Additional scan result of Farbar Recovery Scan Tool (x86) Version: 09-11-2014 01 Ran by Jennifer at 2014-11-10 09:29:08 Running from C:\Users\Jennifer\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 32 Bit HP CIO Components Installer (Version: 7.1.4 - Hewlett-Packard) Hidden 913D Camera (HKLM\...\{B0A5E43A-DBDE-4C9B-BCC5-689CED407B4D}) (Version: 1.00.000 - ) Adobe Reader X (10.1.12) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.12 - Adobe Systems Incorporated) Adobe Shockwave Player 11.5 (HKLM\...\Adobe Shockwave Player) (Version: 11.5.7.609 - Adobe Systems, Inc.) AOMEI Backupper (HKLM\...\{A83692F5-3E9B-4E95-9E7E-B5DF5536C09D}_is1) (Version: - AOMEI Technology Co., Ltd.) Apple Application Support (HKLM\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{235EBB33-3DA1-46DF-AADE-9955123409CB}) (Version: 8.0.5.6 - Apple Inc.) Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) AudibleManager (HKLM\...\AudibleManager) (Version: 4759644.48.2147311616.4759644 - Audible, Inc.) avast! Free Antivirus (HKLM\...\avast) (Version: 9.0.2021 - AVAST Software) Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.) Browser Address Error Redirector (HKLM\...\{62230596-37E5-4618-A329-0D21F529A86F}) (Version: 1.00.0000 - Dell) Canon MF Toolbox 4.9.1.1.mf04 (HKLM\...\{132CA5D9-C745-4B0B-A3B2-8C7A6EC3EE7E}) (Version: 2.3.0 - ) Canon MF Toolbox 4.9.1.1.mf04 (HKLM\...\{3BDDF462-8A95-4C50-86DA-4D41F3483EA5}) (Version: 2.3.0 - Canon) Canon MF Toolbox 4.9.1.1.mf04 (HKLM\...\{DD929BD3-5D41-4407-BE04-119B4A631869}) (Version: - ) Canon MF4100 Series (HKLM\...\{239A8D60-270B-42e8-82D3-60D70A2942E0}) (Version: - ) Citrix Online Launcher (HKLM\...\{3E7E6F1E-7376-475A-8BC9-E3126B20CF5F}) (Version: 1.0.198 - Citrix) Citrix Receiver (HKLM\...\CitrixOnlinePluginPackWeb) (Version: 13.0.0.6685 - Citrix Systems, Inc.) CompanionLink (HKLM\...\{506EA5AF-B1FF-4340-AFC5-7A3EAC61737F}) (Version: 5.00.5050 - CompanionLink Software, Inc.) Conexant D850 PCI V.92 Modem (HKLM\...\CNXT_MODEM_PCI_VEN_14F1&DEV_2F20&SUBSYS_200F14F1) (Version: - ) Coupon Printer for Windows (HKLM\...\Coupon Printer for Windows4.0) (Version: 4.0 - Coupons, Inc.) <==== ATTENTION Coupon Printer for Windows (HKLM\...\Coupon Printer for Windows5.0.0.0) (Version: 5.0.0.0 - Coupons.com Incorporated) CutePDF Writer 2.8 (HKLM\...\CutePDF Writer Installation) (Version: - ) D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden Dell Support Center (HKLM\...\{B8C54AB1-7E1A-40E8-B794-EDB6E8921F3A}) (Version: 1.0.07192 - Dell) Dell System Customization Wizard (HKLM\...\{13BA7B44-B712-4DEE-A7B8-1DD564F37AE5}) (Version: 1.00.0000 - Dell Inc.) DellSupport (HKLM\...\{7EFA5E6F-74F7-4AFB-8AEA-AA790BD3A76D}) (Version: 6.0.3075 - Dell) Digital Line Detect (HKLM\...\{E646DCF0-5A68-11D5-B229-002078017FBF}) (Version: 1.21 - BVRP Software, Inc) Google Chrome (HKLM\...\Google Chrome) (Version: 38.0.2125.111 - Google Inc.) Google Update Helper (Version: 1.3.25.5 - Google Inc.) Hidden iCloud (HKLM\...\{79BD66B2-4DAE-4C3B-B08E-DC72E507C163}) (Version: 2.1.3.25 - Apple Inc.) iSEEK AnswerWorks English Runtime (HKLM\...\{18A8E78B-9EF2-496E-B310-BCD8E4C1DAB3}) (Version: 010.000.0101 - Vantage Linguistics) iTunes (HKLM\...\{5D928931-D1D2-4A93-A82D-BF60D0E7CFA5}) (Version: 12.0.1.26 - Apple Inc.) Java 7 Update 55 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.550 - Oracle) Java(TM) SE Runtime Environment 6 (HKLM\...\{3248F0A8-6813-11D6-A77B-00B0D0160000}) (Version: 1.6.0.0 - Sun Microsystems, Inc.) Junk Mail filter update (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Kidzui (HKLM\...\Kidzui) (Version: - ) Malwarebytes Anti-Malware version 2.0.3.1025 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.3.1025 - Malwarebytes Corporation) Mesh Runtime (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Messenger Companion (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft IntelliPoint 6.2 (HKLM\...\{8C5FAD77-F678-4758-A296-C12F08D179E0}) (Version: 6.20.182.0 - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-0030-0000-0000-0000000FF1CE}_ENTERPRISER_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISER) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Outlook Connector (HKLM\...\{95140000-007A-0409-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Virtual PC 2007 (HKLM\...\{8A7CAA24-7B23-410B-A7C3-F994B0944160}) (Version: 6.0.156.0 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Modem Diagnostic Tool (HKLM\...\{F63A3748-B93D-4360-9AD4-B064481A5C7B}) (Version: 1.0.17.8 - Dell) MSVCRT (Version: 15.4.2862.0708 - Microsoft) Hidden MSXML 4.0 SP2 (KB936181) (HKLM\...\{C04E32E0-0416-434D-AFB9-6969D703A9EF}) (Version: 4.20.9848.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB941833) (HKLM\...\{C523D256-313D-4866-B36A-F3DE528246EF}) (Version: 4.20.9849.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2721691) (HKLM\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB973685) (HKLM\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation) NetWaiting (HKLM\...\{3F92ABBB-6BBF-11D5-B229-002078017FBF}) (Version: 2.5.44 - BVRP Software, Inc) Nielsen//NetRatings (HKLM\...\NetSight) (Version: - ) Norton Security Scan (HKLM\...\{48B82226-75E3-4E90-92CC-D30F79EA6380}) (Version: 1.4.0 - Symantec Corporation) NVIDIA 3D Vision Controller Driver 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 314.22 - NVIDIA Corporation) NVIDIA Graphics Driver 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 314.22 - NVIDIA Corporation) NVIDIA PhysX System Software 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA Update 1.12.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.12.12 - NVIDIA Corporation) NVIDIANetworkDiagnostic (HKLM\...\InstallShield_{EFAD4066-CAF3-4B27-9669-12EED352C376}) (Version: 1.00.0000 - NVIDIA Corporation) OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0 - Microsoft Corporation) Hidden Online Plug-in (Version: 13.0.0.6685 - Citrix Systems, Inc.) Hidden OverDrive Media Console (HKLM\...\{D07205E7-F6D3-4333-AFCC-782A07685B72}) (Version: 3.2.20 - OverDrive, Inc.) PCLinq2 High-Speed USB Bridge Cable (HKLM\...\{95381165-5D16-4CD4-9162-57799A3F3AB5}) (Version: - ) Platform (Version: 1.15 - VIA Technologies, Inc.) Hidden Presto! PageManager 7.15.14 (HKLM\...\{D2D6B9EB-C6DC-4DAA-B4DE-BB7D9735E7DA}) (Version: 7.15.14E - NewSoft) Product Documentation Launcher (HKLM\...\{89CEAE14-DD0F-448E-9554-15781EC9DB24}) (Version: 1.00.0000 - Dell Inc.) Quicken 2011 (HKLM\...\{5FE545A1-D215-4216-9189-E7B39C9D1CC1}) (Version: 20.1.8.6 - Intuit) QuickTime 7 (HKLM\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - ) Roxio Express Labeler (HKLM\...\{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}) (Version: 2.1.0 - Roxio) Roxio MyDVD DE (HKLM\...\{D639085F-4B6E-4105-9F37-A0DBB023E2FB}) (Version: 9.0.116 - Roxio, Inc.) Roxio Update Manager (HKLM\...\{30465B6C-B53F-49A1-9EBA-A3F187AD502E}) (Version: 3.0.0 - Roxio) Samsung Story Album Viewer (HKLM\...\InstallShield_{698BBAD8-B116-495D-B879-0F07A533E57F}) (Version: 1.0.0.13054_1 - Samsung Electronics Co., Ltd.) Samsung Story Album Viewer (Version: 1.0.0.13054_1 - Samsung Electronics Co., Ltd.) Hidden SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.29.0 - SAMSUNG Electronics Co., Ltd.) ScanSoft OmniPage SE 4.0 (HKLM\...\{C1E693A4-B1D5-4DCD-B68D-2087835B7184}) (Version: 15.00.0020 - Nuance Communications, Inc.) Segoe UI (Version: 15.4.2271.0615 - Microsoft Corp) Hidden Sonic Activation Module (Version: 1.0 - Sonic Solutions) Hidden Swag_Bucks Toolbar (HKLM\...\Swag_Bucks Toolbar) (Version: - ) Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-0030-0000-0000-0000000FF1CE}_ENTERPRISER_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update Service (Version: 4.1.0 - ) Hidden User's Guides (HKLM\...