Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Trojan with possible hijacked computer. [Closed]

Trojan

  • This topic is locked This topic is locked

#1
Ozzette53

Ozzette53

    Member

  • Member
  • PipPip
  • 28 posts

Hi. I was on here working on my sister's computer a few weeks ago, but I should have been working on my desktop. For a month or two (maybe more) I have had the feeling my computer was being used by someone other than me. My boyfriend said when I forget to shut it down, it does all kinds of crazy things during the night, including Dos Boxes popping up. I ran RKill and it keeps popping up that I have a local host that is bad. Then after it is run, AVG comes up and tells me it killed a trojan. This sequence happens everytime. So, I am including my OTL Log and the RKill log from this morning. I am sorry, but the AVG notice comes up quickly and disappears quickly so all I get is it quarantined a trojan. I am very worried. Please help!!!

 

PS: I also cannot get rid of the Ask Toolbar in IE. I will be installing unchecky as soon as you give me the ok. I am also now going to Autoruns to stop Malwarebytes, Kapersky, etc from running on startup. BTW, I could not complete a Kapersky scan. After 11 hours it was still on 10%.  I know I have a bad problem.

 

 

OTL:

 

OTL Extras logfile created on: 11/17/2014 11:27:03 AM - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Dee\Desktop\Tools\VirusRemoval11-17-14
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17420)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
 
5.75 Gb Total Physical Memory | 3.92 Gb Available Physical Memory | 68.18% Memory free
11.50 Gb Paging File | 9.40 Gb Available in Paging File | 81.79% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 918.16 Gb Total Space | 544.93 Gb Free Space | 59.35% Space Free | Partition Type: NTFS
Drive D: | 13.25 Gb Total Space | 1.63 Gb Free Space | 12.30% Space Free | Partition Type: NTFS
 
Computer Name: DEE-HP | User Name: Dee | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
 
========== Shell Spawning ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- Reg Error: Key error.
https [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- Reg Error: Key error.
https [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
 
========== Security Center Settings ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"AntiVirusDisableNotify" = 0
"AntiVirusOverride" = 1
"FirewallDisableNotify" = 0
"FirewallOverride" = 1
"UpdatesDisableNotify" = 0
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 
========== System Restore Settings ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
 
========== Firewall Settings ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DisableUnicastResponsesToMulticastBroadcast" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0
 
========== Authorized Applications List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
 
 
========== Vista Active Open Ports Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{132ACE1F-48B5-446F-8CE1-32F4120DDE5E}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{18EC0DF6-3C68-4976-BD5B-F30587408B9E}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{231D8C1D-6C40-4983-823E-4CA454C0FFE0}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{257D434C-8845-4775-97C3-32B466EAD59B}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{2AC3BF01-5528-4744-9B99-3DB4890AFE2F}" = lport=10243 | protocol=6 | dir=in | app=system |
"{2E809943-FDFB-48E9-AD31-70D3919130B2}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{2FEEA197-90A6-45B7-9F32-B618378FE3DC}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{340128E2-3726-4295-A3EB-769E29BCC52A}" = rport=10243 | protocol=6 | dir=out | app=system |
"{4863A242-5504-47AA-B3D3-5E57BBA37EF2}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{5BEC53CE-58A1-4D02-9E4F-92A35904445A}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{6FD89636-775F-48BB-9C2C-545C1B745DE4}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{7013292B-41AE-4B01-B277-1069A512668E}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{764AECD2-EE43-4D55-A1C9-D864348CDAE6}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{7F4864B5-E958-427B-9A2B-74D7E0002D5F}" = lport=139 | protocol=6 | dir=in | app=system |
"{8C2D3864-7410-4D75-AB8B-E9E14EEA4284}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{8CCFCF71-573C-46A8-B9C6-30530688B388}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{98CE41C9-FEA6-4A43-8C69-10E383A64A01}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{9C2CF127-458A-449C-B1CD-F966446A0109}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{A0F412C8-93A0-4EC9-99B0-5D4ACD0820C3}" = lport=138 | protocol=17 | dir=in | app=system |
"{A2A8E711-D8F4-44C3-9DF8-6043C5B1C144}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{AEC49153-789B-42A4-83E2-8A3BC500C8D9}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{AF44ED44-0B5A-4598-840F-7DC52EF18836}" = rport=139 | protocol=6 | dir=out | app=system |
"{B1855AF3-97EA-4187-8F46-8704376E90DE}" = lport=2869 | protocol=6 | dir=in | app=system |
"{B5B9BEFF-FC07-4E1A-B613-33ED406AA843}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{B5C47D6B-E63D-49DA-BFA6-BC2A6696B8E3}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{BAFB879B-C3D6-4751-8228-7B867CAB3E04}" = rport=445 | protocol=6 | dir=out | app=system |
"{BCCDDF5A-AC6E-46C7-9748-537AB6BDB7F0}" = rport=137 | protocol=17 | dir=out | app=system |
"{BFF362B8-177D-42E7-915C-F56654B130B3}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{C5DE3537-F70D-4AB3-83A4-ED9B6365F5AE}" = rport=138 | protocol=17 | dir=out | app=system |
"{C62046BB-E287-4624-BE1E-140307CC8F56}" = lport=137 | protocol=17 | dir=in | app=system |
"{D0CC178C-482D-4EF3-AD17-F0BB007ED58A}" = lport=445 | protocol=6 | dir=in | app=system |
"{E3301011-FC23-44A7-8FA2-4A64F43EED3D}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
"{E3CCBCB2-8B08-4634-896E-BD27E3576722}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
 
========== Vista Active Application Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0ACE897F-CF47-4E41-9A4E-7463AE5A1EF4}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{15058738-C48F-44F8-BFFC-B4C22AC4CA52}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{162F8F4E-2ED0-4CF8-9975-0F12DD4DC15F}" = protocol=17 | dir=in | app=c:\program files (x86)\bfgclient\bfggameservices.exe |
"{189E8DE1-E5D2-4F2B-BC89-6C44232CF9E4}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{1E74A515-37A6-4FB9-9F92-E94D88FB62A6}" = dir=in | app=c:\program files (x86)\hewlett-packard\hp support framework\resources\hpwarrantycheck\hpdevicedetection3.exe |
"{1FF0AD69-C4FE-4913-A612-4F0904529A90}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{2F983DB3-5BB9-446A-9139-2203EF182448}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgmfapx.exe |
"{33E8C348-8D53-4557-9181-AB321BB8BEE1}" = protocol=17 | dir=in | app=c:\windows\system32\spool\drivers\x64\3\lxbkpswx.exe |
"{3525ADCE-F2DF-4855-BC35-97FC85383246}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2015\avgmfapx.exe |
"{3995ECF9-288B-4E89-A32C-840B4B0D0D08}" = protocol=17 | dir=in | app=c:\windows\syswow64\lxbkcoms.exe |
"{3D56B6AD-840D-4476-AF7E-0C5CAD280F6E}" = protocol=17 | dir=in | app=c:\windows\system32\lxbkcoms.exe |
"{3E5A7503-FA78-4436-801C-F48F3E35D6E1}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2015\avgnsa.exe |
"{44528826-A445-4279-AE98-C837FD54DE2B}" = protocol=6 | dir=in | app=c:\program files (x86)\bfgclient\bfgclient.exe |
"{44B93118-8019-4022-90E3-4D1D9C05EA04}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2015\avgdiagex.exe |
"{4C283665-B5C9-4D89-938B-8FCCD341BC8B}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgmfapx.exe |
"{52D40A29-5FAD-4E1F-9287-63298D12C4B2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{56EA6547-7BDA-470A-BFB4-13AB22F058B6}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{5C1ECCA0-EF6B-48F6-ACF3-1C26D661E56C}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{619C4BEE-A45D-4A17-A927-A0CE90294D8C}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{64D000A3-B579-4337-8C77-CA4BAD40CCE3}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2015\avgemca.exe |
"{6B888600-BCE7-4C5B-B31A-8E9D446CFD57}" = protocol=6 | dir=in | app=c:\windows\system32\spool\drivers\x64\3\lxbkpswx.exe |
"{78858827-4682-4A30-B7F3-2C2DE2224F82}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2013\avgmfapx.exe |
"{7FC3B1AB-D8B2-4001-A1F6-011E8C4CAFEC}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2015\avgdiagex.exe |
"{87FA6661-4BE3-4BB7-AFC3-96F039893CEB}" = protocol=1 | dir=in | [email protected],-28543 |
"{9B3B0FA8-C033-43DE-9866-1DFDC7A84E0F}" = protocol=6 | dir=in | app=c:\program files (x86)\bfgclient\bfggameservices.exe |
"{9B89AB29-09DD-4509-A290-E361FE906BAE}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{9C20BEDE-047A-4E98-BBF5-3E04D04EE35A}" = protocol=6 | dir=in | app=c:\program files (x86)\bfgclient\bfgprocess.exe |
"{9C38159B-C2C8-4898-9001-AE51B530C040}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{9FA39579-014F-4A77-B341-19B13782CDB2}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2015\avgemca.exe |
"{A48DD0EC-CDDA-4A79-AEAF-157C62BCF66A}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2015\avgnsa.exe |
"{A92D0956-41D9-4C98-8836-5BED23722D93}" = protocol=1 | dir=out | [email protected],-28544 |
"{A97F2B2D-CFE3-49EB-B3A0-8041FB950EB9}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{B2EB6EB6-0930-4192-B747-0126323C0CA1}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{B75F9974-C59B-460B-83EA-59B192A447F8}" = protocol=58 | dir=out | [email protected],-28546 |
"{BAF5BDAD-3E88-4C0A-99E2-2B5FBBE6EB11}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{CAC48755-4AEC-45CD-A424-0F75584AF234}" = protocol=58 | dir=in | [email protected],-28545 |
"{D0B6816B-6A36-481B-B992-95E322874855}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{D2E0DB08-B39A-4FC4-94DC-356D025DA8F9}" = protocol=6 | dir=in | app=c:\windows\system32\lxbkcoms.exe |
"{D779216E-1D7A-41C5-B315-2873E1D32EB6}" = protocol=6 | dir=in | app=c:\windows\syswow64\lxbkcoms.exe |
"{D9F64C91-6DF0-43F2-82EE-D035D3A35CF1}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2013\avgmfapx.exe |
"{DDC60DA6-4145-433F-9821-B810FD4E9478}" = dir=in | app=c:\users\dee\appdata\local\facebook\video\skype\facebookvideocalling.exe |
"{E0511E02-F33D-4F10-BAFC-9088EEECB58E}" = dir=in | app=c:\program files (x86)\hewlett-packard\hp support framework\resources\hpwarrantycheck\hpwarrantychecker.exe |
"{E9E9E782-CA06-41FB-9844-30237FE71527}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{EAC24055-F2CB-4808-A10D-D387DE3F98F9}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{ED3E5567-3EC3-44BC-8D1B-5CF2FBD09BCF}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{EE2D1129-3BE4-4CC4-85A9-F6775CC74A74}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2015\avgmfapx.exe |
"{F021DB99-DFAD-4823-9D36-A1ADDF9469FB}" = protocol=17 | dir=in | app=c:\program files (x86)\bfgclient\bfgprocess.exe |
"{F659398A-F9BD-473D-A737-6124E0838CB3}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{F69C02B9-B241-49AD-8CEA-02EF7736D15A}" = protocol=17 | dir=in | app=c:\program files (x86)\bfgclient\bfgclient.exe |
"{F9A5D626-7E2C-4E3A-8CB7-67AC7EA035CD}" = protocol=6 | dir=out | app=system |
"TCP Query User{0B70A06F-6221-45D7-9516-AFEA31782EDE}C:\program files (x86)\lucasarts\escape from monkey island\emi launcher.exe" = protocol=6 | dir=in | app=c:\program files (x86)\lucasarts\escape from monkey island\emi launcher.exe |
"TCP Query User{4F80EF03-4D59-47D8-A920-BACC6764D043}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"TCP Query User{599122CF-AE9C-4E6C-9B14-B33D38C9A461}C:\program files (x86)\amazon\utilities\amazon music importer\amazon music importer.exe" = protocol=6 | dir=in | app=c:\program files (x86)\amazon\utilities\amazon music importer\amazon music importer.exe |
"TCP Query User{8DAEE738-50DB-4C7B-8E2E-3F3095CA2DC3}C:\program files (x86)\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"TCP Query User{D1A39672-748C-4F04-98B8-FA09FCE71791}C:\program files (x86)\hewlett-packard\touchsmart\music\hptouchsmartmusic.exe" = protocol=6 | dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\music\hptouchsmartmusic.exe |
"UDP Query User{1BE2BE05-DE11-4A8D-BF62-4350626E69F6}C:\program files (x86)\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"UDP Query User{66A36842-F3EC-4041-839D-F944758DB337}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"UDP Query User{9741D12B-D75C-4F0B-9543-79C21D213685}C:\program files (x86)\hewlett-packard\touchsmart\music\hptouchsmartmusic.exe" = protocol=17 | dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\music\hptouchsmartmusic.exe |
"UDP Query User{AD285F00-7550-44C2-AABD-ED649117744C}C:\program files (x86)\amazon\utilities\amazon music importer\amazon music importer.exe" = protocol=17 | dir=in | app=c:\program files (x86)\amazon\utilities\amazon music importer\amazon music importer.exe |
"UDP Query User{CC9FFC56-D5CF-46E8-912B-2102EF7288D3}C:\program files (x86)\lucasarts\escape from monkey island\emi launcher.exe" = protocol=17 | dir=in | app=c:\program files (x86)\lucasarts\escape from monkey island\emi launcher.exe |
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{027E5FAB-1476-4C59-AAB4-32EF28520399}" = Windows Live Language Selector
"{034B6AC8-DCF6-585B-2AFD-3FF0D4A559BB}" = AMD Accelerated Video Transcoding
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{07EEE598-5F21-4B57-B40B-46592625B3D9}" = Zune Language Pack (PTB)
"{0E543634-7E25-4B8F-8D5B-97880E5E5088}" = Bonjour
"{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant
"{21B133D6-5979-47F0-BE1C-F6A6B304693F}" = Visual Studio 2010 x64 Redistributables
"{21D0374C-C358-0748-CAF9-7CBE65EB6FFF}" = AMD Fuel
"{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition)
"{2856A1C2-70C5-4EC3-AFF7-E5B51E5530A2}" = HP Client Services
"{2B77B867-D7B9-4789-94E1-94D3BBBA642C}" = AVG 2015
"{2C4E2E4E-A7C9-4CCB-BF03-FE6EBD5D4AB7}" = Windows Mobile Device Updater Component
"{30921AC4-6875-F7DF-B48B-2BB68C000BB6}" = AMD Media Foundation Decoders
"{41357956-5B67-489C-9F7D-FABACC2CD3CB}" = AVG 2015
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{5C93E291-A1CC-4E51-85C6-E194209FCDB4}" = Zune Language Pack (PTG)
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6740BCB0-5863-47F4-80F4-44F394DE4FE2}" = Zune Language Pack (NLD)
"{6B33492E-FBBC-4EC3-8738-09E16E395A10}" = Zune Language Pack (ESP)
"{6C676266-91E4-DC71-E661-13494AC29A3E}" = ccc-utility64
"{7006ED29-58F2-40C3-AE87-039287AD20B6}" = Zune
"{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8338783A-0968-3B85-AFC7-BAAE0A63DC50}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8C775E70-A791-4DA8-BCC3-6AB7136F4484}" = Visual Studio 2012 x64 Redistributables
"{8F473675-D702-45F9-8EBC-342B40C17BF5}" = Apple Mobile Device Support
"{90140000-006D-0409-1000-0000000FF1CE}" = Microsoft Office Click-to-Run 2010
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A40F60B1-F1E1-452E-96A5-FF97F9A2D102}" = HP MediaSmart SmartMenu
"{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}" = Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}" = PlayReady PC Runtime amd64
"{BE236D9A-52EC-4A17-82DA-84B5EAD31E3E}" = Zune Language Pack (DEU)
"{C5D37FFA-7483-410B-982B-91E93FD3B7DA}" = Zune Language Pack (ITA)
"{C68D33B1-0204-4EBE-BC45-A6E432B1D13A}" = Zune Language Pack (FRA)
"{C8C39B37-502F-5D99-A1A4-1D810CE3112F}" = AMD AVIVO64 Codecs
"{CB1032F6-1108-30C7-01C9-C0C132D13BEE}" = AMD Fuel
"{CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}" = HP Auto
"{CD95F661-A5C4-44F5-A6AA-ECDD91C240C7}" = WinZip 16.0
"{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware
"{D77162FE-B7B2-8E1E-D80D-89DE6217DF13}" = AMD Drag and Drop Transcoding
"{D79A02E9-6713-4335-9668-AAC7474C0C0E}" = HP Vision Hardware Diagnostics
"{DA2737A4-B639-96F4-1CC2-30D2919EE1FB}" = AMD Steady Video Plug-In
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319
"{F4C71C2A-F068-8EEB-61AE-EA4707C57A1B}" = AMD Catalyst Install Manager
"AVG" = AVG 2015
"CCleaner" = CCleaner
"Lexmark X1100 Series" = Lexmark X1100 Series
"WinRAR archiver" = WinRAR 4.01 (64-bit)
"Zune" = Zune
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00F14E5B-E07A-2A1E-6788-580773CE1486}" = CCC Help English
"{0492E5AE-8B37-45E2-BE12-B2875ABF4061}" = Vampireville
"{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
"{0A036215-0A8D-6FBE-7EA3-7AED4F9E162A}" = CCC Help Turkish
"{0A948ECF-9E0A-ED8A-8905-35753A8944D3}" = Application Profiles
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0EDEB615-1A60-425E-8306-0E10519C7B55}" = RoxioNow Player
"{0F5AEBB0-43F3-4571-ACE7-A7942E8AA179}" = Microsoft Application Compatibility Toolkit 5.6
"{1088F929-91D9-4FD5-8AE8-E9593CD47CD7}" = Nancy Drew: Ransom of the Seven Ships
"{120262A6-7A4B-4889-AE85-F5E5688D3683}" = HP MovieStore
"{1432E5F7-0AF6-8C43-EC53-08A4648CBD03}" = Application Profiles
"{14D10AAC-9737-454E-A247-8075C26C30E1}" = SILENT HILL 3
"{15A05AAA-37E7-D516-5BE9-C960C2170403}" = CCC Help Czech
"{167158CE-1637-4167-8A1C-C2549EEA966A}" = The Weather Channel App
"{1879585A-D70B-4774-8A0A-FCF9763AC7CF}" = dino2
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite Deluxe
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{2091F234-EB58-4B80-8C96-8EB78C808CF7}" = Facebook Video Calling 3.1.0.521
"{21E9850E-58C2-FA88-D5AD-B64D253B8F82}" = CCC Help Thai
"{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype™ 6.21
"{25A7270E-1B63-DFD1-ACBC-88852A305398}" = CCC Help Chinese Traditional
"{264FE20A-757B-492a-B0C3-4009E2997D8A}" = PictureMover
"{26A24AE4-039D-4CA4-87B4-2F03217071FF}" = Java 7 Update 71
"{2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}" = Windows Live Messenger
"{2C8BBDA6-79A7-B2DE-3E5B-287E7F667C67}" = CCC Help Danish
"{2E69E784-F84A-9A18-7D8E-4EB8504EEE1E}" = CCC Help Danish
"{2EA3D6B2-157E-4112-A3AB-BF17E16661C3}" = HP MediaSmart/TouchSmart Netflix
"{3023EBDA-BF1B-4831-B347-E5018555F26E}" = Movie Theme Pack for HP MediaSmart Video
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{3365E735-48A6-4194-9988-CE59AC5AE503}" = Bing Bar
"{33E0033D-A617-DA5B-2EAD-CE59947C7365}" = HydraVision
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{362614E4-9ABB-E7A7-CDDC-239AB168060A}" = CCC Help Japanese
"{3E0BDBA0-0BD1-4749-A624-8AD3BC787198}" = Nancy Drew Dossier: Lights, Camera, Curses!
"{4058154A-EE06-470B-94B0-380416D71E37}_is1" = Mystery Case Files: Prime Suspects
"{4154A302-2601-1401-2002-415258454C01}" = Hitchcock - The Final Cut
"{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}" = Recovery Manager
"{45235788-142C-44BE-8A4D-DDE9A84492E5}" = AGEIA PhysX v7.09.13
"{46BA053F-57B3-4153-BDB6-D37EEC8B12D7}" = LightScribe System Software
"{46DE5F4E-BA8B-AC9E-0EED-05B7D93AD215}" = CCC Help Spanish
"{4745F6F8-09DA-CC39-EC19-0E8D764CF2B7}" = CCC Help Chinese Standard
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A712D29-DBE3-4381-A331-AF4AE5BEB244}" = ArcSoft Software Suite
"{4F524A2D-5350-4500-76A7-A758B70C1200}" = Search App by Ask
"{4FA31DE2-B613-24BB-1738-B655C00B1C9D}" = CCC Help Hungarian
"{53469506-A37E-4314-A9D9-38724EC23A75}" = HP Setup
"{54B7A3C7-0940-4C16-A509-FC3C3758D22A}_is1" = Amnesia - The Dark Descent
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{58771CF6-F212-CC4D-61B1-45CC70B6375C}" = CCC Help Dutch
"{5AF4B3C4-C393-48D7-AC7E-8E7615579548}" = Adobe AIR
"{5B04E832-4530-B8FF-F742-8BE25ADD43BD}" = CCC Help German
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{625386A4-B6B6-4911-A6E8-23189C3F2D15}" = Microsoft .NET Compact Framework 2.0 SP1
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6D5CE5F1-CBB0-9ED4-1A1E-91DDCD6225FD}" = CCC Help Italian
"{6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF}" = HP MediaSmart Photo
"{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.2.1.1
"{707210B0-29F1-C550-BA96-6ECDA245CF24}" = CCC Help Spanish
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{74096E43-C712-4DED-A530-719CA2E0DE80}" = Nancy Drew Dossier: Resorting to Danger
"{7694E0B1-2332-448B-9235-929F84B41E3F}" = Active@ ISO Burner
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{772753FC-98FF-4BB3-A93F-C006663633AD}" = StillLife
"{77B5AD60-8F14-11D4-9BC9-0050041A1090}" = American McGee's Alice™
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{78B55A60-5E51-11D4-A766-00C00C02EDEF}" = Nancy Drew: Message in a Haunted Mansion
"{7ACEF1BF-9306-5AD7-5F30-ECE72A81E924}" = CCC Help Finnish
"{7F2A11F4-EAE8-4325-83EC-E3E99F85169E}" = HP Support Information
"{812B956B-37AB-24B9-4527-78A6D3ECE7F8}" = CCC Help Korean
"{82B72ABA-FB82-41BA-A129-3E9C1BE06D3F}_is1" = Still Life 2
"{83293709-B863-0EF6-00DA-B026D486E8B5}" = CCC Help Polish
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{877E390C-1EFB-44CB-BBBE-6A0B0D553620}" = Adventure Anniversary Pack
"{88B2ABCF-9C00-47C1-8FC4-369B98845DD7}" = Catalyst Control Center - Branding
"{88C77575-0C42-4DA0-861E-9AC38241A120}" = Pirateville
"{8B7IL77L-87234A-AWAKE-18CD6E6334R1}_is1" = Alan Wake version 1.0
"{8D3903E2-4B1B-4A69-B8F6-A3D1BE075BDB}" = Blio
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}" = Ralink RT2860 Wireless LAN Card
"{9008D736-35CA-40DB-A2BE-5F32D954E5AA}" = HP MovieStore
"{90140011-0066-0409-0000-0000000FF1CE}" = Microsoft Office Starter 2010 - English
"{911904DE-EBB6-BC8E-D5BD-762B7DB42C46}" = CCC Help Greek
"{912CED74-88D3-4C5B-ACB0-13231864975E}" = PressReader
"{91A34181-9FAD-43AB-A35F-E7A8945B7E1C}" = HP MediaSmart Music
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
"{95140000-00AF-0409-0000-0000000FF1CE}" = Microsoft PowerPoint Viewer
"{98823CC0-51DA-565C-FF90-DCC72D47BD24}" = Amazon Music Importer
"{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}" = Visual Studio 2012 x86 Redistributables
"{9903011B-5F1D-A2A1-8078-EE62B3324CCE}" = CCC Help Portuguese
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9A7F1628-2126-34A5-852D-2B93328BCF3F}" = CCC Help German
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9C1EC871-05B9-03B7-96F6-9BD5C0D8F41D}" = Catalyst Control Center Graphics Previews Common
"{9C627F78-DBB9-4293-AA89-E83119C39CE9}" = Greeting Card Factory Photo Card Maker
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A964DB23-B213-432E-8403-0CBFE2883039}" = ArcSoft Funhouse
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
"{AE15D0F7-8C2E-4419-97B4-995ED16FBB4E}" = Art Explosion Greeting Card Factory Express
"{AE6C422B-DADB-D547-411C-E9E56DF03D16}" = CCC Help Russian
"{AE856388-AFAD-4753-81DF-D96B19D0A17C}" = HP Setup Manager
"{AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A}" = QuickTime
"{B073B30C-7D4C-401D-ABF6-993F7A0DE762}" = Mystery Case Files - 13th Skull Collectors Edition
"{B089A9C3-9592-4219-9F25-7BA9846D2767}" = Nancy Drew: Ghost Dogs of Moon Lake
"{B09567CC-E43F-10F1-752D-549AC7FB0C43}" = CCC Help Finnish
"{B170B91D-E8E3-A6A3-D129-D8E36FEA8A0B}" = CCC Help Norwegian
"{B8AC1A89-FFD1-4F97-8051-E505A160F562}" = HP Odometer
"{BD96ABD3-D1D4-5513-6C60-11476D6DCFC5}" = Catalyst Control Center Localization All
"{BFC05D0B-3340-4F29-855C-36829A3E8016}_is1" = Donald Dowell version 1.0
"{C39C7876-4D21-8A38-0A42-B5C8858EC6C7}" = CCC Help French
"{C4129D57-5C83-3BF0-A11A-3798C008C6C7}" = CCC Help Greek
"{C4609419-C11E-4CE6-B369-F3F8A7DDD94C}" = Hallmark Card Studio 2009
"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
"{CAE7D1D9-3794-4169-B4DD-964ADBC534EE}" = HP Product Detection
"{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D0BC4101-6C30-ECFF-F693-63408134F29B}" = CCC Help Czech
"{D1282694-0693-41A8-ABC1-6D1FFC1F65C4}" = Kaspersky Security Scan
"{D12E3E7F-1B13-4933-A915-16C7DD37A095}" = HP MediaSmart Video
"{D3C80E77-E549-4F76-BC07-61DDBD950345}" = Silent Hill 2
"{D4236B82-213F-679E-09A2-9AEB5EF4CADC}" = Catalyst Control Center Graphics Previews Common
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{DBA8B9E1-C6FF-4624-9598-73D3B41A0903}" = Microsoft Picture It! Photo Premium 9
"{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{DE77FE3F-A33D-499A-87AD-5FC406617B40}" = HP Update
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E13DA7CA-2951-4CD8-934D-6C85D17BB18B}_is1" = Dark Fall Lost Souls
"{E34E9B33-46EC-4252-A52F-DDA3978CC0AF}" = Syberia
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E4628D0D-5DC8-49EC-985A-F0C12EDBF1D2}" = Agatha Christie - And Then There Were None
"{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
"{E9A5B6CD-7ABB-F295-2E11-F25BC322FF80}" = CCC Help English
"{EA374A45-BF30-0849-7A00-BD8A0BC8CE3E}" = Application Profiles
"{EBBD4FE6-91DA-C397-6D56-FE85DBF24FCF}" = AMD VISION Engine Control Center
"{ECD03DA7-5952-406A-8156-5F0C93618D1F}" = GE MiniCam Pro
"{EE202411-2C26-49E8-9784-1BC1DBF7DE96}" = HP Support Assistant
"{F06365EC-061E-48C3-B761-E1816658D618}" = 3DVIA player 5.0.0.20
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{f1990716-8ee0-4c3e-8ebd-84026f3a09d5}" = DFX for Windows Media Player
"{F5266D28-E0B2-4130-BFC5-EE155AD514DC}" = Apple Application Support
"{FAA2E296-811E-4636-9B27-110423F321DF}_is1" = The Lost Crown Uninstaller
"{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}" = DVD Menu Pack for HP MediaSmart Video
"{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}" = Visual Studio 2008 x64 Redistributables
"{FCEFDA6B-63CD-BB17-B845-478A42E24D39}" = CCC Help Swedish
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 15 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 15 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 12.1
"Antique Road Trip USA" = Antique Road Trip USA
"Barrow Hill" = Barrow Hill
"BFGC" = Big Fish Games: Game Manager
"BFG-Scratches Director's Cut" = Scratches Director's Cut
"Black Mirror 2" = Black Mirror 2 1.0
"Black Mirror 3" = Black Mirror 3
"Caribbean Explorer_is1" = Caribbean Explorer 1.0.0.9
"Cate West - The Velvet Keys" = Cate West - The Velvet Keys
"com.amazon.music.uploader" = Amazon Music Importer
"Comcast" = Easy Solve
"DAEMON Tools Lite" = DAEMON Tools Lite
"Dark Fall : The Journal" = Dark Fall : The Journal
"Dracula - The Last Sanctuary_is1" = Dracula - The Last Sanctuary
"Dracula 3_is1" = Dracula 3
"Dracula Resurrection_is1" = Dracula Resurrection
"Elementals - The Magic Key_is1" = Elementals - The Magic Key
"EMI_DVDSetup_is1" = Escape from Monkey Island
"Episode 1" = Back to the Future The Game - Episode 1
"Ghost Pirates_is1" = Ghost Pirates
"GOGPACKALONEINTHEDARK_is1" = Alone in the Dark - The New Nightmare
"GOGPACKDRACULA4_is1" = Dracula 4 - Shadow of the Dragon
"GOGPACKDRACULA5_is1" = Dracula 5 -  The Blood Legacy
"GOGPACKLARRY7WIN_is1" = Leisure Suit Larry 7 - Love for Sail!
"GOM Player" = GOM Player
"Gray Matter_is1" = Gray Matter
"Hidden Expedition Titanic" = Hidden Expedition Titanic (remove only)
"InstallShield_{14D10AAC-9737-454E-A247-8075C26C30E1}" = SILENT HILL 3
"InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite Deluxe
"InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E}" = Movie Theme Pack for HP MediaSmart Video
"InstallShield_{6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF}" = HP MediaSmart Photo
"InstallShield_{91A34181-9FAD-43AB-A35F-E7A8945B7E1C}" = HP MediaSmart Music
"InstallShield_{D12E3E7F-1B13-4933-A915-16C7DD37A095}" = HP MediaSmart Video
"InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
"InstallShield_{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}" = DVD Menu Pack for HP MediaSmart Video
"InstallWIX_{D1282694-0693-41A8-ABC1-6D1FFC1F65C4}" = Kaspersky Security Scan
"IsoBuster_is1" = IsoBuster 2.8.5
"John Saul's Blackstone Chronicles" = John Saul's Blackstone Chronicles
"KLiteCodecPack_is1" = K-Lite Codec Pack 7.0.0 (Full)
"Lost Horizon" = Lost Horizon
"Lost Secrets Bermuda Triangle" = Lost Secrets Bermuda Triangle
"Magic ISO Maker v5.5 (build 0281)" = Magic ISO Maker v5.5 (build 0281)
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware version 2.0.3.1025
"Midnight Mysteries - The Edgar Allan Poe Conspiracy1.0" = Midnight Mysteries - The Edgar Allan Poe Conspiracy
"Monkey Island 2 LeChucks Revenge Special Edition_is1" = Monkey Island 2 LeChucks Revenge Special Edition
"Mortimer Beckett and the Secrets of Spooky Manor" = Mortimer Beckett and the Secrets of Spooky Manor
"Mozilla Firefox 33.1 (x86 en-US)" = Mozilla Firefox 33.1 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Mystery Case Files - Dire Grove Collector's Edition1.0" = Mystery Case Files - Dire Grove Collector's Edition
"Mystery Case Files - Huntsville" = Mystery Case Files - Huntsville (remove only)
"Mystery Case Files - Madame Fate 1.00" = Mystery Case Files - Madame Fate 1.00
"Mystery Case Files - Ravenhearst 1.00" = Mystery Case Files - Ravenhearst 1.00
"Mystery Case Files 8- Escape from Ravenhearst CE1.0" = Mystery Case Files 8- Escape from Ravenhearst CE
"Mystery Murders - Jack the Ripper ~ Just For Fun Games" = Mystery Murders - Jack the Ripper ~ Just For Fun Games
"Mystery of Mortlake Mansion_is1" = Mystery of Mortlake Mansion
"Nancy Drew -  The Captive Curse1.0" = Nancy Drew -  The Captive Curse
"Nancy Drew - Curse of Blackmoor Manor" = Nancy Drew - Curse of Blackmoor Manor (remove only)
"Nancy Drew: Alibi in Ashes_is1" = Nancy Drew: Alibi in Ashes
"Office14.Click2Run" = Microsoft Office Click-to-Run 2010
"OpenAL" = OpenAL
"Out Of Order" = Out Of Order
"PDF Complete" = PDF Complete Special Edition
"PictureIt_v9" = Microsoft Picture It! Photo Premium 9
"Private Eye1.0" = Private Eye
"Real Crimes - Jack the Ripper_is1" = Real Crimes - Jack the Ripper
"Revo Uninstaller" = Revo Uninstaller 1.94
"ScummVM_is1" = ScummVM 1.4.1
"Silent Hill1.2.1" = Silent Hill
"Special Enquiry Detail" = Special Enquiry Detail
"Spirit Of Wandering_is1" = Spirit Of Wandering
"Strange Cases The Lighthouse Mystery Collectors Edition 1.00" = Strange Cases The Lighthouse Mystery Collectors Edition 1.00
"Tales of Monkey Island" = Tales of Monkey Island
"The Black Mirror_is1" = The Black Mirror 1.0
"The Hardy Boys - The Perfect Crime 1.00" = The Hardy Boys - The Perfect Crime 1.00
"The Lost Cases of 221B Baker St" = The Lost Cases of 221B Baker St
"Twisted - A Haunted Carol1.0" = Twisted - A Haunted Carol
"WinLiveSuite" = Windows Live Essentials
"YTdetect" = Yahoo! Detect
 
========== HKEY_CURRENT_USER Uninstall List ==========
 
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"HuluDesktop" = Hulu Desktop
"Mystery in London" = Mystery in London (remove only)
"UnityWebPlayer" = Unity Web Player
 
========== Last 20 Event Log Errors ==========
 
[ Application Events ]
Error - 11/12/2014 9:51:14 AM | Computer Name = Dee-HP | Source = CVHSVC | ID = 100
Description = Information only.  Error: HTTP status 404: The requested URL does not
 exist on the server.   ErrorCode: 14007(0x36b7).
 
Error - 11/12/2014 7:38:14 PM | Computer Name = Dee-HP | Source = CVHSVC | ID = 100
Description = Information only.  Error: HTTP status 404: The requested URL does not
 exist on the server.   ErrorCode: 14007(0x36b7).
 
Error - 11/13/2014 10:23:55 AM | Computer Name = Dee-HP | Source = CVHSVC | ID = 100
Description = Information only.  Error: HTTP status 404: The requested URL does not
 exist on the server.   ErrorCode: 14007(0x36b7).
 
Error - 11/14/2014 8:43:32 AM | Computer Name = Dee-HP | Source = MSMQ | ID = 2170
Description =
 
Error - 11/14/2014 8:54:39 AM | Computer Name = Dee-HP | Source = CVHSVC | ID = 100
Description = Information only.  Error: HTTP status 404: The requested URL does not
 exist on the server.   ErrorCode: 14007(0x36b7).
 
Error - 11/14/2014 12:23:14 PM | Computer Name = Dee-HP | Source = CVHSVC | ID = 100
Description = Information only.  Error: HTTP status 404: The requested URL does not
 exist on the server.   ErrorCode: 14007(0x36b7).
 
Error - 11/14/2014 1:48:11 PM | Computer Name = Dee-HP | Source = CVHSVC | ID = 100
Description = Information only.  Error: HTTP status 404: The requested URL does not
 exist on the server.   ErrorCode: 14007(0x36b7).
 
Error - 11/15/2014 3:52:47 PM | Computer Name = Dee-HP | Source = CVHSVC | ID = 100
Description = Information only.  Error: HTTP status 404: The requested URL does not
 exist on the server.   ErrorCode: 14007(0x36b7).
 
Error - 11/17/2014 11:33:41 AM | Computer Name = Dee-HP | Source = CVHSVC | ID = 100
Description = Information only.  Error: HTTP status 404: The requested URL does not
 exist on the server.   ErrorCode: 14007(0x36b7).
 
Error - 11/17/2014 12:21:57 PM | Computer Name = Dee-HP | Source = CVHSVC | ID = 100
Description = Information only.  Error: HTTP status 404: The requested URL does not
 exist on the server.   ErrorCode: 14007(0x36b7).
 
[ Hewlett-Packard Events ]
Error - 4/24/2014 7:22:58 AM | Computer Name = Dee-HP | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Message:
 Object reference not set to an instance of an object.  StackTrace:   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Source:
 HP.SupportFramework.Utilities    Name: HPSF.exe  Version: 07.00.01.01  Path: C:\Program
 Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe  Format: en-US  RAM: 5887
Ram
 Utilization: 30  TargetSite: Void addTempSession()  
 
Error - 5/1/2014 7:19:32 AM | Computer Name = Dee-HP | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Message:
 Object reference not set to an instance of an object.  StackTrace:   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Source:
 HP.SupportFramework.Utilities    Name: HPSF.exe  Version: 07.00.01.01  Path: C:\Program
 Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe  Format: en-US  RAM: 5887
Ram
 Utilization: 30  TargetSite: Void addTempSession()  
 
Error - 5/21/2014 9:30:41 PM | Computer Name = Dee-HP | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Message:
 Object reference not set to an instance of an object.  StackTrace:   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Source:
 HP.SupportFramework.Utilities    Name: HPSF.exe  Version: 07.00.01.01  Path: C:\Program
 Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe  Format: en-US  RAM: 5887
Ram
 Utilization: 30  TargetSite: Void addTempSession()  
 
Error - 5/29/2014 7:06:43 AM | Computer Name = Dee-HP | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Message:
 Object reference not set to an instance of an object.  StackTrace:   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Source:
 HP.SupportFramework.Utilities    Name: HPSF.exe  Version: 07.00.01.01  Path: C:\Program
 Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe  Format: en-US  RAM: 5887
Ram
 Utilization: 30  TargetSite: Void addTempSession()  
 
Error - 6/4/2014 9:14:21 PM | Computer Name = Dee-HP | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Message:
 Object reference not set to an instance of an object.  StackTrace:   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Source:
 HP.SupportFramework.Utilities    Name: HPSF.exe  Version: 07.00.01.01  Path: C:\Program
 Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe  Format: en-US  RAM: 5887
Ram
 Utilization: 30  TargetSite: Void addTempSession()  
 
Error - 6/11/2014 9:27:54 PM | Computer Name = Dee-HP | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Message:
 Object reference not set to an instance of an object.  StackTrace:   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Source:
 HP.SupportFramework.Utilities    Name: HPSF.exe  Version: 07.00.01.01  Path: C:\Program
 Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe  Format: en-US  RAM: 5887
Ram
 Utilization: 30  TargetSite: Void addTempSession()  
 
Error - 6/18/2014 9:17:24 PM | Computer Name = Dee-HP | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Message:
 Object reference not set to an instance of an object.  StackTrace:   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Source:
 HP.SupportFramework.Utilities    Name: HPSF.exe  Version: 07.00.01.01  Path: C:\Program
 Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe  Format: en-US  RAM: 5887
Ram
 Utilization: 20  TargetSite: Void addTempSession()  
 
Error - 6/25/2014 9:07:39 PM | Computer Name = Dee-HP | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Message:
 Object reference not set to an instance of an object.  StackTrace:   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Source:
 HP.SupportFramework.Utilities    Name: HPSF.exe  Version: 07.00.01.01  Path: C:\Program
 Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe  Format: en-US  RAM: 5887
Ram
 Utilization: 30  TargetSite: Void addTempSession()  
 
Error - 7/3/2014 12:11:16 PM | Computer Name = Dee-HP | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Message:
 Object reference not set to an instance of an object.  StackTrace:   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Source:
 HP.SupportFramework.Utilities    Name: HPSF.exe  Version: 07.00.01.01  Path: C:\Program
 Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe  Format: en-US  RAM: 5887
Ram
 Utilization: 30  TargetSite: Void addTempSession()  
 
Error - 7/9/2014 9:10:22 PM | Computer Name = Dee-HP | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Message:
 Object reference not set to an instance of an object.  StackTrace:   at HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession()
Source:
 HP.SupportFramework.Utilities    Name: HPSF.exe  Version: 07.00.01.01  Path: C:\Program
 Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe  Format: en-US  RAM: 5887
Ram
 Utilization: 40  TargetSite: Void addTempSession()  
 
[ Media Center Events ]
Error - 11/6/2014 12:03:25 PM | Computer Name = Dee-HP | Source = MCUpdate | ID = 0
Description = 11:03:23 AM - Failed to retrieve SportsV2 (Error: Unable to connect
 to the remote server)  
 
Error - 11/7/2014 8:38:48 AM | Computer Name = Dee-HP | Source = MCUpdate | ID = 0
Description = 7:38:48 AM - Failed to retrieve SportsSchedule (Error: Unable to connect
 to the remote server)  
 
Error - 11/7/2014 9:39:07 AM | Computer Name = Dee-HP | Source = MCUpdate | ID = 0
Description = 8:39:07 AM - Failed to retrieve SportsSchedule (Error: Unable to connect
 to the remote server)  
 
Error - 11/7/2014 10:43:33 AM | Computer Name = Dee-HP | Source = MCUpdate | ID = 0
Description = 9:43:32 AM - Failed to retrieve SportsSchedule (Error: Invalid security
 token.)  
 
Error - 11/7/2014 12:44:51 PM | Computer Name = Dee-HP | Source = MCUpdate | ID = 0
Description = 11:44:51 AM - Failed to retrieve Directory (Error: Invalid security
 token.)  
 
Error - 11/7/2014 12:45:06 PM | Computer Name = Dee-HP | Source = MCUpdate | ID = 0
Description = 11:45:06 AM - Failed to retrieve MCEClientUX (Error: Unable to connect
 to the remote server)  
 
Error - 11/7/2014 12:45:07 PM | Computer Name = Dee-HP | Source = MCUpdate | ID = 0
Description = 11:45:07 AM - Failed to retrieve SportsV2 (Error: Unable to connect
 to the remote server)  
 
Error - 11/7/2014 12:45:21 PM | Computer Name = Dee-HP | Source = MCUpdate | ID = 0
Description = 11:45:09 AM - Failed to retrieve Broadband (Error: Unable to connect
 to the remote server)  
 
Error - 11/7/2014 1:45:39 PM | Computer Name = Dee-HP | Source = MCUpdate | ID = 0
Description = 12:45:39 PM - Failed to retrieve Directory (Error: Invalid security
 token.)  
 
Error - 11/7/2014 1:45:55 PM | Computer Name = Dee-HP | Source = MCUpdate | ID = 0
Description = 12:45:55 PM - Failed to retrieve SportsV2 (Error: Unable to connect
 to the remote server)  
 
[ System Events ]
Error - 11/14/2014 9:28:43 PM | Computer Name = Dee-HP | Source = Service Control Manager | ID = 7034
Description = The PDF Document Manager service terminated unexpectedly.  It has
done this 1 time(s).
 
Error - 11/14/2014 9:29:32 PM | Computer Name = Dee-HP | Source = Service Control Manager | ID = 7031
Description = The Windows Live ID Sign-in Assistant service terminated unexpectedly.
  It has done this 1 time(s).  The following corrective action will be taken in
10000 milliseconds: Restart the service.
 
Error - 11/14/2014 9:29:42 PM | Computer Name = Dee-HP | Source = Service Control Manager | ID = 7031
Description = The Windows Media Player Network Sharing Service service terminated
 unexpectedly.  It has done this 2 time(s).  The following corrective action will
 be taken in 30000 milliseconds: Restart the service.
 
Error - 11/15/2014 3:32:30 PM | Computer Name = Dee-HP | Source = Service Control Manager | ID = 7000
Description = The AODDriver4.1 service failed to start due to the following error:
   %%2
 
Error - 11/15/2014 3:32:57 PM | Computer Name = Dee-HP | Source = SNMP | ID = 16713180
Description = The SNMP Service encountered an error while accessing the registry
 key SYSTEM\CurrentControlSet\Services\SNMP\Parameters\TrapConfiguration.
 
Error - 11/15/2014 3:33:15 PM | Computer Name = Dee-HP | Source = Service Control Manager | ID = 7000
Description = The AODDriver4.1 service failed to start due to the following error:
   %%2
 
Error - 11/15/2014 3:42:09 PM | Computer Name = Dee-HP | Source = Service Control Manager | ID = 7000
Description = The AODDriver4.1 service failed to start due to the following error:
   %%2
 
Error - 11/15/2014 3:42:26 PM | Computer Name = Dee-HP | Source = SNMP | ID = 16713180
Description = The SNMP Service encountered an error while accessing the registry
 key SYSTEM\CurrentControlSet\Services\SNMP\Parameters\TrapConfiguration.
 
Error - 11/17/2014 11:49:46 AM | Computer Name = Dee-HP | Source = Service Control Manager | ID = 7000
Description = The AODDriver4.1 service failed to start due to the following error:
   %%2
 
Error - 11/17/2014 11:50:11 AM | Computer Name = Dee-HP | Source = SNMP | ID = 16713180
Description = The SNMP Service encountered an error while accessing the registry
 key SYSTEM\CurrentControlSet\Services\SNMP\Parameters\TrapConfiguration.
 
 
< End of report >

 

 

RKill log:

 

Rkill 2.6.8 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2014 BleepingComputer.com
More Information about Rkill can be found at this link:
 http://www.bleepingc...opic308364.html

Program started at: 11/17/2014 10:44:00 AM in x64 mode.
Windows Version: Windows 7 Home Premium Service Pack 1

Checking for Windows services to stop:

 * No malware services found to stop.

Checking for processes to terminate:

 * No malware processes found to kill.

Checking Registry for malware related settings:

 * No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

 * Windows Defender Disabled

   [HKLM\SOFTWARE\Microsoft\Windows Defender]
   "DisableAntiSpyware" = dword:00000001

Checking Windows Service Integrity:

 * Windows Defender (WinDefend) is not Running.
   Startup Type set to: Manual

Searching for Missing Digital Signatures:

 * No issues found.

Checking HOSTS File:

 * HOSTS file entries found:

  127.0.0.1       localhost

Program finished at: 11/17/2014 10:45:04 AM
Execution time: 0 hours(s), 1 minute(s), and 4 seconds(s)

Thank you so much for you time!
 


Edited by Ozzette53, 17 November 2014 - 11:12 AM.

  • 0

Advertisements


#2
ruggie_uk

ruggie_uk

    Trusted Helper

  • Malware Removal
  • 2,083 posts

Greetings Ozzette53 and :welcome:

My nickname is Ruggie and I will be assisting you in cleaning your computer.
Please be aware I am currently in the final stages of training right now and all my work will be checked by an instructor so there may be a slight delay between posts. The added benefit to this is that you will have 2 sets of eyes looking at your problem so you can be assured you will get the best possible help.

  • Malware removal can be a long process and will at times get complicated with multiple steps to perform to ensure that your system is no longer infected.
  • When we start the process, the list of instructions must be followed closely, it may seem difficult at times but it is important that you stay with me until your computer is declared clean.
  • If you are receiving help elsewhere, please let me know so we can close this thread and help someone else.

stop32.png Before going any further, I recommend that you print out (or save to a file) these guidelines and also the instructions when I post them, as part of the repair process may involve going into safe mode and therefore you will not have internet access.

The following guidelines are important but the ones highlighted in RED are of the highest importance and must not be skipped.

right-grn.pngPlease be aware, the fixes we perform are specific to this machine, at this moment in time. They must not be used on another computer or unsupervised at another time. This can render your computer unbootable.

right-grn.pngIf at all possible, Make backups of all your important files, whilst we will do our best to ensure that no files are lost or damaged, sometimes things can go wrong.

right-grn.png I will do everything in my power to ensure that this clean is successful, but occasionally failure hits us all. In this event, please have your original installation disks to hand and be prepared to have to format and reinstall your computer.

right-grn.png Refrain from using any tool that hasn't been instructed as it could alter the process that we are working through and cause further problems. Also only use the tools I instruct in the manner provided as they are very powerful and if not used properly can cause even more problems. It is best if you can avoid using the computer at all, apart from to perform the cleaning steps to ensure that any infections aren't spread.

right-grn.pngPlease stick with me until the end. malware removal is difficult and time consuming. We have to analyse hundreds of lines in log files. This takes time which we give freely so I ask that you do us the courtesy of seeing it through.

right-grn.png Only paste the contents of log files into your reply, DO NOT attach any log files unless requested to do so.

right-grn.png If you have any questions or get stuck, stop and ask....I am here to help you make this go as smoothly as possible.

right-grn.png If you do not reply within 3 days, your topic will be closed. It can be reopened if you ask. But if you plan on being gone for a longer period, just let me know and I will hold it open for you.

Ready? Now lets get to work

Initial FRST Scan

Please download Farbar Recovery Scan Tool and save it to your Desktop. There will be 2 versions offered, if you know which version is the one you need, download that one, if not, download both, only one will work on your computer, that is the one you need.

  • Right click frst.png to run as administrator. >> Windows 8 users will be prompted about Windows SmartScreen protection - click More information and Run.
  • When the tool opens click Yes to the disclaimer.
  • Ensure that the following are ticked as in the image below

Drivers MD5
Shortcut.txt
Addition.txt

frst-addition.png

  • Press Scan button.
  • It will produce a log called FRST.txt in the same directory the tool is run from.
  • Please copy and paste log back here.
  • This will also generate another log (Addition.txt - also located in the same directory as FRST.exe/FRST64.exe). Please also paste that along with the FRST.txt into your reply.

Items I need to see in your next post:

  • FRST.txt
  • Shortcut.txt
  • Addition.txt
     

  • 1

#3
Ozzette53

Ozzette53

    Member

  • Topic Starter
  • Member
  • PipPip
  • 28 posts

First I would like to thank you, Ruggie for your honesty. Please thank your trainer as well. Your honesty was very reassuring. Thank you both for your time because I truly think I am in trouble here.

 

FRST Log:

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 17-11-2014
Ran by Dee (administrator) on DEE-HP on 18-11-2014 15:52:48
Running from C:\Users\Dee\Desktop
Loaded Profile: Dee (Available profiles: Dee & Jared & Ethan & Guest & DefaultAppPool)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
(Microsoft Corporation) C:\Windows\System32\CISVC.EXE
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
( ) C:\Windows\System32\lxbkcoms.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Microsoft Corporation) C:\Windows\System32\snmp.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
() C:\Windows\vsnpstd3.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
(Alcatel-Lucent) C:\Program Files\Comcast\pcTrayApp.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Facebook Inc.) C:\Users\Dee\AppData\Local\Facebook\Update\FacebookUpdate.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgui.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Alcatel-Lucent) C:\Program Files (x86)\Comcast\pcBrowser.exe
(Alcatel-Lucent) C:\Program Files\Common Files\Motive\pcControlHost.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.EXE
(Alcatel-Lucent) C:\Program Files (x86)\Comcast\pcBrowser.exe
(Alcatel-Lucent) C:\Program Files (x86)\Comcast\pcBrowser.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [snpstd3] => C:\Windows\vsnpstd3.exe [827392 2006-09-19] ()
HKLM\...\Run: [hpsysdrv] => c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [62768 2008-11-20] (Hewlett-Packard)
HKLM\...\Run: [Comcast_McciTrayApp] => C:\Program Files\Comcast\pcTrayApp.exe [2727936 2012-04-03] (Alcatel-Lucent)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642304 2013-04-30] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2012-10-25] (Apple Inc.)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [664600 2010-09-28] (PDF Complete Inc)
HKLM-x32\...\Run: [HP Software Update] => c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54576 2008-12-08] (Hewlett-Packard)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2015\avgui.exe [3653136 2014-11-09] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [271744 2014-09-26] (Oracle Corporation)
HKLM\...\RunOnce: [NCPluginUpdater] => c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\NCPluginUpdater.exe [21720 2014-11-11] (Hewlett-Packard)
HKU\S-1-5-21-2375802078-1423229213-3210898512-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22067296 2014-10-01] (Skype Technologies S.A.)
HKU\S-1-5-21-2375802078-1423229213-3210898512-1001\...\Run: [Facebook Update] => C:\Users\Dee\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-07-11] (Facebook Inc.)
HKU\S-1-5-21-2375802078-1423229213-3210898512-1001\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-2375802078-1423229213-3210898512-1001\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-18\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [393216 2012-04-05] (AMD)
HKU\S-1-5-18\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-18\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-18\...\MountPoints2: {371ac9ad-04ab-11e0-9f6c-806e6f6e6963} - E:\autorun.exe index.html
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled ()
GroupPolicyUsers\S-1-5-21-2375802078-1423229213-3210898512-1011\User: Group Policy restriction detected <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft...=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft...d=ie&ar=msnhome
HKU\S-1-5-21-2375802078-1423229213-3210898512-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft...=ie&ar=iesearch
HKU\S-1-5-21-2375802078-1423229213-3210898512-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-US
HKU\S-1-5-21-2375802078-1423229213-3210898512-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x2AD8DDF58DE4CD01
HKU\S-1-5-21-2375802078-1423229213-3210898512-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.facebook.com/
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
SearchScopes: HKLM -> DefaultScope value is missing.
SearchScopes: HKLM-x32 -> DefaultScope value is missing.
SearchScopes: HKLM-x32 -> Backup.Old.DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {065A9368-6E1D-CCA3-D331-2A3E5FA66383} URL =
SearchScopes: HKLM-x32 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = http://search.yahoo....psg&type=HPDTDF
SearchScopes: HKLM-x32 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = http://en.wikipedia....h={searchTerms}
SearchScopes: HKLM-x32 -> {d944bb61-2e34-4dbf-a683-47e505c587dc} URL = http://rover.ebay.co...s}&mfe=Desktops
BHO: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll (Microsoft Corporation.)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll (Microsoft Corporation.)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM - Search App by Ask - {4F524A2D-5350-4500-76A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ORJ-SPE\Passport_x64.dll (APN LLC.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - Search App by Ask - {4F524A2D-5350-4500-76A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ORJ-SPE\Passport.dll (APN LLC.)
DPF: HKLM {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset...lineScanner.cab
DPF: HKLM-x32 {140E4DF8-9E14-4A34-9577-C77561ED7883} http://content.syste...ent_4.5.1.0.cab
DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab
DPF: HKLM-x32 {17492023-C23A-453E-A040-C7C580BBF700} http://download.micr...heckControl.cab
DPF: HKLM-x32 {1851174C-97BD-4217-A0CC-E908F60D5B7A} https://h50203.www5....DataManager.CAB
DPF: HKLM-x32 {CAFEEFAC-0016-0000-FFFF-ABCDEFFEDCBA} http://javadl-esd.su...indows-i586.cab
Handler: AutorunsDisabled - {91774881-D725-4E58-B298-07617B9B86A8} -  No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Tcpip\Parameters: [DhcpNameServer] 75.75.76.76 75.75.75.75

FireFox:
========
FF ProfilePath: C:\Users\Dee\AppData\Roaming\Mozilla\Firefox\Profiles\aggtq3yt.default
FF DefaultSearchEngine: Bing
FF SelectedSearchEngine: Bing
FF Homepage: https://www.facebook.com/
FF NetworkProxy: "no_proxies_on", "*.local"
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_223.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_223.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1210150.dll (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @Motive.com/NpMotive,version=1.0 -> C:\Program Files (x86)\Common Files\Motive\npMotive.dll (Alcatel-Lucent)
FF Plugin-x32: @real.com/nprpchromebrowserrecordext;version=15.0.4.53 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprphtml5videoshim;version=15.0.4.53 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @virtools.com/3DviaPlayer -> C:\Program Files (x86)\Virtools\3D Life Player\npvirtools.dll (Dassault Systèmes)
FF Plugin HKU\S-1-5-21-2375802078-1423229213-3210898512-1001: @hulu.com/Hulu Desktop -> C:\Users\Dee\AppData\Local\HuluDesktop\instances\0.9.14.1\nphdplg.dll (Hulu LLC)
FF Plugin HKU\S-1-5-21-2375802078-1423229213-3210898512-1001: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Dee\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF Plugin HKU\S-1-5-21-2375802078-1423229213-3210898512-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Dee\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin7.dll (Apple Inc.)
FF HKLM-x32\...\Firefox\Extensions: [{97E22097-9A2F-45b1-8DAF-36AD648C7EF4}] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
FF Extension: RealPlayer Browser Record Plugin - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2012-06-05]

Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Chrome\Ext\rphtml5video.crx [2012-06-05]
CHR HKLM-x32\...\Chrome\Extension: [jgceplfonlgodadnpognljgdjlcnpjnh] - C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter2\extension.crx [2012-06-05]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S4 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344 2014-07-22] (SUPERAntiSpyware.com)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-06-11] (Advanced Micro Devices, Inc.) [File not signed]
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [3488784 2014-11-09] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [298080 2014-11-09] (AVG Technologies CZ, s.r.o.)
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [86528 2012-09-27] (Hewlett-Packard Company) [File not signed]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed]
S4 KSS; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe [202080 2014-06-15] (Kaspersky Lab ZAO)
S4 LightScribeService; c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728 2010-05-19] (Hewlett-Packard Company) [File not signed]
R2 lxbk_device; C:\Windows\system32\lxbkcoms.exe [565928 2008-02-19] ( )
R2 lxbk_device; C:\Windows\SysWOW64\lxbkcoms.exe [537256 2008-02-19] ( )
R2 MSMQ; C:\Windows\system32\mqsvc.exe [9216 2009-07-13] (Microsoft Corporation)
S4 pcCMService; C:\Program Files (x86)\Common Files\Motive\pcCMService.exe [361472 2012-04-02] (Alcatel-Lucent) [File not signed]
S4 pcCMService64; C:\Program Files\Common Files\Motive\pcCMService.exe [441344 2012-04-02] (Alcatel-Lucent) [File not signed]
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1119768 2010-09-28] (PDF Complete Inc)
R2 SNMP; C:\Windows\System32\snmp.exe [49664 2010-11-20] (Microsoft Corporation)
R2 SNMP; C:\Windows\SysWOW64\snmp.exe [47616 2010-11-20] (Microsoft Corporation)
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-20] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 AODDriver4.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [53888 2012-03-05] (Advanced Micro Devices)
S2 AODDriver4.1; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [53888 2012-03-05] (Advanced Micro Devices)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-13] (Microsoft Corporation)
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2013-07-17] ()
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-06-18] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [263960 2014-10-29] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [190744 2014-06-18] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [243480 2014-08-28] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [313624 2014-07-18] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [124184 2014-10-05] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-06-18] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [274200 2014-10-10] (AVG Technologies CZ, s.r.o.)
S3 CpqDfw; C:\Windows\System32\drivers\CpqDfw.sys [27456 2012-05-29] (Windows ® Codename Longhorn DDK provider)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2013-07-17] ()
S4 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [122584 2014-10-28] (Malwarebytes Corporation)
R3 MQAC; C:\Windows\System32\drivers\mqac.sys [189440 2009-07-13] (Microsoft Corporation)
S4 MREMP50; C:\Program Files (x86)\Common Files\Motive\MREMP50.sys [21248 2012-04-03] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 MREMP50a64; C:\Program Files\Common Files\Motive\MREMP50a64.SYS [43008 2012-04-03] (Printing Communications Assoc., Inc. (PCAUSA))
S4 MRESP50; C:\Program Files (x86)\Common Files\Motive\MRESP50.sys [20096 2012-04-03] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 MRESP50a64; C:\Program Files\Common Files\Motive\MRESP50a64.SYS [40960 2012-04-03] (Printing Communications Assoc., Inc. (PCAUSA))
S4 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S4 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 SNPSTD3; C:\Windows\System32\DRIVERS\snpstd3.sys [10550656 2007-03-26] (Sonix Co. Ltd.)
S3 SNPSTD3; C:\Windows\SysWOW64\DRIVERS\snpstd3.sys [10252544 2007-03-26] (Sonix Co. Ltd.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2013-11-18] (Duplex Secure Ltd.)
S3 WDC_SAM; C:\Windows\System32\DRIVERS\wdcsam64.sys [14464 2009-02-13] (Western Digital Technologies) [File not signed]
U3 aiod5ang; C:\Windows\System32\Drivers\aiod5ang.sys [0 ] (Microsoft Corporation)
S4 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X]
S4 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X]

========================== Drivers MD5 =======================

C:\Windows\system32\drivers\1394ohci.sys ==> MD5 is legit
C:\Windows\System32\drivers\ACPI.sys ==> MD5 is legit
C:\Windows\system32\drivers\acpipmi.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\adp94xx.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\adpahci.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\adpu320.sys ==> MD5 is legit
C:\Windows\SysWow64\drivers\Afc.sys 0D0E5281784C2C526BA43C2ECD374288
C:\Windows\system32\drivers\afd.sys FA886682CFC5D36718D3E436AACF10B9
C:\Windows\system32\drivers\agp440.sys ==> MD5 is legit
C:\Windows\system32\drivers\aliide.sys ==> MD5 is legit
C:\Windows\system32\drivers\amdide.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\amdiox64.sys 6A2EEB0C4133B20773BB3DD0B7B377B4
C:\Windows\system32\DRIVERS\amdk8.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\atikmdag.sys 7F2BDD27F3611041D6B0D6C565A748A7
C:\Windows\System32\DRIVERS\atikmpag.sys 8E2A3479CF4E871F37D0F023692E6694
C:\Windows\System32\DRIVERS\amdppm.sys ==> MD5 is legit
C:\Windows\system32\drivers\amdsata.sys D4121AE6D0C0E7E13AA221AA57EF2D49
C:\Windows\system32\DRIVERS\amdsbs.sys ==> MD5 is legit
C:\Windows\System32\drivers\amdxata.sys 540DAF1CEA6094886D72126FD7C33048
C:\Windows\System32\DRIVERS\amd_sata.sys 352476C98EF3952563A14F767491BBA9
C:\Windows\System32\DRIVERS\amd_xata.sys F4805C309FE48D6939147FE5CCDB1AD4
C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys 5B25D1A753CC3A3EDB909BB759AC1098
C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys 5B25D1A753CC3A3EDB909BB759AC1098
C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys 5B25D1A753CC3A3EDB909BB759AC1098
C:\Windows\system32\drivers\appid.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\arc.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\arcsas.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\asyncmac.sys ==> MD5 is legit
C:\Windows\system32\drivers\atapi.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\AtiPcie64.sys E82E61F46D1336447F4DEFF8C074F13E
C:\Windows\System32\DRIVERS\atksgt.sys FC0E8778C000291CAF60EB88C011E931
C:\Windows\System32\DRIVERS\avgdiska.sys 54FE1CAFA3B3029B282E6A05EA672031
C:\Windows\System32\DRIVERS\avgidsdrivera.sys 4A989DB4EABAC4297A9DE0D70A9483CB
C:\Windows\System32\DRIVERS\avgidsha.sys 17C34C4B42C8B2EFCF2C065178BF4806
C:\Windows\System32\DRIVERS\avgldx64.sys 7C9E8FD2BFCE60BDF9B5944C0BE47C87
C:\Windows\System32\DRIVERS\avgloga.sys 734DCC05A7F327FDCE43A18BA011FD4E
C:\Windows\System32\DRIVERS\avgmfx64.sys B4D589C734D796B5B76E0A0E5DA50397
C:\Windows\System32\DRIVERS\avgrkx64.sys 3CE824D46BA1871713ABF147E6BAD556
C:\Windows\System32\DRIVERS\avgtdia.sys 0BB7ECAC81554D83A66A0B9F961BB9D0
C:\Windows\system32\DRIVERS\bxvbda.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\b57nd60a.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Beep.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\blbdrive.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\bowser.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\BrFiltLo.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\BrFiltUp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\bridge.sys 5C2F352A4E961D72518261257AAE204B
C:\Windows\System32\Drivers\Brserid.sys ==> MD5 is legit
C:\Windows\System32\Drivers\BrSerWdm.sys ==> MD5 is legit
C:\Windows\System32\Drivers\BrUsbMdm.sys ==> MD5 is legit
C:\Windows\System32\Drivers\BrUsbSer.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\bthmodem.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\cdfs.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\cdrom.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\circlass.sys ==> MD5 is legit
C:\Windows\System32\CLFS.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\CmBatt.sys ==> MD5 is legit
C:\Windows\system32\drivers\cmdide.sys ==> MD5 is legit
C:\Windows\System32\Drivers\cng.sys EBF28856F69CF094A902F884CF989706
C:\Windows\system32\DRIVERS\compbatt.sys ==> MD5 is legit
C:\Windows\system32\drivers\CompositeBus.sys ==> MD5 is legit
C:\Windows\System32\drivers\CpqDfw.sys 2285B31039611D509F6120D691CA661F
C:\Windows\system32\DRIVERS\crcdisk.sys ==> MD5 is legit
C:\Windows\System32\Drivers\dfsc.sys ==> MD5 is legit
C:\Windows\System32\drivers\discache.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\disk.sys ==> MD5 is legit
C:\Windows\system32\drivers\drmkaud.sys ==> MD5 is legit
C:\Windows\System32\drivers\dxgkrnl.sys 87CE5C8965E101CCCED1F4675557E868
C:\Windows\system32\DRIVERS\evbda.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\elxstor.sys ==> MD5 is legit
C:\Windows\system32\drivers\errdev.sys ==> MD5 is legit
C:\Windows\System32\Drivers\exfat.sys ==> MD5 is legit
C:\Windows\System32\Drivers\fastfat.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\fdc.sys ==> MD5 is legit
C:\Windows\System32\drivers\fileinfo.sys ==> MD5 is legit
C:\Windows\System32\drivers\filetrace.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\flpydisk.sys ==> MD5 is legit
C:\Windows\System32\drivers\fltmgr.sys ==> MD5 is legit
C:\Windows\System32\drivers\FsDepends.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Fs_Rec.sys 6BD9295CC032DD3077C671FCCF579A7B
C:\Windows\System32\DRIVERS\fvevol.sys 8F6322049018354F45F05A2FD2D4E5E0
C:\Windows\system32\DRIVERS\gagp30kx.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\GEARAspiWDM.sys ==> MD5 is legit
C:\Windows\system32\drivers\hcw85cir.sys ==> MD5 is legit
C:\Windows\system32\drivers\HdAudio.sys 975761C778E33CD22498059B91E7373A
C:\Windows\system32\drivers\HDAudBus.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\HidBatt.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\hidbth.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\hidir.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\hidusb.sys ==> MD5 is legit
C:\Windows\system32\drivers\HpSAMD.sys ==> MD5 is legit
C:\Windows\System32\drivers\HTTP.sys ==> MD5 is legit
C:\Windows\System32\drivers\hwpolicy.sys ==> MD5 is legit
C:\Windows\system32\drivers\i8042prt.sys ==> MD5 is legit
C:\Windows\system32\drivers\iaStorV.sys AAAF44DB3BD0B9D1FB6969B23ECC8366
C:\Windows\system32\DRIVERS\iirsp.sys ==> MD5 is legit
C:\Windows\System32\drivers\RTKVHD64.sys 3C4B4EE54FEBB09F7E9F58776DE96DCA
C:\Windows\system32\drivers\intelide.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\intelppm.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ipfltdrv.sys ==> MD5 is legit
C:\Windows\system32\drivers\IPMIDrv.sys ==> MD5 is legit
C:\Windows\System32\drivers\ipnat.sys ==> MD5 is legit
C:\Windows\System32\drivers\irenum.sys ==> MD5 is legit
C:\Windows\system32\drivers\isapnp.sys ==> MD5 is legit
C:\Windows\system32\drivers\msiscsi.sys 96BB922A0981BC7432C8CF52B5410FE6
C:\Windows\System32\DRIVERS\kbdclass.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\kbdhid.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\KMWDFILTER.sys 4331B0920B40BA1CFB9F53E709F00430
C:\Windows\System32\Drivers\ksecdd.sys 353009DEDF918B2A51414F330CF72DEC
C:\Windows\System32\Drivers\ksecpkg.sys 41774FF331F609EF442B7398EE6202B1
C:\Windows\system32\drivers\ksthunk.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\lirsgt.sys 156AB2E56DC3CA0B582E3362E07CDED7
C:\Windows\System32\DRIVERS\lltdio.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\lsi_fc.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\lsi_sas.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\lsi_sas2.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\lsi_scsi.sys ==> MD5 is legit
C:\Windows\system32\drivers\luafv.sys ==> MD5 is legit
C:\Windows\system32\drivers\MBAMSwissArmy.sys 8A50D5304E6AE48664CF5838EC32F647
C:\Windows\system32\DRIVERS\megasas.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\MegaSR.sys ==> MD5 is legit
C:\Windows\System32\drivers\modem.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\monitor.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\mouclass.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\mouhid.sys ==> MD5 is legit
C:\Windows\System32\drivers\mountmgr.sys ==> MD5 is legit
C:\Windows\system32\drivers\mpio.sys ==> MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys ==> MD5 is legit
C:\Windows\System32\drivers\mqac.sys CD22D2563039DDA6793F7624719363A7
C:\Program Files (x86)\Common Files\Motive\MREMP50.sys 9BD4DCB5412921864A7AACDEDFBD1923
C:\Program Files\Common Files\Motive\MREMP50a64.SYS C2758DF79C83A0D12A5599A040CA1818
C:\Program Files (x86)\Common Files\Motive\MRESP50.sys 07C02C892E8E1A72D6BF35004F0E9C5E
C:\Program Files\Common Files\Motive\MRESP50a64.SYS 38BD5B32E0722752BE8465D2A6DA43D9
C:\Windows\system32\drivers\mrxdav.sys 1A4F75E63C9FB84B85DFFC6B63FD5404
C:\Windows\System32\DRIVERS\mrxsmb.sys A5D9106A73DC88564C825D317CAC68AC
C:\Windows\System32\DRIVERS\mrxsmb10.sys D711B3C1D5F42C0C2415687BE09FC163
C:\Windows\System32\DRIVERS\mrxsmb20.sys 9423E9D355C8D303E76B8CFBD8A5C30C
C:\Windows\system32\drivers\msahci.sys ==> MD5 is legit
C:\Windows\system32\drivers\msdsm.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Msfs.sys ==> MD5 is legit
C:\Windows\System32\drivers\mshidkmdf.sys ==> MD5 is legit
C:\Windows\System32\drivers\msisadrv.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSKSSRV.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSPCLOCK.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSPQM.sys ==> MD5 is legit
C:\Windows\System32\Drivers\MsRPC.sys ==> MD5 is legit
C:\Windows\system32\drivers\mssmbios.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSTEE.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\MTConfig.sys ==> MD5 is legit
C:\Windows\System32\Drivers\mup.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\nwifi.sys ==> MD5 is legit
C:\Windows\System32\drivers\ndis.sys 760E38053BF56E501D562B70AD796B88
C:\Windows\System32\DRIVERS\ndiscap.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndistapi.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndisuio.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndiswan.sys ==> MD5 is legit
C:\Windows\System32\Drivers\NDProxy.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\netbios.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\netbt.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\netr28x.sys 2EED549279D7FBD10B846B5397573967
C:\Windows\system32\DRIVERS\nfrd960.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Npfs.sys ==> MD5 is legit
C:\Windows\System32\drivers\nsiproxy.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Ntfs.sys 1A29A59A4C5BA6F8C85062A613B7E2B2
C:\Windows\System32\Drivers\Null.sys ==> MD5 is legit
C:\Windows\system32\drivers\nvraid.sys 0A92CB65770442ED0DC44834632F66AD
C:\Windows\system32\drivers\nvstor.sys DAB0E87525C10052BF65F06152F37E4A
C:\Windows\system32\drivers\nv_agp.sys ==> MD5 is legit
C:\Windows\system32\drivers\ohci1394.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\parport.sys ==> MD5 is legit
C:\Windows\System32\drivers\partmgr.sys E9766131EEADE40A27DC27D2D68FBA9C
C:\Windows\System32\drivers\pci.sys ==> MD5 is legit
C:\Windows\system32\drivers\pciide.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\pcmcia.sys ==> MD5 is legit
C:\Windows\System32\drivers\pcw.sys ==> MD5 is legit
C:\Windows\System32\drivers\peauth.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\raspptp.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\processr.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\pacer.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\ql2300.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\ql40xx.sys ==> MD5 is legit
C:\Windows\system32\drivers\qwavedrv.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rasacd.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\AgileVpn.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rasl2tp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\raspppoe.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rassstp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rdbss.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\rdpbus.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\RDPCDD.sys ==> MD5 is legit
C:\Windows\System32\drivers\rdpencdd.sys ==> MD5 is legit
C:\Windows\System32\drivers\rdprefmp.sys ==> MD5 is legit
C:\Windows\System32\Drivers\RDPWD.sys FE571E088C2D83619D2D48D4E961BF41
C:\Windows\System32\drivers\rdyboost.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rspndr.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\Rt64win7.sys F4C374B1C46DE294B573BB43723AC3F6
C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS 3289766038DB2CB14D07DC84392138D5
C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS 58A38E75F3316A83C23DF6173D41F2B5
C:\Windows\system32\drivers\sbp2port.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\scfilter.sys ==> MD5 is legit
C:\Windows\System32\Drivers\secdrv.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\serenum.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\serial.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\sermouse.sys ==> MD5 is legit
C:\Windows\system32\drivers\sffdisk.sys ==> MD5 is legit
C:\Windows\system32\drivers\sffp_mmc.sys ==> MD5 is legit
C:\Windows\system32\drivers\sffp_sd.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\sfloppy.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\Sftfslh.sys 2046AA7491DE7EFA4D70E615D9BC9D09
C:\Windows\System32\DRIVERS\Sftplaylh.sys 0E0446BC4D51BE4263ACB7E33491191C
C:\Windows\System32\DRIVERS\Sftredirlh.sys C5FB982CD266E604ED3142102C26D62C
C:\Windows\System32\DRIVERS\Sftvollh.sys 2575511AF67AA1FA068CCC4918E2C2A3
C:\Windows\system32\DRIVERS\SiSRaid2.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\sisraid4.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\smb.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\snpstd3.sys 3B7162AC2E64623EF35778A59674E3A9
C:\Windows\SysWOW64\DRIVERS\snpstd3.sys A37E84EB12C39D36EDDEB7966429E75F
C:\Windows\System32\Drivers\spldr.sys ==> MD5 is legit
C:\Windows\System32\Drivers\sptd.sys 656736958178461D25B51BB0D9EC7D09
C:\Windows\System32\DRIVERS\srv.sys 441FBA48BFF01FDB9D5969EBC1838F0B
C:\Windows\System32\DRIVERS\srv2.sys B4ADEBBF5E3677CCE9651E0F01F7CC28
C:\Windows\System32\DRIVERS\srvnet.sys 27E461F0BE5BFF5FC737328F749538C3
C:\Windows\system32\DRIVERS\stexstor.sys ==> MD5 is legit
C:\Windows\system32\drivers\swenum.sys ==> MD5 is legit
C:\Windows\System32\drivers\tcpip.sys 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E
C:\Windows\System32\DRIVERS\tcpip.sys 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E
C:\Windows\System32\drivers\tcpipreg.sys 1B16D0BD9841794A6E0CDE0CEF744ABC
C:\Windows\System32\drivers\tdpipe.sys ==> MD5 is legit
C:\Windows\System32\drivers\tdtcp.sys 51C5ECEB1CDEE2468A1748BE550CFBC8
C:\Windows\System32\DRIVERS\tdx.sys ==> MD5 is legit
C:\Windows\system32\drivers\termdd.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\tssecsrv.sys E232A3B43A894BB327FC161529BD9ED1
C:\Windows\System32\drivers\tsusbflt.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\tunnel.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\uagp35.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\udfs.sys ==> MD5 is legit
C:\Windows\system32\drivers\uliagpkx.sys ==> MD5 is legit
C:\Windows\system32\drivers\umbus.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\umpass.sys ==> MD5 is legit
C:\Windows\System32\Drivers\usbaapl64.sys ==> MD5 is legit
C:\Windows\system32\drivers\usbaudio.sys B0435098C81D04CAFFF80DDB746CD3A2
C:\Windows\System32\DRIVERS\usbccgp.sys DCA68B0943D6FA415F0C56C92158A83A
C:\Windows\system32\drivers\usbcir.sys 80B0F7D5CCF86CEB5D402EAAF61FEC31
C:\Windows\System32\DRIVERS\usbehci.sys 18A85013A3E0F7E1755365D287443965
C:\Windows\system32\DRIVERS\usbfilter.sys 2C780746DC44A28FE67004DC58173F05
C:\Windows\System32\DRIVERS\usbhub.sys 8D1196CFBB223621F2C67D45710F25BA
C:\Windows\System32\DRIVERS\usbohci.sys 765A92D428A8DB88B960DA5A8D6089DC
C:\Windows\System32\DRIVERS\usbprint.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\usbscan.sys 9661DA76B4531B2DA272ECCE25A8AF24
C:\Windows\System32\DRIVERS\USBSTOR.SYS FED648B01349A3C8395A5169DB5FB7D6
C:\Windows\system32\drivers\usbuhci.sys DD253AFC3BC6CBA412342DE60C3647F3
C:\Windows\System32\DRIVERS\VBoxNetAdp.sys B3FC2D5F35E05E12C28F786C140D1CBD
C:\Windows\System32\drivers\vdrvroot.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\vgapnp.sys ==> MD5 is legit
C:\Windows\System32\drivers\vga.sys ==> MD5 is legit
C:\Windows\system32\drivers\vhdmp.sys ==> MD5 is legit
C:\Windows\system32\drivers\viaide.sys ==> MD5 is legit
C:\Windows\System32\drivers\volmgr.sys ==> MD5 is legit
C:\Windows\System32\drivers\volmgrx.sys ==> MD5 is legit
C:\Windows\System32\drivers\volsnap.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\vsmraid.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\vwifibus.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\vwififlt.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\wacompen.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\wanarp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\wanarp.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\wd.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\wdcsam64.sys ==> MD5 is legit
C:\Windows\System32\drivers\Wdf01000.sys E2C933EDBC389386EBE6D2BA953F43D8
C:\Windows\System32\DRIVERS\wfplwf.sys ==> MD5 is legit
C:\Windows\System32\drivers\wimmount.sys ==> MD5 is legit
C:\Windows\SysWOW64\drivers\wimmount.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\WinUsb.sys FE88B288356E7B47B74B13372ADD906D
C:\Windows\system32\drivers\wmiacpi.sys ==> MD5 is legit
C:\Windows\system32\drivers\ws2ifsl.sys ==> MD5 is legit
C:\Windows\System32\drivers\WudfPf.sys AB886378EEB55C6C75B4F2D14B6C869F
C:\Windows\System32\DRIVERS\WUDFRd.sys DDA4CAF29D8C0A297F886BFE561E6659
C:\Windows\System32\Drivers\aiod5ang.sys

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-18 15:52 - 2014-11-18 15:53 - 00039025 _____ () C:\Users\Dee\Desktop\FRST.txt
2014-11-18 15:52 - 2014-11-18 15:52 - 00000000 ____D () C:\FRST
2014-11-18 15:50 - 2014-11-18 15:50 - 02117120 _____ (Farbar) C:\Users\Dee\Desktop\FRST64.exe
2014-11-18 13:28 - 2014-11-18 13:28 - 00003174 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForDee
2014-11-18 13:28 - 2014-11-18 13:28 - 00000324 _____ () C:\Windows\Tasks\HPCeeScheduleForDee.job
2014-11-14 15:20 - 2014-11-14 15:20 - 00000000 ____D () C:\Users\Ethan\AppData\Local\AskPartnerNetwork
2014-11-14 13:48 - 2014-11-14 13:48 - 00000000 ____D () C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kaspersky Security Scan
2014-11-14 13:47 - 2014-11-14 13:47 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-11-14 13:47 - 2014-11-14 13:47 - 00000000 ____D () C:\Program Files (x86)\Kaspersky Lab
2014-11-14 11:46 - 2014-11-15 14:32 - 00000000 ____D () C:\SUPERDelete
2014-11-14 11:35 - 2014-11-17 11:22 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-11-14 11:35 - 2014-11-14 11:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2014-11-14 11:33 - 2014-11-14 11:33 - 00000000 __SHD () C:\Users\Dee\AppData\Local\EmieBrowserModeList
2014-11-12 08:51 - 2014-11-07 14:49 - 00388272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-12 08:51 - 2014-11-07 14:23 - 00341168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-12 08:51 - 2014-11-05 23:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-11-12 08:51 - 2014-11-05 23:03 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-12 08:51 - 2014-11-05 23:03 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-11-12 08:51 - 2014-11-05 22:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-12 08:51 - 2014-11-05 22:46 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-12 08:51 - 2014-11-05 22:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-12 08:51 - 2014-11-05 22:44 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-12 08:51 - 2014-11-05 22:43 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-12 08:51 - 2014-11-05 22:36 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-12 08:51 - 2014-11-05 22:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-12 08:51 - 2014-11-05 22:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-12 08:51 - 2014-11-05 22:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-12 08:51 - 2014-11-05 22:30 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-12 08:51 - 2014-11-05 22:29 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-12 08:51 - 2014-11-05 22:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-11-12 08:51 - 2014-11-05 22:23 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-12 08:51 - 2014-11-05 22:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-12 08:51 - 2014-11-05 22:16 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-12 08:51 - 2014-11-05 22:13 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-12 08:51 - 2014-11-05 22:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-12 08:51 - 2014-11-05 22:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-12 08:51 - 2014-11-05 22:10 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-12 08:51 - 2014-11-05 22:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-12 08:51 - 2014-11-05 22:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 08:51 - 2014-11-05 22:05 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-12 08:51 - 2014-11-05 22:04 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-12 08:51 - 2014-11-05 22:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-12 08:51 - 2014-11-05 22:02 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-12 08:51 - 2014-11-05 22:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-12 08:51 - 2014-11-05 22:00 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-12 08:51 - 2014-11-05 21:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-12 08:51 - 2014-11-05 21:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-12 08:51 - 2014-11-05 21:57 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-12 08:51 - 2014-11-05 21:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-12 08:51 - 2014-11-05 21:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-12 08:51 - 2014-11-05 21:41 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-12 08:51 - 2014-11-05 21:41 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-12 08:51 - 2014-11-05 21:39 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-11-12 08:51 - 2014-11-05 21:38 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-12 08:51 - 2014-11-05 21:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-12 08:51 - 2014-11-05 21:36 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-12 08:51 - 2014-11-05 21:34 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-12 08:51 - 2014-11-05 21:30 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-12 08:51 - 2014-11-05 21:22 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-12 08:51 - 2014-11-05 21:21 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-12 08:51 - 2014-11-05 21:21 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-12 08:51 - 2014-11-05 21:20 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-11-12 08:51 - 2014-11-05 21:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-12 08:51 - 2014-11-05 21:04 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-12 08:51 - 2014-11-05 21:03 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-12 08:51 - 2014-11-05 20:53 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-12 08:51 - 2014-11-05 20:52 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-12 08:51 - 2014-11-05 20:48 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-12 08:51 - 2014-11-05 20:47 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-12 08:51 - 2014-10-13 21:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-12 08:51 - 2014-10-13 21:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-11-12 08:51 - 2014-10-13 21:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-12 08:51 - 2014-10-13 21:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-12 08:51 - 2014-10-13 21:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-12 08:51 - 2014-10-13 20:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-12 08:51 - 2014-10-13 20:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-12 08:51 - 2014-10-13 20:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-12 08:51 - 2014-10-13 20:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-12 08:51 - 2014-10-02 21:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-12 08:51 - 2014-10-02 21:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-12 08:51 - 2014-10-02 20:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-12 08:51 - 2014-08-21 01:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-12 08:51 - 2014-08-21 01:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-11-12 08:51 - 2014-08-21 01:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-12 08:51 - 2014-08-21 01:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-11-12 08:51 - 2014-08-11 21:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-11-12 08:51 - 2014-08-11 20:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-11-12 08:50 - 2014-10-24 20:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-12 08:50 - 2014-10-24 20:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-12 08:50 - 2014-10-13 21:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-12 08:50 - 2014-10-13 20:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-12 08:50 - 2014-10-09 19:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-12 08:50 - 2014-10-02 21:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-12 08:50 - 2014-10-02 21:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-12 08:50 - 2014-10-02 21:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-12 08:50 - 2014-10-02 20:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-12 08:50 - 2014-10-02 20:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-12 08:50 - 2014-09-19 04:42 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-12 08:50 - 2014-09-19 04:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-12 08:50 - 2014-09-19 04:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-12 08:50 - 2014-09-19 04:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-11-12 08:50 - 2014-09-19 04:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-12 08:50 - 2014-09-19 04:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-12 08:50 - 2014-09-19 04:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-12 08:50 - 2014-09-19 04:23 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-12 08:50 - 2014-09-19 04:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-12 08:50 - 2014-09-19 04:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-12 08:50 - 2014-09-19 04:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-11-12 08:50 - 2014-09-19 04:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-12 08:50 - 2014-09-19 04:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-12 08:50 - 2014-09-19 04:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-12 08:49 - 2014-10-17 21:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-12 08:49 - 2014-10-17 20:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-11 18:34 - 2014-11-17 11:21 - 00000000 ____D () C:\Users\Dee\AppData\Local\AskPartnerNetwork
2014-11-11 18:34 - 2014-11-17 11:21 - 00000000 ____D () C:\ProgramData\AskPartnerNetwork
2014-11-11 18:34 - 2014-11-11 18:34 - 00000000 ____D () C:\Program Files (x86)\AskPartnerNetwork
2014-11-11 18:32 - 2014-11-11 18:31 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-11-11 18:31 - 2014-11-11 18:31 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-11-11 18:31 - 2014-11-11 18:31 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-11-11 18:31 - 2014-11-11 18:31 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-11-11 18:31 - 2014-11-11 18:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-11-11 18:31 - 2014-11-11 18:31 - 00000000 ____D () C:\Program Files (x86)\Java
2014-11-11 16:21 - 2014-11-11 16:21 - 00000000 ____D () C:\Program Files\Lexmark X1100 Series
2014-11-11 16:20 - 2014-11-11 16:26 - 00014750 _____ () C:\Windows\system32\LexFiles.ulf
2014-11-11 16:20 - 2014-11-11 16:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lexmark X1100 Series
2014-11-11 16:20 - 2014-11-11 16:26 - 00000000 ____D () C:\Program Files (x86)\Lexmark X1100 Series
2014-11-11 16:20 - 2008-02-19 09:12 - 00565928 _____ ( ) C:\Windows\system32\lxbkcoms.exe
2014-11-11 16:20 - 2008-02-19 09:12 - 00537256 _____ ( ) C:\Windows\SysWOW64\lxbkcoms.exe
2014-11-11 16:20 - 2008-02-19 09:12 - 00385704 _____ ( ) C:\Windows\SysWOW64\lxbkih.exe
2014-11-11 16:20 - 2008-02-19 09:12 - 00381608 _____ ( ) C:\Windows\SysWOW64\lxbkcfg.exe
2014-11-11 16:20 - 2008-02-19 09:12 - 00235688 _____ ( ) C:\Windows\system32\lxbkcfg.exe
2014-11-11 16:20 - 2008-02-19 09:12 - 00233128 _____ ( ) C:\Windows\system32\lxbkih.exe
2014-11-11 16:20 - 2008-02-19 09:12 - 00180904 _____ ( ) C:\Windows\SysWOW64\lxbkppls.exe
2014-11-11 16:20 - 2008-02-19 09:04 - 00001525 _____ () C:\Windows\SysWOW64\lxbk.loc
2014-11-11 16:20 - 2008-02-19 09:04 - 00001525 _____ () C:\Windows\system32\lxbk.loc
2014-11-11 16:20 - 2006-11-30 16:03 - 00443392 _____ (Lexmark International Inc.) C:\Windows\system32\lxbkjswr.dll
2014-11-11 16:20 - 2006-11-30 16:02 - 00077824 _____ (Lexmark International Inc.) C:\Windows\system32\lxbkcur.dll
2014-11-11 16:20 - 2006-11-30 16:02 - 00072192 _____ (Lexmark International, Inc.) C:\Windows\system32\lxbkinsr.dll
2014-11-11 16:20 - 2006-11-30 15:47 - 00177664 _____ (Lexmark International, Inc.) C:\Windows\system32\lxbkins.dll
2014-11-11 16:20 - 2006-11-30 15:47 - 00135168 _____ (Lexmark International Inc.) C:\Windows\system32\lxbkinsb.dll
2014-11-11 16:20 - 2006-11-30 15:45 - 00567808 _____ () C:\Windows\system32\lxbkutil.dll
2014-11-11 16:20 - 2006-11-30 15:45 - 00079360 _____ (Lexmark International Inc.) C:\Windows\system32\lxbkcu.dll
2014-11-11 16:20 - 2006-11-30 13:42 - 00458752 _____ (Lexmark International Inc.) C:\Windows\SysWOW64\lxbkjswr.dll
2014-11-11 16:20 - 2006-11-30 13:42 - 00094208 _____ (Lexmark International Inc.) C:\Windows\SysWOW64\lxbkcur.dll
2014-11-11 16:20 - 2006-11-30 13:42 - 00086016 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxbkinsr.dll
2014-11-11 16:20 - 2006-11-30 13:35 - 00155648 _____ (Lexmark International Inc.) C:\Windows\SysWOW64\lxbkinsb.dll
2014-11-11 16:20 - 2006-11-30 13:35 - 00131072 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxbkins.dll
2014-11-11 16:20 - 2006-11-30 13:34 - 00413696 _____ () C:\Windows\SysWOW64\lxbkutil.dll
2014-11-11 16:20 - 2006-11-30 13:34 - 00073728 _____ (Lexmark International Inc.) C:\Windows\SysWOW64\lxbkcu.dll
2014-11-11 16:20 - 2006-11-09 20:29 - 00062464 _____ (Lexmark International) C:\Windows\system32\LXBKcfg.dll
2014-11-11 16:20 - 2006-11-09 20:28 - 00073728 _____ (Lexmark International) C:\Windows\SysWOW64\LXBKcfg.dll
2014-11-11 16:20 - 2006-11-06 17:56 - 00409600 _____ ( ) C:\Windows\system32\lxbkpmui.dll
2014-11-11 16:20 - 2006-11-06 17:53 - 01417728 _____ ( ) C:\Windows\system32\lxbkserv.dll
2014-11-11 16:20 - 2006-11-06 17:38 - 00249856 _____ ( ) C:\Windows\system32\lxbkcomm.dll
2014-11-11 16:20 - 2006-11-06 17:34 - 00487424 _____ ( ) C:\Windows\system32\lxbklmpm.dll
2014-11-11 16:20 - 2006-11-06 17:32 - 00194048 _____ () C:\Windows\system32\LXBKinst.dll
2014-11-11 16:20 - 2006-11-06 17:31 - 00226816 _____ ( ) C:\Windows\system32\lxbkiesc.dll
2014-11-11 16:20 - 2006-11-06 17:27 - 00010752 _____ ( ) C:\Windows\system32\lxbkpplc.dll
2014-11-11 16:20 - 2006-11-06 17:25 - 00695808 _____ ( ) C:\Windows\system32\lxbkcomc.dll
2014-11-11 16:20 - 2006-11-06 17:24 - 00035328 _____ ( ) C:\Windows\system32\lxbkprox.dll
2014-11-11 16:20 - 2006-11-06 17:14 - 00238592 _____ ( ) C:\Windows\system32\lxbkinpa.dll
2014-11-11 16:20 - 2006-11-06 17:12 - 01099264 _____ ( ) C:\Windows\system32\lxbkusb1.dll
2014-11-11 16:20 - 2006-11-06 17:05 - 00305152 _____ ( ) C:\Windows\system32\LXBKhcp.dll
2014-11-11 16:20 - 2006-11-06 17:03 - 00659456 _____ ( ) C:\Windows\system32\lxbkhbn3.dll
2014-11-11 16:20 - 2006-11-06 16:37 - 00643072 _____ ( ) C:\Windows\SysWOW64\lxbkpmui.dll
2014-11-11 16:20 - 2006-11-06 16:35 - 01224704 _____ ( ) C:\Windows\SysWOW64\lxbkserv.dll
2014-11-11 16:20 - 2006-11-06 16:28 - 00421888 _____ ( ) C:\Windows\SysWOW64\lxbkcomm.dll
2014-11-11 16:20 - 2006-11-06 16:26 - 00585728 _____ ( ) C:\Windows\SysWOW64\lxbklmpm.dll
2014-11-11 16:20 - 2006-11-06 16:25 - 00274432 _____ () C:\Windows\SysWOW64\LXBKinst.dll
2014-11-11 16:20 - 2006-11-06 16:24 - 00397312 _____ ( ) C:\Windows\SysWOW64\lxbkiesc.dll
2014-11-11 16:20 - 2006-11-06 16:21 - 00094208 _____ ( ) C:\Windows\SysWOW64\lxbkpplc.dll
2014-11-11 16:20 - 2006-11-06 16:20 - 00684032 _____ ( ) C:\Windows\SysWOW64\lxbkcomc.dll
2014-11-11 16:20 - 2006-11-06 16:20 - 00163840 _____ ( ) C:\Windows\SysWOW64\lxbkprox.dll
2014-11-11 16:20 - 2006-11-06 16:12 - 00413696 _____ ( ) C:\Windows\SysWOW64\lxbkinpa.dll
2014-11-11 16:20 - 2006-11-06 16:11 - 00991232 _____ ( ) C:\Windows\SysWOW64\lxbkusb1.dll
2014-11-11 16:20 - 2006-11-06 16:07 - 00696320 _____ ( ) C:\Windows\SysWOW64\lxbkhbn3.dll
2014-11-11 16:20 - 2006-09-18 11:23 - 00983101 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lxbkgf.dll
2014-11-11 14:48 - 2014-11-11 14:48 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-11-02 15:22 - 2014-11-02 15:22 - 00000000 ____D () C:\Users\Dee\AppData\Local\{A58CBB73-A7AD-40A6-8969-55C433464A0D}
2014-11-01 16:04 - 2014-11-01 16:04 - 00000000 ____D () C:\Users\Ethan\AppData\Roaming\AVG2015
2014-11-01 16:04 - 2014-11-01 16:04 - 00000000 ____D () C:\Users\Ethan\AppData\Local\Avg2015
2014-10-29 21:35 - 2014-10-29 21:35 - 00263960 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
2014-10-20 09:24 - 2014-11-11 14:17 - 00000367 _____ () C:\lxbk.log
2014-10-19 07:26 - 2014-10-19 07:27 - 00000000 ____D () C:\Users\Dee\AppData\Local\Adobe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-18 15:53 - 2011-12-29 12:43 - 00000000 ____D () C:\Users\Dee\AppData\Roaming\Skype
2014-11-18 15:53 - 2011-03-02 06:22 - 00003910 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{D4A4F1F5-AE2C-44B1-8160-2F282B937A23}
2014-11-18 15:49 - 2011-03-18 10:47 - 00000000 ____D () C:\Users\Dee\Desktop\Tools
2014-11-18 15:47 - 2011-07-11 06:51 - 00000000 ____D () C:\Users\Dee\Desktop\Misc
2014-11-18 15:38 - 2012-03-29 07:16 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-18 15:38 - 2010-12-10 14:00 - 01405168 _____ () C:\Windows\WindowsUpdate.log
2014-11-18 13:27 - 2013-04-17 20:43 - 00000000 _____ () C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-11-18 13:27 - 2011-03-02 13:01 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log
2014-11-18 13:25 - 2012-01-22 19:27 - 00000000 ____D () C:\ProgramData\MFAData
2014-11-18 13:22 - 2009-07-13 23:45 - 00015792 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-18 13:22 - 2009-07-13 23:45 - 00015792 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-18 13:21 - 2011-03-02 13:00 - 00000000 ____D () C:\Users\Dee\AppData\Roaming\HpUpdate
2014-11-18 13:21 - 2011-03-02 13:00 - 00000000 ____D () C:\Users\Dee\AppData\Roaming\HP Support Assistant
2014-11-18 12:26 - 2009-07-14 00:13 - 00824686 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-18 12:21 - 2014-10-10 10:30 - 00003024 _____ () C:\Windows\setupact.log
2014-11-18 12:21 - 2009-07-14 00:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-17 03:08 - 2012-02-18 10:19 - 00000000 ____D () C:\ProgramData\PDFC
2014-11-16 10:10 - 2011-07-11 06:49 - 00000000 ____D () C:\Program Files (x86)\Mystery Case Files Prime Suspects
2014-11-16 10:07 - 2011-12-18 18:54 - 00000000 ____D () C:\Users\Ethan\AppData\Roaming\Big Fish Games
2014-11-15 14:32 - 2014-10-17 13:04 - 00041444 _____ () C:\Windows\PFRO.log
2014-11-15 13:30 - 2011-03-17 19:49 - 00000000 ____D () C:\Users\Dee\AppData\Roaming\SoftGrid Client
2014-11-15 12:22 - 2011-03-04 21:01 - 00000000 ____D () C:\Users\Dee\AppData\Local\Windows Live
2014-11-14 14:05 - 2014-09-21 10:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-11-14 14:05 - 2011-12-29 12:43 - 00000000 ____D () C:\ProgramData\Skype
2014-11-14 11:41 - 2011-08-07 14:47 - 00000000 ____D () C:\Program Files (x86)\Google
2014-11-14 11:40 - 2011-03-01 19:11 - 00000000 ____D () C:\Users\Dee\AppData\Local\Google
2014-11-14 11:10 - 2014-03-31 08:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2014-11-13 14:24 - 2012-03-29 07:16 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-13 14:24 - 2012-03-29 07:16 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-13 14:24 - 2011-05-19 07:05 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-13 10:21 - 2009-07-13 22:20 - 00000000 ____D () C:\Windows\rescache
2014-11-12 18:28 - 2014-10-10 10:29 - 00499168 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-12 12:57 - 2013-08-14 09:44 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-12 12:52 - 2011-03-01 19:52 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-12 09:38 - 2011-03-06 08:45 - 00000737 _____ () C:\Windows\Lexstat.ini
2014-11-12 09:35 - 2012-02-22 07:44 - 00010752 ___SH () C:\Users\Dee\Thumbs.db
2014-11-11 18:32 - 2013-10-16 15:25 - 00000000 ____D () C:\ProgramData\Oracle
2014-11-11 16:18 - 2011-03-06 08:41 - 54203048 _____ () C:\Users\Dee\Downloads\cjsX1100EN.exe
2014-11-11 15:13 - 2012-06-13 10:00 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-11 15:04 - 2009-07-13 22:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-11-11 11:09 - 2011-03-30 08:49 - 00000000 ___HD () C:\$AVG
2014-11-10 13:16 - 2011-03-01 18:40 - 00000000 ____D () C:\Users\Dee\AppData\Local\CrashDumps
2014-11-08 07:18 - 2014-09-21 10:57 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-11-01 19:32 - 2012-03-18 09:20 - 00000000 ____D () C:\Users\Ethan\Documents\Alibi in Ashes
2014-10-31 07:42 - 2009-07-14 00:08 - 00032580 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-10-30 16:27 - 2012-03-27 20:35 - 00000000 ____D () C:\Users\Dee\Desktop\AGS-FreeGames
2014-10-28 13:33 - 2014-07-23 11:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-10-28 13:33 - 2014-07-23 11:34 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-10-28 13:32 - 2014-07-23 11:35 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-10-19 18:29 - 2014-10-09 12:56 - 00000000 ____D () C:\Users\Dee\AppData\Local\Avg2015

Some content of TEMP:
====================
C:\Users\Dee\AppData\Local\Temp\rtdrvmon.exe
C:\Users\Ethan\AppData\Local\Temp\rtdrvmon.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed

 

 

Addition Log:

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-11-2014
Ran by Dee at 2014-11-18 15:54:18
Running from C:\Users\Dee\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

3DVIA player 5.0.0.20 (HKLM-x32\...\{F06365EC-061E-48C3-B761-E1816658D618}) (Version: 5.0.20 - 3DVIA)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Active@ ISO Burner (HKLM-x32\...\{7694E0B1-2332-448B-9235-929F84B41E3F}) (Version: 2.5.1 - LSoft Technologies)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.6.0.6090 - Adobe Systems Incorporated)
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.223 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.223 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.0.150 - Adobe Systems, Inc.)
Adventure Anniversary Pack (HKLM-x32\...\{877E390C-1EFB-44CB-BBBE-6A0B0D553620}) (Version: 1.00.0 - JoWood)
Agatha Christie - And Then There Were None (HKLM-x32\...\{E4628D0D-5DC8-49EC-985A-F0C12EDBF1D2}) (Version: 1.0 - )
AGEIA PhysX v7.09.13 (HKLM-x32\...\{45235788-142C-44BE-8A4D-DDE9A84492E5}) (Version: 7.09.13 - AGEIA Technologies, Inc.)
Alan Wake version 1.0 (HKLM-x32\...\{8B7IL77L-87234A-AWAKE-18CD6E6334R1}_is1) (Version: 1.0 - Black Box)
Alone in the Dark - The New Nightmare (HKLM-x32\...\GOGPACKALONEINTHEDARK_is1) (Version: 2.0.0.9 - GOG.com)
Amazon Music Importer (HKLM-x32\...\com.amazon.music.uploader) (Version: 2.0.1 - Amazon Services LLC)
Amazon Music Importer (x32 Version: 2.0.1 - Amazon Services LLC) Hidden
AMD Catalyst Install Manager (HKLM\...\{F4C71C2A-F068-8EEB-61AE-EA4707C57A1B}) (Version: 8.0.881.0 - Advanced Micro Devices, Inc.)
American McGee's Alice™ (HKLM-x32\...\{77B5AD60-8F14-11D4-9BC9-0050041A1090}) (Version:  - )
Amnesia - The Dark Descent  (HKLM-x32\...\{54B7A3C7-0940-4C16-A509-FC3C3758D22A}_is1) (Version: 1.0.0 - Frictional Games)
Antique Road Trip USA (HKLM-x32\...\Antique Road Trip USA) (Version:  - )
Apple Application Support (HKLM-x32\...\{F5266D28-E0B2-4130-BFC5-EE155AD514DC}) (Version: 2.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{8F473675-D702-45F9-8EBC-342B40C17BF5}) (Version: 3.4.0.25 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Application Profiles (HKLM-x32\...\{0A948ECF-9E0A-ED8A-8905-35753A8944D3}) (Version: 2.0.4651.16995 - Advanced Micro Devices, Inc.)
Application Profiles (HKLM-x32\...\{1432E5F7-0AF6-8C43-EC53-08A4648CBD03}) (Version: 2.0.4427.36392 - Advanced Micro Devices, Inc.)
Application Profiles (HKLM-x32\...\{EA374A45-BF30-0849-7A00-BD8A0BC8CE3E}) (Version: 2.0.4504.34814 - Advanced Micro Devices, Inc.)
ArcSoft Funhouse (HKLM-x32\...\{A964DB23-B213-432E-8403-0CBFE2883039}) (Version:  - )
ArcSoft Software Suite (HKLM-x32\...\{4A712D29-DBE3-4381-A331-AF4AE5BEB244}) (Version:  - )
Art Explosion Greeting Card Factory Express (HKLM-x32\...\{AE15D0F7-8C2E-4419-97B4-995ED16FBB4E}) (Version: 1.04.3600 - Nova Development)
AVG 2015 (HKLM\...\AVG) (Version: 2015.0.5577 - AVG Technologies)
AVG 2015 (Version: 15.0.4213 - AVG Technologies) Hidden
AVG 2015 (Version: 15.0.5577 - AVG Technologies) Hidden
Back to the Future The Game - Episode 1 (HKLM-x32\...\Episode 1) (Version: 1.0.0.0 - Telltale Games)
Barrow Hill (HKLM-x32\...\Barrow Hill) (Version:  - )
Big Fish Games: Game Manager (HKLM-x32\...\BFGC) (Version: 3.0.1.60 - )
Bing Bar (HKLM-x32\...\{3365E735-48A6-4194-9988-CE59AC5AE503}) (Version: 7.3.132.0 - Microsoft Corporation)
Black Mirror 2 1.0 (HKLM-x32\...\Black Mirror 2) (Version: 1.0 - Viva Media LLC)
Black Mirror 3 (HKLM-x32\...\Black Mirror 3) (Version: 1.0.21.0 - Viva Media LLC)
Blio (HKLM-x32\...\{8D3903E2-4B1B-4A69-B8F6-A3D1BE075BDB}) (Version: 2.2.6484 - K-NFB Reading Technology, Inc.)
Bonjour (HKLM\...\{0E543634-7E25-4B8F-8D5B-97880E5E5088}) (Version: 2.0.5.0 - Apple Inc.)
Caribbean Explorer 1.0.0.9 (HKLM-x32\...\Caribbean Explorer_is1) (Version:  - GameMill Entertainment)
Cate West - The Velvet Keys (HKLM-x32\...\Cate West - The Velvet Keys) (Version:  - )
CCleaner (HKLM\...\CCleaner) (Version: 4.18 - Piriform)
CyberLink DVD Suite Deluxe (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 7.0.3210 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd)
Dark Fall : The Journal (HKLM-x32\...\Dark Fall : The Journal) (Version:  - )
Dark Fall Lost Souls (HKLM-x32\...\{E13DA7CA-2951-4CD8-934D-6C85D17BB18B}_is1) (Version:  - GamersGate)
DFX for Windows Media Player (HKLM-x32\...\{f1990716-8ee0-4c3e-8ebd-84026f3a09d5}) (Version: 7.500 - Power Technology)
dino2 (HKLM-x32\...\{1879585A-D70B-4774-8A0A-FCF9763AC7CF}) (Version:  - )
Donald Dowell version 1.0 (HKLM-x32\...\{BFC05D0B-3340-4F29-855C-36829A3E8016}_is1) (Version: 1.0 - Ape Marina)
Dracula - The Last Sanctuary (HKLM-x32\...\Dracula - The Last Sanctuary_is1) (Version:  - Microids)
Dracula 3 (HKLM-x32\...\Dracula 3_is1) (Version:  - Microids)
Dracula 4 - Shadow of the Dragon (HKLM-x32\...\GOGPACKDRACULA4_is1) (Version: 2.0.0.3 - GOG.com)
Dracula 5 -  The Blood Legacy (HKLM-x32\...\GOGPACKDRACULA5_is1) (Version: 2.0.0.2 - GOG.com)
Dracula Resurrection (HKLM-x32\...\Dracula Resurrection_is1) (Version:  - Microids)
DVD Menu Pack for HP MediaSmart Video (HKLM-x32\...\InstallShield_{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}) (Version: 4.2.4412 - Hewlett-Packard)
DVD Menu Pack for HP MediaSmart Video (x32 Version: 4.2.4412 - Hewlett-Packard) Hidden
Easy Solve (HKLM-x32\...\Comcast) (Version:  - )
Elementals - The Magic Key (HKLM-x32\...\Elementals - The Magic Key_is1) (Version:  - Playrix Entertainment)
Escape from Monkey Island (HKLM-x32\...\EMI_DVDSetup_is1) (Version: 1.0 - LucasArts)
Facebook Video Calling 3.1.0.521 (HKLM-x32\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited)
GE MiniCam Pro (HKLM-x32\...\{ECD03DA7-5952-406A-8156-5F0C93618D1F}) (Version: 5.18.0.105 - SONIX)
Ghost Pirates (HKLM-x32\...\Ghost Pirates_is1) (Version:  - dtp)
GOM Player (HKLM-x32\...\GOM Player) (Version: 2.1.37.5085 - Gretech Corporation)
Gray Matter (HKLM-x32\...\Gray Matter_is1) (Version:  - dtp)
Greeting Card Factory Photo Card Maker (HKLM-x32\...\{9C627F78-DBB9-4293-AA89-E83119C39CE9}) (Version: 1.0.0.5 - Nova Development)
Hallmark Card Studio 2009 (HKLM-x32\...\{C4609419-C11E-4CE6-B369-F3F8A7DDD94C}) (Version: 10.0.0.28 - Creative Home)
Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
Hidden Expedition Titanic (remove only) (HKLM-x32\...\Hidden Expedition Titanic) (Version:  - )
Hitchcock - The Final Cut (HKLM-x32\...\{4154A302-2601-1401-2002-415258454C01}) (Version:  - Ubi Soft)
HP MediaSmart DVD (HKLM-x32\...\InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}) (Version: 4.2.4521 - Hewlett-Packard)
HP MediaSmart Music (HKLM-x32\...\InstallShield_{91A34181-9FAD-43AB-A35F-E7A8945B7E1C}) (Version: 4.2.4517 - Hewlett-Packard)
HP MediaSmart Photo (HKLM-x32\...\InstallShield_{6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF}) (Version: 4.2.4513 - Hewlett-Packard)
HP MediaSmart SmartMenu (HKLM\...\{A40F60B1-F1E1-452E-96A5-FF97F9A2D102}) (Version: 3.1.2.4 - Hewlett-Packard)
HP MediaSmart Video (HKLM-x32\...\InstallShield_{D12E3E7F-1B13-4933-A915-16C7DD37A095}) (Version: 4.2.4522 - Hewlett-Packard)
HP MediaSmart/TouchSmart Netflix (HKLM-x32\...\{2EA3D6B2-157E-4112-A3AB-BF17E16661C3}) (Version: 1.0.4.0 - Hewlett-Packard)
HP MovieStore (HKLM-x32\...\{9008D736-35CA-40DB-A2BE-5F32D954E5AA}) (Version: 2.0.2 - Hewlett-Packard)
HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard)
HP Product Detection (HKLM-x32\...\{CAE7D1D9-3794-4169-B4DD-964ADBC534EE}) (Version: 10.7.9.0 - Hewlett-Packard Company)
HP Setup (HKLM-x32\...\{53469506-A37E-4314-A9D9-38724EC23A75}) (Version: 8.4.4400.3525 - Hewlett-Packard Company)
HP Setup Manager (HKLM-x32\...\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.0.12844.3519 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{EE202411-2C26-49E8-9784-1BC1DBF7DE96}) (Version: 7.0.39.15 - Hewlett-Packard Company)
HP Support Information (HKLM-x32\...\{7F2A11F4-EAE8-4325-83EC-E3E99F85169E}) (Version: 10.1.1000 - Hewlett-Packard)
HP Update (HKLM-x32\...\{DE77FE3F-A33D-499A-87AD-5FC406617B40}) (Version: 5.002.003.003 - Hewlett-Packard)
HP Vision Hardware Diagnostics (HKLM\...\{D79A02E9-6713-4335-9668-AAC7474C0C0E}) (Version: 2.1.6.0 - Hewlett-Packard)
Hulu Desktop (HKU\S-1-5-21-2375802078-1423229213-3210898512-1001\...\HuluDesktop) (Version: 0.9.14 - Hulu LLC)
HydraVision (x32 Version: 4.2.236.0 - Advanced Micro Devices, Inc.) Hidden
IsoBuster 2.8.5 (HKLM-x32\...\IsoBuster_is1) (Version: 2.8.5 - Smart Projects)
Java 7 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217071FF}) (Version: 7.0.710 - Oracle)
John Saul's Blackstone Chronicles (HKLM-x32\...\John Saul's Blackstone Chronicles) (Version:  - )
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Kaspersky Security Scan (HKLM-x32\...\InstallWIX_{D1282694-0693-41A8-ABC1-6D1FFC1F65C4}) (Version: 12.0.1.881 - Kaspersky Lab)
Kaspersky Security Scan (x32 Version: 12.0.1.881 - Kaspersky Lab) Hidden
K-Lite Codec Pack 7.0.0 (Full) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 7.0.0 - )
Leisure Suit Larry 7 - Love for Sail! (HKLM-x32\...\GOGPACKLARRY7WIN_is1) (Version: 2.0.0.11 - GOG.com)
Lexmark X1100 Series (HKLM\...\Lexmark X1100 Series) (Version:  - Lexmark International, Inc.)
LightScribe System Software (HKLM-x32\...\{46BA053F-57B3-4153-BDB6-D37EEC8B12D7}) (Version: 1.18.15.1 - LightScribe)
Lost Horizon (HKLM-x32\...\Lost Horizon) (Version:  - Animation Arts)
Lost Secrets Bermuda Triangle (HKLM-x32\...\Lost Secrets Bermuda Triangle) (Version: 1.0 - Game Mill Entertainment)
Magic ISO Maker v5.5 (build 0281) (HKLM-x32\...\Magic ISO Maker v5.5 (build 0281)) (Version:  - )
Malwarebytes Anti-Malware version 2.0.3.1025 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.3.1025 - Malwarebytes Corporation)
Microsoft .NET Compact Framework 2.0 SP1 (HKLM-x32\...\{625386A4-B6B6-4911-A6E8-23189C3F2D15}) (Version: 2.0.6129 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Application Compatibility Toolkit 5.6 (HKLM-x32\...\{0F5AEBB0-43F3-4571-ACE7-A7942E8AA179}) (Version: 5.6.7324.0 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Starter 2010 - English (HKLM-x32\...\{90140011-0066-0409-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Picture It! Photo Premium 9 (HKLM-x32\...\PictureIt_v9) (Version: 9.0.0.0000 - Microsoft Corporation)
Microsoft PowerPoint Viewer (HKLM-x32\...\{95140000-00AF-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Midnight Mysteries - The Edgar Allan Poe Conspiracy (HKLM-x32\...\Midnight Mysteries - The Edgar Allan Poe Conspiracy1.0) (Version: 1.0 - Adnan_Boy 2008)
Monkey Island 2 LeChucks Revenge Special Edition (HKLM-x32\...\Monkey Island 2 LeChucks Revenge Special Edition_is1) (Version:  - )
Mortimer Beckett and the Secrets of Spooky Manor (HKLM-x32\...\Mortimer Beckett and the Secrets of Spooky Manor) (Version: 1.1.0.0 - MumboJumbo)
Movie Theme Pack for HP MediaSmart Video (HKLM-x32\...\InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E}) (Version: 4.2.4412 - Hewlett-Packard)
Movie Theme Pack for HP MediaSmart Video (x32 Version: 4.2.4412 - Hewlett-Packard) Hidden
Mozilla Firefox 33.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 33.1 (x86 en-US)) (Version: 33.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Mystery Case Files - 13th Skull Collectors Edition (HKLM-x32\...\{B073B30C-7D4C-401D-ABF6-993F7A0DE762}) (Version: 1.0.3.616 - LeeGT-Games)
Mystery Case Files - Dire Grove Collector's Edition (HKLM-x32\...\Mystery Case Files - Dire Grove Collector's Edition1.0) (Version: 1.0 - AllSmartGames)
Mystery Case Files - Huntsville (remove only) (HKLM-x32\...\Mystery Case Files - Huntsville) (Version:  - )
Mystery Case Files - Madame Fate 1.00 (HKLM-x32\...\Mystery Case Files - Madame Fate 1.00) (Version:  - )
Mystery Case Files - Ravenhearst 1.00 (HKLM-x32\...\Mystery Case Files - Ravenhearst 1.00) (Version:  - )
Mystery Case Files 8- Escape from Ravenhearst CE (HKLM-x32\...\Mystery Case Files 8- Escape from Ravenhearst CE1.0) (Version: 1.0 - AllSmartGames)
Mystery Case Files: Prime Suspects (HKLM-x32\...\{4058154A-EE06-470B-94B0-380416D71E37}_is1) (Version:  - )
Mystery in London (remove only) (HKU\S-1-5-21-2375802078-1423229213-3210898512-1001\...\Mystery in London) (Version:  - )
Mystery Murders - Jack the Ripper ~ Just For Fun Games (HKLM-x32\...\Mystery Murders - Jack the Ripper ~ Just For Fun Games) (Version:  - )
Mystery of Mortlake Mansion (HKLM-x32\...\Mystery of Mortlake Mansion_is1) (Version:  - Playrix Entertainment)
Nancy Drew -  The Captive Curse (HKLM-x32\...\Nancy Drew -  The Captive Curse1.0) (Version: 1.0 - AllSmartGames)
Nancy Drew - Curse of Blackmoor Manor (remove only) (HKLM-x32\...\Nancy Drew - Curse of Blackmoor Manor) (Version:  - )
Nancy Drew Dossier: Lights, Camera, Curses! (HKLM-x32\...\{3E0BDBA0-0BD1-4749-A624-8AD3BC787198}) (Version: 1.0.0 - Her Interactive, Inc.)
Nancy Drew Dossier: Resorting to Danger (HKLM-x32\...\{74096E43-C712-4DED-A530-719CA2E0DE80}) (Version: 1.0.0 - Her Interactive, Inc.)
Nancy Drew: Alibi in Ashes (HKLM-x32\...\Nancy Drew: Alibi in Ashes_is1) (Version:  - )
Nancy Drew: Ghost Dogs of Moon Lake (HKLM-x32\...\{B089A9C3-9592-4219-9F25-7BA9846D2767}) (Version:  - )
Nancy Drew: Message in a Haunted Mansion (HKLM-x32\...\{78B55A60-5E51-11D4-A766-00C00C02EDEF}) (Version:  - )
Nancy Drew: Ransom of the Seven Ships (HKLM-x32\...\{1088F929-91D9-4FD5-8AE8-E9593CD47CD7}) (Version: 1.0.0 - Her Interactive, Inc.)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Out Of Order (HKLM-x32\...\Out Of Order) (Version:  - Hungry Software)
PDF Complete Special Edition (HKLM-x32\...\PDF Complete) (Version: 4.0.9 - PDF Complete, Inc)
PictureMover (HKLM-x32\...\{264FE20A-757B-492a-B0C3-4009E2997D8A}) (Version: 3.5.0.33 - Hewlett-Packard Company)
Pirateville (HKLM-x32\...\{88C77575-0C42-4DA0-861E-9AC38241A120}) (Version: 1.00.0000 - Valusoft)
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
PlayReady PC Runtime x86 (HKLM-x32\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation)
PressReader (HKLM-x32\...\{912CED74-88D3-4C5B-ACB0-13231864975E}) (Version: 5.10.1102.0 -  NewspaperDirect Inc.)
Private Eye (HKLM-x32\...\Private Eye1.0) (Version: 1.0 - Gogii)
QuickTime (HKLM-x32\...\{AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A}) (Version: 7.73.80.64 - Apple Inc.)
Ralink RT2860 Wireless LAN Card (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}) (Version:  - Ralink)
Real Crimes - Jack the Ripper (HKLM-x32\...\Real Crimes - Jack the Ripper_is1) (Version:  - Games Of The Month)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6196 - Realtek Semiconductor Corp.)
Recovery Manager (x32 Version: 5.5.3219 - CyberLink Corp.) Hidden
Revo Uninstaller 1.94 (HKLM-x32\...\Revo Uninstaller) (Version: 1.94 - VS Revo Group)
RoxioNow Player (HKLM-x32\...\{0EDEB615-1A60-425E-8306-0E10519C7B55}) (Version: 1.9.5.101 - RoxioNow)
Scratches Director's Cut (HKLM-x32\...\BFG-Scratches Director's Cut) (Version:  - )
ScummVM 1.4.1 (HKLM-x32\...\ScummVM_is1) (Version:  - The ScummVM Team)
Search App by Ask (HKLM-x32\...\{4F524A2D-5350-4500-76A7-A758B70C1200}) (Version: 12.18.0.82 - APN, LLC) <==== ATTENTION
Silent Hill (HKLM-x32\...\Silent Hill1.2.1) (Version:  - )
Silent Hill 2 (HKLM-x32\...\{D3C80E77-E549-4F76-BC07-61DDBD950345}) (Version:  - )
SILENT HILL 3 (HKLM-x32\...\InstallShield_{14D10AAC-9737-454E-A247-8075C26C30E1}) (Version: 1.00.0000 - Konami Computer Entertainment Tokyo, Inc.)
SILENT HILL 3 (x32 Version: 1.00.0000 - Konami Computer Entertainment Tokyo, Inc.) Hidden
Skype™ 6.21 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.)
Special Enquiry Detail (HKLM-x32\...\Special Enquiry Detail) (Version:  - )
Spirit Of Wandering (HKLM-x32\...\Spirit Of Wandering_is1) (Version:  - Playrix Entertainment)
Still Life 2 (HKLM-x32\...\{82B72ABA-FB82-41BA-A129-3E9C1BE06D3F}_is1) (Version:  - Microids)
StillLife (HKLM-x32\...\{772753FC-98FF-4BB3-A93F-C006663633AD}) (Version:  - )
Strange Cases The Lighthouse Mystery Collectors Edition 1.00 (HKLM-x32\...\Strange Cases The Lighthouse Mystery Collectors Edition 1.00) (Version:  - )
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1158 - SUPERAntiSpyware.com)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Syberia (HKLM-x32\...\{E34E9B33-46EC-4252-A52F-DDA3978CC0AF}) (Version:  - )
Tales of Monkey Island (HKLM-x32\...\Tales of Monkey Island) (Version: 2.0.0.0 - Telltale Games)
The Black Mirror 1.0 (HKLM-x32\...\The Black Mirror_is1) (Version:  - The Adventure Company)
The Hardy Boys - The Perfect Crime 1.00 (HKLM-x32\...\The Hardy Boys - The Perfect Crime 1.00) (Version:  - )
The Lost Cases of 221B Baker St (HKLM-x32\...\The Lost Cases of 221B Baker St) (Version:  - )
The Lost Crown Uninstaller (HKLM-x32\...\{FAA2E296-811E-4636-9B27-110423F321DF}_is1) (Version: The Lost Crown 1.0 - Got Game Entertainment)
The Weather Channel App (HKLM-x32\...\{167158CE-1637-4167-8A1C-C2549EEA966A}) (Version: 1.00.0000 - The Weather Channel)
Twisted - A Haunted Carol (HKLM-x32\...\Twisted - A Haunted Carol1.0) (Version: 1.0 - Foxy Games)
Unity Web Player (HKU\S-1-5-21-2375802078-1423229213-3210898512-1001\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Vampireville (HKLM-x32\...\{0492E5AE-8B37-45E2-BE12-B2875ABF4061}) (Version: 1.00.0000 - Valusoft)
Visual Studio 2008 x64 Redistributables (HKLM-x32\...\{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}) (Version: 10.0.0.2 - AVG Technologies)
Visual Studio 2010 x64 Redistributables (HKLM\...\{21B133D6-5979-47F0-BE1C-F6A6B304693F}) (Version: 13.0.0.1 - AVG Technologies)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
WinRAR 4.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.01.0 - win.rar GmbH)
WinZip 16.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240C7}) (Version: 16.0.9661 - WinZip Computing, S.L. )
Yahoo! Detect (HKLM-x32\...\YTdetect) (Version:  - )
Zune (HKLM\...\Zune) (Version: 04.07.1404.01 - Microsoft Corporation)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

23-08-2014 06:16:43 Windows Update
27-08-2014 23:58:17 Windows Update
04-09-2014 13:18:40 Scheduled Checkpoint
12-09-2014 05:52:41 Scheduled Checkpoint
12-09-2014 07:00:57 Windows Update
19-09-2014 14:24:24 Scheduled Checkpoint
22-09-2014 00:53:58 Removed PicRec (x86)
25-09-2014 03:05:45 Windows Update
29-09-2014 19:30:00 Windows Modules Installer
01-10-2014 14:39:03 Windows Update
08-10-2014 20:25:44 Scheduled Checkpoint
08-10-2014 21:56:59 Removed System Requirements Lab
08-10-2014 22:12:05 Removed Google Earth.
16-10-2014 07:00:33 Windows Update
17-10-2014 17:23:04 Installed AVG 2015
17-10-2014 17:23:47 Installed AVG 2015
25-10-2014 16:55:59 Scheduled Checkpoint
01-11-2014 18:00:28 Scheduled Checkpoint
08-11-2014 23:12:14 Scheduled Checkpoint
11-11-2014 23:30:32 Installed Java 7 Update 71
12-11-2014 17:51:02 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-13 21:34 - 2013-01-06 14:30 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1       localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {028F92DA-48FC-49E2-B416-861990734479} - System32\Tasks\{C3334C67-1F03-4B5C-9894-5CA12E486645} => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28] (Disc Soft Ltd)
Task: {03B3740D-A6A9-46EF-9D70-DE4A41D4429E} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {07C67A52-7FF1-403D-886B-C464873C1CD7} - System32\Tasks\{E51282BF-64C5-47F9-88AE-C1EC07A3E998} => C:\Program Files (x86)\Infogrames\Alone in the Dark\launch.exe
Task: {0B457F80-19FA-4EF0-954B-618BCD4459D1} - System32\Tasks\{9DEC0A2A-B202-4913-9454-357676E596B6} => C:\Program Files (x86)\JoWood\Dead Reefs\DeadReefs.exe [2007-05-10] ()
Task: {0BCD9D75-F632-41D0-A692-0460FF7C4CC0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPSFUpdaterRedux => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company)
Task: {1599ACC0-6B19-46D9-8FCE-4A055F7957BF} - System32\Tasks\{5A442817-E42E-4A19-AEF8-940ACB36B688} => C:\Program Files (x86)\JoWood\Dead Reefs\DeadReefs.exe [2007-05-10] ()
Task: {15BD7F78-2306-4038-AFCB-6084B415CCB1} - System32\Tasks\{74852D3E-E9D6-4197-88E1-C87438D7861E} => E:\Autorun.exe
Task: {18C3FA7F-E49A-4EC7-A100-010AD73E7BC3} - System32\Tasks\{A071FA0A-7AB8-4484-957F-C4D3E94E2758} => C:\Games\Mystery Case Files - Return to Ravenhearst FINAL\ReturnToRavenhearst.exe [2008-11-25] ()
Task: {1965538A-79AD-4CCB-9C88-F4F151F46AED} - System32\Tasks\{C8D9D98D-DC8D-49BD-9FCF-F4AD91477A45} => E:\SETUP.EXE
Task: {1E7E6890-2AD5-4BFC-946A-1A9DAC03E030} - System32\Tasks\{132C9E2B-4059-43F4-BC9B-B931506F6273} => C:\Program Files (x86)\Infogrames\Alone in the Dark\launch.exe
Task: {2A6C928C-B3D3-4986-A743-DB82CCA01FCC} - System32\Tasks\{22B41B3C-48C4-4AD8-A483-3DB5336E5E29} => F:\setup.exe
Task: {2A741F5C-C64D-4BB5-BB25-65F5221E630B} - System32\Tasks\{456ACFE0-1C68-42C7-A338-515BDA329FED} => C:\Program Files (x86)\Infogrames\Alone in the Dark\alone4.exe
Task: {2B35E6E5-156B-4EDF-B7D8-0E83B6903403} - System32\Tasks\{556CE0AE-AA79-4FE0-AF43-62C7C4FFE8B9} => C:\Program Files (x86)\The Adventure Company\Microids\StillLife\StillLife.exe [2005-02-25] (Microids)
Task: {2DBF728C-4791-47FB-8DDC-0354C3A7A312} - System32\Tasks\{C741B2DA-2575-4271-B8FD-D8592A63F560} => Iexplore.exe http://ui.skype.com/...l?page=tsPlugin
Task: {2F79CCD0-4CB7-4995-808F-528DBD9C4224} - System32\Tasks\{AB62BF42-578F-403E-B149-4B792A65E20C} => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28] (Disc Soft Ltd)
Task: {309B29C6-906D-4E2B-9603-CA2BFB688BB4} - System32\Tasks\{1E68C661-1C14-499D-ACCF-12C6AEB6C2E3} => C:\Program Files (x86)\JoWood\Dead Reefs\DeadReefs.exe [2007-05-10] ()
Task: {334635DB-2505-4ACA-9522-BCD869750458} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-09-26] (Piriform Ltd)
Task: {367E5CA8-75C9-4E20-8EC1-28CDBF231B63} - System32\Tasks\{667510FF-A301-4D6D-89BB-026A580166A3} => C:\Program Files (x86)\Infogrames\Alone in the Dark\launch.exe
Task: {3DBC9312-CDAA-4FD5-940B-0241403F51E8} - System32\Tasks\HPCeeScheduleForDee => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-14] (Hewlett-Packard)
Task: {3F5D6C06-D22B-4DDF-9CB6-E1282819E95C} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2375802078-1423229213-3210898512-1001UA => C:\Users\Dee\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-11] (Facebook Inc.)
Task: {46546E58-3553-4A9E-8CF3-15BFEB5E2C64} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-2375802078-1423229213-3210898512-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe
Task: {4BEF317D-DE0C-46DE-BC45-53BEE3AE594E} - System32\Tasks\{D06121D6-2287-4758-A5E6-EC89C098434F} => C:\Program Files\Dracula\Dracula.exe
Task: {4C560A27-54EF-46AC-9C85-8655F8D722E6} - System32\Tasks\{3CC02348-781A-47F3-AF93-BA43E91BD6D6} => C:\Program Files (x86)\Lexmark X1100 Series\LXBKaiox.exe [2008-02-28] (Lexmark International Inc.)
Task: {4DEC86A8-1473-481D-8400-F6753C0BD2E2} - System32\Tasks\{57D3F9A2-D81D-4A21-8BC6-77CC0628DFB0} => F:\setup.exe
Task: {50B664B7-FD72-48D1-8F55-7D8B9837C61B} - System32\Tasks\{8561A938-D660-4CDA-8859-DCC9FE5971AB} => C:\Program Files (x86)\JoWood\Dead Reefs\DeadReefs.exe [2007-05-10] ()
Task: {51B909C4-1609-4C1C-AB8C-470A37B9B15C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-13] (Adobe Systems Incorporated)
Task: {54F64ACE-2D92-4AB4-A69F-E1AD7077CF29} - System32\Tasks\{6E9A8369-EA70-4AA0-B28C-69BFC0A8680A} => C:\Program Files (x86)\LucasArts\Monkey Island 2 LeChucks Revenge Special Edition\Monkey2.exe [2010-07-29] (LucasArts Entertainment Company)
Task: {5AC79809-FDA4-49C0-888C-C31EA80CEB5F} - System32\Tasks\{917CEBF9-30CC-440A-99B7-885CB6253FD4} => C:\Program Files (x86)\Infogrames\Alone in the Dark\launch.exe
Task: {5BD00DF0-57E4-4034-855A-CB1F69ABAAE0} - System32\Tasks\{8B67C7FC-56EE-4C42-B9B7-389C2E2E69BA} => C:\Program Files (x86)\Infogrames\Alone in the Dark\launch.exe
Task: {5C67DBE9-60A1-4423-9083-79265BA46C4B} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-2375802078-1423229213-3210898512-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe
Task: {5C893F50-0FB9-4CE4-BB89-506BC84A5126} - System32\Tasks\{6D1BB78E-9133-45BA-8B81-3F0EF72AF965} => C:\Program Files (x86)\Infogrames\Alone in the Dark\launch.exe
Task: {68C878CE-0868-4CCA-BB99-8FBE0C6B08C7} - System32\Tasks\{0A1ECBBD-38D6-4002-A2BF-EFD90C1221A7} => C:\Program Files (x86)\Infogrames\Alone in the Dark\launch.exe
Task: {696A858C-53D1-4AEE-A69B-030B30F0DFE9} - System32\Tasks\{75D41914-62B4-47C5-8028-A16BD455E339} => E:\Autorun.exe
Task: {696BF2E1-CF57-4AB9-891F-C66A28B628AA} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {6AF4036E-A86E-46ED-BE34-8A51BB3952FB} - System32\Tasks\{A38A964D-3ADC-4E59-B0DE-99D614DA5B16} => F:\Setup.exe
Task: {6B66A3AC-44B9-4EE4-988F-6BC8042B4A56} - System32\Tasks\{7AD357B9-62F9-4799-AAFD-1916308899B5} => C:\Program Files (x86)\Infogrames\Alone in the Dark\launch.exe
Task: {6FFE40F6-C584-47ED-9F67-72EB1EC91BC5} - System32\Tasks\{83BD8486-22C1-4153-8CBD-BE9971C171EB} => C:\Program Files (x86)\Infogrames\Alone in the Dark\launch.exe
Task: {70A80D36-CFBB-4A2E-9B0E-00375AD35285} - System32\Tasks\{0DCF4268-4094-4882-A3EE-60AC55424AF7} => C:\Users\Dee\Downloads\Art Card Factory\Art Card Factory\Bin\demo32.exe [2006-11-01] (Macrovision Corporation)
Task: {71913D59-E7F1-4225-AEA9-84BD7EB47E46} - System32\Tasks\{8C72900E-CD6A-41B3-8D91-6445E34FE221} => C:\Program Files (x86)\Infogrames\Alone in the Dark\launch.exe
Task: {738EDDE9-33CF-45E1-ADBB-8A2E2E7682C2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {7CCFF329-73F2-462A-8E15-0150BF098DB7} - System32\Tasks\{6B264E2A-E7FA-4D17-91D1-71E5E9E3F14D} => C:\Program Files (x86)\Infogrames\Alone in the Dark\alone4.exe
Task: {7FB87FCB-63B6-4019-87A5-E239AEB000FA} - System32\Tasks\{8AA4C1EB-1258-4AB1-B8BC-49B7058AEAC3} => C:\Program Files (x86)\JoWood\Dead Reefs\DeadReefs.exe [2007-05-10] ()
Task: {87309EC1-853B-43FC-BF24-B38C8D758E5F} - System32\Tasks\{E67D5E4A-E800-474C-B146-0BDC3247F0E7} => C:\Program Files (x86)\Infogrames\Alone in the Dark\launch.exe
Task: {930375CB-9084-45C2-9809-35C50A214386} - System32\Tasks\{8809C920-5135-4516-8FB4-1D4A540911F9} => C:\Program Files (x86)\Games\Mystery Case Files - Ravenhearst\MCF Ravenhearst.exe
Task: {97570817-03FD-44E9-AF62-DB083923AB0C} - System32\Tasks\{B2EB1194-6AC7-4751-BC5A-EF6809CBD632} => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28] (Disc Soft Ltd)
Task: {9B662B69-02A5-4B8F-AB32-7BBC233BF090} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2014-03-21] (Hewlett-Packard)
Task: {9CA5234B-0376-4178-81F7-800A4F1A60A8} - System32\Tasks\{10D41F78-5492-4AC4-A43C-C269B624736F} => F:\Setup.exe
Task: {9D770756-FA8F-492B-8F53-A9EAC891C95E} - System32\Tasks\{CA26E7D5-59F0-48A6-B3CF-54F16B4F8837} => C:\Users\Dee\Desktop\Games\NDSecretsCanKill\SETUP.EXE [2075-12-22] (InstallShield Software Corporation)
Task: {A0BE9590-9290-4DCC-B443-983B4F26DEE6} - System32\Tasks\{4AA732C4-A333-4645-BD9C-7B30FAC8B9B7} => C:\Program Files (x86)\JoWood\Dead Reefs\DeadReefs.exe [2007-05-10] ()
Task: {A1AE36E3-C94F-41F6-A8B7-B86C8F4CA8DF} - System32\Tasks\{D7D1C7E3-14F9-4230-8639-A708D727C147} => C:\Program Files (x86)\The Adventure Company\Microids\StillLife\StillLife.exe [2005-02-25] (Microids)
Task: {A2ED2E14-02B0-449D-B694-0D06429AE0B1} - System32\Tasks\{FF2DA5D6-9D77-4B3D-B53E-C0E5122C7AE8} => E:\autorun.exe
Task: {A62AAB54-DEF4-42CD-A7BD-B592B448D730} - System32\Tasks\{0A1428A8-538A-4A6B-9386-3761CABBCC3E} => C:\Program Files (x86)\Smart Projects\IsoBuster\IsoBuster.exe [2011-01-04] (Smart Projects)
Task: {AD89DB19-6734-4B56-A291-2CA6C0C7F4C0} - System32\Tasks\{961191EC-F7DA-4844-A458-9D02EE35B504} => C:\Users\Dee\Desktop\Games\NDSecretsCanKill\SETUP.EXE [2075-12-22] (InstallShield Software Corporation)
Task: {B11EF2A2-85B3-4066-A964-182964ECF738} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {B14A432E-3D8E-45C7-A963-0EA903FFB2A1} - System32\Tasks\{B846FA08-A96E-4814-9C87-C1B9D1221021} => C:\Program Files (x86)\Midnight Mysteries - The Edgar Allan Poe Conspiracy\Midnight Mysteries - Edgar Allan Poe Conspiracy.exe
Task: {B62E05FF-4716-4848-9868-81B5C3BCDEC2} - System32\Tasks\{CF5873A4-D801-44A8-BE26-74D28C50AA43} => C:\Program Files (x86)\Infogrames\Alone in the Dark\launch.exe
Task: {C4501EAD-8370-40EE-AA19-D066D4BE6514} - System32\Tasks\{570BE3C4-A03D-497E-9095-21BCC2A163F7} => C:\Program Files (x86)\JoWood\Dead Reefs\DeadReefs.exe [2007-05-10] ()
Task: {C8FA296F-992C-4B3A-8B59-989D548ECE24} - System32\Tasks\{44BEAEF1-E393-4B15-9244-1D2BEA2951F9} => C:\Program Files (x86)\Microids\Still Life 2\SL2.exe [2009-05-13] ()
Task: {CDD54044-B341-4910-BF83-770EFA602526} - System32\Tasks\{D91D1B24-3FA4-4762-A60F-0F4F6006867F} => C:\Program Files (x86)\Infogrames\Alone in the Dark\launch.exe
Task: {CE444F14-D5D7-4A65-8A8F-C2F6E50C34B8} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company)
Task: {D0305BE4-4F12-4D6A-90F8-4F1D494B3285} - System32\Tasks\{95824927-69A7-49AE-BECD-9C1F3D65E279} => F:\Setup.exe
Task: {D40FB30E-EAD6-4BA3-88B5-6C4FA4D844FF} - System32\Tasks\{6348F8CC-C334-448D-8844-720E8B5C411D} => C:\Program Files (x86)\Infogrames\Alone in the Dark\launch.exe
Task: {D543D7BD-03F9-41F5-AAA6-EEA47BCA55D6} - System32\Tasks\{BCD8BE0F-10E4-4688-9CAE-122149D2F582} => C:\Program Files (x86)\Infogrames\Alone in the Dark\launch.exe
Task: {DACD8238-1DAA-4030-99C0-C266DE28CDA4} - System32\Tasks\{FC3CC792-443F-43B7-96B9-4678199FB686} => C:\Program Files (x86)\Infogrames\Alone in the Dark\alone4.exe
Task: {E5586728-93E9-4B99-8489-F667B7048220} - System32\Tasks\{44EEF1BD-98BA-42A5-A0FE-C77A852144AF} => C:\Program Files (x86)\JoWood\Dead Reefs\DeadReefs.exe [2007-05-10] ()
Task: {F78FE935-A501-4554-A5F0-10E94C4FCF61} - System32\Tasks\SidebarExecute => C:\Program Files\Windows Sidebar\sidebar.exe
Task: {FCD610E8-7A43-4FBE-A73C-650245753109} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2375802078-1423229213-3210898512-1001Core => C:\Users\Dee\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-11] (Facebook Inc.)
Task: {FE9CA5A7-9A93-4281-A6A9-427DF591CF52} - System32\Tasks\{F3138F75-FD11-450A-8AB3-89357F1B8890} => C:\Users\Dee\Downloads\Mystery Case Files - Dire Grove Collector's Edition\Mystery Case Files - Dire Grove Collector's Edition.exe [2011-04-02] ()
Task: {FFC400F2-33C1-40CE-8C09-145E4D58E42C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2375802078-1423229213-3210898512-1001Core.job => C:\Users\Dee\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2375802078-1423229213-3210898512-1001UA.job => C:\Users\Dee\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForDee.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Loaded Modules (whitelisted) =============

2012-06-11 12:12 - 2012-06-11 12:12 - 00073728 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2005-09-13 16:27 - 2005-09-13 16:27 - 00054784 _____ () C:\Windows\system32\lxbkcnv4.dll
2012-08-29 12:34 - 2006-09-19 08:07 - 00827392 _____ () C:\Windows\vsnpstd3.exe
2012-06-11 12:12 - 2012-06-11 12:12 - 00103424 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2013-04-29 23:08 - 2013-04-29 23:08 - 00369152 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2013-06-18 15:49 - 2013-06-18 15:49 - 00016384 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\Temp:1A15E356
AlternateDataStreams: C:\ProgramData\Temp:689AB7E9
AlternateDataStreams: C:\ProgramData\Temp:8E5EA40F
AlternateDataStreams: C:\ProgramData\Temp:CB299F13
AlternateDataStreams: C:\ProgramData\Temp:F610C203
AlternateDataStreams: C:\Users\Dee\Documents\Oohrah1.jpg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}
AlternateDataStreams: C:\Users\Dee\Documents\Project1.jpg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}
AlternateDataStreams: C:\Users\Dee\Documents\Verizonphoneno.png:SummaryInformation
AlternateDataStreams: C:\Users\Dee\Documents\Verizonphoneno.png:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: Bonjour Service => 2
MSCONFIG\startupreg: Akamai NetSession Interface => C:\Users\Dee\AppData\Local\Akamai\netsession_win.exe
MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: lxbkbmgr.exe => "C:\Program Files (x86)\Lexmark X1100 Series\lxbkbmgr.exe"
MSCONFIG\startupreg: Weather => C:\Program Files (x86)\AWS\WeatherBug\Weather.exe 1

========================= Accounts: ==========================

Administrator (S-1-5-21-2375802078-1423229213-3210898512-500 - Administrator - Disabled)
Dee (S-1-5-21-2375802078-1423229213-3210898512-1001 - Administrator - Enabled) => C:\Users\Dee
Ethan (S-1-5-21-2375802078-1423229213-3210898512-1011 - Administrator - Enabled) => C:\Users\Ethan
Guest (S-1-5-21-2375802078-1423229213-3210898512-501 - Limited - Disabled) => C:\Users\Guest
HomeGroupUser$ (S-1-5-21-2375802078-1423229213-3210898512-1018 - Limited - Enabled)
Jared (S-1-5-21-2375802078-1423229213-3210898512-1003 - Administrator - Enabled) => C:\Users\Jared

==================== Faulty Device Manager Devices =============

Name: Microsoft Teredo Tunneling Adapter
Description: Microsoft Teredo Tunneling Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (11/17/2014 11:21:57 AM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
Error: HTTP status 404: The requested URL does not exist on the server.
 ErrorCode: 14007(0x36b7).

Error: (11/17/2014 10:33:41 AM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
Error: HTTP status 404: The requested URL does not exist on the server.
 ErrorCode: 14007(0x36b7).

Error: (11/15/2014 02:52:47 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
Error: HTTP status 404: The requested URL does not exist on the server.
 ErrorCode: 14007(0x36b7).

Error: (11/14/2014 00:48:11 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
Error: HTTP status 404: The requested URL does not exist on the server.
 ErrorCode: 14007(0x36b7).

Error: (11/14/2014 11:23:14 AM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
Error: HTTP status 404: The requested URL does not exist on the server.
 ErrorCode: 14007(0x36b7).

Error: (11/14/2014 07:54:39 AM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
Error: HTTP status 404: The requested URL does not exist on the server.
 ErrorCode: 14007(0x36b7).

Error: (11/14/2014 07:43:32 AM) (Source: MSMQ) (EventID: 2170) (User: )
Description: Message Queuing failed to bind to port 1801. The port may already be bound to another process. Make sure that the port is free and try to start Message Queuing again. If this problem arises during setup, you must free the port and run setup again.

Error: (11/13/2014 09:23:55 AM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
Error: HTTP status 404: The requested URL does not exist on the server.
 ErrorCode: 14007(0x36b7).

Error: (11/12/2014 06:38:14 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
Error: HTTP status 404: The requested URL does not exist on the server.
 ErrorCode: 14007(0x36b7).

Error: (11/12/2014 08:51:14 AM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
Error: HTTP status 404: The requested URL does not exist on the server.
 ErrorCode: 14007(0x36b7).


System errors:
=============
Error: (11/18/2014 01:20:05 PM) (Source: Server) (EventID: 2505) (User: )
Description: The server could not bind to the transport \Device\NetBT_Tcpip_{432B7047-F37C-472D-84E5-7CC3CF766BD8} because another computer on the network has the same name.  The server could not start.

Error: (11/18/2014 00:21:36 PM) (Source: SNMP) (EventID: 1500) (User: )
Description: The SNMP Service encountered an error while accessing the registry key SYSTEM\CurrentControlSet\Services\SNMP\Parameters\TrapConfiguration.

Error: (11/18/2014 00:21:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The AODDriver4.1 service failed to start due to the following error:
%%2

Error: (11/17/2014 10:50:11 AM) (Source: SNMP) (EventID: 1500) (User: )
Description: The SNMP Service encountered an error while accessing the registry key SYSTEM\CurrentControlSet\Services\SNMP\Parameters\TrapConfiguration.

Error: (11/17/2014 10:49:46 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The AODDriver4.1 service failed to start due to the following error:
%%2

Error: (11/15/2014 02:42:26 PM) (Source: SNMP) (EventID: 1500) (User: )
Description: The SNMP Service encountered an error while accessing the registry key SYSTEM\CurrentControlSet\Services\SNMP\Parameters\TrapConfiguration.

Error: (11/15/2014 02:42:09 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The AODDriver4.1 service failed to start due to the following error:
%%2

Error: (11/15/2014 02:33:15 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The AODDriver4.1 service failed to start due to the following error:
%%2

Error: (11/15/2014 02:32:57 PM) (Source: SNMP) (EventID: 1500) (User: )
Description: The SNMP Service encountered an error while accessing the registry key SYSTEM\CurrentControlSet\Services\SNMP\Parameters\TrapConfiguration.

Error: (11/15/2014 02:32:30 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The AODDriver4.1 service failed to start due to the following error:
%%2


Microsoft Office Sessions:
=========================
Error: (11/17/2014 11:21:57 AM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Error: HTTP status 404: The requested URL does not exist on the server.
 ErrorCode: 14007(0x36b7).

Error: (11/17/2014 10:33:41 AM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Error: HTTP status 404: The requested URL does not exist on the server.
 ErrorCode: 14007(0x36b7).

Error: (11/15/2014 02:52:47 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Error: HTTP status 404: The requested URL does not exist on the server.
 ErrorCode: 14007(0x36b7).

Error: (11/14/2014 00:48:11 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Error: HTTP status 404: The requested URL does not exist on the server.
 ErrorCode: 14007(0x36b7).

Error: (11/14/2014 11:23:14 AM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Error: HTTP status 404: The requested URL does not exist on the server.
 ErrorCode: 14007(0x36b7).

Error: (11/14/2014 07:54:39 AM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Error: HTTP status 404: The requested URL does not exist on the server.
 ErrorCode: 14007(0x36b7).

Error: (11/14/2014 07:43:32 AM) (Source: MSMQ) (EventID: 2170) (User: )
Description:

Error: (11/13/2014 09:23:55 AM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Error: HTTP status 404: The requested URL does not exist on the server.
 ErrorCode: 14007(0x36b7).

Error: (11/12/2014 06:38:14 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Error: HTTP status 404: The requested URL does not exist on the server.
 ErrorCode: 14007(0x36b7).

Error: (11/12/2014 08:51:14 AM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Error: HTTP status 404: The requested URL does not exist on the server.
 ErrorCode: 14007(0x36b7).


CodeIntegrity Errors:
===================================
  Date: 2013-01-06 14:26:32.607
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2013-01-06 14:26:32.573
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2013-01-06 14:26:32.538
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2013-01-06 14:26:32.504
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2012-12-29 15:00:38.441
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2012-12-29 15:00:38.405
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2012-12-29 15:00:38.369
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2012-12-29 15:00:38.334
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2012-12-16 03:59:35.713
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2012-12-16 03:59:35.682
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info ===========================

Processor: AMD Phenom™ II X4 840T Processor
Percentage of memory in use: 30%
Total physical RAM: 5887.29 MB
Available physical RAM: 4096.25 MB
Total Pagefile: 11772.75 MB
Available Pagefile: 9502 MB
Total Virtual: 8192 MB
Available Virtual: 8191.81 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:918.16 GB) (Free:544.6 GB) NTFS
Drive d: (HP_RECOVERY) (Fixed) (Total:13.25 GB) (Free:1.63 GB) NTFS ==>[System with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 68B067D0)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=918.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=13.3 GB) - (Type=07 NTFS)

==================== End Of Log ============================

 

 



LastRegBack: 2014-11-15 15:30

==================== End Of Log ============================

 

 

Shortcut Log:

 

Users shortcut scan result (x64) Version: 17-11-2014
Ran by Dee at 2014-11-18 15:57:17
Running from C:\Users\Dee\Desktop
Boot Mode: Normal
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)



Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Blio.lnk -> C:\Program Files (x86)\K-NFB Reading Technology Inc\Blio\KNFB.Reader.exe (K-NFB Reading Technology)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk -> C:\Program Files\WinZip\WINZIP64.EXE (WinZip Computing, S.L.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amazon Music Importer.lnk -> C:\Program Files (x86)\Amazon\Utilities\Amazon Music Importer\Amazon Music Importer.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk -> C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink DVD Suite Deluxe.lnk -> C:\Program Files (x86)\CyberLink\CyberLink DVD Suite Deluxe\PS.exe (CyberLink Corp.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk -> C:\Windows\ehome\ehshell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2010.lnk -> C:\Windows\Installer\{95140000-0070-0000-0000-0000000FF1CE}\oobeicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Picture It! Photo Premium 9.lnk -> C:\Program Files (x86)\Microsoft Picture It! 9\pi.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft PowerPoint Viewer .lnk -> C:\Windows\Installer\{95140000-00AF-0409-0000-0000000FF1CE}\ppvwicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Private Eye.lnk -> C:\Program Files (x86)\Private Eye\Private Eye.exe (GameAgents Corp)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Snapfish PictureMover.lnk -> C:\Program Files (x86)\PictureMover\Bin\PictureMover.exe (Hewlett-Packard Company)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk -> C:\Windows\System32\WindowsAnytimeUpgradeUI.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk -> C:\Program Files\DVD Maker\DVDMaker.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk -> C:\Program Files (x86)\Windows Live\Mail\wlmail.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zune\Zune.lnk -> C:\Program Files\Zune\Zune.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip\WinZip 16.0.lnk -> C:\Program Files\WinZip\WINZIP64.EXE (WinZip Computing, S.L.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Console RAR manual.lnk -> C:\Program Files\WinRAR\Rar.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR help.lnk -> C:\Program Files\WinRAR\WinRAR.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Writer.lnk -> C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriter.exe (Microsoft Corp.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vampireville\Vampireville.lnk -> C:\Program Files (x86)\Vampireville\Vampireville.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\User Guides\Operating Specifications.lnk -> C:\swsetup\HP Documentation\WW\OPS\624353-SJ2.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\User Guides\Safety and Comfort Guide.lnk -> C:\swsetup\HP Documentation\EN\SCG\417893-003.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\User Guides\Safety and Regulatory Information.lnk -> C:\swsetup\HP Documentation\EN\SRI\418213-402.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\User Guides\Upgrading and Servicing Guide.lnk -> C:\swsetup\HP Documentation\EN\USG\537486-001.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Weather Channel\Desktop Weather\Desktop Weather.lnk -> C:\Windows\Installer\{167158CE-1637-4167-8A1C-C2549EEA966A}\NewShortcut1_E1DB0AA6C51842C8A931A1FC36711E51.exe (Flexera Software LLC)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Lost Crown\Settings.lnk -> C:\Program Files (x86)\The Lost Crown\Settings.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Lost Crown\The Lost Crown.lnk -> C:\Program Files (x86)\The Lost Crown\TheLostCrown_Splash.exe (Macromedia, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Lost Crown\www.GotGameEntertainment.com.lnk -> C:\Program Files (x86)\The Lost Crown\Got Game Entertainment.URL ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\The Black Mirror\Configuration.lnk -> C:\Program Files (x86)\The Adventure Company\The Black Mirror\Config.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\The Black Mirror\Readme.lnk -> C:\Program Files (x86)\The Adventure Company\The Black Mirror\readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\The Black Mirror\The Adventure Company Website.lnk -> C:\Program Files (x86)\The Adventure Company\The Black Mirror\BlackMirror.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\The Black Mirror\The Black Mirror.lnk -> C:\Program Files (x86)\The Adventure Company\The Black Mirror\BMirror.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\The Black Mirror\Uninstall The Black Mirror.lnk -> C:\Program Files (x86)\The Adventure Company\The Black Mirror\unins000.exe (Jordan Russell)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\Microids\StillLife\Readme.lnk -> C:\Program Files (x86)\The Adventure Company\Microids\StillLife\ReadMe.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\Microids\StillLife\StillLife.lnk -> C:\Program Files (x86)\The Adventure Company\Microids\StillLife\StillLife.exe (Microids)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\Microids\StillLife\Uninstall.lnk -> C:\Program Files (x86)\The Adventure Company\Microids\StillLife\Uninstall\Setup.exe (InstallShield Software Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\Microids\Obscure\Obscure Demo.lnk -> C:\Program Files (x86)\The Adventure Company\Microids\StillLife\ObscureDemo.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\Dark Fall\Dark Fall.lnk -> C:\Program Files\The Adventure Company\Dark Fall\darkfall.exe (Macromedia, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\Dark Fall\ReadMe.lnk -> C:\Program Files\The Adventure Company\Dark Fall\ReadMe.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\Dark Fall\The Adventure Company.lnk -> C:\Program Files\The Adventure Company\Dark Fall\The Adventure Company.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\Dark Fall\Uninstall Dark Fall.lnk -> C:\Program Files\The Adventure Company\Dark Fall\Uninstal.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\Dark Fall\XXv Productions.lnk -> C:\Program Files\The Adventure Company\Dark Fall\XXv Productions London.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\And Then There Were None\Agatha Christie - And Then There Were None.lnk -> C:\Program Files (x86)\The Adventure Company\And Then There Were None\ac.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\And Then There Were None\View README.lnk -> C:\Program Files (x86)\The Adventure Company\And Then There Were None\readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Telltale Games\Back to the Future The Game\Episode 1.lnk -> C:\Program Files (x86)\Telltale Games\Back to the Future The Game\Episode 1\BackToTheFuture101.exe (Telltale Games)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Telltale Games\Back to the Future The Game\Uninstall\Uninstall - Episode 1.lnk -> C:\Program Files (x86)\Telltale Games\Back to the Future The Game\UNINSTALL_BackToTheFuture101.exe (Telltale Games)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Syberia\Readme.lnk -> C:\Program Files (x86)\Syberia\readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Syberia\Syberia.lnk -> C:\Program Files (x86)\Syberia\Syberia.exe (Microids Canada)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Syberia\Uninstall.lnk -> C:\Program Files (x86)\Syberia\Uninstall\Setup.exe (InstallShield Software Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Alternate Start.lnk -> C:\Program Files\SUPERAntiSpyware\RUNSAS.EXE (SUPERAdBlocker.com and SUPERAntiSpyware.com)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Free Edition.lnk -> C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Help.lnk -> C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.chm (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled\Event Planner Reminder 2009.lnk -> C:\Windows\Installer\{C4609419-C11E-4CE6-B369-F3F8A7DDD94C}\Shortcut_EventPlan_E2FBA8F7F7FD4C5EAA7D652BB0CAAA9D.exe (Macrovision Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype\Skype.lnk -> C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Technologies S.A.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Silent Hill\Readme.lnk -> C:\Program Files (x86)\Silent Hill\Readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Silent Hill\Silent Hill.lnk -> C:\Program Files (x86)\Silent Hill\Silent Hill.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScummVM\Authors.lnk -> C:\Program Files (x86)\ScummVM\AUTHORS.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScummVM\Copying.LGPL.lnk -> C:\Program Files (x86)\ScummVM\COPYING.LGPL.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScummVM\Copying.lnk -> C:\Program Files (x86)\ScummVM\COPYING.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScummVM\Copyright.lnk -> C:\Program Files (x86)\ScummVM\COPYRIGHT.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScummVM\News.lnk -> C:\Program Files (x86)\ScummVM\NEWS.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScummVM\QuickStart.lnk -> C:\Program Files (x86)\ScummVM\QUICKSTART.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScummVM\Readme.lnk -> C:\Program Files (x86)\ScummVM\README.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScummVM\ScummVM.lnk -> C:\Program Files (x86)\ScummVM\scummvm.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScummVM\Uninstall  ScummVM.lnk -> C:\Program Files (x86)\ScummVM\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Scratches Director's Cut\Play Scratches Director's Cut.lnk -> C:\Users\Dee\Scratches Director's Cut\launchgame.bfg ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roxio\RoxioNow\HP MovieStore.lnk -> C:\Program Files (x86)\Hewlett-Packard\MediaSmart\RoxioNow\RNow.exe (Sonic Solutions)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Red Orb Entertainment\John Saul's Blackstone Chronicles\John Saul's Blackstone Chronicles.lnk -> C:\Program Files (x86)\Red Orb Entertainment\John Saul's Blackstone Chronicles\BSC.EXE ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery Manager\Recovery Disc Creation.lnk -> C:\Program Files (x86)\Hewlett-Packard\Recovery\CDCreator.exe (CyberLink)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery Manager\Recovery Manager.lnk -> C:\Program Files (x86)\Hewlett-Packard\Recovery\RecoveryMgr.exe (CyberLink)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime\About QuickTime.lnk -> C:\Windows\Installer\{AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A}\RichText.ico ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime\PictureViewer.lnk -> C:\Windows\Installer\{AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A}\PictureViewer.ico ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime\QuickTime Player.lnk -> C:\Windows\Installer\{AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A}\QTPlayer.ico ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Private Eye\Private Eye.lnk -> C:\Program Files (x86)\Private Eye\Private Eye.exe (GameAgents Corp)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Playrix Entertainment\Spirit Of Wandering\Play More Playrix Games!.lnk -> C:\Program Files (x86)\Playrix Entertainment\Spirit Of Wandering\homepage.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Playrix Entertainment\Spirit Of Wandering\Spirit Of Wandering.lnk -> C:\Program Files (x86)\Playrix Entertainment\Spirit Of Wandering\Spirit.exe (Artogon Studio)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Playrix Entertainment\Spirit Of Wandering\Uninstall Spirit Of Wandering.lnk -> C:\Program Files (x86)\Playrix Entertainment\Spirit Of Wandering\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Playrix Entertainment\Mystery of Mortlake Mansion\Mystery of Mortlake Mansion.lnk -> C:\Program Files (x86)\Playrix Entertainment\Mystery of Mortlake Mansion\MortlakeMansion.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Playrix Entertainment\Mystery of Mortlake Mansion\Play More Playrix Games!.lnk -> C:\Program Files (x86)\Playrix Entertainment\Mystery of Mortlake Mansion\homepage.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Playrix Entertainment\Mystery of Mortlake Mansion\Uninstall Mystery of Mortlake Mansion.lnk -> C:\Program Files (x86)\Playrix Entertainment\Mystery of Mortlake Mansion\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Playrix Entertainment\Elementals - The Magic Key\Elementals - The Magic Key.lnk -> C:\Program Files (x86)\Playrix Entertainment\Elementals - The Magic Key\Elementals-TheMagicKey.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Playrix Entertainment\Elementals - The Magic Key\Play More Playrix Games!.lnk -> C:\Program Files (x86)\Playrix Entertainment\Elementals - The Magic Key\homepage.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Playrix Entertainment\Elementals - The Magic Key\Uninstall Elementals - The Magic Key.lnk -> C:\Program Files (x86)\Playrix Entertainment\Elementals - The Magic Key\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pirateville\Pirateville.lnk -> C:\Program Files (x86)\Pirateville\Pirateville.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Complete\PDF Complete.lnk -> C:\Program Files (x86)\PDF Complete\pdfvista.exe (PDF Complete Inc)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Help & Tools\HP support information.lnk -> C:\Program Files (x86)\Hewlett-Packard\HP Support Information\HPSysInfo.exe (Hewlett-Packard Development Company, L.P.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Help & Tools\HP Vision Diagnostics Disc Creation.lnk -> C:\Program Files\Hewlett-Packard\HP Vision Hardware Diagnostics\DiscCreation\disccreation.exe (Hewlett-Packard)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Out Of Order\OOO Display Setup.lnk -> C:\Program Files\Games\Out Of Order\OOO Display Setup.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Out Of Order\Out Of Order documentation.lnk -> C:\Program Files\Games\Out Of Order\ooodoc\contents.html ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Out Of Order\Out Of Order.lnk -> C:\Program Files\Games\Out Of Order\Out Of Order.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Out Of Order\Uninstall Out Of Order.lnk -> C:\Program Files\Games\Out Of Order\Uninstall.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Online Services\Skype.lnk -> C:\Program Files (x86)\Online Services\Skype\SkypeSetup.exe (Skype Technologies S.A.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nova Development\Greeting Card Factory Photo Card Maker.lnk -> C:\Windows\Installer\{9C627F78-DBB9-4293-AA89-E83119C39CE9}\NewShortcut4_9C627F78DBB94293AA89E83119C39CE9.exe (Macrovision Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nancy Drew Dossier\Resorting to Danger\Resorting to Danger.lnk -> C:\Program Files (x86)\Nancy Drew Dossier\Resorting to Danger\ResortingToDanger.exe (Her Interactive)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nancy Drew Dossier\Lights, Camera, Curses!\Lights, Camera, Curses!.lnk -> C:\Program Files (x86)\Nancy Drew Dossier\Lights, Camera, Curses!\Curses.exe (Her Interactive)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nancy Drew - Curse of Blackmoor Manor\CURManual.txt.lnk -> C:\Program Files\Nancy Drew\Curse of Blackmoor Manor\CURManual.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nancy Drew - Curse of Blackmoor Manor\Nancy Drew - Curse of Blackmoor Manor.lnk -> C:\Program Files\Nancy Drew\Curse of Blackmoor Manor\Game.exe (Her Interactive)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nancy Drew - Curse of Blackmoor Manor\Uninstall.lnk -> C:\Program Files\Nancy Drew\Curse of Blackmoor Manor\Uninstall.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nancy Drew\Ghost Dogs of Moon Lake.lnk -> C:\Users\Dee\Desktop\Games\NancyDrewGhostDogs\Game.exe (Her Interactive)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nancy Drew\Message in a Haunted Mansion.lnk -> C:\Users\Dee\Desktop\Games\NancyDrewMessageinHauntedMansion\Game.exe (Her Interactive)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nancy Drew\Play Nancy Drew Games.lnk -> C:\Program Files (x86)\Nancy Drew\Nancy Drew Central\NancyDrew.Central.exe (Her Interactive)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nancy Drew\Uninstall Ghost Dogs of Moon Lake.lnk -> C:\Users\Dee\Desktop\Games\NancyDrewGhostDogs\Setup.exe (InstallShield Software Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nancy Drew\Uninstall Message in a Haunted Mansion.lnk -> C:\Users\Dee\Desktop\Games\NancyDrewMessageinHauntedMansion\Setup.exe (InstallShield Software Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nancy Drew\Ransom of the Seven Ships\Play Ransom of the Seven Ships.lnk -> C:\Program Files (x86)\Nancy Drew\Ransom of the Seven Ships\Ransom.exe (Her Interactive)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nancy Drew\Ransom of the Seven Ships\Read Manual.lnk -> C:\Program Files (x86)\Nancy Drew\Ransom of the Seven Ships\Ransom_Manual.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mystery in London\Mystery in London.lnk -> C:\Program Files (x86)\Mystery in London\MysteryInLondon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mystery in London\Uninstall.lnk -> C:\Program Files (x86)\Mystery in London\Uninstall.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mystery Case Files Prime Suspects\Mystery Case Files Prime Suspects.lnk -> C:\Program Files (x86)\Mystery Case Files Prime Suspects\play.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mystery Case Files Prime Suspects\Uninstall Mystery Case Files Prime Suspects.lnk -> C:\Program Files (x86)\Mystery Case Files Prime Suspects\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mystery Case Files - Huntsville\Mystery Case Files - Huntsville.lnk -> C:\Program Files (x86)\Mystery Case Files - Huntsville\MysteryCaseFiles.exe (Copyright © 2005 Big Fish Games)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mystery Case Files - Huntsville\Uninstall.lnk -> C:\Program Files (x86)\Mystery Case Files - Huntsville\Uninstall.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mystery Case Files - 13th Skull Collectors Edition\1. Mystery Case Files - 13th Skull Collectors Edition.lnk -> C:\Program Files (x86)\LeeGT-Games\Mystery Case Files - 13th Skull Collectors Edition\MCF7Collectors.exe (Big Fish Games                      )
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mystery Case Files - 13th Skull Collectors Edition\2. KEYGEN- Security Key Instructions.lnk -> C:\Program Files (x86)\LeeGT-Games\Mystery Case Files - 13th Skull Collectors Edition\KEYGEN ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mystery Case Files - 13th Skull Collectors Edition\3. Mystery Case Files 13th Skull Keymaker.lnk -> C:\Program Files (x86)\LeeGT-Games\Mystery Case Files - 13th Skull Collectors Edition\KEYGEN\Mystery Case Files 13th Skull Keymaker.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\Silverlight.Configuration.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Application Compatibility Toolkit\Application Compatibility Manager.lnk -> C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Application Compatibility Manager\ACM.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Application Compatibility Toolkit\Compatibility Administrator (32-bit).lnk -> C:\Windows\Installer\{0F5AEBB0-43F3-4571-ACE7-A7942E8AA179}\Compatadmin.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Application Compatibility Toolkit\Compatibility Administrator (64-bit).lnk -> C:\Windows\Installer\{0F5AEBB0-43F3-4571-ACE7-A7942E8AA179}\Compatadmin64.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Application Compatibility Toolkit\Developer and Tester Tools\Internet Explorer Compatibility Test Tool.lnk -> C:\Windows\Installer\{0F5AEBB0-43F3-4571-ACE7-A7942E8AA179}\testtool.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Application Compatibility Toolkit\Developer and Tester Tools\Standard User Analyzer Wizard.lnk -> C:\Windows\Installer\{0F5AEBB0-43F3-4571-ACE7-A7942E8AA179}\SUAnalyzerIcon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Application Compatibility Toolkit\Developer and Tester Tools\Standard User Analyzer.lnk -> C:\Windows\Installer\{0F5AEBB0-43F3-4571-ACE7-A7942E8AA179}\SUAnalyzerIcon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Application Compatibility Toolkit\Demo Application\Mitigating Application Issues Using Shims - Lab Guide.lnk -> C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Compatibility Administrator (32-bit)\Demo Application\StockViewer\MitigatingApplicationIssuesUsingShims-LabGuide.xps (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Application Compatibility Toolkit\Demo Application\Stock Viewer.lnk -> C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Compatibility Administrator (32-bit)\Demo Application\StockViewer\StockViewer.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microids\Still Life 2\Readme.lnk -> C:\Program Files (x86)\Microids\Still Life 2\ReadMe.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microids\Still Life 2\Still Life 2 Manual.lnk -> C:\Program Files (x86)\Microids\Still Life 2\Manual.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microids\Still Life 2\Still Life 2.lnk -> C:\Program Files (x86)\Microids\Still Life 2\SL2.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microids\Still Life 2\Uninstall Still Life 2.lnk -> C:\Program Files (x86)\Microids\Still Life 2\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Uninstall Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Tools\Malwarebytes Anti-Malware Chameleon.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\Chameleon\Windows\chameleon.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Create Recovery Disc.lnk -> C:\Windows\System32\recdisc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Remote Assistance.lnk -> C:\Windows\System32\msra.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicISO\MagicISO Help.lnk -> C:\Program Files (x86)\MagicISO\MagicISO.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicISO\MagicISO.lnk -> C:\Program Files (x86)\MagicISO\MagicISO.exe (MagicISO, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicISO\Uninstall.lnk -> C:\Program Files (x86)\MagicISO\UNWISE.EXE ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LucasArts\Monkey Island 2 LeChucks Revenge Special Edition\Monkey Island 2 LeChucks Revenge Special Edition.lnk -> C:\Program Files (x86)\LucasArts\Monkey Island 2 LeChucks Revenge Special Edition\Monkey2.exe (LucasArts Entertainment Company)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LucasArts\Monkey Island 2 LeChucks Revenge Special Edition\Uninstall Monkey Island 2 LeChucks Revenge Special Edition .lnk -> C:\Program Files (x86)\LucasArts\Monkey Island 2 LeChucks Revenge Special Edition\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LucasArts\Escape from Monkey Island\Escape from Monkey Island.lnk -> C:\Program Files (x86)\LucasArts\Escape from Monkey Island\EMI Launcher.exe (Quick And Easy Software)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LucasArts\Escape from Monkey Island\Launcher Readme.lnk -> C:\Program Files (x86)\LucasArts\Escape from Monkey Island\Grim Fandango Launcher.html (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LucasArts\Escape from Monkey Island\LucasArts Readme.lnk -> C:\Program Files (x86)\LucasArts\Escape from Monkey Island\Install\readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LucasArts\Escape from Monkey Island\Uninstall Escape from Monkey Island.lnk -> C:\Program Files (x86)\LucasArts\Escape from Monkey Island\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LightScribe Direct Disc Labeling\LabelPrint.lnk -> C:\Program Files (x86)\Cyberlink\LabelPrint\LabelPrint.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LightScribe Direct Disc Labeling\LightScribe Control Panel.lnk -> C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe (Hewlett-Packard Company)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LightScribe Direct Disc Labeling\LightScribe Website.lnk -> C:\Program Files (x86)\Common Files\LightScribe\shortcuts\LightScribe Website.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LightScribe Direct Disc Labeling\Quick Demo.lnk -> C:\Program Files (x86)\Common Files\LightScribe\shortcuts\Quick Demo.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lexmark X1100 Series\Lexmark All-In-One Center.LNK -> C:\Program Files (x86)\Lexmark X1100 Series\LXBKaiox.exe (Lexmark International Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lexmark X1100 Series\Uninstall Lexmark X1100 Series.LNK -> C:\Program Files (x86)\Lexmark X1100 Series\Install\x64\Uninst.exe ( )
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lexmark X1100 Series\User's Guide.LNK -> C:\Program Files (x86)\Lexmark X1100 Series\lxbkuser.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Legacy Interactive\The Lost Cases of 221B Baker St\Legacy Games.lnk -> C:\Program Files (x86)\Legacy Interactive\The Lost Cases of 221B Baker St\moregames.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Legacy Interactive\The Lost Cases of 221B Baker St\Play The Lost Cases of 221B Baker St.lnk -> C:\Program Files (x86)\Legacy Interactive\The Lost Cases of 221B Baker St\The Lost Cases of 221B Baker St.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Legacy Interactive\The Lost Cases of 221B Baker St\Uninstall.lnk -> C:\Program Files (x86)\Legacy Interactive\The Lost Cases of 221B Baker St\Uninstall.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Legacy Interactive\Special Enquiry Detail\Legacy Games.lnk -> C:\Program Files (x86)\Legacy Interactive\Special Enquiry Detail\moregames.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Legacy Interactive\Special Enquiry Detail\Play Special Enquiry Detail.lnk -> C:\Program Files (x86)\Legacy Interactive\Special Enquiry Detail\SED.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Legacy Interactive\Special Enquiry Detail\Uninstall.lnk -> C:\Program Files (x86)\Legacy Interactive\Special Enquiry Detail\Uninstall.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Legacy Interactive\Cate West - The Velvet Keys\Legacy Games.lnk -> C:\Program Files (x86)\Legacy Interactive\Cate West - The Velvet Keys\moregames.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Legacy Interactive\Cate West - The Velvet Keys\Play Cate West - The Velvet Keys.lnk -> C:\Program Files (x86)\Legacy Interactive\Cate West - The Velvet Keys\CateWest2.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Legacy Interactive\Cate West - The Velvet Keys\Uninstall.lnk -> C:\Program Files (x86)\Legacy Interactive\Cate West - The Velvet Keys\Uninstall.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Legacy Interactive\Antique Road Trip USA\Legacy Games.lnk -> C:\Program Files (x86)\Legacy Interactive\Antique Road Trip USA\moregames.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Legacy Interactive\Antique Road Trip USA\Play Antique Road Trip USA.lnk -> C:\Program Files (x86)\Legacy Interactive\Antique Road Trip USA\ART.exe (Boomzap Entertainment)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Legacy Interactive\Antique Road Trip USA\Uninstall.lnk -> C:\Program Files (x86)\Legacy Interactive\Antique Road Trip USA\Uninstall.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Konami\SILENT HILL 3\config.lnk -> C:\Program Files (x86)\Konami\SILENT HILL 3\SH3Config.exe (Konami Computer Entertainment Tokyo, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Konami\SILENT HILL 3\readme.lnk -> C:\Program Files (x86)\Konami\SILENT HILL 3\readme.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Konami\SILENT HILL 3\SILENT HILL 3.lnk -> C:\Program Files (x86)\Konami\SILENT HILL 3\sh3.exe (Konami Computer Entertainment Tokyo, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Konami\Silent Hill 2 - Directors Cut\Konami Homepage.lnk -> C:\Program Files (x86)\Konami\Silent Hill 2\Konami Homepage.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Konami\Silent Hill 2 - Directors Cut\Play Silent Hill 2 - Directors Cut.lnk -> C:\Program Files (x86)\Konami\Silent Hill 2\sh2pc.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Konami\Silent Hill 2 - Directors Cut\View Readme.lnk -> C:\Program Files (x86)\Konami\Silent Hill 2\ReadmeDC.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-NFB Reading Technology\Blio.lnk -> C:\Program Files (x86)\K-NFB Reading Technology Inc\Blio\KNFB.Reader.exe (K-NFB Reading Technology)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Media Player Classic.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Media Player Classic\mpc-hc.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Uninstall\Uninstall K-Lite Codec Pack.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Tools\Codec Tweak Tool.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Tools\GraphStudio.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\graphstudio.exe (MONOGRAM Mutimedia s.r.o.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Tools\Haali Muxer.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Filters\Haali\gdsmux.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Tools\MediaInfo.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\mediainfo.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Tools\VobSubStrip.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\VobSubStrip.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Tools\Win7DSFilterTweaker.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\Win7DSFilterTweaker.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Tools\Xvid StatsReader.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\StatsReader.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Help\Frequently Asked Questions.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Info\faq.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Codec Tweak Tool\All options.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWood\Adventure Anniversary Pack\Tunguska\Launch Tunguska.lnk -> C:\Program Files (x86)\JoWood\Tunguska\AutoStarter.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWood\Adventure Anniversary Pack\Tunguska\Uninstall Tunguska.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{877E390C-1EFB-44CB-BBBE-6A0B0D553620}\setup.exe (Macrovision Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWood\Adventure Anniversary Pack\Return to Mysterious Island\Launch Return to Mysterious Island.lnk -> C:\Program Files (x86)\JoWood\Return to Mysterious Island\RtMI.exe (The Adventure Company)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWood\Adventure Anniversary Pack\Return to Mysterious Island\Uninstall Return to Mysterious Island.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{877E390C-1EFB-44CB-BBBE-6A0B0D553620}\setup.exe (Macrovision Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWood\Adventure Anniversary Pack\Return to Mysterious Island\View Readme.lnk -> C:\Program Files (x86)\JoWood\Return to Mysterious Island\ReadMe.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWood\Adventure Anniversary Pack\Nibiru\Launch Nibiru.lnk -> C:\Program Files (x86)\JoWood\Nibiru\nibiru.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWood\Adventure Anniversary Pack\Nibiru\Uninstall Nibiru.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{877E390C-1EFB-44CB-BBBE-6A0B0D553620}\setup.exe (Macrovision Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWood\Adventure Anniversary Pack\Nibiru\View Readme.lnk -> C:\Program Files (x86)\JoWood\Nibiru\readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWood\Adventure Anniversary Pack\Dead Reefs\Dead Reefs - Video Settings.lnk -> C:\Program Files (x86)\JoWood\Dead Reefs\Launcher.exe (Streko)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWood\Adventure Anniversary Pack\Dead Reefs\Launch Dead Reefs.lnk -> C:\Program Files (x86)\JoWood\Dead Reefs\DeadReefs.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWood\Adventure Anniversary Pack\Dead Reefs\Uninstall Dead Reefs.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{877E390C-1EFB-44CB-BBBE-6A0B0D553620}\setup.exe (Macrovision Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWood\Adventure Anniversary Pack\Dead Reefs\View Readme.lnk -> C:\Program Files (x86)\JoWood\Dead Reefs\Readme.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk -> C:\Program Files (x86)\Java\jre7\bin\javacpl.exe (Oracle Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IsoBuster\Help.lnk -> C:\Program Files (x86)\Smart Projects\IsoBuster\Help\IsoBuster.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IsoBuster\IsoBuster Online.lnk -> C:\Program Files (x86)\Smart Projects\IsoBuster\Online\IsoBuster Online.html ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IsoBuster\IsoBuster.lnk -> C:\Program Files (x86)\Smart Projects\IsoBuster\IsoBuster.exe (Smart Projects)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IsoBuster\Order Now.lnk -> C:\Program Files (x86)\Smart Projects\IsoBuster\Online\Order Now.html ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IsoBuster\Uninstall IsoBuster.lnk -> C:\Program Files (x86)\Smart Projects\IsoBuster\Uninst\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support\HP Support Assistant.lnk -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe (Hewlett-Packard Company)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Update.lnk -> C:\Program Files (x86)\Hp\HP Software Update\hpwucli.exe (Hewlett-Packard)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\hpDST.lnk -> C:\Program Files (x86)\Hewlett-Packard\Setup Manager\hpDST.exe (Hewlett-Packard Company)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP MediaSmart\HP MediaSmart DVD.lnk -> C:\Program Files (x86)\Hewlett-Packard\Media\DVD\HPDVDSmart.exe (CyberLink Corp.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP MediaSmart\HP MediaSmart Photo.lnk -> C:\Program Files (x86)\Hewlett-Packard\MediaSmart\Photo\HPMediaSmartPhoto.exe (CyberLink Corp.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP MediaSmart\HP MediaSmart Video.lnk -> C:\Program Files (x86)\Hewlett-Packard\MediaSmart\Video\HPMediaSmartVideo.exe (CyberLink Corp.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP MediaSmart\HP MediaSmart.lnk -> C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hidden Expedition Titanic\Hidden Expedition Titanic.lnk -> C:\Program Files (x86)\Hidden Expedition Titanic\HidExpTitanic.exe (Big Fish Games               )
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hidden Expedition Titanic\Uninstall.lnk -> C:\Program Files (x86)\Hidden Expedition Titanic\Uninstall.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Her Interactive\Nancy Drew Alibi in Ashes\Uninstall Nancy Drew Alibi in Ashes.lnk -> C:\Program Files (x86)\Her Interactive\Nancy Drew Alibi in Ashes\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Her Interactive\Nancy Drew Alibi in Ashes\Nancy Drew\Alibi in Ashes.lnk -> C:\Program Files (x86)\Her Interactive\Nancy Drew Alibi in Ashes\Alibi.exe (Her Interactive)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hallmark\Event Planner 2009.lnk -> C:\Windows\Installer\{C4609419-C11E-4CE6-B369-F3F8A7DDD94C}\SHORTCUT_EP_3190D92A30664FA7847D17E0404C2F43.exe (Macrovision Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hallmark\Hallmark Card Studio 2009.lnk -> C:\Windows\Installer\{C4609419-C11E-4CE6-B369-F3F8A7DDD94C}\NewShortcut4_10BBCB1500964695A88260002365C651.exe (Macrovision Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gray Matter\Configuration.lnk -> C:\Program Files (x86)\Gray Matter\config.exe (Wizarbox)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gray Matter\dtp entertainment-Website.lnk -> C:\Program Files (x86)\Gray Matter\dtpentertainment.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gray Matter\Gray Matter.lnk -> C:\Program Files (x86)\Gray Matter\Game.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gray Matter\Official Gray Matter-Website.lnk -> C:\Program Files (x86)\Gray Matter\game.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gray Matter\Search online for updates.lnk -> C:\Program Files (x86)\Gray Matter\Autoupdate\autoupdate.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gray Matter\Uninstall Gray Matter.lnk -> C:\Program Files (x86)\Gray Matter\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gray Matter\Wizarbox-Website.lnk -> C:\Program Files (x86)\Gray Matter\developer.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player\GOM Player.lnk -> C:\Program Files (x86)\GRETECH\GomPlayer\GOM.exe (Gretech Corp.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player\GOM Wizard.lnk -> C:\Program Files (x86)\GRETECH\GomPlayer\GomWiz.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player\Uninstall.lnk -> C:\Program Files (x86)\GRETECH\GomPlayer\Uninstall.exe (Gretech Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Leisure Suit Larry 7 - Love for Sail!\Leisure Suit Larry 7 - Love for Sail!.lnk -> C:\GOG Games\Leisure Suit Larry 7 - Love for Sail!\SIERW5.EXE ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Leisure Suit Larry 7 - Love for Sail!\Uninstall Leisure Suit Larry 7 - Love for Sail!.lnk -> C:\GOG Games\Leisure Suit Larry 7 - Love for Sail!\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Leisure Suit Larry 7 - Love for Sail!\Documents\Manual.lnk -> C:\GOG Games\Leisure Suit Larry 7 - Love for Sail!\Manual.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Dracula 5\Dracula 5.lnk -> C:\GOG Games\Dracula 5\Dracula5.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Dracula 5\Uninstall Dracula 5 -  The Blood Legacy.lnk -> C:\GOG Games\Dracula 5\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Dracula 4 - Shadow of the Dragon\Dracula 4.lnk -> C:\GOG Games\Dracula 4 - Shadow of the Dragon\Dracula4.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Dracula 4 - Shadow of the Dragon\Uninstall Dracula 4 - Shadow of the Dragon.lnk -> C:\GOG Games\Dracula 4 - Shadow of the Dragon\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Alone in the Dark - The New Nightmare\Alone in the Dark - The New Nightmare.lnk -> C:\GOG Games\Alone in the Dark - The New Nightmare\launch.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Alone in the Dark - The New Nightmare\Uninstall Alone in the Dark - The New Nightmare.lnk -> C:\GOG Games\Alone in the Dark - The New Nightmare\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Alone in the Dark - The New Nightmare\Documents\Manual.lnk -> C:\GOG Games\Alone in the Dark - The New Nightmare\Manual.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Alone in the Dark - The New Nightmare\Documents\Readme.lnk -> C:\GOG Games\Alone in the Dark - The New Nightmare\readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ghost Pirates\Autumn Moon-Website.lnk -> C:\Program Files (x86)\Ghost Pirates\developer.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ghost Pirates\dtp entertainment-Website.lnk -> C:\Program Files (x86)\Ghost Pirates\dtpentertainment.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ghost Pirates\Ghost Pirates.lnk -> C:\Program Files (x86)\Ghost Pirates\main.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ghost Pirates\Manual.lnk -> C:\Program Files (x86)\Ghost Pirates\manual_en.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ghost Pirates\Official Ghost Pirates-Website.lnk -> C:\Program Files (x86)\Ghost Pirates\game.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ghost Pirates\Uninstall Ghost Pirates.lnk -> C:\Program Files (x86)\Ghost Pirates\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GE MiniCam Pro\AMCap.lnk -> C:\Windows\amcap.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games Of The Month\Real Crimes - Jack the Ripper\Real Crimes - Jack the Ripper.lnk -> C:\Program Files (x86)\Games Of The Month\Real Crimes - Jack the Ripper\Launcher.hta ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games Of The Month\Real Crimes - Jack the Ripper\Uninstall Real Crimes - Jack the Ripper.lnk -> C:\Program Files (x86)\Games Of The Month\Real Crimes - Jack the Ripper\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Hidden Expedition Titanic.lnk -> C:\Program Files (x86)\Hidden Expedition Titanic\HidExpTitanic.exe (Big Fish Games               )
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Mystery Case Files - Huntsville.lnk -> C:\Program Files (x86)\Mystery Case Files - Huntsville\MysteryCaseFiles.exe (Copyright © 2005 Big Fish Games)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Mystery in London.lnk -> C:\Program Files (x86)\Mystery in London\MysteryInLondon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Play Scratches Director's Cut.lnk -> C:\Users\Dee\Scratches Director's Cut\launchgame.bfg ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Alan Wake\Alan Wake.lnk -> C:\Program Files (x86)\Black_Box\Alan Wake\AlanWake.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Alan Wake\Uninstall Alan Wake.lnk -> C:\Program Files (x86)\Black_Box\Alan Wake\uninstall\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameMill Entertainment\Caribbean Explorer.lnk -> C:\Program Files (x86)\Caribbean Explorer\Caribbean Explorer.exe (GameMill Entertainment)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameMill Entertainment\Uninstall Caribbean Explorer.lnk -> C:\Program Files (x86)\Caribbean Explorer\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameMill Entertainment\Lost Secrets Bermuda Triangle\Big Fish Games.lnk -> C:\Program Files (x86)\GameMill Entertainment\Lost Secrets Bermuda Triangle\Big Fish Games.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameMill Entertainment\Lost Secrets Bermuda Triangle\Lost Secrets Bermuda Triangle.lnk -> C:\Program Files (x86)\GameMill Entertainment\Lost Secrets Bermuda Triangle\Bermuda.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameMill Entertainment\Lost Secrets Bermuda Triangle\Uninstall Lost Secrets Bermuda Triangle.lnk -> C:\Program Files (x86)\GameMill Entertainment\Lost Secrets Bermuda Triangle\UNWISE.EXE ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eReaders\Blio.lnk -> C:\Program Files (x86)\K-NFB Reading Technology Inc\Blio\KNFB.Reader.exe (K-NFB Reading Technology)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eReaders\Kobo.lnk -> C:\Program Files (x86)\Kobo\Kobo.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eReaders\PressReader.lnk -> C:\Program Files (x86)\NewspaperDirect\PressReader\PressReader.exe (NewspaperDirect)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eReaders\Zinio Reader 4.lnk -> C:\Program Files (x86)\Zinio Reader 4\Zinio Reader 4.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES\American McGee's Alice\American McGee's Alice™.lnk -> C:\Program Files (x86)\EA GAMES\American McGee's Alice\alice.exe (Rogue Entertainment)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES\American McGee's Alice\EA Help.lnk -> C:\Program Files (x86)\EA GAMES\American McGee's Alice\eReg\en-us_eahelp.hlp ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES\American McGee's Alice\EAsy Info.lnk -> C:\Program Files (x86)\EA GAMES\American McGee's Alice\eReg\American McGee's Alice_EZ.exe (Electronic Arts)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES\American McGee's Alice\Read Me.lnk -> C:\Program Files (x86)\EA GAMES\American McGee's Alice\eReg\Readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES\American McGee's Alice\Register Alice.lnk -> C:\Program Files (x86)\EA GAMES\American McGee's Alice\eReg\American McGee's Alice_eReg.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dracula Resurrection\Dracula Resurrection.lnk -> C:\Dracula Resurrection\Dracula.exe (4X Technologies)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dracula Resurrection\Read the manual.lnk -> C:\Dracula Resurrection\Manual-Dracula.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dracula Resurrection\Uninstall Dracula Resurrection.lnk -> C:\Dracula Resurrection\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dracula 3\Dracula3.lnk -> C:\Microids\Dracula 3\Dracula3.exe (Microïds)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dracula 3\Read the manual.lnk -> C:\Microids\Dracula 3\Manual-Dracula3.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dracula 3\Read the Readme file.lnk -> C:\Microids\Dracula 3\Readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dracula 3\Uninstall Dracula3.lnk -> C:\Microids\Dracula 3\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dracula - The Last Sanctuary\Dracula - The Last Sanctuary.lnk -> C:\Dracula - The Last Sanctuary\Dracula2.exe (4X Technologies)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dracula - The Last Sanctuary\Read the manual.lnk -> C:\Dracula - The Last Sanctuary\Manual-Dracula2.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dracula - The Last Sanctuary\Uninstall Dracula - The Last Sanctuary.lnk -> C:\Dracula - The Last Sanctuary\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Donald Dowell\Donald Dowell.lnk -> C:\Program Files (x86)\Donald Dowell\Donald Dowell.exe (Ape Marina                    )
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Donald Dowell\Uninstall Donald Dowell.lnk -> C:\Program Files (x86)\Donald Dowell\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Donald Dowell\WinSetup.lnk -> C:\Program Files (x86)\Donald Dowell\winsetup.exe (Chris Jones)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DFX Audio Enhancer\DFX.lnk -> C:\Program Files (x86)\DFX\DFX.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DFX Audio Enhancer\Manual.lnk -> C:\Program Files (x86)\DFX\Universal\Help\DFX Manual.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dark Fall Lost Souls\Dark Fall Lost Souls.lnk -> C:\Program Files (x86)\Dark Fall Lost Souls\DarkFallLostSouls.exe (Dead:Code Software)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dark Fall Lost Souls\Settings.lnk -> C:\Program Files (x86)\Dark Fall Lost Souls\settings.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dark Fall Lost Souls\Uninstall Dark Fall Lost Souls.lnk -> C:\Program Files (x86)\Dark Fall Lost Souls\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite\DAEMON Tools Lite.lnk -> C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite\SPTD Setup.lnk -> C:\Program Files (x86)\DAEMON Tools Lite\SPTDinst-x64.exe (Duplex Secure Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comcast\Uninstall Easy Solve.lnk -> C:\Program Files (x86)\Comcast\uninstall\Uninstall.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Capcom\DINOCRISIS\DINOCRISIS.lnk -> E:\launch.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Capcom\DINOCRISIS\Uninstall.lnk -> E:\duninst.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Capcom\Dino2\Dino2 uninstall.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{1879585A-D70B-4774-8A0A-FCF9763AC7CF}\Setup.exe (InstallShield Software Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Capcom\Dino2\Dino2.lnk -> C:\Program Files (x86)\capcom\dino2\Dino2.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Barrow Hill\Barrow Hill Website.lnk -> C:\Program Files (x86)\Barrow Hill\Barrow Hill.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Barrow Hill\Barrow Hill.lnk -> C:\Program Files (x86)\Barrow Hill\Barrow Hill.exe (Macromedia, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Barrow Hill\Cornwall.lnk -> C:\Program Files (x86)\Barrow Hill\cornwall.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Barrow Hill\Read Me.lnk -> C:\Program Files (x86)\Barrow Hill\readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Barrow Hill\Uninstall Barrow Hill.lnk -> C:\Program Files (x86)\Barrow Hill\BarrowHillUninstal.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG\AVG 2015.lnk -> C:\Program Files (x86)\AVG\AVG2015\avgui.exe (AVG Technologies CZ, s.r.o.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Art Explosion\Greeting Card Factory.lnk -> C:\Windows\Installer\{AE15D0F7-8C2E-4419-97B4-995ED16FBB4E}\_1258DDAB3B10_4D1F_9376_4AF4CB5928AA.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Software Suite\PhotoImpression 5.lnk -> C:\Program Files (x86)\ArcSoft\Software Suite\PhotoImpression 5\photoimpression.exe (ArcSoft Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Software Suite\Registration.lnk -> C:\Program Files (x86)\ArcSoft\Software Suite\PhotoImpression 5\SUPPORT\Registration\registration.html ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Software Suite\VideoImpression 2.lnk -> C:\Program Files (x86)\ArcSoft\Software Suite\VideoImpression 2\vi20.exe (ArcSoft Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Funhouse\Funhouse.lnk -> C:\Program Files (x86)\ArcSoft\Funhouse\Funhouse.exe (ArcSoft Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Funhouse\Web Services.lnk -> C:\Program Files (x86)\ArcSoft\Funhouse\Web\webserve.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amnesia - The Dark Descent\Amnesia.lnk -> C:\Program Files (x86)\Amnesia - The Dark Descent\redist\Launcher.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amnesia - The Dark Descent\Frictional Games Support.lnk -> C:\Program Files (x86)\Amnesia - The Dark Descent\Frictional Games Support.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amnesia - The Dark Descent\Frictional Games.lnk -> C:\Program Files (x86)\Amnesia - The Dark Descent\Frictional Games.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amnesia - The Dark Descent\Manual.lnk -> C:\Program Files (x86)\Amnesia - The Dark Descent\install_files\eng\Manual.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amnesia - The Dark Descent\Uninstall Amnesia.lnk -> C:\Program Files (x86)\Amnesia - The Dark Descent\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center\AMD VISION Engine Control Center.lnk -> C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (ATI Technologies Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Alan Wake\Alan Wake.lnk -> C:\Program Files (x86)\Black_Box\Alan Wake\AlanWake.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Alan Wake\Uninstall Alan Wake.lnk -> C:\Program Files (x86)\Black_Box\Alan Wake\uninstall\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AGEIA\AGEIA PhysX Properties.lnk -> C:\Windows\SysWOW64\PhysX.cpl ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AGEIA\AGEIA PhysX System Tray Icon.lnk -> C:\Program Files (x86)\AGEIA Technologies\bin\TrayIcon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Data Sources (ODBC).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\IIS Manager.lnk -> C:\Windows\System32\inetsrv\InetMgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Active@ ISO Burner\Active@ ISO Burner.lnk -> C:\Program Files (x86)\LSoft Technologies\Active ISO Burner\IsoBurner.exe (LSoft Technologies Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Active@ ISO Burner\Users Guide.lnk -> C:\Program Files (x86)\LSoft Technologies\Active ISO Burner\IsoBurner.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Calculator.lnk -> C:\Windows\System32\calc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\displayswitch.lnk -> C:\Windows\System32\displayswitch.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sound Recorder.lnk -> C:\Windows\System32\SoundRecorder.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sync Center.lnk -> C:\Windows\System32\mobsync.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\Windowspowershell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Restore.lnk -> C:\Windows\System32\rstrui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer Reports.lnk -> C:\Windows\System32\migwiz\PostMig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer.lnk -> C:\Windows\System32\migwiz\migwiz.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip\7-Zip File Manager.lnk -> C:\Program Files (x86)\7-Zip\7zFM.exe (Igor Pavlov)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip\7-Zip Help.lnk -> C:\Program Files (x86)\7-Zip\7-zip.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{BCF1B847-2286-4AF8-9B61-6D0A2F7DEBBE}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\MumboJumbo\Mortimer Beckett and the Secrets of Spooky Manor\Spooky Manor.exe (Paprikari)
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{B3605C66-6C39-43F7-B11D-E4502EAB6B0B}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\Nancy Drew\Ransom of the Seven Ships\Ransom.exe (Her Interactive)
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{3277E699-CF96-45E7-9BE0-9D275529D33F}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\Nancy Drew Dossier\Lights, Camera, Curses!\Curses.exe (Her Interactive)
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{22BA575A-BCCE-42A0-B832-033D7FE2C187}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\Nancy Drew Dossier\Resorting to Danger\ResortingToDanger.exe (Her Interactive)
Shortcut: C:\ProgramData\Hewlett-Packard\Recovery\Links\RM.lnk -> C:\Program Files (x86)\Hewlett-Packard\Recovery\RecoveryMgr.exe (CyberLink)
Shortcut: C:\Users\Dee\Links\Desktop.lnk -> C:\Users\Dee\Desktop ()
Shortcut: C:\Users\Dee\Links\Downloads.lnk -> C:\Users\Dee\Downloads ()
Shortcut: C:\Users\Dee\Links\lexmark.lnk -> C:\Users\Dee\Searches\lexmark.search-ms ()
Shortcut: C:\Users\Dee\Desktop\1. Mystery Case Files - 13th Skull Collectors Edition.lnk -> C:\Program Files (x86)\LeeGT-Games\Mystery Case Files - 13th Skull Collectors Edition\MCF7Collectors.exe (Big Fish Games                      )
Shortcut: C:\Users\Dee\Desktop\Amnesia.lnk -> C:\Program Files (x86)\Amnesia - The Dark Descent\redist\Launcher.exe ()
Shortcut: C:\Users\Dee\Desktop\Black Mirror 2.lnk -> C:\Program Files (x86)\Viva Media\Black Mirror 2\BlackMirror2.exe ()
Shortcut: C:\Users\Dee\Desktop\Black Mirror 3.lnk -> C:\Program Files (x86)\Viva Media\Black Mirror 3\BlackMirrorIII.exe ()
Shortcut: C:\Users\Dee\Desktop\Caribbean Explorer.lnk -> C:\Program Files (x86)\Caribbean Explorer\Caribbean Explorer.exe (GameMill Entertainment)
Shortcut: C:\Users\Dee\Desktop\Dark Fall.lnk -> C:\Program Files\The Adventure Company\Dark Fall\darkfall.exe (Macromedia, Inc.)
Shortcut: C:\Users\Dee\Desktop\Elementals - The Magic Key.lnk -> C:\Program Files (x86)\Playrix Entertainment\Elementals - The Magic Key\Elementals-TheMagicKey.exe ()
Shortcut: C:\Users\Dee\Desktop\Escape from Monkey Island.lnk -> C:\Program Files (x86)\LucasArts\Escape from Monkey Island\EMI Launcher.exe (Quick And Easy Software)
Shortcut: C:\Users\Dee\Desktop\Ghost Dogs of Moon Lake.lnk -> C:\Users\Dee\Desktop\Games\NancyDrewGhostDogs\Game.exe (Her Interactive)
Shortcut: C:\Users\Dee\Desktop\Hidden Expedition Titanic.lnk -> C:\Program Files (x86)\Hidden Expedition Titanic\HidExpTitanic.exe (Big Fish Games               )
Shortcut: C:\Users\Dee\Desktop\Hitchcock - The Final Cut.lnk -> C:\Program Files (x86)\Ubi Soft\Hitchcock\Hitchcock.exe (Arxel Tribe)
Shortcut: C:\Users\Dee\Desktop\Launch Dead Reefs.lnk -> C:\Program Files (x86)\JoWood\Dead Reefs\DeadReefs.exe ()
Shortcut: C:\Users\Dee\Desktop\Lost Horizon.lnk -> C:\Program Files (x86)\Lost Horizon\fsasgame.exe ()
Shortcut: C:\Users\Dee\Desktop\Lost Secrets Bermuda Triangle.lnk -> C:\Program Files (x86)\GameMill Entertainment\Lost Secrets Bermuda Triangle\Bermuda.exe ()
Shortcut: C:\Users\Dee\Desktop\MISE.exe - Shortcut.lnk -> C:\Program Files (x86)\Secret Of Monkey Island SE\MISE.exe ()
Shortcut: C:\Users\Dee\Desktop\mjm5.exe - Shortcut.lnk -> C:\Users\Dee\Desktop\Games\mahjohngg\Game\mjm5.exe ()
Shortcut: C:\Users\Dee\Desktop\Mystery Case Files - Dire Grove Collector's Edition.lnk -> C:\Program Files (x86)\Mystery Case Files - Dire Grove Collector's Edition\MCF6.exe (Big Fish Games, Inc)
Shortcut: C:\Users\Dee\Desktop\Mystery Case Files - Huntsville.lnk -> C:\Program Files (x86)\Mystery Case Files - Huntsville\MysteryCaseFiles.exe (Copyright © 2005 Big Fish Games)
Shortcut: C:\Users\Dee\Desktop\Mystery Case Files - Madame Fate.lnk -> C:\Program Files (x86)\Mystery Case Files - Madame Fate\launcher.exe ()
Shortcut: C:\Users\Dee\Desktop\Mystery Case Files 8- Escape from Ravenhearst CE.lnk -> C:\Program Files (x86)\Mystery Case Files 8- Escape from Ravenhearst CE\MCF8CollectorsEdition.exe (Big Fish Games)
Shortcut: C:\Users\Dee\Desktop\Mystery Murders - Jack the Ripper.lnk -> C:\Program Files (x86)\Mystery Murders - Jack the Ripper\Mystery Murders - Jack the Ripper.exe ()
Shortcut: C:\Users\Dee\Desktop\Mystery of Mortlake Mansion.lnk -> C:\Program Files (x86)\Playrix Entertainment\Mystery of Mortlake Mansion\MortlakeMansion.exe ()
Shortcut: C:\Users\Dee\Desktop\Nancy Drew -  The Captive Curse.lnk -> C:\Program Files (x86)\Nancy Drew -  The Captive Curse\Captive.exe (Her Interactive)
Shortcut: C:\Users\Dee\Desktop\Nancy Drew - Curse of Blackmoor Manor.lnk -> C:\Program Files\Nancy Drew\Curse of Blackmoor Manor\Game.exe (Her Interactive)
Shortcut: C:\Users\Dee\Desktop\ReturnToRavenhearst.exe - Shortcut.lnk -> C:\Users\Dee\Desktop\Games\MCFReturnToRavenheart\Mystery Case Files - Return to Ravenhearst FINAL\ReturnToRavenhearst.exe ()
Shortcut: C:\Users\Dee\Desktop\SC3_CE.exe - Shortcut.lnk -> C:\Users\Dee\Desktop\Games\StrangeCases\Strange Cases 3 The Secrets of Grey Mist Lake CE V2\SC3_CE.exe ()
Shortcut: C:\Users\Dee\Desktop\Silent Hill.lnk -> C:\Program Files (x86)\Silent Hill\Silent Hill.exe ()
Shortcut: C:\Users\Dee\Desktop\Spirit Of Wandering.lnk -> C:\Program Files (x86)\Playrix Entertainment\Spirit Of Wandering\Spirit.exe (Artogon Studio)
Shortcut: C:\Users\Dee\Desktop\Strange Cases The Lighthouse Mystery.lnk -> C:\Program Files (x86)\Games\Strange Cases The Lighthouse Mystery Collectors Edition\StrangeCasesTheLighthouseMystery1.exe ()
Shortcut: C:\Users\Dee\Desktop\Syberia.lnk -> C:\Program Files (x86)\Syberia\Syberia.exe (Microids Canada)
Shortcut: C:\Users\Dee\Desktop\The Black Mirror.lnk -> C:\Program Files (x86)\The Adventure Company\The Black Mirror\BMirror.exe ()
Shortcut: C:\Users\Dee\Desktop\Twisted - A Haunted Carol.lnk -> C:\Program Files (x86)\Foxy Games\Twisted - A Haunted Carol\TwistedChristmas.exe ()
Shortcut: C:\Users\Dee\Desktop\Tools\AVG 2015.lnk -> C:\Program Files (x86)\AVG\AVG2015\avgui.exe (AVG Technologies CZ, s.r.o.)
Shortcut: C:\Users\Dee\Desktop\Tools\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
Shortcut: C:\Users\Dee\Desktop\Tools\DAEMON Tools Lite.lnk -> C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd)
Shortcut: C:\Users\Dee\Desktop\Tools\HP Display Assistant.lnk -> C:\Program Files (x86)\Portrait Displays\HP Display Assistant\dthtml.exe (No File)
Shortcut: C:\Users\Dee\Desktop\Tools\HP Support Assistant.lnk -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe (Hewlett-Packard Company)
Shortcut: C:\Users\Dee\Desktop\Tools\Kaspersky Security Scan.lnk -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe (Kaspersky Lab ZAO)
Shortcut: C:\Users\Dee\Desktop\Tools\Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes Corporation)
Shortcut: C:\Users\Dee\Desktop\Tools\Revo Uninstaller.lnk -> C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe (VS Revo Group)
Shortcut: C:\Users\Dee\Desktop\Tools\SUPERAntiSpyware Free Edition.lnk -> C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware)
Shortcut: C:\Users\Dee\Desktop\Tools\WinZip.lnk -> C:\Program Files\WinZip\WINZIP64.EXE (WinZip Computing, S.L.)
Shortcut: C:\Users\Dee\Desktop\Misc\Desktop Weather.lnk -> C:\Windows\Installer\{167158CE-1637-4167-8A1C-C2549EEA966A}\NewShortcut11_83AA1127ABAF44998E4E7582BFA2FF4A.exe (Flexera Software LLC)
Shortcut: C:\Users\Dee\Desktop\Misc\Greeting Card Factory Photo Card Maker.lnk -> C:\Windows\Installer\{9C627F78-DBB9-4293-AA89-E83119C39CE9}\NewShortcut3_9C627F78DBB94293AA89E83119C39CE9_1.exe (Macrovision Corporation)
Shortcut: C:\Users\Dee\Desktop\Misc\Hallmark Card Studio 2009.lnk -> C:\Windows\Installer\{C4609419-C11E-4CE6-B369-F3F8A7DDD94C}\NewShortcut3_3987B53B5DA14BC1A6C6F7287E3934AC.exe (Macrovision Corporation)
Shortcut: C:\Users\Dee\Desktop\Jaredsstuff\Music-PicturePrograms\DFX.lnk -> C:\Program Files (x86)\DFX\DFX.exe (No File)
Shortcut: C:\Users\Dee\Desktop\Jaredsstuff\Music-PicturePrograms\GOM Player.lnk -> C:\Program Files (x86)\GRETECH\GomPlayer\GOM.exe (Gretech Corp.)
Shortcut: C:\Users\Dee\Desktop\Jaredsstuff\Music-PicturePrograms\iTunes.lnk -> C:\Program Files (x86)\iTunes\iTunes.exe (No File)
Shortcut: C:\Users\Dee\Desktop\Jaredsstuff\Music-PicturePrograms\MiMedia.lnk -> C:\Program Files\MiMedia LLC\MiMedia\MiMedia.exe (No File)
Shortcut: C:\Users\Dee\Desktop\Jaredsstuff\Music-PicturePrograms\QuickTime Player.lnk -> C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe (Apple Inc.)
Shortcut: C:\Users\Dee\Desktop\Jaredsstuff\Music-PicturePrograms\WebCam\Photo Impression 5.lnk -> C:\Program Files (x86)\ArcSoft\Software Suite\PhotoImpression 5\photoimpression.exe (ArcSoft Inc.)
Shortcut: C:\Users\Dee\Desktop\Jaredsstuff\Music-PicturePrograms\WebCam\Video Impression 2.lnk -> C:\Program Files (x86)\ArcSoft\Software Suite\VideoImpression 2\vi20.exe (ArcSoft Inc.)
Shortcut: C:\Users\Dee\Desktop\GeneralApps\Amazon Music Importer.lnk -> C:\Program Files (x86)\Amazon\Utilities\Amazon Music Importer\Amazon Music Importer.exe ()
Shortcut: C:\Users\Dee\Desktop\GeneralApps\DFX for Windows Media Player.lnk -> C:\Program Files (x86)\DFX\WMP\Help\DFX Manual.chm ()
Shortcut: C:\Users\Dee\Desktop\GeneralApps\Skype.lnk -> C:\Windows\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe ()
Shortcut: C:\Users\Dee\Desktop\GeneralApps\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\mplayer2.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\Desktop\GameTools\DAEMON Tools Lite.lnk -> C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd)
Shortcut: C:\Users\Dee\Desktop\GameTools\IsoBuster.lnk -> C:\Program Files (x86)\Smart Projects\IsoBuster\IsoBuster.exe (Smart Projects)
Shortcut: C:\Users\Dee\Desktop\GameTools\KEY.lnk -> C:\Program Files (x86)\Mystery Case Files 8- Escape from Ravenhearst CE\KEY.txt ()
Shortcut: C:\Users\Dee\Desktop\GameTools\MagicISO.lnk -> C:\Program Files (x86)\MagicISO\MagicISO.exe (MagicISO, Inc.)
Shortcut: C:\Users\Dee\Desktop\GameTools\Play HP Games.lnk -> C:\Program Files (x86)\HP Games\onplay\onplay.exe (No File)
Shortcut: C:\Users\Dee\Desktop\GameTools\scummvm.exe - Shortcut.lnk -> C:\Program Files (x86)\ScummVM\scummvm.exe ()
Shortcut: C:\Users\Dee\Desktop\GameTools\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe ()
Shortcut: C:\Users\Dee\Desktop\GameTools\µTorrent.lnk -> C:\Program Files (x86)\uTorrent\uTorrent.exe (No File)
Shortcut: C:\Users\Dee\Desktop\GameShrtCts\Agatha Christie - And Then There Were None.lnk -> C:\Program Files (x86)\The Adventure Company\And Then There Were None\ac.exe ()
Shortcut: C:\Users\Dee\Desktop\GameShrtCts\Black Mirror 2.lnk -> C:\Program Files (x86)\Black Mirror 2\BlackMirror2.exe ()
Shortcut: C:\Users\Dee\Desktop\GameShrtCts\Dark Tales 2 Edgar Allan Poes The Black Cat.lnk -> C:\Program Files (x86)\Games\Dark Tales 2 Edgar Allan Poes The Black Cat Collectors Edition\Dark Tales The Black Cat1.exe (No File)
Shortcut: C:\Users\Dee\Desktop\GameShrtCts\Launch Dead Reefs.lnk -> C:\Program Files (x86)\JoWood\Dead Reefs\DeadReefs.exe ()
Shortcut: C:\Users\Dee\Desktop\GameShrtCts\Mystery Case Files - Dire Grove Collector's Edition.lnk -> C:\Program Files (x86)\Mystery Case Files - Dire Grove Collector's Edition\MCF6.exe (Big Fish Games, Inc)
Shortcut: C:\Users\Dee\Desktop\GameShrtCts\Mystery Case Files - Huntsville.lnk -> C:\Program Files (x86)\Mystery Case Files - Huntsville\MysteryCaseFiles.exe (Copyright © 2005 Big Fish Games)
Shortcut: C:\Users\Dee\Desktop\GameShrtCts\Post Mortem.exe - Shortcut.lnk -> C:\Users\Dee\Desktop\Games\PostMortem\Freeman\Post Mortem.exe (Microids Canada)
Shortcut: C:\Users\Dee\Desktop\GameShrtCts\Still Life 2.lnk -> C:\Program Files (x86)\Microids\Still Life 2\SL2.exe ()
Shortcut: C:\Users\Dee\Desktop\GameShrtCts\The Black Mirror.lnk -> C:\Program Files (x86)\The Adventure Company\The Black Mirror\BMirror.exe ()
Shortcut: C:\Users\Dee\Desktop\GameShrtCts\The Lost Crown.lnk -> C:\Program Files (x86)\The Lost Crown\TheLostCrown_Splash.exe (Macromedia, Inc.)
Shortcut: C:\Users\Dee\Desktop\Games\StillLife.lnk -> C:\Program Files (x86)\The Adventure Company\Microids\StillLife\StillLife.exe (Microids)
Shortcut: C:\Users\Dee\Desktop\AGS-FreeGames\AfterShocked!.lnk -> C:\Program Files (x86)\AfterShocked!\AfterShocked!.exe (No File)
Shortcut: C:\Users\Dee\Desktop\AGS-FreeGames\Little Big Adventure 2.lnk -> C:\Program Files (x86)\GOG.com\Little Big Adventure 2\DOSBOX\DOSBox.exe (No File)
Shortcut: C:\Users\Dee\Desktop\AGS-FreeGames\Out Of Order.lnk -> C:\Program Files\Games\Out Of Order\Out Of Order.exe ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\GOM Player.lnk -> C:\Program Files (x86)\GRETECH\GomPlayer\GOM.exe (Gretech Corp.)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Mystery Murders - Jack the Ripper.lnk -> C:\Program Files (x86)\Mystery Murders - Jack the Ripper\Mystery Murders - Jack the Ripper.exe ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hulu Desktop.lnk -> C:\Users\Dee\AppData\Local\HuluDesktop\HuluDesktop.exe (Hulu LLC)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lost Horizon.lnk -> C:\Program Files (x86)\Lost Horizon\fsasgame.exe ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Console RAR manual.lnk -> C:\Program Files\WinRAR\Rar.txt ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR help.lnk -> C:\Program Files\WinRAR\WinRAR.chm ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viva Media\Black Mirror 3\Black Mirror 3.lnk -> C:\Program Files (x86)\Viva Media\Black Mirror 3\BlackMirrorIII.exe ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viva Media\Black Mirror 3\Manual.lnk -> C:\Program Files (x86)\Viva Media\Black Mirror 3\manual.pdf ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viva Media\Black Mirror 3\Uninstall.lnk -> C:\Program Files (x86)\Viva Media\Black Mirror 3\uninst.exe ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viva Media\Black Mirror 3\Walkthrough.lnk -> C:\Program Files (x86)\Viva Media\Black Mirror 3\walkthrough.pdf ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viva Media\Black Mirror 2\Black Mirror 2.lnk -> C:\Program Files (x86)\Viva Media\Black Mirror 2\BlackMirror2.exe ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viva Media\Black Mirror 2\Cranberry Website.lnk -> C:\Program Files (x86)\Viva Media\Black Mirror 2\developer.url ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viva Media\Black Mirror 2\Manual.lnk -> C:\Program Files (x86)\Viva Media\Black Mirror 2\manual_en.pdf ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viva Media\Black Mirror 2\Official Black Mirror 2 Website.lnk -> C:\Program Files (x86)\Viva Media\Black Mirror 2\game.url ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viva Media\Black Mirror 2\Uninstall.lnk -> C:\Program Files (x86)\Viva Media\Black Mirror 2\uninst.exe ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viva Media\Black Mirror 2\Viva Media Website.lnk -> C:\Program Files (x86)\Viva Media\Black Mirror 2\vivamedia.url ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubi Soft\Hitchcock - The Final Cut\Config.lnk -> C:\Program Files (x86)\Ubi Soft\Hitchcock\Config.exe (Arxel Tribe)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubi Soft\Hitchcock - The Final Cut\Hitchcock - The Final Cut.lnk -> C:\Program Files (x86)\Ubi Soft\Hitchcock\Hitchcock.exe (Arxel Tribe)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubi Soft\Hitchcock - The Final Cut\Hitchcock.ArxelTribe.com.lnk -> C:\Program Files (x86)\Ubi Soft\Hitchcock\Hitchcock.url ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubi Soft\Hitchcock - The Final Cut\View Readme.txt.lnk -> C:\Program Files (x86)\Ubi Soft\Hitchcock\Readme.txt ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubi Soft\Hitchcock - The Final Cut\www.ubi.com.lnk -> C:\Program Files (x86)\Ubi Soft\Hitchcock\ubi.url ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubi Soft\Hitchcock - The Final Cut\Kyro\Hitchcock Kyro.lnk -> C:\Program Files (x86)\Ubi Soft\Hitchcock\Hitchcock_Kyro.exe (Arxel Tribe)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twisted - A Haunted Carol\Download More Free Full Games from FoxyGames.Info.lnk -> C:\Program Files (x86)\Foxy Games\Twisted - A Haunted Carol\Download More Free Full Games from FoxyGames.Info.url ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twisted - A Haunted Carol\Twisted - A Haunted Carol.lnk -> C:\Program Files (x86)\Foxy Games\Twisted - A Haunted Carol\TwistedChristmas.exe ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telltale Games\Tales of Monkey Island\Uninstall - Tales of Monkey Island.lnk -> C:\Program Files (x86)\Telltale Games\Tales of Monkey Island\UNINSTALL_MonkeyIsland100.exe (Telltale Games)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Scratches Director's Cut\Uninstall Scratches Director's Cut.lnk -> C:\Users\Dee\Scratches Director's Cut\Uninstall.exe (Big Fish Games)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Scratches Director's Cut\Unlock Scratches Director's Cut.lnk -> C:\Users\Dee\Scratches Director's Cut\UnlockGame.bfg ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Revo Uninstaller.lnk -> C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe (VS Revo Group)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Uninstall.lnk -> C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe (VS Revo Group Ltd.)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Website.lnk -> C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revo Uninstaller.url ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nancy Drew -  The Captive Curse\Nancy Drew -  The Captive Curse.lnk -> C:\Program Files (x86)\Nancy Drew -  The Captive Curse\Captive.exe (Her Interactive)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mystery Case Files 8- Escape from Ravenhearst CE\Microsoft® DirectX for Windows®.lnk -> C:\Program Files (x86)\Mystery Case Files 8- Escape from Ravenhearst CE\DirectX\DXSETUP.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mystery Case Files 8- Escape from Ravenhearst CE\MSFTEULA.lnk -> C:\Program Files (x86)\Mystery Case Files 8- Escape from Ravenhearst CE\MSFTEULA.exe ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mystery Case Files 8- Escape from Ravenhearst CE\Mystery Case Files 8- Escape from Ravenhearst CE.lnk -> C:\Program Files (x86)\Mystery Case Files 8- Escape from Ravenhearst CE\MCF8CollectorsEdition.exe (Big Fish Games)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mystery Case Files - Dire Grove Collector's Edition\Mystery Case Files - Dire Grove Collector's Edition.lnk -> C:\Program Files (x86)\Mystery Case Files - Dire Grove Collector's Edition\MCF6.exe (Big Fish Games, Inc)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mystery Case Files\Mystery Case Files - Madame Fate.lnk -> C:\Program Files (x86)\Mystery Case Files - Madame Fate\launcher.exe ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kaspersky Security Scan\End User License Agreement.lnk -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\Doc\en\KSS\license.txt ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kaspersky Security Scan\Kaspersky Security Scan Help.lnk -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\Doc\en\KSS\help.html ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kaspersky Security Scan\Kaspersky Security Scan.lnk -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe (Kaspersky Lab ZAO)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kaspersky Security Scan\Visit Kaspersky Lab on the Web.lnk -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\kl.url ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DFX for Windows Media Player\DFX for Windows Media Player.lnk -> C:\Program Files (x86)\DFX\WMP\Help\DFX Manual.chm ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CAPCOM\DINOCRISIS\DINOCRISIS.lnk -> E:\launch.exe (No File)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CAPCOM\DINOCRISIS\Uninstall.lnk -> E:\duninst.exe (No File)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\SendTo\IsoBuster.lnk -> C:\Program Files (x86)\Smart Projects\IsoBuster\IsoBuster.exe (Smart Projects)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\GameExplorer\{7B2485C8-A2DB-43E0-80E5-988DC909C2EC}\PlayTasks\0\Play Al Emmo and the Lost Dutchmans Mine.lnk -> C:\Users\Dee\Documents\GameFly\games\Meridian4\Al Emmo and the Lost Dutchmans Mine\Al_Emmo.exe (No File)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\GameExplorer\{767AC31F-E3CA-4122-B574-094F66317F1B}\PlayTasks\0\Episode 1.lnk -> C:\Program Files (x86)\Telltale Games\Back to the Future The Game\Episode 1\BackToTheFuture101.exe (Telltale Games)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Calculator.lnk -> C:\Windows\System32\calc.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\hpDST.lnk -> C:\Program Files (x86)\Hewlett-Packard\Setup Manager\hpDST.exe (Hewlett-Packard Company)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\AMD VISION Engine Control Center.lnk -> C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (ATI Technologies Inc.)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Dracula 4.lnk -> C:\GOG Games\Dracula 4 - Shadow of the Dragon\Dracula4.exe ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Elementals - The Magic Key.lnk -> C:\Program Files (x86)\Playrix Entertainment\Elementals - The Magic Key\Elementals-TheMagicKey.exe ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Microsoft Picture It! Photo Premium 9.lnk -> C:\Program Files (x86)\Microsoft Picture It! 9\pi.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Still Life 2.lnk -> C:\Program Files (x86)\Microids\Still Life 2\SL2.exe ()
Shortcut: C:\Users\Dee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\Dee\AppData\Local\Microsoft\Windows\GameExplorer\{FAE7FCF9-4C00-4D75-B4A3-8E7DB5876454}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\EA GAMES\American McGee's Alice\alice.exe (Rogue Entertainment)
Shortcut: C:\Users\Dee\AppData\Local\Microsoft\Windows\GameExplorer\{E18898C5-CD7C-4C56-A6D6-CF72CD03AF0C}\PlayTasks\0\Play.lnk -> C:\Users\Dee\Desktop\Games\PostMortem\Freeman\Post Mortem.exe (Microids Canada)
Shortcut: C:\Users\Dee\AppData\Local\Microsoft\Windows\GameExplorer\{CE3E7E18-51EE-4175-9CE9-68474F8E76C5}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\Konami\SILENT HILL 3\sh3.exe (Konami Computer Entertainment Tokyo, Inc.)
Shortcut: C:\Users\Dee\AppData\Local\Microsoft\Windows\GameExplorer\{BCF1B847-2286-4AF8-9B61-6D0A2F7DEBBE}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\MumboJumbo\Mortimer Beckett and the Secrets of Spooky Manor\Spooky Manor.exe (Paprikari)
Shortcut: C:\Users\Dee\AppData\Local\Microsoft\Windows\GameExplorer\{BBE995BE-59C4-4FF7-A7D0-CFF13FC2B1E3}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\The Adventure Company\And Then There Were None\ac.exe ()
Shortcut: C:\Users\Dee\AppData\Local\Microsoft\Windows\GameExplorer\{BAE8C0AE-C4C5-4329-9AC7-A878A8D1A88D}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\Konami\Silent Hill 2\sh2pc.exe ()
Shortcut: C:\Users\Dee\AppData\Local\Microsoft\Windows\GameExplorer\{B43DACFC-B983-4315-BBC5-DA9823971064}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\Syberia\Syberia.exe (Microids Canada)
Shortcut: C:\Users\Dee\AppData\Local\Microsoft\Windows\GameExplorer\{A5F64598-DCF9-49E1-BEED-896CC302DFAA}\PlayTasks\0\Play.lnk -> C:\Users\Dee\Desktop\Games\SilentHill3\sh3.exe (Konami Computer Entertainment Tokyo, Inc.)
Shortcut: C:\Users\Dee\AppData\Local\Microsoft\Windows\GameExplorer\{A4F55BE5-24EE-412E-A44E-55B0D42E72C1}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\capcom\dino2\Dino2.exe ()
Shortcut: C:\Users\Dee\AppData\Local\Microsoft\Windows\GameExplorer\{91B93184-D2B7-451B-90B1-34E8D42F0805}\PlayTasks\0\Play.lnk -> C:\Users\Dee\Desktop\Games\NancyDrewGhostDogs\Game.exe (Her Interactive)
Shortcut: C:\Users\Dee\AppData\Local\Microsoft\Windows\GameExplorer\{7A5B63FD-C678-4F3C-8DC4-786C59BE7259}\PlayTasks\0\Play.lnk -> C:\Users\Dee\Desktop\Games\[PC] Indigo Prophecy [RIP] [dopeman]\Indigo Prophecy\Indigo Prophecy.exe ()
Shortcut: C:\Users\Dee\AppData\Local\Microsoft\Windows\GameExplorer\{70A90581-7A8F-4D50-8555-B9BF2550C7B8}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\Ubi Soft\Hitchcock\Hitchcock.exe (Arxel Tribe)
Shortcut: C:\Users\Dee\AppData\Local\Microsoft\Windows\GameExplorer\{5851DC78-2522-4475-8D24-7FA6F0644A7D}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\JoWood\Return to Mysterious Island\RtMI.exe (The Adventure Company)
Shortcut: C:\Users\Dee\AppData\Local\Microsoft\Windows\GameExplorer\{48C0BA3D-4A29-439C-9D13-2D1BF97BC0CB}\PlayTasks\0\Play.lnk -> C:\Program Files\The Adventure Company\Dark Fall\darkfall.exe (Macromedia, Inc.)
Shortcut: C:\Users\Dee\AppData\Local\Microsoft\Windows\GameExplorer\{332B118D-D899-49AD-B77B-98A70F7A7244}\PlayTasks\0\Play.lnk -> C:\Users\Dee\Desktop\Games\NancyDrewMessageinHauntedMansion\Game.exe (Her Interactive)
Shortcut: C:\Users\Dee\AppData\Local\Microsoft\Windows\GameExplorer\{1267D5AF-AB72-4B73-867B-018BDB3BE414}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\LucasArts\Escape from Monkey Island\Monkey.exe ()
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hulu Desktop.lnk -> C:\Users\Dee\AppData\Local\HuluDesktop\HuluDesktop.exe (Hulu LLC)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hulu Desktop.lnk -> C:\Users\Dee\AppData\Local\HuluDesktop\HuluDesktop.exe (Hulu LLC)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Ethan\Links\Desktop.lnk -> C:\Users\Dee\Desktop ()
Shortcut: C:\Users\Ethan\Links\Downloads.lnk -> C:\Users\Dee\Downloads ()
Shortcut: C:\Users\Ethan\Desktop\1. Mystery Case Files - 13th Skull Collectors Edition.lnk -> C:\Program Files (x86)\LeeGT-Games\Mystery Case Files - 13th Skull Collectors Edition\MCF7Collectors.exe (Big Fish Games                      )
Shortcut: C:\Users\Ethan\Desktop\Black Mirror 3.lnk -> C:\Program Files (x86)\Viva Media\Black Mirror 3\BlackMirrorIII.exe ()
Shortcut: C:\Users\Ethan\Desktop\Caribbean Explorer.lnk -> C:\Program Files (x86)\Caribbean Explorer\Caribbean Explorer.exe (GameMill Entertainment)
Shortcut: C:\Users\Ethan\Desktop\Ghost Pirates.lnk -> C:\Program Files (x86)\Ghost Pirates\main.exe ()
Shortcut: C:\Users\Ethan\Desktop\Hitchcock - The Final Cut.lnk -> C:\Program Files (x86)\Ubi Soft\Hitchcock\Hitchcock.exe (Arxel Tribe)
Shortcut: C:\Users\Ethan\Desktop\Lost Secrets Bermuda Triangle.lnk -> C:\Program Files (x86)\GameMill Entertainment\Lost Secrets Bermuda Triangle\Bermuda.exe ()
Shortcut: C:\Users\Ethan\Desktop\Nancy Drew - Curse of Blackmoor Manor.lnk -> C:\Program Files\Nancy Drew\Curse of Blackmoor Manor\Game.exe (Her Interactive)
Shortcut: C:\Users\Ethan\Desktop\Out Of Order.lnk -> C:\Program Files\Games\Out Of Order\Out Of Order.exe ()
Shortcut: C:\Users\Ethan\Desktop\Silent Hill.lnk -> C:\Program Files (x86)\Silent Hill\Silent Hill.exe ()
Shortcut: C:\Users\Ethan\Desktop\The Black Mirror.lnk -> C:\Program Files (x86)\The Adventure Company\The Black Mirror\BMirror.exe ()
Shortcut: C:\Users\Ethan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hulu Desktop.lnk -> C:\Users\Dee\AppData\Local\HuluDesktop\HuluDesktop.exe (Hulu LLC)
Shortcut: C:\Users\Ethan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Ethan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Monkey Quest\Play Monkey Quest.lnk -> C:\Users\Dee\AppData\Local\Monkey Quest\pa\pa.exe (No File)
Shortcut: C:\Users\Ethan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Ethan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Ethan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Ethan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Ethan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Ethan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Ethan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Ethan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (No File)
Shortcut: C:\Users\Ethan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Ethan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\HP MediaSmart.lnk -> C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe ()
Shortcut: C:\Users\Ethan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\hpDST.lnk -> C:\Program Files (x86)\Hewlett-Packard\Setup Manager\hpDST.exe (Hewlett-Packard Company)
Shortcut: C:\Users\Ethan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\Ethan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Ethan\AppData\Local\Microsoft\Windows\GameExplorer\{8021C0D4-95B4-4BCD-AA2D-9475FEA0F4CD}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\Konami\SILENT HILL 3\sh3.exe (Konami Computer Entertainment Tokyo, Inc.)
Shortcut: C:\Users\Ethan\AppData\Local\Microsoft\Windows\GameExplorer\{76DDAC59-0BA6-4CFD-879B-04C61D222EDD}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\EA GAMES\American McGee's Alice\alice.exe (Rogue Entertainment)
Shortcut: C:\Users\Ethan\AppData\Local\Microsoft\Windows\GameExplorer\{60E2F5C0-628D-44F5-9370-531409092CE3}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\Syberia\Syberia.exe (Microids Canada)
Shortcut: C:\Users\Ethan\AppData\Local\Microsoft\Windows\GameExplorer\{54693EA5-52F9-488E-BB37-884573E1C5C7}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\JoWood\Return to Mysterious Island\RtMI.exe (The Adventure Company)
Shortcut: C:\Users\Ethan\AppData\Local\Microsoft\Windows\GameExplorer\{441B5AB7-B4C8-46EA-8782-569FC43D517D}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\The Adventure Company\And Then There Were None\ac.exe ()
Shortcut: C:\Users\Ethan\AppData\Local\Microsoft\Windows\GameExplorer\{170FA411-71CC-4D06-AFD6-C7A0364CA49D}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\Ubi Soft\Hitchcock\Hitchcock.exe (Arxel Tribe)
Shortcut: C:\Users\Ethan\AppData\Local\Microsoft\Windows\GameExplorer\{1238750F-0663-4402-8150-2963413E02C4}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\Konami\Silent Hill 2\sh2pc.exe ()
Shortcut: C:\Users\Guest\Links\Desktop.lnk -> C:\Users\Dee\Desktop ()
Shortcut: C:\Users\Guest\Links\Downloads.lnk -> C:\Users\Dee\Downloads ()
Shortcut: C:\Users\Guest\Desktop\Caribbean Explorer.lnk -> C:\Program Files (x86)\Caribbean Explorer\Caribbean Explorer.exe (GameMill Entertainment)
Shortcut: C:\Users\Guest\Desktop\Dark Fall.lnk -> C:\Program Files\The Adventure Company\Dark Fall\darkfall.exe (Macromedia, Inc.)
Shortcut: C:\Users\Guest\Desktop\Hidden Expedition Titanic.lnk -> C:\Program Files (x86)\Hidden Expedition Titanic\HidExpTitanic.exe (Big Fish Games               )
Shortcut: C:\Users\Guest\Desktop\Lost Secrets Bermuda Triangle.lnk -> C:\Program Files (x86)\GameMill Entertainment\Lost Secrets Bermuda Triangle\Bermuda.exe ()
Shortcut: C:\Users\Guest\Desktop\MagicISO.lnk -> C:\Program Files (x86)\MagicISO\MagicISO.exe (MagicISO, Inc.)
Shortcut: C:\Users\Guest\Desktop\Mystery Case Files - Huntsville.lnk -> C:\Program Files (x86)\Mystery Case Files - Huntsville\MysteryCaseFiles.exe (Copyright © 2005 Big Fish Games)
Shortcut: C:\Users\Guest\Desktop\Nancy Drew - Curse of Blackmoor Manor.lnk -> C:\Program Files\Nancy Drew\Curse of Blackmoor Manor\Game.exe (Her Interactive)
Shortcut: C:\Users\Guest\Desktop\Out Of Order.lnk -> C:\Program Files\Games\Out Of Order\Out Of Order.exe ()
Shortcut: C:\Users\Guest\Desktop\Silent Hill.lnk -> C:\Program Files (x86)\Silent Hill\Silent Hill.exe ()
Shortcut: C:\Users\Guest\Desktop\The Black Mirror.lnk -> C:\Program Files (x86)\The Adventure Company\The Black Mirror\BMirror.exe ()
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hulu Desktop.lnk -> C:\Users\Dee\AppData\Local\HuluDesktop\HuluDesktop.exe (Hulu LLC)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\HP MediaSmart.lnk -> C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe ()
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\hpDST.lnk -> C:\Program Files (x86)\Hewlett-Packard\Setup Manager\hpDST.exe (Hewlett-Packard Company)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Jared\Links\Desktop.lnk -> C:\Users\Dee\Desktop ()
Shortcut: C:\Users\Jared\Links\Downloads.lnk -> C:\Users\Dee\Downloads ()
Shortcut: C:\Users\Jared\Desktop\Caribbean Explorer.lnk -> C:\Program Files (x86)\Caribbean Explorer\Caribbean Explorer.exe (GameMill Entertainment)
Shortcut: C:\Users\Jared\Desktop\Dark Fall.lnk -> C:\Program Files\The Adventure Company\Dark Fall\darkfall.exe (Macromedia, Inc.)
Shortcut: C:\Users\Jared\Desktop\Hidden Expedition Titanic.lnk -> C:\Program Files (x86)\Hidden Expedition Titanic\HidExpTitanic.exe (Big Fish Games               )
Shortcut: C:\Users\Jared\Desktop\Lost Secrets Bermuda Triangle.lnk -> C:\Program Files (x86)\GameMill Entertainment\Lost Secrets Bermuda Triangle\Bermuda.exe ()
Shortcut: C:\Users\Jared\Desktop\MagicISO.lnk -> C:\Program Files (x86)\MagicISO\MagicISO.exe (MagicISO, Inc.)
Shortcut: C:\Users\Jared\Desktop\Mystery Case Files - Huntsville.lnk -> C:\Program Files (x86)\Mystery Case Files - Huntsville\MysteryCaseFiles.exe (Copyright © 2005 Big Fish Games)
Shortcut: C:\Users\Jared\Desktop\Nancy Drew - Curse of Blackmoor Manor.lnk -> C:\Program Files\Nancy Drew\Curse of Blackmoor Manor\Game.exe (Her Interactive)
Shortcut: C:\Users\Jared\Desktop\Out Of Order.lnk -> C:\Program Files\Games\Out Of Order\Out Of Order.exe ()
Shortcut: C:\Users\Jared\Desktop\Silent Hill.lnk -> C:\Program Files (x86)\Silent Hill\Silent Hill.exe ()
Shortcut: C:\Users\Jared\Desktop\The Black Mirror.lnk -> C:\Program Files (x86)\The Adventure Company\The Black Mirror\BMirror.exe ()
Shortcut: C:\Users\Jared\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hulu Desktop.lnk -> C:\Users\Dee\AppData\Local\HuluDesktop\HuluDesktop.exe (Hulu LLC)
Shortcut: C:\Users\Jared\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Jared\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Jared\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Jared\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Jared\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Jared\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Jared\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Jared\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Jared\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (No File)
Shortcut: C:\Users\Jared\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Jared\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (No File)
Shortcut: C:\Users\Jared\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\HP MediaSmart.lnk -> C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe ()
Shortcut: C:\Users\Jared\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\hpDST.lnk -> C:\Program Files (x86)\Hewlett-Packard\Setup Manager\hpDST.exe (Hewlett-Packard Company)
Shortcut: C:\Users\Jared\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\Jared\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Jared\AppData\Local\Microsoft\Windows\GameExplorer\{750CBEC7-D4C3-4C32-8491-8C6D85E29BBE}\PlayTasks\0\Play.lnk -> C:\Program Files (x86)\Microsoft Games\Fable - The Lost Chapters\Fable.exe (No File)
Shortcut: C:\Users\Public\Desktop\Agatha Christie - And Then There Were None.lnk -> C:\Program Files (x86)\The Adventure Company\And Then There Were None\ac.exe ()
Shortcut: C:\Users\Public\Desktop\Alan Wake.lnk -> C:\Program Files (x86)\Black_Box\Alan Wake\AlanWake.exe ()
Shortcut: C:\Users\Public\Desktop\Alone in the Dark - The New Nightmare.lnk -> C:\GOG Games\Alone in the Dark - The New Nightmare\launch.exe ()
Shortcut: C:\Users\Public\Desktop\American McGee's Alice™.lnk -> C:\Program Files (x86)\EA GAMES\American McGee's Alice\alice.exe (Rogue Entertainment)
Shortcut: C:\Users\Public\Desktop\Back To The Future The Game.lnk -> C:\Program Files (x86)\Telltale Games\Back to the Future The Game\Episode 1\BackToTheFuture101.exe (Telltale Games)
Shortcut: C:\Users\Public\Desktop\Dark Fall Lost Souls.lnk -> C:\Program Files (x86)\Dark Fall Lost Souls\DarkFallLostSouls.exe (Dead:Code Software)
Shortcut: C:\Users\Public\Desktop\Donald Dowell.lnk -> C:\Program Files (x86)\Donald Dowell\Donald Dowell.exe (Ape Marina                    )
Shortcut: C:\Users\Public\Desktop\Dracula - The Last Sanctuary.lnk -> C:\Dracula - The Last Sanctuary\Dracula2.exe (4X Technologies)
Shortcut: C:\Users\Public\Desktop\Dracula 4.lnk -> C:\GOG Games\Dracula 4 - Shadow of the Dragon\Dracula4.exe ()
Shortcut: C:\Users\Public\Desktop\Dracula 5.lnk -> C:\GOG Games\Dracula 5\Dracula5.exe ()
Shortcut: C:\Users\Public\Desktop\Dracula Resurrection.lnk -> C:\Dracula Resurrection\Dracula.exe (4X Technologies)
Shortcut: C:\Users\Public\Desktop\Dracula3.lnk -> C:\Microids\Dracula 3\Dracula3.exe (Microïds)
Shortcut: C:\Users\Public\Desktop\Gray Matter.lnk -> C:\Program Files (x86)\Gray Matter\Game.exe ()
Shortcut: C:\Users\Public\Desktop\Launch Nibiru.lnk -> C:\Program Files (x86)\JoWood\Nibiru\nibiru.exe ()
Shortcut: C:\Users\Public\Desktop\Launch Return to Mysterious Island.lnk -> C:\Program Files (x86)\JoWood\Return to Mysterious Island\RtMI.exe (The Adventure Company)
Shortcut: C:\Users\Public\Desktop\Launch Tunguska.lnk -> C:\Program Files (x86)\JoWood\Tunguska\AutoStarter.exe ()
Shortcut: C:\Users\Public\Desktop\Lights, Camera, Curses!.lnk -> C:\Program Files (x86)\Nancy Drew Dossier\Lights, Camera, Curses!\Curses.exe (Her Interactive)
Shortcut: C:\Users\Public\Desktop\Message in a Haunted Mansion.lnk -> C:\Users\Dee\Desktop\Games\NancyDrewMessageinHauntedMansion\Game.exe (Her Interactive)
Shortcut: C:\Users\Public\Desktop\Monkey Island 2 LeChucks Revenge Special Edition.lnk -> C:\Program Files (x86)\LucasArts\Monkey Island 2 LeChucks Revenge Special Edition\Monkey2.exe (LucasArts Entertainment Company)
Shortcut: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\Public\Desktop\Mystery Case Files Prime Suspects.lnk -> C:\Program Files (x86)\Mystery Case Files Prime Suspects\play.exe ()
Shortcut: C:\Users\Public\Desktop\Mystery in London.lnk -> C:\Program Files (x86)\Mystery in London\MysteryInLondon.exe ()
Shortcut: C:\Users\Public\Desktop\Pirateville.lnk -> C:\Program Files (x86)\Pirateville\Pirateville.exe ()
Shortcut: C:\Users\Public\Desktop\Play Alibi in Ashes.lnk -> C:\Program Files (x86)\Her Interactive\Nancy Drew Alibi in Ashes\Alibi.exe (Her Interactive)
Shortcut: C:\Users\Public\Desktop\Play Antique Road Trip USA.lnk -> C:\Program Files (x86)\Legacy Interactive\Antique Road Trip USA\ART.exe (Boomzap Entertainment)
Shortcut: C:\Users\Public\Desktop\Play Cate West - The Velvet Keys.lnk -> C:\Program Files (x86)\Legacy Interactive\Cate West - The Velvet Keys\CateWest2.exe ()
Shortcut: C:\Users\Public\Desktop\Play Ransom of the Seven Ships.lnk -> C:\Program Files (x86)\Nancy Drew\Ransom of the Seven Ships\Ransom.exe (Her Interactive)
Shortcut: C:\Users\Public\Desktop\Play Scratches Director's Cut.lnk -> C:\Users\Dee\Scratches Director's Cut\LaunchGame.bfg ()
Shortcut: C:\Users\Public\Desktop\Play Special Enquiry Detail.lnk -> C:\Program Files (x86)\Legacy Interactive\Special Enquiry Detail\SED.exe ()
Shortcut: C:\Users\Public\Desktop\Play The Lost Cases of 221B Baker St.lnk -> C:\Program Files (x86)\Legacy Interactive\The Lost Cases of 221B Baker St\The Lost Cases of 221B Baker St.exe ()
Shortcut: C:\Users\Public\Desktop\Private Eye.lnk -> C:\Program Files (x86)\Private Eye\Private Eye.exe (GameAgents Corp)
Shortcut: C:\Users\Public\Desktop\Real Crimes - Jack the Ripper.lnk -> C:\Program Files (x86)\Games Of The Month\Real Crimes - Jack the Ripper\Launcher.hta ()
Shortcut: C:\Users\Public\Desktop\Resorting to Danger.lnk -> C:\Program Files (x86)\Nancy Drew Dossier\Resorting to Danger\ResortingToDanger.exe (Her Interactive)
Shortcut: C:\Users\Public\Desktop\Silent Hill 2 - Directors Cut.lnk -> C:\Program Files (x86)\Konami\Silent Hill 2\sh2pc.exe ()
Shortcut: C:\Users\Public\Desktop\SILENT HILL 3.lnk -> C:\Program Files (x86)\Konami\SILENT HILL 3\sh3.exe (Konami Computer Entertainment Tokyo, Inc.)
Shortcut: C:\Users\Public\Desktop\Syberia.lnk -> C:\Program Files (x86)\Syberia\Syberia.exe (Microids Canada)
Shortcut: C:\Users\Public\Desktop\Vampireville.lnk -> C:\Program Files (x86)\Vampireville\Vampireville.exe ()


ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Trials for QuickBooks, Quicken and TurboTax.lnk -> C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe () -> hxxp://redirect.hp.com/svs/rdr?locale=en_us&bd=pavilion&tp=onlinesvs&s=quickenfc&pf=cndt&c=111&TYPE=4
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Download Store.lnk -> C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe () -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=hp_softwarestore&pf=cndt&locale=en_us&bd=all&c=111
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eReaders\HP Barnes & Noble Desktop eReader.lnk -> C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe () -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=barnes_n_noble&tp=onlinesvs&pf=cndt&locale=en_us&bd=all&c=104
ShortcutWithArgument: C:\Users\Ethan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\HP Download Store.lnk -> C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe () -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=hp_softwarestore&pf=cndt&locale=en_us&bd=all&c=111
ShortcutWithArgument: C:\Users\Guest\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\HP Download Store.lnk -> C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe () -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=hp_softwarestore&pf=cndt&locale=en_us&bd=all&c=111
ShortcutWithArgument: C:\Users\Jared\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\HP Download Store.lnk -> C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe () -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=hp_softwarestore&pf=cndt&locale=en_us&bd=all&c=111


ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DefaultPrograms
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk -> C:\Windows\System32\wuapp.exe (Microsoft Corporation) -> startmenu
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Manager.lnk -> C:\Program Files (x86)\bfgclient\bfgclient.exe () -> -u
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vampireville\Uninstall Vampireville.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{0492E5AE-8B37-45E2-BE12-B2875ABF4061}\setup.exe (Macrovision Corporation) -> -uninst
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\And Then There Were None\Uninstall Game.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{E4628D0D-5DC8-49EC-985A-F0C12EDBF1D2}\setup.exe" -l0x9 \ -uninst
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Registration-Activation.lnk -> C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware) ->  /register
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled\Snapfish PictureMover.lnk -> C:\Program Files (x86)\PictureMover\Bin\PictureMover.exe (Hewlett-Packard Company) -> -det
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Silent Hill\Uninstall Silent Hill.lnk -> C:\Windows\iun6002ev.exe (Indigo Rose Corporation) -> "C:\Program Files (x86)\Silent Hill\irunin.ini"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScummVM\ScummVM (noconsole).lnk -> C:\Program Files (x86)\ScummVM\scummvm.exe () -> --no-console
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Red Orb Entertainment\John Saul's Blackstone Chronicles\uninstall game.lnk -> C:\Windows\IsUninst.exe (InstallShield Software Corporation) -> -f"C:\Program Files (x86)\Red Orb Entertainment\John Saul's Blackstone Chronicles\Uninst.isu"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime\Uninstall QuickTime.lnk -> C:\Windows\SysWOW64\msiexec.exe (Microsoft Corporation) -> /i {AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A} /qf
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Private Eye\Uninstall Private Eye.lnk -> C:\Windows\Private Eye\uninstall.exe () -> "/U:C:\Program Files (x86)\Private Eye\Uninstall\uninstall.xml"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pirateville\Uninstall Pirateville.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{88C77575-0C42-4DA0-861E-9AC38241A120}\setup.exe (Macrovision Corporation) -> -uninst
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Online Services\getonline.lnk -> C:\Program Files (x86)\Hewlett-Packard\HP Setup\hptcs.exe (Hewlett-Packard) -> MODE=GETONLINE
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nancy Drew Dossier\Resorting to Danger\Uninstall.lnk -> C:\Windows\SysWOW64\msiexec.exe (Microsoft Corporation) -> /x {74096E43-C712-4DED-A530-719CA2E0DE80}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nancy Drew Dossier\Lights, Camera, Curses!\Uninstall.lnk -> C:\Windows\SysWOW64\msiexec.exe (Microsoft Corporation) -> /x {3E0BDBA0-0BD1-4749-A624-8AD3BC787198}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nancy Drew - Curse of Blackmoor Manor\Buy Nancy Drew - Curse of Blackmoor Manor.lnk -> C:\Program Files\Nancy Drew\Curse of Blackmoor Manor\Game.exe (Her Interactive) -> --AmTriggerPurchase
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nancy Drew\Ransom of the Seven Ships\Uninstall.lnk -> C:\Windows\SysWOW64\msiexec.exe (Microsoft Corporation) -> /x {1088F929-91D9-4FD5-8AE8-E9593CD47CD7}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mystery Case Files - 13th Skull Collectors Edition\4. Uninstall Mystery Case Files - 13th Skull CE.lnk -> C:\Windows\SysWOW64\msiexec.exe (Microsoft Corporation) -> /x {B073B30C-7D4C-401D-ABF6-993F7A0DE762}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (English)\Microsoft Excel Starter 2010.lnk -> C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE (Microsoft Corporation) -> "Microsoft Excel Starter 2010 9014006604090000"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (English)\Microsoft Word Starter 2010.lnk -> C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE (Microsoft Corporation) -> "Microsoft Word Starter 2010 9014006604090000"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (English)\Microsoft Office 2010 Tools\Microsoft Clip Organizer.lnk -> C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE (Microsoft Corporation) -> "Microsoft Clip Organizer 9014006604090000"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (English)\Microsoft Office 2010 Tools\Microsoft Office 2010 Upload Center.lnk -> C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE (Microsoft Corporation) -> "Microsoft Office 2010 Upload Center 9014006604090000"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (English)\Microsoft Office 2010 Tools\Microsoft Office Picture Manager.lnk -> C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE (Microsoft Corporation) -> "Microsoft Office Picture Manager 9014006604090000"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (English)\Microsoft Office 2010 Tools\Microsoft Office Starter To-Go Device Manager 2010.lnk -> C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE (Microsoft Corporation) -> "Microsoft Office Starter To-Go Device Manager 2010 9014006604090000"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Backup and Restore Center.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.BackupAndRestore
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicISO\Magic CD & DVD Burner.lnk -> C:\Program Files (x86)\MagicISO\MagicISO.exe (MagicISO, Inc.) -> /cdburner
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LightScribe Direct Disc Labeling\Getting Started.lnk -> C:\Program Files (x86)\Common Files\LightScribe\LSLauncher.exe (Hewlett-Packard Company) -> 1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lexmark X1100 Series\Lexmark Photo Editor.LNK -> C:\Program Files (x86)\Lexmark X1100 Series\pheditor.exe (Lexmark International, Inc.) -> /p="Lexmark X1100 Series"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lexmark X1100 Series\Lexmark Solution Center.LNK -> C:\Windows\System32\spool\drivers\x64\3\lxbkpswx.exe (Lexmark International Inc.) -> /M=Lexmark X1100 Series /T=100
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lexmark X1100 Series\Readme.lnk -> C:\Windows\System32\write.exe (Microsoft Corporation) -> C:\Windows\system32\spool\drivers\x64\3\lxbkrme.doc
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Konami\SILENT HILL 3\uninstall.lnk -> C:\Program Files (x86)\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe () -> /M{14D10AAC-9737-454E-A247-8075C26C30E1}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Konami\Silent Hill 2 - Directors Cut\Uninstall Silent Hill 2 - Directors Cut.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> C:\PROGRA~2\COMMON~1\INSTAL~1\Engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{D3C80E77-E549-4F76-BC07-61DDBD950345}\setup.exe"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\DirectVobSub.lnk -> C:\Windows\SysWOW64\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\vsfilter.dll",DirectVobSub
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\ffdshow audio decoder.lnk -> C:\Windows\SysWOW64\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\ffdshow\ffdshow.ax",configureAudio
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\ffdshow DXVA video decoder.lnk -> C:\Windows\SysWOW64\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\ffdshow\ffdshow.ax",configureDXVA
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\ffdshow VFW interface.lnk -> C:\Windows\SysWOW64\rundll32.exe (Microsoft Corporation) -> "C:\Windows\SysWOW64\ff_vfw.dll",configureVFW
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\ffdshow video decoder.lnk -> C:\Windows\SysWOW64\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\ffdshow\ffdshow.ax",configure
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\Haali Media Splitter.lnk -> C:\Windows\SysWOW64\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\Haali\splitter.ax",Configure
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\Haali video renderer.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\dsconfig.exe (MONOGRAM Multimedia, s.r.o.) -> {760A8F35-97E7-479D-AAF5-DA9EFF95D751}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\madFLAC.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\dsconfig.exe (MONOGRAM Multimedia, s.r.o.) -> {6B257121-CBB6-46B3-ABFA-B14DFA98C4A6}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\Reset to recommended settings.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe () -> /showsections=reset_settings
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\VP7 decoder.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\dsconfig.exe (MONOGRAM Multimedia, s.r.o.) -> {C204438D-6E1A-4309-B09C-0C0F749863AF}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\Xvid encoder.lnk -> C:\Windows\SysWOW64\rundll32.exe (Microsoft Corporation) -> "C:\Windows\SysWOW64\xvidvfw.dll",Configure
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Codec Tweak Tool\Generate log with system information.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe () -> /showsections=generate_log
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Codec Tweak Tool\Manage ACM and VFW codecs.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe () -> /showsections=codec_management
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Codec Tweak Tool\Manage DirectShow filters.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe () -> /showsections=dsfilter_management
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Codec Tweak Tool\Manage preferred DirectShow source filters.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe () -> /showsections=sourcefilters
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk -> C:\Program Files (x86)\Java\jre7\bin\javacpl.exe (Oracle Corporation) -> -tab about
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk -> C:\Program Files (x86)\Java\jre7\bin\javacpl.exe (Oracle Corporation) -> -tab update
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP MediaSmart\HP MediaSmart Music.lnk -> C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Music\HPTouchSmartMusic.exe (CyberLink Corp.) -> /MS
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GE MiniCam Pro\Uninstall.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{ECD03DA7-5952-406A-8156-5F0C93618D1F}\setup.exe (Macrovision Corporation) -> -runfromtemp -l0x0009
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES\American McGee's Alice\Uninstall Alice.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{77B5AD60-8F14-11D4-9BC9-0050041A1090}\Setup.exe (InstallShield Software Corporation) -> -uninst
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comcast\Easy Solve.lnk -> C:\Program Files (x86)\Comcast\pcBrowser.exe (Alcatel-Lucent) -> -appkey=Comcast -hidden -url=file://C:\Program Files (x86)\Comcast\Start.htm?VendorID=Comcast,isHidden=false,ConnectivityRequired=true,flowId=HOMEPAGE,FlowParams=
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Funhouse\Uninstall.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{A964DB23-B213-432E-8403-0CBFE2883039}\Setup.exe" -10x9  -uninst
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center\Help.lnk -> C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.exe (ATI Technologies Inc.) -> Start Help -help
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell Modules.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) -> -NoExit -ImportSystemModules
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) -> /open
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Welcome Center.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{d58eecb0-0816-11de-8c30-0800200c9a66}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\HP Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=d58eecb0-0816-11de-8c30-0800200c9a66 /src gameexploreroem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{c3c636e0-1b04-11de-8c30-0800200c9a66}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\HP Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=c3c636e0-1b04-11de-8c30-0800200c9a66 /src gameexploreroem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{3eda1e54-8889-41f5-a649-5a306789b7ef}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\HP Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=3eda1e54-8889-41f5-a649-5a306789b7ef /src gameexploreroem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{26352374-af55-4b53-b07b-6b0288ed97df}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\HP Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=26352374-af55-4b53-b07b-6b0288ed97df /src gameexploreroem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{000d96f5-8034-4b74-a429-b6f0b04c75f4}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\HP Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=000d96f5-8034-4b74-a429-b6f0b04c75f4 /src gameexploreroem
ShortcutWithArgument: C:\ProgramData\Hewlett-Packard\Recovery\Links\Apps.lnk -> C:\Program Files (x86)\Hewlett-Packard\Recovery\RecoveryMgr.exe (CyberLink) -> /ReinstallApp
ShortcutWithArgument: C:\ProgramData\Hewlett-Packard\Recovery\Links\DelRP.lnk -> C:\Program Files (x86)\Hewlett-Packard\Recovery\RecoveryMgr.exe (CyberLink) -> /DelRP
ShortcutWithArgument: C:\ProgramData\Hewlett-Packard\Recovery\Links\Driver.lnk -> C:\Program Files (x86)\Hewlett-Packard\Recovery\RecoveryMgr.exe (CyberLink) -> /ReinstallDriver
ShortcutWithArgument: C:\ProgramData\Hewlett-Packard\Recovery\Links\Report.lnk -> C:\Program Files (x86)\Hewlett-Packard\Recovery\RecoveryMgr.exe (CyberLink) -> /RecoveryReport
ShortcutWithArgument: C:\ProgramData\Hewlett-Packard\Recovery\Links\RMC.lnk -> C:\Program Files (x86)\Hewlett-Packard\Recovery\RecoveryMgr.exe (CyberLink) -> /CDCreator
ShortcutWithArgument: C:\ProgramData\Hewlett-Packard\HP Setup\launchreg.lnk -> C:\Program Files (x86)\Hewlett-Packard\HP Setup\RunOnceHPTCS.exe () -> MODE=Registration
ShortcutWithArgument: C:\ProgramData\Hewlett-Packard\base\launch_base.lnk -> C:\Program Files (x86)\Hewlett-Packard\HP Setup\hptcs.exe (Hewlett-Packard) -> MODE=GETONLINE
ShortcutWithArgument: C:\Users\Dee\Desktop\Tales of Monkey Island.lnk -> C:\Program Files (x86)\Telltale Games\Tales of Monkey Island\autorun.exe (Telltale Games) -> MonkeyIsland100
ShortcutWithArgument: C:\Users\Dee\Desktop\Tools\Easy Solve.lnk -> C:\Program Files (x86)\Comcast\pcBrowser.exe (Alcatel-Lucent) -> -appkey=Comcast -hidden -url=file://C:\Program Files (x86)\Comcast\Start.htm?VendorID=Comcast,isHidden=false,ConnectivityRequired=true,flowId=HOMEPAGE,FlowParams=
ShortcutWithArgument: C:\Users\Dee\Desktop\Jaredsstuff\Music-PicturePrograms\HP Music.lnk -> C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Music\HPTouchSmartMusic.exe (CyberLink Corp.) -> /MS /Rhapsody
ShortcutWithArgument: C:\Users\Dee\Desktop\GeneralApps\Lexmark X1100 Series All-In-One Center.lnk -> C:\Program Files (x86)\Lexmark X1100 Series\LXBKaiox.exe (Lexmark International Inc.) ->  
ShortcutWithArgument: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubi Soft\Hitchcock - The Final Cut\Online Registration.lnk -> C:\Program Files (x86)\Ubi Soft\Hitchcock\Ubi1.exe (Leader Technologies/Ubisoft) -> /PRNM="Hitchcock"
ShortcutWithArgument: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubi Soft\Hitchcock - The Final Cut\Uninstall.lnk -> C:\Windows\SysWOW64\msiexec.exe (Microsoft Corporation) -> /x {4154A302-2601-1401-2002-415258454C01}
ShortcutWithArgument: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twisted - A Haunted Carol\Uninstall Twisted - A Haunted Carol.lnk -> C:\Program Files (x86)\Foxy Games\Twisted - A Haunted Carol\uninstall.exe (Indigo Rose Corporation) -> "/U:C:\Program Files (x86)\Foxy Games\Twisted - A Haunted Carol\Uninstall\uninstall.xml"
ShortcutWithArgument: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telltale Games\Tales of Monkey Island\Tales of Monkey Island.lnk -> C:\Program Files (x86)\Telltale Games\Tales of Monkey Island\autorun.exe (Telltale Games) -> MonkeyIsland100
ShortcutWithArgument: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Run Hunter Mode.lnk -> C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe (VS Revo Group) -> -hunter
ShortcutWithArgument: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nancy Drew -  The Captive Curse\Uninstall Nancy Drew -  The Captive Curse.lnk -> C:\Program Files (x86)\Nancy Drew -  The Captive Curse\uninstall.exe (Indigo Rose Corporation) -> "/U:C:\Program Files (x86)\Nancy Drew -  The Captive Curse\Uninstall\uninstall.xml"
ShortcutWithArgument: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mystery Case Files 8- Escape from Ravenhearst CE\Uninstall Mystery Case Files 8- Escape from Ravenhearst CE.lnk -> C:\Program Files (x86)\Mystery Case Files 8- Escape from Ravenhearst CE\uninstall.exe (Indigo Rose Corporation) -> "/U:C:\Program Files (x86)\Mystery Case Files 8- Escape from Ravenhearst CE\Uninstall\uninstall.xml"
ShortcutWithArgument: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mystery Case Files - Dire Grove Collector's Edition\Uninstall Mystery Case Files - Dire Grove Collector's Edition.lnk -> C:\Windows\Mystery Case Files - Dire Grove Collector's Edition\uninstall.exe () -> "/U:C:\Program Files (x86)\Mystery Case Files - Dire Grove Collector's Edition\Uninstall\uninstall.xml"
ShortcutWithArgument: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Midnight Mysteries - The Edgar Allan Poe Conspiracy\Uninstall Midnight Mysteries - The Edgar Allan Poe Conspiracy.lnk -> C:\Windows\Midnight Mysteries - The Edgar Allan Poe Conspiracy\uninstall.exe () -> "/U:C:\Program Files (x86)\Midnight Mysteries - The Edgar Allan Poe Conspiracy\Uninstall\uninstall.xml"
ShortcutWithArgument: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lost Horizon\Uninstall Lost Horizon.lnk -> C:\Program Files (x86)\Lost Horizon\uninstall.exe (Indigo Rose Corporation) -> "/U:C:\Program Files (x86)\Lost Horizon\Uninstall\uninstall.xml"
ShortcutWithArgument: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kaspersky Security Scan\Remove Kaspersky Security Scan.lnk -> C:\Windows\SysWOW64\msiexec.exe (Microsoft Corporation) -> /i{D1282694-0693-41A8-ABC1-6D1FFC1F65C4}
ShortcutWithArgument: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) ->  -extoff
ShortcutWithArgument: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk -> C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Technologies S.A.) -> /sendto:
ShortcutWithArgument: C:\Users\Dee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\Users\Dee\AppData\Local\Microsoft\Windows\GameExplorer\{d58eecb0-0816-11de-8c30-0800200c9a66}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\HP Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=d58eecb0-0816-11de-8c30-0800200c9a66 /src gameexploreroem
ShortcutWithArgument: C:\Users\Dee\AppData\Local\Microsoft\Windows\GameExplorer\{000d96f5-8034-4b74-a429-b6f0b04c75f4}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\HP Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=000d96f5-8034-4b74-a429-b6f0b04c75f4 /src gameexploreroem
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Ethan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) ->  -extoff
ShortcutWithArgument: C:\Users\Ethan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\Ethan\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Ethan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) ->  -extoff
ShortcutWithArgument: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Guest\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\Users\Jared\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) ->  -extoff
ShortcutWithArgument: C:\Users\Jared\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\Jared\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Jared\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1


InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\The Adventure Company Web Site.url -> hxxp://www.adventurecompanygames.com/tac/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\Microids\StillLife\Microïds Web Site.url -> hxxp://www.microids.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\Microids\StillLife\StillLife Web Site.url -> hxxp://www.stilllife-game.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\Microids\Obscure\Obscure Web Site.url -> hxxp://www.obscure-game.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\And Then There Were None\Agatha Christie.url -> hxxp://www.agathachristiegame.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\And Then There Were None\AWE Games.url -> hxxp://www.awegames.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Adventure Company\And Then There Were None\The Adventure Company.url -> hxxp://theadventurecompanygames.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Telltale Games\Telltale Games Support.url -> hxxp://www.telltalegames.com/support/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Telltale Games\Back to the Future The Game\Telltale Games.url -> hxxp://www.telltalegames.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Syberia\Microïds website.url -> hxxp://www.microids.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Syberia\Syberia website.url -> hxxp://www.syberia.info
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Syberia\The Adventure Company Website.url -> hxxp://www.AdventureCompanyGames.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microids\Still Life 2\Microïds & You.url -> hxxp://www.microids.com/pub/event/community.php
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microids\Still Life 2\Microïds Shop.url -> hxxp://microids.gamesplanet.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microids\Still Life 2\Still Life 2 official site.url -> hxxp://www.stilllife-game.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microids\Still Life 2\Video contest winner.url -> hxxp://www.stilllife-game.com/en/stilllife-video-victoria-mcpherson-s-adventures.html
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWood\Adventure Anniversary Pack\Tunguska\Visit the JoWood Website.url -> hxxp://www.jowood.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWood\Adventure Anniversary Pack\Return to Mysterious Island\Visit the JoWood Website.url -> hxxp://www.jowood.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWood\Adventure Anniversary Pack\Nibiru\Visit the JoWood Website.url -> hxxp://www.jowood.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWood\Adventure Anniversary Pack\Dead Reefs\Visit the JoWood Website.url -> hxxp://www.jowood.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player\Homepage.url -> hxxp://www.gomlab.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Leisure Suit Larry 7 - Love for Sail!\Documents\Support.url -> hxxp://www.gog.com/support/leisure_suit_larry_love_for_sail
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Dracula 5\Documents\Support.url -> hxxp://www.gog.com/support/dracula_4_5
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Dracula 4 - Shadow of the Dragon\Documents\Support.url -> hxxp://www.gog.com/support/dracula_4_shadow_of_the_dragon
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Alone in the Dark - The New Nightmare\Documents\Support.url -> hxxp://www.gog.com/support/alone_in_the_dark_the_new_nightmare
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Alan Wake\Alan Wake on the Web.url -> hxxp://www.blackboxrepack.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES\American McGee's Alice\Gameplay Help.url -> C:\Program Files (x86)\EA GAMES\American McGee's Alice\tutorial\manual.html
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES\American McGee's Alice\Web Resources\Alice's Home Page.url -> hxxp://www.alice.ea.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES\American McGee's Alice\Web Resources\EA Games.url -> hxxp://www.eagames.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES\American McGee's Alice\Web Resources\OpenGL Setup.url -> hxxp://www.glsetup.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES\American McGee's Alice\Web Resources\Rogue Entertainment.url -> hxxp://www.rogue-ent.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dracula Resurrection\Microïds Website.url -> hxxp://www.microids.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dracula 3\Kheops Studio Website.url -> hxxp://www.kheops-studio.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dracula 3\Microïds Website.url -> hxxp://www.microids.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dracula - The Last Sanctuary\Microïds Website.url -> hxxp://www.microids.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner Homepage.url -> hxxp://www.piriform.com/ccleaner
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Alan Wake\Alan Wake on the Web.url -> hxxp://www.blackboxrepack.com/
InternetURL: C:\Users\Dee\Music\Johnny Cash -  At Folsom Prison\Download music anonymus and legally (FOR FREE!).url -> hxxp://www.usenext.com/index.cfm?TD=373291
InternetURL: C:\Users\Dee\Music\Johnny Cash -  At Folsom Prison\Musik anonym und legal downloaden (KOSTENLOS!).url -> hxxp://www.firstload.de/affiliate/log.php?log=4795&style=2
InternetURL: C:\Users\Dee\Favorites\All Bus Sechedules - Gotobus.com.url -> hxxp://www.gotobus.com/busschedules/
InternetURL: C:\Users\Dee\Favorites\Libby Zion law - Wikipedia, the free encyclopedia.url -> hxxp://en.wikipedia.org/wiki/Libby_Zion
InternetURL: C:\Users\Dee\Favorites\Project Implicit® - Select a Test.url -> https://implicit.har...electatest.html
InternetURL: C:\Users\Dee\Favorites\Serotonin syndrome - Wikipedia, the free encyclopedia.url -> hxxp://en.wikipedia.org/wiki/Serotonin_syndrome
InternetURL: C:\Users\Dee\Favorites\WebCam Directions\http--www.jascoproducts.com-support-download-files-instruction1.pdf.url -> hxxp://www.jascoproducts.com/support/download-files/instruction1.pdf
InternetURL: C:\Users\Dee\Favorites\WebCam Directions\Jasco Product Support Center.url -> hxxp://www.jascoproducts.com/support/index.asp
InternetURL: C:\Users\Dee\Favorites\WebCam Directions\MiniCam Pro 98067 - Windows 7 Forums.url -> hxxp://www.sevenforums.com/drivers/53752-minicam-pro-98067-a.html
InternetURL: C:\Users\Dee\Favorites\TV\Comcast.net  Entertainment  News  Sports  Email  Watch TV Online  Comcast Deals  On Demand.url -> hxxp://xfinity.comcast.net/
InternetURL: C:\Users\Dee\Favorites\TV\Pub-D-Hub.url -> hxxp://pubdhub.info/main.php
InternetURL: C:\Users\Dee\Favorites\TV\Roku Channel Store  Netflix, Amazon Video On Demand, Hulu Plus & More on Roku Streaming Player.url -> hxxp://www.roku.com/roku-channel-store
InternetURL: C:\Users\Dee\Favorites\TV\YouTube - Broadcast Yourself..url -> hxxp://www.youtube.com/videos?feature=mh
InternetURL: C:\Users\Dee\Favorites\Torrents\Dark Fall Lost Souls [PC-DVD][English][www.consolasatope.com] Torrent Download.URL -> hxxp://torrentz.eu/4865cb8158f13a0c306d60eab0499e47efa1d288
InternetURL: C:\Users\Dee\Favorites\Torrents\Download music, movies, games, software! The Pirate Bay - The galaxy's most resilient BitTorrent site.url -> hxxp://thepiratebay.se/
InternetURL: C:\Users\Dee\Favorites\Torrents\isoHunt › the BitTorrent & P2P search engine.url -> hxxp://isohunt.com/
InternetURL: C:\Users\Dee\Favorites\Torrents\Torrent Downloading  The Top 40 Bittorrent Sites of 2011.URL -> hxxp://netforbeginners.about.com/od/peersharing/a/torrent_search.htm
InternetURL: C:\Users\Dee\Favorites\Torrents\torrentcafe.com    Welcome to torrentcafe.com.URL -> hxxp://torrentcafe.com/index.php
InternetURL: C:\Users\Dee\Favorites\Surveys\Activity  YouGov US Opinion Center.url -> https://today.yougov.com/account/
InternetURL: C:\Users\Dee\Favorites\Surveys\Grandparents.com - For Grandparents, Parents & Grandchildren.url -> hxxp://www.grandparents.com/gp/home/index.html?utm_source=InboxDollarsDM
InternetURL: C:\Users\Dee\Favorites\Surveys\InboxPays  Account Status.url -> hxxp://www.inboxpays.com/uc?a=accst
InternetURL: C:\Users\Dee\Favorites\Surveys\Ipsos i-Say - The Survey Reward Community with the Best Members.url -> hxxp://www.i-say.com/Home/tabid/36/language/en-US/Default.aspx
InternetURL: C:\Users\Dee\Favorites\Surveys\My Rewards  Synovate Global Opinion Panels.url -> https://www.globalop...s.com/myrewards
InternetURL: C:\Users\Dee\Favorites\Surveys\Play Games Online For Cash - Solitaire, Bejeweled 2 and More Online Games - WorldWinner Cash Competitions.url -> hxxp://www.worldwinner.com/cgi/tournament/list_all.pl
InternetURL: C:\Users\Dee\Favorites\Surveys\Pureprofile  Online marketing and market research  Redemptions.url -> https://redemptions....ns/bank_deposit
InternetURL: C:\Users\Dee\Favorites\Surveys\Update Your Information  YouGov US Opinion Center.url -> https://today.yougov...account/manage/
InternetURL: C:\Users\Dee\Favorites\Spirituality\Elevation Church.url -> hxxp://www.elevationchurch.org/
InternetURL: C:\Users\Dee\Favorites\Shopping\Amazon Betterizer.url -> hxxp://www.amazon.com/gp/betterizer/ref=pd_bzer_sl_nu_ysh_auto_redirect
InternetURL: C:\Users\Dee\Favorites\Shopping\Credit Report Card.url -> https://www.creditka...eport/inquiries
InternetURL: C:\Users\Dee\Favorites\Shopping\Fujifilm SeeHere - Photo Cards, Photo Books.url -> hxxp://www.seehere.com/?cm_mmc=CJ-_-2615683-_-3346764-_-SeeHere.com
InternetURL: C:\Users\Dee\Favorites\Shopping\My eBay Summary.url -> hxxp://my.ebay.com/ws/eBayISAPI.dll?MyeBay
InternetURL: C:\Users\Dee\Favorites\Shopping\Ollie's Bargain Outlet  Good Stuff Cheap!.url -> hxxp://olliesbargainoutlet.com/flyer/flyer.aspx
InternetURL: C:\Users\Dee\Favorites\Shopping\USA Gold – Your Spirit. Your Smoke.url -> hxxp://www.joinusagold.com/main-secured.aspx
InternetURL: C:\Users\Dee\Favorites\Recipes\Homemade Vanilla Pudding Recipe - Allrecipes.com.url -> hxxp://allrecipes.com/Recipe/Homemade-Vanilla-Pudding/
InternetURL: C:\Users\Dee\Favorites\Recipes\Macaroni Salad - Classic Macaroni Salad Recipe With Mayonnaise and Vegetables.url -> hxxp://southernfood.about.com/od/pastasalads/r/bl90612c.htm
InternetURL: C:\Users\Dee\Favorites\Recipes\Yellow Cake.url -> hxxp://www.bettycrocker.com/recipes/yellow-cake/f6965118-14cf-4ff5-ad88-9b7374d72356/?p=1
InternetURL: C:\Users\Dee\Favorites\Microsoft Websites\Bing.url -> hxxp://g.msn.com/1me10IE9ENUS/401
InternetURL: C:\Users\Dee\Favorites\Microsoft Websites\Discover Bing.url -> hxxp://g.msn.com/1me10IE9ENUS/402
InternetURL: C:\Users\Dee\Favorites\Microsoft Websites\IE Add-on site.url -> hxxp://go.microsoft.com/fwlink/?LinkId=50893
InternetURL: C:\Users\Dee\Favorites\Microsoft Websites\IE site on Microsoft.com.url -> hxxp://go.microsoft.com/fwlink/?linkid=44661
InternetURL: C:\Users\Dee\Favorites\Microsoft Websites\Microsoft At Home.url -> hxxp://g.msn.com/1me10IE9ENUS/409
InternetURL: C:\Users\Dee\Favorites\Microsoft Websites\Microsoft At Work.url -> hxxp://g.msn.com/1me10IE9ENUS/410
InternetURL: C:\Users\Dee\Favorites\Microsoft Websites\Microsoft Showcase.url -> hxxp://g.msn.com/1me10IE9ENUS/413
InternetURL: C:\Users\Dee\Favorites\Microsoft Websites\Microsoft Store.url -> hxxp://g.msn.com/1me10IE9ENUS/411
InternetURL: C:\Users\Dee\Favorites\Microsoft Websites\Microsoft.com.url -> hxxp://g.msn.com/1me10IE9ENUS/412
InternetURL: C:\Users\Dee\Favorites\Microsoft Websites\MSN Websites\MSN Autos.url -> hxxp://g.msn.com/1me10IE9ENUS/405
InternetURL: C:\Users\Dee\Favorites\Microsoft Websites\MSN Websites\MSN Entertainment.url -> hxxp://g.msn.com/1me10IE9ENUS/406
InternetURL: C:\Users\Dee\Favorites\Microsoft Websites\MSN Websites\MSN Lifestyle.url -> hxxp://g.msn.com/1me10IE9ENUS/407
InternetURL: C:\Users\Dee\Favorites\Microsoft Websites\MSN Websites\MSN Money.url -> hxxp://g.msn.com/1me10IE9ENUS/408
InternetURL: C:\Users\Dee\Favorites\Microsoft Websites\MSN Websites\MSN Sports.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68921
InternetURL: C:\Users\Dee\Favorites\Microsoft Websites\MSN Websites\MSN.url -> hxxp://g.msn.com/1me10IE9ENUS/403
InternetURL: C:\Users\Dee\Favorites\Microsoft Websites\MSN Websites\MSNBC News.url -> hxxp://g.msn.com/1me10IE9ENUS/404
InternetURL: C:\Users\Dee\Favorites\Marines\Bulk Fuel Specialist MOS in MOS Schools - Southeast Forum.URL -> hxxp://usmc.yuku.com/reply/791697/Bulk-Fuel-Specialist-MOS#reply-791697
InternetURL: C:\Users\Dee\Favorites\Marines\DVIDS - News - MWSS-273 bulk fuels keep aircraft fueled for flight.url -> hxxp://www.dvidshub.net/news/73388/mwss-273-bulk-fuels-keep-aircraft-fueled-flight
InternetURL: C:\Users\Dee\Favorites\Marines\Home - My vbPortal.URL -> hxxp://www.yellowfootprints.com/modules/Jig/index.php
InternetURL: C:\Users\Dee\Favorites\Marines\http--www.mccs-sc.com-tlf-index.asp.url -> hxxp://www.mccs-sc.com/tlf/index.asp
InternetURL: C:\Users\Dee\Favorites\Marines\Marine Corps Enlisted Job Descriptions.url -> hxxp://www.usmchangout.com/usmc/facts/mos/enlisted/index.html
InternetURL: C:\Users\Dee\Favorites\Marines\Marine Family Network - MFN Marine Family Network, a Place to Connect & Share®.url -> hxxp://marinefamilynetwork.com/
InternetURL: C:\Users\Dee\Favorites\Marines\Marine Wing Support Squadron 273 (MWSS-273) on MarineParents.com.url -> hxxp://www.marineparents.com/units/Print.asp?ID=252
InternetURL: C:\Users\Dee\Favorites\Marines\Marines Social Media Handbook.url -> hxxp://www.scribd.com/doc/66413640/Marines-Social-Media-Handbook
InternetURL: C:\Users\Dee\Favorites\Marines\Marines.mil  Official Home of the United States Marine Corps.url -> hxxp://www.marines.mil/Pages/Default.aspx
InternetURL: C:\Users\Dee\Favorites\Marines\MWSS-273 Sweathogs - Unit Pages.url -> hxxp://unitpages.military.com/unitpages/unit.do?id=722678
InternetURL: C:\Users\Dee\Favorites\Marines\MWSW-273 Family Readiness.url -> hxxp://www.marines.mil/unit/2ndMAW/mwsg27/mwss273/Pages/FamReadiness.aspx
InternetURL: C:\Users\Dee\Favorites\Marines\MWSW-273 Home Page.url -> hxxp://www.marines.mil/unit/2ndMAW/mwsg27/mwss273/Pages/default.aspx
InternetURL: C:\Users\Dee\Favorites\Marines\Richards Art Factory  The RAF Store.url -> hxxp://www.richardsartfactory.com/store/
InternetURL: C:\Users\Dee\Favorites\Marines\The Boot and The JetStream Online.url -> hxxp://thebootandjetstream.com/
InternetURL: C:\Users\Dee\Favorites\Marines\Deployment\http--www.military-missions.org-add-a-hero-.url -> hxxp://www.military-missions.org/add-a-hero/
InternetURL: C:\Users\Dee\Favorites\Marines\Deployment\iCasualties  OEF  Afghanistan  Fatalities Details.url -> hxxp://icasualties.org/OEF/Fatalities.aspx
InternetURL: C:\Users\Dee\Favorites\Marines\Deployment\MotoMail.us - Communications at the Speed of Life!  Powered by SuperLetter.Com.url -> https://www.motomail.us/html/index.cfm
InternetURL: C:\Users\Dee\Favorites\Links\Netflix.URL -> hxxp://movies.netflix.com/WiHome
InternetURL: C:\Users\Dee\Favorites\Links\Suggested Sites.url -> https://ieonline.mic...ft.com/#ieslice
InternetURL: C:\Users\Dee\Favorites\Links\Twitter - Home.url -> hxxp://twitter.com/
InternetURL: C:\Users\Dee\Favorites\Links\Web Slice Gallery.url -> hxxp://go.microsoft.com/fwlink/?LinkId=121315
InternetURL: C:\Users\Dee\Favorites\Links\Windows Live Mail.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68925
InternetURL: C:\Users\Dee\Favorites\Links\Morning\Answer quick surveys - instantly win real cash sweepstakes.url -> hxxp://instantcashsweepstakes.com/users/thanks
InternetURL: C:\Users\Dee\Favorites\Links\Morning\Celebrity Gossip   Entertainment News   Celebrity News   TMZ.com.URL -> hxxp://www.tmz.com/
InternetURL: C:\Users\Dee\Favorites\Links\Morning\Front Page  www.bedfordgazette.com  Bedford Gazette.url -> hxxp://www.bedfordgazette.com/news/2012-03-09/Front_Page
InternetURL: C:\Users\Dee\Favorites\Links\Morning\Gawker — Today's gossip is tomorrow's news.URL -> hxxp://gawker.com/#!classic
InternetURL: C:\Users\Dee\Favorites\Links\Morning\Homepage » Cumberland Times-News.url -> hxxp://times-news.com/
InternetURL: C:\Users\Dee\Favorites\Links\Morning\Homepage » The Tribune Democrat, Johnstown, PA.url -> hxxp://tribune-democrat.com/
InternetURL: C:\Users\Dee\Favorites\Links\Morning\Johnstown - Altoona - State College - Clearfield-DuBois, PA News, Weather, Traffic & Sports - WJAC.URL -> hxxp://www.wjactv.com/index.html
InternetURL: C:\Users\Dee\Favorites\Links\Morning\Johnstown Newswire - Topix.url -> hxxp://www.topix.com/wire/city/johnstown-pa
InternetURL: C:\Users\Dee\Favorites\Links\Morning\msnbc.com - Breaking news, science and tech news, world news, US news, local news- msnbc.com.url -> hxxp://www.msnbc.msn.com/
InternetURL: C:\Users\Dee\Favorites\Links\Morning\News Cafe - Restaurant Cafe - Miami Beach - Open 24hs.url -> hxxp://newscafe.com/welcome.html
InternetURL: C:\Users\Dee\Favorites\Links\Morning\Our Daily Bread.URL -> hxxp://odb.org/
InternetURL: C:\Users\Dee\Favorites\Links\Morning\weather.com - Aches & Pains - Local Forecast.url -> hxxp://www.weather.com/outlook/health/achesandpains/weather/tenday/15960?x=16&lswe=&lswa=&whatprefs=&from=aches_welcome&y=13
InternetURL: C:\Users\Dee\Favorites\Links\Morning\Woot®   One Day, One Deal™.URL -> hxxp://www.woot.com/
InternetURL: C:\Users\Dee\Favorites\HP\Accessories.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpaccessories&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Dee\Favorites\HP\Activity Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=activitycenter&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Dee\Favorites\HP\Digital Entertainment.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=digitalentm&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Dee\Favorites\HP\eBay.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=ebay&pf=cndt&locale=en_us&bd=all&c=104
InternetURL: C:\Users\Dee\Favorites\HP\HP - See What's Hot.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=webslice&tp=iefavbar&pf=cndt&locale=en_us&bd=pavilion&c=104
InternetURL: C:\Users\Dee\Favorites\HP\HP Download Store.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hp_softwarestore&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Dee\Favorites\HP\HP Games.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=myhpgames&tp=iefavbar&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Dee\Favorites\HP\HP Home.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hphome&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Dee\Favorites\HP\HP Store.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpstore&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Dee\Favorites\HP\PC Discovery Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpclub&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Dee\Favorites\HP\PC Security.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=pcsecurity&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Dee\Favorites\HP\Photo Central.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=ephoto&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Dee\Favorites\HP\Printing.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=printing&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Dee\Favorites\HP\Software and Driver Downloads.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=downloads&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Dee\Favorites\HP\eReaders\HP Barnes & Noble Desktop eReader.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=barnes_n_noble&tp=iefavs&pf=cndt&locale=en_us&bd=all&c=104
InternetURL: C:\Users\Dee\Favorites\HP\eReaders\Kobo.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=kobo&tp=iefavs&pf=cndt&locale=en_US&bd=all&c=111
InternetURL: C:\Users\Dee\Favorites\HP\eReaders\Zinio Reader 4.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=zinio&tp=iefavs&pf=cndt&locale=en_US&bd=all&c=111
InternetURL: C:\Users\Dee\Favorites\HP\eReaders\Software\Free software downloads and software reviews - CNET Download.com.URL -> hxxp://download.cnet.com/windows/
InternetURL: C:\Users\Dee\Favorites\House\Pennsylvania Utility Bill Assistance Programs.url -> hxxp://utilitybillassistance.com/html/pennsylvania_utility_bill_assi.html
InternetURL: C:\Users\Dee\Favorites\House\Simple Satellite Tracking from Spaceweather.com.url -> hxxp://spaceweather.com/flybys/flybys.php?zip=15909
InternetURL: C:\Users\Dee\Favorites\Health-Medical\Contact Lenses at 1-800 CONTACTS  World's Largest Contact Lens Store®.url -> https://www.1800cont...?ac=7.002225967
InternetURL: C:\Users\Dee\Favorites\Health-Medical\Does anyone use the Dry and Store Dehumidifer - Page 2 - Hearing Aid Forums  Hearing Loss  Hearing Aids.url -> hxxp://www.hearingaidforums.com/showthread.php?t=22&page=2
InternetURL: C:\Users\Dee\Favorites\Health-Medical\Fibromyalgia Pain.url -> hxxp://www.webmd.com/fibromyalgia/guide/fibromyalgia-pain
InternetURL: C:\Users\Dee\Favorites\Health-Medical\John P. Murtha Neuroscience and Pain Institute.url -> hxxp://www.conemaugh.org/template_article.aspx?id=4390
InternetURL: C:\Users\Dee\Favorites\Health-Medical\Our Experts - Neurological Surgery – UPMC, Pittsburgh, PA, USA.url -> hxxp://www.upmc.com/Services/NeurologicSurgery/Pages/our-experts.aspx
InternetURL: C:\Users\Dee\Favorites\Health-Medical\Quit Smoking  Quit Smoking Support  Smoking Cessation.url -> hxxp://quitsmoking.about.com/smoke
InternetURL: C:\Users\Dee\Favorites\Health-Medical\Pass the test\How To Pass A Drug Test.url -> hxxp://jezebel.com/5814152/how-to-pass-a-drug-test
InternetURL: C:\Users\Dee\Favorites\Health-Medical\Pass the test\http--triponic.com-guidestutorials-how-to-pass-a-urine-test-.url -> hxxp://triponic.com/guidestutorials/how-to-pass-a-urine-test/
InternetURL: C:\Users\Dee\Favorites\Health-Medical\Pass the test\THC Detoxification Foods and Liquids what help pass your urine test.url -> hxxp://www.thc-detox.com/passtest/post_1165571892.html
InternetURL: C:\Users\Dee\Favorites\Health-Medical\Pass the test\Will exercise help you to pass a drug test for cannabis.url -> hxxp://www.weighttraining.com/faq/will-exercise-help-you-to-pass-a-drug-test-for-cannabis
InternetURL: C:\Users\Dee\Favorites\Games\Adventure game - Wikipedia, the free encyclopedia.url -> hxxp://en.wikipedia.org/wiki/Adventure_game
InternetURL: C:\Users\Dee\Favorites\Games\Adventure Gamers.URL -> hxxp://www.adventuregamers.com/index.php
InternetURL: C:\Users\Dee\Favorites\Games\all Pc Game PC Game Releases - March 2012.url -> hxxp://www.allpcgame.net/2012/02/pc-game-releases-march-2012.html
InternetURL: C:\Users\Dee\Favorites\Games\amnesia The Dark Descent#main.url -> hxxp://www.amnesiagame.com/
InternetURL: C:\Users\Dee\Favorites\Games\Classic PC Games - Abandonware & Classic Games - Free DOS, Commodore 64, Amiga & Spectrum Games & Emulators.url -> hxxp://www.classic-pc-games.com/
InternetURL: C:\Users\Dee\Favorites\Games\DeeSkelley - Microsoft Answers.url -> hxxp://answers.microsoft.com/en-us/profile/9aecfa11-1d0a-4ade-aa7a-7cb14f294415?page=1&tm=1335148236937
InternetURL: C:\Users\Dee\Favorites\Games\Free Games Online - MoFunZone.com.url -> hxxp://www.mofunzone.com/
InternetURL: C:\Users\Dee\Favorites\Games\GameBoomers.com.URL -> hxxp://www.gameboomers.com/
InternetURL: C:\Users\Dee\Favorites\Games\GOG.com.url -> hxxp://www.gog.com/
InternetURL: C:\Users\Dee\Favorites\Games\Walkthrough and Hints\Fahrenheit-Indigo Prophecy walkthrough.url -> hxxp://www.gameboomers.com/wtcheats/pcFf/Fahrenheit.htm
InternetURL: C:\Users\Dee\Favorites\Games\Walkthrough and Hints\GameXplain -- V-Guide Alan Wake.url -> hxxp://www.gamexplain.com/index.php?content=vguide&vgid=14
InternetURL: C:\Users\Dee\Favorites\Games\Walkthrough and Hints\Universal Hint System  Not your ordinary walkthrough. Just the hints you need.URL -> hxxp://www.uhs-hints.com/
InternetURL: C:\Users\Dee\Favorites\Games\Walkthrough and Hints\Video Game Cheats, Reviews, FAQs, Message Boards, and More - GameFAQs.url -> hxxp://www.gamefaqs.com/
InternetURL: C:\Users\Dee\Favorites\Games\MCF\gamezebo.com-games-mystery-case-files-13th-skull-walkthrough.url -> hxxp://www.gamezebo.com/games/mystery-case-files-13th-skull/walkthrough
InternetURL: C:\Users\Dee\Favorites\Games\MCF\Here are the LOCATIONS of the 10 GOLD INSIGNIAS - SPOILER.url -> hxxp://forums.bigfishgames.com/posts/list/131924.page
InternetURL: C:\Users\Dee\Favorites\Games\MCF\Mystery Case Files Madame Fate Walkthrough  Gamezebo.url -> hxxp://www.gamezebo.com/games/mystery-case-files-madame-fate/walkthrough
InternetURL: C:\Users\Dee\Favorites\Games\MCF\Mystery Case Files ® 13th Skull ™ Collector's Edition Walkthrough  Big Fish Games Blog.url -> hxxp://www.bigfishgames.com/blog/mystery-case-files-13th-skull-walkthrough/
InternetURL: C:\Users\Dee\Favorites\Games\LSL\Leisure Suit Larry 2 FAQ-Walkthrough v1.1 - hosted by Neoseeker.url -> hxxp://www.neoseeker.com/resourcelink.html?rlid=62232&rid=57593
InternetURL: C:\Users\Dee\Favorites\Games\LSL\Leisure Suit Larry Easter Eggs - The Sierra Help Pages.url -> hxxp://www.sierrahelp.com/Misc/EasterEggs/LSLEasterEggs.html
InternetURL: C:\Users\Dee\Favorites\Games\LSL\Walk Throughs.url -> hxxp://www.allowe.com/Larry/walkthrus.htm
InternetURL: C:\Users\Dee\Favorites\Games\Game Tools and Help\Can your computer run that game.url -> hxxp://sites.amd.com/us/game/technology/Pages/system-requirements.aspx
InternetURL: C:\Users\Dee\Favorites\Games\Game Tools and Help\GameCopyWorld - No-CD, No-DVD Patches, Game Fixes, Trainers & Cheats.URL -> hxxp://search.spacetarget.com/games/gcw.shtml
InternetURL: C:\Users\Dee\Favorites\Games\Game Tools and Help\How to make old programs work on Windows 7  News  TechRadar UK.url -> hxxp://www.techradar.com/news/computing/pc/how-to-make-old-programs-work-on-windows-7-922313
InternetURL: C:\Users\Dee\Favorites\Games\Free and Online\AGS Games.url -> hxxp://www.bigbluecup.com/games.php
InternetURL: C:\Users\Dee\Favorites\Games\Free and Online\Alter Ego Life Simulation Browser Game.url -> hxxp://www.playalterego.com/alterego
InternetURL: C:\Users\Dee\Favorites\Games\Free and Online\reality-on-the-norm Games.url -> hxxp://www.realityonthenorm.info/games.php
InternetURL: C:\Users\Dee\Favorites\Games\Buy.Download\Adventure Shop - Download your PC Games.url -> hxxp://us-adventureshop.gamesplanet.com/
InternetURL: C:\Users\Dee\Favorites\Computer\Control Center Help-graphics.url -> file:///C:/ProgramData/ATI/ACE/Help/en-US/index.html
InternetURL: C:\Users\Dee\Favorites\Computer\Control Center Help.url -> file:///C:/ProgramData/ATI/ACE/Help/en-US/index.html
InternetURL: C:\Users\Dee\Favorites\Computer\Free software downloads and software reviews - CNET Download.com.url -> hxxp://download.cnet.com/windows/
InternetURL: C:\Users\Dee\Favorites\Computer\http--support.amd.com-us-gpudownload-windows-Pages-radeonaiw_vista64.aspx.url -> hxxp://support.amd.com/us/gpudownload/windows/Pages/radeonaiw_vista64.aspx
InternetURL: C:\Users\Dee\Favorites\Computer\Startup Programs Database.url -> hxxp://www.bleepingcomputer.com/startups/
InternetURL: C:\Users\Dee\Favorites\Computer\security setting for window firewall\how to set advanced topics for updating windows firewall - Microsoft TechNet Search.url -> hxxp://social.technet.microsoft.com/Search/en-us/?query=how+to+set+advanced+topics+for+updating+windows+firewall
InternetURL: C:\Users\Dee\Favorites\CompRepair&Maintain\How to use the System File Checker tool to troubleshoot missing or corrupted system files on Windows Vista or on Windows 7.url -> hxxp://support.microsoft.com/kb/929833
InternetURL: C:\Users\Dee\Favorites\Bills-Monthly\Comcast.net  Entertainment  News  Sports  Email  Watch TV Online  Comcast Deals  On Demand.url -> hxxp://xfinity.comcast.net/
InternetURL: C:\Users\Dee\Favorites\Bills-Monthly\ebillpay.verizonwireless.com-vzw-prepay-registerContactInfo.action.url -> https://ebillpay.ver...tactInfo.action
InternetURL: C:\Users\Dee\Favorites\Bills-Monthly\MyCOMPASSAccount Homepage.url -> https://www.humanser...aseId=110206949
InternetURL: C:\Users\Dee\Favorites\Bills-Monthly\Northwest Savings Bank    Northwest Savings Bank.URL -> https://www.northwestsavingsbank.com/
InternetURL: C:\Users\Dee\Favorites\Bills-Monthly\Vonage.url -> https://secure.vonag...umber=179697114
InternetURL: C:\Users\Dee\Favorites\Bills-Monthly\  Kerosene - Ebensburg, Pennsylvania - Barber Oil CO.url -> hxxp://barberoil.com/contact_us.html
InternetURL: C:\Users\Dee\Favorites\Bills-Monthly\Buck\Buddy Finder - Results.url -> hxxp://www.military.com/buddy-finder/?ESRC=marine-a.nl
InternetURL: C:\Users\Dee\Favorites\Bills-Monthly\Buck\divorceline.org-blog-pennsylvania-.url -> hxxp://divorceline.org/blog/pennsylvania/
InternetURL: C:\Users\Dee\Favorites\Bills-Monthly\Buck\My HealtheVet.URL -> https://www.myhealth...geLabel=mhvHome
InternetURL: C:\Users\Dee\Favorites\Bills-Monthly\Buck\Pennsylvania Free Divorce Forms & Papers (Free Download)  DivorceLine.org.url -> hxxp://divorceline.org/blog/pennsylvania/
InternetURL: C:\Users\Dee\Downloads\[PC] Indigo Prophecy [RIP] [dopeman]\dopeman.url -> hxxp://www.mininova.org/search/?search=dopeman+
InternetURL: C:\Users\Dee\Downloads\The Lost Crown A Ghost Hunting Adventure [PC] [2 CD] [English] [Torrentmas.Com]\www.TorrentMas.Com.url -> hxxp://www.ps2rip.com/
InternetURL: C:\Users\Dee\Downloads\Silent Hill 2 PC\Nvidia Geoforce Fix\Nvidia Geoforce Fix\Game Patches.url -> hxxp://www.patches-scrolls.de/
InternetURL: C:\Users\Dee\Downloads\Mystery Case Files 7 13th Skull Collectors Edition\Mystery Case Files 7 13th Skull Collector's Edition\Mystery Case Files - 13th Skull Collectors Edition\LeeGT-Games.url -> hxxp://www.leegt-games.com/
InternetURL: C:\Users\Dee\Downloads\Mystery Case Files 7 13th Skull Collectors Edition\Mystery Case Files 7 13th Skull Collector's Edition\Mystery Case Files - 13th Skull Collectors Edition\More games here!!!!!PLEASE JOIN NOW!!.url -> hxxp://hitzwarez.net/forum/
InternetURL: C:\Users\Dee\Downloads\Mystery Case Files - Dire Grove Collector's Edition\AllSmartGames.url -> hxxp://www.downtr.org/indir/
InternetURL: C:\Users\Dee\Downloads\BigFish - Strange Cases The Lighthouse Mystery CE - New HOG Adventure - Wendy99\Wendy's Page.url -> hxxp://www.wendys99.blogspot.com/
InternetURL: C:\Users\Dee\Downloads\BigFish - Strange Cases The Lighthouse Mystery CE - New HOG Adventure - Wendy99\wendysforum.net.url -> hxxp://wendysforum.net/index.php
InternetURL: C:\Users\Dee\DMHotel\Support\www.akella.com.url -> hxxp://www.akella.com/
InternetURL: C:\Users\Dee\DMHotel\Support\www.cdgames.ru.url -> hxxp://www.cdgames.ru/
InternetURL: C:\Users\Dee\DMHotel\Support\www.ep.com.ua.url -> hxxp://www.ep.com.ua/
InternetURL: C:\Users\Dee\Desktop\GameTools\StillLife Web Site.url -> hxxp://www.stilllife-game.com
InternetURL: C:\Users\Dee\Desktop\Games\[PC] Indigo Prophecy [RIP] [dopeman]\dopeman.url -> hxxp://www.mininova.org/search/?search=dopeman+
InternetURL: C:\Users\Dee\Desktop\Games\The Lost Crown A Ghost Hunting Adventure [PC] [2 CD] [English] [Torrentmas.Com]\www.TorrentMas.Com.url -> hxxp://www.ps2rip.com/
InternetURL: C:\Users\Dee\Desktop\Games\StrangeCases\Strange Cases 3 The Secrets of Grey Mist Lake CE V2\D.url -> hxxp://www.downturk.info/user/razz/news
InternetURL: C:\Users\Dee\Desktop\Games\SilentHill2\Nvidia Geoforce Fix\Nvidia Geoforce Fix\Game Patches.url -> hxxp://www.patches-scrolls.de/
InternetURL: C:\Users\Dee\Desktop\Games\MCFReturnToRavenheart\Mystery Case Files - Return to Ravenhearst FINAL\Mystery Case Files - Return to Ravenhearst WalkThrough.url -> hxxp://hitzwarez.net/forum/
InternetURL: C:\Users\Dee\Desktop\Games\MCFReturnToRavenheart\Mystery Case Files - Return to Ravenhearst FINAL\X.url -> hxxp://hitzwarez.net/forum/
InternetURL: C:\Users\Dee\Desktop\Games\Dark Fall Lost Souls [PC-DVD][English][www.consolasatope.com]\ConsolasAtope - Tu web de consolas,PSP, PS2,PS3,Wii, Xbox360,NDS PC,scene, manuales, tutoriales.url -> hxxp://www.consolasatope.com/
InternetURL: C:\Users\Dee\Desktop\Games\Black Mirror 2 (Download)\Payload\game\vivamedia.url -> hxxp://www.viva-media.com/
InternetURL: C:\Users\Dee\Desktop\Games\Black Mirror 2 (Download)\Data\EN\game.url -> hxxp://www.blackmirror2.de
InternetURL: C:\Users\Dee\Desktop\Games\AC-AndThenThereWereNone\ADVENTURE COMPANY.url -> hxxp://www.adventurecompanygames.com/tac/index.html
InternetURL: C:\Users\Dee\Desktop\Games\AC-AndThenThereWereNone\AWE GAMES.url -> hxxp://www.awegames.com/
InternetURL: C:\Users\Dee\Desktop\Games\AC-AndThenThereWereNone\DREAMCATCHER.url -> hxxp://dreamcatchergames.com/
InternetURL: C:\Users\Dee\Desktop\AGS-FreeGames\ChickenVsRoad\docs\AGS Forums.url -> hxxp://www.adventuregamestudio.co.uk/forum/
InternetURL: C:\Users\Dee\Desktop\AGS-FreeGames\ChickenVsRoad\docs\AGS Website.url -> hxxp://www.adventuregamestudio.co.uk/
InternetURL: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viva Media\Black Mirror 3\Viva Media Website.URL -> hxxp://www.viva-media.com
InternetURL: C:\Users\Dee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telltale Games\Telltale Games Support.url -> hxxp://www.telltalegames.com/in/mi100-DVD-TTG-01/support/
InternetURL: C:\Users\Dee\AppData\Local\The Weather Channel\The Weather Channel App\themes\BizTravel\Archive created by free jZip.url -> hxxp://www.jzip.com/archive_link
InternetURL: C:\Users\Default\Favorites\HP\Accessories.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpaccessories&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Default\Favorites\HP\Activity Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=activitycenter&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Default\Favorites\HP\Digital Entertainment.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=digitalentm&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Default\Favorites\HP\eBay.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=ebay&pf=cndt&locale=en_us&bd=all&c=104
InternetURL: C:\Users\Default\Favorites\HP\HP Download Store.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hp_softwarestore&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Default\Favorites\HP\HP Games.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=myhpgames&pf=cndt&locale=en_US&bd=all&c=111
InternetURL: C:\Users\Default\Favorites\HP\HP Home.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hphome&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Default\Favorites\HP\HP Store.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpstore&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Default\Favorites\HP\PC Discovery Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpclub&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Default\Favorites\HP\PC Security.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=pcsecurity&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Default\Favorites\HP\Photo Central.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=ephoto&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Default\Favorites\HP\Printing.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=printing&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Default\Favorites\HP\Software and Driver Downloads.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=downloads&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Default\Favorites\HP\eReaders\HP Barnes & Noble Desktop eReader.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=barnes_n_noble&tp=iefavs&pf=cndt&locale=en_us&bd=all&c=104
InternetURL: C:\Users\Default\Favorites\HP\eReaders\Kobo.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=kobo&tp=iefavs&pf=cndt&locale=en_US&bd=all&c=111
InternetURL: C:\Users\Default\Favorites\HP\eReaders\Zinio Reader 4.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=zinio&tp=iefavs&pf=cndt&locale=en_US&bd=all&c=111
InternetURL: C:\Users\DefaultAppPool\Favorites\HP\Accessories.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpaccessories&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\DefaultAppPool\Favorites\HP\Activity Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=activitycenter&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\DefaultAppPool\Favorites\HP\Digital Entertainment.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=digitalentm&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\DefaultAppPool\Favorites\HP\eBay.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=ebay&pf=cndt&locale=en_us&bd=all&c=104
InternetURL: C:\Users\DefaultAppPool\Favorites\HP\HP Download Store.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hp_softwarestore&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\DefaultAppPool\Favorites\HP\HP Games.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=myhpgames&pf=cndt&locale=en_US&bd=all&c=111
InternetURL: C:\Users\DefaultAppPool\Favorites\HP\HP Home.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hphome&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\DefaultAppPool\Favorites\HP\HP Store.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpstore&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\DefaultAppPool\Favorites\HP\PC Discovery Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpclub&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\DefaultAppPool\Favorites\HP\PC Security.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=pcsecurity&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\DefaultAppPool\Favorites\HP\Photo Central.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=ephoto&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\DefaultAppPool\Favorites\HP\Printing.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=printing&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\DefaultAppPool\Favorites\HP\Software and Driver Downloads.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=downloads&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\DefaultAppPool\Favorites\HP\eReaders\HP Barnes & Noble Desktop eReader.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=barnes_n_noble&tp=iefavs&pf=cndt&locale=en_us&bd=all&c=104
InternetURL: C:\Users\DefaultAppPool\Favorites\HP\eReaders\Kobo.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=kobo&tp=iefavs&pf=cndt&locale=en_US&bd=all&c=111
InternetURL: C:\Users\DefaultAppPool\Favorites\HP\eReaders\Zinio Reader 4.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=zinio&tp=iefavs&pf=cndt&locale=en_US&bd=all&c=111
InternetURL: C:\Users\Ethan\Favorites\Bing.url -> hxxp://g.msn.com/1me10IE9ENUS/401
InternetURL: C:\Users\Ethan\Favorites\Discover Bing.url -> hxxp://g.msn.com/1me10IE9ENUS/402
InternetURL: C:\Users\Ethan\Favorites\MSN Websites\MSN Autos.url -> hxxp://g.msn.com/1me10IE9ENUS/405
InternetURL: C:\Users\Ethan\Favorites\MSN Websites\MSN Entertainment.url -> hxxp://g.msn.com/1me10IE9ENUS/406
InternetURL: C:\Users\Ethan\Favorites\MSN Websites\MSN Lifestyle.url -> hxxp://g.msn.com/1me10IE9ENUS/407
InternetURL: C:\Users\Ethan\Favorites\MSN Websites\MSN Money.url -> hxxp://g.msn.com/1me10IE9ENUS/408
InternetURL: C:\Users\Ethan\Favorites\MSN Websites\MSN.url -> hxxp://g.msn.com/1me10IE9ENUS/403
InternetURL: C:\Users\Ethan\Favorites\MSN Websites\MSNBC News.url -> hxxp://g.msn.com/1me10IE9ENUS/404
InternetURL: C:\Users\Ethan\Favorites\Microsoft Websites\Microsoft At Home.url -> hxxp://g.msn.com/1me10IE9ENUS/409
InternetURL: C:\Users\Ethan\Favorites\Microsoft Websites\Microsoft At Work.url -> hxxp://g.msn.com/1me10IE9ENUS/410
InternetURL: C:\Users\Ethan\Favorites\Microsoft Websites\Microsoft Showcase.url -> hxxp://g.msn.com/1me10IE9ENUS/413
InternetURL: C:\Users\Ethan\Favorites\Microsoft Websites\Microsoft Store.url -> hxxp://g.msn.com/1me10IE9ENUS/411
InternetURL: C:\Users\Ethan\Favorites\Microsoft Websites\Microsoft.com.url -> hxxp://g.msn.com/1me10IE9ENUS/412
InternetURL: C:\Users\Ethan\Favorites\Media\ABC News and Entertainment.url -> hxxp://www.abc.com/videoclips
InternetURL: C:\Users\Ethan\Favorites\Media\Bloomberg.url -> hxxp://www.bloomberg.com/blpvideo3.cgi
InternetURL: C:\Users\Ethan\Favorites\Media\Capitol Records.url -> hxxp://www.hollywoodandvine.com/netshow
InternetURL: C:\Users\Ethan\Favorites\Media\CBS.url -> hxxp://www.cbs.com/network/htdocs/netshow/
InternetURL: C:\Users\Ethan\Favorites\Media\CNBC Dow Jones Business Video.url -> hxxp://www.business.cnbcdowjones.com
InternetURL: C:\Users\Ethan\Favorites\Media\CNET Today - Technology News.url -> hxxp://stream.cnet.com
InternetURL: C:\Users\Ethan\Favorites\Media\CNN Videoselect.url -> hxxp://cnn.com/videoselect/netshow/
InternetURL: C:\Users\Ethan\Favorites\Media\Disney.url -> hxxp://www.disney.com/Features/Distribution/Media/index.html
InternetURL: C:\Users\Ethan\Favorites\Media\ESPN Sports.url -> hxxp://espn.sportszone.com/dist/m/index.html
InternetURL: C:\Users\Ethan\Favorites\Media\Fox News.url -> hxxp://foxnews.com/js_index.sml?content=/video/netshow.sml
InternetURL: C:\Users\Ethan\Favorites\Media\Fox Sports.url -> hxxp://www.foxsports.com/media/netshow.sml
InternetURL: C:\Users\Ethan\Favorites\Media\Hollywood Online.url -> hxxp://www.hollywood.com/netshow
InternetURL: C:\Users\Ethan\Favorites\Media\Internet Radio Guide.url -> hxxp://www.microsoft.com/isapi/redir.dll?prd=windows&sbp=mediaplayer&plcid=&pver=5.2&os=&over=&olcid=&clcid=&ar=Media&sba=RadioGuide&o1=&o2=&o3=
InternetURL: C:\Users\Ethan\Favorites\Media\MSNBC.url -> hxxp://www.msnbc.com/modules/videomoment.asp
InternetURL: C:\Users\Ethan\Favorites\Media\MUSICVIDEOS.COM.url -> hxxp://www.musicvideos.com
InternetURL: C:\Users\Ethan\Favorites\Media\NBC VideoSeeker.url -> hxxp://www.videoseeker.com/netshow/
InternetURL: C:\Users\Ethan\Favorites\Media\TV Guide Entertainment Network.url -> hxxp://tvgen.com/netshow/netshow.sml
InternetURL: C:\Users\Ethan\Favorites\Media\Universal Studios Online.url -> hxxp://www.universalstudios.com/netshow
InternetURL: C:\Users\Ethan\Favorites\Media\Warner Bros. Hip Clips.url -> hxxp://www.warnerbros.com/hipclips/
InternetURL: C:\Users\Ethan\Favorites\Media\What's On Now.url -> hxxp://www.microsoft.com/isapi/redir.dll?prd=ntserver&sbp=netshow&plcid=&pver=3.0&os=&over=&olcid=&clcid=&ar=NetShow&sba=Events&o1=&o2=&o3=
InternetURL: C:\Users\Ethan\Favorites\Media\Windows Media Showcase.url -> hxxp://www.microsoft.com/isapi/redir.dll?prd=windows&sbp=mediaplayer&plcid=&pver=5.2&os=&over=&olcid=&clcid=&ar=Media&sba=Guide&o1=&o2=&o3=
InternetURL: C:\Users\Ethan\Favorites\Links for United States\GobiernoUSA.gov.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129792
InternetURL: C:\Users\Ethan\Favorites\Links for United States\USA.gov.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129791
InternetURL: C:\Users\Ethan\Favorites\Links\SpongeBob SquarePants Games  SpongeBob (2).url -> hxxp://spongebob.nick.com/games/
InternetURL: C:\Users\Ethan\Favorites\Links\Web Slice Gallery.url -> hxxp://go.microsoft.com/fwlink/?LinkId=121315
InternetURL: C:\Users\Ethan\Favorites\HP\Accessories.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpaccessories&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Ethan\Favorites\HP\Activity Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=activitycenter&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Ethan\Favorites\HP\Digital Entertainment.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=digitalentm&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Ethan\Favorites\HP\eBay.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=ebay&pf=cndt&locale=en_us&bd=all&c=104
InternetURL: C:\Users\Ethan\Favorites\HP\HP Download Store.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hp_softwarestore&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Ethan\Favorites\HP\HP Games.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=myhpgames&pf=cndt&locale=en_US&bd=all&c=111
InternetURL: C:\Users\Ethan\Favorites\HP\HP Home.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hphome&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Ethan\Favorites\HP\HP Store.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpstore&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Ethan\Favorites\HP\PC Discovery Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpclub&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Ethan\Favorites\HP\PC Security.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=pcsecurity&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Ethan\Favorites\HP\Photo Central.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=ephoto&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Ethan\Favorites\HP\Printing.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=printing&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Ethan\Favorites\HP\Software and Driver Downloads.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=downloads&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Ethan\Favorites\HP\eReaders\HP Barnes & Noble Desktop eReader.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=barnes_n_noble&tp=iefavs&pf=cndt&locale=en_us&bd=all&c=104
InternetURL: C:\Users\Ethan\Favorites\HP\eReaders\Kobo.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=kobo&tp=iefavs&pf=cndt&locale=en_US&bd=all&c=111
InternetURL: C:\Users\Ethan\Favorites\HP\eReaders\Zinio Reader 4.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=zinio&tp=iefavs&pf=cndt&locale=en_US&bd=all&c=111
InternetURL: C:\Users\Guest\Favorites\Windows Live\Get Windows Live.url -> hxxp://go.microsoft.com/fwlink/?LinkId=69172
InternetURL: C:\Users\Guest\Favorites\Windows Live\Windows Live Gallery.url -> hxxp://go.microsoft.com/fwlink/?LinkId=70742
InternetURL: C:\Users\Guest\Favorites\Windows Live\Windows Live Mail.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68925
InternetURL: C:\Users\Guest\Favorites\Windows Live\Windows Live Spaces.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68927
InternetURL: C:\Users\Guest\Favorites\MSN Websites\MSN Autos.url -> hxxp://go.microsoft.com/fwlink/?LinkId=55143
InternetURL: C:\Users\Guest\Favorites\MSN Websites\MSN Entertainment.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68924
InternetURL: C:\Users\Guest\Favorites\MSN Websites\MSN Money.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68923
InternetURL: C:\Users\Guest\Favorites\MSN Websites\MSN Sports.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68921
InternetURL: C:\Users\Guest\Favorites\MSN Websites\MSN.url -> hxxp://go.microsoft.com/fwlink/?LinkId=54729
InternetURL: C:\Users\Guest\Favorites\MSN Websites\MSNBC News.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68922
InternetURL: C:\Users\Guest\Favorites\Microsoft Websites\IE Add-on site.url -> hxxp://go.microsoft.com/fwlink/?LinkId=50893
InternetURL: C:\Users\Guest\Favorites\Microsoft Websites\IE site on Microsoft.com.url -> hxxp://go.microsoft.com/fwlink/?linkid=44661
InternetURL: C:\Users\Guest\Favorites\Microsoft Websites\Microsoft At Home.url -> hxxp://go.microsoft.com/fwlink/?linkid=55424
InternetURL: C:\Users\Guest\Favorites\Microsoft Websites\Microsoft At Work.url -> hxxp://go.microsoft.com/fwlink/?linkid=68920
InternetURL: C:\Users\Guest\Favorites\Microsoft Websites\Microsoft Store.url -> hxxp://go.microsoft.com/fwlink/?linkid=140813
InternetURL: C:\Users\Guest\Favorites\Links for United States\GobiernoUSA.gov.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129792
InternetURL: C:\Users\Guest\Favorites\Links for United States\USA.gov.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129791
InternetURL: C:\Users\Guest\Favorites\Links\Ebay.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=ebay&tp=iefavbar&pf=cndt&locale=en_us&bd=all&c=104
InternetURL: C:\Users\Guest\Favorites\Links\HP - See What's Hot.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=webslice&tp=iefavbar&pf=cndt&locale=en_us&bd=pavilion&c=104
InternetURL: C:\Users\Guest\Favorites\Links\HP Games.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=myhpgames&tp=iefavbar&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Guest\Favorites\Links\Web Slice Gallery.url -> hxxp://go.microsoft.com/fwlink/?LinkId=121315
InternetURL: C:\Users\Guest\Favorites\HP\Accessories.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpaccessories&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Guest\Favorites\HP\Activity Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=activitycenter&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Guest\Favorites\HP\Digital Entertainment.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=digitalentm&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Guest\Favorites\HP\eBay.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=ebay&pf=cndt&locale=en_us&bd=all&c=104
InternetURL: C:\Users\Guest\Favorites\HP\HP Download Store.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hp_softwarestore&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Guest\Favorites\HP\HP Games.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=myhpgames&pf=cndt&locale=en_US&bd=all&c=111
InternetURL: C:\Users\Guest\Favorites\HP\HP Home.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hphome&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Guest\Favorites\HP\HP Store.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpstore&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Guest\Favorites\HP\PC Discovery Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpclub&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Guest\Favorites\HP\PC Security.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=pcsecurity&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Guest\Favorites\HP\Photo Central.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=ephoto&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Guest\Favorites\HP\Printing.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=printing&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Guest\Favorites\HP\Software and Driver Downloads.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=downloads&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Guest\Favorites\HP\eReaders\HP Barnes & Noble Desktop eReader.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=barnes_n_noble&tp=iefavs&pf=cndt&locale=en_us&bd=all&c=104
InternetURL: C:\Users\Guest\Favorites\HP\eReaders\Kobo.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=kobo&tp=iefavs&pf=cndt&locale=en_US&bd=all&c=111
InternetURL: C:\Users\Guest\Favorites\HP\eReaders\Zinio Reader 4.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=zinio&tp=iefavs&pf=cndt&locale=en_US&bd=all&c=111
InternetURL: C:\Users\Jared\Favorites\Bing.url -> hxxp://g.msn.com/1me10IE9ENUS/401
InternetURL: C:\Users\Jared\Favorites\Discover Bing.url -> hxxp://g.msn.com/1me10IE9ENUS/402
InternetURL: C:\Users\Jared\Favorites\Windows Live\Get Windows Live.url -> hxxp://go.microsoft.com/fwlink/?LinkId=69172
InternetURL: C:\Users\Jared\Favorites\Windows Live\Windows Live Gallery.url -> hxxp://go.microsoft.com/fwlink/?LinkId=70742
InternetURL: C:\Users\Jared\Favorites\Windows Live\Windows Live Mail.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68925
InternetURL: C:\Users\Jared\Favorites\Windows Live\Windows Live Spaces.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68927
InternetURL: C:\Users\Jared\Favorites\MSN Websites\MSN Autos.url -> hxxp://g.msn.com/1me10IE9ENUS/405
InternetURL: C:\Users\Jared\Favorites\MSN Websites\MSN Entertainment.url -> hxxp://g.msn.com/1me10IE9ENUS/406
InternetURL: C:\Users\Jared\Favorites\MSN Websites\MSN Lifestyle.url -> hxxp://g.msn.com/1me10IE9ENUS/407
InternetURL: C:\Users\Jared\Favorites\MSN Websites\MSN Money.url -> hxxp://g.msn.com/1me10IE9ENUS/408
InternetURL: C:\Users\Jared\Favorites\MSN Websites\MSN Sports.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68921
InternetURL: C:\Users\Jared\Favorites\MSN Websites\MSN.url -> hxxp://g.msn.com/1me10IE9ENUS/403
InternetURL: C:\Users\Jared\Favorites\MSN Websites\MSNBC News.url -> hxxp://g.msn.com/1me10IE9ENUS/404
InternetURL: C:\Users\Jared\Favorites\Microsoft Websites\IE Add-on site.url -> hxxp://go.microsoft.com/fwlink/?LinkId=50893
InternetURL: C:\Users\Jared\Favorites\Microsoft Websites\IE site on Microsoft.com.url -> hxxp://go.microsoft.com/fwlink/?linkid=44661
InternetURL: C:\Users\Jared\Favorites\Microsoft Websites\Microsoft At Home.url -> hxxp://g.msn.com/1me10IE9ENUS/409
InternetURL: C:\Users\Jared\Favorites\Microsoft Websites\Microsoft At Work.url -> hxxp://g.msn.com/1me10IE9ENUS/410
InternetURL: C:\Users\Jared\Favorites\Microsoft Websites\Microsoft Showcase.url -> hxxp://g.msn.com/1me10IE9ENUS/413
InternetURL: C:\Users\Jared\Favorites\Microsoft Websites\Microsoft Store.url -> hxxp://g.msn.com/1me10IE9ENUS/411
InternetURL: C:\Users\Jared\Favorites\Microsoft Websites\Microsoft.com.url -> hxxp://g.msn.com/1me10IE9ENUS/412
InternetURL: C:\Users\Jared\Favorites\Media\ABC News and Entertainment.url -> hxxp://www.abc.com/videoclips
InternetURL: C:\Users\Jared\Favorites\Media\Bloomberg.url -> hxxp://www.bloomberg.com/blpvideo3.cgi
InternetURL: C:\Users\Jared\Favorites\Media\Capitol Records.url -> hxxp://www.hollywoodandvine.com/netshow
InternetURL: C:\Users\Jared\Favorites\Media\CBS.url -> hxxp://www.cbs.com/network/htdocs/netshow/
InternetURL: C:\Users\Jared\Favorites\Media\CNBC Dow Jones Business Video.url -> hxxp://www.business.cnbcdowjones.com
InternetURL: C:\Users\Jared\Favorites\Media\CNET Today - Technology News.url -> hxxp://stream.cnet.com
InternetURL: C:\Users\Jared\Favorites\Media\CNN Videoselect.url -> hxxp://cnn.com/videoselect/netshow/
InternetURL: C:\Users\Jared\Favorites\Media\Disney.url -> hxxp://www.disney.com/Features/Distribution/Media/index.html
InternetURL: C:\Users\Jared\Favorites\Media\ESPN Sports.url -> hxxp://espn.sportszone.com/dist/m/index.html
InternetURL: C:\Users\Jared\Favorites\Media\Fox News.url -> hxxp://foxnews.com/js_index.sml?content=/video/netshow.sml
InternetURL: C:\Users\Jared\Favorites\Media\Fox Sports.url -> hxxp://www.foxsports.com/media/netshow.sml
InternetURL: C:\Users\Jared\Favorites\Media\Hollywood Online.url -> hxxp://www.hollywood.com/netshow
InternetURL: C:\Users\Jared\Favorites\Media\Internet Radio Guide.url -> hxxp://www.microsoft.com/isapi/redir.dll?prd=windows&sbp=mediaplayer&plcid=&pver=5.2&os=&over=&olcid=&clcid=&ar=Media&sba=RadioGuide&o1=&o2=&o3=
InternetURL: C:\Users\Jared\Favorites\Media\MSNBC.url -> hxxp://www.msnbc.com/modules/videomoment.asp
InternetURL: C:\Users\Jared\Favorites\Media\MUSICVIDEOS.COM.url -> hxxp://www.musicvideos.com
InternetURL: C:\Users\Jared\Favorites\Media\NBC VideoSeeker.url -> hxxp://www.videoseeker.com/netshow/
InternetURL: C:\Users\Jared\Favorites\Media\TV Guide Entertainment Network.url -> hxxp://tvgen.com/netshow/netshow.sml
InternetURL: C:\Users\Jared\Favorites\Media\Universal Studios Online.url -> hxxp://www.universalstudios.com/netshow
InternetURL: C:\Users\Jared\Favorites\Media\Warner Bros. Hip Clips.url -> hxxp://www.warnerbros.com/hipclips/
InternetURL: C:\Users\Jared\Favorites\Media\What's On Now.url -> hxxp://www.microsoft.com/isapi/redir.dll?prd=ntserver&sbp=netshow&plcid=&pver=3.0&os=&over=&olcid=&clcid=&ar=NetShow&sba=Events&o1=&o2=&o3=
InternetURL: C:\Users\Jared\Favorites\Media\Windows Media Showcase.url -> hxxp://www.microsoft.com/isapi/redir.dll?prd=windows&sbp=mediaplayer&plcid=&pver=5.2&os=&over=&olcid=&clcid=&ar=Media&sba=Guide&o1=&o2=&o3=
InternetURL: C:\Users\Jared\Favorites\Links for United States\GobiernoUSA.gov.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129792
InternetURL: C:\Users\Jared\Favorites\Links for United States\USA.gov.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129791
InternetURL: C:\Users\Jared\Favorites\Links\Customize Links.url -> hxxp://go.microsoft.com/fwlink/?LinkId=53540
InternetURL: C:\Users\Jared\Favorites\Links\Ebay.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=ebay&tp=iefavbar&pf=cndt&locale=en_us&bd=all&c=104
InternetURL: C:\Users\Jared\Favorites\Links\HP - See What's Hot.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=webslice&tp=iefavbar&pf=cndt&locale=en_us&bd=pavilion&c=104
InternetURL: C:\Users\Jared\Favorites\Links\HP Games.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=myhpgames&tp=iefavbar&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Jared\Favorites\Links\ieonline.microsoft.com-#ieslice.url -> https://ieonline.mic...ft.com/#ieslice
InternetURL: C:\Users\Jared\Favorites\Links\Suggested Sites.url -> 0
InternetURL: C:\Users\Jared\Favorites\Links\Web Slice Gallery.url -> hxxp://go.microsoft.com/fwlink/?LinkId=121315
InternetURL: C:\Users\Jared\Favorites\HP\Accessories.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpaccessories&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Jared\Favorites\HP\Activity Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=activitycenter&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Jared\Favorites\HP\Digital Entertainment.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=digitalentm&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Jared\Favorites\HP\eBay.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=ebay&pf=cndt&locale=en_us&bd=all&c=104
InternetURL: C:\Users\Jared\Favorites\HP\HP Download Store.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hp_softwarestore&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Jared\Favorites\HP\HP Games.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=myhpgames&pf=cndt&locale=en_US&bd=all&c=111
InternetURL: C:\Users\Jared\Favorites\HP\HP Home.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hphome&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Jared\Favorites\HP\HP Store.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpstore&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Jared\Favorites\HP\PC Discovery Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpclub&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Jared\Favorites\HP\PC Security.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=pcsecurity&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Jared\Favorites\HP\Photo Central.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=ephoto&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Jared\Favorites\HP\Printing.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=printing&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Jared\Favorites\HP\Software and Driver Downloads.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=downloads&pf=cndt&locale=en_us&bd=all&c=111
InternetURL: C:\Users\Jared\Favorites\HP\eReaders\HP Barnes & Noble Desktop eReader.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=barnes_n_noble&tp=iefavs&pf=cndt&locale=en_us&bd=all&c=104
InternetURL: C:\Users\Jared\Favorites\HP\eReaders\Kobo.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=kobo&tp=iefavs&pf=cndt&locale=en_US&bd=all&c=111
InternetURL: C:\Users\Jared\Favorites\HP\eReaders\Zinio Reader 4.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=zinio&tp=iefavs&pf=cndt&locale=en_US&bd=all&c=111

==================== End of log =============================
 

 

OK, there it all is. Who is the user with a $? I have so many questions about what I read but I guess if I want to understand them I need to get off my butt and learn how myself, huh? It is a lot of reading. Thanks.


  • 0

#4
ruggie_uk

ruggie_uk

    Trusted Helper

  • Malware Removal
  • 2,083 posts
Hi, just to let you know I am working through your logs and preparing a fix to be assessed by my mentor.

Yes it is a lot of reading, any questions, feel free to ask away :D

Is is this user you are referring to? HomeGroupUser$ (S-1-5-21-2375802078-1423229213-3210898512-1018 - Limited - Enabled)

This is a built in account regarding network sharing within a homegroup that is a feature of windows. Nothing to worry about :D
  • 1

#5
Ozzette53

Ozzette53

    Member

  • Topic Starter
  • Member
  • PipPip
  • 28 posts

OK. Thanks. How about TrustedInstaller? It doesnt' always show up, but when it does it has full permissions. I saw it on my sister's computer and I got rid of it before I came to you all. Talk at you tomorrow. :D


  • 0

#6
ruggie_uk

ruggie_uk

    Trusted Helper

  • Malware Removal
  • 2,083 posts

Hello again, lets get a few things cleared up and get rid of some rubbish for you :D

 

Trusted Installer is again part of windows that is activated when installing a program.

Step 1

FRST Fix

If FRST64.exe is not on your desktop, please download Farbar Recovery Scan Tool and save it to your desktop.

  • Download the attached and save it to your desktop <<< very important - it must be in the same location as /FRST64.exe
  • Right click frst.png and run as administrator. When the tool opens click Yes to the disclaimer.
  • Press the Fix button.
  • It will produce a log called fixlog.txt on your Desktop.
  • Please copy and paste the contents of that log back here.

    NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system.

Step 2

jrt.pngJunkware Removal Tool
Please download Junkware Removal Tool to your desktop. << Important
Ensure that any security software is temporarily disabled for the duration of the scan. Don't forget to re-enable it afterwards.


  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by right-clicking jrt.png and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.

Step 3


adwcleaner.pngAdwCleaner by Xplode

Download AdwCleaner from here or from here. Save the file to the desktop.


NOTE: If you are using IE 8 or above you may get a warning that stops the program from downloading. Just click on the warning and allow the download to complete.

Close all open windows and browsers.

  • Vista/7/8 users: Right click the adwcleaner.pngAdwCleaner icon on the desktop, click Run as administrator and accept the UAC prompt to run AdwCleaner.
    You will see the following console:

    AdwScan.jpg?
  • Click the Scan button and wait for the scan to finish.
  • After the Scan has finished the window may or may not show what it found and above, in the progress bar, you will see: Pending. Please uncheck elements you don't want to remove. Please Do Not delete anything at this time.
  • Click the Report button to get the log.
  • Copy and Paste it into your next reply. This report is also saved to C:\AdwCleaner\AdwCleaner[R0].txt.
  • Click the X in the upper right corner of the program or click the File menu and click Exit to close the program.

Optional:

NOTE: If you see AVG Secure Search being targeted for deletion, Here's Why and Here. You can always Reinstall it.


Items I need to see in your next post:

  • FRST Fixlist
  • JRT Log

     
  • ADWcleaner Scan Log

  • 1

#7
Ozzette53

Ozzette53

    Member

  • Topic Starter
  • Member
  • PipPip
  • 28 posts

I can tell you I am seeing things I've never heard of and things that were supposedly deleted before. Like Inbox dollars. I thought this machine had been cleaned on your advice after I quit using that. Anyway, here are my logs.

 

 

FRST Fixlist:

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 17-11-2014
Ran by Dee at 2014-11-19 11:17:07 Run:1
Running from C:\Users\Dee\Desktop
Loaded Profile: Dee (Available profiles: Dee & Jared & Ethan & Guest & DefaultAppPool)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
start
HKU\S-1-5-18\...\MountPoints2: {371ac9ad-04ab-11e0-9f6c-806e6f6e6963} - E:\autorun.exe index.html
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled ()
GroupPolicyUsers\S-1-5-21-2375802078-1423229213-3210898512-1011\User: Group Policy restriction detected <======= ATTENTION
SearchScopes: HKLM -> DefaultScope value is missing.
SearchScopes: HKLM-x32 -> DefaultScope value is missing.
SearchScopes: HKLM-x32 -> Backup.Old.DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {065A9368-6E1D-CCA3-D331-2A3E5FA66383} URL =
Handler: AutorunsDisabled - {91774881-D725-4E58-B298-07617B9B86A8} -  No File
Task: {15BD7F78-2306-4038-AFCB-6084B415CCB1} - System32\Tasks\{74852D3E-E9D6-4197-88E1-C87438D7861E} => E:\Autorun.exe
Task: {1965538A-79AD-4CCB-9C88-F4F151F46AED} - System32\Tasks\{C8D9D98D-DC8D-49BD-9FCF-F4AD91477A45} => E:\SETUP.EXE
Task: {2A6C928C-B3D3-4986-A743-DB82CCA01FCC} - System32\Tasks\{22B41B3C-48C4-4AD8-A483-3DB5336E5E29} => F:\setup.exe
Task: {4DEC86A8-1473-481D-8400-F6753C0BD2E2} - System32\Tasks\{57D3F9A2-D81D-4A21-8BC6-77CC0628DFB0} => F:\setup.exe
Task: {9CA5234B-0376-4178-81F7-800A4F1A60A8} - System32\Tasks\{10D41F78-5492-4AC4-A43C-C269B624736F} => F:\Setup.exe
Task: {A2ED2E14-02B0-449D-B694-0D06429AE0B1} - System32\Tasks\{FF2DA5D6-9D77-4B3D-B53E-C0E5122C7AE8} => E:\autorun.exe
Task: {D0305BE4-4F12-4D6A-90F8-4F1D494B3285} - System32\Tasks\{95824927-69A7-49AE-BECD-9C1F3D65E279} => F:\Setup.exe
AlternateDataStreams: C:\ProgramData\Temp:1A15E356
AlternateDataStreams: C:\ProgramData\Temp:689AB7E9
AlternateDataStreams: C:\ProgramData\Temp:8E5EA40F
AlternateDataStreams: C:\ProgramData\Temp:CB299F13
AlternateDataStreams: C:\ProgramData\Temp:F610C203
AlternateDataStreams: C:\Users\Dee\Documents\Oohrah1.jpg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}
AlternateDataStreams: C:\Users\Dee\Documents\Project1.jpg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}
AlternateDataStreams: C:\Users\Dee\Documents\Verizonphoneno.png:SummaryInformation
AlternateDataStreams: C:\Users\Dee\Documents\Verizonphoneno.png:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}
C:\Program Files (x86)\AWS
emptytemp:
closeprocesses:
end
*****************

"HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{371ac9ad-04ab-11e0-9f6c-806e6f6e6963}" => Key deleted successfully.
"HKCR\CLSID\{371ac9ad-04ab-11e0-9f6c-806e6f6e6963}" => Key not found.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled => Moved successfully.
C:\Windows\system32\GroupPolicyUsers\S-1-5-21-2375802078-1423229213-3210898512-1011\User => Moved successfully.
C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\Backup.Old.DefaultScope => value deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key Deleted successfully.
"HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{065A9368-6E1D-CCA3-D331-2A3E5FA66383}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{065A9368-6E1D-CCA3-D331-2A3E5FA66383}" => Key not found.
"HKCR\PROTOCOLS\Handler\AutorunsDisabled" => Key deleted successfully.
"HKCR\CLSID\{91774881-D725-4E58-B298-07617B9B86A8}" => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{15BD7F78-2306-4038-AFCB-6084B415CCB1}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{15BD7F78-2306-4038-AFCB-6084B415CCB1}" => Key deleted successfully.
C:\Windows\System32\Tasks\{74852D3E-E9D6-4197-88E1-C87438D7861E} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{74852D3E-E9D6-4197-88E1-C87438D7861E}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1965538A-79AD-4CCB-9C88-F4F151F46AED}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1965538A-79AD-4CCB-9C88-F4F151F46AED}" => Key deleted successfully.
C:\Windows\System32\Tasks\{C8D9D98D-DC8D-49BD-9FCF-F4AD91477A45} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C8D9D98D-DC8D-49BD-9FCF-F4AD91477A45}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2A6C928C-B3D3-4986-A743-DB82CCA01FCC}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2A6C928C-B3D3-4986-A743-DB82CCA01FCC}" => Key deleted successfully.
C:\Windows\System32\Tasks\{22B41B3C-48C4-4AD8-A483-3DB5336E5E29} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{22B41B3C-48C4-4AD8-A483-3DB5336E5E29}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4DEC86A8-1473-481D-8400-F6753C0BD2E2}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4DEC86A8-1473-481D-8400-F6753C0BD2E2}" => Key deleted successfully.
C:\Windows\System32\Tasks\{57D3F9A2-D81D-4A21-8BC6-77CC0628DFB0} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{57D3F9A2-D81D-4A21-8BC6-77CC0628DFB0}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9CA5234B-0376-4178-81F7-800A4F1A60A8}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9CA5234B-0376-4178-81F7-800A4F1A60A8}" => Key deleted successfully.
C:\Windows\System32\Tasks\{10D41F78-5492-4AC4-A43C-C269B624736F} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{10D41F78-5492-4AC4-A43C-C269B624736F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A2ED2E14-02B0-449D-B694-0D06429AE0B1}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A2ED2E14-02B0-449D-B694-0D06429AE0B1}" => Key deleted successfully.
C:\Windows\System32\Tasks\{FF2DA5D6-9D77-4B3D-B53E-C0E5122C7AE8} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{FF2DA5D6-9D77-4B3D-B53E-C0E5122C7AE8}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D0305BE4-4F12-4D6A-90F8-4F1D494B3285}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D0305BE4-4F12-4D6A-90F8-4F1D494B3285}" => Key deleted successfully.
C:\Windows\System32\Tasks\{95824927-69A7-49AE-BECD-9C1F3D65E279} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{95824927-69A7-49AE-BECD-9C1F3D65E279}" => Key deleted successfully.
C:\ProgramData\Temp => ":1A15E356" ADS removed successfully.
C:\ProgramData\Temp => ":689AB7E9" ADS removed successfully.
C:\ProgramData\Temp => ":8E5EA40F" ADS removed successfully.
C:\ProgramData\Temp => ":CB299F13" ADS removed successfully.
C:\ProgramData\Temp => ":F610C203" ADS removed successfully.
C:\Users\Dee\Documents\Oohrah1.jpg => ":{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}" ADS removed successfully.
C:\Users\Dee\Documents\Project1.jpg => ":{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}" ADS removed successfully.
"C:\Users\Dee\Documents\Verizonphoneno.png" => ":SummaryInformation" ADS not found.
C:\Users\Dee\Documents\Verizonphoneno.png => ":{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}" ADS removed successfully.
"C:\Program Files (x86)\AWS" => File/Directory not found.
Processes closed successfully.
EmptyTemp: => Removed 710.1 MB temporary data.


The system needed a reboot.

==== End of Fixlog ====

 

 

JRT Log:

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.3.9 (11.15.2014:2)
OS: Windows 7 Home Premium x64
Ran by Dee on Wed 11/19/2014 at 11:29:07.49
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\ApnStub_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\ApnStub_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskPartnerCobrandingTool_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskPartnerCobrandingTool_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\HPSF_Tasks_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\HPSF_Tasks_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\BabylonTC_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\BabylonTC_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\dealio_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\dealio_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\ApnStub_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\ApnStub_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstallChecker_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstallChecker_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\HPSF_Tasks_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\HPSF_Tasks_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\BabylonTC_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\BabylonTC_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\dealio_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\dealio_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Successfully deleted: [Registry Key] "hkey_current_user\software\askpartnernetwork"
Successfully deleted: [Registry Key] "hkey_local_machine\software\askpartnernetwork"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\clsid\{44cbc005-6243-4502-8a02-3a096a282664}"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\clsid\{80703783-e415-4ee3-ab60-d36981c5a6f1}"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\clsid\{d8278076-bc68-4484-9233-6e7f1628b56c}"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\clsid\{f297534d-7b06-459d-bc19-2dd8ef69297b}"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\typelib\{9945959c-aad8-4312-8b57-2de11927e770}"
Successfully deleted: [Registry Key] "hkey_local_machine\software\microsoft\internet explorer\low rights\elevationpolicy\{6978f29a-3493-40b2-8cdc-9c13a02f85a4}"
Successfully deleted: [Registry Key] "hkey_local_machine\software\microsoft\internet explorer\low rights\elevationpolicy\{d7949a66-d936-4028-9552-14f7dc50f38d}"



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\Program Files (x86)\inboxdollars"
Successfully deleted: [Folder] "C:\ProgramData\AskPartnerNetwork"
Successfully deleted: [Folder] "C:\Program Files (x86)\askpartnernetwork"
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{002693A5-BCC6-4BC4-8E94-96C9FC706415}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{00E651B0-7D0F-490F-882A-9C8E7C59D476}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{01C486AF-3164-425F-AC49-6EB917266AEB}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{02ADCE47-84A0-4850-8A32-59CD3D068218}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{034BAC39-29C3-4D8E-8ABA-46A2A6238097}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{04A67C6B-E81E-4268-B52D-CBCD81AA463E}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{052C92A8-1328-4CAA-A6A7-7D1DC21A6CC0}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{05D8542F-7AF7-4A39-9352-FF55A615AB09}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{06409738-D2D2-4DD7-8AEE-F4AFA9C1C523}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{07591496-3D3E-473C-A064-850C3257320E}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{07BABBF0-B016-44BA-844A-33E388442E76}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{084BEAF6-FD60-48F7-A8B7-E8BBAAFD5AF9}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{09210C46-BAB1-4FCF-8745-FED99EBDAC74}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{0A2E0772-AD1F-47C0-A686-CE69864215E5}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{0AAB5532-DA86-4690-A040-D8F07329D5E3}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{0B374DE4-917A-43F2-BDD0-9271B48FD527}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{0B54CC49-088B-46A1-91A1-02EC1D8833F3}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{0BE29B49-BB07-4BD8-A7E9-E98BD42F5A3B}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{0CA86A6A-B264-49C2-95FE-2DC9927D582C}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{0D669067-F3DD-461C-BD51-329B9DD29EF7}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{0D9296F9-B411-46FE-B56F-DF239D6DF15A}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{0DFFB7E4-8F12-4EA5-A5A7-1F69AD1DDA0C}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{11D3AF26-B306-4386-85D5-2EEF0B94A2D3}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{12344D3F-2A0E-4E45-953E-AC7EB1E3D7AE}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{12C91E4F-3A68-4A4E-B64A-A5A7E5A3C90B}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{12E41634-B7A9-41A3-A55C-D394B102476E}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{13B5A82F-BCF6-49FA-8E69-A7F94656A6A6}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{166B705C-014C-4938-874E-9704DE3A20A1}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{16B41DFD-0AE9-4110-9FC7-12958659FD9A}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{1867F51E-970D-4A8B-A8CD-03571C377C62}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{18C3EF0C-0B29-4A82-8787-0B99034CEF6F}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{18F61B11-C08D-4341-BEC6-0E1B77102D53}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{18FA452C-948D-49E6-B774-311767AFC9E4}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{1970D0A6-FB2A-4195-8A43-BAFAC3E60881}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{1BD8ADBF-0125-4D9E-903A-F3861270C467}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{1C5DE5ED-8164-44E8-9AF9-CC9E6A09A1A1}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{1CB52B9C-34A0-43F1-BA1A-4CEBE63BDD53}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{1CC6A5C9-1353-4932-AFEB-C840284D8CAE}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{1CF54CDA-8761-432E-9D1F-1FAABE3A9888}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{1CFB8488-C589-4D9C-811C-511B4861149C}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{1E34B1CD-D96B-476A-9FD6-50F836CA65F1}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{1E8A5A6A-9993-4B42-BC79-DDE1409FAA60}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{1E945055-4B35-4712-A1F0-49947B6D5437}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{1ED88430-1137-461D-8A63-DBC71572BDEF}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{1F3EE67F-BC6F-42E8-8120-D7F8E46189A9}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{1F9D36B0-457A-4726-8DFF-4EC6A9FC03A7}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{1FFB88DF-80AB-49C3-AF4B-AAD0B05419EB}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{1FFEE4C7-0265-41F6-BF7F-9F9A1A3DE3B4}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{2069696E-368A-4470-B0F3-342DAE0E4619}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{20E2DA96-C693-4484-86C8-578988065CBB}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{20E4065C-3CEB-4448-953F-64A95FEF017F}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{213909F9-08A9-47EA-9E79-1577819AC757}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{2145F7F8-DB63-4F0D-81A1-E2966D33105B}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{21A79A90-BEBC-4392-BD52-7FEBEA2CF3CE}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{21CEE9D9-E2C2-4819-BDBF-F12C50AA2AE1}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{22429D7B-2D0A-4778-8D48-05F81B4C57D1}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{2252CBF8-A2D8-4416-B948-5723DB0EED29}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{25066810-D5EA-4B10-AA63-3E824E25D16C}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{27042EE6-2DB1-4D64-BF61-35946919F480}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{2722A5B4-B6DC-41A3-85E4-0C12BC195D98}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{2974103A-B189-4BF5-82BC-0215A39453F5}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{2A15557B-7EF6-4982-B770-BF677916B273}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{2B30D0EB-528E-48DC-80A0-EDBECD61B809}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{2B509C7B-0C10-4540-914C-A4330E53636A}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{2BBE1973-3E2F-424F-AD13-8E7998632E25}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{2C1B8B70-5420-4ECA-A919-399A53BA49EC}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{2D3CB0A0-ECA9-4664-831F-F594F7A7B76F}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{2D54E671-DB9D-4221-98F0-E0567A28233F}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{2E0BED9B-616F-4696-9BC2-901A8B3AF495}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{34390ECF-F5C1-4182-A5EB-04A490B6FD11}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{34783B0C-0DCD-41E9-82C4-8F4E669DD9DD}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{353F83A5-725D-4502-91CB-A01C4D38BB83}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{357A461F-5CEC-42BD-969C-6E080647BB15}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{358DDAED-561C-4606-86A1-E962BF81DC4A}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{35C9B46E-6FEB-4B0F-B78B-FC9917B4A707}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{3701C5C4-9F9A-4BF1-BD54-C5AD4401DDB9}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{371D5644-6440-44B6-AA2B-BC6001323EAE}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{377B2FA7-0409-4AFB-B9AF-B832138FC4CA}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{38807C17-C0AB-4AC5-ADB0-3BDCC70F3C17}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{38E35314-DAB6-4177-93DA-C8317A7E0428}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{392C19DA-8A05-419A-A931-EDD2B480B93B}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{3A5C6E9B-DFE4-4763-A3D4-A0F487B4559B}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{3A827808-6AAE-47AA-94AC-B7B2C648351F}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{3C02AD5B-9E91-4B0A-BB97-346EFE1C405A}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{3C331B7A-8363-44D9-9E65-2E1AA73DF97A}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{3C4BE8F6-241C-4408-98F4-7D0BAD294CC9}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{3D78470A-33F6-43C7-B24D-105D16480692}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{3DBCF0F9-CD35-4745-95E8-01C7FE04292A}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{3DC66616-1B41-4DD8-81AF-F7F3B8C1C86D}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{3DEA16C9-57DB-43D2-B9DE-49FA064892D2}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{3E05BB50-60DB-4C3A-AA00-51FE23A4FC9E}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{3E2FF4D6-35C0-449B-B625-027013BFB588}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{3E6E4952-5919-4A0B-8A9D-0C5605F965CD}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{3E8C2DA1-FB17-4F71-83A3-E983B8F9B552}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{3FA55D1D-7D36-4873-BBB3-D319662B4AD7}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{41B7A02B-72F5-4BB5-8913-52A485B2B164}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{426BB151-09FA-4D42-B9F7-B1447DDA6512}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{436491BA-F797-4758-AEC8-9FB087A7FD67}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{442F053E-7D2A-42C6-A41A-F60CFF814CAB}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{45C36619-5B00-44B4-9719-6F932AA34A13}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{466D3702-6D39-4DD5-9947-BE3BF0F9AED5}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{46E08EA7-44DA-4DFA-9B5A-E57A4A8EB1CA}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{47846DA8-C0C5-4097-AAF2-138D6AA03839}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{490370DA-9733-47F5-9AEC-FF3F5B1D12C9}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{4A51F16C-999B-40CB-9861-EB9E5FE5302D}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{4A987F3E-521D-4723-B8C7-103DB6086CF6}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{4AA9008F-D0B4-4B28-A5A0-C1ECA62BAA8F}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{4B71A2B1-E3F6-47F5-9729-F6C469BD6832}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{4D252233-71E9-4595-A678-1862BE696ED8}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{4D6C77D9-40DC-435D-829A-41C21547DEF6}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{4D8D9205-B3A6-4580-A183-083E13629E42}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{4E3A5C3B-D0CD-4734-8121-48A699C87EF9}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{4FFE0D6F-A6B2-4E9A-AB77-F42CE52F6348}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{51F11AEF-86C4-4191-8364-BA8AB0B89370}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{521F4532-389E-4DE5-9817-E27AD4CC5701}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{52B6E97A-0AE1-4E0F-AA32-F0551D169630}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{55079B20-0861-4E38-910C-A4C0236BCBE2}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{5544457F-E932-4552-A575-5D89DB1CD599}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{556D7CE6-E5C7-466B-A3B2-40125A979E28}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{579A3B3D-5DA8-461A-873A-F98F76F9AEB3}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{57F2D27D-3514-4DBF-89FD-ABA91D63C211}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{58C2BECF-6899-4AAD-BA9F-259D5EFC6C4D}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{5B2376A9-426C-49F3-B914-4D1962D6A72B}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{5B4240D1-945C-4843-B520-4156F890EE6A}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{5B6DD77D-586C-40DF-9A5B-9D92E5171FB6}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{5CF770E6-2353-453F-BEF6-08039660871E}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{5F9C658B-E3DA-43FE-A2A7-25677D59A219}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{5FDA4C47-DED6-4E53-A7BC-B52FB2016231}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{60AB07F5-10C8-49E9-B54B-D7A4708AE65E}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{62D49CF1-8C78-428D-A9BE-2F8711EAAE38}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{6395EBBC-FCD3-424F-8816-52CB00D19582}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{649C890F-FE6A-4722-99B3-4A4BE66023BF}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{6595CB0B-488A-40A2-9D2D-DCB2DC775974}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{65B326C5-2E0E-43F2-BC16-2BFC0F7C1907}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{65CC1364-64D2-4507-82EE-D2CC40DFBEC1}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{67512BA2-2A47-4142-A243-DB6D02CC549A}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{67835B7B-68AC-4F12-A4A1-DED0C8743054}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{69A0458A-9422-4285-BB39-4203D39D6765}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{69BBDAD5-BAD9-497E-9ED7-FF558E61CCB7}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{6A5D75D3-6F41-4610-9C73-E86FA950AAA9}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{6C250335-DFA9-42E7-8344-90006B407895}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{6C557FEF-8863-4946-A0D7-FD3470F61671}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{6E972F3C-BB31-46BE-B113-97999AF1D187}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{6EB83554-B0EF-45CD-96DE-DDE3AB175F49}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{6EF0E264-970B-4135-A161-E8F7CADC2CFE}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{70B72BE7-7A15-4619-9939-9854073EDEBF}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{71D03A0D-3751-4BD5-A879-B26E4E056982}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{72B7EAA6-6EE8-4D14-8A28-7BB665C15E62}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{73C9180A-0A26-42C9-84FD-3A5BD4556287}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{74357DE9-6159-406D-A2F1-FB7EE1D7D649}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{745167DE-BFF7-4583-AB11-9B4A23C63F32}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{74865BEA-0C53-4260-8FC9-98428A4BA506}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{75888784-5DB6-49D5-8F6F-37A42DECE598}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{7602939D-4064-4AF8-AE6C-EAECA6922F3C}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{76916352-4976-4752-9CD5-D25C769C8A44}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{7731EAAC-AEF1-4DF8-BCCB-19941E64638B}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{779FB4F5-E882-4D81-BF38-416877439646}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{77A533FC-17F0-41C5-922F-3D80614D0DA5}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{781FAAC2-3B6D-43F6-AE9B-EAEBB34480E1}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{79FB0CA6-1FC3-420D-9797-1FC22871C52A}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{7B13FA41-1B8B-431F-9431-6DC91F73A026}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{7B34B6FD-0652-436E-8546-463720FB38D5}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{7D60AFBF-E29D-4F81-A79B-5682417F4541}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{7D7E4DD0-4546-4885-86A4-A96D35E0C756}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{7E5EA9FC-8AA5-4D31-8789-90D554134509}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{7F445062-9549-4E15-AD42-98C5F64927AA}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8167B4CB-8880-4B18-AB6B-459173CF049C}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{81A1F486-BA84-4E23-A45E-0C59A67D8977}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{81CA9EC6-74F3-4CA9-9153-552374305E95}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{825A36FC-15C0-4D91-AED0-7621E98C6A31}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{82BB1DC4-8F27-4D76-9F86-80DD712DFC21}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{835BAABA-3FB2-4090-AD19-D8672F9F291C}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{83958D14-6E92-43DB-B117-5C1BF8849791}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{84C55051-529B-49FE-8F41-84E56D46D0F6}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{85C48D17-9EFA-4165-AB56-9EBFEF21A422}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8611FD6F-C49D-420C-91D9-7118900BE3BD}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8638A829-7F24-4D4D-AC4F-F024613176E0}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{866EC899-79DC-499E-BC35-B684B4923CB4}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{86F51851-D2B2-4C8F-9191-917DA50490A0}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{87442456-0C00-41CD-91C4-D787D95307F2}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8991B4DE-E756-4DA5-AFB6-0BF008296E17}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8A3552E8-4970-473F-8672-A9F3DD128735}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8AB0C677-75F7-4386-9723-FB87A86A49D5}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8B438B3B-CBDE-40AD-AB60-2ADA2BCDD25A}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8B78FCC7-BA1F-4FBE-A730-5F8AAC73B5E7}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8B9BF01D-B104-4C56-909E-C3B7F66E34E5}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8BBEA421-5985-4F37-925A-9D4898E84E6C}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8BDBF074-A510-452B-8F45-EAE117511464}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8BDEA311-46E1-4D22-8A70-1C5973EDE972}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8E52D5CD-3E81-49B2-8EE3-ED000B8BA6C3}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8E88625B-F6B3-408D-9CF4-AB630B78113A}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8EABC150-D61D-493E-9664-71580FF20087}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8ED896A6-49B8-4ACC-B47E-E0F688F9CF2E}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8F0552A2-74EF-41B0-AB5A-A4172E07F9CD}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8F787927-652E-4BD4-B540-8C957CC48397}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{8F8F38E0-9E00-481B-9463-6D43ECFA1DE2}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{908586E7-3B9E-4875-86E4-CDD72D9F9CD7}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{90BCFCE9-AA23-4AA3-B160-8AD75072F6F4}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{90DF5946-146E-4314-9F4A-22EA6D19E5A9}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{93B2EDDE-876F-4802-B4BD-661C33BAE878}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{942729D4-F067-4364-8040-C5EBB4AF5B12}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{954ED644-E846-4787-92A2-552D5D9E372E}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{97BDD8A4-C740-4DA7-BF0E-FCF7D54E6BEC}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{98633C6B-9999-46FD-8DC5-266F025EA030}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{9A776EA9-5BE6-4C54-8DA4-922194BF60AC}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{9C2580BA-6329-47E0-A356-9ACEEE30B30F}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{9DAD1BDD-770B-45CC-BA90-2E134CC27FF1}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{9EDF7A60-FDA1-45A4-BD20-53718C5E9D0E}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{9F07E69E-278F-4FBE-8BC8-75D4F9FBF675}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{9FA9BEE8-C775-466F-918A-C169C22A75B9}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{A031A4D4-C4CA-4911-867F-DF1CC0C7D146}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{A0DEF3E5-2DEC-4D82-B254-7A8DED1BEA6E}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{A29F9988-861E-4B36-9AF5-D937CFA7D210}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{A3504BFA-8ACD-4136-9A36-DDEB7CE03DA1}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{A3DFEEBB-B632-4794-960F-C1091643C0AA}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{A4E2C309-C1B1-48B6-B94D-718BF615E40A}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{A5181272-6CC3-4808-AD14-698AB74C0AB3}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{A5500AB1-223A-4BF6-85C4-1D1F01F20A5B}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{A551D52D-4743-4346-8AF3-B3484785DB4E}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{A5731642-091C-4043-9390-E8C28748E95A}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{A58CBB73-A7AD-40A6-8969-55C433464A0D}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{A638EDE3-D2E4-479A-AD42-2861AB312D33}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{A69274D1-BBE0-452F-939A-09789F62E034}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{A90E9CF5-2E69-40A7-B5B1-4BFF470A6380}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{AD66C1CD-E09E-45A4-A68E-565E9A15A019}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{AE066346-61C2-4670-84AD-977DBD3A0108}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{AE1653F3-44F6-4A62-A19F-CBF83E1688FB}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{AEA13374-97C3-455D-9382-4A9B9E1B1B9C}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{AF194531-9A6C-499E-8730-38257233EE7C}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{AF49D5B6-A39A-466E-9DD5-0251688626DA}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{AF6BD900-B495-4DFC-9A53-2C16D66065F3}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{AF71CE9B-2061-495A-B2B1-7B084A627563}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{AFB25199-8E34-4741-A958-0FF4C543C80C}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{AFF85F0C-4FF7-444D-91A7-D6BA5ABE71B4}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{B00B1FC2-801C-4F4E-9313-9367BF799CF6}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{B04A1C85-8206-4B21-9EE9-662D077376F1}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{B1C23F0E-5825-4BE8-85B1-FBBCF582550C}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{B2ACBE60-7327-47A2-AE88-E8AFE13DE292}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{B383AFFF-3782-43BE-9100-70BFC6AF5844}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{B3AB8B35-A255-4E5B-B343-551BA2DA7935}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{B4B681D1-7DDC-4F63-8EE7-BD00AC5435E0}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{B5A9B6F2-F42C-4047-8E01-1DFB95F1D58F}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{B5CD29D5-D591-445F-B935-FD47CC7BADFE}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{B676FE3A-6C5C-4DB5-ABA0-527EA3220BED}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{B6F570AE-BC1D-4223-8FE4-1F9D1F27571C}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{B8BF517A-CA5A-4B06-A91B-28F69F983927}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{B8FC3079-6570-47B6-A6EC-5D7CFEE43D2A}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{BCF84591-052F-49AE-83E4-ACBAFBBA4C1B}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{BD5395C2-2E8C-4FF9-94BD-7EF1D76369EE}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{BE1290AD-416F-44F2-89EA-0EB0A36CF753}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{BEC4ED87-7528-42F6-BF7F-3D78B973FE91}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{C0105223-158D-4260-A0CC-F3EDC497CA9E}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{C20B0C83-8656-452F-9FA1-5A2AC607C70F}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{C289E73E-B6C3-4CB8-96CE-308D0014FB11}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{C3AC7F50-E188-4AC8-B57B-4154F40E7E6B}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{C3AE7FA1-062D-4D96-AF9F-B8EEE2FB30D9}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{C46EF699-D8D0-4466-BCF3-2B9BE81991FE}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{C49ADBB8-3E42-4015-9960-77F3A1A1D40E}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{C4C62630-AA56-48B7-BB0E-35E89DC0076E}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{C59695A5-111E-4A1B-969C-A3E6816F1D24}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{C5FE0A63-A135-41CE-88AC-916683772DF5}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{C77E47CA-D564-4ECF-A16C-743A94CAEBD3}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{C7B023E9-1D5D-46D2-B27A-D2F8C2F27177}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{C8336C12-AE93-4A2B-8F18-079DB86E3999}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{C9BEED06-BFB8-403F-B7F8-226C970F7F8E}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{C9C9BE7F-32E7-4DCA-954F-32C88A605A5D}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{CAF098FC-55DB-4B95-918D-5D45CAB08D0F}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{CB8D2ACC-CEDC-4E98-BA4C-005BE5DA2440}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{CC114B78-E129-4F18-8A79-B50B8FC478DA}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{CC498094-9109-4AA3-B050-B713558008F4}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{CC60707C-0AEF-4592-86CA-2E8F853D35CC}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{CCCB3B69-79B8-43D3-BF69-16A4A80AAD91}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{CD1DE657-06B8-49E5-AD85-358BFDA8EA1D}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{CE7B0A2C-E161-44B2-9A0B-D0C43CE7E819}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{CEA72E9F-8AFF-4A6D-AD09-53E3BEFBA95F}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{CF5265E6-764D-473F-9825-6072CCA7B429}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{CF803A60-00A7-49F2-A22F-ED134BF83888}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{D0C0128D-467F-4BC0-AB29-35DA5A16F4B4}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{D214418E-C7C9-488E-B702-9CF2CBA956C9}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{D2F22453-1BED-4171-96F4-2ED014FCCFE4}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{D3D025BB-5900-4212-AB53-EE145B403B1F}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{D44A8B1A-8702-4C56-A8CD-B9B4D09398C6}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{D6C293BC-7C7C-4D9E-BF14-A7E2A26D8C0A}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{D78A8535-0A11-4728-A37B-911FAB7173C3}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{D7FC4A5C-1361-470A-B6CB-A48A1D092C6E}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{D81CE37E-B45F-4F71-97A9-9DE7A403C5F6}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{D9031F7B-61E4-423C-AEA7-A33BD1BF3EE4}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{D9C74816-BE1A-46BD-9AA8-EDA3599A37D3}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{DAF85DEC-7344-4856-A63A-CCB5070AC146}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{DCAAD876-E448-48A1-918A-61DB0CC89F3A}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{DDCC437D-B351-48D2-BB47-69AB4CCD1452}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{DDDF718A-C817-401D-90BF-B33F65BF8FF3}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{DEC5DD10-F414-4C34-86D2-B451F09881C6}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{DEEA3255-CD1C-45DA-A6D2-1450B3682892}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{DFC2C028-10CD-405C-91CE-BB41F01A8609}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{E086E05F-22AF-4716-BF91-C3C3DA6BF7D7}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{E28BAB5F-8A9F-4CB8-B8E2-BFCCE259CBF6}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{E29AFDF3-050E-44FA-B31F-8B8E7B0C4E73}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{E43826FA-FE9B-4199-862E-5C2B0D314656}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{E5AD4F34-7F5C-403B-B094-74A74D8BF89F}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{E69D76AD-2565-4AD6-B89F-38AE3F95F7ED}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{E7462C25-A874-4BFB-A9BB-FB560013FDF6}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{E78F3A51-E7B1-4F2B-94D0-88995EA854EB}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{E7B34C6A-5D57-4E07-9523-841B28DA6274}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{E80FEDFB-041A-40C0-A7AA-E61F59806E84}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{E84EBFB2-71FE-4D84-82D1-CE4650BC69A9}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{E9568E58-08AF-4AAF-BFC2-8C88F27F5BD1}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{EB7998E5-9F47-4697-B3CD-AF2262D2D8E1}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{ECFDC609-78C3-4750-9787-091AD4545175}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{ED068C7F-4DC9-4C1F-9B9E-5D96E79003A0}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{EDE5212E-420F-4BA0-9795-93B72A15A3A4}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{EEA0E290-E18F-43BC-812B-85CEF1BEC7BA}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{F0DAE694-C2E2-42BD-8836-2C0656601663}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{F1473797-DEF9-441D-9783-22D2F9EBDFF2}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{F2164A70-2A6E-40A9-88E2-9FFD6F85ED2B}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{F29D5A0B-3B0A-4ADE-BF93-023D5F2219F1}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{F2A8CA62-64D9-4CE3-8EA0-CA89FA39D0EB}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{F2C5B3ED-3F47-4362-89F4-3E039383FF64}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{F33DA956-80AC-4B78-B297-8885A089EB3F}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{F3AAEA3F-7558-42A3-BAD5-5F79F3DEBC20}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{F4871480-54F9-4DDF-A2D3-6BC8F1974A20}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{F515691D-6091-4D4C-AF16-97F13C07CE23}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{F714BE0E-0643-43BD-891B-1D7D2FEFD457}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{F73523D6-AA3A-4A9F-A54A-73B4913B1067}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{F87500FB-BD5E-4A26-AB36-F44EBC368C49}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{F8DC4046-EAF2-47C4-9053-6528836DEDBE}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{F9C0724E-9693-4018-AB14-C8581766C6EC}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{FA177A0C-FAFB-4449-BDE6-6213180DA4E2}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{FA52A7F2-C53F-4851-A0BB-481A077CB07E}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{FCA73E03-EB63-498B-B902-2A27D8464E89}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{FD9D7C31-C4D3-4394-A362-706F672295FE}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{FEAC1DE2-A5D0-49BE-9FED-BCE5173B3473}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{FEE24592-C11C-4045-B77D-03AF262E15A7}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{FEE8E3FB-A318-44CF-BBE6-6F49E9645D4D}
Successfully deleted: [Empty Folder] C:\Users\Dee\appdata\local\{FF75415F-C2D4-4D22-A53D-B99D7221EC77}



~~~ FireFox

Successfully deleted the following from C:\Users\Dee\AppData\Roaming\mozilla\firefox\profiles\aggtq3yt.default\prefs.js

user_pref("extensions.toolbar.mindspark.lastInstalled", "[email protected]");
Emptied folder: C:\Users\Dee\AppData\Roaming\mozilla\firefox\profiles\aggtq3yt.default\minidumps [713 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Wed 11/19/2014 at 11:36:12.04
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 

 

 

ADWcleaner Scan Log:

 

# AdwCleaner v4.101 - Report created 19/11/2014 at 11:44:22
# Updated 09/11/2014 by Xplode
# Database : 2014-11-16.1 [Live]
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Dee - DEE-HP
# Running from : C:\Users\Dee\Desktop\AdwCleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Found : C:\Program Files (x86)\AVG SafeGuard toolbar
Folder Found : C:\ProgramData\AVG Secure Search
Folder Found : C:\ProgramData\AVG Security Toolbar
Folder Found : C:\ProgramData\iolo
Folder Found : C:\ProgramData\PicRec
Folder Found : C:\Users\Dee\AppData\Local\AskPartnerNetwork
Folder Found : C:\Users\Ethan\AppData\Local\AskPartnerNetwork
Folder Found : C:\Users\Ethan\AppData\LocalLow\AVG SafeGuard toolbar
Folder Found : C:\Users\Jared\AppData\LocalLow\AVG SafeGuard toolbar
Folder Found : C:\Windows\Microsoft\sogr

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7854F00C-DC77-477E-A10E-603F48442D3B}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKCU\Software\YahooPartnerToolbar
Key Found : [x64] HKCU\Software\YahooPartnerToolbar
Key Found : HKLM\SOFTWARE\AVG Secure Search
Key Found : HKLM\SOFTWARE\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3}
Key Found : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Found : HKLM\SOFTWARE\Classes\AppID\BabylonHelper.EXE
Key Found : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Found : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Classes\Interface\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4250488A-CB24-0893-C066-B1AEA57BCFF2}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKLM\SOFTWARE\Trymedia Systems
Key Found : [x64] HKLM\SOFTWARE\AskPartnerNetwork
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17420


-\\ Mozilla Firefox v33.1 (x86 en-US)


*************************

AdwCleaner[R0].txt - [3233 octets] - [19/11/2014 11:44:22]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [3293 octets] ##########
 

 

BTW, not long ago I received an error that my wireless card in my computer was off and needed turned on. I have had that card turned off since I got the computer and I didn't understand why I got the error now.I did turn it on but prefer it to be off. Please let me know if I can disable that card again.  Also, while browsing the site you are now recommending AVAST over AVG so I will be switching as soon as you give me the ok.  Therefore, there are no worries as far as disabling any part of that. Also, if anything has messy formatting let me know. I will use wordwrap in Notepad but so far it hasn't seemed to cause a problem.  Last but NOT LEAST, I am very concerned about my personal info. Banking, bills, etc. Please let me know what to do about that, which I assume will be done after we are done trying to get this thing safe again. Thanks again and chat at you soon!


Edited by Ozzette53, 19 November 2014 - 11:08 AM.

  • 0

#8
ruggie_uk

ruggie_uk

    Trusted Helper

  • Malware Removal
  • 2,083 posts

Hi, there is no problem disabling your wireless card if it not being used.
Avast is normally recommended over AVG as it has a great scan engine and is much more lightweight on system resources then AVG. It is a matter of preference, but I myself use Avast on my work computers. I will assist you in swapping over before we ar efinished if you would like :D

Step 1

adwcleaner.pngRe-run AdwCleaner

Close all open windows and browsers.

  • Right click the adwcleaner.pngAdwCleaner icon, click Run as administrator and accept the UAC prompt to run AdwCleaner.
  • Click the Scan button and wait for the scan to complete.
  • When the Scan has finished the Scan button will be grayed out and the Clean button will be activated.
  • Click the Clean button.
  • Everything checked will be deleted.
  • When the program has finished cleaning a report appears.
  • Once done it will ask to reboot, allow this

    adwcleaner_delete_restart.jpg
  • On reboot a log will be produced please copy / paste that in your next reply. This report is also saved to C:\AdwCleaner\AdwCleaner[S0].txt

Step 2

Please download Download RogueKiller by Tigzy to your desktop.

  • Quit all programs
  • Right click roguekiller.pngroguekiller.exe and select Run as Administrator.
  • Wait until Prescan has finished ...
  • Click on Scan. Once finished, click on Report

Please post the contents of the RKreport.txt in your next Reply.

Items I need to see in your next post:

  • ADWcleaner clean log
  • Roguekiller log

  • 1

#9
Ozzette53

Ozzette53

    Member

  • Topic Starter
  • Member
  • PipPip
  • 28 posts

I'm so glad I got this done tonight. Here are your logs:

 

AdwCleaner Clean Log:

 

# AdwCleaner v4.101 - Report created 19/11/2014 at 22:36:08
# Updated 09/11/2014 by Xplode
# Database : 2014-11-16.1 [Live]
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Dee - DEE-HP
# Running from : C:\Users\Dee\Desktop\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\AVG Secure Search
Folder Deleted : C:\ProgramData\AVG Security Toolbar
Folder Deleted : C:\ProgramData\PicRec
Folder Deleted : C:\ProgramData\iolo
Folder Deleted : C:\Program Files (x86)\AVG SafeGuard toolbar
Folder Deleted : C:\Windows\Microsoft\sogr
Folder Deleted : C:\Users\Dee\AppData\Local\AskPartnerNetwork
Folder Deleted : C:\Users\Ethan\AppData\Local\AskPartnerNetwork
Folder Deleted : C:\Users\Ethan\AppData\LocalLow\AVG SafeGuard toolbar
Folder Deleted : C:\Users\Jared\AppData\LocalLow\AVG SafeGuard toolbar

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\AppID\BabylonHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7854F00C-DC77-477E-A10E-603F48442D3B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4250488A-CB24-0893-C066-B1AEA57BCFF2}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
Key Deleted : HKCU\Software\YahooPartnerToolbar
Key Deleted : HKLM\SOFTWARE\AVG Secure Search
Key Deleted : HKLM\SOFTWARE\Trymedia Systems
Key Deleted : [x64] HKLM\SOFTWARE\AskPartnerNetwork
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17420


-\\ Mozilla Firefox v33.1 (x86 en-US)


*************************

AdwCleaner[R0].txt - [3405 octets] - [19/11/2014 11:44:22]
AdwCleaner[R1].txt - [3465 octets] - [19/11/2014 22:33:32]
AdwCleaner[S0].txt - [3373 octets] - [19/11/2014 22:36:08]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3433 octets] ##########
 

 

Roguekiller Log:

 

RogueKiller V10.0.6.0 [Nov 13 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Website : http://www.adlice.co...es/roguekiller/
Blog : http://www.adlice.com

Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Started in : Normal mode
User : Dee [Administrator]
Mode : Scan -- Date : 11/19/2014  22:49:59

¤¤¤ Processes : 0 ¤¤¤

¤¤¤ Registry : 24 ¤¤¤
[PUM.HomePage] (X64) HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main | Start Page : -> Found
[PUM.HomePage] (X86) HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main | Start Page : -> Found
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-2375802078-1423229213-3210898512-1001\Software\Microsoft\Internet Explorer\Main | Start Page : -> Found
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-2375802078-1423229213-3210898512-1001\Software\Microsoft\Internet Explorer\Main | Start Page : -> Found
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main | Start Page : -> Found
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main | Start Page : -> Found
[PUM.SearchPage] (X64) HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main | Search Page : -> Found
[PUM.SearchPage] (X86) HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main | Search Page : -> Found
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-2375802078-1423229213-3210898512-1001\Software\Microsoft\Internet Explorer\Main | Search Page : -> Found
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-2375802078-1423229213-3210898512-1001\Software\Microsoft\Internet Explorer\Main | Search Page : -> Found
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main | Search Page : -> Found
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main | Search Page : -> Found
[PUM.Policies] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System | ConsentPromptBehaviorAdmin : 0  -> Found
[PUM.Policies] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System | ConsentPromptBehaviorAdmin : 0  -> Found
[PUM.DesktopIcons] (X64) HKEY_USERS\S-1-5-21-2375802078-1423229213-3210898512-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\ClassicStartMenu | {59031A47-3F72-44A7-89C5-5595FE6B30EE} : 1  -> Found
[PUM.DesktopIcons] (X64) HKEY_USERS\S-1-5-21-2375802078-1423229213-3210898512-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\ClassicStartMenu | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1  -> Found
[PUM.DesktopIcons] (X86) HKEY_USERS\S-1-5-21-2375802078-1423229213-3210898512-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\ClassicStartMenu | {59031A47-3F72-44A7-89C5-5595FE6B30EE} : 1  -> Found
[PUM.DesktopIcons] (X86) HKEY_USERS\S-1-5-21-2375802078-1423229213-3210898512-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\ClassicStartMenu | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1  -> Found
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1  -> Found
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1  -> Found
[PUM.DesktopIcons] (X64) HKEY_USERS\S-1-5-21-2375802078-1423229213-3210898512-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031A47-3F72-44A7-89C5-5595FE6B30EE} : 1  -> Found
[PUM.DesktopIcons] (X64) HKEY_USERS\S-1-5-21-2375802078-1423229213-3210898512-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1  -> Found
[PUM.DesktopIcons] (X86) HKEY_USERS\S-1-5-21-2375802078-1423229213-3210898512-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031A47-3F72-44A7-89C5-5595FE6B30EE} : 1  -> Found
[PUM.DesktopIcons] (X86) HKEY_USERS\S-1-5-21-2375802078-1423229213-3210898512-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1  -> Found

¤¤¤ Tasks : 2 ¤¤¤
[Suspicious.Path] \\{961191EC-F7DA-4844-A458-9D02EE35B504} -- C:\Users\Dee\Desktop\Games\NDSecretsCanKill\SETUP.EXE -> Found
[Suspicious.Path] \\{CA26E7D5-59F0-48A6-B3CF-54F16B4F8837} -- C:\Users\Dee\Desktop\Games\NDSecretsCanKill\SETUP.EXE -> Found

¤¤¤ Files : 0 ¤¤¤

¤¤¤ Hosts File : 1 ¤¤¤
[C:\Windows\System32\drivers\etc\hosts] 127.0.0.1       localhost

¤¤¤ Antirootkit : 0 (Driver: Not loaded [0xc000036b]) ¤¤¤

¤¤¤ Web browsers : 1 ¤¤¤
[PUM.HomePage][FIREFX:Config] aggtq3yt.default : user_pref("browser.startup.homepage", "https://www.facebook.com/"); -> Found

¤¤¤ MBR Check : ¤¤¤
+++++ PhysicalDrive0: ST310005 28AS SATA Disk Device +++++
--- User ---
[MBR] 11658865be362ce295a3a61e94ee92ff
[BSP] 5d6f967b1f3bf42bc29eabf787fb2e26 : Unknown MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 940197 MB
2 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 1925730304 | Size: 13570 MB
User = LL1 ... OK
User != LL2 ... KO!
--- LL2 ---
[MBR] e04f061dcd72d35dc341f6d3174807c0
[BSP] 4559dcaeb51b96385af8c9f9dc536442 : Windows Vista/7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 264071168 | Size: 300 MB

+++++ PhysicalDrive1: Generic- SD/MMC USB Device +++++
Error reading User MBR! ([15] The device is not ready. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] The request is not supported. )

+++++ PhysicalDrive2: Generic- Compact Flash USB Device +++++
Error reading User MBR! ([15] The device is not ready. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] The request is not supported. )

+++++ PhysicalDrive3: Generic- SM/xD-Picture USB Device +++++
Error reading User MBR! ([15] The device is not ready. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] The request is not supported. )

+++++ PhysicalDrive4: Generic- MS/MS-Pro USB Device +++++
Error reading User MBR! ([15] The device is not ready. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] The request is not supported. )
 


  • 0

#10
Ozzette53

Ozzette53

    Member

  • Topic Starter
  • Member
  • PipPip
  • 28 posts

I just wanted to add that I have no IPv6 service. It apparently disappeared the day my puter told me I had to connect the internet through my computer's adapter card. I am hard wired but all of a sudden I can't use it because, I guess, there is no IPv6 service. It will not connect that way. Realtek is the adapter my modem (Zoom) is using, from what I can see in the properties. Also, every time I boot up I get a box warning with the address startup and autoruns disabled. May I use that again after we are done? Thanks.


  • 0

Advertisements


#11
ruggie_uk

ruggie_uk

    Trusted Helper

  • Malware Removal
  • 2,083 posts

Hi. Yes we can re-enable your startup items. IP V6 is normally an option on your network device. Very few routers and internet providers actually use it yet though.

Congratulations, you have done really well and all is looking good with your machine.

I would like you to perform the following steps to make sure your computer is really clean:


Step 1

Run Malwarebytes' Anti-Malware

  • If an update is found, it will download and install the latest updates automatically:
    MBAM2_zps52e3211b.png
  • Now select the Settings tab, and check the box next to Scan for rootkits:
    MBAM3_zps83324155.png
  • Go back to the Dashboard tab, and click the Scan Now button:
    MBAM4_zpse3cd4a79.png
  • The scan may take some time to finish,so please be patient.
    MBAM5_zps36d7537b.png
  • When the scan is complete, it will show you the results. (This one is clean):
    MBAM65_zpsb0aa143c.png
  • If threats are detected, click the Apply Actions button.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Extra Note below) If the log doesn't open, select View detailed log in the Scan tab:
    MBAM7_zps782405f0.png
  • The log is automatically saved by MBAM and can be viewed by going to the History tab and clicking on Application Logs:
    MBAM9_zps1f87702b.png
  • Choose the latest Scan Log, and click on the View button:
    MBAM10_zps5a48f689.png
  • In the bottom of the Scanning History Log window that opens, you can click on Export > Save to Text file (*.txt). Save the report to your Desktop.
    MBAM8_zpsad402941.png
  • Copy & Paste the entire contents of the report log in your next reply.

Extra Note: If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts, click OK to either and let MBAM proceed with the disinfection process, if asked to restart the computer, please do so immediately.

*** In your next reply, I need you to Copy&Paste the contents of the MBAM log file.


Step 2
ESET Online Scanner

Please run a free online scan with the ESET Online Scanner
<< Please disable any existing anti virus product before performing the following. >>

  • Click Run Eset Online Scanner

Runscan.png


Note: You will need to use Internet Explorer or Firefox (You will be prompted to install a helper program if you use firefox)for this scan.
Important: Please disable your existing AV software for the duration of the scan. If you need instructions on how to disable it, please check out this site: http://www.bleepingc...lware-programs/

  • Tick the box next to YES, I accept the Terms of Use
  • Click Start
  • When asked, allow the ActiveX control to install
  • Click Start
  • Make sure that the option Enable detection of potentially unwanted applications is checked
  • Next click on Advanced Settings and select:

eset-selections.png

  • Make sure that the option Remove found threats is NOT checked
  • Scan archives
  • Scan for potentially unsafe applications
  • Enable Anti-Stealth Technology

eset-selections.png

  • Click Start, the virus database will update, this may take a while depending on your internet connection.
  • Once updated, the online scan will begin. (This scan can take several hours, so please be patient)
  • Once the scan is completed, click Finish
  • Use Notepad to open the logfile located at C:\Program Files (x86)\Eset\EsetOnlineScanner\log.txt
  • Copy and paste that log as a reply to this topic

Items I need to see in your next post:


  • Malwarebytes Log
  • ESET Scan log

  • 1

#12
Ozzette53

Ozzette53

    Member

  • Topic Starter
  • Member
  • PipPip
  • 28 posts
Hi I just want to let you know that it is looking like we are far from done as I am running eset now. It is 33……% through it it has found 17 threats, including what looks like every bundled toolbar ever made, lol. I laugh so I won't cry. Will post this evening, I hope. It has taken almost 4 1/2 hours to get this far. Thanks in advance.
  • 0

#13
ruggie_uk

ruggie_uk

    Trusted Helper

  • Malware Removal
  • 2,083 posts
Hi. Dont despair just yet. Most of what it finds I expect will be in the quarantines crom the other software. This is quite normal. :)
  • 0

#14
Ozzette53

Ozzette53

    Member

  • Topic Starter
  • Member
  • PipPip
  • 28 posts

As far as I can see most are right in my C: drive, program files, etc.  But you're the expert. Here are my logs.

 

MBam:

 

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 11/21/2014
Scan Time: 9:51:47 AM
Logfile: MWBLog11-21.txt
Administrator: Yes

Version: 2.00.3.1025
Malware Database: v2014.11.21.07
Rootkit Database: v2014.11.21.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Dee

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 521485
Time Elapsed: 37 min, 23 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Deep Rootkit Scan: Enabled
Heuristics: Enabled
PUP: Warn
PUM: Warn

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 4
PUP.Optional.Ask.A, HKLM\SOFTWARE\CLASSES\CLSID\{4F524A2D-5350-4500-76A7-7A786E7484D7}, , [d5960539a2da1b1b0465477424de4db3],
PUP.Optional.Ask.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{4F524A2D-5350-4500-76A7-7A786E7484D7}, , [d5960539a2da1b1b0465477424de4db3],
PUP.Optional.Ask.A, HKU\S-1-5-21-2375802078-1423229213-3210898512-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{4F524A2D-5350-4500-76A7-7A786E7484D7}, , [d5960539a2da1b1b0465477424de4db3],
PUP.Optional.Ask.A, HKU\S-1-5-21-2375802078-1423229213-3210898512-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{4F524A2D-5350-4500-76A7-7A786E7484D7}, , [d5960539a2da1b1b0465477424de4db3],

Registry Values: 4
PUP.Optional.Ask.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{4F524A2D-5350-4500-76A7-7A786E7484D7}, 0, , [d5960539a2da1b1b0465477424de4db3]
PUP.Optional.Ask.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{4F524A2D-5350-4500-76A7-7A786E7484D7}, 0, , [d5960539a2da1b1b0465477424de4db3]
PUP.Optional.Ask.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\{4F524A2D-5350-4500-76A7-7A786E7484D7}, , [274448f604786ec82b3eae0d897921df],
PUP.Optional.Ask.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\{4F524A2D-5350-4500-76A7-7A786E7484D7}, , [e18aa49abdbf1e188fdabffc7d8504fc],

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)

 

ESET:

 

ESETSmartInstaller@High as CAB hook log:
OnlineScanner64.ocx - registred OK
OnlineScanner.ocx - registred OK
# product=EOS
# version=8
# IEXPLORE.EXE=11.00.9600.16428 (winblue_gdr.131013-1700)
# OnlineScanner.ocx=1.0.0.7623
# api_version=3.0.2
# EOSSerial=98e996b0bf7b6a4d910e632be3d06ebb
# engine=21218
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2014-11-22 06:28:00
# local_time=2014-11-22 01:28:00 (-0500, Eastern Standard Time)
# country="United States"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode_1='AVG AntiVirus Free Edition 2015'
# compatibility_mode=1055 16777213 100 100 0 102871664 0 0
# compatibility_mode_1=''
# compatibility_mode=5893 16776574 100 94 42205701 168224330 0 0
# scanned=355788
# found=17
# cleaned=0
# scan_time=16896
sh=EE2D8A0C16CB4F60E07AD30BC8F4AF2D25E4FF62 ft=1 fh=c2a60ef126908cf5 vn="a variant of Win32/Systweak.L potentially unwanted application" ac=I fn="C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSS.exe"
sh=24A108C48173FDD9962F7CC3D4DB4B852D864838 ft=1 fh=0501d0dc4c9a869f vn="a variant of Win32/Systweak.N potentially unwanted application" ac=I fn="C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSHelper.dll"
sh=915239C2678EFCE5C2E45012595BEA0C050864B4 ft=1 fh=9ca6c4d86ffea4d8 vn="a variant of Win32/Systweak.L potentially unwanted application" ac=I fn="C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSPrivacyProtector.exe"
sh=67A75BAA7A5BBB2EEEBB99D490F00F82D0BB1E09 ft=1 fh=5d5a0ac2ab2c0a85 vn="a variant of Win32/Systweak potentially unwanted application" ac=I fn="C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSRegClean.exe"
sh=2C09414F7BCF16F3C9A358B5CCD4492EF7EEF08E ft=1 fh=5545a1a02bc092d6 vn="a variant of Win32/Systweak.L potentially unwanted application" ac=I fn="C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSRegistryOptimizer.exe"
sh=322DCE4CCA5EB266FFEDD900C6D628769AD18300 ft=1 fh=b3d66e50f9e4f6b1 vn="a variant of Win32/Systweak.L potentially unwanted application" ac=I fn="C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSSystemCleaner.exe"
sh=3D4F16D76F5C1E68CE4D25B1F0049396FCE2ACCB ft=0 fh=0000000000000000 vn="a variant of Win32/Bundled.Toolbar.Ask.D potentially unsafe application" ac=I fn="C:\Users\Dee\AppData\Local\Downloaded Installations\{05B91CE4-CA5C-4607-9729-372F8CB3AD30}\The Weather Channel App.msi"
sh=4DFF371FCB4F880B2C3253643696E5ABDE6D84E1 ft=0 fh=0000000000000000 vn="HTML/Phishing.Agent.A trojan" ac=I fn="C:\Users\Dee\AppData\Local\Microsoft\Windows Live Mail\Hotmail (oz 317\Deleted items\773B0633-000002C4.eml"
sh=F69F5B71A6FA94B71504EF184913BCF428D43899 ft=1 fh=6c8257ade2556f83 vn="Win32/Bundled.Toolbar.Google.D potentially unsafe application" ac=I fn="C:\Users\Dee\Desktop\Tools\ccsetup418.exe"
sh=25CF9B7BB46B581ED8DE03DDC56E1574087CACAA ft=1 fh=10c5a1651be6049d vn="Win32/Bundled.Toolbar.Google.D potentially unsafe application" ac=I fn="C:\Users\Dee\Downloads\ccsetup326.exe"
sh=EA6298C62D1E986AAB37EEF21C6E298429A1449E ft=1 fh=1ab3d89b70e51450 vn="a variant of Win32/SmartFileAdvisor.A potentially unwanted application" ac=I fn="C:\Users\Dee\Downloads\isobuster_all_lang.exe"
sh=83F6DAC3DB0A6C7FD7520C4EC65AA6A0B6C56383 ft=1 fh=15d9bfee26875cf3 vn="a variant of Win32/Bundled.Toolbar.Ask.G potentially unsafe application" ac=I fn="C:\Users\Dee\Downloads\Downloads\dfx9Setup-WMP64.exe"
sh=F1474CDD3686743880D87D8ABF78A557F26963CF ft=1 fh=0a2bfd882c710bda vn="a variant of Win32/Toolbar.Conduit.B potentially unwanted application" ac=I fn="C:\Users\Dee\Downloads\Downloads\isobuster_all_lang.exe"
sh=B7513C7972228E216CD4BB536E263EC77046FECB ft=0 fh=0000000000000000 vn="Win32/HackTool.Crack.BB potentially unsafe application" ac=I fn="C:\Users\Dee\Downloads\Monkey.Island.Special.Edition.Collection-RELOADED\rld-misc.iso"
sh=676DAA374A4E9A6FBEB44E4B040170AD805A6974 ft=0 fh=0000000000000000 vn="Win32/Adware.WhenU.SaveNow potentially unwanted application" ac=I fn="C:\Users\Dee\Music\Agatha Christie - And Then There Were None [PC]\Agatha Christie - And Then There Were None.rar"
sh=735E74015917659F252435FCB68104F6FE7CA387 ft=0 fh=0000000000000000 vn="a variant of Win32/Systweak.L potentially unwanted application" ac=I fn="C:\Windows\Installer\120080.msi"
sh=3D4F16D76F5C1E68CE4D25B1F0049396FCE2ACCB ft=0 fh=0000000000000000 vn="a variant of Win32/Bundled.Toolbar.Ask.D potentially unsafe application" ac=I fn="C:\Windows\Installer\791d74.msi"
 


  • 0

#15
ruggie_uk

ruggie_uk

    Trusted Helper

  • Malware Removal
  • 2,083 posts

Hi, most of what has been detected are installer and toolbar remnants so we can deal with those :D

 

FRST Fix

If FRST.exe/FRST64.exe is not on your desktop, please download Farbar Recovery Scan Tool and save it to your desktop.


  • Download the attached and save it to your desktop <<< very important - it must be in the same location as FRST.exe/FRST64.exe
  • Right click frst.png and run as administrator. When the tool opens click Yes to the disclaimer.
  • Press the Fix button.
  • It will produce a log called fixlog.txt on your Desktop.
  • Please copy and paste the contents of that log back here.

    NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system.

Items I need to see in your next post:


  • FRST Fixlog
  • How is the computer running right now?

  • 0






Similar Topics


Also tagged with one or more of these keywords: Trojan

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP