Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Laptop running slow - firefox and chrome crashing all the time. [Solve


  • This topic is locked This topic is locked

#1
gabybaby

gabybaby

    Member

  • Member
  • PipPip
  • 62 posts

Hello G2G,

 

I have a laptop running Windows 7 32 bit.  I can't go through any time at all that my browsers don't have a problem with Flash I think.  I keep on getting notified that a website or page has stopped working.  I took Firefox out completely as it would just continuously crash.  Chrome is not that much better.  The laptop also runs slow.  Any help you could give me would be very much appreciated.

 

Thank you, here is my OTL log:

 

OTL logfile created on: 10/29/2014 4:52:44 PM - Run 11
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Gabriel\Desktop
 Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17358)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
 
2.46 Gb Total Physical Memory | 0.23 Gb Available Physical Memory | 9.41% Memory free
18.08 Gb Paging File | 15.69 Gb Available in Paging File | 86.78% Paging File free
Paging file location(s): c:\pagefile.sys 16000 28170f:\pag [Binary data over 200 bytes]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 287.15 Gb Total Space | 51.51 Gb Free Space | 17.94% Space Free | Partition Type: NTFS
Drive F: | 1862.98 Gb Total Space | 1675.10 Gb Free Space | 89.91% Space Free | Partition Type: NTFS
Drive Q: | 9.77 Gb Total Space | 3.04 Gb Free Space | 31.13% Space Free | Partition Type: NTFS
 
Computer Name: GABRIEL-W500 | User Name: Gabriel | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - [2014/10/21 21:05:02 | 000,854,344 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
PRC - [2014/10/19 18:09:56 | 000,822,880 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\real\realplayer\RPDS\Bin\rpsystray.exe
PRC - [2014/10/19 18:09:55 | 001,141,848 | ---- | M] (RealNetworks, Inc.) -- c:\Program Files\real\realplayer\RPDS\Bin\rpdsvc.exe
PRC - [2014/10/19 18:09:53 | 000,296,520 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\real\realplayer\Update\realsched.exe
PRC - [2014/10/01 11:09:30 | 000,968,504 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
PRC - [2014/10/01 11:09:28 | 001,871,160 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
PRC - [2014/10/01 11:09:20 | 007,229,752 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
PRC - [2014/09/12 17:52:04 | 036,414,624 | ---- | M] (Dropbox, Inc.) -- C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\Dropbox.exe
PRC - [2014/09/12 02:43:06 | 000,064,704 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2014/07/30 05:04:26 | 000,023,552 | ---- | M] () -- C:\Program Files\real\UpdateService\RealPlayerUpdateSvc.exe
PRC - [2014/07/30 02:22:48 | 000,147,016 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\RealNetworks\RealDownloader\realupgrade.exe
PRC - [2014/07/30 02:17:08 | 000,039,568 | ---- | M] () -- C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
PRC - [2014/07/22 15:25:38 | 001,042,808 | R--- | M] (Western Digital Technologies, Inc.) -- C:\Program Files\Western Digital\WD SmartWare\WDBackupEngine.exe
PRC - [2014/07/22 15:15:46 | 005,562,736 | R--- | M] (Western Digital Technologies, Inc.) -- C:\Program Files\Western Digital\WD Quick View\WDDMStatus.exe
PRC - [2014/06/02 10:36:12 | 000,296,312 | R--- | M] (Western Digital Technologies, Inc.) -- C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe
PRC - [2014/04/29 00:07:20 | 000,874,144 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\plugin-nm-server.exe
PRC - [2014/04/17 21:07:28 | 004,672,920 | ---- | M] (Akamai Technologies, Inc.) -- C:\Users\Gabriel\AppData\Local\Akamai\netsession_win.exe
PRC - [2014/03/25 01:16:12 | 001,004,864 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avpui.exe
PRC - [2013/10/28 19:02:16 | 001,680,088 | ---- | M] (Broadcom Corporation.) -- C:\Windows\System32\BtwRSupportService.exe
PRC - [2013/10/02 08:40:29 | 000,214,512 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avp.exe
PRC - [2013/08/01 17:52:57 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
PRC - [2013/04/24 02:23:04 | 000,134,896 | ---- | M] (Synaptics Incorporated) -- C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
PRC - [2013/03/20 19:48:00 | 000,154,112 | ---- | M] (troubadix) -- C:\Program Files\TPFanControl\TPFanControl.exe
PRC - [2013/02/04 09:36:59 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Gabriel\Desktop\OTL.exe
PRC - [2012/11/22 19:48:41 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2012/06/13 16:53:50 | 001,688,008 | R--- | M] (Western Digital) -- C:\Program Files\Western Digital\WD Security\WDDriveAutoUnlock.exe
PRC - [2011/08/22 01:38:18 | 003,678,208 | ---- | M] (Gbridge LLC) -- C:\Program Files\Gbridge LLC\Gbridge\Gbridge.exe
PRC - [2011/02/24 22:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2011/02/10 11:55:04 | 000,152,576 | ---- | M] (CrashPlan) -- C:\Program Files\CrashPlan\CrashPlanService.exe
PRC - [2011/02/10 11:54:34 | 000,217,088 | ---- | M] (Code 42 Software, Inc.) -- C:\Program Files\CrashPlan\CrashPlanTray.exe
PRC - [2011/02/02 15:08:16 | 000,018,656 | ---- | M] () -- C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe
PRC - [2010/11/20 05:17:00 | 000,302,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\cmd.exe
PRC - [2010/10/19 14:25:18 | 000,866,576 | ---- | M] (Intel® Corporation) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe
PRC - [2010/10/19 14:02:42 | 000,477,456 | ---- | M] (Intel® Corporation) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
PRC - [2010/06/09 23:18:56 | 000,090,912 | ---- | M] () -- C:\Program Files\Gbridge LLC\Gbridge\pstartw.exe
PRC - [2010/01/13 15:44:52 | 000,037,888 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\Winamp\winampa.exe
PRC - [2009/09/28 00:27:20 | 000,144,752 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\Lenovo\ZOOM\TpScrex.exe
PRC - [2009/09/24 23:55:56 | 000,015,872 | ---- | M] (Lenovo Group Limited) -- c:\Program Files\Lenovo\System Update\SUService.exe
PRC - [2009/09/13 22:14:28 | 000,174,616 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\AMT\LMS.exe
PRC - [2009/09/01 00:32:20 | 000,098,304 | ---- | M] () -- C:\Windows\System32\DTS.exe
PRC - [2009/09/01 00:28:04 | 001,692,920 | ---- | M] (AuthenTec, Inc.) -- C:\Windows\System32\AtService.exe
PRC - [2009/08/28 15:09:58 | 001,019,904 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe
PRC - [2009/08/23 21:00:30 | 000,352,256 | ---- | M] (AMD) -- C:\Windows\System32\atieclxx.exe
PRC - [2009/08/23 21:00:02 | 000,172,032 | ---- | M] (AMD) -- C:\Windows\System32\atiesrxx.exe
PRC - [2009/08/19 17:38:30 | 000,062,752 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\Lenovo\HOTKEY\tpfnf6r.exe
PRC - [2009/08/06 13:29:54 | 000,186,904 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
PRC - [2009/08/06 13:29:36 | 000,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
PRC - [2009/08/03 20:00:14 | 002,058,776 | ---- | M] (Intel Corporation) -- C:\Program Files\Common Files\Intel\Privacy Icon\UNS\UNS.exe
PRC - [2009/07/14 18:18:02 | 000,062,320 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe
PRC - [2009/07/13 02:07:48 | 000,021,096 | ---- | M] (The Within Network, LLC) -- C:\Windows\UnsignedThemesSvc.exe
PRC - [2009/07/01 19:03:12 | 002,352,416 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\ThinkPad\Bluetooth Software\BTStackServer.exe
PRC - [2009/07/01 19:03:12 | 000,795,936 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe
PRC - [2009/07/01 19:03:12 | 000,582,944 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe
PRC - [2009/05/27 23:09:36 | 000,049,976 | ---- | M] () -- C:\Program Files\Lenovo\Message Center Plus\MCPLaunch.exe
PRC - [2009/03/13 01:32:48 | 000,068,976 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
PRC - [2009/02/02 02:04:10 | 000,067,432 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
PRC - [2008/01/11 18:50:16 | 000,030,312 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
PRC - [2006/11/03 11:01:16 | 000,319,488 | ---- | M] (PixArt Imaging Incorporation) -- C:\Windows\PixArt\Pac7302\Monitor.exe
 
 
========== Modules (No Company Name) ==========
 
MOD - [2014/10/29 16:43:34 | 000,043,008 | ---- | M] () -- c:\Users\Gabriel\AppData\Local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmplueeej.dll
MOD - [2014/10/21 21:05:00 | 014,902,600 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\38.0.2125.111\PepperFlash\pepflashplayer.dll
MOD - [2014/10/21 21:04:57 | 008,910,664 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\38.0.2125.111\pdf.dll
MOD - [2014/10/21 21:04:51 | 001,042,760 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\38.0.2125.111\libglesv2.dll
MOD - [2014/10/21 21:04:49 | 000,211,272 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\38.0.2125.111\libegl.dll
MOD - [2014/10/21 21:04:48 | 001,681,224 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\38.0.2125.111\ffmpegsumo.dll
MOD - [2014/10/16 05:42:09 | 011,025,920 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\006d28e7c86f3e70db90ce06ea2f33fb\PresentationCore.ni.dll
MOD - [2014/10/16 05:42:01 | 003,950,080 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\94bbd298ec8575f3c6151a59538a109c\WindowsBase.ni.dll
MOD - [2014/10/16 05:41:50 | 000,794,112 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Servd1dec626#\35d3a1b878542de59cb4fc0593992404\System.ServiceModel.Internals.ni.dll
MOD - [2014/10/16 05:41:50 | 000,122,880 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\046058f81b039ab6fd839e03e67595f8\SMDiagnostics.ni.dll
MOD - [2014/10/16 05:41:49 | 002,822,144 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\f9f13cd8fe1cefaad78579a7c3a41464\System.Runtime.Serialization.ni.dll
MOD - [2014/10/16 05:41:46 | 000,976,384 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\0648dbecb7e3fb9523565107e04a5caf\System.Configuration.ni.dll
MOD - [2014/10/16 05:41:33 | 007,668,736 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\7147fa233a070283dba824da40089bf1\System.Xml.ni.dll
MOD - [2014/10/16 05:41:26 | 010,100,736 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System\17a393b77ae757f0768501fb95ff5af6\System.ni.dll
MOD - [2014/09/12 17:20:58 | 003,610,624 | ---- | M] () -- C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll
MOD - [2014/03/01 12:16:46 | 016,953,856 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\ce5f61c5754789df97be8dc991c47d07\mscorlib.ni.dll
MOD - [2014/01/20 14:17:04 | 000,073,544 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2014/01/20 14:16:38 | 001,044,808 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2013/08/23 12:01:44 | 025,100,288 | ---- | M] () -- C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\libcef.dll
MOD - [2010/06/09 23:18:56 | 000,090,912 | ---- | M] () -- C:\Program Files\Gbridge LLC\Gbridge\pstartw.exe
MOD - [2009/08/23 11:04:00 | 000,030,720 | ---- | M] () -- C:\Program Files\ThinkPad\Utilities\US\PWMRT32V.DLL
MOD - [2009/07/01 19:03:24 | 000,132,384 | ---- | M] () -- C:\Program Files\ThinkPad\Bluetooth Software\BTKeyInd.dll
MOD - [2009/05/27 23:09:36 | 000,049,976 | ---- | M] () -- C:\Program Files\Lenovo\Message Center Plus\MCPLaunch.exe
 
 
========== Services (SafeList) ==========
 
SRV - File not found [On_Demand | Unknown] --  -- (.e2rdsvca)
SRV - [2014/10/19 18:09:55 | 001,141,848 | ---- | M] (RealNetworks, Inc.) [Auto | Running] -- c:\Program Files\real\realplayer\RPDS\Bin\rpdsvc.exe -- (RealPlayer Cloud Service)
SRV - [2014/10/01 11:09:30 | 000,968,504 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2014/10/01 11:09:28 | 001,871,160 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2014/09/18 17:50:15 | 000,108,032 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV - [2014/09/12 02:43:06 | 000,064,704 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2014/07/30 05:04:26 | 000,023,552 | ---- | M] () [Auto | Running] -- C:\Program Files\real\UpdateService\RealPlayerUpdateSvc.exe -- (RealPlayerUpdateSvc)
SRV - [2014/07/30 02:17:08 | 000,039,568 | ---- | M] () [Auto | Running] -- C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe -- (RealNetworks Downloader Resolver Service)
SRV - [2014/07/22 15:25:38 | 001,042,808 | R--- | M] (Western Digital Technologies, Inc.) [Auto | Running] -- C:\Program Files\Western Digital\WD SmartWare\WDBackupEngine.exe -- (WDBackup)
SRV - [2014/06/02 10:36:12 | 000,296,312 | R--- | M] (Western Digital Technologies, Inc.) [Auto | Running] -- C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe -- (WDDriveService)
SRV - [2014/01/15 00:18:55 | 001,044,816 | ---- | M] (Flexera Software, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2013/10/28 19:02:16 | 001,680,088 | ---- | M] (Broadcom Corporation.) [Auto | Running] -- C:\Windows\System32\BtwRSupportService.exe -- (BcmBtRSupport)
SRV - [2013/10/02 08:40:29 | 000,214,512 | ---- | M] (Kaspersky Lab ZAO) [Auto | Running] -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avp.exe -- (AVP)
SRV - [2013/05/26 21:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2011/02/10 11:55:04 | 000,152,576 | ---- | M] (CrashPlan) [Auto | Running] -- C:\Program Files\CrashPlan\CrashPlanService.exe -- (CrashPlanService)
SRV - [2011/02/02 15:08:16 | 000,018,656 | ---- | M] () [Auto | Running] -- C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe -- (Autodesk Content Service)
SRV - [2010/10/19 14:25:18 | 000,866,576 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng)
SRV - [2010/10/19 14:02:42 | 000,477,456 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc)
SRV - [2010/03/03 04:00:27 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2010/01/29 13:52:07 | 000,085,096 | ---- | M] (Autodesk) [On_Demand | Stopped] -- C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe -- (Autodesk Licensing Service)
SRV - [2009/09/24 23:55:56 | 000,015,872 | ---- | M] (Lenovo Group Limited) [Auto | Running] -- c:\Program Files\Lenovo\System Update\SUService.exe -- (SUService)
SRV - [2009/09/13 22:14:28 | 000,174,616 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\AMT\LMS.exe -- (LMS)
SRV - [2009/09/01 00:32:20 | 000,098,304 | ---- | M] () [Auto | Running] -- C:\Windows\System32\DTS.exe -- (dtsvc)
SRV - [2009/09/01 00:32:16 | 000,106,496 | ---- | M] () [On_Demand | Stopped] -- C:\Windows\System32\ADMonitor.exe -- (ADMonitor)
SRV - [2009/09/01 00:28:04 | 001,692,920 | ---- | M] (AuthenTec, Inc.) [Auto | Running] -- C:\Windows\System32\AtService.exe -- (ATService)
SRV - [2009/08/28 15:09:58 | 001,019,904 | ---- | M] (Lenovo Group Limited) [Auto | Running] -- C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe -- (ThinkVantage Registry Monitor Service)
SRV - [2009/08/23 21:00:02 | 000,172,032 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\System32\atiesrxx.exe -- (AMD External Events Utility)
SRV - [2009/08/23 11:04:00 | 000,075,040 | ---- | M] (Lenovo) [On_Demand | Stopped] -- C:\Program Files\ThinkPad\Utilities\PWMDBSVC.exe -- (Power Manager DBC Service)
SRV - [2009/08/06 13:29:36 | 000,354,840 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON)
SRV - [2009/08/03 20:00:14 | 002,058,776 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\Privacy Icon\UNS\UNS.exe -- (UNS)
SRV - [2009/07/14 18:18:02 | 000,062,320 | ---- | M] (Lenovo Group Limited) [Auto | Running] -- C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe -- (TPHKSVC)
SRV - [2009/07/13 18:16:15 | 000,016,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\StorSvc.dll -- (StorSvc)
SRV - [2009/07/13 18:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009/07/13 18:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc)
SRV - [2009/07/13 02:07:48 | 000,021,096 | ---- | M] (The Within Network, LLC) [Auto | Running] -- C:\Windows\UnsignedThemesSvc.exe -- (UnsignedThemes)
SRV - [2009/07/03 02:47:10 | 000,045,424 | ---- | M] (Lenovo Group Limited) [Auto | Stopped] -- C:\Program Files\Lenovo\HOTKEY\micmute.exe -- (LENOVO.MICMUTE)
SRV - [2009/07/01 19:03:12 | 000,582,944 | ---- | M] (Broadcom Corporation.) [Auto | Running] -- C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe -- (btwdins)
SRV - [2009/04/28 19:21:04 | 000,410,624 | ---- | M] (Conexant Systems, Inc.) [Auto | Running] -- C:\Windows\System32\XAudio32.dll -- (HsfXAudioService)
SRV - [2008/01/11 18:50:16 | 000,030,312 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe -- (BcmSqlStartupSvc)
 
 
========== Driver Services (SafeList) ==========
 
DRV - File not found [Kernel | Auto | Stopped] --  -- (MCSTRM)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Users\Gabriel\AppData\Local\Temp\catchme.sys -- (catchme)
DRV - [2014/10/29 16:46:12 | 000,114,904 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\MBAMSwissArmy.sys -- (MBAMSwissArmy)
DRV - [2014/10/01 11:11:24 | 000,051,928 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\mwac.sys -- (MBAMWebAccessControl)
DRV - [2014/10/01 11:11:10 | 000,023,256 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2014/03/25 01:16:38 | 000,576,608 | ---- | M] (Kaspersky Lab ZAO) [File_System | System | Running] -- C:\Windows\System32\drivers\klif.sys -- (KLIF)
DRV - [2014/03/25 01:16:38 | 000,094,304 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\klflt.sys -- (klflt)
DRV - [2014/02/18 01:31:09 | 000,025,184 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\klkbdflt.sys -- (klkbdflt)
DRV - [2013/12/19 01:23:40 | 000,144,992 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\System32\drivers\kneps.sys -- (kneps)
DRV - [2013/11/07 02:25:00 | 000,135,776 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\kl1.sys -- (kl1)
DRV - [2013/10/28 19:02:14 | 000,175,320 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\bcbtums.sys -- (bcbtums)
DRV - [2013/10/02 08:41:39 | 000,025,696 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\klmouflt.sys -- (klmouflt)
DRV - [2013/10/02 08:41:39 | 000,025,696 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\System32\drivers\klim6.sys -- (KLIM6)
DRV - [2013/10/01 17:42:31 | 000,049,152 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2013/05/14 17:34:44 | 000,045,024 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\System32\drivers\kltdi.sys -- (kltdi)
DRV - [2013/04/12 15:34:48 | 000,014,432 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\System32\drivers\klpd.sys -- (klpd)
DRV - [2012/08/23 07:44:32 | 000,014,848 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV - [2012/06/13 16:51:42 | 000,011,520 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\wdcsam.sys -- (WDC_SAM)
DRV - [2010/12/13 14:55:54 | 000,021,744 | ---- | M] (PC-Doctor, Inc.) [Kernel | On_Demand | Stopped] -- c:\Program Files\PC-Doctor\pcdsrvc.pkms -- (PCDSRVC{3037D694-FD904ACA-06020101}_0)
DRV - [2010/11/20 05:30:15 | 000,175,360 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmbus.sys -- (vmbus)
DRV - [2010/11/20 05:30:15 | 000,040,704 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmstorfl.sys -- (storflt)
DRV - [2010/11/20 05:30:15 | 000,028,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\storvsc.sys -- (storvsc)
DRV - [2010/11/20 02:59:44 | 000,035,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb)
DRV - [2010/11/20 02:14:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VMBusHID.sys -- (VMBusHID)
DRV - [2010/11/20 02:14:41 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vms3cap.sys -- (s3cap)
DRV - [2010/10/18 02:20:48 | 007,122,944 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\NETwNs32.sys -- (NETwNs32)
DRV - [2010/08/12 05:15:20 | 000,064,288 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- C:\Windows\System32\drivers\Lbd.sys -- (Lbd)
DRV - [2010/04/14 02:01:48 | 000,045,736 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btusbflt.sys -- (btusbflt)
DRV - [2010/04/07 23:04:04 | 000,223,960 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\e1y6232.sys -- (e1yexpress)
DRV - [2010/01/27 20:01:19 | 000,033,088 | ---- | M] (Lenovo (United States) Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\psadd.sys -- (psadd)
DRV - [2009/10/14 10:59:38 | 000,022,696 | ---- | M] (MediaMall Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\povrtdev.sys -- (msvad_simple)
DRV - [2009/09/23 10:41:58 | 000,026,176 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hamachi.sys -- (hamachi)
DRV - [2009/09/21 19:47:10 | 005,946,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\igdpmd32.sys -- (intelkmd)
DRV - [2009/09/15 13:40:18 | 006,114,816 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\NETw5s32.sys -- (NETw5s32)
DRV - [2009/09/14 21:30:00 | 000,038,400 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rixdptsk.sys -- (rismxdp)
DRV - [2009/09/14 20:36:00 | 000,044,544 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimsptsk.sys -- (rimsptsk)
DRV - [2009/09/07 02:00:00 | 000,048,128 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimmptsk.sys -- (rimmptsk)
DRV - [2009/09/01 02:44:16 | 000,485,376 | ---- | M] (AuthenTec, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ATSwpWDF.sys -- (ATSwpWDF)
DRV - [2009/08/23 21:32:48 | 005,073,920 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\atikmdag.sys -- (atikmdag)
DRV - [2009/08/23 21:32:48 | 005,073,920 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atipmdag.sys -- (amdkmdag)
DRV - [2009/08/23 20:09:56 | 000,106,496 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atikmpag.sys -- (amdkmdap)
DRV - [2009/08/23 11:04:00 | 000,011,552 | ---- | M] (Lenovo Group Limited) [Kernel | System | Running] -- C:\Windows\System32\drivers\TPPWR32V.SYS -- (TPPWRIF)
DRV - [2009/07/21 22:56:22 | 000,459,264 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CHDRT32.sys -- (CnxtHdAudService)
DRV - [2009/07/13 17:18:07 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV - [2009/07/13 16:52:10 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\vwifimp.sys -- (vwifimp)
DRV - [2009/07/13 16:12:52 | 000,030,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tpm.sys -- (TPM)
DRV - [2009/07/13 15:02:51 | 004,231,168 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\netw5v32.sys -- (netw5v32)
DRV - [2009/07/13 02:07:46 | 000,025,448 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\System32\drivers\uxpatch.sys -- (uxpatch)
DRV - [2009/07/07 23:12:52 | 000,072,320 | ---- | M] (Ricoh co.,Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\5U875.sys -- (5U875UVC)
DRV - [2009/07/02 11:16:22 | 000,038,336 | ---- | M] (Lenovo (United States) Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tvti2c.sys -- (TVTI2C)
DRV - [2009/07/01 02:05:10 | 000,232,472 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\iaNvStor.sys -- (iaNvStor)
DRV - [2009/06/29 14:51:04 | 000,117,800 | ---- | M] (Lenovo.) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\ApsX86.sys -- (Shockprf)
DRV - [2009/06/29 14:51:02 | 000,020,520 | ---- | M] (Lenovo.) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\ApsHM86.sys -- (TPDIGIMN)
DRV - [2009/06/22 20:49:58 | 000,040,832 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HECI.sys -- (HECI)
DRV - [2009/05/10 10:46:02 | 000,041,216 | ---- | M] (Gbridge LLC) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\gbridge.sys -- (gbridge)
DRV - [2009/04/28 19:20:56 | 000,008,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\XAudio32.sys -- (XAudio)
DRV - [2008/12/26 12:56:04 | 000,017,792 | ---- | M] (Avnex) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\vcsvad.sys -- (VCSVADHWSer)
DRV - [2008/05/12 02:04:04 | 000,013,480 | ---- | M] (Lenovo Group Limited) [Kernel | System | Running] -- C:\Windows\System32\drivers\smiif32.sys -- (lenovo.smi)
DRV - [2008/01/15 10:17:12 | 000,458,496 | ---- | M] (PixArt Imaging Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\PAC7302.SYS -- (PAC7302)
DRV - [2006/10/13 03:21:00 | 000,020,512 | ---- | M] (EnTech Taiwan) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\TVicPort.sys -- (TVicPort)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE - HKLM\..\SearchScopes,DefaultScope = {2E91A6D6-253A-4FE1-84E7-F8ABD8E50297}
IE - HKLM\..\SearchScopes\{2E91A6D6-253A-4FE1-84E7-F8ABD8E50297}: "URL" = http://www.bing.com/...c=IE-SearchBox;
 
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com/welcome/thinkpad [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://m.www.yahoo.com/
IE - HKCU\..\SearchScopes,DefaultScope = {2E91A6D6-253A-4FE1-84E7-F8ABD8E50297}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>;*.local
 
========== FireFox ==========
 
FF - prefs.js..browser.startup.homepage: "https://www.yahoo.com/"
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:33.0
FF - user.js - File not found
 
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:  File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.71.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.71.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=17.0.13.2: c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlhtml5videoshim;version=17.0.13: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpplugin;version=17.0.13.2: c:\program files\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer Cloud)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@autodesk.com/DWF: C:\Program Files\Autodesk\Autodesk Design Review Browser Add-on v1.2\npADRdwf.dll (Autodesk)
 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected] [2014/07/30 01:28:12 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected] [2014/07/30 01:28:12 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected] [2014/07/30 01:28:11 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{9D2AA73B-6049-4799-B8AC-925723370070}: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ [2014/10/19 18:10:53 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{CFB336FE-D07D-11E1-8270-B8AC6F996F26}: C:\Users\Gabriel\AppData\Local\{CFB336FE-D07D-11E1-8270-B8AC6F996F26}\ [2012/07/17 19:11:07 | 000,000,000 | ---D | M]
 
[2013/10/21 08:24:30 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Gabriel\AppData\Roaming\Mozilla\Extensions
[2014/07/16 18:45:35 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Gabriel\AppData\Roaming\Mozilla\Firefox\Profiles\oelkky6o.default\extensions
[2014/09/24 18:32:22 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2014/09/24 18:32:22 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBA}
[2014/09/24 18:32:22 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
[2014/09/24 18:32:22 | 000,000,000 | ---D | M] (Kaspersky URL Advisor) -- C:\Program Files\Mozilla Firefox\extensions\[email protected]
[2010/01/13 15:46:00 | 000,063,488 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\mozilla firefox\plugins\npwachk.dll
 
========== Chrome  ==========
 
CHR - homepage: http://www.google.com
CHR - Extension: No name found = C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.8_0\
CHR - Extension: No name found = C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\
CHR - Extension: No name found = C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: No name found = C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn\0.1.1.5023_0\
CHR - Extension: No name found = C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blbkdnmdcafmfhinpmnlhhddbepgkeaa\3.1.0.122_0\
CHR - Extension: No name found = C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: No name found = C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: No name found = C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\14.0.0.4651_0\
CHR - Extension: No name found = C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.0_0\
CHR - Extension: No name found = C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: No name found = C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
 
O1 HOSTS File: ([2014/06/17 01:41:49 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1       localhost
O2 - BHO: (RealNetworks Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
O2 - BHO: (Content Blocker Plugin) - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
O2 - BHO: (Virtual Keyboard Plugin) - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Safe Money Plugin) - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (URL Advisor Plugin) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [FingerPrintSoftware] C:\Program Files\Lenovo Fingerprint Software\fpapp.exe (AuthenTec)
O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
O4 - HKLM..\Run: [IaNvSrv] C:\Program Files\Intel\Intel Matrix Storage Manager\OROM\IaNvSrv\IaNvSrv.exe (Intel Corporation)
O4 - HKLM..\Run: [LENOVO.TPFNF6R] C:\Program Files\Lenovo\HOTKEY\tpfnf6r.exe (Lenovo Group Limited)
O4 - HKLM..\Run: [Message Center Plus] C:\Program Files\LENOVO\Message Center Plus\MCPLaunch.exe ()
O4 - HKLM..\Run: [PAC7302_Monitor] C:\Windows\PixArt\Pac7302\Monitor.exe (PixArt Imaging Incorporation)
O4 - HKLM..\Run: [picon] C:\Program Files\Common Files\Intel\Privacy Icon\PrivacyIconClient.exe (Intel Corporation)
O4 - HKLM..\Run: [PWMTRV] C:\Program Files\ThinkPad\Utilities\PWMTR32V.DLL (Lenovo Group Limited)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\real\realplayer\update\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [TPFanControl] C:\Program Files\TPFanControl\TPFanControl.exe (troubadix)
O4 - HKLM..\Run: [TPHOTKEY] C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe (Lenovo Group Limited)
O4 - HKLM..\Run: [WD Drive Unlocker] C:\Program Files\Western Digital\WD Security\WDDriveAutoUnlock.exe (Western Digital)
O4 - HKLM..\Run: [WD Quick View] C:\Program Files\Western Digital\WD Quick View\WDDMStatus.exe (Western Digital Technologies, Inc.)
O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe (Nullsoft, Inc.)
O4 - HKCU..\Run: [Akamai NetSession Interface] C:\Users\Gabriel\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.)
O4 - HKCU..\Run: [Gbridge] C:\Program Files\Gbridge LLC\Gbridge\pstartw.exe ()
O4 - Startup: C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\ThinkPad\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\ThinkPad\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Virtual Keyboard - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
O9 - Extra Button: @C:\Program Files\ThinkPad\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\ThinkPad\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @C:\Program Files\ThinkPad\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\ThinkPad\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: URLs check - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {12193C65-F0E1-4DD1-AD4E-DB73C6911011} file:///E:/activeX/DCP.cab (DCPForm Control 1.0.1.1)
O16 - DPF: {62789780-B744-11D0-986B-00609731A21D} http://navigatela.la...ad/mgaxctrl.cab (Autodesk MapGuide ActiveX Control)
O16 - DPF: {7191F0AC-D686-46A8-BFCC-EA61778C74DD} https://www.mydlink....aplugLiteDL.cab (Gif89 Lite +Audio Class)
O16 - DPF: {74FFE28D-2378-11D5-990C-006094235084} http://www-307.ibm.c...rt/IbmEgath.cab (IBM Access Support)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.71.2)
O16 - DPF: {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_35)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.71.2)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.239.255.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{72C32C4B-597A-4FC1-8E49-96AA5E393656}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{739DBB35-D90A-4942-9415-A42119EFECEC}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A5CE15D7-DDD7-41FA-B582-6626B6CB757E}: DhcpNameServer = 10.239.255.254
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2013/04/16 18:00:32 | 000,000,000 | ---D | M] - C:\Autodesk -- [ NTFS ]
O32 - AutoRun File - [2009/06/10 14:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
========== Files/Folders - Created Within 30 Days ==========
 
[2014/10/23 00:35:04 | 000,114,904 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\6D7160ED.sys
[2014/10/22 09:36:48 | 000,114,904 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys
[2014/10/22 09:36:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
[2014/10/22 09:36:30 | 000,075,480 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamchameleon.sys
[2014/10/22 09:36:30 | 000,051,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mwac.sys
[2014/10/22 09:36:30 | 000,023,256 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2014/10/22 09:36:30 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes Anti-Malware
[2014/10/22 09:09:55 | 000,000,000 | -H-D | C] -- C:\ProgramData\Common Files
[2014/10/22 09:09:55 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Local\MFAData
[2014/10/22 09:09:55 | 000,000,000 | ---D | C] -- C:\ProgramData\MFAData
[2014/10/22 09:09:55 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Local\Avg2015
[2014/10/19 18:13:24 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Roaming\RealNetworks
[2014/10/19 18:10:52 | 000,000,000 | ---D | C] -- C:\ProgramData\RealNetworks
[2014/10/19 18:10:52 | 000,000,000 | ---D | C] -- C:\Program Files\RealNetworks
[2014/10/19 18:10:31 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\xing shared
[2014/10/19 18:09:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks
[2014/10/19 18:09:45 | 000,000,000 | ---D | C] -- C:\Program Files\real
[2014/10/16 21:53:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2014/10/16 06:01:18 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2014/10/14 09:43:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google SketchUp 8
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
 
========== Files - Modified Within 30 Days ==========
 
[2014/10/29 16:59:17 | 000,000,888 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/10/29 16:53:26 | 000,008,192 | ---- | M] () -- C:\Windows\System32\WDPABKP.dat
[2014/10/29 16:53:20 | 000,021,680 | ---- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/10/29 16:53:20 | 000,021,680 | ---- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/10/29 16:46:12 | 000,114,904 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys
[2014/10/29 16:42:32 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/10/29 16:41:18 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/10/29 16:41:09 | 1981,816,832 | -HS- | M] () -- C:\hiberfil.sys
[2014/10/29 14:02:30 | 000,000,382 | ---- | M] () -- C:\Windows\tasks\SystemToolsDailyTest.job
[2014/10/28 05:03:56 | 000,002,140 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014/10/23 00:35:05 | 000,114,904 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\6D7160ED.sys
[2014/10/22 09:36:32 | 000,001,071 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2014/10/19 18:11:09 | 000,001,012 | ---- | M] () -- C:\Users\Public\Desktop\RealPlayer Cloud.lnk
[2014/10/19 18:10:11 | 000,001,217 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RealPlayer Cloud Service UI.lnk
[2014/10/19 18:09:58 | 000,278,600 | ---- | M] (Progressive Networks) -- C:\Windows\System32\pncrt.dll
[2014/10/19 18:05:18 | 000,002,236 | ---- | M] () -- C:\Users\Gabriel\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2014/10/16 20:18:16 | 000,061,077 | ---- | M] () -- C:\59f5c49c-6195-46ad-9060-f4b43ac765bf.dmp
[2014/10/16 05:48:36 | 003,840,440 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2014/10/16 05:17:50 | 000,062,572 | ---- | M] () -- C:\683ca008-8255-47a9-b238-1859e568bbd5.dmp
[2014/10/15 23:25:16 | 000,060,846 | ---- | M] () -- C:\6d2cb87a-c6e5-4dad-b0fd-58aaa400cf17.dmp
[2014/10/14 09:44:00 | 000,002,177 | ---- | M] () -- C:\Users\Public\Desktop\Style Builder 2.lnk
[2014/10/14 09:43:59 | 000,002,091 | ---- | M] () -- C:\Users\Public\Desktop\LayOut 3.lnk
[2014/10/14 09:43:58 | 000,002,006 | ---- | M] () -- C:\Users\Public\Desktop\Google SketchUp 8.lnk
[2014/10/04 14:57:04 | 000,000,176 | ---- | M] () -- C:\Windows\Gbridge.INI
[2014/10/01 11:11:24 | 000,051,928 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mwac.sys
[2014/10/01 11:11:14 | 000,075,480 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamchameleon.sys
[2014/10/01 11:11:10 | 000,023,256 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
 
========== Files Created - No Company Name ==========
 
[2014/10/29 16:43:41 | 000,008,192 | ---- | C] () -- C:\Windows\System32\WDPABKP.dat
[2014/10/22 09:36:32 | 000,001,071 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2014/10/19 18:11:09 | 000,001,012 | ---- | C] () -- C:\Users\Public\Desktop\RealPlayer Cloud.lnk
[2014/10/19 18:10:11 | 000,001,217 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RealPlayer Cloud Service UI.lnk
[2014/10/16 21:53:45 | 000,002,236 | ---- | C] () -- C:\Users\Gabriel\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2014/10/16 21:53:45 | 000,002,140 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014/10/16 21:53:16 | 000,000,888 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/10/16 21:53:15 | 000,000,884 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/10/16 20:18:16 | 000,061,077 | ---- | C] () -- C:\59f5c49c-6195-46ad-9060-f4b43ac765bf.dmp
[2014/10/16 05:17:50 | 000,062,572 | ---- | C] () -- C:\683ca008-8255-47a9-b238-1859e568bbd5.dmp
[2014/10/15 23:25:15 | 000,060,846 | ---- | C] () -- C:\6d2cb87a-c6e5-4dad-b0fd-58aaa400cf17.dmp
[2014/10/14 09:44:00 | 000,002,177 | ---- | C] () -- C:\Users\Public\Desktop\Style Builder 2.lnk
[2014/10/14 09:43:59 | 000,002,091 | ---- | C] () -- C:\Users\Public\Desktop\LayOut 3.lnk
[2014/10/14 09:43:58 | 000,002,006 | ---- | C] () -- C:\Users\Public\Desktop\Google SketchUp 8.lnk
[2014/06/29 11:10:22 | 000,000,057 | ---- | C] () -- C:\ProgramData\Ament.ini
[2014/01/23 13:36:44 | 000,000,176 | ---- | C] () -- C:\Windows\Gbridge.INI
[2014/01/14 23:11:10 | 000,000,181 | ---- | C] () -- C:\Windows\WININIT.INI
[2013/04/24 02:23:02 | 001,048,576 | ---- | C] () -- C:\Windows\System32\syndata.bin
[2011/09/15 16:59:52 | 000,007,609 | ---- | C] () -- C:\Users\Gabriel\AppData\Local\Temp7.html
[2011/09/15 16:59:19 | 000,001,892 | ---- | C] () -- C:\Users\Gabriel\AppData\Local\Temp1.html
[2011/03/30 12:25:55 | 000,000,277 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
[2010/09/24 16:13:17 | 000,000,362 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2010/08/20 12:44:43 | 000,007,619 | ---- | C] () -- C:\Users\Gabriel\AppData\Local\Resmon.ResmonCfg
[2010/04/18 13:11:31 | 000,870,128 | ---- | C] () -- C:\Users\Gabriel\AppData\Roaming\mcs.rma
[2010/03/14 09:49:58 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
 
========== ZeroAccess Check ==========
 
[2009/07/13 21:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"ThreadingModel" = Both
"" = %SystemRoot%\system32\shell32.dll -- [2014/06/24 18:41:30 | 012,874,240 | ---- | M] (Microsoft Corporation)
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2014/06/24 18:41:30 | 012,874,240 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 05:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/13 18:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
========== LOP Check ==========
 
[2014/03/14 10:58:33 | 000,000,000 | ---D | M] -- C:\Users\Gabriel\AppData\Roaming\Autodesk
[2010/04/07 15:12:51 | 000,000,000 | ---D | M] -- C:\Users\Gabriel\AppData\Roaming\Avnex
[2011/04/22 15:38:04 | 000,000,000 | ---D | M] -- C:\Users\Gabriel\AppData\Roaming\CrashPlan
[2014/10/29 16:44:10 | 000,000,000 | ---D | M] -- C:\Users\Gabriel\AppData\Roaming\Dropbox
[2010/05/11 13:31:18 | 000,000,000 | ---D | M] -- C:\Users\Gabriel\AppData\Roaming\EPSON
[2013/03/01 08:35:16 | 000,000,000 | ---D | M] -- C:\Users\Gabriel\AppData\Roaming\Gbridge
[2013/08/22 08:53:13 | 000,000,000 | ---D | M] -- C:\Users\Gabriel\AppData\Roaming\HMI
[2010/06/20 17:26:04 | 000,000,000 | ---D | M] -- C:\Users\Gabriel\AppData\Roaming\ooVoo Details
[2010/08/19 16:55:13 | 000,000,000 | ---D | M] -- C:\Users\Gabriel\AppData\Roaming\QuickScan
[2013/04/06 11:48:51 | 000,000,000 | ---D | M] -- C:\Users\Gabriel\AppData\Roaming\Strongvault
[2011/05/20 14:14:13 | 000,000,000 | ---D | M] -- C:\Users\Gabriel\AppData\Roaming\Update
[2012/08/02 20:43:11 | 000,000,000 | ---D | M] -- C:\Users\Gabriel\AppData\Roaming\uTorrent
[2010/05/19 19:55:08 | 000,000,000 | ---D | M] -- C:\Users\Gabriel\AppData\Roaming\ZumoDrive
 
========== Purity Check ==========
 
 
 
< End of report >
 

  • 0

Advertisements


#2
Nevan

Nevan

    Trusted Helper

  • Malware Removal
  • 1,765 posts

Hello, gabybaby. My nickname is Nevan and I will be helping you getting your system back on its electronic feet.

Before we get started, please keep those things in mind:

  • Always read every part of my post carefully. If you don't, you may do something wrong and there could be more problems to solve.
  • If your security programs give you any warnings when using tools I asked you to, don't be afraid. Every tool I provide to you is 100% safe.
  • Only run tools that I ask you to. Some of them can be dangerous to your system as they have much power.
  • You should save or print my instructions. It is possible that we will be using Safe mode, which will cut you off from your internet connection and without access to them, you might be stuck.
  • Malware removal is a complicated process that takes multiple steps to be completed. Don't give up, be patient.
  • The tools we are going to use and your software may cause unwanted interactions. Because of that, I recommend you to make backups of any important files from your machine before proceeding as they might be lost.
  • I recommend you to stay with me until I tell you that we are done. It is important because when your system does not show any bad symptoms anymore it does not mean that it is 100% clean.
  • Your time to reply is limited. If you don't reply within 3 days, your topic will be closed and you will have to request it to be reopened by contacting one of Moderator group members with the link to this topic.
  • Every program I ask you to download should be saved to and run from desktop. If you don't know how to choose the direction of where a download is saved, check this site. You can also just copy these programs to your desktop manually and then run them from there.
  • Remember that the fixes I give you are only for your machine. Using it on other systems may (and probably will) cause problems.
  • Finally, if you have any questions or are unsure about something, just ask. I will not blame you for it. It is better to ask rather than regret it later.

Also, please note that I'm currently in training, so my answers to you will have to be checked first by an experienced helper before I can post them. This can lengthen the time between my answers to you, but in return you will have an extra person reviewing your log.

 
I'll now take a look at the log you've provided. I'll return with instructions once I'm done.

 


  • 0

#3
gabybaby

gabybaby

    Member

  • Topic Starter
  • Member
  • PipPip
  • 62 posts

Hello, gabybaby. My nickname is Nevan and I will be helping you getting your system back on its electronic feet.

Before we get started, please keep those things in mind:

  • Always read every part of my post carefully. If you don't, you may do something wrong and there could be more problems to solve.
  • If your security programs give you any warnings when using tools I asked you to, don't be afraid. Every tool I provide to you is 100% safe.
  • Only run tools that I ask you to. Some of them can be dangerous to your system as they have much power.
  • You should save or print my instructions. It is possible that we will be using Safe mode, which will cut you off from your internet connection and without access to them, you might be stuck.
  • Malware removal is a complicated process that takes multiple steps to be completed. Don't give up, be patient.
  • The tools we are going to use and your software may cause unwanted interactions. Because of that, I recommend you to make backups of any important files from your machine before proceeding as they might be lost.
  • I recommend you to stay with me until I tell you that we are done. It is important because when your system does not show any bad symptoms anymore it does not mean that it is 100% clean.
  • Your time to reply is limited. If you don't reply within 3 days, your topic will be closed and you will have to request it to be reopened by contacting one of Moderator group members with the link to this topic.
  • Every program I ask you to download should be saved to and run from desktop. If you don't know how to choose the direction of where a download is saved, check this site. You can also just copy these programs to your desktop manually and then run them from there.
  • Remember that the fixes I give you are only for your machine. Using it on other systems may (and probably will) cause problems.
  • Finally, if you have any questions or are unsure about something, just ask. I will not blame you for it. It is better to ask rather than regret it later.

Also, please note that I'm currently in training, so my answers to you will have to be checked first by an experienced helper before I can post them. This can lengthen the time between my answers to you, but in return you will have an extra person reviewing your log.

 
I'll now take a look at the log you've provided. I'll return with instructions once I'm done.

 

Thank you Nevan for your quick response and for your help.  I'm looking forward to your next post.


  • 0

#4
Nevan

Nevan

    Trusted Helper

  • Malware Removal
  • 1,765 posts

Hello gabybaby.

I'm missing one of the OTLs logs. It is called Extras.txt. It should be at the same place like OTL.txt was. If it isn't there, we will have to create a new one. To do that, please, do the following:

New Extras Log

  • Right click OTL.exe from your Desktop and click Run as administrator.
  • Make sure all other windows are closed
  • Click the None button.
  • Make sure that Extra Registry section is set to Use SafeList
    e0XirB3.png
  • Do NOT change any other settings
  • Click the V1sfhWG.png button
  • Wait for OTL to finish the scan.
  • When the scan is done, a new Extras.txt will be opened. If it won't, you should be able to find it at your desktop.
  • Select all (CTRL+A) the content of Extras.txt, copy it (CTRL+C) and paste (CTRL+V) it into your next reply.

 


  • 0

#5
gabybaby

gabybaby

    Member

  • Topic Starter
  • Member
  • PipPip
  • 62 posts

Hello Nevan,

 

Thank you again for your help.  Here are the logs that were generated after I followed your instructions:

 

OTL logfile created on: 10/30/2014 2:44:44 PM - Run 12
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Gabriel\Desktop
 Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17358)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
 
2.46 Gb Total Physical Memory | 1.19 Gb Available Physical Memory | 48.50% Memory free
18.08 Gb Paging File | 15.68 Gb Available in Paging File | 86.73% Paging File free
Paging file location(s): c:\pagefile.sys 16000 28170f:\pag [Binary data over 200 bytes]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 287.15 Gb Total Space | 52.74 Gb Free Space | 18.37% Space Free | Partition Type: NTFS
Drive F: | 1862.98 Gb Total Space | 1675.10 Gb Free Space | 89.91% Space Free | Partition Type: NTFS
Drive Q: | 9.77 Gb Total Space | 3.04 Gb Free Space | 31.13% Space Free | Partition Type: NTFS
 
Computer Name: GABRIEL-W500 | User Name: Gabriel | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days
 
< End of report >
 

OTL Extras logfile created on: 10/30/2014 2:44:44 PM - Run 12
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Gabriel\Desktop
 Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17358)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
 
2.46 Gb Total Physical Memory | 1.19 Gb Available Physical Memory | 48.50% Memory free
18.08 Gb Paging File | 15.68 Gb Available in Paging File | 86.73% Paging File free
Paging file location(s): c:\pagefile.sys 16000 28170f:\pag [Binary data over 200 bytes]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 287.15 Gb Total Space | 52.74 Gb Free Space | 18.37% Space Free | Partition Type: NTFS
Drive F: | 1862.98 Gb Total Space | 1675.10 Gb Free Space | 89.91% Space Free | Partition Type: NTFS
Drive Q: | 9.77 Gb Total Space | 3.04 Gb Free Space | 31.13% Space Free | Partition Type: NTFS
 
Computer Name: GABRIEL-W500 | User Name: Gabriel | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
 
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
 
========== Shell Spawning ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
========== Security Center Settings ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
========== System Restore Settings ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
 
========== Firewall Settings ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
 
========== Authorized Applications List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
 
 
========== Vista Active Open Ports Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0294BB2F-6178-459D-8C46-8D1C40D6AD6B}" = rport=445 | protocol=6 | dir=out | app=system | 
"{057550CC-1C7E-4C7B-A2F8-3A8DDC978C8C}" = lport=138 | protocol=17 | dir=in | app=system | 
"{08E024BB-596A-4DFF-A430-159062EB67CE}" = lport=10243 | protocol=6 | dir=in | app=system | 
"{19A5737B-0BEE-43C8-BCD3-3CC714AA4FD3}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{25B9D31D-64EC-44F5-900B-17177C3E5D3C}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{295EF879-34FC-4A05-A484-51AA1443280E}" = lport=445 | protocol=6 | dir=in | app=system | 
"{2FA65B31-3A9D-4C20-AFC6-469495F0EF44}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{3E3EC5CA-CE29-4C10-8A37-36C4AE37C985}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\google\chrome\application\chrome.exe | 
"{4084E937-EAAA-47EE-9520-7BE7CE434C09}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | 
"{493C902C-4F8A-4BB2-8B31-F6538AB206FA}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{4BF5EB07-06A2-40E2-B5B6-244EF5C49A0F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 | 
"{5456EA1E-AF45-48BD-9C96-AB99A6CCF1D9}" = lport=139 | protocol=6 | dir=in | app=system | 
"{59535797-A174-4FDE-BA6A-02C4A428489A}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{6364B77A-8796-4078-B3CC-5963A3E70B4F}" = rport=139 | protocol=6 | dir=out | app=system | 
"{6CD18362-333F-41F5-A12B-04B395CCD483}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{6EFD3216-D4DB-448C-81DA-E8838C66FFD2}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{7C7BD74E-D59D-40F9-8481-A74C4729E9DD}" = rport=138 | protocol=17 | dir=out | app=system | 
"{82453902-AD2D-4B9E-A465-956D9AB7D580}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | 
"{86444BB3-291D-4D31-A046-BB4AA3243C28}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{8EECCACA-B74F-42F5-9FF0-02FAB4707DB6}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | 
"{AE40FED3-FC28-40E1-BF9E-369C99682C0B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{AF8150A9-8B4A-4262-900E-D368942052B3}" = lport=2869 | protocol=6 | dir=in | app=system | 
"{B13DB15C-1925-4278-B5BE-6A6EC66E67CC}" = lport=2869 | protocol=6 | dir=in | app=system | 
"{B803A22F-0B58-4D6D-A355-B9BF19C6D894}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=c:\windows\system32\svchost.exe | 
"{BE10AB93-C4A6-464B-BE93-069E778BFF99}" = rport=10243 | protocol=6 | dir=out | app=system | 
"{C232D951-55E7-4D04-9346-F88A07FC0B22}" = lport=137 | protocol=17 | dir=in | app=system | 
"{C428A183-FD79-40B5-990D-895328F43AC8}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{C93D729B-4A84-4544-97F3-7F4F28F6C2DA}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | 
"{CF0676E6-E2EC-438A-9741-7029DEBD00CE}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{CFAF9F95-CAF0-4320-854D-8EB916C511DA}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | 
"{DF665AD8-AE27-4392-957B-F2B6E0FF4318}" = rport=2869 | protocol=6 | dir=out | app=system | 
"{F534D21D-02A4-4E48-A237-A3745ED5E6D3}" = rport=137 | protocol=17 | dir=out | app=system | 
"{F563812A-8090-4634-A00D-3E73AED0D46F}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office12\outlook.exe | 
"{F9C1EEE5-72B7-40C6-BC7C-64E9DF7DEB39}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
 
========== Vista Active Application Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{003C7A18-60D9-4C89-94D8-DE42C1AA1D76}" = protocol=58 | dir=in | [email protected],-28545 | 
"{02A4D600-582A-4C14-ADFE-C125CF0CB18F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{0E45170D-5819-4DB7-B7B5-E99D240BBC99}" = dir=in | app=c:\program files\mediamall\settingsmanager.exe | 
"{13776A41-4DC4-4C3A-A300-170CB38C40D0}" = protocol=6 | dir=in | app=c:\users\gabriel\appdata\local\akamai\netsession_win.exe | 
"{1473D86F-6F04-46A3-9153-CD04272511DC}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | 
"{180011EE-A61F-4538-97B2-E7CDFD858C31}" = protocol=17 | dir=in | app=c:\program files\gbridge llc\gbridge\gbridge.exe | 
"{271DBC56-D318-45E9-A4DF-7A07604589DA}" = protocol=17 | dir=in | app=c:\users\gabriel\appdata\local\akamai\netsession_win.exe | 
"{34599210-3EDD-498B-9180-56DFC598EB1D}" = protocol=58 | dir=in | [email protected],-148 | 
"{3C7AA982-A546-403D-BDAA-EE90447524AA}" = protocol=6 | dir=in | app=c:\users\gabriel\appdata\roaming\dropbox\bin\dropbox.exe | 
"{3E69E9B7-467E-4771-B04E-59A233C21269}" = dir=in | app=c:\program files\itunes\itunes.exe | 
"{47559D6D-D490-47F0-B7EF-437E79F35825}" = protocol=6 | dir=in | app=c:\program files\gbridge llc\gbridge\gbvncviewer.exe | 
"{4849799C-D8E9-4360-8F9A-6B5F2BCC7EA4}" = protocol=1 | dir=in | [email protected],-28543 | 
"{56E808A1-BFD0-4B79-B567-B9FA848D697F}" = protocol=1 | dir=out | [email protected],-28544 | 
"{57FA2485-3072-4DBA-8088-C3AB35911265}" = protocol=17 | dir=in | app=c:\program files\windows live\mesh\moe.exe | 
"{61FB8AD2-C831-45AB-9DFB-D685C3A8300D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{62F27534-2769-4D2F-B42F-E96E62F64F44}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{65901CFC-D156-4C8F-90EA-C26D256CA195}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{68F6992D-6E9D-4F14-88EC-3E0B8BEC7EFF}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{800313C8-C131-457B-8342-B43551B69BE9}" = protocol=6 | dir=in | app=c:\program files\gbridge llc\gbridge\gbwinvnc.exe | 
"{8642AF85-31DC-4BB3-8E9D-1E478C224084}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{8FB8212A-F88A-48B0-B4AC-DF69B503AD62}" = protocol=6 | dir=in | app=c:\program files\gbridge llc\gbridge\gbridge.exe | 
"{9A9F1549-BEDC-4E95-93AA-0332C4EEC8CB}" = protocol=17 | dir=in | app=c:\users\gabriel\appdata\roaming\dropbox\bin\dropbox.exe | 
"{A11EAADD-6796-4B45-8AEC-792968D20207}" = protocol=6 | dir=in | app=c:\program files\gbridge llc\gbridge\gbvncviewer.exe | 
"{A5589677-56C4-46C1-A86B-1F0B5425786F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{AB3FBA72-52C3-4476-9A38-230DBE05659B}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{AD917BAC-DCD6-4E59-B891-E1A82FBF7849}" = protocol=17 | dir=in | app=c:\program files\gbridge llc\gbridge\gbwinvnc.exe | 
"{B508B95B-E180-40DC-92F1-B7AE3EBDE9E1}" = protocol=17 | dir=in | app=c:\program files\gbridge llc\gbridge\gbvncviewer.exe | 
"{BC7833D1-AE4B-4CAB-BDD5-6EA587E5C763}" = protocol=6 | dir=out | app=system | 
"{CE504808-152F-4073-8BB9-0F8E7C4D30C6}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{D3648D1D-2BA3-4973-9B7E-EDC907B6E342}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{D4FF8E10-2712-46EA-A897-6E208FCEE968}" = protocol=17 | dir=in | app=c:\program files\gbridge llc\gbridge\gbwinvnc.exe | 
"{DB23A507-B671-4343-BD18-F341D673314B}" = protocol=6 | dir=in | app=c:\program files\gbridge llc\gbridge\gbwinvnc.exe | 
"{DE9A8581-3E3B-4868-96AA-A64125EF3887}" = protocol=6 | dir=in | app=c:\program files\windows live\mesh\moe.exe | 
"{E5B443E1-E7F6-4089-9BD6-7E254BCE50EA}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | 
"{E7782F01-EF7C-43FB-A2A4-BBC017087AED}" = protocol=17 | dir=in | app=c:\program files\gbridge llc\gbridge\gbvncviewer.exe | 
"{E8715BB0-E132-4617-B344-62E03BFE2C1C}" = protocol=58 | dir=out | [email protected],-28546 | 
"{E926E57D-011D-4F63-BCC5-FFCFDC28D091}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{E9627140-BE0F-457E-9E04-838792680E51}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | 
"{EFA98652-B437-42AA-B7D3-EFFD71ED4ECD}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{F35D9397-EA1E-4DAA-AD50-8212219E8BFD}" = protocol=6 | dir=in | app=c:\program files\skype\phone\skype.exe | 
"{F5E80D9D-4C80-4504-A767-F4CD4753C964}" = protocol=6 | dir=in | app=c:\program files\real\realplayer\rpds\bin\rpdsvc.exe | 
"{F7DCF881-DB9D-4779-8D1C-CCCBAC7C73FF}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{F9C20DA7-E385-4316-AA1A-07DB3217E897}" = protocol=17 | dir=in | app=c:\program files\skype\phone\skype.exe | 
"TCP Query User{0174147D-9B8C-4AE1-AF6C-8D142B8547BE}C:\program files\windows live\mesh\moe.exe" = protocol=6 | dir=in | app=c:\program files\windows live\mesh\moe.exe | 
"TCP Query User{AF27221D-E39A-4F6D-87A6-A4AA5ADCF26A}C:\users\gabriel\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\gabriel\appdata\local\akamai\netsession_win.exe | 
"TCP Query User{E939DBD7-D651-414C-BCBD-DCE69C5C4594}C:\program files\skype\phone\skype.exe" = protocol=6 | dir=in | app=c:\program files\skype\phone\skype.exe | 
"UDP Query User{62B4915E-5595-4ED4-90D9-95181E39676A}C:\program files\skype\phone\skype.exe" = protocol=17 | dir=in | app=c:\program files\skype\phone\skype.exe | 
"UDP Query User{83782936-10B6-49C8-B322-54BD0C09AF1A}C:\program files\windows live\mesh\moe.exe" = protocol=17 | dir=in | app=c:\program files\windows live\mesh\moe.exe | 
"UDP Query User{AE06A25A-1087-40F9-92F0-B1F8476C9AD0}C:\users\gabriel\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\gabriel\appdata\local\akamai\netsession_win.exe | 
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{00A61104-74B5-4056-AD00-4397EF4FB141}" = iCloud
"{00C6F231-1B18-C448-323A-56D1A0DB9C46}" = Catalyst Control Center Graphics Full New
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{04B34E21-5BEE-3D2B-8D3D-E3E80D253F64}" = Microsoft Visual C++ 2008 x86 ATL Runtime 9.0.30729
"{0718A90E-93AA-49AF-A4FE-0165ACD91DF0}" = iTunes
"{086F9A69-CD39-4893-A9FB-D3A0634CE3F7}" = Autodesk Content Service
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{111EE7DF-FC45-40C7-98A7-753AC46B12FB}" = QuickTime 7
"{14866AAD-1F23-39AC-A62B-7091ED1ADE64}" = Microsoft Visual C++ 2008 x86 CRT Runtime 9.0.30729
"{153DB567-6FF3-49AD-AC4F-86F8A3CCFDFB}" = Autodesk Design Review 2013
"{17504ED4-DB08-40A8-81C2-27D8C01581DA}" = Windows Live Remote Service Resources
"{17CBC505-D1AE-459D-B445-3D2000A85842}" = ThinkPad UltraNav Utility
"{17FB7811-87DD-53C4-3A56-7F7F37DCD802}" = Catalyst Control Center Graphics Previews Vista
"{18D47FA1-0440-48D3-A7E0-DA09537FF471}" = Apple Mobile Device Support
"{192359F3-D455-0C89-3161-766008BD6D10}" = CCC Help French
"{19A4A990-5343-4FF7-B3B5-6F046C091EDF}" = Windows Live Remote Client
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{1DF0C90D-0705-32EA-B4DB-341C311EBB93}" = ATI Catalyst Install Manager
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{1F8DA253-3C27-4B01-A63A-BA3533120833}" = Microsoft Research AutoCollage Touch 2009
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{227E8782-B2F4-4E97-B0EE-49DE9CC1C0C0}" = Windows Live Remote Service
"{247C5DDA-FFD7-44E0-8BF7-79BC80A0BF87}" = Windows Live Family Safety
"{25C64847-B900-48AD-A164-1B4F9B774650}" = System Update
"{26A24AE4-039D-4CA4-87B4-2F83216032FF}" = Java™ 6 Update 35
"{26A24AE4-039D-4CA4-87B4-2F83217040FF}" = Java 7 Update 71
"{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1
"{299C0434-4F4E-341F-A916-4E07AEB35E79}" = Microsoft Visual Studio Tools for Applications 2.0 Runtime
"{2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}" = Windows Live Messenger
"{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}" = Microsoft SQL Server 2005 Express Edition (MSSMLBIZ)
"{2D40C5BB-673F-4976-BD20-0835D4B32B8B}" = CrashPlan
"{2D440AF4-7330-43F0-A085-35DE1A90E703}" = Lenovo Fingerprint Software
"{2d588de7-f4f6-4d6d-8719-32cbb9637e9e}" = WD SmartWare Installer
"{2D6E3D97-1FDF-4993-AC75-72F59EC445C5}" = Windows Live Family Safety
"{31423F74-36B2-4d24-B10D-CD00BFB7C118}" = Intel® Turbo Memory
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{3521BDBD-D453-5D9F-AA55-44B75D214629}" = Adobe Community Help
"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX
"{405D8563-BDD7-487C-9498-942518B366BE}" = Setup Wizard SE
"{439A51F7-84B1-4603-BEC8-647EB2AC307F}" = WD Drive Utilities
"{446B2807-CF65-6D50-2BC8-141E235CD1CD}" = ccc-core-static
"{464B3406-A4D0-4914-910F-7CA4380DCC13}" = Windows Live Remote Client Resources
"{46A84694-59EC-48F0-964C-7E76E9F8A2ED}" = ThinkVantage Active Protection System
"{4903D172-DCCB-392F-93A3-34CA9D47FE3D}" = Microsoft .NET Framework 4.5.1
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B90093A-5D9C-3956-8ABB-95848BE6EFAD}" = Microsoft Visual C++ 2008 x86 OpenMP Runtime 9.0.30729
"{50120000-1105-0000-0000-0000000FF1CE}" = Microsoft Office 2007 Primary Interop Assemblies
"{50816F92-1652-4A7C-B9BC-48F682742C4B}" = Messenger Companion
"{50DC5136-21E8-48BC-97E5-1AD055F6B0B6}" = Create Recovery Media
"{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}" = Microsoft SQL Server Setup Support Files (English)
"{5783F2D7-0111-0409-0010-0060B0CE6BBA}" = Autodesk CAD Manager Tools
"{5783F2D7-A001-0409-0002-0060B0CE6BBA}" = AutoCAD 2012 - English
"{5783F2D7-A001-0409-1002-0060B0CE6BBA}" = AutoCAD 2012 Language Pack - English
"{5783F2D7-D028-0409-0000-0060B0CE6BBA}" = DWG TrueView 2014
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{57FA0525-01F9-4051-8DE9-CBF43CAC68D9}" = Catalyst Control Center - Branding
"{5A9AA2C0-972F-4239-AA41-E409434194D5}" = MobileMe Control Panel
"{60FFB3E0-6D5B-4D73-AE5B-07E58B83AF0C}" = 32 Bit HP CIO Components Installer
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{65420DC9-306E-4371-905F-F4DC3B418E52}" = Autodesk Material Library Base Resolution Image Library 2012
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6EE644CD-FC7F-424C-83EA-9C0285C4FB7F}" = WD SmartWare
"{6F6873E3-5C92-4049-B511-231A138DD090}" = Kaspersky Anti-Virus
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{717F5741-5C2E-4469-BDA0-B5EC2243646F}_is1" = TPFanControl v0.62
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{73ED3EA3-F96F-D098-7EE4-146FBD30113E}" = PX Profile Update
"{7670D32F-DAE6-4E49-8C8B-B3F08B5B1686}" = Microsoft SQL Server Native Client
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime
"{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}" = Windows Live Messenger Companion Core
"{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour
"{7C6DD158-A31F-5F0B-82A0-C28258CBB31F}" = CCC Help Japanese
"{7FBAD091-89F7-4C77-A224-15FF4423C7D2}" = RealDownloader
"{82EB6CEA-749A-410F-8AD2-372A286BA3BE}" = Integrated Camera Driver Installer Package Ver.1.27.500.0
"{83270912-15C7-4336-822E-E8F1B1BBCA60}" = WD Security
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{872D8B75-1B00-E5AD-22DD-DA74CA237C7C}" = CCC Help Chinese Standard
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E363055-15E5-4D8A-9C69-A0A9DE9A3337}" = UxStyle Core Beta
"{8F0837C2-EE09-4903-88F3-1976FE7FFF4E}" = Autodesk Material Library 2012
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120000-0015-0409-0000-0000000FF1CE}_PROHYBRIDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_PROHYBRIDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_PROHYBRIDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
"{90120000-0019-0409-0000-0000000FF1CE}_PROHYBRIDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}_PROHYBRIDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_PROHYBRIDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_PROHYBRIDR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_PROHYBRIDR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_PROHYBRIDR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_PROHYBRIDR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_PROHYBRIDR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
"{90120000-0117-0409-0000-0000000FF1CE}_PROHYBRIDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager and Intel® Turbo Memory
"{90A40409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office 2003 Web Components
"{91120000-0031-0000-0000-0000000FF1CE}" = Microsoft Office Professional Hybrid 2007
"{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{91B7B957-0F45-4BDC-85BA-08F80D49B9BC}" = Mobile Broadband Connect
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95140000-007A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook Connector
"{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}" = FARO LS 1.1.406.58
"{97C82B44-D408-4F14-9252-47FC1636D23E}_is1" = IZArc 4.1
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9B0B15A5-DDCB-BD52-DF23-0FB44A59B903}" = ccc-utility
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9CA0DEE4-E84B-466F-9B96-FC255F3A929F}" = Integrated Camera TWAIN
"{9D318C86-AF4C-409F-A6AC-7183FF4CF424}" = Internet TV for Windows Media Center
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}" = ThinkPad Bluetooth with Enhanced Data Rate Software
"{A0C91188-C88F-4E86-93E6-CD7C9A266649}" = Windows Live Mesh
"{A34D0CB7-38BC-2C6D-270E-84BF07DB7CCB}" = Catalyst Control Center Graphics Light
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A939D341-5A04-4E0A-BB55-3E65B386432D}" = Microsoft Office Small Business Connectivity Components
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}" = Microsoft Visual Studio Tools for Applications 2.0 - ENU
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAECF7BA-E83B-4A10-87EA-DE0B333F8734}" = RealNetworks - Microsoft Visual C++ 2010 Runtime
"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
"{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI (11.0.09)
"{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9
"{AF844339-2F8A-4593-81B3-9F4C54038C4E}" = Windows Live MIME IFilter
"{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}" = DirectX 9 Runtime
"{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0
"{B32C4059-6E7A-41EF-AD20-56DF1872B923}" = Business Contact Manager for Outlook 2007 SP2
"{B334D9AE-1393-423E-97C0-3BDC3360E692}" = Sonic Icons for Lenovo
"{B383F243-0ABC-4E56-AA30-923B8D85076E}" = Rescue and Recovery
"{B42E259C-E4D4-37F1-A1B2-EB9C4FC5A04D}" = Microsoft Visual C++ 2008 x86 MFC Runtime 9.0.30729
"{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86
"{B8909A6F-E372-4ABE-8882-91F8D13D81F1}" = JC-AM100
"{B99D0112-5508-59BD-B80E-4049E907845C}" = CCC Help Chinese Traditional
"{C6150D8A-86ED-41D3-87BB-F3BB51B0B77F}" = Windows Live ID Sign-in Assistant
"{C64A877E-DF8D-4017-AA82-000A77C6D809}" = Verizon Wireless Mobile Broadband Self Activation
"{C6579A65-9CAE-4B31-8B6B-3306E0630A66}" = Apple Software Update
"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
"{C6FA39A7-26B1-480A-BC74-6D17531AC222}" = Access Help
"{CB5B4945-AA4C-5A32-D6EC-0365F6DC0C41}" = Catalyst Control Center Core Implementation
"{CD49E43B-88B1-48AD-A3AF-43FAAAB41CB8}" = Autodesk Design Review Browser Add-on v1.2 
"{CD95F661-A5C4-44F5-A6AA-ECDD91C240BD}" = WinZip 14.5
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CFD73A7D-FD9E-4B15-8F60-FE41DDF84CC2}" = Structural Systems
"{CFF8B8E8-E086-4DE0-935F-FE22CAB54F80}" = Microsoft Search Enhancement Pack
"{D00A26B4-CFAD-373C-8A62-4408AA382451}" = CCC Help Dutch
"{D0A3A97D-7918-4B0B-B91E-775E00C36122}" = WD Quick View
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D3A80508-CD83-4CA3-8671-914A1BC78B61}" = Microsoft Sync Framework 2.0 Provider Services (x86) ENU 
"{D4001570-E33E-5B45-7BB6-B0AD9E08788C}" = CCC Help German
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D75AEB5B-FA18-4BD4-9EED-54CA46DB5AE8}" = Intel® PROSet/Wireless WiFi Software
"{D81486A1-2371-4059-AC70-1AB894AC96E6}" = AT&T Service Activation
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{D984A74E-DFB9-B6A2-C863-732A551F8FB2}" = Catalyst Control Center Localization All
"{D9DAD0FF-495A-472B-9F10-BAE430A26682}" = Apple Application Support
"{DAA3DC12-2A82-0866-B3E1-8BCFF6EC5715}" = CCC Help Korean
"{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}" = ThinkPad Power Manager
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E0A160F1-127B-43AC-AF96-EBB6319B01C7}" = Google SketchUp Pro 8
"{E1EA855E-9187-4AFB-E7A9-FE655B48386B}" = CCC Help English
"{E276D6EE-9FB5-8456-633A-603893C8F539}" = CCC Help Portuguese
"{E2773E0C-BD2A-D110-F209-0C3E1118009E}" = CCC Help Spanish
"{E3AE96D6-E196-45B4-AF62-2B41998B9E37}" = UpdateService
"{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}" = Microsoft Office Suite Activation Assistant
"{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
"{E64E7F6F-952D-44EA-880C-97FF32B88D22}" = ProjectDox Components
"{E7084B89-69E0-46B3-A118-8F99D06988CD}" = Microsoft SQL Server VSS Writer
"{EFB21DE7-8C19-4A88-BB28-A766E16493BC}" = Adobe Photoshop CS
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F1B03D1F-29B4-86D7-DCF5-8C2DCE13B05E}" = CCC Help Italian
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}" = Microsoft Office Live Add-in 1.5
"{F65525AB-4B63-AC34-BE4A-08CA24FC1414}" = Catalyst Control Center Graphics Full Existing
"{F67714D1-6842-EACA-C159-D25B947FA380}" = Catalyst Control Center InstallProxy
"{F932659E-6B83-1BF6-C10D-5F722F33C175}" = CCC Help Swedish
"{FD331A3B-F7A5-4C31-B8D4-DF413C85AF7A}" = Message Center Plus
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"{FF63121D-91C6-42CC-B341-F1AA729728E7}" = Microsoft Sync Framework 2.0 Core Components (x86) ENU 
"112AA64E0C8CC704E307FE914F7DEC1C0035598E" = Windows Driver Package - Lenovo 1.55 (08/18/2009 1.55)
"1FBDB507F002A372EB195A0ACF6E2A2F9D34689E" = Windows Driver Package - Ricoh Company (rismxdp) hdc  (09/03/2009 6.10.01.05)
"5F72B7FA1792CB768F6A46E18A9DAD0E1FE1C863" = Windows Driver Package - Ricoh Company (rimsptsk) hdc  (09/03/2009 6.10.01.05)
"8E6CE26AD682E6D46DCCDD39CD93277A2EAF2449" = Windows Driver Package - AuthenTec Inc. (ATSwpWDF) Biometric  (07/07/2009 8.1.2.56)
"Adobe SVG Viewer" = Adobe SVG Viewer 3.0
"Aide PDF to DXF Converter_is1" = Aide PDF to DXF Converter 9.6
"ATI Uninstaller" = ATI Uninstaller
"AudibleManager" = AudibleManager
"AutoCAD 2012 - English" = AutoCAD 2012 - English
"Autodesk Design Review 2013" = Autodesk Design Review 2013
"Business Contact Manager" = Business Contact Manager for Outlook 2007 SP2
"CCleaner" = CCleaner
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"CNXT_AUDIO_HDA" = Conexant 20561 SmartAudio HD
"CNXT_MODEM_HDA_HSF" = ThinkPad Modem Adapter
"D50474ACAF488895A3CE5D30373288EA6AD46EAA" = Windows Driver Package - Ricoh Company MMC Host Controller (09/03/2009 6.10.01.05)
"DWG TrueView 2014" = Autodesk DWG TrueView 2014
"E59560E2F5B162D40255FCD327ACA5E989D995D2" = Windows Driver Package - Ricoh (5U875UVC) Image  (07/08/2009 1.27.500.0)
"E7B58217635B8F723D4744A328A4B3237DB35FA9" = Windows Driver Package - Intel System  (06/04/2009 1.0.0.0002)
"EnablePS" = Registry Patch to Enable Maximum Power Saving on WiFi Adapters for Windows 7
"EPSON Printer and Utilities" = EPSON Printer Software
"EPSON Scanner" = EPSON Scan
"Gbridge" = Gbridge (remove only)
"Google Chrome" = Google Chrome
"HECI" = Intel® Management Engine Interface
"InstallWIX_{6F6873E3-5C92-4049-B511-231A138DD090}" = Kaspersky Anti-Virus
"Lenovo Welcome_is1" = Lenovo Welcome
"LENOVO.SMIIF" = Lenovo System Interface Driver
"Lightspeed!" = Lightspeed Screensaver  (Remove only)
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware version 2.0.3.1025
"MassPlus v3.0" = MassPlus v3.0
"MESOL" = Intel® Active Management Technology
"Microsoft SQL Server 2005" = Microsoft SQL Server 2005
"OnScreenDisplay" = On Screen Display
"PC-Doctor for Windows" = Lenovo ThinkVantage Toolbox
"Power Management Driver" = Lenovo Power Management Driver
"PROHYBRIDR" = 2007 Microsoft Office system
"ProInst" = Intel PROSet Wireless
"PROSet" = Intel® Network Connections Drivers
"RealPlayer 17.0" = RealPlayer Cloud
"Simpson AutoCAD Menu" = Simpson AutoCAD Menu
"Simpson Strong-Tie Drawings" = Simpson Strong-Tie Drawings
"ST6UNST #1" = STEELPro Version 1.1  By Redem Legaspi
"SuperPurge Lite" = SuperPurge Lite
"SynTPDeinstKey" = ThinkPad UltraNav Driver
"ThinkPad FullScreen Magnifier" = ThinkPad FullScreen Magnifier
"W7DevOR" =  Registry Patch to arrange icons in Device and Printers folder of Windows 7
"Winamp" = Winamp
"WinLiveSuite" = Windows Live Essentials
"WinRAR archiver" = WinRAR archiver
 
========== HKEY_CURRENT_USER Uninstall List ==========
 
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Akamai" = Akamai NetSession Interface
"Dropbox" = Dropbox
"Winamp Detect" = Winamp Detector Plug-in
 
========== Last 20 Event Log Errors ==========
 
[ Application Events ]
Error - 10/28/2014 11:07:06 AM | Computer Name = Gabriel-W500 | Source = Application Error | ID = 1000
Description = Faulting application name: MobileMeServices.exe, version: 1.6.65.0,
 time stamp: 0x4cafa71a  Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409,
 time stamp: 0x531599f6  Exception code: 0xc06d007e  Fault offset: 0x0000812f  Faulting
 process id: 0x1e54  Faulting application start time: 0x01cff2c0d3971aab  Faulting application
 path: C:\Program Files\Common Files\Apple\Mobile Device Support\MobileMeServices.exe
Faulting
 module path: C:\Windows\system32\KERNELBASE.dll  Report Id: 14259020-5eb4-11e4-9de7-506313c79f75
 
Error - 10/28/2014 11:08:05 AM | Computer Name = Gabriel-W500 | Source = Application Error | ID = 1000
Description = Faulting application name: MobileMeServices.exe, version: 1.6.65.0,
 time stamp: 0x4cafa71a  Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409,
 time stamp: 0x531599f6  Exception code: 0xc06d007e  Fault offset: 0x0000812f  Faulting
 process id: 0x148  Faulting application start time: 0x01cff2c0f90c2bde  Faulting application
 path: C:\Program Files\Common Files\Apple\Mobile Device Support\MobileMeServices.exe
Faulting
 module path: C:\Windows\system32\KERNELBASE.dll  Report Id: 37510ed0-5eb4-11e4-9de7-506313c79f75
 
Error - 10/29/2014 4:28:05 AM | Computer Name = Gabriel-W500 | Source = SideBySide | ID = 16842785
Description = Activation context generation failed for "c:\Program Files\Lenovo\System
 Update\Installer64.exe".  Dependent Assembly Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"
 could not be found.  Please use sxstrace.exe for detailed diagnosis.
 
Error - 10/29/2014 1:50:53 PM | Computer Name = Gabriel-W500 | Source = Application Error | ID = 1000
Description = Faulting application name: MobileMeServices.exe, version: 1.6.65.0,
 time stamp: 0x4cafa71a  Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409,
 time stamp: 0x531599f6  Exception code: 0xc06d007e  Fault offset: 0x0000812f  Faulting
 process id: 0xfc8  Faulting application start time: 0x01cff3a0e003b653  Faulting application
 path: C:\Program Files\Common Files\Apple\Mobile Device Support\MobileMeServices.exe
Faulting
 module path: C:\Windows\system32\KERNELBASE.dll  Report Id: 1fca3831-5f94-11e4-86b8-506313c79f75
 
Error - 10/29/2014 1:51:49 PM | Computer Name = Gabriel-W500 | Source = Application Error | ID = 1000
Description = Faulting application name: MobileMeServices.exe, version: 1.6.65.0,
 time stamp: 0x4cafa71a  Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409,
 time stamp: 0x531599f6  Exception code: 0xc06d007e  Fault offset: 0x0000812f  Faulting
 process id: 0x9f8  Faulting application start time: 0x01cff3a10268b868  Faulting application
 path: C:\Program Files\Common Files\Apple\Mobile Device Support\MobileMeServices.exe
Faulting
 module path: C:\Windows\system32\KERNELBASE.dll  Report Id: 416c0970-5f94-11e4-86b8-506313c79f75
 
Error - 10/30/2014 5:05:15 AM | Computer Name = Gabriel-W500 | Source = SideBySide | ID = 16842785
Description = Activation context generation failed for "c:\Program Files\Lenovo\System
 Update\Installer64.exe".  Dependent Assembly Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"
 could not be found.  Please use sxstrace.exe for detailed diagnosis.
 
Error - 10/30/2014 2:26:53 PM | Computer Name = Gabriel-W500 | Source = Application Error | ID = 1000
Description = Faulting application name: MobileMeServices.exe, version: 1.6.65.0,
 time stamp: 0x4cafa71a  Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409,
 time stamp: 0x531599f6  Exception code: 0xc06d007e  Fault offset: 0x0000812f  Faulting
 process id: 0x3098  Faulting application start time: 0x01cff46f11ba93bf  Faulting application
 path: C:\Program Files\Common Files\Apple\Mobile Device Support\MobileMeServices.exe
Faulting
 module path: C:\Windows\system32\KERNELBASE.dll  Report Id: 5212498e-6062-11e4-9b35-506313c79f75
 
Error - 10/30/2014 2:27:28 PM | Computer Name = Gabriel-W500 | Source = Application Error | ID = 1000
Description = Faulting application name: MobileMeServices.exe, version: 1.6.65.0,
 time stamp: 0x4cafa71a  Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409,
 time stamp: 0x531599f6  Exception code: 0xc06d007e  Fault offset: 0x0000812f  Faulting
 process id: 0x1a90  Faulting application start time: 0x01cff46f2836249d  Faulting application
 path: C:\Program Files\Common Files\Apple\Mobile Device Support\MobileMeServices.exe
Faulting
 module path: C:\Windows\system32\KERNELBASE.dll  Report Id: 6692d551-6062-11e4-9b35-506313c79f75
 
Error - 10/30/2014 5:43:59 PM | Computer Name = Gabriel-W500 | Source = Application Hang | ID = 1002
Description = The program OTL.exe version 3.2.69.0 stopped interacting with Windows
 and was closed. To see if more information about the problem is available, check
 the problem history in the Action Center control panel.    Process ID: 2104    Start Time:
 01cff489b0686ded    Termination Time: 0    Application Path: C:\Users\Gabriel\Desktop\OTL.exe
 
Report
 Id:   
 
Error - 10/30/2014 5:44:33 PM | Computer Name = Gabriel-W500 | Source = Application Hang | ID = 1002
Description = The program OTL.exe version 3.2.69.0 stopped interacting with Windows
 and was closed. To see if more information about the problem is available, check
 the problem history in the Action Center control panel.    Process ID: 34f8    Start Time:
 01cff48aa130accb    Termination Time: 15    Application Path: C:\Users\Gabriel\Desktop\OTL.exe
 
Report
 Id:   
 
[ Lenovo-Message Center Plus/Admin Events ]
Error - 2/27/2010 12:03:30 PM | Computer Name = Gabriel-W500 | Source = Lenovo-Message Center Plus/Admin | ID = 2
Description = Object reference not set to an instance of an object. -> Exception
 message: Object reference not set to an instance of an object.
 
Error - 3/22/2010 10:54:20 PM | Computer Name = Gabriel-W500 | Source = Lenovo-Message Center Plus/Admin | ID = 2
Description = Object reference not set to an instance of an object. -> Exception
 message: Object reference not set to an instance of an object.
 
Error - 5/29/2010 3:04:59 PM | Computer Name = Gabriel-W500 | Source = Lenovo-Message Center Plus/Admin | ID = 2
Description = Object reference not set to an instance of an object. -> Exception
 message: Object reference not set to an instance of an object.
 
Error - 7/21/2010 7:40:18 AM | Computer Name = Gabriel-W500 | Source = Lenovo-Message Center Plus/Admin | ID = 2
Description = Object reference not set to an instance of an object. -> Exception
 message: Object reference not set to an instance of an object.
 
Error - 6/3/2011 3:52:13 AM | Computer Name = Gabriel-W500 | Source = Lenovo-Message Center Plus/Admin | ID = 2
Description = Object reference not set to an instance of an object. -> Exception
 message: Object reference not set to an instance of an object.
 
Error - 6/20/2011 3:27:31 AM | Computer Name = Gabriel-W500 | Source = Lenovo-Message Center Plus/Admin | ID = 2
Description = Object reference not set to an instance of an object. -> Exception
 message: Object reference not set to an instance of an object.
 
Error - 2/23/2013 4:11:13 AM | Computer Name = Gabriel-W500 | Source = Lenovo-Message Center Plus/Admin | ID = 2
Description = Object reference not set to an instance of an object. -> Exception
 message: Object reference not set to an instance of an object.
 
Error - 3/2/2013 5:22:50 AM | Computer Name = Gabriel-W500 | Source = Lenovo-Message Center Plus/Admin | ID = 2
Description = DirectoryNotFoundException -> Exception message: Could not find a 
part of the path 'C:\ProgramData\Lenovo\MessageCenterPlus\LocalRepository\Messages\SeedDB\SeedDB.tag'.
 
Error - 3/2/2013 5:22:50 AM | Computer Name = Gabriel-W500 | Source = Lenovo-Message Center Plus/Admin | ID = 2
Description = Could not find a part of the path 'C:\ProgramData\Lenovo\MessageCenterPlus\LocalRepository\Messages\SeedDB'.
 -> Exception message: Could not find a part of the path 'C:\ProgramData\Lenovo\MessageCenterPlus\LocalRepository\Messages\SeedDB'.
 
Error - 4/16/2013 3:49:46 AM | Computer Name = Gabriel-W500 | Source = Lenovo-Message Center Plus/Admin | ID = 2
Description = Object reference not set to an instance of an object. -> Exception
 message: Object reference not set to an instance of an object.
 
[ Media Center Events ]
Error - 11/23/2010 12:23:01 PM | Computer Name = Gabriel-W500 | Source = MCUpdate | ID = 0
Description = 8:22:56 AM - Error connecting to the internet.  8:22:56 AM -     Unable
 to contact server..  
 
Error - 11/23/2010 1:23:10 PM | Computer Name = Gabriel-W500 | Source = MCUpdate | ID = 0
Description = 9:23:10 AM - Error connecting to the internet.  9:23:10 AM -     Unable
 to contact server..  
 
Error - 11/23/2010 1:23:17 PM | Computer Name = Gabriel-W500 | Source = MCUpdate | ID = 0
Description = 9:23:15 AM - Error connecting to the internet.  9:23:15 AM -     Unable
 to contact server..  
 
Error - 11/23/2010 2:23:37 PM | Computer Name = Gabriel-W500 | Source = MCUpdate | ID = 0
Description = 10:23:36 AM - Error connecting to the internet.  10:23:36 AM -     Unable
 to contact server..  
 
Error - 11/23/2010 2:23:53 PM | Computer Name = Gabriel-W500 | Source = MCUpdate | ID = 0
Description = 10:23:42 AM - Error connecting to the internet.  10:23:42 AM -     Unable
 to contact server..  
 
Error - 11/23/2010 3:24:00 PM | Computer Name = Gabriel-W500 | Source = MCUpdate | ID = 0
Description = 11:24:00 AM - Error connecting to the internet.  11:24:00 AM -     Unable
 to contact server..  
 
Error - 11/23/2010 3:24:07 PM | Computer Name = Gabriel-W500 | Source = MCUpdate | ID = 0
Description = 11:24:05 AM - Error connecting to the internet.  11:24:05 AM -     Unable
 to contact server..  
 
Error - 11/23/2010 11:21:32 PM | Computer Name = Gabriel-W500 | Source = MCUpdate | ID = 0
Description = 7:21:32 PM - Error connecting to the internet.  7:21:32 PM -     Unable
 to contact server..  
 
Error - 11/23/2010 11:21:39 PM | Computer Name = Gabriel-W500 | Source = MCUpdate | ID = 0
Description = 7:21:37 PM - Error connecting to the internet.  7:21:37 PM -     Unable
 to contact server..  
 
Error - 6/11/2011 6:51:54 AM | Computer Name = Gabriel-W500 | Source = MCUpdate | ID = 0
Description = 3:51:54 AM - Failed to retrieve SportsSchedule (Error: The underlying
 connection was closed: Could not establish trust relationship for the SSL/TLS secure
 channel.)  
 
[ OSession Events ]
Error - 6/4/2011 4:41:19 PM | Computer Name = Gabriel-W500 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
 12.0.6550.5004, Microsoft Office Version: 12.0.6425.1000. This session lasted 4
 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error - 6/7/2011 2:15:55 PM | Computer Name = Gabriel-W500 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 3
 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error - 6/15/2011 12:12:24 PM | Computer Name = Gabriel-W500 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
 12.0.6550.5004, Microsoft Office Version: 12.0.6425.1000. This session lasted 2
 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error - 6/20/2011 4:10:24 PM | Computer Name = Gabriel-W500 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
 12.0.6557.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 3
 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error - 7/18/2011 9:31:19 AM | Computer Name = Gabriel-W500 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
 12.0.6557.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 2
 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error - 10/7/2011 2:32:12 PM | Computer Name = Gabriel-W500 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
 12.0.6565.5003, Microsoft Office Version: 12.0.6425.1000. This session lasted 3
 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error - 5/15/2012 1:08:54 AM | Computer Name = Gabriel-W500 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
 12.0.6607.1000, Microsoft Office Version: 12.0.6612.1000. This session lasted 11
 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error - 5/15/2012 1:10:48 AM | Computer Name = Gabriel-W500 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
 12.0.6607.1000, Microsoft Office Version: 12.0.6612.1000. This session lasted 8
 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error - 3/28/2013 2:48:13 PM | Computer Name = Gabriel-W500 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
 12.0.6665.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 40
 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error - 3/18/2014 6:39:33 PM | Computer Name = Gabriel-W500 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
 12.0.6680.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 7270
 seconds with 540 seconds of active time.  This session ended with a crash.
 
[ System Events ]
Error - 10/30/2014 3:50:56 PM | Computer Name = Gabriel-W500 | Source = ipnathlp | ID = 31004
Description = 
 
Error - 10/30/2014 4:13:18 PM | Computer Name = Gabriel-W500 | Source = ipnathlp | ID = 31004
Description = 
 
Error - 10/30/2014 4:24:46 PM | Computer Name = Gabriel-W500 | Source = ipnathlp | ID = 31004
Description = 
 
Error - 10/30/2014 4:43:19 PM | Computer Name = Gabriel-W500 | Source = ipnathlp | ID = 34001
Description = 
 
Error - 10/30/2014 4:55:26 PM | Computer Name = Gabriel-W500 | Source = ipnathlp | ID = 34001
Description = 
 
Error - 10/30/2014 5:00:25 PM | Computer Name = Gabriel-W500 | Source = ipnathlp | ID = 31004
Description = 
 
Error - 10/30/2014 5:11:17 PM | Computer Name = Gabriel-W500 | Source = ipnathlp | ID = 31004
Description = 
 
Error - 10/30/2014 5:20:16 PM | Computer Name = Gabriel-W500 | Source = ipnathlp | ID = 31004
Description = 
 
Error - 10/30/2014 5:33:08 PM | Computer Name = Gabriel-W500 | Source = ipnathlp | ID = 34001
Description = 
 
Error - 10/30/2014 5:45:15 PM | Computer Name = Gabriel-W500 | Source = ipnathlp | ID = 34001
Description = 
 
 
< End of report >
 

  • 0

#6
Nevan

Nevan

    Trusted Helper

  • Malware Removal
  • 1,765 posts
There's some good news. Your system is malware-free. The thing is that we now have to find out what's causing the slowness of the system.

Please follow these instructions to perform a clean boot:
  • Click Start, type Msconfig in the Search box and select the programme that appears at the top.
  • In the System Configuration Utility dialog box, click Selective Startup on the General tab.
    Cleanboot1.JPG
  • Click to clear the Load Startup Items check box.
    Note: The Use Original Boot.ini check box is unavailable.
  • Click the Services tab.
  • Click to select the Hide All Microsoft Services check box.
    cleanboot2.JPG
  • Click Disable All, and then click OK.
  • When you are prompted, click Restart.
Once done, please check how the system's working in this case - if the browsers are still crashing, etc.

 
After you're done with checking, undo the clean boot settings by doing these steps:
  • Click Start, type msconfig.exe in the Search box, and then press Enter.
    Note: If you are prompted for an administrator password or for confirmation, you should type the password or click Continue.
  • On the General tab, click the Normal Startup option, and then click OK.
  • When you are prompted to restart the computer, click Restart.
When you're back in the normal boot mode, tell me if you had any problems when using the system in clean boot.
  • 0

#7
gabybaby

gabybaby

    Member

  • Topic Starter
  • Member
  • PipPip
  • 62 posts
Hello Nevan,
 
Thank you for your message and for your help.  Good news about no malware.
 
I did what you instructed and rebooted and I still was having the same issues with shockwave flash crashing - getting Aw, Snap! pages in Chrome.
 
Once back in normal boot mode, it was stable for a while, so I waited before responding to you about how it was working.  Just now a page on Chrome became unresponsive, another Aw, Snap!
 
I guess that means that whatever is wrong still is.

  • 0

#8
Nevan

Nevan

    Trusted Helper

  • Malware Removal
  • 1,765 posts

Hello gabybaby.

Your current problems are most likely caused by low amount of available memory, so you should consider upgrading it.
If you think you're ready for memory upgrade, but don't know where to start, you can use Crucial System Scanner. It will show you some examples of memory modules that will fit into your PC and their prices.

 
I'd also like to have another look at the system.

FRST Scan
 

  • Download Farbar Recovery Scan Tool and save it to your Desktop.
  • Right click FRST.exe and click Run as administrator. When the tool opens click Yes to disclaimer.
  • Make sure that Addition.txt is checked and press the Scan button.
  • It will produce two logs - one called FRST.txt and another one called Addition.txt in the same directory the tool is run from.
  • Select all (CTRL+A) the content of the logs, copy them (CTRL+C) and paste (CTRL+V) them into your next reply.

 
Things that should appear in your next post:

  • FRST.txt log content
  • Addition.txt log content

 


  • 0

#9
gabybaby

gabybaby

    Member

  • Topic Starter
  • Member
  • PipPip
  • 62 posts

Hello Nevan,

 

Thank you for your continued help - it is most appreciated.

 

Here are the logs you requested:

 

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 01-11-2014
Ran by Gabriel (administrator) on GABRIEL-W500 on 01-11-2014 07:44:20
Running from C:\Users\Gabriel\Desktop
Loaded Profile: Gabriel (Available profiles: Gabriel)
Platform: Microsoft Windows 7 Professional  Service Pack 1 (X86) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
() C:\Windows\System32\DTS.exe
(Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(AuthenTec, Inc.) C:\Windows\System32\AtService.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(The Within Network, LLC) C:\Windows\UnsignedThemesSvc.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
() C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avp.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(CrashPlan) C:\Program Files\CrashPlan\CrashPlanService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
() C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
(RealNetworks, Inc.) C:\Program Files\real\realplayer\RPDS\Bin\rpdsvc.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avpui.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
() C:\Program Files\real\UpdateService\RealPlayerUpdateSvc.exe
(Nullsoft, Inc.) C:\Program Files\Winamp\winampa.exe
(Western Digital Technologies, Inc.) C:\Program Files\Western Digital\WD Quick View\WDDMStatus.exe
(Western Digital) C:\Program Files\Western Digital\WD Security\WDDriveAutoUnlock.exe
(Lenovo.) C:\Windows\System32\TpShocks.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
(troubadix) C:\Program Files\TPFanControl\TPFanControl.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
(RealNetworks, Inc.) C:\Program Files\real\realplayer\Update\realsched.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ZOOM\TpScrex.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(PixArt Imaging Incorporation) C:\Windows\PixArt\Pac7302\Monitor.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
() C:\Program Files\Lenovo\Message Center Plus\MCPLaunch.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpfnf6r.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
() C:\Program Files\Gbridge LLC\Gbridge\pstartw.exe
(Akamai Technologies, Inc.) C:\Users\Gabriel\AppData\Local\Akamai\netsession_win.exe
(Gbridge LLC) C:\Program Files\Gbridge LLC\Gbridge\Gbridge.exe
(Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe
(Akamai Technologies, Inc.) C:\Users\Gabriel\AppData\Local\Akamai\netsession_win.exe
(Code 42 Software, Inc.) C:\Program Files\CrashPlan\CrashPlanTray.exe
(Avanquest Software ) C:\Program Files\Digital Line Detect\DLG.exe
(RealNetworks, Inc.) C:\Program Files\real\realplayer\RPDS\Bin\rpsystray.exe
(Dropbox, Inc.) C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Intel® Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Western Digital Technologies, Inc.) C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Western Digital Technologies, Inc.) C:\Program Files\Western Digital\WD SmartWare\WDBackupEngine.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe
(Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTStackServer.exe
(Intel Corporation) C:\Program Files\Intel\AMT\LMS.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\System Update\SUService.exe
(Lenovo Group Limited) C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe
(Intel Corporation) C:\Program Files\Common Files\Intel\Privacy Icon\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\System32\prevhost.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Reader 11.0\Reader\AcroRd32.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Reader 11.0\Reader\AcroRd32.exe
(Autodesk, Inc.) C:\Program Files\Autodesk\AutoCAD 2012 - English\acad.exe
(Flexera Software, Inc.) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
(Autodesk, Inc.) C:\Program Files\Common Files\Autodesk Shared\WSCommCntr3\lib\WSCommCntr3.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\cmd.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\plugin-nm-server.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
 
 
==================== Registry (Whitelisted) ==================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [WinampAgent] => C:\Program Files\Winamp\winampa.exe [37888 2010-01-13] (Nullsoft, Inc.)
HKLM\...\Run: [WD Quick View] => C:\Program Files\Western Digital\WD Quick View\WDDMStatus.exe [5562736 2014-07-22] (Western Digital Technologies, Inc.)
HKLM\...\Run: [WD Drive Unlocker] => C:\Program Files\Western Digital\WD Security\WDDriveAutoUnlock.exe [1688008 2012-06-13] (Western Digital)
HKLM\...\Run: [TpShocks] => C:\Windows\system32\TpShocks.exe [337184 2009-07-08] (Lenovo.)
HKLM\...\Run: [TPHOTKEY] => C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe [68976 2009-03-13] (Lenovo Group Limited)
HKLM\...\Run: [TPFanControl] => C:\Program Files\TPFanControl\TPFanControl.exe [154112 2013-03-20] (troubadix)
HKLM\...\Run: [TkBellExe] => C:\Program Files\real\realplayer\update\realsched.exe [296520 2014-10-19] (RealNetworks, Inc.)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [271744 2014-09-26] (Oracle Corporation)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM\...\Run: [PWMTRV] => rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\PWMTR32V.DLL,PwrMgrBkGndMonitor
HKLM\...\Run: [picon] => C:\Program Files\Common Files\Intel\Privacy Icon\PrivacyIconClient.exe [358424 2009-08-03] (Intel Corporation)
HKLM\...\Run: [PAC7302_Monitor] => C:\Windows\PixArt\PAC7302\Monitor.exe [319488 2006-11-03] (PixArt Imaging Incorporation)
HKLM\...\Run: [Message Center Plus] => C:\Program Files\LENOVO\Message Center Plus\MCPLaunch.exe [49976 2009-05-27] ()
HKLM\...\Run: [LENOVO.TPFNF6R] => C:\Program Files\Lenovo\HOTKEY\TPFNF6R.exe [62752 2009-08-19] (Lenovo Group Limited)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)
HKLM\...\Run: [IaNvSrv] => C:\Program Files\Intel\Intel Matrix Storage Manager\OROM\IaNvSrv\IaNvSrv.exe [33304 2009-08-19] (Intel Corporation)
HKLM\...\Run: [IAAnotif] => C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-08-06] (Intel Corporation)
HKLM\...\Run: [FingerPrintSoftware] => C:\Program Files\Lenovo Fingerprint Software\fpapp.exe [1582328 2009-09-01] (AuthenTec)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-04-23] (Apple Inc.)
HKLM\...\Run: [AppleSyncNotifier] => C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [59240 2012-02-23] (Apple Inc.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKU\S-1-5-21-3248881932-903285841-3063169814-1003\...\Run: [Gbridge] => C:\Program Files\Gbridge LLC\Gbridge\Gbridge.exe [3678208 2011-08-22] (Gbridge LLC)
HKU\S-1-5-21-3248881932-903285841-3063169814-1003\...\Run: [Akamai NetSession Interface] => C:\Users\Gabriel\AppData\Local\Akamai\netsession_win.exe [4672920 2014-04-17] (Akamai Technologies, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CrashPlan Tray.lnk
ShortcutTarget: CrashPlan Tray.lnk -> C:\Program Files\CrashPlan\CrashPlanTray.exe (Code 42 Software, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Digital Line Detect.lnk
ShortcutTarget: Digital Line Detect.lnk -> C:\Program Files\Digital Line Detect\DLG.exe (Avanquest Software )
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RealPlayer Cloud Service UI.lnk
ShortcutTarget: RealPlayer Cloud Service UI.lnk -> C:\Program Files\real\realplayer\RPDS\Bin\rpsystray.exe (RealNetworks, Inc.)
Startup: C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll (Autodesk, Inc.)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft...=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://m.www.yahoo.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com/welcome/thinkpad
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKCU - DefaultScope {2E91A6D6-253A-4FE1-84E7-F8ABD8E50297} URL = 
SearchScopes: HKCU - {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = 
SearchScopes: HKCU - {2E91A6D6-253A-4FE1-84E7-F8ABD8E50297} URL = 
BHO: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Search Helper -> {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} -> C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
BHO: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} -  No File
DPF: {12193C65-F0E1-4DD1-AD4E-DB73C6911011} file:///E:/activeX/DCP.cab
DPF: {62789780-B744-11D0-986B-00609731A21D} http://navigatela.la...ad/mgaxctrl.cab
DPF: {7191F0AC-D686-46A8-BFCC-EA61778C74DD} https://www.mydlink....aplugLiteDL.cab
DPF: {74FFE28D-2378-11D5-990C-006094235084} http://www-307.ibm.c...rt/IbmEgath.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab
DPF: {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab
ShellExecuteHooks:  - {AEB6717E-7E19-11d0-97EE-00C04FD91972} -  No File [ ]
Winsock: Catalog5 01 %SystemRoot%\System32\mswsock.dll [231424] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
Winsock: Catalog5 10 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
 
FireFox:
========
FF ProfilePath: C:\Users\Gabriel\AppData\Roaming\Mozilla\Firefox\Profiles\oelkky6o.default
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @real.com/nppl3260;version=17.0.13.2 -> c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlhtml5videoshim;version=17.0.13 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpplugin;version=17.0.13.2 -> c:\program files\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer Cloud)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @autodesk.com/DWF -> C:\Program Files\Autodesk\Autodesk Design Review Browser Add-on v1.2\npADRdwf.dll (Autodesk)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npwachk.dll (Nullsoft, Inc.)
FF Extension: Kaspersky URL Advisor - C:\Program Files\Mozilla Firefox\extensions\[email protected] [2014-09-24]
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBA} [2014-09-24]
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} [2014-09-24]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected]
FF Extension: 卡巴斯基網址顧問 - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected] [2013-08-21]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected]
FF Extension: 虛擬鍵盤 - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected] [2013-08-21]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected]
FF Extension: 惡意網站攔截器 - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected] [2013-08-21]
FF HKLM\...\Firefox\Extensions: [{9D2AA73B-6049-4799-B8AC-925723370070}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2014-10-19]
FF HKCU\...\Firefox\Extensions: [{CFB336FE-D07D-11E1-8270-B8AC6F996F26}] - C:\Users\Gabriel\AppData\Local\{CFB336FE-D07D-11E1-8270-B8AC6F996F26}
FF Extension: Mozilla Safe Browsing - C:\Users\Gabriel\AppData\Local\{CFB336FE-D07D-11E1-8270-B8AC6F996F26} [2012-07-17]
FF Extension: No Name - C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [Not Found]
 
Chrome: 
=======
CHR Profile: C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-10-16]
CHR Extension: (Google Docs) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-10-16]
CHR Extension: (Google Drive) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-10-16]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-10-16]
CHR Extension: (Kaspersky Protection) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blbkdnmdcafmfhinpmnlhhddbepgkeaa [2014-10-16]
CHR Extension: (YouTube) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-10-16]
CHR Extension: (Google Search) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-10-16]
CHR Extension: (Kaspersky URL Advisor) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2014-10-16]
CHR Extension: (Google Sheets) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-10-16]
CHR Extension: (Google Wallet) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-10-16]
CHR Extension: (Gmail) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-10-16]
CHR HKLM\...\Chrome\Extension: [blbkdnmdcafmfhinpmnlhhddbepgkeaa] - https://chrome.googl...mnlhhddbepgkeaa []
CHR HKLM\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\ChromeExt\urladvisor.crx [2013-06-17]
 
========================== Services (Whitelisted) =================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
S3 ADMonitor; C:\Windows\system32\ADMonitor.exe [106496 2009-09-01] () [File not signed]
S3 Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [68096 2013-12-11] () [File not signed]
R2 Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [18656 2011-02-02] ()
R2 AVP; C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avp.exe [214512 2013-10-02] (Kaspersky Lab ZAO)
R2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [1680088 2013-10-28] (Broadcom Corporation.)
R2 CrashPlanService; C:\Program Files\CrashPlan\CrashPlanService.exe [152576 2011-02-10] (CrashPlan) [File not signed]
R2 dtsvc; C:\Windows\system32\DTS.exe [98304 2009-09-01] () [File not signed]
R3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [1044816 2014-01-15] (Flexera Software, Inc.)
S2 LENOVO.MICMUTE; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [45424 2009-07-03] (Lenovo Group Limited)
R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-10-01] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [968504 2014-10-01] (Malwarebytes Corporation)
S4 MSSQLServerADHelper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [44384 2010-12-10] (Microsoft Corporation)
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44032 2009-05-14] (Hewlett-Packard) [File not signed]
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2009-05-14] (Hewlett-Packard) [File not signed]
R2 RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [39568 2014-07-30] ()
R2 RealPlayer Cloud Service; c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe [1141848 2014-10-19] (RealNetworks, Inc.)
R2 RealPlayerUpdateSvc; C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe [23552 2014-07-30] () [File not signed]
R2 SUService; c:\Program Files\Lenovo\System Update\SUService.exe [15872 2009-09-24] (Lenovo Group Limited) [File not signed]
R2 ThinkVantage Registry Monitor Service; C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe [1019904 2009-08-28] (Lenovo Group Limited) [File not signed]
S3 TVT Backup Service; C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe [1474560 2009-09-03] (Lenovo Group Limited) [File not signed]
R2 UNS; C:\Program Files\Common Files\Intel\Privacy Icon\UNS\UNS.exe [2058776 2009-08-03] (Intel Corporation)
R2 UnsignedThemes; C:\Windows\UnsignedThemesSvc.exe [21096 2009-07-13] (The Within Network, LLC)
R2 WDBackup; C:\Program Files\Western Digital\WD SmartWare\WDBackupEngine.exe [1042808 2014-07-22] (Western Digital Technologies, Inc.)
R2 WDDriveService; C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe [296312 2014-06-02] (Western Digital Technologies, Inc.)
 
==================== Drivers (Whitelisted) ====================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
U3 .e2rdsvca; No ImagePath
R3 5U875UVC; C:\Windows\System32\DRIVERS\5U875.sys [72320 2009-07-07] (Ricoh co.,Ltd.)
R3 amdkmdag; C:\Windows\System32\DRIVERS\atipmdag.sys [5073920 2009-08-23] (ATI Technologies Inc.)
R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [175320 2013-10-28] (Broadcom Corporation.)
R3 btwampfl; C:\Windows\System32\DRIVERS\btwampfl.sys [144600 2013-10-28] (Broadcom Corporation.)
R3 gbridge; C:\Windows\System32\DRIVERS\gbridge.sys [41216 2009-05-10] (Gbridge LLC)
S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-09-23] (LogMeIn, Inc.)
R3 intelkmd; C:\Windows\System32\DRIVERS\igdpmd32.sys [5946368 2009-09-21] (Intel Corporation)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [135776 2013-11-07] (Kaspersky Lab ZAO)
S4 klflt; C:\Windows\System32\DRIVERS\klflt.sys [94304 2014-03-25] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [576608 2014-03-25] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [25696 2013-10-02] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [25184 2014-02-18] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [25696 2013-10-02] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [14432 2013-04-12] (Kaspersky Lab ZAO)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [45024 2013-05-14] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [144992 2013-12-19] (Kaspersky Lab ZAO)
R0 Lbd; C:\Windows\System32\DRIVERS\Lbd.sys [64288 2010-08-12] (Lavasoft AB)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2014-10-01] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [114904 2014-11-01] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2014-10-01] (Malwarebytes Corporation)
R3 msvad_simple; C:\Windows\System32\drivers\povrtdev.sys [22696 2009-10-14] (MediaMall Technologies, Inc.)
R3 NETwNs32; C:\Windows\System32\DRIVERS\NETwNs32.sys [7122944 2010-10-18] (Intel Corporation)
S3 PAC7302; C:\Windows\System32\DRIVERS\PAC7302.SYS [458496 2008-01-15] (PixArt Imaging Inc.)
R2 uxpatch; C:\Windows\system32\drivers\uxpatch.sys [25448 2009-07-13] ()
R3 VCSVADHWSer; C:\Windows\System32\DRIVERS\vcsvad.sys [17792 2008-12-26] (Avnex)
S3 catchme; \??\C:\Users\Gabriel\AppData\Local\Temp\catchme.sys [X]
S2 MCSTRM; No ImagePath
R3 PCDSRVC{3037D694-FD904ACA-06020101}_0; \??\c:\program files\pc-doctor\pcdsrvc.pkms [X]
 
==================== NetSvcs (Whitelisted) ===================
 
 
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
 
 
==================== One Month Created Files and Folders ========
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2014-11-01 07:44 - 2014-11-01 07:45 - 00028729 _____ () C:\Users\Gabriel\Desktop\FRST.txt
2014-11-01 07:43 - 2014-11-01 07:44 - 00000000 ____D () C:\FRST
2014-11-01 07:40 - 2014-11-01 07:40 - 01105920 _____ (Farbar) C:\Users\Gabriel\Desktop\FRST.exe
2014-11-01 00:34 - 2014-11-01 00:34 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\5A2F1FD1.sys
2014-10-31 12:15 - 2014-10-31 12:16 - 00008192 _____ () C:\Windows\system32\WDPABKP.dat
2014-10-31 10:06 - 2014-10-31 10:06 - 00243716 _____ () C:\Windows\PFRO.log
2014-10-30 23:30 - 2014-10-31 12:16 - 00000271 _____ () C:\Windows\setupact.log
2014-10-30 23:30 - 2014-10-30 23:30 - 00000000 _____ () C:\Windows\setuperr.log
2014-10-23 00:35 - 2014-10-23 00:35 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\6D7160ED.sys
2014-10-22 09:36 - 2014-11-01 06:46 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-10-22 09:36 - 2014-10-22 09:36 - 00001071 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-10-22 09:36 - 2014-10-22 09:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-10-22 09:36 - 2014-10-22 09:36 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-10-22 09:36 - 2014-10-01 11:11 - 00075480 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-10-22 09:36 - 2014-10-01 11:11 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-10-22 09:36 - 2014-10-01 11:11 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-10-22 09:35 - 2014-10-22 09:36 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Gabriel\Downloads\mbam-setup-2.0.3.1025.exe
2014-10-22 09:09 - 2014-10-22 09:10 - 00000000 ____D () C:\ProgramData\MFAData
2014-10-22 09:09 - 2014-10-22 09:09 - 04579176 _____ (AVG Technologies) C:\Users\Gabriel\Downloads\avg_free_stb_all_2015_5315_cnet.exe
2014-10-22 09:09 - 2014-10-22 09:09 - 00000000 ____D () C:\Users\Gabriel\AppData\Local\MFAData
2014-10-22 09:09 - 2014-10-22 09:09 - 00000000 ____D () C:\Users\Gabriel\AppData\Local\Avg2015
2014-10-19 18:13 - 2014-10-19 18:13 - 00000000 ____D () C:\Users\Gabriel\AppData\Roaming\RealNetworks
2014-10-19 18:11 - 2014-10-19 18:11 - 00001012 _____ () C:\Users\Public\Desktop\RealPlayer Cloud.lnk
2014-10-19 18:10 - 2014-10-19 18:10 - 00201800 _____ (RealNetworks, Inc.) C:\Windows\system32\rmoc3260.dll
2014-10-19 18:10 - 2014-10-19 18:10 - 00000000 ____D () C:\ProgramData\RealNetworks
2014-10-19 18:10 - 2014-10-19 18:10 - 00000000 ____D () C:\Program Files\RealNetworks
2014-10-19 18:10 - 2014-10-19 18:10 - 00000000 ____D () C:\Program Files\Common Files\xing shared
2014-10-19 18:09 - 2014-10-19 18:11 - 00000000 ____D () C:\Program Files\real
2014-10-19 18:09 - 2014-10-19 18:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks
2014-10-17 06:12 - 2014-10-17 06:12 - 00000074 _____ () C:\Users\Gabriel\Downloads\listen.pls
2014-10-16 21:53 - 2014-11-01 06:58 - 00000888 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-10-16 21:53 - 2014-10-31 21:58 - 00000884 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-10-16 21:53 - 2014-10-28 05:03 - 00002140 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-10-16 21:53 - 2014-10-16 21:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-10-16 20:18 - 2014-10-16 20:18 - 00061077 _____ () C:\59f5c49c-6195-46ad-9060-f4b43ac765bf.dmp
2014-10-16 17:54 - 2014-09-04 18:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-10-16 06:08 - 2013-10-01 17:42 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-10-16 06:08 - 2013-10-01 17:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-10-16 06:08 - 2013-10-01 17:30 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-10-16 06:08 - 2013-10-01 17:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-10-16 06:08 - 2013-10-01 17:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-10-16 06:08 - 2013-10-01 16:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-10-16 06:08 - 2013-10-01 16:45 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-10-16 06:08 - 2013-10-01 16:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-10-16 06:08 - 2013-10-01 16:00 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-10-16 06:08 - 2013-10-01 15:53 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-10-16 06:08 - 2013-10-01 15:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-10-16 06:07 - 2014-08-18 19:41 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2014-10-16 06:07 - 2014-08-18 19:41 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2014-10-16 06:07 - 2014-08-18 19:41 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2014-10-16 06:07 - 2014-08-18 19:40 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2014-10-16 06:07 - 2014-08-18 19:40 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2014-10-16 06:07 - 2014-08-18 18:48 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2014-10-16 06:07 - 2014-07-06 18:40 - 11411456 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 03208704 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 01329664 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 01174528 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 01005056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00988160 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00744960 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00617984 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00473600 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00442880 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00406016 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00354816 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2014-10-16 06:07 - 2014-07-06 18:40 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2014-10-16 06:07 - 2014-07-06 18:40 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2014-10-16 06:07 - 2014-07-06 18:39 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2014-10-16 06:07 - 2014-07-06 18:39 - 03970488 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2014-10-16 06:07 - 2014-07-06 18:39 - 03914680 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-10-16 06:07 - 2014-07-06 18:39 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2014-10-16 06:07 - 2014-07-06 18:39 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2014-10-16 06:07 - 2014-07-06 18:39 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2014-10-16 06:07 - 2014-07-06 18:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2014-10-16 06:07 - 2014-07-06 18:28 - 00593920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2014-10-16 06:07 - 2014-06-27 17:21 - 00521384 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2014-10-16 06:07 - 2014-06-27 17:21 - 00455752 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2014-10-16 06:07 - 2014-06-27 17:21 - 00409272 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2014-10-16 06:01 - 2014-10-16 06:01 - 00000000 ____D () C:\Program Files\Common Files\Java
2014-10-16 06:01 - 2014-09-26 18:36 - 00272808 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-10-16 06:00 - 2014-09-26 18:42 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2014-10-16 06:00 - 2014-09-26 18:36 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-10-16 06:00 - 2014-09-26 18:35 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-10-16 05:59 - 2014-10-16 06:00 - 00005670 _____ () C:\Windows\system32\jupdate-1.7.0_71-b14.log
2014-10-16 05:29 - 2014-10-09 18:44 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-10-16 05:29 - 2014-10-09 18:44 - 00230912 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-10-16 05:29 - 2014-10-09 18:39 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-10-16 05:29 - 2014-10-06 19:04 - 00331448 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-10-16 05:29 - 2014-09-28 17:41 - 02379264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-10-16 05:29 - 2014-09-25 15:46 - 00365056 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-10-16 05:29 - 2014-09-25 15:46 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-10-16 05:29 - 2014-09-25 15:46 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-10-16 05:29 - 2014-09-25 15:43 - 11807232 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-10-16 05:29 - 2014-09-25 15:32 - 02017280 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-10-16 05:29 - 2014-09-18 18:44 - 17484800 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-10-16 05:29 - 2014-09-18 18:25 - 04201472 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-10-16 05:29 - 2014-09-18 18:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-10-16 05:29 - 2014-09-18 18:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-10-16 05:29 - 2014-09-18 18:02 - 00454656 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-10-16 05:29 - 2014-09-18 18:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-10-16 05:29 - 2014-09-18 18:01 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-10-16 05:29 - 2014-09-18 17:59 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-10-16 05:29 - 2014-09-18 17:55 - 02187264 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-10-16 05:29 - 2014-09-18 17:54 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-10-16 05:29 - 2014-09-18 17:53 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-10-16 05:29 - 2014-09-18 17:51 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-10-16 05:29 - 2014-09-18 17:50 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-10-16 05:29 - 2014-09-18 17:50 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-10-16 05:29 - 2014-09-18 17:49 - 00597504 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-10-16 05:29 - 2014-09-18 17:44 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-10-16 05:29 - 2014-09-18 17:36 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-10-16 05:29 - 2014-09-18 17:32 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-10-16 05:29 - 2014-09-18 17:20 - 00677888 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-10-16 05:29 - 2014-09-18 17:20 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-10-16 05:29 - 2014-09-18 17:18 - 01068032 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-10-16 05:29 - 2014-09-18 16:59 - 01810944 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-10-16 05:29 - 2014-09-18 16:53 - 01190400 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-10-16 05:29 - 2014-09-18 16:52 - 00678400 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-10-16 05:29 - 2014-09-03 22:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2014-10-16 05:29 - 2014-07-16 18:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2014-10-16 05:29 - 2014-07-16 18:39 - 00523264 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-10-16 05:29 - 2014-07-16 18:39 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-10-16 05:29 - 2014-07-16 18:39 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2014-10-16 05:29 - 2014-07-16 18:39 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-10-16 05:29 - 2014-07-16 18:39 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-10-16 05:29 - 2014-07-16 18:03 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-10-16 05:29 - 2014-07-16 18:02 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-10-16 05:28 - 2014-09-17 18:32 - 02363904 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-10-16 05:28 - 2014-08-28 18:44 - 02744320 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-10-16 05:28 - 2014-06-18 15:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-10-16 05:28 - 2014-06-18 15:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2014-10-16 05:28 - 2014-06-18 15:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2014-10-16 05:27 - 2014-09-12 18:40 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-10-16 05:17 - 2014-10-16 05:17 - 00062572 _____ () C:\683ca008-8255-47a9-b238-1859e568bbd5.dmp
2014-10-15 23:25 - 2014-10-15 23:25 - 00060846 _____ () C:\6d2cb87a-c6e5-4dad-b0fd-58aaa400cf17.dmp
2014-10-14 09:44 - 2014-10-14 09:44 - 00002177 _____ () C:\Users\Public\Desktop\Style Builder 2.lnk
2014-10-14 09:43 - 2014-10-14 09:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google SketchUp 8
2014-10-14 09:43 - 2014-10-14 09:43 - 00002091 _____ () C:\Users\Public\Desktop\LayOut 3.lnk
2014-10-14 09:43 - 2014-10-14 09:43 - 00002006 _____ () C:\Users\Public\Desktop\Google SketchUp 8.lnk
2014-10-03 14:45 - 2014-09-24 18:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-10-03 14:45 - 2014-09-09 14:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
 
==================== One Month Modified Files and Folders =======
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2014-11-01 06:35 - 2010-01-29 12:13 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-11-01 05:22 - 2014-08-12 08:03 - 01717003 _____ () C:\Windows\WindowsUpdate.log
2014-10-31 14:03 - 2010-05-25 14:10 - 00000382 _____ () C:\Windows\Tasks\SystemToolsDailyTest.job
2014-10-31 14:01 - 2010-01-29 11:18 - 00000000 ____D () C:\Users\Gabriel
2014-10-31 12:20 - 2009-07-13 21:34 - 00021680 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-10-31 12:20 - 2009-07-13 21:34 - 00021680 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-10-31 12:14 - 2010-02-03 04:31 - 00000439 _____ () C:\Windows\system32\Drivers\etc\hosts.ics
2014-10-31 12:13 - 2014-01-28 11:11 - 00000000 ___RD () C:\Users\Gabriel\Dropbox
2014-10-31 12:13 - 2014-01-28 11:10 - 00000000 ____D () C:\Users\Gabriel\AppData\Roaming\Dropbox
2014-10-31 12:10 - 2009-07-13 21:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-10-31 12:08 - 2010-08-18 23:06 - 00000000 ____D () C:\Windows\pss
2014-10-28 14:33 - 2010-05-20 21:56 - 00059963 _____ () C:\Users\Gabriel\Documents\plot.log
2014-10-28 06:35 - 2010-01-29 11:33 - 00229000 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-10-22 09:36 - 2010-08-16 16:24 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-10-21 12:02 - 2010-01-29 11:26 - 00000000 ____D () C:\Users\Gabriel\AppData\Roaming\Adobe
2014-10-21 12:02 - 2010-01-27 19:56 - 00000000 ____D () C:\ProgramData\Adobe
2014-10-20 12:13 - 2010-02-04 15:22 - 00000000 ____D () C:\Windows\Minidump
2014-10-20 11:31 - 2011-04-22 15:37 - 00000000 ____D () C:\Program Files\CrashPlan
2014-10-19 18:13 - 2010-04-09 09:42 - 00000000 ____D () C:\Users\Gabriel\AppData\Roaming\Real
2014-10-19 18:10 - 2010-09-24 13:22 - 00000000 ____D () C:\ProgramData\Real
2014-10-19 18:09 - 2010-09-24 13:22 - 00278600 _____ (Progressive Networks) C:\Windows\system32\pncrt.dll
2014-10-19 18:09 - 2010-04-18 13:11 - 00000000 ____D () C:\Program Files\Common Files\Real
2014-10-19 18:09 - 2009-09-24 23:35 - 00505416 _____ (Microsoft Corporation) C:\Windows\system32\msvcp71.dll
2014-10-19 18:00 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\rescache
2014-10-18 11:59 - 2010-01-29 14:31 - 00000000 ____D () C:\GRMMProjects
2014-10-16 21:55 - 2010-02-08 08:54 - 00000000 ____D () C:\Program Files\Adobe
2014-10-16 21:53 - 2010-03-18 19:54 - 00000000 ____D () C:\Program Files\Google
2014-10-16 21:48 - 2014-09-24 18:32 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-10-16 21:47 - 2011-02-22 21:47 - 00000000 ____D () C:\Program Files\Acro Software
2014-10-16 08:44 - 2009-07-13 21:46 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2014-10-16 08:44 - 2009-07-13 19:04 - 00000557 _____ () C:\Windows\win.ini
2014-10-16 08:43 - 2009-07-13 19:37 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-10-16 08:42 - 2009-07-13 21:53 - 00032650 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-10-16 06:22 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-10-16 06:01 - 2013-10-15 09:02 - 00000000 ____D () C:\ProgramData\Oracle
2014-10-16 06:00 - 2010-01-27 19:51 - 00000000 ____D () C:\Program Files\Java
2014-10-16 05:48 - 2009-07-13 21:33 - 03840440 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-10-16 05:45 - 2014-04-26 12:37 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-10-16 05:43 - 2010-01-27 20:14 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-10-16 05:37 - 2013-08-27 12:19 - 00000000 ____D () C:\Windows\system32\MRT
2014-10-16 05:33 - 2010-01-30 04:05 - 100290944 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-10-14 09:10 - 2010-01-27 19:39 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-10-09 22:37 - 2011-03-17 13:36 - 00000000 ____D () C:\Users\Gabriel\AppData\Local\Downloaded Installations
2014-10-04 14:57 - 2014-01-23 13:36 - 00000176 _____ () C:\Windows\Gbridge.INI
2014-10-04 12:01 - 2014-06-15 10:33 - 00000000 ____D () C:\ProgramData\Package Cache
2014-10-04 11:59 - 2013-05-15 22:47 - 00000000 ____D () C:\Program Files\Western Digital
2014-10-04 11:59 - 2013-05-15 22:47 - 00000000 ____D () C:\Program Files\Common Files\Western Digital
2014-10-02 15:22 - 2010-11-29 19:46 - 00421888 ___SH () C:\Users\Gabriel\Documents\Thumbs.db
 
Some content of TEMP:
====================
C:\Users\Gabriel\AppData\Local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpwvms9h.dll
 
 
==================== Bamital & volsnap Check =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2014-10-26 01:23
 
==================== End Of Log ============================
 
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 01-11-2014
Ran by Gabriel at 2014-11-01 07:45:46
Running from C:\Users\Gabriel\Desktop
Boot Mode: Normal
==========================================================
 
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Kaspersky Anti-Virus (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886}
AS: Kaspersky Anti-Virus (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
 Registry Patch to arrange icons in Device and Printers folder of Windows 7 (HKLM\...\W7DevOR) (Version: 1.00 - )
2007 Microsoft Office system (HKLM\...\PROHYBRIDR) (Version: 12.0.6612.1000 - Microsoft Corporation)
32 Bit HP CIO Components Installer (Version: 6.1.2 - Hewlett-Packard) Hidden
Access Help (HKLM\...\{C6FA39A7-26B1-480A-BC74-6D17531AC222}) (Version: 3.00 - Lenovo)
Adobe Community Help (HKLM\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.4.980 - Adobe Systems Incorporated.)
Adobe Photoshop CS (HKLM\...\{EFB21DE7-8C19-4A88-BB28-A766E16493BC}) (Version: CS - Adobe Systems, Inc.)
Adobe Reader XI (11.0.09) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated)
Adobe SVG Viewer 3.0 (HKLM\...\Adobe SVG Viewer) (Version:  3.0 - Adobe Systems, Inc.)
Aide PDF to DXF Converter 9.6 (HKLM\...\Aide PDF to DXF Converter_is1) (Version:  - Aide CAD Systems Incorporated.)
Akamai NetSession Interface (HKCU\...\Akamai) (Version:  - Akamai Technologies, Inc)
Apple Application Support (HKLM\...\{D9DAD0FF-495A-472B-9F10-BAE430A26682}) (Version: 3.0.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{18D47FA1-0440-48D3-A7E0-DA09537FF471}) (Version: 7.1.1.3 - Apple Inc.)
Apple Software Update (HKLM\...\{C6579A65-9CAE-4B31-8B6B-3306E0630A66}) (Version: 2.1.3.127 - Apple Inc.)
AT&T Service Activation (HKLM\...\{D81486A1-2371-4059-AC70-1AB894AC96E6}) (Version: 1.8.7.0 - AT&T)
ATI Catalyst Install Manager (HKLM\...\{1DF0C90D-0705-32EA-B4DB-341C311EBB93}) (Version: 3.0.736.0 - ATI Technologies, Inc.)
ATI Uninstaller (HKLM\...\ATI Uninstaller) (Version: 8.641.1.1-090824a-089811C-Lenovo - ATI Technologies, Inc.)
AudibleManager (HKLM\...\AudibleManager) (Version: 2000968304.48.56.28054906 - Audible, Inc.)
AutoCAD 2012 - English (HKLM\...\AutoCAD 2012 - English) (Version: 18.2.51.0 - Autodesk)
AutoCAD 2012 - English (Version: 18.2.51.0 - Autodesk) Hidden
AutoCAD 2012 Language Pack - English (Version: 18.2.51.0 - Autodesk) Hidden
Autodesk CAD Manager Tools (HKLM\...\{5783F2D7-0111-0409-0010-0060B0CE6BBA}) (Version: 16.0.0.65 - Autodesk)
Autodesk Content Service (HKLM\...\{086F9A69-CD39-4893-A9FB-D3A0634CE3F7}) (Version: 2.0.90 - Autodesk)
Autodesk Design Review 2013 (HKLM\...\Autodesk Design Review 2013) (Version: 13.0.0.82 - Autodesk, Inc.)
Autodesk Design Review 2013 (Version: 13.0.0.82 - Autodesk, Inc.) Hidden
Autodesk Design Review Browser Add-on v1.2  (HKLM\...\{CD49E43B-88B1-48AD-A3AF-43FAAAB41CB8}) (Version: 1.2.0 - Autodesk)
Autodesk DWG TrueView 2014 (HKLM\...\DWG TrueView 2014) (Version: 19.1.18.0 - Autodesk)
Autodesk Material Library 2012 (HKLM\...\{8F0837C2-EE09-4903-88F3-1976FE7FFF4E}) (Version: 2.5.0.8 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2012 (HKLM\...\{65420DC9-306E-4371-905F-F4DC3B418E52}) (Version: 2.5.0.8 - Autodesk)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
Business Contact Manager for Outlook 2007 SP2 (HKLM\...\Business Contact Manager) (Version: 3.0.8619.1 - Microsoft Corporation)
Business Contact Manager for Outlook 2007 SP2 (Version: 3.0.8619.1 - Microsoft Corporation) Hidden
ccc-core-static (Version: 2009.0825.2146.37269 - ATI) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 2.34 - Piriform)
Conexant 20561 SmartAudio HD (HKLM\...\CNXT_AUDIO_HDA) (Version: 4.92.10.0 - Conexant)
CrashPlan (HKLM\...\{2D40C5BB-673F-4976-BD20-0835D4B32B8B}) (Version: 3.0.2 - CrashPlan)
Create Recovery Media (HKLM\...\{50DC5136-21E8-48BC-97E5-1AD055F6B0B6}) (Version: 1.20.0.00 - Lenovo Group Limited)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
DirectX 9 Runtime (Version: 1.00.0000 - Sonic Solutions) Hidden
Dropbox (HKCU\...\Dropbox) (Version: 2.10.30 - Dropbox, Inc.)
DWG TrueView 2014 (Version: 19.1.18.0 - Autodesk) Hidden
EPSON Printer Software (HKLM\...\EPSON Printer and Utilities) (Version:  - )
EPSON Scan (HKLM\...\EPSON Scanner) (Version:  - )
FARO LS 1.1.406.58 (HKLM\...\{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}) (Version: 4.6.58.2 - FARO Scanner Production)
Gbridge (remove only) (HKLM\...\Gbridge) (Version:  - )
Google Chrome (HKLM\...\Google Chrome) (Version: 38.0.2125.111 - Google Inc.)
Google SketchUp Pro 8 (HKLM\...\{E0A160F1-127B-43AC-AF96-EBB6319B01C7}) (Version: 3.0.4811 - Google, Inc.)
Google Update Helper (Version: 1.3.25.5 - Google Inc.) Hidden
iCloud (HKLM\...\{00A61104-74B5-4056-AD00-4397EF4FB141}) (Version: 3.1.0.40 - Apple Inc.)
Integrated Camera Driver Installer Package Ver.1.27.500.0 (HKLM\...\{82EB6CEA-749A-410F-8AD2-372A286BA3BE}) (Version: 1.27.500.0 - RICOH)
Integrated Camera TWAIN (HKLM\...\{9CA0DEE4-E84B-466F-9B96-FC255F3A929F}) (Version: 1.0.7.331 - Chicony Electronics Co.,Ltd.)
Intel® Management Engine Interface (HKLM\...\HECI) (Version:  - Intel Corporation)
Intel® Network Connections Drivers (HKLM\...\PROSet) (Version: 16.1 - Intel)
Intel® PROSet/Wireless WiFi Software (HKLM\...\{D75AEB5B-FA18-4BD4-9EED-54CA46DB5AE8}) (Version: 13.04.0000 - Intel Corporation)
Intel® Active Management Technology (HKLM\...\MESOL) (Version:  - Intel Corporation)
Intel® Matrix Storage Manager and Intel® Turbo Memory (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version:  - Intel Corporation)
Intel® Turbo Memory (HKLM\...\{31423F74-36B2-4d24-B10D-CD00BFB7C118}) (Version:  - Intel Corporation)
Internet TV for Windows Media Center (HKLM\...\{9D318C86-AF4C-409F-A6AC-7183FF4CF424}) (Version: 4.2.2.0 - Microsoft Corporation)
iTunes (HKLM\...\{0718A90E-93AA-49AF-A4FE-0165ACD91DF0}) (Version: 11.2.2.3 - Apple Inc.)
IZArc 4.1 (HKLM\...\{97C82B44-D408-4F14-9252-47FC1636D23E}_is1) (Version: 4.1 - Ivan Zahariev)
Java 7 Update 71 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217040FF}) (Version: 7.0.710 - Oracle)
Java™ 6 Update 35 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216032FF}) (Version: 6.0.350 - Oracle)
JC-AM100 (HKLM\...\{B8909A6F-E372-4ABE-8882-91F8D13D81F1}) (Version: 1.0.0.22 - jWIN)
Junk Mail filter update (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Kaspersky Anti-Virus (HKLM\...\InstallWIX_{6F6873E3-5C92-4049-B511-231A138DD090}) (Version: 14.0.0.4651 - Kaspersky Lab)
Kaspersky Anti-Virus (Version: 14.0.0.4651 - Kaspersky Lab) Hidden
Lenovo Fingerprint Software (HKLM\...\{2D440AF4-7330-43F0-A085-35DE1A90E703}) (Version: 3.3.0.50 - AuthenTec, Inc.)
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.04.05 - )
Lenovo System Interface Driver (HKLM\...\LENOVO.SMIIF) (Version: 1.01 - )
Lenovo ThinkVantage Toolbox (HKLM\...\PC-Doctor for Windows) (Version: 6.0.5717.36 - PC-Doctor, Inc.)
Lenovo Welcome (HKLM\...\Lenovo Welcome_is1) (Version: 2.0.020.0 - Lenovo)
Lightspeed Screensaver  (Remove only) (HKLM\...\Lightspeed!) (Version:  - )
Malwarebytes Anti-Malware version 2.0.3.1025 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.3.1025 - Malwarebytes Corporation)
MassPlus v3.0 (HKLM\...\MassPlus v3.0) (Version:  - )
Mesh Runtime (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Message Center Plus (HKLM\...\{FD331A3B-F7A5-4C31-B8D4-DF413C85AF7A}) (Version: 2.0.0012.00 - Lenovo Group Limited)
Messenger Companion (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2003 Web Components (HKLM\...\{90A40409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Office 2007 Primary Interop Assemblies (HKLM\...\{50120000-1105-0000-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM\...\{95140000-007A-0409-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Office Small Business Connectivity Components (HKLM\...\{A939D341-5A04-4E0A-BB55-3E65B386432D}) (Version: 2.0.7024.0 - Microsoft Corporation)
Microsoft Office Suite Activation Assistant (HKLM\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation)
Microsoft Research AutoCollage Touch 2009 (HKLM\...\{1F8DA253-3C27-4B01-A63A-BA3533120833}) (Version: 2.00.2009 - Microsoft Research)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 (HKLM\...\Microsoft SQL Server 2005) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server Native Client (HKLM\...\{7670D32F-DAE6-4E49-8C8B-B3F08B5B1686}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server Setup Support Files (English) (HKLM\...\{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{E7084B89-69E0-46B3-A118-8F99D06988CD}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft Sync Framework 2.0 Core Components (x86) ENU  (HKLM\...\{FF63121D-91C6-42CC-B341-F1AA729728E7}) (Version: 2.0.1578.0 - Microsoft Corporation)
Microsoft Sync Framework 2.0 Provider Services (x86) ENU  (HKLM\...\{D3A80508-CD83-4CA3-8671-914A1BC78B61}) (Version: 2.0.1578.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM\...\{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2.0 Runtime (HKLM\...\{299C0434-4F4E-341F-A916-4E07AEB35E79}) (Version: 9.0.30729 - Microsoft Corporation)
Mobile Broadband Connect (HKLM\...\{91B7B957-0F45-4BDC-85BA-08F80D49B9BC}) (Version: 3.5.0011 - Lenovo)
MobileMe Control Panel (HKLM\...\{5A9AA2C0-972F-4239-AA41-E409434194D5}) (Version: 3.1.8.0 - Apple Inc.)
MSVCRT (Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
NVIDIA PhysX (HKLM\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0 - Microsoft Corporation) Hidden
On Screen Display (HKLM\...\OnScreenDisplay) (Version: 5.32.00 - )
ProjectDox Components (HKLM\...\{E64E7F6F-952D-44EA-880C-97FF32B88D22}) (Version: 7.5 - Avolve Software)
PX Profile Update (Version: 1.00.1. - AMD) Hidden
QuickTime 7 (HKLM\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)
RealDownloader (Version: 17.0.13 - RealNetworks, Inc.) Hidden
RealNetworks - Microsoft Visual C++ 2008 Runtime (Version: 9.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (Version: 10.0 - RealNetworks, Inc) Hidden
RealPlayer Cloud (HKLM\...\RealPlayer 17.0) (Version: 17.0.13 - RealNetworks)
RealUpgrade 1.1 (Version: 1.1.0 - RealNetworks, Inc.) Hidden
Registry Patch to Enable Maximum Power Saving on WiFi Adapters for Windows 7 (HKLM\...\EnablePS) (Version: 1.00 - )
Rescue and Recovery (HKLM\...\{B383F243-0ABC-4E56-AA30-923B8D85076E}) (Version: 4.30.0025.00 - Lenovo Group Limited)
Setup Wizard SE (HKLM\...\{405D8563-BDD7-487C-9498-942518B366BE}) (Version:  - )
Simpson AutoCAD Menu (HKLM\...\Simpson AutoCAD Menu) (Version:  - )
Simpson Strong-Tie Drawings (HKLM\...\Simpson Strong-Tie Drawings) (Version:  - )
Sonic Icons for Lenovo (HKLM\...\{B334D9AE-1393-423E-97C0-3BDC3360E692}) (Version: 2.0.0 - Lenovo)
Spelling Dictionaries Support For Adobe Reader 9 (HKLM\...\{AC76BA86-7AD7-5464-3428-900000000004}) (Version: 9.0.0 - Adobe Systems Incorporated)
STEELPro Version 1.1  By Redem Legaspi (HKLM\...\ST6UNST #1) (Version:  - )
Structural Systems (HKLM\...\{CFD73A7D-FD9E-4B15-8F60-FE41DDF84CC2}) (Version: 4.00.0000 - NCARB)
SuperPurge Lite (HKLM\...\SuperPurge Lite) (Version:  - )
System Update (HKLM\...\{25C64847-B900-48AD-A164-1B4F9B774650}) (Version: 4.00.0009 - Lenovo)
ThinkPad Bluetooth with Enhanced Data Rate Software (HKLM\...\{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}) (Version: 6.2.0.9600 - Broadcom Corporation)
ThinkPad FullScreen Magnifier (HKLM\...\ThinkPad FullScreen Magnifier) (Version: 2.10 - )
ThinkPad Modem Adapter (HKLM\...\CNXT_MODEM_HDA_HSF) (Version: 7.80.5.0 - Conexant Systems)
ThinkPad Power Manager (HKLM\...\{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}) (Version: 3.04 - )
ThinkPad UltraNav Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.19.7 - )
ThinkPad UltraNav Utility (HKLM\...\{17CBC505-D1AE-459D-B445-3D2000A85842}) (Version: 2.11 - Lenovo)
ThinkVantage Active Protection System (HKLM\...\{46A84694-59EC-48F0-964C-7E76E9F8A2ED}) (Version: 1.70 - Lenovo)
TPFanControl v0.62 (HKLM\...\{717F5741-5C2E-4469-BDA0-B5EC2243646F}_is1) (Version:  - troubadix)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
UpdateService (Version: 1.0.0 - RealNetworks, Inc.) Hidden
UxStyle Core Beta (HKLM\...\{8E363055-15E5-4D8A-9C69-A0A9DE9A3337}) (Version: 0.2.1.1 - The Within Network, LLC)
Verizon Wireless Mobile Broadband Self Activation (HKLM\...\{C64A877E-DF8D-4017-AA82-000A77C6D809}) (Version: 3.1.4 - Smith Micro Software, Inc.)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM\...\{04B34E21-5BEE-3D2B-8D3D-E3E80D253F64}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM\...\{14866AAD-1F23-39AC-A62B-7091ED1ADE64}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM\...\{4B90093A-5D9C-3956-8ABB-95848BE6EFAD}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM\...\{B42E259C-E4D4-37F1-A1B2-EB9C4FC5A04D}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 x86 Runtime - v9.0.30729.01 (HKLM\...\{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01) (Version: 9.0.30729.01 - Microsoft Corporation)
WD Drive Utilities (HKLM\...\{439A51F7-84B1-4603-BEC8-647EB2AC307F}) (Version: 1.0.1.5 - Western Digital)
WD Quick View (HKLM\...\{D0A3A97D-7918-4B0B-B91E-775E00C36122}) (Version: 2.4.2.26 - Western Digital Technologies, Inc.)
WD Security (HKLM\...\{83270912-15C7-4336-822E-E8F1B1BBCA60}) (Version: 1.0.3.3 - Western Digital Technologies, Inc.)
WD SmartWare (HKLM\...\{6EE644CD-FC7F-424C-83EA-9C0285C4FB7F}) (Version: 2.4.2.26 - Western Digital Technologies, Inc.)
WD SmartWare Installer (HKLM\...\{2d588de7-f4f6-4d6d-8719-32cbb9637e9e}) (Version: 2.4.2.26 - Western Digital Technologies, Inc.)
Winamp (HKLM\...\Winamp) (Version: 5.572  - Nullsoft, Inc)
Winamp Detector Plug-in (HKCU\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc)
Windows Driver Package - AuthenTec Inc. (ATSwpWDF) Biometric  (07/07/2009 8.1.2.56) (HKLM\...\8E6CE26AD682E6D46DCCDD39CD93277A2EAF2449) (Version: 07/07/2009 8.1.2.56 - AuthenTec Inc.)
Windows Driver Package - Intel System  (06/04/2009 1.0.0.0002) (HKLM\...\E7B58217635B8F723D4744A328A4B3237DB35FA9) (Version: 06/04/2009 1.0.0.0002 - Intel)
Windows Driver Package - Lenovo 1.55 (08/18/2009 1.55) (HKLM\...\112AA64E0C8CC704E307FE914F7DEC1C0035598E) (Version: 08/18/2009 1.55 - Lenovo)
Windows Driver Package - Ricoh (5U875UVC) Image  (07/08/2009 1.27.500.0) (HKLM\...\E59560E2F5B162D40255FCD327ACA5E989D995D2) (Version: 07/08/2009 1.27.500.0 - Ricoh)
Windows Driver Package - Ricoh Company (rimsptsk) hdc  (09/03/2009 6.10.01.05) (HKLM\...\5F72B7FA1792CB768F6A46E18A9DAD0E1FE1C863) (Version: 09/03/2009 6.10.01.05 - Ricoh Company)
Windows Driver Package - Ricoh Company (rismxdp) hdc  (09/03/2009 6.10.01.05) (HKLM\...\1FBDB507F002A372EB195A0ACF6E2A2F9D34689E) (Version: 09/03/2009 6.10.01.05 - Ricoh Company)
Windows Driver Package - Ricoh Company MMC Host Controller (09/03/2009 6.10.01.05) (HKLM\...\D50474ACAF488895A3CE5D30373288EA6AD46EAA) (Version: 09/03/2009 6.10.01.05 - Ricoh Company)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
WinRAR archiver (HKLM\...\WinRAR archiver) (Version:  - )
WinZip 14.5 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240BD}) (Version: 14.5.9095 - WinZip Computing, S.L. )
 
==================== Custom CLSID (selected items): ==========================
 
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
 
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{039B2CA5-3B41-4D93-AD77-47D3293FC5CB}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{083C82AE-568E-45dd-A92C-01422CA45760}\InprocServer32 -> C:\Program Files\Autodesk\Revit Architecture 2011\Program\APIContext.dll No File
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{3faa4380-a399-11cf-a466-00805fe418f6}\InprocServer32 -> C:\Program Files\Autodesk\DWG TrueView 2014\en-US\dwgviewrficn.dll (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{42481700-CF3C-4D05-8EC6-F9A1C57E8DC0}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{6A221957-2D85-42A7-8E19-BE33950D1DEB}\localserver32 -> C:\Program Files\Autodesk\DWG TrueView 2014\dwgviewr.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{6D7AE628-FF41-4CD3-91DD-34825BB1A251}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - English\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{8BAA8FB5-79F8-26F4-81D9-50D454ACDEA9}\InprocServer32 -> C:\Windows\system32\ole32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{B77E471C-FBF3-4CB5-880F-D7528AD4B349}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - English\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{C92FB640-AD4D-498A-9979-A51A2540C977}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - English\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{CCD024D5-3F5A-4089-C9F3-B58C5279248C}\InprocServer32 -> C:\Windows\system32\ole32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{D0D38C6E-BF64-4C42-840D-3E0019D9F7A6}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{D70E31AD-2614-49F2-B0FC-ACA781D81F3E}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - English\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2012 - English\acadficn.dll (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{FD8C4664-A2D4-97EC-185D-875E454333FE}\InprocServer32 -> C:\Windows\system32\ole32.dll (Microsoft Corporation)
 
==================== Restore Points  =========================
 
31-10-2014 10:48:50 Windows Update
 
==================== Hosts content: ==========================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-13 19:04 - 2014-06-17 01:41 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1       localhost
 
==================== Scheduled Tasks (whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
 
Task: {19A9A220-AA89-429C-8B4A-69F27F3909C9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-16] (Google Inc.)
Task: {243FA8FA-C293-48B2-A460-74902BAD9755} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\PC-Doctor\uaclauncher.exe [2010-12-13] (PC-Doctor, Inc.)
Task: {25339F04-1F7F-483A-9905-BD6780EAB683} - System32\Tasks\TVT\LaunchRnR => %RR%\rrcmd.exe
Task: {2946B5B0-6C53-4C06-95DE-5E2DEB35EB4B} - System32\Tasks\{8A3E647E-5DA9-47B1-B27C-057E688CC612} => C:\Program Files\Skype\Phone\Skype.exe
Task: {32177F66-6FAB-4AB7-ADF1-36FEDCBD6959} - System32\Tasks\DiskUpdate => C:\SWTOOLS\OSFIXES\DISKUPDT\DiskUpdate.exe [2009-02-09] ()
Task: {328D1D18-58CF-4F4A-BAA9-FB07627BF112} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-3248881932-903285841-3063169814-1003 => C:\Program Files\RealNetworks\RealDownloader\realupgrade.exe [2014-07-30] (RealNetworks, Inc.)
Task: {3C9A0DEE-77AC-4418-9056-F10081E18EAF} - System32\Tasks\Synaptics TouchPad Enhancements => \Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-04-24] (Synaptics Incorporated)
Task: {5171C736-DBE2-4FDB-8BD7-6B44B019B40B} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-3248881932-903285841-3063169814-1003 => C:\Program Files\RealNetworks\RealDownloader\realupgrade.exe [2014-07-30] (RealNetworks, Inc.)
Task: {557EC6EA-7274-431A-BDBF-6554A49D04A3} - System32\Tasks\PCDEventLauncher => C:\Program Files\PC-Doctor\sessionchecker.exe [2010-12-13] ()
Task: {6B55FE44-38CE-403A-8CCD-BEC0E4320496} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-3248881932-903285841-3063169814-1003 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2014-07-30] (RealNetworks, Inc.)
Task: {9307E3A5-9D4E-463B-895B-BBB4C37FB8D7} - System32\Tasks\PMTask => C:\Program Files\ThinkPad\Utilities\PWMIDTSV.EXE [2009-08-23] (Lenovo Group Limited)
Task: {A35D97B4-AC44-4DC7-A1E5-E11B1993B32C} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-3248881932-903285841-3063169814-1003 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2014-07-30] (RealNetworks, Inc.)
Task: {AA731CDB-C2E4-4DEF-9ED1-40E8EFC39F79} - System32\Tasks\TVT\ChangePWD => %RR%\rrcmd.exe
Task: {C32E23CB-F45A-42D9-A93B-1B301A8C3A52} - System32\Tasks\SystemToolsDailyTest => C:\Program Files\PC-Doctor\pcdrcui.exe [2010-12-13] (PC-Doctor, Inc.)
Task: {C4D2C762-CA77-4CC6-86A0-AA0A403CC1EA} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {DFEC2F33-FF81-41BB-9B04-3773FDEAA75A} - System32\Tasks\JavaUpdateSched => C:\Windows\System32\jusched.exe
Task: {E4488483-89DA-4C4A-935B-ACF82D636F5F} - System32\Tasks\Ad-Aware Update (Weekly) => C:\Program Files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe
Task: {EC284B35-315E-4102-968D-195A30556FA8} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-3248881932-903285841-3063169814-1003 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2014-07-30] (RealNetworks, Inc.)
Task: {ECED1C48-2B4F-4A04-BA12-67D92D9CEA33} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => c:\Program Files\Microsoft IntelliPoint\IPoint.exe
Task: {F19F75D5-5888-4224-8A58-7F3EA02D95A6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-16] (Google Inc.)
Task: {F73507D2-7F92-4571-93EE-320EFE095E13} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-3248881932-903285841-3063169814-1003 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2014-07-30] (RealNetworks, Inc.)
Task: {FB1F4263-A69A-4DF2-A1F0-895928DB107E} - System32\Tasks\TVT\UpdateRnR => %TVTCOMMON%\Scheduler\tvtsetsched.exe
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\PCDoctorBackgroundMonitorTask.job => C:\Program Files\PC-Doctor\uaclauncher.exe
Task: C:\Windows\Tasks\SystemToolsDailyTest.job => C:\Program Files\PC-Doctor\pcdrcui.exe
 
==================== Loaded Modules (whitelisted) =============
 
2009-09-01 00:32 - 2009-09-01 00:32 - 00098304 ____N () C:\Windows\system32\DTS.exe
2014-01-20 14:17 - 2014-01-20 14:17 - 00073544 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2014-01-20 14:16 - 2014-01-20 14:16 - 01044808 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2011-02-02 15:08 - 2011-02-02 15:08 - 00018656 _____ () C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe
2013-06-17 12:35 - 2013-06-17 12:35 - 00478400 _____ () C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\dblite.dll
2013-05-08 14:52 - 2013-05-08 14:52 - 01270464 _____ () C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\kpcengine.2.3.dll
2012-03-26 19:51 - 2012-03-26 19:51 - 00013312 _____ () C:\Program Files\CrashPlan\md5.dll
2014-10-20 11:30 - 2014-10-20 11:30 - 00197120 _____ () C:\Program Files\CrashPlan\cpnative.dll
2014-07-30 02:17 - 2014-07-30 02:17 - 00039568 _____ () C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
2014-10-19 18:09 - 2014-10-19 18:09 - 00864856 _____ () c:\program files\real\realplayer\RPDS\Plugins\cldplin.dll
2010-01-27 19:46 - 2009-08-23 11:04 - 00030720 ____N () C:\Program Files\ThinkPad\Utilities\US\PWMRT32V.DLL
2009-07-01 19:03 - 2009-07-01 19:03 - 00132384 ____N () C:\Program Files\ThinkPad\Bluetooth Software\btkeyind.dll
2010-06-25 23:24 - 2010-03-15 11:28 - 00141824 _____ () C:\Program Files\WinRAR\rarext.dll
2010-03-27 12:51 - 2009-09-04 08:19 - 00644096 ____N () C:\Program Files\IZArc\IZArcCM.dll
2014-07-30 05:04 - 2014-07-30 05:04 - 00023552 _____ () C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe
2009-05-27 23:09 - 2009-05-27 23:09 - 00049976 ____N () C:\Program Files\Lenovo\Message Center Plus\MCPLaunch.exe
2010-06-09 23:18 - 2010-06-09 23:18 - 00090912 _____ () C:\Program Files\Gbridge LLC\Gbridge\pstartw.exe
2014-10-31 12:12 - 2014-10-31 12:12 - 00043008 _____ () c:\users\gabriel\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpwvms9h.dll
2013-08-23 12:01 - 2013-08-23 12:01 - 25100288 _____ () C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\libcef.dll
2012-12-18 12:08 - 2012-12-18 12:08 - 14588632 _____ () C:\Program Files\Adobe\Reader 11.0\Reader\NPSWF32.dll
2012-09-23 20:43 - 2012-09-23 20:43 - 00313992 _____ () C:\Program Files\Adobe\Reader 11.0\Reader\sqlite.dll
2010-12-03 00:25 - 2010-12-03 00:25 - 00197568 _____ () C:\Program Files\Common Files\Autodesk Shared\WSCommCntr3\lib\axutil.dll
2010-12-03 00:25 - 2010-12-03 00:25 - 00393152 _____ () C:\Program Files\Common Files\Autodesk Shared\WSCommCntr3\lib\axis2_engine.dll
2010-12-03 00:25 - 2010-12-03 00:25 - 00187840 _____ () C:\Program Files\Common Files\Autodesk Shared\WSCommCntr3\lib\axiom.dll
2010-12-03 00:25 - 2010-12-03 00:25 - 00076224 _____ () C:\Program Files\Common Files\Autodesk Shared\WSCommCntr3\lib\axis2_parser.dll
2010-12-03 00:28 - 2010-12-03 00:28 - 00984512 _____ () C:\Program Files\Common Files\Autodesk Shared\WSCommCntr3\lib\libxml2.dll
2010-12-03 00:25 - 2010-12-03 00:25 - 00121280 _____ () C:\Program Files\Common Files\Autodesk Shared\WSCommCntr3\lib\neethi.dll
2014-10-28 05:03 - 2014-10-21 21:04 - 01042760 _____ () C:\Program Files\Google\Chrome\Application\38.0.2125.111\libglesv2.dll
2014-10-28 05:03 - 2014-10-21 21:04 - 00211272 _____ () C:\Program Files\Google\Chrome\Application\38.0.2125.111\libegl.dll
2014-10-28 05:03 - 2014-10-21 21:04 - 08910664 _____ () C:\Program Files\Google\Chrome\Application\38.0.2125.111\pdf.dll
2014-10-28 05:03 - 2014-10-21 21:04 - 01681224 _____ () C:\Program Files\Google\Chrome\Application\38.0.2125.111\ffmpegsumo.dll
2006-10-28 23:32 - 2006-10-28 23:32 - 00064328 ____N () C:\Program Files\Microsoft Small Business\Business Contact Manager\en-US\BusinessLayer.resources.dll
2008-01-11 18:50 - 2008-01-11 18:50 - 00529512 ____N () C:\Program Files\Microsoft Small Business\Business Contact Manager\en-US\BCMRes.resources.dll
2009-02-26 13:46 - 2009-02-26 13:46 - 00064344 _____ () C:\Program Files\Microsoft Office\Office12\ADDINS\ColleagueImport.dll
2011-06-22 11:46 - 2011-06-22 11:46 - 00434016 _____ () C:\Program Files\Microsoft Office\Office12\ADDINS\UmOutlookAddin.dll
2011-05-26 20:18 - 2011-05-26 20:18 - 00136536 _____ () C:\Program Files\Microsoft Office\Office12\OUTLCTL.DLL
2013-07-10 18:07 - 2013-07-10 18:07 - 00756888 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSPTLS.DLL
2006-10-28 23:32 - 2006-10-28 23:32 - 00012104 ____N () C:\Program Files\Microsoft Small Business\Business Contact Manager\en-US\Microsoft.Interop.Mapi.Interfaces.resources.dll
2014-10-28 05:03 - 2014-10-21 21:05 - 14902600 _____ () C:\Program Files\Google\Chrome\Application\38.0.2125.111\PepperFlash\pepflashplayer.dll
 
==================== Alternate Data Streams (whitelisted) =========
 
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
 
 
==================== Safe Mode (whitelisted) ===================
 
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
 
==================== EXE Association (whitelisted) =============
 
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
 
 
==================== MSCONFIG/TASK MANAGER disabled items =========
 
(Currently there is no automatic fix for this section.)
 
 
========================= Accounts: ==========================
 
Administrator (S-1-5-21-3248881932-903285841-3063169814-500 - Administrator - Disabled)
Gabriel (S-1-5-21-3248881932-903285841-3063169814-1003 - Administrator - Enabled) => C:\Users\Gabriel
Guest (S-1-5-21-3248881932-903285841-3063169814-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3248881932-903285841-3063169814-1005 - Limited - Enabled)
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (11/01/2014 07:46:41 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: 468: ERROR: read_msg errno 0 (The operation completed successfully.)
 
Error: (11/01/2014 07:46:41 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: mDNSPlatformReadTCP - recv: 10053
 
Error: (11/01/2014 07:45:41 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: 468: ERROR: read_msg errno 0 (The operation completed successfully.)
 
Error: (11/01/2014 07:45:41 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: mDNSPlatformReadTCP - recv: 10053
 
Error: (11/01/2014 07:44:41 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: 188: ERROR: read_msg errno 0 (The operation completed successfully.)
 
Error: (11/01/2014 07:44:41 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: mDNSPlatformReadTCP - recv: 10053
 
Error: (11/01/2014 07:43:41 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: 300: ERROR: read_msg errno 0 (The operation completed successfully.)
 
Error: (11/01/2014 07:43:41 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: mDNSPlatformReadTCP - recv: 10053
 
Error: (11/01/2014 07:42:41 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: 300: ERROR: read_msg errno 0 (The operation completed successfully.)
 
Error: (11/01/2014 07:42:41 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: mDNSPlatformReadTCP - recv: 10053
 
 
System errors:
=============
Error: (11/01/2014 07:45:59 AM) (Source: ipnathlp) (EventID: 1233) (User: )
Description: 
 
Error: (11/01/2014 07:33:52 AM) (Source: ipnathlp) (EventID: 1233) (User: )
Description: 
 
Error: (11/01/2014 07:24:37 AM) (Source: ipnathlp) (EventID: 31004) (User: )
Description: 0
 
Error: (11/01/2014 06:56:10 AM) (Source: ipnathlp) (EventID: 1233) (User: )
Description: 
 
Error: (11/01/2014 06:44:03 AM) (Source: ipnathlp) (EventID: 1233) (User: )
Description: 
 
Error: (11/01/2014 06:06:21 AM) (Source: ipnathlp) (EventID: 1233) (User: )
Description: 
 
Error: (11/01/2014 05:54:14 AM) (Source: ipnathlp) (EventID: 1233) (User: )
Description: 
 
Error: (11/01/2014 05:16:32 AM) (Source: ipnathlp) (EventID: 1233) (User: )
Description: 
 
Error: (11/01/2014 05:04:24 AM) (Source: ipnathlp) (EventID: 1233) (User: )
Description: 
 
Error: (11/01/2014 04:26:42 AM) (Source: ipnathlp) (EventID: 1233) (User: )
Description: 
 
 
Microsoft Office Sessions:
=========================
Error: (03/18/2014 03:39:33 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6680.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 7270 seconds with 540 seconds of active time.  This session ended with a crash.
 
Error: (03/28/2013 11:48:13 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6665.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 40 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error: (05/14/2012 10:10:48 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6607.1000, Microsoft Office Version: 12.0.6612.1000. This session lasted 8 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error: (05/14/2012 10:08:54 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6607.1000, Microsoft Office Version: 12.0.6612.1000. This session lasted 11 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error: (10/07/2011 11:32:12 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6565.5003, Microsoft Office Version: 12.0.6425.1000. This session lasted 3 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error: (07/18/2011 06:31:19 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6557.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 2 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error: (06/20/2011 01:10:24 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6557.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 3 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error: (06/15/2011 09:12:24 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6550.5004, Microsoft Office Version: 12.0.6425.1000. This session lasted 2 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error: (06/07/2011 11:15:55 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 3 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error: (06/04/2011 01:41:19 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6550.5004, Microsoft Office Version: 12.0.6425.1000. This session lasted 4 seconds with 0 seconds of active time.  This session ended with a crash.
 
 
CodeIntegrity Errors:
===================================
  Date: 2014-10-16 00:23:05.725
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-10-16 00:23:05.725
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-10-16 00:23:05.725
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-10-16 00:23:05.715
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-10-16 00:23:05.715
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-10-16 00:23:05.705
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-10-16 00:23:05.675
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\KLELAMX86\klelam.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-10-16 00:23:05.665
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\KLELAMX86\klelam.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-10-16 00:23:05.665
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\KLELAMX86\klelam.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-10-16 00:23:05.655
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\KLELAMX86\klelam.sys because the set of per-page image hashes could not be found on the system.
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core™2 Duo CPU T9900 @ 3.06GHz
Percentage of memory in use: 89%
Total physical RAM: 2520.01 MB
Available physical RAM: 253.05 MB
Total Pagefile: 18518.3 MB
Available Pagefile: 13603.66 MB
Total Virtual: 2047.88 MB
Available Virtual: 1891.58 MB
 
==================== Drives ================================
 
Drive c: (Windows7_OS) (Fixed) (Total:287.15 GB) (Free:50.13 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive f: (My Passport) (Fixed) (Total:1862.98 GB) (Free:1675.1 GB) NTFS
Drive q: (Lenovo_Recovery) (Fixed) (Total:9.77 GB) (Free:3.04 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 1 (Size: 1.4 GB) (Disk ID: BC04B28A)
Partition 1: (Not Active) - (Size=1.4 GB) - (Type=1B)
 
========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 1863 GB) (Disk ID: 0005F107)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)
 
==================== End Of Log ============================

  • 0

#10
Nevan

Nevan

    Trusted Helper

  • Malware Removal
  • 1,765 posts

Thank you for your continued help - it is most appreciated.

You're welcome :)

Just some tiny cleaning to do here.

Step #1
FRST Fix
  • Download attached fixlist.txt file to your desktop.
    Attached File  fixlist.txt   775bytes   192 downloads
    NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system
  • Right click FRST64.exe on your desktop and click Run as administrator. When the tool opens click Yes to disclaimer.
  • Press the Fix button just once and wait.
    NOTE: It's important that both FRST64.exe and fixlist.txt are in the same location or the fix will not work.
  • If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
  • When finished, FRST will generate a log on the desktop (Fixlog.txt). Select all (CTRL+A) the content of the log, copy it (CTRL+C) and paste (CTRL+V) it into your next reply.
 
Step #2
AdwCleaner
  • Download AdwCleaner to your Desktop.
  • Close any open windows
  • Disable your Antivirus program
  • Double click AdwCleaner.exe on your desktop to run it

    8KEILww.png

  • Click the OvD9RYN.png button
  • Wait for AdwCleaner to finish the scan
  • When the scan is finished, there will be "Pending. Please uncheck elements you don't want to remove" message. Leave everything as it is and click qKMbAXQ.png button. A Notepad window will be opened
  • Select all (CTRL+A) the content of the log, copy it (CTRL+C) and paste (CTRL+V) it into your next reply.
 
Step #3
FRST Scan in Clean Boot

Please launch the system in the clean boot using the same method as we used earlier. Once in clean boot, do the following:
  • Right click FRST64.exe on your Desktop and click Run as administrator. When the tool opens click Yes to disclaimer.
  • Make sure that Addition.txt is checked and press the Scan button.
  • It will produce two logs - one called FRST.txt and another one called Addition.txt in the same directory the tool is run from.
  • Select all (CTRL+A) the content of the logs, copy them (CTRL+C) and paste (CTRL+V) them into your next reply.
After you're done, launch the system in normal mode like earlier.

 
Things that should appear in your next post:
  • Fixlog.txt log content
  • AdwCleaner log content
  • FRST.txt log content

  • 0

Advertisements


#11
gabybaby

gabybaby

    Member

  • Topic Starter
  • Member
  • PipPip
  • 62 posts

Hello Nevan,

 

Thank you for your message and for your continued help.

 

I have a question before I follow your most recent instructions.  In Step #1 you ask me to run FRST64.exe, but I have a 32 bit system.  Should I run the 32 bit version of FRST instead?

 

-Gabriel


  • 0

#12
Nevan

Nevan

    Trusted Helper

  • Malware Removal
  • 1,765 posts

Hello gabybaby.

 

Yes, launch 32bit version please.

Sorry for my mistake.


  • 0

#13
gabybaby

gabybaby

    Member

  • Topic Starter
  • Member
  • PipPip
  • 62 posts

Hello Nevan,

 

Thank you again for your continued help.

 

Here are the logs you requested in your most recent instructions:

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 04-11-2014
Ran by Gabriel at 2014-11-03 23:47:49 Run:2
Running from C:\Users\Gabriel\Desktop
Loaded Profile: Gabriel (Available profiles: Gabriel)
Boot Mode: Normal
 
==============================================
 
Content of fixlist:
*****************
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKCU - DefaultScope {2E91A6D6-253A-4FE1-84E7-F8ABD8E50297} URL = 
SearchScopes: HKCU - {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = 
SearchScopes: HKCU - {2E91A6D6-253A-4FE1-84E7-F8ABD8E50297} URL = 
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} -  No File
ShellExecuteHooks:  - {AEB6717E-7E19-11d0-97EE-00C04FD91972} -  No File [ ]
Winsock: Catalog5 01 %SystemRoot%\System32\mswsock.dll [231424] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
U3 .e2rdsvca; No ImagePath
S3 catchme; \??\C:\Users\Gabriel\AppData\Local\Temp\catchme.sys [X]
S2 MCSTRM; No ImagePath
CloseProcesses:
cmd: netsh winsock reset
EmptyTemp:
*****************
 
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found.
"HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value not found.
"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}" => Key not found.
"HKCR\CLSID\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}" => Key not found.
"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2E91A6D6-253A-4FE1-84E7-F8ABD8E50297}" => Key not found.
"HKCR\CLSID\{2E91A6D6-253A-4FE1-84E7-F8ABD8E50297}" => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} => Value not found.
"HKCR\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}" => Key not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\explorer\ShellExecuteHooks\\{AEB6717E-7E19-11d0-97EE-00C04FD91972} => Value not found.
"HKCR\CLSID\{AEB6717E-7E19-11d0-97EE-00C04FD91972}" => Key not found.
Winsock: Catalog5 entry 000000000001\\LibraryPath  was set successfully to %SystemRoot%\system32\NLAapi.dll
.e2rdsvca => Service not found.
catchme => Service not found.
MCSTRM => Service not found.
Processes closed successfully.
 
=========  netsh winsock reset =========
 
 
Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.
 
 
========= End of CMD: =========
 
EmptyTemp: => Removed 21.7 MB temporary data.
 
 
The system needed a reboot. 
 
==== End of Fixlog ====
 
 
 
 
# AdwCleaner v3.311 - Report created 04/11/2014 at 00:05:56
# Updated 30/09/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (32 bits)
# Username : Gabriel - GABRIEL-W500
# Running from : C:\Users\Gabriel\Desktop\AdwCleaner.exe
# Option : Scan
 
***** [ Services ] *****
 
 
***** [ Files / Folders ] *****
 
File Found : C:\END
Folder Found : C:\Device
Folder Found : C:\Program Files\TidyNetwork
Folder Found : C:\Users\Gabriel\AppData\Roaming\Strongvault
 
***** [ Scheduled Tasks ] *****
 
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
Key Found : HKCU\Software\YahooPartnerToolbar
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
 
***** [ Browsers ] *****
 
-\\ Internet Explorer v11.0.9600.17344
 
 
-\\ Mozilla Firefox v
 
[ File : C:\Users\Gabriel\AppData\Roaming\Mozilla\Firefox\Profiles\oelkky6o.default\prefs.js ]
 
 
-\\ Google Chrome v38.0.2125.111
 
[ File : C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\preferences ]
 
 
*************************
 
AdwCleaner[R0].txt - [1534 octets] - [01/11/2014 20:49:21]
AdwCleaner[R1].txt - [1357 octets] - [04/11/2014 00:05:56]
 
########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [1417 octets] ##########
 
 
 
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 04-11-2014
Ran by Gabriel (administrator) on GABRIEL-W500 on 04-11-2014 00:19:01
Running from C:\Users\Gabriel\Desktop
Loaded Profile: Gabriel (Available profiles: Gabriel)
Platform: Microsoft Windows 7 Professional  Service Pack 1 (X86) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avp.exe
(Microsoft Corporation) C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avpui.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\cmd.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\plugin-nm-server.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
 
 
==================== Registry (Whitelisted) ==================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll (Autodesk, Inc.)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft...=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://m.www.yahoo.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com/welcome/thinkpad
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3248881932-903285841-3063169814-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
BHO: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Search Helper -> {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} -> C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
BHO: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
DPF: {12193C65-F0E1-4DD1-AD4E-DB73C6911011} file:///E:/activeX/DCP.cab
DPF: {62789780-B744-11D0-986B-00609731A21D} http://navigatela.la...ad/mgaxctrl.cab
DPF: {7191F0AC-D686-46A8-BFCC-EA61778C74DD} https://www.mydlink....aplugLiteDL.cab
DPF: {74FFE28D-2378-11D5-990C-006094235084} http://www-307.ibm.c...rt/IbmEgath.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab
DPF: {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab
Winsock: Catalog5 10 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
 
FireFox:
========
FF ProfilePath: C:\Users\Gabriel\AppData\Roaming\Mozilla\Firefox\Profiles\oelkky6o.default
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @real.com/nppl3260;version=17.0.13.2 -> c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlhtml5videoshim;version=17.0.13 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpplugin;version=17.0.13.2 -> c:\program files\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer Cloud)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @autodesk.com/DWF -> C:\Program Files\Autodesk\Autodesk Design Review Browser Add-on v1.2\npADRdwf.dll (Autodesk)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npwachk.dll (Nullsoft, Inc.)
FF Extension: Kaspersky URL Advisor - C:\Program Files\Mozilla Firefox\extensions\[email protected] [2014-09-24]
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBA} [2014-09-24]
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} [2014-09-24]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected]
FF Extension: 卡巴斯基網址顧問 - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected] [2013-08-21]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected]
FF Extension: 虛擬鍵盤 - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected] [2013-08-21]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected]
FF Extension: 惡意網站攔截器 - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\[email protected] [2013-08-21]
FF HKLM\...\Firefox\Extensions: [{9D2AA73B-6049-4799-B8AC-925723370070}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2014-10-19]
FF HKCU\...\Firefox\Extensions: [{CFB336FE-D07D-11E1-8270-B8AC6F996F26}] - C:\Users\Gabriel\AppData\Local\{CFB336FE-D07D-11E1-8270-B8AC6F996F26}
FF Extension: Mozilla Safe Browsing - C:\Users\Gabriel\AppData\Local\{CFB336FE-D07D-11E1-8270-B8AC6F996F26} [2012-07-17]
FF Extension: No Name - C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [Not Found]
 
Chrome: 
=======
CHR Profile: C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-10-16]
CHR Extension: (Google Docs) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-10-16]
CHR Extension: (Google Drive) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-10-16]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-10-16]
CHR Extension: (Kaspersky Protection) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blbkdnmdcafmfhinpmnlhhddbepgkeaa [2014-10-16]
CHR Extension: (YouTube) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-10-16]
CHR Extension: (Google Search) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-10-16]
CHR Extension: (Kaspersky URL Advisor) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2014-10-16]
CHR Extension: (Google Sheets) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-10-16]
CHR Extension: (Google Wallet) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-10-16]
CHR Extension: (Gmail) - C:\Users\Gabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-10-16]
CHR HKLM\...\Chrome\Extension: [blbkdnmdcafmfhinpmnlhhddbepgkeaa] - https://chrome.googl...mnlhhddbepgkeaa []
CHR HKLM\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\ChromeExt\urladvisor.crx [2013-06-17]
 
========================== Services (Whitelisted) =================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
S4 ADMonitor; C:\Windows\system32\ADMonitor.exe [106496 2009-08-31] () [File not signed]
S4 Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [68096 2013-12-11] () [File not signed]
S4 Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [18656 2011-02-02] ()
R2 AVP; C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avp.exe [214512 2013-10-02] (Kaspersky Lab ZAO)
S4 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [1680088 2013-10-28] (Broadcom Corporation.)
S4 CrashPlanService; C:\Program Files\CrashPlan\CrashPlanService.exe [152576 2011-02-10] (CrashPlan) [File not signed]
S4 dtsvc; C:\Windows\system32\DTS.exe [98304 2009-08-31] () [File not signed]
S4 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [1044816 2014-01-14] (Flexera Software, Inc.)
S4 LENOVO.MICMUTE; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [45424 2009-07-03] (Lenovo Group Limited)
S4 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-10-01] (Malwarebytes Corporation)
S4 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [968504 2014-10-01] (Malwarebytes Corporation)
S4 MSSQLServerADHelper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [44384 2010-12-10] (Microsoft Corporation)
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44032 2009-05-14] (Hewlett-Packard) [File not signed]
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2009-05-14] (Hewlett-Packard) [File not signed]
S4 RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [39568 2014-07-30] ()
S4 RealPlayer Cloud Service; c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe [1141848 2014-10-19] (RealNetworks, Inc.)
S4 RealPlayerUpdateSvc; C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe [23552 2014-07-30] () [File not signed]
S4 SUService; c:\Program Files\Lenovo\System Update\SUService.exe [15872 2009-09-24] (Lenovo Group Limited) [File not signed]
S4 ThinkVantage Registry Monitor Service; C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe [1019904 2009-08-28] (Lenovo Group Limited) [File not signed]
S4 TVT Backup Service; C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe [1474560 2009-09-03] (Lenovo Group Limited) [File not signed]
S4 UNS; C:\Program Files\Common Files\Intel\Privacy Icon\UNS\UNS.exe [2058776 2009-08-03] (Intel Corporation)
S4 UnsignedThemes; C:\Windows\UnsignedThemesSvc.exe [21096 2009-07-13] (The Within Network, LLC)
S4 WDBackup; C:\Program Files\Western Digital\WD SmartWare\WDBackupEngine.exe [1042808 2014-07-22] (Western Digital Technologies, Inc.)
S4 WDDriveService; C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe [296312 2014-06-02] (Western Digital Technologies, Inc.)
 
==================== Drivers (Whitelisted) ====================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 5U875UVC; C:\Windows\System32\DRIVERS\5U875.sys [72320 2009-07-07] (Ricoh co.,Ltd.)
R3 amdkmdag; C:\Windows\System32\DRIVERS\atipmdag.sys [5073920 2009-08-23] (ATI Technologies Inc.)
R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [175320 2013-10-28] (Broadcom Corporation.)
R3 btwampfl; C:\Windows\System32\DRIVERS\btwampfl.sys [144600 2013-10-28] (Broadcom Corporation.)
R3 gbridge; C:\Windows\System32\DRIVERS\gbridge.sys [41216 2009-05-10] (Gbridge LLC)
S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-09-23] (LogMeIn, Inc.)
R3 intelkmd; C:\Windows\System32\DRIVERS\igdpmd32.sys [5946368 2009-09-21] (Intel Corporation)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [135776 2013-11-07] (Kaspersky Lab ZAO)
S4 klflt; C:\Windows\System32\DRIVERS\klflt.sys [94304 2014-03-25] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [576608 2014-03-25] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [25696 2013-10-02] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [25184 2014-02-18] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [25696 2013-10-02] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [14432 2013-04-12] (Kaspersky Lab ZAO)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [45024 2013-05-14] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [144992 2013-12-19] (Kaspersky Lab ZAO)
R0 Lbd; C:\Windows\System32\DRIVERS\Lbd.sys [64288 2010-08-12] (Lavasoft AB)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2014-10-01] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2014-10-01] (Malwarebytes Corporation)
R3 msvad_simple; C:\Windows\System32\drivers\povrtdev.sys [22696 2009-10-14] (MediaMall Technologies, Inc.)
R3 NETwNs32; C:\Windows\System32\DRIVERS\NETwNs32.sys [7122944 2010-10-18] (Intel Corporation)
S3 PAC7302; C:\Windows\System32\DRIVERS\PAC7302.SYS [458496 2008-01-15] (PixArt Imaging Inc.)
R2 uxpatch; C:\Windows\system32\drivers\uxpatch.sys [25448 2009-07-13] ()
R3 VCSVADHWSer; C:\Windows\System32\DRIVERS\vcsvad.sys [17792 2008-12-26] (Avnex)
S3 PCDSRVC{3037D694-FD904ACA-06020101}_0; \??\c:\program files\pc-doctor\pcdsrvc.pkms [X]
 
==================== NetSvcs (Whitelisted) ===================
 
 
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
 
 
==================== One Month Created Files and Folders ========
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2014-11-04 00:19 - 2014-11-04 00:19 - 00019378 _____ () C:\Users\Gabriel\Desktop\FRST.txt
2014-11-04 00:05 - 2014-11-04 00:07 - 00001497 _____ () C:\Users\Gabriel\Desktop\AdwCleaner[R0].txt
2014-11-03 23:57 - 2014-11-04 00:12 - 00415482 _____ () C:\Windows\PFRO.log
2014-11-03 23:57 - 2014-11-04 00:12 - 00000112 _____ () C:\Windows\setupact.log
2014-11-03 23:57 - 2014-11-03 23:57 - 00000000 _____ () C:\Windows\setuperr.log
2014-11-03 23:47 - 2014-11-03 23:47 - 00000000 ____D () C:\Users\Gabriel\Desktop\FRST-OlderVersion
2014-11-03 00:24 - 2014-11-03 00:24 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\22BF6205.sys
2014-11-02 17:54 - 2014-11-02 17:54 - 00001027 _____ () C:\Users\Gabriel\Desktop\Blurity.lnk
2014-11-02 17:54 - 2014-11-02 17:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blurity
2014-11-02 17:53 - 2014-11-02 17:55 - 00000000 ____D () C:\Users\Gabriel\AppData\Roaming\Blurity
2014-11-02 17:31 - 2014-11-02 17:33 - 60807336 _____ (Nesota LLC ) C:\Users\Gabriel\Downloads\blurity-setup_1.5.171.exe
2014-11-02 16:11 - 2014-11-02 16:11 - 00000879 _____ () C:\Users\Gabriel\AppData\Local\recently-used.xbel
2014-11-02 16:11 - 2014-11-02 16:11 - 00000000 ____D () C:\Users\Gabriel\AppData\Local\gtk-2.0
2014-11-02 16:11 - 2014-11-02 16:11 - 00000000 ____D () C:\Users\Gabriel\.thumbnails
2014-11-02 16:08 - 2014-11-02 17:26 - 00000000 ____D () C:\Users\Gabriel\.gimp-2.8
2014-11-02 16:08 - 2014-11-02 16:08 - 00000000 ____D () C:\Users\Gabriel\AppData\Local\gegl-0.2
2014-11-02 16:08 - 2014-11-02 16:08 - 00000000 ____D () C:\Users\Gabriel\AppData\Local\fontconfig
2014-11-02 15:58 - 2014-11-02 16:03 - 00000000 ____D () C:\Users\Gabriel\.gimp-2.6
2014-11-02 15:58 - 2014-11-02 15:58 - 00000000 ____D () C:\Users\Gabriel\Documents\gegl-0.0
2014-11-02 15:57 - 2014-11-03 03:36 - 00000000 ____D () C:\Program Files\TidyNetwork
2014-11-02 15:51 - 2014-11-02 15:51 - 00073728 _____ () C:\Users\Gabriel\Desktop\refocus-it.exe
2014-11-02 14:45 - 2014-11-02 14:45 - 00000000 ____D () C:\Users\Gabriel\Documents\Glendale Incident 11-02-14
2014-11-01 20:50 - 2010-08-30 07:34 - 00536576 _____ (SQLite Development Team) C:\Windows\system32\sqlite3.dll
2014-11-01 20:43 - 2014-11-04 00:09 - 00000000 ____D () C:\AdwCleaner
2014-11-01 20:43 - 2014-11-01 20:43 - 01375089 _____ () C:\Users\Gabriel\Desktop\AdwCleaner.exe
2014-11-01 06:43 - 2014-11-04 00:19 - 00000000 ____D () C:\FRST
2014-11-01 06:40 - 2014-11-03 23:47 - 01106432 _____ (Farbar) C:\Users\Gabriel\Desktop\FRST.exe
2014-10-31 23:34 - 2014-10-31 23:34 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\5A2F1FD1.sys
2014-10-22 23:35 - 2014-10-22 23:35 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\6D7160ED.sys
2014-10-22 08:36 - 2014-11-03 23:59 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-10-22 08:36 - 2014-10-22 08:36 - 00001071 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-10-22 08:36 - 2014-10-22 08:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-10-22 08:36 - 2014-10-22 08:36 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-10-22 08:36 - 2014-10-01 10:11 - 00075480 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-10-22 08:36 - 2014-10-01 10:11 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-10-22 08:36 - 2014-10-01 10:11 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-10-22 08:09 - 2014-10-22 08:10 - 00000000 ____D () C:\ProgramData\MFAData
2014-10-22 08:09 - 2014-10-22 08:09 - 00000000 ____D () C:\Users\Gabriel\AppData\Local\MFAData
2014-10-22 08:09 - 2014-10-22 08:09 - 00000000 ____D () C:\Users\Gabriel\AppData\Local\Avg2015
2014-10-19 17:13 - 2014-10-19 17:13 - 00000000 ____D () C:\Users\Gabriel\AppData\Roaming\RealNetworks
2014-10-19 17:11 - 2014-10-19 17:11 - 00001012 _____ () C:\Users\Public\Desktop\RealPlayer Cloud.lnk
2014-10-19 17:10 - 2014-10-19 17:10 - 00201800 _____ (RealNetworks, Inc.) C:\Windows\system32\rmoc3260.dll
2014-10-19 17:10 - 2014-10-19 17:10 - 00000000 ____D () C:\ProgramData\RealNetworks
2014-10-19 17:10 - 2014-10-19 17:10 - 00000000 ____D () C:\Program Files\RealNetworks
2014-10-19 17:10 - 2014-10-19 17:10 - 00000000 ____D () C:\Program Files\Common Files\xing shared
2014-10-19 17:09 - 2014-10-19 17:11 - 00000000 ____D () C:\Program Files\real
2014-10-19 17:09 - 2014-10-19 17:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks
2014-10-17 05:12 - 2014-10-17 05:12 - 00000074 _____ () C:\Users\Gabriel\Downloads\listen.pls
2014-10-16 20:53 - 2014-11-04 00:13 - 00000884 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-10-16 20:53 - 2014-11-03 23:58 - 00000888 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-10-16 20:53 - 2014-10-28 04:03 - 00002140 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-10-16 20:53 - 2014-10-16 20:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-10-16 19:18 - 2014-10-16 19:18 - 00061077 _____ () C:\59f5c49c-6195-46ad-9060-f4b43ac765bf.dmp
2014-10-16 16:54 - 2014-09-04 17:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-10-16 05:08 - 2013-10-01 16:42 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-10-16 05:08 - 2013-10-01 16:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-10-16 05:08 - 2013-10-01 16:30 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-10-16 05:08 - 2013-10-01 16:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-10-16 05:08 - 2013-10-01 16:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-10-16 05:08 - 2013-10-01 15:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-10-16 05:08 - 2013-10-01 15:45 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-10-16 05:08 - 2013-10-01 15:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-10-16 05:08 - 2013-10-01 15:00 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-10-16 05:08 - 2013-10-01 14:53 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-10-16 05:08 - 2013-10-01 14:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-10-16 05:07 - 2014-08-18 18:41 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2014-10-16 05:07 - 2014-08-18 18:41 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2014-10-16 05:07 - 2014-08-18 18:41 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2014-10-16 05:07 - 2014-08-18 18:40 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2014-10-16 05:07 - 2014-08-18 18:40 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2014-10-16 05:07 - 2014-08-18 17:48 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2014-10-16 05:07 - 2014-07-06 17:40 - 11411456 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 03208704 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 01329664 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 01174528 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 01005056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00988160 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00744960 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00617984 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00473600 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00442880 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00406016 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00354816 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2014-10-16 05:07 - 2014-07-06 17:40 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2014-10-16 05:07 - 2014-07-06 17:40 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2014-10-16 05:07 - 2014-07-06 17:39 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2014-10-16 05:07 - 2014-07-06 17:39 - 03970488 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2014-10-16 05:07 - 2014-07-06 17:39 - 03914680 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-10-16 05:07 - 2014-07-06 17:39 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2014-10-16 05:07 - 2014-07-06 17:39 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2014-10-16 05:07 - 2014-07-06 17:39 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2014-10-16 05:07 - 2014-07-06 17:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2014-10-16 05:07 - 2014-07-06 17:28 - 00593920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2014-10-16 05:07 - 2014-06-27 16:21 - 00521384 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2014-10-16 05:07 - 2014-06-27 16:21 - 00455752 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2014-10-16 05:07 - 2014-06-27 16:21 - 00409272 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2014-10-16 05:01 - 2014-10-16 05:01 - 00000000 ____D () C:\Program Files\Common Files\Java
2014-10-16 05:01 - 2014-09-26 17:36 - 00272808 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-10-16 05:00 - 2014-09-26 17:42 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2014-10-16 05:00 - 2014-09-26 17:36 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-10-16 05:00 - 2014-09-26 17:35 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-10-16 04:59 - 2014-10-16 05:00 - 00005670 _____ () C:\Windows\system32\jupdate-1.7.0_71-b14.log
2014-10-16 04:29 - 2014-10-09 17:44 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-10-16 04:29 - 2014-10-09 17:44 - 00230912 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-10-16 04:29 - 2014-10-09 17:39 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-10-16 04:29 - 2014-10-06 18:04 - 00331448 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-10-16 04:29 - 2014-09-28 16:41 - 02379264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-10-16 04:29 - 2014-09-25 14:46 - 00365056 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-10-16 04:29 - 2014-09-25 14:46 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-10-16 04:29 - 2014-09-25 14:46 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-10-16 04:29 - 2014-09-25 14:43 - 11807232 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-10-16 04:29 - 2014-09-25 14:32 - 02017280 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-10-16 04:29 - 2014-09-18 17:44 - 17484800 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-10-16 04:29 - 2014-09-18 17:25 - 04201472 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-10-16 04:29 - 2014-09-18 17:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-10-16 04:29 - 2014-09-18 17:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-10-16 04:29 - 2014-09-18 17:02 - 00454656 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-10-16 04:29 - 2014-09-18 17:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-10-16 04:29 - 2014-09-18 17:01 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-10-16 04:29 - 2014-09-18 16:59 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-10-16 04:29 - 2014-09-18 16:55 - 02187264 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-10-16 04:29 - 2014-09-18 16:54 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-10-16 04:29 - 2014-09-18 16:53 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-10-16 04:29 - 2014-09-18 16:51 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-10-16 04:29 - 2014-09-18 16:50 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-10-16 04:29 - 2014-09-18 16:50 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-10-16 04:29 - 2014-09-18 16:49 - 00597504 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-10-16 04:29 - 2014-09-18 16:44 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-10-16 04:29 - 2014-09-18 16:36 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-10-16 04:29 - 2014-09-18 16:32 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-10-16 04:29 - 2014-09-18 16:20 - 00677888 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-10-16 04:29 - 2014-09-18 16:20 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-10-16 04:29 - 2014-09-18 16:18 - 01068032 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-10-16 04:29 - 2014-09-18 15:59 - 01810944 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-10-16 04:29 - 2014-09-18 15:53 - 01190400 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-10-16 04:29 - 2014-09-18 15:52 - 00678400 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-10-16 04:29 - 2014-09-03 21:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2014-10-16 04:29 - 2014-07-16 17:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2014-10-16 04:29 - 2014-07-16 17:39 - 00523264 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-10-16 04:29 - 2014-07-16 17:39 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-10-16 04:29 - 2014-07-16 17:39 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2014-10-16 04:29 - 2014-07-16 17:39 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-10-16 04:29 - 2014-07-16 17:39 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-10-16 04:29 - 2014-07-16 17:03 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-10-16 04:29 - 2014-07-16 17:02 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-10-16 04:28 - 2014-09-17 17:32 - 02363904 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-10-16 04:28 - 2014-08-28 17:44 - 02744320 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-10-16 04:28 - 2014-06-18 14:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-10-16 04:28 - 2014-06-18 14:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2014-10-16 04:28 - 2014-06-18 14:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2014-10-16 04:27 - 2014-09-12 17:40 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-10-16 04:17 - 2014-10-16 04:17 - 00062572 _____ () C:\683ca008-8255-47a9-b238-1859e568bbd5.dmp
2014-10-15 22:25 - 2014-10-15 22:25 - 00060846 _____ () C:\6d2cb87a-c6e5-4dad-b0fd-58aaa400cf17.dmp
2014-10-14 08:44 - 2014-10-14 08:44 - 00002177 _____ () C:\Users\Public\Desktop\Style Builder 2.lnk
2014-10-14 08:43 - 2014-10-14 08:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google SketchUp 8
2014-10-14 08:43 - 2014-10-14 08:43 - 00002091 _____ () C:\Users\Public\Desktop\LayOut 3.lnk
2014-10-14 08:43 - 2014-10-14 08:43 - 00002006 _____ () C:\Users\Public\Desktop\Google SketchUp 8.lnk
 
==================== One Month Modified Files and Folders =======
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2014-11-04 00:17 - 2014-08-12 07:03 - 01830222 _____ () C:\Windows\WindowsUpdate.log
2014-11-04 00:17 - 2009-07-20 21:30 - 00852198 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-04 00:13 - 2010-02-03 03:31 - 00000437 _____ () C:\Windows\system32\Drivers\etc\hosts.ics
2014-11-04 00:13 - 2010-01-29 11:13 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-11-04 00:12 - 2009-07-13 20:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-04 00:11 - 2014-01-28 10:11 - 00000000 ___RD () C:\Users\Gabriel\Dropbox
2014-11-04 00:11 - 2010-08-18 22:06 - 00000000 ____D () C:\Windows\pss
2014-11-04 00:08 - 2009-07-13 20:34 - 00021680 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-04 00:08 - 2009-07-13 20:34 - 00021680 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-03 23:59 - 2014-01-28 10:10 - 00000000 ____D () C:\Users\Gabriel\AppData\Roaming\Dropbox
2014-11-03 14:03 - 2010-05-25 13:10 - 00000382 _____ () C:\Windows\Tasks\SystemToolsDailyTest.job
2014-11-03 14:01 - 2010-01-29 10:18 - 00000000 ____D () C:\Users\Gabriel
2014-11-02 17:18 - 2010-01-29 10:26 - 00000000 ____D () C:\Users\Gabriel\AppData\Roaming\Adobe
2014-11-02 17:18 - 2010-01-27 18:56 - 00000000 ____D () C:\ProgramData\Adobe
2014-11-01 14:11 - 2010-05-20 20:56 - 00060118 _____ () C:\Users\Gabriel\Documents\plot.log
2014-10-28 05:35 - 2010-01-29 10:33 - 00229000 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-10-22 08:36 - 2010-08-16 15:24 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-10-20 11:13 - 2010-02-04 14:22 - 00000000 ____D () C:\Windows\Minidump
2014-10-20 10:31 - 2011-04-22 14:37 - 00000000 ____D () C:\Program Files\CrashPlan
2014-10-19 17:13 - 2010-04-09 08:42 - 00000000 ____D () C:\Users\Gabriel\AppData\Roaming\Real
2014-10-19 17:10 - 2010-09-24 12:22 - 00000000 ____D () C:\ProgramData\Real
2014-10-19 17:09 - 2010-09-24 12:22 - 00278600 _____ (Progressive Networks) C:\Windows\system32\pncrt.dll
2014-10-19 17:09 - 2010-04-18 12:11 - 00000000 ____D () C:\Program Files\Common Files\Real
2014-10-19 17:09 - 2009-09-24 22:35 - 00505416 _____ (Microsoft Corporation) C:\Windows\system32\msvcp71.dll
2014-10-19 17:00 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\rescache
2014-10-18 10:59 - 2010-01-29 13:31 - 00000000 ____D () C:\GRMMProjects
2014-10-16 20:55 - 2010-02-08 07:54 - 00000000 ____D () C:\Program Files\Adobe
2014-10-16 20:53 - 2010-03-18 18:54 - 00000000 ____D () C:\Program Files\Google
2014-10-16 20:48 - 2014-09-24 17:32 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-10-16 20:47 - 2011-02-22 20:47 - 00000000 ____D () C:\Program Files\Acro Software
2014-10-16 07:44 - 2009-07-13 20:46 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2014-10-16 07:44 - 2009-07-13 18:04 - 00000557 _____ () C:\Windows\win.ini
2014-10-16 07:43 - 2009-07-13 18:37 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-10-16 07:42 - 2009-07-13 20:53 - 00032650 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-10-16 05:22 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-10-16 05:01 - 2013-10-15 08:02 - 00000000 ____D () C:\ProgramData\Oracle
2014-10-16 05:00 - 2010-01-27 18:51 - 00000000 ____D () C:\Program Files\Java
2014-10-16 04:48 - 2009-07-13 20:33 - 03840440 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-10-16 04:45 - 2014-04-26 11:37 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-10-16 04:43 - 2010-01-27 19:14 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-10-16 04:37 - 2013-08-27 11:19 - 00000000 ____D () C:\Windows\system32\MRT
2014-10-16 04:33 - 2010-01-30 03:05 - 100290944 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-10-14 08:10 - 2010-01-27 18:39 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-10-09 21:37 - 2011-03-17 12:36 - 00000000 ____D () C:\Users\Gabriel\AppData\Local\Downloaded Installations
 
Some content of TEMP:
====================
C:\Users\Gabriel\AppData\Local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpqricvg.dll
C:\Users\Gabriel\AppData\Local\temp\Quarantine.exe
 
 
==================== Bamital & volsnap Check =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2014-10-26 00:23
 
==================== End Of Log ============================
 
 
 
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 04-11-2014
Ran by Gabriel at 2014-11-04 00:19:59
Running from C:\Users\Gabriel\Desktop
Boot Mode: Normal
==========================================================
 
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Kaspersky Anti-Virus (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886}
AS: Kaspersky Anti-Virus (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
 Registry Patch to arrange icons in Device and Printers folder of Windows 7 (HKLM\...\W7DevOR) (Version: 1.00 - )
2007 Microsoft Office system (HKLM\...\PROHYBRIDR) (Version: 12.0.6612.1000 - Microsoft Corporation)
32 Bit HP CIO Components Installer (Version: 6.1.2 - Hewlett-Packard) Hidden
Access Help (HKLM\...\{C6FA39A7-26B1-480A-BC74-6D17531AC222}) (Version: 3.00 - Lenovo)
Adobe Community Help (HKLM\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.4.980 - Adobe Systems Incorporated.)
Adobe Photoshop CS (HKLM\...\{EFB21DE7-8C19-4A88-BB28-A766E16493BC}) (Version: CS - Adobe Systems, Inc.)
Adobe Reader XI (11.0.09) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated)
Adobe SVG Viewer 3.0 (HKLM\...\Adobe SVG Viewer) (Version:  3.0 - Adobe Systems, Inc.)
Aide PDF to DXF Converter 9.6 (HKLM\...\Aide PDF to DXF Converter_is1) (Version:  - Aide CAD Systems Incorporated.)
Akamai NetSession Interface (HKCU\...\Akamai) (Version:  - Akamai Technologies, Inc)
Apple Application Support (HKLM\...\{D9DAD0FF-495A-472B-9F10-BAE430A26682}) (Version: 3.0.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{18D47FA1-0440-48D3-A7E0-DA09537FF471}) (Version: 7.1.1.3 - Apple Inc.)
Apple Software Update (HKLM\...\{C6579A65-9CAE-4B31-8B6B-3306E0630A66}) (Version: 2.1.3.127 - Apple Inc.)
AT&T Service Activation (HKLM\...\{D81486A1-2371-4059-AC70-1AB894AC96E6}) (Version: 1.8.7.0 - AT&T)
ATI Catalyst Install Manager (HKLM\...\{1DF0C90D-0705-32EA-B4DB-341C311EBB93}) (Version: 3.0.736.0 - ATI Technologies, Inc.)
ATI Uninstaller (HKLM\...\ATI Uninstaller) (Version: 8.641.1.1-090824a-089811C-Lenovo - ATI Technologies, Inc.)
AudibleManager (HKLM\...\AudibleManager) (Version: 2000968304.48.56.28054906 - Audible, Inc.)
AutoCAD 2012 - English (HKLM\...\AutoCAD 2012 - English) (Version: 18.2.51.0 - Autodesk)
AutoCAD 2012 - English (Version: 18.2.51.0 - Autodesk) Hidden
AutoCAD 2012 Language Pack - English (Version: 18.2.51.0 - Autodesk) Hidden
Autodesk CAD Manager Tools (HKLM\...\{5783F2D7-0111-0409-0010-0060B0CE6BBA}) (Version: 16.0.0.65 - Autodesk)
Autodesk Content Service (HKLM\...\{086F9A69-CD39-4893-A9FB-D3A0634CE3F7}) (Version: 2.0.90 - Autodesk)
Autodesk Design Review 2013 (HKLM\...\Autodesk Design Review 2013) (Version: 13.0.0.82 - Autodesk, Inc.)
Autodesk Design Review 2013 (Version: 13.0.0.82 - Autodesk, Inc.) Hidden
Autodesk Design Review Browser Add-on v1.2  (HKLM\...\{CD49E43B-88B1-48AD-A3AF-43FAAAB41CB8}) (Version: 1.2.0 - Autodesk)
Autodesk DWG TrueView 2014 (HKLM\...\DWG TrueView 2014) (Version: 19.1.18.0 - Autodesk)
Autodesk Material Library 2012 (HKLM\...\{8F0837C2-EE09-4903-88F3-1976FE7FFF4E}) (Version: 2.5.0.8 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2012 (HKLM\...\{65420DC9-306E-4371-905F-F4DC3B418E52}) (Version: 2.5.0.8 - Autodesk)
Blurity version 1.5.171 (HKLM\...\{E296676F-4FE5-42B8-AF08-014D274EA1A1}_is1) (Version: 1.5.171 - Nesota LLC)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
Business Contact Manager for Outlook 2007 SP2 (HKLM\...\Business Contact Manager) (Version: 3.0.8619.1 - Microsoft Corporation)
Business Contact Manager for Outlook 2007 SP2 (Version: 3.0.8619.1 - Microsoft Corporation) Hidden
ccc-core-static (Version: 2009.0825.2146.37269 - ATI) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 2.34 - Piriform)
Conexant 20561 SmartAudio HD (HKLM\...\CNXT_AUDIO_HDA) (Version: 4.92.10.0 - Conexant)
CrashPlan (HKLM\...\{2D40C5BB-673F-4976-BD20-0835D4B32B8B}) (Version: 3.0.2 - CrashPlan)
Create Recovery Media (HKLM\...\{50DC5136-21E8-48BC-97E5-1AD055F6B0B6}) (Version: 1.20.0.00 - Lenovo Group Limited)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
DirectX 9 Runtime (Version: 1.00.0000 - Sonic Solutions) Hidden
Dropbox (HKCU\...\Dropbox) (Version: 2.10.30 - Dropbox, Inc.)
DWG TrueView 2014 (Version: 19.1.18.0 - Autodesk) Hidden
EPSON Printer Software (HKLM\...\EPSON Printer and Utilities) (Version:  - )
EPSON Scan (HKLM\...\EPSON Scanner) (Version:  - )
FARO LS 1.1.406.58 (HKLM\...\{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}) (Version: 4.6.58.2 - FARO Scanner Production)
Gbridge (remove only) (HKLM\...\Gbridge) (Version:  - )
Google Chrome (HKLM\...\Google Chrome) (Version: 38.0.2125.111 - Google Inc.)
Google SketchUp Pro 8 (HKLM\...\{E0A160F1-127B-43AC-AF96-EBB6319B01C7}) (Version: 3.0.4811 - Google, Inc.)
Google Update Helper (Version: 1.3.25.5 - Google Inc.) Hidden
iCloud (HKLM\...\{00A61104-74B5-4056-AD00-4397EF4FB141}) (Version: 3.1.0.40 - Apple Inc.)
Integrated Camera Driver Installer Package Ver.1.27.500.0 (HKLM\...\{82EB6CEA-749A-410F-8AD2-372A286BA3BE}) (Version: 1.27.500.0 - RICOH)
Integrated Camera TWAIN (HKLM\...\{9CA0DEE4-E84B-466F-9B96-FC255F3A929F}) (Version: 1.0.7.331 - Chicony Electronics Co.,Ltd.)
Intel® Management Engine Interface (HKLM\...\HECI) (Version:  - Intel Corporation)
Intel® Network Connections Drivers (HKLM\...\PROSet) (Version: 16.1 - Intel)
Intel® PROSet/Wireless WiFi Software (HKLM\...\{D75AEB5B-FA18-4BD4-9EED-54CA46DB5AE8}) (Version: 13.04.0000 - Intel Corporation)
Intel® Active Management Technology (HKLM\...\MESOL) (Version:  - Intel Corporation)
Intel® Matrix Storage Manager and Intel® Turbo Memory (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version:  - Intel Corporation)
Intel® Turbo Memory (HKLM\...\{31423F74-36B2-4d24-B10D-CD00BFB7C118}) (Version:  - Intel Corporation)
Internet TV for Windows Media Center (HKLM\...\{9D318C86-AF4C-409F-A6AC-7183FF4CF424}) (Version: 4.2.2.0 - Microsoft Corporation)
iTunes (HKLM\...\{0718A90E-93AA-49AF-A4FE-0165ACD91DF0}) (Version: 11.2.2.3 - Apple Inc.)
IZArc 4.1 (HKLM\...\{97C82B44-D408-4F14-9252-47FC1636D23E}_is1) (Version: 4.1 - Ivan Zahariev)
Java 7 Update 71 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217040FF}) (Version: 7.0.710 - Oracle)
Java™ 6 Update 35 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216032FF}) (Version: 6.0.350 - Oracle)
JC-AM100 (HKLM\...\{B8909A6F-E372-4ABE-8882-91F8D13D81F1}) (Version: 1.0.0.22 - jWIN)
Junk Mail filter update (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Kaspersky Anti-Virus (HKLM\...\InstallWIX_{6F6873E3-5C92-4049-B511-231A138DD090}) (Version: 14.0.0.4651 - Kaspersky Lab)
Kaspersky Anti-Virus (Version: 14.0.0.4651 - Kaspersky Lab) Hidden
Lenovo Fingerprint Software (HKLM\...\{2D440AF4-7330-43F0-A085-35DE1A90E703}) (Version: 3.3.0.50 - AuthenTec, Inc.)
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.04.05 - )
Lenovo System Interface Driver (HKLM\...\LENOVO.SMIIF) (Version: 1.01 - )
Lenovo ThinkVantage Toolbox (HKLM\...\PC-Doctor for Windows) (Version: 6.0.5717.36 - PC-Doctor, Inc.)
Lenovo Welcome (HKLM\...\Lenovo Welcome_is1) (Version: 2.0.020.0 - Lenovo)
Lightspeed Screensaver  (Remove only) (HKLM\...\Lightspeed!) (Version:  - )
Malwarebytes Anti-Malware version 2.0.3.1025 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.3.1025 - Malwarebytes Corporation)
MassPlus v3.0 (HKLM\...\MassPlus v3.0) (Version:  - )
Mesh Runtime (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Message Center Plus (HKLM\...\{FD331A3B-F7A5-4C31-B8D4-DF413C85AF7A}) (Version: 2.0.0012.00 - Lenovo Group Limited)
Messenger Companion (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2003 Web Components (HKLM\...\{90A40409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Office 2007 Primary Interop Assemblies (HKLM\...\{50120000-1105-0000-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM\...\{95140000-007A-0409-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Office Small Business Connectivity Components (HKLM\...\{A939D341-5A04-4E0A-BB55-3E65B386432D}) (Version: 2.0.7024.0 - Microsoft Corporation)
Microsoft Office Suite Activation Assistant (HKLM\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation)
Microsoft Research AutoCollage Touch 2009 (HKLM\...\{1F8DA253-3C27-4B01-A63A-BA3533120833}) (Version: 2.00.2009 - Microsoft Research)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 (HKLM\...\Microsoft SQL Server 2005) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server Native Client (HKLM\...\{7670D32F-DAE6-4E49-8C8B-B3F08B5B1686}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server Setup Support Files (English) (HKLM\...\{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{E7084B89-69E0-46B3-A118-8F99D06988CD}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft Sync Framework 2.0 Core Components (x86) ENU  (HKLM\...\{FF63121D-91C6-42CC-B341-F1AA729728E7}) (Version: 2.0.1578.0 - Microsoft Corporation)
Microsoft Sync Framework 2.0 Provider Services (x86) ENU  (HKLM\...\{D3A80508-CD83-4CA3-8671-914A1BC78B61}) (Version: 2.0.1578.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM\...\{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2.0 Runtime (HKLM\...\{299C0434-4F4E-341F-A916-4E07AEB35E79}) (Version: 9.0.30729 - Microsoft Corporation)
Mobile Broadband Connect (HKLM\...\{91B7B957-0F45-4BDC-85BA-08F80D49B9BC}) (Version: 3.5.0011 - Lenovo)
MobileMe Control Panel (HKLM\...\{5A9AA2C0-972F-4239-AA41-E409434194D5}) (Version: 3.1.8.0 - Apple Inc.)
MSVCRT (Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
NVIDIA PhysX (HKLM\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0 - Microsoft Corporation) Hidden
On Screen Display (HKLM\...\OnScreenDisplay) (Version: 5.32.00 - )
ProjectDox Components (HKLM\...\{E64E7F6F-952D-44EA-880C-97FF32B88D22}) (Version: 7.5 - Avolve Software)
PX Profile Update (Version: 1.00.1. - AMD) Hidden
QuickTime 7 (HKLM\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)
RealDownloader (Version: 17.0.13 - RealNetworks, Inc.) Hidden
RealNetworks - Microsoft Visual C++ 2008 Runtime (Version: 9.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (Version: 10.0 - RealNetworks, Inc) Hidden
RealPlayer Cloud (HKLM\...\RealPlayer 17.0) (Version: 17.0.13 - RealNetworks)
RealUpgrade 1.1 (Version: 1.1.0 - RealNetworks, Inc.) Hidden
Registry Patch to Enable Maximum Power Saving on WiFi Adapters for Windows 7 (HKLM\...\EnablePS) (Version: 1.00 - )
Rescue and Recovery (HKLM\...\{B383F243-0ABC-4E56-AA30-923B8D85076E}) (Version: 4.30.0025.00 - Lenovo Group Limited)
Setup Wizard SE (HKLM\...\{405D8563-BDD7-487C-9498-942518B366BE}) (Version:  - )
Simpson AutoCAD Menu (HKLM\...\Simpson AutoCAD Menu) (Version:  - )
Simpson Strong-Tie Drawings (HKLM\...\Simpson Strong-Tie Drawings) (Version:  - )
Sonic Icons for Lenovo (HKLM\...\{B334D9AE-1393-423E-97C0-3BDC3360E692}) (Version: 2.0.0 - Lenovo)
Spelling Dictionaries Support For Adobe Reader 9 (HKLM\...\{AC76BA86-7AD7-5464-3428-900000000004}) (Version: 9.0.0 - Adobe Systems Incorporated)
STEELPro Version 1.1  By Redem Legaspi (HKLM\...\ST6UNST #1) (Version:  - )
Structural Systems (HKLM\...\{CFD73A7D-FD9E-4B15-8F60-FE41DDF84CC2}) (Version: 4.00.0000 - NCARB)
SuperPurge Lite (HKLM\...\SuperPurge Lite) (Version:  - )
System Update (HKLM\...\{25C64847-B900-48AD-A164-1B4F9B774650}) (Version: 4.00.0009 - Lenovo)
ThinkPad Bluetooth with Enhanced Data Rate Software (HKLM\...\{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}) (Version: 6.2.0.9600 - Broadcom Corporation)
ThinkPad FullScreen Magnifier (HKLM\...\ThinkPad FullScreen Magnifier) (Version: 2.10 - )
ThinkPad Modem Adapter (HKLM\...\CNXT_MODEM_HDA_HSF) (Version: 7.80.5.0 - Conexant Systems)
ThinkPad Power Manager (HKLM\...\{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}) (Version: 3.04 - )
ThinkPad UltraNav Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.19.7 - )
ThinkPad UltraNav Utility (HKLM\...\{17CBC505-D1AE-459D-B445-3D2000A85842}) (Version: 2.11 - Lenovo)
ThinkVantage Active Protection System (HKLM\...\{46A84694-59EC-48F0-964C-7E76E9F8A2ED}) (Version: 1.70 - Lenovo)
TPFanControl v0.62 (HKLM\...\{717F5741-5C2E-4469-BDA0-B5EC2243646F}_is1) (Version:  - troubadix)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
UpdateService (Version: 1.0.0 - RealNetworks, Inc.) Hidden
UxStyle Core Beta (HKLM\...\{8E363055-15E5-4D8A-9C69-A0A9DE9A3337}) (Version: 0.2.1.1 - The Within Network, LLC)
Verizon Wireless Mobile Broadband Self Activation (HKLM\...\{C64A877E-DF8D-4017-AA82-000A77C6D809}) (Version: 3.1.4 - Smith Micro Software, Inc.)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM\...\{04B34E21-5BEE-3D2B-8D3D-E3E80D253F64}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM\...\{14866AAD-1F23-39AC-A62B-7091ED1ADE64}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM\...\{4B90093A-5D9C-3956-8ABB-95848BE6EFAD}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM\...\{B42E259C-E4D4-37F1-A1B2-EB9C4FC5A04D}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 x86 Runtime - v9.0.30729.01 (HKLM\...\{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01) (Version: 9.0.30729.01 - Microsoft Corporation)
WD Drive Utilities (HKLM\...\{439A51F7-84B1-4603-BEC8-647EB2AC307F}) (Version: 1.0.1.5 - Western Digital)
WD Quick View (HKLM\...\{D0A3A97D-7918-4B0B-B91E-775E00C36122}) (Version: 2.4.2.26 - Western Digital Technologies, Inc.)
WD Security (HKLM\...\{83270912-15C7-4336-822E-E8F1B1BBCA60}) (Version: 1.0.3.3 - Western Digital Technologies, Inc.)
WD SmartWare (HKLM\...\{6EE644CD-FC7F-424C-83EA-9C0285C4FB7F}) (Version: 2.4.2.26 - Western Digital Technologies, Inc.)
WD SmartWare Installer (HKLM\...\{2d588de7-f4f6-4d6d-8719-32cbb9637e9e}) (Version: 2.4.2.26 - Western Digital Technologies, Inc.)
Winamp (HKLM\...\Winamp) (Version: 5.572  - Nullsoft, Inc)
Winamp Detector Plug-in (HKCU\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc)
Windows Driver Package - AuthenTec Inc. (ATSwpWDF) Biometric  (07/07/2009 8.1.2.56) (HKLM\...\8E6CE26AD682E6D46DCCDD39CD93277A2EAF2449) (Version: 07/07/2009 8.1.2.56 - AuthenTec Inc.)
Windows Driver Package - Intel System  (06/04/2009 1.0.0.0002) (HKLM\...\E7B58217635B8F723D4744A328A4B3237DB35FA9) (Version: 06/04/2009 1.0.0.0002 - Intel)
Windows Driver Package - Lenovo 1.55 (08/18/2009 1.55) (HKLM\...\112AA64E0C8CC704E307FE914F7DEC1C0035598E) (Version: 08/18/2009 1.55 - Lenovo)
Windows Driver Package - Ricoh (5U875UVC) Image  (07/08/2009 1.27.500.0) (HKLM\...\E59560E2F5B162D40255FCD327ACA5E989D995D2) (Version: 07/08/2009 1.27.500.0 - Ricoh)
Windows Driver Package - Ricoh Company (rimsptsk) hdc  (09/03/2009 6.10.01.05) (HKLM\...\5F72B7FA1792CB768F6A46E18A9DAD0E1FE1C863) (Version: 09/03/2009 6.10.01.05 - Ricoh Company)
Windows Driver Package - Ricoh Company (rismxdp) hdc  (09/03/2009 6.10.01.05) (HKLM\...\1FBDB507F002A372EB195A0ACF6E2A2F9D34689E) (Version: 09/03/2009 6.10.01.05 - Ricoh Company)
Windows Driver Package - Ricoh Company MMC Host Controller (09/03/2009 6.10.01.05) (HKLM\...\D50474ACAF488895A3CE5D30373288EA6AD46EAA) (Version: 09/03/2009 6.10.01.05 - Ricoh Company)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
WinRAR archiver (HKLM\...\WinRAR archiver) (Version:  - )
WinZip 14.5 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240BD}) (Version: 14.5.9095 - WinZip Computing, S.L. )
 
==================== Custom CLSID (selected items): ==========================
 
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
 
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{039B2CA5-3B41-4D93-AD77-47D3293FC5CB}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{083C82AE-568E-45dd-A92C-01422CA45760}\InprocServer32 -> C:\Program Files\Autodesk\Revit Architecture 2011\Program\APIContext.dll No File
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{3faa4380-a399-11cf-a466-00805fe418f6}\InprocServer32 -> C:\Program Files\Autodesk\DWG TrueView 2014\en-US\dwgviewrficn.dll (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{42481700-CF3C-4D05-8EC6-F9A1C57E8DC0}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{6A221957-2D85-42A7-8E19-BE33950D1DEB}\localserver32 -> C:\Program Files\Autodesk\DWG TrueView 2014\dwgviewr.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{6D7AE628-FF41-4CD3-91DD-34825BB1A251}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - English\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{8BAA8FB5-79F8-26F4-81D9-50D454ACDEA9}\InprocServer32 -> C:\Windows\system32\ole32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{B77E471C-FBF3-4CB5-880F-D7528AD4B349}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - English\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{C92FB640-AD4D-498A-9979-A51A2540C977}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - English\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{CCD024D5-3F5A-4089-C9F3-B58C5279248C}\InprocServer32 -> C:\Windows\system32\ole32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{D0D38C6E-BF64-4C42-840D-3E0019D9F7A6}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{D70E31AD-2614-49F2-B0FC-ACA781D81F3E}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - English\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2012 - English\acadficn.dll (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Gabriel\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3248881932-903285841-3063169814-1003_Classes\CLSID\{FD8C4664-A2D4-97EC-185D-875E454333FE}\InprocServer32 -> C:\Windows\system32\ole32.dll (Microsoft Corporation)
 
==================== Restore Points  =========================
 
31-10-2014 10:48:50 Windows Update
 
==================== Hosts content: ==========================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-13 18:04 - 2014-06-17 00:41 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1       localhost
 
==================== Scheduled Tasks (whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
 
Task: {19A9A220-AA89-429C-8B4A-69F27F3909C9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-16] (Google Inc.)
Task: {243FA8FA-C293-48B2-A460-74902BAD9755} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\PC-Doctor\uaclauncher.exe [2010-12-13] (PC-Doctor, Inc.)
Task: {25339F04-1F7F-483A-9905-BD6780EAB683} - System32\Tasks\TVT\LaunchRnR => %RR%\rrcmd.exe
Task: {2946B5B0-6C53-4C06-95DE-5E2DEB35EB4B} - System32\Tasks\{8A3E647E-5DA9-47B1-B27C-057E688CC612} => C:\Program Files\Skype\Phone\Skype.exe
Task: {32177F66-6FAB-4AB7-ADF1-36FEDCBD6959} - System32\Tasks\DiskUpdate => C:\SWTOOLS\OSFIXES\DISKUPDT\DiskUpdate.exe [2009-02-09] ()
Task: {3C9A0DEE-77AC-4418-9056-F10081E18EAF} - System32\Tasks\Synaptics TouchPad Enhancements => \Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-04-24] (Synaptics Incorporated)
Task: {557EC6EA-7274-431A-BDBF-6554A49D04A3} - System32\Tasks\PCDEventLauncher => C:\Program Files\PC-Doctor\sessionchecker.exe [2010-12-13] ()
Task: {71BB66BD-6568-4499-B550-D4C7DFA4DF06} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-3248881932-903285841-3063169814-1003 => C:\Program Files\RealNetworks\RealDownloader\realupgrade.exe [2014-07-30] (RealNetworks, Inc.)
Task: {9307E3A5-9D4E-463B-895B-BBB4C37FB8D7} - System32\Tasks\PMTask => C:\Program Files\ThinkPad\Utilities\PWMIDTSV.EXE [2009-08-23] (Lenovo Group Limited)
Task: {A35D97B4-AC44-4DC7-A1E5-E11B1993B32C} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-3248881932-903285841-3063169814-1003 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2014-07-30] (RealNetworks, Inc.)
Task: {A69E88D6-8E49-4F18-A7D2-51EB26155BE7} - \TidyNetwork Update No Task File <==== ATTENTION
Task: {AA731CDB-C2E4-4DEF-9ED1-40E8EFC39F79} - System32\Tasks\TVT\ChangePWD => %RR%\rrcmd.exe
Task: {B7514B5B-A0C4-42C7-A7B3-D03C36A605B4} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-3248881932-903285841-3063169814-1003 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2014-07-30] (RealNetworks, Inc.)
Task: {C32E23CB-F45A-42D9-A93B-1B301A8C3A52} - System32\Tasks\SystemToolsDailyTest => C:\Program Files\PC-Doctor\pcdrcui.exe [2010-12-13] (PC-Doctor, Inc.)
Task: {C4D2C762-CA77-4CC6-86A0-AA0A403CC1EA} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {D64873EE-D56F-4AB3-A366-7EDA7DC51C1C} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-3248881932-903285841-3063169814-1003 => C:\Program Files\RealNetworks\RealDownloader\realupgrade.exe [2014-07-30] (RealNetworks, Inc.)
Task: {D83ACE3C-4B40-4051-94FA-F1D7F93049B5} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-3248881932-903285841-3063169814-1003 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2014-07-30] (RealNetworks, Inc.)
Task: {DFEC2F33-FF81-41BB-9B04-3773FDEAA75A} - System32\Tasks\JavaUpdateSched => C:\Windows\System32\jusched.exe
Task: {E4488483-89DA-4C4A-935B-ACF82D636F5F} - System32\Tasks\Ad-Aware Update (Weekly) => C:\Program Files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe
Task: {EC284B35-315E-4102-968D-195A30556FA8} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-3248881932-903285841-3063169814-1003 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2014-07-30] (RealNetworks, Inc.)
Task: {ECED1C48-2B4F-4A04-BA12-67D92D9CEA33} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => c:\Program Files\Microsoft IntelliPoint\IPoint.exe
Task: {F19F75D5-5888-4224-8A58-7F3EA02D95A6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-16] (Google Inc.)
Task: {FB1F4263-A69A-4DF2-A1F0-895928DB107E} - System32\Tasks\TVT\UpdateRnR => %TVTCOMMON%\Scheduler\tvtsetsched.exe
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\PCDoctorBackgroundMonitorTask.job => C:\Program Files\PC-Doctor\uaclauncher.exe
Task: C:\Windows\Tasks\SystemToolsDailyTest.job => C:\Program Files\PC-Doctor\pcdrcui.exe
 
==================== Loaded Modules (whitelisted) =============
 
2013-06-17 11:35 - 2013-06-17 11:35 - 00478400 _____ () C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\dblite.dll
2013-05-08 13:52 - 2013-05-08 13:52 - 01270464 _____ () C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\kpcengine.2.3.dll
2010-06-25 22:24 - 2010-03-15 10:28 - 00141824 _____ () C:\Program Files\WinRAR\rarext.dll
2010-03-27 11:51 - 2009-09-04 07:19 - 00644096 ____N () C:\Program Files\IZArc\IZArcCM.dll
2014-10-28 04:03 - 2014-10-21 20:04 - 01042760 _____ () C:\Program Files\Google\Chrome\Application\38.0.2125.111\libglesv2.dll
2014-10-28 04:03 - 2014-10-21 20:04 - 00211272 _____ () C:\Program Files\Google\Chrome\Application\38.0.2125.111\libegl.dll
2014-10-28 04:03 - 2014-10-21 20:04 - 08910664 _____ () C:\Program Files\Google\Chrome\Application\38.0.2125.111\pdf.dll
2014-10-28 04:03 - 2014-10-21 20:04 - 01681224 _____ () C:\Program Files\Google\Chrome\Application\38.0.2125.111\ffmpegsumo.dll
2014-10-28 04:03 - 2014-10-21 20:05 - 14902600 _____ () C:\Program Files\Google\Chrome\Application\38.0.2125.111\PepperFlash\pepflashplayer.dll
 
==================== Alternate Data Streams (whitelisted) =========
 
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
 
 
==================== Safe Mode (whitelisted) ===================
 
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
 
==================== EXE Association (whitelisted) =============
 
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
 
 
==================== MSCONFIG/TASK MANAGER disabled items =========
 
(Currently there is no automatic fix for this section.)
 
MSCONFIG\Services: ADMonitor => 3
MSCONFIG\Services: Adobe LM Service => 3
MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AMD External Events Utility => 2
MSCONFIG\Services: Apple Mobile Device => 2
MSCONFIG\Services: ATService => 2
MSCONFIG\Services: Autodesk Content Service => 2
MSCONFIG\Services: Autodesk Licensing Service => 3
MSCONFIG\Services: BcmBtRSupport => 2
MSCONFIG\Services: Bonjour Service => 2
MSCONFIG\Services: btwdins => 2
MSCONFIG\Services: CrashPlanService => 2
MSCONFIG\Services: dtsvc => 2
MSCONFIG\Services: EvtEng => 2
MSCONFIG\Services: FLEXnet Licensing Service => 3
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: IAANTMON => 2
MSCONFIG\Services: IBMPMSVC => 2
MSCONFIG\Services: iPod Service => 3
MSCONFIG\Services: LENOVO.MICMUTE => 2
MSCONFIG\Services: LMS => 2
MSCONFIG\Services: MBAMScheduler => 2
MSCONFIG\Services: MBAMService => 2
MSCONFIG\Services: Power Manager DBC Service => 3
MSCONFIG\Services: RealNetworks Downloader Resolver Service => 2
MSCONFIG\Services: RealPlayer Cloud Service => 2
MSCONFIG\Services: RealPlayerUpdateSvc => 2
MSCONFIG\Services: RegSrvc => 2
MSCONFIG\Services: SUService => 2
MSCONFIG\Services: ThinkVantage Registry Monitor Service => 2
MSCONFIG\Services: TPHKSVC => 2
MSCONFIG\Services: TVT Backup Service => 3
MSCONFIG\Services: UNS => 2
MSCONFIG\Services: UnsignedThemes => 2
MSCONFIG\Services: WDBackup => 2
MSCONFIG\Services: WDDriveService => 2
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk => C:\Windows\pss\Bluetooth.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^CrashPlan Tray.lnk => C:\Windows\pss\CrashPlan Tray.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Digital Line Detect.lnk => C:\Windows\pss\Digital Line Detect.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^RealPlayer Cloud Service UI.lnk => C:\Windows\pss\RealPlayer Cloud Service UI.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Gabriel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk => C:\Windows\pss\Dropbox.lnk.Startup
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Akamai NetSession Interface => "C:\Users\Gabriel\AppData\Local\Akamai\netsession_win.exe"
MSCONFIG\startupreg: AppleSyncNotifier => C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
MSCONFIG\startupreg: APSDaemon => "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: FingerPrintSoftware => "C:\Program Files\Lenovo Fingerprint Software\fpapp.exe" \s
MSCONFIG\startupreg: Gbridge => "C:\Program Files\Gbridge LLC\Gbridge\pstartw.exe" "C:\Program Files\Gbridge LLC\Gbridge\Gbridge.exe" -autostart
MSCONFIG\startupreg: HotKeysCmds => C:\Windows\system32\hkcmd.exe
MSCONFIG\startupreg: IAAnotif => C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
MSCONFIG\startupreg: IaNvSrv => C:\Program Files\Intel\Intel Matrix Storage Manager\OROM\IaNvSrv\IaNvSrv.exe
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: LENOVO.TPFNF6R => C:\Program Files\Lenovo\HOTKEY\TPFNF6R.exe
MSCONFIG\startupreg: Message Center Plus => C:\Program Files\LENOVO\Message Center Plus\MCPLaunch.exe /start
MSCONFIG\startupreg: PAC7302_Monitor => C:\Windows\PixArt\PAC7302\Monitor.exe
MSCONFIG\startupreg: Persistence => C:\Windows\system32\igfxpers.exe
MSCONFIG\startupreg: picon => "C:\Program Files\Common Files\Intel\Privacy Icon\PrivacyIconClient.exe" -startup
MSCONFIG\startupreg: PWMTRV => rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\PWMTR32V.DLL,PwrMgrBkGndMonitor
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: TkBellExe => "C:\Program Files\real\realplayer\update\realsched.exe"  -osboot
MSCONFIG\startupreg: TPFanControl => C:\Program Files\TPFanControl\TPFanControl.exe
MSCONFIG\startupreg: TPHOTKEY => C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
MSCONFIG\startupreg: TpShocks => TpShocks.exe
MSCONFIG\startupreg: WD Drive Unlocker => C:\Program Files\Western Digital\WD Security\WDDriveAutoUnlock.exe
MSCONFIG\startupreg: WD Quick View => C:\Program Files\Western Digital\WD Quick View\WDDMStatus.exe
MSCONFIG\startupreg: WinampAgent => "C:\Program Files\Winamp\winampa.exe"
 
========================= Accounts: ==========================
 
Administrator (S-1-5-21-3248881932-903285841-3063169814-500 - Administrator - Disabled)
Gabriel (S-1-5-21-3248881932-903285841-3063169814-1003 - Administrator - Enabled) => C:\Users\Gabriel
Guest (S-1-5-21-3248881932-903285841-3063169814-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3248881932-903285841-3063169814-1005 - Limited - Enabled)
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (11/04/2014 00:02:58 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: WDBackupEngine.exe, version: 2.0.0.15, time stamp: 0x53cee30c
Faulting module name: ntdll.dll, version: 6.1.7601.18247, time stamp: 0x521ea91c
Exception code: 0xc00000fd
Fault offset: 0x000565f5
Faulting process id: 0x14c8
Faulting application start time: 0xWDBackupEngine.exe0
Faulting application path: WDBackupEngine.exe1
Faulting module path: WDBackupEngine.exe2
Report Id: WDBackupEngine.exe3
 
Error: (11/04/2014 00:00:12 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: WDBackupEngine.exe, version: 2.0.0.15, time stamp: 0x53cee30c
Faulting module name: ntdll.dll, version: 6.1.7601.18247, time stamp: 0x521ea91c
Exception code: 0xc00000fd
Fault offset: 0x00055b7c
Faulting process id: 0x17b4
Faulting application start time: 0xWDBackupEngine.exe0
Faulting application path: WDBackupEngine.exe1
Faulting module path: WDBackupEngine.exe2
Report Id: WDBackupEngine.exe3
 
Error: (11/03/2014 10:10:00 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: GoogleUpdate.exe, version: 1.3.25.5, time stamp: 0x542a053d
Faulting module name: ntdll.dll, version: 6.1.7601.18247, time stamp: 0x521ea91c
Exception code: 0xc0000005
Fault offset: 0x00034d60
Faulting process id: 0x2754
Faulting application start time: 0xGoogleUpdate.exe0
Faulting application path: GoogleUpdate.exe1
Faulting module path: GoogleUpdate.exe2
Report Id: GoogleUpdate.exe3
 
Error: (11/03/2014 02:56:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: MobileMeServices.exe, version: 1.6.65.0, time stamp: 0x4cafa71a
Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409, time stamp: 0x531599f6
Exception code: 0xc06d007e
Fault offset: 0x0000812f
Faulting process id: 0x2ffc
Faulting application start time: 0xMobileMeServices.exe0
Faulting application path: MobileMeServices.exe1
Faulting module path: MobileMeServices.exe2
Report Id: MobileMeServices.exe3
 
Error: (11/03/2014 02:55:49 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: MobileMeServices.exe, version: 1.6.65.0, time stamp: 0x4cafa71a
Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409, time stamp: 0x531599f6
Exception code: 0xc06d007e
Fault offset: 0x0000812f
Faulting process id: 0x33a8
Faulting application start time: 0xMobileMeServices.exe0
Faulting application path: MobileMeServices.exe1
Faulting module path: MobileMeServices.exe2
Report Id: MobileMeServices.exe3
 
Error: (11/03/2014 08:08:49 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: MobileMeServices.exe, version: 1.6.65.0, time stamp: 0x4cafa71a
Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409, time stamp: 0x531599f6
Exception code: 0xc06d007e
Fault offset: 0x0000812f
Faulting process id: 0x2fcc
Faulting application start time: 0xMobileMeServices.exe0
Faulting application path: MobileMeServices.exe1
Faulting module path: MobileMeServices.exe2
Report Id: MobileMeServices.exe3
 
Error: (11/03/2014 08:08:15 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: MobileMeServices.exe, version: 1.6.65.0, time stamp: 0x4cafa71a
Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409, time stamp: 0x531599f6
Exception code: 0xc06d007e
Fault offset: 0x0000812f
Faulting process id: 0x2a18
Faulting application start time: 0xMobileMeServices.exe0
Faulting application path: MobileMeServices.exe1
Faulting module path: MobileMeServices.exe2
Report Id: MobileMeServices.exe3
 
Error: (11/02/2014 11:48:49 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Dependent Assembly Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (11/02/2014 10:32:25 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: MobileMeServices.exe, version: 1.6.65.0, time stamp: 0x4cafa71a
Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409, time stamp: 0x531599f6
Exception code: 0xc06d007e
Fault offset: 0x0000812f
Faulting process id: 0x2078
Faulting application start time: 0xMobileMeServices.exe0
Faulting application path: MobileMeServices.exe1
Faulting module path: MobileMeServices.exe2
Report Id: MobileMeServices.exe3
 
Error: (11/02/2014 10:31:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: MobileMeServices.exe, version: 1.6.65.0, time stamp: 0x4cafa71a
Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409, time stamp: 0x531599f6
Exception code: 0xc06d007e
Fault offset: 0x0000812f
Faulting process id: 0xa20
Faulting application start time: 0xMobileMeServices.exe0
Faulting application path: MobileMeServices.exe1
Faulting module path: MobileMeServices.exe2
Report Id: MobileMeServices.exe3
 
 
System errors:
=============
Error: (11/04/2014 00:13:33 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Peer Networking Grouping service depends on the Peer Name Resolution Protocol service which failed to start because of the following error: 
%%-2140993535
 
Error: (11/04/2014 00:13:33 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Peer Name Resolution Protocol service terminated with the following error: 
%%-2140993535
 
Error: (11/04/2014 00:13:33 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Peer Networking Grouping service depends on the Peer Name Resolution Protocol service which failed to start because of the following error: 
%%-2140993535
 
Error: (11/04/2014 00:13:33 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Peer Name Resolution Protocol service terminated with the following error: 
%%-2140993535
 
Error: (11/04/2014 00:13:33 AM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: 0x80630801
 
Error: (11/04/2014 00:13:33 AM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: 0x80630801
 
Error: (11/04/2014 00:13:27 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Peer Name Resolution Protocol service terminated with the following error: 
%%-2140993535
 
Error: (11/04/2014 00:13:27 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Peer Networking Grouping service depends on the Peer Name Resolution Protocol service which failed to start because of the following error: 
%%-2140993535
 
Error: (11/04/2014 00:13:27 AM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: 0x80630801
 
Error: (11/04/2014 00:13:24 AM) (Source: ipnathlp) (EventID: 1233) (User: )
Description: 
 
 
Microsoft Office Sessions:
=========================
Error: (03/18/2014 02:39:33 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6680.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 7270 seconds with 540 seconds of active time.  This session ended with a crash.
 
Error: (03/28/2013 10:48:13 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6665.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 40 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error: (05/14/2012 09:10:48 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6607.1000, Microsoft Office Version: 12.0.6612.1000. This session lasted 8 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error: (05/14/2012 09:08:54 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6607.1000, Microsoft Office Version: 12.0.6612.1000. This session lasted 11 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error: (10/07/2011 10:32:12 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6565.5003, Microsoft Office Version: 12.0.6425.1000. This session lasted 3 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error: (07/18/2011 05:31:19 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6557.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 2 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error: (06/20/2011 00:10:24 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6557.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 3 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error: (06/15/2011 08:12:24 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6550.5004, Microsoft Office Version: 12.0.6425.1000. This session lasted 2 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error: (06/07/2011 10:15:55 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 3 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error: (06/04/2011 00:41:19 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6550.5004, Microsoft Office Version: 12.0.6425.1000. This session lasted 4 seconds with 0 seconds of active time.  This session ended with a crash.
 
 
CodeIntegrity Errors:
===================================
  Date: 2014-10-16 00:23:05.725
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-10-16 00:23:05.725
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-10-16 00:23:05.725
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-10-16 00:23:05.715
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-10-16 00:23:05.715
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-10-16 00:23:05.705
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-10-16 00:23:05.675
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\KLELAMX86\klelam.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-10-16 00:23:05.665
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\KLELAMX86\klelam.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-10-16 00:23:05.665
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\KLELAMX86\klelam.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-10-16 00:23:05.655
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\KLELAMX86\klelam.sys because the set of per-page image hashes could not be found on the system.
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core™2 Duo CPU T9900 @ 3.06GHz
Percentage of memory in use: 73%
Total physical RAM: 2520.01 MB
Available physical RAM: 665.49 MB
Total Pagefile: 18518.3 MB
Available Pagefile: 16367.4 MB
Total Virtual: 2047.88 MB
Available Virtual: 1913.92 MB
 
==================== Drives ================================
 
Drive c: (Windows7_OS) (Fixed) (Total:287.15 GB) (Free:49.23 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive f: (My Passport) (Fixed) (Total:1862.98 GB) (Free:1675.07 GB) NTFS
Drive q: (Lenovo_Recovery) (Fixed) (Total:9.77 GB) (Free:3.04 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 1 (Size: 1.4 GB) (Disk ID: BC04B28A)
Partition 1: (Not Active) - (Size=1.4 GB) - (Type=1B)
 
========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 1863 GB) (Disk ID: 0005F107)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)
 
==================== End Of Log ============================
 
 
 
 

  • 0

#14
Nevan

Nevan

    Trusted Helper

  • Malware Removal
  • 1,765 posts
Hello, gabybaby.

I am now sure that your problems are caused by low amount of memory, as 73% of it is being used when you have only the most important programs launched with Google Chrome.

There are, however, a few things that we'll still take care of.

Step #1
FRST Fix
  • Download attached fixlist.txt file to your desktop.
    Attached File  fixlist.txt   370bytes   159 downloads
    NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system
  • Right click FRST.exe on your desktop and click Run as administrator. When the tool opens click Yes to disclaimer.
  • Press the Fix button just once and wait.
    NOTE: It's important that both FRST64.exe and fixlist.txt are in the same location or the fix will not work.
  • If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
  • When finished, FRST will generate a log on the desktop (Fixlog.txt). Select all (CTRL+A) the content of the log, copy it (CTRL+C) and paste (CTRL+V) it into your next reply.
 
Step #2
Junkware Removal Tool
  • Download Junkware Removal Tool to your Desktop
  • Close any open windows
  • Disable your Antivirus program
  • Double click JRT.exe on your desktop to run it
  • Click any button to start the scan
  • Wait for Junkware Removal Tool to finish the scan
  • When the scan is finished, JRT.txt will be saved to your desktop and it will automatically open
  • Select all (CTRL+A) the content of the log, copy it (CTRL+C) and paste (CTRL+V) it into your next reply.
 
Things that should appear in your next post:
  • Fixlog.txt log content
  • JRT.txt log content

  • 0

#15
gabybaby

gabybaby

    Member

  • Topic Starter
  • Member
  • PipPip
  • 62 posts

Hello Nevan,

 

Thank you again for your help.  If my problem is low memory I'm not sure what I can do.  I am running a 32 bit system and it max's out at 3GB of memory, which is what I have in it.  Do I have to install a 64 bit version of the OS and add memory to get this machine working better?

 

Here are the logs you requested:

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 08-11-2014 01
Ran by Gabriel at 2014-11-08 10:39:30 Run:3
Running from C:\Users\Gabriel\Desktop
Loaded Profile: Gabriel (Available profiles: Gabriel)
Boot Mode: Normal
 
==============================================
 
Content of fixlist:
*****************
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3248881932-903285841-3063169814-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
Task: {A69E88D6-8E49-4F18-A7D2-51EB26155BE7} - \TidyNetwork Update No Task File <==== ATTENTION
Folder: C:\Device
EmptyTemp:
CloseProcesses:
*****************
 
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
"HKU\S-1-5-21-3248881932-903285841-3063169814-1003\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A69E88D6-8E49-4F18-A7D2-51EB26155BE7}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A69E88D6-8E49-4F18-A7D2-51EB26155BE7}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\TidyNetwork Update" => Key deleted successfully.
 
========================= Folder: C:\Device ========================
 
2010-08-28 08:03 - 2010-08-28 08:03 - 0000000 ____D () C:\Device\HarddiskVolume2
2010-08-28 08:03 - 2010-08-28 08:03 - 0000000 ____D () C:\Device\HarddiskVolume2\Boot
2010-08-28 08:03 - 2010-08-28 08:02 - 0032768 ____N () C:\Device\HarddiskVolume2\Boot\BCD
 
====== End of Folder: ======
 
Processes closed successfully.
EmptyTemp: => Removed 95 MB temporary data.
 
 
The system needed a reboot. 
 
==== End of Fixlog ====
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.3.7 (11.08.2014:1)
OS: Windows 7 Professional x86
Ran by Gabriel on Sat 11/08/2014 at 11:05:09.42
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
~~~ Services
 
 
 
~~~ Registry Values
 
 
 
~~~ Registry Keys
 
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskPartnerCobrandingTool_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskPartnerCobrandingTool_RASMANCS
 
 
 
~~~ Files
 
Successfully deleted: [File] C:\Windows\System32\Tasks\PCDoctorBackgroundMonitorTask
Successfully deleted: [File] "C:\Windows\wininit.ini"
Successfully deleted: [File] C:\Users\Gabriel\AppData\Local\{CFB336FE-D07D-11E1-8270-B8AC6F996F26}\chrome\content\browser.xul [Trojan:JS/Medfos.A]
 
 
 
~~~ Folders
 
Successfully deleted: [Folder] "C:\ProgramData\strongvault online backup"
Successfully deleted: [Folder] "C:\Users\Gabriel\AppData\Roaming\strongvault"
Successfully deleted: [Folder] "C:\Program Files\tidynetwork"
Successfully deleted: [Folder] "C:\Windows\system32\ai_recyclebin"
Successfully deleted: [Folder] "C:\ai_recyclebin"
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{000921EE-E05E-4699-A758-468F967E110C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{00E4F8F5-0059-4E6D-A87F-B85433854F55}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{01872596-4AAB-47C9-B431-5B3F66CF497A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{018C1E38-227E-46DB-B86C-312B3B3F4127}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{01B4878B-4CA1-4DD9-B4FB-D5AD801F0BA2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{020239FA-BF72-4895-B6FE-6E23CABDDE4C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{02099197-101C-4C6F-9061-ED4E4CB14B50}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{02B7D896-5947-4132-91E9-E53C19159797}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{02D1DBC5-9E8D-4020-A74E-905C25704281}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{02F7BFC2-E214-43C6-9FDB-6FFDC628B04E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{02F87843-86D6-4522-9A30-40F0460D5A4A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{034E6575-341A-4E84-809B-81D4B6662484}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{034F0394-8288-488F-9DAA-38C4F76060F0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{036CBF4A-7F25-4235-BB8A-E9F515581A1C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{03A1E161-F5E7-42F6-AFA2-2202FF9B5A96}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{03AC2030-29D7-469C-8A0C-AF823AAC4476}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{03E8D1ED-286F-4F3E-8EAA-1E8E06A3F8B5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0446CB36-1CE2-40E9-BD77-0AB48039C02C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0453FB63-D44A-4FBF-AD4F-DFB5B285DC4C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{04DB3266-DE91-4C71-B233-B0B75E62EB3C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{04EC72D2-C203-429D-A85E-117A919DD1D3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0554D38F-3DAA-4CBC-95CF-3A6008AB9067}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{05575146-BDDD-4B79-AC2D-4B6AF24249CA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{057B4882-A84A-4653-B9A9-3026DDB319FA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{05850ADA-9E93-48DA-AEBB-96695B03508F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{05FA15ED-B539-4D5B-B082-8BF204E0CA18}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{06B71BEA-304E-421E-B06A-089CBE907DF3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{06CC7C94-FF39-42CC-B805-57DD24E810BA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{06ED57E4-8AFC-4D9D-BACB-4F92EC252010}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{06F43327-06A0-4D7A-A329-EA43EDDED412}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{07886098-5CBF-4567-B9A7-89E2A0CA4957}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{07D8B09D-8B55-4CFE-9A7C-E57ACA638049}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{080E3E90-7482-4EFE-8FE2-6AA6F9CC92B5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{082C3892-E1AB-4C3E-8A4B-7907A07AB526}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{08A523FA-F945-444F-AF6E-84CEA7092E78}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{090435FC-A24C-4CD0-A86D-7F694766E72D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{09133CA8-F9C7-40CC-920A-CAA9A9B35033}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{09249ABE-B112-4A62-ACE0-DA05CBBF53F8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{09DCB123-C069-4D0D-AC3B-CDD6B4ACF607}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{09FCEFA8-F136-476F-83A1-F94110E49B1C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{09FF7F31-5908-4524-AF74-7E3FC6ACB3A0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0A15FD54-7163-477D-8764-881D42971066}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0A51B04D-7C64-4350-926A-4F85B102AE8F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0B18CDF5-7131-4C01-84DE-D5D6FD693B41}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0B71018F-F1EC-46FB-AA85-AC73EFC29543}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0B967661-87D8-499F-8DEC-5567E4C104E1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0BD472BD-5B4D-4322-96CC-1335E8443A04}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0C017BBE-BA6A-488B-8A91-3F6E3BECBDBF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0C041F33-C293-443D-BFD2-7BB4315A122E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0C2FCB84-D0B8-4C5C-A22C-89E88D5010A8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0C63BBEF-1F6B-401C-86D9-3CF609A733B4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0CA82300-DF62-456B-AFAA-7F2C17BADF2D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0CC43FCC-2FAB-4B44-8BD9-FEA541E53CB4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0CC5998A-24FC-4971-BD3F-18B99ED40087}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0CDC4915-63CF-4155-BA0D-378060A19A3F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0DC4DE8E-1994-4417-9FE8-E71281267942}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0DC6FAE8-9536-444B-A13B-412D97976636}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0DE6FE08-1A43-4A72-982D-C1F78BBA4513}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0DEA37AA-613A-4626-8B7F-326BEB193681}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0E060B7A-668C-42C0-A23F-5F00A60A6F12}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0E73A0DE-3DFF-4010-B912-FF9D419125E8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0EAB9A46-8E40-4AD5-91B0-D18D599D1708}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0EEBDA7E-7F3B-47B8-A167-44D17830ADAA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0F157139-D993-4AF4-A9F7-F1A4059342C0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0FAFAB29-84BF-4DBB-AD70-857EBC924BD7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{0FFEC8CE-EB79-4454-9BAB-967862B2941F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{101418F6-EE64-4E93-8D5A-C3AE58355E6B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1045C448-3583-479B-BC68-A0C1A08CDDB5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{108A7B2A-1F2E-4941-9942-6E4C563E27D4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{108A9D09-7284-4E2F-9425-AEFA01484125}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{10B3DFB5-5627-48E4-9387-EF1609119708}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{10BF00EA-C51A-4EFC-AE45-BE01E5B3F4B6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{10D85B14-9622-4744-980D-F9EFEBC54AC5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1109A927-6547-4CC8-B3A1-F4A877A5A47A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{113374E3-799E-4A21-85FB-C749D88B0D17}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{11438C90-CECB-4C55-9255-042766637F32}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{11BB152D-7CCC-4F34-9B98-DEF1208EF62B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{11C59561-FE92-430B-BBC1-2DE5A360F0F3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{11CC9FDB-6143-4187-B1B9-D060D02C7ADD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{11F5F058-04ED-47F6-9BA3-0CB897F16AC0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{121C7013-5117-4934-B12E-AEE74C8F453D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{121ED4B1-D407-44DD-B34B-77AFE30DEE72}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{126D117A-D447-4A32-BF5B-E960E1299263}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{12DD5B69-821F-46C8-A55A-58CE1DE415D4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1373D496-BD7B-4E70-A171-4E2836A4FB6E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{13AB562D-5162-4592-8C12-C5F7F924FBD5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{13B7E1E6-7175-4DB6-930D-C6DF6F7A5567}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1479DDF3-34C2-4CAC-8910-63274185D2CA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{14EC09DE-B02E-4FB8-BB2B-855ACB17ACEB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1556E48A-725D-4607-9ACE-B1A2253F66F8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{156A97C8-33F5-4713-8205-EBA8A76CCB0F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{156FE5AF-68DC-4382-B0D7-91DC8CD006CC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{15873BB3-91B4-42A8-9AD7-0FE736413C04}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{159FDB09-301A-4595-B839-EE27DE0579AF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{15E1CA73-45B4-4A07-A845-C887322A9FCB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{15F7197A-B4E1-46F9-A4A5-ED42003E302B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1610E0CE-364A-4345-950F-F72A9316CEF9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{161FB633-CB5B-41CF-9112-02E44C7CE8B1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{16AE4893-2F7E-4F5F-93FC-AA5EFDAE728C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1705FE1A-8E9E-49A4-818A-38746653EF2C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{171D19A8-5A28-42D2-B7CD-42F5CA485E5C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{177BD686-246A-4535-B754-7F8770E7FD4B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{17A0787D-7330-418C-837A-47879C5B13EA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{17ACBA61-82A1-4696-9B07-F5669A62883F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{17D754F8-99A9-4B12-AEE4-D9537FCC9C81}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{182A66F6-910A-42D7-BB7C-DD7B7E3D9101}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1855F0F5-1F96-4561-81C1-FCF4AFAB6835}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{18998EDC-9FC8-428A-AB73-1DC06ED6D406}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{18A9A6AA-0C7C-4425-A48E-AC3FC8DCF202}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{18AD2389-71D2-4256-9042-FD0F63047DB1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{18C2B5EE-C70E-406F-A299-68358275D438}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{18C344F7-A6C1-4159-BEC0-9BA2B2BBAED7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{18ED60D8-4F8F-452F-A7E0-9102D33F69FB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{18FB8687-29D3-4B02-B3B8-349A75D289A6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1A90879F-29CD-4705-95BB-20FC1882B436}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1AD32E61-2A2D-46A1-B434-63B7077B5ED6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1B455E44-9284-4A4B-AA5D-90ACE702ADD3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1B8F0305-805A-4C05-BEE2-DB7ECEDE4192}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1C0E7254-2810-4591-B950-262726DE2B50}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1C1F8EEF-91B5-4F87-85C0-64A983055713}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1CADEAEC-43C4-4E1E-A4A6-FFD419199BCD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1CCCF567-54A0-4EF5-B1A6-C0A517FE7688}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1D42D2B7-EB74-47CF-820B-433C0C6E97E5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1D53DACF-814D-4C1E-A828-3DD17176E879}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1D9FA2CD-1AF5-44B4-A0D9-D6324E9EC8CD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1E481C72-6A2A-4CF8-8AE4-9823064A2776}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1E49E66B-6F6E-4ACD-AD66-646ABCC781BA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1ECE24E1-3393-4C39-9217-46A32F56A8D5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1EDB5970-30DB-4663-8DF3-FAB6DA4F5746}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1F78526D-7246-4822-BE45-1E6550F9D448}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1F7CBDBB-6357-48E7-A6FD-72F075E2D3B8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1FB2AB7B-C184-4078-A68F-9EF874BA87B0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1FC60FBB-D7F6-4431-8682-661B1143FC44}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{1FFC74B2-9909-48F1-ABB7-847D73B52A4B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{20618A78-C06C-4AC4-B813-433DDC7BA4EE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{20C860D5-0E7F-4451-81DC-F234732497C0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{20D61670-5C52-4AC4-B229-020172D38F5E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{210896EE-EE03-4CEC-A86B-CD8E2022FEF2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{218925BF-CF7E-4573-AD8B-DE62386E58D9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{218CF6B2-AC7B-4DD6-99EA-3BA8091496B8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{219D97D2-F1BE-4EC2-929E-65D21F54A00E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{21C652C4-82CD-44BC-9ADE-BEA3AFFDB04F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{21D06089-3E2C-42CF-9281-FE96C57C4A7E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{21D8BDA0-5A2E-469F-B467-3BBF010B5051}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{22B05266-14FC-4543-9B78-29F4F5CA6AAA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{23053480-09DB-41BF-960A-7D539669354B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{23122DF5-9DA9-4D1C-A923-F1A3D047A4C8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{23602640-90F9-4A3E-997D-72AA4EB2B836}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{23B950AD-F386-414D-B1B8-C40A5E08FD96}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{24131113-FDBC-4E38-B75F-7FFE9BCE4887}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{24696431-8293-4668-85C2-FD4F01A1F2E4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{259E52E0-1F88-47B2-8934-B1E8077DFE02}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{25D34919-C3BD-4EB6-B4F5-8DC34676E1CB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{26895BAC-7770-4787-8F65-228B06F2E795}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{26A86003-A56D-4C71-B884-F79E48B3C486}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{26ABB74E-76B3-4585-8785-5B3CE645700E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{27B0E680-2501-40F6-A9A3-B28F4A28A6E5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{27F8EA74-CAEB-4E43-9D4A-C699399902AA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2815D550-231B-4D57-B668-5D2AF82C22CE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2846434B-5BBC-49A3-B651-C93A524F0253}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{288B6C16-534B-4F01-B0C0-87C42C863F4B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{288B6F76-A422-4DCD-ACFD-A4F6610C3D70}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{289E626F-F95B-4C9B-8BC7-4DE5593FF818}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{293B765A-6E96-4313-B362-C51633E4E3D9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{29A79D41-4504-4D61-A53D-00AED2AF0EA6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2A5A667C-8C24-4EAD-BCE0-2401BCFCAC88}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2A5BEAD1-5887-468A-942F-61622C979A8D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2A61D1D6-FD6D-4758-A393-A2AFAAA82655}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2AF9F219-AD2E-4615-A443-87A0591CD360}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2B58E5DB-B7F4-4266-8045-148562D6791E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2BC4D9A0-57FD-43A6-AC25-262F47C44727}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2BE87C89-0FD4-411F-8B7E-B3B024E6ED1B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2C0860C1-F01E-4F46-ACA1-2A65C329650A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2C253B4D-A779-4956-8955-2C2D5553D25C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2C71FB23-6F96-4194-883B-F7153B4501C9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2C95D4D5-CE44-4CA5-84BF-02867F247B24}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2CC71622-CFBA-4BC9-9485-CA4042D40A16}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2CDB2286-035A-4E14-94F9-6DC191E67D11}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2CE1BDE2-9F9A-4656-ADA3-E9C9350FFD89}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2D10AD3F-2AA4-474A-A637-F42761998FDD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2D74AED9-4CF1-474B-A991-657E2E9ED49C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2DB086F8-7ADA-4DFA-A7DE-C534C6FBE58F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2DCAB588-D5BF-4907-913E-551040972565}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2DCC644C-1BBB-40AB-A8E4-0841155E01F6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2E154C52-DBB5-4386-AA47-A79B49E87DD9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2E77C8B1-5DFF-4D56-9B08-63FDB513A278}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2E849965-214E-4B0D-9A04-DCC7AADA0517}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2F00A7BF-E17C-402E-AC89-D0F97B527742}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2F03DA4B-320A-4A53-901A-8A0DBE54C106}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2F407EEA-B959-4067-8739-6B2F23CEEC38}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2F9211A0-52CC-4CDB-92D8-8C709F04A8E5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2FB2EC8E-6FAF-40D8-9602-8F90B044B689}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2FE0CF1E-723F-4D4E-920B-9284172D85D4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2FEA04BE-96E4-4575-978F-1DE6F70D60FF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{2FFE3F2D-BFBF-4906-AEE6-2D9CD6B61881}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{306355F9-7A50-4B31-B2BD-91C09584BC2E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{30859E16-C704-4BE9-A41E-4A9A0A0EDBE4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{30B3A010-2C87-449B-8E40-FBBE53324DC0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{30EADEF7-8C01-4DF5-911A-11BEBF94AAF5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3108E21E-8AF3-4016-B841-AE0D780269D4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3134CEC3-3FE5-4462-8AE4-D0D3D77FD25F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{31402889-0BE3-41D5-B523-27C17CF0F63D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{318230B9-8748-47F2-91E8-B59FEF192B16}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{31B19665-3109-4527-B2C2-86BCCB77FD13}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{31DE5910-7D42-432A-8F26-6A582C48BECB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{320954B5-C9E4-423C-89DC-CAA1715825BF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{321E5053-BF11-4FB1-A1B0-6FFE39D6CDF0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{32392016-18A2-4D33-84CB-E4DCEE87E8E4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{324DFDD7-30BF-4183-B1E7-C45BAE64BFB1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3290BDB1-4DFC-4441-804D-811D6A9E385D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{32DDA78F-ADC6-4F3B-91B9-3B816618B9C1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{33119D77-13F5-4F77-AD66-442FEED16762}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{33363662-1ABD-470E-8503-534D877C78A0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{338CC6CC-0BF3-44EB-BA6F-00177E4558A5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{33A1C23D-0C0A-48F0-8E06-BB2C674D616A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{33BFDEAE-8C54-4977-A1A4-E1E3108EDB07}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{33DABBD0-F71C-4A48-B0CE-5F75A41EE830}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{33F2F143-8772-4888-B217-AFAC6CE9B8F8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{340F4221-4124-4C50-A8B2-EC98CA8D9230}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{34129D98-113B-4A55-B081-FE7274A9EF8D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3474E163-13CD-479A-B754-165328B9F099}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{349F154B-20A2-4504-9AAC-80AAE5EB8687}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{34CB3830-63EC-4EE2-98D7-C8E4F560003A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{34D14071-7AD4-459F-8CBC-A7CA8E122A36}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{34DDCAAF-797F-4D03-96AC-5FE5A51AE14F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{34F63874-9DF8-4B9C-B6B1-A61880BE700E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{35020B66-D2FD-4AE8-B8D0-E249CD52F458}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3524E538-9176-4161-A2F6-DE3AA004DBD0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{35365413-30EB-4B81-887A-E1AC2CEB6F4D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3558E321-FF5D-49A1-8B29-894DA4C7E6D8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{358F8153-DF6C-4BBF-BD9E-1C08CF1727D3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{35BB4ADB-D330-4C57-9DA0-67544A264363}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{35E1578E-B85B-403F-8BA4-148A58A060ED}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{35E36F3C-636B-4E83-89A5-4C2243CCFAAF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{36136BAC-29D0-4035-A714-7A113DF0C2A4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{361ADB9B-CF31-4466-AF7D-F7928747AC75}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3642ED7D-ED18-4689-966E-3E4583C4E023}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{36487AB1-76B3-4C30-BEF4-B7CD7E18E468}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{36803C5B-92E9-4095-BC2D-F1F4A9D69313}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{36A08C5B-6E5C-4B07-AEC3-9A8F0FCC7107}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{36D04CE4-4F0E-4260-8644-35753B52955A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{36E02993-209D-43F3-AA14-8EBD7290EC51}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3755D724-0DC6-4ABB-ABF0-4C39F3320D00}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3759C3C9-8FE9-4A75-B2CE-5FA878C9DA8F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{37AA2F10-B134-4F0C-876A-BC1021B2CE4D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{37D3DAF5-79CE-4682-93BD-77E0E3428890}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{37D8D878-3E24-4EEE-9DC5-ABAFE82D9CA3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{385B7133-A3A0-447D-8623-3C6F719F12B2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{38BBD30D-60B4-48DA-A54A-FDA58CD0FA10}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{38D093C4-5FF5-48FB-B032-3DF36EDBBD40}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{39D16AA3-79EE-415E-A946-209420E0EAD7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3AB423C5-74FA-4AFA-8CCB-1DF1FAFD0DD4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3AEA574E-C6CB-493D-AD26-661629B09AC1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3B0A66CF-8434-4383-945C-EF7936A72390}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3B180E4A-4D2F-4653-91B9-07D745E5DC1B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3B2F304D-40B4-409A-95E6-C41A6E4D300B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3B4C5BCA-421E-4242-9FFA-DA2824041F49}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3B584AAF-FBEC-45DE-AE8A-CCE090CE1873}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3BDCE22A-48B5-4C2C-9271-000C606E467D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3BED01BB-01CC-4372-86D2-11D8A992164E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3BFD498E-3217-405A-9D32-FB9AD47F3AAD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3CD1F6B5-5C3C-4639-A7DC-36F54C553CF9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3D0BE848-8766-4CBD-8109-825452D37C60}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3D279FA7-D71A-480A-9B45-FF5784A0C575}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3D2B8F73-B1F7-4EBB-A0B7-559D1886D2DD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3E26A962-0228-49D5-8C85-A972E2E9B3D0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3E59A7B5-B5D9-4C83-8DE1-EFFC346D80BE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3E984ECC-66F0-41E3-AA17-9360455E5896}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3EAA666F-4AE7-4C0A-9746-ACF1B1213FB4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3ECFF8FF-9DA0-42EF-B0CB-52B6CD3A2FC9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3ED85A0B-2B77-42A8-B529-8B077E82B6FD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3EF6C0E5-215D-4099-9EBA-836E1D4AF048}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3F047A88-90BD-47BB-A215-D88E9CE0E4CC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3F20F96B-861F-47F8-A618-C7725B41AB71}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3F2B1B96-B000-4707-82F9-7FA2BF871971}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3F4420E8-984D-4667-94F5-A7A79BFFB02B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3F8A08A5-0CBF-4348-9D10-F58AC2FE9882}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{3F99DE22-BBFE-4E66-96C5-C85882DBEB0A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4009CAC0-217F-41AD-99D7-95FA99DB01A2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{402159C4-FF47-4CA5-A479-CEF875158BEE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{403A87E4-C10F-4D09-AD53-188B5C906F8A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{410CAF77-73A7-4B13-B3F1-98A8E10167C8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{414130A3-B282-4E10-AB50-3A046D3B7CD5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{416EF88C-D0AC-48F2-9187-8963ED129BA7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{41A1A277-0670-4C52-9DDD-49A7135B8D3B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{41CEBE1E-37F8-4B7C-AE41-31C446C09282}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{41DC3394-E750-4014-89F5-230762EAAFA7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{42044721-BEC7-48F5-93E7-55033EDD8663}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{42167021-715B-4411-863B-D63DBE81ADFF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4267160B-F412-4BA8-8AAA-3371469DF460}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{426C206E-C473-46D5-8415-FEE56A06FB7C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{42B1CB0D-0B79-4BBD-A2D0-6C48DFFD0463}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{42C11BB5-181C-4B75-8117-F95FCC2BD82B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{42D4D8DD-00AF-4A6F-931E-DA1765934D5E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{43449D7C-FA3E-43FD-B139-6F8A9E4B5B1A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{43846011-9DAF-4D85-88D0-9EB0A11F2C19}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{43EE3B85-28FA-4AF3-AB90-9EC5DE3B776A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4428CE18-0F83-46F0-91C2-BFD5676E6D59}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4454BBB3-7345-4B68-A2F2-63CD40888BBF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4498993E-9302-434C-B05B-143BB233375A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{44C46A11-1162-482A-9859-2DE9535608BC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{44E65464-77F3-4A52-8667-58C3A837BF08}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{45F847D1-E77D-4C49-8358-E134DDB8A619}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{461B91E4-2C6C-438D-B889-1BB2C3225B58}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{462527BC-1E2C-4271-AB74-02FEB0BE30B2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4682211B-95D8-45F2-AD63-10BA4BFF7887}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{46E7B34C-2B41-45E3-9037-0B2240616E20}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{46E84587-68C1-4133-BCF8-3683BCFB8117}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{472AA2A0-947E-40D9-A287-D5DF45BE7F5C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{47376F9C-DE53-4DC7-A1C0-621DC731E716}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4747FF6C-FFDC-4383-996F-DF06895186D5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{47661FE2-481D-467C-BF36-6C3A8567981E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4781DAB7-FF29-4C2D-ABED-06AAA8387711}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{48BA6389-F371-49F2-BDFA-A86C42212A34}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{49365A47-68E3-468B-AA99-DA08BB252CC1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{495BF466-230B-4FC0-BE11-EF3A1D990034}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4A04142B-F19D-455C-A91E-741BD29CD7BD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4A0C2615-F3E8-4BBC-B3C2-F25A806DC496}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4AEA0655-3310-4C51-8415-0EC4FDD8B5C1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4AEFDA13-3C33-402F-8B2F-BAE6A7BA4D15}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4B141079-05CA-4669-AB85-F54CF19DA571}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4B2550DF-6A66-4A10-B410-8472417DC8FE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4BDC9D8D-8F99-4A0C-B8D8-4DCDD0C18901}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4BF5763D-D0E8-4F61-9D4C-AA0D9FBC9825}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4C8976DD-B691-4B4C-8B5C-B87559535E0D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4CD33419-C350-44BE-BA1F-3A4B1533107B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4CD89566-775B-429B-9484-C0C22106DB23}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4CFFD693-F67B-4F0A-A04A-38102C27D8C5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4DE71F6F-84A1-4F94-8E64-831039E1F299}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4E12DFDF-38E4-4C2A-B189-C18A7F579307}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4EA43CA2-2800-439F-865D-FCA44B94E656}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4EC1F97B-D865-4827-B0B7-6F5939BFFAE3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4EE68900-CF08-47DF-B77B-0A041517B43F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4F0F4CD5-CD36-495F-A7F0-865C91297D9B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4F180006-4833-481B-A6A2-93F9FC34AB9C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4F97D301-5F9E-42FB-B04A-490CC3EC7740}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{4FD01E48-1EA5-4CFE-BFEC-31C279CAD3E9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5044C6EF-CDA7-46E0-B2DD-445CADE212A6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{504940FF-9402-411C-84C7-BC5F4268B3DB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{505BBF98-11B6-41D1-932E-AF869175B7CD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{50B8BA2D-F1EB-4857-9810-69D35CD35310}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{50D4B82A-0759-4528-BC50-D2C69156CFC1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{50DAAAE9-F9C5-4798-992A-B525E7A7FD20}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{50E536C9-B83D-4044-A86B-4B58719D98CD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{50F9CE55-54C9-44EB-B436-22D1CFC5490B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{51321468-2153-465B-9613-9493ACFF1904}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5167EA40-63E2-4029-A2F5-3D50DEF8DF8C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{51A1CC1F-1103-4973-8F65-252D03FCA6E3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{51A4C2A1-6C7E-4A7B-AD28-A3DE4A751FEA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{51C87BBA-0AD7-492E-BFCF-85EC2261D4EE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5222D4A0-2E4C-4821-9614-EE5FA974C272}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{52372B78-361B-4628-A783-65F5FA7F3A46}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{52ADC2BB-C5B0-4059-8C9A-7D6A41E4D1D7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{52BDF984-089E-4F0D-958D-238E93A78CF0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{52DE8134-BB83-4402-B006-259E714D8D74}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{52E52171-CFE8-4F4F-B17C-5C701FAE0EA8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5330AFA9-6D41-472B-A438-6D5C4775FA47}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{534C4CC5-B22C-49F6-B739-B7F6095F9D3B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{534C9C1D-CCBC-428A-8FC0-8C6786B415B7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{536A6663-41B3-4EA1-B267-2C5E87867280}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{53A83FD4-D7A5-4AA4-AC61-7BD191994DDC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{548900A1-CDBA-4F1B-B00D-0CB4E8F3D074}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{549CA546-31EE-4511-AA8D-B861F33508E8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{54A1CA1C-0128-4D5E-8A4D-2F6B634A3B8F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{54F659F5-4790-4BE9-B7CC-4B025CF35611}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{553E56DE-B173-432B-9A01-CD0596568598}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{556A9F47-F112-430F-8F16-CF26B9F313FC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{55A91E8F-F427-42FC-B393-6744D8BF8C6F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{55C296E9-CA37-4E3B-8C06-283817F580E0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{567E954F-4EBF-4B9B-B265-178BDE221E12}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{56BDE8A9-F8F5-43F9-896B-1BF06FA228F5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{56D412C5-9474-4AE7-8363-32AFF32996F7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{56E4923D-5C06-4F81-BD66-ABF1F2088143}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5719F467-F687-4009-9645-633084E73B46}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{572138C1-8D0F-4709-B7D5-3B9B220070AE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{573B26EA-F2CA-44CA-97EE-D8E8E5B7576E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5786261B-D271-4B77-BF2E-6A761B6732A7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5797BE12-E3FA-48FC-BE71-9605AE80B516}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{57B4F12D-A116-44D4-A6CC-C7976D1463C2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{57C6DB21-8BCA-4375-AA70-214F39E954BA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{57E16E22-567F-48B3-9643-3D7368BB28B0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{57E95CE6-6D70-4FF3-B774-CD29567F23C5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{582C4F30-7457-43DB-B2D0-9956FCB8B5BC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{582D24D5-6ECF-41E5-99E5-EC14B7FA18CA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{58666187-88CA-4D0C-B008-DD2BE941B068}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{586AFDEE-1F67-4377-85E2-F1176AEFB3CA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{590966DE-F346-45ED-BB18-E48E7C76A5E0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5918A4DE-5F0C-412A-A780-C2E7432864A2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{592D3C66-71CD-4BA5-BF90-6A88375081E9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{597B635A-8FDE-46C5-9850-1CD198913211}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{59B2767F-43D5-46F4-BDC6-B1EA228B0E43}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{59F12571-80A5-4D38-AA31-27E255629B5B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5A0F4929-31B9-4120-9325-5D46032E2382}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5A7D6999-1B62-4584-B524-84D67E4D827A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5AADB4C1-E045-4369-A945-B2EAA6903CCD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5AB1AAFF-84A4-40DF-86C8-25721381242A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5ADB8B2A-DC9F-4FB8-AAE4-0222F2D146AE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5AEB428A-9606-4F43-82AC-42445F49386F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5B4007E6-74B1-4604-BE14-7FEEAB05D3CC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5BF5185B-2782-4443-B913-A7FCA546AF58}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5C6B3B2A-6E09-47A3-8115-36F063B993DE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5CB5010D-CC73-484F-9166-7F888AB0EDA7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5CFBB5E0-F418-4529-866D-5DADA38EE3C8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5D11459D-F921-4198-9A03-95285D592B61}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5D2F5EE0-C60E-4F12-9A31-B39645202819}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5DBFCF46-26CD-4F41-864C-C0EABC613D35}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5E2DB94F-A96A-4757-9778-ED63F8F141F4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5EC9AC42-A2C8-4F4F-9933-234578A63565}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5ED34338-C177-4B25-9BFD-87C5563F1670}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5F5BEBB8-DDBA-4828-B447-0F3E145A2788}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{5FB3A8F3-A557-4EAD-BD6C-8700A54D83C4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{603E8DA9-A726-4AAB-93C2-A4511E2120FB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{605977C8-4AAC-4B8F-8EC3-49B617C0EAF1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{605B5C37-1F89-4DCA-900F-575930F0C1FA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{60865524-9364-4803-A129-FC8B530DEEBB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{60874F6F-824C-4C70-99AB-84E4B684058B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{609AD95C-90B2-4091-A57B-BC6EEE4A8F38}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{60C52DA6-131A-45FB-A79D-C1E1D5774D85}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{60DF0E7B-5ED3-4BC6-9AAD-EA79E7A0A603}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6131C108-4C27-4730-A3FB-80736A363BAC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6138DA59-D5AD-4A5F-BF0F-F490F8A5AB91}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{613D5351-BAB4-4BBF-A3D6-107F744CB8FE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{61472A9D-8CA2-478F-8619-18C7B4E91C90}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{61862AA8-D503-4B0A-8B06-13EF212CA382}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{61997CCA-37BF-4D16-BFA6-4D7DBAEB839F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6199822F-E8FE-4196-9EA4-BC485544CCA5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{61A6D894-5943-4150-838A-78D1BFEF8838}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{61B96C5C-6482-4357-B1D5-69EA67A45EA1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{61DB9B76-E1C0-40B4-880C-1486CEB79419}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{62906D27-95B0-4BB8-9445-59E1C20920F9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{62A398FE-A8FA-469E-9B28-F065D0C55B01}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{62FF4938-AA2D-41B9-8215-F919B3A5E806}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{630AA01C-145D-4CBA-9C96-E33C55368D5D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{631DEC1A-810B-4A7C-BFA1-DF93DEF8A2D6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{63728402-03CE-4A8F-8582-60AEAB5D89E5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{63C2FD05-7E1F-4619-AA47-D798B2124B67}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6408C156-283C-46F8-948F-1C79003FD40F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{640CDBC1-90D9-4836-8BCA-37B3F7E6B1A3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{64497365-2CC8-417F-8462-9FF57004684B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{645874C8-77F3-4AC3-9EF3-7B8480156CC2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{645C3B2E-E0DE-4C72-A23D-3CB52A2B8752}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{64FD7DA3-4405-4641-9E2B-4606CB2AFCF0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6504E66D-6790-4AE3-BC9E-ADA2478FF7A4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{653B8D19-5C03-49B8-8359-008B9751D2E0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{657A1608-94A7-4E0B-8326-956119844FC4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{65EB754C-ED15-490D-A115-5EE6CE2B8700}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{66320BBD-F298-415B-AD9E-38D3D525E063}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{664A7A54-9AA2-4C2A-A3A1-9B7C2FEA828F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{66B2BEB7-AA3C-4312-AFEF-C169C77C5E38}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{66B87676-6487-4C54-8311-6D6150C850AF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6876982E-29D0-47DB-B745-839B350CE80C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{68F51F14-A5E5-4990-A1D0-0E79DCAC3020}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{695CEDEE-3672-4589-B957-6D32105C3BED}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{696E1A8A-A8CC-4A24-BAA5-1F5BA53FBE57}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{69E4B2D1-D25F-4C7C-9B03-11F5E8025986}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{69E9C0F2-8815-444B-9745-B496C0290470}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6A10B0BB-EA6B-412A-91B5-5FF0D71DBE8D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6A6FAD3D-BB66-42B9-A893-139A69E43FCC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6AD5A9C6-6045-424A-8840-71EF748BB448}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6AD88A7B-327C-4F53-9D23-1B0B0F008300}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6AEC2D4B-C072-430A-BFFE-F000A8C82D96}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6B117DCF-F930-4277-A3A6-3425BFC945FB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6B4B992E-66DE-4808-B014-DC10191D054E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6B74F433-42AF-434B-8260-45DD755782ED}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6C4BA6FD-4F73-4E3B-BE5A-056132ED26DD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6C5144B1-F55F-47A7-A8D9-A3C9B2B34135}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6C79EEF9-9B4E-4F1D-8587-0EF38292CBF9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6C8CC8AA-9524-43D1-8287-1B0BB36375E5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6C9E8D33-D77F-4B54-9DCA-BE769636732A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6CACA7D6-AB6F-49A5-82D0-F370ED28C012}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6CDB9FB7-AF1E-44FB-B336-84E49741C922}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6D059A4E-7FF0-4BDF-8BD6-78DAA67357BD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6D0F26D0-5536-4CE9-B526-AB874C3E5645}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6D27FC86-FC69-438E-B52B-70E346B3BFA1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6D464552-99FB-4800-8EA0-B701EA90BADA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6D8160F6-F42F-4D18-B698-2DFE7BF10A95}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6D823CB1-1F47-461C-8AE7-884F61EE55B9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6E5146B8-37C2-416E-BA22-872987DCCCA7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6E967C2F-D4A2-4485-A58F-CAC8CFD28540}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6EA076E4-1D16-4D57-8088-8C82538931DB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6EC29A6A-333E-4AD4-9186-E5084CAB2D5D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6EE8C2A4-7A57-4529-8478-E92AAE9CFC49}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6EFF137C-DE55-4E49-B9AC-820BCB5B204A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6F04456F-2BA3-4ED2-AF9C-0013F01260FE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6F129458-6DDD-4FB1-AEE7-17F2131C995E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6F1D63E3-67F2-4279-9378-BACA49986B86}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6F604E55-E0FE-4F2B-BE58-EA3A8F87467D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6F72D012-0ABC-487B-AED4-928D8FABE07D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6F7D528A-CE9E-458B-965D-4D6E1263A180}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6FA46CCA-0D28-42BB-9EB4-E844BEF499DF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6FC68918-7073-4829-96B7-F781603B203A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{6FF79B7E-A9BA-42F1-B313-500F576EA23A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7073D923-F012-44FC-B134-8CA231F6BE4F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{70EC5E09-8A4A-4C69-81BD-86C571D5E49E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7128CB42-1DD8-4098-AD6A-288E9AC264F6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{71436F0A-31DF-412D-9D90-35DC248D94CD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7214662E-7C0E-4A8A-BC80-CE939FCA566C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{72BB4BF7-76C1-43E0-9158-8EAB76B56E9D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{737E54DE-4A7F-45EB-8917-0F7D164E62A9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{73918DA9-12D8-4993-BC48-B1082315CB46}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{73B711EB-00AD-471A-89BD-BC5ED8070B93}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{73C7CDFF-6B6A-47CD-A441-C5EF58D1D7FA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{73CD4A81-8323-4D47-BAA7-5B0FC600713F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{74EBDB9A-342A-4A69-A8AB-072DB05D83A4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{756A3D4F-467F-4550-A2BB-90ABBA19FDB3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{75921447-E10C-4B30-9FDC-15709CEAC445}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{75FEF3CD-27C1-4B02-B595-51BDD01A46A9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{760F57EB-0BAD-430C-8DEB-A69BDB8721A0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7679D1A8-F409-43EE-8A31-33E4D4C14366}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{768EC749-BE77-4767-9F15-89C9175F03E0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{76FC0E5A-8E70-4E94-980F-A5532342FA43}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{773CE82B-77A3-4EF2-B5CE-37C9ACDA8D07}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{77E42848-1963-4F23-BA2D-210A9BC855DC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{77F591FC-24BD-43DD-9ABE-8DC828C5B0BC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{77FBC412-2C09-46D3-A5A0-EDA7F8C6C462}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{784E2A0A-F87A-4B99-AF3E-C4C58A689B5F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{78B31E14-E32C-4C08-84FD-E4368AF6FCA2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{78BCC312-AA6C-459D-8F00-9EE881F7D85D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{78DEE4F5-8923-4113-AF8F-BFC4A8640621}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{791C9574-E62D-46B2-9731-63679D6E096B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7923B14D-B179-4D73-9DB7-48AD71B4B5B6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{799DDEF3-BC7A-4933-A639-2879E12C00AA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{79A6CF73-79ED-48CF-961A-1EFFBC256C3F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{79AB0D0B-BCA7-4E65-A80C-9BCA0F6E1DB2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{79B02E6E-E9F4-4A01-ADAB-F0953763883D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{79C422D7-6FE6-44C8-AB19-589E6C905C31}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{79CAFAE8-F66F-4A95-9D2A-463BE5B2F5FB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7A2C1592-5227-421C-959E-7F9EFF202965}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7A469B20-488E-4730-8A0D-388BF663EA0B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7A7762DC-E8E9-478E-8A38-7BE48BD24106}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7B4A759F-A7CA-474A-A09E-64C86723B4D9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7B8BF85C-86F5-4449-9F0D-E1F758E4B379}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7BB9F0D3-B2D6-4611-BEC9-166B25D62B82}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7BB9F929-60CA-4C4F-B249-14E93EC1BA12}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7BE16CB7-2328-428B-832C-6A8795437F35}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7C82DBFC-1F26-464E-AB07-CB936941E346}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7CEAC416-07DC-4F34-A317-D8ADC36C6D59}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7CEB9AEB-8280-4555-A312-47A4D7417840}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7CF6F4E5-F812-4FB9-8AE5-79BF155353DF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7D045327-EFFD-4B00-B30B-E29BFEE9422D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7DB7C13A-8A6F-46C9-8CFE-2A691E05C1A0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7DDD6A43-1BA4-4553-A291-594DA18B93CE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7DEEB558-8984-40F7-82DD-C980E6DD2CE1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7E0CE1EC-0375-4297-8A0E-CEECB754D9B8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7E6C05E7-E581-499D-8B2A-1A60FDE06E03}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7E9C9082-3A5F-4934-BA9F-DB7676E7711D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7F32C49C-C356-4A3C-9089-9FCD2E108321}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7F6B0B7F-0531-4498-BAD4-9BFAC729011C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7FA77FE5-CCC3-4727-AEC5-6B79A37DECCE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7FD8A343-CF6E-4658-B922-F9768CF95EF5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7FF9F591-713D-4C50-80C5-ADB7926D37A1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{7FFB2460-D911-45CE-8F6B-0EE6AA0DF5C2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{809D4697-3C0F-4250-9012-1F54EEA25E29}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{809E93EE-38FD-4CEA-BDFB-52F9D858D5CC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{80AB11C4-E9A7-4ADD-A1A0-9F5671AF4AE9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{80B648F2-4030-4B34-9660-F71EEDDD1384}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{80C4110A-A8C9-4D7F-B7C7-25ECC6811A64}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{80FE459D-0EC3-4BC4-85AB-23C6EFECB0C4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8150DF46-E6C7-4AA3-A1CB-D458D3EDF20A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{817E3B2B-213D-496C-8008-040728E9FDCD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{81B92F44-409D-47F7-84C7-A27057818B47}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{81BBA152-AE94-48B0-8E14-773C6141D608}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{81D2AC89-90BF-4C09-98BB-152874D70D27}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8208EEC0-CAD3-4B53-BDF6-D5604A5AEE16}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{82253016-143E-45D7-B261-9954210E32D1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{82A0EABD-7E78-458F-9FDA-E3EB3956783F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{82B27109-7352-4110-BEF0-7247D6984868}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{82F97F02-7F98-4D9E-A969-45F772B11D17}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{832DFD4A-7E0F-4CED-B782-3A746F64CECF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{833C80F4-3DD9-4942-920A-6CF91AF94BDF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{839C1E85-F566-4B73-90B4-A331BF9F51ED}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{839F1674-E474-4415-A3F2-7C7E72741103}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{83D5EA55-1F5F-42A6-8616-9E83857CBE72}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{83E84CD9-D893-46AE-BEE4-7FB85E6E788D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{84277D93-E21E-47B9-AC96-2D233B2D0179}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{85612953-519D-4A34-AB36-EE7C3212FEE8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{85AC3C50-21CF-4A83-8FFE-5C2A7DB4FBF7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{85B7386A-D86B-4F6C-BCE3-CC7FB0909A18}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{868F57E8-C7F2-4BCC-841D-C6E8C48DBF5C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{86919462-890D-46B8-96A9-413F32729238}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{86AEE85C-2C0B-4105-9203-89FF3923F8B2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{86BE6F45-BF86-4436-9EC5-E2BAE21C3C2E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8741F156-435B-4DC8-B1ED-F2CB0EF03C94}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{87710B26-C277-4059-B0D6-B820F4A4673B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{877A31DD-B457-4D21-9F3F-671A8761AD1C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{87A0EFD0-9CD6-476E-B79B-300AD0E8AD06}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{87A3F414-A3EC-4489-B518-2346F34D6856}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{887E0B9D-A0A5-44BD-990B-A42FB5C398BE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{888C140F-FC84-4876-BD96-3C4CA24FFE97}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{88BBE00A-2527-48DC-AF29-D041355B5BF9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{88C1FBB8-A39E-4B96-AF90-C831B128E923}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{891066B3-DA23-4420-BEE6-AA1D5C68B6E0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8915E74F-EF60-49D0-85B1-2A37942B1C27}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{891FE9D4-8000-44FD-956B-92455DB2C877}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{89244001-6140-44EB-8423-E19B9CBCF2AD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{893149BD-868C-4F7F-9F52-478E8ACF655C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{894BBA67-38D0-4154-B674-69B699170EF0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{89A63DF7-11E5-484B-837D-89FBBA062F9A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{89AB826B-5D81-4749-89FB-88CA5CD9271F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{89D59F49-9DBB-4B54-868E-557C73F0E0C1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8A14606C-F76A-4D66-A8CA-84CC89878191}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8A589786-995A-43E1-BCC1-C2081C63645C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8A64CF4E-2BEF-43CB-8857-CCC4C0869678}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8A654ADE-FC9D-40D0-A039-482A759EB6F7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8A66B420-94D0-475D-8346-398ED6AF52FD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8AD2CEB0-09D5-4098-BADE-B5C9B51863CC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8ADB11B1-BBAB-4953-8493-B958D9B38063}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8B17C6B5-2567-419F-8B00-81783F03F9ED}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8B3AABC7-7882-441F-AC1D-F6271540E979}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8B8322F8-9EDC-40E6-8283-DB85CF8EBAD6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8B8A9940-6FC5-422D-99B7-C9B7DF3B304F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8C6EBB56-85C4-488F-9713-68C5B905C4FA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8CA5176A-796E-46A3-85F2-AC2510D3DAC5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8D067FFC-50DF-45D3-917D-CB12B081D022}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8D175CDA-73A1-4C47-8C57-9CF16C3519B9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8D39EE75-1042-4651-A1E4-3533ABAB84AA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8D4F044B-FA26-4D82-A467-B7C0127A3BA3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8D5D6FE8-BCDB-4C2A-8DF5-7A0941CD09E2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8DC11D28-DD09-4C36-B8A1-C18BA3415002}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8DDF210F-D125-47DD-87FE-A5E73E3741A3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8DE3C565-5ED4-4FB0-91FC-47E917CEE5A3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8E6C1069-4747-47A2-8BC5-BA3CFDE44343}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8EED14A3-E7E9-4676-8FE6-749C3C136274}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8EF5E0ED-9A12-41DE-BBC2-FB1EF47B94F2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8F2882AF-2032-481C-B692-C2DC82566272}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8F3CD083-ED37-41E1-AC6F-286FB5663B8A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{8F801B58-9C72-4260-90C9-28C6BDDD1022}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{901AF133-3E50-46BE-854A-9F697A42C6B3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{90354C1A-E327-4DB7-B03E-B014EAD22C2A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{905C93C6-9F27-4569-8F79-7837FDD0E9B4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9070863A-6CB2-4B87-9058-174D5F559BDF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{90AB7869-0E8C-4B41-8B39-54014BF36790}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{90D73EA0-D1D6-4DA7-8E1C-70BB261402BE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9118E1A5-DC72-4489-8E28-CB9E7070D141}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{911F08FA-92F2-448B-ADF2-65499EFB48D4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{918DA0A9-6AED-4C17-9F1C-8D2531001262}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{91C9A5BF-46A8-46B0-9752-5E5682ED7CD6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{91D23E2A-4275-40E9-B7C7-FEF410BFFC16}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{91EF64E6-A9A5-483E-9281-C3D2E373A291}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9250EAD1-3776-47B8-861E-ADF69B7D628B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{92583020-1F98-4686-B647-ACAB2FA2C5C8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{92DA4C6A-1615-4806-8DC9-EB26C71ED664}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{92EC889B-601D-4651-B008-3B8FB4307C93}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{932D2BFB-C382-4539-B4FC-BFB6A94A6766}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9353B3E2-51BB-466E-9977-1EE819C79481}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{938FD3BF-73CC-4757-A013-80A516A18AC1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{93973BBA-54D8-45CF-A7DE-5DF0B136DE15}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{93B4AFBF-907A-4162-97D5-49E803417679}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{946DD518-5E83-40C9-A5B3-FD33F3B142F5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{94876343-0424-4C8E-862B-8B9DF0A46C41}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{949FBCEE-BBE0-4238-A5A3-9BEF1CBF9900}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{94CFDAE1-432F-43C8-A4A6-7F3549462223}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{94DECFD3-4CEB-4876-9987-E20FB2AB9984}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{94E76338-9A9B-4B49-9B1A-9C67D00AECCD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9533E4F8-B5EB-422D-AB8C-F2DB21AC5B8E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{95615C10-4AB8-43D8-BDC0-232313632D3C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9562F813-4293-410E-907C-A45748E4690F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{95B54F11-AC32-41D0-A13B-897B772AAD33}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{95D4EFEE-ECB2-4C43-8A09-B6F22E7F850A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{95F863AD-00CE-4B5E-B17A-AB8BEABD4ADE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{960506D2-12A8-4110-900A-6A361402B16F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{960AA049-9C81-4DBF-B00C-EF426494F0D1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{961B8D28-208D-4CB3-9E0A-A1A6AC999234}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{968EA8CC-D322-48C2-BADA-C2152B28ACDF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{96E092E3-118C-4220-9711-C6049ACCEF8D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{96EE8EA9-2D8F-46BE-B509-F2F22B029641}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9714063C-4EF4-40C1-B7C4-0E86450C0EC8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{971C7D60-AE15-4063-ADB0-35DB1E809B43}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{978C3977-0679-4119-AE52-B3B168844A06}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{97A99CAF-2777-41DD-BD44-488803B5BB27}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{97F7359D-6B50-4E04-BDE0-544737FD03A7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{981846D7-AAA6-44D9-AB78-5B42D44DCC78}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{983BA5C1-2677-470F-8E9E-D94047822B8A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9872C9F5-C3CB-490E-9A6D-2F1D84272777}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{987733C9-31A4-41BD-BD38-8FF47F4932CB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{989E738A-F391-4AA8-8883-154DB2983DED}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{99380097-200C-4385-B2CC-0A1D5EF23A23}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{99CAAFC4-6856-477F-98E8-8F9F349B05F1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9A06E763-C938-4775-93C0-AF0035D63EDF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9A86581A-0697-4ED8-BB27-A031AAA774C1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9AEA8609-3A1D-4AC9-A176-5CB0DAC2C62B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9B0494E3-67B7-4B2A-9069-7977E920AAB4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9B47D6A9-7D4E-4144-AD00-DCD6371165E6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9B4EAD55-F7C5-43DB-89E0-7EEAB9ACE412}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9C36B4EA-2832-43FF-8C85-B1EE462F4EE1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9C44F6D7-8858-4D45-A011-DAF55A5780AC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9C566BCE-B24E-4EF5-9D43-C80DA4F9FA46}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9C639551-32EF-4254-AF24-2EDA81A1396A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9C74D595-A645-46E9-A328-5BBF7A793807}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9C8C255D-7269-4772-8ABD-D74EFA1A96CF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9CCB1840-6E5E-4460-997C-68EF72FB8DBF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9CDBF88B-74A9-4DAD-A3B9-3BF56ADA6CCC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9D0991B5-3E4B-4B87-92DC-3766E9EB7472}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9D87DCB5-3658-4EE8-8A25-4BEAD73FAACF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9DE475BA-669E-4EB5-A6D6-E8CA83A4DF1B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9DFEC351-C586-463D-B7DC-6017CDEC9EA6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9E06ECFB-1672-4C61-B316-55A6C67E40BA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9EA3AB01-59A3-4CA8-9304-74FE078BE17A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9EC42851-8A72-462B-9F33-ECF1FD463013}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9ED6DC01-2E8C-42B7-BFC9-6B8F65888FCE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9F43DAC7-7EA4-4CFA-A0E9-6F31F5937806}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9F5BF482-34D6-4B2A-943B-77110606770D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{9F80A104-9FB3-4753-835E-F8BFFDACD5C9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A045699D-F311-4C29-A351-6D378257AC86}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A09D52F8-4EA3-44C5-985C-4D18C658FDEB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A0CF6227-61C5-44BE-BB7D-0290592F7622}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A158A9E7-F135-4CA2-BF5F-D74B685538BB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A173321B-0E23-4B29-AADD-B9EA5E64370C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A1BCE696-CC0A-4A78-B5EB-E36FD15F866D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A20A5EF5-679F-4D2E-85A8-88D9E3F95F83}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A22CAFED-7D6E-41D7-BBB3-CC52409CBA63}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A2482119-97A2-4B06-9C58-89D0674D92B4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A292E39A-875E-48F8-9E2E-37B0DAFD1800}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A375A648-E18E-4E86-978B-3D089C34D603}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A3C18262-7AEF-459C-8924-385B187845A6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A406F233-A79C-4132-B5E2-D6446760F3B6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A44DDE89-95A8-4518-B882-9F23940A8BF6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A485F0B8-76EC-42FB-9633-D14DD9AE2783}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A4C9D2AE-5434-45A2-84E1-0E65295884A1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A4CD6569-7314-4423-80B1-B418224C7D16}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A50864C1-A9BB-40DC-AD0C-BD63E033E25E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A5166CAC-B071-4F18-940B-C90731C46054}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A55B59F5-C9D1-4B2B-B06C-C4466747D632}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A57C2719-D6B0-4BC4-A6A6-C063376C548E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A5859382-090A-4B2C-B157-77E6425CAD71}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A5C9CED9-ACEA-4774-B5D1-6E177A75EFE0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A5D71AFD-192A-494E-85B1-4A88B45B44AD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A5EEBB43-2945-4404-BF0D-E5B0701B0AE0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A62F4EC6-4168-4697-B52B-7FE7E76E2BD6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A6869F6C-B9E1-4CD9-A962-850ED9EC7E59}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A6A8DEA6-FBC9-4B67-BD0A-A4F6009201CA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A6EA6099-A36C-407A-A569-C2DCC806227D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A70284C3-C7AB-4266-BCC9-D2B39A9CDAF2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A72635A7-AD91-450E-B7E3-A8F0EFEB9CE8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A792B5BD-477E-41F9-8F12-D9F0B1BDDF7F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A79F2153-80B3-4A6B-B9BB-162AF4451E06}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A7D21EE2-917E-4A49-B911-4301F7DBFDBE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A7F64AE1-A70A-4D31-87E5-F66B9BC6884D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A86D41A1-3FD6-4EE8-9A8E-551BD27B17A4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A8CC822B-8EBF-4A13-9F95-889D61C33FBE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A909BA2C-1F6C-4378-84DE-EE427EA9D471}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A9550519-AB89-4567-8857-7FD724C7D223}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A95EB956-C5A4-418C-BCC7-E72C772CF410}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{A97CF54E-AA85-478E-A59B-241C34F45CAE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AA2045B8-07A2-4C3C-8B87-DDEB843790E1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AA32CF73-72BA-47A6-BCC6-0BB458742B0A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AA3D7977-F9DC-4880-B0FE-50DDD3D203AA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AA7A2CDB-A526-4A32-82E7-D318C904C293}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AAA557F8-C782-4862-957F-829A55C13B07}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AAB1F027-326B-42E5-9D80-BDA934B1A506}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AAF12135-889E-4E25-BB65-0E453BDF74A4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AB18BFB3-2B76-4462-952D-C9A84CDB7792}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AB2615E6-1F57-47F8-9206-7D617393E89A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AB385FAA-22C3-40F1-87A9-B176CF03F007}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AB59A6C7-7BC6-4448-BBEB-CD852A4A5424}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AB6196D8-A4FF-4F45-BEB3-C35B5660778B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AC005C17-131A-4A91-826E-0DF77B0D791A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AC5DAE35-00A2-47EA-98CF-CFE6AA4C1381}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AC7DCA98-B9F7-4046-A3F0-32EA5EFEC47F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{ACA7E5BB-4D16-415B-964B-4B4F788766D4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{ACB31143-D252-48C1-A601-05301F4F2A89}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AD12E913-5EAE-4DB4-AE68-0E2152CD7A47}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AD13555B-7B4D-4843-ABED-F73B7C7B701C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AD38668E-C598-49DC-B22E-E75CF8B0DFBE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AD54BCDB-ACDB-4206-ABB2-7FC6E7A49460}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AD837BDD-9571-4902-849A-3386055EDE18}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AD993627-E508-483F-9E1C-3850C29C0C0A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{ADD5A946-D4CC-4FD8-AAC4-928E39AD51BC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AE741EF7-6802-4649-BD09-FFD489F75821}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AE9E63AC-FF11-4829-A593-ABB61C6FEAF3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AEE279C8-1F42-423A-8F6E-341774BBA078}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AF2E1D91-4461-469A-AFC7-311A912C1116}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{AF8AC6DA-F5AB-4DD3-9B42-C7D8CBEF8D28}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B0176BAE-59DC-40B0-91FF-8789F84510FA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B025BEA0-8BD3-4A4A-9D92-77322819D28F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B07F2FDF-80FA-4C44-90D3-F55C15A64EC0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B0B01F11-6F43-4BD8-90A1-33806D38D2E2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B0D9E094-E2E8-4241-B992-F959DB1D43F2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B0EAA678-B045-4879-9621-A0C8E35FA015}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B1005B53-7944-4CEF-BBF0-3AD7D8F1ECC7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B12B4F37-7F32-45D5-AFC7-167A8F2B93ED}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B18EC91D-DB82-4F00-BAD0-57D528375910}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B1973EF5-4945-4C8A-AE78-E7A225C92ACA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B1DF732A-17D3-472E-B835-27569A74978D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B230503C-2F2F-45F2-A2C9-E241417A3B33}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B25454BE-6DD6-4A8E-AA2B-EEE09CC645B4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B2701F0B-DB20-4FC5-9DA4-3C17EAD29F89}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B29A0843-5C18-4BF4-A0B0-8CA85427CCC3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B2AC89D1-E2B9-41FF-96FE-9B60D6FE55A8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B35AFC48-3DA5-4B0F-A19C-B6429BC92CCA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B3C000E2-DE3A-4EE4-868B-700535C1BBE3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B435F19C-F2D2-4639-AB6C-CE2CD852FAB0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B46FE23D-1929-4AC7-9F2A-4B6C16CE7B09}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B47E06F5-4683-49E4-AA4E-F6F8D4388B08}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B487AE1D-B580-41CD-AD06-7B09F1537A8D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B5E7795E-08B3-47FC-AAFF-65F6EDF5BD86}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B5FAD6A8-7D63-4A99-B91D-373E3ADBDA05}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B66BDC50-F5AA-4064-8905-07768BD9D574}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B682973C-31F0-4079-A8E3-2E31C305AB73}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B6897AA6-D1E7-493B-9CA7-31C9615A0B38}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B6A91E38-CCB2-4F35-94E0-54C6FEEE633D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B6D668E8-FA5B-4492-8649-D37F2F3218B2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B6F7814A-88E2-4264-B6E4-7EC91962A2E4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B6F7DA0A-A0F9-4881-A819-8F2E422B0287}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B72BC340-EE7E-4728-92EA-AE0DE58F888A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B78621CF-4ED1-4488-84A3-56072F227877}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B7C5F81B-90E0-4445-A8C4-4D5318ECB96D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B7E8ABAA-5AC7-47B9-B084-BB9BB923ADF9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B80A7849-2C34-44F0-B142-3750EDEEA830}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B8471EB5-99DA-49E0-9872-7D8CD950A68B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B84B11DF-8948-48C3-B6C9-05A75670C483}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B85BDB98-855E-49B6-9948-401FAA66B6A1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B8897CB7-B951-4545-9B84-D23F956BFA30}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B88B96A9-0CE7-47C4-8F29-839B1C237C24}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B8FB4FFF-54B4-4C69-9520-301C0BB1F100}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B91E7F9D-2F2A-4BBE-9ABA-4387607640D4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B91E9A53-8FC1-4870-BBFC-164DCFBA3FE2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B9AF4898-ACD9-462D-AE72-B879758D2358}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B9CA2D33-48C7-4696-921B-B2879CCB0802}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B9D1BE56-BBB7-4E10-A143-7A6F2D470C14}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{B9E34B6D-1385-4CA2-B40E-C730AB939375}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BA42136F-CD2C-4CAA-BC31-F7B653BD88ED}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BB7AEC9D-D893-4F07-95C0-9D710F2391C7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BB885BAE-F27F-4F49-BA93-BF50CBEA049F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BBCE5E9C-6D05-4961-9A3B-01ADEC5FDF25}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BC316BD0-99C7-4682-A322-03A440D41DB0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BC449D9D-0F0B-4DFB-A3DC-8F568CB31307}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BC83BF7C-367A-4F6C-93E6-6B38D0073A6F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BCA3EA3B-3AF6-40A1-9BC1-345280A6744F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BCDBB2E3-EA9E-4334-8264-A186189788ED}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BCE36A22-0393-449C-8B9F-E48EA964870F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BD239823-D008-438C-96B1-D3A914E5E9D2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BD2C562C-F6C2-4973-A852-521E1F8E0375}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BD30AC16-811D-4E9B-BD1F-8118E0FC578F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BD315357-300A-4671-A5AC-6C948AB54F21}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BD41A5A9-D04C-466F-920C-EC8251E7F98A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BE14E863-8503-4EFA-BD04-6089BFB9B4AA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BE2FDC3D-A8DB-42B1-BC55-CDC6CD87F16D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BE56DCF1-B716-4818-9B73-DB966F5C17FC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BE68D33B-6429-4A07-A1D0-9AE83899E221}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BE6B7B22-8DDA-4FBB-B830-A39173D4F7AC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BE8FF86A-AF08-4070-B118-96CC0B421B5D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BEED5C09-151F-48D5-8425-EBA676C59C12}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BEFB80C5-5510-4DD8-BFE8-5A82954D01FE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BEFCF709-A0D0-479A-81DA-636CF92E6AF0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BF20F290-2FDB-4A5A-90AE-4CA46BF21B0C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{BF58BE51-D6BB-4B73-9811-32678F162A46}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C038ECA9-D933-446C-8322-A048EB0EFD23}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C08B86F3-BEC3-47D2-B2FC-93A708DA084D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C0E2C22E-BBFB-4043-82E1-E53C1C04368C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C0F7B6C4-6BE1-4035-895F-02605A2A4DC4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C1113CBA-56A3-4ED8-B39B-74CC2F93DBCD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C11364BC-EADC-46C2-A220-F626FAAC6D6E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C113CED2-4890-4C1E-9268-F0BEB92D4363}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C14BEE20-486B-46C9-A7EF-09FB4CFEC1D4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C163F3A5-8BE4-43EF-B70B-A020E361EB87}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C172D988-B5AC-4361-A9ED-C2D0D1086D76}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C17749F9-E45F-4AF6-B3A7-B8A8309AD08D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C1CF275B-CF95-42F9-9C51-207E63CD64D1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C211DB48-F311-4E9A-8310-0F9A8FB1DA1E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C21AA88C-B3A2-4600-95A1-7D13C8FA4869}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C2215B62-CB64-4200-90A1-05268AA16879}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C25F9EF3-8A7C-4711-97EC-9FDFF5B2B8D9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C28A4C49-2D1E-4CAF-91E4-6EE96AAAFC27}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C28AB0F8-5EB6-4EBB-A218-043767A12592}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C2A51816-D605-4079-929E-5D5A4122611E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C319C912-B701-4D7E-89AA-C178EC6E7854}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C349364A-0231-42EA-930D-AA0DF74F2F21}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C356CB2C-E902-416F-B93E-833A3A572022}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C38BFBBD-3AC3-49ED-967F-4588A7E78E7A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C3B73A71-27FB-40D9-8DA6-1994ED5DDF6F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C3DE6A5F-D0BE-4E39-BE9B-8F71D396C9F0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C4246A3E-04E6-4024-AE78-A30BCA875F44}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C44055D1-39A2-4BB6-920B-E199A1658AB7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C449CBA0-98B8-4612-8352-D55EA9A04F85}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C4B3D5E6-B8C3-4E9C-B920-5E4C6FDAC5B7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C4D0E861-EA55-4CC5-B409-AB8DD8314B6C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C4EAFBFD-5B2D-4E9D-B95B-F05AE0293D12}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C4EE5BEA-D562-45D5-88DD-BD72E5274694}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C51F1DF7-6314-4A73-918F-66649408E465}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C5602400-89C1-4E12-A7CF-671F4DB1C330}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C5915076-0B0C-4E45-9802-A07377305ED3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C59515FB-2FB8-4DAD-972E-F38017B2FC77}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C6153824-EE04-47CA-80A0-8B792E67FDA5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C646837D-DBC2-4F53-825E-683C1686BB57}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C65BF752-EF2B-49A6-81B1-5A597D7984AD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C6734B11-D065-4C6D-914C-C59E6C7E4A51}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C6A4106D-71F3-48D3-BFB8-C01CA4063E2A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C6B1B0C1-05D1-4C99-B3E9-6616BDD10B74}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C6BEC685-67B3-4D3D-AB68-AA055BD79C6D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C6D87222-B4A5-4F96-B0AE-B42CF2FA464B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C713275A-5383-45A5-8C16-74002A3D7279}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C72DB762-C52C-4845-A168-91191435E07E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C7307764-5CE4-484F-A256-385F35A06005}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C74CF344-8557-4D3A-A44A-AE7A698B77B6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C787D0F3-A3C4-46BB-BD39-FD4435B96407}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C7AD53E4-290C-4F8B-96F2-C4B9895655D3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C80D6FAE-ABEC-47A4-9D48-A1B5B804523D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C8157DF7-08A7-4145-B09B-ABC767076AAC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C82E8C05-3AB0-4E24-8609-E13B7FBE2552}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C85849BC-5F63-43CF-A2E4-E0CC04E026CD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C89993A7-DB05-417A-B43A-CB2E69CA98DF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C899CF36-4385-4514-BB5E-D2D914B645D5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C8AF2FA2-637E-4786-BFA3-C304F592E03D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C8C94222-489D-4582-972D-1CCABE7598AF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C8D47228-2DFF-448B-83B7-1E68499C099E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C8FD71BE-9EF1-474F-8347-2FA9BF8572DF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C8FEBB8F-26D1-49D7-A6EB-57A029B12277}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C927BDB4-9C21-4F18-9674-F217413E585F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C9567FC4-CC24-4D07-B65F-75705EAFCFE8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C9BB00D5-2FE1-4FCB-A8AF-78B141647721}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{C9BC3A04-D0FC-4BCF-B3F6-DE9FFDE80BD7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CA13B976-702F-48DC-BDE6-2E7CC64FF7E2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CA1CC54D-87E4-45B7-9ACD-8EA6C62AB26D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CAC057B7-F297-423F-BBD2-69B7EAFE7BE2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CAF81C76-1958-4C8A-9CAC-64395C0DD733}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CB663C74-16D9-4FF6-9F24-793A18B575B7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CB7E7240-FC55-4DCB-85A7-A0A906E81496}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CB9E04F7-9644-4702-A0F3-99F197C1ADDE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CC45705D-462A-4CBA-AE3E-4586FB8816F3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CC601538-CAC9-4EB5-BF01-C60AF3CACE97}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CC7A20B7-4DB6-4EC8-B367-F855289B39C7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CC9451F2-708C-4707-B1F2-BD937824D3DF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CCF49D60-8904-40AF-91D8-BDFCDB398E52}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CD123272-A4AF-4865-B13B-9E468B690148}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CD1DDAE8-6879-4572-B22D-52A419290E72}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CDA2B749-DBE9-4351-9743-2BDBC8334029}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CDF6F05E-844F-4B3D-8A9A-580D369341AB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CE03F995-85DB-4B47-94AB-A774E8DCA142}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CE1EEF07-C214-4BEE-AF79-A4E469B82DD3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CE38C063-49FA-43C3-AB0D-F77E78ECB9B9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CE73AB9A-91B3-4B51-B73E-353035A2A169}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CECB8A7D-112E-4F13-A80D-29131A189504}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CF69C24F-C677-4D65-8067-A1F9DF6CA637}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{CFD168DB-8672-4C69-A434-5E600AB79E17}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D0090E78-33C8-4C26-ABDD-C29133C31B11}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D01F534D-5DC4-4012-8179-D3E26D302B5C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D06DC77D-1C7A-4E6B-B972-6FCEB84AD46F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D0BCA507-A7D1-4602-B0F7-B6999A8819F9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D18CB3A7-0344-414C-B7D9-624EBC6D5AA6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D1CC2FF7-AB58-418E-B341-5743425BEE87}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D202531B-3A47-449B-8B64-C7E9114AF8B6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D24469A7-870C-49A2-B580-642C4D901A8C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D2683FA1-BEBA-46B0-A8C4-F373E6A3C2EB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D2802857-33EB-47BC-8D03-3C1EB1D8702F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D2822F5E-661A-4416-969D-686E4159FA8D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D288FF03-DE40-46C7-9FDC-53E586D877A3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D2ACDF30-6F38-47F7-A405-4E98E03693AE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D313F9B7-DD76-40EF-A65B-299B2A44E1AB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D36CEC6C-FFA0-46F1-9F42-3D56F3166E68}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D3B60657-630B-42F8-B478-011FF453ABD2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D3E7E953-CBAF-478C-92EC-19F355DCFC12}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D43FD377-0E9F-456C-B785-53245301E754}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D456C578-2325-4740-AE6A-9FBA68DBA722}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D45B2933-0B2C-488D-9736-52C66DEAEC44}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D473015B-7C43-4FA6-BEF0-D4C3A4E931F7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D4C9A128-6889-4B46-832C-EB1054B34760}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D4EACF3C-80D9-4DAD-8CB5-78BB6CE402D8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D56EC468-D22E-48D1-8667-85E51C4F5A50}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D5DFF7F4-9083-490E-BEC4-A844D122991C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D60D0D69-3983-42CB-856C-78A647505C41}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D62CA0FF-EFB2-4CA1-9156-A2EDDAC804A6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D648D216-E17F-4560-BF44-21A4BEE2C3C3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D764D435-5336-4D3D-9116-B31E4D63B9A4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D7879EC2-6FAF-41FA-8029-312CBFE4CD3E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D7A73828-AFCD-45A8-A5BB-6B6E15486F7F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D7A95126-A248-480A-B4F6-B6A2F89F6A2A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D7FB70E9-6E9C-41F1-8CA7-A1B9FF6C1D79}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D814FEA6-91E9-4C81-BC2A-A065DEDF1955}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D8457F06-BFBE-43EF-ACE7-BA96F4DC36A7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D8B554E7-F49B-41CB-BE3D-4BD306F79A6C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D8FBAA1E-4CD4-41DC-B137-262AB5805FB1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D91F0A5A-9A27-4EDE-A833-A7DB506BEF09}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D92C3756-64DE-4498-9775-B12655D86BE0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{D933DAB2-0CB5-454A-834A-9C64C2EAA5CF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DA1FD327-5260-4B3E-B3C5-D2D44616887F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DA79B6B4-6DE3-4302-B379-165F6943EF62}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DA80FAFF-7F0A-4162-BA82-2C8F813F439F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DABA6C02-7551-4F19-84F3-C69968BE65E6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DAC7D975-EBA3-4CBC-962A-CAEDB97742F2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DB208A63-79CC-4223-9701-E3944EFC0A54}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DB2EF23E-FE7C-4D53-8869-21A1F9985ACE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DB7856A0-6213-4FD1-8499-211F40A23271}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DB961B1F-D516-402E-8E4B-A1C198653B4E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DB9E5019-BE74-475D-9BBF-22A74C4A83FF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DBD828BF-B004-463B-840C-2CC2563FF297}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DC5C198D-1F7F-4A43-9AF1-B9BE78B4E05F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DC5DC2B0-F839-430D-825D-1B2EFCB8E2B1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DC74F398-95D8-4DFE-9FEC-85E4081FFA5C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DC7AAB69-34FB-4ACF-8671-8F92A00EA1DC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DCD2C803-96BE-4F82-BD76-A0941007457B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DCF3FC9C-A0C8-4AFD-93A5-216728A45797}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DCF6F28E-6127-421C-A03F-3880DD5A9301}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DD26C9A9-1318-465A-B29D-7556ECAAD7B8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DD30A818-CF16-433D-BE16-95C166E8BDCC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DDE60910-5355-4BE3-ACBD-0C9926504A1A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DE06DFC0-173D-4ABE-AFD7-46ACD2605411}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DE57EEE6-2944-4FB0-909B-DF4CC4AF018C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DE5EDC3A-D514-4103-B72C-C6FBA4CA6F4B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DED83650-4E38-41A5-A588-EBA279A1F7B1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DEE829D9-BCCC-4893-A094-457552A47D36}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DF1AD6CF-1E6F-42EF-81E8-EB0DB70CE66F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DF2894D5-B74A-4760-B28B-549F285EDA21}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DFEA0507-21F6-4F8A-8AE6-E813CAE7ACC7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{DFEAAEAF-EAED-41C7-A75C-7F69A015C679}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E01F6B55-AF1B-4BEB-88F5-47863F4694C2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E033CBF8-2449-413E-AA7E-6D0797FAAE91}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E03D03C3-C7CA-4280-9CF0-811B3205C654}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E0B4053A-9DE6-4718-A7D6-3E84C1E0A8AD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E0C0092A-83CA-42D9-A5CC-5AA2A4846C62}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E14DFB19-FAF0-4B55-90B2-42F6CD9C1555}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E16F3F26-12CE-4AB6-AC4F-11A793B3C080}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E1945094-81E3-4054-83D3-8D2146F987F0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E1DCC263-23DB-47F0-A2EE-2407BE895EED}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E1ED4DCC-18EA-427B-B775-EEC1B7909B82}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E26BED71-1026-4DFE-A989-E1F4B71B8D59}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E29B46EA-ECC6-499C-A1FC-CD424A761D26}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E2AE28AC-EA71-4C18-B873-BC30BCBF3365}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E2D49BC6-531D-44AE-BEDE-64094FAAAC50}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E2F24307-782B-49B6-B45C-46D745F802DD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E3533D90-E118-46E7-8EEB-58539A504C58}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E36B258D-FC6E-44FA-B482-52369B85B7F3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E3A92013-A3E7-40AD-81FA-3F3C9C2F2F28}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E3C27FA6-F1F4-4F8C-BF0C-C7E97DDD1258}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E3EB7B36-80A6-4D08-A2F1-4CD570C13695}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E40E6746-90FD-4790-B0BE-1A243393218B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E42EE737-1F5E-49A4-BBF6-EA8225FD38E8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E4318B93-AD81-4984-AF3A-EF6B80B4E387}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E467BAB9-9610-4AE4-94E4-AA64A79D0951}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E4934A3E-A6A1-41C6-B777-FE7BF2442715}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E5075857-8D1E-42DB-AE8B-42EFEAB98D71}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E528430E-1829-4476-B49F-F9E6F4DB43BC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E543CE09-A88D-40C8-A000-20EE47D49B5E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E5A3BDCA-8DE4-4800-8E5B-4672E0AC2A58}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E5A3F149-4C66-422D-AFF3-490BD956990C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E5A47C08-A194-4E01-A9C0-916DD677BD3C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E5E7A3A1-7A92-4B3C-8385-89C3E3B4E14A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E625FD4E-FCB1-4B5E-B4EE-820CBFE57C05}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E6303FCD-F08B-408B-9C81-189FA37563A7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E67217ED-6213-4452-9C27-D21BE8EF0F55}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E695CD60-826B-4819-B592-896187A718CB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E695FEA1-C24E-4D6F-9DA6-78FBDA30B194}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E6CB31F6-009A-4A1D-94BB-660237801314}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E7A9C11A-2DF3-411E-B845-E454BDC4BBE9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E7C5E829-A850-48E3-AF38-B289182A1837}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E89E54BB-2B5E-4D8E-B3FA-ACD8644E7D3C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E8E14EBB-61EF-4D05-A2C2-48BBAFCB7A02}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E9886CA2-457D-4876-836D-66FF26262AF9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E99B0028-99BD-417C-B722-E8101FE297A0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E9A93346-D8B0-4FD7-9D7F-E07233678123}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E9BDF70A-3684-4807-9F48-0D3E17564D82}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E9C65A57-07AB-4270-B5A0-3CBBE5006EF0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{E9E1284E-71AC-4914-8165-88F9562F4E02}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EA7DFDCA-7037-402A-AF34-A148DA8E8AC7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EAC74591-C8B6-429C-B7B6-C6B096220237}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EAEADFDE-32DC-4D55-A0C6-2300371957B4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EAFF10DE-02E0-4424-BA09-5CC1D0BCC36A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EB333AE0-45F2-46AF-99CE-72CBB28A7F95}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EB95743B-AE1C-4442-9448-0A08C80EBFC5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EB96FC32-629E-4112-ACC0-C4B903917DE5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EBB40611-A07F-4F92-A10C-8A48309C969B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EBBE8084-08AA-44E9-BF1D-62D528DEDB64}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EBDC3D9C-CC8D-428D-896B-802CDF985308}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EBF6B9EE-6063-4A14-B4B5-B13CD7774583}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EC082C5A-0602-43AA-9D09-85CC37AE1DC0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EC28E782-9A11-47E1-986A-27985F6CDD99}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EC330FA0-6620-479D-918A-16BC541C17BB}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{ED19865B-CF98-42C5-9212-D0D3524E909D}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{ED50C5D7-065A-4A4D-B0F4-2911EC25D150}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EDA38E91-CA60-472D-A066-18C73948FCB4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EDBA564C-49F4-4029-8625-973D06E0DB7E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EE002A7D-74AC-45AF-93F5-860F78EAA8B5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EE1D5D09-544C-44C2-8E0C-1FE153CB56D8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EE4B9B94-5FC7-49A6-9B8C-5F79B125E0C6}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EE6F5F74-C327-4B9C-ADD4-256B52CC6598}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EE853128-121D-487D-B6C5-9F36F5B519E3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EEB20555-54E0-4BEB-BA9E-5042D17CBEBF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EEB5B3A9-85FD-4DDB-9A67-4AAB61D5D939}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EEDA5EF6-D8F3-46C1-9CE3-4A20044CB407}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EEEE1B19-12AA-41FA-8E79-92F132E6DBE8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EF0A3744-CDA4-4667-9B1C-45BEC1177EB0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EF0B704A-5A02-4C5B-ACB2-AB7CF539E6C5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EF4B4DA7-EEF1-4942-8847-E001CF8E8D1C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EF4E29A0-4C70-4CD3-9DF4-11CC33A162BD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EF6A7B2E-3B64-4721-9E1D-EA194F084955}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EFA60674-E658-4168-B5A6-390FCDF84084}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{EFAB0445-B350-4CA5-9F63-E83B268204B5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F08165E7-8ACA-411A-87D7-2D29B975C2B7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F0A68064-556B-4361-B360-7736913F78D9}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F0A72BBB-8BF5-4230-8C12-D03A6BCDB8B4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F0BE7467-DE4C-47B9-B730-1BFA041946C1}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F126E260-6611-49F6-A3ED-CC5013BAFFDA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F13E6FE1-EEB1-4BB9-AC3C-4554EF809423}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F149ED6F-6A85-41F9-88CB-DB5B3D225C26}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F156EEF3-C8F9-4AFD-87ED-AE4282655F5E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F1943E11-699C-4A03-9385-D2DD564C77D0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F196FCC0-8B2B-425B-8112-404DF2BA27CD}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F2771D91-CB45-43D3-B9F5-66D7F9D42C34}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F27C66AD-6D15-4F7D-8344-F826D3069281}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F28795BB-5AEB-448A-8BC7-C9E7A81A00E7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F3D97FB0-991C-4BEB-8206-7F529B66282F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F3E25F41-3D0B-4216-A503-349AC76CD044}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F44183D0-04F3-46D0-AABB-F7657150DDB5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F456C2AD-F2CA-46A1-B2A7-F9B93713D919}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F490281B-C499-47F6-9AEF-F9E3937F7793}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F5023D74-1AC9-4677-B535-3EA6EC4C0A52}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F5040471-6B64-4206-83DF-BBA88778F85F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F50F324D-80FD-4BC2-8F94-B49E94842474}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F5208900-B115-4505-BFBF-3594BFBC05CE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F552C8F9-2735-43FE-8AB5-2B7F8989990E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F56B3C41-62DB-47F4-92E9-88E2816738DC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F581CDCB-2626-40BE-8DA4-4D78464DD7D7}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F582AC0D-729C-45B2-8B08-AABE9C20FE24}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F5C66BB3-2EB9-4D95-B3F2-860E7100F1D0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F5D5DC66-8449-4DBC-8123-DC7F24C55628}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F5DCB25E-9D5D-4A00-AD8D-5A2BADF3D909}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F61356F5-4317-4CD0-A1E8-132FCFB4ADC3}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F616A976-6B29-41FF-8245-58BEB62C33C2}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F706CA65-4F6C-454C-8A2D-1F65D6BBE168}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F70B818E-51E7-4D8C-9B5C-8ACF1FFA9606}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F7163126-3960-4F53-A7B8-16BF8AA97AD4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F7C99C6E-290B-40D4-AB1B-9013CC3EF4CC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F81C126C-8D53-4F8A-AC48-74D7F630D69C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F83F19F3-36A1-4D4D-9447-94A8777F7761}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F8491BAE-C07B-4317-8EC3-9D07B5C77620}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F8701D68-74C7-4F3B-8863-45BE276E233E}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F9104244-C55F-4E8B-9E53-837552EBF894}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F9143A10-C1E8-40AF-93CE-074C2F9740F5}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F957E306-D2A2-439F-BCC1-A071063F11D8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F969392D-F67D-4B82-9C69-FD7EA6B18605}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F9724F6D-E3CB-4B04-9858-CBC2C187638B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F97D6B2F-3DDA-46C9-B9F3-01973A1C98BE}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F9CE5760-BEED-44A7-A8DF-D07A7876DD78}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F9CF1ADE-D7AE-41A0-B5DD-EB8F77A73FA0}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F9CF2E37-9E42-49FC-97DE-272E0364D379}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{F9D37367-9632-45C7-93EB-902A82A25C6C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FA9003C6-ACF0-4D71-B723-F5D1351D2962}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FAE10037-A984-4EA3-A8E7-6559052257D8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FB583FE5-E2A0-4487-9586-868605D93186}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FBD59918-7682-452E-B8B1-D1ECCC6A1488}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FBFF33B6-336A-4572-9049-802CD07C0D71}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FC3B6228-F453-488D-BD81-05211A33FCB4}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FC48804F-41FA-40C4-8855-0E7B95233FDF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FC4946F4-2CCF-4A35-B3A9-38AFF481EE9C}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FC8060D6-2794-4001-BE62-D9953EA7182F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FC8EB3A8-43A6-4AF5-9BEC-11A6086F4209}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FC96DDEA-6575-4132-A0F1-CCF8069A03EC}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FCFBE45C-6A4B-48A8-BAAC-29F5EC18A665}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FD60C494-3373-42DA-A8EF-7EF274469992}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FD64E819-8AAD-446F-8F14-E4036A879A2A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FD7C19EC-D354-4DAB-B905-96B5D8761AFF}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FD93D2AE-6CB9-4A42-A0B5-EF56389CA82F}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FDC60372-CBD8-4DFB-8D1A-573703C9C2EA}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FDE53F0D-1132-4C44-97CD-CF34787F2E6B}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FE0CD32F-8F55-4C23-9BA3-A76910B4AD0A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FE18C8D3-F219-4345-8F1E-012C23920EA8}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FEE704BD-7550-493D-A9A9-1E09AAB06498}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FEFCFB8A-6EB8-4630-A091-1797F6CD1E5A}
Successfully deleted: [Empty Folder] C:\Users\Gabriel\appdata\local\{FF449217-4A97-40AD-9D68-1A901A9FCA8E}
Successfully deleted: [Folder] C:\Users\Gabriel\AppData\Local\{CFB336FE-D07D-11E1-8270-B8AC6F996F26} [Trojan:JS/Medfos.A]
 
 
 
~~~ Event Viewer Logs were cleared
 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sat 11/08/2014 at 11:06:59.43
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 

  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP