OTL logfile
Spoiler
OTL logfile created on: 12/20/2012 9:18:30 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = D:\Users\Wolfie\Downloads
64bit- Professional (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
7.87 Gb Total Physical Memory | 5.34 Gb Available Physical Memory | 67.85% Memory free
17.87 Gb Paging File | 15.28 Gb Available in Paging File | 85.50% Paging File free
Paging file location(s): c:\pagefile.sys 10240 10240 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 128.00 Gb Total Space | 68.58 Gb Free Space | 53.58% Space Free | Partition Type: NTFS
Drive D: | 460.20 Gb Total Space | 394.27 Gb Free Space | 85.67% Space Free | Partition Type: NTFS
Drive F: | 100.00 Mb Total Space | 63.87 Mb Free Space | 63.87% Space Free | Partition Type: NTFS
Computer Name: WOLF-ED | User Name: Wolfie | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012/12/20 21:18:02 | 000,602,112 | ---- | M] (OldTimer Tools) -- D:\Users\Wolfie\Downloads\OTL.exe
PRC - [2012/11/29 08:50:25 | 003,463,080 | ---- | M] (TeamViewer GmbH) -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
PRC - [2012/11/22 10:50:02 | 000,166,424 | ---- | M] (Microsoft Corp.) -- C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe
PRC - [2012/09/29 19:54:26 | 000,766,536 | ---- | M] (Malwarebytes Corporation) -- D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2012/09/29 19:54:26 | 000,676,936 | ---- | M] (Malwarebytes Corporation) -- D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2012/09/29 19:54:26 | 000,399,432 | ---- | M] (Malwarebytes Corporation) -- D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2012/01/18 06:44:52 | 000,450,848 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
PRC - [2011/03/28 11:21:16 | 000,249,648 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
PRC - [2010/04/16 15:10:58 | 000,036,864 | ---- | M] (Realtek) -- C:\Program Files (x86)\Edimax\11n USB Wireless LAN Utility\RtlService.exe
PRC - [2009/10/22 05:00:04 | 000,395,824 | ---- | M] (VMware, Inc.) -- C:\Windows\SysWOW64\vmnat.exe
PRC - [2009/10/22 04:59:58 | 000,113,200 | ---- | M] (VMware, Inc.) -- D:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
PRC - [2009/10/22 04:59:48 | 000,334,384 | ---- | M] (VMware, Inc.) -- C:\Windows\SysWOW64\vmnetdhcp.exe
PRC - [2009/10/22 04:59:24 | 000,129,584 | ---- | M] (VMware, Inc.) -- D:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe
PRC - [2009/10/22 03:47:54 | 000,563,760 | ---- | M] (VMware, Inc.) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe
PRC - [2008/11/09 15:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) -- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
========== Modules (No Company Name) ==========
MOD - [2012/12/20 10:04:03 | 012,433,920 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\515c6ffea562bb0f03a1ed8f75279648\System.Windows.Forms.ni.dll
MOD - [2012/12/20 10:03:56 | 001,591,808 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\f4be07261983040b29685575b69085e8\System.Drawing.ni.dll
MOD - [2012/12/20 10:03:32 | 007,973,888 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\c8ebcd93a2b547dc72dee2fcfabcdd50\System.ni.dll
MOD - [2012/12/20 10:03:27 | 011,490,816 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\5530227809880c9b8b1d834e5434e840\mscorlib.ni.dll
MOD - [2012/11/16 19:23:15 | 000,126,976 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\Interop.SHDocVw\1.1.0.0__ffdc4657f9a00288\Interop.SHDocVw.dll
MOD - [2012/11/16 19:23:15 | 000,040,184 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\QuickStoresToolbar\1.1.0.0__318d21d4b0463a3b\QuickStoresToolbar.dll
========== Services (SafeList) ==========
SRV:64bit: - [2012/09/12 21:21:48 | 000,368,896 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2012/09/12 21:21:48 | 000,022,072 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2010/01/21 00:53:42 | 000,496,232 | ---- | M] () [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe -- (ForceWare Intelligent Application Manager (IAM)
SRV:64bit: - [2010/01/21 00:53:42 | 000,209,000 | ---- | M] () [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe -- (nSvcIp)
SRV:64bit: - [2009/07/13 20:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/07/13 20:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2012/12/14 18:28:32 | 000,250,808 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/11/29 08:50:25 | 003,463,080 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe -- (TeamViewer8)
SRV - [2012/11/22 10:50:02 | 000,166,424 | ---- | M] (Microsoft Corp.) [Auto | Running] -- C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe -- (BingDesktopUpdate)
SRV - [2012/11/09 12:12:16 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012/10/10 21:23:42 | 001,258,856 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2012/09/29 19:54:26 | 000,676,936 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012/09/29 19:54:26 | 000,399,432 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2012/07/13 19:17:12 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012/01/18 06:44:52 | 000,450,848 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe -- (UMVPFSrv)
SRV - [2011/04/01 11:14:30 | 000,183,560 | ---- | M] (Microsoft Corporation.) [On_Demand | Stopped] -- C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE -- (BBSvc)
SRV - [2011/03/28 11:21:16 | 000,249,648 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE -- (SeaPort)
SRV - [2011/03/16 10:42:06 | 000,407,336 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2010/04/16 15:10:58 | 000,036,864 | ---- | M] (Realtek) [Auto | Running] -- C:\Program Files (x86)\Edimax\11n USB Wireless LAN Utility\RtlService.exe -- (RtlService)
SRV - [2010/04/16 15:10:58 | 000,036,864 | ---- | M] (Realtek) [Auto | Running] -- C:\Program Files (x86)\Edimax\11n USB Wireless LAN Utility\RtlService.exe -- (Realtek11nCU)
SRV - [2010/03/18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/10/22 05:00:04 | 000,395,824 | ---- | M] (VMware, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\vmnat.exe -- (VMware NAT Service)
SRV - [2009/10/22 04:59:58 | 000,113,200 | ---- | M] (VMware, Inc.) [Auto | Running] -- D:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe -- (VMAuthdService)
SRV - [2009/10/22 04:59:48 | 000,334,384 | ---- | M] (VMware, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\vmnetdhcp.exe -- (VMnetDHCP)
SRV - [2009/10/22 03:47:54 | 000,563,760 | ---- | M] (VMware, Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe -- (VMUSBArbService)
SRV - [2009/10/12 14:32:24 | 000,191,024 | ---- | M] (VMware, Inc.) [On_Demand | Stopped] -- D:\Program Files (x86)\VMware\VMware Workstation\vmware-ufad.exe -- (ufad-ws60)
SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008/11/09 15:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Auto | Running] -- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2012/11/01 13:31:08 | 000,040,712 | ---- | M] (Anchorfree Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\taphss6.sys -- (taphss6)
DRV:64bit: - [2012/09/29 19:54:26 | 000,025,928 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2012/09/13 14:26:44 | 000,038,632 | ---- | M] (AnchorFree Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\taphss.sys -- (taphss)
DRV:64bit: - [2012/09/12 15:20:04 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2012/08/30 22:03:48 | 000,128,456 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2012/08/14 14:13:26 | 000,560,184 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:64bit: - [2012/07/27 14:57:59 | 000,066,728 | ---- | M] (Eugene V. Muzychenko) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vrtaucbl.sys -- (EuMusDesignVirtualAudioCableWdm)
DRV:64bit: - [2012/07/21 01:02:27 | 000,762,472 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rtl8192cu.sys -- (RTL8192cu)
DRV:64bit: - [2012/06/18 15:34:44 | 000,019,032 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\pwdrvio.sys -- (pwdrvio)
DRV:64bit: - [2012/06/18 15:34:42 | 000,012,384 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\pwdspio.sys -- (pwdspio)
DRV:64bit: - [2012/06/05 15:03:52 | 000,147,288 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys -- (VBoxNetAdp)
DRV:64bit: - [2012/05/01 18:35:23 | 000,138,360 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AnyDVD.sys -- (AnyDVD)
DRV:64bit: - [2012/04/18 12:08:03 | 000,188,736 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:64bit: - [2012/01/18 06:44:36 | 004,865,568 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lvuvc64.sys -- (LVUVC64)
DRV:64bit: - [2012/01/18 06:44:28 | 000,351,136 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lvrs64.sys -- (LVRS64)
DRV:64bit: - [2011/03/11 01:22:41 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 01:22:40 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/01/15 11:21:04 | 000,036,352 | ---- | M] (Elaborate Bytes AG) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VClone.sys -- (VClone)
DRV:64bit: - [2010/12/16 17:58:14 | 000,040,816 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ElbyCDIO.sys -- (ElbyCDIO)
DRV:64bit: - [2010/03/04 17:26:58 | 000,349,416 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvmf6264.sys -- (NVNET)
DRV:64bit: - [2009/10/22 05:01:10 | 000,080,944 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\vmci.sys -- (vmci)
DRV:64bit: - [2009/10/22 05:01:06 | 000,018,480 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\VMparport.sys -- (VMparport)
DRV:64bit: - [2009/10/22 05:01:04 | 000,029,744 | ---- | M] (VMware, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VMkbd.sys -- (vmkbd)
DRV:64bit: - [2009/10/22 05:00:58 | 000,068,144 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\vmx86.sys -- (vmx86)
DRV:64bit: - [2009/10/22 05:00:56 | 000,030,256 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\vmnetuserif.sys -- (VMnetuserif)
DRV:64bit: - [2009/10/22 03:47:50 | 000,038,960 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\hcmon.sys -- (hcmon)
DRV:64bit: - [2009/10/22 00:13:28 | 000,045,104 | R--- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\vmnetbridge.sys -- (VMnetBridge)
DRV:64bit: - [2009/10/22 00:13:28 | 000,020,016 | ---- | M] (VMware, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vmnetadapter.sys -- (VMnetAdapter)
DRV:64bit: - [2009/10/10 13:24:16 | 000,015,416 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ASACPI.sys -- (MTsensor)
DRV:64bit: - [2009/07/13 20:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 20:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 20:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009/07/13 20:47:48 | 000,023,104 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2009/07/13 20:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/10 15:35:36 | 000,867,328 | ---- | M] (Ralink Technology Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netr28ux.sys -- (netr28ux)
DRV:64bit: - [2009/06/10 15:35:35 | 000,408,960 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvm62x64.sys -- (NVENETFD)
DRV:64bit: - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 15:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/03/18 15:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV - [2012/12/20 20:15:33 | 000,035,664 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- d:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D8E7770B-2462-4CB4-ACFB-5DD5A611248C}\MpKsl3d4771e1.sys -- (MpKsl3d4771e1)
DRV - [2012/05/01 18:35:23 | 000,138,360 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\AnyDVD.sys -- (AnyDVD)
DRV - [2009/10/12 14:31:04 | 000,032,816 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- D:\Program Files (x86)\VMware\VMware Workstation\vstor2-ws60.sys -- (vstor2-ws60)
DRV - [2009/07/13 20:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://searchfunmood...E&cr=1543087796
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {B7971660-A1CE-4FDD-B9E0-2C37D77AFB0B}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{B7971660-A1CE-4FDD-B9E0-2C37D77AFB0B}: "URL" = http://searchfunmood...E&cr=1543087796
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://http://www.ya...ilc=8.yahoo.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKLM\..\SearchScopes,DefaultScope = {B7971660-A1CE-4FDD-B9E0-2C37D77AFB0B}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{B7971660-A1CE-4FDD-B9E0-2C37D77AFB0B}: "URL" = http://searchfunmood...E&cr=1543087796
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-US
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 20 2D D0 C7 16 DF CD 01 [binary data]
IE - HKCU\..\URLSearchHook: {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn2\yt.dll (Yahoo! Inc.)
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE8SRC
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_5_502_135.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_135.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.9.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files (x86)\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MIF5BA~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MIF5BA~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/npracplug;version=1.0.0.0: C:\Program Files (x86)\Real\RealArcade\Plugins\Mozilla\npracplug.dll File not found
FF - HKLM\Software\MozillaPlugins\@soe.sony.com/installer,version=1.0.3: C:\Program Files (x86)\Sony Online Entertainment\npsoe.dll ()
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.3: F:\VideoLAN\VLC\npvlc.dll File not found
FF - HKLM\Software\MozillaPlugins\@viewpoint.com/VMP: C:\Program Files (x86)\Viewpoint\Viewpoint Media Player\npViewpoint.dll File not found
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012/08/17 13:08:38 | 000,000,000 | ---D | M]
[2012/11/18 15:08:47 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2012/11/16 19:23:15 | 000,000,000 | ---D | M] (QuickStores-Toolbar) -- C:\Program Files (x86)\Mozilla Firefox\extensions\[email protected]
O1 HOSTS File: ([2009/06/10 16:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2:64bit: - BHO: (Hotspot Shield Class) - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - C:\Program Files (x86)\Hotspot Shield\HssIE\HssIE_64.dll File not found
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn2\yt.dll (Yahoo! Inc.)
O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn2\yt.dll (Yahoo! Inc.)
O4:64bit: - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe File not found
O4 - HKLM..\Run: [BingDesktop] C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe (Microsoft Corp.)
O4 - HKLM..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe File not found
O4 - HKLM..\Run: [StereoLinksInstall] "C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstlink.exe" /install1 File not found
O4 - HKLM..\Run: [UnlockerAssistant] "C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe" File not found
O4 - HKLM..\Run: [vmware-tray] D:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe (VMware, Inc.)
O4:64bit: - HKLM..\RunOnceEx: [Flags] Reg Error: Invalid data type. File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000017 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000018 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000019 - D:\Program Files (x86)\VMware\VMware Workstation\x64\vsocklib.dll (VMware, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000020 - D:\Program Files (x86)\VMware\VMware Workstation\x64\vsocklib.dll (VMware, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - D:\Program Files (x86)\VMware\VMware Workstation\vsocklib.dll (VMware, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - D:\Program Files (x86)\VMware\VMware Workstation\vsocklib.dll (VMware, Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.m...ash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{04560810-B621-437F-875B-140ED57E56E7}: DhcpNameServer = 192.168.1.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2012/12/20 20:19:16 | 000,000,000 | ---D | C] -- D:\Users\Wolfie\AppData\Roaming\Malwarebytes
[2012/12/20 20:05:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Security Client
[2012/12/20 20:05:41 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Client
[2012/12/20 20:02:11 | 000,000,000 | ---D | C] -- D:\Users\Wolfie\AppData\Local\CrashDumps
[2012/12/20 20:02:01 | 000,000,000 | ---D | C] -- D:\Users\Wolfie\AppData\Local\visi_coupon
[2012/12/20 20:01:42 | 000,000,000 | ---D | C] -- D:\Users\Wolfie\AppData\Roaming\Yahoo!
[2012/12/20 12:15:24 | 000,080,944 | ---- | C] (VMware, Inc.) -- C:\Windows\SysNative\drivers\vmci.sys
[2012/12/20 12:15:21 | 000,068,144 | ---- | C] (VMware, Inc.) -- C:\Windows\SysNative\drivers\vmx86.sys
[2012/12/20 12:15:21 | 000,018,480 | ---- | C] (VMware, Inc.) -- C:\Windows\SysNative\drivers\VMparport.sys
[2012/12/20 12:14:56 | 000,055,344 | ---- | C] (VMware, Inc.) -- C:\Windows\SysNative\vnetinst.dll
[2012/12/20 12:14:56 | 000,020,016 | ---- | C] (VMware, Inc.) -- C:\Windows\SysNative\drivers\vmnetadapter.sys
[2012/12/20 12:14:50 | 000,334,384 | ---- | C] (VMware, Inc.) -- C:\Windows\SysWow64\vmnetdhcp.exe
[2012/12/20 12:14:46 | 000,395,824 | ---- | C] (VMware, Inc.) -- C:\Windows\SysWow64\vmnat.exe
[2012/12/20 12:14:45 | 000,030,256 | ---- | C] (VMware, Inc.) -- C:\Windows\SysNative\drivers\vmnetuserif.sys
[2012/12/20 12:14:44 | 000,056,880 | R--- | C] (VMware, Inc.) -- C:\Windows\SysNative\vmnetbridge.dll
[2012/12/20 12:14:44 | 000,045,104 | R--- | C] (VMware, Inc.) -- C:\Windows\SysNative\drivers\vmnetbridge.sys
[2012/12/20 12:14:44 | 000,024,112 | R--- | C] (VMware, Inc.) -- C:\Windows\SysNative\drivers\vmnet.sys
[2012/12/20 12:14:34 | 000,958,000 | ---- | C] (VMware, Inc.) -- C:\Windows\SysNative\vnetlib64.dll
[2012/12/20 12:14:33 | 000,029,744 | ---- | C] (VMware, Inc.) -- C:\Windows\SysNative\drivers\VMkbd.sys
[2012/12/20 12:14:31 | 000,038,960 | ---- | C] (VMware, Inc.) -- C:\Windows\SysNative\drivers\hcmon.sys
[2012/12/20 12:14:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\VMware
[2012/12/20 12:14:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VMware
[2012/12/20 10:24:07 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2012/12/20 03:31:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\logishrd
[2012/12/19 22:42:52 | 000,000,000 | -HSD | C] -- C:\Boot
[2012/12/19 15:42:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER
[2012/12/19 15:39:47 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2012/12/19 15:39:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Analysis Services
[2012/12/19 15:39:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office
[2012/12/19 15:39:17 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft Help
[2012/12/19 15:39:06 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2012/12/15 11:46:50 | 000,178,800 | ---- | C] (Sony DADC Austria AG.) -- C:\Windows\SysWow64\CmdLineExt_x64.dll
[2012/12/10 19:37:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\BandiMPEG1
[2012/12/08 18:25:51 | 000,000,000 | ---D | C] -- D:\ProgramData\BlueStacks
[2012/12/08 18:13:07 | 000,000,000 | ---D | C] -- D:\ProgramData\BlueStacksSetup
[2012/11/24 13:03:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OnLive
[2012/11/23 16:02:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Skype
[2012/11/23 13:54:03 | 000,000,000 | ---D | C] -- D:\ProgramData\Roblox
[2012/11/23 13:54:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Roblox
[2012/11/22 19:57:46 | 000,000,000 | ---D | C] -- D:\ProgramData\RELOADED
[2012/11/22 18:12:25 | 000,000,000 | ---D | C] -- C:\ViewSonic
[2012/11/21 17:20:39 | 000,000,000 | ---D | C] -- D:\ProgramData\NCH Software
[2012/11/21 17:20:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NCH Software
[2012/07/21 10:51:12 | 000,774,144 | ---- | C] (RealNetworks, Inc.) -- C:\Program Files (x86)\RngInterstitial.dll
========== Files - Modified Within 30 Days ==========
[2012/12/20 20:15:58 | 000,020,320 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/12/20 20:15:58 | 000,020,320 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/12/20 20:14:58 | 000,783,066 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012/12/20 20:14:58 | 000,662,790 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012/12/20 20:14:58 | 000,122,244 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012/12/20 20:07:44 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/12/20 20:07:40 | 2046,169,087 | -HS- | M] () -- C:\hiberfil.sys
[2012/12/20 20:06:20 | 000,002,154 | ---- | M] () -- C:\Windows\epplauncher.mif
[2012/12/20 20:02:25 | 000,000,274 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{6F7B6511-D25A-460D-A975-8A4B95271611}.job
[2012/12/20 19:50:11 | 000,001,293 | ---- | M] () -- D:\Users\Wolfie\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2012/12/20 19:01:59 | 000,001,198 | ---- | M] () -- C:\Users\Public\Desktop\Toontown Online.lnk
[2012/12/20 12:14:29 | 000,001,024 | ---- | M] () -- C:\.rnd
[2012/12/20 12:14:27 | 000,795,928 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012/12/20 09:55:55 | 000,417,112 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012/12/20 02:34:43 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK
[2012/12/19 23:25:57 | 000,001,905 | ---- | M] () -- C:\Windows\diagwrn.xml
[2012/12/19 23:25:57 | 000,001,905 | ---- | M] () -- C:\Windows\diagerr.xml
[2012/12/15 11:46:50 | 000,178,800 | ---- | M] (Sony DADC Austria AG.) -- C:\Windows\SysWow64\CmdLineExt_x64.dll
[2012/12/14 18:28:32 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/12/10 19:43:34 | 000,000,827 | ---- | M] () -- D:\Users\Wolfie\Application Data\Microsoft\Internet Explorer\Quick Launch\Bandicam.lnk
[2012/11/28 18:29:02 | 000,000,856 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-694218727-2091333382-3603654347-1001Core1cdcdc026264e80.job
[2012/11/27 17:15:20 | 000,000,070 | ---- | M] () -- C:\Windows\popcinfo.dat
========== Files Created - No Company Name ==========
[2012/12/20 20:06:20 | 000,002,154 | ---- | C] () -- C:\Windows\epplauncher.mif
[2012/12/20 20:02:25 | 000,000,274 | -H-- | C] () -- C:\Windows\tasks\User_Feed_Synchronization-{6F7B6511-D25A-460D-A975-8A4B95271611}.job
[2012/12/20 19:01:59 | 000,001,198 | ---- | C] () -- C:\Users\Public\Desktop\Toontown Online.lnk
[2012/12/20 03:13:34 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
[2012/12/20 03:02:56 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
[2012/12/19 22:42:56 | 000,008,192 | R-S- | C] () -- C:\BOOTSECT.BAK
[2012/12/19 22:42:52 | 000,383,562 | RHS- | C] () -- C:\bootmgr
[2012/12/10 19:43:34 | 000,000,827 | ---- | C] () -- D:\Users\Wolfie\Application Data\Microsoft\Internet Explorer\Quick Launch\Bandicam.lnk
[2012/11/28 18:29:02 | 000,000,856 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-694218727-2091333382-3603654347-1001Core1cdcdc026264e80.job
[2012/11/21 17:20:51 | 000,001,146 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoPad Video Editor.lnk
[2012/11/08 14:56:50 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\cd.dat
[2012/09/12 06:39:15 | 000,000,070 | ---- | C] () -- C:\Windows\popcinfo.dat
[2012/08/15 16:03:21 | 000,000,040 | -HS- | C] () -- D:\ProgramData\.zreglib
[2012/08/15 15:33:38 | 000,000,008 | RHS- | C] () -- D:\ProgramData\ntuser.pol
[2012/08/15 15:23:07 | 000,081,920 | ---- | C] () -- C:\Windows\portaudio.dll
[2012/08/09 02:40:32 | 000,065,576 | ---- | C] () -- C:\Windows\SysWow64\bdmpegv.dll
[2012/08/09 02:40:28 | 000,022,560 | ---- | C] () -- C:\Windows\SysWow64\bdmjpeg.dll
[2012/08/03 10:42:27 | 000,000,040 | ---- | C] () -- C:\Windows\RSoftInfo.dat
[2012/07/30 18:47:59 | 000,795,928 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012/07/26 09:44:29 | 000,147,067 | ---- | C] () -- D:\Users\Wolfie\CoCo in boxg.jpg
[2012/07/26 09:43:46 | 000,164,621 | ---- | C] () -- D:\Users\Wolfie\CoCo in boxj.jpg
[2012/07/26 09:37:13 | 006,395,778 | ---- | C] () -- D:\Users\Wolfie\CIMG0858.JPG
[2012/07/26 09:21:54 | 010,540,745 | ---- | C] () -- D:\Users\Wolfie\ASUSUpdt.rar
[2012/07/21 11:00:29 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat
[2012/07/21 01:03:12 | 000,451,072 | ---- | C] () -- C:\Windows\SysWow64\ISSRemoveSP.exe
[2012/07/20 23:44:29 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini
[2012/01/18 06:44:00 | 010,920,984 | ---- | C] () -- C:\Windows\SysWow64\LogiDPP.dll
[2012/01/18 06:44:00 | 000,336,408 | ---- | C] () -- C:\Windows\SysWow64\DevManagerCore.dll
[2012/01/18 06:44:00 | 000,104,472 | ---- | C] () -- C:\Windows\SysWow64\LogiDPPApp.exe
[2011/04/09 17:55:28 | 000,179,261 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
========== ZeroAccess Check ==========
[2009/07/13 23:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012/06/09 00:30:56 | 014,165,504 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012/06/08 23:46:56 | 012,868,608 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 20:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2009/07/13 20:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 20:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2012/07/26 17:08:51 | 000,000,000 | ---D | M] -- D:\Users\Wolfie\AppData\Roaming\Actual Tools
========== Purity Check ==========
< End of report >
OTL by OldTimer - Version 3.2.69.0 Folder = D:\Users\Wolfie\Downloads
64bit- Professional (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
7.87 Gb Total Physical Memory | 5.34 Gb Available Physical Memory | 67.85% Memory free
17.87 Gb Paging File | 15.28 Gb Available in Paging File | 85.50% Paging File free
Paging file location(s): c:\pagefile.sys 10240 10240 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 128.00 Gb Total Space | 68.58 Gb Free Space | 53.58% Space Free | Partition Type: NTFS
Drive D: | 460.20 Gb Total Space | 394.27 Gb Free Space | 85.67% Space Free | Partition Type: NTFS
Drive F: | 100.00 Mb Total Space | 63.87 Mb Free Space | 63.87% Space Free | Partition Type: NTFS
Computer Name: WOLF-ED | User Name: Wolfie | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012/12/20 21:18:02 | 000,602,112 | ---- | M] (OldTimer Tools) -- D:\Users\Wolfie\Downloads\OTL.exe
PRC - [2012/11/29 08:50:25 | 003,463,080 | ---- | M] (TeamViewer GmbH) -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
PRC - [2012/11/22 10:50:02 | 000,166,424 | ---- | M] (Microsoft Corp.) -- C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe
PRC - [2012/09/29 19:54:26 | 000,766,536 | ---- | M] (Malwarebytes Corporation) -- D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2012/09/29 19:54:26 | 000,676,936 | ---- | M] (Malwarebytes Corporation) -- D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2012/09/29 19:54:26 | 000,399,432 | ---- | M] (Malwarebytes Corporation) -- D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2012/01/18 06:44:52 | 000,450,848 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
PRC - [2011/03/28 11:21:16 | 000,249,648 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
PRC - [2010/04/16 15:10:58 | 000,036,864 | ---- | M] (Realtek) -- C:\Program Files (x86)\Edimax\11n USB Wireless LAN Utility\RtlService.exe
PRC - [2009/10/22 05:00:04 | 000,395,824 | ---- | M] (VMware, Inc.) -- C:\Windows\SysWOW64\vmnat.exe
PRC - [2009/10/22 04:59:58 | 000,113,200 | ---- | M] (VMware, Inc.) -- D:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
PRC - [2009/10/22 04:59:48 | 000,334,384 | ---- | M] (VMware, Inc.) -- C:\Windows\SysWOW64\vmnetdhcp.exe
PRC - [2009/10/22 04:59:24 | 000,129,584 | ---- | M] (VMware, Inc.) -- D:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe
PRC - [2009/10/22 03:47:54 | 000,563,760 | ---- | M] (VMware, Inc.) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe
PRC - [2008/11/09 15:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) -- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
========== Modules (No Company Name) ==========
MOD - [2012/12/20 10:04:03 | 012,433,920 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\515c6ffea562bb0f03a1ed8f75279648\System.Windows.Forms.ni.dll
MOD - [2012/12/20 10:03:56 | 001,591,808 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\f4be07261983040b29685575b69085e8\System.Drawing.ni.dll
MOD - [2012/12/20 10:03:32 | 007,973,888 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\c8ebcd93a2b547dc72dee2fcfabcdd50\System.ni.dll
MOD - [2012/12/20 10:03:27 | 011,490,816 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\5530227809880c9b8b1d834e5434e840\mscorlib.ni.dll
MOD - [2012/11/16 19:23:15 | 000,126,976 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\Interop.SHDocVw\1.1.0.0__ffdc4657f9a00288\Interop.SHDocVw.dll
MOD - [2012/11/16 19:23:15 | 000,040,184 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\QuickStoresToolbar\1.1.0.0__318d21d4b0463a3b\QuickStoresToolbar.dll
========== Services (SafeList) ==========
SRV:64bit: - [2012/09/12 21:21:48 | 000,368,896 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2012/09/12 21:21:48 | 000,022,072 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2010/01/21 00:53:42 | 000,496,232 | ---- | M] () [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe -- (ForceWare Intelligent Application Manager (IAM)
SRV:64bit: - [2010/01/21 00:53:42 | 000,209,000 | ---- | M] () [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe -- (nSvcIp)
SRV:64bit: - [2009/07/13 20:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/07/13 20:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2012/12/14 18:28:32 | 000,250,808 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/11/29 08:50:25 | 003,463,080 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe -- (TeamViewer8)
SRV - [2012/11/22 10:50:02 | 000,166,424 | ---- | M] (Microsoft Corp.) [Auto | Running] -- C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe -- (BingDesktopUpdate)
SRV - [2012/11/09 12:12:16 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012/10/10 21:23:42 | 001,258,856 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2012/09/29 19:54:26 | 000,676,936 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012/09/29 19:54:26 | 000,399,432 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2012/07/13 19:17:12 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012/01/18 06:44:52 | 000,450,848 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe -- (UMVPFSrv)
SRV - [2011/04/01 11:14:30 | 000,183,560 | ---- | M] (Microsoft Corporation.) [On_Demand | Stopped] -- C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE -- (BBSvc)
SRV - [2011/03/28 11:21:16 | 000,249,648 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE -- (SeaPort)
SRV - [2011/03/16 10:42:06 | 000,407,336 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2010/04/16 15:10:58 | 000,036,864 | ---- | M] (Realtek) [Auto | Running] -- C:\Program Files (x86)\Edimax\11n USB Wireless LAN Utility\RtlService.exe -- (RtlService)
SRV - [2010/04/16 15:10:58 | 000,036,864 | ---- | M] (Realtek) [Auto | Running] -- C:\Program Files (x86)\Edimax\11n USB Wireless LAN Utility\RtlService.exe -- (Realtek11nCU)
SRV - [2010/03/18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/10/22 05:00:04 | 000,395,824 | ---- | M] (VMware, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\vmnat.exe -- (VMware NAT Service)
SRV - [2009/10/22 04:59:58 | 000,113,200 | ---- | M] (VMware, Inc.) [Auto | Running] -- D:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe -- (VMAuthdService)
SRV - [2009/10/22 04:59:48 | 000,334,384 | ---- | M] (VMware, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\vmnetdhcp.exe -- (VMnetDHCP)
SRV - [2009/10/22 03:47:54 | 000,563,760 | ---- | M] (VMware, Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe -- (VMUSBArbService)
SRV - [2009/10/12 14:32:24 | 000,191,024 | ---- | M] (VMware, Inc.) [On_Demand | Stopped] -- D:\Program Files (x86)\VMware\VMware Workstation\vmware-ufad.exe -- (ufad-ws60)
SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008/11/09 15:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Auto | Running] -- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2012/11/01 13:31:08 | 000,040,712 | ---- | M] (Anchorfree Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\taphss6.sys -- (taphss6)
DRV:64bit: - [2012/09/29 19:54:26 | 000,025,928 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2012/09/13 14:26:44 | 000,038,632 | ---- | M] (AnchorFree Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\taphss.sys -- (taphss)
DRV:64bit: - [2012/09/12 15:20:04 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2012/08/30 22:03:48 | 000,128,456 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2012/08/14 14:13:26 | 000,560,184 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:64bit: - [2012/07/27 14:57:59 | 000,066,728 | ---- | M] (Eugene V. Muzychenko) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vrtaucbl.sys -- (EuMusDesignVirtualAudioCableWdm)
DRV:64bit: - [2012/07/21 01:02:27 | 000,762,472 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rtl8192cu.sys -- (RTL8192cu)
DRV:64bit: - [2012/06/18 15:34:44 | 000,019,032 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\pwdrvio.sys -- (pwdrvio)
DRV:64bit: - [2012/06/18 15:34:42 | 000,012,384 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\pwdspio.sys -- (pwdspio)
DRV:64bit: - [2012/06/05 15:03:52 | 000,147,288 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys -- (VBoxNetAdp)
DRV:64bit: - [2012/05/01 18:35:23 | 000,138,360 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AnyDVD.sys -- (AnyDVD)
DRV:64bit: - [2012/04/18 12:08:03 | 000,188,736 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:64bit: - [2012/01/18 06:44:36 | 004,865,568 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lvuvc64.sys -- (LVUVC64)
DRV:64bit: - [2012/01/18 06:44:28 | 000,351,136 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lvrs64.sys -- (LVRS64)
DRV:64bit: - [2011/03/11 01:22:41 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 01:22:40 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/01/15 11:21:04 | 000,036,352 | ---- | M] (Elaborate Bytes AG) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VClone.sys -- (VClone)
DRV:64bit: - [2010/12/16 17:58:14 | 000,040,816 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ElbyCDIO.sys -- (ElbyCDIO)
DRV:64bit: - [2010/03/04 17:26:58 | 000,349,416 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvmf6264.sys -- (NVNET)
DRV:64bit: - [2009/10/22 05:01:10 | 000,080,944 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\vmci.sys -- (vmci)
DRV:64bit: - [2009/10/22 05:01:06 | 000,018,480 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\VMparport.sys -- (VMparport)
DRV:64bit: - [2009/10/22 05:01:04 | 000,029,744 | ---- | M] (VMware, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VMkbd.sys -- (vmkbd)
DRV:64bit: - [2009/10/22 05:00:58 | 000,068,144 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\vmx86.sys -- (vmx86)
DRV:64bit: - [2009/10/22 05:00:56 | 000,030,256 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\vmnetuserif.sys -- (VMnetuserif)
DRV:64bit: - [2009/10/22 03:47:50 | 000,038,960 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\hcmon.sys -- (hcmon)
DRV:64bit: - [2009/10/22 00:13:28 | 000,045,104 | R--- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\vmnetbridge.sys -- (VMnetBridge)
DRV:64bit: - [2009/10/22 00:13:28 | 000,020,016 | ---- | M] (VMware, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vmnetadapter.sys -- (VMnetAdapter)
DRV:64bit: - [2009/10/10 13:24:16 | 000,015,416 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ASACPI.sys -- (MTsensor)
DRV:64bit: - [2009/07/13 20:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 20:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 20:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009/07/13 20:47:48 | 000,023,104 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2009/07/13 20:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/10 15:35:36 | 000,867,328 | ---- | M] (Ralink Technology Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netr28ux.sys -- (netr28ux)
DRV:64bit: - [2009/06/10 15:35:35 | 000,408,960 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvm62x64.sys -- (NVENETFD)
DRV:64bit: - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 15:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/03/18 15:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV - [2012/12/20 20:15:33 | 000,035,664 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- d:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D8E7770B-2462-4CB4-ACFB-5DD5A611248C}\MpKsl3d4771e1.sys -- (MpKsl3d4771e1)
DRV - [2012/05/01 18:35:23 | 000,138,360 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\AnyDVD.sys -- (AnyDVD)
DRV - [2009/10/12 14:31:04 | 000,032,816 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- D:\Program Files (x86)\VMware\VMware Workstation\vstor2-ws60.sys -- (vstor2-ws60)
DRV - [2009/07/13 20:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://searchfunmood...E&cr=1543087796
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {B7971660-A1CE-4FDD-B9E0-2C37D77AFB0B}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{B7971660-A1CE-4FDD-B9E0-2C37D77AFB0B}: "URL" = http://searchfunmood...E&cr=1543087796
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://http://www.ya...ilc=8.yahoo.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKLM\..\SearchScopes,DefaultScope = {B7971660-A1CE-4FDD-B9E0-2C37D77AFB0B}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{B7971660-A1CE-4FDD-B9E0-2C37D77AFB0B}: "URL" = http://searchfunmood...E&cr=1543087796
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-US
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 20 2D D0 C7 16 DF CD 01 [binary data]
IE - HKCU\..\URLSearchHook: {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn2\yt.dll (Yahoo! Inc.)
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE8SRC
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_5_502_135.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_135.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.9.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files (x86)\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MIF5BA~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MIF5BA~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/npracplug;version=1.0.0.0: C:\Program Files (x86)\Real\RealArcade\Plugins\Mozilla\npracplug.dll File not found
FF - HKLM\Software\MozillaPlugins\@soe.sony.com/installer,version=1.0.3: C:\Program Files (x86)\Sony Online Entertainment\npsoe.dll ()
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.3: F:\VideoLAN\VLC\npvlc.dll File not found
FF - HKLM\Software\MozillaPlugins\@viewpoint.com/VMP: C:\Program Files (x86)\Viewpoint\Viewpoint Media Player\npViewpoint.dll File not found
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012/08/17 13:08:38 | 000,000,000 | ---D | M]
[2012/11/18 15:08:47 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2012/11/16 19:23:15 | 000,000,000 | ---D | M] (QuickStores-Toolbar) -- C:\Program Files (x86)\Mozilla Firefox\extensions\[email protected]
O1 HOSTS File: ([2009/06/10 16:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2:64bit: - BHO: (Hotspot Shield Class) - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - C:\Program Files (x86)\Hotspot Shield\HssIE\HssIE_64.dll File not found
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn2\yt.dll (Yahoo! Inc.)
O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn2\yt.dll (Yahoo! Inc.)
O4:64bit: - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe File not found
O4 - HKLM..\Run: [BingDesktop] C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe (Microsoft Corp.)
O4 - HKLM..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe File not found
O4 - HKLM..\Run: [StereoLinksInstall] "C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstlink.exe" /install1 File not found
O4 - HKLM..\Run: [UnlockerAssistant] "C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe" File not found
O4 - HKLM..\Run: [vmware-tray] D:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe (VMware, Inc.)
O4:64bit: - HKLM..\RunOnceEx: [Flags] Reg Error: Invalid data type. File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000017 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000018 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000019 - D:\Program Files (x86)\VMware\VMware Workstation\x64\vsocklib.dll (VMware, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000020 - D:\Program Files (x86)\VMware\VMware Workstation\x64\vsocklib.dll (VMware, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - D:\Program Files (x86)\VMware\VMware Workstation\vsocklib.dll (VMware, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - D:\Program Files (x86)\VMware\VMware Workstation\vsocklib.dll (VMware, Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.m...ash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{04560810-B621-437F-875B-140ED57E56E7}: DhcpNameServer = 192.168.1.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2012/12/20 20:19:16 | 000,000,000 | ---D | C] -- D:\Users\Wolfie\AppData\Roaming\Malwarebytes
[2012/12/20 20:05:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Security Client
[2012/12/20 20:05:41 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Client
[2012/12/20 20:02:11 | 000,000,000 | ---D | C] -- D:\Users\Wolfie\AppData\Local\CrashDumps
[2012/12/20 20:02:01 | 000,000,000 | ---D | C] -- D:\Users\Wolfie\AppData\Local\visi_coupon
[2012/12/20 20:01:42 | 000,000,000 | ---D | C] -- D:\Users\Wolfie\AppData\Roaming\Yahoo!
[2012/12/20 12:15:24 | 000,080,944 | ---- | C] (VMware, Inc.) -- C:\Windows\SysNative\drivers\vmci.sys
[2012/12/20 12:15:21 | 000,068,144 | ---- | C] (VMware, Inc.) -- C:\Windows\SysNative\drivers\vmx86.sys
[2012/12/20 12:15:21 | 000,018,480 | ---- | C] (VMware, Inc.) -- C:\Windows\SysNative\drivers\VMparport.sys
[2012/12/20 12:14:56 | 000,055,344 | ---- | C] (VMware, Inc.) -- C:\Windows\SysNative\vnetinst.dll
[2012/12/20 12:14:56 | 000,020,016 | ---- | C] (VMware, Inc.) -- C:\Windows\SysNative\drivers\vmnetadapter.sys
[2012/12/20 12:14:50 | 000,334,384 | ---- | C] (VMware, Inc.) -- C:\Windows\SysWow64\vmnetdhcp.exe
[2012/12/20 12:14:46 | 000,395,824 | ---- | C] (VMware, Inc.) -- C:\Windows\SysWow64\vmnat.exe
[2012/12/20 12:14:45 | 000,030,256 | ---- | C] (VMware, Inc.) -- C:\Windows\SysNative\drivers\vmnetuserif.sys
[2012/12/20 12:14:44 | 000,056,880 | R--- | C] (VMware, Inc.) -- C:\Windows\SysNative\vmnetbridge.dll
[2012/12/20 12:14:44 | 000,045,104 | R--- | C] (VMware, Inc.) -- C:\Windows\SysNative\drivers\vmnetbridge.sys
[2012/12/20 12:14:44 | 000,024,112 | R--- | C] (VMware, Inc.) -- C:\Windows\SysNative\drivers\vmnet.sys
[2012/12/20 12:14:34 | 000,958,000 | ---- | C] (VMware, Inc.) -- C:\Windows\SysNative\vnetlib64.dll
[2012/12/20 12:14:33 | 000,029,744 | ---- | C] (VMware, Inc.) -- C:\Windows\SysNative\drivers\VMkbd.sys
[2012/12/20 12:14:31 | 000,038,960 | ---- | C] (VMware, Inc.) -- C:\Windows\SysNative\drivers\hcmon.sys
[2012/12/20 12:14:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\VMware
[2012/12/20 12:14:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VMware
[2012/12/20 10:24:07 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2012/12/20 03:31:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\logishrd
[2012/12/19 22:42:52 | 000,000,000 | -HSD | C] -- C:\Boot
[2012/12/19 15:42:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER
[2012/12/19 15:39:47 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2012/12/19 15:39:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Analysis Services
[2012/12/19 15:39:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office
[2012/12/19 15:39:17 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft Help
[2012/12/19 15:39:06 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2012/12/15 11:46:50 | 000,178,800 | ---- | C] (Sony DADC Austria AG.) -- C:\Windows\SysWow64\CmdLineExt_x64.dll
[2012/12/10 19:37:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\BandiMPEG1
[2012/12/08 18:25:51 | 000,000,000 | ---D | C] -- D:\ProgramData\BlueStacks
[2012/12/08 18:13:07 | 000,000,000 | ---D | C] -- D:\ProgramData\BlueStacksSetup
[2012/11/24 13:03:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OnLive
[2012/11/23 16:02:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Skype
[2012/11/23 13:54:03 | 000,000,000 | ---D | C] -- D:\ProgramData\Roblox
[2012/11/23 13:54:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Roblox
[2012/11/22 19:57:46 | 000,000,000 | ---D | C] -- D:\ProgramData\RELOADED
[2012/11/22 18:12:25 | 000,000,000 | ---D | C] -- C:\ViewSonic
[2012/11/21 17:20:39 | 000,000,000 | ---D | C] -- D:\ProgramData\NCH Software
[2012/11/21 17:20:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NCH Software
[2012/07/21 10:51:12 | 000,774,144 | ---- | C] (RealNetworks, Inc.) -- C:\Program Files (x86)\RngInterstitial.dll
========== Files - Modified Within 30 Days ==========
[2012/12/20 20:15:58 | 000,020,320 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/12/20 20:15:58 | 000,020,320 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/12/20 20:14:58 | 000,783,066 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012/12/20 20:14:58 | 000,662,790 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012/12/20 20:14:58 | 000,122,244 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012/12/20 20:07:44 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/12/20 20:07:40 | 2046,169,087 | -HS- | M] () -- C:\hiberfil.sys
[2012/12/20 20:06:20 | 000,002,154 | ---- | M] () -- C:\Windows\epplauncher.mif
[2012/12/20 20:02:25 | 000,000,274 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{6F7B6511-D25A-460D-A975-8A4B95271611}.job
[2012/12/20 19:50:11 | 000,001,293 | ---- | M] () -- D:\Users\Wolfie\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2012/12/20 19:01:59 | 000,001,198 | ---- | M] () -- C:\Users\Public\Desktop\Toontown Online.lnk
[2012/12/20 12:14:29 | 000,001,024 | ---- | M] () -- C:\.rnd
[2012/12/20 12:14:27 | 000,795,928 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012/12/20 09:55:55 | 000,417,112 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012/12/20 02:34:43 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK
[2012/12/19 23:25:57 | 000,001,905 | ---- | M] () -- C:\Windows\diagwrn.xml
[2012/12/19 23:25:57 | 000,001,905 | ---- | M] () -- C:\Windows\diagerr.xml
[2012/12/15 11:46:50 | 000,178,800 | ---- | M] (Sony DADC Austria AG.) -- C:\Windows\SysWow64\CmdLineExt_x64.dll
[2012/12/14 18:28:32 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/12/10 19:43:34 | 000,000,827 | ---- | M] () -- D:\Users\Wolfie\Application Data\Microsoft\Internet Explorer\Quick Launch\Bandicam.lnk
[2012/11/28 18:29:02 | 000,000,856 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-694218727-2091333382-3603654347-1001Core1cdcdc026264e80.job
[2012/11/27 17:15:20 | 000,000,070 | ---- | M] () -- C:\Windows\popcinfo.dat
========== Files Created - No Company Name ==========
[2012/12/20 20:06:20 | 000,002,154 | ---- | C] () -- C:\Windows\epplauncher.mif
[2012/12/20 20:02:25 | 000,000,274 | -H-- | C] () -- C:\Windows\tasks\User_Feed_Synchronization-{6F7B6511-D25A-460D-A975-8A4B95271611}.job
[2012/12/20 19:01:59 | 000,001,198 | ---- | C] () -- C:\Users\Public\Desktop\Toontown Online.lnk
[2012/12/20 03:13:34 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
[2012/12/20 03:02:56 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
[2012/12/19 22:42:56 | 000,008,192 | R-S- | C] () -- C:\BOOTSECT.BAK
[2012/12/19 22:42:52 | 000,383,562 | RHS- | C] () -- C:\bootmgr
[2012/12/10 19:43:34 | 000,000,827 | ---- | C] () -- D:\Users\Wolfie\Application Data\Microsoft\Internet Explorer\Quick Launch\Bandicam.lnk
[2012/11/28 18:29:02 | 000,000,856 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-694218727-2091333382-3603654347-1001Core1cdcdc026264e80.job
[2012/11/21 17:20:51 | 000,001,146 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoPad Video Editor.lnk
[2012/11/08 14:56:50 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\cd.dat
[2012/09/12 06:39:15 | 000,000,070 | ---- | C] () -- C:\Windows\popcinfo.dat
[2012/08/15 16:03:21 | 000,000,040 | -HS- | C] () -- D:\ProgramData\.zreglib
[2012/08/15 15:33:38 | 000,000,008 | RHS- | C] () -- D:\ProgramData\ntuser.pol
[2012/08/15 15:23:07 | 000,081,920 | ---- | C] () -- C:\Windows\portaudio.dll
[2012/08/09 02:40:32 | 000,065,576 | ---- | C] () -- C:\Windows\SysWow64\bdmpegv.dll
[2012/08/09 02:40:28 | 000,022,560 | ---- | C] () -- C:\Windows\SysWow64\bdmjpeg.dll
[2012/08/03 10:42:27 | 000,000,040 | ---- | C] () -- C:\Windows\RSoftInfo.dat
[2012/07/30 18:47:59 | 000,795,928 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012/07/26 09:44:29 | 000,147,067 | ---- | C] () -- D:\Users\Wolfie\CoCo in boxg.jpg
[2012/07/26 09:43:46 | 000,164,621 | ---- | C] () -- D:\Users\Wolfie\CoCo in boxj.jpg
[2012/07/26 09:37:13 | 006,395,778 | ---- | C] () -- D:\Users\Wolfie\CIMG0858.JPG
[2012/07/26 09:21:54 | 010,540,745 | ---- | C] () -- D:\Users\Wolfie\ASUSUpdt.rar
[2012/07/21 11:00:29 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat
[2012/07/21 01:03:12 | 000,451,072 | ---- | C] () -- C:\Windows\SysWow64\ISSRemoveSP.exe
[2012/07/20 23:44:29 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini
[2012/01/18 06:44:00 | 010,920,984 | ---- | C] () -- C:\Windows\SysWow64\LogiDPP.dll
[2012/01/18 06:44:00 | 000,336,408 | ---- | C] () -- C:\Windows\SysWow64\DevManagerCore.dll
[2012/01/18 06:44:00 | 000,104,472 | ---- | C] () -- C:\Windows\SysWow64\LogiDPPApp.exe
[2011/04/09 17:55:28 | 000,179,261 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
========== ZeroAccess Check ==========
[2009/07/13 23:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012/06/09 00:30:56 | 014,165,504 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012/06/08 23:46:56 | 012,868,608 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 20:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2009/07/13 20:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 20:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2012/07/26 17:08:51 | 000,000,000 | ---D | M] -- D:\Users\Wolfie\AppData\Roaming\Actual Tools
========== Purity Check ==========
< End of report >
OTL Extras logfile
Spoiler
OTL Extras logfile created on: 12/20/2012 9:18:30 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = D:\Users\Wolfie\Downloads
64bit- Professional (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
7.87 Gb Total Physical Memory | 5.34 Gb Available Physical Memory | 67.85% Memory free
17.87 Gb Paging File | 15.28 Gb Available in Paging File | 85.50% Paging File free
Paging file location(s): c:\pagefile.sys 10240 10240 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 128.00 Gb Total Space | 68.58 Gb Free Space | 53.58% Space Free | Partition Type: NTFS
Drive D: | 460.20 Gb Total Space | 394.27 Gb Free Space | 85.67% Space Free | Partition Type: NTFS
Drive F: | 100.00 Mb Total Space | 63.87 Mb Free Space | 63.87% Space Free | Partition Type: NTFS
Computer Name: WOLF-ED | User Name: Wolfie | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "F:\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1"
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "F:\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1"
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "F:\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1"
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "F:\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1"
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{240AF13C-2222-4014-A00E-02F1C18804CB}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{3438283B-D1E0-4F4C-96CB-EC37A5C2D4A9}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{38CF4B3C-BB64-4F01-A4CC-24CE0C320651}" = rport=445 | protocol=6 | dir=out | app=system |
"{4116829D-5A70-4867-9A4E-367DFC0AC69D}" = lport=137 | protocol=17 | dir=in | app=system |
"{47408EAF-E9D5-4AEE-89A8-364DDFFA1390}" = lport=1542 | protocol=6 | dir=in | name=realtek wps tcp prot |
"{4859DBB3-EE8F-4A60-9513-7439C91862A9}" = lport=53 | protocol=17 | dir=in | name=realtek ap udp prot |
"{4D5C1579-E965-480D-B469-9F94F70C39EF}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{4F34E347-984D-4384-BC07-542B0FFFECB6}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{59D479BB-CD26-4750-AEB3-34D5A0EAD48A}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{5BC3EA1B-F4C6-4830-95D4-FA1F705FEE2E}" = lport=445 | protocol=6 | dir=in | app=system |
"{699764AF-A972-45D5-831A-2009514A3C03}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{73226CB2-C41F-40EF-A107-1E151C2B0210}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{73CC9B73-4D56-4A8F-B70B-F216FE232700}" = lport=1542 | protocol=17 | dir=in | name=realtek wps udp prot |
"{73D9FA31-0A8C-488E-B58B-B6A3F02BB49C}" = rport=137 | protocol=17 | dir=out | app=system |
"{76F1463D-30EE-48D2-BDE4-DC6153A577A9}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{832A9A58-2D3B-42FB-9AEA-A2CFBEE39E2F}" = rport=138 | protocol=17 | dir=out | app=system |
"{8A741326-A69A-4A31-8C93-C8A1BC533D5D}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{9236E014-33DD-4E2E-A17A-044D6441B18E}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{92B9AD05-43AB-4EFF-9FC1-617EB652865E}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe |
"{A5AB9F54-78E8-44DD-BE78-247FE0C530A8}" = lport=138 | protocol=17 | dir=in | app=system |
"{A8A40CB9-84C0-48B6-96A1-68A59A9F1280}" = rport=139 | protocol=6 | dir=out | app=system |
"{B0340A9D-96E8-4E6C-AC13-FC64AA6DC83F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{BE70D0BB-2F14-4F9B-B884-0D3E0BCB8929}" = lport=139 | protocol=6 | dir=in | app=system |
"{C6DFCD6A-A9E1-4F3E-AA2F-75BC0EF40D82}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{C9D64E2E-DA0E-49F0-A1E7-33F782BBE170}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{EA1B1B41-D787-434F-AB89-1C4027910735}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{F1E2CE57-A7DC-4118-9C37-CA2B7FEEC504}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F857DAC7-C407-47A5-86A1-CE3C8886E018}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{005C54A0-7EDB-4B39-B959-2B012793C90A}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\dynomite deluxe\dynomite.exe |
"{021B711D-CF06-4BB0-9763-7C7ED8BE4D51}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\trauma\trauma.exe |
"{04D285F5-ACF9-469F-B858-328EB9587A46}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{04FD5A68-AFC0-4469-8F09-F869BF1B0541}" = protocol=17 | dir=in | app=c:\program files (x86)\edimax\11n usb wireless lan utility\rtwlan.exe |
"{050C5F14-980A-45EC-9C2B-714816588650}" = protocol=17 | dir=in | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
"{089C9F2C-3F12-441E-B101-D9E85EAB68BA}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{08DDB7FB-ED55-47E7-8059-7880675947A1}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\arma 2\arma2.exe |
"{0B75D052-AEBA-4058-B1A6-F1A4BDC26708}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\sonic cd\soniccd.exe |
"{1130FA36-A5B5-496D-8955-0EEBC9220DF7}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dungeon defenders\binaries\win32\dungeondefenders.exe |
"{1193BAD6-C61E-4CC1-8794-C8F04EF5E6C4}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{12B1FA71-03D6-426D-AF9E-440501844D75}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{141C75AA-17F9-4DF5-BFDA-5D20AB6BEDCF}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\zuma deluxe\zuma.exe |
"{15FA0B1D-1B48-4D8C-808F-49C572F033CB}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\portal 2\portal2.exe |
"{178F77C7-146D-4EA1-8127-EEA9A77E92F6}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\the wizards pen\wizardspen.exe |
"{189EFEF8-73E2-4E05-9ED8-E24AFC56D3A7}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer.exe |
"{18D7E0CF-9CD9-4462-914D-AB4F11A81A9E}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\zuma deluxe\zuma.exe |
"{1976144A-3125-42A0-99EC-5B0A32FBE64A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{1E22D2EE-B8F4-4F8B-ADF2-E1014C47B2A2}" = protocol=1 | dir=out | [email protected],-28544 |
"{1E994B83-EB8E-42DB-BD1F-07888E817153}" = protocol=17 | dir=in | app=g:\games\world of warcraft\launcher.patch.exe |
"{21FC1CAD-9C8B-426B-BCAB-DD4C2D5EE5CD}" = protocol=17 | dir=in | app=c:\program files (x86)\aim\aim.exe |
"{232F9ADF-8FD3-40B6-BD6F-D33F356F7671}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\spacechem\spacechem.exe |
"{23355F1A-6FDD-4D75-AC28-5F8A4D2F5026}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{24EC12F6-1922-4117-964C-CF7049E652D1}" = protocol=6 | dir=in | app=g:\world of warcraft\launcher.patch.exe |
"{2535C14E-70DC-4444-8B81-BFFEBD0636A3}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\talismania deluxe\talismania.exe |
"{298CE475-BBBA-4FDB-96AF-3959124D5E60}" = protocol=1 | dir=in | [email protected],-28543 |
"{2A316111-00A3-4990-9ABA-DCD6BFE77573}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\microvolts\launcher.exe |
"{2C150C1C-8486-49E8-BEC3-6E54C57E4928}" = protocol=6 | dir=in | app=d:\program files (x86)\rockstar games\rockstar games social club\rgsclauncher.exe |
"{2E031A2D-49A9-4C85-BB28-D70A18B6A62A}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\portal 2\portal2.exe |
"{2E9901FE-7BE5-4249-A135-D788C7DE30F4}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\steelstorm\netradiant_win32\radiant.exe |
"{2F3E711B-FB4D-4109-B447-F7856DE15052}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\sonic cd\setup.exe |
"{2FAC4577-0C33-4EFC-84D2-958DA05A0192}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\venice\venice.exe |
"{3159B24B-7B39-4704-8ACA-E02A3FA53D3C}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\batman arkham city demo\binaries\win32\batmanac.exe |
"{319F5F14-D275-4BD9-9752-E9CB2969A372}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\trackmania nations forever\tmforeverlauncher.exe |
"{31DA4BAC-400D-44E1-81F9-37AF0E209063}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe |
"{34B6BC3A-5B98-4D8A-A374-CE0286A12123}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\sonic cd\soniccd.exe |
"{3821D83D-1F4D-470D-8E9E-D2119F79427A}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\batman arkham city demo\runlauncher.bat |
"{38D87D1F-BF57-4B9A-878D-451106C4289A}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\microvolts\launcher.exe |
"{3D833983-E55B-41FD-8DF3-94F571040142}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\company of heroes\reliccoh.exe |
"{3DDE80E7-18E9-49FC-9170-9B23096B3EEC}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\dynomite deluxe\dynomite.exe |
"{3F8EAB0B-F5CC-4755-BCD3-14E51E325DF0}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{3FA8CD6F-FB89-4360-B02F-A6E606D22438}" = protocol=6 | dir=in | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
"{3FB36743-F26C-4E47-9385-CA85E4BF0A26}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer_service.exe |
"{3FFFEB61-4AA7-4D22-9982-39D87B3931B8}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\microvolts\launcher.exe |
"{42428DC5-7676-48D3-9E81-B977F8446AF0}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dynomite deluxe\dynomite.exe |
"{42FC7D7C-E96D-432E-9FC1-2C2DCB132B5E}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\mdk\mdkd3d.exe |
"{4500CAC9-0109-48F0-B015-524283A39DC4}" = protocol=6 | dir=in | app=d:\users\eddie\appdata\roaming\dropbox\bin\dropbox.exe |
"{486E0748-4354-4710-BA05-1CBDC87B3DC3}" = protocol=17 | dir=in | app=g:\games\world of warcraft\launcher.exe |
"{51A2EEAD-B362-495B-96C9-5E1D3C2AD72D}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\steelstorm\steelstorm.exe |
"{53485DB5-2B69-40E8-BA97-A757AD4E613E}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\typer shark deluxe\wints.exe |
"{553EA810-3A5F-42DF-895F-852A378E99E2}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\microvolts\launcher.exe |
"{59495605-347B-4F62-8B18-0898A77C7ECD}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{59EA4333-E3E8-490E-B003-38F70934FB91}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\steelstorm\steelstorm.exe |
"{5A45F769-4653-49B2-A151-33BA8FD9043B}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\dungeon defenders\binaries\win32\dungeondefenders.exe |
"{5A88D859-9D3F-486A-A7EA-45FC5A9C2D9F}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe |
"{5CC88029-1D78-46DF-8836-E231569910CC}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\zuma's revenge\zumasrevenge.exe |
"{5DD0285C-1E29-4146-8C73-B8C00B08E98F}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dynomite deluxe\dynomite.exe |
"{5F2CE26B-4C4D-4FB3-806D-904CFD365AFC}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\zuma's revenge\zumasrevenge.exe |
"{603A5369-ABAB-47DA-8260-ED6CB11BD9C4}" = protocol=17 | dir=in | app=g:\steam\steam.exe |
"{610056F9-C01B-4B19-B738-163E67C83C02}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{619CC38C-E36B-4AF0-AE9C-EA164E641029}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\trackmania nations forever\tmforever.exe |
"{62FCD317-4DD2-4E80-8B4B-3341A461F5AA}" = protocol=58 | dir=out | [email protected],-28546 |
"{638A29E6-E1E2-44F1-9F39-02A288A6AD91}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\steelstorm\netradiant_win32\radiant.exe |
"{63F06AF3-EB22-4B7B-87F5-6594861B5EF0}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe |
"{647AF030-0173-4B63-BA65-D40668828197}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\steelstorm\netradiant_win32\radiant.exe |
"{669CAD35-C4E5-4B04-B97C-B334795C498E}" = protocol=17 | dir=in | app=d:\program files (x86)\rockstar games\rockstar games social club\rgsclauncher.exe |
"{6723E02C-1C66-41C4-AC11-44B6D5094E1F}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\pizza frenzy\pizzafrenzy.exe |
"{6BD0A01D-EEFD-447E-B6A5-567D89E7BDC5}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\trackmania nations forever\tmforeverlauncher.exe |
"{6C4DF70E-B396-4D2C-BB88-8DDCA35C2923}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\steelstorm\steelstorm.exe |
"{6F7FE6E4-461C-417A-8E9C-6AB87DD53DAE}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\steelstorm\steelstorm.exe |
"{6FCDBE1E-EA4C-4122-8DBC-28C64193E313}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\trackmania nations forever\tmforever.exe |
"{711045AB-E74C-40C9-9717-3646A5992671}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dawn of war gold\w40k.exe |
"{7267A13C-F895-452B-B0ED-9D515ABCF19C}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\bookworm deluxe\bookworm.exe |
"{73567617-1979-4F8C-AB1C-AFBC9DF9C74A}" = protocol=17 | dir=in | app=g:\steam\steamapps\icescream110\ricochet\hl.exe |
"{7412D01D-352B-4BDB-8A32-E378C8F63B80}" = protocol=6 | dir=in | app=d:\users\eddie\appdata\roaming\dropbox\bin\dropbox.exe |
"{764A71FD-1167-453A-B9DE-E91AC3E717AF}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe |
"{76F194D0-3865-479B-AC05-666989005F26}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\supermnc\binaries\win32\supermncgameclient.exe |
"{7722A086-7E3A-43D1-AF85-462FC4517270}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{78DEB761-2A9A-4C1A-89D2-CE69789DA069}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\steelstorm\netradiant_win32\radiant.exe |
"{7AD5F0C0-65D9-4892-A5ED-669C5BEF2ED5}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\the wonderful end of the world\main.exe |
"{7AEF9FF3-DFC9-460F-9AE6-B950E5C08E6C}" = protocol=6 | dir=in | app=d:\program files (x86)\vmware\vmware workstation\vmware-authd.exe |
"{7B4EF87A-A102-44AA-8D24-5C492A6F2F18}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\dota 2 beta\dota.exe |
"{7EFF0636-C7BD-418C-8A19-362055D96194}" = protocol=17 | dir=in | app=g:\world of warcraft\launcher.exe |
"{7F40343D-79D6-4997-899A-FE695C89B0E0}" = protocol=6 | dir=in | app=g:\games\world of warcraft\launcher.exe |
"{80687EBD-5333-4D29-8988-C18D5C9D14EB}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\bejeweled deluxe\winbej.exe |
"{806E3C1D-3AA2-4AF1-8B0F-DCE2108C9EED}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\arma 2\arma2.exe |
"{81400C56-009B-452A-9BEF-71B59055FED5}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\supermnc\binaries\win32\supermncgameclient.exe |
"{8205F1D4-5033-428A-81D4-1A1565448530}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{827CC5C6-15FF-4402-A52D-7C2575CAC72E}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\mdk\mdkd3d.exe |
"{8D575F22-185F-4186-B257-6331CC874679}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{8F59CF3F-B46C-4040-AB30-893CC3A6FA0D}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\talismania deluxe\talismania.exe |
"{90854E08-BD89-4A72-90CA-F16F423B57EA}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\sonic cd\setup.exe |
"{916A9A9E-EE03-42F0-B9A7-3ADD6CB6FE61}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\arma 2\arma2.exe |
"{92D0B4C3-BAE3-4D4D-9C07-C20060B402DE}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer_service.exe |
"{9300BB5A-7DD3-477B-AF7D-468704DCAB60}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\steelstorm\steelstorm.exe |
"{969ACBA0-D30B-4495-BFDE-E48D86DB0EBD}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\dungeon defenders\binaries\win32\dungeondefenders.exe |
"{96A3D406-DA92-4D8B-89D5-B5292DF85B5D}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\company of heroes\reliccoh.exe |
"{96BC291B-5B72-4D4A-B93C-00B11F0010E0}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steam.exe |
"{99DA979E-2285-4165-B3AA-264A21BF1D48}" = protocol=6 | dir=in | app=g:\games\world of warcraft\launcher.patch.exe |
"{99EFBF05-F975-4815-A005-A40D1F27B0EC}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\dota 2 beta\dota.exe |
"{9E0A506F-18ED-42DE-8F1B-2B6AF4964346}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steam.exe |
"{9EA87C91-7C78-4CDB-9D4F-4166891F4DFE}" = protocol=6 | dir=in | app=c:\program files (x86)\edimax\11n usb wireless lan utility\rtwlan.exe |
"{A1236A8D-DBFA-4255-96F8-B385718085EE}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\steelstorm\netradiant_win32\radiant.exe |
"{A5AB20ED-4F49-488C-94C4-2B1327BE905B}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\venice\venice.exe |
"{A64ACF3C-620D-4396-9E8D-0D924A8417D4}" = protocol=6 | dir=in | app=g:\world of warcraft\launcher.exe |
"{A91C45D3-A9AE-4780-A0FB-9BB58BD6A15B}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\steelstorm\steelstorm.exe |
"{AAAB5CAF-4055-4657-A615-DCFE7296474C}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\the wonderful end of the world\main.exe |
"{AEB1A062-770B-44A5-B0DC-CD3926F7290E}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\mdk 2 hd\mdk2hd.exe |
"{B2886F08-789F-4994-85D9-022803B3F80F}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer.exe |
"{B3672250-852F-4347-AA6E-4B45A8F05F9C}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\supermnc\binaries\win32\supermncgameclient.exe |
"{BAF1CE66-9F69-4330-8957-2E7F9FEAFB64}" = protocol=6 | dir=in | app=d:\program files (x86)\vmware\vmware workstation\vmware-authd.exe |
"{BB32287C-E513-4E93-8DC0-C9B7456A7A68}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\microvolts\launcher.exe |
"{BB692423-4AA7-47B3-816D-839B2B4D5EBF}" = protocol=17 | dir=in | app=d:\users\eddie\appdata\roaming\dropbox\bin\dropbox.exe |
"{BBEBBD89-395B-472E-A42F-7B344ADBFA2B}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\microvolts\launcher.exe |
"{BC9EB185-74A3-46A0-858A-A4C0176083E0}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\bejeweled deluxe\winbej.exe |
"{BE1B5B6A-0B4A-4868-9BF9-E4679AFBED47}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\bookworm deluxe\bookworm.exe |
"{BEA264CA-3ED2-4CE3-8A74-2EA4033B33D1}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\steelstorm\netradiant_win32\radiant.exe |
"{C1B3A362-759F-41A3-9D5D-0D583F99641A}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\left 4 dead\left4dead.exe |
"{C3A7FF2D-F8FE-4B65-A5C5-1313BB5CC643}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{C48B80B4-596B-4BC4-8BDC-A16B73F3854E}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\left 4 dead\left4dead.exe |
"{C50E3E83-9FB1-450D-9ED5-D6CD8FE31964}" = protocol=6 | dir=in | app=g:\steam\steamapps\icescream110\ricochet\hl.exe |
"{C94F1463-A1C2-4457-B5FB-F3483EA0F3F2}" = protocol=6 | dir=in | app=c:\program files (x86)\aim\aim.exe |
"{CC2F7F05-5821-44B1-926B-806C5D63A3CE}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\mdk 2 hd\mdk2hd.exe |
"{CC449089-066A-4F58-8AFD-4EEB0168A6CD}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe |
"{CE865D91-93D8-4A85-B6C8-05E4654F324E}" = protocol=17 | dir=in | app=d:\program files (x86)\vmware\vmware workstation\vmware-authd.exe |
"{CF7F1162-826E-4284-B180-E3843DD3B37F}" = dir=in | app=d:\users\eddie\appdata\local\microsoft\skydrive\skydrive.exe |
"{D041B3F0-35AF-48BC-9505-83A16C43FC25}" = protocol=58 | dir=in | [email protected],-28545 |
"{D3C6F3B6-6AF9-4222-BAD4-1C1A2201FA0A}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\typer shark deluxe\wints.exe |
"{D5681D17-79B7-4FBD-A87B-24D8D65E0D6F}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\trauma\trauma.exe |
"{D7128C83-AF35-46A7-A5B3-8B9A2136D849}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\supermnc\binaries\win32\supermncgameclient.exe |
"{D79276E6-1CB5-4A89-84ED-649E6D89F548}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\spacechem\spacechem.exe |
"{DB6B04B5-4267-4B14-9FF0-6262644B4BDC}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\batman arkham city demo\runlauncher.bat |
"{DF3631FE-2D7E-4C26-9403-21E3D4ECF067}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\pizza frenzy\pizzafrenzy.exe |
"{E03CAF89-ED4B-436C-A293-9B48FFB4E2FC}" = dir=in | app=g:\games\batman arkham city goty\binaries\win32\batmanac.exe |
"{E469A81C-D882-40C0-B058-40D32D08E463}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe |
"{E6FEC2DE-26BF-45AA-96CA-DF2BB465FEAC}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{E913F0D9-63FA-4109-A533-838E3A3B62E7}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\arma 2\arma2.exe |
"{E97A8C67-15AA-46D0-8306-292C1C7CD2EF}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\batman arkham city demo\binaries\win32\batmanac.exe |
"{EC57982A-7F33-43E1-B5D7-313418225D0D}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dungeon defenders\binaries\win32\dungeondefenders.exe |
"{EC8C6AFA-D79B-466E-B146-7D3774619C48}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dawn of war gold\w40k.exe |
"{EE85C004-6F94-49AF-B9D2-660C96971083}" = protocol=17 | dir=in | app=d:\program files (x86)\vmware\vmware workstation\vmware-authd.exe |
"{EF509D73-0817-485B-A21A-5D7ECDF5B4BB}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\the wizards pen\wizardspen.exe |
"{F1A94DF3-2EF9-423D-B77E-1F9B7F541AA1}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{F43A2C0C-4A52-4244-8F61-448C8B52CEB8}" = protocol=6 | dir=in | app=g:\steam\steam.exe |
"{F6041BB4-AC85-48A4-A9F6-069DBA810D19}" = protocol=17 | dir=in | app=d:\users\eddie\appdata\roaming\dropbox\bin\dropbox.exe |
"{F7A1E87A-0F5D-48EA-8E78-2DD293B7634A}" = protocol=17 | dir=in | app=g:\world of warcraft\launcher.patch.exe |
"{FAD6C523-40C4-4038-96BA-2E201C597D14}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"TCP Query User{0001DAA2-39D8-4BAC-A6D9-32F1480A2907}D:\program files (x86)\activision\call of duty black ops ii\t6sp.exe" = protocol=6 | dir=in | app=d:\program files (x86)\activision\call of duty black ops ii\t6sp.exe |
"TCP Query User{04ADAE80-BE40-4864-9777-1C4E8D9C7881}G:\games\steam\steam.exe" = protocol=6 | dir=in | app=g:\games\steam\steam.exe |
"TCP Query User{23BFEF4E-02C1-4B0A-BAF6-27E7B8F22214}G:\games\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe" = protocol=6 | dir=in | app=g:\games\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe |
"TCP Query User{2614BFA8-ED59-4A0A-8536-2881D34EF7A4}G:\games\world_of_tanks\worldoftanks.exe" = protocol=6 | dir=in | app=g:\games\world_of_tanks\worldoftanks.exe |
"TCP Query User{2E20BF7B-30BB-4684-8E64-D538C2714EC1}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"TCP Query User{39C9CEB3-E8FB-4E91-A069-9E1FACB29AE6}G:\games\steam\steamapps\common\trackmania nations forever\tmforever.exe" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\trackmania nations forever\tmforever.exe |
"TCP Query User{4ECCB0FF-A583-44A6-B6A5-7853F203E610}D:\program files (x86)\ares\ares.exe" = protocol=6 | dir=in | app=d:\program files (x86)\ares\ares.exe |
"TCP Query User{5521D9E7-5551-45B0-AF4B-DB9A59733B5B}G:\games\world of warcraft\backgrounddownloader.exe" = protocol=6 | dir=in | app=g:\games\world of warcraft\backgrounddownloader.exe |
"TCP Query User{5624DBFB-C168-40D2-BBBB-03F57473869B}G:\games\batman arkham city goty\binaries\win32\batmanac_o.exe" = protocol=6 | dir=in | app=g:\games\batman arkham city goty\binaries\win32\batmanac_o.exe |
"TCP Query User{6C5F0834-C6AF-4E6B-BD55-087FBE8833FE}G:\steam\steamapps\common\portal 2\portal2.exe" = protocol=6 | dir=in | app=g:\steam\steamapps\common\portal 2\portal2.exe |
"TCP Query User{73DF156F-DED9-40F8-B5FC-382DC7337C43}G:\games\world_of_tanks\wotlauncher.exe" = protocol=6 | dir=in | app=g:\games\world_of_tanks\wotlauncher.exe |
"TCP Query User{7ABF681B-FE49-4088-8ADD-F341A1AADA65}D:\program files (x86)\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe" = protocol=6 | dir=in | app=d:\program files (x86)\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe |
"TCP Query User{7E0526EF-7AD5-41FF-BB1A-E0F69F9C5C2A}D:\program files (x86)\skype\phone\skype.exe" = protocol=6 | dir=in | app=d:\program files (x86)\skype\phone\skype.exe |
"TCP Query User{9664D091-96B4-48EE-A37E-0E410E3270D5}D:\programdata\kingsisle entertainment\pirate101\bin\pirate.exe" = protocol=6 | dir=in | app=d:\programdata\kingsisle entertainment\pirate101\bin\pirate.exe |
"TCP Query User{97AE17B3-7E19-4856-95F7-329E2EF6D748}C:\program files (x86)\oovoo\oovoo.exe" = protocol=6 | dir=in | app=c:\program files (x86)\oovoo\oovoo.exe |
"TCP Query User{B06EF30D-E6DE-4E44-A057-D4F88F5C2DA3}G:\games\steam\steamapps\icescream110\team fortress 2\hl2.exe" = protocol=6 | dir=in | app=g:\games\steam\steamapps\icescream110\team fortress 2\hl2.exe |
"TCP Query User{B3568351-DE23-4C89-B870-F0D7BA749BD2}G:\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe" = protocol=6 | dir=in | app=g:\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe |
"TCP Query User{BA694DEE-A887-4353-8A55-3686B7657693}D:\popcap games\zuma deluxe\zuma.exe" = protocol=6 | dir=in | app=d:\popcap games\zuma deluxe\zuma.exe |
"TCP Query User{BDBB0FA2-52E8-4F6D-A502-6E838F1EA988}C:\program files (x86)\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe" = protocol=6 | dir=in | app=c:\program files (x86)\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe |
"TCP Query User{D96F7D54-D53C-4055-BD7C-8EC2518F3992}G:\games\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe |
"TCP Query User{DC2C60BD-E810-48C6-8C58-253CAF733CAD}G:\world of warcraft\backgrounddownloader.exe" = protocol=6 | dir=in | app=g:\world of warcraft\backgrounddownloader.exe |
"TCP Query User{EF59EC1F-E759-4E7E-8E06-A1382634D8FD}G:\games\world of warcraft\launcher.exe" = protocol=6 | dir=in | app=g:\games\world of warcraft\launcher.exe |
"TCP Query User{F6F2B239-5791-4F45-BE61-F8D168114C70}C:\program files\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\java.exe |
"TCP Query User{FDAFBD85-516F-4184-A1CB-053FC1DF15D5}G:\files\aim\aim.exe" = protocol=6 | dir=in | app=g:\files\aim\aim.exe |
"UDP Query User{0CC8EC53-7546-4C73-AD66-CC58BFE4E0C0}G:\games\steam\steamapps\common\trackmania nations forever\tmforever.exe" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\trackmania nations forever\tmforever.exe |
"UDP Query User{10FAA63A-5E8B-45AC-A55A-75B4E195C21B}G:\games\steam\steam.exe" = protocol=17 | dir=in | app=g:\games\steam\steam.exe |
"UDP Query User{27410988-2A74-4B6B-A20C-1F7978646648}G:\games\world_of_tanks\worldoftanks.exe" = protocol=17 | dir=in | app=g:\games\world_of_tanks\worldoftanks.exe |
"UDP Query User{3DB11BE9-8BDD-4F4C-8DA4-7B0AF6881D74}D:\program files (x86)\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe" = protocol=17 | dir=in | app=d:\program files (x86)\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe |
"UDP Query User{3EC07392-3E0E-4F54-84A1-50FEB1CD10A9}C:\program files\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\java.exe |
"UDP Query User{3FBBB4DB-60EE-4731-AD74-825ADDC58075}G:\games\batman arkham city goty\binaries\win32\batmanac_o.exe" = protocol=17 | dir=in | app=g:\games\batman arkham city goty\binaries\win32\batmanac_o.exe |
"UDP Query User{42597F7F-814C-496F-A0B8-CF188E910EC4}G:\steam\steamapps\common\portal 2\portal2.exe" = protocol=17 | dir=in | app=g:\steam\steamapps\common\portal 2\portal2.exe |
"UDP Query User{47983EF7-A5BF-44A9-A66E-7BA5DFC8DA46}G:\games\steam\steamapps\icescream110\team fortress 2\hl2.exe" = protocol=17 | dir=in | app=g:\games\steam\steamapps\icescream110\team fortress 2\hl2.exe |
"UDP Query User{54A066E9-9E0C-45EE-B996-BB4B0E2AF3A5}G:\games\world of warcraft\launcher.exe" = protocol=17 | dir=in | app=g:\games\world of warcraft\launcher.exe |
"UDP Query User{585F727B-CA76-4D58-89A9-D08BA5ABCA32}D:\program files (x86)\ares\ares.exe" = protocol=17 | dir=in | app=d:\program files (x86)\ares\ares.exe |
"UDP Query User{5EB1FD4E-27CC-4688-AF20-4ED03F068002}D:\program files (x86)\skype\phone\skype.exe" = protocol=17 | dir=in | app=d:\program files (x86)\skype\phone\skype.exe |
"UDP Query User{7F6AB02F-BEB4-463D-A734-BCEE2996AA9D}G:\games\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe |
"UDP Query User{83AFB7D3-B29E-41EE-B91F-504DCEC36955}G:\files\aim\aim.exe" = protocol=17 | dir=in | app=g:\files\aim\aim.exe |
"UDP Query User{89365029-3131-4EA2-A566-2D383585E311}C:\program files (x86)\oovoo\oovoo.exe" = protocol=17 | dir=in | app=c:\program files (x86)\oovoo\oovoo.exe |
"UDP Query User{8CFE2E3B-B9A7-4D65-87A9-B931AFE6FF8B}G:\games\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe" = protocol=17 | dir=in | app=g:\games\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe |
"UDP Query User{8E908758-53EF-4992-9BA0-799815AA78E8}D:\programdata\kingsisle entertainment\pirate101\bin\pirate.exe" = protocol=17 | dir=in | app=d:\programdata\kingsisle entertainment\pirate101\bin\pirate.exe |
"UDP Query User{97ADA57C-A09A-480A-86F8-D3D0DEC127F5}D:\program files (x86)\activision\call of duty black ops ii\t6sp.exe" = protocol=17 | dir=in | app=d:\program files (x86)\activision\call of duty black ops ii\t6sp.exe |
"UDP Query User{9B4DFAF8-B1AD-4E05-B6A3-F7B26DCF34ED}G:\games\world_of_tanks\wotlauncher.exe" = protocol=17 | dir=in | app=g:\games\world_of_tanks\wotlauncher.exe |
"UDP Query User{9B4E41E0-3755-4AFC-BDFE-CF3513BF197C}G:\games\world of warcraft\backgrounddownloader.exe" = protocol=17 | dir=in | app=g:\games\world of warcraft\backgrounddownloader.exe |
"UDP Query User{B270009A-2F5C-4DFF-8480-95180697E94A}C:\program files (x86)\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe" = protocol=17 | dir=in | app=c:\program files (x86)\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe |
"UDP Query User{B7A7E44D-6FAE-48DF-BC83-81D019F39EB1}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"UDP Query User{D6DAB6E1-2E27-4DD0-9BE7-55A48847BE0C}G:\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe" = protocol=17 | dir=in | app=g:\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe |
"UDP Query User{FAC76E49-1D4A-45BD-9EB1-9126B1ED352A}D:\popcap games\zuma deluxe\zuma.exe" = protocol=17 | dir=in | app=d:\popcap games\zuma deluxe\zuma.exe |
"UDP Query User{FC84D16B-09B2-48AF-91C3-7AFF192A8400}G:\world of warcraft\backgrounddownloader.exe" = protocol=17 | dir=in | app=g:\world of warcraft\backgrounddownloader.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition)
"{26A24AE4-039D-4CA4-87B4-2F86416031FF}" = Java 6 Update 31 (64-bit)
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{4EE61784-10C6-4B7C-A0B2-5BED17B05741}" = Oracle VM VirtualBox 4.1.18
"{5F611ADA-B98C-4DBB-ADDE-414F08457ECF}" = Windows Live Family Safety
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010
"{90140000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2010
"{90140000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Control Panel 306.97
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Graphics Driver 306.97
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA 3D Vision Controller Driver 301.42
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX System Software 9.12.0213
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 1.10.8
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA HD Audio Driver 1.3.16.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{C78D3032-9DFD-41D0-9DE9-58EAE750CBA4}" = Microsoft Security Client
"{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant
"{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"{F6822EFD-3F7D-4B35-8845-757A26AEC8E2}" = Windows Live MIME IFilter
"CPUID CPU-Z_is1" = CPUID CPU-Z 1.61.5
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft Security Client" = Microsoft Security Essentials
"NVIDIA Drivers" = NVIDIA Drivers
"Virtual Audio Cable 4.10" = Virtual Audio Cable 4.10
"WinRAR archiver" = WinRAR 4.20 (64-bit)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{003BFBBD-6C67-419E-A24D-0DCAFC3A5249}" = tools-freebsd
"{0454BB9A-2A7A-4214-BDFF-937F7A711A44}" = Windows Live Communications Platform
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1" = MiniTool Partition Wizard Home Edition 7.5
"{08B3869E-D282-424C-9AFC-870E04A4BA14}" = Rockstar Games Social Club
"{0D94F75A-0EA6-4951-B3AF-B145FA9E05C6}" = VMware Workstation
"{18272881-CFC0-434D-A975-E5BE44206AA0}" = Windows Live UX Platform Language Pack
"{197597A7-AD33-4898-9D8E-73066818B464}" = tools-netware
"{1EA7C505-E6DA-4B85-9432-EBD3C70D510D}" = Windows Live Messenger
"{1EAC1D02-C6AC-4FA6-9A44-96258C37C812}_is1" = World of Tanks
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{23A3E560-069F-4CFC-8F6C-1B526EC735FC}" = Windows Live Writer Resources
"{26A24AE4-039D-4CA4-87B4-2F83217009FF}" = Java 7 Update 9
"{28E82311-8616-11E1-BEB0-B8AC6F97B88E}" = Google Earth
"{2EB28256-1D66-49F1-AF66-691BF9A27C79}" = Camtasia Studio 8
"{30F99474-EBE3-4134-A02B-F6CD38CFE243}" = Photo Gallery
"{384FA0C0-BB19-4CA0-8DB4-5FD4E938277F}" = Notification Center
"{3A1301C6-CE27-9B1D-B497-BB2DD65C0558}" = GameFly
"{400C31E4-796F-4E86-8FDC-C3C4FACC6847}" = Junk Mail filter update
"{449CE12D-E2C7-4B97-B19E-55D163EA9435}" = Bing Bar
"{48963B63-7A10-49D6-8B08-61E6132453D0}" = ViewSonic Monitor Drivers x64
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
"{4CCBD1F4-CEEC-452A-9CB8-46564B501315}" = Windows Live UX Platform
"{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module
"{57520FA0-DF38-46A1-8046-3B1000008500}" = Batman: Arkham City™ GOTY
"{587178E7-B1DF-494E-9838-FA4DD36E873C}" = ASUSUpdate
"{5BABDA39-61CF-41EE-992D-4054B6649A9B}" = Movie Maker
"{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module
"{65CB4C08-C47B-4A7E-A6A4-50C06ADA5FC6}" = Adobe AIR
"{662140BE-138C-4DC1-B4CD-B62C6C855A25}" = Pirate101
"{6A8DB215-7BCD-4377-B015-2E4541A3E7C6}" = Windows Live PIMT Platform
"{70854FE6-3BF1-4C69-94D0-BEB821102E34}" = Windows Live Mail
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7B0C5EF6-DE4C-4E20-8889-C17604FFE5CD}" = Windows Live Family Safety
"{7BB5E925-A3DD-48C2-9A82-017AF5982FFE}" = Facebook Messenger 2.1.4590.0
"{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}" = NVIDIA ForceWare Network Access Manager
"{7D095455-D971-4D4C-9EFD-9AF6A6584F3A}" = Bing Desktop
"{7FB413C8-3CAD-49F7-A67C-6EFEB4B04050}" = LogMeIn Hamachi
"{85967580-EBC2-11D4-AEA3-0050046A88ED}" = LEGO Island 2
"{86C40513-B5A4-476E-9EAB-EC118DCF4502}" = Windows Live Writer
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A642ACD-CE3A-4A23-A8B1-A0F7EB12B214}" = Windows Live SOXE Definitions
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{90140000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2010
"{90140000-0015-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2010
"{90140000-0016-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2010
"{90140000-0018-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2010
"{90140000-0019-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2010
"{90140000-001A-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2010
"{90140000-001B-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010
"{90140000-001F-040C-0000-0000000FF1CE}_Office14.SingleImage_{46298F6A-1E7E-4D4A-B5F5-106A4F0E48C6}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010
"{90140000-001F-0C0A-0000-0000000FF1CE}_Office14.SingleImage_{DEA87BE2-FFCC-4F33-9946-FCBE55A1E998}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{967EF02C-5C7E-4718-8FCB-BDC050190CCF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002A-0409-1000-0000000FF1CE}_Office14.SingleImage_{D6C6B46A-6CE1-4561-84A0-EFD58B8AB979}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010
"{90140000-002C-0409-0000-0000000FF1CE}_Office14.SingleImage_{7CA93DF4-8902-449E-A42E-4C5923CFBDE3}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-003D-0000-0000-0000000FF1CE}" = Microsoft Office Single Image 2010
"{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{047B0968-E622-4FAA-9B4B-121FA109EDDE}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010
"{90140000-006E-0409-0000-0000000FF1CE}_Office14.SingleImage_{4560037C-E356-444A-A015-D21F487D809E}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2010
"{90140000-00A1-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010
"{90140000-0115-0409-0000-0000000FF1CE}_Office14.SingleImage_{4560037C-E356-444A-A015-D21F487D809E}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0116-0409-1000-0000000FF1CE}_Office14.SingleImage_{D6C6B46A-6CE1-4561-84A0-EFD58B8AB979}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2010
"{90140000-0117-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{97C79BEC-43F7-4BD8-A6A7-85C0257E488A}" = Windows Live Writer
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9C049499-055C-4a0c-A916-1D12314F45EB}" = Edimax Wireless LAN Driver and Utility
"{9FD6F1A8-5550-46AF-8509-271DF0E768B5}" = Dual-Core Optimizer
"{A3FF5CB2-FB35-4658-8751-9EDE1D65B3AA}" = VMware Workstation
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9E27FF5-6294-46A8-B8FD-77B1DECA3021}" = Wizard101
"{AB1C87CB-1807-4CF0-B4C2-CEE14C18CDB4}" = tools-solaris
"{AE0F62A7-A1A2-407F-9F4C-48939BD9AD8D}" = tools-winPre2k
"{B80D3EA9-A252-4AE5-AC51-81729F5C586F}" = Windows Live Mail
"{C034A6F9-6569-491B-B3BF-F5D15221A708}" = Windows Live Essentials
"{C3592426-531E-4110-911D-BFECE2CE284B}" = puush
"{C4124E95-5061-4776-8D5D-E3D931C778E1}" = Microsoft VC9 runtime libraries
"{C424CD5E-EA05-4D3E-B5DA-F9F149E1D3AC}" = Windows Live Installer
"{C9B6EFD0-4F01-4BBA-8374-39AD99A3ED72}" = Windows Live Photo Common
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D102611A-6466-4101-A51D-51069303AC65}" = tools-linux
"{D2C146B1-948D-47EF-8387-5D1C6B980F7C}" = Windows Live Writer
"{D888F114-7537-4D48-AF03-5DA9C82D7540}" = Photo Common
"{DA909E62-3B45-4BA1-8B58-FCAEBA4BCEC9}" = NVIDIA PhysX
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{EA17F4FC-FDBF-4CF8-A529-2D983132D053}" = Skype™ 6.0
"{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module
"{ED6C77F9-4D7E-447C-9EC0-9A212D075535}" = Movie Maker
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F2235E5E-7881-4293-9B6F-04B2609FBFF0}" = Windows Live Messenger
"{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable
"{FAA7F8FF-3C05-4A61-8F14-D8A6E9ED6623}" = ooVoo
"{FC6C7107-7D72-41A1-A031-3CE751159BAB}" = Photo Gallery
"{FE7C0B3D-50B9-4951-BE78-A321CBF86552}" = Windows Live SOXE
"{FFD9383C-01D5-4897-A954-43AF599AED30}" = tools-windows
"Actual Multiple Monitors_is1" = Actual Multiple Monitors 4.1
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Alchemy Deluxe_is1" = Alchemy Deluxe
"Alice Greenfingers_is1" = Alice Greenfingers
"Amazing Adventures: The Lost Tomb_is1" = Amazing Adventures: The Lost Tomb
"AmazingMIDI" = AmazingMIDI
"AnyDVD" = AnyDVD
"AstroPop Deluxe_is1" = AstroPop Deluxe
"Atomica Deluxe_is1" = Atomica Deluxe
"Audacity_is1" = Audacity 2.0.2
"Axife Mouse Recorder DEMO_is1" = Axife Mouse Recorder DEMO 5.01
"Bandicam" = Bandicam
"BandiMPEG1" = Bandisoft MPEG-1 Decoder
"BattlEye for A2" = BattlEye Uninstall
"Bejeweled 2 Deluxe_is1" = Bejeweled 2 Deluxe
"Bejeweled Deluxe_is1" = Bejeweled Deluxe
"Big Kahuna Reef_is1" = Big Kahuna Reef
"Big Money Deluxe_is1" = Big Money Deluxe
"BlueStacks App Player" = BlueStacks App Player
"Bonnie's Bookstore Deluxe_is1" = Bonnie's Bookstore Deluxe
"Bookworm Adventures Deluxe_is1" = Bookworm Adventures Deluxe
"BookWorm Deluxe 1.0" = BookWorm Deluxe 1.0
"Bookworm Deluxe_is1" = Bookworm Deluxe
"Cake Mania_is1" = Cake Mania
"Call of Duty Black Ops II_is1" = Call of Duty Black Ops II
"Chuzzle Deluxe_is1" = Chuzzle Deluxe
"CrystalDiskInfo_is1" = CrystalDiskInfo 5.0.0 Shizuku Edition
"Diner Dash 2_is1" = Diner Dash 2
"Disney Toontown Online" = Disney Toontown Online
"Disney Toontown Online_TEST" = Disney Toontown Online TEST
"Dynomite Deluxe 2.71" = Dynomite Deluxe 2.71
"Dynomite Deluxe_is1" = Dynomite Deluxe
"EasyBCD" = EasyBCD 2.2
"Family Feud_is1" = Family Feud
"Feeding Frenzy 2 Deluxe_is1" = Feeding Frenzy 2 Deluxe
"Feeding Frenzy Deluxe_is1" = Feeding Frenzy Deluxe
"Fraps" = Fraps (remove only)
"GameFly" = GameFly
"GFWL_{57520FA0-DF38-46A1-8046-3B1000008500}" = Batman: Arkham City™ GOTY
"GlidewrapZbag" = zeckensack's Glide wrapper (remove only)
"GTA San Andreas" = GTA San Andreas
"Hammer Heads Deluxe_is1" = Hammer Heads Deluxe
"Heavy Weapon Deluxe_is1" = Heavy Weapon Deluxe
"HxD Hex Editor_is1" = HxD Hex Editor version 1.7.7.0
"Iggle Pop Deluxe_is1" = Iggle Pop Deluxe
"ImgBurn" = ImgBurn
"Insaniquarium Deluxe_is1" = Insaniquarium Deluxe
"Jimmy Neutron Boy Genius" = Jimmy Neutron Boy Genius
"Jimmy Neutron vs. Jimmy Negatron" = Jimmy Neutron vs. Jimmy Negatron
"LogMeIn Hamachi" = LogMeIn Hamachi
"Magic ISO Maker v5.5 (build 0281)" = Magic ISO Maker v5.5 (build 0281)
"Magic Match_is1" = Magic Match
"Mahjong Escape: Ancient Japan_is1" = Mahjong Escape: Ancient Japan
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.65.1.1000
"MDK" = MDK
"MIDI Converter Studio_is1" = MIDI Converter Studio 6.3
"Mozilla Firefox 14.0.1 (x86 en-US)" = Mozilla Firefox 14.0.1 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Mummy Maze Deluxe_is1" = Mummy Maze Deluxe
"Mystery Case Files: Huntsville_is1" = Mystery Case Files: Huntsville
"Mystery PI_is1" = Mystery PI
"Mystery Solitaire: Secret Island_is1" = Mystery Solitaire: Secret Island
"NingPo MahJong Deluxe_is1" = NingPo MahJong Deluxe
"Noah's Ark Deluxe_is1" = Noah's Ark Deluxe
"Office14.SingleImage" = Microsoft Office Professional 2010
"OnLive" = OnLive
"Panda3D 1.7.2" = Panda3D 1.7.2
"Peggle Deluxe_is1" = Peggle Deluxe
"Pixelus Deluxe_is1" = Pixelus Deluxe
"PizzaFrenzy_is1" = PizzaFrenzy
"QuickStores-Toolbar_is1" = QuickStores-Toolbar 1.1.0
"RealArcade 1.2" = RealArcade
"SoftwareUpdUtility" = Download Updater (AOL LLC)
"Steam App 104700" = Super Monday Night Combat
"Steam App 105600" = Terraria
"Steam App 109400" = MicroVolts
"Steam App 11020" = TrackMania Nations Forever
"Steam App 15500" = The Wonderful End of the World
"Steam App 200240" = Batman: Arkham City Demo
"Steam App 200940" = Sonic CD
"Steam App 213350" = MDK 2 HD
"Steam App 3330" = Zuma Deluxe
"Steam App 3350" = Bejeweled Deluxe
"Steam App 3370" = BookWorm Deluxe
"Steam App 3380" = Dynomite! Deluxe
"Steam App 33900" = ARMA 2
"Steam App 3430" = Pizza Frenzy
"Steam App 3440" = Rocket Mania! Deluxe
"Steam App 3450" = Typer Shark! Deluxe
"Steam App 3460" = Talismania Deluxe
"Steam App 3490" = Venice
"Steam App 3580" = The Wizard's Pen
"Steam App 3620" = Zuma's Revenge
"Steam App 38450" = MDK
"Steam App 440" = Team Fortress 2
"Steam App 4560" = Company of Heroes
"Steam App 4570" = Warhammer 40,000: Dawn of War - Game of the Year Edition
"Steam App 500" = Left 4 Dead
"Steam App 550" = Left 4 Dead 2
"Steam App 570" = Dota 2
"Steam App 60" = Ricochet
"Steam App 6060" = Star Wars - Battlefront II
"Steam App 620" = Portal 2
"Steam App 65800" = Dungeon Defenders
"Steam App 70300" = VVVVVV
"Steam App 92800" = SpaceChem
"Steam App 96200" = Steel Storm: Burning Retribution
"Steam App 98100" = TRAUMA
"TeamViewer 8" = TeamViewer 8
"The Walking Dead © 3_is1" = The Walking Dead © 3 version 1
"ThinkTanks" = ThinkTanks
"USBWebcam" = USB Webcam
"uTorrent" = µTorrent
"VideoPad" = VideoPad Video Editor
"ViewpointMediaPlayer" = Viewpoint Media Player
"VirtualCloneDrive" = VirtualCloneDrive
"VLC media player" = VLC media player 2.0.3
"VMware_Workstation" = VMware Workstation
"WinLiveSuite" = Windows Live Essentials
"Wubi" = Ubuntu
"Yahoo! Companion" = Yahoo! Toolbar
"Yahoo! Messenger" = Yahoo! Messenger
"Yahoo! Software Update" = Yahoo! Software Update
"Zuma Deluxe 1.0" = Zuma Deluxe 1.0
========== Last 20 Event Log Errors ==========
[ Application Events ]
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
< End of report >
OTL by OldTimer - Version 3.2.69.0 Folder = D:\Users\Wolfie\Downloads
64bit- Professional (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
7.87 Gb Total Physical Memory | 5.34 Gb Available Physical Memory | 67.85% Memory free
17.87 Gb Paging File | 15.28 Gb Available in Paging File | 85.50% Paging File free
Paging file location(s): c:\pagefile.sys 10240 10240 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 128.00 Gb Total Space | 68.58 Gb Free Space | 53.58% Space Free | Partition Type: NTFS
Drive D: | 460.20 Gb Total Space | 394.27 Gb Free Space | 85.67% Space Free | Partition Type: NTFS
Drive F: | 100.00 Mb Total Space | 63.87 Mb Free Space | 63.87% Space Free | Partition Type: NTFS
Computer Name: WOLF-ED | User Name: Wolfie | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "F:\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1"
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "F:\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1"
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "F:\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1"
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "F:\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1"
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{240AF13C-2222-4014-A00E-02F1C18804CB}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{3438283B-D1E0-4F4C-96CB-EC37A5C2D4A9}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{38CF4B3C-BB64-4F01-A4CC-24CE0C320651}" = rport=445 | protocol=6 | dir=out | app=system |
"{4116829D-5A70-4867-9A4E-367DFC0AC69D}" = lport=137 | protocol=17 | dir=in | app=system |
"{47408EAF-E9D5-4AEE-89A8-364DDFFA1390}" = lport=1542 | protocol=6 | dir=in | name=realtek wps tcp prot |
"{4859DBB3-EE8F-4A60-9513-7439C91862A9}" = lport=53 | protocol=17 | dir=in | name=realtek ap udp prot |
"{4D5C1579-E965-480D-B469-9F94F70C39EF}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{4F34E347-984D-4384-BC07-542B0FFFECB6}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{59D479BB-CD26-4750-AEB3-34D5A0EAD48A}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{5BC3EA1B-F4C6-4830-95D4-FA1F705FEE2E}" = lport=445 | protocol=6 | dir=in | app=system |
"{699764AF-A972-45D5-831A-2009514A3C03}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{73226CB2-C41F-40EF-A107-1E151C2B0210}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{73CC9B73-4D56-4A8F-B70B-F216FE232700}" = lport=1542 | protocol=17 | dir=in | name=realtek wps udp prot |
"{73D9FA31-0A8C-488E-B58B-B6A3F02BB49C}" = rport=137 | protocol=17 | dir=out | app=system |
"{76F1463D-30EE-48D2-BDE4-DC6153A577A9}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{832A9A58-2D3B-42FB-9AEA-A2CFBEE39E2F}" = rport=138 | protocol=17 | dir=out | app=system |
"{8A741326-A69A-4A31-8C93-C8A1BC533D5D}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{9236E014-33DD-4E2E-A17A-044D6441B18E}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{92B9AD05-43AB-4EFF-9FC1-617EB652865E}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe |
"{A5AB9F54-78E8-44DD-BE78-247FE0C530A8}" = lport=138 | protocol=17 | dir=in | app=system |
"{A8A40CB9-84C0-48B6-96A1-68A59A9F1280}" = rport=139 | protocol=6 | dir=out | app=system |
"{B0340A9D-96E8-4E6C-AC13-FC64AA6DC83F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{BE70D0BB-2F14-4F9B-B884-0D3E0BCB8929}" = lport=139 | protocol=6 | dir=in | app=system |
"{C6DFCD6A-A9E1-4F3E-AA2F-75BC0EF40D82}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{C9D64E2E-DA0E-49F0-A1E7-33F782BBE170}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{EA1B1B41-D787-434F-AB89-1C4027910735}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{F1E2CE57-A7DC-4118-9C37-CA2B7FEEC504}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F857DAC7-C407-47A5-86A1-CE3C8886E018}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{005C54A0-7EDB-4B39-B959-2B012793C90A}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\dynomite deluxe\dynomite.exe |
"{021B711D-CF06-4BB0-9763-7C7ED8BE4D51}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\trauma\trauma.exe |
"{04D285F5-ACF9-469F-B858-328EB9587A46}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{04FD5A68-AFC0-4469-8F09-F869BF1B0541}" = protocol=17 | dir=in | app=c:\program files (x86)\edimax\11n usb wireless lan utility\rtwlan.exe |
"{050C5F14-980A-45EC-9C2B-714816588650}" = protocol=17 | dir=in | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
"{089C9F2C-3F12-441E-B101-D9E85EAB68BA}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{08DDB7FB-ED55-47E7-8059-7880675947A1}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\arma 2\arma2.exe |
"{0B75D052-AEBA-4058-B1A6-F1A4BDC26708}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\sonic cd\soniccd.exe |
"{1130FA36-A5B5-496D-8955-0EEBC9220DF7}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dungeon defenders\binaries\win32\dungeondefenders.exe |
"{1193BAD6-C61E-4CC1-8794-C8F04EF5E6C4}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{12B1FA71-03D6-426D-AF9E-440501844D75}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{141C75AA-17F9-4DF5-BFDA-5D20AB6BEDCF}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\zuma deluxe\zuma.exe |
"{15FA0B1D-1B48-4D8C-808F-49C572F033CB}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\portal 2\portal2.exe |
"{178F77C7-146D-4EA1-8127-EEA9A77E92F6}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\the wizards pen\wizardspen.exe |
"{189EFEF8-73E2-4E05-9ED8-E24AFC56D3A7}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer.exe |
"{18D7E0CF-9CD9-4462-914D-AB4F11A81A9E}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\zuma deluxe\zuma.exe |
"{1976144A-3125-42A0-99EC-5B0A32FBE64A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{1E22D2EE-B8F4-4F8B-ADF2-E1014C47B2A2}" = protocol=1 | dir=out | [email protected],-28544 |
"{1E994B83-EB8E-42DB-BD1F-07888E817153}" = protocol=17 | dir=in | app=g:\games\world of warcraft\launcher.patch.exe |
"{21FC1CAD-9C8B-426B-BCAB-DD4C2D5EE5CD}" = protocol=17 | dir=in | app=c:\program files (x86)\aim\aim.exe |
"{232F9ADF-8FD3-40B6-BD6F-D33F356F7671}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\spacechem\spacechem.exe |
"{23355F1A-6FDD-4D75-AC28-5F8A4D2F5026}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{24EC12F6-1922-4117-964C-CF7049E652D1}" = protocol=6 | dir=in | app=g:\world of warcraft\launcher.patch.exe |
"{2535C14E-70DC-4444-8B81-BFFEBD0636A3}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\talismania deluxe\talismania.exe |
"{298CE475-BBBA-4FDB-96AF-3959124D5E60}" = protocol=1 | dir=in | [email protected],-28543 |
"{2A316111-00A3-4990-9ABA-DCD6BFE77573}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\microvolts\launcher.exe |
"{2C150C1C-8486-49E8-BEC3-6E54C57E4928}" = protocol=6 | dir=in | app=d:\program files (x86)\rockstar games\rockstar games social club\rgsclauncher.exe |
"{2E031A2D-49A9-4C85-BB28-D70A18B6A62A}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\portal 2\portal2.exe |
"{2E9901FE-7BE5-4249-A135-D788C7DE30F4}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\steelstorm\netradiant_win32\radiant.exe |
"{2F3E711B-FB4D-4109-B447-F7856DE15052}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\sonic cd\setup.exe |
"{2FAC4577-0C33-4EFC-84D2-958DA05A0192}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\venice\venice.exe |
"{3159B24B-7B39-4704-8ACA-E02A3FA53D3C}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\batman arkham city demo\binaries\win32\batmanac.exe |
"{319F5F14-D275-4BD9-9752-E9CB2969A372}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\trackmania nations forever\tmforeverlauncher.exe |
"{31DA4BAC-400D-44E1-81F9-37AF0E209063}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe |
"{34B6BC3A-5B98-4D8A-A374-CE0286A12123}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\sonic cd\soniccd.exe |
"{3821D83D-1F4D-470D-8E9E-D2119F79427A}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\batman arkham city demo\runlauncher.bat |
"{38D87D1F-BF57-4B9A-878D-451106C4289A}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\microvolts\launcher.exe |
"{3D833983-E55B-41FD-8DF3-94F571040142}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\company of heroes\reliccoh.exe |
"{3DDE80E7-18E9-49FC-9170-9B23096B3EEC}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\dynomite deluxe\dynomite.exe |
"{3F8EAB0B-F5CC-4755-BCD3-14E51E325DF0}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{3FA8CD6F-FB89-4360-B02F-A6E606D22438}" = protocol=6 | dir=in | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
"{3FB36743-F26C-4E47-9385-CA85E4BF0A26}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer_service.exe |
"{3FFFEB61-4AA7-4D22-9982-39D87B3931B8}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\microvolts\launcher.exe |
"{42428DC5-7676-48D3-9E81-B977F8446AF0}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dynomite deluxe\dynomite.exe |
"{42FC7D7C-E96D-432E-9FC1-2C2DCB132B5E}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\mdk\mdkd3d.exe |
"{4500CAC9-0109-48F0-B015-524283A39DC4}" = protocol=6 | dir=in | app=d:\users\eddie\appdata\roaming\dropbox\bin\dropbox.exe |
"{486E0748-4354-4710-BA05-1CBDC87B3DC3}" = protocol=17 | dir=in | app=g:\games\world of warcraft\launcher.exe |
"{51A2EEAD-B362-495B-96C9-5E1D3C2AD72D}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\steelstorm\steelstorm.exe |
"{53485DB5-2B69-40E8-BA97-A757AD4E613E}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\typer shark deluxe\wints.exe |
"{553EA810-3A5F-42DF-895F-852A378E99E2}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\microvolts\launcher.exe |
"{59495605-347B-4F62-8B18-0898A77C7ECD}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{59EA4333-E3E8-490E-B003-38F70934FB91}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\steelstorm\steelstorm.exe |
"{5A45F769-4653-49B2-A151-33BA8FD9043B}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\dungeon defenders\binaries\win32\dungeondefenders.exe |
"{5A88D859-9D3F-486A-A7EA-45FC5A9C2D9F}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe |
"{5CC88029-1D78-46DF-8836-E231569910CC}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\zuma's revenge\zumasrevenge.exe |
"{5DD0285C-1E29-4146-8C73-B8C00B08E98F}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dynomite deluxe\dynomite.exe |
"{5F2CE26B-4C4D-4FB3-806D-904CFD365AFC}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\zuma's revenge\zumasrevenge.exe |
"{603A5369-ABAB-47DA-8260-ED6CB11BD9C4}" = protocol=17 | dir=in | app=g:\steam\steam.exe |
"{610056F9-C01B-4B19-B738-163E67C83C02}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{619CC38C-E36B-4AF0-AE9C-EA164E641029}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\trackmania nations forever\tmforever.exe |
"{62FCD317-4DD2-4E80-8B4B-3341A461F5AA}" = protocol=58 | dir=out | [email protected],-28546 |
"{638A29E6-E1E2-44F1-9F39-02A288A6AD91}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\steelstorm\netradiant_win32\radiant.exe |
"{63F06AF3-EB22-4B7B-87F5-6594861B5EF0}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe |
"{647AF030-0173-4B63-BA65-D40668828197}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\steelstorm\netradiant_win32\radiant.exe |
"{669CAD35-C4E5-4B04-B97C-B334795C498E}" = protocol=17 | dir=in | app=d:\program files (x86)\rockstar games\rockstar games social club\rgsclauncher.exe |
"{6723E02C-1C66-41C4-AC11-44B6D5094E1F}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\pizza frenzy\pizzafrenzy.exe |
"{6BD0A01D-EEFD-447E-B6A5-567D89E7BDC5}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\trackmania nations forever\tmforeverlauncher.exe |
"{6C4DF70E-B396-4D2C-BB88-8DDCA35C2923}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\steelstorm\steelstorm.exe |
"{6F7FE6E4-461C-417A-8E9C-6AB87DD53DAE}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\steelstorm\steelstorm.exe |
"{6FCDBE1E-EA4C-4122-8DBC-28C64193E313}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\trackmania nations forever\tmforever.exe |
"{711045AB-E74C-40C9-9717-3646A5992671}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dawn of war gold\w40k.exe |
"{7267A13C-F895-452B-B0ED-9D515ABCF19C}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\bookworm deluxe\bookworm.exe |
"{73567617-1979-4F8C-AB1C-AFBC9DF9C74A}" = protocol=17 | dir=in | app=g:\steam\steamapps\icescream110\ricochet\hl.exe |
"{7412D01D-352B-4BDB-8A32-E378C8F63B80}" = protocol=6 | dir=in | app=d:\users\eddie\appdata\roaming\dropbox\bin\dropbox.exe |
"{764A71FD-1167-453A-B9DE-E91AC3E717AF}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe |
"{76F194D0-3865-479B-AC05-666989005F26}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\supermnc\binaries\win32\supermncgameclient.exe |
"{7722A086-7E3A-43D1-AF85-462FC4517270}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{78DEB761-2A9A-4C1A-89D2-CE69789DA069}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\steelstorm\netradiant_win32\radiant.exe |
"{7AD5F0C0-65D9-4892-A5ED-669C5BEF2ED5}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\the wonderful end of the world\main.exe |
"{7AEF9FF3-DFC9-460F-9AE6-B950E5C08E6C}" = protocol=6 | dir=in | app=d:\program files (x86)\vmware\vmware workstation\vmware-authd.exe |
"{7B4EF87A-A102-44AA-8D24-5C492A6F2F18}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\dota 2 beta\dota.exe |
"{7EFF0636-C7BD-418C-8A19-362055D96194}" = protocol=17 | dir=in | app=g:\world of warcraft\launcher.exe |
"{7F40343D-79D6-4997-899A-FE695C89B0E0}" = protocol=6 | dir=in | app=g:\games\world of warcraft\launcher.exe |
"{80687EBD-5333-4D29-8988-C18D5C9D14EB}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\bejeweled deluxe\winbej.exe |
"{806E3C1D-3AA2-4AF1-8B0F-DCE2108C9EED}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\arma 2\arma2.exe |
"{81400C56-009B-452A-9BEF-71B59055FED5}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\supermnc\binaries\win32\supermncgameclient.exe |
"{8205F1D4-5033-428A-81D4-1A1565448530}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{827CC5C6-15FF-4402-A52D-7C2575CAC72E}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\mdk\mdkd3d.exe |
"{8D575F22-185F-4186-B257-6331CC874679}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{8F59CF3F-B46C-4040-AB30-893CC3A6FA0D}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\talismania deluxe\talismania.exe |
"{90854E08-BD89-4A72-90CA-F16F423B57EA}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\sonic cd\setup.exe |
"{916A9A9E-EE03-42F0-B9A7-3ADD6CB6FE61}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\arma 2\arma2.exe |
"{92D0B4C3-BAE3-4D4D-9C07-C20060B402DE}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer_service.exe |
"{9300BB5A-7DD3-477B-AF7D-468704DCAB60}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\steelstorm\steelstorm.exe |
"{969ACBA0-D30B-4495-BFDE-E48D86DB0EBD}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\dungeon defenders\binaries\win32\dungeondefenders.exe |
"{96A3D406-DA92-4D8B-89D5-B5292DF85B5D}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\company of heroes\reliccoh.exe |
"{96BC291B-5B72-4D4A-B93C-00B11F0010E0}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steam.exe |
"{99DA979E-2285-4165-B3AA-264A21BF1D48}" = protocol=6 | dir=in | app=g:\games\world of warcraft\launcher.patch.exe |
"{99EFBF05-F975-4815-A005-A40D1F27B0EC}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\dota 2 beta\dota.exe |
"{9E0A506F-18ED-42DE-8F1B-2B6AF4964346}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steam.exe |
"{9EA87C91-7C78-4CDB-9D4F-4166891F4DFE}" = protocol=6 | dir=in | app=c:\program files (x86)\edimax\11n usb wireless lan utility\rtwlan.exe |
"{A1236A8D-DBFA-4255-96F8-B385718085EE}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\steelstorm\netradiant_win32\radiant.exe |
"{A5AB20ED-4F49-488C-94C4-2B1327BE905B}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\venice\venice.exe |
"{A64ACF3C-620D-4396-9E8D-0D924A8417D4}" = protocol=6 | dir=in | app=g:\world of warcraft\launcher.exe |
"{A91C45D3-A9AE-4780-A0FB-9BB58BD6A15B}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\steelstorm\steelstorm.exe |
"{AAAB5CAF-4055-4657-A615-DCFE7296474C}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\the wonderful end of the world\main.exe |
"{AEB1A062-770B-44A5-B0DC-CD3926F7290E}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\mdk 2 hd\mdk2hd.exe |
"{B2886F08-789F-4994-85D9-022803B3F80F}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer.exe |
"{B3672250-852F-4347-AA6E-4B45A8F05F9C}" = protocol=17 | dir=in | app=g:\steam\steamapps\common\supermnc\binaries\win32\supermncgameclient.exe |
"{BAF1CE66-9F69-4330-8957-2E7F9FEAFB64}" = protocol=6 | dir=in | app=d:\program files (x86)\vmware\vmware workstation\vmware-authd.exe |
"{BB32287C-E513-4E93-8DC0-C9B7456A7A68}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\microvolts\launcher.exe |
"{BB692423-4AA7-47B3-816D-839B2B4D5EBF}" = protocol=17 | dir=in | app=d:\users\eddie\appdata\roaming\dropbox\bin\dropbox.exe |
"{BBEBBD89-395B-472E-A42F-7B344ADBFA2B}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\microvolts\launcher.exe |
"{BC9EB185-74A3-46A0-858A-A4C0176083E0}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\bejeweled deluxe\winbej.exe |
"{BE1B5B6A-0B4A-4868-9BF9-E4679AFBED47}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\bookworm deluxe\bookworm.exe |
"{BEA264CA-3ED2-4CE3-8A74-2EA4033B33D1}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\steelstorm\netradiant_win32\radiant.exe |
"{C1B3A362-759F-41A3-9D5D-0D583F99641A}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\left 4 dead\left4dead.exe |
"{C3A7FF2D-F8FE-4B65-A5C5-1313BB5CC643}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{C48B80B4-596B-4BC4-8BDC-A16B73F3854E}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\left 4 dead\left4dead.exe |
"{C50E3E83-9FB1-450D-9ED5-D6CD8FE31964}" = protocol=6 | dir=in | app=g:\steam\steamapps\icescream110\ricochet\hl.exe |
"{C94F1463-A1C2-4457-B5FB-F3483EA0F3F2}" = protocol=6 | dir=in | app=c:\program files (x86)\aim\aim.exe |
"{CC2F7F05-5821-44B1-926B-806C5D63A3CE}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\mdk 2 hd\mdk2hd.exe |
"{CC449089-066A-4F58-8AFD-4EEB0168A6CD}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe |
"{CE865D91-93D8-4A85-B6C8-05E4654F324E}" = protocol=17 | dir=in | app=d:\program files (x86)\vmware\vmware workstation\vmware-authd.exe |
"{CF7F1162-826E-4284-B180-E3843DD3B37F}" = dir=in | app=d:\users\eddie\appdata\local\microsoft\skydrive\skydrive.exe |
"{D041B3F0-35AF-48BC-9505-83A16C43FC25}" = protocol=58 | dir=in | [email protected],-28545 |
"{D3C6F3B6-6AF9-4222-BAD4-1C1A2201FA0A}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\typer shark deluxe\wints.exe |
"{D5681D17-79B7-4FBD-A87B-24D8D65E0D6F}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\trauma\trauma.exe |
"{D7128C83-AF35-46A7-A5B3-8B9A2136D849}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\supermnc\binaries\win32\supermncgameclient.exe |
"{D79276E6-1CB5-4A89-84ED-649E6D89F548}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\spacechem\spacechem.exe |
"{DB6B04B5-4267-4B14-9FF0-6262644B4BDC}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\batman arkham city demo\runlauncher.bat |
"{DF3631FE-2D7E-4C26-9403-21E3D4ECF067}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\pizza frenzy\pizzafrenzy.exe |
"{E03CAF89-ED4B-436C-A293-9B48FFB4E2FC}" = dir=in | app=g:\games\batman arkham city goty\binaries\win32\batmanac.exe |
"{E469A81C-D882-40C0-B058-40D32D08E463}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe |
"{E6FEC2DE-26BF-45AA-96CA-DF2BB465FEAC}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{E913F0D9-63FA-4109-A533-838E3A3B62E7}" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\arma 2\arma2.exe |
"{E97A8C67-15AA-46D0-8306-292C1C7CD2EF}" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\batman arkham city demo\binaries\win32\batmanac.exe |
"{EC57982A-7F33-43E1-B5D7-313418225D0D}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dungeon defenders\binaries\win32\dungeondefenders.exe |
"{EC8C6AFA-D79B-466E-B146-7D3774619C48}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dawn of war gold\w40k.exe |
"{EE85C004-6F94-49AF-B9D2-660C96971083}" = protocol=17 | dir=in | app=d:\program files (x86)\vmware\vmware workstation\vmware-authd.exe |
"{EF509D73-0817-485B-A21A-5D7ECDF5B4BB}" = protocol=6 | dir=in | app=g:\steam\steamapps\common\the wizards pen\wizardspen.exe |
"{F1A94DF3-2EF9-423D-B77E-1F9B7F541AA1}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{F43A2C0C-4A52-4244-8F61-448C8B52CEB8}" = protocol=6 | dir=in | app=g:\steam\steam.exe |
"{F6041BB4-AC85-48A4-A9F6-069DBA810D19}" = protocol=17 | dir=in | app=d:\users\eddie\appdata\roaming\dropbox\bin\dropbox.exe |
"{F7A1E87A-0F5D-48EA-8E78-2DD293B7634A}" = protocol=17 | dir=in | app=g:\world of warcraft\launcher.patch.exe |
"{FAD6C523-40C4-4038-96BA-2E201C597D14}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"TCP Query User{0001DAA2-39D8-4BAC-A6D9-32F1480A2907}D:\program files (x86)\activision\call of duty black ops ii\t6sp.exe" = protocol=6 | dir=in | app=d:\program files (x86)\activision\call of duty black ops ii\t6sp.exe |
"TCP Query User{04ADAE80-BE40-4864-9777-1C4E8D9C7881}G:\games\steam\steam.exe" = protocol=6 | dir=in | app=g:\games\steam\steam.exe |
"TCP Query User{23BFEF4E-02C1-4B0A-BAF6-27E7B8F22214}G:\games\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe" = protocol=6 | dir=in | app=g:\games\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe |
"TCP Query User{2614BFA8-ED59-4A0A-8536-2881D34EF7A4}G:\games\world_of_tanks\worldoftanks.exe" = protocol=6 | dir=in | app=g:\games\world_of_tanks\worldoftanks.exe |
"TCP Query User{2E20BF7B-30BB-4684-8E64-D538C2714EC1}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"TCP Query User{39C9CEB3-E8FB-4E91-A069-9E1FACB29AE6}G:\games\steam\steamapps\common\trackmania nations forever\tmforever.exe" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\trackmania nations forever\tmforever.exe |
"TCP Query User{4ECCB0FF-A583-44A6-B6A5-7853F203E610}D:\program files (x86)\ares\ares.exe" = protocol=6 | dir=in | app=d:\program files (x86)\ares\ares.exe |
"TCP Query User{5521D9E7-5551-45B0-AF4B-DB9A59733B5B}G:\games\world of warcraft\backgrounddownloader.exe" = protocol=6 | dir=in | app=g:\games\world of warcraft\backgrounddownloader.exe |
"TCP Query User{5624DBFB-C168-40D2-BBBB-03F57473869B}G:\games\batman arkham city goty\binaries\win32\batmanac_o.exe" = protocol=6 | dir=in | app=g:\games\batman arkham city goty\binaries\win32\batmanac_o.exe |
"TCP Query User{6C5F0834-C6AF-4E6B-BD55-087FBE8833FE}G:\steam\steamapps\common\portal 2\portal2.exe" = protocol=6 | dir=in | app=g:\steam\steamapps\common\portal 2\portal2.exe |
"TCP Query User{73DF156F-DED9-40F8-B5FC-382DC7337C43}G:\games\world_of_tanks\wotlauncher.exe" = protocol=6 | dir=in | app=g:\games\world_of_tanks\wotlauncher.exe |
"TCP Query User{7ABF681B-FE49-4088-8ADD-F341A1AADA65}D:\program files (x86)\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe" = protocol=6 | dir=in | app=d:\program files (x86)\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe |
"TCP Query User{7E0526EF-7AD5-41FF-BB1A-E0F69F9C5C2A}D:\program files (x86)\skype\phone\skype.exe" = protocol=6 | dir=in | app=d:\program files (x86)\skype\phone\skype.exe |
"TCP Query User{9664D091-96B4-48EE-A37E-0E410E3270D5}D:\programdata\kingsisle entertainment\pirate101\bin\pirate.exe" = protocol=6 | dir=in | app=d:\programdata\kingsisle entertainment\pirate101\bin\pirate.exe |
"TCP Query User{97AE17B3-7E19-4856-95F7-329E2EF6D748}C:\program files (x86)\oovoo\oovoo.exe" = protocol=6 | dir=in | app=c:\program files (x86)\oovoo\oovoo.exe |
"TCP Query User{B06EF30D-E6DE-4E44-A057-D4F88F5C2DA3}G:\games\steam\steamapps\icescream110\team fortress 2\hl2.exe" = protocol=6 | dir=in | app=g:\games\steam\steamapps\icescream110\team fortress 2\hl2.exe |
"TCP Query User{B3568351-DE23-4C89-B870-F0D7BA749BD2}G:\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe" = protocol=6 | dir=in | app=g:\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe |
"TCP Query User{BA694DEE-A887-4353-8A55-3686B7657693}D:\popcap games\zuma deluxe\zuma.exe" = protocol=6 | dir=in | app=d:\popcap games\zuma deluxe\zuma.exe |
"TCP Query User{BDBB0FA2-52E8-4F6D-A502-6E838F1EA988}C:\program files (x86)\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe" = protocol=6 | dir=in | app=c:\program files (x86)\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe |
"TCP Query User{D96F7D54-D53C-4055-BD7C-8EC2518F3992}G:\games\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe" = protocol=6 | dir=in | app=g:\games\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe |
"TCP Query User{DC2C60BD-E810-48C6-8C58-253CAF733CAD}G:\world of warcraft\backgrounddownloader.exe" = protocol=6 | dir=in | app=g:\world of warcraft\backgrounddownloader.exe |
"TCP Query User{EF59EC1F-E759-4E7E-8E06-A1382634D8FD}G:\games\world of warcraft\launcher.exe" = protocol=6 | dir=in | app=g:\games\world of warcraft\launcher.exe |
"TCP Query User{F6F2B239-5791-4F45-BE61-F8D168114C70}C:\program files\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\java.exe |
"TCP Query User{FDAFBD85-516F-4184-A1CB-053FC1DF15D5}G:\files\aim\aim.exe" = protocol=6 | dir=in | app=g:\files\aim\aim.exe |
"UDP Query User{0CC8EC53-7546-4C73-AD66-CC58BFE4E0C0}G:\games\steam\steamapps\common\trackmania nations forever\tmforever.exe" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\trackmania nations forever\tmforever.exe |
"UDP Query User{10FAA63A-5E8B-45AC-A55A-75B4E195C21B}G:\games\steam\steam.exe" = protocol=17 | dir=in | app=g:\games\steam\steam.exe |
"UDP Query User{27410988-2A74-4B6B-A20C-1F7978646648}G:\games\world_of_tanks\worldoftanks.exe" = protocol=17 | dir=in | app=g:\games\world_of_tanks\worldoftanks.exe |
"UDP Query User{3DB11BE9-8BDD-4F4C-8DA4-7B0AF6881D74}D:\program files (x86)\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe" = protocol=17 | dir=in | app=d:\program files (x86)\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe |
"UDP Query User{3EC07392-3E0E-4F54-84A1-50FEB1CD10A9}C:\program files\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\java.exe |
"UDP Query User{3FBBB4DB-60EE-4731-AD74-825ADDC58075}G:\games\batman arkham city goty\binaries\win32\batmanac_o.exe" = protocol=17 | dir=in | app=g:\games\batman arkham city goty\binaries\win32\batmanac_o.exe |
"UDP Query User{42597F7F-814C-496F-A0B8-CF188E910EC4}G:\steam\steamapps\common\portal 2\portal2.exe" = protocol=17 | dir=in | app=g:\steam\steamapps\common\portal 2\portal2.exe |
"UDP Query User{47983EF7-A5BF-44A9-A66E-7BA5DFC8DA46}G:\games\steam\steamapps\icescream110\team fortress 2\hl2.exe" = protocol=17 | dir=in | app=g:\games\steam\steamapps\icescream110\team fortress 2\hl2.exe |
"UDP Query User{54A066E9-9E0C-45EE-B996-BB4B0E2AF3A5}G:\games\world of warcraft\launcher.exe" = protocol=17 | dir=in | app=g:\games\world of warcraft\launcher.exe |
"UDP Query User{585F727B-CA76-4D58-89A9-D08BA5ABCA32}D:\program files (x86)\ares\ares.exe" = protocol=17 | dir=in | app=d:\program files (x86)\ares\ares.exe |
"UDP Query User{5EB1FD4E-27CC-4688-AF20-4ED03F068002}D:\program files (x86)\skype\phone\skype.exe" = protocol=17 | dir=in | app=d:\program files (x86)\skype\phone\skype.exe |
"UDP Query User{7F6AB02F-BEB4-463D-A734-BCEE2996AA9D}G:\games\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe" = protocol=17 | dir=in | app=g:\games\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe |
"UDP Query User{83AFB7D3-B29E-41EE-B91F-504DCEC36955}G:\files\aim\aim.exe" = protocol=17 | dir=in | app=g:\files\aim\aim.exe |
"UDP Query User{89365029-3131-4EA2-A566-2D383585E311}C:\program files (x86)\oovoo\oovoo.exe" = protocol=17 | dir=in | app=c:\program files (x86)\oovoo\oovoo.exe |
"UDP Query User{8CFE2E3B-B9A7-4D65-87A9-B931AFE6FF8B}G:\games\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe" = protocol=17 | dir=in | app=g:\games\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe |
"UDP Query User{8E908758-53EF-4992-9BA0-799815AA78E8}D:\programdata\kingsisle entertainment\pirate101\bin\pirate.exe" = protocol=17 | dir=in | app=d:\programdata\kingsisle entertainment\pirate101\bin\pirate.exe |
"UDP Query User{97ADA57C-A09A-480A-86F8-D3D0DEC127F5}D:\program files (x86)\activision\call of duty black ops ii\t6sp.exe" = protocol=17 | dir=in | app=d:\program files (x86)\activision\call of duty black ops ii\t6sp.exe |
"UDP Query User{9B4DFAF8-B1AD-4E05-B6A3-F7B26DCF34ED}G:\games\world_of_tanks\wotlauncher.exe" = protocol=17 | dir=in | app=g:\games\world_of_tanks\wotlauncher.exe |
"UDP Query User{9B4E41E0-3755-4AFC-BDFE-CF3513BF197C}G:\games\world of warcraft\backgrounddownloader.exe" = protocol=17 | dir=in | app=g:\games\world of warcraft\backgrounddownloader.exe |
"UDP Query User{B270009A-2F5C-4DFF-8480-95180697E94A}C:\program files (x86)\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe" = protocol=17 | dir=in | app=c:\program files (x86)\the spoof net\the toontown spoofer v6\thetoontownspoofer.exe |
"UDP Query User{B7A7E44D-6FAE-48DF-BC83-81D019F39EB1}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"UDP Query User{D6DAB6E1-2E27-4DD0-9BE7-55A48847BE0C}G:\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe" = protocol=17 | dir=in | app=g:\steam\steamapps\common\dungeon defenders\binaries\win32\dundefgame.exe |
"UDP Query User{FAC76E49-1D4A-45BD-9EB1-9126B1ED352A}D:\popcap games\zuma deluxe\zuma.exe" = protocol=17 | dir=in | app=d:\popcap games\zuma deluxe\zuma.exe |
"UDP Query User{FC84D16B-09B2-48AF-91C3-7AFF192A8400}G:\world of warcraft\backgrounddownloader.exe" = protocol=17 | dir=in | app=g:\world of warcraft\backgrounddownloader.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition)
"{26A24AE4-039D-4CA4-87B4-2F86416031FF}" = Java 6 Update 31 (64-bit)
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{4EE61784-10C6-4B7C-A0B2-5BED17B05741}" = Oracle VM VirtualBox 4.1.18
"{5F611ADA-B98C-4DBB-ADDE-414F08457ECF}" = Windows Live Family Safety
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010
"{90140000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2010
"{90140000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Control Panel 306.97
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Graphics Driver 306.97
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA 3D Vision Controller Driver 301.42
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX System Software 9.12.0213
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 1.10.8
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA HD Audio Driver 1.3.16.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{C78D3032-9DFD-41D0-9DE9-58EAE750CBA4}" = Microsoft Security Client
"{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant
"{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"{F6822EFD-3F7D-4B35-8845-757A26AEC8E2}" = Windows Live MIME IFilter
"CPUID CPU-Z_is1" = CPUID CPU-Z 1.61.5
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft Security Client" = Microsoft Security Essentials
"NVIDIA Drivers" = NVIDIA Drivers
"Virtual Audio Cable 4.10" = Virtual Audio Cable 4.10
"WinRAR archiver" = WinRAR 4.20 (64-bit)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{003BFBBD-6C67-419E-A24D-0DCAFC3A5249}" = tools-freebsd
"{0454BB9A-2A7A-4214-BDFF-937F7A711A44}" = Windows Live Communications Platform
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1" = MiniTool Partition Wizard Home Edition 7.5
"{08B3869E-D282-424C-9AFC-870E04A4BA14}" = Rockstar Games Social Club
"{0D94F75A-0EA6-4951-B3AF-B145FA9E05C6}" = VMware Workstation
"{18272881-CFC0-434D-A975-E5BE44206AA0}" = Windows Live UX Platform Language Pack
"{197597A7-AD33-4898-9D8E-73066818B464}" = tools-netware
"{1EA7C505-E6DA-4B85-9432-EBD3C70D510D}" = Windows Live Messenger
"{1EAC1D02-C6AC-4FA6-9A44-96258C37C812}_is1" = World of Tanks
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{23A3E560-069F-4CFC-8F6C-1B526EC735FC}" = Windows Live Writer Resources
"{26A24AE4-039D-4CA4-87B4-2F83217009FF}" = Java 7 Update 9
"{28E82311-8616-11E1-BEB0-B8AC6F97B88E}" = Google Earth
"{2EB28256-1D66-49F1-AF66-691BF9A27C79}" = Camtasia Studio 8
"{30F99474-EBE3-4134-A02B-F6CD38CFE243}" = Photo Gallery
"{384FA0C0-BB19-4CA0-8DB4-5FD4E938277F}" = Notification Center
"{3A1301C6-CE27-9B1D-B497-BB2DD65C0558}" = GameFly
"{400C31E4-796F-4E86-8FDC-C3C4FACC6847}" = Junk Mail filter update
"{449CE12D-E2C7-4B97-B19E-55D163EA9435}" = Bing Bar
"{48963B63-7A10-49D6-8B08-61E6132453D0}" = ViewSonic Monitor Drivers x64
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
"{4CCBD1F4-CEEC-452A-9CB8-46564B501315}" = Windows Live UX Platform
"{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module
"{57520FA0-DF38-46A1-8046-3B1000008500}" = Batman: Arkham City™ GOTY
"{587178E7-B1DF-494E-9838-FA4DD36E873C}" = ASUSUpdate
"{5BABDA39-61CF-41EE-992D-4054B6649A9B}" = Movie Maker
"{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module
"{65CB4C08-C47B-4A7E-A6A4-50C06ADA5FC6}" = Adobe AIR
"{662140BE-138C-4DC1-B4CD-B62C6C855A25}" = Pirate101
"{6A8DB215-7BCD-4377-B015-2E4541A3E7C6}" = Windows Live PIMT Platform
"{70854FE6-3BF1-4C69-94D0-BEB821102E34}" = Windows Live Mail
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7B0C5EF6-DE4C-4E20-8889-C17604FFE5CD}" = Windows Live Family Safety
"{7BB5E925-A3DD-48C2-9A82-017AF5982FFE}" = Facebook Messenger 2.1.4590.0
"{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}" = NVIDIA ForceWare Network Access Manager
"{7D095455-D971-4D4C-9EFD-9AF6A6584F3A}" = Bing Desktop
"{7FB413C8-3CAD-49F7-A67C-6EFEB4B04050}" = LogMeIn Hamachi
"{85967580-EBC2-11D4-AEA3-0050046A88ED}" = LEGO Island 2
"{86C40513-B5A4-476E-9EAB-EC118DCF4502}" = Windows Live Writer
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A642ACD-CE3A-4A23-A8B1-A0F7EB12B214}" = Windows Live SOXE Definitions
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{90140000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2010
"{90140000-0015-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2010
"{90140000-0016-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2010
"{90140000-0018-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2010
"{90140000-0019-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2010
"{90140000-001A-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2010
"{90140000-001B-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010
"{90140000-001F-040C-0000-0000000FF1CE}_Office14.SingleImage_{46298F6A-1E7E-4D4A-B5F5-106A4F0E48C6}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010
"{90140000-001F-0C0A-0000-0000000FF1CE}_Office14.SingleImage_{DEA87BE2-FFCC-4F33-9946-FCBE55A1E998}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{967EF02C-5C7E-4718-8FCB-BDC050190CCF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002A-0409-1000-0000000FF1CE}_Office14.SingleImage_{D6C6B46A-6CE1-4561-84A0-EFD58B8AB979}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010
"{90140000-002C-0409-0000-0000000FF1CE}_Office14.SingleImage_{7CA93DF4-8902-449E-A42E-4C5923CFBDE3}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-003D-0000-0000-0000000FF1CE}" = Microsoft Office Single Image 2010
"{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{047B0968-E622-4FAA-9B4B-121FA109EDDE}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010
"{90140000-006E-0409-0000-0000000FF1CE}_Office14.SingleImage_{4560037C-E356-444A-A015-D21F487D809E}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2010
"{90140000-00A1-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010
"{90140000-0115-0409-0000-0000000FF1CE}_Office14.SingleImage_{4560037C-E356-444A-A015-D21F487D809E}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0116-0409-1000-0000000FF1CE}_Office14.SingleImage_{D6C6B46A-6CE1-4561-84A0-EFD58B8AB979}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2010
"{90140000-0117-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{97C79BEC-43F7-4BD8-A6A7-85C0257E488A}" = Windows Live Writer
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9C049499-055C-4a0c-A916-1D12314F45EB}" = Edimax Wireless LAN Driver and Utility
"{9FD6F1A8-5550-46AF-8509-271DF0E768B5}" = Dual-Core Optimizer
"{A3FF5CB2-FB35-4658-8751-9EDE1D65B3AA}" = VMware Workstation
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9E27FF5-6294-46A8-B8FD-77B1DECA3021}" = Wizard101
"{AB1C87CB-1807-4CF0-B4C2-CEE14C18CDB4}" = tools-solaris
"{AE0F62A7-A1A2-407F-9F4C-48939BD9AD8D}" = tools-winPre2k
"{B80D3EA9-A252-4AE5-AC51-81729F5C586F}" = Windows Live Mail
"{C034A6F9-6569-491B-B3BF-F5D15221A708}" = Windows Live Essentials
"{C3592426-531E-4110-911D-BFECE2CE284B}" = puush
"{C4124E95-5061-4776-8D5D-E3D931C778E1}" = Microsoft VC9 runtime libraries
"{C424CD5E-EA05-4D3E-B5DA-F9F149E1D3AC}" = Windows Live Installer
"{C9B6EFD0-4F01-4BBA-8374-39AD99A3ED72}" = Windows Live Photo Common
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D102611A-6466-4101-A51D-51069303AC65}" = tools-linux
"{D2C146B1-948D-47EF-8387-5D1C6B980F7C}" = Windows Live Writer
"{D888F114-7537-4D48-AF03-5DA9C82D7540}" = Photo Common
"{DA909E62-3B45-4BA1-8B58-FCAEBA4BCEC9}" = NVIDIA PhysX
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{EA17F4FC-FDBF-4CF8-A529-2D983132D053}" = Skype™ 6.0
"{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module
"{ED6C77F9-4D7E-447C-9EC0-9A212D075535}" = Movie Maker
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F2235E5E-7881-4293-9B6F-04B2609FBFF0}" = Windows Live Messenger
"{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable
"{FAA7F8FF-3C05-4A61-8F14-D8A6E9ED6623}" = ooVoo
"{FC6C7107-7D72-41A1-A031-3CE751159BAB}" = Photo Gallery
"{FE7C0B3D-50B9-4951-BE78-A321CBF86552}" = Windows Live SOXE
"{FFD9383C-01D5-4897-A954-43AF599AED30}" = tools-windows
"Actual Multiple Monitors_is1" = Actual Multiple Monitors 4.1
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Alchemy Deluxe_is1" = Alchemy Deluxe
"Alice Greenfingers_is1" = Alice Greenfingers
"Amazing Adventures: The Lost Tomb_is1" = Amazing Adventures: The Lost Tomb
"AmazingMIDI" = AmazingMIDI
"AnyDVD" = AnyDVD
"AstroPop Deluxe_is1" = AstroPop Deluxe
"Atomica Deluxe_is1" = Atomica Deluxe
"Audacity_is1" = Audacity 2.0.2
"Axife Mouse Recorder DEMO_is1" = Axife Mouse Recorder DEMO 5.01
"Bandicam" = Bandicam
"BandiMPEG1" = Bandisoft MPEG-1 Decoder
"BattlEye for A2" = BattlEye Uninstall
"Bejeweled 2 Deluxe_is1" = Bejeweled 2 Deluxe
"Bejeweled Deluxe_is1" = Bejeweled Deluxe
"Big Kahuna Reef_is1" = Big Kahuna Reef
"Big Money Deluxe_is1" = Big Money Deluxe
"BlueStacks App Player" = BlueStacks App Player
"Bonnie's Bookstore Deluxe_is1" = Bonnie's Bookstore Deluxe
"Bookworm Adventures Deluxe_is1" = Bookworm Adventures Deluxe
"BookWorm Deluxe 1.0" = BookWorm Deluxe 1.0
"Bookworm Deluxe_is1" = Bookworm Deluxe
"Cake Mania_is1" = Cake Mania
"Call of Duty Black Ops II_is1" = Call of Duty Black Ops II
"Chuzzle Deluxe_is1" = Chuzzle Deluxe
"CrystalDiskInfo_is1" = CrystalDiskInfo 5.0.0 Shizuku Edition
"Diner Dash 2_is1" = Diner Dash 2
"Disney Toontown Online" = Disney Toontown Online
"Disney Toontown Online_TEST" = Disney Toontown Online TEST
"Dynomite Deluxe 2.71" = Dynomite Deluxe 2.71
"Dynomite Deluxe_is1" = Dynomite Deluxe
"EasyBCD" = EasyBCD 2.2
"Family Feud_is1" = Family Feud
"Feeding Frenzy 2 Deluxe_is1" = Feeding Frenzy 2 Deluxe
"Feeding Frenzy Deluxe_is1" = Feeding Frenzy Deluxe
"Fraps" = Fraps (remove only)
"GameFly" = GameFly
"GFWL_{57520FA0-DF38-46A1-8046-3B1000008500}" = Batman: Arkham City™ GOTY
"GlidewrapZbag" = zeckensack's Glide wrapper (remove only)
"GTA San Andreas" = GTA San Andreas
"Hammer Heads Deluxe_is1" = Hammer Heads Deluxe
"Heavy Weapon Deluxe_is1" = Heavy Weapon Deluxe
"HxD Hex Editor_is1" = HxD Hex Editor version 1.7.7.0
"Iggle Pop Deluxe_is1" = Iggle Pop Deluxe
"ImgBurn" = ImgBurn
"Insaniquarium Deluxe_is1" = Insaniquarium Deluxe
"Jimmy Neutron Boy Genius" = Jimmy Neutron Boy Genius
"Jimmy Neutron vs. Jimmy Negatron" = Jimmy Neutron vs. Jimmy Negatron
"LogMeIn Hamachi" = LogMeIn Hamachi
"Magic ISO Maker v5.5 (build 0281)" = Magic ISO Maker v5.5 (build 0281)
"Magic Match_is1" = Magic Match
"Mahjong Escape: Ancient Japan_is1" = Mahjong Escape: Ancient Japan
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.65.1.1000
"MDK" = MDK
"MIDI Converter Studio_is1" = MIDI Converter Studio 6.3
"Mozilla Firefox 14.0.1 (x86 en-US)" = Mozilla Firefox 14.0.1 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Mummy Maze Deluxe_is1" = Mummy Maze Deluxe
"Mystery Case Files: Huntsville_is1" = Mystery Case Files: Huntsville
"Mystery PI_is1" = Mystery PI
"Mystery Solitaire: Secret Island_is1" = Mystery Solitaire: Secret Island
"NingPo MahJong Deluxe_is1" = NingPo MahJong Deluxe
"Noah's Ark Deluxe_is1" = Noah's Ark Deluxe
"Office14.SingleImage" = Microsoft Office Professional 2010
"OnLive" = OnLive
"Panda3D 1.7.2" = Panda3D 1.7.2
"Peggle Deluxe_is1" = Peggle Deluxe
"Pixelus Deluxe_is1" = Pixelus Deluxe
"PizzaFrenzy_is1" = PizzaFrenzy
"QuickStores-Toolbar_is1" = QuickStores-Toolbar 1.1.0
"RealArcade 1.2" = RealArcade
"SoftwareUpdUtility" = Download Updater (AOL LLC)
"Steam App 104700" = Super Monday Night Combat
"Steam App 105600" = Terraria
"Steam App 109400" = MicroVolts
"Steam App 11020" = TrackMania Nations Forever
"Steam App 15500" = The Wonderful End of the World
"Steam App 200240" = Batman: Arkham City Demo
"Steam App 200940" = Sonic CD
"Steam App 213350" = MDK 2 HD
"Steam App 3330" = Zuma Deluxe
"Steam App 3350" = Bejeweled Deluxe
"Steam App 3370" = BookWorm Deluxe
"Steam App 3380" = Dynomite! Deluxe
"Steam App 33900" = ARMA 2
"Steam App 3430" = Pizza Frenzy
"Steam App 3440" = Rocket Mania! Deluxe
"Steam App 3450" = Typer Shark! Deluxe
"Steam App 3460" = Talismania Deluxe
"Steam App 3490" = Venice
"Steam App 3580" = The Wizard's Pen
"Steam App 3620" = Zuma's Revenge
"Steam App 38450" = MDK
"Steam App 440" = Team Fortress 2
"Steam App 4560" = Company of Heroes
"Steam App 4570" = Warhammer 40,000: Dawn of War - Game of the Year Edition
"Steam App 500" = Left 4 Dead
"Steam App 550" = Left 4 Dead 2
"Steam App 570" = Dota 2
"Steam App 60" = Ricochet
"Steam App 6060" = Star Wars - Battlefront II
"Steam App 620" = Portal 2
"Steam App 65800" = Dungeon Defenders
"Steam App 70300" = VVVVVV
"Steam App 92800" = SpaceChem
"Steam App 96200" = Steel Storm: Burning Retribution
"Steam App 98100" = TRAUMA
"TeamViewer 8" = TeamViewer 8
"The Walking Dead © 3_is1" = The Walking Dead © 3 version 1
"ThinkTanks" = ThinkTanks
"USBWebcam" = USB Webcam
"uTorrent" = µTorrent
"VideoPad" = VideoPad Video Editor
"ViewpointMediaPlayer" = Viewpoint Media Player
"VirtualCloneDrive" = VirtualCloneDrive
"VLC media player" = VLC media player 2.0.3
"VMware_Workstation" = VMware Workstation
"WinLiveSuite" = Windows Live Essentials
"Wubi" = Ubuntu
"Yahoo! Companion" = Yahoo! Toolbar
"Yahoo! Messenger" = Yahoo! Messenger
"Yahoo! Software Update" = Yahoo! Software Update
"Zuma Deluxe 1.0" = Zuma Deluxe 1.0
========== Last 20 Event Log Errors ==========
[ Application Events ]
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
< End of report >