In the morning every day my C: appears to be in heavy use for at least 4 to 5 hours ? till 11am or noon central time. After that the computer runs fine for the rest of the day. I have not been able to figure out what is using it, but I am a novice. My CPU usage is around 5%,my physical memory usage is around 42% and virtual memory at 8%. I have around 158GB of free space on this hard drive. I ran Norton antivirus and found no hits and Malware Bytes and found the following. ( two occurrences of PuP.Optional.Installcore) which were deleted and computer restarted but made no difference regarding the hard drive usage. I checked to see if windows indexing was running but it said it wasn't.
I am using a HP h8-1090T - I7-970 3.2GHz cpu, 16 GB physical memory, two hard drives and Windows 7 Ultimate.
Any thoughts would be greatly appreciated.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:30-09-2015
Ran by John (administrator) on LINDA-HP2012 (02-10-2015 09:32:58)
Running from C:\Users\John\Desktop
Loaded Profiles: John & Linda (Available Profiles: John & Linda & DefaultAppPool)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Program Files (x86)\Roxio\BackOnTrack\App\SaibSVC.exe
(ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(Samsung) C:\Program Files\SAMSUNG\AllShare Framework DMS\1.3.23\AllShareFrameworkManagerDMS.exe
(Samsung) C:\Program Files\SAMSUNG\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\Program Files (x86)\Roxio\BackOnTrack\App\BService.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Windows\System32\CISVC.EXE
(SEIKO EPSON CORPORATION) C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Gladinet, INC) C:\Program Files (x86)\Nuance\Nuance Cloud Connector\GladFileMonSvc.exe
() C:\Program Files (x86)\Nuance\Nuance Cloud Connector\WOSVSSSvr.exe
() C:\Program Files\UCT\HDR Express 3\HDRExpress3Service.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae-svc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae64.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccsvchst.exe
() C:\Program Files\Autodesk\3ds Max Design 2014\NVIDIA\Satellite\raysat_3dsmax2014_64server.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\nst.exe
(NETGEAR) C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenieDaemon64.exe
(Nalpeiron Ltd.) C:\Windows\SysWOW64\nlssrv32.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(Symantec) C:\Program Files (x86)\Symantec\Norton Utilities 16\sMonitor\StartManSvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Cyber Power Systems, Inc.) C:\Program Files (x86)\CyberPower PowerPanel Personal Edition\ppped.exe
(arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(arvato digital services llc) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(Paramount Software UK Ltd) C:\Program Files\Macrium\Reflect\ReflectService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(Roxio) C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
(Copyright 2013 SAMSUNG) C:\Program Files\SAMSUNG\Samsung Link\Samsung Link.exe
(Copyright 2013 SAMSUNG) C:\Program Files\SAMSUNG\Samsung Link\Samsung Link.exe
() E:\Program Files (x86)\Photodex\CompuPicPro\scsiaccess.exe
(Memeo) C:\Program Files (x86)\Seagate\Seagate Dashboard\SeagateDashboardService.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\psia.exe
(DEVGURU Co., LTD.) C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
() C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe
(Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe
(Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\22.5.4.24\n360.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intuit Inc.) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
() C:\Program Files (x86)\Roxio Creator NXT Pro 3\Roxio Burn\RoxioBurnLauncher.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.EXE
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccsvchst.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\22.5.4.24\n360.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\nst.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
() C:\Program Files (x86)\Avanquest\PowerDesk\PDHookServer.exe
(Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe
(NETGEAR Inc.) C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenie.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
() C:\Program Files (x86)\Audials\Audials 12\AudialsNotifier.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe
(Avanquest Software) C:\Program Files (x86)\Avanquest\PowerDesk\pddlghlp.exe
(Avanquest Software) C:\Program Files (x86)\Avanquest\PowerDesk\pddlghlp64.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
() C:\Program Files (x86)\Avanquest\PowerDesk\KeyViewServer.exe
(Nuance Communications, Inc.) E:\Program Files (x86)\Nuance\PDF Create 8\PdfCreate8Hook.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe
(Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe
(Cyber Power Systems, Inc.) C:\Program Files (x86)\CyberPower PowerPanel Personal Edition\pppeuser.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Utilities 16\sMonitor\SSDMonitor.exe
(Apple Inc.) C:\Program Files (x86)\QuickTime\QTTask.exe
(SAMSUNG Electornics Co., Ltd.) C:\Users\John\AppData\Roaming\VERIZON\UA_ar\UA.exe
(Webshots) C:\Program Files (x86)\Webshots\Wallpaper\Webshots.exe
(Memeo) C:\Program Files (x86)\Seagate\Seagate Dashboard\MemeoDashboard.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Axentra Corporation) C:\Program Files (x86)\Seagate\Seagate Dashboard\HipServAgent\HipServAgent.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
(Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\PlexDlnaServer.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
() C:\Program Files (x86)\NETGEAR Genie\bin\genie2_tray.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\OUTLOOK.EXE
(WinZip Computing, S.L.) C:\Program Files (x86)\WinZip Courier\ZipSendService.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Dropbox, Inc.) C:\Users\John\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingApp.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingBar.exe
() C:\Program Files (x86)\Avanquest\PowerDesk\ContextMenuServer.exe
(Python Software Foundation) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe
(Siber Systems) C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
() C:\Program Files (x86)\Avanquest\PowerDesk\CplServer.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.101\nacl64.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.101\nacl64.exe
(Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\22.5.4.24\conathst.exe
(Siber Systems Inc.) C:\Program Files (x86)\Siber Systems\AI RoboForm\Chrome\rf-chrome-nm-host.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil64_19_0_0_185_ActiveX.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508240 2015-08-05] (Adobe Systems Incorporated)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM\...\Run: [hpsysdrv] => c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [62768 2008-11-20] (Hewlett-Packard)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2754704 2015-06-24] (NVIDIA Corporation)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-09-23] (Apple Inc.)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Nuance OmniPage Ultimate-reminder] => E:\Program Files (x86)\Nuance\OmniPage19\Ereg\Ereg.exe [334152 2013-01-14] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PDFCreHook] => E:\Program Files (x86)\Nuance\PDF Create 8\pdfcreate8hook.exe [1029960 2013-03-12] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PDF8 Registry Controller] => E:\Program Files (x86)\Nuance\PDF Create 8\RegistryController.exe [180040 2013-03-12] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [OmniPage Preload] => E:\Program Files (x86)\Nuance\OmniPage19\OmniPage19.exe [2922824 2013-04-22] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41360 2015-06-26] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1075296 2013-04-25] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60688 2015-09-23] (Apple Inc.)
HKLM-x32\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\\isuspm.exe [2068856 2011-10-12] (Flexera Software LLC.)
HKLM-x32\...\Run: [PowerDVD14Agent] => C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe [795672 2014-06-23] (CyberLink Corp.)
HKLM-x32\...\Run: [WD Quick View] => C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [5564784 2015-07-20] (Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [Malwarebytes Anti-Exploit] => C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe [2620728 2015-07-22] (Malwarebytes Corporation)
HKLM-x32\...\Run: [PowerPanel Personal Edition User Interaction] => C:\Program Files (x86)\CyberPower PowerPanel Personal Edition\pppeuser.exe [350144 2012-03-27] (Cyber Power Systems, Inc.)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [283160 2010-11-06] (Intel Corporation)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard)
HKLM-x32\...\Run: [FUFAXSTM] => C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [856064 2011-03-09] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [FUFAXRCV] => C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [495616 2011-03-09] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [RoxWatchTray] => C:\Program Files (x86)\Roxio Creator NXT Pro 3\Common\RoxWatchTray15.exe [295112 2014-09-26] (Corel Corporation)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [840592 2015-06-26] (Adobe Systems Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKLM-x32\...\Run: [Seagate Dashboard] => C:\Program Files (x86)\Seagate\Seagate Dashboard\MemeoLauncher.exe [79112 2011-06-01] ()
HKLM-x32\...\Run: [SSDMonitor] => C:\Program Files (x86)\Symantec\Norton Utilities 16\sMonitor\SSDMonitor.exe [106112 2015-08-09] (Symantec Corporation)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2015-08-06] (Apple Inc.)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\Run: [Windows Shutdown Assistant] => [X]
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\Run: [PDHookServer] => C:\Program Files (x86)\Avanquest\PowerDesk\PDHookServer.exe [60416 2012-12-14] ()
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\Run: [Plex Media Server] => C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe [4419720 2014-04-09] (Plex, Inc.)
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\Run: [OpAgent] => "OpAgent.exe" /agent
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8461224 2015-09-16] (Piriform Ltd)
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\Run: [NETGEARGenie] => C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenie.exe [602880 2014-12-14] (NETGEAR Inc.)
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2015-04-26] (Apple Inc.)
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\Run: [AudialsNotifier] => C:\Program Files (x86)\Audials\Audials 12\AudialsNotifier.exe [2412296 2015-06-26] ()
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\Run: [Dropbox Update] => C:\Users\John\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-16] (Dropbox, Inc.)
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1403192 2015-09-11] (Garmin Ltd. or its subsidiaries)
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\Run: [RoboForm] => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [110160 2015-09-30] (Siber Systems)
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\Policies\Explorer: []
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\Policies\Explorer: [NoInstrumentation] 1
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\MountPoints2: D - D:\VZW_Software_upgrade_assistant.exe
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\MountPoints2: {7bce790a-4a62-11e5-9afa-402cf47592a3} - D:\VZW_Software_upgrade_assistant.exe
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\MountPoints2: {c2311f37-8b53-11e3-9473-402cf47592a3} - M:\LaunchU3.exe
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\MountPoints2: {de8f600b-8432-11e3-841b-402cf47592a3} - D:\VZW_Software_upgrade_assistant.exe
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\MountPoints2: {e0f5d269-3345-11e1-969a-402cf47592a3} - M:\LaunchU3.exe
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\MountPoints2: {fc92bc04-4e4f-11e3-9435-402cf47592a3} - N:\LaunchU3.exe
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Program Files (x86)\Webshots\Wallpaper\Webshots4.scr [74752 2015-09-08] ()
HKU\S-1-5-21-665846457-3026422965-1844958906-1006\...\Run: [RoboForm] => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [110160 2015-09-30] (Siber Systems)
HKU\S-1-5-21-665846457-3026422965-1844958906-1006\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIH3A.EXE [241280 2012-07-12] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-665846457-3026422965-1844958906-1006\...\MountPoints2: {762ce7ec-5817-11e4-9d33-806e6f6e6963} - F:\launch.exe "Start Here - Woodsmith Back Issue Library.html"
HKU\S-1-5-21-665846457-3026422965-1844958906-1006\...\MountPoints2: {7bce790a-4a62-11e5-9afa-402cf47592a3} - D:\VZW_Software_upgrade_assistant.exe
HKU\S-1-5-21-665846457-3026422965-1844958906-1006\...\MountPoints2: {de8f600b-8432-11e3-841b-402cf47592a3} - D:\VZW_Software_upgrade_assistant.exe
HKU\S-1-5-21-665846457-3026422965-1844958906-1006\...\MountPoints2: {fc92bc04-4e4f-11e3-9435-402cf47592a3} - M:\LaunchU3.exe
HKU\S-1-5-18\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1317256 2013-08-12] (Autodesk, Inc.)
HKU\S-1-5-18\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1403192 2015-09-11] (Garmin Ltd. or its subsidiaries)
ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files (x86)\Norton 360\Engine64\22.5.4.24\buShell.dll [2015-08-27] (Symantec Corporation)
ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files (x86)\Norton 360\Engine64\22.5.4.24\buShell.dll [2015-08-27] (Symantec Corporation)
ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files (x86)\Norton 360\Engine64\22.5.4.24\buShell.dll [2015-08-27] (Symantec Corporation)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_v_1_1_0_x64.dll [2013-08-30] ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_v_1_1_0_x64.dll [2013-08-30] ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_v_1_1_0_x64.dll [2013-08-30] ()
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2013-02-08] (Autodesk, Inc.)
ShellIconOverlayIdentifiers: [GladinetIconOverlay] -> {3C3DC57A-7535-48AF-BB9E-C3576A4F34D0} => C:\Program Files (x86)\Nuance\Nuance Cloud Connector\GlOverlayIcon.dll [2013-03-22] (Gladinet, INC)
ShellIconOverlayIdentifiers: [GladinetUploading] -> {959A18D3-9CC9-41e8-B76F-34ED9A89D4EA} => C:\Program Files (x86)\Nuance\Nuance Cloud Connector\GlOverlayIconU.dll [2013-03-22] (Gladinet, INC)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\John\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-09-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\John\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-09-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\John\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-09-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [GladinetIconOverlay] -> {3C3DC57A-7535-48AF-BB9E-C3576A4F34D0} => C:\Program Files (x86)\Nuance\Nuance Cloud Connector\GlOverlayIcon32.dll [2013-03-22] (Gladinet, INC)
ShellIconOverlayIdentifiers-x32: [GladinetUploading] -> {959A18D3-9CC9-41e8-B76F-34ED9A89D4EA} => C:\Program Files (x86)\Nuance\Nuance Cloud Connector\GlOverlayIconU32.dll [2013-03-22] (Gladinet, INC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2014-07-06]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk [2014-11-27]
ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Secunia)
Startup: C:\Users\John\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dialog Helper.lnk [2013-12-18]
ShortcutTarget: Dialog Helper.lnk -> C:\Program Files (x86)\Avanquest\PowerDesk\pddlghlp.exe (Avanquest Software)
Startup: C:\Users\John\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-08-12]
ShortcutTarget: Dropbox.lnk -> C:\Users\John\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\John\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Verizon Wireless Software Utility Application for Android – Samsung.lnk [2014-02-12]
ShortcutTarget: Verizon Wireless Software Utility Application for Android – Samsung.lnk -> C:\Users\John\AppData\Roaming\VERIZON\UA_ar\UA.exe (SAMSUNG Electornics Co., Ltd.)
Startup: C:\Users\John\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Webshots Wallpaper & Screensaver.lnk [2013-11-07]
ShortcutTarget: Webshots Wallpaper & Screensaver.lnk -> C:\Program Files (x86)\Webshots\Wallpaper\Webshots.exe (Webshots)
GroupPolicyScripts: Restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 167.142.225.3 167.142.225.5
Tcpip\..\Interfaces\{07AA2B7E-E500-4468-A9BE-7C566396C770}: [DhcpNameServer] 167.142.225.3 167.142.225.5
Tcpip\..\Interfaces\{81D131FE-0824-4763-BD2E-99524D8AC72C}: [NameServer] 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
Tcpip\..\Interfaces\{A1D2A4CB-BB0B-4DDD-A01C-A834B3DEEA5B}: [DhcpNameServer] 167.142.225.3 167.142.225.5
Internet Explorer:
==================
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=en&pid=N360&pvid=21.6.0.32
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=5.5&ar=msnhome
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.msn.com/spbasic.htm
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=en&pid=N360&pvid=21.6.0.32
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.msn.com/spbasic.htm
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=en&pid=N360&pvid=21.6.0.32
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.msn.com/spbasic.htm
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=en&pid=N360&pvid=21.6.0.32
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPDSK/1
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.msn.com/spbasic.htm
HKU\S-1-5-21-665846457-3026422965-1844958906-1006\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=en&pid=n360&pvid=21.6.0.32
HKU\S-1-5-21-665846457-3026422965-1844958906-1006\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPDSK/1
HKU\S-1-5-21-665846457-3026422965-1844958906-1006\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-665846457-3026422965-1844958906-1006\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.msn.com/spbasic.htm
SearchScopes: HKLM -> {889654AC-2F68-40B7-9A43-5706F3E2E8DE} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-30572-11896-1/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms}
SearchScopes: HKLM-x32 -> {889654AC-2F68-40B7-9A43-5706F3E2E8DE} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-30572-11896-1/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms}
SearchScopes: HKU\S-1-5-21-665846457-3026422965-1844958906-1001 -> {6779104F-A9EE-4DDE-B747-26B835720362} URL =
SearchScopes: HKU\S-1-5-21-665846457-3026422965-1844958906-1001 -> {889654AC-2F68-40B7-9A43-5706F3E2E8DE} URL =
SearchScopes: HKU\S-1-5-21-665846457-3026422965-1844958906-1001 -> {AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} URL = hxxp://nortonsafe.search.ask.com/web?q={SEARCHTERMS}&o=APN10506&l=dis&prt=IDSSLB&chn=retail&geo=US&ver=2014&locale=en_US&gct=kwd&qsrc=2869
SearchScopes: HKU\S-1-5-21-665846457-3026422965-1844958906-1001 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL =
SearchScopes: HKU\S-1-5-21-665846457-3026422965-1844958906-1006 -> DefaultScope {AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} URL = hxxp://nortonsafe.search.ask.com/web?q={SEARCHTERMS}&o=APN10506&l=dis&prt=360&chn=retail&geo=US&ver=20&locale=en_US&gct=kwd&qsrc=2869
SearchScopes: HKU\S-1-5-21-665846457-3026422965-1844958906-1006 -> {AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} URL = hxxp://nortonsafe.search.ask.com/web?q={SEARCHTERMS}&o=APN10506&l=dis&prt=360&chn=retail&geo=US&ver=20&locale=en_US&gct=kwd&qsrc=2869
SearchScopes: HKU\S-1-5-21-665846457-3026422965-1844958906-1006 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL =
SearchScopes: HKU\S-1-5-21-665846457-3026422965-1844958906-1006 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-07-14] (Microsoft Corporation)
BHO: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton 360\Engine64\22.5.4.24\coIEPlg.dll [2015-09-23] (Symantec Corporation)
BHO: RoboForm Toolbar Helper -> {724d43a9-0d85-11d4-9908-00400523e39a} -> C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2015-09-30] (Siber Systems Inc.)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO: WinZip Courier BHO -> {A8FB70FA-0FDF-4601-9DC4-BFA1B357204F} -> C:\Program Files (x86)\WinZip Courier\wzwmcie64.dll [2013-02-27] (WinZip Computing, S.L.)
BHO: Norton Identity Protection -> {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} -> C:\Program Files (x86)\Norton Identity Safe\Engine64\2014.7.11.42\coIEPlg.dll [2015-03-05] (Symantec Corporation)
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2014-05-19] (Logitech, Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-07-14] (Microsoft Corporation)
BHO: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll [2014-03-11] (Microsoft Corporation.)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28] (Hewlett-Packard)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-07-14] (Microsoft Corporation)
BHO-x32: AOL Toolbar Loader -> {3ef64538-8b54-4573-b48f-4d34b0238ab2} -> No File
BHO-x32: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton 360\Engine\22.5.4.24\coIEPlg.dll [2015-09-23] (Symantec Corporation)
BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> No File
BHO-x32: RoboForm Toolbar Helper -> {724d43a9-0d85-11d4-9908-00400523e39a} -> C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll [2015-09-30] (Siber Systems Inc.)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-06-22] (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO-x32: WinZip Courier BHO -> {A8FB70FA-0FDF-4601-9DC4-BFA1B357204F} -> C:\Program Files (x86)\WinZip Courier\wzwmcie32.dll [2013-02-27] (WinZip Computing, S.L.)
BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2015-06-26] (Adobe Systems Incorporated)
BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2014-05-19] (Logitech, Inc.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2014-01-22] (Microsoft Corporation)
BHO-x32: ZeonIEEventHelper Class -> {C7DA0384-42AA-428c-B832-88AC343DE1A8} -> E:\Program Files (x86)\Nuance\PDF Create 8\Bin\GZeonIEFavClient.dll [2013-03-07] (Zeon Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-07-14] (Microsoft Corporation)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll [2014-03-11] (Microsoft Corporation.)
BHO-x32: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-06-22] (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28] (Hewlett-Packard)
BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2015-06-26] (Adobe Systems Incorporated)
Toolbar: HKLM - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2015-09-30] (Siber Systems Inc.)
Toolbar: HKLM - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll [2014-03-11] (Microsoft Corporation.)
Toolbar: HKLM - Norton Identity Safe Toolbar - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files (x86)\Norton Identity Safe\Engine64\2014.7.11.42\coIEPlg.dll [2015-03-05] (Symantec Corporation)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine64\22.5.4.24\coIEPlg.dll [2015-09-23] (Symantec Corporation)
Toolbar: HKLM-x32 - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll [2015-09-30] (Siber Systems Inc.)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2015-06-26] (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Nuance PDF - {BCCE15AE-AC7E-4bc9-94AF-2A714A412BCB} - E:\Program Files (x86)\Nuance\PDF Create 8\Bin\GZeonIEFavClient.dll [2013-03-07] (Zeon Corporation)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll [2014-03-11] (Microsoft Corporation.)
Toolbar: HKLM-x32 - AOL Toolbar - {ba00b7b1-0351-477a-b948-23e3ee5a73d4} - No File
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\22.5.4.24\coIEPlg.dll [2015-09-23] (Symantec Corporation)
Toolbar: HKU\S-1-5-21-665846457-3026422965-1844958906-1001 -> &RoboForm Toolbar - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2015-09-30] (Siber Systems Inc.)
Toolbar: HKU\S-1-5-21-665846457-3026422965-1844958906-1001 -> No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
Toolbar: HKU\S-1-5-21-665846457-3026422965-1844958906-1001 -> No Name - {BA00B7B1-0351-477A-B948-23E3EE5A73D4} - No File
Toolbar: HKU\S-1-5-21-665846457-3026422965-1844958906-1001 -> Norton Identity Safe Toolbar - {A13C2648-91D4-4BF3-BC6D-0079707C4389} - C:\Program Files (x86)\Norton Identity Safe\Engine64\2014.7.11.42\coIEPlg.dll [2015-03-05] (Symantec Corporation)
Toolbar: HKU\S-1-5-21-665846457-3026422965-1844958906-1001 -> Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine64\22.5.4.24\coIEPlg.dll [2015-09-23] (Symantec Corporation)
Toolbar: HKU\S-1-5-21-665846457-3026422965-1844958906-1006 -> No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
Toolbar: HKU\S-1-5-21-665846457-3026422965-1844958906-1006 -> &RoboForm Toolbar - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2015-09-30] (Siber Systems Inc.)
Toolbar: HKU\S-1-5-21-665846457-3026422965-1844958906-1006 -> Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine64\22.5.4.24\coIEPlg.dll [2015-09-23] (Symantec Corporation)
DPF: HKLM-x32 {4871A87A-BFDD-4106-8153-FFDE2BAC2967} hxxp://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.6.2.cab
DPF: HKLM-x32 {A1B8A30B-8AAA-4A3E-8869-1DA509E8A011} hxxps://dshr.redcross.org/crystalreportviewers10/activexcontrols/activexviewer.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2014-03-12] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\h3tk8ixh.default-1423004092853
FF DefaultSearchEngine: Norton Safe Search
FF DefaultSearchEngine.US: Norton Safe Search
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_19_0_0_185.dll [2015-09-22] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2013-09-03] (Adobe Systems)
FF Plugin: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll [2013-12-03] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_185.dll [2015-09-22] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-06-22] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-06-22] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-03-31] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-06-17] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-06-17] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2010-12-07] ()
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll [2015-06-26] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2013-09-03] (Adobe Systems)
FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [2013-12-03] (Adobe Systems)
FF Plugin HKU\S-1-5-21-665846457-3026422965-1844958906-1001: @hulu.com/Hulu Desktop -> C:\Windows\..\Users\Default\AppData\Local\HuluDesktop\instances\0.9.13.1\npHDPlg.dll [2010-04-09] (Hulu LLC)
FF Plugin HKU\S-1-5-21-665846457-3026422965-1844958906-1001: amazon.com/AmazonMP3DownloaderPlugin -> C:\Program Files (x86)\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin101799.dll [2013-03-07] (Amazon.com, Inc.)
FF Plugin HKU\S-1-5-21-665846457-3026422965-1844958906-1006: @citrixonline.com/appdetectorplugin -> C:\Users\Linda.Linda-HP2012\AppData\Local\Citrix\Plugins\104\npappdetector.dll [2014-12-11] (Citrix Online)
FF Plugin HKU\S-1-5-21-665846457-3026422965-1844958906-1006: @hulu.com/Hulu Desktop -> C:\Windows\..\Users\Default\AppData\Local\HuluDesktop\instances\0.9.13.1\npHDPlg.dll [2010-04-09] (Hulu LLC)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-03-31] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll [2014-11-05] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll [2014-11-05] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll [2014-11-05] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll [2014-11-05] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll [2014-11-05] (Apple Inc.)
FF SearchPlugin: C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\h3tk8ixh.default-1423004092853\searchplugins\safesearch.xml [2015-02-03]
FF Extension: NetVideoHunter - C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\h3tk8ixh.default-1423004092853\Extensions\[email protected] [2015-04-15]
FF Extension: NoScript - C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\h3tk8ixh.default-1423004092853\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2015-02-03]
FF Extension: Adblock Plus - C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\h3tk8ixh.default-1423004092853\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-02-03]
FF Extension: BetterPrivacy - C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\h3tk8ixh.default-1423004092853\Extensions\{d40f5e7b-d2cf-4856-b441-cc613eeffbe3}.xpi [2015-02-03]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2013-10-15]
FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2014-09-02]
FF HKLM-x32\...\Firefox\Extensions: [{F04D2D30-776C-4d02-8627-8E4385ECA58D}] - C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.7.8.23\coFFPlgn => not found
FF HKLM-x32\...\Firefox\Extensions: [{22119944-ED35-4ab1-910B-E619EA06A115}] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox
FF Extension: RoboForm Toolbar - C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox [2011-12-26]
FF HKLM-x32\...\Firefox\Extensions: [{EBA722F5-038F-4CAF-9EE2-545A221628BC}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.0.124\coFFPlgn
FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.0.124\coFFPlgn [2015-09-30]
FF HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\Firefox\Extensions: [{22119944-ED35-4ab1-910B-E619EA06A115}] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox
Chrome:
=======
CHR StartupUrls: Default -> "hxxps://www.google.com/webhp?ie=UTF-8&rct=j"
CHR DefaultSearchURL: Default -> hxxp://nortonsafe.search.ask.com/web?q={searchTerms}&o=apn10506&prt=cr
CHR DefaultSearchKeyword: Default -> NortonSafe
CHR DefaultSuggestURL: Default -> hxxp://ss-sym.ask.com/query?q={searchTerms}&sstype=prefix&li=ff
CHR Profile: C:\Users\John\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-04-15]
CHR Extension: (Google Docs) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-04-15]
CHR Extension: (Google Drive) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-04-15]
CHR Extension: (WOT: Web of Trust, Website Reputation Ratings) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2015-04-15]
CHR Extension: (YouTube) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-04-15]
CHR Extension: (Norton Security Toolbar) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe [2015-07-03]
CHR Extension: (Google Search) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-04-15]
CHR Extension: (Google Sheets) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-04-15]
CHR Extension: (Google Docs Offline) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-17]
CHR Extension: (Norton Identity Safe) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif [2015-04-15]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-15]
CHR Extension: (Norton Safe) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmgcfemagnogdodbambjhdcmfcpicngl [2015-04-15]
CHR Extension: (Chrome Web Store Payments) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-15]
CHR Extension: (Gmail) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-15]
CHR Extension: (RoboForm Password Manager) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnlccmojcmeohlpggmfnbbiapkmbliob [2015-04-17]
CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\Norton 360\Engine\22.5.4.24\Exts\Chrome.crx [2015-09-30]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [nppllibpnmahfaklnpggkibhkapjkeob] - C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\Exts\Chrome.crx [2015-03-24]
CHR HKLM\...\Chrome\Extension: [pnlccmojcmeohlpggmfnbbiapkmbliob] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Chrome\rf-chrome.crx [2014-02-01]
CHR HKLM-x32\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\Norton 360\Engine\22.5.4.24\Exts\Chrome.crx [2015-09-30]
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [nppllibpnmahfaklnpggkibhkapjkeob] - C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\Exts\Chrome.crx [2015-03-24]
CHR HKLM-x32\...\Chrome\Extension: [pnlccmojcmeohlpggmfnbbiapkmbliob] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Chrome\rf-chrome.crx [2014-02-01]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 9734BF6A-2DCD-40f0-BAB0-5AAFEEBE1269; C:\Program Files (x86)\Roxio\BackOnTrack\App\SaibSVC.exe [457960 2013-10-16] ()
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2015936 2015-09-29] (Adobe Systems, Incorporated)
R2 AllShare Framework DMS; C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkManagerDMS.exe [404360 2013-12-21] (Samsung) [File not signed]
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-09-02] (Apple Inc.)
R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288 2012-12-13] (Autodesk, Inc.) [File not signed]
R2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2255064 2013-10-28] (Broadcom Corporation.)
R2 BOT4Service; C:\Program Files (x86)\Roxio\BackOnTrack\App\BService.exe [22760 2014-01-22] ()
S3 DiskDoctorService; C:\Program Files (x86)\Symantec\Norton Utilities 16\Tools\Disk Doctor\DiskDoctorSrv.exe [1147424 2012-09-29] (Symantec Corporation)
S3 Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [762272 2015-09-11] (Garmin Ltd. or its subsidiaries)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-06-24] (NVIDIA Corporation)
R2 GladFileMonSvc; C:\Program Files (x86)\Nuance\Nuance Cloud Connector\GladFileMonSvc.exe [30032 2013-03-22] (Gladinet, INC)
R2 HDRExpress3Service; C:\Program Files\UCT\HDR Express 3\HDRExpress3Service.exe [32784 2014-10-23] ()
R2 MbaeSvc; C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae-svc.exe [713016 2015-07-22] (Malwarebytes Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
R2 MCLIENT; C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccSvcHst.exe [143928 2012-12-04] (Symantec Corporation)
R2 mi-raysat_3dsmax2014_64; C:\Program Files\Autodesk\3ds Max Design 2014\NVIDIA\Satellite\raysat_3dsmax2014_64server.exe [86016 2011-09-14] () [File not signed]
R2 N360; C:\Program Files (x86)\Norton 360\Engine\22.5.4.24\N360.exe [282016 2015-09-24] (Symantec Corporation)
R2 NCO; C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\NST.exe [131144 2015-03-05] (Symantec Corporation)
R2 NETGEARGenieDaemon; C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenieDaemon64.exe [232192 2014-12-14] (NETGEAR)
R2 nlsX86cc; C:\Windows\SysWOW64\nlssrv32.exe [66560 2010-11-22] (Nalpeiron Ltd.) [File not signed]
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation)
R2 NU16StartManagerSvc; C:\Program Files (x86)\Symantec\Norton Utilities 16\sMonitor\StartManSvc.exe [792608 2012-09-29] (Symantec)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1868432 2015-06-24] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23007376 2015-06-24] (NVIDIA Corporation)
R2 ppped; C:\Program Files (x86)\CyberPower PowerPanel Personal Edition\ppped.exe [1013696 2012-03-27] (Cyber Power Systems, Inc.)
R2 PSI_SVC_2; C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2013-09-13] (arvato digital services llc)
R2 PSI_SVC_2_x64; C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [336824 2010-11-30] (arvato digital services llc)
R2 ReflectService.exe; C:\Program Files\Macrium\Reflect\ReflectService.exe [3446224 2015-02-23] (Paramount Software UK Ltd)
R2 RoxioBurnLauncher; C:\Program Files (x86)\Roxio Creator NXT Pro 3\Roxio Burn\RoxioBurnLauncher.exe [535784 2013-10-16] ()
S3 RoxMediaDB15; C:\Program Files (x86)\Roxio Creator NXT Pro 3\Common\RoxMediaDB15.exe [1097928 2014-09-26] (Corel Corporation)
S2 RoxWatch15; C:\Program Files (x86)\Roxio Creator NXT Pro 3\Common\RoxWatch15.exe [342216 2014-09-26] (Corel Corporation)
R2 Samsung Link Service; C:\Program Files\Samsung\Samsung Link\Samsung Link.exe [616288 2014-11-06] (Copyright 2013 SAMSUNG)
S3 SandraAgentSrv; C:\Program Files\SiSoftware\SiSoftware Sandra Personal 2014.SP3e\RpcAgentSrv.exe [73200 2014-10-06] (SiSoftware) [File not signed]
R2 ScsiAccess; E:\Program Files (x86)\Photodex\CompuPicPro\ScsiAccess.exe [181312 2013-10-22] () [File not signed]
R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1229528 2013-12-06] (Secunia)
R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [662232 2013-12-06] (Secunia)
S3 SpeedDiskService; C:\Program Files (x86)\Symantec\Norton Utilities 16\Tools\SpeedDisk\SpeedDiskSrv.exe [1160224 2012-09-29] (Symantec Corporation)
R2 ss_conn_service; C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [741640 2014-06-16] (DEVGURU Co., LTD.)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5702416 2015-09-11] (TeamViewer GmbH)
R2 UsbClientService; C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe [248736 2013-11-14] ()
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-20] (Microsoft Corporation)
R2 WDBackup; C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [1042808 2015-07-20] (Western Digital Technologies, Inc.)
R2 WDDriveService; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [306552 2015-07-20] (Western Digital Technologies, Inc.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 Apowersoft_AudioDevice; C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [31920 2013-06-02] (Wondershare)
R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [170712 2013-10-28] (Broadcom Corporation.)
R1 BHDrvx64; C:\Program Files (x86)\Norton 360\NortonData\22.5.0.124\Definitions\BASHDefs\20150928.001\BHDrvx64.sys [1650936 2015-07-23] (Symantec Corporation)
R1 ccSet_MCLIENT; C:\Windows\system32\drivers\MCLIENTx64\0302020.00C\ccSetx64.sys [168096 2012-10-03] (Symantec Corporation)
R1 ccSet_N360; C:\Windows\system32\drivers\N360x64\1605040.018\ccSetx64.sys [173808 2015-07-10] (Symantec Corporation)
R1 ccSet_NST; C:\Windows\system32\drivers\NSTx64\7DE070B0.02A\ccSetx64.sys [162392 2013-09-27] (Symantec Corporation)
R3 clwvd6; C:\Windows\System32\DRIVERS\clwvd6.sys [41704 2013-10-29] (CyberLink Corporation)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [498512 2015-08-02] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [153936 2015-08-02] (Symantec Corporation)
R1 ESProtectionDriver; C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae64.sys [63064 2015-07-22] ()
R1 IDSVia64; C:\Program Files (x86)\Norton 360\NortonData\22.5.0.124\Definitions\IPSDefs\20151002.001\IDSvia64.sys [767216 2015-09-22] (Symantec Corporation)
R1 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [109272 2015-06-18] (Malwarebytes Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\windows\system32\drivers\MBAMSwissArmy.sys [113880 2015-10-02] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation)
R3 NAVENG; C:\Program Files (x86)\Norton 360\NortonData\22.5.0.124\Definitions\VirusDefs\20151001.034\ENG64.SYS [138488 2015-05-20] (Symantec Corporation)
R3 NAVEX15; C:\Program Files (x86)\Norton 360\NortonData\22.5.0.124\Definitions\VirusDefs\20151001.034\EX64.SYS [2146040 2015-05-20] (Symantec Corporation)
R2 NPF; C:\Windows\system32\drivers\npf.sys [35344 2015-02-11] (CACE Technologies, Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-06-24] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [46768 2015-06-17] (NVIDIA Corporation)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-12-06] (Secunia)
R0 PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [56336 2012-06-22] (Corel Corporation)
R1 RrNetCapFilterDriver; C:\Windows\System32\DRIVERS\RrNetCapFilterDriver.sys [25256 2015-04-21] (Audials AG)
R0 Sahdad64; C:\Windows\System32\Drivers\Sahdad64.sys [28304 2013-10-16] (Corel Corporation)
R0 Saibad64; C:\Windows\System32\Drivers\Saibad64.sys [20112 2013-10-16] (Corel Corporation)
R1 SaibVdAd64; C:\Windows\System32\Drivers\SaibVdAd64.sys [27792 2013-10-16] (Corel Corporation)
S3 SANDRA; C:\Program Files\SiSoftware\SiSoftware Sandra Personal 2014.SP3e\WNt600x64\Sandra.sys [23112 2009-08-07] (SiSoftware)
R1 SRTSP; C:\Windows\System32\Drivers\N360x64\1605040.018\SRTSP64.SYS [930024 2015-09-23] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\N360x64\1605040.018\SRTSPX64.SYS [50936 2015-07-10] (Symantec Corporation)
R3 stdriver; C:\Windows\System32\DRIVERS\stdriverx64.sys [34512 2015-09-21] ()
R0 SymEFASI; C:\Windows\System32\drivers\N360x64\1605040.018\SYMEFASI64.SYS [1620720 2015-07-10] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [111344 2015-08-02] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\N360x64\1605040.018\Ironx64.SYS [297720 2015-07-10] (Symantec Corporation)
R1 SymNetS; C:\Windows\System32\Drivers\N360x64\1605040.018\SYMNETS.SYS [577768 2015-09-23] (Symantec Corporation)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2014-07-28] (Apple, Inc.) [File not signed]
R2 {C5F942FD-1110-4664-86CE-0C6BDA305235}; C:\Program Files (x86)\CyberLink\PowerDVD14\Common\NavFilter\000.fcl [32456 2014-06-23] (CyberLink Corp.)
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-10-01 23:31 - 2015-10-01 09:30 - 02192384 _____ (Farbar) C:\Users\John\Desktop\FRST64.exe
2015-10-01 10:41 - 2015-10-01 10:42 - 00000000 ____D C:\Users\John\Documents\Magazine Subscriptions
2015-10-01 10:01 - 2015-10-01 10:01 - 00130967 _____ C:\Users\John\Desktop\Addition.txt
2015-10-01 09:46 - 2015-10-02 09:38 - 00064134 _____ C:\Users\John\Desktop\FRST.txt
2015-10-01 09:38 - 2015-10-01 09:59 - 00079548 _____ C:\Users\John\Downloads\FRST.txt
2015-10-01 09:30 - 2015-10-01 09:30 - 02192384 _____ (Farbar) C:\Users\John\Downloads\FRST64.exe
2015-09-30 22:27 - 2015-09-30 22:27 - 00000000 ____D C:\Users\John\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-09-30 19:01 - 2015-09-30 19:01 - 00000000 ____D C:\windows\System32\Tasks\Norton 360
2015-09-30 18:00 - 2015-09-30 18:00 - 00001755 _____ C:\Users\Public\Desktop\iTunes.lnk
2015-09-30 18:00 - 2015-09-30 18:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2015-09-30 17:59 - 2015-09-30 18:00 - 00000000 ____D C:\Program Files\iTunes
2015-09-30 17:59 - 2015-09-30 17:59 - 00000000 ____D C:\Program Files\iPod
2015-09-30 17:59 - 2015-09-30 17:59 - 00000000 ____D C:\Program Files (x86)\iTunes
2015-09-30 17:55 - 2015-09-30 17:55 - 00000000 ____D C:\Program Files\Bonjour
2015-09-30 17:55 - 2015-09-30 17:55 - 00000000 ____D C:\Program Files (x86)\Bonjour
2015-09-30 17:54 - 2015-09-30 17:54 - 00000000 ____D C:\windows\System32\Tasks\Apple
2015-09-30 17:54 - 2015-09-30 17:54 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2015-09-22 10:58 - 2015-09-30 18:55 - 00008192 _____ C:\windows\SysWOW64\WDPABKP.dat
2015-09-21 23:59 - 2015-09-21 23:59 - 00814160 _____ (NCH Software) C:\Users\John\Downloads\stsetup.exe
2015-09-21 23:59 - 2015-09-21 23:59 - 00034512 _____ C:\windows\system32\Drivers\stdriverx64.sys
2015-09-21 23:59 - 2015-09-21 23:59 - 00001181 _____ C:\Users\John\AppData\Roaming\trace_FilterInstaller.txt
2015-09-21 23:59 - 2015-09-21 23:59 - 00001136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SoundTap Streaming Audio Recorder.lnk
2015-09-21 23:59 - 2015-09-21 23:59 - 00001124 _____ C:\Users\Public\Desktop\SoundTap Streaming Audio Recorder.lnk
2015-09-21 23:59 - 2015-09-21 23:59 - 00000000 ____D C:\Users\John\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NCH Software Suite
2015-09-21 23:59 - 2015-09-21 23:59 - 00000000 _____ C:\Users\John\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt
2015-09-21 23:55 - 2015-09-29 17:31 - 00000000 ____D C:\windows\System32\Tasks\NCH Software
2015-09-21 23:55 - 2015-09-29 17:31 - 00000000 ____D C:\ProgramData\NCH Software
2015-09-21 23:55 - 2015-09-21 23:59 - 00000000 ____D C:\Users\John\AppData\Roaming\NCH Software
2015-09-21 23:55 - 2015-09-21 23:59 - 00000000 ____D C:\Program Files (x86)\NCH Software
2015-09-21 23:55 - 2015-09-21 23:55 - 00001220 _____ C:\Users\Public\Desktop\NCH Suite.lnk
2015-09-21 23:55 - 2015-09-21 23:55 - 00001100 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Switch Sound File Converter.lnk
2015-09-21 23:55 - 2015-09-21 23:55 - 00001088 _____ C:\Users\Public\Desktop\Switch Sound File Converter.lnk
2015-09-21 23:55 - 2015-09-21 23:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCH Software Suite
2015-09-21 23:52 - 2015-09-21 23:52 - 00656448 _____ (NCH Software) C:\Users\John\Downloads\switchsetup.exe
2015-09-21 09:22 - 2015-09-21 09:22 - 00000000 ____D C:\Program Files (x86)\FFmpeg for Audacity
2015-09-21 09:20 - 2015-09-21 09:22 - 09957947 _____ ( ) C:\Users\John\Downloads\ffmpeg-win-2.2.2.exe
2015-09-21 09:19 - 2015-09-21 09:19 - 00000000 ____D C:\Program Files (x86)\Lame For Audacity
2015-09-21 09:16 - 2015-09-21 23:46 - 00000000 ____D C:\Users\John\AppData\Roaming\Audacity
2015-09-21 09:16 - 2015-09-21 09:16 - 00000981 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk
2015-09-21 09:16 - 2015-09-21 09:16 - 00000969 _____ C:\Users\Public\Desktop\Audacity.lnk
2015-09-21 09:16 - 2015-09-21 09:16 - 00000000 ____D C:\Program Files (x86)\Audacity
2015-09-21 09:12 - 2015-09-21 09:18 - 00527423 _____ ( ) C:\Users\John\Downloads\Lame_v3.99.3_for_Windows.exe
2015-09-21 09:10 - 2015-09-21 09:18 - 01512927 _____ (Audacity Team ) C:\Users\John\Downloads\LADSPA_plugins-win-0.4.15.exe
2015-09-21 09:09 - 2015-09-21 09:14 - 25186399 _____ (Audacity Team ) C:\Users\John\Downloads\audacity-win-2.1.1.exe
2015-09-21 08:01 - 2015-09-21 08:01 - 00001083 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Content Viewer.lnk
2015-09-17 18:39 - 2015-09-17 18:39 - 00000000 ____D C:\Users\John\Documents\DVDFab Media Player
2015-09-17 18:37 - 2015-09-17 18:38 - 00000000 ____D C:\Program Files (x86)\DVDFab Media Player 2
2015-09-17 18:37 - 2015-09-17 18:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDFab Media Player 2
2015-09-17 18:33 - 2015-09-17 18:37 - 16332592 _____ (Fengtao Software Inc. ) C:\Users\John\Downloads\DVDFabMediaPlayer2503.exe
2015-09-17 17:59 - 2015-09-17 17:59 - 00000000 ____D C:\Users\John\AppData\Roaming\3605
2015-09-17 17:47 - 2015-09-17 17:47 - 00000000 ____D C:\Users\John\Documents\DVDFab9
2015-09-17 17:40 - 2015-09-17 17:40 - 00000176 _____ C:\Users\John\Desktop\key.DVDFabMediaPlayer
2015-09-17 17:36 - 2015-09-17 17:44 - 62608952 _____ (Fengtao Software Inc. ) C:\Users\John\Downloads\DVDFab9210.exe
2015-09-16 11:03 - 2015-09-16 11:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin
2015-09-16 09:39 - 2015-08-10 20:20 - 25191936 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2015-09-16 09:39 - 2015-08-10 20:14 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2015-09-16 09:39 - 2015-08-10 19:33 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2015-09-16 09:39 - 2015-08-10 19:20 - 19871232 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-10-02 09:36 - 2013-10-14 18:01 - 00000000 ____D C:\Users\John\Documents\Outlook Files
2015-10-02 09:33 - 2014-12-13 10:30 - 00000000 ____D C:\FRST
2015-10-02 09:15 - 2015-06-16 14:03 - 00000914 _____ C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-665846457-3026422965-1844958906-1001UA.job
2015-10-02 08:53 - 2014-09-27 10:44 - 00000830 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2015-10-02 08:46 - 2014-12-11 14:45 - 00000614 _____ C:\windows\Tasks\G2MUpdateTask-S-1-5-21-665846457-3026422965-1844958906-1006.job
2015-10-02 08:30 - 2014-08-12 10:28 - 00113880 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2015-10-02 08:21 - 2011-12-23 23:44 - 01204309 _____ C:\windows\WindowsUpdate.log
2015-10-02 08:11 - 2015-05-31 11:34 - 00000710 _____ C:\windows\Tasks\G2MUploadTask-S-1-5-21-665846457-3026422965-1844958906-1006.job
2015-10-02 02:06 - 2009-07-13 23:45 - 00022848 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-10-02 02:06 - 2009-07-13 23:45 - 00022848 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-10-02 02:00 - 2011-12-31 18:53 - 00000000 ___HD C:\Users\John\AppData\Local\Adobe
2015-10-02 00:27 - 2014-12-12 18:48 - 00000894 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-10-02 00:00 - 2014-07-16 10:14 - 00000000 ____D C:\Program Files (x86)\CyberPower PowerPanel Personal Edition
2015-10-01 17:18 - 2015-04-19 10:06 - 00000000 ____D C:\Users\DefaultAppPool
2015-10-01 17:11 - 2015-08-09 19:00 - 00059772 _____ C:\windows\SysWOW64\AppLog.log
2015-10-01 17:11 - 2015-08-09 10:07 - 00000000 ____D C:\Users\John\AppData\Roaming\Norton Utilities 16
2015-10-01 17:11 - 2015-08-09 10:04 - 00000278 _____ C:\windows\Tasks\NUSchedule.job
2015-10-01 17:11 - 2011-12-20 20:26 - 00000000 ____D C:\ProgramData\Temp
2015-10-01 13:00 - 2015-08-10 19:13 - 00000328 _____ C:\windows\Tasks\SpeedDiskSchedule.job
2015-10-01 11:15 - 2015-06-16 14:03 - 00000862 _____ C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-665846457-3026422965-1844958906-1001Core.job
2015-10-01 09:58 - 2014-12-13 10:31 - 00130967 _____ C:\Users\John\Downloads\Addition.txt
2015-10-01 09:44 - 2013-12-21 18:05 - 00186176 _____ C:\windows\system32\GDIPFONTCACHEV1.DAT
2015-10-01 06:58 - 2014-06-25 08:04 - 00000000 ____D C:\ProgramData\Malwarebytes Anti-Exploit
2015-09-30 22:28 - 2013-03-20 23:54 - 00000000 ___RD C:\Users\John\Dropbox
2015-09-30 22:28 - 2013-03-20 23:53 - 00000000 ____D C:\Users\John\AppData\Roaming\Dropbox
2015-09-30 22:17 - 2015-08-09 10:04 - 00000286 _____ C:\windows\Tasks\NUAutoUpdate.job
2015-09-30 22:17 - 2013-10-14 10:49 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-09-30 18:56 - 2014-10-13 08:41 - 00000000 ____D C:\windows\system32\Drivers\N360x64
2015-09-30 18:55 - 2015-08-23 01:00 - 00005570 _____ C:\windows\setupact.log
2015-09-30 18:55 - 2015-07-03 14:51 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton 360
2015-09-30 18:55 - 2014-10-13 08:42 - 00003206 _____ C:\windows\System32\Tasks\Norton WSC Integration
2015-09-30 18:54 - 2013-06-20 08:43 - 00065536 _____ C:\windows\system32\Ikeext.etl
2015-09-30 18:54 - 2011-12-20 20:17 - 00000000 ____D C:\ProgramData\NVIDIA
2015-09-30 18:54 - 2009-07-14 00:08 - 00000006 ____H C:\windows\Tasks\SA.DAT
2015-09-30 18:53 - 2015-08-24 08:18 - 00057296 _____ C:\windows\PFRO.log
2015-09-30 17:59 - 2013-10-15 16:37 - 00000000 ____D C:\Program Files\Common Files\Apple
2015-09-30 17:54 - 2012-01-02 18:48 - 00002563 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2015-09-30 17:53 - 2011-12-26 18:13 - 00004122 _____ C:\windows\System32\Tasks\Open URL by RoboForm
2015-09-30 17:53 - 2011-12-26 18:13 - 00003498 _____ C:\windows\System32\Tasks\Run RoboForm TaskBar Icon
2015-09-30 17:50 - 2014-02-01 10:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RoboForm
2015-09-30 09:55 - 2013-10-19 12:23 - 00000000 ____D C:\Users\John\Documents\wood working
2015-09-29 17:25 - 2015-04-15 18:20 - 00002145 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-09-28 23:24 - 2013-10-19 12:22 - 00000000 ____D C:\Users\John\Documents\Webshots
2015-09-28 17:11 - 2012-10-22 08:30 - 00000000 ____D C:\ProgramData\Roxio
2015-09-28 17:01 - 2012-10-22 08:41 - 00000000 ___HD C:\Users\John\AppData\Local\Corel_Corporation
2015-09-28 15:31 - 2015-04-20 10:06 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2015-09-28 10:46 - 2015-01-28 17:26 - 00001107 _____ C:\Users\John\Desktop\Webshots Wallpaper & Screensaver.lnk
2015-09-28 10:13 - 2011-12-20 20:35 - 00000000 ____D C:\windows\PRIndex
2015-09-27 20:50 - 2011-12-25 18:54 - 00000052 _____ C:\windows\SysWOW64\DOErrors.log
2015-09-27 20:48 - 2011-12-25 18:51 - 00000000 ____D C:\Users\John\AppData\Roaming\HP Support Assistant
2015-09-27 20:48 - 2011-12-25 00:10 - 00000000 ____D C:\Users\John\AppData\Roaming\HpUpdate
2015-09-27 15:07 - 2014-11-17 17:10 - 00000000 ____D C:\Program Files\CCleaner
2015-09-27 09:41 - 2013-10-18 19:24 - 00000000 ____D C:\Users\John\Documents\Laura
2015-09-24 15:53 - 2015-04-23 10:22 - 00000000 ____D C:\Users\John\Desktop\Tor Browser
2015-09-24 00:34 - 2013-10-17 16:02 - 00000000 ____D C:\Users\Linda.Linda-HP2012
2015-09-24 00:19 - 2015-04-20 10:06 - 00000935 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk
2015-09-24 00:19 - 2015-04-20 10:06 - 00000923 _____ C:\Users\Public\Desktop\TeamViewer 10.lnk
2015-09-23 13:42 - 2011-12-26 19:49 - 00000000 ___HD C:\Users\John\AppData\Local\Google
2015-09-22 12:56 - 2014-09-27 10:44 - 00003768 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater
2015-09-22 12:55 - 2012-07-23 23:29 - 00780488 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2015-09-22 12:55 - 2011-12-31 18:44 - 00142536 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-09-21 09:50 - 2009-07-14 00:13 - 00827712 _____ C:\windows\system32\PerfStringBackup.INI
2015-09-21 09:39 - 2013-10-19 12:19 - 00000000 ____D C:\Users\John\Documents\Software Licenses
2015-09-21 08:37 - 2011-12-24 10:52 - 00000000 ___HD C:\Users\John\AppData\Local\CrashDumps
2015-09-21 08:01 - 2011-12-31 18:50 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-09-18 23:29 - 2011-12-27 17:47 - 00000000 ____D C:\Users\John\AppData\Roaming\MediaMonkey
2015-09-18 21:51 - 2013-10-16 01:15 - 00000000 ____D C:\Program Files (x86)\Quicken
2015-09-18 09:38 - 2015-07-20 08:38 - 00007596 _____ C:\Users\John\AppData\Local\Resmon.ResmonCfg
2015-09-17 00:22 - 2014-12-12 18:48 - 00003894 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-09-17 00:22 - 2014-12-12 18:48 - 00003642 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-09-17 00:22 - 2014-12-12 18:48 - 00000898 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-09-16 11:05 - 2013-12-16 15:16 - 00000000 ____D C:\ProgramData\Package Cache
2015-09-16 11:04 - 2013-12-16 15:17 - 00000000 ____D C:\Program Files (x86)\Garmin
2015-09-16 11:03 - 2015-06-10 23:56 - 00003554 _____ C:\windows\System32\Tasks\GarminUpdaterTask
2015-09-16 09:44 - 2014-06-25 08:04 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Exploit
2015-09-02 09:27 - 2013-10-17 16:23 - 00000000 ____D C:\Users\Linda.Linda-HP2012\Documents\Outlook Files
2015-09-02 06:37 - 2015-05-31 11:34 - 00003744 _____ C:\windows\System32\Tasks\G2MUploadTask-S-1-5-21-665846457-3026422965-1844958906-1006
2015-09-02 06:37 - 2014-12-11 14:45 - 00003648 _____ C:\windows\System32\Tasks\G2MUpdateTask-S-1-5-21-665846457-3026422965-1844958906-1006
2015-09-02 01:06 - 2015-08-31 10:48 - 00000000 ____D C:\Users\John\Documents\Auto - Laura
==================== Files in the root of some directories =======
2013-12-22 11:44 - 2008-03-19 16:50 - 0097280 _____ () C:\Program Files (x86)\Common Files\pcsbClean.exe
2013-12-22 11:44 - 2008-03-06 20:31 - 0134656 _____ () C:\Program Files (x86)\Common Files\PCSBoff.exe
2014-02-21 23:50 - 2015-01-17 15:08 - 0000132 _____ () C:\Users\John\AppData\Roaming\Adobe BMP Format CS6 Prefs
2013-10-16 00:39 - 2014-02-07 23:38 - 0038488 _____ () C:\Users\John\AppData\Roaming\Comma Separated Values.ADR
2013-10-14 15:56 - 2013-10-15 18:16 - 0013041 _____ () C:\Users\John\AppData\Roaming\Comma Separated Values.CAL
2013-10-14 15:43 - 2013-10-21 17:00 - 0009353 _____ () C:\Users\John\AppData\Roaming\Comma Separated Values.EML
2014-02-06 08:51 - 2014-02-06 08:51 - 0000350 _____ () C:\Users\John\AppData\Roaming\DiskSpaceSaverApplog.txt
2014-10-20 18:47 - 2014-10-03 21:58 - 14286848 _____ () C:\Users\John\AppData\Roaming\Sandra.mdb
2015-09-21 23:59 - 2015-09-21 23:59 - 0001181 _____ () C:\Users\John\AppData\Roaming\trace_FilterInstaller.txt
2015-09-21 23:59 - 2015-09-21 23:59 - 0000000 _____ () C:\Users\John\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt
2014-02-15 19:08 - 2015-08-22 15:43 - 0018432 _____ () C:\Users\John\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-07-20 08:38 - 2015-09-18 09:38 - 0007596 _____ () C:\Users\John\AppData\Local\Resmon.ResmonCfg
2014-06-04 23:58 - 2014-06-05 01:34 - 4224000 _____ () C:\Users\John\AppData\Local\rx_audio.Cache
2014-05-27 10:09 - 2014-06-05 01:34 - 82116608 _____ () C:\Users\John\AppData\Local\rx_image32.Cache
2012-10-22 08:42 - 2013-10-21 19:55 - 0000952 ___SH () C:\ProgramData\KGyGaAvL.sys
2013-01-04 18:04 - 2013-01-04 18:05 - 0000319 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
2014-10-14 04:49 - 2014-10-14 04:49 - 0002465 _____ () C:\ProgramData\regid.2012-08.com.Corel,Roxio_76C7858E-078C-4C49-AB1A-2A7072664935.swidtag
2011-12-26 18:05 - 2011-12-26 18:05 - 0006774 _____ () C:\ProgramData\xmlC960.tmp
2011-12-26 18:05 - 2011-12-26 18:05 - 0013433 _____ () C:\ProgramData\xmlCC3F.tmp
2011-12-26 18:05 - 2011-12-26 18:05 - 0001886 _____ () C:\ProgramData\xmlCE14.tmp
Files to move or delete:
====================
C:\Users\John\All of Grace.EXE
C:\Users\John\Book of Common Prayer.EXE
C:\Users\John\Book of Enoch.EXE
C:\Users\John\Communion with God.EXE
C:\Users\John\Contents of Supplements and Outlines.EXE
C:\Users\John\Creeds of the Christian Church.EXE
C:\Users\John\Darby Bible.EXE
C:\Users\John\Decline and Fall of the Roman Empire.EXE
C:\Users\John\Discourse concerning Communion with God.EXE
C:\Users\John\Easton's Bible Dictionary.EXE
C:\Users\John\Enemy Recon.EXE
C:\Users\John\Finney's Systematic Theology.EXE
C:\Users\John\God's Prophetic Blueprint.EXE
C:\Users\John\GOODSALT Christmas Collection.exe
C:\Users\John\Hitchcock's Bible Names Dictionary.EXE
C:\Users\John\Holy Spirit and His Work.EXE
C:\Users\John\Hymns.EXE
C:\Users\John\Life of Christ.EXE
C:\Users\John\Mathew Henry's Concise Commentary.EXE
C:\Users\John\On the Way to God, Method of Prayer.EXE
C:\Users\John\Preface To Romans.EXE
C:\Users\John\Psalms and Hymns.EXE
C:\Users\John\Sermon of Threefold Righteousness.EXE
C:\Users\John\Sketches of Church History.EXE
C:\Users\John\The Christian's Secret of a Happy Life.EXE
C:\Users\John\The Correct Interpetation of the Book of Job.EXE
C:\Users\John\The Fountain of Life Opened Up.EXE
C:\Users\John\The Practice of the Presence of God.EXE
C:\Users\John\The Song of Songs.EXE
C:\Users\John\Training of the Twelve.EXE
C:\Users\John\Young's Literal Translation of the Bible - Preface.EXE
C:\Users\John\Young's Literal Translation of the Bible.EXE
Some files in TEMP:
====================
C:\Users\John\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmphyhdii.dll
C:\Users\John\AppData\Local\Temp\IntResource64.dll
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\SysWOW64\wininit.exe => File is digitally signed
C:\windows\explorer.exe => File is digitally signed
C:\windows\SysWOW64\explorer.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\SysWOW64\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\SysWOW64\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\SysWOW64\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\dnsapi.dll => File is digitally signed
C:\windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
nointegritychecks: ==> "IntegrityChecks" is disabled. <===== ATTENTION
LastRegBack: 2015-10-01 02:08
==================== End of FRST.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version:30-09-2015
Ran by John (2015-10-02 09:39:13)
Running from C:\Users\John\Desktop
Windows 7 Ultimate Service Pack 1 (X64) (2011-12-24 04:45:04)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-665846457-3026422965-1844958906-500 - Administrator - Disabled)
Guest (S-1-5-21-665846457-3026422965-1844958906-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-665846457-3026422965-1844958906-1008 - Limited - Enabled)
John (S-1-5-21-665846457-3026422965-1844958906-1001 - Administrator - Enabled) => C:\Users\John
Linda (S-1-5-21-665846457-3026422965-1844958906-1006 - Administrator - Enabled) => C:\Users\Linda.Linda-HP2012
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Norton 360 (Disabled - Out of date) {53C7D717-52E2-B95E-FA61-6F32ECC805DB}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Norton 360 (Disabled - Out of date) {E8A636F3-74D8-B6D0-C0D1-5440974F4F66}
FW: Norton 360 (Disabled) {6BFC5632-188D-B806-D13E-C607121B42A0}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
4Card Recovery (HKLM-x32\...\{6FE4072A-E968-438D-967A-F641BE28B279}_is1) (Version: 2.0 - 4CardRecovery)
4Videosoft iPhone Transfer Platinum 6.0.18 (HKLM-x32\...\{E16D939E-1E8B-44ca-A57A-9A8768BFAA0E}_is1) (Version: 6.0.18 - 4Videosoft Studio)
ABBYY FineReader 9.0 Sprint (HKLM-x32\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY)
ABBYY FineReader 9.0 Sprint (x32 Version: 9.01.513.58212 - ABBYY) Hidden
Adobe Acrobat X Pro - English, Français, Deutsch (HKLM-x32\...\{AC76BA86-1033-F400-7760-000000000005}) (Version: 10.1.15 - Adobe Systems)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 16.0.0.273 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 2.1.2.232 - Adobe Systems Incorporated)
Adobe Creative Suite 6 Master Collection (HKLM-x32\...\{E8AD3069-9EB7-4BA8-8BFE-83F4E69355C0}) (Version: 6 - Adobe Systems Incorporated)
Adobe Flash Player 19 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 19.0.0.185 - Adobe Systems Incorporated)
Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.185 - Adobe Systems Incorporated)
Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Photoshop Lightroom 3.6 64-bit (HKLM\...\{D4F66BBA-D79E-4F11-9B06-70C3D75A2958}) (Version: 3.6.1 - Adobe)
Adobe Story (HKLM-x32\...\com.adobe.AdobeStory.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.0.571 - Adobe Systems Incorporated)
Adobe Widget Browser (HKLM-x32\...\com.adobe.WidgetBrowser.E7BED6E5DDA59983786DD72EBFA46B1598278E07.1) (Version: 2.0 Build 230 - Adobe Systems Incorporated.)
Adobe® Content Viewer (HKLM-x32\...\com.adobe.dmp.contentviewer) (Version: 3.4.3 - Adobe Systems, Incorporated)
Agatha Christie - Peril at End House (x32 Version: 2.2.0.95 - WildTangent) Hidden
AllShare Framework DMS (HKLM\...\{83232C27-8C3F-44A5-9EB2-BB7161228ADD}) (Version: 1.3.23 - Samsung)
Amazon MP3 Downloader 1.0.17 (HKLM-x32\...\Amazon MP3 Downloader) (Version: 1.0.17 - Amazon Services LLC)
AMV Converter Studio V3.1.1 (HKLM-x32\...\{550B69DF-9C7D-4988-9535-3D7526BC0A4E}_is1) (Version: 3.1.1 - Apowersoft)
ANT Drivers Installer x64 (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
AOL Toolbar (HKLM-x32\...\AOL Toolbar) (Version: - )
AOL Toolbar (HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\AOL Toolbar) (Version: - )
Apowersoft Screen Recorder Pro V1.1.7 (HKLM-x32\...\{BADAA284-1D15-4EBB-B1E5-7C86603CDBBB}_is1) (Version: 1.1.7 - Apowersoft)
Apple Application Support (32-bit) (HKLM-x32\...\{A50679D9-6CBD-4FCD-BACB-62EF3894F6F3}) (Version: 4.0.3 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{1F72FDD5-A069-45B4-928F-D0F16492DC69}) (Version: 4.0.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{FD244E19-6EFE-4A2D-948A-0D45D4C168BE}) (Version: 9.0.0.26 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.)
Audacity 2.1.1 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.1 - Audacity Team)
Audials (HKLM-x32\...\{6BF7D454-624A-4DBF-A682-071F2DEEE967}) (Version: 12.1.3102.200 - Audials AG)
AutoCAD 2014 - English (Version: 19.1.108.0 - Autodesk) Hidden
AutoCAD 2014 - English (Version: 19.1.18.0 - Autodesk) Hidden
AutoCAD 2014 Help - English (Version: 19.1.18.0 - Autodesk) Hidden
AutoCAD 2014 Language Pack - English (Version: 19.1.18.0 - Autodesk) Hidden
AutoCAD Raster Design 2014 (Version: 19.1.18.0 - Autodesk) Hidden
Autodesk 360 (HKLM\...\{52B28CAD-F49D-47BA-9FFE-29C2E85F0D0B}) (Version: 4.7.0.802 - Autodesk)
Autodesk 3ds Max 2014 English Documentation (HKLM-x32\...\{2277CDAC-95D8-4A3B-AEE0-E2341E86C2A0}) (Version: 16.0 - Autodesk)
Autodesk 3ds Max Design 2014 (HKLM\...\Autodesk 3ds Max Design 2014) (Version: 16.0.420.0 - Autodesk)
Autodesk 3ds Max Design 2014 (Version: 16.0.420.0 - Autodesk) Hidden
Autodesk 3ds Max Design 2014 64-bit Populate Data (HKLM\...\{2BCAFE22-BE25-4437-815C-54596D630397}) (Version: 1.0.0.1 - Autodesk)
Autodesk Alias Design 2014 64-bit (HKLM\...\Autodesk Alias Design 2014 64-bit) (Version: 20.0.0.77 - Autodesk)
Autodesk Alias Design 2014 64-bit (Version: 20.0.0.77 - Autodesk) Hidden
Autodesk App Manager (HKLM-x32\...\{C070121A-C8C5-4D52-9A7D-D240631BD433}) (Version: 1.1.0 - Autodesk)
Autodesk AutoCAD 2014 - English (HKLM\...\AutoCAD 2014 - English) (Version: 19.1.18.0 - Autodesk)
Autodesk AutoCAD 2014 - English SP1 (HKLM\...\AutoCAD 2014 - English SP1) (Version: 1 - Autodesk)
Autodesk AutoCAD 2014 Help - English (HKLM\...\AutoCAD 2014 Help - English) (Version: 19.1.18.0 - Autodesk)
Autodesk AutoCAD Raster Design 2014 (HKLM\...\AutoCAD Raster Design 2014) (Version: 19.1.18.0 - Autodesk)
Autodesk Backburner 2014 (HKLM-x32\...\{3D347E6D-5A03-4342-B5BA-6A771885F379}) (Version: 14.0.0.0 - Autodesk, Inc.)
Autodesk Civil View for 3ds Max Design 2014 (HKLM-x32\...\{B12531BD-CAB2-49E6-8D37-EEC970B45BA8}) (Version: 2.0.1.0 - Autodesk)
Autodesk Composite 2014 (HKLM\...\Autodesk Composite 2014) (Version: 9.0.0.0 - Autodesk)
Autodesk Composite 2014 (Version: 9.0.0.0 - Autodesk) Hidden
Autodesk Content Service (HKLM-x32\...\Autodesk Content Service) (Version: 3.1.3.0 - Autodesk)
Autodesk Content Service (x32 Version: 3.1.3.0 - Autodesk) Hidden
Autodesk Content Service Language Pack (x32 Version: 3.1.3.0 - Autodesk) Hidden
Autodesk DirectConnect 2014 64-bit (HKLM\...\Autodesk DirectConnect 2014 64-bit) (Version: 8.0.56.1 - Autodesk)
Autodesk DirectConnect 2014 64-bit (Version: 8.0.56.1 - Autodesk) Hidden
Autodesk Essential Skills Movies for 3ds Max Design 2014 64-bit (HKLM\...\{280881E4-0E3C-40E6-9B76-E05A865551BB}) (Version: 1.1.0.0 - Autodesk)
Autodesk Featured Apps (HKLM-x32\...\{F732FEDA-7713-4428-934B-EF83B8DD65D0}) (Version: 1.1.0 - Autodesk)
Autodesk Inventor Server Engine for 3ds Max Design 2014 64-bit (HKLM\...\{CBC74B06-FE35-482C-89D6-CE95A0289C06}) (Version: 16.0 - Autodesk)
Autodesk Material Library 2014 (HKLM-x32\...\{644F9B19-A462-499C-BF4D-300ABC2A28B1}) (Version: 4.0.19.0 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2014 (HKLM-x32\...\{51BF3210-B825-4092-8E0D-66D689916E02}) (Version: 4.0.19.0 - Autodesk)
Autodesk Material Library Low Resolution Image Library 2014 (HKLM-x32\...\{5C29CC1F-218F-4C30-948A-11066CAC59FB}) (Version: 4.0.19.0 - Autodesk)
Autodesk Material Library Medium Resolution Image Library 2014 (HKLM-x32\...\{A0633D4E-5AF2-4E3E-A70A-FE9C2BD8A958}) (Version: 4.0.19.0 - Autodesk)
Autodesk Mudbox 2014 (HKLM\...\Autodesk Mudbox 2014) (Version: 8.0.0.1010 - Autodesk)
Autodesk Mudbox 2014 (Version: 8.0.0.1010 - Autodesk) Hidden
Autodesk ReCap (HKLM\...\Autodesk ReCap) (Version: 1.0.43.27 - Autodesk)
Autodesk ReCap (Version: 1.0.43.27 - Autodesk) Hidden
Autodesk ReCap Language Pack-English (Version: 1.0.43.27 - Autodesk) Hidden
Autodesk Revit Interoperability for 3ds Max 2014 (HKLM\...\Autodesk Revit Interoperability for 3ds Max 2014) (Version: 13.02.15161 - Autodesk)
Autodesk Revit Interoperability for 3ds Max 2014 (Version: 13.02.15161 - Autodesk) Hidden
Autodesk Revit Interoperability for Showcase 2014 (HKLM\...\Autodesk Revit Interoperability for Showcase 2014) (Version: 13.02.15161 - Autodesk)
Autodesk Revit Interoperability for Showcase 2014 (Version: 13.02.15161 - Autodesk) Hidden
Autodesk Showcase 2014 64-bit (HKLM\...\Autodesk Showcase 2014 64-bit) (Version: 8.0.0.314 - Autodesk)
Autodesk Showcase 2014 64-bit (Version: 8.0.0.314 - Autodesk) Hidden
Autodesk SketchBook Designer 2014 (HKLM\...\Autodesk SketchBook Designer 2014) (Version: 4.00.0000 - Autodesk)
Autodesk SketchBook Designer 2014 (Version: 4.00.0000 - Autodesk) Hidden
Autodesk SketchBook Designer for AutoCAD 2014 (HKLM\...\Autodesk SketchBook Designer for AutoCAD 2014) (Version: 4.00.0000 - Autodesk)
Autodesk SketchBook Designer for AutoCAD 2014 (Version: 4.00.0000 - Autodesk) Hidden
Autodesk Workflows 2014 (HKLM\...\{11672AB2-3D48-4D38-9123-719E5FF93333}) (Version: 4.0.19.0 - Autodesk, Inc.)
Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Bejeweled 3 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Bing Bar (HKLM-x32\...\{3365E735-48A6-4194-9988-CE59AC5AE503}) (Version: 7.3.132.0 - Microsoft Corporation)
Bing Rewards Client Installer (x32 Version: 16.0.345.0 - Microsoft Corporation) Hidden
bl (x32 Version: 1.0.0 - Your Company Name) Hidden
Blackhawk Striker 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Blasterball 3 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Blio (HKLM-x32\...\{9EAAB95B-17B6-43CF-B4E9-4A90937C83FD}) (Version: 3.2.9594 - K-NFB Reading Technology, Inc.)
Bluetooth by hp (HKLM\...\{436E0B79-2CFB-4E5F-9380-E17C1B25D0C5}) (Version: 6.3.0.7600 - Broadcom Corporation)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Bounce Symphony (x32 Version: 2.2.0.95 - WildTangent) Hidden
Build-a-lot 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Cake Mania (x32 Version: 2.2.0.95 - WildTangent) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.10 - Piriform)
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Citrix Online Launcher (HKLM-x32\...\{C1D35D06-E60A-4834-9B52-F1F3E65D03C9}) (Version: 1.0.239 - Citrix)
CompuPic Pro (HKLM-x32\...\CompuPic Pro) (Version: - )
Contents (x32 Version: 1.0.0.93 - Corel Corporation) Hidden
Corel FastFlick (HKLM-x32\...\_{10EC8494-8A92-49D8-9677-2483EB01F7F1}) (Version: 1.0.0.93 - Corel Corporation)
Corel Paint it! - Content (x32 Version: 1.0 - Your Company Name) Hidden
Corel Paint it! - Core (x32 Version: 1.0 - Corel Corporation) Hidden
Corel Paint it! - ICA (x32 Version: 1.0 - Corel Corporation) Hidden
Corel Paint it! - Langauge (x32 Version: 1.0 - Your Company Name) Hidden
Corel PaintShop Pro X6 (HKLM-x32\...\_{166D1CB6-DD8A-40DD-9E25-4D31D2D6DE4D}) (Version: 16.2.0.20 - Corel Corporation)
Corel PaintShop Pro X6 (x32 Version: 16.2.0.20 - Corel Corporation) Hidden
Creator NXT 3 Content (x32 Version: 16.0.002 - Roxio) Hidden
CyberLink Media Suite Premium (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 7.0.3617 - CyberLink Corp.)
CyberLink PhotoDirector 3 (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.3618 - CyberLink Corp.)
CyberLink PowerDVD 14 (HKLM-x32\...\{32C8E300-BDB4-4398-92C2-E9B7D8A233DB}) (Version: 14.0.4223.58 - CyberLink Corp.)
CyberLink YouCam 6 (HKLM-x32\...\{A9CEDD6E-4792-493e-BB35-D86D2E188A5A}) (Version: 6.0.2728.0 - CyberLink Corp.)
CyberPower PowerPanel Personal Edition 1.3.3 (HKLM-x32\...\{972F23F4-F293-4074-853D-125A59EB356D}) (Version: 1.3.3 - Cyber Power Systems, Inc.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Data Lifeguard Diagnostic for Windows 1.27 (HKLM-x32\...\{519C4DB6-B53B-4F5C-8297-89B2BE949FA5}_is1) (Version: - Western Digital Corporation)
Dazzle Video Capture DVC100 X64 Driver 1.06 (x32 Version: 1.06.0000 - Pinnacle) Hidden
Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95 - WildTangent) Hidden
Dora's World Adventure (x32 Version: 2.2.0.95 - WildTangent) Hidden
Dropbox (HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\Dropbox) (Version: 3.10.6 - Dropbox, Inc.)
DVDFab Media Player 2 (HKLM-x32\...\DVDFab Media Player 2_is1) (Version: 2.5.0.3 - Fengtao Software Inc.)
DVDneXtCOPYneXtTech (HKLM-x32\...\DVDneXtCOPYneXtTech) (Version: - )
Elevated Installer (x32 Version: 4.1.8.0 - Garmin Ltd or its subsidiaries) Hidden
Episode Downloader V3.1.9 (HKLM-x32\...\{F6231880-51B3-4CB2-BE82-355ADFD575BB}_is1) (Version: 3.1.9 - Apowersoft)
Epson Connect (HKLM-x32\...\{64BA551C-9AF6-495C-93F3-D1270E0045FC}) (Version: - )
Epson Customer Participation (HKLM\...\{814FA673-A085-403C-9545-747FC1495069}) (Version: 1.0.0.0 - SEIKO EPSON CORPORATION)
Epson Download Navigator (HKLM-x32\...\{10F63395-157F-4B93-AB4D-702A2FF11942}) (Version: 1.0.1 - SEIKO EPSON CORPORATION)
Epson Event Manager (HKLM-x32\...\{8ED43F7E-A8F6-4898-AF11-B6158F2EDF94}) (Version: 2.50.0000 - SEIKO EPSON CORPORATION)
Epson FAX Utility (HKLM-x32\...\{0CBE6C93-CB2E-4378-91EE-12BE6D4E2E4A}) (Version: 1.20.00 - SEIKO EPSON CORPORATION)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation)
EPSON WP-4530 Series Printer Uninstall (HKLM\...\EPSON WP-4530 Series) (Version: - SEIKO EPSON Corporation)
EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.4j - SEIKO EPSON CORPORATION)
eReg (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden
ESPlanner Plus (HKLM-x32\...\{5CB292DF-4903-4167-B3BE-6858CF6CE149}) (Version: 2.27.1 - Economic Security Planning)
Farm Frenzy (x32 Version: 2.2.0.95 - WildTangent) Hidden
FARO LS 1.1.500.1 (64bit) (HKLM-x32\...\{AC7FAF34-D67B-428E-B65B-82209180D3C5}) (Version: 5.0.1.28807 - FARO Scanner Production)
FATE - The Traitor Soul (x32 Version: 2.2.0.95 - WildTangent) Hidden
FFmpeg (Windows) for Audacity version 2.2.2 (HKLM-x32\...\{9C7E31E3-017F-434C-AC40-24431A354A1E}_is1) (Version: 2.2.2 - )
File Type Assistant (HKLM-x32\...\Trusted Software Assistant_is1) (Version: 2014.5.6.0 - ) <==== ATTENTION
Free Music Downloader V3.3.0 (HKLM-x32\...\{3CAC890B-8748-4EB5-A83E-50CFF6C6A7D7}_is1) (Version: 3.3.0 - Apowersoft)
Garmin City Navigator North America NT 2015.40 (HKLM-x32\...\{502AF3EA-34FA-4BD9-BAEF-3F8D8C5E3CCC}) (Version: 2.0.0.0 - Garmin Ltd or its subsidiaries)
Garmin Express (HKLM-x32\...\{44d9dfc0-3a4a-4439-870f-f97550a9bc8d}) (Version: 4.1.8.0 - Garmin Ltd or its subsidiaries)
Garmin Express (x32 Version: 4.1.8.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express Tray (x32 Version: 4.1.8.0 - Garmin Ltd or its subsidiaries) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 45.0.2454.101 - Google Inc.)
Google Earth (HKLM-x32\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google)
Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Earth Pro (HKLM-x32\...\{44FC61F0-2F8A-11E3-8CAE-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden
GoToMeeting 7.2.5.3356 (HKU\S-1-5-21-665846457-3026422965-1844958906-1006\...\GoToMeeting) (Version: 7.2.5.3356 - CitrixOnline)
H&R Block Deluxe + Efile + State 2014 (HKLM-x32\...\{BDA77C08-60A6-4AAB-B5A9-849ECF399A49}) (Version: 14.05.7401 - HRB Technology, LLC.)
H&R Block Iowa 2013 (HKLM-x32\...\{30A6A2A7-7B5B-4595-98B4-6B6D3F376531}) (Version: 1.13.3501 - HRB Technology, LLC.)
H&R Block Iowa 2014 (HKLM-x32\...\{4B90D57B-133C-4D29-8C0B-2408BCB1E2C6}) (Version: 1.14.3301 - HRB Technology, LLC.)
H&R Block Premium + Efile + State 2013 (HKLM-x32\...\{7304A91F-F4AF-41B3-85B6-C5923EDBF899}) (Version: 13.07.7601 - HRB Technology, LLC.)
HDR Express 3 (HKLM-x32\...\HDR Express 3) (Version: 3.0.0.11677 - Unified Color Technologies)
HDR Express v2.0 (x32 Version: 1.0.0.0 - Corel Corporation) Hidden
Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.2.4 - WildTangent)
HP LinkUp (HKLM-x32\...\{DB3147AB-4024-4773-8EC0-A1FE5B44933D}) (Version: 2.01.028 - Hewlett-Packard)
HP MediaSmart/TouchSmart Netflix (HKLM-x32\...\{BB760C1D-98F4-4E38-8CC4-3B67329AA981}) (Version: 1.0.6.0 - Hewlett-Packard)
HP MovieStore (HKLM-x32\...\{9008D736-35CA-40DB-A2BE-5F32D954E5AA}) (Version: 2.0 - Hewlett-Packard)
HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard)
HP Setup (HKLM-x32\...\{210A03F5-B2ED-4947-B27E-516F50CBB292}) (Version: 8.6.4530.3651 - Hewlett-Packard Company)
HP Setup Manager (HKLM-x32\...\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.1.13253.3682 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{EE202411-2C26-49E8-9784-1BC1DBF7DE96}) (Version: 7.0.39.15 - Hewlett-Packard Company)
HP Support Information (HKLM-x32\...\{7F2A11F4-EAE8-4325-83EC-E3E99F85169E}) (Version: 10.1.1000 - Hewlett-Packard)
HP Support Solutions Framework (HKLM-x32\...\{44157EB3-D8D0-4BB1-B0F5-AD2C38814ED1}) (Version: 11.51.0027 - Hewlett-Packard Company)
HP Update (HKLM-x32\...\{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}) (Version: 5.003.001.001 - Hewlett-Packard)
HP Vision Hardware Diagnostics (HKLM\...\{D79A02E9-6713-4335-9668-AAC7474C0C0E}) (Version: 2.5.0.0 - Hewlett-Packard)
Hulu Desktop (HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\HuluDesktop) (Version: 0.9.13 - Hulu LLC)
Hulu Desktop (HKU\S-1-5-21-665846457-3026422965-1844958906-1006\...\HuluDesktop) (Version: 0.9.13 - Hulu LLC)
ICA (x32 Version: 1.0.0.93 - Corel Corporation) Hidden
ICA (x32 Version: 16.2.0.20 - Corel Corporation) Hidden
iCloud (HKLM\...\{709A2D23-C25E-47B5-9268-CB6FEE648504}) (Version: 4.1.1.53 - Apple Inc.)
Instant Photo Effects 2.0 (HKLM-x32\...\Photon) (Version: - )
Intel Android Device USB driver (HKLM\...\Intel Android Device USB driver) (Version: 1.1.5 - Intel)
Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.1.0.1008 - Intel Corporation)
Internet Explorer (Enable DEP) (HKLM\...\{a9264802-8a7a-40fe-a135-5c6d204aed7a}.sdb) (Version: - )
IPM (x32 Version: 1.0 - Corel Corporation) Hidden
IPM_PSP_COM (x32 Version: 16.2.0.20 - Corel Corporation) Hidden
IPM_PSP_COM64 (Version: 16.2.0.20 - Corel Corporation) Hidden
IPM_VS_Pro (x32 Version: 1.0 - Corel Corporation) Hidden
iSEEK AnswerWorks English Runtime (HKLM-x32\...\{18A8E78B-9EF2-496E-B310-BCD8E4C1DAB3}) (Version: 010.000.0101 - Vantage Linguistics)
iTunes (HKLM\...\{96984DE8-1DB8-425C-AC8C-3098BC696F04}) (Version: 12.3.0.44 - Apple Inc.)
iTurnsPro (HKLM-x32\...\iTurns) (Version: 2.1.0.3 - DVDneXtCOPY)
iZotope Music & Speech Cleaner (HKLM-x32\...\iZotope Music & Speech Cleaner_is1) (Version: 1.00 - iZotope, Inc.)
Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Kobo (HKLM-x32\...\Kobo) (Version: 1.6 - Kobo Inc.)
LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.3609 - CyberLink Corp.)
LabelPrint (x32 Version: 2.5.3609 - CyberLink Corp.) Hidden
LADSPA_plugins-win-0.4.15 (HKLM-x32\...\LADSPA_plugins-win_is1) (Version: - Audacity Team)
LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - )
Logitech SetPoint 6.65 (HKLM\...\sp6) (Version: 6.65.62 - Logitech)
Logos Bible Software (HKLM-x32\...\{98505BCD-17D6-4324-99AE-991263958AB4}) (Version: 6.80.27 - Faithlife Corporation)
Machinist 2 (HKLM-x32\...\Machinist 2) (Version: - )
Macrium Reflect Home Edition (HKLM\...\MacriumReflect) (Version: 6.0 - Paramount Software (UK) Ltd.)
Macrium Reflect Home Edition (Version: 6.0.567 - Paramount Software (UK) Ltd.) Hidden
Mah Jong Medley (x32 Version: 2.2.0.95 - WildTangent) Hidden
Malwarebytes Anti-Exploit version 1.07.1.1015 (HKLM\...\Malwarebytes Anti-Exploit_is1) (Version: 1.07.1.1015 - Malwarebytes)
Malwarebytes Anti-Malware version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
MediaMonkey 4.1 (HKLM-x32\...\MediaMonkey_is1) (Version: 4.1 - Ventis Media Inc.)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Access database engine 2010 (English) (HKLM-x32\...\{90140000-00D1-0409-0000-0000000FF1CE}) (Version: 14.0.6029.1000 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft MapPoint North America 2013 (HKLM-x32\...\{C82185E8-C27B-4EF4-2013-1111BC2C2B6D}) (Version: 19.0.18.1100 - Microsoft Corporation)
Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.5.166.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Project Professional 2010 (HKLM\...\Office14.PRJPROR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visio Professional 2010 (HKLM\...\Office14.VISIOR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Mixing Console 101 version 1.10 (HKLM-x32\...\{9C4C5E37-E07F-4F41-B816-0C3844798EE8}_is1) (Version: 1.10 - RFMedia)
MKV Converter Studio V2.5.3 (HKLM-x32\...\{D7AC932D-297F-46C8-9834-FA23854CC150}_is1) (Version: 2.5.3 - Apowersoft)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Mystery P.I. - Stolen in San Francisco (x32 Version: 2.2.0.95 - WildTangent) Hidden
Namco All-Stars PAC-MAN (x32 Version: 2.2.0.95 - WildTangent) Hidden
NETGEAR Genie (HKLM-x32\...\NETGEAR Genie) (Version: 2.3.1.57 - NETGEAR Inc.)
Norton 360 (HKLM-x32\...\N360) (Version: 22.5.4.24 - Symantec Corporation)
Norton Identity Safe (HKLM-x32\...\NST) (Version: 2014.7.11.42 - Symantec Corporation)
Norton Management (HKLM-x32\...\MCLIENT) (Version: 3.2.2.12 - Symantec Corporation)
Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.1.17869 - Symantec Corporation)
Norton Utilities 16 (HKLM-x32\...\Norton Utilities 16_is1) (Version: 16.0 - Symantec Corporation)
Nuance Cloud Connector (HKLM-x32\...\{4C99EAAA-A846-4029-B500-312C5937D714}) (Version: 3.2.1026 - Nuance Communications, Inc.)
Nuance OmniPage Ultimate (HKLM-x32\...\{419512F9-D5E7-4ED2-BF99-E7F2C0176B6A}) (Version: 19.00.0000 - Nuance Communications, Inc.)
Nuance PDF Create 8 (HKLM\...\{D8AD8411-A273-4560-B756-A418ED4910AD}) (Version: 8.10.6293 - Nuance Communications, Inc.)
Nuance PDF Create 8 (HKLM-x32\...\{D8AD8411-A273-4560-B756-A418ED4910AD}) (Version: 8.10.6293 - Nuance Communications, Inc.)
NVIDIA 3D Vision Controller Driver 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.30 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.4.5.57 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.5.57 - NVIDIA Corporation)
NVIDIA Graphics Driver 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.30 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Paint it! (HKLM-x32\...\_{F0A8CBC2-B9B6-40CF-B40F-29B3BA188748}) (Version: 1.0 - Corel Corporation)
PC Study Bible (remove only) (HKLM-x32\...\PC Study Bible) (Version: - )
PC Study Bible-'Utley Gospels Commentary - Free' version 5.0 (HKLM-x32\...\{78837641-28F0-4FEC-9CAC-869325B5C3D9}_is1) (Version: 5.0 - Biblesoft, Inc.)
PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
Pdf995 (installed by H&R Block) (HKLM-x32\...\Pdf995) (Version: - )
PdfEdit995 (installed by H&R Block) (HKLM-x32\...\PdfEdit995) (Version: - )
Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden
ph (x32 Version: 1.0.0 - Your Company Name) Hidden
Photo Station Uploader (remove only) (HKLM-x32\...\Photo Station Uploader) (Version: - Synology)
PhotoNow! (HKLM-x32\...\InstallShield_{D36DD326-7280-11D8-97C8-000129760CBE}) (Version: 1.1.7717 - CyberLink Corp.)
PhotoNow! (x32 Version: 1.1.7717 - CyberLink Corp.) Hidden
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95 - WildTangent) Hidden
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
PlayReady PC Runtime x86 (HKLM-x32\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation)
Plex Media Server (HKLM-x32\...\{bcb7db0e-500f-445b-8200-bdde7f3c7f08}) (Version: 0.9.910 - Plex, Inc.)
Plex Media Server (x32 Version: 0.9.910 - Plex, Inc.) Hidden
Poker Superstars III (x32 Version: 2.2.0.95 - WildTangent) Hidden
Polar Bowler (x32 Version: 2.2.0.95 - WildTangent) Hidden
Polar Golfer (x32 Version: 2.2.0.95 - WildTangent) Hidden
Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.4817 - CyberLink Corp.)
Power2Go (x32 Version: 6.1.4817 - CyberLink Corp.) Hidden
PowerDesk 9 (HKLM-x32\...\{C4E1D1E5-0F67-463D-BD07-A24742AA7469}) (Version: 9.0.0.0 - Avanquest North America Inc.)
PowerDirector (HKLM-x32\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 8.0.4527 - CyberLink Corp.)
PowerDirector (x32 Version: 8.0.4527 - CyberLink Corp.) Hidden
PSPPContent (x32 Version: 16.2.0.20 - Corel Corporation) Hidden
PSPPHelp (x32 Version: 16.2.0.20 - Corel Corporation) Hidden
PSPPro64 (Version: 16.2.0.20 - Corel Corporation) Hidden
Punch! Home and Landscape Design Architectural Series (HKLM-x32\...\{1FF64EFB-287B-4726-AE92-346968DD5C0C}) (Version: 16.0.3 - Punch! Software)
PxMergeModule (x32 Version: 1.00.0000 - Your Company Name) Hidden
Quicken 2014 (HKLM-x32\...\{0877F595-254F-45F4-991D-3F72E86B17CE}) (Version: 23.1.7.6 - Intuit)
Quicken 2015 (HKLM-x32\...\{00C2D443-43D9-4550-ABEA-318288E23E57}) (Version: 24.1.8.1 - Intuit)
Quicken WillMaker Plus 2014 (HKLM-x32\...\{44160FDE-C190-45C1-B8E1-23F00228E572}) (Version: 1.0.0.0 - Nolo)
QuickTime 7 (HKLM-x32\...\{80CEEB1E-0A6C-45B9-A312-37A1D25FDEBC}) (Version: 7.78.80.95 - Apple Inc.)
RBVirtualFolder64Inst (Version: 1.00.0000 - Roxio, Inc.) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6251 - Realtek Semiconductor Corp.)
Recovery Manager (x32 Version: 5.5.3621 - CyberLink Corp.) Hidden
Remote Graphics Receiver (HKLM-x32\...\{16FC3056-90C0-4757-8A68-64D8DA846ADA}) (Version: 5.4.5 - Hewlett-Packard)
RoboForm 7-9-16-7 (All Users) (HKLM-x32\...\AI RoboForm) (Version: 7-9-16-7 - Siber Systems)
Roxio Creator NXT Pro 3 (HKLM-x32\...\{7B4B9450-39C8-454A-AA2D-6548EE4D21EB}) (Version: 16.0.50.2 - Roxio)
Roxio Virtual Drive x64 (Version: 1.00.0000 - Roxio, Inc.) Hidden
RoxioNow Player (HKLM-x32\...\{0EDEB615-1A60-425E-8306-0E10519C7B55}) (Version: 1.9.5.103 - RoxioNow)
Samsung Link 2.0.0.1411061504 (HKLM\...\8474-7877-9059-0204) (Version: 2.0.0.1411061504 - Copyright 2013 SAMSUNG)
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.45.0 - SAMSUNG Electronics Co., Ltd.)
Scansoft PDF Create (x32 Version: - ) Hidden
Screen Recording Suite V3.1.4 (HKLM-x32\...\{EB9F3F92-4857-4121-AA6F-1C424AC6C266}_is1) (Version: 3.1.4 - Apowersoft)
Seagate Dashboard (HKLM-x32\...\{C3A11907-930D-41AC-A135-CC3B12F92011}) (Version: 1.1.0.1421 - Memeo Inc.)
Secunia PSI (3.0.0.9016) (HKLM-x32\...\Secunia PSI) (Version: 3.0.0.9016 - Secunia)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{91140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{91140000-003B-0000-1000-0000000FF1CE}_Office14.PRJPROR_{DC528101-617D-4E9F-B131-F8F8C52E649B}) (Version: - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{91140000-0057-0000-1000-0000000FF1CE}_Office14.VISIOR_{3C578F10-F74F-4655-B2A6-9F88A6C415E8}) (Version: - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden
SES Driver (HKLM\...\{D8CC254C-C671-4664-9A38-FA368D1E2C97}) (Version: 1.0.0 - Western Digital)
Setup (x32 Version: 1.0.0.93 - Corel Corporation) Hidden
Setup (x32 Version: 16.2.0.20 - Corel Corporation) Hidden
Share (x32 Version: 1.0.0.93 - Corel Corporation) Hidden
SHIELD Streaming (Version: 4.1.2000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.4.5.57 - NVIDIA Corporation) Hidden
SiSoftware Sandra Personal 2014.SP3e (HKLM\...\{C3113E55-7BCB-4de3-8EBF-60E6CE6B2496}_is1) (Version: 20.50.2014.10 - SiSoftware)
SketchUp 2015 (HKLM\...\{319CD380-1AAB-4CAD-BE1D-59189A780FA6}) (Version: 15.2.685 - Trimble Navigation Limited)
SketchUp Import for AutoCAD 2014 (HKLM-x32\...\{644E9589-F73A-49A4-AC61-A953B9DE5669}) (Version: 1.1.0 - Autodesk)
SketchUp Viewer (HKLM\...\{A3D48856-4776-4085-813B-DBF06C83D3BD}) (Version: 15.1.106 - Trimble Navigation Limited)
Skype™ 7.3 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.3.101 - Skype Technologies S.A.)
Slingo Supreme (x32 Version: 2.2.0.95 - WildTangent) Hidden
SmartPCFixer 5.2 (HKLM-x32\...\{2C5927BD-3F65-4207-8FB5-8EDF638A3511}_is1) (Version: 5.2 - LionSea Software co., ltd) <==== ATTENTION
SmartSound Common Data (HKLM-x32\...\InstallShield_{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8}) (Version: 1.1.0 - SmartSound Software Inc.)
SmartSound Common Data (x32 Version: 1.1.0 - SmartSound Software Inc.) Hidden
SmartSound Quicktracks 5 (HKLM-x32\...\InstallShield_{2F8BA3FD-1FA9-4279-B696-712ABB12F09F}) (Version: 5.1.7 - SmartSound Software Inc.)
SmartSound Quicktracks 5 (x32 Version: 5.1.7 - SmartSound Software Inc.) Hidden
SmartSound Sonicfire Pro 5.8 (HKLM-x32\...\InstallShield_{E5184D41-7796-4127-BBE4-46993F9FAAF3}) (Version: 5.8.0 - SmartSound Software Inc.)
SmartSound Sonicfire Pro 5.8 (x32 Version: 5.8.0 - SmartSound Software Inc.) Hidden
SoundTap Streaming Audio Recorder (HKLM-x32\...\SoundTap) (Version: 2.31 - NCH Software)
StormPredator 3.6 (HKLM-x32\...\StormPredator_3.31) (Version: 3.6 - IntelliWeather, Inc)
Streaming Audio Recorder V3.3.1 (HKLM-x32\...\{B6D9D06B-4B4D-4B41-B963-C056B627F704}_is1) (Version: 3.3.1 - Apowersoft)
Streaming Music Recorder V3.3.0 (HKLM-x32\...\{624C26DE-2853-42CD-A9C9-D6D0A0C9E5AB}_is1) (Version: 3.3.0 - Apowersoft)
Streaming Video Recorder V4.6.2 (HKLM-x32\...\{2CD65167-671F-49A3-B6C7-3B919DF028E2}_is1) (Version: 4.6.2 - Apowersoft)
SUABnR (HKLM-x32\...\InstallShield_{2485354C-6B65-4978-BB91-CCE61442377B}) (Version: 1.1.0.13103_1 - Samsung Electronics Co., Ltd.)
SUABnR (x32 Version: 1.1.0.13103_1 - Samsung Electronics Co., Ltd.) Hidden
Switch Sound File Converter (HKLM-x32\...\Switch) (Version: 4.79 - NCH Software)
Synology Assistant (remove only) (HKLM-x32\...\Synology Assistant) (Version: - )
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.47484 - TeamViewer)
The Sound Check Trainer 1.01 (HKLM-x32\...\{FEE334ED-E754-4473-BF65-D094BD4328BC}_is1) (Version: - RF Media)
TurboTax 2012 (HKLM-x32\...\TurboTax 2012) (Version: 2012.0 - Intuit, Inc)
Understanding the Audio Mixer 07.01v (HKLM-x32\...\Understanding the Audio Mixer 07.01v) (Version: - )
Update for Skype for Business 2015 (KB2889853) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{40930C8E-A677-414C-A72F-DFDEB10738FB}) (Version: - Microsoft)
Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden
Verizon Wireless Software Upgrade Assistant - Samsung(ar) (HKLM-x32\...\{BB743020-0F2D-4E9B-922B-12014902B20F}) (Version: 2.14.0201 - Samsung Electronics Co., Ltd.)
Verizon Wireless Software Utility Application for Android - Samsung (HKLM-x32\...\{041E914E-7B73-4E8B-967F-B7FFC527FF80}) (Version: 2.14.0106 - Samsung Electronics Co., Ltd.)
Video Converter Studio V3.1.4 (HKLM-x32\...\{195E8D7F-292B-4B04-A6E7-E96CAF04C767}_is1) (Version: 3.1.4 - Apowersoft)
Video Download Capture V4.6.2 (HKLM-x32\...\{3C9D008D-3716-4C3F-90CD-38ED57568FAB}_is1) (Version: 4.6.2 - Apowersoft)
Video Downloader Suite V3.3.2 (HKLM-x32\...\{174BB915-2FE9-4540-9385-96F2E03987EA}_is1) (Version: 3.3.2 - Apowersoft)
Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.95 - WildTangent) Hidden
VirtualDJ Home FREE (HKLM-x32\...\{5E1375CB-6792-4464-8715-CC3EC83D48FA}) (Version: 7.0.5 - Atomix Productions)
Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.)
VSClassic (x32 Version: 1.0.0.93 - Corel Corporation) Hidden
VSPro (x32 Version: 1.0.0.93 - Corel Corporation) Hidden
VUDU To Go (HKLM-x32\...\com.vudu.air.Downloader) (Version: 2.1.1 - Vudu)
VUDU To Go (x32 Version: 2.1.1 - Vudu) Hidden
WD Quick View (HKLM-x32\...\{5B1CF5E0-D321-4766-AEF1-1E9D1C535A10}) (Version: 2.4.12.1 - Western Digital Technologies, Inc.)
WD SmartWare (HKLM\...\{02FD1EAD-43B8-4D63-AC31-8921005AF2E2}) (Version: 2.4.12.1 - Western Digital Technologies, Inc.)
WD SmartWare Installer (HKLM-x32\...\{979a4332-3eb0-4561-9f74-a4fb871cf2bd}) (Version: 2.4.12.1 - Western Digital Technologies, Inc.)
Webshots Wallpaper & Screensaver version 4.1.6.95 (HKLM-x32\...\{B84DEFE1-0175-47C9-BC1D-8645FCBC0ECE}_is1) (Version: 4.1.6.95 - Webshots)
Wheel of Fortune 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
WildTangent Games App (HP Games) (x32 Version: 4.0.5.2 - WildTangent) Hidden
Windows Driver Package - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Windows Driver Package - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Windows Driver Package - Western Digital Technologies (WDC_SAM) WDC_SAM (01/19/2011 1.0.0009.0) (HKLM\...\4CA7CFBB29889F25ACB3DF6E3A42BAE29EB43B20) (Version: 01/19/2011 1.0.0009.0 - Western Digital Technologies)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Shutdown Assistant V2.0.1 (HKLM-x32\...\{4DFA83B9-2722-435D-9F7D-756F902D48FE}_is1) (Version: 2.0.1 - Apowersoft)
WinZip 18.5 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240E3}) (Version: 18.5.11111 - WinZip Computing, S.L. )
WinZip Courier (HKLM-x32\...\{CD95F661-A5C4-11AF-B2CC-ABCD21A325BC}) (Version: 4.5.10424 - WinZip Computing, S.L. )
Wondershare Data Recovery(Build 4.3.1.6) (HKLM-x32\...\{FEA3976F-D621-45F3-AFBD-E812A1F2F00D}_is1) (Version: 4.3.1.6 - Wondershare Software Co.,Ltd.)
Xerox PrintBack (HKLM-x32\...\{1FCCF1F0-1A66-40F3-BEA3-63D8E42FF631}) (Version: 1.2.4.666 - Xerox)
YouTube Downloader Suite V3.4.1 (HKLM-x32\...\{3FF2F54D-FA3A-406F-9F9E-6CDD95B9A1A9}_is1) (Version: 3.4.1 - Apowersoft)
YouTube Music Converter V2.1.0 (HKLM-x32\...\{9DE1E6F5-180F-430D-AD8D-E3E4CA25BFC2}_is1) (Version: 2.1.0 - Apowersoft)
YouTube To MP3 V2.1.0 (HKLM-x32\...\{52A73D55-93BC-41A9-B4C0-C5A6E6DA0E26}_is1) (Version: 2.1.0 - Apowersoft)
Zinio Reader 4 (HKLM-x32\...\ZinioReader4.9310D8F796442B71068C511E15D70529A702D19D.1) (Version: 4.0.3184 - Zinio LLC)
Zinio Reader 4 (x32 Version: 4.0.3184 - Zinio LLC) Hidden
Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-665846457-3026422965-1844958906-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\John\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-665846457-3026422965-1844958906-1001_Classes\CLSID\{1F6DE925-8416-40D4-BC66-D69DB9D4360B}\InprocServer32 -> C:\Program Files\Roxio Creator NXT Pro 3\Virtual Drive 10\DC_ShellExt64.dll (Corel Corporation)
CustomCLSID: HKU\S-1-5-21-665846457-3026422965-1844958906-1001_Classes\CLSID\{3560575F-7C2D-48AE-AB45-DAD430A95EBE}\InprocServer32 -> C:\Program Files (x86)\WinZip Courier\adxloader64.dll ()
CustomCLSID: HKU\S-1-5-21-665846457-3026422965-1844958906-1001_Classes\CLSID\{6A221957-2D85-42A7-8E19-BE33950D1DEB}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2014\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-665846457-3026422965-1844958906-1001_Classes\CLSID\{7DE1BE5C-CEBA-4F1D-ACBC-9CE11EE9A2A1}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2014\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-665846457-3026422965-1844958906-1001_Classes\CLSID\{943F19B2-32F9-4373-8D4C-DBE62B95F2CF}\InprocServer32 -> C:\Program Files (x86)\WinZip Courier\adxloader64.dll ()
CustomCLSID: HKU\S-1-5-21-665846457-3026422965-1844958906-1001_Classes\CLSID\{BD0DEB94-63DB-4392-9420-6EEE05094B1F}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2014\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-665846457-3026422965-1844958906-1001_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2014\en-US\acadficn.dll (Autodesk, Inc.)
==================== Restore Points =========================
02-08-2015 09:56:19 After BSOD failure
02-08-2015 10:01:28 Made by Norton Utilities äå
02-08-2015 21:10:24 Made by Norton Utilities äå
05-08-2015 06:33:39 Made by Norton Utilities äå
06-08-2015 15:47:14 Made by Norton Utilities äå
08-08-2015 20:06:21 Made by Norton Utilities äå
10-08-2015 09:29:04 before reboot
10-08-2015 09:45:35 after norton restore
10-08-2015 10:30:51 Created by Norton Utilities
10-08-2015 10:54:11 Created by Norton Utilities
10-08-2015 10:57:29 Good Startup
10-08-2015 17:02:43 Created by Norton Utilities
11-08-2015 17:03:12 Created by Norton Utilities
12-08-2015 17:03:12 Created by Norton Utilities
13-08-2015 17:03:01 Created by Norton Utilities
14-08-2015 17:03:04 Created by Norton Utilities
16-08-2015 17:01:53 Created by Norton Utilities
16-08-2015 21:52:36 Windows Update
16-08-2015 23:43:18 Windows Update
17-08-2015 00:06:04 DCInstallRestorePoint
17-08-2015 17:04:31 Created by Norton Utilities
18-08-2015 17:03:06 Created by Norton Utilities
19-08-2015 17:03:22 Created by Norton Utilities
20-08-2015 17:05:24 Created by Norton Utilities
21-08-2015 17:03:51 Created by Norton Utilities
22-08-2015 17:02:49 Created by Norton Utilities
23-08-2015 17:02:58 Created by Norton Utilities
24-08-2015 17:02:52 Created by Norton Utilities
25-08-2015 17:03:10 Created by Norton Utilities
26-08-2015 17:03:25 Created by Norton Utilities
28-08-2015 17:03:30 Created by Norton Utilities
29-08-2015 17:03:05 Created by Norton Utilities
30-08-2015 09:04:17 Removed PressReader.
30-08-2015 17:02:48 Created by Norton Utilities
31-08-2015 17:03:17 Created by Norton Utilities
01-09-2015 17:03:04 Created by Norton Utilities
16-09-2015 09:37:31 Windows Update
16-09-2015 11:01:46 Garmin Express
16-09-2015 11:04:11 Garmin Express
16-09-2015 17:01:49 Created by Norton Utilities
17-09-2015 17:03:41 Created by Norton Utilities
21-09-2015 17:04:10 Created by Norton Utilities
22-09-2015 17:05:53 Created by Norton Utilities
23-09-2015 17:05:01 Created by Norton Utilities
25-09-2015 17:03:20 Created by Norton Utilities
26-09-2015 17:03:05 Created by Norton Utilities
27-09-2015 17:03:03 Created by Norton Utilities
28-09-2015 10:52:09 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501
28-09-2015 17:03:31 Created by Norton Utilities
30-09-2015 17:04:46 Created by Norton Utilities
01-10-2015 17:05:08 Created by Norton Utilities
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2011-12-30 19:22 - 2012-01-02 18:19 - 00001451 ____N C:\windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
127.0.0.1 3dns.adobe.com
127.0.0.1 3dns-1.adobe.com
127.0.0.1 3dns-2.adobe.com
127.0.0.1 3dns-3.adobe.com
127.0.0.1 3dns-4.adobe.com
127.0.0.1 activate.adobe.com
127.0.0.1 activate-sea.adobe.com
127.0.0.1 activate-sjc0.adobe.com
127.0.0.1 activate.wip.adobe.com
127.0.0.1 activate.wip1.adobe.com
127.0.0.1 activate.wip2.adobe.com
127.0.0.1 activate.wip3.adobe.com
127.0.0.1 activate.wip4.adobe.com
127.0.0.1 adobe-dns.adobe.com
127.0.0.1 adobe-dns-1.adobe.com
127.0.0.1 adobe-dns-2.adobe.com
127.0.0.1 adobe-dns-3.adobe.com
127.0.0.1 adobe-dns-4.adobe.com
127.0.0.1 adobeereg.com
127.0.0.1 practivate.adobe
127.0.0.1 practivate.adobe.com
127.0.0.1 practivate.adobe.newoa
127.0.0.1 practivate.adobe.ntp
127.0.0.1 practivate.adobe.ipp
127.0.0.1 ereg.adobe.com
127.0.0.1 ereg.wip.adobe.com
127.0.0.1 ereg.wip1.adobe.com
127.0.0.1 ereg.wip2.adobe.com
There are 18 more lines.
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0460FAEA-19BF-4006-B0F6-A49C6324C319} - System32\Tasks\Norton Identity Safe\Norton Error Processor => C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\SymErr.exe [2014-01-30] (Symantec Corporation)
Task: {04A2096E-AFC5-431E-A814-744D38720864} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {05B40CD4-ABEE-4977-BAB9-6CAFCFB46ADA} - System32\Tasks\G2MUpdateTask-S-1-5-21-665846457-3026422965-1844958906-1006 => C:\Users\Linda.Linda-HP2012\AppData\Local\Citrix\GoToMeeting\3356\g2mupdate.exe [2015-09-02] (Citrix Online, a division of Citrix Systems, Inc.)
Task: {18AF263D-34C6-4AC3-A688-836580FEE5F6} - System32\Tasks\{5C528AD7-BE6E-4F00-A03C-FA544FD4A667} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [2015-06-18] (Malwarebytes Corporation)
Task: {199A37D4-93D2-45E5-BA89-96134C505E41} - System32\Tasks\Norton Management\Norton Error Processor => C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\SymErr.exe [2012-10-18] (Symantec Corporation)
Task: {1B35651B-1283-43F0-AA08-9DD0E39ED168} - System32\Tasks\{586E31DA-8DB7-4D9B-86AF-FF18EA66A9CC} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [2015-06-18] (Malwarebytes Corporation)
Task: {1B600BF2-3735-42A1-82A7-C2BD968D9AF9} - System32\Tasks\{927F1E58-0D45-4E98-BCF6-EBAEDBE10CFC} => C:\mhc\csterm.exe [2001-02-28] ()
Task: {1D7BAC1B-0026-420E-A15F-15C519774753} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-09-22] (Adobe Systems Incorporated)
Task: {1E661E38-E36C-409E-9263-C2D31E15E070} - System32\Tasks\{81BCC101-A35C-4E9F-8590-A96409E82F45} => pcalua.exe -a C:\Users\John\Downloads\regassassin-setup-1.03.exe -d C:\Users\John\Desktop
Task: {1FFDE1BF-95D8-4DA9-972D-6806DD96AB19} - System32\Tasks\{483FDA4A-F3CA-4A3E-A20C-76E7D56546AE} => C:\Users\John\Desktop\csterm.exe
Task: {29442F0E-A39C-4322-80A4-9DD28A2956B6} - System32\Tasks\{31071C2B-22D2-43FB-A653-55254F559EC6} => C:\Users\John\Desktop\csterm.exe
Task: {2A35FC53-C0FC-4AF3-9746-DD4294895E89} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2015-07-08] (Microsoft Corporation)
Task: {2B2B09BE-C0D8-4CD5-A32C-0E354DF91D0B} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2015-08-27] (Apple Inc.)
Task: {2B53D918-FD8C-43A9-94DF-D5D19B7935FA} - System32\Tasks\NUAutoUpdate => C:\Program Files (x86)\Symantec\Norton Utilities 16\SULauncher.exe [2015-08-09] (Symantec)
Task: {2DD700A2-6D0C-4EF4-AC22-80F77BFC4870} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {30F046FF-9D1F-4415-8F7E-172076ABB569} - System32\Tasks\{09A966AB-B990-4FFF-91FE-941FED353600} => pcalua.exe -a C:\Users\John\Downloads\cpro32_623_1364.exe -d C:\Users\John\Desktop
Task: {35A45233-4743-4616-9966-E7A4EFA9318C} - System32\Tasks\NUSchedule => C:\Program Files (x86)\Symantec\Norton Utilities 16\nu.exe [2015-08-09] (Symantec)
Task: {394C08C8-9C4A-4B06-87BC-3D206822D09D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-08-27] (Hewlett-Packard)
Task: {3B0476D9-9D12-47B7-9B43-4EBEEE6B873B} - System32\Tasks\Norton Identity Safe\Norton Error Analyzer => C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\SymErr.exe [2014-01-30] (Symantec Corporation)
Task: {3CBE4CB4-32B8-4913-92DF-FD4DDD2ED1FF} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-665846457-3026422965-1844958906-1001Core => C:\Users\John\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-16] (Dropbox, Inc.)
Task: {3D7C31A6-2B14-4569-9F70-D7D909174BBF} - System32\Tasks\G2MUploadTask-S-1-5-21-665846457-3026422965-1844958906-1006 => C:\Users\Linda.Linda-HP2012\AppData\Local\Citrix\GoToMeeting\3356\g2mupload.exe [2015-09-02] (Citrix Online, a division of Citrix Systems, Inc.)
Task: {3FF3B03B-62C1-4843-951F-CC9B4472C815} - System32\Tasks\{1EC67648-1057-45DC-B483-E00CAD0CC7E9} => C:\Users\John\Downloads\SweetHome3D-4.4-windows-oc.exe [2014-07-07] ()
Task: {4160F32A-6DDD-45BF-9AC9-D22371A7592E} - System32\Tasks\{FA0E6B28-5C4E-452D-B108-B18D35D5B78E} => C:\mhc\csterm.exe [2001-02-28] ()
Task: {462D5245-EC1C-4E3C-8A43-59DD41F5BBD5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPSAObjUtilTask => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe [2015-09-22] (Microsoft)
Task: {4690E59D-FAC0-4FCF-93D2-7BE730E7A5AB} - System32\Tasks\{6767C146-25E1-4B98-9047-4EB323E89A5E} => C:\Users\John\Desktop\csterm.exe
Task: {49551382-0E49-4D28-AFFF-AEC7481B52B6} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [2015-09-11] ()
Task: {507FD9D6-6072-46DD-B8B2-F412EDC1A1A0} - System32\Tasks\SpeedDiskSchedule => C:\Program Files (x86)\Symantec\Norton Utilities 16\Tools\SpeedDisk\ScheduledDefrag.exe [2012-09-29] ()
Task: {56586F88-468E-4107-B360-D8CF5E641373} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-665846457-3026422965-1844958906-1001UA => C:\Users\John\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-16] (Dropbox, Inc.)
