Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Snapdo [Closed]


  • This topic is locked This topic is locked

#1
GSTSS1

GSTSS1

    New Member

  • Member
  • Pip
  • 9 posts
Hi I am using my friends computer which is infected with Snapdo, I have tried to get rid of it but with out success.

I need help!!

How can I add a report so someone can assist me?

Thanks so much.
  • 0

Advertisements


#2
Valinorum

Valinorum

    GeekU Guardian Bot

  • GeekU Moderator
  • 2,915 posts
Hi GSTSS1, :)

:welcome:

My name is Valinorum and I will be the acolyte today. Before we proceed, please, acknowledge yourself the following(s):

  • Please do not create any new threads on this while we are working on your system as it wastes another volunteer's time. If you are being helped/have solved the issue/no longer wish to continue, notify me in your reply and I will quickly close this thread. Failing to comply will result in denial of future assistance.
  • Please do not install any new software while we are working on this system as it may hinder our process.
  • Malware removal is a complicated process so don't stop following the steps even if the symptoms are not found. Keep up with me until I declare you clean.
  • Please do not try to fix anything without being ask.
  • Please do not attach your logs or put them inside code/quote tags. Do a Copy/Paste of the entire contents of the log file and submit it inside your post unless directed otherwise.
  • Please print or save the instructions I give you for quick reference. We may be using Safe mode which will cut you off from internet and you will not always be able to access this thread.
  • Back up your data. I will not knowingly suggest your any course that might damage your system but sometimes Malware infections are so severe that only option we have is to re-format and re-install the operating system.
  • If you are confused about any instruction stop and ask. Do not keep on going.
  • Do not repeat the steps if you face any problems.
  • I am not an omniscient. There are things even I cannot foresee. But what I know took years to learn and perfect the skill. This site is run by volunteers who help people in need in their own free time. I would ask you to respect their time and be patient as sometimes real life demands our time and replies to you can be delayed.
  • Private Message(PM) if and only if I have not responded to your thread within three days or your query is offtopic and personal. Do not PM me under any other circumstances. Your thread is the only medium of communication.
  • The fixes are for your system only. Please refrain from using these fixes on other system as it may do serious damage.

Note: Please, bare in mind that I am still a trainee and my replies need to be reviewed by my teachers before I post them to you which requires time as both teachers and helpers are volunteers here. Take it as a good thing because now you have two people examining your problem. I really hope that we will be able to send you home with a smile on your face. :)

 

Few questions beforehand --
  • Which Operating System you believe is infected?
  • Is it 32-bit or 64-bit?

  • 0

#3
GSTSS1

GSTSS1

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
Hi I have run the OTL Scan

OTL logfile created on: 3/16/2014 7:33:01 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Leiza\Downloads
Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16428)
Locale: 00000409 | Country: Australia | Language: ENA | Date Format: d/MM/yyyy

2.74 Gb Total Physical Memory | 1.36 Gb Available Physical Memory | 49.73% Memory free
5.48 Gb Paging File | 3.72 Gb Available in Paging File | 67.83% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 581.31 Gb Total Space | 520.85 Gb Free Space | 89.60% Space Free | Partition Type: NTFS

Computer Name: LEIZA-PC | User Name: Leiza | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2014/03/16 19:24:44 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Leiza\Downloads\OTL.exe
PRC - [2014/03/15 10:50:42 | 000,859,976 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
PRC - [2014/01/03 01:32:12 | 001,363,616 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
PRC - [2014/01/03 01:32:04 | 001,748,640 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
PRC - [2013/12/21 16:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013/11/29 19:27:50 | 000,473,496 | ---- | M] (TomTom) -- C:\Program Files\MyDrive Connect\MyDriveConnect.exe
PRC - [2013/08/02 10:52:57 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
PRC - [2013/05/21 14:44:22 | 000,144,368 | R--- | M] (Symantec Corporation) -- C:\Program Files\Norton 360\Engine\20.4.0.40\ccsvchst.exe
PRC - [2012/11/23 12:48:41 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2012/04/03 13:33:00 | 000,940,168 | ---- | M] (CANON INC.) -- C:\Program Files\Canon\Quick Menu\CNQMSWCS.EXE
PRC - [2012/04/03 13:27:16 | 001,087,608 | ---- | M] (CANON INC.) -- C:\Program Files\Canon\Quick Menu\CNQMUPDT.EXE
PRC - [2012/04/03 13:26:14 | 001,273,448 | ---- | M] (CANON INC.) -- C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE
PRC - [2012/03/26 17:35:16 | 000,449,168 | ---- | M] (CANON INC.) -- C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
PRC - [2011/03/03 08:33:06 | 000,189,880 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TECO\TecoService.exe
PRC - [2011/03/03 08:32:48 | 001,349,032 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TECO\Teco.exe
PRC - [2011/03/03 03:28:40 | 000,521,640 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\Power Saver\TPwrMain.exe
PRC - [2011/02/25 15:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2011/01/16 23:04:40 | 000,801,896 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
PRC - [2011/01/16 22:25:26 | 000,378,984 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2010/12/21 11:30:38 | 002,656,280 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel® Management Engine Components\UNS\UNS.exe
PRC - [2010/12/21 11:30:36 | 000,325,656 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel® Management Engine Components\LMS\LMS.exe
PRC - [2010/12/21 11:26:10 | 000,624,048 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TPHM\TPCHWMsg.exe
PRC - [2010/12/21 11:25:52 | 000,685,488 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TPHM\TPCHSrv.exe
PRC - [2010/12/16 08:21:44 | 000,844,152 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\FlashCards\TCrdMain.exe
PRC - [2010/12/15 09:53:34 | 000,031,648 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\ReelTime\TosReelTimeMonitor.exe
PRC - [2010/12/14 10:06:02 | 000,468,904 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe
PRC - [2010/12/10 10:43:20 | 000,468,392 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
PRC - [2010/12/09 08:36:08 | 000,112,032 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
PRC - [2010/12/09 08:35:36 | 001,021,344 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosSENotify.exe
PRC - [2010/12/04 07:57:16 | 000,304,560 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\ConfigFree\NDSTray.exe
PRC - [2010/11/30 07:58:34 | 001,294,712 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA Service Station\ToshibaServiceStation.exe
PRC - [2010/11/30 07:58:30 | 000,054,136 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA Service Station\TMachInfo.exe
PRC - [2010/10/21 07:40:00 | 000,128,416 | ---- | M] (TOSHIBA Corporation) -- C:\Windows\System32\TODDSrv.exe
PRC - [2010/06/05 09:32:58 | 000,252,792 | ---- | M] (TOSHIBA) -- C:\Program Files\Toshiba\TOSHIBA Sleep Utility\TSleepSrv.exe
PRC - [2010/05/04 15:47:18 | 002,044,248 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe
PRC - [2010/02/03 09:35:21 | 000,103,792 | ---- | M] (Symantec Corporation) -- C:\Program Files\Norton PC Checkup\Engine\2.0.3.202\SymcPCCULaunchSvc.exe
PRC - [2010/01/29 09:44:24 | 000,185,712 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\ConfigFree\CFIWmxSvcs.exe
PRC - [2009/08/25 08:49:41 | 000,126,392 | R--- | M] (Symantec Corporation) -- C:\Program Files\Norton PC Checkup\Engine\2.0.3.202\ccSvcHst.exe
PRC - [2009/07/29 13:26:42 | 000,062,848 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\ConfigFree\CFSwMgr.exe
PRC - [2009/07/23 06:40:00 | 000,083,336 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\Bluetooth Toshiba Stack\ItSecMng.exe
PRC - [2009/03/11 11:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\ConfigFree\CFSvcs.exe


========== Modules (No Company Name) ==========

MOD - [2014/03/15 10:50:40 | 013,637,448 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\33.0.1750.154\PepperFlash\pepflashplayer.dll
MOD - [2014/03/15 10:50:40 | 000,394,568 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\33.0.1750.154\ppgooglenaclpluginchrome.dll
MOD - [2014/03/15 10:50:38 | 004,061,000 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\33.0.1750.154\pdf.dll
MOD - [2014/03/15 10:50:35 | 000,716,616 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\33.0.1750.154\libglesv2.dll
MOD - [2014/03/15 10:50:34 | 000,100,168 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\33.0.1750.154\libegl.dll
MOD - [2014/03/15 10:50:32 | 001,647,432 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\33.0.1750.154\ffmpegsumo.dll
MOD - [2014/03/15 10:50:30 | 000,051,016 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\33.0.1750.154\chrome_elf.dll
MOD - [2014/03/08 09:51:45 | 000,190,976 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\UIAutomationTypes\75b6a68103e1b76063d9f69b8275ae61\UIAutomationTypes.ni.dll
MOD - [2014/03/08 09:51:45 | 000,100,864 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\UIAutomationProvider\c94c36c9ae776de930f2aacb6dd51c38\UIAutomationProvider.ni.dll
MOD - [2014/03/08 09:51:42 | 000,018,944 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\Presentatio49d6fefe#\47e7fc401facd4a5d3f2237f16948f36\PresentationFramework-SystemXml.ni.dll
MOD - [2014/03/01 11:56:36 | 018,813,440 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\Presentatio5ae0f00f#\a4b45c44490c75bc2fb22780e7ef087d\PresentationFramework.ni.dll
MOD - [2014/03/01 11:56:14 | 011,025,920 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\a74542efbeb46445949a39026c501132\PresentationCore.ni.dll
MOD - [2014/03/01 11:56:13 | 001,889,792 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\3fe705796c6a41d4889d9001d1c56af8\System.Xaml.ni.dll
MOD - [2014/03/01 11:56:12 | 012,894,208 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\f4f6ee0df2aa4189bf36e6335cb92761\System.Windows.Forms.ni.dll
MOD - [2014/03/01 11:56:11 | 000,802,816 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Runt73a1fc9d#\966f64a25064fe74936295dc06ec586e\System.Runtime.Remoting.ni.dll
MOD - [2014/03/01 11:56:03 | 007,662,080 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Xml\bada32953bb6b16a53d653eae23d78dc\System.Xml.ni.dll
MOD - [2014/03/01 11:56:02 | 001,644,544 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\5cd2aee5e7c07227c694d89219688ab3\System.Drawing.ni.dll
MOD - [2014/03/01 11:56:00 | 006,990,336 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Core\dce99d8de14d8a015313db98c72552ee\System.Core.ni.dll
MOD - [2014/03/01 11:55:58 | 003,950,080 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\acf97bfe2a931d4a47253b26b7218991\WindowsBase.ni.dll
MOD - [2014/03/01 11:55:56 | 000,976,384 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\bbc48ec4245e502ae19b0601d3799c9e\System.Configuration.ni.dll
MOD - [2014/03/01 11:55:54 | 000,470,528 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\Presentatio1c9175f8#\75f8bc4cf08030c4a53b6d5e0ae20046\PresentationFramework.Aero.ni.dll
MOD - [2014/03/01 11:55:53 | 010,060,800 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System\ff26cc03e6d57d8abd13b990332e67c6\System.ni.dll
MOD - [2014/03/01 11:55:38 | 016,953,856 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\mscorlib\ce5f61c5754789df97be8dc991c47d07\mscorlib.ni.dll
MOD - [2014/02/20 07:10:25 | 000,212,992 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\b34b348a9935338b1282fd0c9309eb1f\System.ServiceProcess.ni.dll
MOD - [2014/02/20 07:09:48 | 012,436,480 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\8bc548587e91ecf0552a40e47bbf99cc\System.Windows.Forms.ni.dll
MOD - [2014/02/20 07:09:42 | 001,593,344 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\5c24d3b0041ebf4f48a93615b9fa3de9\System.Drawing.ni.dll
MOD - [2014/02/20 07:09:24 | 005,464,064 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\217ece46920546d718414291d463bb1c\System.Xml.ni.dll
MOD - [2014/02/20 07:09:20 | 000,978,432 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\5b6ddf934128d538cd5cd77bf4209b93\System.Configuration.ni.dll
MOD - [2014/02/20 07:09:19 | 007,989,760 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System\b3a78269847005365001c33870cd121f\System.ni.dll
MOD - [2014/02/20 07:09:03 | 011,499,520 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\ede2c6c842840e009f01bcc74fa4c457\mscorlib.ni.dll
MOD - [2013/11/29 19:29:40 | 000,026,520 | ---- | M] () -- C:\Program Files\MyDrive Connect\DeviceDetection.dll
MOD - [2013/11/29 19:28:34 | 000,344,984 | ---- | M] () -- C:\Program Files\MyDrive Connect\TomTomSupporterProxy.dll
MOD - [2013/11/29 19:28:12 | 000,082,840 | ---- | M] () -- C:\Program Files\MyDrive Connect\TomTomSupporterBase.dll
MOD - [2012/05/31 00:51:08 | 000,699,280 | R--- | M] () -- C:\Program Files\Norton 360\Engine\20.4.0.40\wincfi39.dll
MOD - [2012/02/20 21:29:04 | 000,087,912 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2012/02/20 21:28:42 | 001,242,472 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2011/04/08 21:00:20 | 008,007,680 | ---- | M] () -- C:\windows\assembly\GAC\Microsoft.mshtml\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.mshtml.dll
MOD - [2010/12/16 08:18:08 | 000,107,936 | ---- | M] () -- C:\Program Files\Toshiba\TECO\MUIHelp.dll
MOD - [2010/12/09 08:35:12 | 000,079,264 | ---- | M] () -- C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosIPCWraper.dll
MOD - [2010/11/19 10:18:34 | 011,205,120 | ---- | M] () -- C:\Program Files\Toshiba\FlashCards\BlackPng.dll


========== Services (SafeList) ==========

SRV - [2014/03/16 15:48:52 | 000,257,928 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014/02/15 12:12:01 | 000,118,896 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2014/01/03 01:32:12 | 001,363,616 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe -- (c2cautoupdatesvc)
SRV - [2014/01/03 01:32:04 | 001,748,640 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe -- (c2cpnrsvc)
SRV - [2013/12/21 16:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013/12/04 20:59:03 | 000,108,032 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\System32\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV - [2013/10/23 08:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013/05/27 14:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2013/05/21 14:44:22 | 000,144,368 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Norton 360\Engine\20.4.0.40\ccSvcHst.exe -- (N360)
SRV - [2012/01/29 18:50:34 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2011/03/03 08:33:06 | 000,189,880 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\Toshiba\TECO\TecoService.exe -- (TOSHIBA eco Utility Service)
SRV - [2011/01/16 22:25:26 | 000,378,984 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2010/12/21 11:30:38 | 002,656,280 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel® Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2010/12/21 11:30:36 | 000,325,656 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel® Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2010/12/21 11:25:52 | 000,685,488 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\Toshiba\TPHM\TPCHSrv.exe -- (TPCHSrv)
SRV - [2010/12/10 10:43:20 | 000,468,392 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe -- (TosCoSrv)
SRV - [2010/12/09 08:36:08 | 000,112,032 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosSmartSrv.exe -- (TOSHIBA HDD SSD Alert Service)
SRV - [2010/11/30 07:58:30 | 000,054,136 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\Toshiba\TOSHIBA Service Station\TMachInfo.exe -- (TMachInfo)
SRV - [2010/10/21 07:40:00 | 000,128,416 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Windows\System32\TODDSrv.exe -- (TODDSrv)
SRV - [2010/10/13 03:59:12 | 000,206,072 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files\WildTangent Games\App\GamesAppService.exe -- (GamesAppService)
SRV - [2010/05/04 15:47:18 | 002,044,248 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe -- (NOBU)
SRV - [2010/04/13 03:46:00 | 000,152,944 | ---- | M] (TOSHIBA CORPORATION) [On_Demand | Stopped] -- C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe -- (TOSHIBA Bluetooth Service)
SRV - [2010/02/03 09:35:21 | 000,103,792 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Norton PC Checkup\Engine\2.0.3.202\SymcPCCULaunchSvc.exe -- (Norton PC Checkup Application Launcher)
SRV - [2010/01/29 09:44:24 | 000,185,712 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files\Toshiba\ConfigFree\CFIWmxSvcs.exe -- (cfWiMAXService)
SRV - [2009/08/25 08:49:41 | 000,126,392 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Norton PC Checkup\Engine\2.0.3.202\ccSvcHst.exe -- (PCCUJobMgr)
SRV - [2009/07/14 11:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009/03/11 11:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files\Toshiba\ConfigFree\CFSvcs.exe -- (ConfigFree Service)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (Tosrfcom)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ewusbmdm.sys -- (hwdatacard)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ewusbnet.sys -- (ewusbnet)
DRV - [2014/03/08 10:22:47 | 000,395,992 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\IPSDefs\20140314.001\IDSvix86.sys -- (IDSVix86)
DRV - [2013/12/18 10:32:11 | 001,098,968 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\BASHDefs\20140214.001\BHDrvx86.sys -- (BHDrvx86)
DRV - [2013/11/23 09:24:30 | 000,376,920 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -- (eeCtrl)
DRV - [2013/11/23 09:24:30 | 000,108,120 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2013/10/02 10:42:31 | 000,049,152 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2013/08/31 09:15:30 | 001,612,376 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\VirusDefs\20140315.009\NAVEX15.SYS -- (NAVEX15)
DRV - [2013/08/31 09:15:30 | 000,093,272 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\VirusDefs\20140315.009\NAVENG.SYS -- (NAVENG)
DRV - [2013/06/18 10:36:16 | 000,142,496 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\SYMEVENT.SYS -- (SymEvent)
DRV - [2013/05/23 15:25:28 | 000,934,488 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\Windows\System32\drivers\N360\1404000.028\symefa.sys -- (SymEFA)
DRV - [2013/05/21 15:02:00 | 000,367,704 | ---- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\N360\1404000.028\symds.sys -- (SymDS)
DRV - [2013/05/16 15:02:14 | 000,603,224 | ---- | M] (Symantec Corporation) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\N360\1404000.028\srtsp.sys -- (SRTSP)
DRV - [2013/04/25 10:43:56 | 000,339,544 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\N360\1404000.028\symnets.sys -- (SymNetS)
DRV - [2013/04/16 12:41:14 | 000,134,744 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\N360\1404000.028\ccsetx86.sys -- (ccSet_N360)
DRV - [2013/03/05 11:39:19 | 000,175,264 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\N360\1404000.028\ironx86.sys -- (SymIRON)
DRV - [2013/03/05 11:21:35 | 000,032,344 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\N360\1404000.028\srtspx.sys -- (SRTSPX)
DRV - [2013/02/06 07:42:10 | 000,083,864 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssudbus.sys -- (dg_ssudbus)
DRV - [2012/08/24 00:44:32 | 000,014,848 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV - [2011/12/20 12:46:50 | 000,021,504 | ---- | M] (http://libusb-win32.sourceforge.net) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\libusb0.sys -- (libusb0)
DRV - [2011/02/09 12:08:00 | 000,033,616 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\PGEffect.sys -- (PGEffect)
DRV - [2011/01/28 08:26:16 | 000,056,888 | ---- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tosrfusb.sys -- (Tosrfusb)
DRV - [2011/01/28 05:35:04 | 001,281,152 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CHDRT32.sys -- (CnxtHdAudService)
DRV - [2011/01/16 22:43:00 | 010,552,968 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2011/01/13 03:17:18 | 000,106,752 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\zghsmdm.sys -- (zghsmdm)
DRV - [2010/12/18 12:44:24 | 002,129,408 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athr.sys -- (athr)
DRV - [2010/12/11 06:50:12 | 000,141,440 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nusb3xhc.sys -- (nusb3xhc)
DRV - [2010/12/11 06:50:12 | 000,062,336 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nusb3hub.sys -- (nusb3hub)
DRV - [2010/12/02 09:12:04 | 000,197,224 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV - [2010/12/01 07:40:04 | 000,226,408 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\RtsUVStor.sys -- (RSUSBVSTOR)
DRV - [2010/11/21 07:29:03 | 000,035,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb)
DRV - [2010/11/21 07:29:03 | 000,027,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV - [2010/11/13 00:10:52 | 000,122,984 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvhda32v.sys -- (NVHDA)
DRV - [2010/11/09 05:43:48 | 000,068,208 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\L1C62x86.sys -- (L1C)
DRV - [2010/10/20 09:33:40 | 000,041,088 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HECI.sys -- (MEI)
DRV - [2010/10/19 07:13:58 | 000,033,640 | R--- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btfilter.sys -- (BtFilter)
DRV - [2010/06/19 09:44:00 | 000,015,160 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tosrfec.sys -- (tosrfec)
DRV - [2009/07/31 10:45:56 | 000,022,912 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tdcmdpst.sys -- (tdcmdpst)
DRV - [2009/07/15 08:28:42 | 000,023,512 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\TVALZ_O.SYS -- (TVALZ)
DRV - [2009/06/20 12:31:08 | 000,012,920 | ---- | M] (TOSHIBA Corporation) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\TVALZFL.sys -- (TVALZFL)
DRV - [2009/06/16 06:58:22 | 000,009,216 | ---- | M] (TOSHIBA) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\QIOMem.sys -- (QIOMem)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,NewTabPageShow = 1
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.google.com
IE - HKLM\..\SearchScopes,DefaultScope = {67C334C0-408D-4E6D-B5A7-0ADD6AFFA252}
IE - HKLM\..\SearchScopes\{67C334C0-408D-4E6D-B5A7-0ADD6AFFA252}: "URL" = http://www.google.co...utputEncoding?}

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,NewTabPageShow = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
IE - HKCU\..\SearchScopes,DefaultScope = {67C334C0-408D-4E6D-B5A7-0ADD6AFFA252}
IE - HKCU\..\SearchScopes\{67C334C0-408D-4E6D-B5A7-0ADD6AFFA252}: "URL" = http://www.google.co...utputEncoding?}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..extensions.enabledAddons: %7B335afb9e-1582-dcbd-8d63-362e2d69959c%7D:1.1
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:27.0.1


FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@canon.com/EPPEX: C:\Program Files\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll (CANON INC.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MIF5BA~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MIF5BA~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3522.0110: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@MyScrapNook_12.com/Plugin: C:\Program Files\MyScrapNook_12\bar\1.bin\NP12Stub.dll (MindSpark)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\coFFPlgn\ [2014/03/16 17:23:53 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\IPSFF [2013/10/12 12:18:44 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]_12.com: C:\Program Files\MyScrapNook_12\bar\1.bin [2013/09/25 20:29:15 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins

[2012/03/11 11:43:34 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Leiza\AppData\Roaming\Mozilla\Extensions
[2012/03/11 11:43:34 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Leiza\AppData\Roaming\Mozilla\Extensions\[email protected]
[2014/03/16 18:10:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Leiza\AppData\Roaming\Mozilla\Firefox\Profiles\t8zm7ye2.default\extensions
[2014/03/08 10:19:46 | 000,000,000 | ---D | M] (My Scrap Nook) -- C:\Users\Leiza\AppData\Roaming\Mozilla\Firefox\Profiles\t8zm7ye2.default\extensions\[email protected]_12.com
[2014/02/26 13:43:22 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
[2014/02/15 12:12:03 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
File not found (No name found) -- C:\USERS\LEIZA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T8ZM7YE2.DEFAULT\EXTENSIONS\{335AFB9E-1582-DCBD-8D63-362E2D69959C}