\{5CD29180-A95E-11D3-A4EB-00C04F7BDB2C}) (Version: - ) Utility (Version: 1.00.0002 - ASUSTek) Hidden VIA Platform Device Manager (HKLM\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.15 - VIA Technologies, Inc.) Windows Driver Package - Google, Inc. (WinUSB) AndroidUsbDeviceClass (11/20/2012 5.0.0.122) (HKLM\...\86199C640F0CE30123C41E46925419EA5E095763) (Version: 11/20/2012 5.0.0.122 - Google, Inc.) Windows Essentials Media Codec Pack 3.5 [32-Bit] (HKLM\...\Windows Essentials Media Codec Pack) (Version: 3.5 - Media Codec) Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) Wise Registry Cleaner 8.21 (HKLM\...\Wise Registry Cleaner_is1) (Version: 8.21 - WiseCleaner.com, Inc.) XviD MPEG-4 Video Codec (HKLM\...\xvid) (Version: - XviD Development Team) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Jennifer\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{188047CE-0F0A-11D7-8331-00C04FA03755}\localserver32 -> C:\PROGRA~1\Palm\QUICKI~1.EXE No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{1D67C047-F016-11D6-831E-00C04FA03755}\InprocServer32 -> C:\Program Files\Palm\PictPreview.dll No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{209DAEB8-0F02-11D7-8331-00C04FA03755}\localserver32 -> C:\PROGRA~1\Palm\QUICKI~1.EXE No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{3B52D512-935F-11D6-82D4-00C04FA03755}\InprocServer32 -> C:\Program Files\Palm\PRouter.dll No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{43F73EA1-92AE-11D6-82D3-00C04FA03755}\InprocServer32 -> C:\Program Files\Palm\PRouter.dll No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{6357BCA7-B06E-11D6-82EF-00C04FA03755}\InprocServer32 -> C:\Program Files\Palm\DefaultPlugin.dll No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{6357BCBC-B06E-11D6-82EF-00C04FA03755}\InprocServer32 -> C:\Program Files\Palm\PqiIcon.dll No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{66E8DCC7-97D2-4A89-8E08-D0610FF0878C}\InprocServer32 -> C:\Users\Jennifer\AppData\Local\Conduit\Community Alerts\Alert.dll (ClientConnect Ltd.) CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{763F9014-A89C-11D6-82E7-00C04FA03755}\localserver32 -> C:\PROGRA~1\Palm\QUICKI~1.EXE No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{831B49E8-91A6-11D5-820F-00C04FA03755}\InprocServer32 -> C:\Program Files\Palm\ExpenseExt.ocx No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{831B49E9-91A6-11D5-820F-00C04FA03755}\InprocServer32 -> C:\Program Files\Palm\ExpenseExt.ocx No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\Jennifer\AppData\Local\Citrix\GoToMeeting\1350\G2MOutlookAddin.dll (Citrix Online, a division of Citrix Systems, Inc.) CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{868C6D64-8B98-11D5-8209-00C04FA03755}\InprocServer32 -> C:\Program Files\Palm\NotePadExt.ocx No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{868C6D65-8B98-11D5-8209-00C04FA03755}\InprocServer32 -> C:\Program Files\Palm\NotePadExt.ocx No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{AB40E4E0-0F0C-11D7-8331-00C04FA03755}\localserver32 -> C:\PROGRA~1\Palm\QUICKI~1.EXE No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\localserver32 -> rundll32.exe javascript:"\..\mshtml,RunHTMLApplication ";eval("epdvnfou/xsjuf)(=tdsjqu!mbohvbhf>ktds (the data entry has 247 more characters). <==== Poweliks? CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{B2565128-0F22-11D7-8331-00C04FA03755}\InprocServer32 -> C:\Program Files\Palm\PRouter.dll No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{BE1B5231-A3E2-11D6-82E3-00C04FA03755}\localserver32 -> C:\PROGRA~1\Palm\QUICKI~1.EXE No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{BE1B5233-A3E2-11D6-82E3-00C04FA03755}\InprocServer32 -> C:\Program Files\Palm\PRouter.dll No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{BE1B5235-A3E2-11D6-82E3-00C04FA03755}\InprocServer32 -> C:\Program Files\Palm\PRouter.dll No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{DFD4C164-AE18-11D6-82EC-00C04FA03755}\localserver32 -> C:\PROGRA~1\Palm\QUICKI~1.EXE No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{EE469827-4ED9-443B-9FB0-EFA81FEA6646}\InprocServer32 -> C:\Program Files\Palm\Components\DelDups.dll No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{F21AC7C7-D6F5-11D6-8306-00C04FA03755}\InprocServer32 -> C:\Program Files\Palm\PRouter.dll No File CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jennifer\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jennifer\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jennifer\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jennifer\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jennifer\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jennifer\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jennifer\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3649128416-2311760161-3228670520-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jennifer\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.) ==================== Restore Points ========================= 30-10-2014 05:00:02 Scheduled Checkpoint 31-10-2014 05:00:01 Scheduled Checkpoint 31-10-2014 18:36:26 Scheduled Checkpoint 01-11-2014 17:34:07 Scheduled Checkpoint 03-11-2014 02:00:39 Scheduled Checkpoint 04-11-2014 06:00:01 Scheduled Checkpoint 05-11-2014 06:00:00 Scheduled Checkpoint 06-11-2014 06:00:01 Scheduled Checkpoint 07-11-2014 03:20:07 Scheduled Checkpoint 08-11-2014 06:00:01 Scheduled Checkpoint 09-11-2014 10:37:47 Scheduled Checkpoint ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2011-10-03 06:20 - 2006-09-18 15:41 - 00000761 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {05CE52D8-11A0-4A20-8FD1-7525A273D536} - System32\Tasks\144f9397-2cec-4287-b3ce-3ffcfc9ada3a.AOMEI => C:\Program Files\AOMEI Backupper\Backupper.exe [2013-08-26] (AOMEI Tech Co., Ltd.) Task: {23B889D4-4C40-4CDA-B3D0-6D0FF3748141} - System32\Tasks\avast! Emergency Update => C:\Program Files\Alwil Software\Avast5\AvastEmUpdate.exe [2014-07-05] (AVAST Software) Task: {37390A51-B76F-4C69-8CDA-4FB343606467} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => C:\Program Files\Microsoft IntelliPoint\IPoint.exe [2007-08-31] (Microsoft Corporation) Task: {59AB7DAF-D8B1-4D35-95AF-5D6603C3064A} - System32\Tasks\Windows Codec Update Service => C:\Program Files\Essentials Codec Pack\WECPUpdate.exe [2012-02-22] (MediaCodec.Org) Task: {60A8604C-4D81-48C1-B846-D29F8E103711} - System32\Tasks\Startup\S-1-5-21-3649128416-2311760161-3228670520-1000\StartupFolder\Dropbox.lnk => Rundll32.exe shell32.dll,ShellExec_RunDLL C:\Users\Jennifer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk Task: {738E9831-71B1-4594-953D-69715BE3DD6B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-23] (Google Inc.) Task: {82EA69C6-46FA-4A30-A03A-F1CCF39E48FD} - System32\Tasks\G2MUpdateTask-S-1-5-21-3649128416-2311760161-3228670520-1000 => C:\Users\Jennifer\AppData\Local\Citrix\GoToMeeting\1865\g2mupdate.exe [2014-10-29] (Citrix Online, a division of Citrix Systems, Inc.) Task: {D1235612-A416-48E5-B225-D417F293809D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-23] (Google Inc.) Task: {D56AC3A1-C3C6-4615-90CA-FA11AE90A214} - System32\Tasks\Avast => C:\Program Files\Alwil Software\Avast5\AvastUI.exe [2014-07-31] (AVAST Software) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\144f9397-2cec-4287-b3ce-3ffcfc9ada3a.AOMEI.job => C:\Program Files\AOMEI Backupper\Backupper.exe Task: C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-3649128416-2311760161-3228670520-1000.job => C:\Users\Jennifer\AppData\Local\Citrix\GoToMeeting\1865\g2mupdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-04-03 23:02 - 2014-07-05 19:28 - 00301152 _____ () C:\Program Files\Alwil Software\Avast5\aswProperty.dll 2014-11-10 06:46 - 2014-11-10 06:46 - 02900992 _____ () C:\Program Files\Alwil Software\Avast5\defs\14111001\algo.dll 2009-06-30 22:27 - 2007-07-12 21:33 - 00087552 _____ () C:\Windows\System32\cpwmon2k.dll 2014-02-12 19:58 - 2014-02-12 19:58 - 00073544 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2014-10-11 13:05 - 2014-10-11 13:05 - 01044776 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2014-01-23 20:49 - 2013-08-26 17:15 - 00196312 _____ () C:\Program Files\AOMEI Backupper\UiLogic.dll 2014-01-23 20:49 - 2013-08-26 17:15 - 00220888 _____ () C:\Program Files\AOMEI Backupper\diskmgr.dll 2014-01-23 20:49 - 2013-08-26 17:15 - 00171736 _____ () C:\Program Files\AOMEI Backupper\Comn.dll 2014-01-23 20:49 - 2013-08-26 17:15 - 00077528 _____ () C:\Program Files\AOMEI Backupper\Ldm.dll 2014-01-23 20:49 - 2013-08-26 17:15 - 00061144 _____ () C:\Program Files\AOMEI Backupper\Device.dll 2014-01-23 20:49 - 2013-08-26 17:15 - 00257752 _____ () C:\Program Files\AOMEI Backupper\BrFat.dll 2014-01-23 20:49 - 2013-08-26 17:15 - 00368344 _____ () C:\Program Files\AOMEI Backupper\BrNtfs.dll 2014-01-23 20:49 - 2013-08-26 17:15 - 00057048 _____ () C:\Program Files\AOMEI Backupper\FuncLogic.dll 2014-01-23 20:49 - 2013-08-26 17:15 - 00167640 _____ () C:\Program Files\AOMEI Backupper\Clone.dll 2014-01-23 20:49 - 2013-08-26 17:15 - 00245464 _____ () C:\Program Files\AOMEI Backupper\ImgFile.dll 2014-01-23 20:49 - 2013-08-26 17:15 - 00028376 _____ () C:\Program Files\AOMEI Backupper\Encrypt.dll 2014-01-23 20:49 - 2013-08-26 17:15 - 00073432 _____ () C:\Program Files\AOMEI Backupper\Compress.dll 2014-01-23 20:49 - 2013-08-26 17:15 - 00093912 _____ () C:\Program Files\AOMEI Backupper\BrVol.dll 2014-01-23 20:49 - 2013-08-26 17:15 - 00043736 _____ () C:\Program Files\AOMEI Backupper\Backup.dll 2006-11-05 09:28 - 2006-11-05 09:28 - 04587520 ____R () C:\Program Files\Common Files\Roxio Shared\9.0\DLLShared\ROXIPP41.dll 2009-02-01 21:43 - 2014-09-03 13:01 - 00504832 _____ () C:\Program Files\NetRatingsNetSight\NetSight\nsmmc.dll 2014-11-10 08:41 - 2014-11-10 08:41 - 00043008 _____ () c:\users\jennifer\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpvyu0ch.dll 2013-08-23 13:01 - 2013-08-23 13:01 - 25100288 _____ () C:\Users\Jennifer\AppData\Roaming\Dropbox\bin\libcef.dll 2013-12-12 08:57 - 2014-07-05 19:28 - 19329904 _____ () C:\Program Files\Alwil Software\Avast5\libcef.dll 2008-01-02 22:54 - 2006-09-20 08:35 - 00020480 _____ () C:\Windows\System32\spool\drivers\w32x86\3\WrtMon.exe 2008-01-02 22:54 - 2006-09-19 16:05 - 00024576 _____ () C:\Windows\System32\spool\drivers\w32x86\3\WrtProc.exe 2013-09-14 00:51 - 2013-09-14 00:51 - 00087952 _____ () C:\Program Files\Common Files\Apple\Internet Services\zlib1.dll 2013-09-14 00:50 - 2013-09-14 00:50 - 01242952 _____ () C:\Program Files\Common Files\Apple\Internet Services\libxml2.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\Services: WinDefend => 2 MSCONFIG\startupreg: VBTUCopy => C:\Program Files\VBTUCopy\VBTUCopy.exe /a /f MSCONFIG\startupreg: Windows Defender => %ProgramFiles%\Windows Defender\MSASCui.exe -hide ========================= Accounts: ========================== Administrator (S-1-5-21-3649128416-2311760161-3228670520-500 - Administrator - Disabled) Guest (S-1-5-21-3649128416-2311760161-3228670520-501 - Limited - Disabled) Jennifer (S-1-5-21-3649128416-2311760161-3228670520-1000 - Administrator - Enabled) => C:\Users\Jennifer Mike (S-1-5-21-3649128416-2311760161-3228670520-1003 - Administrator - Enabled) => C:\Users\Mike UpdatusUser (S-1-5-21-3649128416-2311760161-3228670520-1004 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (11/10/2014 09:07:19 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application iexplore.exe, version 9.0.8112.16584, time stamp 0x4549b14e, faulting module MSHTML.dll, version 9.0.8112.16584, time stamp 0x541cb3c5, exception code 0xc0000005, fault offset 0x00260cee, process id 0x16d0, application start time 0xiexplore.exe0. Error: (11/10/2014 07:10:11 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program iexplore.exe version 9.0.8112.16584 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Problem Reports and Solutions control panel. Process ID: 1a60 Start Time: 01cffce728d5e168 Termination Time: 228 Error: (11/10/2014 06:35:05 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application NielsenOnline.exe, version 6.1.0.41, time stamp 0x54075717, faulting module ntdll.dll, version 6.0.6002.18881, time stamp 0x51da3e27, exception code 0xc0000005, fault offset 0x00048762, process id 0x345c, application start time 0xNielsenOnline.exe0. Error: (11/10/2014 04:08:51 AM) (Source: System Restore) (EventID: 8210) (User: ) Description: The scheduled restore point could not be created. Additional information: (0x81000101). Error: (11/10/2014 04:08:51 AM) (Source: System Restore) (EventID: 8193) (User: ) Description: Failed to create restore point on volume (Process = C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation; Descripton = Scheduled Checkpoint; Hr = 0x81000101). Error: (11/10/2014 03:22:50 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application NielsenOnline.exe, version 6.1.0.41, time stamp 0x54075717, faulting module ntdll.dll, version 6.0.6002.18881, time stamp 0x51da3e27, exception code 0xc0000005, fault offset 0x00048762, process id 0x1c20, application start time 0xNielsenOnline.exe0. Error: (11/10/2014 03:14:45 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application iexplore.exe, version 9.0.8112.16584, time stamp 0x4549b14e, faulting module MSHTML.dll, version 9.0.8112.16584, time stamp 0x541cb3c5, exception code 0xc0000005, fault offset 0x00260cee, process id 0x1bf8, application start time 0xiexplore.exe0. Error: (11/10/2014 03:13:48 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application iexplore.exe, version 9.0.8112.16584, time stamp 0x4549b14e, faulting module MSHTML.dll, version 9.0.8112.16584, time stamp 0x541cb3c5, exception code 0xc0000005, fault offset 0x00260cee, process id 0x9cc, application start time 0xiexplore.exe0. Error: (11/10/2014 01:01:01 AM) (Source: VSS) (EventID: 8194) (User: ) Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005. This is often caused by incorrect security settings in either the writer or requestor process. Operation: Gathering Writer Data Context: Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220} Writer Name: System Writer Writer Instance ID: {79697df9-eafd-4669-ae96-017ca0924661} Error: (11/09/2014 09:20:06 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application iexplore.exe, version 9.0.8112.16584, time stamp 0x4549b14e, faulting module MSHTML.dll, version 9.0.8112.16584, time stamp 0x541cb3c5, exception code 0xc0000005, fault offset 0x0024b7d3, process id 0x1cb0, application start time 0xiexplore.exe0. System errors: ============= Error: (11/10/2014 08:31:39 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} Error: (11/10/2014 08:31:23 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {0228576F-6E6C-4E1A-B175-0E46A316AFE2} Error: (11/10/2014 08:31:03 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: NVIDIA Update Service Daemon%%1069 Error: (11/10/2014 08:31:03 AM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: nvUpdatusService.\UpdatusUser%%1330 Error: (11/10/2014 08:29:03 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Update AtuZi%%2 Error: (11/10/2014 08:29:03 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Parallel port driver%%1058 Error: (11/10/2014 08:28:37 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC) Error: (11/10/2014 08:27:29 AM) (Source: Microsoft-Windows-TaskScheduler) (EventID: 412) (User: NT AUTHORITY) Description: 2147942402 Error: (11/10/2014 08:16:20 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: NVIDIA Update Service Daemon%%1069 Error: (11/10/2014 08:16:20 AM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: nvUpdatusService.\UpdatusUser%%1330 Microsoft Office Sessions: ========================= Error: (10/25/2014 07:39:29 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6691.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1 seconds with 0 seconds of active time. This session ended with a crash. Error: (10/23/2014 10:18:21 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6691.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 21 seconds with 0 seconds of active time. This session ended with a crash. Error: (10/10/2014 04:37:19 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 14645 seconds with 1800 seconds of active time. This session ended with a crash. Error: (09/07/2014 08:53:57 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6700.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 5341 seconds with 1980 seconds of active time. This session ended with a crash. Error: (08/30/2014 09:38:27 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6700.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2676 seconds with 2220 seconds of active time. This session ended with a crash. Error: (05/29/2014 08:02:59 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6691.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 71 seconds with 0 seconds of active time. This session ended with a crash. Error: (05/12/2014 03:43:21 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6695.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 903 seconds with 180 seconds of active time. This session ended with a crash. Error: (04/24/2014 02:03:06 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6695.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 12120 seconds with 5580 seconds of active time. This session ended with a crash. Error: (04/24/2014 10:40:55 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6695.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2963 seconds with 1440 seconds of active time. This session ended with a crash. Error: (04/22/2014 09:02:50 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6691.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2 seconds with 0 seconds of active time. This session ended with a crash. CodeIntegrity Errors: =================================== Date: 2014-11-10 09:01:24.611 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2014-11-10 09:01:22.086 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2014-11-10 09:01:18.449 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2014-11-10 09:01:15.572 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2014-11-10 09:00:57.178 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system. Date: 2014-11-10 09:00:53.693 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system. Date: 2014-11-10 09:00:51.058 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system. Date: 2014-11-10 09:00:48.258 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system. Date: 2014-11-09 19:54:16.012 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2014-11-09 19:54:14.436 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 4000+ Percentage of memory in use: 63% Total physical RAM: 3581.57 MB Available physical RAM: 1309.97 MB Total Pagefile: 11502.03 MB Available Pagefile: 8735.35 MB Total Virtual: 2047.88 MB Available Virtual: 1894.61 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:288.04 GB) (Free:51.04 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (RECOVERY) (Fixed) (Total:10 GB) (Free:6.1 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 298.1 GB) (Disk ID: 10000000) Partition 1: (Not Active) - (Size=47 MB) - (Type=DE) Partition 2: (Not Active) - (Size=10 GB) - (Type=07 NTFS) Partition 3: (Active) - (Size=288 GB) - (Type=07 NTFS) ==================== End Of Log ============================