Task: {56CBD7AC-CC7B-45C0-95E4-F1C768D0E80E} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2015-07-08] (Microsoft)
Task: {5C1BBCFF-55EB-4CF8-A855-F28A7AEA83CE} - System32\Tasks\{A5AFEC23-BA60-4844-ABE1-D9548F364D60} => C:\mhc\csterm.exe [2001-02-28] ()
Task: {5FD3710B-D423-43F8-A087-23CEC5D82AF0} - System32\Tasks\{2E35D4A1-AF95-40D7-8AD1-D9AFF876E437} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [2015-06-18] (Malwarebytes Corporation)
Task: {600DA1F9-58D2-4786-B11A-7BFDB9216294} - System32\Tasks\{99756391-850C-49D9-923C-250E3A5A71A8} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [2015-06-18] (Malwarebytes Corporation)
Task: {60CA6A4C-5C94-432D-BA20-EA44922A0B11} - System32\Tasks\{159D80DE-A695-49A6-9EEA-6216143890C3} => C:\mhc\csterm.exe [2001-02-28] ()
Task: {636612EB-B3F0-4303-97E8-57FD6F28E58B} - System32\Tasks\{EB1BECDC-8E09-44D4-A4F7-8A68C6DAC8D1} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [2015-06-18] (Malwarebytes Corporation)
Task: {67C449D6-9BDE-45B5-9AE7-5D7C3915370D} - System32\Tasks\{2754BB65-7C34-4A88-81DA-B13F8F941180} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [2015-06-18] (Malwarebytes Corporation)
Task: {67F71703-50EF-4905-8F3A-FFAA1C80BD3A} - System32\Tasks\AdobeAAMUpdater-1.0-Linda-HP2012-John => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-08-05] (Adobe Systems Incorporated)
Task: {69A80A50-1FB8-4BF2-9347-020C24B031FB} - System32\Tasks\{E497EA78-DEC6-4123-9F7F-764DEBD057B9} => pcalua.exe -a C:\Users\John\AppData\Local\Temp\jre-8u45-windows-au.exe -d C:\Windows\SysWOW64 -c /installmethod=jau FAMILYUPGRADE=1
Task: {6DB56C3E-043F-4DE8-9F25-52BCC8402B64} - System32\Tasks\{4896EDA4-56A6-48B0-9E22-72987DC09142} => C:\mhc\csterm.exe [2001-02-28] ()
Task: {6EE092F1-A1D0-461F-9AE2-9EC79D32C939} - System32\Tasks\{51012072-6466-4547-BC71-37ACD6C46B6B} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [2015-06-18] (Malwarebytes Corporation)
Task: {6EF448EF-BD4F-4E99-A3D8-E6671FE3840D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {71A9B03A-A039-4D58-AFCB-17C79628AEE5} - System32\Tasks\{FD0341BB-2695-4BBE-95E7-F9B23BC07B6F} => pcalua.exe -a F:\cpic32.exe -d F:\ -c -setup
Task: {72F5DE6C-A5E7-4494-B6F5-A090CD94FEA7} - System32\Tasks\{C78290BA-A6CB-4FCD-AC32-CC1938D1EE50} => C:\Users\John\Desktop\csterm.exe
Task: {74CDE746-2C75-4553-8935-10A1F6910F8F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {76BA7CF7-F6CB-4983-A1D8-F251DA846002} - System32\Tasks\{AAE78F98-D12A-45D8-B535-E7A049F5C5E7} => Chrome.exe
Task: {77732342-22E1-4AE2-97CD-48DBDAE98217} - System32\Tasks\{17C8E5AF-A92F-45CC-8AD5-70749F6BA585} => pcalua.exe -a C:\Users\John\Downloads\WebFerret6Setup.exe -d C:\Users\John\Downloads
Task: {78C28A55-6CBC-4489-805C-916CE4DB48ED} - System32\Tasks\{6D78A1E4-42CF-4FFC-8C8A-29947548FD3B} => C:\Users\John\Desktop\csterm.exe
Task: {792B5F32-D79C-451D-8128-76A3B5B22E4B} - System32\Tasks\{4900CD58-F993-4468-B745-D7ECFDD6D784} => C:\Users\John\Downloads\SweetHome3D-4.4-windows-oc.exe [2014-07-07] ()
Task: {8304C076-DC74-443E-BE97-C04617A6016D} - System32\Tasks\{3C3A79CA-85A2-4C9D-94DC-8A1CADC0FFAC} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [2015-06-18] (Malwarebytes Corporation)
Task: {8AF80CF8-D96D-4B15-A35A-F430A4CE860F} - System32\Tasks\AdobeAAMUpdater-1.0-Linda-HP2012-Linda => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-08-05] (Adobe Systems Incorporated)
Task: {8CF06D81-D229-4544-BB57-26AE027F2807} - System32\Tasks\{B5901025-5C51-44C0-8811-758FB5317EDC} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [2015-06-18] (Malwarebytes Corporation)
Task: {8FA66325-4387-4A74-8EE5-A37DCEA5FBE0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company)
Task: {9352DABF-E8D3-4744-A71A-98BE655FCB27} - System32\Tasks\{EE48FA01-08E1-47DD-9B98-17AC371106ED} => C:\Users\John\Downloads\SweetHome3D-4.4-windows-oc.exe [2014-07-07] ()
Task: {93A5DCC6-45F9-44E0-B4AC-63166A0F67D7} - System32\Tasks\Norton 360\Norton Error Processor => C:\Program Files (x86)\Norton 360\Engine\22.5.4.24\SymErr.exe [2015-09-08] (Symantec Corporation)
Task: {9483966D-2DAE-4518-90B8-7E8BA20172DB} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2015-07-08] (Microsoft Corporation)
Task: {96005654-396E-4080-83A3-A57B68F543ED} - System32\Tasks\{076E9413-177D-448F-99A6-6049FAAD9C0D} => C:\mhc\csterm.exe [2001-02-28] ()
Task: {98B47213-4C83-491E-BF96-569BE8C4FCB5} - System32\Tasks\{B211B458-9FF2-400F-970C-BCD1C5289CB5} => C:\Program Files (x86)\HRBlock2014\Program\HRBlock2014.exe [2015-03-13] (H&R Block)
Task: {98F989AE-66B5-4F41-B705-3EA45E6A201F} - System32\Tasks\Open URL by RoboForm => Rundll32.exe url.dll,FileProtocolHandler "http://www.roboform....IGJKJMIBNKJHIKJ"
Task: {9A4AE8BF-7734-4CCA-9386-83AE51556D09} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2015-07-08] (Microsoft Corporation)
Task: {A6B3167A-256F-43AA-9C9A-29D09B210217} - System32\Tasks\{9C7A573B-BB10-44F4-AEA2-D6166B34F3B3} => C:\Users\John\Desktop\csterm.exe
Task: {AA8661E0-E4FA-46CC-8B0F-B031EA654D08} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton 360\Engine\22.5.4.24\WSCStub.exe [2015-09-23] (Symantec Corporation)
Task: {AB2C119B-8009-4043-A563-F10D7FD749D1} - System32\Tasks\{26AAF944-E225-4FE4-81CF-B2EAAB4079BA} => C:\mhc\csterm.exe [2001-02-28] ()
Task: {ACA6AEBC-4A9C-4FB0-9ECE-5995B958F2E2} - System32\Tasks\{D94ED6E5-4293-4220-8A76-85353C8D4BDA} => C:\Users\John\Desktop\csterm.exe
Task: {B14E6170-A54B-43C0-AFBA-DA7CA218442A} - System32\Tasks\{864E57CB-9EF3-4EC5-AC04-E634099C7B73} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [2015-06-18] (Malwarebytes Corporation)
Task: {B20DCF94-E6A0-4CBA-ABA4-B9981E8EE3C8} - System32\Tasks\{90842F13-AB47-40B9-B9E1-0B04D4210CBF} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [2015-06-18] (Malwarebytes Corporation)
Task: {B55EA055-639B-46E6-9AC6-68769AE84DFF} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-09-16] (Piriform Ltd)
Task: {B81E1D30-5F07-4FE7-A601-D90E03D976F8} - System32\Tasks\{9B4EEF81-A9D7-4B88-9D52-01381E2B6643} => C:\mhc\csterm.exe [2001-02-28] ()
Task: {C1D8EBD3-C91F-478D-89C6-E0EB26375203} - System32\Tasks\{BA6EB9F6-AEC0-4FDF-A065-65E0B9CD5176} => C:\mhc\csterm.exe [2001-02-28] ()
Task: {C646AB24-F6E5-48CF-BC7D-16642F6E8055} - System32\Tasks\{D8B24B37-7811-436E-9963-0EEDCB704A16} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [2015-06-18] (Malwarebytes Corporation)
Task: {C6472076-3BB9-4AF9-B125-BB8C168C9D6E} - System32\Tasks\{E755BE9C-1170-42AB-9A69-B8E8B9F91FA4} => C:\mhc\csterm.exe [2001-02-28] ()
Task: {C8C3D628-0A04-4A12-B092-57436136A628} - System32\Tasks\{96B87E94-74E3-4B75-A48E-354586750C59} => C:\mhc\csterm.exe [2001-02-28] ()
Task: {CE68D8AE-103A-48CF-A04A-A7603A288EE4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {CF6A544F-ECCB-40C2-9A2F-6B6C15C19810} - System32\Tasks\{FFE057EA-9D8B-47E1-B1D9-09CED6F88FBC} => C:\Users\John\Desktop\csterm.exe
Task: {D3853473-27CF-4F1A-AB22-9E7D59ACE31E} - System32\Tasks\Norton Management\Norton Error Analyzer => C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\SymErr.exe [2012-10-18] (Symantec Corporation)
Task: {D39D8D70-3FF7-430A-B421-214FEBAB08A7} - System32\Tasks\{E2EA34D7-C853-4A1E-989F-D003F3A51EC6} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [2015-06-18] (Malwarebytes Corporation)
Task: {D435F517-6825-4724-8D7D-B8E85BC32199} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {DD440C6C-CA3A-4434-BBB8-5C08C92361F2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {E43EF9E5-CF3E-4C07-899E-08A64259720B} - System32\Tasks\Games\UpdateCheck_S-1-5-21-665846457-3026422965-1844958906-1001
Task: {E7677DAF-DE5E-4232-887D-A0F74D6CBB52} - System32\Tasks\Run RoboForm TaskBar Icon => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [2015-09-30] (Siber Systems)
Task: {E9E15D4D-D2C3-48A3-B744-D7BC94BDB94E} - System32\Tasks\Norton 360\Norton Error Analyzer => C:\Program Files (x86)\Norton 360\Engine\22.5.4.24\SymErr.exe [2015-09-08] (Symantec Corporation)
Task: {ECA8703C-636F-41DA-8D44-C2B5CAB09A88} - System32\Tasks\{52E0673A-D330-48EB-B4EA-896EA4CE1CE7} => C:\mhc\csterm.exe [2001-02-28] ()
Task: {ECE77B32-6C8F-47A9-AB72-4CD21761249E} - System32\Tasks\{8E154BAE-9FF9-4B5A-B6F9-A2CF283A7A4D} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [2015-06-18] (Malwarebytes Corporation)
Task: {EE21D128-0326-408E-90B1-821D72601FE6} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2015-07-08] (Microsoft Corporation)
Task: {F49C51CC-62B0-44DD-AE8C-B6E5E6A65234} - System32\Tasks\{A20B3C96-1D13-4E0C-B258-1AA8F166F4A4} => C:\Users\John\Desktop\csterm.exe
Task: {FBD355FF-C312-4E88-AD2D-3201963BC7E4} - System32\Tasks\{AB123DA8-22DB-4036-879D-77ED8126FF67} => C:\Users\John\Desktop\csterm.exe
Task: {FC7E83EF-19AF-44F1-82F2-51BDB0FDA22F} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser
Task: {FE32A2CF-F5AC-4A8C-8851-91A8A7CF728C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated)
Task: {FE8504B0-00FE-4010-91C2-5AEEBB68856C} - System32\Tasks\{18569BDB-9C20-4532-BE5A-35AB75ABF87F} => C:\mhc\csterm.exe [2001-02-28] ()
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-665846457-3026422965-1844958906-1001Core.job => C:\Users\John\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-665846457-3026422965-1844958906-1001UA.job => C:\Users\John\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\G2MUpdateTask-S-1-5-21-665846457-3026422965-1844958906-1006.job => C:\Users\Linda.Linda-HP2012\AppData\Local\Citrix\GoToMeeting\3356\g2mupdate.exeBC:\Users\Linda.Lin
Task: C:\windows\Tasks\G2MUploadTask-S-1-5-21-665846457-3026422965-1844958906-1006.job => C:\Users\Linda.Linda-HP2012\AppData\Local\Citrix\GoToMeeting\3356\g2mupload.exeBC:\Users\Linda.Lin
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\NUAutoUpdate.job => C:\Program Files (x86)\Symantec\Norton Utilities 16\SULauncher.exe
Task: C:\windows\Tasks\NUSchedule.job => C:\Program Files (x86)\Symantec\Norton Utilities 16\nu.exe
Task: C:\windows\Tasks\SpeedDiskSchedule.job => C:\Program Files (x86)\Symantec\Norton Utilities 16\Tools\SpeedDisk\ScheduledDefrag.exe
==================== Loaded Modules (Whitelisted) ==============
2012-07-24 09:55 - 2015-06-17 01:48 - 00116368 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-11-30 14:36 - 2012-04-26 16:51 - 00040448 _____ () C:\windows\System32\pdf995mon64.dll
2013-10-16 03:13 - 2013-10-16 03:13 - 00457960 _____ () C:\Program Files (x86)\Roxio\BackOnTrack\App\SaibSVC.exe
2015-01-20 23:35 - 2015-01-20 23:35 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-09-23 16:47 - 2015-09-23 16:47 - 01328912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2014-01-22 02:04 - 2014-01-22 02:04 - 00022760 _____ () C:\Program Files (x86)\Roxio\BackOnTrack\App\BService.exe
2013-03-22 13:10 - 2013-03-22 13:10 - 00222544 _____ () C:\Program Files (x86)\Nuance\Nuance Cloud Connector\WOSVSSSvr.exe
2014-10-23 09:12 - 2014-10-23 09:12 - 00032784 _____ () C:\Program Files\UCT\HDR Express 3\HDRExpress3Service.exe
2011-09-14 23:19 - 2011-09-14 23:19 - 00086016 _____ () C:\Program Files\Autodesk\3ds Max Design 2014\NVIDIA\Satellite\raysat_3dsmax2014_64server.exe
2014-11-22 12:22 - 2014-11-06 16:04 - 00025088 _____ () C:\Program Files\SAMSUNG\Samsung Link\JniSys.dll
2014-11-22 12:22 - 2014-11-06 16:04 - 02633728 _____ () C:\Program Files\SAMSUNG\Samsung Link\scone_proxy.dll
2014-11-22 12:22 - 2014-11-06 16:04 - 02540544 _____ () C:\Program Files\SAMSUNG\Samsung Link\scone_stub.dll
2013-12-21 12:25 - 2013-12-21 12:25 - 00036864 _____ () C:\Program Files\SAMSUNG\AllShare Framework DMS\1.3.23\64bit\JNIInterface.dll
2013-12-21 12:26 - 2013-12-21 12:26 - 00144384 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\64bit\ASFAPI.dll
2013-12-21 12:27 - 2013-12-21 12:27 - 00018944 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\64bit\MediaDB_Manager.dll
2013-10-22 10:52 - 2013-10-22 10:52 - 00030720 _____ () C:\windows\system32\MediaDB64.dll
2013-10-22 10:52 - 2013-10-22 10:52 - 00908800 _____ () C:\windows\system32\ContentDirectoryPresenter64.dll
2013-12-21 12:27 - 2013-12-21 12:27 - 00521728 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\64bit\DMS_Manager.dll
2013-07-23 20:19 - 2013-07-23 20:19 - 00049152 _____ () C:\windows\system32\boost_date_time-vc90-mt-1_47.dll
2013-07-23 20:19 - 2013-07-23 20:19 - 00016896 _____ () C:\windows\system32\boost_system-vc90-mt-1_47.dll
2013-07-23 20:19 - 2013-07-23 20:19 - 00058880 _____ () C:\windows\system32\boost_thread-vc90-mt-1_47.dll
2013-07-23 20:19 - 2013-07-23 20:19 - 00299520 _____ () C:\windows\system32\boost_serialization-vc90-mt-1_47.dll
2009-09-30 06:03 - 2013-10-22 17:11 - 00181312 _____ () E:\Program Files (x86)\Photodex\CompuPicPro\ScsiAccess.exe
2013-11-14 08:28 - 2013-11-14 08:28 - 00248736 _____ () C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe
2013-10-16 03:02 - 2013-10-16 03:02 - 00535784 _____ () C:\Program Files (x86)\Roxio Creator NXT Pro 3\Roxio Burn\RoxioBurnLauncher.exe
2013-08-30 10:01 - 2013-08-30 10:01 - 03358064 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_v_1_1_0_x64.dll
2015-03-18 14:08 - 2015-03-18 14:08 - 08898720 _____ () C:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2013-09-05 01:17 - 2013-09-05 01:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2010-10-20 16:23 - 2010-10-20 16:23 - 08801632 _____ () C:\Program Files\Microsoft Office\Office14\1033\GrooveIntlResource.dll
2012-12-14 12:36 - 2012-12-14 12:36 - 00012800 _____ () C:\Program Files (x86)\Avanquest\PowerDesk\mxcview64.dll
2012-12-14 12:37 - 2012-12-14 12:37 - 00119808 _____ () C:\Program Files (x86)\Avanquest\PowerDesk\mxgview64.dll
2014-02-26 08:01 - 2014-02-26 08:01 - 00035328 _____ () C:\Program Files (x86)\Synology\Photo Station Uploader\ShellExtHandler.dll
2012-07-05 20:47 - 2012-07-05 20:47 - 00185488 _____ () C:\Program Files\Roxio\Roxio Burn\RB_ContextMenu64.dll
2012-12-14 12:51 - 2012-12-14 12:51 - 00060416 _____ () C:\Program Files (x86)\Avanquest\PowerDesk\PDHookServer.exe
2015-06-26 11:40 - 2015-06-26 11:40 - 02412296 _____ () C:\Program Files (x86)\Audials\Audials 12\AudialsNotifier.exe
2015-08-26 02:44 - 2015-08-26 02:44 - 00055576 _____ () C:\Program Files\CCleaner\branding.dll
2012-12-14 12:43 - 2012-12-14 12:43 - 00065536 _____ () C:\Program Files (x86)\Avanquest\PowerDesk\KeyViewServer.exe
2014-12-14 21:27 - 2014-12-14 21:27 - 00105216 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\genie2_tray.exe
2014-09-25 13:33 - 2014-09-25 13:33 - 02210480 _____ () C:\Program Files\Microsoft Office\Office15\tmpod.dll
2014-01-23 17:05 - 2014-01-23 17:05 - 01424552 _____ () C:\Program Files\Microsoft Office\Office15\ADDINS\UmOutlookAddin.dll
2012-11-28 23:34 - 2012-11-28 23:34 - 00704000 _____ () C:\Program Files (x86)\WinZip Courier\adxloader64.dll
2012-12-14 12:53 - 2012-12-14 12:53 - 00061440 _____ () C:\Program Files (x86)\Avanquest\PowerDesk\ContextMenuServer.exe
2012-12-14 12:49 - 2012-12-14 12:49 - 00111104 _____ () C:\Program Files (x86)\Avanquest\PowerDesk\CplServer.exe
2013-12-11 17:46 - 2013-12-11 17:46 - 01114624 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\DMSManager.dll
2013-10-22 10:48 - 2013-10-22 10:48 - 00707072 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\ContentDirectoryPresenter.dll
2013-10-24 17:53 - 2013-10-24 17:53 - 00107008 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\DCMCDP.dll
2013-12-11 17:46 - 2013-12-11 17:46 - 00102400 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\FolderCDP.dll
2013-12-11 17:46 - 2013-12-11 17:46 - 00077312 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\MetadataFramework.dll
2013-02-14 20:42 - 2013-02-14 20:42 - 00520234 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\sqlite3.dll
2013-02-14 20:42 - 2013-02-14 20:42 - 00450560 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\MoodExtractor.dll
2013-02-14 20:42 - 2013-02-14 20:42 - 05717504 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\DCMImgExtractor.dll
2013-10-25 20:48 - 2013-10-25 20:48 - 00028672 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AutoChaptering.dll
2013-02-14 20:42 - 2013-02-14 20:42 - 00147456 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libexpat.dll
2013-10-25 20:48 - 2013-10-25 20:48 - 00012288 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\VideoThumb.dll
2013-02-14 20:42 - 2013-02-14 20:42 - 04671488 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\avcodec-52.dll
2013-02-14 20:42 - 2013-02-14 20:42 - 00070656 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\avutil-50.dll
2013-02-14 20:42 - 2013-02-14 20:42 - 00686080 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\avformat-52.dll
2013-02-14 20:42 - 2013-02-14 20:42 - 00152064 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\swscale-0.dll
2013-10-25 20:49 - 2013-10-25 20:49 - 00028160 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AudioExtractor.dll
2013-10-25 20:48 - 2013-10-25 20:48 - 00064000 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\ID3Driver.dll
2013-02-14 20:42 - 2013-02-14 20:42 - 00366592 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\tag.dll
2013-10-25 20:48 - 2013-10-25 20:48 - 00289792 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libThumbnail.dll
2013-10-25 20:48 - 2013-10-25 20:48 - 00023040 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\RichInfoDriver.dll
2013-12-11 17:45 - 2013-12-11 17:45 - 00017920 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\VideoExtractor.dll
2013-10-25 20:53 - 2013-10-25 20:53 - 00117248 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\ThumbnailMaker.dll
2013-10-25 20:53 - 2013-10-25 20:53 - 01033728 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\ImageMagickWrapper.dll
2013-12-11 17:45 - 2013-12-11 17:45 - 00134144 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\VideoMetadataDriver.dll
2013-10-25 20:48 - 2013-10-25 20:48 - 00290816 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libKeyFrame.dll
2013-10-25 20:48 - 2013-10-25 20:48 - 00024064 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\SECMetaDriver.dll
2013-10-25 20:53 - 2013-10-25 20:53 - 00012288 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\ImageExtractor.dll
2013-10-25 20:48 - 2013-10-25 20:48 - 00024064 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\photoDriver.dll
2013-02-14 20:42 - 2013-02-14 20:42 - 00399826 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libexif-12.dll.dll
2013-10-25 20:48 - 2013-10-25 20:48 - 00013824 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\TextExtractor.dll
2013-10-24 17:53 - 2013-10-24 17:53 - 00032768 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\Autobackup.dll
2013-04-19 17:38 - 2013-04-19 17:38 - 00055808 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\RosettaAllShare.dll
2013-07-23 20:18 - 2013-07-23 20:18 - 00227840 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\boost_serialization-vc90-mt-1_47.dll
2013-07-23 20:18 - 2013-07-23 20:18 - 00038912 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\boost_date_time-vc90-mt-1_47.dll
2013-07-23 20:18 - 2013-07-23 20:18 - 00012800 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\boost_system-vc90-mt-1_47.dll
2013-07-23 20:18 - 2013-07-23 20:18 - 00046592 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\boost_thread-vc90-mt-1_47.dll
2013-02-14 20:42 - 2013-02-14 20:42 - 00044032 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\us.dll
2014-01-22 02:04 - 2014-01-22 02:04 - 03322600 _____ () C:\Program Files (x86)\Roxio\BackOnTrack\App\BEngine.dll
2014-01-22 02:04 - 2014-01-22 02:04 - 00524520 _____ () C:\Program Files (x86)\Roxio\BackOnTrack\App\TRREngine.dll
2014-01-22 02:04 - 2014-01-22 02:04 - 00108776 _____ () C:\Program Files (x86)\Roxio\BackOnTrack\App\Logging.dll
2013-03-22 12:59 - 2013-03-22 12:59 - 00293200 _____ () C:\Program Files (x86)\Nuance\Nuance Cloud Connector\sqlite3.dll
2013-03-22 13:00 - 2013-03-22 13:00 - 00080208 _____ () C:\Program Files (x86)\Nuance\Nuance Cloud Connector\zlib125.dll
2013-03-22 13:00 - 2013-03-22 13:00 - 00016720 _____ () C:\Program Files (x86)\Nuance\Nuance Cloud Connector\WOSMui.dll
2014-10-20 08:33 - 2014-10-20 08:33 - 00169472 _____ () C:\windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\93182e9779b8be0f688fd0784df6d7fb\IsdiInterop.ni.dll
2011-12-20 20:24 - 2010-11-06 02:50 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IsdiInterop.dll
2015-03-18 14:08 - 2015-03-18 14:08 - 08898720 _____ () C:\Program Files (x86)\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2013-09-05 01:14 - 2013-09-05 01:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2010-10-20 16:45 - 2010-10-20 16:45 - 08801120 _____ () C:\Program Files (x86)\Microsoft Office\Office14\1033\GrooveIntlResource.dll
2015-06-24 18:31 - 2015-06-24 06:37 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2012-12-14 12:51 - 2012-12-14 12:51 - 00011264 _____ () C:\Program Files (x86)\Avanquest\PowerDesk\DClickDesktopHook.dll
2014-04-09 16:28 - 2014-04-09 16:28 - 00073352 _____ () C:\Program Files (x86)\Plex\Plex Media Server\zlib.dll
2014-04-09 16:28 - 2014-04-09 16:28 - 00195720 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libidn.dll
2014-04-09 16:28 - 2014-04-09 16:28 - 00840840 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libxml2.dll
2014-04-09 16:28 - 2014-04-09 16:28 - 00051848 _____ () C:\Program Files (x86)\Plex\Plex Media Server\soci_sqlite3-vc80-3_0.dll
2014-04-09 16:28 - 2014-04-09 16:28 - 00089224 _____ () C:\Program Files (x86)\Plex\Plex Media Server\soci_core-vc80-3_0.dll
2014-04-09 16:28 - 2014-04-09 16:28 - 07605400 _____ () C:\Program Files (x86)\Plex\Plex Media Server\avcodec-54.dll
2014-04-09 16:28 - 2014-04-09 16:28 - 00202392 _____ () C:\Program Files (x86)\Plex\Plex Media Server\avutil-52.dll
2014-04-09 16:28 - 2014-04-09 16:28 - 01453720 _____ () C:\Program Files (x86)\Plex\Plex Media Server\avformat-54.dll
2014-04-09 16:28 - 2014-04-09 16:28 - 00352920 _____ () C:\Program Files (x86)\Plex\Plex Media Server\swscale-2.dll
2014-04-09 16:28 - 2014-04-09 16:28 - 00507528 _____ () C:\Program Files (x86)\Plex\Plex Media Server\tag.dll
2014-04-09 16:28 - 2014-04-09 16:28 - 08495240 _____ () C:\Program Files (x86)\Plex\Plex Media Server\WebKit.dll
2014-04-09 16:28 - 2014-04-09 16:28 - 00952968 _____ () C:\Program Files (x86)\Plex\Plex Media Server\CFLite.dll
2014-04-09 16:28 - 2014-04-09 16:28 - 01291400 _____ () C:\Program Files (x86)\Plex\Plex Media Server\JavaScriptCore.dll
2014-04-09 16:28 - 2014-04-09 16:28 - 01038984 _____ () C:\Program Files (x86)\Plex\Plex Media Server\cairo.dll
2014-04-09 16:28 - 2014-04-09 16:28 - 00073352 _____ () C:\Program Files (x86)\Plex\Plex Media Server\zlib1.dll
2013-09-28 20:14 - 2013-09-28 20:14 - 03369922 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\icuin51.dll
2013-09-28 20:13 - 2013-09-28 20:13 - 00544817 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\libgcc_s_dw2-1.dll
2013-09-28 20:13 - 2013-09-28 20:13 - 00989805 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\libstdc++-6.dll
2013-09-28 20:14 - 2013-09-28 20:14 - 01978690 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\icuuc51.dll
2013-09-28 20:14 - 2013-09-28 20:14 - 22378434 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\icudt51.dll
2013-09-28 20:14 - 2013-09-28 20:14 - 01233408 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\platforms\qwindows.dll
2015-01-09 01:40 - 2015-01-09 01:40 - 00640000 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\Genie.dll
2014-12-19 01:03 - 2014-12-19 01:03 - 01686016 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\SvtNetworkTool.dll
2015-01-09 01:01 - 2015-01-09 01:01 - 00192512 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Airprint.dll
2014-11-05 02:37 - 2014-11-05 02:37 - 00632832 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Internet.dll
2015-01-09 01:03 - 2015-01-09 01:03 - 06477824 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Map.dll
2014-06-29 20:55 - 2014-06-29 20:55 - 00068608 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\QRCode.dll
2014-06-29 21:05 - 2014-06-29 21:05 - 01183232 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\qwt.dll
2015-01-07 20:57 - 2015-01-07 20:57 - 02493952 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_MyMedia.dll
2012-10-15 15:27 - 2012-10-15 15:27 - 00111616 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\libvlc.dll
2012-10-15 15:28 - 2012-10-15 15:28 - 02286592 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\libvlccore.dll
2014-12-05 00:32 - 2014-12-05 00:32 - 01056768 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_NetworkProblem.dll
2014-09-11 03:39 - 2014-09-11 03:39 - 00144896 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\DragonNetTool.dll
2015-01-09 01:03 - 2015-01-09 01:03 - 01195008 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_ParentalControl.dll
2015-01-14 00:45 - 2015-01-14 00:45 - 10388480 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Resource.dll
2015-01-14 22:04 - 2015-01-14 22:04 - 02545664 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_RouterConfiguration.dll
2014-12-18 02:49 - 2014-12-18 02:49 - 00177152 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Statistics.dll
2014-12-05 00:35 - 2014-12-05 00:35 - 00890368 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Ui.dll
2014-11-05 03:00 - 2014-11-05 03:00 - 00435712 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Wireless.dll
2013-09-28 20:13 - 2013-09-28 20:13 - 00051200 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\imageformats\qgif.dll
2013-09-28 20:13 - 2013-09-28 20:13 - 00052224 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\imageformats\qico.dll
2013-09-28 20:13 - 2013-09-28 20:13 - 00261120 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\imageformats\qjpeg.dll
2013-09-28 20:13 - 2013-09-28 20:13 - 00046080 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\imageformats\qsvg.dll
2014-06-29 20:55 - 2014-06-29 20:55 - 00081408 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\DiagnosePlugin.dll
2014-11-03 03:23 - 2014-11-03 03:23 - 00143360 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\DiagnoseDll.dll
2014-06-18 21:22 - 2014-06-18 21:22 - 02177405 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\drivers\libntgr_api.dll
2014-09-04 01:00 - 2014-09-04 01:00 - 00072192 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\SVTUtils.dll
2014-09-04 01:00 - 2014-09-04 01:00 - 00074240 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\NetcardApi.dll
2014-09-04 01:00 - 2014-09-04 01:00 - 00136704 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\airprintdll.dll
2012-10-15 15:28 - 2012-10-15 15:28 - 00219648 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\plugins\access\libdshow_plugin.dll
2012-10-15 15:28 - 2012-10-15 15:28 - 00049664 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\plugins\audio_output\libaout_directx_plugin.dll
2012-10-15 15:28 - 2012-10-15 15:28 - 00051200 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\plugins\audio_output\libwaveout_plugin.dll
2012-10-15 15:28 - 2012-10-15 15:28 - 00070144 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\plugins\video_output\libdirectx_plugin.dll
2013-09-28 20:13 - 2013-09-28 20:13 - 00040960 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\printsupport\windowsprintersupport.dll
2014-11-05 02:59 - 2014-11-05 02:59 - 00642048 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\InnerPlugin_Update.dll
2014-11-05 03:01 - 2014-11-05 03:01 - 00458752 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\InnerPlugin_WirelessExport.dll
2014-06-29 21:33 - 2014-06-29 21:33 - 00046080 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\WSetupApiPlugin.dll
2014-09-04 01:00 - 2014-09-04 01:00 - 00066560 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\WSetupDll.dll
2015-09-23 16:47 - 2015-09-23 16:47 - 01040144 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2014-01-20 14:17 - 2014-01-20 14:17 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2015-06-26 11:40 - 2015-06-26 11:40 - 00046080 _____ () C:\Program Files (x86)\Audials\Audials 12\boost_thread-vc90-mt-1_39.dll
2015-06-26 11:40 - 2015-06-26 11:40 - 00045056 _____ () C:\Program Files (x86)\Audials\Audials 12\boost_date_time-vc90-mt-1_39.dll
2015-06-26 11:40 - 2015-06-26 11:40 - 00545032 _____ () C:\Program Files (x86)\Audials\Audials 12\StreamingClient.dll
2015-06-26 11:40 - 2015-06-26 11:40 - 00012800 _____ () C:\Program Files (x86)\Audials\Audials 12\boost_system-vc90-mt-1_39.dll
2015-06-26 11:40 - 2015-06-26 11:40 - 00068360 _____ () C:\Program Files (x86)\Audials\Audials 12\CrashRpt.dll
2015-06-26 11:40 - 2015-06-26 11:40 - 00580360 _____ () C:\Program Files (x86)\Audials\Audials 12\SQLite3.dll
2015-06-26 11:40 - 2015-06-26 11:40 - 00614912 _____ () C:\Program Files (x86)\Audials\Audials 12\boost_regex-vc90-mt-1_39.dll
2015-07-06 23:01 - 2015-07-06 23:01 - 00318464 _____ () C:\windows\assembly\NativeImages_v4.0.30319_32\Utils\a1dd6d1d11177bf23fb870ec02ebd4d6\Utils.ni.dll
2015-07-06 23:01 - 2015-07-06 23:01 - 00649216 _____ () C:\windows\assembly\NativeImages_v4.0.30319_32\ManagedInterfaces\c422a9b6a072f685578ae02754f6d383\ManagedInterfaces.ni.dll
2015-07-06 23:01 - 2015-07-06 23:01 - 03816448 _____ () C:\windows\assembly\NativeImages_v4.0.30319_32\AudialsComponents\58bae948d92cc4f4443d259a28141ceb\AudialsComponents.ni.dll
2015-07-06 23:01 - 2015-07-06 23:01 - 00174592 _____ () C:\windows\assembly\NativeImages_v4.0.30319_32\fastJSON\036ebacdcacc421bbf99763eb3671a2c\fastJSON.ni.dll
2015-07-06 23:01 - 2015-07-06 23:01 - 00062464 _____ () C:\windows\assembly\NativeImages_v4.0.30319_32\CrashHandlerNET\0dbec0d93b06c60c8f6fd57bd461a0a4\CrashHandlerNET.ni.dll
2015-06-26 11:40 - 2015-06-26 11:40 - 00040712 _____ () C:\Program Files (x86)\Audials\Audials 12\CrashHandlerNET.dll
2014-05-02 01:03 - 2014-06-23 05:19 - 00867080 _____ () C:\Program Files (x86)\CyberLink\PowerDVD14\common\UNO\UNO.dll
2014-05-02 01:03 - 2013-12-10 02:39 - 00074240 _____ () C:\Program Files (x86)\CyberLink\PowerDVD14\Common\Koan\_ctypes.pyd
2014-05-02 01:03 - 2013-12-10 02:39 - 00285184 _____ () C:\Program Files (x86)\CyberLink\PowerDVD14\Common\Koan\_hashlib.pyd
2014-05-02 01:03 - 2013-12-10 02:39 - 00040960 _____ () C:\Program Files (x86)\CyberLink\PowerDVD14\Common\Koan\_socket.pyd
2014-05-02 01:03 - 2013-12-10 02:39 - 00721920 _____ () C:\Program Files (x86)\CyberLink\PowerDVD14\Common\Koan\_ssl.pyd
2011-06-01 11:42 - 2011-06-01 11:42 - 00108296 _____ () C:\Program Files (x86)\Seagate\Seagate Dashboard\Memeo.Progress.dll
2011-06-01 11:46 - 2011-06-01 11:46 - 00030984 _____ () C:\Program Files (x86)\Seagate\Seagate Dashboard\Plugins\Memeo.Dashboard.SeagateSharePlusPlugin.dll
2011-06-01 11:16 - 2011-06-01 11:16 - 00241664 _____ () C:\Program Files (x86)\Seagate\Seagate Dashboard\HipServAgent\libupnp.dll
2011-06-01 11:16 - 2011-06-01 11:16 - 00971776 _____ () C:\Program Files (x86)\Seagate\Seagate Dashboard\HipServAgent\libxml2.dll
2015-09-30 22:28 - 2015-09-30 22:28 - 00071168 ____N () c:\users\john\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmphyhdii.dll
2015-08-12 08:52 - 2015-09-02 18:03 - 00012800 _____ () C:\Users\John\AppData\Roaming\Dropbox\bin\QtQuick.2\qtquick2plugin.dll
2015-08-12 08:52 - 2015-09-02 18:03 - 00779776 _____ () C:\Users\John\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll
2015-08-12 08:52 - 2015-09-02 18:03 - 00056320 _____ () C:\Users\John\AppData\Roaming\Dropbox\bin\QtQuick\Layouts\qquicklayoutsplugin.dll
2015-08-12 08:52 - 2015-09-02 18:03 - 00012288 _____ () C:\Users\John\AppData\Roaming\Dropbox\bin\QtQuick\Window.2\windowplugin.dll
2014-04-09 16:28 - 2014-04-09 16:28 - 00045192 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_socket.pyd
2014-04-09 16:28 - 2014-04-09 16:28 - 00028808 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_ssl.pyd
2014-04-09 16:28 - 2014-04-09 16:28 - 00019080 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_hashlib.pyd
2014-04-09 16:28 - 2014-04-09 16:28 - 00035976 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\simplejson\_speedups.pyd
2014-04-09 16:28 - 2014-04-09 16:28 - 00836744 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\lxml\etree.pyd
2014-04-09 16:28 - 2014-04-09 16:28 - 00062600 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libexslt.dll
2014-04-09 16:28 - 2014-04-09 16:28 - 00166024 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libxslt.dll
2014-04-09 16:28 - 2014-04-09 16:28 - 00192648 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\lxml\objectify.pyd
2014-04-09 16:28 - 2014-04-09 16:28 - 00016520 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\select.pyd
2014-04-09 16:28 - 2014-04-09 16:28 - 00056456 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\OpenSSL\crypto.pyd
2014-04-09 16:28 - 2014-04-09 16:28 - 00018056 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\OpenSSL\rand.pyd
2014-04-09 16:28 - 2014-04-09 16:28 - 00044680 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\OpenSSL\SSL.pyd
2014-04-09 16:28 - 2014-04-09 16:28 - 00083080 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_ctypes.pyd
2014-04-09 16:28 - 2014-04-09 16:28 - 00111752 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\pyexpat.pyd
2014-04-09 16:28 - 2014-04-09 16:28 - 00692360 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\unicodedata.pyd
2015-09-29 17:25 - 2015-09-23 21:34 - 01501512 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.101\libglesv2.dll
2015-09-29 17:25 - 2015-09-23 21:34 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.101\libegl.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Windows:nlsPreferences
AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`26hfm
AlternateDataStreams: C:\ProgramData\Temp:792D4CF1
AlternateDataStreams: C:\ProgramData\Temp:A303874F
AlternateDataStreams: C:\ProgramData\Temp:D287FACF
AlternateDataStreams: C:\ProgramData\Temp:D3A96964
AlternateDataStreams: C:\Users\John\Downloads\Heater and installation bid.eml:OECustomProperty
AlternateDataStreams: C:\Users\John\AppData\Roaming\Comma Separated Values.EML:OECustomProperty
AlternateDataStreams: C:\Users\John\AppData\Local\Temp:hMIwmA5HHskQ59ZoUDkjn
AlternateDataStreams: C:\Users\Linda.Linda-HP2012\AppData\Roaming\Comma Separated Values.EML:OECustomProperty
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\discovercard.com -> hxxps://www.discovercard.com
IE trusted site: HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\fundsxpress.com -> hxxps://szcsbai.secure.fundsxpress.com
IE trusted site: HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\routerlogin.net -> hxxp://www.routerlogin.net
IE trusted site: HKU\S-1-5-21-665846457-3026422965-1844958906-1001\...\verizonwireless.com -> hxxps://www.verizonwireless.com
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-665846457-3026422965-1844958906-1001\Control Panel\Desktop\\Wallpaper -> C:/Users/John/AppData/Local/Temp/WebshotsWallpaper.bmp
HKU\S-1-5-21-665846457-3026422965-1844958906-1006\Control Panel\Desktop\\Wallpaper -> C:\Users\Linda.Linda-HP2012\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 167.142.225.3 - 167.142.225.5
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
MSCONFIG\startupreg: Adobe Creative Cloud => "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
MSCONFIG\startupreg: ApplePhotoStreams => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
MSCONFIG\startupreg: Autodesk Sync => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe
MSCONFIG\startupreg: EvtMgr6 => C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming
MSCONFIG\startupreg: GarminExpressTrayApp => "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
MSCONFIG\startupreg: Norton Online Backup => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
MSCONFIG\startupreg: NvBackend => "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
MSCONFIG\startupreg: Samsung Link => "C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe"
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: YouCam Service6 => "C:\Program Files (x86)\CyberLink\YouCam6\YouCamService6.exe" /s
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{690BC34B-FE1E-4236-8307-95C1C2D7A3B3}] => (Allow) C:\Program Files (x86)\Roxio\RoxioNow Player\RNowShell.exe
FirewallRules: [{077063DF-0B54-4ED3-9C78-62252EA2321D}] => (Allow) C:\Program Files (x86)\Roxio\RoxioNow Player\RNowShell.exe
FirewallRules: [{8B392490-2287-4100-B786-596EBDD50070}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\MediaSmart\RoxioNow\RNow.exe
FirewallRules: [{51FB3660-565F-49FE-A8F2-3C5914CB6A2E}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\MediaSmart\RoxioNow\RNow.exe
FirewallRules: [{173138E6-8945-4990-8876-A2BCD72ADF16}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDirector\PDR8.EXE
FirewallRules: [{DD1FD8EA-AB37-441A-8A4B-FD0E11785B67}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{F7D9E4AE-C063-47DD-AD20-68324D9178CA}] => (Allow) LPort=2869
FirewallRules: [{8F40DD2D-53F7-4BE8-BD9F-7DC122C12310}] => (Allow) LPort=1900
FirewallRules: [{F57942B5-93E1-4EBB-8B37-D1DDD25672DA}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{8BD6B2FA-64D8-4F9E-8753-76A5CFBEA962}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe
FirewallRules: [{C8506770-18EA-4E03-891C-8C671858AB78}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
FirewallRules: [{24E09462-4E84-4DFF-9F0E-DBB7EF904B10}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
FirewallRules: [{AAC67AC6-3B4C-4A35-853D-6A770ADC7837}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
FirewallRules: [{468A444C-86F3-40D9-858D-6A26A279D518}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
FirewallRules: [{52A6DC24-F254-40E8-8D33-505A4CE4F094}] => (Allow) C:\Program Files (x86)\WebFerret\WebFerret.exe
FirewallRules: [{B30E2053-6F3F-4F17-A8B0-B46500DF8806}] => (Allow) C:\Program Files (x86)\WebFerret\WebFerret.exe
FirewallRules: [{B8212E0E-660A-4C08-AEC4-670ABCA7A3F2}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\Remote Graphics Receiver\rgreceiver.exe
FirewallRules: [{B1B61A81-3D46-4F68-B184-3F49C61A0E91}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\Remote Graphics Receiver\rgreceiver.exe
FirewallRules: [{9FD21109-318D-4707-BFC3-283936DA0269}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP LinkUp\HP LinkUp Viewer.exe
FirewallRules: [{4192537C-A4F9-47A9-AE74-F158F669CE63}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP LinkUp\HP LinkUp Viewer.exe
FirewallRules: [{0FC7E8E2-6CD0-4C4E-A808-8C15BC3AA2AE}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{35D10F8F-D073-4671-9C51-ADCD86AFE6B8}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{5AE73B6D-440C-4952-B625-2520ECAACE92}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{AC2BCC78-E80B-4446-A074-E76DE01CB366}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{A137DB0A-7209-4A58-830E-516BBB686457}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{B88569D3-FD15-4435-8030-68F654C1A20D}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{ABA73441-42DE-4A34-8C14-60E620EBB36E}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{FE44AC5A-7AE1-45F7-832F-80F033C9D9DE}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{EE71F1B8-A1F9-4B76-8BA8-DED6BA9BAE6F}] => (Allow) LPort=50248
FirewallRules: [{0FCDA81B-EC60-473F-A9C3-4C46AC7C9DD3}] => (Allow) C:\Program Files\Autodesk\3ds Max Design 2014\NVIDIA\Satellite\raysat_3dsmax2014_64server.exe
FirewallRules: [{280B5FB3-1B22-4F28-91D4-2D924F439958}] => (Allow) C:\Program Files\Autodesk\3ds Max Design 2014\NVIDIA\Satellite\raysat_3dsmax2014_64server.exe
FirewallRules: [{10F28EEC-357B-4152-8537-C14DE421A42C}] => (Allow) C:\Program Files\Autodesk\3ds Max Design 2014\NVIDIA\Satellite\raysat_3dsmax2014_64.exe
FirewallRules: [{A32F3535-985B-4197-AC1F-A32A67FD01E1}] => (Allow) C:\Program Files\Autodesk\3ds Max Design 2014\NVIDIA\Satellite\raysat_3dsmax2014_64.exe
FirewallRules: [{78BE3848-5AB1-4AA4-A8B6-F31CC21681FB}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\monitor.exe
FirewallRules: [{19A90406-C3FD-42AD-87EF-CF5F8C54D535}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\monitor.exe
FirewallRules: [{70F579A2-99D9-4ABD-B566-C99A5B852FE0}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\manager.exe
FirewallRules: [{C3FDD4DB-3E06-443E-B76D-E904DAB1A96D}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\manager.exe
FirewallRules: [{FB1FE6FE-C495-4012-ACA3-A5AA2A5E9EDE}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\server.exe
FirewallRules: [{8CF14065-21AC-4007-966D-0B94186F8F16}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\server.exe
FirewallRules: [{E56B8CF4-EBCB-4CF4-A3D0-C2482637CD32}] => (Allow) C:\Program Files (x86)\Adobe\Adobe Flash Builder 4.6\FlashBuilder.exe
FirewallRules: [{24C3B69F-9021-4AE9-9A99-2B410C646864}] => (Allow) C:\Program Files (x86)\Adobe\Adobe Flash Builder 4.6\FlashBuilder.exe
FirewallRules: [{260A20C4-E7BE-4AD5-89F4-42065F1847A5}] => (Allow) LPort=7935
FirewallRules: [{2CBD8B35-0BBD-4B78-B0BB-A4AD0BC03B4A}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Converter Studio\Video Converter Studio.exe
FirewallRules: [{43B04FA4-8653-4FFD-845E-4DC34496C592}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Converter Studio\Video Converter Studio.exe
FirewallRules: [{67924BE5-F51D-4254-B501-A753338BD904}] => (Allow) E:\Program Files (x86)\Apowersoft\MKV Converter Studio\MKV Converter Studio.exe
FirewallRules: [{810FE0B6-4B9C-45ED-93E0-4D9DFEFFA539}] => (Allow) E:\Program Files (x86)\Apowersoft\MKV Converter Studio\MKV Converter Studio.exe
FirewallRules: [{6274DF15-2698-4A21-B3C3-D4C3020735BC}] => (Allow) E:\Program Files (x86)\Apowersoft\Streaming Video Recorder\Streaming Video Recorder.exe
FirewallRules: [{CB66C3DF-B7B3-41E4-A9CB-EE314C6BAF72}] => (Allow) E:\Program Files (x86)\Apowersoft\Streaming Video Recorder\Streaming Video Recorder.exe
FirewallRules: [{760D3BAB-D13D-4391-9DBC-9863E752CD02}] => (Allow) E:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftSrv.dll
FirewallRules: [{D337E534-28BE-47EB-A033-F1FB42972F4E}] => (Allow) E:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftSrv.dll
FirewallRules: [{1A8CD564-FD61-4DCE-8B83-5F03F45B6445}] => (Allow) E:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDump.dll
FirewallRules: [{F14EDE4D-E8C9-4AD1-A03E-A15496B49949}] => (Allow) E:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDump.dll
FirewallRules: [{E785958F-201A-4AD5-9D84-A7D1D4436EDA}] => (Allow) E:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftAC.dll
FirewallRules: [{77E76D0A-0D36-406A-AAC8-7F43D276EC30}] => (Allow) E:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftAC.dll
FirewallRules: [{BD81CC1F-3C6D-4DF4-AB68-80CF2B9A88D8}] => (Allow) E:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftPlayer.dll
FirewallRules: [{937A8BBB-E559-4BD4-90B2-CDD2FE549184}] => (Allow) E:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftPlayer.dll
FirewallRules: [{736B7E31-DA7D-4C2C-9EB8-4BBEA279A656}] => (Allow) E:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDownloaderHelp.dll
FirewallRules: [{04552E6C-EC4F-4F5E-B82C-CA5CC457A4E1}] => (Allow) E:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDownloaderHelp.dll
FirewallRules: [{356FCFEA-02B9-40B5-A2F3-A34CAC4DF1D8}] => (Allow) E:\Program Files (x86)\Apowersoft\Streaming Audio Recorder\Streaming Audio Recorder.exe
FirewallRules: [{F07CB169-3151-4459-93E9-408E80188F96}] => (Allow) E:\Program Files (x86)\Apowersoft\Streaming Audio Recorder\Streaming Audio Recorder.exe
FirewallRules: [{53E7E4EB-6C1C-4150-B92C-AA309F6EFBD7}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Converter Studio\Video Converter Studio.exe
FirewallRules: [{24A00D39-5F35-4A41-A09C-4B4D1EEBC2B6}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Converter Studio\Video Converter Studio.exe
FirewallRules: [{0C872F74-046D-4EC8-B04D-02F0ABBA594C}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro\Apowersoft Screen Recorder Pro.exe
FirewallRules: [{2CD30ABE-93BE-412A-81F2-145DF54B98D5}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro\Apowersoft Screen Recorder Pro.exe
FirewallRules: [{0677F274-5476-45F7-92C1-E4FAAD9A502F}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Download Capture\Video Download Capture.exe
FirewallRules: [{DAA72A48-09A9-4604-BE93-FA853875675B}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Download Capture\Video Download Capture.exe
FirewallRules: [{BD8F2418-B0BF-4725-80CE-0A0E1F8E3E79}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftSrv.dll
FirewallRules: [{3C58A546-54CD-4C97-8364-424F3008019B}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftSrv.dll
FirewallRules: [{DEFD0080-2568-4041-80C0-B5F20D35A8BB}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftDump.dll
FirewallRules: [{D703CE8E-E5BF-4469-972B-E3F43E7EFBCE}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftDump.dll
FirewallRules: [{AA86534F-DE1E-4956-BC12-29FF246811F1}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftAC.dll
FirewallRules: [{92B36A3E-135D-4075-BDCB-9D27FC46D0CF}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftAC.dll
FirewallRules: [{9924BE9C-41E2-40FD-B083-2B60F5675A8A}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftPlayer.dll
FirewallRules: [{392C07B5-DBAA-4DFE-88F2-EB9C1E8FA416}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftPlayer.dll
FirewallRules: [{53212A42-B7FF-46C2-84BD-CAD99415FDAC}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftDownloaderHelp.dll
FirewallRules: [{F7CF72D0-5D67-4F15-AF57-82EE64A4FF9F}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftDownloaderHelp.dll
FirewallRules: [{38A08CD2-8E6D-42E8-A046-81BCD7262FE8}] => (Allow) E:\Program Files (x86)\Apowersoft\StreamingMediaRecorder\Streaming Video Recorder.exe
FirewallRules: [{446C435F-CBD0-4C8F-B107-E5FAD3557365}] => (Allow) E:\Program Files (x86)\Apowersoft\StreamingMediaRecorder\Streaming Video Recorder.exe
FirewallRules: [{F29DED4A-E99E-427C-AFA7-6E33A7B903B8}] => (Allow) E:\Program Files (x86)\Apowersoft\StreamingMediaRecorder\ApowersoftSrv.dll
FirewallRules: [{C86AA608-A1F6-436C-A4E3-7339BC2269F2}] => (Allow) E:\Program Files (x86)\Apowersoft\StreamingMediaRecorder\ApowersoftSrv.dll
FirewallRules: [{00F2DCF0-DE5A-4A49-86EA-6162E3EB5291}] => (Allow) E:\Program Files (x86)\Apowersoft\StreamingMediaRecorder\ApowersoftDump.dll
FirewallRules: [{8EDBAE5E-0C7E-4EB3-B6D7-E02B8103B918}] => (Allow) E:\Program Files (x86)\Apowersoft\StreamingMediaRecorder\ApowersoftDump.dll
FirewallRules: [{D08BF5D1-CAA0-4A38-A819-AC4E9AAAE09E}] => (Allow) E:\Program Files (x86)\Apowersoft\StreamingMediaRecorder\ApowersoftAC.dll
FirewallRules: [{1CE28B37-E301-4274-896F-2CDC4E0F9BD0}] => (Allow) E:\Program Files (x86)\Apowersoft\StreamingMediaRecorder\ApowersoftAC.dll
FirewallRules: [{E882B49E-B97D-4FFA-93B4-7488FF756D5D}] => (Allow) E:\Program Files (x86)\Apowersoft\StreamingMediaRecorder\ApowersoftPlayer.dll
FirewallRules: [{583632E4-16D1-41DE-832F-F781C66D2449}] => (Allow) E:\Program Files (x86)\Apowersoft\StreamingMediaRecorder\ApowersoftPlayer.dll
FirewallRules: [{5C67EEBB-B8B8-4E1B-9511-7387D7D3FEAE}] => (Allow) E:\Program Files (x86)\Apowersoft\StreamingMediaRecorder\ApowersoftDownloaderHelp.dll
FirewallRules: [{E4F8D566-49C8-4378-99E9-29598316ABE6}] => (Allow) E:\Program Files (x86)\Apowersoft\StreamingMediaRecorder\ApowersoftDownloaderHelp.dll
FirewallRules: [{093F8C3D-FC39-4F3E-8E3E-99A2508C2C01}] => (Allow) E:\Program Files (x86)\Apowersoft\Screen Recording Suite\Screen Recording Suite.exe
FirewallRules: [{29C0F0F9-5203-4226-9A7B-FA42170867AC}] => (Allow) E:\Program Files (x86)\Apowersoft\Screen Recording Suite\Screen Recording Suite.exe
FirewallRules: [{98CEA312-45D1-4CBC-8626-EAC1D09A7EF5}] => (Allow) E:\Program Files (x86)\Apowersoft\AMV Converter Studio\AMV Converter Studio.exe
FirewallRules: [{F6DC1F8F-483B-409E-864C-803DF3263557}] => (Allow) E:\Program Files (x86)\Apowersoft\AMV Converter Studio\AMV Converter Studio.exe
FirewallRules: [{4DDFD24A-74DC-4EA1-8177-DCC7AC1CBD1B}] => (Allow) E:\Program Files (x86)\Apowersoft\YouTube To MP3\YouTube To MP3.exe
FirewallRules: [{E46EADFE-D8FE-4148-8168-6B921E98A494}] => (Allow) E:\Program Files (x86)\Apowersoft\YouTube To MP3\YouTube To MP3.exe
FirewallRules: [{65889099-5D3A-4C09-A3CE-EC5464E85D0C}] => (Allow) E:\Program Files (x86)\Apowersoft\YouTube Music Converter\YouTube Music Converter.exe
FirewallRules: [{699E542A-3D06-4083-B23E-08024964FBAD}] => (Allow) E:\Program Files (x86)\Apowersoft\YouTube Music Converter\YouTube Music Converter.exe
FirewallRules: [{A87283C6-734D-4D6E-BB5B-1A4EF37E7FEE}] => (Allow) E:\Program Files (x86)\Apowersoft\YouTube Downloader Suite\YouTube Downloader Suite.exe
FirewallRules: [{5A0CFEB1-2CED-41EC-BB21-EE51FDCC41C2}] => (Allow) E:\Program Files (x86)\Apowersoft\YouTube Downloader Suite\YouTube Downloader Suite.exe
FirewallRules: [{4A07A4B3-B218-4B81-B33F-2AC56613429D}] => (Allow) E:\Program Files (x86)\Apowersoft\YouTube Downloader Suite\ApowersoftSrv.dll
FirewallRules: [{4E7017B0-E874-4390-8CC9-E74DBD12EC7D}] => (Allow) E:\Program Files (x86)\Apowersoft\YouTube Downloader Suite\ApowersoftSrv.dll
FirewallRules: [{C98F22D1-450B-4830-80B6-E1C4AEC7FEB9}] => (Allow) E:\Program Files (x86)\Apowersoft\YouTube Downloader Suite\ApowersoftDump.dll
FirewallRules: [{8CFBC19B-A652-4F06-AB83-974254FFDD2E}] => (Allow) E:\Program Files (x86)\Apowersoft\YouTube Downloader Suite\ApowersoftDump.dll
FirewallRules: [{2105E4D3-9EDF-4904-A855-5F3EB993ABB0}] => (Allow) E:\Program Files (x86)\Apowersoft\YouTube Downloader Suite\ApowersoftAC.dll
FirewallRules: [{78B823B5-DE94-480A-8CE9-8B989A6E36A7}] => (Allow) E:\Program Files (x86)\Apowersoft\YouTube Downloader Suite\ApowersoftAC.dll
FirewallRules: [{EB858E3B-4285-4CB0-B681-1A8727B2E770}] => (Allow) E:\Program Files (x86)\Apowersoft\YouTube Downloader Suite\ApowersoftPlayer.dll
FirewallRules: [{C1342748-E0FF-480F-B62E-F42E279D48A2}] => (Allow) E:\Program Files (x86)\Apowersoft\YouTube Downloader Suite\ApowersoftPlayer.dll
FirewallRules: [{4BEACA7B-044C-4F28-A535-8AE36E6882DC}] => (Allow) E:\Program Files (x86)\Apowersoft\Free Music Downloader\Free Music Downloader.exe
FirewallRules: [{A4B699BC-4F45-4CF2-88B9-733E65F81400}] => (Allow) E:\Program Files (x86)\Apowersoft\Free Music Downloader\Free Music Downloader.exe
FirewallRules: [{85CAF548-622A-4C1A-A462-2CA1C67A3577}] => (Allow) E:\Program Files (x86)\Apowersoft\Streaming Music Recorder\Streaming Music Recorder.exe
FirewallRules: [{4210596F-71E4-402C-87E6-88FA3D78CEFF}] => (Allow) E:\Program Files (x86)\Apowersoft\Streaming Music Recorder\Streaming Music Recorder.exe
FirewallRules: [{DC5E06EE-2C07-46D7-BD85-D33343FE31F2}] => (Allow) E:\Program Files (x86)\Apowersoft\Episode Downloader\Episode Downloader.exe
FirewallRules: [{04DF7DEB-CD0C-4BA0-84E0-D5BAC805EA78}] => (Allow) E:\Program Files (x86)\Apowersoft\Episode Downloader\Episode Downloader.exe
FirewallRules: [{7B4A9EC0-786F-489E-AF48-E3077E41583C}] => (Allow) E:\Program Files (x86)\Apowersoft\Episode Downloader\ApowersoftSrv.dll
FirewallRules: [{B55094DF-930F-4778-A9E8-AD6B04F3BE3F}] => (Allow) E:\Program Files (x86)\Apowersoft\Episode Downloader\ApowersoftSrv.dll
FirewallRules: [{D36EF9B3-125A-4E30-A980-3D68215816C8}] => (Allow) E:\Program Files (x86)\Apowersoft\Episode Downloader\ApowersoftDump.dll
FirewallRules: [{F172B8DA-E3D0-4694-B4AF-C7144DAB5F1D}] => (Allow) E:\Program Files (x86)\Apowersoft\Episode Downloader\ApowersoftDump.dll
FirewallRules: [{D2D720E5-FC08-43B3-9E7E-50343B64E55F}] => (Allow) E:\Program Files (x86)\Apowersoft\Episode Downloader\ApowersoftAC.dll
FirewallRules: [{2B45C903-0823-4F16-8CF5-7A2CB9FB9AA1}] => (Allow) E:\Program Files (x86)\Apowersoft\Episode Downloader\ApowersoftAC.dll
FirewallRules: [{124E804C-B8BE-42D8-A43B-F7A094B1F27F}] => (Allow) E:\Program Files (x86)\Apowersoft\Episode Downloader\ApowersoftPlayer.dll
FirewallRules: [{D620C0FF-4375-4D7A-BC67-D85DAF254001}] => (Allow) E:\Program Files (x86)\Apowersoft\Episode Downloader\ApowersoftPlayer.dll
FirewallRules: [{D8479FB2-5379-450E-B8BB-BD6A725C96F3}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Downloader Suite\Video Downloader Suite.exe
FirewallRules: [{67F5C63D-1D58-45BF-8A1F-97662E13940B}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Downloader Suite\Video Downloader Suite.exe
FirewallRules: [{ECB49BDB-CCDA-467A-BB96-CBB638D00D7A}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Downloader Suite\ApowersoftSrv.dll
FirewallRules: [{3EF85579-6A41-47FE-B3CB-F204181AF057}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Downloader Suite\ApowersoftSrv.dll
FirewallRules: [{E0EDC0E4-4049-4967-93BD-631E54C06FA5}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Downloader Suite\ApowersoftDump.dll
FirewallRules: [{6D49D68C-41DC-4E6D-B2EE-238A2E0AA315}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Downloader Suite\ApowersoftDump.dll
FirewallRules: [{87D4F872-1945-4C78-AC12-2EEE4A0D6B3A}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Downloader Suite\ApowersoftAC.dll
FirewallRules: [{7671BE92-10AB-4203-BC49-E00BF3462FA9}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Downloader Suite\ApowersoftAC.dll
FirewallRules: [{094530D9-0C3B-4D38-AC0F-9B068630BAE2}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Downloader Suite\ApowersoftPlayer.dll
FirewallRules: [{9BB193A7-ABE9-4879-BC57-D7AE32D97C14}] => (Allow) E:\Program Files (x86)\Apowersoft\Video Downloader Suite\ApowersoftPlayer.dll
FirewallRules: [{9D511710-511C-4DE0-8852-98E35A45C259}] => (Allow) E:\Program Files (x86)\Apowersoft\Windows Shutdown Assistant\Windows Shutdown Assistant.exe
FirewallRules: [{806A8819-CA41-4F89-AE3F-A57953A58616}] => (Allow) E:\Program Files (x86)\Apowersoft\Windows Shutdown Assistant\Windows Shutdown Assistant.exe
FirewallRules: [{162BE436-931A-484A-8429-DD3A0FDBB7F3}] => (Allow) E:\Program Files (x86)\Nuance\OmniPage19\OmniPage19.exe
FirewallRules: [{4FD2DD61-64A4-4663-AB17-3C8185645A66}] => (Allow) E:\Program Files (x86)\Nuance\OmniPage19\OmniPage19.exe
FirewallRules: [{08241215-5E28-4E38-AFA6-456D7011737E}] => (Allow) E:\Program Files (x86)\Nuance\OmniPage19\PPMV.exe
FirewallRules: [{42B2DCA0-60CF-4749-9056-FAD6EAD994F6}] => (Allow) E:\Program Files (x86)\Nuance\OmniPage19\PPMV.exe
FirewallRules: [{548C792A-C1AE-4C8E-B7DB-C247E475284D}] => (Allow) E:\Program Files (x86)\Nuance\OmniPage19\Ereg\Ereg.exe
FirewallRules: [{BA9675D2-7E55-44F7-8D18-4481186D96C7}] => (Allow) E:\Program Files (x86)\Nuance\OmniPage19\Ereg\Ereg.exe
FirewallRules: [{FD82D70F-25DB-4490-A0C3-0D089E4E9832}] => (Allow) C:\Program Files (x86)\Nuance\Nuance Cloud Connector\GladinetClient.exe
FirewallRules: [{7AA6D2B8-E081-4537-8122-E443E2B23912}] => (Allow) C:\Program Files (x86)\Nuance\Nuance Cloud Connector\GladinetClient.exe
FirewallRules: [{C59926C4-8385-4ECC-B633-A1540D8A36D9}] => (Allow) C:\Program Files (x86)\Nuance\Nuance Cloud Connector\WOSVSSSvr.exe
FirewallRules: [{22EB30E5-4344-40F9-A3D0-0065C012331A}] => (Allow) C:\Program Files (x86)\Nuance\Nuance Cloud Connector\WOSVSSSvr.exe
FirewallRules: [{651B73F6-91A3-4F21-922B-259665C9D223}] => (Allow) C:\Program Files (x86)\Nuance\Nuance Cloud Connector\WOSVSSSvr2003.exe
FirewallRules: [{4BB42F5E-C076-43A5-B298-8DE2665915D3}] => (Allow) C:\Program Files (x86)\Nuance\Nuance Cloud Connector\WOSVSSSvr2003.exe
FirewallRules: [{CB0AD059-D3EF-43C1-A3A2-AA516CAE3FCF}] => (Allow) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdater.exe
FirewallRules: [{7357A12F-DE7D-41B9-A05F-0891DB35C3FF}] => (Allow) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
FirewallRules: [{44F61E84-7D9C-4E8A-ACF4-B3EBD8F66F78}] => (Allow) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
FirewallRules: [{080FED8B-D076-49D8-BCCF-C22A8A8569ED}] => (Allow) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
FirewallRules: [{617E1BC0-5EE0-4DF5-8BC7-9C1B579E8A53}] => (Allow) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
FirewallRules: [{CC98E107-B6CA-4B56-BD13-134B39234443}] => (Allow) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
FirewallRules: [{2701B957-6CB6-4E14-8189-DD6643473081}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{C563A7D8-69EB-4D10-A28F-E2A52DBB6064}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{D2BA6A65-5478-4AD3-9808-714BA9E38A82}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{B1B3286A-2654-452E-9A99-BA6B7374F64E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{960FEFC9-670F-4355-BD1F-2636E6E81BE8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{CDD65DC3-23FF-428C-9519-A2D5544E3416}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [TCP Query User{71DD18E8-A809-45D4-91BA-6B3AEF5BFF84}C:\program files (x86)\synology\assistant\dsassistant.exe] => (Allow) C:\program files (x86)\synology\assistant\dsassistant.exe
FirewallRules: [UDP Query User{4738A223-F7A4-4399-9FB1-504F1A4CB74A}C:\program files (x86)\synology\assistant\dsassistant.exe] => (Allow) C:\program files (x86)\synology\assistant\dsassistant.exe
FirewallRules: [{77C390B8-96A4-4FCA-9CD4-A4EFA67100F4}] => (Block) C:\program files (x86)\synology\assistant\dsassistant.exe
FirewallRules: [{22BD5305-F332-4BB6-B170-4BE6AAF8047E}] => (Block) C:\program files (x86)\synology\assistant\dsassistant.exe
FirewallRules: [TCP Query User{727865FE-F7D2-4833-B776-44DA54C36194}C:\program files (x86)\netgear genie\bin\netgeargenie.exe] => (Block) C:\program files (x86)\netgear genie\bin\netgeargenie.exe
FirewallRules: [UDP Query User{9FB50555-F4C5-4C96-A07A-958CE7FF0074}C:\program files (x86)\netgear genie\bin\netgeargenie.exe] => (Block) C:\program files (x86)\netgear genie\bin\netgeargenie.exe
FirewallRules: [{3ADA9AD1-C4B3-4AF8-AECA-490F6FAB9CEE}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe
FirewallRules: [{AA24C22F-DE99-4481-829B-197833A2E5EF}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe
FirewallRules: [{5D7DAA60-FBF3-4888-A7ED-AF9E7D00D021}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\PlexDlnaServer.exe
FirewallRules: [{D63E4776-B4AC-4A02-A277-DB3BDEBC1FA1}] => (Allow) C:\Users\John\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{5E5C24E7-32AF-4D88-B1C3-CDE761154A27}] => (Allow) C:\Users\John\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{90B97687-1761-4C48-840C-DED0D52583EC}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD.exe
FirewallRules: [{38185AB6-8F18-4F00-9187-4E1F6CE6B108}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Kernel\DMS\CLMSServerPDVD14.exe
FirewallRules: [{D7078E1C-7C46-4B95-AC30-0B75B38397C0}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe
FirewallRules: [{0FF9CCCB-0066-4F59-9CEC-76BF3B48A704}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Movie\PowerDVDMovie.exe
FirewallRules: [{7B3AAA25-7BD9-4681-A773-C38196EF1CBC}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Movie\PowerDVD Cinema\PowerDVDCinema.exe
FirewallRules: [TCP Query User{4CCE5DFB-B262-4C55-8B09-0879568FD354}C:\program files (x86)\netgear genie\bin\netgeargenie.exe] => (Allow) C:\program files (x86)\netgear genie\bin\netgeargenie.exe
FirewallRules: [UDP Query User{D206C65C-8026-48BE-880F-BDC092F43089}C:\program files (x86)\netgear genie\bin\netgeargenie.exe] => (Allow) C:\program files (x86)\netgear genie\bin\netgeargenie.exe
FirewallRules: [{0CDB0557-BB35-46B0-BD4F-CC176D0DA52B}] => (Allow) C:\Program Files\SiSoftware\SiSoftware Sandra Personal 2014.SP3e\RpcAgentSrv.exe
FirewallRules: [{0FD2A432-AEA1-4A7B-B0E1-D0D1E4B6EFEA}] => (Allow) C:\Program Files\SiSoftware\SiSoftware Sandra Personal 2014.SP3e\WNt600x64\RpcSandraSrv.exe
FirewallRules: [{4D47DF58-3263-4FAD-AEF8-39BF2085C1AF}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe
FirewallRules: [{CBF8EBD8-3DBC-48C4-8855-F50E77081E1E}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe
FirewallRules: [{2AF67A8F-EA2D-4B16-A7B9-852B6552CEF9}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link.exe
FirewallRules: [{D8963F8B-D076-41B1-819F-058100DEE92E}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link.exe
FirewallRules: [{8A64C695-17D2-47D3-BD80-FA0454958EA2}] => (Allow) C:\Program Files\SAMSUNG\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exe
FirewallRules: [{7481C8F5-12CD-45A0-9484-7AA69F5440C7}] => (Allow) C:\Program Files\SAMSUNG\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exe
FirewallRules: [{CE4AE6A5-355E-483A-86AC-83159C3B8BD7}] => (Allow) LPort=8743
FirewallRules: [{5C220F4D-C4E9-4310-AAC9-46B484D1A3D9}] => (Allow) LPort=8643
FirewallRules: [{0E809C72-E404-4912-85D8-77C4C6731E88}] => (Allow) LPort=7676
FirewallRules: [{EDAFA3EE-2363-4264-879E-91F8BE64DC7B}] => (Allow) LPort=7679
FirewallRules: [{5435AA1B-2E37-44DD-8333-2AE5BA3A852A}] => (Allow) LPort=24234
FirewallRules: [{D2B77431-C1BF-4B08-9605-E76E94B334D0}] => (Allow) LPort=7900
FirewallRules: [{D3EF6C5C-B229-476E-96A6-DD14A1765250}] => (Allow) LPort=1900
FirewallRules: [TCP Query User{A58DB21A-45D9-49B7-8A31-F25A4BF96C69}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe
FirewallRules: [UDP Query User{7815B0D1-9C8C-4044-A739-DB5B14523365}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe
FirewallRules: [TCP Query User{AF48581C-3EF4-46B4-88F7-0BC0CC5577EA}C:\program files (x86)\mediamonkey\mediamonkey (non-skinned).exe] => (Block) C:\program files (x86)\mediamonkey\mediamonkey (non-skinned).exe
FirewallRules: [UDP Query User{9049FCF6-CE4F-4F96-91E6-9256E7307615}C:\program files (x86)\mediamonkey\mediamonkey (non-skinned).exe] => (Block) C:\program files (x86)\mediamonkey\mediamonkey (non-skinned).exe
FirewallRules: [{9E91A59C-571C-47D5-B826-B6C6223D6263}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{3A1A45BF-1B25-4F5D-970C-1DF416BEC830}] => (Allow) C:\Program Files (x86)\Audials\Audials 12\Audials.exe
FirewallRules: [TCP Query User{B309F829-D7A3-45F0-A55B-E4695FA0C626}C:\program files (x86)\webshots\wallpaper\webshots.exe] => (Allow) C:\program files (x86)\webshots\wallpaper\webshots.exe
FirewallRules: [UDP Query User{A69AE0E3-4DD3-4A88-AF1E-A3F8AB901FEF}C:\program files (x86)\webshots\wallpaper\webshots.exe] => (Allow) C:\program files (x86)\webshots\wallpaper\webshots.exe
FirewallRules: [{C4C9A1CC-7569-4FEC-9286-C56D154258E1}] => (Allow) C:\Program Files (x86)\Seagate\Seagate Dashboard\HipServAgent\HipServAgent.exe
FirewallRules: [{D94D8D0D-AD71-4B58-9CEF-1BD7326724DE}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{FAB1FDF4-33BA-4E1C-8D7B-8894F0224C25}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{7A0E1013-6D33-4FC5-AE3A-355F7068F379}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{C93EFC96-02F7-406A-9E83-0816F4079F2B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{DED6EB24-9BBC-421A-9DAA-A52A51BA64B0}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{BCE4C849-9639-4DF3-9241-86941CA7E16B}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{37A401FA-F3F5-4FB8-8C5C-81F7D755D3E6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{E6673758-B226-44FB-B149-CA353F89EDD9}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{3BDCE083-BB87-4047-965A-AA03529DD977}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{841BA075-DC2B-468A-BB28-BE387B95CA21}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{6F30789C-968A-463E-AE2A-E56EF0B757F9}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe
==================== Faulty Device Manager Devices =============
Name: Bluetooth Peripheral Device
Description: Bluetooth Peripheral Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Bluetooth Peripheral Device
Description: Bluetooth Peripheral Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (09/30/2015 10:17:32 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding 20 171.20.215.173.in-addr.arpa. PTR Linda-HP2012.local.
Error: (09/30/2015 10:17:32 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 173.215.20.171:5353 22 171.20.215.173.in-addr.arpa. PTR Linda-HP2012-2.local.
Error: (09/30/2015 06:55:27 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/30/2015 05:52:40 PM) (Source: Microsoft-Windows-RestartManager) (EventID: 10006) (User: Linda-HP2012)
Description: Application or service 'iCloud' could not be shut down.
Error: (09/30/2015 05:09:51 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding 20 171.20.215.173.in-addr.arpa. PTR Linda-HP2012.local.
Error: (09/30/2015 05:09:51 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 173.215.20.171:5353 22 171.20.215.173.in-addr.arpa. PTR Linda-HP2012-2.local.
Error: (09/30/2015 05:06:39 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding 20 171.20.215.173.in-addr.arpa. PTR Linda-HP2012.local.
Error: (09/30/2015 05:06:39 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 173.215.20.171:5353 22 171.20.215.173.in-addr.arpa. PTR Linda-HP2012-2.local.
Error: (09/30/2015 05:02:56 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding 20 171.20.215.173.in-addr.arpa. PTR Linda-HP2012.local.
Error: (09/30/2015 05:02:56 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 173.215.20.171:5353 22 171.20.215.173.in-addr.arpa. PTR Linda-HP2012-2.local.
System errors:
=============
Error: (09/30/2015 05:01:36 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk2\DR7.
Error: (09/30/2015 05:01:35 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk2\DR7.
Error: (09/30/2015 05:01:34 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk2\DR7.
Error: (09/30/2015 03:28:32 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk2\DR7.
Error: (09/30/2015 03:28:30 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk2\DR7.
Error: (09/29/2015 05:22:37 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: The name "WORKGROUP :1d" could not be registered on the interface with IP address 173.215.20.171.
The computer with the IP address 173.215.20.147 did not allow the name to be claimed by
this computer.
Error: (09/29/2015 05:22:37 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: The name "WORKGROUP :1d" could not be registered on the interface with IP address 173.215.20.171.
The computer with the IP address 173.215.20.147 did not allow the name to be claimed by
this computer.
Error: (09/28/2015 02:28:38 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk7\DR7.
Error: (09/28/2015 02:28:38 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk7\DR7.
Error: (09/28/2015 02:28:37 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk7\DR7.
CodeIntegrity:
===================================
Date: 2013-10-21 19:36:25.539
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\cryptnet.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-10-21 19:36:25.479
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\cryptnet.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-10-21 19:36:25.389
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\cryptnet.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-10-21 19:36:25.289
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\cryptnet.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-10-21 19:36:25.199
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\cryptnet.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-10-21 19:36:25.119
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\cryptnet.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-10-21 19:36:25.049
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\cryptnet.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-10-21 19:36:24.919
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\cryptnet.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-10-21 19:36:24.599
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\cryptnet.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-10-21 19:36:24.489
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\cryptnet.dll because the set of per-page image hashes could not be found on the system.
==================== Memory info ===========================
Processor: Intel® Core i7 CPU 970 @ 3.20GHz
Percentage of memory in use: 56%
Total physical RAM: 16375.11 MB
Available physical RAM: 7204.13 MB
Total Virtual: 40935.31 MB
Available Virtual: 31364.13 MB
==================== Drives ================================
Drive c: (OS) (Fixed) (Total:1860.75 GB) (Free:158 GB) NTFS
Drive e: (Programs Data) (Fixed) (Total:2791.53 GB) (Free:1831.78 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 5BC53D8B)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1860.8 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (Size: 2794.5 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt ============================