I have noticed that there are multiple instances of Chrome running in task manager when Chrome is closed so I run MBAM. MBAM did a full scan but before it completes (on every run) I get the B.S.O.D. I notice before the crash that MBAM as found 12 infections but I cant find out what they are.
Windows 7 Pro. 32bit,
OTL Log:
OTL logfile created on: 19/11/2014 20:20:34 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\AndyK\Downloads
Professional (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
1.99 Gb Total Physical Memory | 0.62 Gb Available Physical Memory | 31.26% Memory free
3.98 Gb Paging File | 1.79 Gb Available in Paging File | 45.10% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 116.74 Gb Total Space | 47.46 Gb Free Space | 40.66% Space Free | Partition Type: NTFS
Drive D: | 116.05 Gb Total Space | 50.83 Gb Free Space | 43.80% Space Free | Partition Type: NTFS
Computer Name: ANDYK-PC | User Name: AndyK | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2014/11/19 20:19:46 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\AndyK\Downloads\OTL.exe
PRC - [2014/11/14 21:15:26 | 000,856,904 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
PRC - [2014/11/10 13:44:48 | 000,382,000 | ---- | M] () -- C:\Users\AndyK\AppData\Local\FAC95C88-898B-A73A-BC32-000000B100\Runner.exe
PRC - [2014/11/04 00:20:13 | 000,042,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\CompatTel\wicainventory.exe
PRC - [2014/10/29 16:18:30 | 004,826,904 | ---- | M] (Piriform Ltd) -- C:\Program Files\CCleaner\CCleaner.exe
PRC - [2014/10/29 11:03:36 | 001,217,032 | ---- | M] (TorchMedia Inc.) -- C:\Users\AndyK\AppData\Local\Torch\Update\TorchCrashHandler.exe
PRC - [2014/10/26 10:52:59 | 000,655,872 | ---- | M] (The Chromium Authors) -- C:\Users\AndyK\AppData\Local\FAC95C88-898B-A73A-BC32-000000B100\Chrome-bin\chrome.exe
PRC - [2014/10/21 19:54:40 | 000,161,280 | ---- | M] () -- C:\Program Files\116FC117-A4FD-4F86-9840-14C9CD63BFCE\zkurwblqyk.exe
PRC - [2014/10/20 17:52:12 | 000,043,816 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Internet Services\iCloudDrive.exe
PRC - [2014/10/17 15:24:20 | 000,043,816 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe
PRC - [2014/10/17 15:24:04 | 000,043,816 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
PRC - [2014/10/11 13:05:40 | 000,060,712 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
PRC - [2014/09/13 00:52:04 | 036,414,624 | ---- | M] (Dropbox, Inc.) -- C:\Users\AndyK\AppData\Roaming\Dropbox\bin\Dropbox.exe
PRC - [2014/09/12 09:43:06 | 000,064,704 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2014/08/26 08:49:58 | 000,078,088 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Hp\Common\HPSupportSolutionsFrameworkService.exe
PRC - [2014/08/25 16:29:54 | 001,245,752 | ---- | M] (Spotify Ltd) -- C:\Users\AndyK\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
PRC - [2014/08/22 11:44:44 | 000,022,192 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft Security Client\MsMpEng.exe
PRC - [2014/08/22 11:44:40 | 000,288,120 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft Security Client\NisSrv.exe
PRC - [2014/08/22 11:41:00 | 000,974,432 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\msseces.exe
PRC - [2012/08/18 11:18:47 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
PRC - [2010/03/23 21:53:06 | 000,495,708 | ---- | M] (IDT, Inc.) -- C:\Program Files\IDT\WDM\sttray.exe
PRC - [2010/03/23 21:53:06 | 000,229,458 | ---- | M] (IDT, Inc.) -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9691412ff1876250\stacsv.exe
PRC - [2010/03/06 16:46:14 | 000,286,720 | ---- | M] (BlazeVideo Company) -- C:\Program Files\BlazeVideo\BlazeDTV 6.0\MediaDetector.exe
PRC - [2009/07/14 01:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2009/07/14 01:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2009/03/03 01:43:08 | 000,081,920 | ---- | M] (Andrea Electronics Corporation) -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9691412ff1876250\AEstSrv.exe
PRC - [2007/04/26 11:01:50 | 000,537,520 | ---- | M] ( ) -- C:\Windows\System32\lxdacoms.exe
========== Modules (No Company Name) ==========
MOD - [2014/11/19 18:02:46 | 000,043,008 | ---- | M] () -- c:\Users\AndyK\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpqw3emr.dll
MOD - [2014/11/14 21:15:23 | 009,009,480 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\39.0.2171.65\pdf.dll
MOD - [2014/11/14 21:15:16 | 001,677,128 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\39.0.2171.65\ffmpegsumo.dll
MOD - [2014/11/10 13:46:56 | 000,120,368 | ---- | M] () -- C:\Users\AndyK\AppData\Local\FAC95C88-898B-A73A-BC32-000000B100\Modules\WdcMan.dll
MOD - [2014/11/10 13:46:50 | 000,054,320 | ---- | M] () -- C:\Users\AndyK\AppData\Local\FAC95C88-898B-A73A-BC32-000000B100\Modules\WbSes.dll
MOD - [2014/11/10 13:46:40 | 000,122,416 | ---- | M] () -- C:\Users\AndyK\AppData\Local\FAC95C88-898B-A73A-BC32-000000B100\Modules\WblSupp.dll
MOD - [2014/11/10 13:46:28 | 000,043,056 | ---- | M] () -- C:\Users\AndyK\AppData\Local\FAC95C88-898B-A73A-BC32-000000B100\Modules\PrfIns.dll
MOD - [2014/11/10 13:46:10 | 000,093,232 | ---- | M] () -- C:\Users\AndyK\AppData\Local\FAC95C88-898B-A73A-BC32-000000B100\Modules\ManXec.dll
MOD - [2014/11/10 13:45:56 | 000,101,936 | ---- | M] () -- C:\Users\AndyK\AppData\Local\FAC95C88-898B-A73A-BC32-000000B100\Modules\CmnUtls.dll
MOD - [2014/11/10 13:45:38 | 000,070,704 | ---- | M] () -- C:\Users\AndyK\AppData\Local\FAC95C88-898B-A73A-BC32-000000B100\Modules\CmdProc.dll
MOD - [2014/11/10 13:44:48 | 000,382,000 | ---- | M] () -- C:\Users\AndyK\AppData\Local\FAC95C88-898B-A73A-BC32-000000B100\Runner.exe
MOD - [2014/10/23 08:26:48 | 008,569,856 | ---- | M] () -- C:\Users\AndyK\AppData\Local\FAC95C88-898B-A73A-BC32-000000B100\Chrome-bin\pdf.dll
MOD - [2014/10/23 08:23:07 | 000,880,128 | ---- | M] () -- C:\Users\AndyK\AppData\Local\FAC95C88-898B-A73A-BC32-000000B100\Chrome-bin\ffmpegsumo.dll
MOD - [2014/10/23 08:20:35 | 000,324,608 | ---- | M] () -- C:\Users\AndyK\AppData\Local\FAC95C88-898B-A73A-BC32-000000B100\Chrome-bin\ppGoogleNaClPluginChrome.dll
MOD - [2014/10/11 13:05:58 | 001,044,776 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2014/09/13 00:20:58 | 003,610,624 | ---- | M] () -- C:\Users\AndyK\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll
MOD - [2014/07/31 11:16:44 | 000,073,544 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2014/02/10 12:44:24 | 004,592,128 | ---- | M] () -- C:\Users\AndyK\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libGLESv2.dll
MOD - [2014/02/10 12:44:24 | 000,112,128 | ---- | M] () -- C:\Users\AndyK\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libEGL.dll
MOD - [2013/08/23 19:01:44 | 025,100,288 | ---- | M] () -- C:\Users\AndyK\AppData\Roaming\Dropbox\bin\libcef.dll
MOD - [2012/10/05 19:54:00 | 000,188,416 | RHS- | M] () -- C:\Windows\System32\winDCE32.dll
MOD - [2010/05/06 15:48:50 | 000,024,576 | ---- | M] () -- C:\Program Files\BlazeVideo\BlazeDTV 6.0\RemoteControl\AF9100EXRC.dll
MOD - [2008/12/30 11:40:30 | 000,073,728 | ---- | M] () -- C:\Program Files\BlazeVideo\BlazeDTV 6.0\VersionInfo.dll
MOD - [2008/12/30 11:40:26 | 000,106,496 | ---- | M] () -- C:\Program Files\BlazeVideo\BlazeDTV 6.0\mlutil.dll
MOD - [2008/12/30 11:40:26 | 000,032,768 | ---- | M] () -- C:\Program Files\BlazeVideo\BlazeDTV 6.0\MMKeyboardHook.dll
========== Services (SafeList) ==========
SRV - [2014/10/29 11:03:36 | 001,217,032 | ---- | M] (TorchMedia Inc.) [Auto | Running] -- C:\Users\AndyK\AppData\Local\Torch\Update\TorchCrashHandler.exe -- (TorchCrashHandler)
SRV - [2014/10/21 19:54:40 | 000,161,280 | ---- | M] () [Auto | Running] -- C:\Program Files\116FC117-A4FD-4F86-9840-14C9CD63BFCE\zkurwblqyk.exe -- (CouponarificService)
SRV - [2014/09/12 09:43:06 | 000,064,704 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2014/08/26 08:49:58 | 000,078,088 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Hp\Common\HPSupportSolutionsFrameworkService.exe -- (HPSupportSolutionsFrameworkService)
SRV - [2014/08/22 11:44:44 | 000,022,192 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV - [2014/08/22 11:44:40 | 000,288,120 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV - [2013/12/18 23:41:02 | 030,814,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE -- (Microsoft SharePoint Workspace Audit Service)
SRV - [2010/03/23 21:53:06 | 000,229,458 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9691412ff1876250\stacsv.exe -- (STacSV)
SRV - [2009/07/14 01:16:15 | 000,016,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\StorSvc.dll -- (StorSvc)
SRV - [2009/07/14 01:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009/07/14 01:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc)
SRV - [2009/07/14 01:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2009/03/03 01:43:08 | 000,081,920 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9691412ff1876250\AEstSrv.exe -- (AESTFilters)
SRV - [2007/05/31 08:21:24 | 000,379,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
SRV - [2007/05/31 08:21:18 | 000,183,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)
SRV - [2007/04/26 11:01:50 | 000,537,520 | ---- | M] ( ) [Auto | Running] -- C:\Windows\System32\lxdacoms.exe -- (lxda_device)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | System | Stopped] -- c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{9510D086-CD02-4B8D-89C5-D98707CAC517}\MpKslcfa654ac.sys -- (MpKslcfa654ac)
DRV - [2014/10/21 19:54:40 | 000,031,744 | ---- | M] (NetFilterSDK.com) [Kernel | System | Running] -- C:\Windows\System32\drivers\netfilter.sys -- (netfilter)
DRV - [2014/09/11 07:32:12 | 000,004,608 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\subvga.sys -- (subvgaproduct)
DRV - [2014/08/19 16:21:06 | 000,145,664 | ---- | M] (ITE ) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\IT9135BDA.sys -- (IT9135BDA)
DRV - [2014/07/17 17:05:08 | 000,095,920 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\NisDrvWFP.sys -- (NisDrv)
DRV - [2014/06/16 06:01:38 | 000,184,192 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssudmdm.sys -- (ssudmdm)
DRV - [2014/06/16 06:01:38 | 000,089,856 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssudbus.sys -- (dg_ssudbus)
DRV - [2010/12/11 23:08:40 | 000,234,800 | ---- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tosrfbd.sys -- (tosrfbd)
DRV - [2010/12/02 18:29:00 | 000,056,760 | ---- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tosrfusb.sys -- (Tosrfusb)
DRV - [2010/11/29 10:47:00 | 000,070,448 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tosrfcom.sys -- (Tosrfcom)
DRV - [2010/11/11 09:26:00 | 000,042,672 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tosrfbnp.sys -- (tosrfbnp)
DRV - [2010/08/30 09:48:00 | 000,080,064 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\Tosrfhid.sys -- (Tosrfhid)
DRV - [2010/08/10 12:00:02 | 000,629,760 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\RTL8192cu.sys -- (RTL8192cu)
DRV - [2010/06/14 13:10:16 | 000,230,944 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\RtsPStor.sys -- (RSPCIESTOR)
DRV - [2010/04/26 10:48:00 | 000,053,760 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TosRfSnd.sys -- (TosRfSnd)
DRV - [2010/03/23 21:53:06 | 000,423,424 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\stwrt.sys -- (STHDA)
DRV - [2009/07/24 10:31:00 | 000,021,608 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tosrfnds.sys -- (tosrfnds)
DRV - [2009/07/14 01:19:10 | 000,175,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vmbus.sys -- (vmbus)
DRV - [2009/07/14 01:19:10 | 000,040,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmstorfl.sys -- (storflt)
DRV - [2009/07/14 01:19:10 | 000,028,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\storvsc.sys -- (storvsc)
DRV - [2009/07/13 23:51:11 | 000,034,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb)
DRV - [2009/07/13 23:28:47 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vms3cap.sys -- (s3cap)
DRV - [2009/07/13 23:28:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VMBusHID.sys -- (VMBusHID)
DRV - [2009/06/17 10:59:00 | 000,046,984 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tosporte.sys -- (tosporte)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-gb
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 63 78 79 7E 15 BB CF 01 [binary data]
IE - HKCU\..\SearchScopes,DefaultScope = {AA671EA0-085D-404A-9600-DF709CAF2039}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:23.0
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_223.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.71.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.71.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.5: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\TorchVLC: C:\Users\AndyK\AppData\Local\Torch\Plugins\Video\VLC\npvlc.dll (VideoLAN)
[2014/08/24 17:15:59 | 000,000,000 | ---D | M] (No name found) -- C:\Users\AndyK\AppData\Roaming\Mozilla\Extensions
========== Chrome ==========
CHR - plugin: Error reading preferences file
CHR - Extension: No name found = C:\Users\AndyK\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: No name found = C:\Users\AndyK\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn\0.1.1.5023_0\
CHR - Extension: No name found = C:\Users\AndyK\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: No name found = C:\Users\AndyK\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.7_0\
CHR - Extension: No name found = C:\Users\AndyK\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: No name found = C:\Users\AndyK\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: No name found = C:\Users\AndyK\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
O1 HOSTS File: ([2009/06/10 21:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O4 - HKLM..\Run: [BCSSync] C:\Program Files\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation)
O4 - HKLM..\Run: [mbot_gb_208] File not found
O4 - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe (IDT, Inc.)
O4 - HKCU..\Run: [ApplePhotoStreams] C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (Apple Inc.)
O4 - HKCU..\Run: [BlazeServoTool] C:\Program Files\BlazeVideo\BlazeDTV 6.0\MediaDetector.exe (BlazeVideo Company)
O4 - HKCU..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner.exe (Piriform Ltd)
O4 - HKCU..\Run: [iCloudDrive] C:\Program Files\Common Files\Apple\Internet Services\iCloudDrive.exe (Apple Inc.)
O4 - HKCU..\Run: [iCloudServices] C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc.)
O4 - HKCU..\Run: [Spotify Web Helper] C:\Users\AndyK\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Spotify Ltd)
O4 - HKLM..\RunOnce: [NCPluginUpdater] C:\Program Files\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe (Hewlett-Packard)
O4 - Startup: C:\Users\AndyK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\AndyK\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 194.168.4.100 194.168.8.100
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2FE97E5C-0698-4B2A-941A-F30B0ABC95CF}: DhcpNameServer = 194.168.4.100 194.168.8.100
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{AE876D6A-077D-4578-B45E-DFFE591C7A40}: DhcpNameServer = 194.168.4.100 194.168.8.100
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O30 - LSA: Security Packages - (msoidssp) - C:\Windows\System32\msoidssp.dll (Microsoft Corp.)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/10 21:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2014/11/16 09:47:07 | 000,114,904 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys
[2014/11/16 09:46:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
[2014/11/16 09:45:02 | 000,075,480 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamchameleon.sys
[2014/11/16 09:45:02 | 000,051,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mwac.sys
[2014/11/16 09:45:01 | 000,023,256 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2014/11/16 09:45:01 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes Anti-Malware
[2014/11/16 09:45:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2014/11/14 19:02:59 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\NativeFus_Log
[2014/11/14 19:02:50 | 000,000,000 | ---D | C] -- C:\Users\AndyK\Documents\SelfMV
[2014/11/14 19:02:42 | 000,000,000 | ---D | C] -- C:\Users\AndyK\Documents\samsung
[2014/11/14 19:02:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
[2014/11/14 19:00:39 | 000,184,192 | ---- | C] (DEVGURU Co., LTD.(www.devguru.co.kr)) -- C:\Windows\System32\drivers\ssudmdm.sys
[2014/11/14 19:00:38 | 000,089,856 | ---- | C] (DEVGURU Co., LTD.(www.devguru.co.kr)) -- C:\Windows\System32\drivers\ssudbus.sys
[2014/11/14 18:54:33 | 000,000,000 | ---D | C] -- C:\Users\AndyK\AppData\Roaming\Samsung
[2014/11/14 18:54:30 | 000,144,664 | ---- | C] (MAPILab Ltd. & Add-in Express Ltd.) -- C:\Windows\System32\secman.dll
[2014/11/12 17:58:09 | 000,000,000 | ---D | C] -- C:\Users\AndyK\AppData\Roaming\deluge
[2014/11/12 17:51:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Deluge
[2014/11/12 17:50:23 | 000,000,000 | ---D | C] -- C:\Program Files\Deluge
[2014/11/11 20:52:37 | 000,000,000 | ---D | C] -- C:\Program Files\predm
[2014/11/11 20:46:38 | 000,000,000 | ---D | C] -- C:\Program Files\Optimizer Pro
[2014/11/11 20:41:32 | 000,000,000 | ---D | C] -- C:\Users\AndyK\AppData\Roaming\Store
[2014/11/11 20:38:03 | 000,000,000 | ---D | C] -- C:\Users\AndyK\AppData\Roaming\Nosibay
[2014/11/11 20:37:20 | 000,000,000 | ---D | C] -- C:\Program Files\Couponarific
[2014/11/11 20:37:07 | 000,000,000 | ---D | C] -- C:\Program Files\116FC117-A4FD-4F86-9840-14C9CD63BFCE
[2014/11/11 20:31:17 | 000,000,000 | ---D | C] -- C:\Program Files\ShopSave Toolbar
[2014/11/11 20:30:23 | 000,000,000 | ---D | C] -- C:\Users\AndyK\AppData\Local\FAC95C88-898B-A73A-BC32-000000B100
[2014/11/11 19:07:32 | 000,000,000 | ---D | C] -- C:\Users\AndyK\Desktop\downloads
[2014/11/11 19:07:03 | 000,000,000 | ---D | C] -- C:\Users\AndyK\AppData\Roaming\tixati
[2014/11/11 19:06:14 | 000,000,000 | ---D | C] -- C:\Users\AndyK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tixati
[2014/11/11 19:06:03 | 000,000,000 | ---D | C] -- C:\Program Files\tixati
[2014/11/08 20:00:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3
[2014/11/06 18:38:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
[2014/11/06 18:33:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
[2014/11/06 18:31:48 | 000,000,000 | ---D | C] -- C:\Program Files\QuickTime
[2014/11/06 18:24:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2014/11/06 18:20:47 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2014/11/06 18:20:42 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2014/11/06 18:20:42 | 000,000,000 | ---D | C] -- C:\ProgramData\B0FFCDD9-5261-4e59-B29A-17A4FABDEBAB
[2014/11/02 22:18:54 | 000,000,000 | ---D | C] -- C:\koboExtStorage
[2014/11/02 22:18:31 | 000,000,000 | ---D | C] -- C:\Users\AndyK\AppData\Local\Kobo
[2014/11/02 22:14:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kobo
[2014/11/02 22:14:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Package Cache
[2014/11/02 22:13:56 | 000,000,000 | ---D | C] -- C:\Windows\tmp
[2014/11/02 22:13:40 | 000,000,000 | ---D | C] -- C:\Program Files\Kobo
[2014/11/02 12:20:14 | 000,000,000 | ---D | C] -- C:\Users\AndyK\AppData\Local\MediaMonkey
[2014/11/02 12:19:56 | 000,000,000 | ---D | C] -- C:\Users\AndyK\AppData\Roaming\MediaMonkey
[2014/11/02 12:19:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MediaMonkey
[2014/11/02 12:19:00 | 000,000,000 | ---D | C] -- C:\ProgramData\MediaMonkey
[2014/11/02 12:18:42 | 000,000,000 | ---D | C] -- C:\Program Files\MediaMonkey
[2014/11/02 10:01:00 | 000,000,000 | ---D | C] -- C:\Users\AndyK\Documents\Calibre Import
[2014/11/02 09:38:34 | 000,000,000 | ---D | C] -- C:\Users\AndyK\Documents\My Kindle Content
[2014/11/02 09:37:31 | 000,000,000 | ---D | C] -- C:\Users\AndyK\AppData\Local\Amazon
[2014/10/26 20:35:22 | 000,000,000 | ---D | C] -- C:\Users\AndyK\Documents\Apps
[2014/10/26 18:32:38 | 000,764,416 | -HS- | C] (Abysmal Software) -- C:\Windows\System32\devil.dll
[2014/10/26 18:32:37 | 000,415,744 | -HS- | C] (The Public) -- C:\Windows\System32\avisynth.dll
[2014/10/26 18:32:35 | 000,070,656 | -HS- | C] (www.helixcommunity.org) -- C:\Windows\System32\yv12vfw.dll
[2014/10/26 18:32:33 | 000,070,656 | -HS- | C] (www.helixcommunity.org) -- C:\Windows\System32\i420vfw.dll
[2014/10/26 18:29:04 | 000,000,000 | ---D | C] -- C:\Users\AndyK\Documents\eRightSoft
[2014/10/26 18:28:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPER © - by eRightSoft
[2014/10/26 18:28:19 | 000,278,528 | ---- | C] (Real Networks, Inc) -- C:\Windows\System32\pncrt.dll
[2014/10/26 18:28:18 | 000,118,416 | RHS- | C] (FFmpeg Project) -- C:\Windows\System32\swscale-lav-2.dll
[2014/10/26 18:28:16 | 000,181,392 | RHS- | C] (FFmpeg Project) -- C:\Windows\System32\avutil-lav-52.dll
[2014/10/26 18:28:16 | 000,059,536 | RHS- | C] (FFmpeg Project) -- C:\Windows\System32\avresample-lav-1.dll
[2014/10/26 18:28:15 | 000,550,032 | RHS- | C] (FFmpeg Project) -- C:\Windows\System32\avformat-lav-55.dll
[2014/10/26 18:28:15 | 000,098,960 | RHS- | C] (FFmpeg Project) -- C:\Windows\System32\avfilter-lav-4.dll
[2014/10/26 18:28:11 | 003,109,520 | RHS- | C] (FFmpeg Project) -- C:\Windows\System32\avcodec-lav-55.dll
[2014/10/26 18:28:09 | 000,203,408 | RHS- | C] (1f0.de - Hendrik Leppkes) -- C:\Windows\System32\HLsplit.dll
[2014/10/26 18:28:09 | 000,122,512 | RHS- | C] (1f0.de - Hendrik Leppkes) -- C:\Windows\System32\HLaudio.dll
[2014/10/26 18:28:07 | 000,313,520 | RHS- | C] (1f0.de - Hendrik Leppkes) -- C:\Windows\System32\HLvideo.dll
[2014/10/26 18:28:05 | 000,017,408 | RHS- | C] (RadLight) -- C:\Windows\System32\RLOFRDec.ax
[2014/10/26 18:25:48 | 000,000,000 | ---D | C] -- C:\Program Files\eRightSoft
[2014/10/26 17:42:05 | 000,000,000 | ---D | C] -- C:\Users\AndyK\AppData\Roaming\HandBrake
[2014/10/26 17:13:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Handbrake
[2014/10/26 17:13:07 | 000,000,000 | ---D | C] -- C:\Program Files\Free Codec Pack
[2014/10/26 17:07:24 | 000,000,000 | ---D | C] -- C:\Users\AndyK\AppData\Roaming\DVDVideoSoft
[2014/10/26 17:04:38 | 000,000,000 | ---D | C] -- C:\Users\AndyK\AppData\Roaming\ipadvideo_mate
[2014/10/26 16:57:03 | 000,000,000 | ---D | C] -- C:\ProgramData\VOWSoft
[2014/10/26 16:57:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABC 3GP Converter
[2014/10/26 16:56:43 | 000,000,000 | ---D | C] -- C:\Program Files\ABC 3GP Converter
[2014/10/26 15:53:19 | 000,000,000 | ---D | C] -- C:\Users\AndyK\AppData\Roaming\WinAVI
[2014/10/26 15:53:19 | 000,000,000 | ---D | C] -- C:\Users\AndyK\AppData\Local\WinAVI
[2014/10/26 15:50:21 | 000,000,000 | ---D | C] -- C:\Users\AndyK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinAVI All-in-One Converter
[2014/10/26 15:49:58 | 000,000,000 | ---D | C] -- C:\Program Files\WinAVI
[2014/10/24 20:19:42 | 000,000,000 | ---D | C] -- C:\Users\AndyK\Documents\SmartDraw
[2014/10/24 20:19:27 | 000,000,000 | ---D | C] -- C:\Users\AndyK\AppData\Roaming\SmartDraw
[2014/10/24 20:19:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SmartDraw 2013
[2014/10/24 20:15:02 | 000,000,000 | ---D | C] -- C:\Program Files\SmartDraw 2013
[2014/10/21 19:54:40 | 000,031,744 | ---- | C] (NetFilterSDK.com) -- C:\Windows\System32\drivers\netfilter.sys
[2014/10/21 17:03:15 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2014/10/21 17:01:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
========== Files - Modified Within 30 Days ==========
[2014/11/19 20:09:42 | 000,114,904 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys
[2014/11/19 19:52:01 | 000,000,886 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/11/19 19:14:36 | 000,002,265 | ---- | M] () -- C:\Users\AndyK\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2014/11/19 18:32:47 | 000,628,460 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2014/11/19 18:32:47 | 000,110,612 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2014/11/19 18:11:40 | 000,020,704 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/11/19 18:11:40 | 000,020,704 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/11/19 18:01:48 | 000,000,472 | ---- | M] () -- C:\Windows\tasks\SDMsgUpdate (TE).job
[2014/11/19 18:01:45 | 000,000,882 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/11/19 18:01:32 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/11/19 18:01:26 | 1601,093,632 | -HS- | M] () -- C:\hiberfil.sys
[2014/11/18 07:23:29 | 000,000,218 | ---- | M] () -- C:\Users\AndyK\AppData\Local\recently-used.xbel
[2014/11/16 16:37:39 | 000,003,552 | ---- | M] () -- C:\bootsqm.dat
[2014/11/16 10:27:04 | 000,413,880 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2014/11/16 09:46:24 | 000,001,100 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2014/11/14 19:02:38 | 000,001,955 | ---- | M] () -- C:\Users\Public\Desktop\Samsung Kies 3.lnk
[2014/11/14 19:02:33 | 000,001,979 | ---- | M] () -- C:\Users\AndyK\Application Data\Microsoft\Internet Explorer\Quick Launch\Samsung Kies 3.lnk
[2014/11/12 17:51:40 | 000,000,977 | ---- | M] () -- C:\Users\Public\Desktop\Deluge.lnk
[2014/11/11 21:27:36 | 000,001,005 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2014/11/11 20:53:31 | 000,000,005 | ---- | M] () -- C:\end
[2014/11/11 20:47:58 | 000,001,678 | ---- | M] () -- C:\Windows\System32\${LOGFILE}
[2014/11/11 19:06:16 | 000,000,977 | ---- | M] () -- C:\Users\AndyK\Desktop\Tixati.lnk
[2014/11/08 20:11:03 | 000,001,104 | ---- | M] () -- C:\Users\Public\Desktop\Picasa 3.lnk
[2014/11/06 18:33:17 | 000,001,851 | ---- | M] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2014/11/06 18:24:28 | 000,001,789 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2014/11/02 22:48:56 | 000,000,966 | ---- | M] () -- C:\Users\Public\Desktop\calibre - E-book management.lnk
[2014/11/02 22:14:59 | 000,000,961 | ---- | M] () -- C:\Users\Public\Desktop\Kobo.lnk
[2014/11/02 12:19:55 | 000,001,041 | ---- | M] () -- C:\Users\Public\Desktop\MediaMonkey.lnk
[2014/10/26 18:44:11 | 000,002,560 | ---- | M] () -- C:\Windows\_MSRSTRT.EXE
[2014/10/26 18:21:07 | 000,024,683 | ---- | M] () -- C:\S6Kg1.html
[2014/10/26 16:57:03 | 000,001,052 | ---- | M] () -- C:\Users\Public\Desktop\ABC 3GP Converter.lnk
[2014/10/26 15:50:21 | 000,001,346 | ---- | M] () -- C:\Users\AndyK\Desktop\WinAVI All-in-One Converter.lnk
[2014/10/24 20:19:34 | 000,001,018 | ---- | M] () -- C:\Users\AndyK\Desktop\SmartDraw 2013.lnk
[2014/10/24 20:19:20 | 000,000,988 | ---- | M] () -- C:\Users\Public\Desktop\SmartDraw 2013.lnk
[2014/10/23 19:56:19 | 000,007,605 | ---- | M] () -- C:\Users\AndyK\AppData\Local\Resmon.ResmonCfg
[2014/10/21 19:54:40 | 000,031,744 | ---- | M] (NetFilterSDK.com) -- C:\Windows\System32\drivers\netfilter.sys
========== Files Created - No Company Name ==========
[2014/11/18 07:23:29 | 000,000,218 | ---- | C] () -- C:\Users\AndyK\AppData\Local\recently-used.xbel
[2014/11/16 16:37:39 | 000,003,552 | ---- | C] () -- C:\bootsqm.dat
[2014/11/16 10:26:48 | 000,413,880 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2014/11/16 09:46:24 | 000,001,100 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2014/11/14 19:02:38 | 000,001,955 | ---- | C] () -- C:\Users\Public\Desktop\Samsung Kies 3.lnk
[2014/11/14 19:02:33 | 000,001,979 | ---- | C] () -- C:\Users\AndyK\Application Data\Microsoft\Internet Explorer\Quick Launch\Samsung Kies 3.lnk
[2014/11/12 17:51:40 | 000,000,977 | ---- | C] () -- C:\Users\Public\Desktop\Deluge.lnk
[2014/11/11 20:44:21 | 000,001,678 | ---- | C] () -- C:\Windows\System32\${LOGFILE}
[2014/11/11 20:37:05 | 000,000,005 | ---- | C] () -- C:\end
[2014/11/11 19:06:16 | 000,000,977 | ---- | C] () -- C:\Users\AndyK\Desktop\Tixati.lnk
[2014/11/08 20:11:03 | 000,001,104 | ---- | C] () -- C:\Users\Public\Desktop\Picasa 3.lnk
[2014/11/06 18:33:17 | 000,001,851 | ---- | C] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2014/11/06 18:24:28 | 000,001,789 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2014/11/02 22:48:56 | 000,000,966 | ---- | C] () -- C:\Users\Public\Desktop\calibre - E-book management.lnk
[2014/11/02 22:14:59 | 000,000,961 | ---- | C] () -- C:\Users\Public\Desktop\Kobo.lnk
[2014/11/02 12:19:55 | 000,001,041 | ---- | C] () -- C:\Users\Public\Desktop\MediaMonkey.lnk
[2014/10/26 18:44:11 | 000,002,560 | ---- | C] () -- C:\Windows\_MSRSTRT.EXE
[2014/10/26 18:32:59 | 000,024,683 | ---- | C] () -- C:\S6Kg1.html
[2014/10/26 18:32:36 | 000,032,256 | -HS- | C] () -- C:\Windows\System32\AVSredirect.dll
[2014/10/26 18:28:17 | 000,109,712 | RHS- | C] () -- C:\Windows\System32\libbluray.dll
[2014/10/26 18:28:07 | 000,188,416 | RHS- | C] () -- C:\Windows\System32\winDCE32.dll
[2014/10/26 18:28:07 | 000,107,520 | RHS- | C] () -- C:\Windows\System32\TAKDSDecoder.dll
[2014/10/26 18:28:06 | 000,121,344 | RHS- | C] () -- C:\Windows\System32\TAKDSDecoder.ax
[2014/10/26 18:28:05 | 000,112,128 | RHS- | C] () -- C:\Windows\System32\OptimFROG.dll
[2014/10/26 18:28:02 | 000,352,768 | RHS- | C] () -- C:\Windows\System32\ac3DX.ax
[2014/10/26 18:28:02 | 000,081,920 | RHS- | C] () -- C:\Windows\System32\aac_parser.ax
[2014/10/26 16:57:03 | 000,001,052 | ---- | C] () -- C:\Users\Public\Desktop\ABC 3GP Converter.lnk
[2014/10/26 15:50:21 | 000,001,346 | ---- | C] () -- C:\Users\AndyK\Desktop\WinAVI All-in-One Converter.lnk
[2014/10/24 20:19:34 | 000,001,048 | ---- | C] () -- C:\Users\AndyK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SmartDraw 2013.lnk
[2014/10/24 20:19:34 | 000,001,018 | ---- | C] () -- C:\Users\AndyK\Desktop\SmartDraw 2013.lnk
[2014/10/24 20:19:20 | 000,000,988 | ---- | C] () -- C:\Users\Public\Desktop\SmartDraw 2013.lnk
[2014/10/24 20:19:19 | 000,000,472 | ---- | C] () -- C:\Windows\tasks\SDMsgUpdate (TE).job
[2014/10/23 19:56:19 | 000,007,605 | ---- | C] () -- C:\Users\AndyK\AppData\Local\Resmon.ResmonCfg
[2014/09/18 16:19:06 | 000,000,136 | ---- | C] () -- C:\Windows\Lexstat.ini
[2014/09/18 16:16:02 | 000,413,696 | ---- | C] ( ) -- C:\Windows\System32\lxdainpa.dll
[2014/09/18 16:16:02 | 000,397,312 | ---- | C] ( ) -- C:\Windows\System32\lxdaiesc.dll
[2014/09/18 16:16:02 | 000,323,584 | ---- | C] ( ) -- C:\Windows\System32\LXDAhcp.dll
[2014/09/18 16:16:02 | 000,274,432 | ---- | C] () -- C:\Windows\System32\LXDAinst.dll
[2014/09/18 16:16:01 | 000,991,232 | ---- | C] ( ) -- C:\Windows\System32\lxdausb1.dll
[2014/09/18 16:16:01 | 000,413,696 | ---- | C] () -- C:\Windows\System32\lxdautil.dll
[2014/09/18 16:16:00 | 001,224,704 | ---- | C] ( ) -- C:\Windows\System32\lxdaserv.dll
[2014/09/18 16:16:00 | 000,163,840 | ---- | C] ( ) -- C:\Windows\System32\lxdaprox.dll
[2014/09/18 16:15:59 | 000,643,072 | ---- | C] ( ) -- C:\Windows\System32\lxdapmui.dll
[2014/09/18 16:15:59 | 000,094,208 | ---- | C] ( ) -- C:\Windows\System32\lxdapplc.dll
[2014/09/18 16:15:58 | 000,585,728 | ---- | C] ( ) -- C:\Windows\System32\lxdalmpm.dll
[2014/09/18 16:15:57 | 000,385,968 | ---- | C] ( ) -- C:\Windows\System32\lxdaih.exe
[2014/09/18 16:15:56 | 000,696,320 | ---- | C] ( ) -- C:\Windows\System32\lxdahbn3.dll
[2014/09/18 16:15:54 | 000,537,520 | ---- | C] ( ) -- C:\Windows\System32\lxdacoms.exe
[2014/09/18 16:15:53 | 000,421,888 | ---- | C] ( ) -- C:\Windows\System32\lxdacomm.dll
[2014/09/18 16:15:52 | 000,684,032 | ---- | C] ( ) -- C:\Windows\System32\lxdacomc.dll
[2014/09/18 16:15:51 | 000,381,872 | ---- | C] ( ) -- C:\Windows\System32\lxdacfg.exe
[2014/09/05 08:18:26 | 000,000,008 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2014/09/05 07:26:15 | 000,080,416 | ---- | C] () -- C:\Windows\System32\RtNicProp32.dll
[2014/08/27 18:43:21 | 000,000,376 | ---- | C] () -- C:\Windows\ODBC.INI
[2014/08/27 18:43:21 | 000,000,063 | ---- | C] () -- C:\Windows\mdm.ini
[2014/08/27 18:43:12 | 000,000,000 | ---- | C] () -- C:\Windows\NSREX.INI
[2014/08/19 16:22:41 | 000,000,014 | ---- | C] () -- C:\Windows\System32\systeminfo.dll
[2014/08/19 16:20:35 | 000,000,126 | ---- | C] () -- C:\Windows\System32\AF15IRTBL.bin
========== ZeroAccess Check ==========
[2009/07/14 04:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2009/07/14 01:16:14 | 012,866,560 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2009/07/14 01:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/14 01:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
========== LOP Check ==========
[2014/11/02 09:59:43 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\calibre
[2014/11/13 20:26:11 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\deluge
[2014/11/19 18:03:34 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\Dropbox
[2014/11/08 19:53:18 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\DVDVideoSoft
[2014/08/24 19:03:20 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\Faasoft Audio Converter
[2014/10/26 17:44:54 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\HandBrake
[2014/10/26 17:12:25 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\ipadvideo_mate
[2014/11/15 21:34:23 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\MediaMonkey
[2014/11/15 20:15:59 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\Mp3tag
[2014/11/14 19:03:01 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\Samsung
[2014/10/24 20:19:53 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\SmartDraw
[2014/08/26 16:29:53 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\Spotify
[2014/11/11 21:12:26 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\Store
[2014/11/12 17:46:16 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\tixati
[2014/11/11 20:29:34 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\uTorrent
[2014/10/26 15:53:19 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\WinAVI
[2014/10/05 19:05:44 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\Windows Live Writer
[2014/11/19 18:13:39 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\XBMC
[2014/09/21 20:17:16 | 000,000,000 | ---D | M] -- C:\Users\AndyK\AppData\Roaming\Xirrus
========== Purity Check ==========
< End of report >
OTL EXTRAS LOG:
OTL Extras logfile created on: 19/11/2014 20:20:34 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\AndyK\Downloads
Professional (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
1.99 Gb Total Physical Memory | 0.62 Gb Available Physical Memory | 31.26% Memory free
3.98 Gb Paging File | 1.79 Gb Available in Paging File | 45.10% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 116.74 Gb Total Space | 47.46 Gb Free Space | 40.66% Space Free | Partition Type: NTFS
Drive D: | 116.05 Gb Total Space | 50.83 Gb Free Space | 43.80% Space Free | Partition Type: NTFS
Computer Name: ANDYK-PC | User Name: AndyK | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" /p %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [MediaMonkey.1Play] -- "C:\Program Files\MediaMonkey\MediaMonkey.exe" "%1" (Ventis Media Inc.)
Directory [MediaMonkey.2PlayNext] -- "C:\Program Files\MediaMonkey\MediaMonkey.exe" /NEXT "%1" (Ventis Media Inc.)
Directory [MediaMonkey.3Enqueue] -- "C:\Program Files\MediaMonkey\MediaMonkey.exe" /ADD "%1" (Ventis Media Inc.)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{1A1253C7-A1AB-4037-A996-AA3E5EF0E1C3}" = lport=10243 | protocol=6 | dir=in | app=system |
"{1C733021-4818-4725-ABE6-BBAD528CCA92}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{1D8E8F68-C954-4303-AD11-BA7D7A96482F}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{245E3A8F-8765-4E55-97A7-C25C428FDC88}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{349CAB98-67D5-4134-AC78-957B7444862A}" = lport=2869 | protocol=6 | dir=in | app=system |
"{37829005-6083-4B5C-B698-CB5090D57202}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{4315A9A5-8858-4BCD-BBA1-3F730C63F0BA}" = rport=138 | protocol=17 | dir=out | app=system |
"{489C76F7-592D-4395-AC5A-12272DA1EA64}" = lport=139 | protocol=6 | dir=in | app=system |
"{53098E7A-0C86-4E83-9806-A446378F2B7C}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\google\chrome\application\chrome.exe |
"{5E2F23CB-1C92-4588-B64F-ACD21AFD051F}" = rport=10243 | protocol=6 | dir=out | app=system |
"{5EAAFE81-7390-407E-A130-D50206B57123}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{6893CEC1-E077-43A4-8446-AA00DB40358C}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{71AD322F-AEE6-4F0F-9EAB-AFC5002D51EE}" = rport=139 | protocol=6 | dir=out | app=system |
"{7BC1210F-828B-477D-A1F5-1641019D19C8}" = rport=137 | protocol=17 | dir=out | app=system |
"{7BCF1D89-66F6-4B3D-8B7B-432E0D7BDDCF}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{8F98D363-9816-4A82-B706-D6CE3C2E598A}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{9221FB93-FEB3-494C-8E29-480807E495A5}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{965EB0D5-5E02-4DC2-9F05-50F64F661E33}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{994C048E-988E-4451-881D-3AB40146D428}" = rport=445 | protocol=6 | dir=out | app=system |
"{A1A5F6ED-C44A-4A4E-B3CC-0DB57F9A2B3B}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{C48EF945-9457-48EF-B291-77E66B09E09C}" = lport=137 | protocol=17 | dir=in | app=system |
"{C7D95A00-FE1C-43ED-899F-7353A85A5E6F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss |
[email protected],-28539 |
"{D7253EF7-CEF3-47E4-BDF0-C3D4E73BA112}" = lport=138 | protocol=17 | dir=in | app=system |
"{E197913E-1D75-4BF3-AB5A-355A00B69B94}" = lport=445 | protocol=6 | dir=in | app=system |
"{F1724CFD-6381-4A7F-94A8-AEBC85E0E0D1}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{F75D3639-AC06-4639-A6DE-F30F54A302CA}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{01E78F2E-B4CE-4EC7-AFA0-B1CCA9B506EB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{16B1AB26-F01E-4226-A6BC-DD04AD90592A}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{172EED49-D7E7-4412-ACA0-B8247F3A4EB4}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{29D57C43-2F40-4D1D-BE7B-2D976921807B}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{2D8BA15F-8D1B-4A11-80BB-3D899AD01A00}" = dir=in | app=c:\users\andyk\appdata\local\microsoft\skydrive\skydrive.exe |
"{302385B0-46EA-422C-BDB6-493683CBB909}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{352D839A-C1B9-4019-91CF-C18773B045F3}" = protocol=58 | dir=in |
[email protected],-28545 |
"{355B065C-AA39-445F-BA55-89DDDBFD476A}" = dir=in | app=c:\program files\windows live\contacts\wlcomm.exe |
"{3A79C04E-E671-42D6-AB78-6CCED358E0C4}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\groove.exe |
"{443398A2-5910-4B85-9907-350C98EFEB33}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{4523827A-08CB-47EB-BD67-776F0BA14BEB}" = protocol=17 | dir=in | app=c:\windows\system32\lxdacoms.exe |
"{502B1E6A-6453-490B-9678-ED8EB834EF49}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{57EE90F4-ED97-4B41-B908-74A3E1FFDBAC}" = protocol=6 | dir=in | app=c:\windows\system32\lxdacoms.exe |
"{58AB4F42-0CA4-4524-B865-4DC2BB0A9056}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{65A75074-2B09-43BA-9E73-4C521584EBA6}" = dir=in | app=c:\program files\itunes\itunes.exe |
"{6A1F89B7-2A84-4AD6-9671-320F89EEC958}" = protocol=1 | dir=in |
[email protected],-28543 |
"{6FD4D822-CAC8-4FE5-8A21-5F61AC8B0E6A}" = protocol=1 | dir=out |
[email protected],-28544 |
"{7FCF8242-7F2C-4365-B9EE-5E41983ACEFF}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{7FD5F47E-9747-4803-93B0-6EE666280B82}" = protocol=58 | dir=out |
[email protected],-28546 |
"{853C690E-3858-4B73-A4C6-BE14D4086D0F}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{875675F1-DE85-4669-9B35-90FCF254926F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{88C42AA4-EA4C-45E4-AA3F-6CF2D1C88E67}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{8D75931A-D2B3-47FB-B650-4E803F515A37}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{9B19B8B0-226B-4DC7-B759-B2860DE8A5DC}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{9D4D3E55-FF62-42AF-8595-F2D0E3B649A0}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{9FD701C4-2AAD-4B7F-9873-7577C68857A8}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{AC8B5F72-27CF-4666-ABE7-4BF1DBB5BECE}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{B0DBE09E-D53B-4F9B-91C6-3E44E53A1B2A}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\groove.exe |
"{C4837C1F-5C10-4156-948A-AE87C620CA99}" = protocol=6 | dir=in | app=c:\users\andyk\appdata\roaming\dropbox\bin\dropbox.exe |
"{C57A3404-6321-4584-944E-35D6FAC27C03}" = dir=in | app=c:\users\andyk\appdata\local\torch\application\torch.exe |
"{C7F623ED-D1A7-4DDA-93AC-6460DE9BD492}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{C8F6274F-C338-4838-A085-F15D19D71A26}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{CCA0391F-E610-4265-B65D-3D22EB1AB439}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{D217AEFB-F333-4AE7-8803-74F109CBC023}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{D25E4DEC-E5DD-4F4D-9599-BEBAC610A256}" = dir=in | app=c:\users\andyk\appdata\local\torch\plugins\hola\hola_plugin.exe |
"{EA89D619-0840-42CE-9467-80AAA07F61AD}" = protocol=17 | dir=in | app=c:\users\andyk\appdata\roaming\dropbox\bin\dropbox.exe |
"{EB9FE5AB-14D8-415A-BC7A-0CD3522B2FC3}" = protocol=6 | dir=out | app=system |
"TCP Query User{30AAB884-E29C-4B93-A583-22F796104BAA}C:\program files\xbmc\xbmc.exe" = protocol=6 | dir=in | app=c:\program files\xbmc\xbmc.exe |
"TCP Query User{9AA79857-29F7-4EC1-BAED-0A9B705BA6FB}C:\program files\tixati\tixati.exe" = protocol=6 | dir=in | app=c:\program files\tixati\tixati.exe |
"TCP Query User{9E8D03E6-D989-426C-80D1-8D538AD33811}C:\program files\java\jre7\bin\jp2launcher.exe" = protocol=6 | dir=in | app=c:\program files\java\jre7\bin\jp2launcher.exe |
"TCP Query User{A07F1560-4B71-4539-812E-370E5649D17A}C:\users\andyk\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\andyk\appdata\roaming\dropbox\bin\dropbox.exe |
"TCP Query User{B7CAF445-0A6E-42E2-8B14-CDFFBB5BC6A7}C:\program files\deluge\deluge.exe" = protocol=6 | dir=in | app=c:\program files\deluge\deluge.exe |
"TCP Query User{E20D2C5F-13E8-4B18-B9D5-132B83AA5EDC}C:\program files\mediamonkey\mediamonkey.exe" = protocol=6 | dir=in | app=c:\program files\mediamonkey\mediamonkey.exe |
"TCP Query User{F38F72B1-30E6-492C-BBF1-8E27C4C2D78C}C:\users\andyk\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\andyk\appdata\roaming\spotify\spotify.exe |
"UDP Query User{0C2776E2-A886-4BA7-AC7A-761CC2CEBA65}C:\program files\xbmc\xbmc.exe" = protocol=17 | dir=in | app=c:\program files\xbmc\xbmc.exe |
"UDP Query User{3F9158DD-8BE3-41E8-B38E-54E767DBED6B}C:\program files\tixati\tixati.exe" = protocol=17 | dir=in | app=c:\program files\tixati\tixati.exe |
"UDP Query User{6AEDD44B-85D1-439E-AFDA-3893F38718E9}C:\program files\mediamonkey\mediamonkey.exe" = protocol=17 | dir=in | app=c:\program files\mediamonkey\mediamonkey.exe |
"UDP Query User{A31A3C79-CD8F-464C-92E5-18B3E3509B59}C:\program files\java\jre7\bin\jp2launcher.exe" = protocol=17 | dir=in | app=c:\program files\java\jre7\bin\jp2launcher.exe |
"UDP Query User{A7761DCD-112B-491E-B530-A31E3B55FCED}C:\program files\deluge\deluge.exe" = protocol=17 | dir=in | app=c:\program files\deluge\deluge.exe |
"UDP Query User{BD48B892-4397-45F5-8639-71513B17E6D5}C:\users\andyk\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\andyk\appdata\roaming\dropbox\bin\dropbox.exe |
"UDP Query User{E39A2263-4A02-44BD-95A1-81D6CCF41718}C:\users\andyk\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\andyk\appdata\roaming\spotify\spotify.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}" = Windows Live UX Platform
"{04BE4035-3C8E-4B48-BFB8-1655849C0C8B}" = Windows Live Writer
"{07AAB66E-4718-422D-9218-4AFB3C922A71}" = Photo Gallery
"{0BE9E708-5DC0-4963-9CFD-0AA519090E79}" = Junk Mail filter update
"{0F974770-76EB-4C38-986E-E7BDD9C0DFC4}" = Windows Live Writer Resources
"{107F27B7-8EE4-4B3A-9CE5-497B120369DC}" = Microsoft Security Client
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
"{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}" = Windows Live Photo Common
"{235EBB33-3DA1-46DF-AADE-9955123409CB}" = Apple Mobile Device Support
"{26A24AE4-039D-4CA4-87B4-2F03217071FF}" = Java 7 Update 71
"{277DE249-EA23-43F1-888B-19CE25D708C3}" = Windows Live Family Safety
"{286DDBD0-6355-428F-8BD5-822CF08606EC}" = Windows Live MIME IFilter
"{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
"{348A1F5B-07B3-4436-9A47-FFE44EFE856E}" = HP Support Solutions Framework
"{38F03569-A636-4CF3-BDDE-032C8C251304}" = Movie Maker
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}" = QuickTime 7
"{41C61308-6CFD-4D54-AB6A-7136ED08A18E}" = Windows Live Communications Platform
"{4412F224-3849-4461-A3E9-DEEF8D252790}" = Visual Studio C++ 10.0 Runtime
"{48781AC2-0939-4D66-98F2-235328E46790}" = Windows Live Messenger
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4BAB923C-1ACA-4697-ACA5-C1B5037091BF}" = Windows Live Mail
"{5D928931-D1D2-4A93-A82D-BF60D0E7CFA5}" = iTunes
"{6152DEA9-EA0C-4013-9DBF-4A8881A7F722}" = Windows Live Family Safety
"{6522F5F9-411B-4513-A75B-CEA00395F032}" = Windows Live UX Platform Language Pack
"{659CB81C-B54E-4DF1-B618-F35777393A54}" = Windows Live Installer
"{66B5819D-DE70-42BE-B40F-978FBA12452E}" = Windows Live Essentials
"{714E162E-CD4F-4F1B-8302-7F5179409C25}" = Windows Live Writer
"{7171E82A-E90A-4155-9040-6006CEE64DDC}" = Windows Live Writer Resources
"{74CECDD9-4B8E-4AE3-9571-8070A17F3C34}" = EZCast
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour
"{7C79A0FB-4C96-4538-B443-D99BDBA34995}" = calibre
"{8256F87F-8554-4457-8C3D-3F3324697D9F}" = Windows Live ID Sign-in Assistant
"{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}" = Apple Application Support
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver For Windows 7
"{88547073-C566-4895-9005-EBE98EA3F7C7}" = Samsung Kies3
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{8E2A18E2-96AF-8649-4DE7-5C06C90719A4}_is1" = SUPER © v2014.build.62+Recorder (2014/09/21) version v2014.buil
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{90140000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2010
"{90140000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2010
"{90140000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2010
"{90140000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2010
"{90140000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2010
"{90140000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2010
"{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010
"{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010
"{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010
"{90140000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2010
"{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010
"{90140000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2010
"{90140000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2010
"{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010
"{90140000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2010
"{90140000-0120-0409-0000-0000000FF1CE}" = Microsoft Office Office Subscription (English) 2010
"{904CCF62-818D-4675-BC76-D37EB399F917}" = Windows Mobile Device Center
"{91140000-011D-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus Subscription 2010
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95C33D2E-8892-40CC-B8FB-E8CC68530D8B}" = Windows Live Writer
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A0332229-4EF7-4A36-AED8-E5876EB2DF86}" = Windows Live UX Platform Language Pack
"{A2DC527D-FA79-46E9-973F-920897CA55E9}" = Windows Live Writer
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC6EE263-E4DD-4150-9014-689B1D4A3315}" = iCloud
"{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI (11.0.09)
"{B175520C-86A2-35A7-8619-86DC379688B9}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030
"{B1D0122C-6BE2-47A2-82AE-0BB3F6C91C49}" = Photo Common
"{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}" = Windows Live PIMT Platform
"{B6A96E8C-FC88-46F5-800E-6845B4ACA459}" = Photo Gallery
"{B775C26B-EAA8-4A11-ACBF-76E52DF6B805}" = Windows Live Mail
"{BAD27F0E-5165-49A5-BE66-AF5BF73F2FEE}" = Windows Live Mail
"{BAD984EE-790E-4513-A428-3BE2D426DCA7}" = Windows Live Messenger
"{BBB21AB1-2C45-435D-A05A-B563072E7B9B}" = Xirrus Wi-Fi Inspector
"{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030
"{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader
"{C74DCAC0-DDB3-4135-A70C-0553BF9490BC}" = Windows Live Family Safety
"{C89AD07D-CAA0-4BF2-A2E8-A851B71FD698}" = Microsoft Online Services Sign-in Assistant
"{C992FFE0-AC32-4FA9-BC9A-F1637B9E655D}" = Photo Gallery
"{CAA0F57A-BA8C-4AD8-AA03-F32B0E4F5623}" = Photo Common
"{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86
"{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}" = Windows Live SOXE
"{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones
"{D1893000-EA77-493C-8DDD-E262436E959B}" = Windows Live SOXE Definitions
"{DD67BE4B-7E62-4215-AFA3-F123A800A389}" = Movie Maker
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio
"{E703613B-BDAB-433E-A66A-DE0263E3D35D}" = Windows Live Messenger
"{E7044E25-3038-4A76-9064-344AC038043E}" = Windows Mobile Device Center Driver Update
"{EB3DF0F0-0525-4C5A-A2F8-DEC868A3075D}" = Movie Maker
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F8F630A7-6789-44D5-8653-3B27969CF337}" = Windows Live Essentials
"ABC 3GP/MP4 Converter" = ABC 3GP/MP4 Converter 3.00
"Adobe Flash Player ActiveX" = Adobe Flash Player 15 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 15 Plugin
"BlazeDTV 6.0_is1" = BlazeDTV 6.0
"CCleaner" = CCleaner
"Deluge" = Deluge 1.3.10
"FAC95C88-898B-A73A-BC32-000000B100" = Idle Crawler
"Freemake Audio Converter_is1" = Freemake Audio Converter version 1.1.0
"Google Chrome" = Google Chrome
"HDMI" = Intel® Graphics Media Accelerator Driver
"InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}" = Samsung Kies3
"Kobo" = Kobo
"Lexmark 640 Series" = Lexmark 640 Series
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware version 2.0.3.1025
"MediaMonkey_is1" = MediaMonkey 4.1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft Security Client" = Microsoft Security Essentials
"Mp3tag" = Mp3tag v2.63
"MyDriveConnect" = MyDriveConnect 3.3.0.1756
"Office14.PROPLUSSUB" = Microsoft Office Professional Plus 2010
"Picasa 3" = Picasa 3
"SmartDraw 2013" = SmartDraw 2013
"tixati" = Tixati
"VLC media player" = VLC media player
"WinAVI All-in-One Converter" = WinAVI All-in-One Converter
"WinLiveSuite" = Windows Live Essentials
"WinRAR archiver" = WinRAR 5.11 (32-bit)
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Dropbox" = Dropbox
"OneDriveSetup.exe" = Microsoft OneDrive
"Spotify" = Spotify
"Torch" = Torch
"XBMC" = XBMC
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 16/11/2014 15:05:39 | Computer Name = AndyK-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second
Error - 16/11/2014 15:05:39 | Computer Name = AndyK-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 1186
Error - 16/11/2014 15:05:39 | Computer Name = AndyK-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 1186
Error - 16/11/2014 15:05:40 | Computer Name = AndyK-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second
Error - 16/11/2014 15:05:40 | Computer Name = AndyK-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 2449
Error - 16/11/2014 15:05:40 | Computer Name = AndyK-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 2449
Error - 16/11/2014 15:05:42 | Computer Name = AndyK-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second
Error - 16/11/2014 15:05:42 | Computer Name = AndyK-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 3760
Error - 16/11/2014 15:05:42 | Computer Name = AndyK-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 3760
[ System Events ]
Error - 19/11/2014 15:37:56 | Computer Name = AndyK-PC | Source = DCOM | ID = 10016
Description =
Error - 19/11/2014 15:50:32 | Computer Name = AndyK-PC | Source = DCOM | ID = 10016
Description =
Error - 19/11/2014 16:03:22 | Computer Name = AndyK-PC | Source = DCOM | ID = 10016
Description =
Error - 19/11/2014 16:14:54 | Computer Name = AndyK-PC | Source = DCOM | ID = 10016
Description =
Error - 19/11/2014 16:22:15 | Computer Name = AndyK-PC | Source = DCOM | ID = 10016
Description =
Error - 19/11/2014 16:31:37 | Computer Name = AndyK-PC | Source = DCOM | ID = 10016
Description =
Error - 19/11/2014 16:40:53 | Computer Name = AndyK-PC | Source = DCOM | ID = 10016
Description =
Error - 19/11/2014 16:52:29 | Computer Name = AndyK-PC | Source = DCOM | ID = 10016
Description =
Error - 19/11/2014 17:02:58 | Computer Name = AndyK-PC | Source = DCOM | ID = 10016
Description =
Error - 19/11/2014 17:12:34 | Computer Name = AndyK-PC | Source = DCOM | ID = 10016
Description =
< End of report >