Here's the list of problems I noticed:
1. Windows cannot update "Security Update for Microsoft Visual C++ 2008 Service Pack 1 Redistributable Package (KB2538243)"
2. Avast notices there is "Grime". When I follow the instructions, and try to remove AVG "Do Not Track", "Safe Search" and others, a Windows Installer window appears and is looking for a network resource. C:\ProgramData\MFAData\pack\crt_x64.msi. Perhaps during a previous scan, this file was removed and now the system can't find it?
3. AOL is looking to update something. Only AOL email is used on this machine, not ISP connectivity. On a personal note, I despise AOL, but it's not my place to change the way the customer uses her laptop, or else it would have been removed long ago.
4. iTunes tries to update some software, but after installing, it asks to install the same software, over and over, and over again.
There may be other issues I haven't picked up on, but I don't have very much input from the customer other than, " it's running sluggish".
I've attempted to circumvent the Windows C++ security install issues, like reverting, or installing pieces leading up to it, safe mode, and others, but no success.
One more thing to mention, this is a VAIO laptop, and it has its own level of gadgets and such that is available on the laptop. I noticed there is a security update it is trying to install, after running the install, I receive the following error:
Error applying transforms. Verify that the specified transform paths are valid. C:\Windows\Installer\{7C80D30A-AC02-4E3F-B95D-29F0E4FF937B}\1030.MST
However, it is possible this is happening because this is the wrong model VAIO
Any help is appreciated. I am an experienced computer technician, however, this situation has gone a little farther than I can handle. Thank you.
Here is the OTL data:
OTL logfile created on: 6/30/2014 3:57:19 PM - Run 1OTL by OldTimer -
Version 3.2.69.0 Folder =
C:\Users\milbus21\Desktop64bit- Home Premium Edition Service Pack 1 (Version
= 6.1.7601) - Type = NTWorkstationInternet Explorer (Version =
9.11.9600.17126)Locale: 00000409 | Country: United States | Language: ENU |
Date Format: M/d/yyyy 3.95 Gb Total Physical Memory | 1.88 Gb
Available Physical Memory | 47.72% Memory free7.90 Gb Paging File | 5.30 Gb
Available in Paging File | 67.06% Paging File freePaging file location(s):
?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% =
C:\Windows | %ProgramFiles% = C:\Program Files (x86)Drive C: | 585.14 Gb
Total Space | 371.24 Gb Free Space | 63.45% Space Free | Partition Type:
NTFS Computer Name: MILBUS21-VAIO | User Name: milbus21 | Logged in
as Administrator.Boot Mode: Normal | Scan Mode: Current user | Quick Scan |
Include 64bit ScansCompany Name Whitelist: On | Skip Microsoft Files: On |
No Company Name Whitelist: On | File Age = 30
Days ========== Processes (SafeList)
========== PRC - [2014/06/30 15:56:32 | 000,602,112 | ----
| M] (OldTimer Tools) -- C:\Users\milbus21\Desktop\OTL.exePRC - [2014/06/14
12:13:12 | 003,890,208 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST
Software\Avast\avastui.exePRC - [2014/05/27 15:16:21 | 002,472,424 | ---- |
M] (AVAST Software) -- C:\Program Files\AVAST
Software\Avast\browsercleanup.exePRC - [2014/04/30 11:14:43 | 000,050,344 |
---- | M] (AVAST Software) -- C:\Program Files\AVAST
Software\Avast\AvastSvc.exePRC - [2014/02/20 15:35:26 | 000,060,504 | ---- |
M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Care\VCService.exePRC -
[2013/11/01 14:59:56 | 000,062,464 | ---- | M] () -- C:\Program Files\Sony\VAIO
Care\listener.exePRC - [2012/02/23 13:30:40 | 000,059,240 | ---- | M] (Apple
Inc.) -- C:\Program Files (x86)\Common Files\Apple\Internet
Services\ubd.exePRC - [2012/02/14 04:53:38 | 000,193,288 | ---- | M] (AVG
Technologies CZ, s.r.o.) -- C:\Program Files
(x86)\AVG\AVG2012\avgwdsvc.exePRC - [2012/02/09 20:40:16 | 000,053,248 |
---- | M] (Digital Delivery Networks, Inc.) -- C:\Program Files
(x86)\DDNi\Oasis2Service\Oasis2Service.exePRC - [2012/01/03 05:10:42 |
000,063,928 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files
(x86)\Common Files\Adobe\ARM\1.0\armsvc.exePRC - [2011/12/14 16:51:21 |
000,041,296 | ---- | M] (AOL Inc.) -- C:\Program Files (x86)\AOL Desktop
9.7\waol.exePRC - [2011/12/14 16:51:19 | 000,045,392 | ---- | M] (AOL Inc.)
-- C:\Program Files (x86)\AOL Desktop 9.7\shellmon.exePRC - [2011/08/31
13:44:30 | 000,477,200 | ---- | M] () -- C:\Program Files (x86)\Sony\Keyboard
Shortcuts\KeyboardShortcuts.exePRC - [2011/03/05 19:42:36 | 000,180,928 |
---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\VAIO Event
Service\VESMgrSub.exePRC - [2011/03/05 19:42:36 | 000,064,704 | ---- | M]
(Sony Corporation) -- C:\Program Files (x86)\Sony\VAIO Event
Service\VESMgr.exePRC - [2011/02/23 17:05:04 | 000,105,024 | ---- | M]
(ArcSoft, Inc.) -- C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects
2\uCamMonitor.exePRC - [2011/02/15 14:47:02 | 002,757,312 | ---- | M] (Sony
Corporation) -- C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exePRC -
[2011/02/14 02:15:46 | 002,656,280 | ---- | M] (Intel Corporation) -- C:\Program
Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exePRC -
[2011/02/14 02:15:14 | 000,325,656 | ---- | M] (Intel Corporation) -- C:\Program
Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exePRC -
[2010/11/27 03:55:42 | 000,648,032 | ---- | M] (Sony Corporation) -- C:\Program
Files (x86)\Sony\PMB\PMBVolumeWatcher.exePRC - [2010/11/27 03:55:42 |
000,398,176 | ---- | M] (Sony Corporation) -- C:\Program Files
(x86)\Sony\PMB\PMBDeviceInfoProvider.exePRC - [2010/11/06 02:54:22 |
000,013,336 | ---- | M] (Intel Corporation) -- C:\Program Files
(x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exePRC -
[2010/11/06 02:54:20 | 000,283,160 | ---- | M] (Intel Corporation) -- C:\Program
Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exePRC -
[2010/03/08 03:27:49 | 000,041,800 | ---- | M] (AOL Inc.) -- C:\Program Files
(x86)\Common Files\AOL\1324837120\ee\aolsoftware.exePRC - [2006/10/23
08:50:35 | 000,046,640 | R--- | M] (AOL LLC) -- C:\Program Files (x86)\Common
Files\AOL\acs\AOLacsd.exe ==========
Modules (No Company Name) ========== MOD - [2014/05/22
11:42:49 | 000,475,648 | ---- | M] () --
C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\0eef5f1e5c15e0171152ee8f1cfc6924\IAStorUtil.ni.dllMOD
- [2014/05/22 11:40:07 | 000,774,144 | ---- | M] () --
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\98c91b8d3f1d54c41ada5f37e0935303\System.Runtime.Remoting.ni.dllMOD
- [2014/05/22 11:16:35 | 000,805,376 | ---- | M] () --
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runt73a1fc9d#\04824fdbd5dce32530ba44ae012e4fb9\System.Runtime.Remoting.ni.dllMOD
- [2014/04/30 17:42:59 | 000,190,976 | ---- | M] () --
C:\Windows\assembly\NativeImages_v4.0.30319_32\UIAutomationTypes\75b6a68103e1b76063d9f69b8275ae61\UIAutomationTypes.ni.dllMOD
- [2014/04/30 16:50:28 | 018,813,440 | ---- | M] () --
C:\Windows\assembly\NativeImages_v4.0.30319_32\Presentatio5ae0f00f#\a4b45c44490c75bc2fb22780e7ef087d\PresentationFramework.ni.dllMOD
- [2014/04/30 16:50:20 | 001,889,792 | ---- | M] () --
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\3fe705796c6a41d4889d9001d1c56af8\System.Xaml.ni.dllMOD
- [2014/04/30 16:50:18 | 012,894,208 | ---- | M] () --
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\f4f6ee0df2aa4189bf36e6335cb92761\System.Windows.Forms.ni.dllMOD
- [2014/04/30 16:50:18 | 001,180,672 | ---- | M] () --
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management\0893e0e7137e3b2da905da6216b75344\System.Management.ni.dllMOD
- [2014/04/30 16:50:11 | 011,025,920 | ---- | M] () --
C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\a74542efbeb46445949a39026c501132\PresentationCore.ni.dllMOD
- [2014/04/30 16:50:08 | 001,644,544 | ---- | M] () --
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\5cd2aee5e7c07227c694d89219688ab3\System.Drawing.ni.dllMOD
- [2014/04/30 16:50:04 | 006,990,336 | ---- | M] () --
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\dce99d8de14d8a015313db98c72552ee\System.Core.ni.dllMOD
- [2014/04/30 16:50:03 | 007,662,080 | ---- | M] () --
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\bada32953bb6b16a53d653eae23d78dc\System.Xml.ni.dllMOD
- [2014/04/30 16:50:01 | 003,950,080 | ---- | M] () --
C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\acf97bfe2a931d4a47253b26b7218991\WindowsBase.ni.dllMOD
- [2014/04/30 16:49:59 | 000,470,528 | ---- | M] () --
C:\Windows\assembly\NativeImages_v4.0.30319_32\Presentatio1c9175f8#\75f8bc4cf08030c4a53b6d5e0ae20046\PresentationFramework.Aero.ni.dllMOD
- [2014/04/30 16:49:58 | 000,976,384 | ---- | M] () --
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\bbc48ec4245e502ae19b0601d3799c9e\System.Configuration.ni.dllMOD
- [2014/04/30 16:49:57 | 010,060,800 | ---- | M] () --
C:\Windows\assembly\NativeImages_v4.0.30319_32\System\ff26cc03e6d57d8abd13b990332e67c6\System.ni.dllMOD
- [2014/04/30 16:49:51 | 016,953,856 | ---- | M] () --
C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\ce5f61c5754789df97be8dc991c47d07\mscorlib.ni.dllMOD
- [2014/04/30 12:10:32 | 000,014,336 | ---- | M] () --
C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorCommon\b1f7b4e15aef3faf382db6ba14c81371\IAStorCommon.ni.dllMOD
- [2014/04/30 11:14:43 | 019,336,120 | ---- | M] () -- C:\Program Files\AVAST
Software\Avast\libcef.dllMOD - [2014/04/30 11:00:45 | 012,436,480 | ---- |
M] () --
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\8bc548587e91ecf0552a40e47bbf99cc\System.Windows.Forms.ni.dllMOD
- [2014/04/30 11:00:38 | 001,593,344 | ---- | M] () --
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\5c24d3b0041ebf4f48a93615b9fa3de9\System.Drawing.ni.dllMOD
- [2014/04/30 11:00:23 | 003,348,480 | ---- | M] () --
C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\1d696b2d3de530f7ee971070263667ff\WindowsBase.ni.dllMOD
- [2014/04/30 11:00:17 | 005,464,064 | ---- | M] () --
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\217ece46920546d718414291d463bb1c\System.Xml.ni.dllMOD
- [2014/04/30 11:00:14 | 000,978,432 | ---- | M] () --
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\5b6ddf934128d538cd5cd77bf4209b93\System.Configuration.ni.dllMOD
- [2014/04/30 11:00:13 | 007,989,760 | ---- | M] () --
C:\Windows\assembly\NativeImages_v2.0.50727_32\System\b3a78269847005365001c33870cd121f\System.ni.dllMOD
- [2014/04/30 11:00:06 | 011,499,520 | ---- | M] () --
C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\ede2c6c842840e009f01bcc74fa4c457\mscorlib.ni.dllMOD
- [2013/11/01 14:59:56 | 000,062,464 | ---- | M] () -- C:\Program
Files\Sony\VAIO Care\listener.exeMOD - [2011/12/14 16:51:21 | 000,048,640 |
---- | M] () -- C:\Program Files (x86)\AOL Desktop 9.7\zlib.dllMOD -
[2011/11/02 00:26:32 | 000,087,912 | ---- | M] () -- C:\Program Files
(x86)\Common Files\Apple\Apple Application Support\zlib1.dllMOD -
[2011/11/02 00:26:12 | 001,242,472 | ---- | M] () -- C:\Program Files
(x86)\Common Files\Apple\Apple Application Support\libxml2.dllMOD -
[2011/08/31 15:06:52 | 000,027,104 | ---- | M] () -- C:\Program Files
(x86)\Sony\Keyboard Shortcuts\Utility.dllMOD - [2011/08/31 15:06:48 |
000,161,256 | ---- | M] () -- C:\Program Files (x86)\Sony\Keyboard
Shortcuts\MessageHook.dllMOD - [2011/08/31 13:44:30 | 000,477,200 | ---- |
M] () -- C:\Program Files (x86)\Sony\Keyboard
Shortcuts\KeyboardShortcuts.exe ==========
Services (SafeList) ========== SRV:64bit: -
[2014/05/30 05:21:05 | 000,111,616 | ---- | M] (Microsoft Corporation)
[On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe --
(IEEtwCollectorService)SRV:64bit: - [2014/04/30 11:14:43 |
000,050,344 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program
Files\AVAST Software\Avast\AvastSvc.exe -- (avast!
Antivirus)SRV:64bit: - [2014/02/27 22:03:12 | 001,642,544 | ---- | M]
(Sony Corporation) [On_Demand | Running] -- C:\Program Files\Sony\VAIO
Update\VUAgent.exe -- (VUAgent)SRV:64bit: - [2014/02/20 15:35:26 |
000,060,504 | ---- | M] (Sony Corporation) [On_Demand | Running] -- C:\Program
Files\Sony\VAIO Care\VCService.exe -- (VCService)SRV:64bit: -
[2013/08/27 16:42:10 | 000,948,312 | ---- | M] (Sony Corporation) [Auto |
Running] -- C:\Program Files\Sony\VAIO Smart Network\VSNService.exe --
(VSNService)SRV:64bit: - [2013/05/27 01:50:47 | 001,011,712 | ---- |
M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows
Defender\MpSvc.dll -- (WinDefend)SRV:64bit: - [2013/03/04 17:06:26 |
000,258,048 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program
Files\Sony\VAIO Care\VCPerfService.exe -- (SampleCollector)SRV:64bit:
- [2013/02/22 15:02:06 | 000,427,432 | ---- | M] () [On_Demand | Stopped] --
C:\Program Files\Sony\VAIO Care\esrv\esrv_svc.exe --
(USER_ESRV_SVC)SRV:64bit: - [2013/02/22 15:02:06 | 000,427,432 | ----
| M] () [Auto | Running] -- C:\Program Files\Sony\VAIO Care\esrv\esrv_svc.exe --
(ESRV_SVC)SRV:64bit: - [2011/08/25 02:58:28 | 000,111,776 | ---- | M]
(Atheros Communication Inc.) [On_Demand | Stopped] -- C:\Program Files\Sony\VAIO
Smart Network\WFDA\DCDhcpService.exe -- (DCDhcpService)SRV:64bit: -
[2011/05/19 22:15:44 | 000,549,616 | ---- | M] (Sony Corporation) [On_Demand |
Stopped] -- C:\Program Files\Sony\VCM Intelligent Analyzing
Manager\VcmIAlzMgr.exe -- (VcmIAlzMgr)SRV:64bit: - [2011/02/19
01:15:06 | 000,099,104 | ---- | M] (Sony Corporation) [On_Demand | Stopped] --
C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe --
(VcmXmlIfHelper)SRV:64bit: - [2011/02/19 01:02:08 | 000,385,336 |
---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Sony\VCM
Intelligent Network Service Manager\VcmINSMgr.exe --
(VcmINSMgr)SRV:64bit: - [2011/01/20 15:27:18 | 000,286,936 | ---- |
M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common
Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe --
(SpfService)SRV:64bit: - [2010/12/17 17:41:32 | 001,515,792 | ---- |
M] (Intel® Corporation) [Auto | Running] -- C:\Program
Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng)SRV:64bit: - [2010/12/17
17:28:46 | 000,340,240 | ---- | M] () [On_Demand | Stopped] -- C:\Program
Files\Intel\WiFi\bin\PanDhcpDns.exe -- (MyWiFiDHCPDNS)SRV:64bit: -
[2010/12/17 17:26:50 | 000,836,880 | ---- | M] (Intel® Corporation) [Auto |
Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe --
(RegSrvc)SRV - [2014/06/23 00:18:59 | 000,262,320 | ---- | M] (Adobe Systems
Incorporated) [On_Demand | Stopped] --
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe --
(AdobeFlashPlayerUpdateSvc)SRV - [2014/06/20 17:38:20 | 000,542,400 | ---- |
M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common
Files\Steam\SteamService.exe -- (Steam Client Service)SRV - [2013/09/11
21:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] --
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe --
(clr_optimization_v4.0.30319_32)SRV - [2012/04/30 09:44:38 | 005,106,744 |
---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Stopped] -- C:\Program Files
(x86)\AVG\AVG2012\avgidsagent.exe -- (AVGIDSAgent)SRV - [2012/03/12 00:07:58
| 002,429,544 | ---- | M] (Realsil Microelectronics Inc.) [Auto | Running] --
C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe --
(IconMan_R)SRV - [2012/02/14 04:53:38 | 000,193,288 | ---- | M] (AVG
Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files
(x86)\AVG\AVG2012\avgwdsvc.exe -- (avgwd)SRV - [2012/02/09 20:40:16 |
000,053,248 | ---- | M] (Digital Delivery Networks, Inc.) [Auto | Running] --
C:\Program Files (x86)\DDNi\Oasis2Service\Oasis2Service.exe --
(Oasis2Service)SRV - [2012/01/03 05:10:42 | 000,063,928 | ---- | M] (Adobe
Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common
Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)SRV - [2011/03/05
19:42:36 | 000,064,704 | ---- | M] (Sony Corporation) [Auto | Running] --
C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe -- (VAIO Event
Service)SRV - [2011/02/23 17:05:04 | 000,105,024 | ---- | M] (ArcSoft, Inc.)
[Auto | Running] -- C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects
2\uCamMonitor.exe -- (uCamMonitor)SRV - [2011/02/21 15:55:08 | 000,113,824 |
---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files
(x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe -- (SOHCImp)SRV -
[2011/02/21 15:55:08 | 000,067,232 | ---- | M] (Sony Corporation) [On_Demand |
Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe --
(SOHDs)SRV - [2011/02/14 02:15:46 | 002,656,280 | ---- | M] (Intel
Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel®
Management Engine Components\UNS\UNS.exe -- (UNS)SRV - [2011/02/14 02:15:14
| 000,325,656 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program
Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe --
(LMS)SRV - [2011/01/20 15:16:26 | 000,887,000 | ---- | M] (Sony Corporation)
[On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO
Content Folder Watcher\VCFw.exe -- (VCFw)SRV - [2010/11/27 03:55:42 |
000,398,176 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files
(x86)\Sony\PMB\PMBDeviceInfoProvider.exe -- (PMBDeviceInfoProvider)SRV -
[2010/11/06 02:54:22 | 000,013,336 | ---- | M] (Intel Corporation) [Auto |
Running] -- C:\Program Files (x86)\Intel\Intel® Rapid Storage
Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)SRV - [2010/10/22
14:08:18 | 001,039,360 | ---- | M] (Hewlett-Packard Co.) [Auto | Running] --
C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL --
(HPSLPSVC)SRV - [2010/03/18 14:19:26 | 000,113,152 | ---- | M] (ArcSoft
Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common
Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon)SRV -
[2009/06/10 17:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled
| Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe --
(clr_optimization_v2.0.50727_32)SRV - [2006/10/23 08:50:35 | 000,046,640 |
R--- | M] (AOL LLC) [On_Demand | Running] -- C:\Program Files (x86)\Common
Files\AOL\acs\AOLacsd.exe -- (AOL
ACS) ========== Driver Services (SafeList)
========== DRV:64bit: - [2014/05/16 09:57:03 |
001,039,096 | ---- | M] (AVAST Software) [File_System | System | Running] --
C:\Windows\SysNative\drivers\aswsnx.sys -- (aswSnx)DRV:64bit: -
[2014/05/16 09:57:03 | 000,423,240 | ---- | M] (AVAST Software) [File_System |
System | Running] -- C:\Windows\SysNative\drivers\aswsp.sys --
(aswSP)DRV:64bit: - [2014/05/16 09:57:03 | 000,085,328 | ---- | M]
(AVAST Software) [Kernel | Auto | Running] --
C:\Windows\SysNative\drivers\aswstm.sys -- (aswStm)DRV:64bit: -
[2014/04/30 11:14:43 | 000,208,416 | ---- | M] () [Kernel | Boot | Running] --
C:\Windows\SysNative\drivers\aswVmm.sys -- (aswVmm)DRV:64bit: -
[2014/04/30 11:14:43 | 000,093,568 | ---- | M] (AVAST Software) [Kernel | System
| Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys --
(aswRdr)DRV:64bit: - [2014/04/30 11:14:43 | 000,079,184 | ---- | M]
(AVAST Software) [File_System | Auto | Running] --
C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)DRV:64bit: -
[2014/04/30 11:14:43 | 000,065,776 | ---- | M] () [Kernel | Boot | Running] --
C:\Windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt)DRV:64bit: -
[2014/04/30 11:14:43 | 000,029,208 | ---- | M] () [Kernel | Auto | Running] --
C:\Windows\SysNative\drivers\aswHwid.sys -- (aswHwid)DRV:64bit: -
[2014/03/28 13:26:21 | 000,061,120 | ---- | M] (StdLib) [Kernel | System |
Running] -- C:\Windows\SysNative\drivers\wStLib64.sys --
(wStLib64)DRV:64bit: - [2014/01/09 02:48:02 | 000,010,112 | ---- | M]
(support.com, Inc) [Kernel | On_Demand | Stopped] --
C:\Windows\SysNative\drivers\ssmirrdr.sys -- (ssmirrdr)DRV:64bit: -
[2012/11/06 18:28:46 | 000,013,792 | ---- | M] () [Kernel | On_Demand | Running]
-- C:\Windows\SysNative\drivers\semav6thermal64ro.sys --
(semav6thermal64ro)DRV:64bit: - [2012/08/21 14:01:20 | 000,033,240 |
---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] --
C:\Windows\SysNative\drivers\GEARAspiWDM.sys --
(GEARAspiWDM)DRV:64bit: - [2012/04/19 04:50:26 | 000,028,480 | ---- |
M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] --
C:\Windows\SysNative\drivers\avgidsha.sys -- (AVGIDSHA)DRV:64bit: -
[2012/03/19 05:17:26 | 000,383,808 | ---- | M] (AVG Technologies CZ, s.r.o.)
[Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtdia.sys --
(Avgtdia)DRV:64bit: - [2012/03/12 00:08:08 | 000,340,072 | ---- | M]
(Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] --
C:\Windows\SysNative\drivers\RtsPStor.sys -- (RSPCIESTOR)DRV:64bit: -
[2012/03/01 02:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation)
[Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys --
(Fs_Rec)DRV:64bit: - [2012/02/22 05:25:32 | 000,289,872 | ---- | M]
(AVG Technologies CZ, s.r.o.) [Kernel | System | Stopped] --
C:\Windows\SysNative\drivers\avgldx64.sys -- (Avgldx64)DRV:64bit: -
[2012/02/15 12:01:50 | 000,052,736 | ---- | M] (Apple, Inc.) [Kernel | On_Demand
| Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys --
(USBAAPL64)DRV:64bit: - [2012/01/31 04:46:48 | 000,036,944 | ---- |
M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] --
C:\Windows\SysNative\drivers\avgrkx64.sys -- (Avgrkx64)DRV:64bit: -
[2011/12/23 13:32:14 | 000,047,696 | ---- | M] (AVG Technologies CZ, s.r.o.)
[File_System | System | Running] -- C:\Windows\SysNative\drivers\avgmfx64.sys --
(Avgmfx64)DRV:64bit: - [2011/12/23 13:32:04 | 000,029,776 | ---- | M]
(AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] --
C:\Windows\SysNative\drivers\avgidsfiltera.sys --
(AVGIDSFilter)DRV:64bit: - [2011/12/23 13:31:58 | 000,124,496 | ----
| M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] --
C:\Windows\SysNative\drivers\avgidsdrivera.sys --
(AVGIDSDriver)DRV:64bit: - [2011/08/18 01:45:48 | 001,591,936 | ----
| M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] --
C:\Windows\SysNative\drivers\CHDRT64.sys --
(CnxtHdAudService)DRV:64bit: - [2011/03/28 00:12:44 | 000,317,440 |
---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] --
C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)DRV:64bit: -
[2011/03/28 00:07:33 | 012,273,408 | ---- | M] (Intel Corporation) [Kernel |
On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys --
(igfx)DRV:64bit: - [2011/03/11 02:41:12 | 000,107,904 | ---- | M]
(Advanced Micro Devices) [Kernel | On_Demand | Stopped] --
C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)DRV:64bit: -
[2011/03/11 02:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel
| Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys --
(amdxata)DRV:64bit: - [2011/02/21 13:43:52 | 000,438,808 | ---- | M]
(Intel Corporation) [Kernel | Boot | Running] --
C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)DRV:64bit: -
[2011/02/15 03:42:50 | 001,388,592 | ---- | M] (Synaptics Incorporated) [Kernel
| On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys --
(SynTP)DRV:64bit: - [2011/02/14 02:15:10 | 000,056,344 | ---- | M]
(Intel Corporation) [Kernel | On_Demand | Running] --
C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)DRV:64bit: -
[2011/02/11 04:48:34 | 000,076,912 | ---- | M] (Atheros Communications, Inc.)
[Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\L1C62x64.sys --
(L1C)DRV:64bit: - [2010/12/21 12:08:48 | 008,505,856 | ---- | M]
(Intel Corporation) [Kernel | On_Demand | Running] --
C:\Windows\SysNative\drivers\NETwNs64.sys -- (NETwNs64)DRV:64bit: -
[2010/12/01 08:02:22 | 000,042,392 | ---- | M] (Intel Corporation) [Kernel |
On_Demand | Running] -- C:\Windows\SysNative\drivers\WDKMD.sys --
(wdkmd)DRV:64bit: - [2010/11/20 23:24:33 | 000,059,392 | ---- | M]
(Microsoft Corporation) [Kernel | On_Demand | Stopped] --
C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)DRV:64bit: -
[2010/11/20 23:23:47 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel |
On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys --
(sdbus)DRV:64bit: - [2010/11/20 23:23:47 | 000,078,720 | ---- | M]
(Hewlett-Packard Company) [Kernel | On_Demand | Stopped] --
C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)DRV:64bit: -
[2010/11/20 23:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel |
On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys --
(TsUsbGD)DRV:64bit: - [2010/04/26 16:20:29 | 000,012,032 | ---- | M]
(Sony Corporation) [Kernel | On_Demand | Running] --
C:\Windows\SysNative\drivers\SFEP.sys -- (SFEP)DRV:64bit: -
[2009/07/13 21:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel |
On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys --
(amdsbs)DRV:64bit: - [2009/07/13 21:48:04 | 000,065,600 | ---- | M]
(LSI Corporation) [Kernel | On_Demand | Stopped] --
C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)DRV:64bit: -
[2009/07/13 21:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel |
On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys --
(stexstor)DRV:64bit: - [2009/06/19 22:09:57 | 001,394,688 | ---- | M]
(Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] --
C:\Windows\SysNative\drivers\athrx.sys -- (athr)DRV:64bit: -
[2009/06/10 16:35:02 | 000,281,088 | ---- | M] (Intel Corporation) [Kernel |
On_Demand | Stopped] -- C:\Windows\SysNative\drivers\e1y60x64.sys --
(e1yexpress)DRV:64bit: - [2009/06/10 16:34:33 | 003,286,016 | ---- |
M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] --
C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)DRV:64bit: -
[2009/06/10 16:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel |
On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys --
(b06bdrv)DRV:64bit: - [2009/06/10 16:34:23 | 000,270,848 | ---- | M]
(Broadcom Corporation) [Kernel | On_Demand | Stopped] --
C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)DRV:64bit: -
[2009/06/10 16:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.)
[Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys --
(hcw85cir)DRV:64bit: - [2009/05/26 17:32:04 | 000,019,968 | ---- | M]
(ArcSoft, Inc.) [Kernel | On_Demand | Running] --
C:\Windows\SysNative\drivers\ArcSoftKsUFilter.sys --
(ArcSoftKsUFilter)DRV:64bit: - [2008/05/06 17:06:00 | 000,014,464 |
---- | M] (Western Digital Technologies) [Kernel | On_Demand | Stopped] --
C:\Windows\SysNative\drivers\wdcsam64.sys -- (WDC_SAM)DRV:64bit: -
[2006/11/29 18:24:49 | 000,024,064 | ---- | M] (America Online, Inc.) [Kernel |
On_Demand | Running] -- C:\Windows\SysNative\drivers\wanatw64.sys --
(wanatw)DRV - [2009/07/13 21:19:10 | 000,019,008 | ---- | M] (Microsoft
Corporation) [File_System | On_Demand | Stopped] --
C:\Windows\SysWOW64\drivers\wimmount.sys --
(WIMMount) ========== Standard Registry
(SafeList) ========== ==========
Internet Explorer ========== IE:64bit: -
HKLM\..\SearchScopes,DefaultScope =
{0633EE93-D776-472f-A0FF-E1416B8B2E3A}IE:64bit: -
HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...=IE-SearchBoxIE
- HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page =
C:\Windows\SysWOW64\blank.htmIE - HKLM\..\SearchScopes,DefaultScope =
{0633EE93-D776-472f-A0FF-E1416B8B2E3A}IE -
HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...=IE-SearchBoxIE
- HKLM\..\SearchScopes\{10E480B6-92AE-48D7-91E7-BF466060FFAA}: "URL" = http://search.aol.com/aolcom/search?query={searchTerms}&invocationType=msie70a IE
- HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://sony.msn.comIE -
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/IE
- HKCU\..\SearchScopes,DefaultScope =
{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}IE -
HKCU\..\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}: "URL" = http://search.condui...M=2&UP=&SSPV=IE
- HKCU\..\SearchScopes\{1A4CC7B9-D1F9-4F4F-A675-A8160CD73C01}: "URL" = http://search.condui...M=2&UP=&SSPV=IE
- HKCU\..\SearchScopes\{1B5FDD86-DF67-406C-A7EC-28CF6466FD3C}: "URL" = http://websearch.ask...-AA40B9694022IE
- HKCU\..\SearchScopes\{2D79435F-073E-4898-829D-1CF65F32A21C}: "URL" = http://search.aol.co...nType=msie70aIE
- HKCU\..\SearchScopes\{30637152-BBB5-4CFD-B26A-3004155961EB}: "URL" = http://search.condui...{searchTerms}IE
- HKCU\..\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}: "URL" = http://blekko.com/?s...{searchTerms}IE
- HKCU\..\SearchScopes\{53F1CAC5-5222-400A-ACEA-61E0A7F2BFB5}: "URL" = http://search.condui...42492142&UM=2IE
- HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings:
"ProxyEnable" = 0IE -
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings:
"ProxyOverride" = *.local ==========
FireFox ========== FF:64bit: -
HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer:
C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll File not
foundFF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin:
C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems,
Inc.)FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE:
disabled File not foundFF:64bit: -
HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program
Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft
Corporation)FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer:
C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()FF -
HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not
foundFF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0:
C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()FF -
HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files
(x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)FF -
HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not
foundFF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0:
c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft
Corporation)FF -
HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922:
C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft
Corporation)FF -
HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513:
C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft
Corporation)FF - HKLM\Software\MozillaPlugins\@viewpoint.com/VMP: C:\Program
Files (x86)\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll ()FF -
HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader
10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)FF -
HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin:
C:\Users\milbus21\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll
(Skype Limited) FF -
HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}:
C:\Program Files (x86)\AVG\AVG2012\Firefox4\ [2012/06/11 10:55:42 | 000,000,000
| ---D | M]FF -
HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]:
C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
[2012/01/11 21:10:41 | 000,000,000 | ---D | M]FF -
HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[email protected]:
C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
[2012/01/11 21:10:41 | 000,000,000 | ---D | M] [2012/02/26 22:04:24
| 000,000,000 | ---D | M] (No name found) --
C:\Users\milbus21\AppData\Roaming\Mozilla\Extensions O1 HOSTS File:
([2009/06/10 17:00:26 | 000,000,824 | ---- | M]) -
C:\Windows\SysNative\drivers\etc\hostsO2:64bit: - BHO: (AVG Do Not
Track) - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - C:\Program Files
(x86)\AVG\AVG2012\avgdtiea.dll (AVG Technologies CZ, s.r.o.)O2:64bit:
- BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program
Files (x86)\AVG\AVG2012\avgssiea.dll (AVG Technologies CZ,
s.r.o.)O2:64bit: - BHO: (avast! Online Security) -
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST
Software\Avast\aswWebRepIE64.dll (AVAST Software)O2 - BHO: (no name) -
{02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.O2 - BHO: (AVG
Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files
(x86)\AVG\AVG2012\avgssie.dll (AVG Technologies CZ, s.r.o.)O2 - BHO: (avast!
Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program
Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)O2 - BHO: (no
name) - {9F531FB1-7C1F-4e1a-8C0C-E8D6177130E2} - No CLSID value found.O2 -
BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program
Files (x86)\Microsoft\BingBar\BingExt.dll" File not foundO3 -
HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} -
"C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" File not foundO3 -
HKCU\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} -
No CLSID value found.O4:64bit: - HKLM..\Run: [HotKeysCmds]
C:\Windows\SysNative\hkcmd.exe (Intel Corporation)O4:64bit: -
HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel
Corporation)O4:64bit: - HKLM..\Run: [Persistence]
C:\Windows\SysNative\igfxpers.exe (Intel Corporation)O4 - HKLM..\Run:
[APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application
Support\APSDaemon.exe (Apple Inc.)O4 - HKLM..\Run: [AvastUI.exe] C:\Program
Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)O4 - HKLM..\Run:
[HostManager] C:\Program Files (x86)\Common
Files\AOL\1324837120\ee\aolsoftware.exe (AOL Inc.)O4 - HKLM..\Run:
[IAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage
Technology\IAStorIcon.exe (Intel Corporation)O4 - HKLM..\Run: [ISBMgr.exe]
C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe (Sony Corporation)O4 -
HKLM..\Run: [PMBVolumeWatcher] C:\Program Files
(x86)\Sony\PMB\PMBVolumeWatcher.exe (Sony Corporation)O4 - HKCU..\Run: [AOL
Fast Start] C:\Program Files (x86)\AOL Desktop 9.7\AOL.EXE (AOL Inc.)O4 -
HKCU..\Run: [Facebook Update]
C:\Users\milbus21\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook
Inc.)O4 - HKCU..\Run: [MobileDocuments] C:\Program Files (x86)\Common
Files\Apple\Internet Services\ubd.exe (Apple Inc.)O6 -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer:
NoActiveDesktop = 1O6 -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer:
NoActiveDesktopChanges = 1O6 -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System:
ConsentPromptBehaviorAdmin = 5O6 -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System:
ConsentPromptBehaviorUser = 3O7 -
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer:
NoDriveTypeAutoRun = 145O9:64bit: - Extra Button: AVG Do Not Track -
{68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - C:\Program Files
(x86)\AVG\AVG2012\avgdtiea.dll (AVG Technologies CZ,
s.r.o.)O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007
[] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)O10 -
NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files
(x86)\Bonjour\mdnsNSP.dll (Apple Inc.)O1364bit: - gopher Prefix:
missingO13 - gopher Prefix: missingO15 - HKCU\..Trusted Domains: aol.com
([objects] * is out of zone range - 5)O15 - HKCU\..Trusted Ranges:
Range1 ([https] in Trusted sites)O16:64bit: - DPF:
{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab
(Java Plug-in 1.6.0_22)O16:64bit: - DPF:
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab
(Java Plug-in 1.6.0_22)O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab
(Java Plug-in 1.6.0_22)O16 - DPF: {BEA7310D-06C4-4339-A784-DC3804819809} http://www.cvsphoto....veX_Control.cab
(Photo Upload Plugin Class)O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab
(Java Plug-in 1.6.0_22)O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab
(Java Plug-in 1.6.0_22)O16 - DPF: {DB9DE2A8-D1BA-472A-B1F8-39697899DEF7} http://10.0.0.2/HiDvrOcx.cab
(HiDvrOcx Control)O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} https://secure.logme...trl.cab?lmi=724
(Performance Viewer Activex Control)O17 -
HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1O17 -
HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1D9BA946-229A-4B8D-B5B0-F133CCD4D589}:
DhcpNameServer = 192.168.1.1O18:64bit: - Protocol\Handler\linkscanner
{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files
(x86)\AVG\AVG2012\avgppa.dll (AVG Technologies CZ, s.r.o.)O18:64bit:
- Protocol\Handler\wlmailhtml - No CLSID value foundO18:64bit: -
Protocol\Handler\wlpg - No CLSID value foundO18 -
Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program
Files (x86)\AVG\AVG2012\avgpp.dll (AVG Technologies CZ,
s.r.o.)O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) -
C:\Windows\explorer.exe (Microsoft Corporation)O20:64bit: - HKLM
Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -
C:\Windows\SysNative\userinit.exe (Microsoft Corporation)O20 - HKLM
Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft
Corporation)O20 - HKLM Winlogon: UserInit - (userinit.exe) -
C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)O20:64bit: -
Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) -
C:\Windows\SysNative\igfxdev.dll (Intel Corporation)O21:64bit: -
SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value
found.O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No
CLSID value found.O32 - HKLM CDRom: AutoRun - 1O33 -
MountPoints2\{d600b1c7-fbd4-11e2-b504-00038a000015}\Shell - "" = AutoRunO33
- MountPoints2\{d600b1c7-fbd4-11e2-b504-00038a000015}\Shell\AutoRun\command - ""
= D:\LaunchU3.exe -aO34 - HKLM BootExecute: (autocheck autochk *)O34 -
HKLM BootExecute: (C:\PROGRA~2\AVG\AVG2012\avgrsa.exe /sync
/restart)O35:64bit: - HKLM\..comfile [open] -- "%1"
%*O35:64bit: - HKLM\..exefile [open] -- "%1" %*O35 -
HKLM\..comfile [open] -- "%1" %*O35 - HKLM\..exefile [open] -- "%1"
%*O37:64bit: - HKLM\...com [@ = comfile] -- "%1"
%*O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*O37 -
HKLM\...com [@ = comfile] -- "%1" %*O37 - HKLM\...exe [@ = exefile] -- "%1"
%*O38 - SubSystems\\Windows:
(ServerDll=winsrv:UserServerDllInitialization,3)O38 - SubSystems\\Windows:
(ServerDll=winsrv:ConServerDllInitialization,2)O38 - SubSystems\\Windows:
(ServerDll=sxssrv,4) ========== Files/Folders -
Created Within 30 Days ========== [2014/06/30 15:56:32 |
000,602,112 | ---- | C] (OldTimer Tools) --
C:\Users\milbus21\Desktop\OTL.exe[2014/06/22 22:09:18 | 000,000,000 | ---D |
C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes[2014/06/22
22:08:37 | 000,000,000 | ---D | C] --
C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69[2014/06/14 22:48:12 |
000,000,000 | ---D | C] -- C:\ProgramData\Package Cache[2014/06/14 22:47:25
| 000,000,000 | ---D | C] -- C:\Users\milbus21\AppData\Roaming\microsoft
games[1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp
-> ] ========== Files - Modified Within 30 Days
========== [2014/06/30 15:59:33 | 000,021,200 | -H-- | M]
() --
C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0[2014/06/30
15:59:33 | 000,021,200 | -H-- | M] () --
C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0[2014/06/30
15:56:32 | 000,602,112 | ---- | M] (OldTimer Tools) --
C:\Users\milbus21\Desktop\OTL.exe[2014/06/30 15:48:04 | 000,000,918 | ---- |
M] () --
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1854164474-1872011153-1295231794-1005Core.job[2014/06/30
15:43:09 | 000,000,000 | -H-- | M] () --
C:\Users\milbus21\Documents\Default.rdp[2014/06/30 15:43:00 | 000,000,830 |
---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job[2014/06/30
15:36:56 | 000,000,940 | ---- | M] () --
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1854164474-1872011153-1295231794-1005UA.job[2014/06/30
15:36:47 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat[2014/06/23
16:37:43 | 000,782,470 | ---- | M] () --
C:\Windows\SysNative\PerfStringBackup.INI[2014/06/23 16:37:43 | 000,662,634
| ---- | M] () -- C:\Windows\SysNative\perfh009.dat[2014/06/23 16:37:43 |
000,122,470 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat[2014/06/23
00:16:13 | 3180,220,416 | -HS- | M] () -- C:\hiberfil.sys[2014/06/22
22:09:18 | 000,001,743 | ---- | M] () --
C:\Users\Public\Desktop\iTunes.lnk[2014/06/14 10:20:04 | 003,148,854 | ----
| M] () -- C:\Users\milbus21\Desktop\New Bitmap Image.bmp[2014/06/14
10:17:50 | 000,225,033 | ---- | M] () -- C:\Users\milbus21\Desktop\russ
bennies.jpg[1 C:\Windows\SysWow64\*.tmp files ->
C:\Windows\SysWow64\*.tmp -> ] ========== Files
Created - No Company Name ========== [2014/06/30 15:43:09 |
000,000,000 | -H-- | C] () --
C:\Users\milbus21\Documents\Default.rdp[2014/06/22 22:09:18 | 000,001,743 |
---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk[2014/06/14 10:17:50 |
000,225,033 | ---- | C] () -- C:\Users\milbus21\Desktop\russ
bennies.jpg[2014/06/14 10:17:14 | 003,148,854 | ---- | C] () --
C:\Users\milbus21\Desktop\New Bitmap Image.bmp[2014/04/05 13:23:03 |
000,000,017 | ---- | C] () --
C:\Users\milbus21\AppData\Local\resmon.resmoncfg[2013/08/24 17:04:14 |
000,000,258 | RHS- | C] () -- C:\Users\milbus21\ntuser.pol[2012/11/29
12:36:51 | 000,074,703 | ---- | C] () --
C:\Windows\SysWow64\mfc45.dll[2011/10/10 07:13:37 | 000,000,226 | ---- | C]
() --
C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc ==========
ZeroAccess Check ========== [2009/07/14 00:55:00 |
000,000,227 | RHS- | M] () --
C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
/64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
/64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
/64"" = C:\Windows\SysNative\shell32.dll -- [2014/03/24 22:43:12 |
014,175,744 | ---- | M] (Microsoft Corporation)"ThreadingModel" =
Apartment [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]""
= %SystemRoot%\system32\shell32.dll -- [2014/03/24 22:09:54 | 012,874,240 | ----
| M] (Microsoft Corporation)"ThreadingModel" =
Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
/64"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 21:40:51 |
000,909,312 | ---- | M] (Microsoft Corporation)"ThreadingModel" =
Free [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]""
= %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 23:24:25 | 000,606,208
| ---- | M] (Microsoft Corporation)"ThreadingModel" =
Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
/64"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 21:41:56 |
000,505,856 | ---- | M] (Microsoft Corporation)"ThreadingModel" =
Both [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] ==========
LOP Check ========== [2014/04/30 11:15:33 | 000,000,000 |
---D | M] -- C:\Users\milbus21\AppData\Roaming\AVAST Software[2011/12/23
20:14:55 | 000,000,000 | ---D | M] --
C:\Users\milbus21\AppData\Roaming\AVG2012[2013/08/24 17:04:11 | 000,000,000
| ---D | M] -- C:\Users\milbus21\AppData\Roaming\DefaultTab[2012/02/10
22:49:31 | 000,000,000 | ---D | M] --
C:\Users\milbus21\AppData\Roaming\GameHouse[2012/12/06 15:04:43 |
000,000,000 | ---D | M] -- C:\Users\milbus21\AppData\Roaming\iolo[2012/02/10
22:50:52 | 000,000,000 | ---D | M] --
C:\Users\milbus21\AppData\Roaming\iWin[2013/07/04 16:12:59 | 000,000,000 |
---D | M] -- C:\Users\milbus21\AppData\Roaming\LOVE[2013/01/21 10:48:39 |
000,000,000 | ---D | M] -- C:\Users\milbus21\AppData\Roaming\ooVoo
Details[2012/03/02 23:38:05 | 000,000,000 | ---D | M] --
C:\Users\milbus21\AppData\Roaming\OpenOffice.org[2014/04/05 15:43:44 |
000,000,000 | ---D | M] --
C:\Users\milbus21\AppData\Roaming\supportdotcom[2012/12/23 21:24:36 |
000,000,000 | ---D | M] -- C:\Users\milbus21\AppData\Roaming\Windows Live
Writer ========== Purity Check
==========
< End of report >