OTL Extras logfile created on: 4/8/2014 10:31:25 PM - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\zeinab\Downloads 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.16521) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 7.95 Gb Total Physical Memory | 4.74 Gb Available Physical Memory | 59.65% Memory free 15.90 Gb Paging File | 12.17 Gb Available in Paging File | 76.53% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 681.47 Gb Total Space | 585.94 Gb Free Space | 85.98% Space Free | Partition Type: NTFS Drive D: | 16.87 Gb Total Space | 1.82 Gb Free Space | 10.77% Space Free | Partition Type: NTFS Computer Name: ZEINAB-HP | User Name: zeinab | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-697961089-2797053259-1168498779-1001\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistHiDefMedia] -- "C:\Program Files (x86)\HiDefMedia\HiDefMedia\HiDefMedia.exe" --started-from-file --playlist-enqueue "%1" () Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithHiDefMedia] -- "C:\Program Files (x86)\HiDefMedia\HiDefMedia\HiDefMedia.exe" --started-from-file --no-playlist-enqueue "%1" () Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistHiDefMedia] -- "C:\Program Files (x86)\HiDefMedia\HiDefMedia\HiDefMedia.exe" --started-from-file --playlist-enqueue "%1" () Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithHiDefMedia] -- "C:\Program Files (x86)\HiDefMedia\HiDefMedia\HiDefMedia.exe" --started-from-file --no-playlist-enqueue "%1" () Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{030F99EF-ADFD-41FB-88B0-5C5290977A09}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{0BCCADFC-D362-45A2-A88B-6B0B951B3D71}" = lport=138 | protocol=17 | dir=in | app=system | "{0C0B1C38-500F-43FF-B73C-89C3FF44B0DF}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{1FBEA035-A30F-4288-8B7E-D391A6D65D2D}" = lport=137 | protocol=17 | dir=in | app=system | "{249883D2-0F47-4F7B-B6FD-485A23BF7E67}" = rport=137 | protocol=17 | dir=out | app=system | "{26069B9D-B804-4781-BD7B-921C4A319E40}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{2680757B-1067-4472-B32A-31C2AAE71954}" = rport=10243 | protocol=6 | dir=out | app=system | "{30F01288-B9F3-450B-832F-00616F78FB07}" = lport=139 | protocol=6 | dir=in | app=system | "{3C9BD12E-772B-4B97-A0EA-85E646176630}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{50EC6090-677B-4744-90F1-1BFBD702ABF9}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{7CB4DA8D-FE6C-4576-BD34-E51338DDECCB}" = rport=138 | protocol=17 | dir=out | app=system | "{862D67B6-5D89-4961-9A3B-EDEE97603DB7}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{A252CCA8-5D21-4912-9509-57D3A30029DA}" = rport=445 | protocol=6 | dir=out | app=system | "{AF972255-3CF5-4DCA-B513-C0411C00A295}" = rport=139 | protocol=6 | dir=out | app=system | "{B2133F8B-7A74-4BEE-925B-E4E2EB5AA9A5}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{B306EB81-D740-4BA2-9B8A-543FA82086BA}" = lport=10243 | protocol=6 | dir=in | app=system | "{B3783EA6-8C0C-4F0B-B888-5A34F8ADB152}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{B460B001-CD6A-4763-A4DB-133E85B0E807}" = lport=51001 | protocol=6 | dir=in | name=dragon smart phone server | "{CCF4AAE2-6326-4EE6-8CE7-DFE5558E7C10}" = lport=2869 | protocol=6 | dir=in | app=system | "{DBB87177-61D1-4163-8567-99BD802FC015}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{DE15CD8A-F79D-42AF-AA89-B05D2B5A1016}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{E5212861-9CE5-4CBD-9157-91EE556CEAE7}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{EF3D68F6-84EB-4E3B-9946-4E271641726B}" = lport=445 | protocol=6 | dir=in | app=system | "{F0A7887F-9CFA-4535-8907-D159EF09AFC3}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0122A2AA-76BA-4601-A966-0B48F0111689}" = protocol=17 | dir=in | app=c:\program files (x86)\common files\aol\loader\aolload.exe | "{050561FC-7094-43F1-B56C-4B15B06B78FC}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe | "{0779772E-535E-491F-B18C-F6189A4D4CCF}" = protocol=17 | dir=in | app=c:\program files (x86)\aol desktop 9.7\waol.exe | "{0AE04EF4-031E-49DC-88C6-6C26668A4A7D}" = protocol=17 | dir=in | app=c:\program files (x86)\aol desktop 9.6\waol.exe | "{0BADB049-67B5-4653-ACDE-D28F8C114B00}" = protocol=6 | dir=in | app=c:\program files (x86)\hewlett-packard\mediasmart\roxionow\rnow.exe | "{0E1C551B-82E2-4486-A1EC-8904CA830405}" = protocol=17 | dir=in | app=c:\program files (x86)\aol desktop 9.7a\waol.exe | "{1A114A38-837C-40BE-9E28-8DA01FC42C39}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{1D9F2C5F-8C78-4930-A73A-F6D07789261C}" = protocol=17 | dir=in | app=c:\program files (x86)\common files\aol\topspeed\3.0\aoltpsd3.exe | "{1E301CBE-C7B7-45A7-A8CB-2B4A56C1B890}" = protocol=6 | dir=in | app=c:\program files (x86)\aol desktop 9.6\aolbrowser\aolbrowser.exe | "{1E986227-46C7-446E-BCF3-612B2EF0C13D}" = protocol=6 | dir=in | app=c:\program files (x86)\aol desktop 9.7\waol.exe | "{1F69579D-2D6D-4D42-86F5-988C0F4F1088}" = protocol=6 | dir=in | app=c:\program files (x86)\aol desktop 9.7b\aolbrowser\aolbrowser.exe | "{21B42123-7320-43C2-B8B1-7AB422E03882}" = protocol=17 | dir=in | app=c:\program files (x86)\aol desktop 9.7b\waol.exe | "{2253F53D-591F-4515-8716-372EAB3E704C}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{2685634A-7476-46B3-851F-CDF890509D6D}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{34B7DE14-03EA-4BEA-9467-CA7E55A0253D}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{404D4338-156D-4DA8-A9AC-14C0E59E9D1F}" = protocol=6 | dir=in | app=c:\program files (x86)\common files\aol\acs\aoldial.exe | "{42374CE6-6FDB-4BB9-B5DE-E3A363A1CCF1}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{4427B6B7-5B8D-4B63-AA69-AC84C4E24B15}" = protocol=17 | dir=in | app=c:\program files\intel\wimax\bin\dmagent.exe | "{44E66E99-0DDD-4581-8004-FC9BFE2A4AF1}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{46CA15A4-FBA5-444B-B366-4739B48381E3}" = dir=in | app=c:\windows\system32\ezsharedsvchost.exe | "{4DA55E9F-C9F2-4996-AC96-1B6D9006D7CD}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{4E0D16EE-B9DA-42DA-88AB-29069F63FCF3}" = protocol=6 | dir=in | app=c:\program files (x86)\common files\aol\acs\aolacsd.exe | "{4F51E5BA-C512-4286-8954-04BE9E117A27}" = protocol=6 | dir=in | app=c:\program files (x86)\aol desktop 9.7b\waol.exe | "{5247B58F-4DEB-4487-85C4-94ED6ABEA7A3}" = protocol=6 | dir=in | app=c:\program files (x86)\aol desktop 9.7a\aolbrowser\aolbrowser.exe | "{549AD5C9-56F6-4E72-BB51-862C38013531}" = protocol=6 | dir=in | app=c:\program files (x86)\aol desktop 9.7\aolbrowser\aolbrowser.exe | "{5D0B2489-D57D-4070-83B8-559BF7320463}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{5D61211E-6DBA-47D9-B3AF-74A45FCB0DB8}" = dir=in | app=c:\program files (x86)\easybits for kids\ezdesktop.exe | "{5D74D940-5987-4CD1-8DB3-153199BE620D}" = protocol=6 | dir=in | app=c:\program files (x86)\aol desktop 9.7a\waol.exe | "{5E5EF667-AF54-48D0-BF72-0F06EE2A6853}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{6415E4C0-DD25-4A5A-91E7-3801294341FE}" = protocol=17 | dir=in | app=c:\program files (x86)\common files\aol\1322623786\ee\aolsoftware.exe | "{66D97AE1-92CB-4877-B73A-82CA55BDBAE6}" = protocol=17 | dir=in | app=c:\program files (x86)\aol desktop 9.6\aolbrowser\aolbrowser.exe | "{66DB2AE4-CD89-458B-B72C-70B72995A23D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{679BBCA2-D8C1-49D9-BF18-7FAB17861197}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe | "{6B8C88BA-D4CB-404D-A867-84678C520C1F}" = protocol=6 | dir=in | app=c:\program files (x86)\aol desktop 9.6\waol.exe | "{71E8EA7B-29CD-4A21-AA84-839284E46725}" = dir=in | app=c:\program files (x86)\hewlett-packard\hp support framework\resources\hpwarrantycheck\hpdevicedetection3.exe | "{72CCCDFD-4014-4997-949E-6F592C82DDCF}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{75CD274D-B1D7-4157-897E-669054F5EA7F}" = dir=in | app=c:\program files (x86)\hewlett-packard\hp support framework\resources\hpwarrantycheck\hpwarrantychecker.exe | "{764CF12D-C20E-4F70-9525-E578007D3F6C}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{7AEF8436-C301-4292-9C59-F9592D68F356}" = dir=in | app=c:\program files (x86)\intel corporation\intel widi\widiapp.exe | "{7FC7FEF5-F309-423E-9BE9-FF6283F74DD2}" = protocol=17 | dir=in | app=c:\program files (x86)\common files\aol\system information\sinf.exe | "{849897F9-4629-44B8-9891-DCC11988DDFD}" = protocol=17 | dir=in | app=c:\program files\intel\wimax\bin\appsrv.exe | "{86B41449-4FB1-4069-B3B6-343063563DB4}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{8A1DA7B3-85C6-49DE-A05E-86389E9170E8}" = protocol=6 | dir=in | app=c:\program files\intel\wimax\bin\appsrv.exe | "{987D23AE-7BBF-4098-B69C-90EBE85D5CB6}" = protocol=6 | dir=in | app=c:\program files (x86)\common files\aol\loader\aolload.exe | "{9A5DA3F3-429B-4C18-85AB-33D7492ECAA9}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{9FCB5622-2693-49F7-8309-57A7F4AAC424}" = protocol=6 | dir=in | app=c:\program files (x86)\aol desktop 9.7\aol.exe | "{A011D2E0-3D5D-4F90-B6EE-D309DDAFD9DF}" = protocol=17 | dir=in | app=c:\program files (x86)\common files\aol\acs\aoldial.exe | "{AA606D54-EDC7-4C3D-814C-CCB87C2F1D81}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe | "{ABAD4808-8C00-4D85-944F-0B2E0D0476EC}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{AEC6AA48-681B-4CA1-A242-E333F32FA6F3}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe | "{AFB1A1C1-5A3D-4A2A-B733-39C7E450785D}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{B01E3BD3-851A-49C1-9283-CCC704A81C01}" = protocol=17 | dir=in | app=c:\program files (x86)\aol desktop 9.7\aol.exe | "{B287695B-FDA0-450B-B38F-6394599DD903}" = protocol=6 | dir=in | app=c:\program files (x86)\common files\aol\1322623786\ee\aolsoftware.exe | "{BA9458C7-52D4-470D-885A-A336F8E96CE8}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | "{BBAB4D60-2AEA-4DB0-889B-71E2CEF8A7A1}" = protocol=6 | dir=in | app=c:\program files (x86)\common files\aol\system information\sinf.exe | "{BC3F14D7-AFD0-4850-8757-FC6111A1E4B1}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{BC9C9395-0C75-4DFC-A44B-DD7B8881C181}" = protocol=6 | dir=in | app=c:\program files\intel\wimax\bin\dmagent.exe | "{BD4CD415-D61D-489F-A070-64092E66CE66}" = protocol=17 | dir=in | app=c:\program files (x86)\aol desktop 9.7a\aolbrowser\aolbrowser.exe | "{C0468D2E-F0CE-4DCC-B150-541E975D1418}" = protocol=17 | dir=in | app=c:\program files (x86)\roxio\roxionow player\rnowshell.exe | "{C4D167D9-DCE6-4E06-BFCE-068782B4C3E2}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{C7F8C1A2-AFDB-4409-A1AC-241A0C79772F}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | "{C8BCD3C3-D1DA-45ED-883F-1B16756B5E49}" = protocol=6 | dir=out | app=system | "{D98B62B4-4CB4-48A9-B0A0-3791C555D5C4}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{DA9E37C9-125A-420E-8EE3-DDB47424C1EC}" = dir=in | app=c:\users\zeinab\appdata\local\facebook\video\skype\facebookvideocalling.exe | "{DF16B107-9921-4B65-8631-3EA51CEF3745}" = protocol=6 | dir=in | app=c:\program files (x86)\roxio\roxionow player\rnowshell.exe | "{E4ADDD72-30C9-4A02-9DE5-6C40550FF7B0}" = protocol=17 | dir=in | app=c:\program files (x86)\aol desktop 9.7b\aolbrowser\aolbrowser.exe | "{E9347BE1-AA14-4072-B3B3-81467FD5B887}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{EC8B20E2-A032-4704-9B43-E8F69022736D}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{F15847E2-E513-4D5C-9945-46F12C6C5C24}" = protocol=6 | dir=in | app=c:\program files (x86)\common files\aol\topspeed\3.0\aoltpsd3.exe | "{F7FEF457-EE18-49B9-AE04-E1B1882E6135}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{F8453A71-9B60-4D32-A20B-FB7AEA41D58D}" = protocol=17 | dir=in | app=c:\program files (x86)\aol desktop 9.7\aolbrowser\aolbrowser.exe | "{F85DA7DA-C3B1-4757-8417-BEB538F455FF}" = protocol=17 | dir=in | app=c:\program files (x86)\hewlett-packard\mediasmart\roxionow\rnow.exe | "{FA81CEBA-EEDB-48AD-9716-F0B7EEA7F0E4}" = protocol=17 | dir=in | app=c:\program files (x86)\common files\aol\acs\aolacsd.exe | "TCP Query User{2B2C7BE3-DDCF-46C6-9E28-3E2E829845D1}C:\program files (x86)\2x\client\tsclient.exe" = protocol=6 | dir=in | app=c:\program files (x86)\2x\client\tsclient.exe | "TCP Query User{917E295A-F6BE-4867-99A4-7A21EA5253B7}C:\users\zeinab\appdata\local\logmein rescue applet\lmir0001.tmp\lmi_rescue.exe" = protocol=6 | dir=in | app=c:\users\zeinab\appdata\local\logmein rescue applet\lmir0001.tmp\lmi_rescue.exe | "TCP Query User{9198BEA9-5D5C-48EB-A6F5-46CA080E64FA}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe | "TCP Query User{93C630BA-74E8-4D8B-92D4-3D944C2AE030}C:\program files (x86)\2x\client\appserverclient.exe" = protocol=6 | dir=in | app=c:\program files (x86)\2x\client\appserverclient.exe | "UDP Query User{56CCA32F-6FF3-4B41-8E55-F0B64EC75891}C:\program files (x86)\2x\client\appserverclient.exe" = protocol=17 | dir=in | app=c:\program files (x86)\2x\client\appserverclient.exe | "UDP Query User{6D283962-683A-4DAB-AFCE-C9F3E029288F}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe | "UDP Query User{7DBD912C-0F85-4905-8FDB-835452BD1C35}C:\program files (x86)\2x\client\tsclient.exe" = protocol=17 | dir=in | app=c:\program files (x86)\2x\client\tsclient.exe | "UDP Query User{8F59B54E-81DE-4EC1-A9AC-D86CB84BEB67}C:\users\zeinab\appdata\local\logmein rescue applet\lmir0001.tmp\lmi_rescue.exe" = protocol=17 | dir=in | app=c:\users\zeinab\appdata\local\logmein rescue applet\lmir0001.tmp\lmi_rescue.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{054EF02F-95D8-48F4-9EEB-2F9CE3072ED8}" = AuthenTec TrueAPI "{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant "{2856A1C2-70C5-4EC3-AFF7-E5B51E5530A2}" = HP Client Services "{37EC048A-81A2-452A-8D1F-3BE2018E767D}" = Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{5C1DA3D9-F590-4317-A4FB-274F658E504B}" = Intel® PROSet/Wireless WiMAX Software "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{656DEEDE-F6AC-47CA-A568-A1B4E34B5760}" = Windows Live Remote Service Resources "{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64) "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour "{787136D2-F0F8-4625-AA3F-72D7795AC842}" = Apple Mobile Device Support "{79174AF2-6CB1-42F5-981E-66DCA49391D0}" = Validity WBF DDK "{81E20D41-C277-4526-934D-F2380AF91B78}" = iCloud "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}" = Windows Live Remote Client Resources "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 "{90140000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2010 "{90140000-006D-0409-1000-0000000FF1CE}" = Microsoft Office Click-to-Run 2010 "{90140000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{B8BA155B-1E75-405F-9CB4-8A99615D09DC}" = iTunes "{CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}" = HP Auto "{D07A61E5-A59C-433C-BCBD-22025FA2287B}" = Windows Live Language Selector "{D2372F87-7DA2-47F7-A102-AF2181B8EAA2}" = TightVNC "{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter "{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client "{DFB497E0-CE3F-40FC-9596-FC7A48775DE4}" = HP 3D DriveGuard "{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service "{E2D0B67F-8032-4E11-87C6-C8C721D331B3}" = Intel® PROSet/Wireless WiFi Software "{EF79C448-6946-4D71-8134-03407888C054}" = Shared C Run-time for x64 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "EnhanceTronic" = EnhanceTronic "Level Quality Watcher" = SavingsBull "McAfee Security Scan" = McAfee Security Scan Plus "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "MyPC Backup" = MyPC Backup "ProInst" = Intel PROSet Wireless "SuperFast PC" = SuperFast PC "SynTPDeinstKey" = Synaptics TouchPad Driver [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam "{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer "{0EDEB615-1A60-425E-8306-0E10519C7B55}" = RoxioNow Player "{111EE7DF-FC45-40C7-98A7-753AC46B12FB}" = QuickTime 7 "{120262A6-7A4B-4889-AE85-F5E5688D3683}" = HP MovieStore "{1606C5A0-DCD7-4543-A185-FAAD210E5284}" = Citrix Receiver(Aero) "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 "{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker "{1E03DB52-D5CB-4338-A338-E526DD4D4DB1}" = Bing Bar "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions "{210A03F5-B2ED-4947-B27E-516F50CBB292}" = HP Setup "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1" = Media Player Classic - Home Cinema v1.5.2.3456 "{26A24AE4-039D-4CA4-87B4-2F83217045F0}" = Java 7 Update 45 "{26A24AE4-039D-4CA4-87B4-2F83217051FF}" = Java 7 Update 51 "{26B4D0E1-6F6D-48DF-8719-80276A259F7E}" = CWA Reminder by We-Care.com v4.1.26.3 "{2902F983-B4C1-44BA-B85D-5C6D52E2C441}" = Windows Live Mesh ActiveX Control for Remote Connections "{2B7BDADB-EC8C-4C54-B5DD-CE45A016D3A7}" = Hoopla "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery "{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery "{3877C901-7B90-4727-A639-B6ED2DD59D43}" = ESU for Microsoft Windows 7 "{387B63A5-5016-1015-B06B-A9A1030E3125}" = Intel(R) Identity Protection Technology 1.2.22.0 "{3A787631-66A2-4634-B928-A37E73B58FB6}" = Slick Savings "{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology "{3E6D7195-3B74-46AF-9BD1-49EBECD0A455}" = Citrix Receiver(DV) "{42D65288-92F3-4AD6-892C-DFEE475F69A9}" = Citrix Receiver Updater "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{53B17A98-5BF0-40BC-AAFF-850A357975AC}" = HP Quick Launch "{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver "{553C904F-57A2-4113-888E-BA0C3D1C69C0}" = Microsoft VC9 runtime libraries "{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE "{6BDC0D7C-9E42-4667-8FA9-2F26A2FEF4D0}" = Citrix Receiver(USB) "{6DDE8071-E4BA-461B-8A96-990DFAA0EBD1}" = SavingsBull "{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.2.2.3 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7257132D-7F65-41E6-A90F-43BF6099461A}" = Intel(R) WiDi "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{739A6D0C-CA8D-4955-8E3D-58D1847327AC}" = Online Plug-in "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}" = Skype™ 6.13 "{7BCD1A5E-F903-48C9-9CB2-37E5A6FB2111}" = Blio "{7E799992-5DA0-4A1A-9443-B1836B063FEC}" = HP Power Manager "{80956555-A512-4190-9CAD-B000C36D6B6B}" = Windows Live Messenger "{812D1E5A-B61E-4143-8ADB-48CE7BDDF10E}" = EEG Anywhere 2.1 "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{83A375B6-6FC2-4F8A-948E-E506DB9DCDF0}" = HP Documentation "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{88CDD50D-28E1-4B40-8F6C-83E0FCA8C158}" = 2X Client "{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}" = Facebook Video Calling 2.0.0.447 "{9008D736-35CA-40DB-A2BE-5F32D954E5AA}" = HP MovieStore "{90140000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2010 "{90140000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2010 "{90140000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2010 "{90140000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2010 "{90140000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2010 "{90140000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2010 "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010 "{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010 "{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010 "{90140000-003D-0000-0000-0000000FF1CE}" = Microsoft Office Single Image 2010 "{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010 "{90140000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2010 "{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010 "{90140000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2010 "{90140011-0066-0409-0000-0000000FF1CE}" = Microsoft Office Starter 2010 - English "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker "{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010 "{962CB079-85E6-405F-8704-1C62365AE46F}" = HP Software Framework "{9A0FE2C0-7A7E-444E-8BD4-087178A91865}" = Online Plug-in "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail "{A0C91188-C88F-4E86-93E6-CD7C9A266649}" = Windows Live Mesh "{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common "{AA027AE9-DD20-4677-AA72-D760A358320B}" = Microsoft VC9 runtime libraries "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer "{AAC5D43E-816D-4C2D-8E51-55FFF35BE301}" = Apple Application Support "{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer "{AC76BA86-7AD7-FFFF-7B44-AA0000000001}" = Adobe Reader X (10.1.9) MUI "{AE856388-AFAD-4753-81DF-D96B19D0A17C}" = HP Setup Manager "{BB285C9F-C821-4770-8970-56C4AB52C87E}" = Skype Click to Call "{BC0BF363-63AB-4FF7-8EF1-AE0D7F711B24}" = LPT System Updater Service "{BCFAA37D-A6DB-43BF-A351-43F183E52D07}" = HP SimplePass 2011 "{BD1A34C9-4764-4F79-AE1F-112F8C89D3D4}" = Energy Star Digital Logo "{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader "{C43164B6-92B1-4919-836D-AAEB09AE7F23}" = InstallPDFDrivers "{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail "{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86 "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform "{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64 "{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform "{D5D422B9-6976-4E98-8DDF-9632CB515D7E}" = Dragon NaturallySpeaking 12 "{D67AEDE1-BCCF-4C5D-BF4F-A08FE92075B7}" = Citrix Receiver Inside "{D86C82B0-1F02-816A-5F3D-6466F6A67566}" = PriincceCoUpone "{DB1C49C7-AC32-4785-A281-774744FC78F5}" = Citrix Authentication Manager "{DBCD5E64-7379-4648-9444-8A6558DCB614}" = Recovery Manager "{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources "{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}" = HP Support Assistant "{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime "{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger "{EC94A726-7636-4693-9627-D8A8B44793EE}" = Citrix Receiver (HDX Flash Redirection) "{ED1BD69A-07E3-418C-91F1-D856582581BF}" = HP On Screen Display "{EE68B04B-ABF4-4E83-87FF-42AF4C3F1D5B}" = IObit Apps Toolbar v8.9 "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "{F605992E-FD5B-46D7-AFDA-FDB1AB00F829}" = Self-service Plug-in "{F761359C-9CED-45AE-9A51-9D6605CD55C4}" = Evernote v. 4.2.2 "{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center "{FB385922-2E32-4462-A7DC-27159614A660}" = Snap.Do "{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials "3FA2E4E4-9229-4bdd-AB9C-53AE43229164_is1" = Wizefinder "Adobe Flash Player ActiveX" = Adobe Flash Player 12 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 12 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 12.0 "Advanced SystemCare 7_is1" = Advanced SystemCare 7 "AOL Computer Checkup" = AOL Computer Checkup "AOL Toolbar" = AOL Toolbar "AOL Uninstaller" = AOL Uninstaller (Choose which Products to Remove) "CitrixOnlinePluginPackWeb" = Citrix Receiver "ConservativeTalkNow_4nbar Uninstall" = ConservativeTalkNow Toolbar "DMUninstaller" = DMUninstaller "Driver Booster_is1" = Driver Booster "EasyBits Magic Desktop" = Magic Desktop "fd36ee07-913b-4369-a9c3-27f047eb0211" = Buzz-it "HiDef Media Player" = HiDef Media Player 1.1.12 "Highlightly" = Highlightly "HP DVB-T TV Tuner" = HP DVB-T TV Tuner 8.0.64.43 "InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam "InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver "InternetUpdater" = Internet Updater "IObit Malware Fighter_is1" = IObit Malware Fighter "IObit Surfing Protection_is1" = Surfing Protection "IObitUninstall" = IObit Uninstaller "iWebar" = iWebar "Lightspark" = Lightspark 0.5.3-git "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware version 2.0.1.1004 "Mozilla Firefox 28.0 (x86 en-US)" = Mozilla Firefox 28.0 (x86 en-US) "MozillaMaintenanceService" = Mozilla Maintenance Service "MSC" = McAfee SecurityCenter "NSS" = Norton Security Scan "Object Browser" = Object Browser "Office14.Click2Run" = Microsoft Office Click-to-Run 2010 "Office14.SingleImage" = Microsoft Office Home and Student 2010 "Optimizer Pro_is1" = Optimizer Pro v3.2 "PC Health Kit_is1" = PC Health Kit v3.2 "Plus-HD-7.5" = Plus-HD-7.5 "PriceGong" = PriceGong 2.6.11 "SaveSense" = SaveSense (remove only) "Search module" = Search module "ShopperPro" = Shopper-Pro "Smart Defrag 3_is1" = Smart Defrag 3 "SoftwareUpdUtility" = Download Updater (AOL Inc.) "TeamViewer 9" = TeamViewer 9 "ViewpointMediaPlayer" = Viewpoint Media Player "VIP Access SDK" = VIP Access SDK (1.1.0.4) "VLC media player" = VLC media player 2.1.2 "VOPackage" = VO Package "W1Z3F33D-CD0C-4AC4-86B4-X11E5511AA18_is1" = WizeFeed 2.1.5 "W1Z3T4D3-L00K-1T1Z-H3R3-UN1NST4LLTH3_is1" = Wizetrade® Stocks "Webinternetsecurity" = WebInternetSecurity "Websteroids" = Websteroids "WindowShopper" = WindowShopper "WinLiveSuite" = Windows Live Essentials "wp-cb" = Web Protect for Windows "Yahoo! Companion" = Yahoo! Toolbar "YTDownloader" = YTDownloader [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-697961089-2797053259-1168498779-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{79A765E1-C399-405B-85AF-466F52E918B0}" = Ask Toolbar Updater "{856AD396-519D-4C7A-BED6-6785F64924BC}" = GreatArcadeHits "{9efbe73b-3a4f-4c28-a343-79dd78a9831a}" = Snap.Do Engine "AOL Toolbar" = AOL Toolbar "genieo" = Genieo "Google Chrome" = Google Chrome "SaveSense" = SaveSense "StormAlerts" = StormAlerts "TidyNetwork" = TidyNetwork "Ultra File Opener" = Ultra File Opener "ValueApps" = ValueApps [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 4/7/2014 12:52:59 AM | Computer Name = zeinab-HP | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 4/7/2014 12:52:59 AM | Computer Name = zeinab-HP | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 6614 Error - 4/7/2014 12:52:59 AM | Computer Name = zeinab-HP | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 6614 Error - 4/8/2014 1:07:01 AM | Computer Name = zeinab-HP | Source = VSS | ID = 12305 Description = Error - 4/8/2014 1:10:51 AM | Computer Name = zeinab-HP | Source = Application Error | ID = 1000 Description = Faulting application name: TrueSuiteService.exe, version: 5.1.0.495, time stamp: 0x4d5dea79 Faulting module name: TrueSuiteService.exe, version: 5.1.0.495, time stamp: 0x4d5dea79 Exception code: 0xc0000417 Fault offset: 0x0001263a Faulting process id: 0x7c Faulting application start time: 0x01cf52e8e00c82fd Faulting application path: C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe Faulting module path: C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe Report Id: 26b532cf-bedc-11e3-b302-00038a000015 Error - 4/8/2014 1:11:34 AM | Computer Name = zeinab-HP | Source = WinMgmt | ID = 10 Description = Error - 4/8/2014 1:13:39 AM | Computer Name = zeinab-HP | Source = WinMgmt | ID = 10 Description = Error - 4/8/2014 9:57:01 AM | Computer Name = zeinab-HP | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 4/8/2014 9:57:01 AM | Computer Name = zeinab-HP | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 2886 Error - 4/8/2014 9:57:01 AM | Computer Name = zeinab-HP | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 2886 Error - 4/8/2014 9:57:05 AM | Computer Name = zeinab-HP | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 4/8/2014 9:57:05 AM | Computer Name = zeinab-HP | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 6740 Error - 4/8/2014 9:57:05 AM | Computer Name = zeinab-HP | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 6740 [ Hewlett-Packard Events ] Error - 1/1/2013 3:03:31 PM | Computer Name = zeinab-HP | Source = HPSF.exe | ID = 2000 Description = HP Error ID: -2147467261 at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Message: Object reference not set to an instance of an object. StackTrace: at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Source: HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: en-US RAM: 8139 Ram Utilization: 20 TargetSite: Void loadActiveCheckResult(Boolean) Error - 1/1/2013 3:11:34 PM | Computer Name = zeinab-HP | Source = HPSF.exe | ID = 2000 Description = HP Error ID: -2147467261 at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Message: Object reference not set to an instance of an object. StackTrace: at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Source: HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: en-US RAM: 8139 Ram Utilization: 20 TargetSite: Void loadActiveCheckResult(Boolean) Error - 1/1/2013 3:47:39 PM | Computer Name = zeinab-HP | Source = HPSF.exe | ID = 2000 Description = HP Error ID: -2147467261 at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Message: Object reference not set to an instance of an object. StackTrace: at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Source: HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: en-US RAM: 8139 Ram Utilization: 20 TargetSite: Void loadActiveCheckResult(Boolean) Error - 1/1/2013 3:47:56 PM | Computer Name = zeinab-HP | Source = HPSF.exe | ID = 2000 Description = HP Error ID: -2147467261 at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Message: Object reference not set to an instance of an object. StackTrace: at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Source: HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: en-US RAM: 8139 Ram Utilization: 20 TargetSite: Void loadActiveCheckResult(Boolean) Error - 1/1/2013 3:48:05 PM | Computer Name = zeinab-HP | Source = HPSF.exe | ID = 2000 Description = HP Error ID: -2147467261 at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Message: Object reference not set to an instance of an object. StackTrace: at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Source: HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: en-US RAM: 8139 Ram Utilization: 20 TargetSite: Void loadActiveCheckResult(Boolean) Error - 1/1/2013 3:48:22 PM | Computer Name = zeinab-HP | Source = HPSF.exe | ID = 2000 Description = HP Error ID: -2147467261 at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Message: Object reference not set to an instance of an object. StackTrace: at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Source: HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: en-US RAM: 8139 Ram Utilization: 20 TargetSite: Void loadActiveCheckResult(Boolean) Error - 1/1/2013 6:03:53 PM | Computer Name = zeinab-HP | Source = HPSF.exe | ID = 2000 Description = HP Error ID: -2147467261 at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Message: Object reference not set to an instance of an object. StackTrace: at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Source: HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: en-US RAM: 8139 Ram Utilization: 20 TargetSite: Void loadActiveCheckResult(Boolean) Error - 1/1/2013 6:04:08 PM | Computer Name = zeinab-HP | Source = HPSF.exe | ID = 2000 Description = HP Error ID: -2147467261 at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Message: Object reference not set to an instance of an object. StackTrace: at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Source: HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: en-US RAM: 8139 Ram Utilization: 20 TargetSite: Void loadActiveCheckResult(Boolean) Error - 1/1/2013 6:04:27 PM | Computer Name = zeinab-HP | Source = HPSF.exe | ID = 2000 Description = HP Error ID: -2147467261 at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Message: Object reference not set to an instance of an object. StackTrace: at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Source: HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: en-US RAM: 8139 Ram Utilization: 20 TargetSite: Void loadActiveCheckResult(Boolean) Error - 1/1/2013 6:05:25 PM | Computer Name = zeinab-HP | Source = HPSF.exe | ID = 2000 Description = HP Error ID: -2147467261 at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Message: Object reference not set to an instance of an object. StackTrace: at HP.SupportFramework.Utilities.HPSAIssues.ActionItemCollection.loadActiveCheckResult(Boolean includeIgnored) Source: HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: en-US RAM: 8139 Ram Utilization: 20 TargetSite: Void loadActiveCheckResult(Boolean) [ HP Software Framework Events ] Error - 4/10/2012 8:53:48 PM | Computer Name = zeinab-HP | Source = CaslWmi | ID = 5 Description = 2012/04/10 17:53:48.640|000008D0|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state Error - 4/18/2012 1:31:34 AM | Computer Name = zeinab-HP | Source = CaslWmi | ID = 5 Description = 2012/04/17 22:31:34.749|00001CD0|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state Error - 4/25/2012 12:25:55 AM | Computer Name = zeinab-HP | Source = CaslWmi | ID = 5 Description = 2012/04/24 21:25:55.164|00002584|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state Error - 4/25/2012 12:27:24 AM | Computer Name = zeinab-HP | Source = CaslWmi | ID = 5 Description = 2012/04/24 21:27:24.953|00000DA8|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state Error - 4/25/2012 12:27:28 AM | Computer Name = zeinab-HP | Source = CaslWmi | ID = 5 Description = 2012/04/24 21:27:28.910|00000B18|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state Error - 5/2/2012 12:32:15 AM | Computer Name = zeinab-HP | Source = CaslWmi | ID = 5 Description = 2012/05/01 21:32:15.967|00000200|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state Error - 5/9/2012 1:53:39 AM | Computer Name = zeinab-HP | Source = CaslWmi | ID = 5 Description = 2012/05/08 22:53:39.303|00002D10|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state Error - 5/15/2012 2:36:05 PM | Computer Name = zeinab-HP | Source = CaslWmi | ID = 5 Description = 2012/05/15 11:36:05.043|00000EF8|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state Error - 5/15/2012 2:37:23 PM | Computer Name = zeinab-HP | Source = CaslWmi | ID = 5 Description = 2012/05/15 11:37:23.709|0000153C|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state Error - 5/15/2012 2:37:30 PM | Computer Name = zeinab-HP | Source = CaslWmi | ID = 5 Description = 2012/05/15 11:37:30.409|00001868|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state [ System Events ] Error - 4/9/2014 12:19:18 AM | Computer Name = zeinab-HP | Source = Microsoft-Windows-DNS-Client | ID = 1012 Description = There was an error while attempting to read the local hosts file. Error - 4/9/2014 12:19:18 AM | Computer Name = zeinab-HP | Source = Microsoft-Windows-DNS-Client | ID = 1012 Description = There was an error while attempting to read the local hosts file. Error - 4/9/2014 12:19:21 AM | Computer Name = zeinab-HP | Source = Microsoft-Windows-DNS-Client | ID = 1012 Description = There was an error while attempting to read the local hosts file. Error - 4/9/2014 12:19:24 AM | Computer Name = zeinab-HP | Source = Microsoft-Windows-DNS-Client | ID = 1012 Description = There was an error while attempting to read the local hosts file. Error - 4/9/2014 12:19:52 AM | Computer Name = zeinab-HP | Source = Service Control Manager | ID = 7011 Description = A timeout (30000 milliseconds) was reached while waiting for a transaction response from the AudioEndpointBuilder service. Error - 4/9/2014 12:20:16 AM | Computer Name = zeinab-HP | Source = Service Control Manager | ID = 7001 Description = The McAfee Personal Firewall Service service depends on the Windows Firewall service which failed to start because of the following error: %%1058 Error - 4/9/2014 12:50:17 AM | Computer Name = zeinab-HP | Source = Microsoft-Windows-DNS-Client | ID = 1012 Description = There was an error while attempting to read the local hosts file. Error - 4/9/2014 1:19:17 AM | Computer Name = zeinab-HP | Source = Service Control Manager | ID = 7024 Description = The HomeGroup Listener service terminated with service-specific error %%-2147023143. Error - 4/9/2014 1:19:32 AM | Computer Name = zeinab-HP | Source = Microsoft-Windows-DNS-Client | ID = 1012 Description = There was an error while attempting to read the local hosts file. Error - 4/9/2014 1:49:33 AM | Computer Name = zeinab-HP | Source = Microsoft-Windows-DNS-Client | ID = 1012 Description = There was an error while attempting to read the local hosts file. < End of report >