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
CHR - plugin: Error reading preferences file
CHR - Extension: Google Docs = C:\Users\Leiza\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0\
CHR - Extension: Google Docs = C:\Users\Leiza\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\
CHR - Extension: Google Drive = C:\Users\Leiza\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0\
CHR - Extension: Google Drive = C:\Users\Leiza\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: YouTube = C:\Users\Leiza\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: YouTube = C:\Users\Leiza\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Google Search = C:\Users\Leiza\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Google Search = C:\Users\Leiza\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Skype Click to Call = C:\Users\Leiza\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\
CHR - Extension: Skype Click to Call = C:\Users\Leiza\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.1.15383.6004_0\
CHR - Extension: Google Wallet = C:\Users\Leiza\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: Gmail = C:\Users\Leiza\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

Hosts file not found
O2 - BHO: (Canon Easy-WebPrint EX BHO) - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
O2 - BHO: (Norton Identity Protection) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton 360\Engine\20.4.0.40\coieplg.dll (Symantec Corporation)
O2 - BHO: (Norton Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton 360\Engine\20.4.0.40\ips\ipsbho.dll (Symantec Corporation)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (TOSHIBA Media Controller Plug-in) - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files\Toshiba\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll (<TOSHIBA>)
O3 - HKLM\..\Toolbar: (Canon Easy-WebPrint EX) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\20.4.0.40\coieplg.dll (Symantec Corporation)
O3 - HKLM\..\Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\20.4.0.40\coieplg.dll (Symantec Corporation)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [CanonQuickMenu] C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE (CANON INC.)
O4 - HKLM..\Run: [HSON] C:\Program Files\Toshiba\TBS\HSON.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [IJNetworkScannerSelectorEX] C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe (CANON INC.)
O4 - HKLM..\Run: [ITSecMng] C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe (TOSHIBA CORPORATION)
O4 - HKLM..\Run: [NortonOnlineBackup] C:\Program Files\Symantec\Norton Online Backup\NOBuClient.exe (Symantec Corporation)
O4 - HKLM..\Run: [SmartAudio] C:\Program Files\CONEXANT\SAII\SAIICpl.exe (Conexant systems, Inc.)
O4 - HKLM..\Run: [TCrdMain] C:\Program Files\Toshiba\FlashCards\TCrdMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [Teco] C:\Program Files\TOSHIBA\TECO\Teco.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [ToshibaServiceStation] C:\Program Files\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TosNC] C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TosReelTimeMonitor] C:\Program Files\Toshiba\ReelTime\TosReelTimeMonitor.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TosSENotify] C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosWaitSrv.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TosVolRegulator] C:\Program Files\Toshiba\TosVolRegulator\TosVolRegulator.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TosWaitSrv] C:\Program Files\Toshiba\TPHM\TosWaitSrv.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TPwrMain] C:\Program Files\Toshiba\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TSleepSrv] C:\Program Files\Toshiba\TOSHIBA Sleep Utility\TSleepSrv.exe (TOSHIBA)
O4 - HKCU..\Run: [MyDriveConnect.exe] C:\Program Files\MyDrive Connect\MyDriveConnect.exe (TomTom)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9 - Extra Button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - Reg Error: Value error. File not found
O9 - Extra 'Tools' menuitem : @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - Reg Error: Value error. File not found
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - Reg Error: Value error. File not found
O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - Reg Error: Value error. File not found
O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - Reg Error: Value error. File not found
O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - Reg Error: Value error. File not found
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - Reg Error: Value error. File not found
O9 - Extra Button: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-229 - {97F922BD-8563-4184-87EE-8C4ACA438823} - Reg Error: Value error. File not found
O9 - Extra 'Tools' menuitem : @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-228 - {97F922BD-8563-4184-87EE-8C4ACA438823} - Reg Error: Value error. File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} http://www.fujifilmi...geUploader5.cab (Image Uploader Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_20)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0FBAC44D-721E-4C42-9343-8DE90CCCADC7}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{5ADE3C0F-F6AE-4752-B0CE-B7BA3E30B511}: DhcpNameServer = 192.168.0.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/11 07:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{ff2af3c5-530f-11e2-8518-e89a8ff13c1c}\Shell - "" = AutoRun
O33 - MountPoints2\{ff2af3c5-530f-11e2-8518-e89a8ff13c1c}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O33 - MountPoints2\{ff2af3cb-530f-11e2-8518-e89a8ff13c1c}\Shell - "" = AutoRun
O33 - MountPoints2\{ff2af3cb-530f-11e2-8518-e89a8ff13c1c}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2014/03/16 18:17:53 | 000,000,000 | ---D | C] -- C:\ProgramData\BoostSoftware
[2014/03/16 17:34:15 | 000,000,000 | ---D | C] -- C:\Users\Leiza\Documents\My Weblog Posts
[2014/03/16 17:12:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2014/03/16 15:23:17 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft
[2014/03/16 15:23:17 | 000,000,000 | ---D | C] -- C:\Program Files\Adware-Removal-Tool
[2014/03/09 12:44:09 | 000,000,000 | ---D | C] -- C:\Users\Leiza\AppData\Local\{2FAE728A-432C-4514-B13E-790E5DE4C93D}
[2014/03/09 12:32:47 | 000,000,000 | ---D | C] -- C:\Users\Leiza\Tracing
[2014/03/09 12:29:29 | 000,000,000 | ---D | C] -- C:\Users\Leiza\AppData\Local\{325F9FA0-C8B1-4458-B901-F3233BF3188F}
[2014/03/09 12:00:31 | 000,000,000 | ---D | C] -- C:\windows\en
[2014/03/09 11:56:12 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft OneDrive
[2014/03/09 11:56:07 | 000,000,000 | R--D | C] -- C:\Users\Leiza\OneDrive
[2014/03/09 11:55:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft OneDrive
[2014/03/08 12:24:49 | 000,000,000 | ---D | C] -- C:\Users\Leiza\AppData\Local\{266A7E14-96ED-47A0-9149-93895C87CE0D}
[2014/03/08 10:51:19 | 000,000,000 | ---D | C] -- C:\Users\Leiza\Documents\AAL
[2014/02/26 14:31:19 | 000,000,000 | ---D | C] -- C:\windows\Migration
[2014/02/15 12:11:56 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox

========== Files - Modified Within 30 Days ==========

[2014/03/16 19:29:00 | 000,000,884 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/03/16 18:48:00 | 000,000,830 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2014/03/16 18:07:39 | 000,000,020 | ---- | M] () -- C:\windows\@¨╚
[2014/03/16 17:52:46 | 000,025,120 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/03/16 17:52:46 | 000,025,120 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/03/16 17:24:28 | 000,002,196 | ---- | M] () -- C:\Users\Leiza\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2014/03/16 17:24:23 | 000,001,378 | ---- | M] () -- C:\Users\Leiza\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2014/03/16 17:24:21 | 000,000,880 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/03/16 17:24:21 | 000,000,472 | ---- | M] () -- C:\windows\tasks\SDMsgUpdate (TE).job
[2014/03/16 17:23:09 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2014/03/16 17:23:06 | 2206,617,600 | -HS- | M] () -- C:\hiberfil.sys
[2014/03/16 17:12:49 | 000,002,172 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014/03/16 17:03:43 | 000,346,984 | ---- | M] () -- C:\windows\System32\FNTCACHE.DAT
[2014/03/01 11:53:15 | 000,658,942 | ---- | M] () -- C:\windows\System32\perfh009.dat
[2014/03/01 11:53:15 | 000,126,622 | ---- | M] () -- C:\windows\System32\perfc009.dat
[2014/02/15 11:24:39 | 000,000,426 | ---- | M] () -- C:\AVScanner.ini

========== Files Created - No Company Name ==========

[2014/03/16 18:07:39 | 000,000,020 | ---- | C] () -- C:\windows\@¨╚
[2014/03/16 17:24:23 | 000,001,384 | ---- | C] () -- C:\Users\Leiza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2014/03/16 17:24:23 | 000,001,378 | ---- | C] () -- C:\Users\Leiza\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2014/03/16 17:12:49 | 000,002,196 | ---- | C] () -- C:\Users\Leiza\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2014/03/16 17:12:49 | 000,002,172 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014/03/16 15:14:49 | 000,000,426 | ---- | C] () -- C:\AVScanner.ini
[2014/03/09 11:59:52 | 000,001,222 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
[2014/03/09 11:59:36 | 000,001,291 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
[2014/03/09 11:56:04 | 000,002,186 | ---- | C] () -- C:\Users\Leiza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk

========== ZeroAccess Check ==========

[2009/07/14 14:42:31 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/07/26 11:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/21 07:29:20 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/14 11:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2013/12/21 16:39:50 | 000,000,000 | ---D | M] -- C:\Users\Leiza\AppData\Roaming\Canon
[2012/11/01 05:26:19 | 000,000,000 | ---D | M] -- C:\Users\Leiza\AppData\Roaming\OpenCandy
[2012/06/10 15:01:55 | 000,000,000 | ---D | M] -- C:\Users\Leiza\AppData\Roaming\SmartDraw
[2012/01/28 19:02:32 | 000,000,000 | ---D | M] -- C:\Users\Leiza\AppData\Roaming\Tific
[2012/03/11 11:43:30 | 000,000,000 | ---D | M] -- C:\Users\Leiza\AppData\Roaming\TomTom
[2012/01/28 19:19:11 | 000,000,000 | ---D | M] -- C:\Users\Leiza\AppData\Roaming\Toshiba
[2013/02/20 19:26:51 | 000,000,000 | ---D | M] -- C:\Users\Leiza\AppData\Roaming\TuneUp Software
[2012/01/31 21:08:05 | 000,000,000 | ---D | M] -- C:\Users\Leiza\AppData\Roaming\Windows Live Writer

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 1205 bytes -> C:\Users\Leiza\Documents\AGL Solar Estimate for EKOENERGY Saver 2000 with EKOENERGY 2000 Inverter (250w Panels).eml:OECustomProperty

< End of report >
  • 0

#4
Valinorum

Valinorum

    GeekU Guardian Bot

  • GeekU Moderator
  • 2,915 posts
Post the Extras.txt located in C:\Users\Leiza\Downloads.
  • 0

#5
GSTSS1

GSTSS1

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
OTL Extras logfile created on: 16/03/2014 7:49:47 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Leiza\Downloads
Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16428)
Locale: 00000409 | Country: Australia | Language: ENA | Date Format: d/MM/yyyy

2.74 Gb Total Physical Memory | 1.56 Gb Available Physical Memory | 56.94% Memory free
5.48 Gb Paging File | 4.04 Gb Available in Paging File | 73.70% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 581.31 Gb Total Space | 520.85 Gb Free Space | 89.60% Space Free | Partition Type: NTFS

Computer Name: LEIZA-PC | User Name: Leiza | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\windows\winhlp32.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-163169490-976871693-3509997288-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" /p %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0F13A18B-EE3F-490D-A68C-22F174F649FC}" = rport=137 | protocol=17 | dir=out | app=system |
"{187E0C5A-C6AE-4B01-8BA0-49067E4DC8DF}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{19E34C5E-F680-4FA6-9875-4CD01C1E8022}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{2303D312-BCBF-4E41-9767-28E15E882292}" = rport=139 | protocol=6 | dir=out | app=system |
"{272DC7E5-AE52-4242-AF50-396C0139F4B5}" = rport=445 | protocol=6 | dir=out | app=system |
"{28941199-A675-4B11-9850-2473FAC1D201}" = lport=139 | protocol=6 | dir=in | app=system |
"{43391FC5-2D54-466D-90C6-7373C40118CF}" = lport=137 | protocol=17 | dir=in | app=system |
"{4AA05B0B-B269-4C51-AEA2-F9162B2D666D}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{4FFC964C-220E-4186-833F-D56E10382A7B}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{5632B200-74D7-470C-8D90-65D26F1F9255}" = lport=138 | protocol=17 | dir=in | app=system |
"{5A338370-2707-4B5E-A991-BC1F5BC2CE8F}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{672F8732-F47A-4476-8D37-80F8AEF3141D}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{72D61C78-385F-4078-AC76-1E03D3CD87BE}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{7A11C647-4789-46BC-84E3-9E94F862531C}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{7A495B38-6F45-4BFD-ACD4-473E81EB8C5F}" = lport=445 | protocol=6 | dir=in | app=system |
"{8C90BC75-64F5-4DBF-B304-D1502C15ABCE}" = rport=138 | protocol=17 | dir=out | app=system |
"{94B91304-3AE1-4B59-90DC-E4B6943644A0}" = rport=10243 | protocol=6 | dir=out | app=system |
"{9766A1CD-2DF6-46D0-93F3-C362D73B1EB9}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{9B537197-4BF9-4B91-8769-F10792F35E80}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{AE312769-7FE8-497E-ABEE-76E7071333BC}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{C17FBA5B-36D3-4589-A3AF-5282218606B2}" = lport=2869 | protocol=6 | dir=in | app=system |
"{DD9BBAFD-3FFE-436F-9620-C513CCCA5342}" = lport=10243 | protocol=6 | dir=in | app=system |
"{F0E72E09-4969-4079-8636-B52D0B728EB6}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{F58F869A-F0F2-4437-A414-38BECD50C668}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
"{FF2355F0-C65A-4BAF-B83C-073E1717295D}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0EA3F121-7BCC-4EEB-A14E-72F354820D18}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{10274D00-FB1C-49CC-9186-C6B2D892ABB6}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{112EC036-F928-4AA7-B7CF-7279A05E4425}" = protocol=1 | dir=out | [email protected],-28544 |
"{1B9DB7AE-0B29-4D61-981F-F6B0EE103828}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{2A17731C-9FB7-4E1C-A475-7E17F2A60D43}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{2E9215DD-F88B-485C-AC75-66DE8B6C33EC}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{30AD5720-7CCB-4E85-A27E-F9BADBFEC8CD}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{387A3447-092E-4680-84AC-6377B05974DE}" = protocol=1 | dir=in | [email protected],-28543 |
"{49CACC8F-A8BB-47C0-978C-C60C5EE9C07C}" = protocol=17 | dir=in | app=c:\program files\avg\avg2013\avgmfapx.exe |
"{603716F7-A8EA-4659-99F4-0E3C94F6B236}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{63477AD8-110F-4825-B5AF-3075E3F3F5DF}" = protocol=58 | dir=out | [email protected],-28546 |
"{6BA60639-59B3-410C-81E9-6DEBA48D9A80}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{6CECE5A3-E882-4EFA-8D84-BCEA5B2669D8}" = protocol=58 | dir=in | [email protected],-28545 |
"{738BDFD9-0934-4CA8-9FBD-B2D0F29499F1}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{7DCEBDB5-9708-4F2B-BB1A-3955C6001ADA}" = dir=in | app=c:\program files\itunes\itunes.exe |
"{7FF65A73-1006-436E-9E19-7505A26543E7}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe |
"{82A75830-BCDD-4D98-8CBC-CCA20F2BC564}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{8308282B-8F70-43B5-84B6-7539CC1C7199}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{851F5934-398D-4529-8936-384CA62F8DB3}" = dir=in | app=c:\users\leiza\appdata\local\microsoft\skydrive\skydrive.exe |
"{9AE8E4F1-8BA6-445A-BCB0-5BFAAE0E65D2}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{B00C84F2-4E1B-4109-826D-EFA5182AAAFB}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{B5C5236E-9DC4-4838-AE09-FC536494C98E}" = dir=in | app=c:\program files\windows live\contacts\wlcomm.exe |
"{BEE9ED1C-2FE2-4017-B3C5-E35761D3991E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{C2F1B6DA-FCB5-44D1-9991-15F7C544735B}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{DB7BD609-0D4F-40FA-A3ED-5DFC9636BAB1}" = protocol=6 | dir=in | app=c:\program files\avg\avg2013\avgmfapx.exe |
"{E5AD9235-B962-4FB3-83F1-7E68A70B0588}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{F6C9A73A-FFC5-481C-8C78-FB25A3BD048E}" = protocol=6 | dir=out | app=system |
"{FA98F40D-9DF6-4B83-9D87-D7C08B22220E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{008D69EB-70FF-46AB-9C75-924620DF191A}" = TOSHIBA Speech System SR Engine(U.S.) Version1.0
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG4200_series" = Canon MG4200 series MP Drivers
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP270_series" = Canon MP270 series MP Drivers
"{11E568E0-3244-4BCB-875E-F334269DFDCB}" = iTunes
"{16E46BCF-3D36-4353-9BCB-344F7812CEDE}" = Photo Gallery
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F9E8447-9B82-45D5-A6D7-2A4CB874111F}" = Windows Live Mail
"{24758B1D-9345-4538-A69A-05660F63A296}" = Junk Mail filter update
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java™ 6 Update 20
"{2C303EE0-A595-3543-A71A-931C7AC40EDE}" = Microsoft Primary Interoperability Assemblies 2005
"{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App" = Update Installer for WildTangent Games App
"{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.® AR81Family Gigabit/Fast Ethernet Driver
"{33ABEB66-85BB-43B2-9448-85CB626C5A5F}" = TOSHIBA Hardware Setup
"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel® Rapid Storage Technology
"{3FBF6F99-8EC6-41B4-8527-0A32241B5496}" = TOSHIBA Speech System TTS Engine(U.S.) Version1.0
"{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}" = Norton Online Backup
"{4260CAAE-D108-4223-A1C5-96B67062FE86}" = Windows Live Installer
"{4412F224-3849-4461-A3E9-DEEF8D252790}" = Visual Studio C++ 10.0 Runtime
"{4903D172-DCCB-392F-93A3-34CA9D47FE3D}" = Microsoft .NET Framework 4.5.1
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = SkypeÖ 6.11
"{53536479-DFB0-47ED-9D10-43F3708C222D}" = TOSHIBA eco Utility
"{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver
"{5494B59E-6E82-499E-91AC-C53199955EC5}" = Atheros Bluetooth Filter Driver Package
"{59307833-CB98-4440-B644-0CD352F61907}" = Windows Live PIMT Platform
"{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}" = Apple Application Support
"{5DA0E02F-970B-424B-BF41-513A5018E4C0}" = TOSHIBA Disc Creator
"{61EDBE71-5D3E-4AB7-AD95-E53FEAF68C17}" = Bing Rewards Client Installer
"{62BBB2F0-E220-4821-A564-730807D2C34D}" = Realtek USB 2.0 Reader Driver
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel® Management Engine Components
"{654F7484-88C5-46DC-AB32-C66BCB0E2102}" = TOSHIBA Sleep Utility
"{6CB76C9D-80C2-4CB3-A4CD-D96B239E3F94}" = TOSHIBA Resolution+ Plug-in for Windows Media Player
"{6F3C8901-EBD3-470D-87F8-AC210F6E5E02}" = TOSHIBA Web Camera Application
"{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-toshiba" = WildTangent Games App (Toshiba Games)
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{72D9236D-C6EA-4DA6-A18C-CC24521A70D4}" = Windows Live Mail
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour
"{7C0791D9-F1FB-48DD-B8E4-662BDAE42357}" = Windows Live Messenger
"{80E311AD-3A9C-45C7-A403-8FF3F7609764}" = Windows Live Writer
"{8256F87F-8554-4457-8C3D-3F3324697D9F}" = Windows Live ID Sign-in Assistant
"{84B11E58-A3BC-404F-AA08-23062374CBD2}" = Windows Live Family Safety
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8C22A294-DBBA-445F-B55C-E26817CCFE69}" = Movie Maker
"{8CD0B97D-46E9-4293-B467-A24DB96DB6DB}" = TOSHIBA ReelTime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}" = TomTom HOME Visual Studio Merge Modules
"{8F66BFDE-B213-48E2-93EF-7151277A2916}" = Windows Live SOXE Definitions
"{90140000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2010
"{90140000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2010
"{90140000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2010
"{90140000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2010
"{90140000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2010
"{90140000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2010
"{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010
"{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010
"{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010
"{90140000-003D-0000-0000-0000000FF1CE}" = Microsoft Office Single Image 2010
"{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010
"{90140000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2010
"{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010
"{90140000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2010
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{94532CD5-C66D-49E3-9131-5FB04D7647A1}" = Windows Live UX Platform
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
"{9797D7BA-A333-4DF1-AF55-AC745D216EDB}" = Windows Live Writer
"{983FA94A-A7DD-40B1-B7F9-F45D2B4FD1DE}" = Windows Live Photo Common
"{99E82553-9654-4FB7-8DB3-900C0FDB1A70}" = Windows Live Writer Resources
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}" = TOSHIBA PC Health Monitor
"{A2F4B74E-D722-4D9E-817B-F58F32A55A51}" = Windows Live UX Platform Language Pack
"{A59A15E8-2B9B-490D-916E-D608A9D0D295}" = Windows Live Writer
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9FFEC6C-9C44-4597-8E23-EDD78BF5D0B2}" = Windows Live Communications Platform
"{AC6569FA-6919-442A-8552-073BE69E247A}" = TOSHIBA Service Station
"{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI (11.0.06)
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA 3D Vision Driver 266.69
"{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Control Panel 266.69
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Graphics Driver 266.69
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX System Software 9.10.0514
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}" = TOSHIBA Recovery Media Creator
"{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}" = NVIDIA PhysX
"{BB285C9F-C821-4770-8970-56C4AB52C87E}" = Skype Click to Call
"{C201BDF9-1C27-46F8-A248-F4469C9FC27C}" = Photo Common
"{C2A276E3-154E-44DC-AAF1-FFDD7FD30E35}" = TOSHIBA Assist
"{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Atheros Driver Installation Program
"{C730E42C-935A-45BB-A0C5-37E5234D111B}" = TOSHIBA Face Recognition
"{C7A4F26F-F9B0-41B2-8659-99181108CDE3}" = TOSHIBA Media Controller
"{C87DF7BB-4F5C-4BBE-B041-A59FFF4A1D07}" = Windows Live SOXE
"{C95AEB53-7FAE-4257-97AF-7136E8D9F9CA}" = Movie Maker
"{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86
"{CDADE9BC-612C-42B8-B929-5C6A823E7FF9}" = TOSHIBA Wireless LAN Indicator
"{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba
"{D163019D-354F-4940-AAEB-7BDC46693572}" = Windows Live MIME IFilter
"{D2D8CB05-A9E1-4691-995C-2B78F4A58B8B}" = TOSHIBA Supervisor Password
"{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = TOSHIBA HDD/SSD Alert
"{D5AEEAA2-184E-4A2A-BAA3-6225EA4B9516}" = TOSHIBA ConfigFree
"{DF7DC45D-8A3C-490C-A70F-8C6A6189EDF9}" = Photo Gallery
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E14ADE0E-75F3-4A46-87E5-26692DD626EC}" = Apple Mobile Device Support
"{E16F083B-F124-4AB0-85F8-A1E6EA6665F7}" = TOSHIBA Bulletin Board
"{E5E83E00-1144-4821-B6B6-7A16C41EFC39}" = Windows Live Messenger
"{ED58D367-6FB9-4C00-AD81-F5B4CF96845D}" = Windows Live Family Safety
"{EE033C1F-443E-41EC-A0E2-559B539A4E4D}" = TOSHIBA Speech System Applications
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F26FDF57-483E-42C8-A9C9-EEE1EDB256E0}" = TOSHIBA Media Controller Plug-in
"{FCEDADE3-1C8A-4858-BE93-360168178BB2}" = Windows Live Essentials
"{FEDD27A0-B306-45EF-BF58-B527406B42C8}" = TOSHIBA Value Added Package
"Adobe Flash Player ActiveX" = Adobe Flash Player 12 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 12 Plugin
"Amazon Kindle For PC" = Amazon Kindle For PC v1.1
"Canon MG4200 series On-screen Manual" = Canon MG4200 series On-screen Manual
"Canon My Image Garden" = Canon My Image Garden
"Canon My Image Garden Design Files" = Canon My Image Garden Design Files
"Canon_IJ_Network_Scanner_Selector_EX" = Canon IJ Network Scanner Selector EX
"Canon_IJ_Network_UTILITY" = Canon IJ Network Tool
"Canon_IJ_Scan_Utility" = Canon IJ Scan Utility
"CanonMyPrinter" = Canon My Printer
"CanonQuickMenu" = Canon Quick Menu
"CNXT_AUDIO_HDA" = Conexant HD Audio
"Easy-WebPrint EX" = Canon Easy-WebPrint EX
"Google Chrome" = Google Chrome
"InstallShield_{33ABEB66-85BB-43B2-9448-85CB626C5A5F}" = TOSHIBA Hardware Setup
"InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver
"InstallShield_{6F3C8901-EBD3-470D-87F8-AC210F6E5E02}" = TOSHIBA Web Camera Application
"InstallShield_{8CD0B97D-46E9-4293-B467-A24DB96DB6DB}" = TOSHIBA ReelTime
"InstallShield_{C730E42C-935A-45BB-A0C5-37E5234D111B}" = TOSHIBA Face Recognition
"InstallShield_{D2D8CB05-A9E1-4691-995C-2B78F4A58B8B}" = TOSHIBA Supervisor Password
"InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = TOSHIBA HDD/SSD Alert
"InstallShield_{E16F083B-F124-4AB0-85F8-A1E6EA6665F7}" = TOSHIBA Bulletin Board
"InstallShield_{FEDD27A0-B306-45EF-BF58-B527406B42C8}" = TOSHIBA Value Added Package
"Kobo" = Kobo
"Mozilla Firefox 27.0.1 (x86 en-US)" = Mozilla Firefox 27.0.1 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"MyDriveConnect" = MyDriveConnect 3.3.0.1342
"MyScrapNook_12bar Uninstall Firefox" = My Scrap Nook Firefox Toolbar
"N360" = Norton 360 Premier Edition
"NortonPCCheckup" = Norton PC Checkup
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"Office14.SingleImage" = Microsoft Office Home and Student 2010
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"WildTangent toshiba Master Uninstall" = WildTangent Games
"WinLiveSuite" = Windows Live Essentials
"WTA-441f8925-dac5-4a36-a483-1a376feeaf37" = FATE - The Traitor Soul
"WTA-4869c405-6a24-4109-be14-baaef17902af" = Penguins!
"WTA-7892c287-6425-4e0f-bf02-a161e2b404ad" = Bejeweled 3
"WTA-7a05ecdf-f2c0-45e6-b965-8a0190b3b155" = Mah Jong Medley
"WTA-83e2844a-eef6-4ea7-b57f-a9d7b3c37194" = Plants vs. Zombies - Game of the Year
"WTA-99cf9439-814e-4538-a0f8-f377f4fd17a1" = Chuzzle Deluxe
"WTA-bf1dc300-9631-4929-bd5f-d7973818b100" = Polar Bowler
"WTA-d8265ad8-c4ea-4681-ba09-de482a2c5ad7" = Virtual Villagers 4 - The Tree of Life
"WTA-e57343bf-eda9-417b-95ed-e8afed805e16" = Zuma's Revenge
"WTA-fb09e113-7f6d-4ab9-bab2-2d046957f3f9" = Jewel Quest: The Sleepless Star - Collector's Edition

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-163169490-976871693-3509997288-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"OneDriveSetup.exe" = Microsoft OneDrive

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 2/08/2013 4:15:58 AM | Computer Name = Leiza-PC | Source = WinMgmt | ID = 10
Description =

Error - 3/08/2013 12:20:00 AM | Computer Name = Leiza-PC | Source = WinMgmt | ID = 10
Description =

Error - 4/08/2013 1:15:24 AM | Computer Name = Leiza-PC | Source = WinMgmt | ID = 10
Description =

Error - 4/08/2013 2:52:19 AM | Computer Name = Leiza-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second

Error - 4/08/2013 2:52:22 AM | Computer Name = Leiza-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 3876235

Error - 4/08/2013 2:52:22 AM | Computer Name = Leiza-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 3876235

Error - 5/08/2013 5:06:37 AM | Computer Name = Leiza-PC | Source = WinMgmt | ID = 10
Description =

Error - 5/08/2013 6:25:42 AM | Computer Name = Leiza-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second

Error - 5/08/2013 6:25:43 AM | Computer Name = Leiza-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 10062

Error - 5/08/2013 6:25:43 AM | Computer Name = Leiza-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 10062

Error - 6/08/2013 3:33:40 AM | Computer Name = Leiza-PC | Source = WinMgmt | ID = 10
Description =

[ System Events ]
Error - 13/11/2012 3:49:21 PM | Computer Name = Leiza-PC | Source = DCOM | ID = 10016
Description =

Error - 19/11/2012 4:34:39 PM | Computer Name = Leiza-PC | Source = Service Control Manager | ID = 7023
Description = The TPCH Service service terminated with the following error: %%-2147467243

Error - 27/11/2012 5:07:43 PM | Computer Name = Leiza-PC | Source = Disk | ID = 262155
Description = The driver detected a controller error on \Device\Harddisk2\DR2.


< End of report >
  • 0

#6
Valinorum

Valinorum

    GeekU Guardian Bot

  • GeekU Moderator
  • 2,915 posts
Hi GSTSS1, :)

  • Step #1 Uninstall Programs
    I want you to uninstall the following program(s) listed below due to poor reputation we receive about them. To uninstall a program, go to Start > Control Panel > Uninstall a program or Start > Control Panel > Programs and Features. Wait for the list to fill up and double-click on the items I have listed below and follow the on-screen instruction to remove/uninstall them.
  • Update Installer for WildTangent Games App
  • WildTangent Games

 

  • Step #2
    Please download JavaRa to your desktop and unzip it to its own folder
  • Run JavaRa.exe, pick the language of your choice and click Select. Then click Remove Older Versions.
  • Accept any prompts.
  • Open JavaRa.exe again and select Search For Updates.
  • Select Update Using Sun Java's Website then click Search and click on the Open Webpage button. Download and install the latest Java Runtime Environment (JRE) version for your computer.

 

  • Step #3 Fix with OTL
  • Re-run OTL by right clicking and choosing Run as administrator;
  • Under the Custom Scans/Fixes Box copy and paste the following contents inside the quote box. (Do not include the word 'quote').

    :Commands
    [createrestorepoint]

    :OTL
    FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
    File not found (No name found) -- C:\USERS\LEIZA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T8ZM7YE2.DEFAULT\EXTENSIONS\{335AFB9E-1582-DCBD-8D63-362E2D69959C}
    O3 - HKLM\..\Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - No CLSID value found.
    O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
    O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
    O4 - HKLM..\Run: [] File not found
    O13 - gopher Prefix: missing
    O33 - MountPoints2\{ff2af3c5-530f-11e2-8518-e89a8ff13c1c}\Shell - "" = AutoRun
    O33 - MountPoints2\{ff2af3c5-530f-11e2-8518-e89a8ff13c1c}\Shell\AutoRun\command - "" = E:\AutoRun.exe
    O33 - MountPoints2\{ff2af3cb-530f-11e2-8518-e89a8ff13c1c}\Shell - "" = AutoRun
    O33 - MountPoints2\{ff2af3cb-530f-11e2-8518-e89a8ff13c1c}\Shell\AutoRun\command - "" = E:\AutoRun.exe
    [2014/03/09 12:44:09 | 000,000,000 | ---D | C] -- C:\Users\Leiza\AppData\Local\{2FAE728A-432C-4514-B13E-790E5DE4C93D}
    [2014/03/09 12:29:29 | 000,000,000 | ---D | C] -- C:\Users\Leiza\AppData\Local\{325F9FA0-C8B1-4458-B901-F3233BF3188F}
    [2014/03/08 12:24:49 | 000,000,000 | ---D | C] -- C:\Users\Leiza\AppData\Local\{266A7E14-96ED-47A0-9149-93895C87CE0D}
    [2014/03/16 18:07:39 | 000,000,020 | ---- | M] () -- C:\windows\@¨╚
    [2013/02/20 19:26:51 | 000,000,000 | ---D | M] -- C:\Users\Leiza\AppData\Roaming\TuneUp Software

    :Commands
    [Resethosts]
    [emptytemp]

  • Click on "Run Fix" and let the program run unhindered;
  • Your PC will reboot automatically and a log will be opened;
  • Please post it in your next reply.

 

  • Required Log(s):
  • OTL Fix Log

Regards,
Valinorum
  • 0

#7
GSTSS1

GSTSS1

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
Thank you this is as far as I got

1. Unable to find Update Installer for WildTangent Games App in the list of programs to uninstall
2. Ran the JavaRa downloaded, extracted, ran exe file. It appears not to follow your instructions as I did not need to select language and there was no remove older files selection.
3. Had a problem finding the Sun Java Website, found many sites to download java but decided not to proceed with them until I had advice from you. Is it the orical web site?

Garry
  • 0

#8
GSTSS1

GSTSS1

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
I re-read your instructions and I think I have completed them correctly. I have copied the log as requested.

All processes killed
========== COMMANDS ==========
Restore point Set: OTL Restore Point
========== OTL ==========
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0\ not found.
File C:\Program Files\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{ae07101b-46d4-4a98-af68-0333ea26e113} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\Prefixes\\gopher|:gopher:// /E : value set successfully!
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ff2af3c5-530f-11e2-8518-e89a8ff13c1c}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ff2af3c5-530f-11e2-8518-e89a8ff13c1c}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ff2af3c5-530f-11e2-8518-e89a8ff13c1c}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ff2af3c5-530f-11e2-8518-e89a8ff13c1c}\ not found.
File E:\AutoRun.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ff2af3cb-530f-11e2-8518-e89a8ff13c1c}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ff2af3cb-530f-11e2-8518-e89a8ff13c1c}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ff2af3cb-530f-11e2-8518-e89a8ff13c1c}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ff2af3cb-530f-11e2-8518-e89a8ff13c1c}\ not found.
File E:\AutoRun.exe not found.
C:\Users\Leiza\AppData\Local\{2FAE728A-432C-4514-B13E-790E5DE4C93D} folder moved successfully.
C:\Users\Leiza\AppData\Local\{325F9FA0-C8B1-4458-B901-F3233BF3188F} folder moved successfully.
C:\Users\Leiza\AppData\Local\{266A7E14-96ED-47A0-9149-93895C87CE0D} folder moved successfully.
C:\Windows\@¨╚ moved successfully.
C:\Users\Leiza\AppData\Roaming\TuneUp Software\TU2013\TuningIndex folder moved successfully.
C:\Users\Leiza\AppData\Roaming\TuneUp Software\TU2013\StartUp Manager folder moved successfully.
C:\Users\Leiza\AppData\Roaming\TuneUp Software\TU2013\Dashboard folder moved successfully.
C:\Users\Leiza\AppData\Roaming\TuneUp Software\TU2013\Backups folder moved successfully.
C:\Users\Leiza\AppData\Roaming\TuneUp Software\TU2013 folder moved successfully.
C:\Users\Leiza\AppData\Roaming\TuneUp Software\TU2012\Backups folder moved successfully.
C:\Users\Leiza\AppData\Roaming\TuneUp Software\TU2012 folder moved successfully.
C:\Users\Leiza\AppData\Roaming\TuneUp Software folder moved successfully.
========== COMMANDS ==========
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Leiza
->Temp folder emptied: 25218993 bytes
->Temporary Internet Files folder emptied: 318023 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 39257253 bytes
->Google Chrome cache emptied: 39825429 bytes
->Flash cache emptied: 944 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1696 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 1441952 bytes

Total Files Cleaned = 101.00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 03182014_050152

Files\Folders moved on Reboot...
File move failed. C:\windows\temp\Low\SkypeClickToCall\Logs\AutoUpdateSvc.log scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
  • 0

#9
Valinorum

Valinorum

    GeekU Guardian Bot

  • GeekU Moderator
  • 2,915 posts
Hi GSTSS1, :)

We will address the Java situation later. Also, after completing my following set of instructions, inform myself if the Snapdo problem persists and if so where.

 

  • Step #4 Fix with AdwCleaner
  • Right-click on AdwCleaner.exe and choose Run as administrator;
  • Click on Scan and let the program run unhindered;
  • When done, click on Clean and allow the system to reboot after it is done;
  • A log will be opened automatically after the restart;
  • Copy and Paste the contents of this log in your reply.

 

  • Step #5 Fix with Junkware Removal Tool
    Download Junkware Removal Tool by thisisu to your Desktop from the link below.
    Download Link 1
    Download Link 2
  • Disable your anti-virus to avoid potential conflicts. For more information please acknowledge yourself this article;
  • Run the program either by double-clicking(Windows XP) or Right-clicking and choosing Run as administrator(Windows Vista and above);
  • Please be patient as the tool cleans your system;
  • After completion of the process a log named JRT.txt will automatically open and is save to your Desktop;
  • Copy and Paste the contents of the log in your next reply.

 

  • Step #6 Scan with Security Check
    • Download Security Check by screen317 to your Desktop from any of the following location;
    • Link 1
    • Link 2
  • Right click on the program and choose Run as Administrator;
  • After the checking a log will appear;
  • Copy and Paste the content of the log in your next reply.

 

  • Required Log(s):
  • AdwCleaner Log;
  • Junkware Removal Tool Log;
  • Security Check Log

Regards,
Valinorum
  • 0

#10
GSTSS1

GSTSS1

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
# AdwCleaner v3.022 - Report created 19/03/2014 at 05:19:06
# Updated 13/03/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (32 bits)
# Username : Leiza - LEIZA-PC
# Running from : C:\Users\Leiza\Downloads\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Program Files\MyScrapNook_12
Folder Deleted : C:\Users\Leiza\AppData\LocalLow\MyScrapNook_12
Folder Deleted : C:\Users\Leiza\AppData\Roaming\OpenCandy
File Deleted : C:\Users\Leiza\AppData\Roaming\Mozilla\Firefox\Profiles\t8zm7ye2.default\user.js

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\QuickShare_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\QuickShare_RASMANCS
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{13119113-0854-469D-807A-171568457991}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{33119133-0854-469D-807A-171568457991}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3BF72F68-72D8-461D-A884-329D936C5581}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{78E9D883-93CD-4072-BEF3-38EE581E2839}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{83AC1413-FCE4-4A46-9DD5-4F31F306E71F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FE6F06FB-0FC0-4499-828F-EE48088F504F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{23119123-0854-469D-807A-171568457991}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{03119103-0854-469D-807A-171568457991}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C4C4F1F4-3074-4CB6-9FB8-0A64273166F0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FE6F06FB-0FC0-4499-828F-EE48088F504F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FE6F06FB-0FC0-4499-828F-EE48088F504F}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Key Deleted : HKCU\Software\SmartBar
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Deleted : HKLM\Software\Uniblue
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16521


-\\ Mozilla Firefox v27.0.1 (en-US)

[ File : C:\Users\Leiza\AppData\Roaming\Mozilla\Firefox\Profiles\t8zm7ye2.default\prefs.js ]


-\\ Google Chrome v33.0.1750.154

[ File : C:\Users\Leiza\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [3573 octets] - [19/03/2014 05:15:11]
AdwCleaner[S0].txt - [3517 octets] - [19/03/2014 05:19:06]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3577 octets] ##########


----------------------------------------------------------------------------------------------------------------------------------------------

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.2 (02.20.2014:1)
OS: Windows 7 Home Premium x86
Ran by Leiza on Wed 19/03/2014 at 5:31:00.69
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders

Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{0000F02B-0113-4EDB-8B0F-A792869E4AD2}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{00860A95-F57E-4031-A9B2-588CBFE140CE}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{00929F8D-9624-4146-A06E-F6C17275DCCB}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{009EE390-4A03-44AA-B37B-425CAB128D2B}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{0249C119-D00D-4ACC-BAE4-9AE63B55670A}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{0345CAA6-ECD6-43C5-9052-E1ABFDD1E1A6}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{03865625-56CB-4724-80DE-C46C15FA30B9}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{03CDA12F-DF5E-4AEE-B398-4672DD83BF6E}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{03D23A4A-5626-4436-AEB7-33FF03DC445F}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{04A24196-13F1-46D2-BEFF-13DC4851DFAD}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{056DE452-4BAD-4B57-8029-91BBCF43B5D2}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{0610A348-CF21-4F29-8D0F-DB2C61731EE4}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{064296A6-CCDD-4EB0-945A-666462CAFAAB}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{076A029B-3CED-4BEA-80FC-4918FA3BEFF3}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{09FA5926-6A26-4F28-B251-AFC1A7BAB647}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{0A3B0D47-50B9-4DEF-A391-E62675EB1D9B}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{0BBEE48F-AA06-4B98-AF8D-0993C82B67F1}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{0C3860ED-6E28-40EC-99B4-3DCDEFC42509}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{0CF6F9C7-238A-4739-8953-8FE83132CDC8}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{0EA4C5F7-EB4C-488D-8B9F-E8A5811F3150}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{0EF18579-BDEE-4949-8C34-CA69B40624E5}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{0F0DC2DD-A879-4524-AD9B-0B4157033BFA}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{11CB13F6-99E3-46C2-8635-DF5D6F67AA65}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{12794B4E-61F7-4C77-B837-91F1CEB4F369}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{1279F445-AAE9-443D-8A71-44A2ED67637D}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{13D94ECE-3F2C-4348-BE7F-B6C0E0292326}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{156FB064-FE97-46AA-B31B-BEFB0A150265}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{16568FCF-AC3C-4521-9086-E1B8A1154223}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{17F1C659-5B2D-4259-9998-D38B3252DFEA}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{1856CCC9-F38B-44D8-93F2-1D18F2312B21}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{186422DD-2A70-4E4A-BE55-5C3C22F716E6}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{189C20FF-0C5C-464B-994E-6FACBADEB5F5}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{195735FC-409D-488F-B1C4-CDBE9F098438}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{1A1BDB4D-0319-43B5-8AF5-03E62634C07F}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{1A29434E-080E-42AB-B80A-921140D1CD0E}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{1B3D5521-0554-465E-BE53-FB57A93941BF}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{1BFF58A3-E931-44F5-BD41-D64C9D9B1DA8}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{1C3CBA1B-23A7-47FD-8D7A-7F86A5828BAD}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{1C67B69C-6CEF-438B-8D9D-AA6B6C984BDF}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{1C794099-9099-4A6B-95AF-86A1C91D1FF8}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{1DBA26F7-A519-4B04-9E33-67E18F58A63E}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{1DCA716B-A3B8-4470-B89E-60E9CDE178F0}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{1E1998D4-5586-4B50-AE92-D2966D2D446C}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{1E669506-5CDB-4DE1-BBE5-3C8735229091}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{1F2330B5-DE78-4530-8C6D-A46EB30F868A}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{1F3EE185-CC67-434E-A6A2-5D061DB90019}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{20137A13-70A3-4B0C-944C-6286531F1584}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{2043E837-D8BB-4927-93B7-E423D3257EBD}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{20BE7FCD-B811-4402-B84D-B05E136F0E0C}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{2128DB9D-3AD3-40E8-A40D-C4A1027CC8BA}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{2154E827-E79D-4281-9973-4B29F6BBAFBA}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{2233224D-2B10-40B5-82D6-813F63ED9829}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{229ECEAD-F314-4671-BC87-1EFAFD18EF90}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{22E80201-FF9D-4080-9C9C-10F6F6D798DD}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{22EB1A97-B6AA-405E-BCB7-363989B9AAE3}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{234DEDA3-0659-4964-9E1B-A3873192A785}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{23839C0F-8DDA-4A1B-8AD4-4ABE362E4A23}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{23A10E30-697C-4B0C-B453-6AF07EA81F17}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{24FC8151-D593-4A06-9E3C-0682CD223A29}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{25E12F8F-6ABE-474F-BCDD-1B149E50A5FC}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{25E2B04E-8CB9-492C-A88C-4B0794817ED8}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{26CDEA5D-47D4-499E-8F4F-0313B5FEA290}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{276A44CD-54A2-425D-84F5-E95A23A7CC06}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{277A54E0-FF5F-45DF-A63B-45F6E429FDF9}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{27BBC346-41F4-4147-A737-DF8AAE7C145C}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{27D8E944-883A-464A-B735-B2C7B4A0D78A}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{282E2CD3-72FF-40FB-8378-561965C652C2}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{28BF1384-C22B-4070-A5E6-C0F00DEF7CE2}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{29138A2B-E048-45BF-9192-2D979AFB2659}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{29F54FF5-97CA-4545-80ED-FC27B17F0DB2}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{2A11FB9B-F1BC-455B-B1A2-9D68E9E72F78}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{2A9F10AD-163E-4927-9312-DC65D70640E5}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{2AE94691-1606-44CF-9E11-BE31E1226945}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{2B82D302-8586-4052-B45B-BC183EAB95BC}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{2BEBB52B-2A12-4F0F-A41F-8AC989D89732}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{2C031BEC-FDCD-40E5-98B4-DCE2DB759CE6}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{2C44425E-F19F-452D-900A-07AB53D57B11}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{2C7E6F53-F81B-4A8C-A15A-7C517F6D5290}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{2C7F37C5-F3F0-442A-9152-5CE85FBC426D}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{2C96CB7F-5D82-40D9-B3CC-4D9E008DF846}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{2F3B9AB4-EBDD-45D9-84EA-6B8B767A73AF}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{2F42E474-F03C-430C-BF7F-C822BD8042D3}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{30437A28-3FAD-4B65-90C7-C5C51CA675DA}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{3169147B-CF8E-4D04-9E23-93DB0DCAD286}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{316A36AE-A69E-438E-8D42-7E01419BCD24}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{317CDF76-C7DF-4425-A18E-A8C5F977B2C8}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{32EE0629-4014-4414-8E59-3A6F28B27419}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{334FB18F-E2B3-4949-973B-FE0DDED18063}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{34DA7286-F921-412A-8CAF-1568D7317F60}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{34E44575-83E8-4F4B-8800-930A17E2437E}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{34ED559C-8A23-4AED-B869-5555E14AA55D}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{35EE947D-AFBD-4AEC-825E-C2F6CF56A28D}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{37344705-2FC5-4D1B-A7EC-C60D7EABB19C}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{37A447B5-1F6E-42E5-9F0E-04FE33D34A33}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{37BA5AEF-365F-40E8-989E-84693B27995F}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{37E487F9-4AF8-4688-ACA0-27688AE13E5F}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{3862CF6B-DEA7-43B9-90A0-83BCBE4BEADE}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{3A295609-23C8-4C06-9B16-A561B1918459}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{3A52F73C-806D-4073-9046-D88DC213A833}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{3A66DE55-6B1F-4D62-8FC7-DB46EC7790E0}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{3A8FDA00-85B1-47B5-857C-DB05B2F28903}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{3AD0427C-5C3E-4A09-AED9-F83BA7A33F13}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{3B6112E5-9E1D-4E7E-B1A8-CF348B26C4CC}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{3C3974C8-14DA-42B5-99BF-938256A4FA0C}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{3C46F875-094F-4194-9015-7A043DB212C0}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{3CAC02C4-C3CD-49F3-AF98-6C52FA7A9A39}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{3D0F4A4C-1783-42AB-929C-FCAD0EA237B9}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{3DFBB602-85E9-49EA-8C9F-FAE3CD941732}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{3E3E2A66-0DCE-4A3E-995F-D6C0D6AD9FE9}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{3E3E3786-8EC0-4DBA-A0B3-428816BDFAE9}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{3F3BB64B-33C9-45F4-A56F-2438A054BC3D}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{3F8BCF30-0DBD-427C-BB1C-3B8F068CE03B}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{4035764E-A644-490C-B9BD-3A362852A8F2}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{4054096B-DB76-42EF-9B3D-421BCB5E7925}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{417544D0-141F-445B-997B-BC6EB6BC4C84}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{422DE6CD-A20F-4374-A7E1-268D5F55C29B}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{4299A703-7810-42BF-A1C4-263DD1F5C3B3}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{453B23AD-24CE-4B6B-8E20-E12777D4C785}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{4632C3E2-58CA-4695-92D6-42C86F105930}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{484ACCDD-8C41-4DB9-A054-E30F6D1FA89B}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{48765349-CD77-4630-AAE8-9E6841E98572}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{4A515AAC-0455-4BD6-A3C3-0EF27F5931B7}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{4B41B4EC-BA21-48E8-96DB-21BCABBE42CC}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{4C0E6F46-5ABA-4D02-92A5-E03AB3D2E1CC}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{4C4BE9C8-B49D-471E-8CA2-67CF3C7418D0}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{4C82A4AA-B165-4FEB-91EB-52460709C320}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{4C93A7F9-C60D-471D-93A1-5F161A298FE8}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{4D583C7D-1A43-4A8E-82AE-93D33843AAEB}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{4E136E65-74F9-4193-918E-4C82F3557AF7}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{4F45701C-B315-483B-AA87-E415005C2FF6}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{4F90C929-8D49-46AA-9D08-DEE27B3C3BB8}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{507170C0-E719-4362-A253-5B8DD56C7045}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{50D0191A-0F7F-43B1-A9C1-B2AC159B1088}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{5177B2F5-38C8-409E-B422-EC4DA8D777B9}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{5304FCE2-0173-45A4-8E69-4BB30835609E}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{53DAC514-7A24-4942-B416-4450699CE876}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{54C6D846-2399-4988-9A9F-0E674F07829D}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{54EAEE14-3221-4978-B2FD-957942C9A388}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{55BF9AA9-42C2-4A67-B7F9-74006AE9FA2C}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{58CC2D60-264A-4863-A604-B3B7FDE66737}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{58D69403-A5EB-45FA-890B-E2A7837CCD03}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{59CA5ADF-A0ED-4A68-B4BF-761FC4065BD2}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{59E5639F-CB11-4DD3-8F3F-80D64E2C72C9}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{5AD6803F-C839-4A50-873A-9E7755F6CE24}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{5AF521A7-0FE7-443A-8BB7-49184022BEF8}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{5B713550-ABC5-4682-89C2-969C5A2C03FB}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{5BA55AC5-FC0A-4121-8B9B-45A80F424638}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{5C6C1937-1EDA-43B7-A293-C363860F0375}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{5CC73197-5D58-4F50-AAC2-7F5082481E8C}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{5CDE5B26-31FD-48DD-AC68-4659FD9321DD}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{5D4A83A2-6431-4066-A9C9-6A321FA6E276}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{5EAE6A24-C911-43F2-B162-59C9E7B3321C}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{5F4F0620-1EEE-4F02-825B-B314B61F9580}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{6017564B-BC66-40CC-9245-85569F9171A1}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{601A8DBE-C747-4E82-9ECF-FF10357307C0}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{6032FD93-5608-43B1-8435-05CD2D77D92A}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{603A8B17-9262-4E99-8ADD-F7B0BE9C8C61}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{6056637E-0276-4FDD-B9A8-9496D4B4F997}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{6141175A-6EB7-4162-8869-4D31F3E0053F}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{61CBF8B9-1558-43BF-A397-581886AA1F6B}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{6232D045-6DC5-4662-B874-DF9517797516}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{63A5247B-1488-47EE-BC20-BE423C5A0E15}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{63E5209D-5888-4DEE-A6E5-A90D31A1351C}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{64760FA8-AA75-4B12-A3C1-558CA242A60F}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{6576661B-577B-4BB6-BDE6-991866C3E8B7}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{68857D43-5CA3-4750-94E6-F96755FB67C5}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{68D55790-DF7F-4975-BC41-D9BC761A4F83}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{68F01673-DB54-4813-B4A0-6FA396B9D6BA}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{6912A7CC-516B-49F5-9F49-E3A4DA6366B1}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{6A4D4B38-873F-42F0-8120-016360373465}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{6A5413E5-B908-4E94-B1C5-5D82FCD1237F}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{6A7323F9-F0C6-4C6C-BB61-B6908AAB0339}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{6A902D63-57C6-407C-BBAD-0B52F756FE7D}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{6B8A83B1-AD01-4D60-A865-A0A32FAE7658}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{6BBF55EE-F227-45D4-AA5C-CB88ECFFA1E3}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{6D07DDBB-255E-4D76-B29C-ABF96B45F5A1}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{6DB96A5C-F77A-4770-9882-F2062D25EDD1}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{6DDA56AE-972C-468E-BD38-DB341BA782C6}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{6DDDB8C9-AAD5-44FC-8C0B-80154A8E63B2}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{7081568D-F82D-4003-8149-E013DE234759}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{70D503F6-D815-43E8-A9FD-823ED0F0CE96}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{7164C478-88C8-43D2-B24A-B111B40AC7AA}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{71B6377B-418B-4DE9-9494-86ADF2C364C2}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{72F6F9DF-56EB-4199-B883-60D5A1FA04E4}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{73357846-FA57-4ECB-B14B-302121D8A1F3}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{738EF2CB-5D7E-486C-9151-DB6334A5BC88}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{75708337-21A3-4AF9-A67F-83A656DDCCC2}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{76E338F1-CDB5-4131-9153-7F1CD7AB9E8B}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{771086AC-7968-45B9-BCC0-FCD26BD5B9CC}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{7772C495-FF64-4C48-BB55-B21E23B0D9F8}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{77E3A702-3FBB-4808-835B-5E4317E9E3E1}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{7949FD22-97ED-45E0-9E03-74901E0B1E78}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{7B762D0B-8D3D-406A-9036-D31F368D6D8D}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{7CAE787C-6DBA-4BDF-817C-C308D36F7193}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{7DD453CE-DD74-4F56-9774-2448FF8FD8C1}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{7DDF20C6-F3CF-49DC-A3FE-99F19C103A53}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{7DF4E8EC-04CD-4F5A-92FD-2B3F74E3E602}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{7E42D313-CB81-4110-B5A4-5863C9EF0D29}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{7F584CC2-04E5-4F04-8EF0-E8FDEF3EE58D}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{81741503-114C-484E-8845-8100AC8EB048}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{8181A9EC-8E19-498D-AFC0-F41CBCA416BC}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{81A94A6E-914F-4407-BF82-7E07F70CA7B2}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{82DF452C-28B8-49FC-8226-CE0C53CCF523}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{8318C04B-CF64-461E-8F68-78981233D6E5}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{850ABD13-C884-48D0-A9A3-0B763392251E}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{857F19BD-9F60-45E9-A893-5BA3BF69AF40}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{867D96AD-FEE2-4385-8EB1-C88DA1FB9B9C}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{8A4714D0-2A4C-4E7D-9A1D-5AC9BF34EE7C}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{8BF4DDD7-69AC-4869-A7A3-48773B638822}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{8C95E2E9-8A75-4D89-AC9E-A896B1E86928}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{8CC85D3C-0A8B-4816-B92A-E22AA11529E1}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{8E1AA192-CF19-41A5-B348-CC157EE828A5}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{8E3497EB-75FD-4FC9-A6B4-EA7FEB647AC0}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{8E5A5244-5E2B-43D9-A22A-05A87E85162A}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{8E9DABE7-6AAB-4F0B-826D-813519683A2F}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{8EBC0245-2C5B-4677-8DD9-B39F3DDF141E}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{8F727C81-F10F-4F31-A625-7D65363572F4}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{90C793FC-EE08-43CE-BD0B-D4E33B4A81E9}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{90D910C9-281F-45A1-A0DD-5B64781FF440}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{916327A5-7611-415A-9A2E-6FB0DC265761}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{916AD6EE-C4F1-4FFD-8888-4D1E178E7025}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{92E58B66-3320-42B0-9440-22F62108D38D}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{93667286-70F2-49BC-8781-C53850E9B110}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{93F246D4-B31C-4DCD-8FB6-101E5B693BA9}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{94AAA45E-7E9F-4CD8-A75A-2ED44A92DC69}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{94C89E82-ED0B-4A70-BFFC-279893AF053E}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{967DB039-67CD-4A81-9F6E-122BF42C6DB5}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{968B3EE1-A261-47D0-A471-7CDA6CF80170}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{96998AC3-3456-4E36-858A-D81857762D02}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{96B5E5F2-96B1-4B46-BC73-96EFEC90AA19}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{978003FF-CED7-468C-B73D-417E18E865D5}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{9B09C964-37DF-4D15-A29B-04C75CB9208A}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{9C1DD59C-DE88-464C-A092-A262B3658A93}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{9C273F83-852A-406F-9F20-B10A66FBB672}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{9C587FCC-4702-4DEA-8CB6-817B79475B90}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{9CE61DC8-3D93-45A4-B509-21592EC560F6}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{9E1A1AAB-D25C-4BF6-83FD-52A606C67B23}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{9F0E44AD-05E5-494E-AE7D-EC9A48869D7D}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{9F75D004-B3A1-4046-B4CD-EB2D05AC603F}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{9FD4E37A-C8C7-4520-BFD9-3D59F5A29DB4}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{A0DFC321-FC01-457A-9C5D-EB7D0D46B8C1}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{A0FBD043-B585-44A3-A6B5-653CCF166AF2}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{A1F58F42-B5A4-4BB8-9707-8591478F97A2}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{A2692A4A-0A10-403A-AB59-D346A5A12216}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{A3CB684E-2799-45B9-8A68-E7B0C21CAE9A}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{A48AF219-20E2-470F-8F25-7AD44456DCE6}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{A52A1954-8B58-4ABA-BF32-9730C4A10C2C}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{A53DB271-971B-4BDF-8068-BD8BFD84FFED}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{A57397B8-E5CC-4D05-BF50-B555E1E075A4}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{A582FAEE-2B1E-454B-AC6E-A29D1BD408D7}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{A810A432-1B67-4349-9DF0-712092695CFA}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{A866585F-2CC8-45A7-B343-DF9AA4E460CF}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{A8B99FF2-34D4-4928-889B-BAF8AEF1963A}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{AA883837-4B7A-4AAD-9464-6A82BBA68FB8}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{AB2C27B3-3E69-4528-8C87-5A725109B76F}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{ACBB9761-4512-449C-A39B-812446222723}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{ACF57708-F784-4741-8DBE-8F7170A68492}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{ADF87CD3-F4B0-42EC-9268-29220F2EFC9D}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{AED4841A-4063-4C9A-8A6B-BBF2053DABA7}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{AFFAC331-70A3-4453-9008-E985564F75C0}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{B02B2E2A-E518-4D95-8BE5-14CBB636017E}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{B0B69995-71C5-4CD9-A33D-93C77A2A9031}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{B12E2AEE-87B7-4957-9B21-05F6D8EF4C7B}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{B15748A8-24BD-4B89-B2A5-7744B1FCAD14}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{B1A2AA90-7E3F-4610-A06E-A49EC211A05C}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{B26ADFAE-966E-464E-9CCC-D37E1B37BB90}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{B3DAE523-8365-40D4-8453-011580671272}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{B408DCAD-75CA-40C8-A7D7-93248912B59D}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{B7E60AFD-FC53-4454-8729-53CAB54058B9}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{B82AA61D-89EE-4B4C-AE66-B7D2CBE9CE01}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{B99B2361-E798-4E70-910F-F71F3E59FBF1}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{B9B8725F-813C-43B1-B0F7-64D60AD3C5BC}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{BA489EB4-B744-49B4-9388-F9EC1025F517}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{BB7936FC-F320-4AC9-85B2-3F5172C36851}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{BBD556D4-D286-41A7-A41D-1456B9F496FC}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{BC684FD7-43D6-4C24-A977-208393E8A28F}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{BC855E9B-864B-440F-B38B-3FF7B0A92DEF}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{BD024D63-C11A-4F2C-B071-AA4C8DF037BA}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{BD0486A7-9963-4AB0-A91F-6BC1D194A447}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{BD6D9511-B970-4881-8E77-23C2AA862727}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{BE5E3C50-E371-467C-B945-A2E2EAFAE9E9}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{BEBE7AC9-A329-4E23-94FA-737F9CC68666}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{BF35A9C5-B29D-4BED-8149-262610F988DF}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{C026C5DF-6289-4E0B-96A1-589B0FE6B649}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{C09A2FE6-D2C3-4F3D-A6D6-33089B45F504}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{C0B25EA2-3CDF-44B3-BE5E-CD2683FE9EDC}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{C114E5DF-5295-4C99-8563-6BF305D1A3C9}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{C1CC80F3-2304-4B9C-867A-3EF2DD1909EB}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{C1D00248-72F9-43B1-AA22-4313884C1CED}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{C225DCF2-5238-49CD-9EE9-E3199E835970}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{C384AF19-4962-4644-8710-2621E9F933CC}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{C5742A02-E4BB-412A-A5BF-F55185893310}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{C6515180-7B70-4E49-88EC-99095EC6C339}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{C7B9A763-3FB3-4C98-A653-352EF6B51A26}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{C7D483B7-3734-4FC7-93BD-9130FB4AB181}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{C8C41AD4-7065-48DD-BC38-DBBD1287833F}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{CA2FD6C5-92E5-4F4F-8C40-540AB05121D5}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{CA442510-5F62-43E7-B287-C4C5CE67F0B3}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{CA662AF7-25B2-45C2-8569-DFA5E443DF03}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{CDFABC1A-821E-4BB3-99DD-CF2E2990B937}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{CEF283A4-2C68-4933-A90D-F7A9D851DDB0}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{CFCA9D34-6203-4134-BF99-DC4EBEF7DF8F}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{CFD0BCCF-1E00-4BEC-8A2C-14FCFCB77591}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{D0466256-0590-4A20-85AE-658748156C86}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{D04A7AE2-0F82-4A47-81F2-31B1A78C0199}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{D0FA71FF-0059-4B03-81E0-679D67515551}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{D0FB90B6-DFC1-4AF7-AC57-870CB618F34F}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{D16592E9-22D0-45E6-8438-537A41061F34}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{D2CE73AB-FF7E-48D4-A6F0-88E0CCC03208}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{D2FDD8D8-8D08-4F3B-ABBC-721A98708E51}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{D33695E0-C73B-486E-9729-45600E3DC4D8}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{D340F999-BD95-4D56-ACAF-6DAF79FC5619}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{D4205C2C-B1B0-4619-BAC4-555C96867FB2}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{D53596C2-A1E1-4A6C-A17D-F0CAAF031143}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{D658CF18-C2D3-4005-A9DA-33AAA9178D39}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{D6C9B421-58F2-4B8C-B512-27F4E372692E}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{D7A9F9B1-2E1B-4958-8FCE-0C38A369AF13}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{D892FBC3-0471-4D62-BFBE-E0C5007C434B}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{D8EC5FDD-2AE3-4C0E-9B04-8EA8CAE61585}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{D8F77D5B-0BF0-4B71-B91D-B818B42A9657}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{DA431115-1751-47F9-81E4-4CF15B8CB992}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{DA810C3A-5587-464C-ABB5-9A44FA37E3B0}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{DABCDA1B-2424-4D12-8DCB-B225BE575E84}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{DC0B2DD7-A61C-47B5-9B07-6D301A5AD79D}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{DE0891F0-1FEE-446B-A92A-803BC73F4DD2}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{DF9A4189-611C-4E00-AACA-03103EEC11B0}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{E1AEE662-47A9-4C03-B738-65C292011B23}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{E1D18EB5-BBD2-46D7-BB71-7BC7189DD232}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{E3BDBC89-5400-45C2-8C2A-B97C40E3A17B}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{E4511C56-092B-42A9-A4C4-2931E322E260}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{E5098CE1-FCCC-41AC-AA3F-E1815F402C01}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{E6417EA2-8441-4819-BD51-A961E82341FC}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{E6619419-58B1-4BDC-B67F-B98E13A5E860}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{E6B3C4F7-8584-4E52-9EA4-21377ABFF378}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{E6B79915-4A59-4ACC-AAF5-310E1971F044}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{E80FD42A-86B2-4081-9C6C-CA9C9266C2AB}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{E839FBC1-28AD-4DD1-9F6D-0CC8D6D04143}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{E8FA212F-94BD-4E00-8E23-470F72ECF667}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{E9F9019C-2D15-4005-9A71-C4EAA3FC1D4D}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{EA37132C-DA46-43E3-925C-84BFDEA51B67}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{ED22585D-BD66-497B-9B1E-7EBCBC9A2A1A}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{EDB717B4-0ADC-4C2D-A72D-4CCEC937C821}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{EDDC75C4-C5A4-4F0B-B47A-D5A215BB7281}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{EE2A8DCB-03AC-4530-B841-CAC132BA69DB}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{EEADDE16-1F5F-43DE-B6CE-A2627861263E}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{EF9330FB-7FF1-4E29-9456-4E02566EC32E}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{EFEFA53E-C16D-40D7-A68D-03C3E96AF2F9}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{F0A7F6B4-6341-4CA9-B9D7-C4FD58AFBF8B}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{F1413401-99B6-4218-A219-867244D02505}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{F168E318-1F74-4159-9498-A0B59010C6BD}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{F1A4C182-2986-4CC2-8851-D0F2AD6C3721}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{F3D901DE-9172-44B5-9E53-0F0FF6595688}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{F4A6E34B-5B48-4941-B7A7-B1EE1676A1F9}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{F4DC9D5E-608D-4538-A3F8-F7AAFA72440B}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{F4E53451-DCAC-4BCD-B354-3BC37F34467E}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{F53374A0-1F31-4A26-86C3-1A23C4A06E2E}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{F6D9E24F-900D-4DC3-BF26-EBF19A33D156}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{F75AEF99-5989-4C04-A87C-A7E61C4C64A8}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{F8BBD79E-9B61-4608-90BE-2EB2BA127BC1}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{FAB243FC-07A9-431E-BD2F-1643FB4F005B}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{FAC258C7-BA3A-477D-A41F-9C3E6F8050AC}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{FB2C9082-F2C0-49F4-9C18-C64E09A207C2}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{FC23535B-7286-4E26-82D7-A6F3ACC36549}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{FC2CBA45-8032-41EC-A4B3-A801EE2F9B1E}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{FC42551B-345A-4D5B-A033-199B80F0AA94}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{FD921A46-5A34-413F-BBF0-0498B8D6C78F}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{FF2989C5-1A9C-4E08-B2F1-BABE400AA039}
Successfully deleted: [Empty Folder] C:\Users\Leiza\appdata\local\{FF5465EA-6A93-4197-8FA8-8A2690C653D8}



~~~ FireFox

Emptied folder: C:\Users\Leiza\AppData\Roaming\mozilla\firefox\profiles\t8zm7ye2.default\minidumps [33 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Wed 19/03/2014 at 5:33:22.56
Computer was rebooted
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
---------------------------------------------------------------------------------------------------------------------------------------------------

UNSUPPORTED OPERATING SYSTEM! ABORTED!

-----------------------------------------------------------------------------------------------------------------------------------------------------

It appears as though we have had success with the Snapdo. Opening all browsers shows no sign of the virus.

Thank you
  • 0

Advertisements


#11
GSTSS1

GSTSS1

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
I realized we might not be finished however I thought I should also say she had another problem, When trying to open her windows live mail we get this error.

windows live mail could not be started. it may not be installed correctly. make sure that your disk is not full or that you are not out of memory. (0x80041161)

She has previously tried restarting the service windows live ID Assistant and then she attempted a repair and a re-install. I imagine this is a separate issue?
  • 0

#12
GSTSS1

GSTSS1

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
Unfortunately I was mistaken it is back and in the internet explorer
  • 0

#13
Valinorum

Valinorum

    GeekU Guardian Bot

  • GeekU Moderator
  • 2,915 posts
Did you run Junkware Removal Tool by right-clicking and choosing Run as administrator. If not, kindly do so. Reset Internet Explorer setting by perusing this.

Edited by Valinorum, 19 March 2014 - 10:09 PM.

  • 0

#14
GSTSS1

GSTSS1

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
Yes I did run it with administrator Permission.

I ran the fix it program. When Microsoft asked if I wanted to use recommended settings I said no.

No Sign of the snapdo. Windows live mail now works.

Quite frankly you rock!!

Thanks heaps
  • 0

#15
Valinorum

Valinorum

    GeekU Guardian Bot

  • GeekU Moderator
  • 2,915 posts
We are not done, yet. Provide me the log from Step #6.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP