWS\System32\drivers\dmload.sys.dump
[2014/02/06 14:01:36 | 000,003,328 | ---- | M] () -- C:\WINDOWS\System32\drivers\dxgthk.sys.dump
[2014/02/06 14:01:36 | 000,002,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\drmkaud.sys.dump
[2014/02/06 14:01:34 | 000,143,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\fastfat.sys.dump
[2014/02/06 14:01:34 | 000,071,168 | ---- | M] () -- C:\WINDOWS\System32\drivers\dxg.sys.dump
[2014/02/06 14:01:34 | 000,068,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\pci.sys.dump
[2014/02/06 14:01:34 | 000,060,160 | ---- | M] () -- C:\WINDOWS\System32\drivers\drmk.sys.dump
[2014/02/06 14:01:34 | 000,040,320 | ---- | M] () -- C:\WINDOWS\System32\drivers\nmnt.sys.dump
[2014/02/06 14:01:34 | 000,037,248 | ---- | M] () -- C:\WINDOWS\System32\drivers\isapnp.sys.dump
[2014/02/06 14:01:34 | 000,035,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\msgpc.sys.dump
[2014/02/06 14:01:34 | 000,030,080 | ---- | M] () -- C:\WINDOWS\System32\drivers\modem.sys.dump
[2014/02/06 14:01:34 | 000,024,960 | ---- | M] () -- C:\WINDOWS\System32\drivers\hidparse.sys.dump
[2014/02/06 14:01:34 | 000,023,040 | ---- | M] () -- C:\WINDOWS\System32\drivers\mouclass.sys.dump
[2014/02/06 14:01:34 | 000,019,712 | ---- | M] () -- C:\WINDOWS\System32\drivers\partmgr.sys.dump
[2014/02/06 14:01:34 | 000,015,104 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbscan.sys.dump
[2014/02/06 14:01:34 | 000,014,976 | ---- | M] () -- C:\WINDOWS\System32\drivers\tape.sys.dump
[2014/02/06 14:01:34 | 000,011,648 | ---- | M] () -- C:\WINDOWS\System32\drivers\acpiec.sys.dump
[2014/02/06 14:01:34 | 000,004,736 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbd.sys.dump
[2014/02/06 14:01:32 | 000,162,816 | ---- | M] () -- C:\WINDOWS\System32\drivers\netbt.sys.dump
[2014/02/06 14:01:32 | 000,063,232 | ---- | M] () -- C:\WINDOWS\System32\drivers\nwlnknb.sys.dump
[2014/02/06 14:01:32 | 000,061,824 | ---- | M] () -- C:\WINDOWS\System32\drivers\nic1394.sys.dump
[2014/02/06 14:01:32 | 000,052,480 | ---- | M] () -- C:\WINDOWS\System32\drivers\i8042prt.sys.dump
[2014/02/06 14:01:32 | 000,051,328 | ---- | M] () -- C:\WINDOWS\System32\drivers\rasl2tp.sys.dump
[2014/02/06 14:01:32 | 000,042,112 | ---- | M] () -- C:\WINDOWS\System32\drivers\imapi.sys.dump
[2014/02/06 14:01:32 | 000,040,576 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndproxy.sys.dump
[2014/02/06 14:01:32 | 000,036,352 | ---- | M] () -- C:\WINDOWS\System32\drivers\disk.sys.dump
[2014/02/06 14:01:32 | 000,030,848 | ---- | M] () -- C:\WINDOWS\System32\drivers\npfs.sys.dump
[2014/02/06 14:01:32 | 000,026,368 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbstor.sys.dump
[2014/02/06 14:01:32 | 000,024,960 | ---- | M] () -- C:\WINDOWS\System32\drivers\pciidex.sys.dump
[2014/02/06 14:01:32 | 000,020,992 | ---- | M] () -- C:\WINDOWS\System32\drivers\vga.sys.dump
[2014/02/06 14:01:32 | 000,018,688 | ---- | M] () -- C:\WINDOWS\System32\drivers\cdaudio.sys.dump
[2014/02/06 14:01:32 | 000,012,032 | ---- | M] () -- C:\WINDOWS\System32\drivers\nikedrv.sys.dump
[2014/02/06 14:01:32 | 000,011,392 | ---- | M] () -- C:\WINDOWS\System32\drivers\sfloppy.sys.dump
[2014/02/06 14:01:32 | 000,005,376 | ---- | M] () -- C:\WINDOWS\System32\drivers\mspclock.sys.dump
[2014/02/06 14:01:30 | 000,225,664 | ---- | M] () -- C:\WINDOWS\System32\drivers\tcpip6.sys.dump
[2014/02/06 14:01:30 | 000,153,344 | ---- | M] () -- C:\WINDOWS\System32\drivers\dmio.sys.dump
[2014/02/06 14:01:30 | 000,138,112 | ---- | M] () -- C:\WINDOWS\System32\drivers\afd.sys.dump
[2014/02/06 14:01:30 | 000,096,384 | ---- | M] () -- C:\WINDOWS\System32\drivers\scsiport.sys.dump
[2014/02/06 14:01:30 | 000,048,384 | ---- | M] () -- C:\WINDOWS\System32\drivers\raspptp.sys.dump
[2014/02/06 14:01:30 | 000,044,544 | ---- | M] () -- C:\WINDOWS\System32\drivers\fips.sys.dump
[2014/02/06 14:01:30 | 000,032,128 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbccgp.sys.dump
[2014/02/06 14:01:30 | 000,020,992 | ---- | M] () -- C:\WINDOWS\System32\drivers\rtl8139.sys.dump
[2014/02/06 14:01:30 | 000,019,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\tdi.sys.dump
[2014/02/06 14:01:30 | 000,019,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\msfs.sys.dump
[2014/02/06 14:01:30 | 000,018,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\wpdusb.sys.dump
[2014/02/06 14:01:30 | 000,014,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndisuio.sys.dump
[2014/02/06 14:01:30 | 000,011,264 | ---- | M] () -- C:\WINDOWS\System32\drivers\irenum.sys.dump
[2014/02/06 14:01:30 | 000,005,888 | ---- | M] () -- C:\WINDOWS\System32\drivers\rootmdm.sys.dump
[2014/02/06 14:01:30 | 000,004,992 | ---- | M] () -- C:\WINDOWS\System32\drivers\mspqm.sys.dump
[2014/02/06 14:01:28 | 000,361,344 | ---- | M] () -- C:\WINDOWS\System32\drivers\tcpip.sys.dump
[2014/02/06 14:01:28 | 000,187,776 | ---- | M] () -- C:\WINDOWS\System32\drivers\acpi.sys.dump
[2014/02/06 14:01:28 | 000,182,656 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndis.sys.dump
[2014/02/06 14:01:28 | 000,124,016 | ---- | M] () -- C:\WINDOWS\System32\drivers\SYMEVENT.SYS.dump
[2014/02/06 14:01:28 | 000,081,664 | ---- | M] () -- C:\WINDOWS\System32\drivers\videoprt.sys.dump
[2014/02/06 14:01:28 | 000,060,800 | ---- | M] () -- C:\WINDOWS\System32\drivers\sysaudio.sys.dump
[2014/02/06 14:01:28 | 000,060,800 | ---- | M] () -- C:\WINDOWS\System32\drivers\arp1394.sys.dump
[2014/02/06 14:01:28 | 000,052,352 | ---- | M] () -- C:\WINDOWS\System32\drivers\volsnap.sys.dump
[2014/02/06 14:01:28 | 000,042,752 | ---- | M] () -- C:\WINDOWS\System32\drivers\p3.sys.dump
[2014/02/06 14:01:28 | 000,027,392 | ---- | M] () -- C:\WINDOWS\System32\drivers\fdc.sys.dump
[2014/02/06 14:01:28 | 000,025,344 | ---- | M] () -- C:\WINDOWS\System32\drivers\sonydcam.sys.dump
[2014/02/06 14:01:28 | 000,020,608 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbuhci.sys.dump
[2014/02/06 14:01:28 | 000,015,872 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbintel.sys.dump
[2014/02/06 14:01:28 | 000,015,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\serenum.sys.dump
[2014/02/06 14:01:28 | 000,007,552 | ---- | M] () -- C:\WINDOWS\System32\drivers\mskssrv.sys.dump
[2014/02/06 14:01:28 | 000,006,784 | ---- | M] () -- C:\WINDOWS\System32\drivers\parvdm.sys.dump
[2014/02/06 14:01:26 | 000,456,576 | ---- | M] () -- C:\WINDOWS\System32\drivers\mrxsmb.sys.dump
[2014/02/06 14:01:26 | 000,175,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\rdbss.sys.dump
[2014/02/06 14:01:26 | 000,152,832 | ---- | M] () -- C:\WINDOWS\System32\drivers\ipnat.sys.dump
[2014/02/06 14:01:26 | 000,075,264 | ---- | M] () -- C:\WINDOWS\System32\drivers\ipsec.sys.dump
[2014/02/06 14:01:26 | 000,045,696 | ---- | M] () -- C:\WINDOWS\System32\drivers\cirrus.sys.dump
[2014/02/06 14:01:26 | 000,044,672 | ---- | M] () -- C:\WINDOWS\System32\drivers\uagp35.sys.dump
[2014/02/06 14:01:26 | 000,036,736 | ---- | M] () -- C:\WINDOWS\System32\drivers\crusoe.sys.dump
[2014/02/06 14:01:26 | 000,034,688 | ---- | M] () -- C:\WINDOWS\System32\drivers\netbios.sys.dump
[2014/02/06 14:01:26 | 000,034,560 | ---- | M] () -- C:\WINDOWS\System32\drivers\wanarp.sys.dump
[2014/02/06 14:01:26 | 000,025,728 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbcamd2.sys.dump
[2014/02/06 14:01:26 | 000,021,760 | ---- | M] () -- C:\WINDOWS\System32\drivers\point32.sys.dump
[2014/02/06 14:01:26 | 000,020,480 | ---- | M] () -- C:\WINDOWS\System32\drivers\flpydisk.sys.dump
[2014/02/06 14:01:26 | 000,014,336 | ---- | M] () -- C:\WINDOWS\System32\drivers\asyncmac.sys.dump
[2014/02/06 14:01:26 | 000,012,040 | ---- | M] () -- C:\WINDOWS\System32\drivers\tdpipe.sys.dump
[2014/02/06 14:01:26 | 000,006,272 | ---- | M] () -- C:\WINDOWS\System32\drivers\splitter.sys.dump
[2014/02/06 14:01:24 | 000,737,973 | ---- | M] () -- C:\WINDOWS\System32\drivers\winachcf.sys.dump
[2014/02/06 14:01:24 | 000,384,768 | ---- | M] () -- C:\WINDOWS\System32\drivers\update.sys.dump
[2014/02/06 14:01:24 | 000,334,848 | ---- | M] () -- C:\WINDOWS\System32\drivers\srv.sys.dump
[2014/02/06 14:01:24 | 000,196,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\rdpdr.sys.dump
[2014/02/06 14:01:24 | 000,120,192 | ---- | M] () -- C:\WINDOWS\System32\drivers\pcmcia.sys.dump
[2014/02/06 14:01:24 | 000,083,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\wdmaud.sys.dump
[2014/02/06 14:01:24 | 000,042,368 | ---- | M] () -- C:\WINDOWS\System32\drivers\agp440.sys.dump
[2014/02/06 14:01:24 | 000,035,840 | ---- | M] () -- C:\WINDOWS\System32\drivers\processr.sys.dump
[2014/02/06 14:01:24 | 000,020,552 | ---- | M] () -- C:\WINDOWS\System32\drivers\mbam.sys.dump
[2014/02/06 14:01:24 | 000,016,128 | ---- | M] () -- C:\WINDOWS\System32\drivers\MODEMCSA.sys.dump
[2014/02/06 14:01:24 | 000,012,672 | ---- | M] () -- C:\WINDOWS\System32\drivers\mutohpen.sys.dump
[2014/02/06 11:42:46 | 000,000,719 | ---- | M] () -- C:\Documents and Settings\RICK\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2014/02/06 11:42:44 | 000,000,708 | ---- | M] () -- C:\Documents and Settings\RICK\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2014/02/05 23:00:00 | 000,000,502 | ---- | M] () -- C:\WINDOWS\tasks\Tune-up Application Start.job
[2014/02/04 18:00:44 | 000,378,330 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2014/02/04 18:00:44 | 000,052,534 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2014/02/04 17:59:24 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2014/02/04 17:59:04 | 000,004,635 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2014/02/04 17:57:40 | 000,373,672 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2014/02/04 17:45:46 | 000,000,327 | RHS- | M] () -- C:\boot.ini
[2014/02/04 17:42:56 | 000,250,048 | RHS- | M] () -- C:\ntldr
[2014/02/04 17:42:56 | 000,047,564 | RHS- | M] () -- C:\ntdetect.com
[2014/02/03 19:47:08 | 000,001,341 | ---- | M] () -- C:\WINDOWS\JUNO.INI
[2014/02/03 19:36:20 | 000,000,039 | ---- | M] () -- C:\WINDOWS\wininit.ini
[2014/02/03 19:36:18 | 000,000,028 | ---- | M] () -- C:\WINDOWS\msoffice.ini
[2014/01/31 10:28:48 | 000,002,560 | ---- | M] () -- C:\WINDOWS\_MSRSTRT.EXE
[2014/01/28 16:52:26 | 000,021,048 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak

========== Files Created - No Company Name ==========

[2014/02/06 14:01:57 | 000,233,344 | ---- | C] () -- C:\WINDOWS\System32\drivers\cdudf_xp.sys.dump
[2014/02/06 14:01:57 | 000,205,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\udfreadr_xp.sys.dump
[2014/02/06 14:01:57 | 000,019,702 | ---- | C] () -- C:\WINDOWS\System32\drivers\Mmc_2k.sys.dump
[2014/02/06 14:01:57 | 000,017,990 | ---- | C] () -- C:\WINDOWS\System32\drivers\Dvd_2k.sys.dump
[2014/02/06 14:01:57 | 000,002,560 | ---- | C] () -- C:\WINDOWS\System32\drivers\cdralw2k.sys.dump
[2014/02/06 14:01:56 | 000,078,454 | ---- | C] () -- C:\WINDOWS\System32\drivers\pwd_2K.sys.dump
[2014/02/06 14:01:56 | 000,057,856 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinbtxx.sys.dump
[2014/02/06 14:01:56 | 000,025,472 | ---- | C] () -- C:\WINDOWS\System32\drivers\imapiRox.sys.dump
[2014/02/06 14:01:56 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinpdxx.sys.dump
[2014/02/06 14:01:56 | 000,013,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinmdxx.sys.dump
[2014/02/06 14:01:56 | 000,012,032 | ---- | C] () -- C:\WINDOWS\System32\drivers\ws2ifsl.sys.dump
[2014/02/06 14:01:56 | 000,002,432 | ---- | C] () -- C:\WINDOWS\System32\drivers\Cdr4_xp.sys.dump
[2014/02/06 14:01:55 | 000,104,960 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinrvxx.sys.dump
[2014/02/06 14:01:55 | 000,052,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinraxx.sys.dump
[2014/02/06 14:01:55 | 000,051,712 | ---- | C] () -- C:\WINDOWS\System32\drivers\tosdvd.sys.dump
[2014/02/06 14:01:55 | 000,021,376 | ---- | C] () -- C:\WINDOWS\System32\drivers\tsbvcap.sys.dump
[2014/02/06 14:01:55 | 000,014,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\smclib.sys.dump
[2014/02/06 14:01:55 | 000,012,032 | ---- | C] () -- C:\WINDOWS\System32\drivers\riodrv.sys.dump
[2014/02/06 14:01:55 | 000,012,032 | ---- | C] () -- C:\WINDOWS\System32\drivers\rio8drv.sys.dump
[2014/02/06 14:01:54 | 000,055,936 | ---- | C] () -- C:\WINDOWS\System32\drivers\nwlnkspx.sys.dump
[2014/02/06 14:01:54 | 000,034,432 | ---- | C] () -- C:\WINDOWS\System32\drivers\rawwan.sys.dump
[2014/02/06 14:01:54 | 000,032,896 | ---- | C] () -- C:\WINDOWS\System32\drivers\ipfltdrv.sys.dump
[2014/02/06 14:01:54 | 000,032,512 | ---- | C] () -- C:\WINDOWS\System32\drivers\nwlnkfwd.sys.dump
[2014/02/06 14:01:54 | 000,031,744 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinxbxx.sys.dump
[2014/02/06 14:01:54 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinsnxx.sys.dump
[2014/02/06 14:01:54 | 000,013,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinttxx.sys.dump
[2014/02/06 14:01:54 | 000,012,416 | ---- | C] () -- C:\WINDOWS\System32\drivers\nwlnkflt.sys.dump
[2014/02/06 14:01:53 | 000,352,256 | ---- | C] () -- C:\WINDOWS\System32\drivers\atmuni.sys.dump
[2014/02/06 14:01:53 | 000,262,528 | ---- | C] () -- C:\WINDOWS\System32\drivers\cinemst2.sys.dump
[2014/02/06 14:01:53 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinxsxx.sys.dump
[2014/02/06 14:01:53 | 000,052,864 | ---- | C] () -- C:\WINDOWS\System32\drivers\DMusic.sys.dump
[2014/02/06 14:01:53 | 000,013,952 | ---- | C] () -- C:\WINDOWS\System32\drivers\cbidf2k.sys.dump
[2014/02/06 14:01:53 | 000,011,776 | ---- | C] () -- C:\WINDOWS\System32\drivers\cpqdap01.sys.dump
[2014/02/06 14:01:52 | 000,042,240 | ---- | C] () -- C:\WINDOWS\System32\drivers\viaagp.sys.dump
[2014/02/06 14:01:52 | 000,019,200 | ---- | C] () -- C:\WINDOWS\System32\drivers\hidir.sys.dump
[2014/02/06 14:01:52 | 000,016,512 | ---- | C] () -- C:\WINDOWS\System32\drivers\raspti.sys.dump
[2014/02/06 14:01:52 | 000,008,832 | ---- | C] () -- C:\WINDOWS\System32\drivers\rasacd.sys.dump
[2014/02/06 14:01:52 | 000,007,936 | ---- | C] () -- C:\WINDOWS\System32\drivers\fs_rec.sys.dump
[2014/02/06 14:01:52 | 000,004,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\rdpcdd.sys.dump
[2014/02/06 14:01:52 | 000,004,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\beep.sys.dump
[2014/02/06 14:01:52 | 000,002,944 | ---- | C] () -- C:\WINDOWS\System32\drivers\null.sys.dump
[2014/02/06 14:01:51 | 000,799,744 | ---- | C] () -- C:\WINDOWS\System32\drivers\dmboot.sys.dump
[2014/02/06 14:01:51 | 000,125,056 | ---- | C] () -- C:\WINDOWS\System32\drivers\ftdisk.sys.dump
[2014/02/06 14:01:51 | 000,046,464 | ---- | C] () -- C:\WINDOWS\System32\drivers\gagp30kx.sys.dump
[2014/02/06 14:01:51 | 000,014,208 | ---- | C] () -- C:\WINDOWS\System32\drivers\diskdump.sys.dump
[2014/02/06 14:01:51 | 000,011,904 | ---- | C] () -- C:\WINDOWS\System32\drivers\sffdisk.sys.dump
[2014/02/06 14:01:51 | 000,004,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\wmilib.sys.dump
[2014/02/06 14:01:51 | 000,003,456 | ---- | C] () -- C:\WINDOWS\System32\drivers\oprghdlr.sys.dump
[2014/02/06 14:01:50 | 000,141,056 | ---- | C] () -- C:\WINDOWS\System32\drivers\ks.sys.dump
[2014/02/06 14:01:50 | 000,092,288 | ---- | C] () -- C:\WINDOWS\System32\drivers\ksecdd.sys.dump
[2014/02/06 14:01:50 | 000,063,744 | ---- | C] () -- C:\WINDOWS\System32\drivers\cdfs.sys.dump
[2014/02/06 14:01:50 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\drivers\hidclass.sys.dump
[2014/02/06 14:01:50 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\drivers\kbdclass.sys.dump
[2014/02/06 14:01:50 | 000,016,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys.dump
[2014/02/06 14:01:50 | 000,005,504 | ---- | C] () -- C:\WINDOWS\System32\drivers\intelide.sys.dump
[2014/02/06 14:01:49 | 000,731,648 | ---- | C] () -- C:\WINDOWS\System32\drivers\nv4.sys.dump
[2014/02/06 14:01:49 | 000,180,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\mrxdav.sys.dump
[2014/02/06 14:01:49 | 000,091,520 | ---- | C] () -- C:\WINDOWS\System32\drivers\ndiswan.sys.dump
[2014/02/06 14:01:49 | 000,051,712 | ---- | C] () -- C:\WINDOWS\System32\drivers\BrSerIf.sys.dump
[2014/02/06 14:01:49 | 000,015,295 | ---- | C] () -- C:\WINDOWS\System32\drivers\BrScnUsb.sys.dump
[2014/02/06 14:01:49 | 000,011,648 | ---- | C] () -- C:\WINDOWS\System32\drivers\BrUsbSer.sys.dump
[2014/02/06 14:01:49 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\drivers\audstub.sys.dump
[2014/02/06 14:01:48 | 000,907,456 | ---- | C] () -- C:\WINDOWS\System32\drivers\HCF_MSFT.sys.dump
[2014/02/06 14:01:48 | 000,574,976 | ---- | C] () -- C:\WINDOWS\System32\drivers\ntfs.sys.dump
[2014/02/06 14:01:48 | 000,402,944 | ---- | C] () -- C:\WINDOWS\System32\drivers\BLKWGU.sys.dump
[2014/02/06 14:01:48 | 000,080,128 | ---- | C] () -- C:\WINDOWS\System32\drivers\parport.sys.dump
[2014/02/06 14:01:48 | 000,058,112 | ---- | C] () -- C:\WINDOWS\System32\drivers\vdmindvd.sys.dump
[2014/02/06 14:01:48 | 000,041,472 | ---- | C] () -- C:\WINDOWS\System32\drivers\raspppoe.sys.dump
[2014/02/06 14:01:47 | 000,096,256 | ---- | C] () -- C:\WINDOWS\System32\drivers\ac97intc.sys.dump
[2014/02/06 14:01:47 | 000,082,944 | ---- | C] () -- C:\WINDOWS\System32\drivers\WudfRd.sys.dump
[2014/02/06 14:01:47 | 000,056,623 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1btxx.sys.dump
[2014/02/06 14:01:47 | 000,044,928 | ---- | C] () -- C:\WINDOWS\System32\drivers\agpcpq.sys.dump
[2014/02/06 14:01:47 | 000,042,752 | ---- | C] () -- C:\WINDOWS\System32\drivers\alim1541.sys.dump
[2014/02/06 14:01:47 | 000,012,160 | ---- | C] () -- C:\WINDOWS\System32\drivers\fsvga.sys.dump
[2014/02/06 14:01:47 | 000,011,615 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1mdxx.sys.dump
[2014/02/06 14:01:47 | 000,005,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\smbali.sys.dump
[2014/02/06 14:01:46 | 000,063,663 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1rvxx.sys.dump
[2014/02/06 14:01:46 | 000,036,463 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1tuxx.sys.dump
[2014/02/06 14:01:46 | 000,034,735 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1xsxx.sys.dump
[2014/02/06 14:01:46 | 000,030,671 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1raxx.sys.dump
[2014/02/06 14:01:46 | 000,029,455 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1xbxx.sys.dump
[2014/02/06 14:01:46 | 000,026,367 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1snxx.sys.dump
[2014/02/06 14:01:46 | 000,021,343 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1ttxx.sys.dump
[2014/02/06 14:01:46 | 000,012,047 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati1pdxx.sys.dump
[2014/02/06 14:01:45 | 000,202,624 | ---- | C] () -- C:\WINDOWS\System32\drivers\RMCast.sys.dump
[2014/02/06 14:01:45 | 000,073,472 | ---- | C] () -- C:\WINDOWS\System32\drivers\sr.sys.dump
[2014/02/06 14:01:45 | 000,066,048 | ---- | C] () -- C:\WINDOWS\System32\drivers\udfs.sys.dump
[2014/02/06 14:01:45 | 000,057,600 | ---- | C] () -- C:\WINDOWS\System32\drivers\redbook.sys.dump
[2014/02/06 14:01:45 | 000,030,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\rndismp.sys.dump
[2014/02/06 14:01:45 | 000,021,896 | ---- | C] () -- C:\WINDOWS\System32\drivers\tdtcp.sys.dump
[2014/02/06 14:01:45 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\drivers\secdrv.sys.dump
[2014/02/06 14:01:45 | 000,004,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\swenum.sys.dump
[2014/02/06 14:01:44 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\drivers\bthport.sys.dump
[2014/02/06 14:01:44 | 000,101,120 | ---- | C] () -- C:\WINDOWS\System32\drivers\bthpan.sys.dump
[2014/02/06 14:01:44 | 000,037,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\bthmodem.sys.dump
[2014/02/06 14:01:44 | 000,036,480 | ---- | C] () -- C:\WINDOWS\System32\drivers\bthprint.sys.dump
[2014/02/06 14:01:44 | 000,017,024 | ---- | C] () -- C:\WINDOWS\System32\drivers\bthenum.sys.dump
[2014/02/06 14:01:44 | 000,012,800 | ---- | C] () -- C:\WINDOWS\System32\drivers\usb8023.sys.dump
[2014/02/06 14:01:44 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\drivers\tunmp.sys.dump
[2014/02/06 14:01:43 | 000,685,056 | ---- | C] () -- C:\WINDOWS\System32\drivers\hsfcxts2.sys.dump
[2014/02/06 14:01:43 | 000,220,032 | ---- | C] () -- C:\WINDOWS\System32\drivers\hsfbs2s2.sys.dump
[2014/02/06 14:01:43 | 000,144,384 | ---- | C] () -- C:\WINDOWS\System32\drivers\hdaudbus.sys.dump
[2014/02/06 14:01:43 | 000,129,792 | ---- | C] () -- C:\WINDOWS\System32\drivers\fltmgr.sys.dump
[2014/02/06 14:01:43 | 000,042,368 | ---- | C] () -- C:\WINDOWS\System32\drivers\mountmgr.sys.dump
[2014/02/06 14:01:43 | 000,025,600 | ---- | C] () -- C:\WINDOWS\System32\drivers\hidbth.sys.dump
[2014/02/06 14:01:43 | 000,018,944 | ---- | C] () -- C:\WINDOWS\System32\drivers\bthusb.sys.dump
[2014/02/06 14:01:42 | 001,041,536 | ---- | C] () -- C:\WINDOWS\System32\drivers\hsfdpsp2.sys.dump
[2014/02/06 14:01:42 | 000,264,832 | ---- | C] () -- C:\WINDOWS\System32\drivers\http.sys.dump
[2014/02/06 14:01:42 | 000,036,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\ip6fw.sys.dump
[2014/02/06 14:01:42 | 000,036,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\intelppm.sys.dump
[2014/02/06 14:01:42 | 000,011,868 | ---- | C] () -- C:\WINDOWS\System32\drivers\mdmxsdk.sys.dump
[2014/02/06 14:01:42 | 000,007,680 | ---- | C] () -- C:\WINDOWS\System32\drivers\mcd.sys.dump
[2014/02/06 14:01:41 | 001,309,184 | ---- | C] () -- C:\WINDOWS\System32\drivers\mtlstrm.sys.dump
[2014/02/06 14:01:41 | 000,452,736 | ---- | C] () -- C:\WINDOWS\System32\drivers\mtxparhm.sys.dump
[2014/02/06 14:01:41 | 000,180,360 | ---- | C] () -- C:\WINDOWS\System32\drivers\ntmtlfax.sys.dump
[2014/02/06 14:01:41 | 000,126,686 | ---- | C] () -- C:\WINDOWS\System32\drivers\mtlmnt5.sys.dump
[2014/02/06 14:01:41 | 000,015,488 | ---- | C] () -- C:\WINDOWS\System32\drivers\mssmbios.sys.dump
[2014/02/06 14:01:40 | 000,166,912 | ---- | C] () -- C:\WINDOWS\System32\drivers\s3gnbm.sys.dump
[2014/02/06 14:01:40 | 000,079,232 | ---- | C] () -- C:\WINDOWS\System32\drivers\sdbus.sys.dump
[2014/02/06 14:01:40 | 000,059,136 | ---- | C] () -- C:\WINDOWS\System32\drivers\rfcomm.sys.dump
[2014/02/06 14:01:40 | 000,030,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\rndismpx.sys.dump
[2014/02/06 14:01:40 | 000,025,600 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbcamd.sys.dump
[2014/02/06 14:01:40 | 000,013,776 | ---- | C] () -- C:\WINDOWS\System32\drivers\recagent.sys.dump
[2014/02/06 14:01:40 | 000,011,008 | ---- | C] () -- C:\WINDOWS\System32\drivers\sffp_sd.sys.dump
[2014/02/06 14:01:40 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\drivers\sffp_mmc.sys.dump
[2014/02/06 14:01:39 | 000,404,990 | ---- | C] () -- C:\WINDOWS\System32\drivers\slntamr.sys.dump
[2014/02/06 14:01:39 | 000,129,535 | ---- | C] () -- C:\WINDOWS\System32\drivers\slnt7554.sys.dump
[2014/02/06 14:01:39 | 000,095,424 | ---- | C] () -- C:\WINDOWS\System32\drivers\slnthal.sys.dump
[2014/02/06 14:01:39 | 000,059,520 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbhub.sys.dump
[2014/02/06 14:01:39 | 000,040,840 | ---- | C] () -- C:\WINDOWS\System32\drivers\termdd.sys.dump
[2014/02/06 14:01:39 | 000,030,208 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbehci.sys.dump
[2014/02/06 14:01:39 | 000,013,240 | ---- | C] () -- C:\WINDOWS\System32\drivers\slwdmsup.sys.dump
[2014/02/06 14:01:38 | 000,143,872 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbport.sys.dump
[2014/02/06 14:01:38 | 000,121,984 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbvideo.sys.dump
[2014/02/06 14:01:38 | 000,030,208 | ---- | C] () -- C:\WINDOWS\System32\drivers\wceusbsh.sys.dump
[2014/02/06 14:01:38 | 000,012,800 | ---- | C] () -- C:\WINDOWS\System32\drivers\usb8023x.sys.dump
[2014/02/06 14:01:38 | 000,011,935 | ---- | C] () -- C:\WINDOWS\System32\drivers\wadv11nt.sys.dump
[2014/02/06 14:01:38 | 000,011,871 | ---- | C] () -- C:\WINDOWS\System32\drivers\wadv09nt.sys.dump
[2014/02/06 14:01:38 | 000,011,807 | ---- | C] () -- C:\WINDOWS\System32\drivers\wadv07nt.sys.dump
[2014/02/06 14:01:38 | 000,011,295 | ---- | C] () -- C:\WINDOWS\System32\drivers\wadv08nt.sys.dump
[2014/02/06 14:01:38 | 000,004,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\mnmdd.sys.dump
[2014/02/06 14:01:37 | 000,701,440 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati2mtag.sys.dump
[2014/02/06 14:01:37 | 000,056,576 | ---- | C] () -- C:\WINDOWS\System32\drivers\swmidi.sys.dump
[2014/02/06 14:01:37 | 000,043,008 | ---- | C] () -- C:\WINDOWS\System32\drivers\amdagp.sys.dump
[2014/02/06 14:01:37 | 000,036,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\an983.sys.dump
[2014/02/06 14:01:37 | 000,025,856 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbprint.sys.dump
[2014/02/06 14:01:37 | 000,025,471 | ---- | C] () -- C:\WINDOWS\System32\drivers\watv10nt.sys.dump
[2014/02/06 14:01:37 | 000,022,271 | ---- | C] () -- C:\WINDOWS\System32\drivers\watv06nt.sys.dump
[2014/02/06 14:01:36 | 000,096,512 | ---- | C] () -- C:\WINDOWS\System32\drivers\atapi.sys.dump
[2014/02/06 14:01:36 | 000,071,552 | ---- | C] () -- C:\WINDOWS\System32\drivers\bridge.sys.dump
[2014/02/06 14:01:36 | 000,069,120 | ---- | C] () -- C:\WINDOWS\System32\drivers\psched.sys.dump
[2014/02/06 14:01:36 | 000,059,904 | ---- | C] () -- C:\WINDOWS\System32\drivers\atmarpc.sys.dump
[2014/02/06 14:01:36 | 000,055,808 | ---- | C] () -- C:\WINDOWS\System32\drivers\atmlane.sys.dump
[2014/02/06 14:01:36 | 000,049,536 | ---- | C] () -- C:\WINDOWS\System32\drivers\classpnp.sys.dump
[2014/02/06 14:01:36 | 000,031,360 | ---- | C] () -- C:\WINDOWS\System32\drivers\atmepvc.sys.dump
[2014/02/06 14:01:36 | 000,014,208 | ---- | C] () -- C:\WINDOWS\System32\drivers\wacompen.sys.dump
[2014/02/06 14:01:35 | 000,327,040 | ---- | C] () -- C:\WINDOWS\System32\drivers\ati2mtaa.sys.dump
[2014/02/06 14:01:35 | 000,146,048 | ---- | C] () -- C:\WINDOWS\System32\drivers\portcls.sys.dump
[2014/02/06 14:01:35 | 000,105,344 | ---- | C] () -- C:\WINDOWS\System32\drivers\mup.sys.dump
[2014/02/06 14:01:35 | 000,062,976 | ---- | C] () -- C:\WINDOWS\System32\drivers\cdrom.sys.dump
[2014/02/06 14:01:35 | 000,037,760 | ---- | C] () -- C:\WINDOWS\System32\drivers\amdk7.sys.dump
[2014/02/06 14:01:35 | 000,020,864 | ---- | C] () -- C:\WINDOWS\System32\drivers\ipinip.sys.dump
[2014/02/06 14:01:35 | 000,010,496 | ---- | C] () -- C:\WINDOWS\System32\drivers\dxapi.sys.dump
[2014/02/06 14:01:34 | 000,172,416 | ---- | C] () -- C:\WINDOWS\System32\drivers\kmixer.sys.dump
[2014/02/06 14:01:34 | 000,142,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\aec.sys.dump
[2014/02/06 14:01:34 | 000,077,568 | ---- | C] () -- C:\WINDOWS\System32\drivers\WudfPf.sys.dump
[2014/02/06 14:01:34 | 000,064,512 | ---- | C] () -- C:\WINDOWS\System32\drivers\serial.sys.dump
[2014/02/06 14:01:34 | 000,010,112 | ---- | C] () -- C:\WINDOWS\System32\drivers\ndistapi.sys.dump
[2014/02/06 14:01:34 | 000,005,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\dmload.sys.dump
[2014/02/06 14:01:34 | 000,003,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\dxgthk.sys.dump
[2014/02/06 14:01:34 | 000,002,944 | ---- | C] () -- C:\WINDOWS\System32\drivers\drmkaud.sys.dump
[2014/02/06 14:01:33 | 000,071,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\dxg.sys.dump
[2014/02/06 14:01:33 | 000,068,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\pci.sys.dump
[2014/02/06 14:01:33 | 000,035,072 | ---- | C] () -- C:\WINDOWS\System32\drivers\msgpc.sys.dump
[2014/02/06 14:01:33 | 000,030,080 | ---- | C] () -- C:\WINDOWS\System32\drivers\modem.sys.dump
[2014/02/06 14:01:33 | 000,019,712 | ---- | C] () -- C:\WINDOWS\System32\drivers\partmgr.sys.dump
[2014/02/06 14:01:33 | 000,014,976 | ---- | C] () -- C:\WINDOWS\System32\drivers\tape.sys.dump
[2014/02/06 14:01:33 | 000,011,648 | ---- | C] () -- C:\WINDOWS\System32\drivers\acpiec.sys.dump
[2014/02/06 14:01:33 | 000,004,736 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbd.sys.dump
[2014/02/06 14:01:32 | 000,143,744 | ---- | C] () -- C:\WINDOWS\System32\drivers\fastfat.sys.dump
[2014/02/06 14:01:32 | 000,060,160 | ---- | C] () -- C:\WINDOWS\System32\drivers\drmk.sys.dump
[2014/02/06 14:01:32 | 000,040,320 | ---- | C] () -- C:\WINDOWS\System32\drivers\nmnt.sys.dump
[2014/02/06 14:01:32 | 000,037,248 | ---- | C] () -- C:\WINDOWS\System32\drivers\isapnp.sys.dump
[2014/02/06 14:01:32 | 000,024,960 | ---- | C] () -- C:\WINDOWS\System32\drivers\hidparse.sys.dump
[2014/02/06 14:01:32 | 000,023,040 | ---- | C] () -- C:\WINDOWS\System32\drivers\mouclass.sys.dump
[2014/02/06 14:01:32 | 000,017,792 | ---- | C] () -- C:\WINDOWS\System32\drivers\ptilink.sys.dump
[2014/02/06 14:01:32 | 000,015,104 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbscan.sys.dump
[2014/02/06 14:01:31 | 000,162,816 | ---- | C] () -- C:\WINDOWS\System32\drivers\netbt.sys.dump
[2014/02/06 14:01:31 | 000,052,480 | ---- | C] () -- C:\WINDOWS\System32\drivers\i8042prt.sys.dump
[2014/02/06 14:01:31 | 000,051,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\rasl2tp.sys.dump
[2014/02/06 14:01:31 | 000,040,576 | ---- | C] () -- C:\WINDOWS\System32\drivers\ndproxy.sys.dump
[2014/02/06 14:01:31 | 000,036,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\disk.sys.dump
[2014/02/06 14:01:31 | 000,018,688 | ---- | C] () -- C:\WINDOWS\System32\drivers\cdaudio.sys.dump
[2014/02/06 14:01:31 | 000,012,032 | ---- | C] () -- C:\WINDOWS\System32\drivers\nikedrv.sys.dump
[2014/02/06 14:01:31 | 000,005,376 | ---- | C] () -- C:\WINDOWS\System32\drivers\mspclock.sys.dump
[2014/02/06 14:01:30 | 000,063,232 | ---- | C] () -- C:\WINDOWS\System32\drivers\nwlnknb.sys.dump
[2014/02/06 14:01:30 | 000,061,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\nic1394.sys.dump
[2014/02/06 14:01:30 | 000,042,112 | ---- | C] () -- C:\WINDOWS\System32\drivers\imapi.sys.dump
[2014/02/06 14:01:30 | 000,030,848 | ---- | C] () -- C:\WINDOWS\System32\drivers\npfs.sys.dump
[2014/02/06 14:01:30 | 000,026,368 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbstor.sys.dump
[2014/02/06 14:01:30 | 000,024,960 | ---- | C] () -- C:\WINDOWS\System32\drivers\pciidex.sys.dump
[2014/02/06 14:01:30 | 000,020,992 | ---- | C] () -- C:\WINDOWS\System32\drivers\vga.sys.dump
[2014/02/06 14:01:30 | 000,011,392 | ---- | C] () -- C:\WINDOWS\System32\drivers\sfloppy.sys.dump
[2014/02/06 14:01:29 | 000,225,664 | ---- | C] () -- C:\WINDOWS\System32\drivers\tcpip6.sys.dump
[2014/02/06 14:01:29 | 000,153,344 | ---- | C] () -- C:\WINDOWS\System32\drivers\dmio.sys.dump
[2014/02/06 14:01:29 | 000,138,112 | ---- | C] () -- C:\WINDOWS\System32\drivers\afd.sys.dump
[2014/02/06 14:01:29 | 000,044,544 | ---- | C] () -- C:\WINDOWS\System32\drivers\fips.sys.dump
[2014/02/06 14:01:29 | 000,032,128 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbccgp.sys.dump
[2014/02/06 14:01:29 | 000,020,992 | ---- | C] () -- C:\WINDOWS\System32\drivers\rtl8139.sys.dump
[2014/02/06 14:01:29 | 000,019,072 | ---- | C] () -- C:\WINDOWS\System32\drivers\msfs.sys.dump
[2014/02/06 14:01:29 | 000,014,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\ndisuio.sys.dump
[2014/02/06 14:01:28 | 000,182,656 | ---- | C] () -- C:\WINDOWS\System32\drivers\ndis.sys.dump
[2014/02/06 14:01:28 | 000,096,384 | ---- | C] () -- C:\WINDOWS\System32\drivers\scsiport.sys.dump
[2014/02/06 14:01:28 | 000,048,384 | ---- | C] () -- C:\WINDOWS\System32\drivers\raspptp.sys.dump
[2014/02/06 14:01:28 | 000,019,072 | ---- | C] () -- C:\WINDOWS\System32\drivers\tdi.sys.dump
[2014/02/06 14:01:28 | 000,018,944 | ---- | C] () -- C:\WINDOWS\System32\drivers\wpdusb.sys.dump
[2014/02/06 14:01:28 | 000,011,264 | ---- | C] () -- C:\WINDOWS\System32\drivers\irenum.sys.dump
[2014/02/06 14:01:28 | 000,005,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\rootmdm.sys.dump
[2014/02/06 14:01:28 | 000,004,992 | ---- | C] () -- C:\WINDOWS\System32\drivers\mspqm.sys.dump
[2014/02/06 14:01:27 | 000,361,344 | ---- | C] () -- C:\WINDOWS\System32\drivers\tcpip.sys.dump
[2014/02/06 14:01:27 | 000,124,016 | ---- | C] () -- C:\WINDOWS\System32\drivers\SYMEVENT.SYS.dump
[2014/02/06 14:01:27 | 000,081,664 | ---- | C] () -- C:\WINDOWS\System32\drivers\videoprt.sys.dump
[2014/02/06 14:01:27 | 000,042,752 | ---- | C] () -- C:\WINDOWS\System32\drivers\p3.sys.dump
[2014/02/06 14:01:27 | 000,025,344 | ---- | C] () -- C:\WINDOWS\System32\drivers\sonydcam.sys.dump
[2014/02/06 14:01:27 | 000,020,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbuhci.sys.dump
[2014/02/06 14:01:27 | 000,015,744 | ---- | C] () -- C:\WINDOWS\System32\drivers\serenum.sys.dump
[2014/02/06 14:01:26 | 000,187,776 | ---- | C] () -- C:\WINDOWS\System32\drivers\acpi.sys.dump
[2014/02/06 14:01:26 | 000,060,800 | ---- | C] () -- C:\WINDOWS\System32\drivers\sysaudio.sys.dump
[2014/02/06 14:01:26 | 000,060,800 | ---- | C] () -- C:\WINDOWS\System32\drivers\arp1394.sys.dump
[2014/02/06 14:01:26 | 000,052,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\volsnap.sys.dump
[2014/02/06 14:01:26 | 000,034,688 | ---- | C] () -- C:\WINDOWS\System32\drivers\netbios.sys.dump
[2014/02/06 14:01:26 | 000,027,392 | ---- | C] () -- C:\WINDOWS\System32\drivers\fdc.sys.dump
[2014/02/06 14:01:26 | 000,015,872 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbintel.sys.dump
[2014/02/06 14:01:26 | 000,007,552 | ---- | C] () -- C:\WINDOWS\System32\drivers\mskssrv.sys.dump
[2014/02/06 14:01:26 | 000,006,784 | ---- | C] () -- C:\WINDOWS\System32\drivers\parvdm.sys.dump
[2014/02/06 14:01:25 | 000,456,576 | ---- | C] () -- C:\WINDOWS\System32\drivers\mrxsmb.sys.dump
[2014/02/06 14:01:25 | 000,175,744 | ---- | C] () -- C:\WINDOWS\System32\drivers\rdbss.sys.dump
[2014/02/06 14:01:25 | 000,044,672 | ---- | C] () -- C:\WINDOWS\System32\drivers\uagp35.sys.dump
[2014/02/06 14:01:25 | 000,025,728 | ---- | C] () -- C:\WINDOWS\System32\drivers\usbcamd2.sys.dump
[2014/02/06 14:01:25 | 000,021,760 | ---- | C] () -- C:\WINDOWS\System32\drivers\point32.sys.dump
[2014/02/06 14:01:25 | 000,012,040 | ---- | C] () -- C:\WINDOWS\System32\drivers\tdpipe.sys.dump
[2014/02/06 14:01:25 | 000,006,272 | ---- | C] () -- C:\WINDOWS\System32\drivers\splitter.sys.dump
[2014/02/06 14:01:24 | 000,152,832 | ---- | C] () -- C:\WINDOWS\System32\drivers\ipnat.sys.dump
[2014/02/06 14:01:24 | 000,120,192 | ---- | C] () -- C:\WINDOWS\System32\drivers\pcmcia.sys.dump
[2014/02/06 14:01:24 | 000,075,264 | ---- | C] () -- C:\WINDOWS\System32\drivers\ipsec.sys.dump
[2014/02/06 14:01:24 | 000,045,696 | ---- | C] () -- C:\WINDOWS\System32\drivers\cirrus.sys.dump
[2014/02/06 14:01:24 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\drivers\sisagp.sys.dump
[2014/02/06 14:01:24 | 000,036,736 | ---- | C] () -- C:\WINDOWS\System32\drivers\crusoe.sys.dump
[2014/02/06 14:01:24 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\drivers\wanarp.sys.dump
[2014/02/06 14:01:24 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\drivers\flpydisk.sys.dump
[2014/02/06 14:01:24 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\drivers\asyncmac.sys.dump
[2014/02/06 14:01:23 | 001,341,339 | ---- | C] () -- C:\WINDOWS\System32\drivers\nv4_mini.sys.dump
[2014/02/06 14:01:23 | 000,334,848 | ---- | C] () -- C:\WINDOWS\System32\drivers\srv.sys.dump
[2014/02/06 14:01:23 | 000,083,072 | ---- | C] () -- C:\WINDOWS\System32\drivers\wdmaud.sys.dump
[2014/02/06 14:01:23 | 000,035,840 | ---- | C] () -- C:\WINDOWS\System32\drivers\processr.sys.dump
[2014/02/06 14:01:23 | 000,020,552 | ---- | C] () -- C:\WINDOWS\System32\drivers\mbam.sys.dump
[2014/02/06 14:01:23 | 000,016,128 | ---- | C] () -- C:\WINDOWS\System32\drivers\MODEMCSA.sys.dump
[2014/02/06 14:01:22 | 000,737,973 | ---- | C] () -- C:\WINDOWS\System32\drivers\winachcf.sys.dump
[2014/02/06 14:01:22 | 000,384,768 | ---- | C] () -- C:\WINDOWS\System32\drivers\update.sys.dump
[2014/02/06 14:01:22 | 000,196,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\rdpdr.sys.dump
[2014/02/06 14:01:22 | 000,042,368 | ---- | C] () -- C:\WINDOWS\System32\drivers\agp440.sys.dump
[2014/02/06 14:01:22 | 000,036,560 | ---- | C] () -- C:\WINDOWS\System32\drivers\pxhelp20.sys.dump
[2014/02/06 14:01:22 | 000,012,672 | ---- | C] () -- C:\WINDOWS\System32\drivers\mutohpen.sys.dump
[2014/02/03 21:04:56 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2014/02/03 21:04:54 | 000,245,920 | RHS- | C] () -- C:\cmldr
[2014/02/03 21:03:22 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2014/02/03 21:03:22 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2014/02/03 21:03:22 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2014/02/03 21:03:22 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2014/02/03 21:03:22 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2014/01/31 10:28:45 | 000,002,560 | ---- | C] () -- C:\WINDOWS\_MSRSTRT.EXE
[2008/07/29 11:41:10 | 000,002,383 | ---- | C] () -- C:\Documents and Settings\RICK\acadstk.dmp
[2007/12/22 11:28:52 | 000,002,635 | ---- | C] () -- C:\Documents and Settings\RICK\Application Data\SAS7_000.DAT
[2007/10/16 10:36:01 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\RICK\RICK_notes.dat
[2007/05/02 14:23:52 | 000,061,465 | ---- | C] () -- C:\Documents and Settings\RICK\ALTA2005.pdf
[2006/11/18 14:20:37 | 000,001,755 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2005/02/04 14:02:33 | 000,000,127 | ---- | C] () -- C:\Documents and Settings\RICK\Local Settings\Application Data\fusioncache.dat
[2005/02/04 14:00:56 | 000,000,747 | ---- | C] () -- C:\Documents and Settings\RICK\Application Data\QuickBooks Templates.lnk
[2004/07/19 11:28:53 | 000,018,944 | ---- | C] () -- C:\Documents and Settings\RICK\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2000/10/13 16:56:49 | 000,023,357 | -H-- | C] () -- C:\Program Files\folder.htt

========== ZeroAccess Check ==========

[2005/02/04 13:54:54 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2008/04/14 05:42:06 | 001,499,136 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2008/04/14 05:41:54 | 000,472,064 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2008/04/14 05:42:10 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2004/04/30 17:16:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Sierra Imaging
[2004/04/30 17:16:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MSN Messenger 6.1.0211
[2006/11/29 12:38:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ScanSoft
[2007/01/02 15:47:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\pdf995
[2007/12/22 10:36:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nuance
[2004/07/17 19:13:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RICK\Application Data\InterVideo
[2005/07/18 15:52:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RICK\Application Data\Template
[2006/10/09 13:34:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RICK\Application Data\PEX
[2007/02/06 14:57:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RICK\Application Data\pdf995
[2006/10/09 11:32:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RICK\Application Data\ispnews
[2007/01/02 15:51:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RICK\Application Data\ScanSoft
[2007/01/30 11:44:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RICK\Application Data\Carlson Software
[2007/10/16 10:41:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RICK\Application Data\ClipPad
[2007/12/22 10:42:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RICK\Application Data\Nuance

========== Purity Check ==========



========== Custom Scans ==========

========== Base Services ==========
SRV - [2008/04/14 05:42:14 | 000,044,544 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\WINDOWS\SYSTEM32\alg.exe -- (ALG)
SRV - [2008/04/14 05:42:12 | 000,006,656 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\wuauserv.dll -- (wuauserv)
SRV - [2008/04/14 05:42:04 | 000,409,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\qmgr.dll -- (BITS)
SRV - [2008/04/14 05:41:52 | 000,077,824 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\WINDOWS\SYSTEM32\browser.dll -- (Browser)
SRV - [2008/04/14 05:41:52 | 000,062,464 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\cryptsvc.dll -- (CryptSvc)
SRV - [2008/04/14 05:41:52 | 000,126,976 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\dhcpcsvc.dll -- (Dhcp)
SRV - [2008/04/14 05:41:54 | 000,045,568 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\dnsrslvr.dll -- (Dnscache)
SRV - [2008/04/14 05:42:36 | 000,108,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\services.exe -- (Eventlog)
SRV - [2008/04/13 20:11:52 | 000,033,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\eapsvc.dll -- (EapHost)
SRV - [2008/04/14 05:42:06 | 000,135,168 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\WINDOWS\SYSTEM32\shsvcs.dll -- (FastUserSwitchingCompatibility)
SRV - [2008/04/13 20:12:08 | 000,015,872 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\w3ssl.dll -- (HTTPFilter)
SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - [2008/04/14 05:42:24 | 000,150,528 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\imapi.exe -- (ImapiService)
SRV - [2008/04/14 05:42:26 | 000,013,312 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\lsass.exe -- (PolicyAgent)
SRV - [2008/04/14 05:41:54 | 000,023,552 | ---- | M] (Microsoft Corp.) [On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\dmserver.dll -- (dmserver)
SRV - [2008/04/14 05:42:18 | 000,224,768 | ---- | M] (Microsoft Corp., Veritas Software) [On_Demand | Stopped] -- C:\WINDOWS\System32\dmadmin.exe -- (dmadmin)
SRV - [2008/04/14 05:42:18 | 000,005,120 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\System32\dllhost.exe -- (SwPrv)
SRV - [2008/04/14 05:42:26 | 000,013,312 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\lsass.exe -- (Netlogon)
SRV - [2008/04/14 05:42:02 | 000,198,144 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\WINDOWS\SYSTEM32\netman.dll -- (Netman)
SRV - [2008/04/14 05:42:02 | 000,245,248 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\WINDOWS\SYSTEM32\mswsock.dll -- (Nla)
SRV - [2008/04/14 05:42:36 | 000,108,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\services.exe -- (PlugPlay)
SRV - [2008/04/14 05:42:38 | 000,057,856 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\spoolsv.exe -- (Spooler)
SRV - [2008/04/14 05:42:26 | 000,013,312 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\lsass.exe -- (ProtectedStorage)
SRV - [2008/04/14 05:42:04 | 000,088,576 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\rasauto.dll -- (RasAuto)
SRV - [2008/04/14 05:42:04 | 000,186,368 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\WINDOWS\SYSTEM32\rasmans.dll -- (RasMan)
SRV - [2008/04/14 05:42:06 | 000,399,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\rpcss.dll -- (RpcSs)
SRV - [2008/04/14 05:42:04 | 000,435,200 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\ntmssvc.dll -- (NtmsSvc)
SRV - [2008/04/14 05:42:06 | 000,018,944 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\seclogon.dll -- (seclogon)
SRV - [2008/04/14 05:42:26 | 000,013,312 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\lsass.exe -- (SamSs)
SRV - [2008/04/13 20:12:10 | 000,080,896 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\wscsvc.dll -- (wscsvc)
SRV - [2008/04/14 05:42:08 | 000,096,768 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\srvsvc.dll -- (lanmanserver)
SRV - [2008/04/14 05:42:06 | 000,135,168 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\shsvcs.dll -- (ShellHWDetection)
SRV - [2008/04/14 05:42:08 | 000,171,008 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\srsvc.dll -- (srservice)
SRV - [2008/04/14 05:42:06 | 000,192,512 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\schedsvc.dll -- (Schedule)
SRV - [2008/04/14 05:41:58 | 000,013,824 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\lmhsvc.dll -- (LmHosts)
SRV - [2008/04/14 05:42:08 | 000,249,856 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\WINDOWS\SYSTEM32\tapisrv.dll -- (TapiSrv)
SRV - [2008/04/14 05:42:08 | 000,295,424 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\WINDOWS\SYSTEM32\termsrv.dll -- (TermService)
SRV - [2008/04/14 05:42:06 | 000,135,168 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\shsvcs.dll -- (Themes)
SRV - [2008/04/14 05:42:40 | 000,289,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\vssvc.exe -- (VSS)
SRV - [2008/04/14 05:41:52 | 000,042,496 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\audiosrv.dll -- (AudioSrv)
SRV - [2008/04/14 05:41:56 | 000,331,264 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\ipnathlp.dll -- (SharedAccess)
SRV - [2008/04/14 05:42:10 | 000,333,824 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\wiaservc.dll -- (stisvc)
SRV - [2008/04/14 05:42:30 | 000,078,848 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\System32\msiexec.exe -- (MSIServer)
SRV - [2008/04/14 05:42:10 | 000,144,896 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\wbem\wmisvc.dll -- (winmgmt)
No service found with a name of Wmi
SRV - [2008/04/13 20:11:52 | 000,132,096 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\dot3svc.dll -- (Dot3svc)
SRV - [2008/04/14 05:42:12 | 000,483,840 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\wzcsvc.dll -- (WZCSVC)
SRV - [2008/04/14 05:42:10 | 000,132,096 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SYSTEM32\wkssvc.dll -- (lanmanworkstation)

< %SYSTEMDRIVE%\*.exe >
[1998/12/17 14:39:44 | 000,943,835 | ---- | M] () -- C:\winzip70.exe
[2007/10/11 14:48:10 | 009,479,520 | ---- | M] () -- C:\winzip111.exe

< MD5 for: EXPLORER.EXE >
[2008/04/14 05:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 -- C:\WINDOWS\explorer.exe
[2008/04/14 05:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2007/06/13 07:26:04 | 001,033,216 | ---- | M] (Microsoft Corporation) MD5=7712DF0CDDE3A5AC89843E61CD5B3658 -- C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe
[2004/08/04 00:56:50 | 001,032,192 | ---- | M] (Microsoft Corporation) MD5=A0732187050030AE399B241436565E64 -- C:\WINDOWS\$NtUninstallKB938828$\explorer.exe
[2003/03/31 12:00:00 | 001,004,032 | ---- | M] (Microsoft Corporation) MD5=A82B28BFC2E4455FE43022A498C0EF0A -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe

< MD5 for: QMGR.DLL >
[2008/04/14 05:42:04 | 000,409,088 | ---- | M] (Microsoft Corporation) MD5=574738F61FCA2935F5265DC4E5691314 -- C:\WINDOWS\ServicePackFiles\i386\qmgr.dll
[2008/04/13 20:12:04 | 000,409,088 | ---- | M] (Microsoft Corporation) MD5=574738F61FCA2935F5265DC4E5691314 -- C:\WINDOWS\SYSTEM32\bits\qmgr.dll
[2008/04/14 05:42:04 | 000,409,088 | ---- | M] (Microsoft Corporation) MD5=574738F61FCA2935F5265DC4E5691314 -- C:\WINDOWS\SYSTEM32\qmgr.dll
[2003/03/31 07:00:00 | 000,221,696 | ---- | M] (Microsoft Corporation) MD5=6A1CF14D0E7D0B2241F552223769C8A7 -- C:\WINDOWS\$NtServicePackUninstall$\qmgr.dll

< MD5 for: SERVICES >
[2001/08/23 12:00:00 | 000,007,116 | ---- | M] () MD5=95826940E657FE0567A8EC0F2A6AD11A -- C:\WINDOWS\SYSTEM32\DRIVERS\etc\services

< MD5 for: SERVICES.CHM >
[2005/08/18 11:52:26 | 000,227,856 | ---- | M] () MD5=1563E56BB65662A34F593C32B38627B0 -- C:\Program Files\Intuit\QuickBooks\Services.chm

< MD5 for: SERVICES.CSS >
[2004/06/22 13:47:52 | 000,014,222 | ---- | M] () MD5=EEB4B04593F8A413DA1830931D6533BC -- C:\Program Files\Intuit\QuickBooks\Components\Services\services.css

< MD5 for: SERVICES.DAT >
[2014/02/04 02:04:24 | 000,004,168 | ---- | M] () MD5=96511F1626364F3ECB98A1D0D896CB30 -- C:\Documents and Settings\RICK\Local Settings\Temp\jrt\services.dat

< MD5 for: SERVICES.EX_ >
[2004/08/04 00:56:56 | 000,049,955 | ---- | M] () MD5=85A738BA493104ED103B26CADEB8B543 -- C:\WINDOWS\SoftwareDistribution\Download\16b2c96a0c41f4dfdb4d3cc228a4f819\i386\services.ex_

< MD5 for: SERVICES.EXE >
[2008/04/14 05:42:36 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=0E776ED5F7CC9F94299E70461B7B8185 -- C:\WINDOWS\ServicePackFiles\i386\services.exe
[2008/04/14 05:42:36 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=0E776ED5F7CC9F94299E70461B7B8185 -- C:\WINDOWS\SYSTEM32\services.exe
[2003/03/31 12:00:00 | 000,101,376 | ---- | M] (Microsoft Corporation) MD5=E3DF4A0252D287C44606EE55355E1623 -- C:\WINDOWS\$NtServicePackUninstall$\services.exe

< MD5 for: SERVICES.LIF >
[2004/10/22 03:08:44 | 000,159,849 | ---- | M] () MD5=DC00DE1D00079D339A392EF738060966 -- C:\Program Files\Intuit\QuickBooks\Services.lif

< MD5 for: SERVICES.LNK >
[2009/01/08 18:39:26 | 000,001,506 | ---- | M] () MD5=F2200173B4DBC677E3BF449952BEA7A0 -- C:\Documents and Settings\All Users\Start Menu\Programs\Administrative Tools\Services.lnk

< MD5 for: SERVICES.MSC >
[2003/03/31 12:00:00 | 000,033,464 | ---- | M] () MD5=E8089AA2A6F7FEE89B38C1F2D77BA6C6 -- C:\WINDOWS\SYSTEM32\services.msc

< MD5 for: SERVICES.RDB >
[2005/12/15 09:39:22 | 004,554,752 | ---- | M] () MD5=282EE5110CCB8931C70EB1A2494CF04D -- C:\Program Files\OpenOffice.org 2.0\program\services.rdb

< MD5 for: SVCHOST.EXE >
[2003/03/31 12:00:00 | 000,012,800 | ---- | M] (Microsoft Corporation) MD5=0F7D9C87B0CE1FA520473119752C6F79 -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe
[2008/04/14 05:42:38 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=27C6D03BCDB8CFEB96B716F3D8BE3E18 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008/04/14 05:42:38 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=27C6D03BCDB8CFEB96B716F3D8BE3E18 -- C:\WINDOWS\SYSTEM32\svchost.exe
[2013/04/04 14:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\svchost.exe

< MD5 for: USERINIT.EXE >
[2008/04/14 05:42:40 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=A93AEE1928A9D7CE3E16D24EC7380F89 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008/04/14 05:42:40 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=A93AEE1928A9D7CE3E16D24EC7380F89 -- C:\WINDOWS\SYSTEM32\userinit.exe
[2003/03/31 12:00:00 | 000,022,016 | ---- | M] (Microsoft Corporation) MD5=E931E0A2B8BF0019DB902E98D03662CB -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe

< MD5 for: WINLOGON.EXE >
[2003/03/31 12:00:00 | 000,516,608 | ---- | M] (Microsoft Corporation) MD5=2246D8D8F4714A2CEDB21AB9B1849ABB -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2013/04/04 14:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe
[2008/04/14 05:42:40 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008/04/14 05:42:40 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E -- C:\WINDOWS\SYSTEM32\winlogon.exe

< MD5 for: WINSOCK.DLL >
[2003/03/31 12:00:00 | 000,002,864 | ---- | M] (Microsoft Corporation) MD5=68485C5EF0E2EFCEBF21BBB1042B823B -- C:\WINDOWS\SYSTEM32\dllcache\winsock.dll
[2003/03/31 12:00:00 | 000,002,864 | ---- | M] (Microsoft Corporation) MD5=68485C5EF0E2EFCEBF21BBB1042B823B -- C:\WINDOWS\SYSTEM32\winsock.dll

< dir "%systemdrive%\*" /S /A:L /C >
Volume in drive C has no label.
Volume Serial Number is 07D0-0A0D

< End of report >

----------------------------
Lot of posts back and forth, but I think I got everything you were wanting.... if not, just let me know and I'll correct it.
  • 0

#15
Machiavelli

Machiavelli

    GeekU Moderator

  • GeekU Moderator
  • 4,722 posts
Hello Cotutor.

Currently I have myself big, big Internet problems. I will probably able to work on that topic on Friday. So sorry for that.

Regards,
Machiavelli
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP