Restore computer to an earlier point
Uninstalled ITunes
Uninstalled Quicktime
Both in an effort to re-install
Deleted old copies
Did the “Start-Run-CMD-ipconfig” =yes, I have an IP address
I think I reinstalled Firefox, but now I can’t remember
Did the Task Manager ‘end process’ but didn’t know what to ‘end’ and what to leave alone!
Now when I go to either of these web pages to install, when I click the “Install Now” or “Download” button or whatever, it does nothing!! It used to show the green arrow in the upper right of the page, where when you click it, it shows what you just downloaded. Now, nothing. The web page then goes to the “Thanks for downloading” page. I’ve gone directly to ‘my downloads’ and it’s not there (where my computer saves what I want to download). I’ve had no problem downloading other things, it works exactly as I described above. I can click on the green arrow-it shows what I’ve just downloaded-I click it-my computer asks me if I want to run it-I say yes-IT RUNS!
ITunes & QuickTime WILL NOT DO THAT! It does nothing.I went back and read your instructions for posting and the only thing I can think of that could have caused any corruption would be that my phone got a virus (I THINK, tho it wasn't confirmed) and I did connect it to my computer to save contacts before I did a hard reset to factory. I also took out my sim card and connected it to my computer; it was there that I found a BUNCH of junk pictures that I never took/stored. I deleted all of them before taking the sim card out. That's when I did the system restore on my computer.First couple of times it wouldn't let me, it said 'could not complete' but I don't remember why. Sorry! I just picked an earlier date until it went through.
So I have done all of the steps you’ve suggested and here is my OLT.Txt:
OTL logfile created on: 3/23/2014 7:24:18 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Lin55\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16428)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.90 Gb Total Physical Memory | 2.04 Gb Available Physical Memory | 52.39% Memory free
7.79 Gb Paging File | 5.82 Gb Available in Paging File | 74.67% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 581.42 Gb Total Space | 457.02 Gb Free Space | 78.60% Space Free | Partition Type: NTFS
Computer Name: LIN55-PC | User Name: Lin55 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2014/03/23 19:23:53 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Lin55\Downloads\OTL.exe
PRC - [2014/03/22 17:30:31 | 001,141,336 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe
PRC - [2014/03/22 17:30:29 | 000,296,520 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
PRC - [2014/03/12 22:27:14 | 001,863,560 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe
PRC - [2014/02/14 20:06:12 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2014/02/12 16:29:36 | 000,023,552 | ---- | M] () -- C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe
PRC - [2014/02/12 14:42:30 | 000,367,192 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe
PRC - [2014/02/12 14:42:10 | 000,039,568 | ---- | M] () -- C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
PRC - [2014/02/09 11:32:49 | 003,767,096 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2014/02/09 11:32:49 | 000,050,344 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2013/12/21 01:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013/08/06 17:33:16 | 003,291,008 | ---- | M] (Skype Technologies S.A.) -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
PRC - [2012/12/17 18:14:14 | 000,059,872 | ---- | M] (Apple Inc.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
PRC - [2012/08/17 18:33:10 | 000,131,512 | ---- | M] (Symantec Corporation) -- C:\Program Files (x86)\PC Checkup\SymcPCCULaunchSvc.exe
PRC - [2012/01/20 18:29:28 | 000,363,800 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
PRC - [2012/01/20 18:29:26 | 000,277,784 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
PRC - [2012/01/20 13:45:40 | 000,161,560 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe
PRC - [2012/01/20 13:45:30 | 000,128,280 | ---- | M] () -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe
PRC - [2012/01/05 05:59:50 | 000,291,608 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
PRC - [2011/11/30 19:17:01 | 000,126,392 | R--- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\ccSvcHst.exe
PRC - [2008/11/09 15:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) -- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
========== Modules (No Company Name) ==========
MOD - [2014/03/22 17:30:32 | 000,571,992 | ---- | M] () -- C:\Program Files (x86)\Real\RealPlayer\RPDS\Lib\r1api.dll
MOD - [2014/03/12 22:27:13 | 016,276,872 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll
MOD - [2014/02/14 20:06:12 | 003,578,992 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2013/10/24 16:13:15 | 019,336,120 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\libcef.dll
MOD - [2012/08/27 21:33:32 | 000,087,912 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2012/08/27 21:33:08 | 001,242,512 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
========== Services (SafeList) ==========
SRV:64bit: - [2014/03/23 16:53:08 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:64bit: - [2014/02/09 11:32:49 | 000,050,344 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2013/05/27 00:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2012/01/10 23:01:52 | 000,627,936 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel®
SRV:64bit: - [2011/12/16 01:16:48 | 000,583,088 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe -- (TosCoSrv)
SRV:64bit: - [2011/12/14 17:11:38 | 000,833,976 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\Toshiba\TPHM\TPCHSrv.exe -- (TPCHSrv)
SRV:64bit: - [2011/11/25 20:52:36 | 000,138,152 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosSmartSrv.exe -- (TOSHIBA HDD SSD Alert Service)
SRV:64bit: - [2011/11/24 15:20:38 | 000,294,848 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\Toshiba\TECO\TecoService.exe -- (TOSHIBA eco Utility Service)
SRV:64bit: - [2010/10/20 16:41:00 | 000,138,656 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Windows\SysNative\TODDSrv.exe -- (TODDSrv)
SRV:64bit: - [2010/09/22 20:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV - [2014/03/22 17:30:31 | 001,141,336 | ---- | M] (RealNetworks, Inc.) [Auto | Running] -- C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe -- (RealPlayer Cloud Service)
SRV - [2014/03/12 22:27:14 | 000,257,928 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014/02/14 20:06:12 | 000,118,896 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2014/02/12 16:29:36 | 000,023,552 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe -- (RealPlayerUpdateSvc)
SRV - [2014/02/12 14:42:10 | 000,039,568 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe -- (RealNetworks Downloader Resolver Service)
SRV - [2013/12/21 01:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013/10/23 08:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013/09/11 22:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2013/08/06 17:33:16 | 003,291,008 | ---- | M] (Skype Technologies S.A.) [Auto | Running] -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)
SRV - [2012/08/17 18:33:10 | 000,131,512 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\PC Checkup\SymcPCCULaunchSvc.exe -- (Norton PC Checkup Application Launcher)
SRV - [2012/05/10 15:20:46 | 000,276,248 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
SRV - [2012/01/20 18:29:28 | 000,363,800 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2012/01/20 18:29:26 | 000,277,784 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2012/01/20 13:45:40 | 000,161,560 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe -- (jhi_service)
SRV - [2012/01/20 13:45:30 | 000,128,280 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe -- (Intel®
SRV - [2011/11/30 19:17:01 | 000,126,392 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\ccSvcHst.exe -- (PCCUJobMgr)
SRV - [2011/07/11 19:16:06 | 000,057,216 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Toshiba\TOSHIBA Service Station\TMachInfo.exe -- (TMachInfo)
SRV - [2010/10/12 12:59:12 | 000,206,072 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe -- (GamesAppService)
SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008/11/09 15:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Auto | Running] -- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2014/02/09 11:32:53 | 001,038,072 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2014/02/09 11:32:53 | 000,421,704 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswsp.sys -- (aswSP)
DRV:64bit: - [2014/02/09 11:32:53 | 000,080,184 | ---- | M] (AVAST Software) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\aswstm.sys -- (aswStm)
DRV:64bit: - [2014/02/09 11:32:53 | 000,078,648 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2013/12/28 20:27:38 | 000,207,904 | ---- | M] () [Kernel | Boot | Running] -- C:\windows\SysNative\drivers\aswVmm.sys -- (aswVmm)
DRV:64bit: - [2013/10/24 16:13:16 | 000,092,544 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:64bit: - [2013/10/24 16:13:16 | 000,065,776 | ---- | M] () [Kernel | Boot | Running] -- C:\windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt)
DRV:64bit: - [2013/10/01 21:22:20 | 000,056,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2013/05/02 06:52:40 | 001,514,568 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rtwlane.sys -- (RTWlanE)
DRV:64bit: - [2012/12/13 14:50:36 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2012/08/23 09:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012/08/23 09:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2012/08/06 16:02:08 | 000,062,784 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2012/05/10 15:11:04 | 014,759,136 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2012/03/01 01:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012/01/16 17:49:14 | 000,103,536 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\L1C62x64.sys -- (L1C)
DRV:64bit: - [2012/01/05 05:58:50 | 000,786,200 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iusb3xhc.sys -- (iusb3xhc)
DRV:64bit: - [2012/01/05 05:58:50 | 000,355,096 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iusb3hub.sys -- (iusb3hub)
DRV:64bit: - [2012/01/05 05:58:50 | 000,016,152 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iusb3hcs.sys -- (iusb3hcs)
DRV:64bit: - [2011/12/22 21:22:12 | 000,412,432 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2011/12/22 21:22:10 | 000,021,264 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Smb_driver.sys -- (SmbDrv)
DRV:64bit: - [2011/12/06 05:23:08 | 000,331,264 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:64bit: - [2011/11/29 21:40:32 | 000,568,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2011/07/28 16:33:50 | 000,313,448 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rtsuvstor.sys -- (RSUSBVSTOR)
DRV:64bit: - [2011/07/18 18:11:10 | 001,145,448 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rtl8192ce.sys -- (RTL8192Ce)
DRV:64bit: - [2011/05/13 03:21:04 | 000,177,640 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssadmdm.sys -- (ssadmdm)
DRV:64bit: - [2011/05/13 03:21:02 | 000,157,672 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssadbus.sys -- (ssadbus)
DRV:64bit: - [2011/05/13 03:21:02 | 000,036,328 | ---- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssadadb.sys -- (androidusb)
DRV:64bit: - [2011/05/13 03:21:02 | 000,016,872 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssadmdfl.sys -- (ssadmdfl)
DRV:64bit: - [2011/03/11 01:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 01:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/02/08 21:07:00 | 000,038,096 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PGEffect.sys -- (PGEffect)
DRV:64bit: - [2010/11/20 22:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009/07/30 22:22:04 | 000,027,784 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tdcmdpst.sys -- (tdcmdpst)
DRV:64bit: - [2009/07/14 17:31:18 | 000,026,840 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\TVALZ_O.SYS -- (TVALZ)
DRV:64bit: - [2009/07/13 20:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 20:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 20:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/07/07 10:51:42 | 000,009,216 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\FwLnk.sys -- (FwLnk)
DRV:64bit: - [2009/06/24 17:36:48 | 000,482,384 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tos_sps64.sys -- (tos_sps64)
DRV:64bit: - [2009/06/19 21:15:22 | 000,014,472 | ---- | M] (TOSHIBA Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\TVALZFL.sys -- (TVALZFL)
DRV:64bit: - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 15:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2009/07/13 20:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {{67A2568C-7A0A-4EED-AECC-B5405DE63B64}}
IE:64bit: - HKLM\..\SearchScopes\{{67A2568C-7A0A-4EED-AECC-B5405DE63B64}}: "URL" = http://www.google.co...ng}&rlz=1I7TSNP
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {{67A2568C-7A0A-4EED-AECC-B5405DE63B64}}
IE - HKLM\..\SearchScopes\{{67A2568C-7A0A-4EED-AECC-B5405DE63B64}}: "URL" = http://www.google.co...ng}&rlz=1I7TSNP
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.toshiba.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKCU\..\SearchScopes,DefaultScope = {B53FA071-DB70-433D-A95F-9550BEAE00B1}
IE - HKCU\..\SearchScopes\{{67A2568C-7A0A-4EED-AECC-B5405DE63B64}}: "URL" = http://www.google.co...ng}&rlz=1I7TSNP
IE - HKCU\..\SearchScopes\{B53FA071-DB70-433D-A95F-9550BEAE00B1}: "URL" = http://www.google.co...1I7TSNP_enUS493
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>;*.local
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Dictionary"
FF - prefs.js..browser.search.selectedEngine: "Dictionary"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "https://www.google.com/"
FF - prefs.js..extensions.enabledAddons: %7Bb9db16a4-6edc-47ec-a1f4-b86292ed211d%7D:4.9.21
FF - prefs.js..extensions.enabledAddons: wrc%40avast.com:9.0.2013.75
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:27.0.1
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.25.2: C:\windows\system32\npDeployJava1.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59: C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.51.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files (x86)\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@oberon-media.com/ONCAdapter: C:\Program Files (x86)\Common Files\Oberon Media\NCAdapter\1.0.0.8\npapicomadapter.dll File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=17.0.6.13: C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlchromebrowserrecordext;version=17.0.6: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlhtml5videoshim;version=17.0.6: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlpepperflashvideoshim;version=17.0.6: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpplugin;version=17.0.6.13: C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll (RealPlayer Cloud)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll ()
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\AVAST Software\Avast\WebRep\FF [2014/03/09 17:28:53 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{8E8D8D12-A43B-4289-994D-DF2C7C0EF736}: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ [2014/03/22 17:31:07 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2014/03/09 11:57:35 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2014/03/09 11:57:35 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
[2012/09/25 19:55:26 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lin55\AppData\Roaming\Mozilla\Extensions
[2014/03/20 21:53:40 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lin55\AppData\Roaming\Mozilla\Firefox\Profiles\8evhfb5a.default\extensions
[2013/12/15 20:55:17 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Users\Lin55\AppData\Roaming\Mozilla\Firefox\Profiles\8evhfb5a.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2013/08/31 10:15:53 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\Lin55\AppData\Roaming\Mozilla\Firefox\Profiles\8evhfb5a.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2012/08/28 11:36:10 | 000,000,931 | ---- | M] () -- C:\Users\Lin55\AppData\Roaming\Mozilla\Firefox\Profiles\8evhfb5a.default\searchplugins\dictionary.xml
[2012/08/28 11:22:24 | 000,000,705 | ---- | M] () -- C:\Users\Lin55\AppData\Roaming\Mozilla\Firefox\Profiles\8evhfb5a.default\searchplugins\webster.xml
[2014/02/14 20:06:08 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2014/02/14 20:06:08 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2014/02/14 20:06:07 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2014/02/14 20:06:07 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2014/03/08 13:53:11 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2014/03/09 17:28:53 | 000,000,000 | ---D | M] (avast! Online Security) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
[2014/03/22 17:31:07 | 000,000,000 | ---D | M] (RealDownloader) -- C:\PROGRAMDATA\REALNETWORKS\REALDOWNLOADER\BROWSERPLUGINS\FIREFOX\EXT
O1 HOSTS File: ([2009/06/10 16:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (RealNetworks Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin64.dll (RealDownloader)
O2:64bit: - BHO: (avast! Online Security) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:64bit: - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2:64bit: - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O2:64bit: - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (TOSHIBA Media Controller Plug-in) - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\Toshiba\TOSHIBA Media Controller Plug-in\x64\TOSHIBAMediaControllerIE.dll (TOSHIBA Corporation)
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O2 - BHO: (RealNetworks Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (TOSHIBA Media Controller Plug-in) - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\Toshiba\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll (TOSHIBA Corporation)
O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:64bit: - HKLM\..\Toolbar: (avast! Online Security) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3:64bit: - HKLM\..\Toolbar: (avast! Online Security) - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (avast! Online Security) - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3:64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O4:64bit: - HKLM..\Run: [] File not found
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [Teco] C:\Program Files\TOSHIBA\TECO\Teco.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosNC] C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosSENotify] C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosWaitSrv.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosVolRegulator] C:\Program Files\Toshiba\TosVolRegulator\TosVolRegulator.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosWaitSrv] C:\Program Files\Toshiba\TPHM\TosWaitSrv.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TPwrMain] C:\Program Files\Toshiba\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
O4 - HKLM..\Run: [NortonOnlineBackupReminder] C:\Program Files (x86)\Toshiba\Toshiba Online Backup\Activation\TOBuActivation.exe (Toshiba)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [ToshibaServiceStation] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [USB3MON] C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Intel Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9:64bit: - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7CEDA102-85DF-4047-BFC7-7CCDC8B16B71}: DhcpNameServer = 192.168.1.254
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2014/03/23 16:50:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2014/03/23 16:50:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2014/03/22 17:31:40 | 000,000,000 | ---D | C] -- C:\Users\Lin55\AppData\Roaming\RealNetworks
[2014/03/22 17:31:06 | 000,000,000 | ---D | C] -- C:\ProgramData\RealNetworks
[2014/03/22 17:31:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\RealNetworks
[2014/03/22 17:30:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\xing shared
[2014/03/22 17:30:35 | 000,278,600 | ---- | C] (Progressive Networks) -- C:\windows\SysWow64\pncrt.dll
[2014/03/22 17:30:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks
[2014/03/22 17:30:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Real
[2014/03/22 17:29:35 | 000,000,000 | ---D | C] -- C:\Users\Lin55\AppData\Roaming\Real
[2014/03/22 17:27:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Real
[2014/03/15 23:12:29 | 000,000,000 | ---D | C] -- C:\Users\Lin55\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Grim Tales - Bloody Mary
[2014/03/15 23:12:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Grim Tales - Bloody Mary
[2014/03/15 23:12:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Grim Tales - Bloody Mary
[2014/03/15 20:09:46 | 000,000,000 | ---D | C] -- C:\Users\Lin55\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Between the Worlds II - The Pyramid
[2014/03/15 20:09:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Between the Worlds II - The Pyramid
[2014/03/15 20:09:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Between the Worlds II - The Pyramid
[2014/03/15 19:09:16 | 000,000,000 | ---D | C] -- C:\Users\Lin55\AppData\Roaming\Between The Worlds 2
[2014/03/13 21:16:19 | 000,000,000 | ---D | C] -- C:\Users\Lin55\Documents\The Lonely Hearts Murders SE
[2014/03/13 00:51:35 | 000,000,000 | ---D | C] -- C:\Users\Lin55\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Brink of Consciousness - The Lonely Hearts Murders
[2014/03/13 00:51:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brink of Consciousness - The Lonely Hearts Murders
[2014/03/13 00:51:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Brink of Consciousness - The Lonely Hearts Murders
[2014/02/23 22:37:25 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\CrashDump
[2014/02/23 22:04:54 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\NativeFus_Log
[2014/02/23 22:03:27 | 000,000,000 | ---D | C] -- C:\Users\Lin55\AppData\Local\Samsung
[2014/02/23 22:03:25 | 000,000,000 | ---D | C] -- C:\Users\Lin55\AppData\Roaming\Samsung
[2014/02/23 21:55:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Samsung
[2014/02/23 21:55:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Samsung
[2014/02/23 21:53:55 | 000,000,000 | ---D | C] -- C:\Users\Lin55\AppData\Local\Downloaded Installations
[2014/02/23 21:52:15 | 075,211,320 | ---- | C] (Samsung Electronics Co., Ltd.) -- C:\Users\Lin55\Documents\KiesSetup.exe
[2014/02/21 20:19:17 | 000,000,000 | ---D | C] -- C:\windows\Migration
[2013/09/21 19:42:57 | 000,082,816 | ---- | C] (VSO Software) -- C:\Users\Lin55\AppData\Roaming\pcouffin.sys
[2013/04/04 12:05:35 | 013,079,688 | ---- | C] (Microsoft Corporation) -- C:\Users\Lin55\Silverlight_x64.exe
[9 C:\windows\SysNative\*.tmp files -> C:\windows\SysNative\*.tmp -> ]
[1 C:\windows\SysWow64\*.tmp files -> C:\windows\SysWow64\*.tmp -> ]
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2014/03/23 19:27:00 | 000,000,830 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2014/03/23 19:09:00 | 000,000,912 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/03/23 18:40:01 | 000,000,828 | ---- | M] () -- C:\windows\tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job
[2014/03/23 18:39:59 | 000,000,908 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/03/23 18:37:39 | 000,024,608 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/03/23 18:37:39 | 000,024,608 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/03/23 18:36:46 | 000,782,470 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2014/03/23 18:36:46 | 000,662,634 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2014/03/23 18:36:46 | 000,122,470 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
[2014/03/23 18:31:55 | 000,416,688 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT
[2014/03/23 18:31:40 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2014/03/23 18:31:01 | 3136,921,600 | -HS- | M] () -- C:\hiberfil.sys
[2014/03/23 16:53:08 | 000,016,284 | ---- | M] () -- C:\windows\SysWow64\ieuinit.inf
[2014/03/23 16:53:08 | 000,016,284 | ---- | M] () -- C:\windows\SysNative\ieuinit.inf
[2014/03/23 16:33:41 | 000,775,084 | ---- | M] () -- C:\windows\SysWow64\PerfStringBackup.INI
[2014/03/23 11:01:00 | 000,000,830 | ---- | M] () -- C:\windows\tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job
[2014/03/22 17:31:21 | 000,001,275 | ---- | M] () -- C:\Users\Public\Desktop\RealPlayer Cloud.lnk
[2014/03/22 17:30:49 | 000,001,259 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RealPlayer Cloud Service UI.lnk
[2014/03/22 17:30:35 | 000,278,600 | ---- | M] (Progressive Networks) -- C:\windows\SysWow64\pncrt.dll
[2014/03/15 23:16:27 | 000,001,278 | ---- | M] () -- C:\Users\Public\Desktop\More Great Games.lnk
[2014/03/09 20:36:38 | 000,003,021 | ---- | M] () -- C:\Users\Lin55\Desktop\Microsoft Word 2010.lnk
[2014/03/09 17:29:59 | 000,001,977 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2014/02/23 21:53:35 | 075,211,320 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Users\Lin55\Documents\KiesSetup.exe
[2014/02/23 14:46:51 | 000,000,843 | ---- | M] () -- C:\Users\Lin55\Documents\sd.jnlp
[2014/02/23 14:08:09 | 000,000,843 | ---- | M] () -- C:\Users\Lin55\Documents\kies.jnlp
[2014/02/23 13:32:15 | 000,674,184 | ---- | M] () -- C:\Users\Lin55\Documents\sms_12.25.00.02.23.14.xml
[2014/02/23 13:31:59 | 000,213,910 | ---- | M] () -- C:\Users\Lin55\Documents\contacts_12.22.58.02.23.14.vcf
[2014/02/23 13:31:31 | 000,092,432 | ---- | M] () -- C:\Users\Lin55\Documents\cal_12.21.46.02.23.14.xml
[9 C:\windows\SysNative\*.tmp files -> C:\windows\SysNative\*.tmp -> ]
[1 C:\windows\SysWow64\*.tmp files -> C:\windows\SysWow64\*.tmp -> ]
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
========== Files Created - No Company Name ==========
[2014/03/23 16:53:08 | 000,016,284 | ---- | C] () -- C:\windows\SysWow64\ieuinit.inf
[2014/03/23 16:53:08 | 000,016,284 | ---- | C] () -- C:\windows\SysNative\ieuinit.inf
[2014/03/22 17:31:21 | 000,001,275 | ---- | C] () -- C:\Users\Public\Desktop\RealPlayer Cloud.lnk
[2014/03/22 17:30:49 | 000,001,259 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RealPlayer Cloud Service UI.lnk
[2014/03/15 23:16:27 | 000,001,278 | ---- | C] () -- C:\Users\Public\Desktop\More Great Games.lnk
[2014/03/09 20:36:38 | 000,003,021 | ---- | C] () -- C:\Users\Lin55\Desktop\Microsoft Word 2010.lnk
[2014/02/23 14:47:01 | 000,000,843 | ---- | C] () -- C:\Users\Lin55\Documents\sd.jnlp
[2014/02/23 14:08:34 | 000,000,843 | ---- | C] () -- C:\Users\Lin55\Documents\kies.jnlp
[2014/02/23 13:32:21 | 000,674,184 | ---- | C] () -- C:\Users\Lin55\Documents\sms_12.25.00.02.23.14.xml
[2014/02/23 13:32:09 | 000,213,910 | ---- | C] () -- C:\Users\Lin55\Documents\contacts_12.22.58.02.23.14.vcf
[2014/02/23 13:31:52 | 000,092,432 | ---- | C] () -- C:\Users\Lin55\Documents\cal_12.21.46.02.23.14.xml
[2014/01/23 19:31:08 | 000,081,920 | ---- | C] () -- C:\windows\SysWow64\issacapi_bs-2.3.dll
[2013/09/21 19:42:57 | 000,099,384 | ---- | C] () -- C:\Users\Lin55\AppData\Roaming\inst.exe
[2013/09/21 19:42:57 | 000,007,859 | ---- | C] () -- C:\Users\Lin55\AppData\Roaming\pcouffin.cat
[2013/09/15 11:33:26 | 000,001,167 | ---- | C] () -- C:\Users\Lin55\AppData\Roaming\pcouffin.inf
[2012/10/28 05:58:06 | 000,000,016 | ---- | C] () -- C:\windows\popcinfo.dat
[2012/10/01 23:07:52 | 000,004,096 | ---- | C] () -- C:\windows\d3dx.dat
[2012/08/26 16:10:34 | 000,039,904 | ---- | C] () -- C:\windows\SysWow64\dischandler.exe
[2012/08/20 22:15:22 | 003,978,240 | ---- | C] () -- C:\windows\SysWow64\ffmpeg.dll
[2012/08/20 22:14:04 | 000,112,640 | ---- | C] () -- C:\windows\SysWow64\ff_vfw.dll
[2012/08/20 22:12:48 | 000,271,360 | ---- | C] () -- C:\windows\SysWow64\TomsMoComp_ff.dll
[2012/08/20 22:12:34 | 000,099,840 | ---- | C] () -- C:\windows\SysWow64\ff_wmv9.dll
[2012/08/20 22:12:32 | 000,157,184 | ---- | C] () -- C:\windows\SysWow64\ff_unrar.dll
[2012/08/20 22:12:30 | 000,147,456 | ---- | C] () -- C:\windows\SysWow64\ff_libmad.dll
[2012/08/20 22:12:28 | 001,525,760 | ---- | C] () -- C:\windows\SysWow64\ff_samplerate.dll
[2012/08/20 22:12:28 | 000,211,968 | ---- | C] () -- C:\windows\SysWow64\ff_libdts.dll
[2012/08/20 22:12:28 | 000,114,688 | ---- | C] () -- C:\windows\SysWow64\ff_liba52.dll
[2012/08/20 22:12:24 | 000,330,240 | ---- | C] () -- C:\windows\SysWow64\ff_libfaad2.dll
[2012/08/15 21:29:36 | 000,000,064 | ---- | C] () -- C:\windows\GPlrLanc.dat
[2012/07/19 13:56:08 | 000,172,544 | ---- | C] () -- C:\windows\SysWow64\libbluray.dll
[2012/07/19 13:56:02 | 006,894,331 | ---- | C] () -- C:\windows\SysWow64\avcodec-lav-54.dll
[2012/07/19 13:56:02 | 001,111,581 | ---- | C] () -- C:\windows\SysWow64\avformat-lav-54.dll
[2012/07/19 13:56:02 | 000,401,685 | ---- | C] () -- C:\windows\SysWow64\swscale-lav-2.dll
[2012/07/19 13:56:02 | 000,232,895 | ---- | C] () -- C:\windows\SysWow64\avutil-lav-51.dll
[2012/07/19 13:56:02 | 000,162,743 | ---- | C] () -- C:\windows\SysWow64\avfilter-lav-3.dll
[2012/07/19 13:56:02 | 000,101,820 | ---- | C] () -- C:\windows\SysWow64\avresample-lav-0.dll
[2012/05/10 15:07:18 | 000,058,880 | ---- | C] () -- C:\windows\SysWow64\igdde32.dll
[2012/05/10 14:24:08 | 013,214,720 | ---- | C] () -- C:\windows\SysWow64\ig4icd32.dll
[2012/05/01 21:59:24 | 000,775,084 | ---- | C] () -- C:\windows\SysWow64\PerfStringBackup.INI
[2012/05/01 21:17:44 | 000,451,072 | ---- | C] () -- C:\windows\SysWow64\ISSRemoveSP.exe
========== ZeroAccess Check ==========
[2009/07/13 23:55:00 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/07/25 21:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/07/25 20:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 20:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 22:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 20:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2013/09/25 20:02:12 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\4 Friends Games
[2013/04/01 23:09:18 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\8floor
[2012/10/01 21:35:42 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Absolutist
[2012/11/17 00:06:03 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Alawar
[2013/03/29 14:38:16 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Alawar Stargaze
[2013/09/24 20:26:41 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\AlawarEntertainment
[2013/09/22 17:22:34 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\AlderGames
[2012/11/22 23:53:02 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Amaranth Games
[2013/10/14 20:38:46 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Artifex Mundi
[2012/11/01 18:06:34 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\ArtifexMundi
[2013/08/03 15:14:52 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Artogon
[2013/10/24 16:25:22 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\AVAST Software
[2012/07/25 16:08:24 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Awem
[2014/03/15 19:12:01 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Between The Worlds 2
[2013/02/05 21:01:29 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Big Fish Games
[2013/03/10 22:59:13 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Boolat Games
[2014/01/14 21:24:35 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Boomzap
[2013/10/01 19:33:38 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\com.zoosk.Desktop
[2013/10/01 19:33:38 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\com.zoosk.Desktop.096E6A67431258A508A2446A847B240591D2C99B.1
[2013/10/06 19:25:30 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\DailyMagic
[2013/09/22 14:04:36 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\DarkManor
[2012/08/17 23:44:14 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\EleFun Games
[2014/03/16 21:43:30 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Elephant Games
[2014/01/04 21:13:07 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\ERS Game Studios
[2013/01/19 13:35:43 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Fenomen Games
[2012/09/26 00:45:28 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Friday's games
[2012/10/01 23:47:14 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Frogwares
[2013/02/20 00:09:29 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Ghost Ship Studios
[2013/09/05 18:47:58 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Gunnar Games
[2013/01/23 21:58:35 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Jetdogs Studios
[2012/11/09 01:19:07 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\LegacyGames
[2013/01/26 23:05:47 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\LegacyInteractive
[2012/09/19 18:54:58 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Mad Head Games
[2014/03/13 21:16:19 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\MagicIndie
[2013/10/06 13:19:56 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\MediaArt
[2012/07/30 05:13:32 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\MumboJumbo
[2012/07/23 22:00:06 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Oberon Media
[2013/10/05 17:48:15 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Orneon
[2012/07/20 10:40:25 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\PCCUStubInstaller
[2012/09/06 16:51:56 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\PlataGames
[2012/07/25 18:13:51 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\PlayFavoriteGames
[2013/05/19 11:13:39 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\PlayFirst
[2012/08/19 21:01:53 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Playrix Entertainment
[2013/09/30 18:58:49 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\PuzzleLab
[2012/10/01 21:49:27 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\RenPy
[2012/09/13 23:57:44 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Sahmon Games
[2014/02/28 19:27:21 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Samsung
[2012/11/12 01:08:19 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\SecretIslandEng
[2012/09/28 01:03:55 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Skyborn
[2013/10/13 17:22:32 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Specialbit
[2012/09/26 23:28:53 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\SpinTop Games
[2012/09/28 01:20:38 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Sylia_Act_I_Saves
[2012/11/12 00:46:27 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\TMInc
[2012/11/18 22:47:04 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\TOMI2.THE GATES OF FATE
[2012/11/09 22:18:45 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Top Evidence
[2012/07/19 20:51:00 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Toshiba
[2012/09/14 02:25:38 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\TWODESPERADOS
[2012/08/14 09:12:54 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Vast Studios
[2012/09/05 21:01:28 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\VendelGAMES
[2012/10/13 00:27:48 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Vogat Interactive
[2013/09/21 19:42:58 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Vso
[2012/07/20 09:58:12 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\WildTangent
[2012/07/19 20:46:29 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\WinBatch
[2012/07/19 23:42:09 | 000,000,000 | ---D | M] -- C:\Users\Lin55\AppData\Roaming\Windows Live Writer
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 377 bytes -> C:\ProgramData\TEMP:214562D2
@Alternate Data Stream - 254 bytes -> C:\ProgramData\TEMP:48862C37
@Alternate Data Stream - 252 bytes -> C:\ProgramData\TEMP:462A7C89
@Alternate Data Stream - 251 bytes -> C:\ProgramData\TEMP:9EDA68BD
@Alternate Data Stream - 251 bytes -> C:\ProgramData\TEMP:5C717402
@Alternate Data Stream - 251 bytes -> C:\ProgramData\TEMP:4AC7B5C1
@Alternate Data Stream - 250 bytes -> C:\ProgramData\TEMP:94A31742
@Alternate Data Stream - 248 bytes -> C:\ProgramData\TEMP:B6E58523
@Alternate Data Stream - 248 bytes -> C:\ProgramData\TEMP:6CF828C2
@Alternate Data Stream - 248 bytes -> C:\ProgramData\TEMP:11590865
@Alternate Data Stream - 247 bytes -> C:\ProgramData\TEMP:49EA4410
@Alternate Data Stream - 246 bytes -> C:\ProgramData\TEMP:1B96CF22
@Alternate Data Stream - 246 bytes -> C:\ProgramData\TEMP:00F3978A
@Alternate Data Stream - 245 bytes -> C:\ProgramData\TEMP:D1FE35E7
@Alternate Data Stream - 245 bytes -> C:\ProgramData\TEMP:B6E6C4EA
@Alternate Data Stream - 245 bytes -> C:\ProgramData\TEMP:6ECE93A8
@Alternate Data Stream - 244 bytes -> C:\ProgramData\TEMP:E402E439
@Alternate Data Stream - 244 bytes -> C:\ProgramData\TEMP:C6104C4F
@Alternate Data Stream - 244 bytes -> C:\ProgramData\TEMP:4D729D61
@Alternate Data Stream - 243 bytes -> C:\ProgramData\TEMP:60E755E6
@Alternate Data Stream - 242 bytes -> C:\ProgramData\TEMP:997DA6D7
@Alternate Data Stream - 241 bytes -> C:\ProgramData\TEMP:63C48B80
@Alternate Data Stream - 240 bytes -> C:\ProgramData\TEMP:D64DD961
@Alternate Data Stream - 240 bytes -> C:\ProgramData\TEMP:A819A132
@Alternate Data Stream - 240 bytes -> C:\ProgramData\TEMP:0E22C5DB
@Alternate Data Stream - 239 bytes -> C:\ProgramData\TEMP:E47BBD7B
@Alternate Data Stream - 239 bytes -> C:\ProgramData\TEMP:C3899C0B
@Alternate Data Stream - 238 bytes -> C:\ProgramData\TEMP:E8B61305
@Alternate Data Stream - 236 bytes -> C:\ProgramData\TEMP:AAA06E15
@Alternate Data Stream - 236 bytes -> C:\ProgramData\TEMP:5E73E1C2
@Alternate Data Stream - 236 bytes -> C:\ProgramData\TEMP:4C9782FB
@Alternate Data Stream - 235 bytes -> C:\ProgramData\TEMP:1E17A249
@Alternate Data Stream - 234 bytes -> C:\ProgramData\TEMP:D4DD372D
@Alternate Data Stream - 234 bytes -> C:\ProgramData\TEMP:C6920A5D
@Alternate Data Stream - 234 bytes -> C:\ProgramData\TEMP:B79964F6
@Alternate Data Stream - 234 bytes -> C:\ProgramData\TEMP:80FA23CA
@Alternate Data Stream - 234 bytes -> C:\ProgramData\TEMP:036AA5DD
@Alternate Data Stream - 233 bytes -> C:\ProgramData\TEMP:3A7527E8
@Alternate Data Stream - 232 bytes -> C:\ProgramData\TEMP:F1381B87
@Alternate Data Stream - 232 bytes -> C:\ProgramData\TEMP:BE6B5FC3
@Alternate Data Stream - 232 bytes -> C:\ProgramData\TEMP:6BFA43EB
@Alternate Data Stream - 232 bytes -> C:\ProgramData\TEMP:302ECBD6
@Alternate Data Stream - 232 bytes -> C:\ProgramData\TEMP:0696EC8E
@Alternate Data Stream - 231 bytes -> C:\ProgramData\TEMP:EDDBC69E
@Alternate Data Stream - 231 bytes -> C:\ProgramData\TEMP:5A068EE1
@Alternate Data Stream - 231 bytes -> C:\ProgramData\TEMP:460638C7
@Alternate Data Stream - 230 bytes -> C:\ProgramData\TEMP:BB99F46B
@Alternate Data Stream - 229 bytes -> C:\ProgramData\TEMP:3F266659
@Alternate Data Stream - 229 bytes -> C:\ProgramData\TEMP:0BACBDD9
@Alternate Data Stream - 228 bytes -> C:\ProgramData\TEMP:BBC9C1EB
@Alternate Data Stream - 228 bytes -> C:\ProgramData\TEMP:207C4C79
@Alternate Data Stream - 228 bytes -> C:\ProgramData\TEMP:1604D047
@Alternate Data Stream - 227 bytes -> C:\ProgramData\TEMP:B54E4B5A
@Alternate Data Stream - 227 bytes -> C:\ProgramData\TEMP:795F6DEC
@Alternate Data Stream - 227 bytes -> C:\ProgramData\TEMP:689AB7E9
@Alternate Data Stream - 227 bytes -> C:\ProgramData\TEMP:57176330
@Alternate Data Stream - 227 bytes -> C:\ProgramData\TEMP:4E79C4F8
@Alternate Data Stream - 227 bytes -> C:\ProgramData\TEMP:1EAB6298
@Alternate Data Stream - 226 bytes -> C:\ProgramData\TEMP:F83E8359
@Alternate Data Stream - 226 bytes -> C:\ProgramData\TEMP:66C764F5
@Alternate Data Stream - 226 bytes -> C:\ProgramData\TEMP:406E0034
@Alternate Data Stream - 225 bytes -> C:\ProgramData\TEMP:92CA7E75
@Alternate Data Stream - 225 bytes -> C:\ProgramData\TEMP:922DA2DB
@Alternate Data Stream - 224 bytes -> C:\ProgramData\TEMP:EFBD4447
@Alternate Data Stream - 224 bytes -> C:\ProgramData\TEMP:A60D0FA6
@Alternate Data Stream - 224 bytes -> C:\ProgramData\TEMP:371060CE
@Alternate Data Stream - 223 bytes -> C:\ProgramData\TEMP:53BA2DF6
@Alternate Data Stream - 223 bytes -> C:\ProgramData\TEMP:4A448DB2
@Alternate Data Stream - 223 bytes -> C:\ProgramData\TEMP:1322DDBD
@Alternate Data Stream - 223 bytes -> C:\ProgramData\TEMP:0410A323
@Alternate Data Stream - 222 bytes -> C:\ProgramData\TEMP:71F04C26
@Alternate Data Stream - 221 bytes -> C:\ProgramData\TEMP:1234ADAE
@Alternate Data Stream - 221 bytes -> C:\ProgramData\TEMP:097C4B7D
@Alternate Data Stream - 219 bytes -> C:\ProgramData\TEMP:A02025CE
@Alternate Data Stream - 219 bytes -> C:\ProgramData\TEMP:9BAC4211
@Alternate Data Stream - 218 bytes -> C:\ProgramData\TEMP:8B4B9596
@Alternate Data Stream - 218 bytes -> C:\ProgramData\TEMP:4EFA2FC7
@Alternate Data Stream - 217 bytes -> C:\ProgramData\TEMP:C370B84F
@Alternate Data Stream - 217 bytes -> C:\ProgramData\TEMP:8DD20B4A
@Alternate Data Stream - 216 bytes -> C:\ProgramData\TEMP:569CEE83
@Alternate Data Stream - 215 bytes -> C:\ProgramData\TEMP:2C86E2AD
@Alternate Data Stream - 214 bytes -> C:\ProgramData\TEMP:206470A5
@Alternate Data Stream - 213 bytes -> C:\ProgramData\TEMP:0EC7A545
@Alternate Data Stream - 212 bytes -> C:\ProgramData\TEMP:512E1728
@Alternate Data Stream - 212 bytes -> C:\ProgramData\TEMP:491270B8
@Alternate Data Stream - 212 bytes -> C:\ProgramData\TEMP:1DB77A89
@Alternate Data Stream - 211 bytes -> C:\ProgramData\TEMP:A6D6E537
@Alternate Data Stream - 211 bytes -> C:\ProgramData\TEMP:762408BA
@Alternate Data Stream - 210 bytes -> C:\ProgramData\TEMP:E411AA0D
@Alternate Data Stream - 210 bytes -> C:\ProgramData\TEMP:9BB8C675
@Alternate Data Stream - 210 bytes -> C:\ProgramData\TEMP:848CC150
@Alternate Data Stream - 210 bytes -> C:\ProgramData\TEMP:61AF2B29
@Alternate Data Stream - 210 bytes -> C:\ProgramData\TEMP:13CDB0E0
@Alternate Data Stream - 208 bytes -> C:\ProgramData\TEMP:EE69D7DF
@Alternate Data Stream - 206 bytes -> C:\ProgramData\TEMP:72A1B66A
@Alternate Data Stream - 206 bytes -> C:\ProgramData\TEMP:1416AAA6
@Alternate Data Stream - 205 bytes -> C:\ProgramData\TEMP:95D2904B
@Alternate Data Stream - 193 bytes -> C:\ProgramData\TEMP:6B2FBF73
@Alternate Data Stream - 193 bytes -> C:\ProgramData\TEMP:2DAD076E
@Alternate Data Stream - 191 bytes -> C:\ProgramData\TEMP:43357A12
@Alternate Data Stream - 190 bytes -> C:\ProgramData\TEMP:D507B5A8
@Alternate Data Stream - 188 bytes -> C:\ProgramData\TEMP:B904C348
@Alternate Data Stream - 187 bytes -> C:\ProgramData\TEMP:506E1E25
@Alternate Data Stream - 178 bytes -> C:\ProgramData\TEMP:881ED4D3
@Alternate Data Stream - 175 bytes -> C:\ProgramData\TEMP:7FA0D639
@Alternate Data Stream - 172 bytes -> C:\ProgramData\TEMP:C0AAC015
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:D987CB43
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:59540531
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:351662E7
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:72C99D4E
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:39B14E09
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:2CB9631F
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:EFF3C3C8
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:95D421DF
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:2AE74FF9
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:37207201
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:C89D1773
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:10CB85CA
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:A9056F42
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:5133A494
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:3B454A5C
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:F1174C93
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:5ED7E575
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:F84B8DB5
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:A9562832
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:54403233
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:3E06C78F
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:E6CDFB4A
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:CE3AADB7
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:943E8182
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:14A1BBE3
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:CB299F13
@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:7EC01D6D
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:8BE7A048
@Alternate Data Stream - 101 bytes -> C:\ProgramData\TEMP:A3E39C6A
< End of report >
Sooooooooooooo, any help would be appreciated. Yes, I have a lot of games, but that has never been a problem before. Oh, and please don't embarrass me
Thanks, Linda