Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Computer keeps rebooting itself? [Solved]


  • This topic is locked This topic is locked

#76
Dakeyras

Dakeyras

    Anti-Malware Mammoth

  • Expert
  • 9,684 posts

OK that worked. I have rebooted into safe mode. Should I just post the log? Or continue with malware bytes?

The latter(as long as it is actually Safe Mode with Networking so MBAM can check for updates etc) please then post both logs in your next reply. :)
  • 0

Advertisements


#77
Faithsa

Faithsa

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 190 posts
========== FILES ==========
C:\Program Files\AVG\AVG9 folder moved successfully.
C:\Program Files\AVG folder moved successfully.
File\Folder C:\PROGRA~1\MYWEBS~1 not found.
File\Folder C:\PROGRA~1\VIDEOD~2 not found.
C:\Program Files\Google\Chrome\Temp(3)\source4528_7287\Chrome-bin\33.0.1750.117\VisualElements folder moved successfully.
C:\Program Files\Google\Chrome\Temp(3)\source4528_7287\Chrome-bin\33.0.1750.117\PepperFlash folder moved successfully.
C:\Program Files\Google\Chrome\Temp(3)\source4528_7287\Chrome-bin\33.0.1750.117\Locales folder moved successfully.
C:\Program Files\Google\Chrome\Temp(3)\source4528_7287\Chrome-bin\33.0.1750.117\Extensions folder moved successfully.
C:\Program Files\Google\Chrome\Temp(3)\source4528_7287\Chrome-bin\33.0.1750.117\default_apps folder moved successfully.
C:\Program Files\Google\Chrome\Temp(3)\source4528_7287\Chrome-bin\33.0.1750.117 folder moved successfully.
C:\Program Files\Google\Chrome\Temp(3)\source4528_7287\Chrome-bin folder moved successfully.
C:\Program Files\Google\Chrome\Temp(3)\source4528_7287 folder moved successfully.
C:\Program Files\Google\Chrome\Temp(3) folder moved successfully.
C:\Program Files\Google\Chrome\Temp(2)\source6028_13201\Chrome-bin\33.0.1750.146\VisualElements folder moved successfully.
C:\Program Files\Google\Chrome\Temp(2)\source6028_13201\Chrome-bin\33.0.1750.146\PepperFlash folder moved successfully.
C:\Program Files\Google\Chrome\Temp(2)\source6028_13201\Chrome-bin\33.0.1750.146\Locales folder moved successfully.
C:\Program Files\Google\Chrome\Temp(2)\source6028_13201\Chrome-bin\33.0.1750.146\Installer folder moved successfully.
C:\Program Files\Google\Chrome\Temp(2)\source6028_13201\Chrome-bin\33.0.1750.146\Extensions folder moved successfully.
C:\Program Files\Google\Chrome\Temp(2)\source6028_13201\Chrome-bin\33.0.1750.146\default_apps folder moved successfully.
C:\Program Files\Google\Chrome\Temp(2)\source6028_13201\Chrome-bin\33.0.1750.146 folder moved successfully.
C:\Program Files\Google\Chrome\Temp(2)\source6028_13201\Chrome-bin folder moved successfully.
C:\Program Files\Google\Chrome\Temp(2)\source6028_13201 folder moved successfully.
C:\Program Files\Google\Chrome\Temp(2) folder moved successfully.
C:\Program Files\Google\Chrome folder moved successfully.
C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.0.0 folder moved successfully.
C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater folder moved successfully.
C:\Program Files\Common Files\AVG Secure Search\ToolBandTlb\18.0.0 folder moved successfully.
C:\Program Files\Common Files\AVG Secure Search\ToolBandTlb folder moved successfully.
C:\Program Files\Common Files\AVG Secure Search\ScriptHelperInstaller\18.0.0 folder moved successfully.
C:\Program Files\Common Files\AVG Secure Search\ScriptHelperInstaller folder moved successfully.
C:\Program Files\Common Files\AVG Secure Search folder moved successfully.
C:\Documents and Settings\Owner\Application Data\AVG SafeGuard toolbar\cache folder moved successfully.
C:\Documents and Settings\Owner\Application Data\AVG SafeGuard toolbar folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\skin folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\zh-tw folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\zh-cn folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\tr folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\th folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\sv folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\sr folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\sk folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\ru folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\ro folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\pt-br folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\pt folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\pl folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\nl folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\nb folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\ms folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\ko folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\ja folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\it folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\id folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\hu folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\hi folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\fr folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\fi folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\es-es folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\es folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\en folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\el folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\de folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\da folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\cs folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale\af folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules\locale folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\modules folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\locale\en-US folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\locale folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\components folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248\chrome folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt\18.0.0.248 folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\FireFoxExt folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\CrashReport folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\ChromeExt\18.0.0.248 folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar\ChromeExt folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar folder moved successfully.
C:\Program Files\AVG SafeGuard toolbar(2)\UninstallRes\ClientPackage\Images\uninstall folder moved successfully.
C:\Program Files\AVG SafeGuard toolbar(2)\UninstallRes\ClientPackage\Images folder moved successfully.
C:\Program Files\AVG SafeGuard toolbar(2)\UninstallRes\ClientPackage folder moved successfully.
C:\Program Files\AVG SafeGuard toolbar(2)\UninstallRes folder moved successfully.
C:\Program Files\AVG SafeGuard toolbar(2)\Licenses folder moved successfully.
C:\Program Files\AVG SafeGuard toolbar(2)\EnableHelperRes\Images folder moved successfully.
C:\Program Files\AVG SafeGuard toolbar(2)\EnableHelperRes folder moved successfully.
C:\Program Files\AVG SafeGuard toolbar(2)\DSPDlg_IE folder moved successfully.
C:\Program Files\AVG SafeGuard toolbar(2)\ChromeRes\AVG Secure Search folder moved successfully.
C:\Program Files\AVG SafeGuard toolbar(2)\ChromeRes\AVG SafeGuard toolbar folder moved successfully.
C:\Program Files\AVG SafeGuard toolbar(2)\ChromeRes\AVG Nation toolbar folder moved successfully.
C:\Program Files\AVG SafeGuard toolbar(2)\ChromeRes folder moved successfully.
C:\Program Files\AVG SafeGuard toolbar(2)\ChromeGuardRes folder moved successfully.
C:\Program Files\AVG SafeGuard toolbar(2)\Chrome\content\icons folder moved successfully.
C:\Program Files\AVG SafeGuard toolbar(2)\Chrome\content folder moved successfully.
C:\Program Files\AVG SafeGuard toolbar(2)\Chrome folder moved successfully.
C:\Program Files\AVG SafeGuard toolbar(2)\BundleInstall(2) folder moved successfully.
C:\Program Files\AVG SafeGuard toolbar(2) folder moved successfully.
C:\Program Files\Common Files\Authentium\AntiVirus5\ampse folder moved successfully.
C:\Program Files\Common Files\Authentium\AntiVirus5\ampmf folder moved successfully.
C:\Program Files\Common Files\Authentium\AntiVirus5 folder moved successfully.
File\Folder C:\Documents and Settings\All Users\Application Data\Conduit not found.
C:\WINDOWS\system32\config\systemprofile\Application Data\SearchProtect folder moved successfully.
File\Folder C:\WINDOWS\system32\config\systemprofile\Application Data\SearchProtect not found.
C:\Program Files\Constant Guard Protection Suite\Uninstall folder moved successfully.
C:\Program Files\Constant Guard Protection Suite folder moved successfully.
========== REGISTRY ==========
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\"Start Page"|"http://www.msn.com" /E : value set successfully!
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride deleted successfully.
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks\\"{CFBFAE00-17A6-11D0-99CB-00C04FD64497}"|"" /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found.
Registry key HKEY_CLASSES_ROOT\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found.
Registry value HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\SearchProtect deleted successfully.
Registry value HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\SearchProtect not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{FB5F1910-F110-11d2-BB9E-00C04F795683}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FB5F1910-F110-11d2-BB9E-00C04F795683}\ not found.
Registry key HKEY_CLASSES_ROOT\CLSID\{FB5F1910-F110-11d2-BB9E-00C04F795683}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FB5F1910-F110-11d2-BB9E-00C04F795683}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\avgsecuritytoolbar\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\APSDaemon deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\TkBellExe deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\iTunesHelper deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Weather deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\E2A6CA641BD771C06D3776C293639FEB79099F12._service_run deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\FileHippo.com deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\msnmsgr deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\GarminExpressTrayApp deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DLPSP\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DLQLU\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DLUPDR\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EvtMgr6\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\My Web Search Bar Search Scope Monitor\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MyWebSearch Email Plugin\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OfficeSyncProcess\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SysTrayApp\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VideoDownloadConverter Search Scope Monitor\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VideoDownloadConverter_4z Browser Plugin Loader\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VirtualCloneDrive\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Acrobat Assistant.lnk\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Owner^Start Menu^Programs^Startup^OpenOffice.org 3.2.lnk\ deleted successfully.
========== COMMANDS ==========

OTL by OldTimer - Version 3.2.69.0 log created on 03102014_131725







Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Database version: v2014.03.10.07

Windows XP Service Pack 3 x86 NTFS (Safe Mode/Networking)
Internet Explorer 8.0.6001.18702
Owner :: OWNER-5F64AFAA0 [administrator]

3/10/2014 2:37:51 PM
mbam-log-2014-03-10 (14-37-51).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 241561
Time elapsed: 7 minute(s), 17 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)
  • 0

#78
Dakeyras

Dakeyras

    Anti-Malware Mammoth

  • Expert
  • 9,684 posts
Hi. :)

I'm afraid I am going to be unavailable for the rest of this evening my time(GMT) due to a prior social/personal commitment. So merely power down your machine and leave it switched off please and I will post some further advice/the next course of action for you tomorrow morning, thank you.
  • 0

#79
Faithsa

Faithsa

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 190 posts
no worries. Have fun! And thank you for all your patient help :)
  • 0

#80
Dakeyras

Dakeyras

    Anti-Malware Mammoth

  • Expert
  • 9,684 posts
Hi. :)

no worries. Have fun! And thank you for all your patient help :)

Thank you and you're most welcome!

Carry out the below with your machine running in Safe Mode with Networking please as follows...

Custom Batch File:

Please download the attached combo.bat(below) to your desktop:



Now double-click on combo.bat to run >> once processed it will self delete.

Disable Hibernation:

Please check that this feature is not active...

Click on Start >> Control Panel >> Power Options >> then the Hibernation tab.

If Enable hibernation is selected, please deselect >> Apply >> OK.

Note: You may re-enable again when I give the all clear.

Hard-Drive Maintenance/Repair:

Note: For the CHKDSK portion you may refer to this tutorial of mine here and follow the instructions for Graphical Mode if you so wish.

Click Start >> Run and type cleanmgr in the box and click on OK.

  • Ensure the boxes for Temporary Files, Temporary Internet Files and Recycle Bin are checked.
  • You can choose to check other boxes if you wish but they are not required.
  • Click on OK then Yes. <-- This may take some time.
Next:-
  • Click Start >> Run... then type in CMD and click on OK.
  • At the Command Prompt C:\ > type the following:
  • CD C:\ and hit the Enter/Return key.
  • Now type in DEFRAG C: -F
  • A Analysis report will be displayed and then Windows will start the defragmentation run automatically.
  • This may take some time, when completed the Command Prompt C:\ > will appear.
  • Now type in CHKDSK C: /R and hit the Enter/Return key.
  • When prompted with:

CHKDSK cannot run because the volume is in use by another process
Would you like to schedule this volume to be checked next time the system
restarts (Y/N)

  • Hit the Y key then at the Command Prompt C:\ >
  • Type in EXIT and and hit the Enter/Return key.
  • Now Reboot(Restart) your computer.
Note: Upon Reboot(Restart) the CHKDSK(check-disk) will start and carry out the repairs required.

You should see a screen like this just after the Post(power on self test) screen:

Posted Image

Note: Do not touch either the keyboard or Mouse, otherwise the Check-Disk will be cancelled and you computer will continue to boot-up as normal. Upon completion your machine should automatically boot back into Normal Mode.

Next:

Let myself know when completed the above and we will then go from there, thank you.
  • 0

#81
Faithsa

Faithsa

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 190 posts
I went to Power options and there is no tab for hibernation. The desktop and monitor are currently set to NEVER for power down.
  • 0

#82
Dakeyras

Dakeyras

    Anti-Malware Mammoth

  • Expert
  • 9,684 posts
Acknowledged. :)
  • 0

#83
Faithsa

Faithsa

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 190 posts
OK. It looks like it finally finished.
  • 0

#84
Dakeyras

Dakeyras

    Anti-Malware Mammoth

  • Expert
  • 9,684 posts
Hi. :)

OK. It looks like it finally finished.

Good, lets have a fresh look at the state of the machine now as follows...

Boot.ini Check:

I would like to check the current state of the Boot.ini file to check if it is corrupted or not as follows...

Please download the attached bootini-check.bat(see below) to your desktop.



Now double-click on bootini-check.bat >> once it has processed it will self delete.

There will be a notepad file on the desktop named bootini.txt, post the contents in your next reply.

Scan with Farbar Recovery Scan Tool:

Please download and save Farbar Recovery Scan Tool 32-Bit to your desktop.

  • Double-click on FRST.exe to start FRST >> follow the prompt/click on Yes
  • Under Optional Scan ensure both Drivers MD5 and Addition.txt are selected.
  • Now click on the Scan button/radio tab >> at the Scan completed prompt click on OK
  • At the next prompt denoting Addition.txt is saved in the same location FRST tool is run >> click on OK
  • There will now be two logs on your desktop, Addition.txt and FRST.txt. Post the contents of both in your next reply.

  • 0

#85
Faithsa

Faithsa

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 190 posts
Oh and dying (while I do these latest instructions), my machine rebooted while in safemode with networking yesterday before the disk check was done.
  • 0

Advertisements


#86
Faithsa

Faithsa

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 190 posts
[boot loader]
timeout=30
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect




FARBAR




Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-03-2014
Ran by Owner (administrator) on OWNER-5F64AFAA0 on 12-03-2014 09:53:38
Running from C:\Documents and Settings\Owner\Desktop
Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: English(US)
Internet Explorer Version 8
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingc...can-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingc...can-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe
(LeapFrog Enterprises, Inc.) C:\Program Files\LeapFrog\LeapFrog Connect\Monitor.exe
(Gemalto N.V.) C:\Documents and Settings\Owner\Application Data\SanDisk\SanDiskSecureAccess_Manager.exe
(Adobe Systems Inc.) C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
(Dropbox, Inc.) C:\Documents and Settings\Owner\Application Data\Dropbox\bin\Dropbox.exe
(Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) c:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
(Garmin Ltd or its subsidiaries) C:\Program Files\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
() C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(LeapFrog Enterprises, Inc.) C:\Program Files\LeapFrog\LeapFrog Connect\CommandService.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
() C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Farbar) C:\Documents and Settings\Owner\Desktop\FRST(1).exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2014-01-12] (AVAST Software)
HKLM\...\Run: [EvtMgr6] - C:\Program Files\Logitech\SetPointP\SetPoint.exe [2296600 2013-07-31] (Logitech, Inc.)
HKLM\...\Run: [Monitor] - C:\Program Files\LeapFrog\LeapFrog Connect\Monitor.exe [106496 2013-11-27] (LeapFrog Enterprises, Inc.)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
HKU\S-1-5-21-1482476501-412668190-1417001333-1003\...\Run: [SanDiskSecureAccess_Manager.exe] - C:\Documents and Settings\Owner\Application Data\SanDisk\SanDiskSecureAccess_Manager.exe [30705792 2012-12-23] (Gemalto N.V.)
Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Acrobat Assistant.lnk
ShortcutTarget: Acrobat Assistant.lnk -> C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe (Adobe Systems Inc.)
Startup: C:\Documents and Settings\Owner\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Documents and Settings\Owner\Application Data\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft...=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xB4433B2FDBDDCE01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {B156CE15-8648-4CE0-8E98-2A424CE71429} URL = http://us.yhs.search...p={searchTerms}
BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll ()
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
Toolbar: HKLM - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll ()
Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKCU - &Address - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
Toolbar: HKCU - &Links - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
Toolbar: HKCU - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
Toolbar: HKCU - No Name - {DD662A0C-12FE-4B38-BA53-247F7EC82F46} - No File
Toolbar: HKCU - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll ()
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.micros...b?1279485110015
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset...lineScanner.cab
DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab
DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} http://content.syste...el_4.1.66.0.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\0zyzye2a.default
FF DefaultSearchEngine: AVG Secure Search
FF SelectedSearchEngine: AVG Secure Search
FF Homepage: hxxp://mysearch.avg.com?cid={92F66936-9348-4EC0-B63B-0D9177942433}&mid=1d4d15f6c6416e4b8db9cb0750829da1-a8d76063693a0a3d646f63578c80f896143d272e&lang=en&ds=ts024&coid=avgtbdists&cmpid=&pr=sa&d=2014-03-06 14:21:01&v=18.0.0.248&pid=safeguard&sg=&sap=hp
FF Keyword.URL: user_pref("keyword.URL", "");
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin: @Apple.com/iTunes,version=1.0 - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @real.com/nppl3260;version=16.0.3.51 - c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlchromebrowserrecordext;version=1.3.3 - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlhtml5videoshim;version=1.3.3 - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlpepperflashvideoshim;version=1.3.3 - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpplugin;version=16.0.3.51 - c:\program files\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF Plugin: @realnetworks.com/npdlplugin;version=1 - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF Plugin: @videolan.org/vlc,version=2.0.7 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.0 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: amazon.com/AmazonMP3DownloaderPlugin - C:\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin101752.dll (Amazon.com, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPcol400.dll (Catalina Marketing Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nprpplugin.dll (RealPlayer)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\safeguard-secure-search.xml
FF Extension: foof - C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\0zyzye2a.default\Extensions\[email protected] [2010-09-28]
FF Extension: Garmin Communicator - C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\0zyzye2a.default\Extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E} [2013-11-22]
FF Extension: Updated Ad Blocker for Firefox 11+ - C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\0zyzye2a.default\Extensions\{4DC70064-89E2-4a55-8FC6-E8CDEAE3618C}.xpi [2013-01-04]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-03-08]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-03-08]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVG\AVG10\Toolbar\Firefox\[email protected]
FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-11-15]
FF HKLM\...\Firefox\Extensions: [{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}] - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\
FF Extension: RealDownloader - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ []
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-11-17]

Chrome:
=======
CHR HomePage: https://mail.google....0/?shva=1#inbox
CHR Plugin: (Shockwave Flash) - c:\program files\Google\Chrome\Application\33.0.1750.146\PepperFlash\pepflashplayer.dll No File
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - c:\program files\Google\Chrome\Application\33.0.1750.146\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - c:\program files\Google\Chrome\Application\33.0.1750.146\pdf.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (CouponNetwork Coupon Activator Netscape Plugin v. 5.0.0.0) - C:\Program Files\Mozilla Firefox\plugins\NPcol400.dll (Catalina Marketing Corporation)
CHR Plugin: (Coupons Inc., Coupon Printer Manager ) - C:\Program Files\Mozilla Firefox\plugins\npCouponPrinter.dll No File
CHR Plugin: (Coupons Inc., Coupon Printer Manager ) - C:\Program Files\Mozilla Firefox\plugins\npMozCouponPrinter.dll No File
CHR Plugin: (RealPlayer™ G2 LiveConnect-Enabled Plug-In (32-bit) ) - C:\Program Files\Mozilla Firefox\plugins\nppl3260.dll (RealNetworks, Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll No File
CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll No File
CHR Plugin: (RealPlayer Download Plugin) - C:\Program Files\Mozilla Firefox\plugins\nprpplugin.dll (RealPlayer)
CHR Plugin: (Microsoft® DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation)
CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.))
CHR Plugin: (Microsoft® DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation)
CHR Plugin: (RealNetworks™ RealDownloader Chrome Background Extension Plug-In (32-bit) ) - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
CHR Plugin: (RealNetworks™ RealDownloader HTML5VideoShim Plug-In (32-bit) ) - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
CHR Plugin: (RealNetworks™ RealDownloader PepperFlashVideoShim Plug-In (32-bit) ) - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
CHR Plugin: (RealDownloader Plugin) - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
CHR Plugin: (npAPI Plugin) - C:\Documents and Settings\Owner\Local Settings\Application Data\TNT2\2.0.0.1378\npTNT2.dll No File
CHR Plugin: (npAPI Ghost Plugin) - C:\Documents and Settings\Owner\Local Settings\Application Data\TNT2\2.0.0.1378\npTNT2ghost.dll No File
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (AmazonMP3DownloaderPlugin) - C:\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin101752.dll (Amazon.com, Inc.)
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll No File
CHR Plugin: (Java™ Platform SE 7 U7) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (My Web Search Plugin Stub) - C:\Program Files\MyWebSearch\bar\1.bin\NPMyWebS.dll No File
CHR Plugin: (MindSpark Toolbar Platform Plugin Stub) - C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\NP4zStub.dll No File
CHR Plugin: (VLC Web Plugin) - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
CHR Plugin: (iTunes Application Detector) - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_5_502_146.dll No File
CHR Plugin: (Java Deployment Toolkit 7.0.70.10) - C:\WINDOWS\system32\npDeployJava1.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File
CHR Extension: (Google Docs) - C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-01-12]
CHR Extension: (Google Drive) - C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-01-12]
CHR Extension: (YouTube) - C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-01-12]
CHR Extension: (Adblock Plus) - C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-07-11]
CHR Extension: (Google Search) - C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-01-12]
CHR Extension: (avast! Online Security) - C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-11-17]
CHR Extension: (JavaScript Popup Blocker) - C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\hiajdlfgbgnnjakkbnpdhmhfhklkbiol [2013-07-25]
CHR Extension: (RealDownloader) - C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2013-01-12]
CHR Extension: (Skype Click to Call) - C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2013-06-27]
CHR Extension: (Google Wallet) - C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-18]
CHR Extension: (Gmail) - C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-01-12]
CHR Extension: (No Name) - C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2) [2014-03-07]
CHR HKLM\...\Chrome\Extension: [ghpojlibcpogojejobfihneicgooekmg] - C:\Documents and Settings\Owner\Local Settings\Application Data\TidyNetwork.com\tidy.crx [2014-03-07]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2013-11-17]
CHR HKLM\...\Chrome\Extension: [hgeaklkciolgbejekedbdphhbjbiaamp] - C:\Documents and Settings\Owner\Local Settings\Application Data\CRE\hgeaklkciolgbejekedbdphhbjbiaamp.crx [2013-11-17]
CHR HKLM\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-08-14]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-10-09]
CHR HKCU\...\Chrome\Extension: [hgeaklkciolgbejekedbdphhbjbiaamp] - C:\Documents and Settings\Owner\Local Settings\Application Data\CRE\hgeaklkciolgbejekedbdphhbjbiaamp.crx [2013-10-09]

========================== Services (Whitelisted) =================

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-12] (AVAST Software)
R2 Garmin Core Update Service; C:\Program Files\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [250712 2013-11-08] (Garmin Ltd or its subsidiaries)
R2 IJPLMSVC; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [116104 2009-02-10] ()
R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-01-22] (Oracle Corporation)
R2 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-08-14] ()

==================== Drivers (Whitelisted) ====================

S3 ADM8511; C:\WINDOWS\System32\DRIVERS\NET8511.SYS [24424 2001-04-09] (ADMtek)
R1 aswKbd; C:\WINDOWS\system32\Drivers\aswKbd.sys [20624 2012-10-30] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [67824 2014-01-12] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [54832 2014-01-12] (AVAST Software)
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [775952 2014-01-12] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [410528 2014-01-12] (AVAST Software)
R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57672 2014-01-12] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [180248 2014-01-12] ()
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [16384 2004-07-09] (Microsoft Corporation)
S3 cpudrv; C:\Program Files\SystemRequirementsLab\cpudrv.sys [11336 2009-12-18] ()
R1 ElbyCDIO; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [26024 2009-12-17] (Elaborate Bytes AG)
S3 FlyUsb; C:\WINDOWS\System32\DRIVERS\FlyUsb.sys [18560 2011-08-05] (LeapFrog)
R3 LEqdUsb; C:\WINDOWS\System32\Drivers\LEqdUsb.Sys [42264 2013-05-23] (Logitech, Inc.)
R3 LHidEqd; C:\WINDOWS\System32\Drivers\LHidEqd.Sys [10136 2013-05-23] (Logitech, Inc.)
S3 LUsbFilt; C:\WINDOWS\System32\Drivers\LUsbFilt.Sys [28312 2013-05-23] (Logitech, Inc.)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation)
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10112 2004-07-09] (Microsoft Corporation)
R3 STHDA; C:\WINDOWS\System32\drivers\sthda.sys [1550613 2009-03-12] (IDT, Inc.)
S1 AntiLog32; \??\C:\WINDOWS\system32\drivers\AntiLog32.sys [X]
S3 AVGIDSShim; system32\DRIVERS\AVGIDSShim.Sys [X]
S4 IntelIde; No ImagePath
S3 keycrypt; system32\DRIVERS\KeyCrypt32.sys [X]
U1 WS2IFSL;

========================== Drivers MD5 =======================

C:\WINDOWS\System32\DRIVERS\ACPI.sys 8FD99680A539792A30E97944FDAECF17
C:\WINDOWS\system32\Drivers\ACPIEC.sys 9859C0F6936E723E4892D7141B1327D5
C:\WINDOWS\System32\DRIVERS\NET8511.SYS D3FD36C3DAB82CD4C85A4BD9A6538A6B
C:\WINDOWS\System32\drivers\aec.sys 8BED39E3C35D6A489438B8141717A557
C:\WINDOWS\System32\drivers\afd.sys 1E44BC1E83D8FD2305F8D452DB109CF9
C:\WINDOWS\System32\DRIVERS\arp1394.sys B5B8A80875C1DEDEDA8B02765642C32F
C:\WINDOWS\system32\Drivers\aswKbd.sys E2FEE0486D68BF85355D3EDA1A24FF68
C:\WINDOWS\system32\drivers\aswMonFlt.sys 6F1505608202BBD179095A6A150D103F
C:\WINDOWS\system32\drivers\aswRdr.sys B269C41DF93EFF71DF0986BD982D1C46
C:\WINDOWS\system32\drivers\aswSnx.sys 0F639D0526820BA7872C963813E0EB8D
C:\WINDOWS\system32\drivers\aswSP.sys 7BA7543EA7936A7ADA615F6DE7C95494
C:\WINDOWS\system32\drivers\aswTdi.sys 875D2B1054F2ECD8F575D6CBE78DD7BA
C:\WINDOWS\system32\Drivers\aswVmm.sys 1B0662514A68C3A42E60D240C5ABEF28
C:\WINDOWS\System32\DRIVERS\asyncmac.sys B153AFFAC761E7F5FCFA822B9C4E97BC
C:\WINDOWS\System32\DRIVERS\atapi.sys 9F3A2F5AA6875C72BF062C712CFA2674
C:\WINDOWS\System32\DRIVERS\atmarpc.sys 9916C1225104BA14794209CFA8012159
C:\WINDOWS\System32\DRIVERS\audstub.sys D9F724AA26C010A217C97606B160ED68
C:\WINDOWS\system32\Drivers\Beep.sys DA1F27D85E0D1525F6621372E7B685E9
C:\WINDOWS\system32\Drivers\cbidf2k.sys 90A673FC8E12A79AFBED2576F6A7AAF9
C:\WINDOWS\System32\DRIVERS\CCDECODE.sys FDC06E2ADA8C468EBB161624E03976CF
C:\WINDOWS\system32\Drivers\Cdaudio.sys C1B486A7658353D33A10CC15211A873B
C:\WINDOWS\system32\Drivers\Cdfs.sys C885B02847F5D2FD45A24E219ED93B32
C:\WINDOWS\System32\DRIVERS\cdrom.sys 1F4260CC5B42272D71F79E570A27A4FE
C:\Program Files\SystemRequirementsLab\cpudrv.sys D01F685F8B4598D144B0CCE9FF95D8D5
C:\WINDOWS\System32\DRIVERS\disk.sys 044452051F3E02E7963599FC8F4F3E25
C:\WINDOWS\System32\drivers\dmboot.sys D992FE1274BDE0F84AD826ACAE022A41
C:\WINDOWS\System32\drivers\dmio.sys 7C824CF7BBDE77D95C08005717A95F6F
C:\WINDOWS\System32\drivers\dmload.sys E9317282A63CA4D188C0DF5E09C6AC5F
C:\WINDOWS\System32\drivers\DMusic.sys 8A208DFCF89792A484E76C40E5F50B45
C:\WINDOWS\System32\drivers\drmkaud.sys 8F5FCFF8E8848AFAC920905FBD9D33C8
C:\WINDOWS\System32\DRIVERS\e1e5132.sys 6DE32A9123EF60F9D423E9163AF0E305
C:\WINDOWS\System32\Drivers\ElbyCDIO.sys 44996A2ADDD2DB7454F2CA40B67D8941
C:\WINDOWS\system32\Drivers\Fastfat.sys 38D332A6D56AF32635675F132548343E
C:\WINDOWS\System32\DRIVERS\fdc.sys 92CDD60B6730B9F50F6A1A0C1F8CDC81
C:\WINDOWS\system32\Drivers\Fips.sys D45926117EB9FA946A6AF572FBE1CAA3
C:\WINDOWS\system32\Drivers\Flpydisk.sys 9D27E7B80BFCDF1CDD9B555862D5E7F0
C:\WINDOWS\System32\DRIVERS\fltMgr.sys B2CF4B0786F8212CB92ED2B50C6DB6B0
C:\WINDOWS\System32\DRIVERS\FlyUsb.sys 8EFA9BFC940D9EB9348D9DAFB839FE25
C:\WINDOWS\system32\Drivers\Fs_Rec.sys 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A
C:\WINDOWS\System32\DRIVERS\ftdisk.sys 6AC26732762483366C3969C9E4D2259D
C:\WINDOWS\System32\DRIVERS\GEARAspiWDM.sys 185ADA973B5020655CEE342059A86CBB
C:\WINDOWS\System32\DRIVERS\msgpc.sys 0A02C63C8B144BD8C86B103DEE7C86A2
C:\WINDOWS\System32\DRIVERS\HDAudBus.sys 573C7D0A32852B48F3058CFD8026F511
C:\WINDOWS\System32\DRIVERS\hidusb.sys CCF82C5EC8A7326C3066DE870C06DAF1
C:\WINDOWS\System32\Drivers\HTTP.sys F80A415EF82CD06FFAF0D971528EAD38
C:\WINDOWS\system32\Drivers\i8042prt.sys 4A0B06AA8943C1E332520F7440C0AA30
C:\WINDOWS\System32\DRIVERS\igxpmp32.sys C5DB546F9028CD00E64335091860D8F3
C:\WINDOWS\System32\DRIVERS\imapi.sys 083A052659F5310DD8B6A6CB05EDCF8E
C:\WINDOWS\System32\DRIVERS\intelppm.sys 8C953733D8F36EB2133F5BB58808B66B
C:\WINDOWS\System32\DRIVERS\Ip6Fw.sys 3BB22519A194418D5FEC05D800A19AD0
C:\WINDOWS\System32\DRIVERS\ipfltdrv.sys 731F22BA402EE4B62748ADAF6363C182
C:\WINDOWS\System32\DRIVERS\ipinip.sys B87AB476DCF76E72010632B5550955F5
C:\WINDOWS\System32\DRIVERS\ipnat.sys CC748EA12C6EFFDE940EE98098BF96BB
C:\WINDOWS\System32\DRIVERS\ipsec.sys 23C74D75E36E7158768DD63D92789A91
C:\WINDOWS\System32\DRIVERS\irenum.sys C93C9FF7B04D772627A3646D89F7BF89
C:\WINDOWS\System32\DRIVERS\isapnp.sys 05A299EC56E52649B1CF2FC52D20F2D7
C:\WINDOWS\System32\DRIVERS\kbdclass.sys 463C1EC80CD17420A542B7F36A36F128
C:\WINDOWS\System32\DRIVERS\kbdhid.sys 9EF487A186DEA361AA06913A75B3FA99
C:\WINDOWS\System32\drivers\kmixer.sys 692BCF44383D056AED41B045A323D378
C:\WINDOWS\system32\Drivers\KSecDD.sys B467646C54CC746128904E1654C750C1
C:\WINDOWS\System32\Drivers\LBeepKE.sys CF9F4EFDF34FA5BF96FA2AB8F2255CE8
C:\WINDOWS\System32\Drivers\LEqdUsb.Sys 59CED2543392EB10B2E8FEAE87A5D248
C:\WINDOWS\System32\Drivers\LHidEqd.Sys 26163F0F1C2636AE3FFF7C54600204A5
C:\WINDOWS\System32\DRIVERS\LHidFilt.Sys 74EA099C3D9DAD3A657BD89ED4A81C6D
C:\WINDOWS\System32\DRIVERS\LMouFilt.Sys E9D42CDD5BD22BE28247B77953735650
C:\WINDOWS\System32\Drivers\LUsbFilt.Sys 3A7A37B972E4F487C7D6963B53684710
C:\WINDOWS\system32\drivers\mbam.sys 4470E3C1E0C3378E4CAB137893C12C3A
C:\WINDOWS\system32\Drivers\mnmdd.sys 4AE068242760A1FB6E1A44BF4E16AFA6
C:\WINDOWS\system32\Drivers\Modem.sys DFCBAD3CEC1C5F964962AE10E0BCC8E1
C:\WINDOWS\System32\DRIVERS\mouclass.sys 35C9E97194C8CFB8430125F8DBC34D04
C:\WINDOWS\System32\DRIVERS\mouhid.sys B1C303E17FB9D46E87A98E4BA6769685
C:\WINDOWS\system32\Drivers\MountMgr.sys A80B9A0BAD1B73637DBCBBA7DF72D3FD
C:\WINDOWS\System32\DRIVERS\mrxdav.sys 11D42BB6206F33FBB3BA0288D3EF81BD
C:\WINDOWS\System32\DRIVERS\mrxsmb.sys 7D304A5EB4344EBEEAB53A2FE3FFB9F0
C:\WINDOWS\system32\Drivers\Msfs.sys C941EA2454BA8350021D774DAF0F1027
C:\WINDOWS\System32\drivers\MSKSSRV.sys D1575E71568F4D9E14CA56B7B0453BF1
C:\WINDOWS\System32\drivers\MSPCLOCK.sys 325BB26842FC7CCC1FCCE2C457317F3E
C:\WINDOWS\System32\drivers\MSPQM.sys BAD59648BA099DA4A17680B39730CB3D
C:\WINDOWS\System32\DRIVERS\mssmbios.sys AF5F4F3F14A8EA2C26DE30F7A1E17136
C:\WINDOWS\System32\drivers\MSTEE.sys D5059366B361F0E1124753447AF08AA2
C:\WINDOWS\system32\Drivers\Mup.sys DE6A75F5C270E756C5508D94B6CF68F5
C:\WINDOWS\System32\DRIVERS\NABTSFEC.sys AC31B352CE5E92704056D409834BEB74
C:\WINDOWS\system32\Drivers\NDIS.sys 1DF7F42665C94B825322FAE71721130D
C:\WINDOWS\System32\DRIVERS\NdisIP.sys ABD7629CF2796250F315C1DD0B6CF7A0
C:\WINDOWS\System32\DRIVERS\ndistapi.sys 0109C4F3850DFBAB279542515386AE22
C:\WINDOWS\System32\DRIVERS\ndisuio.sys F927A4434C5028758A842943EF1A3849
C:\WINDOWS\System32\DRIVERS\ndiswan.sys EDC1531A49C80614B2CFDA43CA8659AB
C:\WINDOWS\system32\Drivers\NDProxy.sys 9282BD12DFB069D3889EB3FCC1000A9B
C:\WINDOWS\System32\DRIVERS\netbios.sys 5D81CF9A2F1A3A756B66CF684911CDF0
C:\WINDOWS\System32\DRIVERS\netbt.sys 74B2B2F5BEA5E9A3DC021D685551BD3D
C:\WINDOWS\System32\DRIVERS\nic1394.sys E9E47CFB2D461FA0FC75B7A74C6383EA
C:\WINDOWS\system32\Drivers\Npfs.sys 3182D64AE053D6FB034F44B6DEF8034A
C:\WINDOWS\system32\Drivers\Ntfs.sys 78A08DD6A8D65E697C18E1DB01C5CDCA
C:\WINDOWS\system32\Drivers\Null.sys 73C1E1F395918BC2C6DD67AF7591A3AD
C:\WINDOWS\System32\DRIVERS\nwlnkflt.sys B305F3FAD35083837EF46A0BBCE2FC57
C:\WINDOWS\System32\DRIVERS\nwlnkfwd.sys C99B3415198D1AAB7227F2C88FD664B9
C:\WINDOWS\System32\DRIVERS\ohci1394.sys CA33832DF41AFB202EE7AEB05145922F
C:\WINDOWS\system32\Drivers\Parport.sys 5575FAF8F97CE5E713D108C2A58D7C7C
C:\WINDOWS\system32\Drivers\PartMgr.sys BEB3BA25197665D82EC7065B724171C6
C:\WINDOWS\system32\Drivers\ParVdm.sys 70E98B3FD8E963A6A46A2E6247E0BEA1
C:\WINDOWS\System32\DRIVERS\pci.sys A219903CCF74233761D92BEF471A07B1
C:\WINDOWS\System32\DRIVERS\pciide.sys CCF5F451BB1A5A2A522A76E670000FF0
C:\WINDOWS\system32\Drivers\Pcmcia.sys 9E89EF60E9EE05E3F2EEF2DA7397F1C1
C:\WINDOWS\System32\DRIVERS\raspptp.sys EFEEC01B1D3CF84F16DDD24D9D9D8F99
C:\WINDOWS\System32\DRIVERS\psched.sys 09298EC810B07E5D582CB3A3F9255424
C:\WINDOWS\System32\DRIVERS\ptilink.sys 80D317BD1C3DBC5D4FE7B1678C60CADD
C:\WINDOWS\System32\DRIVERS\rasacd.sys FE0D99D6F31E4FAD8159F690D68DED9C
C:\WINDOWS\System32\DRIVERS\rasl2tp.sys 11B4A627BC9614B885C4969BFA5FF8A6
C:\WINDOWS\System32\DRIVERS\raspppoe.sys 5BC962F2654137C9909C3D4603587DEE
C:\WINDOWS\System32\DRIVERS\raspti.sys FDBB1D60066FCFBB7452FD8F9829B242
C:\WINDOWS\System32\DRIVERS\rdbss.sys 7AD224AD1A1437FE28D89CF22B17780A
C:\WINDOWS\System32\DRIVERS\RDPCDD.sys 4912D5B403614CE99C28420F75353332
C:\WINDOWS\System32\DRIVERS\rdpdr.sys 15CABD0F7C00C47C70124907916AF3F1
C:\WINDOWS\system32\Drivers\RDPWD.sys FC105DD312ED64EB66BFF111E8EC6EAC
C:\WINDOWS\System32\DRIVERS\redbook.sys F828DD7E1419B6653894A8F97A0094C5
C:\WINDOWS\System32\DRIVERS\secdrv.sys ==> MD5 is legit
C:\WINDOWS\System32\DRIVERS\serenum.sys 0F29512CCD6BEAD730039FB4BD2C85CE
C:\WINDOWS\System32\DRIVERS\serial.sys CCA207A8896D4C6A0C9CE29A4AE411A7
C:\WINDOWS\system32\Drivers\Sfloppy.sys 8E6B8C671615D126FDC553D1E2DE5562
C:\WINDOWS\System32\DRIVERS\SLIP.sys 1FFC44D6787EC1EA9A2B1440A90FA5C1
C:\WINDOWS\System32\drivers\splitter.sys AB8B92451ECB048A4D1DE7C3FFCB4A9F
C:\WINDOWS\System32\DRIVERS\sr.sys 76BB022C2FB6902FD5BDD4F78FC13A5D
C:\WINDOWS\System32\DRIVERS\srv.sys 47DDFC2F003F7F9F0592C6874962A2E7
C:\WINDOWS\System32\drivers\sthda.sys 228519217A88C2F6B0CF8C022E6D669C
C:\WINDOWS\System32\DRIVERS\StreamIP.sys A9F9FD0212E572B84EDB9EB661F6BC04
C:\WINDOWS\System32\DRIVERS\swenum.sys 3941D127AEF12E93ADDF6FE6EE027E0F
C:\WINDOWS\System32\drivers\swmidi.sys 8CE882BCC6CF8A62F2B2323D95CB3D01
C:\WINDOWS\System32\drivers\sysaudio.sys 8B83F3ED0F1688B4958F77CD6D2BF290
C:\WINDOWS\System32\DRIVERS\tcpip.sys 9AEFA14BD6B182D61E3119FA5F436D3D
C:\WINDOWS\system32\Drivers\TDPIPE.sys 6471A66807F5E104E4885F5B67349397
C:\WINDOWS\system32\Drivers\TDTCP.sys C56B6D0402371CF3700EB322EF3AAF61
C:\WINDOWS\System32\DRIVERS\termdd.sys 88155247177638048422893737429D9E
C:\WINDOWS\system32\Drivers\Udfs.sys 5787B80C2E3C5E2F56C2A233D91FA2C9
C:\WINDOWS\System32\DRIVERS\update.sys 402DDC88356B1BAC0EE3DD1580C76A31
C:\WINDOWS\System32\Drivers\usbaapl.sys 6E421CCC57059B0186C6259CA3B6DFC9
C:\WINDOWS\System32\drivers\usbaudio.sys E919708DB44ED8543A7C017953148330
C:\WINDOWS\System32\DRIVERS\usbccgp.sys 173F317CE0DB8E21322E71B7E60A27E8
C:\WINDOWS\System32\DRIVERS\usbehci.sys 65DCF09D0E37D4C6B11B5B0B76D470A7
C:\WINDOWS\System32\DRIVERS\usbhub.sys 1AB3CDDE553B6E064D2E754EFE20285C
C:\WINDOWS\System32\DRIVERS\usbprint.sys A717C8721046828520C9EDF31288FC00
C:\WINDOWS\System32\DRIVERS\usbscan.sys A0B8CF9DEB1184FBDD20784A58FA75D4
C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS A32426D9B14A089EAA1D922E0C5801A9
C:\WINDOWS\System32\DRIVERS\usbuhci.sys 26496F9DEE2D787FC3E61AD54821FFE6
C:\WINDOWS\System32\Drivers\usbvideo.sys 63BBFCA7F390F4C49ED4B96BFB1633E0
C:\WINDOWS\System32\DRIVERS\VClone.sys 94D73B62E458FB56C9CE60AA96D914F9
C:\WINDOWS\System32\drivers\vga.sys 0D3A8FAFCEACD8B7625CD549757A7DF1
C:\WINDOWS\system32\Drivers\VolSnap.sys 4C8FCB5CC53AAB716D810740FE59D025
C:\WINDOWS\System32\DRIVERS\wanarp.sys E20B95BAEDB550F32DD489265C1DA1F6
C:\WINDOWS\System32\Drivers\wdf01000.sys D918617B46457B9AC28027722E30F647
C:\WINDOWS\System32\drivers\wdmaud.sys 6768ACF64B18196494413695F0C3A00F
C:\WINDOWS\System32\DRIVERS\WSTCODEC.SYS 233CDD1C06942115802EB7CE6669E099
C:\WINDOWS\System32\DRIVERS\WudfPf.sys F15FEAFFFBB3644CCC80C5DA584E6311
C:\WINDOWS\System32\DRIVERS\wudfrd.sys 28B524262BCE6DE1F7EF9F510BA3985B

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-03-12 09:52 - 2014-03-12 09:52 - 01145856 _____ (Farbar) C:\Documents and Settings\Owner\Desktop\FRST(1).exe
2014-03-12 09:50 - 2012-12-08 10:37 - 00000211 _____ () C:\Documents and Settings\Owner\Desktop\bootini.txt
2014-03-10 13:16 - 2014-03-10 13:16 - 00004770 _____ () C:\Documents and Settings\Owner\Desktop\fix.txt
2014-03-10 10:11 - 2014-03-10 10:11 - 00602112 _____ (OldTimer Tools) C:\Documents and Settings\Owner\Desktop\OTL(1).exe
2014-03-10 10:08 - 2014-03-10 10:08 - 00000000 ____D () C:\RegBackup
2014-03-10 10:07 - 2014-03-10 10:07 - 03944112 _____ () C:\Documents and Settings\Owner\Desktop\tweaking.com_registry_backup_setup.exe
2014-03-10 10:07 - 2014-03-10 10:07 - 00001876 _____ () C:\Documents and Settings\All Users\Desktop\Tweaking.com - Registry Backup.lnk
2014-03-10 10:07 - 2014-03-10 10:07 - 00000000 ____D () C:\Program Files\Tweaking.com
2014-03-10 10:07 - 2014-03-10 10:07 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Tweaking.com
2014-03-09 22:34 - 2014-03-09 22:34 - 00000363 _____ () C:\Documents and Settings\Owner\Desktop\hddcheck.txt
2014-03-09 22:27 - 2014-03-09 22:27 - 00000000 ____D () C:\Program Files\HD Tune
2014-03-09 22:27 - 2014-03-09 22:27 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\HD Tune
2014-03-09 22:26 - 2014-03-09 22:27 - 00642632 _____ (EFD Software ) C:\Documents and Settings\Owner\Desktop\hdtune_255.exe
2014-03-09 22:23 - 2014-03-09 22:23 - 00005998 _____ () C:\WINDOWS\system32\PerfStringBackup.TMP
2014-03-08 18:33 - 2014-03-09 22:24 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-03-07 20:09 - 2014-03-07 20:09 - 00000381 _____ () C:\Documents and Settings\Owner\My Documents\Natibaby Symphony listing full.log
2014-03-07 17:39 - 2014-03-07 17:40 - 00000000 ____D () C:\rsit
2014-03-07 17:39 - 2014-03-07 17:39 - 00000000 ____D () C:\Program Files\trend micro
2014-03-07 17:38 - 2014-03-07 17:38 - 00781383 _____ () C:\Documents and Settings\Owner\Desktop\RSIT.exe
2014-03-07 14:09 - 2014-03-07 14:09 - 00000000 ____D () C:\_OTL
2014-03-07 14:08 - 2014-03-07 14:08 - 00000000 ____D () C:\AdwCleaner
2014-03-07 14:05 - 2014-03-07 14:05 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-03-07 14:05 - 2014-03-07 14:05 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Skype
2014-03-07 14:04 - 2014-03-07 14:04 - 00000000 ____D () C:\Program Files\iTunes
2014-03-07 14:04 - 2014-03-07 14:04 - 00000000 ____D () C:\Program Files\iPod
2014-03-07 14:04 - 2014-03-07 14:04 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\iTunes
2014-03-07 14:04 - 2014-03-07 14:04 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\188F1432-103A-4ffb-80F1-36B633C5C9E1
2014-03-07 14:01 - 2014-03-07 14:04 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-03-07 14:01 - 2014-03-07 14:01 - 00000000 ____D () C:\Program Files\Bonjour
2014-03-07 14:01 - 2014-03-07 14:01 - 00000000 ____D () C:\Program Files\Apple Software Update
2014-03-07 14:00 - 2014-03-10 13:17 - 00000000 ____D () C:\Program Files\Common Files\Authentium
2014-03-07 14:00 - 2014-03-07 14:00 - 00000000 ____D () C:\Program Files\McAfee Security Scan
2014-03-07 08:38 - 2014-03-07 08:38 - 00000000 ____D () C:\Program Files\Marvell
2014-03-07 08:31 - 2014-03-07 08:31 - 00000146 _____ () C:\WINDOWS\system32\WmiConf.txt
2014-03-07 08:31 - 2014-03-07 08:31 - 00000000 _____ () C:\Rule.txt
2014-03-07 08:29 - 2014-03-07 08:29 - 00000000 ____D () C:\Documents and Settings\Owner\Local Settings\Application Data\Logitech® Webcam Software
2014-03-07 08:24 - 2014-03-07 08:24 - 00000000 ____D () C:\Intel
2014-03-07 08:08 - 2014-03-07 09:03 - 00000000 _____ () C:\WINDOWS\system32\Drivers\lvuvc.hs
2014-03-07 08:08 - 2014-03-07 08:08 - 00005596 _____ () C:\WINDOWS\system32\lvcoinst.log
2014-03-06 23:26 - 2014-03-06 23:35 - 00017387 _____ () C:\Documents and Settings\Owner\My Documents\Wrap list & values 3-6-14.odt
2014-03-06 15:21 - 2014-03-06 15:21 - 00000000 ____D () C:\Documents and Settings\Owner\Local Settings\Application Data\AVG SafeGuard toolbar
2014-03-06 15:20 - 2014-03-06 15:21 - 00003754 _____ () C:\Program Files\Mozilla Firefoxsafeguard-secure-search.xml
2014-03-06 15:20 - 2014-03-06 15:20 - 00000000 ____D () C:\Documents and Settings\Owner\Local Settings\Application Data\SlimWare Utilities Inc
2014-03-06 15:19 - 2014-03-06 15:19 - 00000000 ____D () C:\Documents and Settings\All Users\Documents\Downloaded Installers
2014-03-04 21:25 - 2014-03-04 21:25 - 00035512 _____ () C:\Documents and Settings\Owner\Desktop\03042014_201842.log
2014-03-04 21:19 - 2014-03-04 21:19 - 00000000 ____D () C:\Documents and Settings\NetworkService\Application Data\Garmin
2014-03-04 21:18 - 2014-03-07 14:00 - 00000000 ____D () C:\_OTL(2)
2014-03-04 21:17 - 2014-03-04 21:17 - 00034462 _____ () C:\Documents and Settings\Owner\My Documents\2014 Mar 4 Budget - Hugh & Sabrina.ods
2014-03-03 18:12 - 2014-03-06 10:06 - 00000654 _____ () C:\Documents and Settings\Owner\Desktop\checkhd.txt
2014-03-02 16:27 - 2014-03-02 16:27 - 00000000 ____D () C:\Documents and Settings\Administrator\Local Settings\Application Data\Google
2014-03-02 16:14 - 2014-03-02 16:14 - 00000000 ____D () C:\Documents and Settings\Administrator\IETldCache
2014-03-02 16:13 - 2014-03-11 14:17 - 00000000 __SHD () C:\WINDOWS\CSC
2014-03-02 13:03 - 2014-03-07 14:02 - 00000000 ____D () C:\AdwCleaner(2)
2014-03-02 12:57 - 2014-03-07 14:02 - 00000000 ____D () C:\Program Files\ERUNT
2014-03-02 12:57 - 2014-03-03 16:36 - 00000000 ____D () C:\WINDOWS\ERDNT
2014-03-01 16:23 - 2014-03-12 09:54 - 00036946 _____ () C:\Documents and Settings\Owner\Desktop\FRST.txt
2014-03-01 16:23 - 2014-03-01 16:23 - 00041258 _____ () C:\Documents and Settings\Owner\Desktop\Addition.txt
2014-03-01 16:11 - 2014-03-12 09:53 - 00000000 ____D () C:\FRST
2014-02-24 00:02 - 2013-11-15 22:49 - 00001542 _____ () C:\Documents and Settings\All Users\Desktop\iTunes.lnk
2014-02-24 00:01 - 2014-03-07 14:04 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\188F1432-103A-4ffb-80F1-36B633C5C9E1(2)
2014-02-19 20:05 - 2014-02-19 20:05 - 00000000 ____D () C:\Documents and Settings\Owner\Local Settings\Application Data\Skype
2014-02-19 20:05 - 2013-02-17 16:30 - 00001878 _____ () C:\Documents and Settings\All Users\Desktop\Skype.lnk

==================== One Month Modified Files and Folders =======

2014-03-12 09:54 - 2014-03-01 16:23 - 00036946 _____ () C:\Documents and Settings\Owner\Desktop\FRST.txt
2014-03-12 09:53 - 2014-03-01 16:11 - 00000000 ____D () C:\FRST
2014-03-12 09:52 - 2014-03-12 09:52 - 01145856 _____ (Farbar) C:\Documents and Settings\Owner\Desktop\FRST(1).exe
2014-03-12 09:46 - 2014-01-07 01:24 - 00000000 ___RD () C:\Documents and Settings\Owner\My Documents\Dropbox
2014-03-12 09:46 - 2014-01-07 01:19 - 00000000 ____D () C:\Documents and Settings\Owner\Application Data\Dropbox
2014-03-12 09:46 - 2012-11-18 15:33 - 00000278 _____ () C:\WINDOWS\Tasks\RealUpgradeLogonTaskS-1-5-21-1482476501-412668190-1417001333-1003.job
2014-03-12 09:45 - 2013-12-01 20:14 - 00000278 _____ () C:\WINDOWS\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1482476501-412668190-1417001333-1003.job
2014-03-12 09:45 - 2013-11-17 10:19 - 00000364 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job
2014-03-12 09:45 - 2012-12-21 23:59 - 00000286 _____ () C:\WINDOWS\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1482476501-412668190-1417001333-1003.job
2014-03-12 09:45 - 2010-07-18 15:27 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-03-12 09:45 - 2010-07-18 07:35 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2014-03-12 09:45 - 2010-07-18 07:35 - 00000049 _____ () C:\WINDOWS\wiaservc.log
2014-03-12 09:45 - 2008-04-14 08:00 - 00011936 _____ () C:\WINDOWS\system32\wpa.dbl
2014-03-12 09:43 - 2014-01-12 22:59 - 00336656 _____ () C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
2014-03-12 09:43 - 2010-07-18 15:32 - 00000178 ___SH () C:\Documents and Settings\Owner\ntuser.ini
2014-03-12 09:43 - 2010-07-18 15:27 - 00032550 _____ () C:\WINDOWS\SchedLgU.Txt
2014-03-12 09:43 - 2010-07-18 15:23 - 01814922 _____ () C:\WINDOWS\WindowsUpdate.log
2014-03-11 23:15 - 2013-12-11 04:27 - 00000830 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-03-11 19:15 - 2013-12-11 04:27 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-03-11 19:15 - 2013-12-11 04:27 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-03-11 14:32 - 2010-07-18 07:30 - 00190937 _____ () C:\WINDOWS\setupact.log
2014-03-11 14:17 - 2014-03-02 16:13 - 00000000 __SHD () C:\WINDOWS\CSC
2014-03-10 13:17 - 2014-03-07 14:00 - 00000000 ____D () C:\Program Files\Common Files\Authentium
2014-03-10 13:17 - 2012-01-06 19:55 - 00000000 ____D () C:\Program Files\Google
2014-03-10 13:16 - 2014-03-10 13:16 - 00004770 _____ () C:\Documents and Settings\Owner\Desktop\fix.txt
2014-03-10 12:41 - 2011-11-16 02:05 - 00022016 ___SH () C:\Documents and Settings\Owner\Desktop\Thumbs.db
2014-03-10 12:37 - 2010-12-05 17:03 - 00000000 ____D () C:\Documents and Settings\Owner\Desktop\Hugh's Games
2014-03-10 12:36 - 2012-12-01 01:27 - 00000000 ____D () C:\Documents and Settings\Owner\Desktop\Games
2014-03-10 10:11 - 2014-03-10 10:11 - 00602112 _____ (OldTimer Tools) C:\Documents and Settings\Owner\Desktop\OTL(1).exe
2014-03-10 10:08 - 2014-03-10 10:08 - 00000000 ____D () C:\RegBackup
2014-03-10 10:08 - 2013-01-07 02:14 - 00288926 _____ () C:\WINDOWS\setupapi.log
2014-03-10 10:08 - 2010-07-18 15:20 - 00000000 ____D () C:\WINDOWS\Registration
2014-03-10 10:08 - 2010-07-18 07:23 - 00000000 ____D () C:\WINDOWS\repair
2014-03-10 10:07 - 2014-03-10 10:07 - 03944112 _____ () C:\Documents and Settings\Owner\Desktop\tweaking.com_registry_backup_setup.exe
2014-03-10 10:07 - 2014-03-10 10:07 - 00001876 _____ () C:\Documents and Settings\All Users\Desktop\Tweaking.com - Registry Backup.lnk
2014-03-10 10:07 - 2014-03-10 10:07 - 00000000 ____D () C:\Program Files\Tweaking.com
2014-03-10 10:07 - 2014-03-10 10:07 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Tweaking.com
2014-03-09 22:53 - 2013-11-17 19:28 - 00000000 ____D () C:\Documents and Settings\Owner\Tracing
2014-03-09 22:34 - 2014-03-09 22:34 - 00000363 _____ () C:\Documents and Settings\Owner\Desktop\hddcheck.txt
2014-03-09 22:27 - 2014-03-09 22:27 - 00000000 ____D () C:\Program Files\HD Tune
2014-03-09 22:27 - 2014-03-09 22:27 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\HD Tune
2014-03-09 22:27 - 2014-03-09 22:26 - 00642632 _____ (EFD Software ) C:\Documents and Settings\Owner\Desktop\hdtune_255.exe
2014-03-09 22:24 - 2014-03-08 18:33 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-03-09 22:23 - 2014-03-09 22:23 - 00005998 _____ () C:\WINDOWS\system32\PerfStringBackup.TMP
2014-03-09 22:18 - 2012-06-29 13:52 - 02431538 _____ () C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-S-1-5-21-1482476501-412668190-1417001333-1003-0.dat
2014-03-09 22:18 - 2012-06-29 13:52 - 00332162 _____ () C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-System.dat
2014-03-08 10:19 - 2012-03-08 17:39 - 00000000 ____D () C:\WINDOWS\system32\Cars2_MissionImpossible_Screensaver dir
2014-03-07 23:53 - 2012-11-18 15:33 - 00000286 _____ () C:\WINDOWS\Tasks\RealUpgradeScheduledTaskS-1-5-21-1482476501-412668190-1417001333-1003.job
2014-03-07 20:09 - 2014-03-07 20:09 - 00000381 _____ () C:\Documents and Settings\Owner\My Documents\Natibaby Symphony listing full.log
2014-03-07 17:40 - 2014-03-07 17:39 - 00000000 ____D () C:\rsit
2014-03-07 17:39 - 2014-03-07 17:39 - 00000000 ____D () C:\Program Files\trend micro
2014-03-07 17:38 - 2014-03-07 17:38 - 00781383 _____ () C:\Documents and Settings\Owner\Desktop\RSIT.exe
2014-03-07 17:37 - 2010-07-18 16:20 - 00011936 _____ () C:\WINDOWS\system32\wpa.bak
2014-03-07 14:23 - 2010-10-22 12:08 - 00075992 _____ () C:\Documents and Settings\Owner\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2014-03-07 14:13 - 2013-11-17 10:19 - 00001733 _____ () C:\Documents and Settings\All Users\Desktop\avast! Free Antivirus.lnk
2014-03-07 14:11 - 2010-07-18 07:30 - 00297256 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-03-07 14:09 - 2014-03-07 14:09 - 00000000 ____D () C:\_OTL
2014-03-07 14:09 - 2010-07-18 15:32 - 00000000 ____D () C:\Documents and Settings\Owner
2014-03-07 14:09 - 2010-07-18 15:27 - 00000000 __SHD () C:\Documents and Settings\NetworkService
2014-03-07 14:09 - 2010-07-18 15:27 - 00000000 __SHD () C:\Documents and Settings\LocalService
2014-03-07 14:09 - 2010-07-18 15:27 - 00000000 ____D () C:\Documents and Settings\Administrator
2014-03-07 14:08 - 2014-03-07 14:08 - 00000000 ____D () C:\AdwCleaner
2014-03-07 14:05 - 2014-03-07 14:05 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-03-07 14:05 - 2014-03-07 14:05 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Skype
2014-03-07 14:05 - 2010-08-15 15:30 - 00000000 ___RD () C:\Program Files\Skype
2014-03-07 14:04 - 2014-03-07 14:04 - 00000000 ____D () C:\Program Files\iTunes
2014-03-07 14:04 - 2014-03-07 14:04 - 00000000 ____D () C:\Program Files\iPod
2014-03-07 14:04 - 2014-03-07 14:04 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\iTunes
2014-03-07 14:04 - 2014-03-07 14:04 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\188F1432-103A-4ffb-80F1-36B633C5C9E1
2014-03-07 14:04 - 2014-03-07 14:01 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-03-07 14:04 - 2014-02-24 00:01 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\188F1432-103A-4ffb-80F1-36B633C5C9E1(2)
2014-03-07 14:02 - 2014-03-02 13:03 - 00000000 ____D () C:\AdwCleaner(2)
2014-03-07 14:02 - 2014-03-02 12:57 - 00000000 ____D () C:\Program Files\ERUNT
2014-03-07 14:01 - 2014-03-07 14:01 - 00000000 ____D () C:\Program Files\Bonjour
2014-03-07 14:01 - 2014-03-07 14:01 - 00000000 ____D () C:\Program Files\Apple Software Update
2014-03-07 14:01 - 2010-10-22 11:21 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\Apple
2014-03-07 14:00 - 2014-03-07 14:00 - 00000000 ____D () C:\Program Files\McAfee Security Scan
2014-03-07 14:00 - 2014-03-04 21:18 - 00000000 ____D () C:\_OTL(2)
2014-03-07 14:00 - 2012-02-11 21:51 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Logitech
2014-03-07 13:59 - 2012-02-11 21:51 - 00000000 ____D () C:\Program Files\Common Files\Logishrd
2014-03-07 13:59 - 2010-07-18 15:55 - 00000000 ____D () C:\WINDOWS\system32\Lang
2014-03-07 13:59 - 2010-07-18 15:52 - 00000000 ____D () C:\WINDOWS\system32\ReinstallBackups
2014-03-07 13:59 - 2010-07-18 15:52 - 00000000 ____D () C:\Program Files\Intel
2014-03-07 13:59 - 2010-07-18 07:23 - 00000000 ____D () C:\WINDOWS\twain_32
2014-03-07 13:57 - 2010-07-18 15:21 - 00000000 ____D () C:\WINDOWS\system32\Restore
2014-03-07 13:50 - 2010-08-15 15:30 - 00000000 ____D () C:\Documents and Settings\Owner\Application Data\Skype
2014-03-07 09:03 - 2014-03-07 08:08 - 00000000 _____ () C:\WINDOWS\system32\Drivers\lvuvc.hs
2014-03-07 08:38 - 2014-03-07 08:38 - 00000000 ____D () C:\Program Files\Marvell
2014-03-07 08:31 - 2014-03-07 08:31 - 00000146 _____ () C:\WINDOWS\system32\WmiConf.txt
2014-03-07 08:31 - 2014-03-07 08:31 - 00000000 _____ () C:\Rule.txt
2014-03-07 08:29 - 2014-03-07 08:29 - 00000000 ____D () C:\Documents and Settings\Owner\Local Settings\Application Data\Logitech® Webcam Software
2014-03-07 08:25 - 2010-07-18 07:23 - 00000000 ____D () C:\WINDOWS\security
2014-03-07 08:24 - 2014-03-07 08:24 - 00000000 ____D () C:\Intel
2014-03-07 08:08 - 2014-03-07 08:08 - 00005596 _____ () C:\WINDOWS\system32\lvcoinst.log
2014-03-07 08:08 - 2012-02-11 21:51 - 00039149 _____ () C:\WINDOWS\LDPINST.LOG
2014-03-07 08:07 - 2013-11-17 19:17 - 00000000 ____D () C:\Program Files\Logitech
2014-03-06 23:35 - 2014-03-06 23:26 - 00017387 _____ () C:\Documents and Settings\Owner\My Documents\Wrap list & values 3-6-14.odt
2014-03-06 15:21 - 2014-03-06 15:21 - 00000000 ____D () C:\Documents and Settings\Owner\Local Settings\Application Data\AVG SafeGuard toolbar
2014-03-06 15:21 - 2014-03-06 15:20 - 00003754 _____ () C:\Program Files\Mozilla Firefoxsafeguard-secure-search.xml
2014-03-06 15:20 - 2014-03-06 15:20 - 00000000 ____D () C:\Documents and Settings\Owner\Local Settings\Application Data\SlimWare Utilities Inc
2014-03-06 15:19 - 2014-03-06 15:19 - 00000000 ____D () C:\Documents and Settings\All Users\Documents\Downloaded Installers
2014-03-06 10:06 - 2014-03-03 18:12 - 00000654 _____ () C:\Documents and Settings\Owner\Desktop\checkhd.txt
2014-03-05 17:41 - 2010-11-15 14:21 - 00131072 _____ () C:\WINDOWS\system32\config\OAlerts.evt
2014-03-04 21:25 - 2014-03-04 21:25 - 00035512 _____ () C:\Documents and Settings\Owner\Desktop\03042014_201842.log
2014-03-04 21:19 - 2014-03-04 21:19 - 00000000 ____D () C:\Documents and Settings\NetworkService\Application Data\Garmin
2014-03-04 21:17 - 2014-03-04 21:17 - 00034462 _____ () C:\Documents and Settings\Owner\My Documents\2014 Mar 4 Budget - Hugh & Sabrina.ods
2014-03-04 15:56 - 2014-01-11 16:28 - 00035671 _____ () C:\Documents and Settings\Owner\My Documents\2014 Jan 11 Budget - Hugh & Sabrina.ods
2014-03-03 16:36 - 2014-03-02 12:57 - 00000000 ____D () C:\WINDOWS\ERDNT
2014-03-03 13:16 - 2011-05-28 16:17 - 01344122 ___SH () C:\Documents and Settings\Owner\My Documents\Thumbs.db
2014-03-02 16:27 - 2014-03-02 16:27 - 00000000 ____D () C:\Documents and Settings\Administrator\Local Settings\Application Data\Google
2014-03-02 16:27 - 2011-06-29 10:07 - 00001324 _____ () C:\WINDOWS\system32\d3d9caps.dat
2014-03-02 16:14 - 2014-03-02 16:14 - 00000000 ____D () C:\Documents and Settings\Administrator\IETldCache
2014-03-02 10:53 - 2008-04-14 08:00 - 00000649 _____ () C:\WINDOWS\win.ini
2014-03-02 10:53 - 2008-04-14 08:00 - 00000261 _____ () C:\WINDOWS\system.ini
2014-03-01 16:23 - 2014-03-01 16:23 - 00041258 _____ () C:\Documents and Settings\Owner\Desktop\Addition.txt
2014-03-01 10:38 - 2010-07-27 10:35 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\CanonIJPLM
2014-02-24 00:21 - 2010-12-07 22:53 - 00000000 ____D () C:\Documents and Settings\Owner\My Documents\Outlook Files
2014-02-19 20:05 - 2014-02-19 20:05 - 00000000 ____D () C:\Documents and Settings\Owner\Local Settings\Application Data\Skype
2014-02-19 20:05 - 2010-08-15 15:30 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\Skype
2014-02-13 23:28 - 2012-12-23 09:17 - 00000000 ____D () C:\Documents and Settings\Owner\Local Settings\Application Data\WeatherBug

Some content of TEMP:
====================
C:\Documents and Settings\Owner\Local Settings\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpnendpj.dll


==================== Bamital & volsnap Check =================

C:\WINDOWS\explorer.exe => MD5 is legit
C:\WINDOWS\system32\winlogon.exe => MD5 is legit
C:\WINDOWS\system32\svchost.exe => MD5 is legit
C:\WINDOWS\system32\services.exe => MD5 is legit
C:\WINDOWS\system32\User32.dll => MD5 is legit
C:\WINDOWS\system32\userinit.exe => MD5 is legit
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\volsnap.sys => MD5 is legit

==================== End Of Log ============================






ADDITION TXT




Additional scan result of Farbar Recovery Scan Tool (x86) Version: 11-03-2014
Ran by Owner at 2014-03-12 09:54:42
Running from C:\Documents and Settings\Owner\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: avast! Antivirus (Disabled - Up to date) {7591DB91-41F0-48A3-B128-1A293FD8233D}

==================== Installed Programs ======================

3 Days - Amulet Secret (HKLM\...\BFG-3 Days - Amulet Secret) (Version: - )
3 Days: Zoo Mystery (HKLM\...\BFG-3 Days - Zoo Mystery) (Version: - )
Adobe Acrobat 6.0 Professional (HKLM\...\{AC76BA86-1033-0000-7760-000000000001}) (Version: 006.000.000 - Adobe Systems)
Adobe AIR (HKLM\...\Adobe AIR) (Version: 4.0.0.1390 - Adobe Systems Incorporated)
Adobe AIR (Version: 4.0.0.1390 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 12 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 12.0.0.77 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.06) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated)
Adventure Chronicles: The Search for Lost Treasure (HKLM\...\BFG-Adventure Chronicles - The Search for Lost Treasure) (Version: - )
Alice's Magical Mahjong (HKLM\...\BFG-Alice's Magical Mahjong) (Version: - )
Amazon MP3 Downloader 1.0.17 (HKLM\...\Amazon MP3 Downloader) (Version: 1.0.17 - Amazon Services LLC)
Apple Application Support (HKLM\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{0592EF96-69D8-4E4B-9CC9-88F58EA86F01}) (Version: 7.0.0.117 - Apple Inc.)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
avast! Free Antivirus (HKLM\...\Avast) (Version: 9.0.2011 - Avast Software)
AVSDK5 (Version: 5.2.9 - Authentium, Inc) Hidden
Be Richest! (HKLM\...\BFG-Be Richest!) (Version: - )
Be Richest! Strategy Guide (HKLM\...\BFG-Be Richest! Strategy Guide) (Version: - )
Big Fish Games: Game Manager (HKLM\...\BFGC) (Version: 3.0.1.60 - )
Bob the Builder - Can Do Zoo (HKLM\...\BFG-Bob the Builder - Can Do Zoo) (Version: - )
Bob the Builder: Can Do Carnival (HKLM\...\BFG-Bob the Builder - Can Do Carnival) (Version: - )
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
Brain Training for Dummies (HKLM\...\BFG-Brain Training for Dummies) (Version: - )
Canon Easy-WebPrint EX (HKLM\...\Easy-WebPrint EX) (Version: - )
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM\...\CANONIJPLM100) (Version: - )
Canon MP Navigator EX 3.0 (HKLM\...\MP Navigator EX 3.0) (Version: - )
Canon MP560 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP560_series) (Version: - )
Canon MP560 series User Registration (HKLM\...\Canon MP560 series User Registration) (Version: - )
Canon Utilities My Printer (HKLM\...\CanonMyPrinter) (Version: - )
Canon Utilities Solution Menu (HKLM\...\CanonSolutionMenu) (Version: - )
CardRecovery 6.10 (HKLM\...\{88D68A69-D247-466B-90DD-575F6BE16230}_is1) (Version: - WinRecovery Software)
Christmas Stories: Nutcracker Collector's Edition (HKLM\...\BFG-Christmas Stories - Nutcracker Collector's Edition) (Version: - )
Christmas Tales: Fellina's Journey (HKLM\...\BFG-Christmas Tales - Fellina's Journey) (Version: - )
Christmas Wonderland (HKLM\...\BFG-Christmas Wonderland) (Version: - )
Christmas Wonderland 2 (HKLM\...\BFG-Christmas Wonderland 2) (Version: - )
Christmasville (HKLM\...\BFG-Christmasville) (Version: - )
Civilization III (HKLM\...\InstallShield_{2157961D-0507-44A8-BCF2-1EE2D439E8DF}) (Version: 1.00.0000 - 2K Games)
Civilization III (Version: 1.00.0000 - 2K Games) Hidden
Clutter (HKLM\...\BFG-Clutter) (Version: - )
Clutter II: He Said, She Said (HKLM\...\BFG-Clutter II - He Said She Said) (Version: - )
Definition update for Microsoft Office 2010 (KB982726) 32-Bit Edition (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{D9CCC2EB-F15B-4459-838D-09DE0BD5754F}) (Version: - Microsoft)
Diego Dinosaur Rescue (HKLM\...\BFG-Diego Dinosaur Rescue) (Version: - )
Diego`s Dinosaur Adventure (HKLM\...\BFG-Diego`s Dinosaur Adventure) (Version: - )
Diego`s Safari Adventure (HKLM\...\BFG-Diego`s Safari Adventure) (Version: - )
Dropbox (HKCU\...\Dropbox) (Version: 2.6.2 - Dropbox, Inc.)
Elevated Installer (Version: 2.3.16.0 - Garmin Ltd or its subsidiaries) Hidden
eReg (Version: 1.20.138.34 - Logitech, Inc.) Hidden
ESET Online Scanner v3 (HKLM\...\ESET Online Scanner) (Version: - )
FairPoint DSL Security Improvement Upgrade (HKLM\...\FairPoint DSL Security Improvement Upgrade_is1) (Version: - FairPoint)
Family Feud: Battle of the Sexes (HKLM\...\BFG-Family Feud - Battle of the Sexes) (Version: - )
FileHippo.com Update Checker (HKLM\...\FileHippo.com) (Version: - )
Gardenscapes: Mansion Makeover™ (HKLM\...\BFG-Gardenscapes - Mansion Makeover) (Version: - )
Garmin Express (HKLM\...\{6f60b921-2ae3-43fe-a6fb-ad849bd91451}) (Version: 2.3.16.0 - Garmin Ltd or its subsidiaries)
Garmin Express (Version: 2.3.16.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express Tray (Version: 2.3.16.0 - Garmin Ltd or its subsidiaries) Hidden
Go Diego Go Ultimate Rescue League (HKLM\...\BFG-Go Diego Go Ultimate Rescue League) (Version: - )
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
HD Tune 2.55 (HKLM\...\HD Tune_is1) (Version: - EFD Software)
I SPY: Treasure Hunt (HKLM\...\BFG-I SPY - Treasure Hunt) (Version: - )
I SPY™ Fun House (HKLM\...\BFG-I SPY™ Fun House) (Version: - )
IDT Audio (HKLM\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.20001.0 - IDT)
Intel® Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 0.0.0.0000 - Intel Corporation)
Intel® Network Connections 15.3.68.0 (HKLM\...\{D5558268-0050-4B95-AD5E-426960E1EFE1}) (Version: 15.3.68.0 - Intel)
iTunes (HKLM\...\{C197BC08-3D82-4651-8886-E68C21578A38}) (Version: 11.1.3.8 - Apple Inc.)
Java 7 Update 51 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.510 - Oracle)
Java Auto Updater (HKLM\...\{4A03706F-666A-4037-7777-5F2748764D10}) (Version: - )
LeapFrog Connect (HKLM\...\UPCShell) (Version: 5.2.4.18506 - LeapFrog)
LeapFrog Connect (Version: 5.2.4.18506 - LeapFrog) Hidden
LeapFrog LeapPad Explorer Plugin (Version: 5.2.1.18456 - LeapFrog) Hidden
LeapFrog MyOwnStoryTimePad Plugin (Version: 5.1.26.18340 - LeapFrog) Hidden
LeapFrog Tag Junior Plugin (Version: 5.1.26.18340 - LeapFrog) Hidden
Lightning Storm (HKLM\...\{B2B7CAD5-6032-416A-9049-1E9C2721CBF6}) (Version: 1.0.2 - W3i, LLC)
Living Marine Aquarium 2 Animated Wallpaper (HKLM\...\{3B8811DB-64BA-4F9A-8E0F-481D5583F1E5}) (Version: 1.0.0 - W3i, LLC)
Logitech SetPoint 6.61 (HKLM\...\sp6) (Version: 6.61.15 - Logitech)
Macromedia Flash Player 8 (HKLM\...\{6815FCDD-401D-481E-BA88-31B4754C2B46}) (Version: 8.0.22.0 - Macromedia)
Malwarebytes Anti-Malware version 1.75.0.1300 (HKLM\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation)
Microsoft .NET Framework 2.0 Service Pack 1 (HKLM\...\{B508B3F1-A24A-32C0-B310-85786919EF28}) (Version: 2.1.21022 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 1 (HKLM\...\{2BA00471-0328-3743-93BD-FA813353A783}) (Version: 3.1.21022 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden
Microsoft Choice Guard (Version: 2.0.48.0 - Microsoft Corporation) Hidden
Microsoft Compression Client Pack 1.0 for Windows XP (HKLM\...\MSCompPackV1) (Version: 1 - Microsoft Corporation)
Microsoft Kernel-Mode Driver Framework Feature Pack 1.9 (Version: - Microsoft Corporation) Hidden
Microsoft Office 2010 Service Pack 1 (SP1) (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{047B0968-E622-4FAA-9B4B-121FA109EDDE}) (Version: - Microsoft)
Microsoft Office 2010 Service Pack 1 (SP1) (Version: - Microsoft) Hidden
Microsoft Office Access MUI (English) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft Office Access Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (English) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft Office Groove MUI (English) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (English) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (English) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (English) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (English) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.6029.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Spanish) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (English) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (English) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft Software Update for Web Folders (English) 14 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft User-Mode Driver Framework Feature Pack 1.0 (HKLM\...\Wudf01000) (Version: - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Monopoly &reg; (HKLM\...\BFG-Monopoly) (Version: - )
Mozilla Firefox 28.0 (x86 en-US) (HKLM\...\Mozilla Firefox 28.0 (x86 en-US)) (Version: 28.0 - Mozilla)
MSVCRT (Version: 14.0.1468.721 - Microsoft) Hidden
NewFreeScreensaver nfsFirePlace3D (HKLM\...\Fire Place 3D New Free Screensaver_is1) (Version: - )
NewFreeScreensaver nfsUnderWater18 (HKLM\...\Under Water 18 New Free Screensaver_is1) (Version: - )
Nick Jr. Bingo (HKLM\...\BFG-Nick Jr. Bingo) (Version: - )
OpenOffice 4.0.1 (HKLM\...\{47F460DA-D1BE-4D85-8DF2-AA1F31D3445F}) (Version: 4.01.9714 - Apache Software Foundation)
PandoraRecovery (Remove Only) (HKLM\...\PandoraRecovery) (Version: - )
PowerDVD (HKLM\...\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}) (Version: - )
QuickTime (HKLM\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.)
Railroad Tycoon 3 (HKLM\...\{DE29025A-091F-4998-AD2D-24C84421190F}) (Version: 1.0 - )
RealDownloader (Version: 1.3.3 - RealNetworks, Inc.) Hidden
RealNetworks - Microsoft Visual C++ 2008 Runtime (Version: 9.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (Version: 10.0 - RealNetworks, Inc) Hidden
RealPlayer (HKLM\...\RealPlayer 16.0) (Version: 16.0.3 - RealNetworks)
RealUpgrade 1.1 (Version: 1.1.0 - RealNetworks, Inc.) Hidden
Rhapsody Cloud Sync (HKLM\...\com.Rhapsody.RhapsodyCloudSync) (Version: 1.2.15 - Rhapsody International Inc)
Rhapsody Cloud Sync (Version: 1.2.15 - Rhapsody International Inc) Hidden
Risk™ (HKLM\...\BFG-Risk) (Version: - )
SanDiskSecureAccess_Manager.exe (HKCU\...\@@[email protected]@SanDiskSecureAccess_Manager.exe) (Version: 1.1.19755 - Gemalto N.V.)
Segoe UI (Version: 14.0.4327.805 - Microsoft Corp) Hidden
Sid Meier's Civilization 4 Complete (HKLM\...\{30D1F3D2-54CF-481D-A005-F94B0E98FEEC}) (Version: 1.74 - Firaxis Games)
Sid Meier's Civilization IV Colonization (HKLM\...\{EF36A836-BF89-4A4F-B079-057B0C68C1E0}) (Version: 1.00 - Firaxis Games)
Sid Meier's Civilization V (HKLM\...\Steam App 8930) (Version: - Firaxis Games)
Skype Click to Call (HKLM\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 6.13.13771 - Skype Technologies S.A.)
Skype™ 6.11 (HKLM\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.)
Stamps.com (HKLM\...\Stamps.com) (Version: - Stamps.com, Inc.)
Stamps.com (Version: 10.1.0.2427 - Stamps.com, Inc.) Hidden
Steam (HKLM\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
System Requirements Lab for Intel (HKLM\...\{F7FC9307-374E-4017-8E9D-DE1154780480}) (Version: 4.1.66.0 - Husdawg, LLC)
Tales of Lagoona: Orphans of the Ocean (HKLM\...\BFG-Tales of Lagoona - Orphans of the Ocean) (Version: - )
The Game of Life &reg; (HKLM\...\BFG-The Game of Life) (Version: - )
The Price is Right 2010 (HKLM\...\BFG-The Price is Right 2010) (Version: - )
TopArcadeHits (HKCU\...\{C1C3E833-420E-4D78-9BA7-86AEBB272384}) (Version: - TopArcadeHits)
Treasure Seekers: The Time Has Come (HKLM\...\BFG-Treasure Seekers - The Time Has Come) (Version: - )
Tweaking.com - Registry Backup (HKLM\...\Tweaking.com - Registry Backup) (Version: 1.7.0 - Tweaking.com)
Ultimate Dominoes (HKLM\...\BFG-Ultimate Dominoes) (Version: - )
Update 4.0.3 for Microsoft .NET Framework 4 Client Profile (KB2600211) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2600211) (Version: 1 - Microsoft Corporation)
Update for Microsoft Excel 2010 (KB2553439) 32-Bit Edition (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{3D1F379C-AA64-4823-90A4-A8DDD4B48C21}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2553065) (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{A8686D24-1E89-43A1-973E-05A258D2B3F8}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2553092) (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{7AC49FC8-F8D2-4DD8-9086-09E52385A21F}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{48E1B6C2-7299-4F3F-AA63-42F0ACE55AA4}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition (HKLM\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUS_{17E7B9AB-2DD2-457D-8D8E-CD14ACA973FE}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition (HKLM\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.PROPLUS_{15058154-469F-4794-ACD5-94F8420F9B80}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition (HKLM\...\{90140000-001F-0C0A-0000-0000000FF1CE}_Office14.PROPLUS_{995A7832-B512-46D5-87C9-2D71FB541435}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{C8694FF0-8203-483B-A07A-2BC40433167D}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition (HKLM\...\{90140000-006E-0409-0000-0000000FF1CE}_Office14.PROPLUS_{73E67A3A-8D61-44EF-90C2-1697C3DBE668}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2553385) 32-Bit Edition (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{28FAC187-7C0E-413A-B90A-76F19D0FBF30}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2553455) 32-Bit Edition (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{147E3669-1EA6-454C-B53E-A2BE51D8E520}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2566458) (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{EFB525A0-E1C0-4E32-9968-FE401BC87363}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{ED31DE9A-3E13-4E2C-9106-E0D8AFFB9FA6}) (Version: - Microsoft)
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{BEBC2484-290C-46AD-9834-6DAD1FA80273}) (Version: - Microsoft)
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition (HKLM\...\{90140000-00A1-0409-0000-0000000FF1CE}_Office14.PROPLUS_{9865DC3A-2898-48D9-B96A-46397571C934}) (Version: - Microsoft)
Update for Microsoft Outlook 2010 (KB2553323) 32-Bit Edition (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{29E94638-D92F-4C40-BDA1-FEDCC92F478D}) (Version: - Microsoft)
Update for Microsoft Outlook Social Connector (KB2583935) (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{EDF9874C-9E37-4110-9FC3-094247E114DF}) (Version: - Microsoft)
Update for Microsoft Outlook Social Connector (KB2583935) (HKLM\...\{90140000-001A-0409-0000-0000000FF1CE}_Office14.PROPLUS_{64FDCC43-8AD0-46F0-BF53-0CC27D816202}) (Version: - Microsoft)
Update for Windows Internet Explorer 8 (KB976662) (HKLM\...\KB976662-IE8) (Version: 1 - Microsoft Corporation)
Update for Windows Internet Explorer 8 (KB982632) (HKLM\...\KB982632-IE8) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB2141007) (HKLM\...\KB2141007) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB2345886) (HKLM\...\KB2345886) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB2467659) (HKLM\...\KB2467659) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB2541763) (HKLM\...\KB2541763) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB2607712) (HKLM\...\KB2607712) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB2616676) (HKLM\...\KB2616676) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB2641690) (HKLM\...\KB2641690) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB898461) (HKLM\...\KB898461) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB951978) (Version: 1 - Microsoft Corporation) Hidden
Update for Windows XP (KB955759) (HKLM\...\KB955759) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB967715) (HKLM\...\KB967715) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB968389) (HKLM\...\KB968389) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB971029) (HKLM\...\KB971029) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB971737) (HKLM\...\KB971737) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB973687) (HKLM\...\KB973687) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB973815) (HKLM\...\KB973815) (Version: 1 - Microsoft Corporation)
Use the entry named LeapFrog Connect to uninstall (LeapFrog LeapPad Explorer Plugin) (HKLM\...\LeapPadExplorerPlugin) (Version: - LeapFrog)
Use the entry named LeapFrog Connect to uninstall (LeapFrog MyOwnStoryTimePad Plugin) (HKLM\...\MyOwnStoryTimePadPlugin) (Version: 5.1.26.18340 - LeapFrog)
Use the entry named LeapFrog Connect to uninstall (LeapFrog Tag Junior Plugin) (HKLM\...\TagJuniorPlugin) (Version: - LeapFrog)
VirtualCloneDrive (HKLM\...\VirtualCloneDrive) (Version: - Elaborate Bytes)
VLC media player 2.1.0 (HKLM\...\VLC media player) (Version: 2.1.0 - VideoLAN)
WeatherBug (HKLM\...\{297DCADA-86A1-4A42-8A13-66B7D7A09FD2}) (Version: 7.0.0.11 - Earth Networks, Inc.)
WebFldrs XP (Version: 9.50.7523 - Microsoft Corporation) Hidden
Where's Waldo: The Fantastic Journey (HKLM\...\BFG-Where's Waldo - The Fantastic Journey) (Version: - )
Winbond Desktop SI/O with Consumer IR support (HKLM\...\{B5336D19-B526-47CC-8F56-67DF30FECC70}) (Version: 7.65.1006 - Winbond Electronics Corporation)
Windows Driver Package - LeapFrog (FlyUsb) USB (11/05/2008 1.1.1.0) (HKLM\...\781745E87AFF80C0C1388CFF79D19ECAB2E9BB47) (Version: 11/05/2008 1.1.1.0 - LeapFrog)
Windows Driver Package - Leapfrog (Leapfrog-USBLAN) Net (09/10/2009 02.03.05.012) (HKLM\...\8F14F2ECEDE68D26EA515B48DC25B39103C4FE8D) (Version: 09/10/2009 02.03.05.012 - Leapfrog)
Windows Internet Explorer 8 (HKLM\...\ie8) (Version: 20090308.140743 - Microsoft Corporation)
Windows Live Call (Version: 14.0.8117.0416 - Microsoft Corporation) Hidden
Windows Live Communications Platform (Version: 14.0.8117.416 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
Windows Live Essentials (Version: 14.0.8117.416 - Microsoft Corporation) Hidden
Windows Live Messenger (Version: 14.0.8117.0416 - Microsoft Corporation) Hidden
Windows Live Sign-in Assistant (HKLM\...\{45338B07-A236-4270-9A77-EBB4115517B5}) (Version: 5.000.818.5 - Microsoft Corporation)
Windows Live Upload Tool (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Windows Media Format 11 runtime (HKLM\...\Windows Media Format Runtime) (Version: - )
Windows Media Format 11 runtime (Version: - Microsoft Corporation) Hidden
Windows Media Player 11 (HKLM\...\Windows Media Player) (Version: - )
Windows Media Player 11 (Version: - Microsoft Corporation) Hidden
Winter Train 3D Screensaver 1.2.0 (HKLM\...\Winter Train 3D Screensaver_is1) (Version: - 3DSignal)
XML Paper Specification Shared Components Pack 1.0 (Version: - Microsoft Corporation) Hidden
Yahoo! Detect (HKLM\...\YTdetect) (Version: - )

==================== Restore Points =========================

12-12-2013 16:20:33 System Checkpoint
13-12-2013 16:51:03 System Checkpoint
14-12-2013 18:32:50 System Checkpoint
15-12-2013 22:01:11 System Checkpoint
16-12-2013 23:14:52 System Checkpoint
17-12-2013 23:40:14 System Checkpoint
19-12-2013 01:11:20 System Checkpoint
20-12-2013 02:59:26 System Checkpoint
21-12-2013 04:35:18 System Checkpoint
23-12-2013 14:41:01 System Checkpoint
24-12-2013 16:28:40 System Checkpoint
25-12-2013 16:37:31 System Checkpoint
29-12-2013 14:26:43 System Checkpoint
30-12-2013 15:56:55 System Checkpoint
31-12-2013 16:06:30 System Checkpoint
01-01-2014 18:06:30 System Checkpoint
02-01-2014 20:28:17 System Checkpoint
03-01-2014 21:54:30 System Checkpoint
04-01-2014 22:06:31 System Checkpoint
06-01-2014 01:40:32 System Checkpoint
07-01-2014 02:07:33 System Checkpoint
08-01-2014 02:23:15 System Checkpoint
09-01-2014 03:55:45 System Checkpoint
10-01-2014 04:06:39 System Checkpoint
11-01-2014 04:30:01 System Checkpoint
12-01-2014 05:54:39 System Checkpoint
13-01-2014 07:18:27 System Checkpoint
14-01-2014 15:45:01 System Checkpoint
15-01-2014 18:45:39 System Checkpoint
16-01-2014 18:47:14 System Checkpoint
17-01-2014 18:52:15 System Checkpoint
18-01-2014 20:51:44 System Checkpoint
19-01-2014 20:54:22 System Checkpoint
20-01-2014 22:39:47 System Checkpoint
21-01-2014 23:21:18 System Checkpoint
22-01-2014 15:22:06 Removed Java 7 Update 45
22-01-2014 15:22:42 Installed Java 7 Update 51
23-01-2014 17:04:00 System Checkpoint
24-01-2014 17:05:06 System Checkpoint
25-01-2014 14:53:45 OTL Restore Point - 1/25/2014 9:53:41 AM
26-01-2014 15:53:46 System Checkpoint
27-01-2014 19:37:50 System Checkpoint
28-01-2014 22:14:08 System Checkpoint
30-01-2014 00:42:18 System Checkpoint
31-01-2014 01:31:28 System Checkpoint
31-01-2014 14:34:29 OTL Restore Point - 1/31/2014 9:34:24 AM
01-02-2014 15:51:43 System Checkpoint
02-02-2014 16:05:26 System Checkpoint
03-02-2014 16:50:35 System Checkpoint
04-02-2014 16:57:46 System Checkpoint
05-02-2014 22:14:40 System Checkpoint
07-02-2014 00:56:20 System Checkpoint
08-02-2014 01:51:49 System Checkpoint
08-02-2014 02:17:24 avast! antivirus system restore point
09-02-2014 03:31:18 System Checkpoint
10-02-2014 03:42:33 System Checkpoint
11-02-2014 05:33:43 System Checkpoint
12-02-2014 05:43:17 System Checkpoint
13-02-2014 07:43:16 System Checkpoint
14-02-2014 09:23:30 System Checkpoint
15-02-2014 11:19:00 System Checkpoint
17-02-2014 19:00:36 System Checkpoint
18-02-2014 20:00:47 System Checkpoint
19-02-2014 21:21:39 System Checkpoint
21-02-2014 23:31:15 System Checkpoint
24-02-2014 03:56:48 Installed iTunes
25-02-2014 04:36:11 System Checkpoint
26-02-2014 05:45:31 System Checkpoint
27-02-2014 07:45:29 System Checkpoint
28-02-2014 07:57:29 System Checkpoint
01-03-2014 16:47:22 System Checkpoint
02-03-2014 17:19:22 System Checkpoint
03-03-2014 19:49:29 System Checkpoint
03-03-2014 20:12:48 Removed Apple Mobile Device Support
03-03-2014 20:13:53 Removed Apple Application Support
03-03-2014 20:15:30 Removed Apple Software Update
03-03-2014 20:16:47 Removed Bonjour
03-03-2014 20:18:57 Removed iTunes
04-03-2014 17:22:09 OTL Restore Point - 3/4/2014 12:21:57 PM
05-03-2014 01:19:18 OTL Restore Point - 3/4/2014 8:19:08 PM
06-03-2014 02:38:13 System Checkpoint
06-03-2014 19:23:02 SlimDrivers Installing Drivers
07-03-2014 11:54:42 SlimDrivers Installing Drivers
07-03-2014 12:19:45 SlimDrivers Installing Drivers
07-03-2014 12:21:59 SlimDrivers Installing Drivers
07-03-2014 12:24:36 SlimDrivers Installing Drivers
07-03-2014 12:29:00 SlimDrivers Installing Drivers
07-03-2014 12:31:54 Removed Intel® Network Connections.
07-03-2014 12:32:08 Intel® Network Connections
07-03-2014 12:32:58 Installed Intel® Network Connections.
07-03-2014 12:37:43 SlimDrivers Installing Drivers
07-03-2014 12:49:52 SlimDrivers Installing Drivers
07-03-2014 12:54:51 SlimDrivers Installing Drivers
07-03-2014 13:00:53 SlimDrivers Installing Drivers
07-03-2014 17:57:51 Restore Operation
08-03-2014 22:14:21 System Checkpoint
10-03-2014 03:11:46 System Checkpoint
11-03-2014 23:23:56 System Checkpoint

==================== Hosts content: ==========================

2008-04-14 08:00 - 2014-03-11 10:05 - 00000021 _RASH C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost

==================== Scheduled Tasks (whitelisted) =============

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
Task: C:\WINDOWS\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1482476501-412668190-1417001333-1003.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe
Task: C:\WINDOWS\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1482476501-412668190-1417001333-1003.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe
Task: C:\WINDOWS\Tasks\RealUpgradeLogonTaskS-1-5-21-1482476501-412668190-1417001333-1003.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe
Task: C:\WINDOWS\Tasks\RealUpgradeScheduledTaskS-1-5-21-1482476501-412668190-1417001333-1003.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe

==================== Loaded Modules (whitelisted) =============

2014-03-12 09:46 - 2014-03-12 04:40 - 02186752 _____ () C:\Program Files\AVAST Software\Avast\defs\14031200\algo.dll
2011-03-17 01:11 - 2011-03-17 01:11 - 04297568 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2010-10-20 16:45 - 2010-10-20 16:45 - 08801120 _____ () C:\Program Files\Microsoft Office\Office14\1033\GrooveIntlResource.dll
2013-11-17 10:18 - 2013-11-17 10:18 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2012-02-14 19:05 - 2012-02-14 19:37 - 11796096 _____ () C:\Documents and Settings\Owner\Application Data\SanDisk\My Vaults\dmBackup.dll
2014-03-12 09:45 - 2014-03-12 09:45 - 00041984 _____ () C:\Documents and Settings\Owner\Local Settings\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpnendpj.dll
2013-10-18 19:55 - 2013-10-18 19:55 - 25100288 _____ () C:\Documents and Settings\Owner\Application Data\Dropbox\bin\libcef.dll
2014-01-20 14:17 - 2011-06-24 22:56 - 00087328 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2014-01-20 14:16 - 2011-06-24 22:56 - 01241888 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2010-07-27 10:34 - 2009-02-10 03:01 - 00116104 _____ () C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
2013-08-14 16:19 - 2013-08-14 16:19 - 00039056 _____ () C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
2014-03-08 18:33 - 2014-03-08 18:33 - 03641968 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll
2008-04-14 08:00 - 2010-02-05 14:27 - 01291776 _____ () C:\WINDOWS\system32\quartz.dll

==================== Alternate Data Streams (whitelisted) =========


==================== Safe Mode (whitelisted) ===================

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"

==================== Disabled items from MSCONFIG ==============


==================== Faulty Device Manager Devices =============

Name: PCI Simple Communications Controller
Description: PCI Simple Communications Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (03/10/2014 09:28:47 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 33408688

Error: (03/10/2014 09:28:47 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 33408688

Error: (03/10/2014 09:28:47 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (03/09/2014 10:23:11 PM) (Source: LoadPerf) (User: )
Description: The performance counter name string value in the registry is incorrectly
formatted. The bogus string is 3944, the bogus index value is the first
DWORD in Data section while the last valid index values are the second and
third DWORD in Data section.

Error: (03/09/2014 10:23:07 PM) (Source: LoadPerf) (User: )
Description: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The
Error code is the first DWORD in Data section.

Error: (03/09/2014 10:23:07 PM) (Source: LoadPerf) (User: )
Description: The performance counter name string value in the registry is incorrectly
formatted. The bogus string is 3944, the bogus index value is the first
DWORD in Data section while the last valid index values are the second and
third DWORD in Data section.

Error: (03/09/2014 10:18:10 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 86608172

Error: (03/09/2014 10:18:10 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 86608172

Error: (03/09/2014 10:18:10 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (03/09/2014 10:18:09 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 86606203


System errors:
=============
Error: (03/11/2014 02:46:23 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: DCOM got error "%%1084" attempting to start the service EventSystem with arguments ""
in order to run the server:
{1BE1F766-5536-11D1-B726-00C04FB926AF}

Error: (03/11/2014 02:20:12 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: DCOM got error "%%1084" attempting to start the service EventSystem with arguments ""
in order to run the server:
{1BE1F766-5536-11D1-B726-00C04FB926AF}

Error: (03/11/2014 02:19:25 PM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
aswSnx
aswSP
aswTdi
aswVmm
ElbyCDIO
Fips
intelppm

Error: (03/11/2014 10:02:28 AM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
aswSnx
aswSP
aswTdi
aswVmm
ElbyCDIO
Fips
intelppm

Error: (03/11/2014 10:01:25 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: DCOM got error "%%1084" attempting to start the service EventSystem with arguments ""
in order to run the server:
{1BE1F766-5536-11D1-B726-00C04FB926AF}

Error: (03/10/2014 06:29:40 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: DCOM got error "%%1084" attempting to start the service EventSystem with arguments ""
in order to run the server:
{1BE1F766-5536-11D1-B726-00C04FB926AF}

Error: (03/10/2014 02:55:14 PM) (Source: DCOM) (User: OWNER-5F64AFAA0)
Description: DCOM got error "%%1084" attempting to start the service StiSvc with arguments ""
in order to run the server:
{A1F4E726-8CF1-11D1-BF92-0060081ED811}

Error: (03/10/2014 01:20:09 PM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
aswSnx
aswSP
aswTdi
aswVmm
ElbyCDIO
Fips
intelppm

Error: (03/10/2014 01:19:58 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: DCOM got error "%%1084" attempting to start the service EventSystem with arguments ""
in order to run the server:
{1BE1F766-5536-11D1-B726-00C04FB926AF}

Error: (03/10/2014 01:17:32 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: DCOM got error "%%1084" attempting to start the service EventSystem with arguments ""
in order to run the server:
{1BE1F766-5536-11D1-B726-00C04FB926AF}


Microsoft Office Sessions:
=========================
Error: (03/10/2014 09:28:47 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 33408688

Error: (03/10/2014 09:28:47 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 33408688

Error: (03/10/2014 09:28:47 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (03/09/2014 10:23:11 PM) (Source: LoadPerf)(User: )
Description: 3944

Error: (03/09/2014 10:23:07 PM) (Source: LoadPerf)(User: )
Description: WmiApRplWmiApRpl

Error: (03/09/2014 10:23:07 PM) (Source: LoadPerf)(User: )
Description: 3944

Error: (03/09/2014 10:18:10 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 86608172

Error: (03/09/2014 10:18:10 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 86608172

Error: (03/09/2014 10:18:10 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (03/09/2014 10:18:09 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 86606203


==================== Memory info ===========================

Percentage of memory in use: 40%
Total physical RAM: 2284.54 MB
Available physical RAM: 1351.17 MB
Total Pagefile: 4414.22 MB
Available Pagefile: 3598.34 MB
Total Virtual: 2047.88 MB
Available Virtual: 1943.09 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:931.5 GB) (Free:728.18 GB) NTFS ==>[Drive with boot components (Windows XP)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows XP) (Size: 932 GB) (Disk ID: B12F98FC)

Partition: GPT Partition Type.

==================== End Of Log ============================
  • 0

#87
Dakeyras

Dakeyras

    Anti-Malware Mammoth

  • Expert
  • 9,684 posts
Hi. :)

Oh and dying (while I do these latest instructions)

Feeling unwell ? If so I hope you get well soon.

my machine rebooted while in safemode with networking yesterday before the disk check was done.


You stated in a prior post the actual Hard-Drive Maintenance/Repair was completed ?

Did you clean out the temp files and defrag the drive successfully then or not and did the machine just complete the check-disk and boot up as normal and or did it actually reboot before any of the other steps mentioned were completed ?
  • 0

#88
Faithsa

Faithsa

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 190 posts
No, I'm fine but apparently my auto correct doesn't like FYI... lol.

I did everything you instructed and when it was done it rebooted itself into normal. The reboot happened after my message about the lack of a 'hibernation' option. I awaited your reply and realized it rebooted itself when I went to continue with the next step after getting your acknowledgement (and nothing else) which led me to assume to just continue on.
  • 0

#89
Dakeyras

Dakeyras

    Anti-Malware Mammoth

  • Expert
  • 9,684 posts
Hi. :)

No, I'm fine but apparently my auto correct doesn't like FYI... lol.

Fair play. :lol:

I did everything you instructed and when it was done it rebooted itself into normal. The reboot happened after my message about the lack of a 'hibernation' option. I awaited your reply and realized it rebooted itself when I went to continue with the next step after getting your acknowledgement (and nothing else) which led me to assume to just continue on.

Acknowledged.

Custom FRST Script:

Please download the attached fixlist.txt(see below) and save to the desktop.



  • Now double-click on FRST.exe to start FRST.
  • Then click on the Fix button/radio tab >> at the Fix completed prompt click on OK
  • A log will now open named Fixlog and it will also be on the desktop >> close FRST.
  • Reboot your machine(ensure you do this) and post the contents of the aforementioned Fixlog in your next reply.
Note: If FRST advises there is a new updated version to be downloaded, do so/allow this.

Uninstall/re-install Avast:

Follow the instructions here for uninstalling Avast completely.

Then download the installer for Avast! Free Antivirus and re-install the software.

Device Manager Check:

  • Please click Start and click Run
  • Type: devmgmt.msc and hit Enter
  • Look for any entries with a Yellow Exclamation Mark or Red X's
  • If anything flagged as aforementioned make a note of it and inform myself in your next reply.

  • 0

#90
Faithsa

Faithsa

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 190 posts
ok here is the fix log below

the only listed with a yellow exclamation is under "other devices" PCI Simple Communications Controller



Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 11-03-2014
Ran by Owner at 2014-03-12 11:57:57 Run:1
Running from C:\Documents and Settings\Owner\Desktop
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Start
SearchScopes: HKLM - DefaultScope value is missing.
Toolbar: HKCU - No Name - {DD662A0C-12FE-4B38-BA53-247F7EC82F46} - No File
FF Homepage: hxxp://mysearch.avg.com?cid={92F66936-9348-4EC0-B63B-0D9177942433}&mid=1d4d15f6c6416e4b8db9cb0750829da1-a8d76063693a0a3d646f63578c80f896143d272e&lang=en&ds=ts024&coid=avgtbdists&cmpid=&pr=sa&d=2014-03-06 14:21:01&v=18.0.0.248&pid=safeguard&sg=&sap=hp
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\safeguard-secure-search.xml
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVG\AVG10\Toolbar\Firefox\[email protected]
C:\Program Files\Mozilla Firefox\plugins\npCouponPrinter.dll No File
C:\Program Files\Mozilla Firefox\plugins\npMozCouponPrinter.dll No File
C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll No File
C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll No File
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)
C:\Documents and Settings\Owner\Local Settings\Application Data\CRE\hgeaklkciolgbejekedbdphhbjbiaamp.crx
C:\Documents and Settings\Owner\Local Settings\Application Data\CRE\hgeaklkciolgbejekedbdphhbjbiaamp.crx
S1 AntiLog32; \??\C:\WINDOWS\system32\drivers\AntiLog32.sys [X]
S3 AVGIDSShim; system32\DRIVERS\AVGIDSShim.Sys [X]
S3 keycrypt; system32\DRIVERS\KeyCrypt32.sys [X]
C:\Documents and Settings\Owner\Local Settings\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpnendpj.dll
End
*****************

HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{DD662A0C-12FE-4B38-BA53-247F7EC82F46} => Value deleted successfully.
HKCR\CLSID\{DD662A0C-12FE-4B38-BA53-247F7EC82F46} => Key not found.
Firefox homepage deleted successfully.
C:\Program Files\mozilla firefox\browser\searchplugins\safeguard-secure-search.xml => Moved successfully.
HKLM\Software\Mozilla\Firefox\Extensions\\[email protected] => Value deleted successfully.
"C:\Program Files\Mozilla Firefox\plugins\npCouponPrinter.dll No File" => File/Directory not found.
"C:\Program Files\Mozilla Firefox\plugins\npMozCouponPrinter.dll No File" => File/Directory not found.
"C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll No File" => File/Directory not found.
"C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll No File" => File/Directory not found.

"C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)" directory move:

C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\craw_background.js => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\craw_window.js => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\manifest.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\zh_TW\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\zh_CN\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\vi\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\uk\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\tr\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\th\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\sv\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\sr\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\sl\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\sk\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\ru\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\ro\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\pt_PT\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\pt_BR\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\pl\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\nl\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\nb\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\lv\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\lt\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\ko\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\ja\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\it\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\id\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\hu\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\hr\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\hi\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\fr\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\fil\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\fi\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\et\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\es_419\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\es\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\en_GB\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\en\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\el\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\de\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\da\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\cs\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\ca\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\_locales\bg\messages.json => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\images\flapper.gif => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\images\icon_128.png => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\images\icon_16.png => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\images\topbar_floating_button.png => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\images\topbar_floating_button_close.png => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\images\topbar_floating_button_hover.png => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\images\topbar_floating_button_maximize.png => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\images\topbar_floating_button_pressed.png => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\html\craw_window.html => Moved successfully.
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)\scoped_dir_3920_10188\CRX_INSTALL\css\craw_window.css => Moved successfully.
Could not move "C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2)" directory. => Scheduled to move on reboot.

"C:\Documents and Settings\Owner\Local Settings\Application Data\CRE\hgeaklkciolgbejekedbdphhbjbiaamp.crx" => File/Directory not found.
"C:\Documents and Settings\Owner\Local Settings\Application Data\CRE\hgeaklkciolgbejekedbdphhbjbiaamp.crx" => File/Directory not found.
AntiLog32 => Service deleted successfully.
AVGIDSShim => Service deleted successfully.
keycrypt => Service deleted successfully.
C:\Documents and Settings\Owner\Local Settings\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpnendpj.dll => Moved successfully.

=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-03-12 12:00:10)<=

C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\Temp(2) => Moved successfully.

==== End of Fixlog ====
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP